Mercurial > hg > soundsoftware-site
comparison test/integration/account_test.rb @ 1464:261b3d9a4903 redmine-2.4
Update to Redmine 2.4 branch rev 12663
author | Chris Cannam |
---|---|
date | Tue, 14 Jan 2014 14:37:42 +0000 |
parents | 433d4f72a19b |
children | e248c7af89ec |
comparison
equal
deleted
inserted
replaced
1296:038ba2d95de8 | 1464:261b3d9a4903 |
---|---|
1 # Redmine - project management software | 1 # Redmine - project management software |
2 # Copyright (C) 2006-2012 Jean-Philippe Lang | 2 # Copyright (C) 2006-2013 Jean-Philippe Lang |
3 # | 3 # |
4 # This program is free software; you can redistribute it and/or | 4 # This program is free software; you can redistribute it and/or |
5 # modify it under the terms of the GNU General Public License | 5 # modify it under the terms of the GNU General Public License |
6 # as published by the Free Software Foundation; either version 2 | 6 # as published by the Free Software Foundation; either version 2 |
7 # of the License, or (at your option) any later version. | 7 # of the License, or (at your option) any later version. |
16 # Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA. | 16 # Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA. |
17 | 17 |
18 require File.expand_path('../../test_helper', __FILE__) | 18 require File.expand_path('../../test_helper', __FILE__) |
19 | 19 |
20 begin | 20 begin |
21 require 'mocha' | 21 require 'mocha/setup' |
22 rescue | 22 rescue |
23 # Won't run some tests | 23 # Won't run some tests |
24 end | 24 end |
25 | 25 |
26 class AccountTest < ActionController::IntegrationTest | 26 class AccountTest < ActionController::IntegrationTest |
43 Token.delete_all | 43 Token.delete_all |
44 | 44 |
45 # User logs in with 'autologin' checked | 45 # User logs in with 'autologin' checked |
46 post '/login', :username => user.login, :password => 'admin', :autologin => 1 | 46 post '/login', :username => user.login, :password => 'admin', :autologin => 1 |
47 assert_redirected_to '/my/page' | 47 assert_redirected_to '/my/page' |
48 token = Token.find :first | 48 token = Token.first |
49 assert_not_nil token | 49 assert_not_nil token |
50 assert_equal user, token.user | 50 assert_equal user, token.user |
51 assert_equal 'autologin', token.action | 51 assert_equal 'autologin', token.action |
52 assert_equal user.id, session[:user_id] | 52 assert_equal user.id, session[:user_id] |
53 assert_equal token.value, cookies['autologin'] | 53 assert_equal token.value, cookies['autologin'] |
57 User.current = nil | 57 User.current = nil |
58 # Clears user's last login timestamp | 58 # Clears user's last login timestamp |
59 user.update_attribute :last_login_on, nil | 59 user.update_attribute :last_login_on, nil |
60 assert_nil user.reload.last_login_on | 60 assert_nil user.reload.last_login_on |
61 | 61 |
62 # User comes back with his autologin cookie | 62 # User comes back with user's autologin cookie |
63 cookies[:autologin] = token.value | 63 cookies[:autologin] = token.value |
64 get '/my/page' | 64 get '/my/page' |
65 assert_response :success | 65 assert_response :success |
66 assert_template 'my/page' | 66 assert_template 'my/page' |
67 assert_equal user.id, session[:user_id] | 67 assert_equal user.id, session[:user_id] |
68 assert_not_nil user.reload.last_login_on | 68 assert_not_nil user.reload.last_login_on |
69 end | 69 end |
70 | 70 |
71 def test_autologin_should_use_autologin_cookie_name | |
72 Token.delete_all | |
73 Redmine::Configuration.stubs(:[]).with('autologin_cookie_name').returns('custom_autologin') | |
74 Redmine::Configuration.stubs(:[]).with('autologin_cookie_path').returns('/') | |
75 Redmine::Configuration.stubs(:[]).with('autologin_cookie_secure').returns(false) | |
76 | |
77 with_settings :autologin => '7' do | |
78 assert_difference 'Token.count' do | |
79 post '/login', :username => 'admin', :password => 'admin', :autologin => 1 | |
80 end | |
81 assert_response 302 | |
