Chris@1295
|
1 # Redmine - project management software
|
Chris@1295
|
2 # Copyright (C) 2006-2012 Jean-Philippe Lang
|
Chris@1295
|
3 #
|
Chris@1295
|
4 # This program is free software; you can redistribute it and/or
|
Chris@1295
|
5 # modify it under the terms of the GNU General Public License
|
Chris@1295
|
6 # as published by the Free Software Foundation; either version 2
|
Chris@1295
|
7 # of the License, or (at your option) any later version.
|
Chris@1295
|
8 #
|
Chris@1295
|
9 # This program is distributed in the hope that it will be useful,
|
Chris@1295
|
10 # but WITHOUT ANY WARRANTY; without even the implied warranty of
|
Chris@1295
|
11 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
Chris@1295
|
12 # GNU General Public License for more details.
|
Chris@1295
|
13 #
|
Chris@1295
|
14 # You should have received a copy of the GNU General Public License
|
Chris@1295
|
15 # along with this program; if not, write to the Free Software
|
Chris@1295
|
16 # Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
|
Chris@1295
|
17
|
Chris@1295
|
18 require File.expand_path('../../test_helper', __FILE__)
|
Chris@1295
|
19
|
Chris@1295
|
20 class UserTest < ActiveSupport::TestCase
|
Chris@1295
|
21 fixtures :users, :members, :projects, :roles, :member_roles, :auth_sources,
|
Chris@1295
|
22 :trackers, :issue_statuses,
|
Chris@1295
|
23 :projects_trackers,
|
Chris@1295
|
24 :watchers,
|
Chris@1295
|
25 :issue_categories, :enumerations, :issues,
|
Chris@1295
|
26 :journals, :journal_details,
|
Chris@1295
|
27 :groups_users,
|
Chris@1295
|
28 :enabled_modules,
|
Chris@1295
|
29 :workflows
|
Chris@1295
|
30
|
Chris@1295
|
31 def setup
|
Chris@1295
|
32 @admin = User.find(1)
|
Chris@1295
|
33 @jsmith = User.find(2)
|
Chris@1295
|
34 @dlopper = User.find(3)
|
Chris@1295
|
35 end
|
Chris@1295
|
36
|
Chris@1295
|
37 def test_generate
|
Chris@1295
|
38 User.generate!(:firstname => 'Testing connection')
|
Chris@1295
|
39 User.generate!(:firstname => 'Testing connection')
|
Chris@1295
|
40 assert_equal 2, User.count(:all, :conditions => {:firstname => 'Testing connection'})
|
Chris@1295
|
41 end
|
Chris@1295
|
42
|
Chris@1295
|
43 def test_truth
|
Chris@1295
|
44 assert_kind_of User, @jsmith
|
Chris@1295
|
45 end
|
Chris@1295
|
46
|
Chris@1295
|
47 def test_mail_should_be_stripped
|
Chris@1295
|
48 u = User.new
|
Chris@1295
|
49 u.mail = " foo@bar.com "
|
Chris@1295
|
50 assert_equal "foo@bar.com", u.mail
|
Chris@1295
|
51 end
|
Chris@1295
|
52
|
Chris@1295
|
53 def test_mail_validation
|
Chris@1295
|
54 u = User.new
|
Chris@1295
|
55 u.mail = ''
|
Chris@1295
|
56 assert !u.valid?
|
Chris@1295
|
57 assert_include I18n.translate('activerecord.errors.messages.blank'), u.errors[:mail]
|
Chris@1295
|
58 end
|
Chris@1295
|
59
|
Chris@1295
|
60 def test_login_length_validation
|
Chris@1295
|
61 user = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
|
Chris@1295
|
62 user.login = "x" * (User::LOGIN_LENGTH_LIMIT+1)
|
Chris@1295
|
63 assert !user.valid?
|
Chris@1295
|
64
|
Chris@1295
|
65 user.login = "x" * (User::LOGIN_LENGTH_LIMIT)
|
Chris@1295
|
66 assert user.valid?
|
Chris@1295
|
67 assert user.save
|
Chris@1295
|
68 end
|
Chris@1295
|
69
|
Chris@1295
|
70 def test_create
|
Chris@1295
|
71 user = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
|
Chris@1295
|
72
|
Chris@1295
|
73 user.login = "jsmith"
|
Chris@1295
|
74 user.password, user.password_confirmation = "password", "password"
|
Chris@1295
|
75 # login uniqueness
|
Chris@1295
|
76 assert !user.save
|
Chris@1295
|
77 assert_equal 1, user.errors.count
|
Chris@1295
|
78
|
Chris@1295
|
79 user.login = "newuser"
|
Chris@1295
|
80 user.password, user.password_confirmation = "password", "pass"
|
Chris@1295
|
81 # password confirmation
|
Chris@1295
|
82 assert !user.save
|
Chris@1295
|
83 assert_equal 1, user.errors.count
|
Chris@1295
|
84
|
Chris@1295
|
85 user.password, user.password_confirmation = "password", "password"
|
Chris@1295
|
86 assert user.save
|
Chris@1295
|
87 end
|
Chris@1295
|
88
|
Chris@1295
|
89 def test_user_before_create_should_set_the_mail_notification_to_the_default_setting
|
Chris@1295
|
90 @user1 = User.generate!
|
Chris@1295
|
91 assert_equal 'only_my_events', @user1.mail_notification
|
Chris@1295
|
92 with_settings :default_notification_option => 'all' do
|
Chris@1295
|
93 @user2 = User.generate!
|
Chris@1295
|
94 assert_equal 'all', @user2.mail_notification
|
Chris@1295
|
95 end
|
Chris@1295
|
96 end
|
Chris@1295
|
97
|
Chris@1295
|
98 def test_user_login_should_be_case_insensitive
|
Chris@1295
|
99 u = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
|
Chris@1295
|
100 u.login = 'newuser'
|
Chris@1295
|
101 u.password, u.password_confirmation = "password", "password"
|
Chris@1295
|
102 assert u.save
|
Chris@1295
|
103 u = User.new(:firstname => "Similar", :lastname => "User", :mail => "similaruser@somenet.foo")
|
Chris@1295
|
104 u.login = 'NewUser'
|
Chris@1295
|
105 u.password, u.password_confirmation = "password", "password"
|
Chris@1295
|
106 assert !u.save
|
Chris@1295
|
107 assert_include I18n.translate('activerecord.errors.messages.taken'), u.errors[:login]
|
Chris@1295
|
108 end
|
Chris@1295
|
109
|
Chris@1295
|
110 def test_mail_uniqueness_should_not_be_case_sensitive
|
Chris@1295
|
111 u = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
|
Chris@1295
|
112 u.login = 'newuser1'
|
Chris@1295
|
113 u.password, u.password_confirmation = "password", "password"
|
Chris@1295
|
114 assert u.save
|
Chris@1295
|
115
|
Chris@1295
|
116 u = User.new(:firstname => "new", :lastname => "user", :mail => "newUser@Somenet.foo")
|
Chris@1295
|
117 u.login = 'newuser2'
|
Chris@1295
|
118 u.password, u.password_confirmation = "password", "password"
|
Chris@1295
|
119 assert !u.save
|
Chris@1295
|
120 assert_include I18n.translate('activerecord.errors.messages.taken'), u.errors[:mail]
|
Chris@1295
|
121 end
|
Chris@1295
|
122
|
Chris@1295
|
123 def test_update
|
Chris@1295
|
124 assert_equal "admin", @admin.login
|
Chris@1295
|
125 @admin.login = "john"
|
Chris@1295
|
126 assert @admin.save, @admin.errors.full_messages.join("; ")
|
Chris@1295
|
127 @admin.reload
|
Chris@1295
|
128 assert_equal "john", @admin.login
|
Chris@1295
|
129 end
|
Chris@1295
|
130
|
Chris@1295
|
131 def test_update_should_not_fail_for_legacy_user_with_different_case_logins
|
Chris@1295
|
132 u1 = User.new(:firstname => "new", :lastname => "user", :mail => "newuser1@somenet.foo")
|
Chris@1295
|
133 u1.login = 'newuser1'
|
Chris@1295
|
134 assert u1.save
|
Chris@1295
|
135
|
Chris@1295
|
136 u2 = User.new(:firstname => "new", :lastname => "user", :mail => "newuser2@somenet.foo")
|
Chris@1295
|
137 u2.login = 'newuser1'
|
Chris@1295
|
138 assert u2.save(:validate => false)
|
Chris@1295
|
139
|
Chris@1295
|
140 user = User.find(u2.id)
|
Chris@1295
|
141 user.firstname = "firstname"
|
Chris@1295
|
142 assert user.save, "Save failed"
|
Chris@1295
|
143 end
|
Chris@1295
|
144
|
Chris@1295
|
145 def test_destroy_should_delete_members_and_roles
|
Chris@1295
|
146 members = Member.find_all_by_user_id(2)
|
Chris@1295
|
147 ms = members.size
|
Chris@1295
|
148 rs = members.collect(&:roles).flatten.size
|
Chris@1295
|
149
|
Chris@1295
|
150 assert_difference 'Member.count', - ms do
|
Chris@1295
|
151 assert_difference 'MemberRole.count', - rs do
|
Chris@1295
|
152 User.find(2).destroy
|
Chris@1295
|
153 end
|
Chris@1295
|
154 end
|
Chris@1295
|
155
|
Chris@1295
|
156 assert_nil User.find_by_id(2)
|
Chris@1295
|
157 assert Member.find_all_by_user_id(2).empty?
