Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat(iam): add utility class for ServiceAccount test #10058

Draft
wants to merge 2 commits into
base: main
Choose a base branch
from

Conversation

alarconesparza
Copy link
Contributor

@alarconesparza alarconesparza commented Apr 4, 2025

Description

Fixes part of #10041

Checklist

  • I have followed Sample Format Guide
  • pom.xml parent set to latest shared-configuration
  • Appropriate changes to README are included in PR
  • These samples need a new API enabled in testing projects to pass (let us know which ones)
  • These samples need a new/updated env vars in testing projects set to pass (let us know which ones)
  • Tests pass: mvn clean verify required
  • Lint passes: mvn -P lint checkstyle:check required
  • Static Analysis: mvn -P lint clean compile pmd:cpd-check spotbugs:check advisory only
  • This sample adds a new sample directory, and I updated the CODEOWNERS file with the codeowners for this sample
  • This sample adds a new Product API, and I updated the Blunderbuss issue/PR auto-assigner with the codeowners for this sample
  • Please merge this PR for me once it is approved

@product-auto-label product-auto-label bot added api: iam Issues related to the Identity and Access Management API. samples Issues that are directly related to samples. labels Apr 4, 2025
Copy link

@gemini-code-assist gemini-code-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Hello @alarconesparza, I'm Gemini Code Assist1! I'm currently reviewing this pull request and will post my feedback shortly. In the meantime, here's a summary to help you and other reviewers quickly get up to speed!

Summary of Changes

This pull request introduces a utility class named Util.java to assist with testing the IAM Service Account functionality. It includes methods for creating, disabling, and deleting service accounts and their keys, as well as methods for retrieving service account information. The utility class aims to simplify the setup and teardown processes for integration tests related to IAM service accounts.

Highlights

  • Utility Class Creation: A new utility class Util.java is created to encapsulate common operations for managing IAM Service Accounts during testing.
  • Service Account Management: The utility class provides methods for creating, disabling, and deleting service accounts, streamlining the testing process.
  • Service Account Key Management: The utility class includes methods for creating, disabling, deleting, listing, and retrieving service account keys.
  • Awaiting Creation: The utility class includes methods to await service account and service account key creation, to ensure tests don't start before the resources are available.

Changelog

Click here to see the changelog
  • iam/snippets/src/test/java/Util.java
    • Created a new utility class Util.java.
    • Added methods for creating service accounts (setUpTest_createServiceAccount).
    • Added methods for disabling service accounts (setUpTest_disableSertviceAccount).
    • Added methods for deleting service accounts (tearDownTest_deleteServiceAccount).
    • Added methods for listing service accounts (test_listServiceAccounts).
    • Added methods for getting service account details (test_getServiceAccount).
    • Added methods for creating service account keys (setUpTest_createServiceAccountKey).
    • Added methods for disabling service account keys (setUpTest_disableServiceAccountKey).
    • Added methods for deleting service account keys (tearDownTest_deleteServiceAccountKey).
    • Added methods for listing service account keys (test_listServiceAccountKeys).
    • Added methods for getting service account key details (test_getServiceAccountKey).
    • Added methods to await service account and service account key creation (awaitForServiceAccountCreation, awaitForServiceAccountKeyCreation).
Using Gemini Code Assist

The full guide for Gemini Code Assist can be found on our documentation page, here are some quick tips.

Invoking Gemini

You can request assistance from Gemini at any point in your pull request via creating an issue comment (i.e. comment on the pull request page) using either /gemini <command> or @gemini-code-assist <command>. Below is a summary of the supported commands.

Feature Command Description
Code Review /gemini review Performs a code review for the current pull request in its current state.
Pull Request Summary /gemini summary Provides a summary of the current pull request in its current state.
Comment @gemini-code-assist Responds in comments when explicitly tagged, both in issue comments and review comments.
Help /gemini help Displays a list of available commands.

Customization

To customize Gemini Code Assist for GitHub experience, repository maintainers can create a configuration file and/or provide a custom code review style guide (such as PEP-8 for Python) by creating and adding files to a .gemini/ folder in the base of the repository. Detailed instructions can be found here.

Limitations & Feedback

Gemini Code Assist is currently in preview and may make mistakes. Please leave feedback on any instances where its feedback is incorrect or counter productive. You can react with 👍 and 👎 on @gemini-code-assist comments to provide feedback.

You can also get AI-powered code generation, chat, as well as code reviews directly in the IDE at no cost with the Gemini Code Assist IDE Extension.


A key is made,
Accounts managed with new code,
Tests now run smooth.

Footnotes

  1. Review the Privacy Notices, Generative AI Prohibited Use Policy, Terms of Service, and learn how to configure Gemini Code Assist in GitHub here. Gemini can make mistakes, so double check it and use code with caution.

