2011-10-29 16:19:11 +04:00
|
|
|
#-- encoding: UTF-8
|
2011-05-30 00:11:52 +04:00
|
|
|
#-- copyright
|
|
|
|
# ChiliProject is a project management system.
|
2011-05-30 22:52:25 +04:00
|
|
|
#
|
2011-05-30 00:11:52 +04:00
|
|
|
# Copyright (C) 2010-2011 the ChiliProject Team
|
2011-05-30 22:52:25 +04:00
|
|
|
#
|
2008-09-21 17:28:12 +04:00
|
|
|
# This program is free software; you can redistribute it and/or
|
|
|
|
# modify it under the terms of the GNU General Public License
|
|
|
|
# as published by the Free Software Foundation; either version 2
|
|
|
|
# of the License, or (at your option) any later version.
|
2011-05-30 22:52:25 +04:00
|
|
|
#
|
2011-05-30 00:11:52 +04:00
|
|
|
# See doc/COPYRIGHT.rdoc for more details.
|
|
|
|
#++
|
2010-12-13 02:24:34 +03:00
|
|
|
require File.expand_path('../../test_helper', __FILE__)
|
2008-09-21 17:28:12 +04:00
|
|
|
|
2009-09-13 21:14:35 +04:00
|
|
|
class AuthSourceLdapTest < ActiveSupport::TestCase
|
2010-02-26 11:42:40 +03:00
|
|
|
fixtures :auth_sources
|
2011-05-30 22:52:25 +04:00
|
|
|
|
2008-09-21 17:28:12 +04:00
|
|
|
def setup
|
|
|
|
end
|
2011-05-30 22:52:25 +04:00
|
|
|
|
2008-09-21 17:28:12 +04:00
|
|
|
def test_create
|
|
|
|
a = AuthSourceLdap.new(:name => 'My LDAP', :host => 'ldap.example.net', :port => 389, :base_dn => 'dc=example,dc=net', :attr_login => 'sAMAccountName')
|
|
|
|
assert a.save
|
|
|
|
end
|
2011-05-30 22:52:25 +04:00
|
|
|
|
2008-09-21 17:28:12 +04:00
|
|
|
def test_should_strip_ldap_attributes
|
|
|
|
a = AuthSourceLdap.new(:name => 'My LDAP', :host => 'ldap.example.net', :port => 389, :base_dn => 'dc=example,dc=net', :attr_login => 'sAMAccountName',
|
|
|
|
:attr_firstname => 'givenName ')
|
|
|
|
assert a.save
|
|
|
|
assert_equal 'givenName', a.reload.attr_firstname
|
|
|
|
end
|
2010-02-16 19:40:50 +03:00
|
|
|
|
|
|
|
if ldap_configured?
|
|
|
|
context '#authenticate' do
|
|
|
|
setup do
|
2010-02-26 11:42:40 +03:00
|
|
|
@auth = AuthSourceLdap.find(1)
|
2010-02-16 19:40:50 +03:00
|
|
|
end
|
|
|
|
|
|
|
|
context 'with a valid LDAP user' do
|
2010-02-26 11:50:37 +03:00
|
|
|
should 'return the user attributes' do
|
2010-02-26 12:13:12 +03:00
|
|
|
attributes = @auth.authenticate('example1','123456')
|
|
|
|
assert attributes.is_a?(Hash), "An hash was not returned"
|
2010-02-26 11:50:37 +03:00
|
|
|
assert_equal 'Example', attributes[:firstname]
|
|
|
|
assert_equal 'One', attributes[:lastname]
|
|
|
|
assert_equal 'example1@redmine.org', attributes[:mail]
|
|
|
|
assert_equal @auth.id, attributes[:auth_source_id]
|
|
|
|
attributes.keys.each do |attribute|
|
|
|
|
assert User.new.respond_to?("#{attribute}="), "Unexpected :#{attribute} attribute returned"
|
|
|
|
end
|
2010-02-16 19:40:50 +03:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
context 'with an invalid LDAP user' do
|
|
|
|
should 'return nil' do
|
|
|
|
assert_equal nil, @auth.authenticate('nouser','123456')
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
context 'without a login' do
|
|
|
|
should 'return nil' do
|
|
|
|
assert_equal nil, @auth.authenticate('','123456')
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
context 'without a password' do
|
|
|
|
should 'return nil' do
|
|
|
|
assert_equal nil, @auth.authenticate('edavis','')
|
|
|
|
end
|
|
|
|
end
|
2011-05-30 22:52:25 +04:00
|
|
|
|
2010-02-17 04:59:50 +03:00
|
|
|
context "using a valid custom filter" do
|
|
|
|
setup do
|
|
|
|
@auth.update_attributes(:custom_filter => "(& (homeDirectory=*) (sn=O*))")
|
|
|
|
end
|
|
|
|
|
|
|
|
should "find a user who authenticates and matches the custom filter" do
|
|
|
|
assert_not_nil @auth.authenticate('example1', '123456')
|
|
|
|
end
|
|
|
|
|
|
|
|
should "be nil for users who don't match the custom filter" do
|
|
|
|
assert_nil @auth.authenticate('edavis', '123456')
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
context "using an invalid custom filter" do
|
|
|
|
setup do
|
|
|
|
# missing )) at the end
|
|
|
|
@auth.update_attributes(:custom_filter => "(& (homeDirectory=*) (sn=O*")
|
|
|
|
end
|
|
|
|
|
|
|
|
should "skip the custom filter" do
|
|
|
|
assert_not_nil @auth.authenticate('example1', '123456')
|
|
|
|
assert_not_nil @auth.authenticate('edavis', '123456')
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2010-02-16 19:40:50 +03:00
|
|
|
end
|
|
|
|
else
|
|
|
|
puts '(Test LDAP server not configured)'
|
|
|
|
end
|
2008-09-21 17:28:12 +04:00
|
|
|
end
|