2017-09-19 20:06:16 +03:00
|
|
|
<?php
|
2019-08-01 19:58:18 +03:00
|
|
|
declare(strict_types=1);
|
|
|
|
|
2019-08-02 03:29:20 +03:00
|
|
|
namespace api\tests\unit\rbac\rules;
|
2017-09-19 20:06:16 +03:00
|
|
|
|
|
|
|
use api\components\User\IdentityInterface;
|
2019-08-02 03:29:20 +03:00
|
|
|
use api\rbac\rules\AccountOwner;
|
2017-09-19 20:06:16 +03:00
|
|
|
use common\models\Account;
|
2019-02-20 22:58:52 +03:00
|
|
|
use common\tests\unit\TestCase;
|
2019-08-02 15:57:17 +03:00
|
|
|
use InvalidArgumentException;
|
2017-09-19 20:06:16 +03:00
|
|
|
use Yii;
|
|
|
|
use yii\rbac\Item;
|
|
|
|
use const common\LATEST_RULES_VERSION;
|
|
|
|
|
|
|
|
class AccountOwnerTest extends TestCase {
|
|
|
|
|
|
|
|
public function testExecute() {
|
|
|
|
$rule = new AccountOwner();
|
|
|
|
$item = new Item();
|
|
|
|
|
2019-08-02 03:29:20 +03:00
|
|
|
// Identity is null
|
|
|
|
$this->assertFalse($rule->execute('some token', $item, ['accountId' => 123]));
|
|
|
|
|
|
|
|
// Identity presented, but have no account
|
2019-12-14 00:16:05 +03:00
|
|
|
$identity = $this->createMock(IdentityInterface::class);
|
|
|
|
$identity->method('getAccount')->willReturn(null);
|
2019-08-02 03:29:20 +03:00
|
|
|
Yii::$app->user->setIdentity($identity);
|
|
|
|
|
|
|
|
$this->assertFalse($rule->execute('some token', $item, ['accountId' => 123]));
|
|
|
|
|
|
|
|
// Identity has an account
|
2017-09-19 20:06:16 +03:00
|
|
|
$account = new Account();
|
|
|
|
$account->id = 1;
|
|
|
|
$account->status = Account::STATUS_ACTIVE;
|
|
|
|
$account->rules_agreement_version = LATEST_RULES_VERSION;
|
|
|
|
|
2019-12-14 00:16:05 +03:00
|
|
|
$identity = $this->createMock(IdentityInterface::class);
|
|
|
|
$identity->method('getAccount')->willReturn($account);
|
2017-09-19 20:06:16 +03:00
|
|
|
|
2019-08-02 03:29:20 +03:00
|
|
|
Yii::$app->user->setIdentity($identity);
|
2017-09-19 20:06:16 +03:00
|
|
|
|
2020-06-12 00:27:02 +03:00
|
|
|
// Assert that account id matches
|
2017-09-19 20:06:16 +03:00
|
|
|
$this->assertFalse($rule->execute('token', $item, ['accountId' => 2]));
|
|
|
|
$this->assertFalse($rule->execute('token', $item, ['accountId' => '2']));
|
|
|
|
$this->assertTrue($rule->execute('token', $item, ['accountId' => 1]));
|
|
|
|
$this->assertTrue($rule->execute('token', $item, ['accountId' => '1']));
|
2020-06-12 00:27:02 +03:00
|
|
|
|
|
|
|
// Check accepted latest rules
|
2017-09-19 20:06:16 +03:00
|
|
|
$account->rules_agreement_version = null;
|
|
|
|
$this->assertFalse($rule->execute('token', $item, ['accountId' => 1]));
|
|
|
|
$this->assertTrue($rule->execute('token', $item, ['accountId' => 1, 'optionalRules' => true]));
|
|
|
|
$account->rules_agreement_version = LATEST_RULES_VERSION;
|
2020-06-12 00:27:02 +03:00
|
|
|
$this->assertTrue($rule->execute('token', $item, ['accountId' => 1]));
|
|
|
|
|
|
|
|
// Check deleted account behavior
|
|
|
|
$account->status = Account::STATUS_DELETED;
|
|
|
|
$this->assertFalse($rule->execute('token', $item, ['accountId' => 1]));
|
|
|
|
$this->assertTrue($rule->execute('token', $item, ['accountId' => 1, 'allowDeleted' => true]));
|
|
|
|
|
|
|
|
// Banned account should always be not allowed
|
2017-09-19 20:06:16 +03:00
|
|
|
$account->status = Account::STATUS_BANNED;
|
|
|
|
$this->assertFalse($rule->execute('token', $item, ['accountId' => 1]));
|
|
|
|
$this->assertFalse($rule->execute('token', $item, ['accountId' => 1, 'optionalRules' => true]));
|
|
|
|
}
|
|
|
|
|
2019-08-02 03:29:20 +03:00
|
|
|
public function testExecuteWithoutAccountId() {
|
2019-08-02 15:57:17 +03:00
|
|
|
$this->expectException(InvalidArgumentException::class);
|
|
|
|
|
2019-08-02 03:29:20 +03:00
|
|
|
$rule = new AccountOwner();
|
|
|
|
$this->assertFalse($rule->execute('token', new Item(), []));
|
|
|
|
}
|
|
|
|
|
2017-09-19 20:06:16 +03:00
|
|
|
}
|