|
Chris@1295
|
158 end
|
Chris@1295
|
159
|
Chris@1295
|
160 def test_destroy_should_update_attachments
|
Chris@1295
|
161 attachment = Attachment.create!(:container => Project.find(1),
|
Chris@1295
|
162 :file => uploaded_test_file("testfile.txt", "text/plain"),
|
Chris@1295
|
163 :author_id => 2)
|
Chris@1295
|
164
|
Chris@1295
|
165 User.find(2).destroy
|
Chris@1295
|
166 assert_nil User.find_by_id(2)
|
Chris@1295
|
167 assert_equal User.anonymous, attachment.reload.author
|
Chris@1295
|
168 end
|
Chris@1295
|
169
|
Chris@1295
|
170 def test_destroy_should_update_comments
|
Chris@1295
|
171 comment = Comment.create!(
|
Chris@1295
|
172 :commented => News.create!(:project_id => 1, :author_id => 1, :title => 'foo', :description => 'foo'),
|
Chris@1295
|
173 :author => User.find(2),
|
Chris@1295
|
174 :comments => 'foo'
|
Chris@1295
|
175 )
|
Chris@1295
|
176
|
Chris@1295
|
177 User.find(2).destroy
|
Chris@1295
|
178 assert_nil User.find_by_id(2)
|
Chris@1295
|
179 assert_equal User.anonymous, comment.reload.author
|
Chris@1295
|
180 end
|
Chris@1295
|
181
|
Chris@1295
|
182 def test_destroy_should_update_issues
|
Chris@1295
|
183 issue = Issue.create!(:project_id => 1, :author_id => 2, :tracker_id => 1, :subject => 'foo')
|
Chris@1295
|
184
|
Chris@1295
|
185 User.find(2).destroy
|
Chris@1295
|
186 assert_nil User.find_by_id(2)
|
Chris@1295
|
187 assert_equal User.anonymous, issue.reload.author
|
Chris@1295
|
188 end
|
Chris@1295
|
189
|
Chris@1295
|
190 def test_destroy_should_unassign_issues
|
Chris@1295
|
191 issue = Issue.create!(:project_id => 1, :author_id => 1, :tracker_id => 1, :subject => 'foo', :assigned_to_id => 2)
|
Chris@1295
|
192
|
Chris@1295
|
193 User.find(2).destroy
|
Chris@1295
|
194 assert_nil User.find_by_id(2)
|
Chris@1295
|
195 assert_nil issue.reload.assigned_to
|
Chris@1295
|
196 end
|
Chris@1295
|
197
|
Chris@1295
|
198 def test_destroy_should_update_journals
|
Chris@1295
|
199 issue = Issue.create!(:project_id => 1, :author_id => 2, :tracker_id => 1, :subject => 'foo')
|
Chris@1295
|
200 issue.init_journal(User.find(2), "update")
|
Chris@1295
|
201 issue.save!
|
Chris@1295
|
202
|
Chris@1295
|
203 User.find(2).destroy
|
Chris@1295
|
204 assert_nil User.find_by_id(2)
|
Chris@1295
|
205 assert_equal User.anonymous, issue.journals.first.reload.user
|
Chris@1295
|
206 end
|
Chris@1295
|
207
|
Chris@1295
|
208 def test_destroy_should_update_journal_details_old_value
|
Chris@1295
|
209 issue = Issue.create!(:project_id => 1, :author_id => 1, :tracker_id => 1, :subject => 'foo', :assigned_to_id => 2)
|
Chris@1295
|
210 issue.init_journal(User.find(1), "update")
|
Chris@1295
|
211 issue.assigned_to_id = nil
|
Chris@1295
|
212 assert_difference 'JournalDetail.count' do
|
Chris@1295
|
213 issue.save!
|
Chris@1295
|
214 end
|
Chris@1295
|
215 journal_detail = JournalDetail.first(:order => 'id DESC')
|
Chris@1295
|
216 assert_equal '2', journal_detail.old_value
|
Chris@1295
|
217
|
Chris@1295
|
218 User.find(2).destroy
|
Chris@1295
|
219 assert_nil User.find_by_id(2)
|
Chris@1295
|
220 assert_equal User.anonymous.id.to_s, journal_detail.reload.old_value
|
Chris@1295
|
221 end
|
Chris@1295
|
222
|
Chris@1295
|
223 def test_destroy_should_update_journal_details_value
|
Chris@1295
|
224 issue = Issue.create!(:project_id => 1, :author_id => 1, :tracker_id => 1, :subject => 'foo')
|
Chris@1295
|
225 issue.init_journal(User.find(1), "update")
|
Chris@1295
|
226 issue.assigned_to_id = 2
|
Chris@1295
|
227 assert_difference 'JournalDetail.count' do
|
Chris@1295
|
228 issue.save!
|
Chris@1295
|
229 end
|
Chris@1295
|
230 journal_detail = JournalDetail.first(:order => 'id DESC')
|
Chris@1295
|
231 assert_equal '2', journal_detail.value
|
Chris@1295
|
232
|
Chris@1295
|
233 User.find(2).destroy
|
Chris@1295
|
234 assert_nil User.find_by_id(2)
|
Chris@1295
|
235 assert_equal User.anonymous.id.to_s, journal_detail.reload.value
|
Chris@1295
|
236 end
|
Chris@1295
|
237
|
Chris@1295
|
238 def test_destroy_should_update_messages
|
Chris@1295
|
239 board = Board.create!(:project_id => 1, :name => 'Board', :description => 'Board')
|
Chris@1295
|
240 message = Message.create!(:board_id => board.id, :author_id => 2, :subject => 'foo', :content => 'foo')
|
Chris@1295
|
241
|
Chris@1295
|
242 User.find(2).destroy
|
Chris@1295
|
243 assert_nil User.find_by_id(2)
|
Chris@1295
|
244 assert_equal User.anonymous, message.reload.author
|
Chris@1295
|
245 end
|
Chris@1295
|
246
|
Chris@1295
|
247 def test_destroy_should_update_news
|
Chris@1295
|
248 news = News.create!(:project_id => 1, :author_id => 2, :title => 'foo', :description => 'foo')
|
Chris@1295
|
249
|
Chris@1295
|
250 User.find(2).destroy
|
Chris@1295
|
251 assert_nil User.find_by_id(2)
|
Chris@1295
|
252 assert_equal User.anonymous, news.reload.author
|
Chris@1295
|
253 end
|
Chris@1295
|
254
|
Chris@1295
|
255 def test_destroy_should_delete_private_queries
|
Chris@1295
|
256 query = Query.new(:name => 'foo', :is_public => false)
|
Chris@1295
|
257 query.project_id = 1
|
Chris@1295
|
258 query.user_id = 2
|
Chris@1295
|
259 query.save!
|
Chris@1295
|
260
|
Chris@1295
|
261 User.find(2).destroy
|
Chris@1295
|
262 assert_nil User.find_by_id(2)
|
Chris@1295
|
263 assert_nil Query.find_by_id(query.id)
|
Chris@1295
|
264 end
|
Chris@1295
|
265
|
Chris@1295
|
266 def test_destroy_should_update_public_queries
|
Chris@1295
|
267 query = Query.new(:name => 'foo', :is_public => true)
|
Chris@1295
|
268 query.project_id = 1
|
Chris@1295
|
269 query.user_id = 2
|
Chris@1295
|
270 query.save!
