-
Notifications
You must be signed in to change notification settings - Fork 1.3k
Expand file tree
/
Copy pathAuthenticationRestControllerTest.java
More file actions
81 lines (69 loc) · 3.28 KB
/
Copy pathAuthenticationRestControllerTest.java
File metadata and controls
81 lines (69 loc) · 3.28 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
package org.zerhusen.security.rest;
import org.junit.Test;
import org.springframework.http.MediaType;
import org.zerhusen.util.AbstractRestControllerTest;
import static org.hamcrest.Matchers.containsString;
import static org.hamcrest.Matchers.not;
import static org.springframework.test.web.servlet.request.MockMvcRequestBuilders.get;
import static org.springframework.test.web.servlet.request.MockMvcRequestBuilders.post;
import static org.springframework.test.web.servlet.result.MockMvcResultMatchers.content;
import static org.springframework.test.web.servlet.result.MockMvcResultMatchers.status;
import static org.zerhusen.util.LogInUtils.getTokenForLogin;
public class AuthenticationRestControllerTest extends AbstractRestControllerTest {
@Test
public void successfulAuthenticationWithUser() throws Exception {
getMockMvc().perform(post("/api/authenticate")
.contentType(MediaType.APPLICATION_JSON)
.content("{\"password\": \"password\", \"username\": \"user\"}"))
.andExpect(status().isOk())
.andExpect(content().string(containsString("id_token")));
}
@Test
public void successfulAuthenticationWithAdmin() throws Exception {
getMockMvc().perform(post("/api/authenticate")
.contentType(MediaType.APPLICATION_JSON)
.content("{\"password\": \"admin\", \"username\": \"admin\"}"))
.andExpect(status().isOk())
.andExpect(content().string(containsString("id_token")));
}
@Test
public void unsuccessfulAuthenticationWithDisabled() throws Exception {
getMockMvc().perform(post("/api/authenticate")
.contentType(MediaType.APPLICATION_JSON)
.content("{\"password\": \"password\", \"username\": \"disabled\"}"))
.andExpect(status().isUnauthorized())
.andExpect(content().string(not(containsString("id_token"))));
}
@Test
public void unsuccessfulAuthenticationWithWrongPassword() throws Exception {
getMockMvc().perform(post("/api/authenticate")
.contentType(MediaType.APPLICATION_JSON)
.content("{\"password\": \"wrong\", \"username\": \"user\"}"))
.andExpect(status().isUnauthorized())
.andExpect(content().string(not(containsString("id_token"))));
}
@Test
public void unsuccessfulAuthenticationWithNotExistingUser() throws Exception {
getMockMvc().perform(post("/api/authenticate")
.contentType(MediaType.APPLICATION_JSON)
.content("{\"password\": \"password\", \"username\": \"not_existing\"}"))
.andExpect(status().isUnauthorized())
.andExpect(content().string(not(containsString("id_token"))));
}
@Test
public void successfulRefreshToken() throws Exception {
final String token = getTokenForLogin("user", "password", getMockMvc());
getMockMvc().perform(get("/api/token")
.contentType(MediaType.APPLICATION_JSON)
.header("Authorization", "Bearer " + token))
.andExpect(status().isOk())
.andExpect(content().string(containsString("id_token")));
}
@Test
public void unsuccessfulRefreshToken() throws Exception{
getMockMvc().perform(get("/api/token")
.contentType(MediaType.APPLICATION_JSON))
.andExpect(status().isUnauthorized())
.andExpect(content().string(not(containsString("id_token"))));
}
}