2016-02-18 16:17:52 +05:30
|
|
|
<?php
|
|
|
|
|
|
|
|
namespace LeagueTests\Grant;
|
|
|
|
|
2016-04-09 19:55:45 +05:30
|
|
|
use League\OAuth2\Server\Entities\AccessTokenEntityInterface;
|
|
|
|
use League\OAuth2\Server\Entities\RefreshTokenEntityInterface;
|
2016-02-18 16:17:52 +05:30
|
|
|
use League\OAuth2\Server\Grant\PasswordGrant;
|
|
|
|
use League\OAuth2\Server\Repositories\AccessTokenRepositoryInterface;
|
|
|
|
use League\OAuth2\Server\Repositories\ClientRepositoryInterface;
|
|
|
|
use League\OAuth2\Server\Repositories\RefreshTokenRepositoryInterface;
|
2016-03-24 00:20:14 +05:30
|
|
|
use League\OAuth2\Server\Repositories\ScopeRepositoryInterface;
|
2016-02-18 16:17:52 +05:30
|
|
|
use League\OAuth2\Server\Repositories\UserRepositoryInterface;
|
2016-04-09 20:16:40 +05:30
|
|
|
use LeagueTests\Stubs\AccessTokenEntity;
|
2016-03-15 05:40:47 +05:30
|
|
|
use LeagueTests\Stubs\ClientEntity;
|
2016-04-09 20:16:40 +05:30
|
|
|
use LeagueTests\Stubs\RefreshTokenEntity;
|
2017-11-14 03:50:42 +05:30
|
|
|
use LeagueTests\Stubs\ScopeEntity;
|
2016-02-18 16:17:52 +05:30
|
|
|
use LeagueTests\Stubs\StubResponseType;
|
|
|
|
use LeagueTests\Stubs\UserEntity;
|
2017-11-08 23:37:07 +05:30
|
|
|
use PHPUnit\Framework\TestCase;
|
2016-02-18 16:17:52 +05:30
|
|
|
use Zend\Diactoros\ServerRequest;
|
|
|
|
|
2017-11-08 23:37:07 +05:30
|
|
|
class PasswordGrantTest extends TestCase
|
2016-02-18 16:17:52 +05:30
|
|
|
{
|
2017-11-14 03:50:42 +05:30
|
|
|
const DEFAULT_SCOPE = 'basic';
|
|
|
|
|
2016-02-18 16:17:52 +05:30
|
|
|
public function testGetIdentifier()
|
|
|
|
{
|
2016-07-08 18:59:21 +05:30
|
|
|
$userRepositoryMock = $this->getMockBuilder(UserRepositoryInterface::class)->getMock();
|
|
|
|
$refreshTokenRepositoryMock = $this->getMockBuilder(RefreshTokenRepositoryInterface::class)->getMock();
|
2016-02-18 16:17:52 +05:30
|
|
|
|
|
|
|
$grant = new PasswordGrant($userRepositoryMock, $refreshTokenRepositoryMock);
|
|
|
|
$this->assertEquals('password', $grant->getIdentifier());
|
|
|
|
}
|
|
|
|
|
|
|
|
public function testRespondToRequest()
|
|
|
|
{
|
|
|
|
$client = new ClientEntity();
|
|
|
|
$clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock();
|
|
|
|
$clientRepositoryMock->method('getClientEntity')->willReturn($client);
|
|
|
|
|
|
|
|
$accessTokenRepositoryMock = $this->getMockBuilder(AccessTokenRepositoryInterface::class)->getMock();
|
2016-03-25 18:39:26 +05:30
|
|
|
$accessTokenRepositoryMock->method('getNewToken')->willReturn(new AccessTokenEntity());
|
2016-02-18 16:17:52 +05:30
|
|
|
$accessTokenRepositoryMock->method('persistNewAccessToken')->willReturnSelf();
|
|
|
|
|
|
|
|
$userRepositoryMock = $this->getMockBuilder(UserRepositoryInterface::class)->getMock();
|
|
|
|
$userEntity = new UserEntity();
|
|
|
|
$userRepositoryMock->method('getUserEntityByUserCredentials')->willReturn($userEntity);
|
|
|
|
|
|
|
|
$refreshTokenRepositoryMock = $this->getMockBuilder(RefreshTokenRepositoryInterface::class)->getMock();
|
2016-02-18 17:37:50 +05:30
|
|
|
$refreshTokenRepositoryMock->method('persistNewRefreshToken')->willReturnSelf();
|
2016-03-25 18:39:26 +05:30
|
|
|
$refreshTokenRepositoryMock->method('getNewRefreshToken')->willReturn(new RefreshTokenEntity());
|
2016-02-18 16:17:52 +05:30
|
|
|
|
2017-11-14 03:50:42 +05:30
|
|
|
$scope = new ScopeEntity();
|
2016-03-24 00:20:14 +05:30
|
|
|
$scopeRepositoryMock = $this->getMockBuilder(ScopeRepositoryInterface::class)->getMock();
|
2017-11-14 03:50:42 +05:30
|
|
|
$scopeRepositoryMock->method('getScopeEntityByIdentifier')->willReturn($scope);
|
2016-03-24 00:20:14 +05:30
|
|
|
$scopeRepositoryMock->method('finalizeScopes')->willReturnArgument(0);
|
|
|
|
|
2016-02-18 16:17:52 +05:30
|
|
|
$grant = new PasswordGrant($userRepositoryMock, $refreshTokenRepositoryMock);
|
|
|
|
$grant->setClientRepository($clientRepositoryMock);
|
|
|
|
$grant->setAccessTokenRepository($accessTokenRepositoryMock);
|
2016-03-24 00:20:14 +05:30
|
|
|
$grant->setScopeRepository($scopeRepositoryMock);
|
2017-11-14 03:50:42 +05:30
|
|
|
$grant->setDefaultScope(self::DEFAULT_SCOPE);
|
2016-02-18 16:17:52 +05:30
|
|
|
|
|
|
|
$serverRequest = new ServerRequest();
|
|
|
|
$serverRequest = $serverRequest->withParsedBody(
|
|
|
|
[
|
|
|
|
'client_id' => 'foo',
|
|
|
|
'client_secret' => 'bar',
|
|
|
|
'username' => 'foo',
|
|
|
|
'password' => 'bar',
|
|
|
|
]
|
|
|
|
);
|
|
|
|
|
|
|
|
$responseType = new StubResponseType();
|
2016-04-10 14:58:12 +05:30
|
|
|
$grant->respondToAccessTokenRequest($serverRequest, $responseType, new \DateInterval('PT5M'));
|
2016-02-18 16:17:52 +05:30
|
|
|
|
2017-12-07 01:54:42 +05:30
|
|
|
$this->assertInstanceOf(AccessTokenEntityInterface::class, $responseType->getAccessToken());
|
|
|
|
$this->assertInstanceOf(RefreshTokenEntityInterface::class, $responseType->getRefreshToken());
|
2016-02-18 16:17:52 +05:30
|
|
|
}
|
2016-02-21 21:39:39 +05:30
|
|
|
|
|
|
|
/**
|
|
|
|
* @expectedException \League\OAuth2\Server\Exception\OAuthServerException
|
|
|
|
*/
|
|
|
|
public function testRespondToRequestMissingUsername()
|
|
|
|
{
|
|
|
|
$client = new ClientEntity();
|
|
|
|
$clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock();
|
|
|
|
$clientRepositoryMock->method('getClientEntity')->willReturn($client);
|
|
|
|
|
|
|
|
$accessTokenRepositoryMock = $this->getMockBuilder(AccessTokenRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$userRepositoryMock = $this->getMockBuilder(UserRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$refreshTokenRepositoryMock = $this->getMockBuilder(RefreshTokenRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$grant = new PasswordGrant($userRepositoryMock, $refreshTokenRepositoryMock);
|
|
|
|
$grant->setClientRepository($clientRepositoryMock);
|
|
|
|
$grant->setAccessTokenRepository($accessTokenRepositoryMock);
|
|
|
|
|
|
|
|
$serverRequest = new ServerRequest();
|
|
|
|
$serverRequest = $serverRequest->withParsedBody(
|
|
|
|
[
|
|
|
|
'client_id' => 'foo',
|
|
|
|
'client_secret' => 'bar',
|
|
|
|
]
|
|
|
|
);
|
|
|
|
|
|
|
|
$responseType = new StubResponseType();
|
2016-04-10 14:58:12 +05:30
|
|
|
$grant->respondToAccessTokenRequest($serverRequest, $responseType, new \DateInterval('PT5M'));
|
2016-02-21 21:39:39 +05:30
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* @expectedException \League\OAuth2\Server\Exception\OAuthServerException
|
|
|
|
*/
|
|
|
|
public function testRespondToRequestMissingPassword()
|
|
|
|
{
|
|
|
|
$client = new ClientEntity();
|
|
|
|
$clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock();
|
|
|
|
$clientRepositoryMock->method('getClientEntity')->willReturn($client);
|
|
|
|
|
|
|
|
$accessTokenRepositoryMock = $this->getMockBuilder(AccessTokenRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$userRepositoryMock = $this->getMockBuilder(UserRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$refreshTokenRepositoryMock = $this->getMockBuilder(RefreshTokenRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$grant = new PasswordGrant($userRepositoryMock, $refreshTokenRepositoryMock);
|
|
|
|
$grant->setClientRepository($clientRepositoryMock);
|
|
|
|
$grant->setAccessTokenRepository($accessTokenRepositoryMock);
|
|
|
|
|
|
|
|
$serverRequest = new ServerRequest();
|
|
|
|
$serverRequest = $serverRequest->withParsedBody(
|
|
|
|
[
|
|
|
|
'client_id' => 'foo',
|
|
|
|
'client_secret' => 'bar',
|
|
|
|
'username' => 'alex',
|
|
|
|
]
|
|
|
|
);
|
|
|
|
|
|
|
|
$responseType = new StubResponseType();
|
2016-04-10 14:58:12 +05:30
|
|
|
$grant->respondToAccessTokenRequest($serverRequest, $responseType, new \DateInterval('PT5M'));
|
2016-02-21 21:39:39 +05:30
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* @expectedException \League\OAuth2\Server\Exception\OAuthServerException
|
|
|
|
*/
|
|
|
|
public function testRespondToRequestBadCredentials()
|
|
|
|
{
|
|
|
|
$client = new ClientEntity();
|
|
|
|
$clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock();
|
|
|
|
$clientRepositoryMock->method('getClientEntity')->willReturn($client);
|
|
|
|
|
|
|
|
$accessTokenRepositoryMock = $this->getMockBuilder(AccessTokenRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$userRepositoryMock = $this->getMockBuilder(UserRepositoryInterface::class)->getMock();
|
|
|
|
$userRepositoryMock->method('getUserEntityByUserCredentials')->willReturn(null);
|
|
|
|
|
|
|
|
$refreshTokenRepositoryMock = $this->getMockBuilder(RefreshTokenRepositoryInterface::class)->getMock();
|
|
|
|
|
|
|
|
$grant = new PasswordGrant($userRepositoryMock, $refreshTokenRepositoryMock);
|
|
|
|
$grant->setClientRepository($clientRepositoryMock);
|
|
|
|
$grant->setAccessTokenRepository($accessTokenRepositoryMock);
|
|
|
|
|
|
|
|
$serverRequest = new ServerRequest();
|
|
|
|
$serverRequest = $serverRequest->withParsedBody(
|
|
|
|
[
|
|
|
|
'client_id' => 'foo',
|
|
|
|
'client_secret' => 'bar',
|
|
|
|
'username' => 'alex',
|
|
|
|
'password' => 'whisky',
|
|
|
|
]
|
|
|
|
);
|
|
|
|
|
|
|
|
$responseType = new StubResponseType();
|
2016-04-10 14:58:12 +05:30
|
|
|
$grant->respondToAccessTokenRequest($serverRequest, $responseType, new \DateInterval('PT5M'));
|
2016-02-21 21:39:39 +05:30
|
|
|
}
|
2017-11-14 04:46:30 +05:30
|
|
|
|
|
|
|
/**
|
|
|
|
* @expectedException \League\OAuth2\Server\Exception\OAuthServerException
|
|
|
|
* @expectedExceptionCode 5
|
|
|
|
*/
|
|
|
|
public function testRespondToRequestFailsWithoutScope()
|
|
|
|
{
|
|
|
|
$client = new ClientEntity();
|
|
|
|
$clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock();
|
|
|
|
$clientRepositoryMock->method('getClientEntity')->willReturn($client);
|
|
|
|
|
|
|
|
$accessTokenRepositoryMock = $this->getMockBuilder(AccessTokenRepositoryInterface::class)->getMock();
|
|
|
|
$accessTokenRepositoryMock->method('getNewToken')->willReturn(new AccessTokenEntity());
|
|
|
|
$accessTokenRepositoryMock->method('persistNewAccessToken')->willReturnSelf();
|
|
|
|
|
|
|
|
$userRepositoryMock = $this->getMockBuilder(UserRepositoryInterface::class)->getMock();
|
|
|
|
$userEntity = new UserEntity();
|
|
|
|
$userRepositoryMock->method('getUserEntityByUserCredentials')->willReturn($userEntity);
|
|
|
|
|
|
|
|
$refreshTokenRepositoryMock = $this->getMockBuilder(RefreshTokenRepositoryInterface::class)->getMock();
|
|
|
|
$refreshTokenRepositoryMock->method('persistNewRefreshToken')->willReturnSelf();
|
|
|
|
$refreshTokenRepositoryMock->method('getNewRefreshToken')->willReturn(new RefreshTokenEntity());
|
|
|
|
|
|
|
|
$scope = new ScopeEntity();
|
|
|
|
$scopeRepositoryMock = $this->getMockBuilder(ScopeRepositoryInterface::class)->getMock();
|
|
|
|
$scopeRepositoryMock->method('getScopeEntityByIdentifier')->willReturn($scope);
|
|
|
|
$scopeRepositoryMock->method('finalizeScopes')->willReturnArgument(0);
|
|
|
|
|
|
|
|
$grant = new PasswordGrant($userRepositoryMock, $refreshTokenRepositoryMock);
|
|
|
|
$grant->setClientRepository($clientRepositoryMock);
|
|
|
|
$grant->setAccessTokenRepository($accessTokenRepositoryMock);
|
|
|
|
$grant->setScopeRepository($scopeRepositoryMock);
|
|
|
|
|
|
|
|
$serverRequest = new ServerRequest();
|
|
|
|
$serverRequest = $serverRequest->withParsedBody(
|
|
|
|
[
|
|
|
|
'client_id' => 'foo',
|
|
|
|
'client_secret' => 'bar',
|
|
|
|
'username' => 'foo',
|
|
|
|
'password' => 'bar',
|
|
|
|
]
|
|
|
|
);
|
|
|
|
|
|
|
|
$responseType = new StubResponseType();
|
|
|
|
$grant->respondToAccessTokenRequest($serverRequest, $responseType, new \DateInterval('PT5M'));
|
|
|
|
}
|
2016-02-18 16:17:52 +05:30
|
|
|
}
|