|
Chris@1295
|
271
|
Chris@1295
|
272 User.find(2).destroy
|
Chris@1295
|
273 assert_nil User.find_by_id(2)
|
Chris@1295
|
274 assert_equal User.anonymous, query.reload.user
|
Chris@1295
|
275 end
|
Chris@1295
|
276
|
Chris@1295
|
277 def test_destroy_should_update_time_entries
|
Chris@1295
|
278 entry = TimeEntry.new(:hours => '2', :spent_on => Date.today, :activity => TimeEntryActivity.create!(:name => 'foo'))
|
Chris@1295
|
279 entry.project_id = 1
|
Chris@1295
|
280 entry.user_id = 2
|
Chris@1295
|
281 entry.save!
|
Chris@1295
|
282
|
Chris@1295
|
283 User.find(2).destroy
|
Chris@1295
|
284 assert_nil User.find_by_id(2)
|
Chris@1295
|
285 assert_equal User.anonymous, entry.reload.user
|
Chris@1295
|
286 end
|
Chris@1295
|
287
|
Chris@1295
|
288 def test_destroy_should_delete_tokens
|
Chris@1295
|
289 token = Token.create!(:user_id => 2, :value => 'foo')
|
Chris@1295
|
290
|
Chris@1295
|
291 User.find(2).destroy
|
Chris@1295
|
292 assert_nil User.find_by_id(2)
|
Chris@1295
|
293 assert_nil Token.find_by_id(token.id)
|
Chris@1295
|
294 end
|
Chris@1295
|
295
|
Chris@1295
|
296 def test_destroy_should_delete_watchers
|
Chris@1295
|
297 issue = Issue.create!(:project_id => 1, :author_id => 1, :tracker_id => 1, :subject => 'foo')
|
Chris@1295
|
298 watcher = Watcher.create!(:user_id => 2, :watchable => issue)
|
Chris@1295
|
299
|
Chris@1295
|
300 User.find(2).destroy
|
Chris@1295
|
301 assert_nil User.find_by_id(2)
|
Chris@1295
|
302 assert_nil Watcher.find_by_id(watcher.id)
|
Chris@1295
|
303 end
|
Chris@1295
|
304
|
Chris@1295
|
305 def test_destroy_should_update_wiki_contents
|
Chris@1295
|
306 wiki_content = WikiContent.create!(
|
Chris@1295
|
307 :text => 'foo',
|
Chris@1295
|
308 :author_id => 2,
|
Chris@1295
|
309 :page => WikiPage.create!(:title => 'Foo', :wiki => Wiki.create!(:project_id => 1, :start_page => 'Start'))
|
Chris@1295
|
310 )
|
Chris@1295
|
311 wiki_content.text = 'bar'
|
Chris@1295
|
312 assert_difference 'WikiContent::Version.count' do
|
Chris@1295
|
313 wiki_content.save!
|
Chris@1295
|
314 end
|
Chris@1295
|
315
|
Chris@1295
|
316 User.find(2).destroy
|
Chris@1295
|
317 assert_nil User.find_by_id(2)
|
Chris@1295
|
318 assert_equal User.anonymous, wiki_content.reload.author
|
Chris@1295
|
319 wiki_content.versions.each do |version|
|
Chris@1295
|
320 assert_equal User.anonymous, version.reload.author
|
Chris@1295
|
321 end
|
Chris@1295
|
322 end
|
Chris@1295
|
323
|
Chris@1295
|
324 def test_destroy_should_nullify_issue_categories
|
Chris@1295
|
325 category = IssueCategory.create!(:project_id => 1, :assigned_to_id => 2, :name => 'foo')
|
Chris@1295
|
326
|
Chris@1295
|
327 User.find(2).destroy
|
Chris@1295
|
328 assert_nil User.find_by_id(2)
|
Chris@1295
|
329 assert_nil category.reload.assigned_to_id
|
Chris@1295
|
330 end
|
Chris@1295
|
331
|
Chris@1295
|
332 def test_destroy_should_nullify_changesets
|
Chris@1295
|
333 changeset = Changeset.create!(
|
Chris@1295
|
334 :repository => Repository::Subversion.create!(
|
Chris@1295
|
335 :project_id => 1,
|
Chris@1295
|
336 :url => 'file:///tmp',
|
Chris@1295
|
337 :identifier => 'tmp'
|
Chris@1295
|
338 ),
|
Chris@1295
|
339 :revision => '12',
|
Chris@1295
|
340 :committed_on => Time.now,
|
Chris@1295
|
341 :committer => 'jsmith'
|
Chris@1295
|
342 )
|
Chris@1295
|
343 assert_equal 2, changeset.user_id
|
Chris@1295
|
344
|
Chris@1295
|
345 User.find(2).destroy
|
Chris@1295
|
346 assert_nil User.find_by_id(2)
|
Chris@1295
|
347 assert_nil changeset.reload.user_id
|
Chris@1295
|
348 end
|
Chris@1295
|
349
|
Chris@1295
|
350 def test_anonymous_user_should_not_be_destroyable
|
Chris@1295
|
351 assert_no_difference 'User.count' do
|
Chris@1295
|
352 assert_equal false, User.anonymous.destroy
|
Chris@1295
|
353 end
|
Chris@1295
|
354 end
|
Chris@1295
|
355
|
Chris@1295
|
356 def test_validate_login_presence
|
Chris@1295
|
357 @admin.login = ""
|
Chris@1295
|
358 assert !@admin.save
|
Chris@1295
|
359 assert_equal 1, @admin.errors.count
|
Chris@1295
|
360 end
|
Chris@1295
|
361
|
Chris@1295
|
362 def test_validate_mail_notification_inclusion
|
Chris@1295
|
363 u = User.new
|
Chris@1295
|
364 u.mail_notification = 'foo'
|
Chris@1295
|
365 u.save
|
Chris@1295
|
366 assert_not_nil u.errors[:mail_notification]
|
Chris@1295
|
367 end
|
Chris@1295
|
368
|
Chris@1295
|
369 context "User#try_to_login" do
|
Chris@1295
|
370 should "fall-back to case-insensitive if user login is not found as-typed." do
|
Chris@1295
|
371 user = User.try_to_login("AdMin", "admin")
|
Chris@1295
|
372 assert_kind_of User, user
|
Chris@1295
|
373 assert_equal "admin", user.login
|
Chris@1295
|
374 end
|
Chris@1295
|
375
|
Chris@1295
|
376 should "select the exact matching user first" do
|
Chris@1295
|
377 case_sensitive_user = User.generate! do |user|
|
Chris@1295
|
378 user.password = "admin123"
|
Chris@1295
|
379 end
|
Chris@1295
|
380 # bypass validations to make it appear like existing data
|
Chris@1295
|
381 case_sensitive_user.update_attribute(:login, 'ADMIN')
|
Chris@1295
|
382
|
Chris@1295
|
383 user = User.try_to_login("ADMIN", "admin123")
|
Chris@1295
|
384 assert_kind_of User, user
|
Chris@1295
|
385 assert_equal "ADMIN", user.login
|
Chris@1295
|
386
|
Chris@1295
|
387 end
|
Chris@1295
|
388 end
|
Chris@1295
|
389
|
Chris@1295
|
390 def test_password
|
Chris@1295
|
391 user = User.try_to_login("admin", "admin")
|
Chris@1295
|
392 assert_kind_of User, user
|
Chris@1295
|
393 assert_equal "admin", user.login
|
Chris@1295
|
394 user.password = "hello123"
|
Chris@1295
|
395 assert user.save
|
Chris@1295
|
396
|
Chris@1295
|
397 user = User.try_to_login("admin", "hello123")
|
Chris@1295
|
398 assert_kind_of User, user
|
Chris@1295
|
399 assert_equal "admin", user.login
|
Chris@1295
|
400 end
|
Chris@1295
|
401
|
Chris@1295
|
402 def test_validate_password_length
|
Chris@1295
|
403 with_settings :password_min_length => '100' do
|
Chris@1295
|
404 user = User.new(:firstname => "new100", :lastname => "user100", :mail => "newuser100@somenet.foo")
|
Chris@1295
|
405 user.login = "newuser100"
|
Chris@1295
|
406 user.password, user.password_confirmation = "password100", "password100"
