This avoids building the check program multiple times. Signed-off-by: Ophestra <cat@gensokyo.uk>
15 lines
302 B
Nix
15 lines
302 B
Nix
{
|
|
writeShellScript,
|
|
writeText,
|
|
callPackage,
|
|
|
|
version,
|
|
}:
|
|
name: want:
|
|
writeShellScript "fortify-${name}-check-sandbox-script" ''
|
|
set -e
|
|
${callPackage ./assert.nix { inherit version; }}/bin/test \
|
|
${writeText "fortify-${name}-want.json" (builtins.toJSON want)}
|
|
touch /tmp/sandbox-ok
|
|
''
|