82 assert cookies['custom_autologin'].present? | |
83 token = cookies['custom_autologin'] | |
84 | |
85 # Session is cleared | |
86 reset! | |
87 cookies['custom_autologin'] = token | |
88 get '/my/page' | |
89 assert_response :success | |
90 | |
91 assert_difference 'Token.count', -1 do | |
92 post '/logout' | |
93 end | |
94 assert cookies['custom_autologin'].blank? | |
95 end | |
96 end | |
97 | |
71 def test_lost_password | 98 def test_lost_password |
72 Token.delete_all | 99 Token.delete_all |
73 | 100 |
74 get "account/lost_password" | 101 get "account/lost_password" |
75 assert_response :success | 102 assert_response :success |
77 assert_select 'input[name=mail]' | 104 assert_select 'input[name=mail]' |
78 | 105 |
79 post "account/lost_password", :mail => 'jSmith@somenet.foo' | 106 post "account/lost_password", :mail => 'jSmith@somenet.foo' |
80 assert_redirected_to "/login" | 107 assert_redirected_to "/login" |
81 | 108 |
82 token = Token.find(:first) | 109 token = Token.first |
83 assert_equal 'recovery', token.action | 110 assert_equal 'recovery', token.action |
84 assert_equal 'jsmith@somenet.foo', token.user.mail | 111 assert_equal 'jsmith@somenet.foo', token.user.mail |
85 assert !token.expired? | 112 assert !token.expired? |
86 | 113 |
87 get "account/lost_password", :token => token.value | 114 get "account/lost_password", :token => token.value |
89 assert_template "account/password_recovery" | 116 assert_template "account/password_recovery" |
90 assert_select 'input[type=hidden][name=token][value=?]', token.value | 117 assert_select 'input[type=hidden][name=token][value=?]', token.value |
91 assert_select 'input[name=new_password]' | 118 assert_select 'input[name=new_password]' |
92 assert_select 'input[name=new_password_confirmation]' | 119 assert_select 'input[name=new_password_confirmation]' |
93 | 120 |
94 post "account/lost_password", :token => token.value, :new_password => 'newpass123', :new_password_confirmation => 'newpass123' | 121 post "account/lost_password", |
122 :token => token.value, :new_password => 'newpass123', | |
123 :new_password_confirmation => 'newpass123' | |
95 assert_redirected_to "/login" | 124 assert_redirected_to "/login" |
96 assert_equal 'Password was successfully updated.', flash[:notice] | 125 assert_equal 'Password was successfully updated.', flash[:notice] |
97 | 126 |
98 log_user('jsmith', 'newpass123') | 127 log_user('jsmith', 'newpass123') |
99 assert_equal 0, Token.count | 128 assert_equal 0, Token.count |
100 end | 129 end |
101 | 130 |
131 def test_user_with_must_change_passwd_should_be_forced_to_change_its_password | |
132 User.find_by_login('jsmith').update_attribute :must_change_passwd, true | |
133 | |
134 post '/login', :username => 'jsmith', :password => 'jsmith' | |
135 assert_redirected_to '/my/page' | |
136 follow_redirect! | |
137 assert_redirected_to '/my/password' | |
138 | |
139 get '/issues' | |
140 assert_redirected_to '/my/password' | |
141 end | |
142 | |
143 def test_user_with_must_change_passwd_should_be_able_to_change_its_password | |
144 User.find_by_login('jsmith').update_attribute :must_change_passwd, true | |
145 | |
146 post '/login', :username => 'jsmith', :password => 'jsmith' | |
147 assert_redirected_to '/my/page' | |
148 follow_redirect! | |
149 assert_redirected_to '/my/password' | |
150 follow_redirect! | |
151 assert_response :success | |
152 post '/my/password', :password => 'jsmith', :new_password => 'newpassword', :new_password_confirmation => 'newpassword' | |
153 assert_redirected_to '/my/account' | |
154 follow_redirect! | |
155 assert_response :success | |
156 | |
157 assert_equal false, User.find_by_login('jsmith').must_change_passwd? | |
158 end | |
159 | |
102 def test_register_with_automatic_activation | 160 def test_register_with_automatic_activation |
103 Setting.self_registration = '3' | 161 Setting.self_registration = '3' |
104 | 162 |
105 get 'account/register' | 163 get 'account/register' |