|
Chris@1295
|
407 assert !user.save
|
Chris@1295
|
408 assert_equal 1, user.errors.count
|
Chris@1295
|
409 end
|
Chris@1295
|
410 end
|
Chris@1295
|
411
|
Chris@1295
|
412 def test_name_format
|
Chris@1295
|
413 assert_equal 'John S.', @jsmith.name(:firstname_lastinitial)
|
Chris@1295
|
414 assert_equal 'Smith, John', @jsmith.name(:lastname_coma_firstname)
|
Chris@1295
|
415 with_settings :user_format => :firstname_lastname do
|
Chris@1295
|
416 assert_equal 'John Smith', @jsmith.reload.name
|
Chris@1295
|
417 end
|
Chris@1295
|
418 with_settings :user_format => :username do
|
Chris@1295
|
419 assert_equal 'jsmith', @jsmith.reload.name
|
Chris@1295
|
420 end
|
Chris@1295
|
421 with_settings :user_format => :lastname do
|
Chris@1295
|
422 assert_equal 'Smith', @jsmith.reload.name
|
Chris@1295
|
423 end
|
Chris@1295
|
424 end
|
Chris@1295
|
425
|
Chris@1295
|
426 def test_today_should_return_the_day_according_to_user_time_zone
|
Chris@1295
|
427 preference = User.find(1).pref
|
Chris@1295
|
428 date = Date.new(2012, 05, 15)
|
Chris@1295
|
429 time = Time.gm(2012, 05, 15, 23, 30).utc # 2012-05-15 23:30 UTC
|
Chris@1295
|
430 Date.stubs(:today).returns(date)
|
Chris@1295
|
431 Time.stubs(:now).returns(time)
|
Chris@1295
|
432
|
Chris@1295
|
433 preference.update_attribute :time_zone, 'Baku' # UTC+4
|
Chris@1295
|
434 assert_equal '2012-05-16', User.find(1).today.to_s
|
Chris@1295
|
435
|
Chris@1295
|
436 preference.update_attribute :time_zone, 'La Paz' # UTC-4
|
Chris@1295
|
437 assert_equal '2012-05-15', User.find(1).today.to_s
|
Chris@1295
|
438
|
Chris@1295
|
439 preference.update_attribute :time_zone, ''
|
Chris@1295
|
440 assert_equal '2012-05-15', User.find(1).today.to_s
|
Chris@1295
|
441 end
|
Chris@1295
|
442
|
Chris@1295
|
443 def test_time_to_date_should_return_the_date_according_to_user_time_zone
|
Chris@1295
|
444 preference = User.find(1).pref
|
Chris@1295
|
445 time = Time.gm(2012, 05, 15, 23, 30).utc # 2012-05-15 23:30 UTC
|
Chris@1295
|
446
|
Chris@1295
|
447 preference.update_attribute :time_zone, 'Baku' # UTC+4
|
Chris@1295
|
448 assert_equal '2012-05-16', User.find(1).time_to_date(time).to_s
|
Chris@1295
|
449
|
Chris@1295
|
450 preference.update_attribute :time_zone, 'La Paz' # UTC-4
|
Chris@1295
|
451 assert_equal '2012-05-15', User.find(1).time_to_date(time).to_s
|
Chris@1295
|
452
|
Chris@1295
|
453 preference.update_attribute :time_zone, ''
|
Chris@1295
|
454 assert_equal '2012-05-15', User.find(1).time_to_date(time).to_s
|
Chris@1295
|
455 end
|
Chris@1295
|
456
|
Chris@1295
|
457 def test_fields_for_order_statement_should_return_fields_according_user_format_setting
|
Chris@1295
|
458 with_settings :user_format => 'lastname_coma_firstname' do
|
Chris@1295
|
459 assert_equal ['users.lastname', 'users.firstname', 'users.id'], User.fields_for_order_statement
|
Chris@1295
|
460 end
|
Chris@1295
|
461 end
|
Chris@1295
|
462
|
Chris@1295
|
463 def test_fields_for_order_statement_width_table_name_should_prepend_table_name
|
Chris@1295
|
464 with_settings :user_format => 'lastname_firstname' do
|
Chris@1295
|
465 assert_equal ['authors.lastname', 'authors.firstname', 'authors.id'], User.fields_for_order_statement('authors')
|
Chris@1295
|
466 end
|
Chris@1295
|
467 end
|
Chris@1295
|
468
|
Chris@1295
|
469 def test_fields_for_order_statement_with_blank_format_should_return_default
|
Chris@1295
|
470 with_settings :user_format => '' do
|
Chris@1295
|
471 assert_equal ['users.firstname', 'users.lastname', 'users.id'], User.fields_for_order_statement
|
Chris@1295
|
472 end
|
Chris@1295
|
473 end
|
Chris@1295
|
474
|
Chris@1295
|
475 def test_fields_for_order_statement_with_invalid_format_should_return_default
|
Chris@1295
|
476 with_settings :user_format => 'foo' do
|
Chris@1295
|
477 assert_equal ['users.firstname', 'users.lastname', 'users.id'], User.fields_for_order_statement
|
Chris@1295
|
478 end
|
Chris@1295
|
479 end
|
Chris@1295
|
480
|
Chris@1295
|
481 def test_lock
|
Chris@1295
|
482 user = User.try_to_login("jsmith", "jsmith")
|
Chris@1295
|
483 assert_equal @jsmith, user
|
Chris@1295
|
484
|
Chris@1295
|
485 @jsmith.status = User::STATUS_LOCKED
|
Chris@1295
|
486 assert @jsmith.save
|
Chris@1295
|
487
|
Chris@1295
|
488 user = User.try_to_login("jsmith", "jsmith")
|
Chris@1295
|
489 assert_equal nil, user
|
Chris@1295
|
490 end
|
Chris@1295
|
491
|
Chris@1295
|
492 context ".try_to_login" do
|
Chris@1295
|
493 context "with good credentials" do
|
Chris@1295
|
494 should "return the user" do
|
Chris@1295
|
495 user = User.try_to_login("admin", "admin")
|
Chris@1295
|
496 assert_kind_of User, user
|
Chris@1295
|
497 assert_equal "admin", user.login
|
Chris@1295
|
498 end
|
Chris@1295
|
499 end
|
Chris@1295
|
500
|
Chris@1295
|
501 context "with wrong credentials" do
|
Chris@1295
|
502 should "return nil" do
|
Chris@1295
|
503 assert_nil User.try_to_login("admin", "foo")
|
Chris@1295
|
504 end
|
Chris@1295
|
505 end
|
Chris@1295
|
506 end
|
Chris@1295
|
507
|
Chris@1295
|
508 if ldap_configured?
|
Chris@1295
|
509 context "#try_to_login using LDAP" do
|
Chris@1295
|
510 context "with failed connection to the LDAP server" do
|
Chris@1295
|
511 should "return nil" do
|
Chris@1295
|
512 @auth_source = AuthSourceLdap.find(1)
|
Chris@1295
|
513 AuthSource.any_instance.stubs(:initialize_ldap_con).raises(Net::LDAP::LdapError, 'Cannot connect')
|
Chris@1295
|
514
|
Chris@1295
|
515 assert_equal nil, User.try_to_login('edavis', 'wrong')
|
Chris@1295
|
516 end
|
Chris@1295
|
517 end
|
Chris@1295
|
518
|
Chris@1295
|
519 context "with an unsuccessful authentication" do
|
Chris@1295
|
520 should "return nil" do
|
Chris@1295
|
521 assert_equal nil, User.try_to_login('edavis', 'wrong')
|
Chris@1295
|
522 end
|
Chris@1295
|
523 end
|
Chris@1295
|
524
|
Chris@1295
|
525 context "binding with user's account" do
|
Chris@1295
|
526 setup do
|
Chris@1295
|
527 @auth_source = AuthSourceLdap.find(1)
|
Chris@1295
|
528 @auth_source.account = "uid=$login,ou=Person,dc=redmine,dc=org"
|
Chris@1295
|
529 @auth_source.account_password = ''
|
Chris@1295
|
530 @auth_source.save!
