1
1
Fork 0
mirror of https://code.mensbeam.com/MensBeam/Arsse.git synced 2025-01-12 19:02:40 +00:00
Arsse/tests/cases/Database/SeriesUser.php

146 lines
5.8 KiB
PHP
Raw Normal View History

<?php
/** @license MIT
* Copyright 2017 J. King, Dustin Wilson et al.
* See LICENSE and AUTHORS files for details */
declare(strict_types=1);
2018-11-23 15:01:17 +00:00
namespace JKingWeb\Arsse\TestCase\Database;
2017-08-29 14:50:31 +00:00
use JKingWeb\Arsse\Arsse;
trait SeriesUser {
2018-11-25 05:03:56 +00:00
protected function setUpSeriesUser() {
$this->data = [
'arsse_users' => [
'columns' => [
'id' => 'str',
'password' => 'str',
],
'rows' => [
["admin@example.net", '$2y$10$PbcG2ZR3Z8TuPzM7aHTF8.v61dtCjzjK78gdZJcp4UePE8T9jEgBW'], // password is hash of "secret"
["jane.doe@example.com", ""],
["john.doe@example.com", ""],
2018-11-25 05:03:56 +00:00
],
],
2018-11-25 05:03:56 +00:00
];
}
protected function tearDownSeriesUser() {
unset($this->data);
}
2017-08-29 14:50:31 +00:00
public function testCheckThatAUserExists() {
$this->assertTrue(Arsse::$db->userExists("jane.doe@example.com"));
$this->assertFalse(Arsse::$db->userExists("jane.doe@example.org"));
2019-09-05 14:03:32 +00:00
\Phake::verify(Arsse::$user)->authorize("jane.doe@example.com", "userExists");
\Phake::verify(Arsse::$user)->authorize("jane.doe@example.org", "userExists");
2019-06-21 22:52:27 +00:00
$this->compareExpectations(static::$drv, $this->data);
}
2017-08-29 14:50:31 +00:00
public function testCheckThatAUserExistsWithoutAuthority() {
2019-09-05 14:03:32 +00:00
\Phake::when(Arsse::$user)->authorize->thenReturn(false);
$this->assertException("notAuthorized", "User", "ExceptionAuthz");
Arsse::$db->userExists("jane.doe@example.com");
}
2017-08-29 14:50:31 +00:00
public function testGetAPassword() {
$hash = Arsse::$db->userPasswordGet("admin@example.net");
$this->assertSame('$2y$10$PbcG2ZR3Z8TuPzM7aHTF8.v61dtCjzjK78gdZJcp4UePE8T9jEgBW', $hash);
2019-09-05 14:03:32 +00:00
\Phake::verify(Arsse::$user)->authorize("admin@example.net", "userPasswordGet");
$this->assertTrue(password_verify("secret", $hash));
}
2017-08-29 14:50:31 +00:00
public function testGetThePasswordOfAMissingUser() {
$this->assertException("doesNotExist", "User");
Arsse::$db->userPasswordGet("john.doe@example.org");
}
2017-08-29 14:50:31 +00:00
public function testGetAPasswordWithoutAuthority() {
2019-09-05 14:03:32 +00:00
\Phake::when(Arsse::$user)->authorize->thenReturn(false);
$this->assertException("notAuthorized", "User", "ExceptionAuthz");
Arsse::$db->userPasswordGet("admin@example.net");
}
2018-10-26 18:58:04 +00:00
2017-08-29 14:50:31 +00:00
public function testAddANewUser() {
$this->assertTrue(Arsse::$db->userAdd("john.doe@example.org", ""));
2019-09-05 14:03:32 +00:00
\Phake::verify(Arsse::$user)->authorize("john.doe@example.org", "userAdd");
$state = $this->primeExpectations($this->data, ['arsse_users' => ['id']]);
$state['arsse_users']['rows'][] = ["john.doe@example.org"];
2019-06-21 22:52:27 +00:00
$this->compareExpectations(static::$drv, $state);
}
2017-08-29 14:50:31 +00:00
public function testAddAnExistingUser() {
$this->assertException("alreadyExists", "User");