106 assert_response :success | 164 assert_response :success |
107 assert_template 'account/register' | 165 assert_template 'account/register' |
108 | 166 |
109 post 'account/register', :user => {:login => "newuser", :language => "en", :firstname => "New", :lastname => "User", :mail => "newuser@foo.bar", | 167 post 'account/register', |
110 :password => "newpass123", :password_confirmation => "newpass123"} | 168 :user => {:login => "newuser", :language => "en", |
169 :firstname => "New", :lastname => "User", :mail => "newuser@foo.bar", | |
170 :password => "newpass123", :password_confirmation => "newpass123"} | |
111 assert_redirected_to '/my/account' | 171 assert_redirected_to '/my/account' |
112 follow_redirect! | 172 follow_redirect! |
113 assert_response :success | 173 assert_response :success |
114 assert_template 'my/account' | 174 assert_template 'my/account' |
115 | 175 |
120 end | 180 end |
121 | 181 |
122 def test_register_with_manual_activation | 182 def test_register_with_manual_activation |
123 Setting.self_registration = '2' | 183 Setting.self_registration = '2' |
124 | 184 |
125 post 'account/register', :user => {:login => "newuser", :language => "en", :firstname => "New", :lastname => "User", :mail => "newuser@foo.bar", | 185 post 'account/register', |
126 :password => "newpass123", :password_confirmation => "newpass123"} | 186 :user => {:login => "newuser", :language => "en", |
187 :firstname => "New", :lastname => "User", :mail => "newuser@foo.bar", | |
188 :password => "newpass123", :password_confirmation => "newpass123"} | |
127 assert_redirected_to '/login' | 189 assert_redirected_to '/login' |
128 assert !User.find_by_login('newuser').active? | 190 assert !User.find_by_login('newuser').active? |
129 end | 191 end |
130 | 192 |
131 def test_register_with_email_activation | 193 def test_register_with_email_activation |
132 Setting.self_registration = '1' | 194 Setting.self_registration = '1' |
133 Token.delete_all | 195 Token.delete_all |
134 | 196 |
135 post 'account/register', :user => {:login => "newuser", :language => "en", :firstname => "New", :lastname => "User", :mail => "newuser@foo.bar", | 197 post 'account/register', |
136 :password => "newpass123", :password_confirmation => "newpass123"} | 198 :user => {:login => "newuser", :language => "en", |
199 :firstname => "New", :lastname => "User", :mail => "newuser@foo.bar", | |
200 :password => "newpass123", :password_confirmation => "newpass123"} | |
137 assert_redirected_to '/login' | 201 assert_redirected_to '/login' |
138 assert !User.find_by_login('newuser').active? | 202 assert !User.find_by_login('newuser').active? |
139 | 203 |
140 token = Token.find(:first) | 204 token = Token.first |
141 assert_equal 'register', token.action | 205 assert_equal 'register', token.action |
142 assert_equal 'newuser@foo.bar', token.user.mail | 206 assert_equal 'newuser@foo.bar', token.user.mail |
143 assert !token.expired? | 207 assert !token.expired? |
144 | 208 |
145 get 'account/activate', :token => token.value | 209 get 'account/activate', :token => token.value |
148 end | 212 end |
149 | 213 |
150 def test_onthefly_registration | 214 def test_onthefly_registration |
151 # disable registration | 215 # disable registration |
152 Setting.self_registration = '0' | 216 Setting.self_registration = '0' |
153 AuthSource.expects(:authenticate).returns({:login => 'foo', :firstname => 'Foo', :lastname => 'Smith', :mail => 'foo@bar.com', :auth_source_id => 66}) | 217 AuthSource.expects(:authenticate).returns( |
218 {:login => 'foo', :firstname => 'Foo', :lastname => 'Smith', | |
219 :mail => 'foo@bar.com', :auth_source_id => 66}) | |
154 | 220 |
155 post '/login', :username => 'foo', :password => 'bar' | 221 post '/login', :username => 'foo', :password => 'bar' |
156 assert_redirected_to '/my/page' | 222 assert_redirected_to '/my/page' |
157 | 223 |
158 user = User.find_by_login('foo') | 224 user = User.find_by_login('foo') |