|
Chris@1295
|
531
|
Chris@1295
|
532 @ldap_user = User.new(:mail => 'example1@redmine.org', :firstname => 'LDAP', :lastname => 'user', :auth_source_id => 1)
|
Chris@1295
|
533 @ldap_user.login = 'example1'
|
Chris@1295
|
534 @ldap_user.save!
|
Chris@1295
|
535 end
|
Chris@1295
|
536
|
Chris@1295
|
537 context "with a successful authentication" do
|
Chris@1295
|
538 should "return the user" do
|
Chris@1295
|
539 assert_equal @ldap_user, User.try_to_login('example1', '123456')
|
Chris@1295
|
540 end
|
Chris@1295
|
541 end
|
Chris@1295
|
542
|
Chris@1295
|
543 context "with an unsuccessful authentication" do
|
Chris@1295
|
544 should "return nil" do
|
Chris@1295
|
545 assert_nil User.try_to_login('example1', '11111')
|
Chris@1295
|
546 end
|
Chris@1295
|
547 end
|
Chris@1295
|
548 end
|
Chris@1295
|
549
|
Chris@1295
|
550 context "on the fly registration" do
|
Chris@1295
|
551 setup do
|
Chris@1295
|
552 @auth_source = AuthSourceLdap.find(1)
|
Chris@1295
|
553 @auth_source.update_attribute :onthefly_register, true
|
Chris@1295
|
554 end
|
Chris@1295
|
555
|
Chris@1295
|
556 context "with a successful authentication" do
|
Chris@1295
|
557 should "create a new user account if it doesn't exist" do
|
Chris@1295
|
558 assert_difference('User.count') do
|
Chris@1295
|
559 user = User.try_to_login('edavis', '123456')
|
Chris@1295
|
560 assert !user.admin?
|
Chris@1295
|
561 end
|
Chris@1295
|
562 end
|
Chris@1295
|
563
|
Chris@1295
|
564 should "retrieve existing user" do
|
Chris@1295
|
565 user = User.try_to_login('edavis', '123456')
|
Chris@1295
|
566 user.admin = true
|
Chris@1295
|
567 user.save!
|
Chris@1295
|
568
|
Chris@1295
|
569 assert_no_difference('User.count') do
|
Chris@1295
|
570 user = User.try_to_login('edavis', '123456')
|
Chris@1295
|
571 assert user.admin?
|
Chris@1295
|
572 end
|
Chris@1295
|
573 end
|
Chris@1295
|
574 end
|
Chris@1295
|
575
|
Chris@1295
|
576 context "binding with user's account" do
|
Chris@1295
|
577 setup do
|
Chris@1295
|
578 @auth_source = AuthSourceLdap.find(1)
|
Chris@1295
|
579 @auth_source.account = "uid=$login,ou=Person,dc=redmine,dc=org"
|
Chris@1295
|
580 @auth_source.account_password = ''
|
Chris@1295
|
581 @auth_source.save!
|
Chris@1295
|
582 end
|
Chris@1295
|
583
|
Chris@1295
|
584 context "with a successful authentication" do
|
Chris@1295
|
585 should "create a new user account if it doesn't exist" do
|
Chris@1295
|
586 assert_difference('User.count') do
|
Chris@1295
|
587 user = User.try_to_login('example1', '123456')
|
Chris@1295
|
588 assert_kind_of User, user
|
Chris@1295
|
589 end
|
Chris@1295
|
590 end
|
Chris@1295
|
591 end
|
Chris@1295
|
592
|
Chris@1295
|
593 context "with an unsuccessful authentication" do
|
Chris@1295
|
594 should "return nil" do
|
Chris@1295
|
595 assert_nil User.try_to_login('example1', '11111')
|
Chris@1295
|
596 end
|
Chris@1295
|
597 end
|
Chris@1295
|
598 end
|
Chris@1295
|
599 end
|
Chris@1295
|
600 end
|
Chris@1295
|
601
|
Chris@1295
|
602 else
|
Chris@1295
|
603 puts "Skipping LDAP tests."
|
Chris@1295
|
604 end
|
Chris@1295
|
605
|
Chris@1295
|
606 def test_create_anonymous
|
Chris@1295
|
607 AnonymousUser.delete_all
|
Chris@1295
|
608 anon = User.anonymous
|
Chris@1295
|
609 assert !anon.new_record?
|
Chris@1295
|
610 assert_kind_of AnonymousUser, anon
|
Chris@1295
|
611 end
|
Chris@1295
|
612
|
Chris@1295
|
613 def test_ensure_single_anonymous_user
|
Chris@1295
|
614 AnonymousUser.delete_all
|
Chris@1295
|
615 anon1 = User.anonymous
|
Chris@1295
|
616 assert !anon1.new_record?
|
Chris@1295
|
617 assert_kind_of AnonymousUser, anon1
|
Chris@1295
|
618 anon2 = AnonymousUser.create(
|
Chris@1295
|
619 :lastname => 'Anonymous', :firstname => '',
|
Chris@1295
|
620 :mail => '', :login => '', :status => 0)
|
Chris@1295
|
621 assert_equal 1, anon2.errors.count
|
Chris@1295
|
622 end
|
Chris@1295
|
623
|
Chris@1295
|
624 def test_rss_key
|
Chris@1295
|
625 assert_nil @jsmith.rss_token
|
Chris@1295
|
626 key = @jsmith.rss_key
|
Chris@1295
|
627 assert_equal 40, key.length
|
Chris@1295
|
628
|
Chris@1295
|
629 @jsmith.reload
|
Chris@1295
|
630 assert_equal key, @jsmith.rss_key
|
Chris@1295
|
631 end
|
Chris@1295
|
632
|
Chris@1295
|
633 def test_rss_key_should_not_be_generated_twice
|
Chris@1295
|
634 assert_difference 'Token.count', 1 do
|
Chris@1295
|
635 key1 = @jsmith.rss_key
|
Chris@1295
|
636 key2 = @jsmith.rss_key
|
Chris@1295
|
637 assert_equal key1, key2
|
Chris@1295
|
638 end
|
Chris@1295
|
639 end
|
Chris@1295
|
640
|
Chris@1295
|
641 def test_api_key_should_not_be_generated_twice
|
Chris@1295
|
642 assert_difference 'Token.count', 1 do
|
Chris@1295
|
643 key1 = @jsmith.api_key
|
Chris@1295
|
644 key2 = @jsmith.api_key
|
Chris@1295
|
645 assert_equal key1, key2
|
Chris@1295
|
646 end
|
Chris@1295
|
647 end
|
Chris@1295
|
648
|
Chris@1295
|
649 context "User#api_key" do
|
Chris@1295
|
650 should "generate a new one if the user doesn't have one" do
|
Chris@1295
|
651 user = User.generate!(:api_token => nil)
|
Chris@1295
|
652 assert_nil user.api_token
|
Chris@1295
|
653
|
Chris@1295
|
654 key = user.api_key
|
Chris@1295
|
655 assert_equal 40, key.length
|
Chris@1295
|
656 user.reload
|
Chris@1295
|
657 assert_equal key, user.api_key
|
Chris@1295
|
658 end
|
Chris@1295
|
659
|
Chris@1295
|
660 should "return the existing api token value" do
|
Chris@1295
|
661 user = User.generate!
|
Chris@1295
|
662 token = Token.create!(:action => 'api')
|
Chris@1295
|
663 user.api_token = token
|
Chris@1295
|
664 assert user.save
|
Chris@1295
|
665
|
Chris@1295
|
666 assert_equal token.value, user.api_key
|
Chris@1295
|
667 end
|
Chris@1295
|
668 end
|
Chris@1295
|
669
|
Chris@1295
|
670 context "User#find_by_api_key" do
|
Chris@1295
|
671 should "return nil if no matching key is found" do
|
Chris@1295
|
672 assert_nil User.find_by_api_key('zzzzzzzzz')
|
Chris@1295
|
673 end
|
Chris@1295
|
674
|
Chris@1295
|
675 should "return nil if the key is found for an inactive user" do
|
Chris@1295
|
676 user = User.generate!
|
Chris@1295
|
677 user.status = User::STATUS_LOCKED
|
Chris@1295
|
678 token = Token.create!(:action => 'api')
|
Chris@1295
|
679 user.api_token = token
|
Chris@1295
|
680 user.save
|
Chris@1295
|
681
|
Chris@1295
|
682 assert_nil User.find_by_api_key(token.value)
|
Chris@1295
|
683 end
|
Chris@1295
|
684
|
Chris@1295
|
685 should "return the user if the key is found for an active user" do
|
Chris@1295
|
686 user = User.generate!
