shlink/module/Rest/test/Middleware/AuthenticationMiddlewareTest.php

115 lines
4.3 KiB
PHP
Raw Normal View History

<?php
2019-10-05 17:26:10 +02:00
2017-10-12 10:13:20 +02:00
declare(strict_types=1);
namespace ShlinkioTest\Shlink\Rest\Middleware;
use Fig\Http\Message\RequestMethodInterface;
2020-01-01 21:11:53 +01:00
use Laminas\Diactoros\Response;
use Laminas\Diactoros\ServerRequest;
use Mezzio\Router\Route;
use Mezzio\Router\RouteResult;
2017-03-24 20:34:18 +01:00
use PHPUnit\Framework\TestCase;
use Prophecy\Argument;
use Prophecy\Prophecy\ObjectProphecy;
use Psr\Http\Message\ResponseInterface;
use Psr\Http\Message\ServerRequestInterface;
use Psr\Http\Server\MiddlewareInterface;
2018-03-26 19:02:41 +02:00
use Psr\Http\Server\RequestHandlerInterface;
2019-08-08 17:06:20 +02:00
use Psr\Log\LoggerInterface;
2019-12-31 15:38:37 +01:00
use Shlinkio\Shlink\Rest\Action\HealthAction;
use Shlinkio\Shlink\Rest\Authentication\Plugin\AuthenticationPluginInterface;
use Shlinkio\Shlink\Rest\Authentication\RequestToHttpAuthPluginInterface;
use Shlinkio\Shlink\Rest\Middleware\AuthenticationMiddleware;
2020-01-01 21:11:53 +01:00
use function Laminas\Stratigility\middleware;
class AuthenticationMiddlewareTest extends TestCase
{
private AuthenticationMiddleware $middleware;
private ObjectProphecy $requestToPlugin;
private ObjectProphecy $logger;
2018-03-21 12:13:03 +02:00
2019-02-16 10:53:45 +01:00
public function setUp(): void
{
$this->requestToPlugin = $this->prophesize(RequestToHttpAuthPluginInterface::class);
2019-08-08 17:06:20 +02:00
$this->logger = $this->prophesize(LoggerInterface::class);
$this->middleware = new AuthenticationMiddleware(
$this->requestToPlugin->reveal(),
2019-12-31 15:38:37 +01:00
[HealthAction::class],
2020-01-01 20:48:31 +01:00
$this->logger->reveal(),
2019-08-08 17:06:20 +02:00
);
}
/**
* @test
* @dataProvider provideWhitelistedRequests
*/
2019-02-17 20:28:34 +01:00
public function someWhiteListedSituationsFallbackToNextMiddleware(ServerRequestInterface $request): void
{
$handler = $this->prophesize(RequestHandlerInterface::class);
$handle = $handler->handle($request)->willReturn(new Response());
$fromRequest = $this->requestToPlugin->fromRequest(Argument::any())->willReturn(
2020-01-01 20:48:31 +01:00
$this->prophesize(AuthenticationPluginInterface::class)->reveal(),
);
$this->middleware->process($request, $handler->reveal());
2018-11-11 13:18:21 +01:00
$handle->shouldHaveBeenCalledOnce();
$fromRequest->shouldNotHaveBeenCalled();
}
2019-02-17 20:28:34 +01:00
public function provideWhitelistedRequests(): iterable
{
$dummyMiddleware = $this->getDummyMiddleware();
2019-02-17 20:28:34 +01:00
yield 'with no route result' => [new ServerRequest()];
yield 'with failure route result' => [(new ServerRequest())->withAttribute(
RouteResult::class,
2020-01-01 20:48:31 +01:00
RouteResult::fromRouteFailure([RequestMethodInterface::METHOD_GET]),
2019-02-17 20:28:34 +01:00
)];
yield 'with whitelisted route' => [(new ServerRequest())->withAttribute(
RouteResult::class,
RouteResult::fromRoute(
2020-01-01 20:48:31 +01:00
new Route('foo', $dummyMiddleware, Route::HTTP_METHOD_ANY, HealthAction::class),
),
2019-02-17 20:28:34 +01:00
)];
yield 'with OPTIONS method' => [(new ServerRequest())->withAttribute(
RouteResult::class,
2020-01-01 20:48:31 +01:00
RouteResult::fromRoute(new Route('bar', $dummyMiddleware), []),
2019-02-17 20:28:34 +01:00
)->withMethod(RequestMethodInterface::METHOD_OPTIONS)];
}
2019-02-17 20:28:34 +01:00
/** @test */
public function updatedResponseIsReturnedWhenVerificationPasses(): void
{
$newResponse = new Response();
$request = (new ServerRequest())->withAttribute(
RouteResult::class,
2020-01-01 20:48:31 +01:00
RouteResult::fromRoute(new Route('bar', $this->getDummyMiddleware()), []),
);
$plugin = $this->prophesize(AuthenticationPluginInterface::class);
2020-01-01 20:48:31 +01:00
$verify = $plugin->verify($request)->will(function (): void {
});
$update = $plugin->update($request, Argument::type(ResponseInterface::class))->willReturn($newResponse);
$fromRequest = $this->requestToPlugin->fromRequest(Argument::any())->willReturn($plugin->reveal());
$handler = $this->prophesize(RequestHandlerInterface::class);
$handle = $handler->handle($request)->willReturn(new Response());
$response = $this->middleware->process($request, $handler->reveal());
$this->assertSame($response, $newResponse);
2018-11-11 13:18:21 +01:00
$verify->shouldHaveBeenCalledOnce();
$update->shouldHaveBeenCalledOnce();
$handle->shouldHaveBeenCalledOnce();
$fromRequest->shouldHaveBeenCalledOnce();
}
private function getDummyMiddleware(): MiddlewareInterface
{
return middleware(fn () => new Response\EmptyResponse());
}
}