2009-06-02 21:24:50 +04:00
|
|
|
# Redmine - project management software
|
2014-02-08 11:58:49 +04:00
|
|
|
# Copyright (C) 2006-2014 Jean-Philippe Lang
|
2007-01-28 01:31:42 +03:00
|
|
|
#
|
|
|
|
# This program is free software; you can redistribute it and/or
|
|
|
|
# modify it under the terms of the GNU General Public License
|
|
|
|
# as published by the Free Software Foundation; either version 2
|
|
|
|
# of the License, or (at your option) any later version.
|
2011-08-30 01:51:13 +04:00
|
|
|
#
|
2007-01-28 01:31:42 +03:00
|
|
|
# This program is distributed in the hope that it will be useful,
|
|
|
|
# but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
# GNU General Public License for more details.
|
2011-08-30 01:51:13 +04:00
|
|
|
#
|
2007-01-28 01:31:42 +03:00
|
|
|
# You should have received a copy of the GNU General Public License
|
|
|
|
# along with this program; if not, write to the Free Software
|
|
|
|
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
|
|
|
|
|
2010-12-13 02:24:34 +03:00
|
|
|
require File.expand_path('../../test_helper', __FILE__)
|
2006-07-29 13:32:58 +04:00
|
|
|
|
2009-09-13 21:14:35 +04:00
|
|
|
class TokenTest < ActiveSupport::TestCase
|
2006-07-29 13:32:58 +04:00
|
|
|
fixtures :tokens
|
|
|
|
|
2007-01-28 01:31:42 +03:00
|
|
|
def test_create
|
|
|
|
token = Token.new
|
|
|
|
token.save
|
|
|
|
assert_equal 40, token.value.length
|
|
|
|
assert !token.expired?
|
2006-07-29 13:32:58 +04:00
|
|
|
end
|
2011-08-30 01:51:13 +04:00
|
|
|
|
2009-06-02 21:24:50 +04:00
|
|
|
def test_create_should_remove_existing_tokens
|
|
|
|
user = User.find(1)
|
|
|
|
t1 = Token.create(:user => user, :action => 'autologin')
|
|
|
|
t2 = Token.create(:user => user, :action => 'autologin')
|
|
|
|
assert_not_equal t1.value, t2.value
|
|
|
|
assert !Token.exists?(t1.id)
|
|
|
|
assert Token.exists?(t2.id)
|
|
|
|
end
|
2012-04-15 19:44:51 +04:00
|
|
|
|
|
|
|
def test_destroy_expired_should_not_destroy_feeds_and_api_tokens
|
|
|
|
Token.delete_all
|
|
|
|
|
|
|
|
Token.create!(:user_id => 1, :action => 'api', :created_on => 7.days.ago)
|
|
|
|
Token.create!(:user_id => 1, :action => 'feeds', :created_on => 7.days.ago)
|
|
|
|
|
|
|
|
assert_no_difference 'Token.count' do
|
|
|
|
assert_equal 0, Token.destroy_expired
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_destroy_expired_should_destroy_expired_tokens
|
|
|
|
Token.delete_all
|
|
|
|
|
|
|
|
Token.create!(:user_id => 1, :action => 'autologin', :created_on => 7.days.ago)
|
|
|
|
Token.create!(:user_id => 2, :action => 'autologin', :created_on => 3.days.ago)
|
|
|
|
Token.create!(:user_id => 3, :action => 'autologin', :created_on => 1.hour.ago)
|
|
|
|
|
|
|
|
assert_difference 'Token.count', -2 do
|
|
|
|
assert_equal 2, Token.destroy_expired
|
|
|
|
end
|
|
|
|
end
|
2013-02-15 01:47:07 +04:00
|
|
|
|
|
|
|
def test_find_active_user_should_return_user
|
|
|
|
token = Token.create!(:user_id => 1, :action => 'api')
|
|
|
|
assert_equal User.find(1), Token.find_active_user('api', token.value)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_active_user_should_return_nil_for_locked_user
|
|
|
|
token = Token.create!(:user_id => 1, :action => 'api')
|
|
|
|
User.find(1).lock!
|
|
|
|
assert_nil Token.find_active_user('api', token.value)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_user_should_return_user
|
|
|
|
token = Token.create!(:user_id => 1, :action => 'api')
|
|
|
|
assert_equal User.find(1), Token.find_user('api', token.value)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_user_should_return_locked_user
|
|
|
|
token = Token.create!(:user_id => 1, :action => 'api')
|
|
|
|
User.find(1).lock!
|
|
|
|
assert_equal User.find(1), Token.find_user('api', token.value)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_token_should_return_the_token
|
|
|
|
token = Token.create!(:user_id => 1, :action => 'api')
|
|
|
|
assert_equal token, Token.find_token('api', token.value)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_token_should_return_the_token_with_validity
|
|
|
|
token = Token.create!(:user_id => 1, :action => 'api', :created_on => 1.hour.ago)
|
|
|
|
assert_equal token, Token.find_token('api', token.value, 1)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_token_should_return_nil_with_wrong_action
|
|
|
|
token = Token.create!(:user_id => 1, :action => 'feeds')
|
|
|
|
assert_nil Token.find_token('api', token.value)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_token_should_return_nil_without_user
|
|
|
|
token = Token.create!(:user_id => 999, :action => 'api')
|
|
|
|
assert_nil Token.find_token('api', token.value)
|
|
|
|
end
|
|
|
|
|
|
|
|
def test_find_token_should_return_nil_with_validity_expired
|
|
|
|
token = Token.create!(:user_id => 999, :action => 'api', :created_on => 2.days.ago)
|
|
|
|
assert_nil Token.find_token('api', token.value, 1)
|
|
|
|
end
|
2006-07-29 13:32:58 +04:00
|
|
|
end
|