|
Chris@1295
|
687 token = Token.create!(:action => 'api')
|
Chris@1295
|
688 user.api_token = token
|
Chris@1295
|
689 user.save
|
Chris@1295
|
690
|
Chris@1295
|
691 assert_equal user, User.find_by_api_key(token.value)
|
Chris@1295
|
692 end
|
Chris@1295
|
693 end
|
Chris@1295
|
694
|
Chris@1295
|
695 def test_default_admin_account_changed_should_return_false_if_account_was_not_changed
|
Chris@1295
|
696 user = User.find_by_login("admin")
|
Chris@1295
|
697 user.password = "admin"
|
Chris@1295
|
698 assert user.save(:validate => false)
|
Chris@1295
|
699
|
Chris@1295
|
700 assert_equal false, User.default_admin_account_changed?
|
Chris@1295
|
701 end
|
Chris@1295
|
702
|
Chris@1295
|
703 def test_default_admin_account_changed_should_return_true_if_password_was_changed
|
Chris@1295
|
704 user = User.find_by_login("admin")
|
Chris@1295
|
705 user.password = "newpassword"
|
Chris@1295
|
706 user.save!
|
Chris@1295
|
707
|
Chris@1295
|
708 assert_equal true, User.default_admin_account_changed?
|
Chris@1295
|
709 end
|
Chris@1295
|
710
|
Chris@1295
|
711 def test_default_admin_account_changed_should_return_true_if_account_is_disabled
|
Chris@1295
|
712 user = User.find_by_login("admin")
|
Chris@1295
|
713 user.password = "admin"
|
Chris@1295
|
714 user.status = User::STATUS_LOCKED
|
Chris@1295
|
715 assert user.save(:validate => false)
|
Chris@1295
|
716
|
Chris@1295
|
717 assert_equal true, User.default_admin_account_changed?
|
Chris@1295
|
718 end
|
Chris@1295
|
719
|
Chris@1295
|
720 def test_default_admin_account_changed_should_return_true_if_account_does_not_exist
|
Chris@1295
|
721 user = User.find_by_login("admin")
|
Chris@1295
|
722 user.destroy
|
Chris@1295
|
723
|
Chris@1295
|
724 assert_equal true, User.default_admin_account_changed?
|
Chris@1295
|
725 end
|
Chris@1295
|
726
|
Chris@1295
|
727 def test_roles_for_project
|
Chris@1295
|
728 # user with a role
|
Chris@1295
|
729 roles = @jsmith.roles_for_project(Project.find(1))
|
Chris@1295
|
730 assert_kind_of Role, roles.first
|
Chris@1295
|
731 assert_equal "Manager", roles.first.name
|
Chris@1295
|
732
|
Chris@1295
|
733 # user with no role
|
Chris@1295
|
734 assert_nil @dlopper.roles_for_project(Project.find(2)).detect {|role| role.member?}
|
Chris@1295
|
735 end
|
Chris@1295
|
736
|
Chris@1295
|
737 def test_projects_by_role_for_user_with_role
|
Chris@1295
|
738 user = User.find(2)
|
Chris@1295
|
739 assert_kind_of Hash, user.projects_by_role
|
Chris@1295
|
740 assert_equal 2, user.projects_by_role.size
|
Chris@1295
|
741 assert_equal [1,5], user.projects_by_role[Role.find(1)].collect(&:id).sort
|
Chris@1295
|
742 assert_equal [2], user.projects_by_role[Role.find(2)].collect(&:id).sort
|
Chris@1295
|
743 end
|
Chris@1295
|
744
|
Chris@1295
|
745 def test_accessing_projects_by_role_with_no_projects_should_return_an_empty_array
|
Chris@1295
|
746 user = User.find(2)
|
Chris@1295
|
747 assert_equal [], user.projects_by_role[Role.find(3)]
|
Chris@1295
|
748 # should not update the hash
|
Chris@1295
|
749 assert_nil user.projects_by_role.values.detect(&:blank?)
|
Chris@1295
|
750 end
|
Chris@1295
|
751
|
Chris@1295
|
752 def test_projects_by_role_for_user_with_no_role
|
Chris@1295
|
753 user = User.generate!
|
Chris@1295
|
754 assert_equal({}, user.projects_by_role)
|
Chris@1295
|
755 end
|
Chris@1295
|
756
|
Chris@1295
|
757 def test_projects_by_role_for_anonymous
|
Chris@1295
|
758 assert_equal({}, User.anonymous.projects_by_role)
|
Chris@1295
|
759 end
|
Chris@1295
|
760
|
Chris@1295
|
761 def test_valid_notification_options
|
Chris@1295
|
762 # without memberships
|
Chris@1295
|
763 assert_equal 5, User.find(7).valid_notification_options.size
|
Chris@1295
|
764 # with memberships
|
Chris@1295
|
765 assert_equal 6, User.find(2).valid_notification_options.size
|
Chris@1295
|
766 end
|
Chris@1295
|
767
|
Chris@1295
|
768 def test_valid_notification_options_class_method
|
Chris@1295
|
769 assert_equal 5, User.valid_notification_options.size
|
Chris@1295
|
770 assert_equal 5, User.valid_notification_options(User.find(7)).size
|
Chris@1295
|
771 assert_equal 6, User.valid_notification_options(User.find(2)).size
|
Chris@1295
|
772 end
|
Chris@1295
|
773
|
Chris@1295
|
774 def test_mail_notification_all
|
Chris@1295
|
775 @jsmith.mail_notification = 'all'
|
Chris@1295
|
776 @jsmith.notified_project_ids = []
|
Chris@1295
|
777 @jsmith.save
|
Chris@1295
|
778 @jsmith.reload
|
Chris@1295
|
779 assert @jsmith.projects.first.recipients.include?(@jsmith.mail)
|
Chris@1295
|
780 end
|
Chris@1295
|
781
|
Chris@1295
|
782 def test_mail_notification_selected
|
Chris@1295
|
783 @jsmith.mail_notification = 'selected'
|
Chris@1295
|
784 @jsmith.notified_project_ids = [1]
|
Chris@1295
|
785 @jsmith.save
|
Chris@1295
|
786 @jsmith.reload
|
Chris@1295
|
787 assert Project.find(1).recipients.include?(@jsmith.mail)
|
Chris@1295
|
788 end
|
Chris@1295
|
789
|
Chris@1295
|
790 def test_mail_notification_only_my_events
|
Chris@1295
|
791 @jsmith.mail_notification = 'only_my_events'
|
Chris@1295
|
792 @jsmith.notified_project_ids = []
|
Chris@1295
|
793 @jsmith.save
|
Chris@1295
|
794 @jsmith.reload
|
Chris@1295
|
795 assert !@jsmith.projects.first.recipients.include?(@jsmith.mail)
|
Chris@1295
|
796 end
|
Chris@1295
|
797
|
Chris@1295
|
798 def test_comments_sorting_preference
|
Chris@1295
|
799 assert !@jsmith.wants_comments_in_reverse_order?
|
Chris@1295
|
800 @jsmith.pref.comments_sorting = 'asc'
|
Chris@1295
|
801 assert !@jsmith.wants_comments_in_reverse_order?
|
Chris@1295
|
802 @jsmith.pref.comments_sorting = 'desc'
|
Chris@1295
|
803 assert @jsmith.wants_comments_in_reverse_order?
|
Chris@1295
|
804 end
|
Chris@1295
|
805
|
Chris@1295
|
806 def test_find_by_mail_should_be_case_insensitive
|
Chris@1295
|
807 u = User.find_by_mail('JSmith@somenet.foo')
|
Chris@1295
|
808 assert_not_nil u
|
Chris@1295
|
809 assert_equal 'jsmith@somenet.foo', u.mail
|
Chris@1295
|
810 end
|
Chris@1295
|
811
|
Chris@1295
|
812 def test_random_password
|
Chris@1295
|
813 u = User.new
|
Chris@1295
|
814 u.random_password
|
Chris@1295
|
815 assert !u.password.blank?
|
Chris@1295
|
816 assert !u.password_confirmation.blank?