Arsse::$db->userAdd("john.doe@example.com", "");
}
2017-08-29 14:50:31 +00:00
public function testAddANewUserWithoutAuthority() {
2019-09-05 14:03:32 +00:00
\Phake::when(Arsse::$user)->authorize->thenReturn(false);
$this->assertException("notAuthorized", "User", "ExceptionAuthz");
Arsse::$db->userAdd("john.doe@example.org", "");
}
2018-10-26 18:58:04 +00:00
2017-08-29 14:50:31 +00:00
public function testRemoveAUser() {
$this->assertTrue(Arsse::$db->userRemove("admin@example.net"));
2019-09-05 14:03:32 +00:00
\Phake::verify(Arsse::$user)->authorize("admin@example.net", "userRemove");
$state = $this->primeExpectations($this->data, ['arsse_users' => ['id']]);
array_shift($state['arsse_users']['rows']);
2019-06-21 22:52:27 +00:00
$this->compareExpectations(static::$drv, $state);
}
2017-08-29 14:50:31 +00:00
public function testRemoveAMissingUser() {
$this->assertException("doesNotExist", "User");
Arsse::$db->userRemove("john.doe@example.org");
}
2018-10-26 18:58:04 +00:00
2017-08-29 14:50:31 +00:00
public function testRemoveAUserWithoutAuthority() {
2019-09-05 14:03:32 +00:00
\Phake::when(Arsse::$user)->authorize->thenReturn(false);
$this->assertException("notAuthorized", "User", "ExceptionAuthz");
Arsse::$db->userRemove("admin@example.net");
}
2017-08-29 14:50:31 +00:00
public function testListAllUsers() {
$users = ["admin@example.net", "jane.doe@example.com", "john.doe@example.com"];
$this->assertSame($users, Arsse::$db->userList());
2019-09-05 14:03:32 +00:00
\Phake::verify(Arsse::$user)->authorize("", "userList");
}
2017-08-29 14:50:31 +00:00
public function testListAllUsersWithoutAuthority() {
2019-09-05 14:03:32 +00:00
\Phake::when(Arsse::$user)->authorize->thenReturn(false);
$this->assertException("notAuthorized", "User", "ExceptionAuthz");
Arsse::$db->userList();
}
2018-10-26 18:58:04 +00:00
/**
* @depends testGetAPassword
*/
2017-08-29 14:50:31 +00:00
public function testSetAPassword() {
$user = "john.doe@example.com";
$pass = "secret";
$this->assertEquals("", Arsse::$db->userPasswordGet($user));
$this->assertTrue(Arsse::$db->userPasswordSet($user, $pass));
$hash = Arsse::$db->userPasswordGet($user);
$this->assertNotEquals("", $hash);
2019-09-05 14:03:32 +00:00
\Phake::verify(Arsse::$user)->authorize($user, "userPasswordSet");
$this->assertTrue(password_verify($pass, $hash), "Failed verifying password of $user '$pass' against hash '$hash'.");
}
public function testUnsetAPassword() {
$user = "john.doe@example.com";
$this->assertEquals("", Arsse::$db->userPasswordGet($user));
$this->assertTrue(Arsse::$db->userPasswordSet($user, null));
$this->assertNull(Arsse::$db->userPasswordGet($user));
}
2017-08-29 14:50:31 +00:00
public function testSetThePasswordOfAMissingUser() {
$this->assertException("doesNotExist", "User");
Arsse::$db->userPasswordSet("john.doe@example.org", "secret");
}
2018-10-26 18:58:04 +00:00
2017-08-29 14:50:31 +00:00
public function testSetAPasswordWithoutAuthority() {
2019-09-05 14:03:32 +00:00
\Phake::when(Arsse::$user)->authorize->thenReturn(false);
$this->assertException("notAuthorized", "User", "ExceptionAuthz");
Arsse::$db->userPasswordSet("john.doe@example.com", "secret");
}
2017-08-29 14:50:31 +00:00
}