aws-cloudformation / aws-cloudformation/cloudformation-cli-python-plugin

OOTB generated python CF resource cannot be used with cfn test

未關閉
#247 2 則留言 1 個 reaction 已指派 0 人 在 GitHub 檢視
investigating
主要語言
Python
星號
107
分支
46
PR 合併指標
30 天內沒有已合併 PR

描述

Repro:

- Install latest cloudformation-cli
- Install master branch of this repo
- Generate a new resource type - in my example I used `python3.9`
- run `cfn submit --dry-run`
- run `sam build`
- in new terminal run `sam local start-lambda`
- run just one contract test -`cfn test -- -k contract_create_delete`
- Error from cryptography library:
- `Unable to import module 'dd_dd_test1.handlers': cannot import name 'ObjectIdentifier' from 'cryptography.hazmat.bindings._rust' (unknown location)`

Environment:
- cfn version - `cfn 0.2.28`
- SAM version - `SAM CLI, version 1.66.0`
- Operating System - `macOS Monterey - 12.3.1`
- Architecture - Apple M1 Pro (arm64)
- plugin version - `cloudformation-cli-python-plugin @ git+https://github.com/aws-cloudformation/cloudformation-cli-python-plugin.git@fad3b0740a76c7bad0be18b08cb46f6e22973bde` (master as of 01/17/2023)
- requirements.txt (generated) - `cloudformation-cli-python-lib>=2.1.9`
- Resolved cryptography library - `cryptography 39.0.0`

Research:
- User having issues with python3.8 in lambda environment - https://stackoverflow.com/questions/75129142/aws-lambda-cannot-import-name-objectidentifier-from-cryptography-hazmat-b
- `aws-encryption-sdk` only [requires 3.4.0](https://github.com/aws/aws-encryption-sdk-python/blob/master/requirements.txt#L2) or above currently. This is used [here](https://github.com/aws-cloudformation/cloudformation-cli-python-plugin/blob/master/src/cloudformation_cli_python_lib/cipher.py#L4). And defined [here](https://github.com/aws-cloudformation/cloudformation-cli-python-plugin/blob/master/src/setup.py#L18)

貢獻指南

開啟貢獻指南

評估

這個 Issue 還沒有評估資料。

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。