|
Chris@1295
|
817 end
|
Chris@1295
|
818
|
Chris@1295
|
819 context "#change_password_allowed?" do
|
Chris@1295
|
820 should "be allowed if no auth source is set" do
|
Chris@1295
|
821 user = User.generate!
|
Chris@1295
|
822 assert user.change_password_allowed?
|
Chris@1295
|
823 end
|
Chris@1295
|
824
|
Chris@1295
|
825 should "delegate to the auth source" do
|
Chris@1295
|
826 user = User.generate!
|
Chris@1295
|
827
|
Chris@1295
|
828 allowed_auth_source = AuthSource.generate!
|
Chris@1295
|
829 def allowed_auth_source.allow_password_changes?; true; end
|
Chris@1295
|
830
|
Chris@1295
|
831 denied_auth_source = AuthSource.generate!
|
Chris@1295
|
832 def denied_auth_source.allow_password_changes?; false; end
|
Chris@1295
|
833
|
Chris@1295
|
834 assert user.change_password_allowed?
|
Chris@1295
|
835
|
Chris@1295
|
836 user.auth_source = allowed_auth_source
|
Chris@1295
|
837 assert user.change_password_allowed?, "User not allowed to change password, though auth source does"
|
Chris@1295
|
838
|
Chris@1295
|
839 user.auth_source = denied_auth_source
|
Chris@1295
|
840 assert !user.change_password_allowed?, "User allowed to change password, though auth source does not"
|
Chris@1295
|
841 end
|
Chris@1295
|
842 end
|
Chris@1295
|
843
|
Chris@1295
|
844 def test_own_account_deletable_should_be_true_with_unsubscrive_enabled
|
Chris@1295
|
845 with_settings :unsubscribe => '1' do
|
Chris@1295
|
846 assert_equal true, User.find(2).own_account_deletable?
|
Chris@1295
|
847 end
|
Chris@1295
|
848 end
|
Chris@1295
|
849
|
Chris@1295
|
850 def test_own_account_deletable_should_be_false_with_unsubscrive_disabled
|
Chris@1295
|
851 with_settings :unsubscribe => '0' do
|
Chris@1295
|
852 assert_equal false, User.find(2).own_account_deletable?
|
Chris@1295
|
853 end
|
Chris@1295
|
854 end
|
Chris@1295
|
855
|
Chris@1295
|
856 def test_own_account_deletable_should_be_false_for_a_single_admin
|
Chris@1295
|
857 User.delete_all(["admin = ? AND id <> ?", true, 1])
|
Chris@1295
|
858
|
Chris@1295
|
859 with_settings :unsubscribe => '1' do
|
Chris@1295
|
860 assert_equal false, User.find(1).own_account_deletable?
|
Chris@1295
|
861 end
|
Chris@1295
|
862 end
|
Chris@1295
|
863
|
Chris@1295
|
864 def test_own_account_deletable_should_be_true_for_an_admin_if_other_admin_exists
|
Chris@1295
|
865 User.generate! do |user|
|
Chris@1295
|
866 user.admin = true
|
Chris@1295
|
867 end
|
Chris@1295
|
868
|
Chris@1295
|
869 with_settings :unsubscribe => '1' do
|
Chris@1295
|
870 assert_equal true, User.find(1).own_account_deletable?
|
Chris@1295
|
871 end
|
Chris@1295
|
872 end
|
Chris@1295
|
873
|
Chris@1295
|
874 context "#allowed_to?" do
|
Chris@1295
|
875 context "with a unique project" do
|
Chris@1295
|
876 should "return false if project is archived" do
|
Chris@1295
|
877 project = Project.find(1)
|
Chris@1295
|
878 Project.any_instance.stubs(:status).returns(Project::STATUS_ARCHIVED)
|
Chris@1295
|
879 assert_equal false, @admin.allowed_to?(:view_issues, Project.find(1))
|
Chris@1295
|
880 end
|
Chris@1295
|
881
|
Chris@1295
|
882 should "return false for write action if project is closed" do
|
Chris@1295
|
883 project = Project.find(1)
|
Chris@1295
|
884 Project.any_instance.stubs(:status).returns(Project::STATUS_CLOSED)
|
Chris@1295
|
885 assert_equal false, @admin.allowed_to?(:edit_project, Project.find(1))
|
Chris@1295
|
886 end
|
Chris@1295
|
887
|
Chris@1295
|
888 should "return true for read action if project is closed" do
|
Chris@1295
|
889 project = Project.find(1)
|
Chris@1295
|
890 Project.any_instance.stubs(:status).returns(Project::STATUS_CLOSED)
|
Chris@1295
|
891 assert_equal true, @admin.allowed_to?(:view_project, Project.find(1))
|
Chris@1295
|
892 end
|
Chris@1295
|
893
|
Chris@1295
|
894 should "return false if related module is disabled" do
|
Chris@1295
|
895 project = Project.find(1)
|
Chris@1295
|
896 project.enabled_module_names = ["issue_tracking"]
|
Chris@1295
|
897 assert_equal true, @admin.allowed_to?(:add_issues, project)
|
Chris@1295
|
898 assert_equal false, @admin.allowed_to?(:view_wiki_pages, project)
|
Chris@1295
|
899 end
|
Chris@1295
|
900
|
Chris@1295
|
901 should "authorize nearly everything for admin users" do
|
Chris@1295
|
902 project = Project.find(1)
|
Chris@1295
|
903 assert ! @admin.member_of?(project)
|
Chris@1295
|
904 %w(edit_issues delete_issues manage_news manage_documents manage_wiki).each do |p|
|
Chris@1295
|
905 assert_equal true, @admin.allowed_to?(p.to_sym, project)
|
Chris@1295
|
906 end
|
Chris@1295
|
907 end
|
Chris@1295
|
908
|
Chris@1295
|
909 should "authorize normal users depending on their roles" do
|
Chris@1295
|
910 project = Project.find(1)
|
Chris@1295
|
911 assert_equal true, @jsmith.allowed_to?(:delete_messages, project) #Manager
|
Chris@1295
|
912 assert_equal false, @dlopper.allowed_to?(:delete_messages, project) #Developper
|
Chris@1295
|
913 end
|
Chris@1295
|
914 end
|
Chris@1295
|
915
|
Chris@1295
|
916 context "with multiple projects" do
|
Chris@1295
|
917 should "return false if array is empty" do
|
Chris@1295
|
918 assert_equal false, @admin.allowed_to?(:view_project, [])
|
Chris@1295
|
919 end
|
Chris@1295
|
920
|
Chris@1295
|
921 should "return true only if user has permission on all these projects" do
|
Chris@1295
|
922 assert_equal true, @admin.allowed_to?(:view_project, Project.all)
|
Chris@1295
|
923 assert_equal false, @dlopper.allowed_to?(:view_project, Project.all) #cannot see Project(2)
|
Chris@1295
|
924 assert_equal true, @jsmith.allowed_to?(:edit_issues, @jsmith.projects) #Manager or Developer everywhere
|
Chris@1295
|
925 assert_equal false, @jsmith.allowed_to?(:delete_issue_watchers, @jsmith.projects) #Dev cannot delete_issue_watchers
|
Chris@1295
|
926 end
|
Chris@1295
|
927
|
Chris@1295
|
928 should "behave correctly with arrays of 1 project" do
|
Chris@1295
|
929 assert_equal false, User.anonymous.allowed_to?(:delete_issues, [Project.first])
|
Chris@1295
|
930 end
|
Chris@1295
|
931 end
|
Chris@1295
|
932
|
Chris@1295
|
933 context "with options[:global]" do
|
Chris@1295
|
934 should "authorize if user has at least one role that has this permission" do
|
Chris@1295
|
935 @dlopper2 = User.find(5) #only Developper on a project, not Manager anywhere
|
Chris@1295
|
936 @anonymous = User.find(6)
|
Chris@1295
|
937 assert_equal true, @jsmith.allowed_to?(:delete_issue_watchers, nil, :global => true)
|
Chris@1295
|
938 assert_equal false, @dlopper2.allowed_to?(:delete_issue_watchers, nil, :global => true)
|
Chris@1295
|
939 assert_equal true, @dlopper2.allowed_to?(:add_issues, nil, :global => true)
|
Chris@1295
|
940 assert_equal false, @anonymous.allowed_to?(:add_issues, nil, :global => true)
|
Chris@1295
|
941 assert_equal true, @anonymous.allowed_to?(:view_issues, nil, :global => true)
|
Chris@1295
|
942 end
|
Chris@1295
|
943 end
|
Chris@1295
|
944 end
|
Chris@1295
|
945
|
Chris@1295
|
946 context "User#notify_about?" do
|
Chris@1295
|
947 context "Issues" do
|
Chris@1295
|
948 setup do
|
Chris@1295
|
949 @project = Project.find(1)
|
Chris@1295
|
950 @author = User.generate!
|
Chris@1295
|
951 @assignee = User.generate!
|
Chris@1295
|
952 @issue = Issue.generate!(:project => @project, :assigned_to => @assignee, :author => @author)
|
Chris@1295
|
953 end
|
Chris@1295
|
954
|
Chris@1295
|
955 should "be true for a user with :all" do
|
Chris@1295
|
956 @author.update_attribute(:mail_notification, 'all')
|
Chris@1295
|
957 assert @author.notify_about?(@issue)
|
Chris@1295
|
958 end
|
Chris@1295
|
959
|
Chris@1295
|
960 should "be false for a user with :none" do
|
Chris@1295
|
961 @author.update_attribute(:mail_notification, 'none')
|
Chris@1295
|
962 assert ! @author.notify_about?(@issue)
|
Chris@1295
|
963 end
|
Chris@1295
|
964
|
Chris@1295
|
965 should "be false for a user with :only_my_events and isn't an author, creator, or assignee" do
|
Chris@1295
|
966 @user = User.generate!(:mail_notification => 'only_my_events')
|
Chris@1295
|
967 Member.create!(:user => @user, :project => @project, :role_ids => [1])
|
Chris@1295
|
968 assert ! @user.notify_about?(@issue)
|
Chris@1295
|
969 end
|
Chris@1295
|
970
|
Chris@1295
|
971 should "be true for a user with :only_my_events and is the author" do
|
Chris@1295
|
972 @author.update_attribute(:mail_notification, 'only_my_events')
|
Chris@1295
|
973 assert @author.notify_about?(@issue)
|
Chris@1295
|
974 end
|
Chris@1295
|
975
|
Chris@1295
|
976 should "be true for a user with :only_my_events and is the assignee" do
|
Chris@1295
|
977 @assignee.update_attribute(:mail_notification, 'only_my_events')
|
Chris@1295
|
978 assert @assignee.notify_about?(@issue)
|
Chris@1295
|
979 end
|
Chris@1295
|
980
|
Chris@1295
|
981 should "be true for a user with :only_assigned and is the assignee" do
|
Chris@1295
|
982 @assignee.update_attribute(:mail_notification, 'only_assigned')
|
Chris@1295
|
983 assert @assignee.notify_about?(@issue)
|
Chris@1295
|
984 end
|
Chris@1295
|
985
|
Chris@1295
|
986 should "be false for a user with :only_assigned and is not the assignee" do
|
Chris@1295
|
987 @author.update_attribute(:mail_notification, 'only_assigned')
|
Chris@1295
|
988 assert ! @author.notify_about?(@issue)
|
Chris@1295
|
989 end
|
Chris@1295
|
990
|
Chris@1295
|
991 should "be true for a user with :only_owner and is the author" do
|
Chris@1295
|
992 @author.update_attribute(:mail_notification, 'only_owner')
|
Chris@1295
|
993 assert @author.notify_about?(@issue)
|
Chris@1295
|
994 end
|
Chris@1295
|
995
|
Chris@1295
|
996 should "be false for a user with :only_owner and is not the author" do
|
Chris@1295
|
997 @assignee.update_attribute(:mail_notification, 'only_owner')
|
Chris@1295
|
998 assert ! @assignee.notify_about?(@issue)
|
Chris@1295
|
999 end
|
Chris@1295
|
1000
|
Chris@1295
|
1001 should "be true for a user with :selected and is the author" do
|
Chris@1295
|
1002 @author.update_attribute(:mail_notification, 'selected')
|
Chris@1295
|
1003 assert @author.notify_about?(@issue)
|
Chris@1295
|
1004 end
|
Chris@1295
|
1005
|
Chris@1295
|
1006 should "be true for a user with :selected and is the assignee" do
|
Chris@1295
|
1007 @assignee.update_attribute(:mail_notification, 'selected')
|
Chris@1295
|
1008 assert @assignee.notify_about?(@issue)
|
Chris@1295
|
1009 end
|
Chris@1295
|
1010
|
Chris@1295
|
1011 should "be false for a user with :selected and is not the author or assignee" do
|
Chris@1295
|
1012 @user = User.generate!(:mail_notification => 'selected')
|
Chris@1295
|
1013 Member.create!(:user => @user, :project => @project, :role_ids => [1])
|
Chris@1295
|
1014 assert ! @user.notify_about?(@issue)
|
Chris@1295
|
1015 end
|
Chris@1295
|
1016 end
|
Chris@1295
|
1017
|
Chris@1295
|
1018 context "other events" do
|
Chris@1295
|
1019 should 'be added and tested'
|
Chris@1295
|
1020 end
|
Chris@1295
|
1021 end
|
Chris@1295
|
1022
|
Chris@1295
|
1023 def test_salt_unsalted_passwords
|
Chris@1295
|
1024 # Restore a user with an unsalted password
|
Chris@1295
|
1025 user = User.find(1)
|
Chris@1295
|
1026 user.salt = nil
|
Chris@1295
|
1027 user.hashed_password = User.hash_password("unsalted")
|
Chris@1295
|
1028 user.save!
|
Chris@1295
|
1029
|
Chris@1295
|
1030 User.salt_unsalted_passwords!
|
Chris@1295
|
1031
|
Chris@1295
|
1032 user.reload
|
Chris@1295
|
1033 # Salt added
|
Chris@1295
|
1034 assert !user.salt.blank?
|
Chris@1295
|
1035 # Password still valid
|
Chris@1295
|
1036 assert user.check_password?("unsalted")
|
Chris@1295
|
1037 assert_equal user, User.try_to_login(user.login, "unsalted")
|
Chris@1295
|
1038 end
|
Chris@1295
|
1039
|
Chris@1295
|
1040 if Object.const_defined?(:OpenID)
|
Chris@1295
|
1041
|
Chris@1295
|
1042 def test_setting_identity_url
|
Chris@1295
|
1043 normalized_open_id_url = 'http://example.com/'
|
Chris@1295
|
1044 u = User.new( :identity_url => 'http://example.com/' )
|
Chris@1295
|
1045 assert_equal normalized_open_id_url, u.identity_url
|
Chris@1295
|
1046 end
|
Chris@1295
|
1047
|
Chris@1295
|
1048 def test_setting_identity_url_without_trailing_slash
|
Chris@1295
|
1049 normalized_open_id_url = 'http://example.com/'
|
Chris@1295
|
1050 u = User.new( :identity_url => 'http://example.com' )
|
Chris@1295
|
1051 assert_equal normalized_open_id_url, u.identity_url
|
Chris@1295
|
1052 end
|
Chris@1295
|
1053
|
Chris@1295
|
1054 def test_setting_identity_url_without_protocol
|
Chris@1295
|
1055 normalized_open_id_url = 'http://example.com/'
|
Chris@1295
|
1056 u = User.new( :identity_url => 'example.com' )
|
Chris@1295
|
1057 assert_equal normalized_open_id_url, u.identity_url
|
Chris@1295
|
1058 end
|
Chris@1295
|
1059
|
Chris@1295
|
1060 def test_setting_blank_identity_url
|
Chris@1295
|
1061 u = User.new( :identity_url => 'example.com' )
|
Chris@1295
|
1062 u.identity_url = ''
|
Chris@1295
|
1063 assert u.identity_url.blank?
|
Chris@1295
|
1064 end
|
Chris@1295
|
1065
|
Chris@1295
|
1066 def test_setting_invalid_identity_url
|
Chris@1295
|
1067 u = User.new( :identity_url => 'this is not an openid url' )
|
Chris@1295
|
1068 assert u.identity_url.blank?
|
Chris@1295
|
1069 end
|
Chris@1295
|
1070
|
Chris@1295
|
1071 else
|
Chris@1295
|
1072 puts "Skipping openid tests."
|
Chris@1295
|
1073 end
|
Chris@1295
|
1074
|
Chris@1295
|
1075 end
|