162 end | 228 end |
163 | 229 |
164 def test_onthefly_registration_with_invalid_attributes | 230 def test_onthefly_registration_with_invalid_attributes |
165 # disable registration | 231 # disable registration |
166 Setting.self_registration = '0' | 232 Setting.self_registration = '0' |
167 AuthSource.expects(:authenticate).returns({:login => 'foo', :lastname => 'Smith', :auth_source_id => 66}) | 233 AuthSource.expects(:authenticate).returns( |
234 {:login => 'foo', :lastname => 'Smith', :auth_source_id => 66}) | |
168 | 235 |
169 post '/login', :username => 'foo', :password => 'bar' | 236 post '/login', :username => 'foo', :password => 'bar' |
170 assert_response :success | 237 assert_response :success |
171 assert_template 'account/register' | 238 assert_template 'account/register' |
172 assert_tag :input, :attributes => { :name => 'user[firstname]', :value => '' } | 239 assert_tag :input, :attributes => { :name => 'user[firstname]', :value => '' } |
173 assert_tag :input, :attributes => { :name => 'user[lastname]', :value => 'Smith' } | 240 assert_tag :input, :attributes => { :name => 'user[lastname]', :value => 'Smith' } |
174 assert_no_tag :input, :attributes => { :name => 'user[login]' } | 241 assert_no_tag :input, :attributes => { :name => 'user[login]' } |
175 assert_no_tag :input, :attributes => { :name => 'user[password]' } | 242 assert_no_tag :input, :attributes => { :name => 'user[password]' } |
176 | 243 |
177 post 'account/register', :user => {:firstname => 'Foo', :lastname => 'Smith', :mail => 'foo@bar.com'} | 244 post 'account/register', |
245 :user => {:firstname => 'Foo', :lastname => 'Smith', :mail => 'foo@bar.com'} | |
178 assert_redirected_to '/my/account' | 246 assert_redirected_to '/my/account' |
179 | 247 |
180 user = User.find_by_login('foo') | 248 user = User.find_by_login('foo') |
181 assert user.is_a?(User) | 249 assert user.is_a?(User) |
182 assert_equal 66, user.auth_source_id | 250 assert_equal 66, user.auth_source_id |
183 assert user.hashed_password.blank? | 251 assert user.hashed_password.blank? |
184 end | 252 end |
253 | |
254 def test_registered_user_should_be_able_to_get_a_new_activation_email | |
255 Token.delete_all | |
256 | |
257 with_settings :self_registration => '1', :default_language => 'en' do | |
258 # register a new account | |
259 assert_difference 'User.count' do | |
260 assert_difference 'Token.count' do | |
261 post 'account/register', | |
262 :user => {:login => "newuser", :language => "en", | |
263 :firstname => "New", :lastname => "User", :mail => "newuser@foo.bar", | |
264 :password => "newpass123", :password_confirmation => "newpass123"} | |
265 end | |
266 end | |
267 user = User.order('id desc').first | |
268 assert_equal User::STATUS_REGISTERED, user.status | |
269 reset! | |
270 | |
271 # try to use "lost password" | |
272 assert_no_difference 'ActionMailer::Base.deliveries.size' do | |
273 post '/account/lost_password', :mail => 'newuser@foo.bar' | |
274 end | |
275 assert_redirected_to '/account/lost_password' | |
276 follow_redirect! | |
277 assert_response :success | |
278 assert_select 'div.flash', :text => /new activation email/ | |
279 assert_select 'div.flash a[href=/account/activation_email]' | |
280 | |
281 # request a new action activation email | |
282 assert_difference 'ActionMailer::Base.deliveries.size' do | |
283 get '/account/activation_email' | |
284 end | |
285 assert_redirected_to '/login' | |
286 token = Token.order('id desc').first | |
287 activation_path = "/account/activate?token=#{token.value}" | |
288 assert_include activation_path, mail_body(ActionMailer::Base.deliveries.last) | |
289 | |
290 # activate the account | |
291 get activation_path | |
292 assert_redirected_to '/login' | |
293 | |
294 post '/login', :username => 'newuser', :password => 'newpass123' | |
295 assert_redirected_to '/my/page' | |
296 end | |
297 end | |
185 end | 298 end |