Copy link

@gemini-code-assist gemini-code-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

The pull request introduces a utility class for ServiceAccount testing, which is a helpful addition. The code appears to be well-structured and addresses the intended functionality. However, there are a few areas that could be improved for clarity and efficiency.

Summary of Findings

  • Naming Consistency: Inconsistent naming of methods (e.g., setUpTest_createServiceAccount vs. test_listServiceAccounts). Consider standardizing the naming convention for better readability.
  • Redundant String Formatting: Multiple instances of string formatting for email and account names. Consider creating a utility method to handle this to avoid redundancy and potential errors.
  • Exception Handling in Await Methods: The awaitForServiceAccountCreation and awaitForServiceAccountKeyCreation methods catch Exception broadly. It would be better to catch specific exceptions to handle them appropriately.

Merge Readiness

The pull request is almost ready for merging. Addressing the naming inconsistencies, redundant string formatting, and exception handling would improve the code quality and maintainability. I am unable to directly approve this pull request, and recommend that others review and approve this code before merging.

Comment on lines +161 to +177
private static void awaitForServiceAccountCreation(String projectId, String serviceAccountName)
throws InterruptedException {
boolean isAccountCreated = false;
long time = 1000;
long timeLimit = 60000;
while (!isAccountCreated) {
try {
test_getServiceAccount(projectId, serviceAccountName);
isAccountCreated = true;
} catch (Exception e) {
Thread.sleep(time);
time *= 2;
if (time > timeLimit) {
break;
}
}
}

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

high

Catching Exception is too broad. It's better to catch specific exceptions like IOException or InterruptedException and handle them appropriately. Also, consider logging the exception to provide more context when the await fails.

      } catch (IOException | InterruptedException e) {
        Thread.sleep(time);
        time *= 2;
        if (time > timeLimit) {
          // Log the exception here
          break;
        }
      }

Comment on lines +180 to +197
private static void awaitForServiceAccountKeyCreation(
String projectId, String serviceAccountName, String serviceAccountKeyId)
throws InterruptedException {
boolean isAccountCreated = false;
long time = 1000;
long timeLimit = 60000;
while (!isAccountCreated) {
try {
test_getServiceAccountKey(projectId, serviceAccountName, serviceAccountKeyId);
isAccountCreated = true;
} catch (Exception e) {
if (time > timeLimit) {
break;
}
Thread.sleep(time);
time *= 2;
}
}

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

high

Similar to awaitForServiceAccountCreation, catching Exception is too broad here. Catch specific exceptions and log them for better error handling.

      } catch (IOException | InterruptedException e) {
        if (time > timeLimit) {
          // Log the exception here
          break;
        }
        Thread.sleep(time);
        time *= 2;
      }

return serviceAccount;
}

public static void setUpTest_disableSertviceAccount(String projectId, String serviceAccountName)

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

medium

Typo in method name: setUpTest_disableSertviceAccount. Should be setUpTest_disableServiceAccount.

Suggested change
public static void setUpTest_disableSertviceAccount(String projectId, String serviceAccountName)
public static void setUpTest_disableServiceAccount(String projectId, String serviceAccountName)
throws IOException {

throws IOException {
try (IAMClient client = IAMClient.create()) {
String accountName = ServiceAccountName.of(projectId, serviceAccountName).toString();
String accountEmail = String.format("%s@%s.iam.gserviceaccount.com", accountName, projectId);

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

medium

The accountName variable is already a formatted string. You are then re-formatting it into accountEmail. Consider using accountName directly in the DeleteServiceAccountRequest to avoid this reformatting.

Suggested change
String accountEmail = String.format("%s@%s.iam.gserviceaccount.com", accountName, projectId);
DeleteServiceAccountRequest request =
DeleteServiceAccountRequest.newBuilder().setName(accountName).build();

Comment on lines +118 to +120
public static String getServiceAccountKeyIdFromKey(ServiceAccountKey key) {
return key.getName().substring(key.getName().lastIndexOf("/") + 1).trim();
}

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

medium

Consider adding a null check for the key parameter to avoid a potential NullPointerException if key is null.

Suggested change
public static String getServiceAccountKeyIdFromKey(ServiceAccountKey key) {
return key.getName().substring(key.getName().lastIndexOf("/") + 1).trim();
}
public static String getServiceAccountKeyIdFromKey(ServiceAccountKey key) {
return key != null ? key.getName().substring(key.getName().lastIndexOf("/") + 1).trim() : null;
}

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
api: iam Issues related to the Identity and Access Management API. samples Issues that are directly related to samples.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant