You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 

113 lines
3.3 KiB

  1. // Copyright 2014 The Go Authors. All rights reserved.
  2. // Use of this source code is governed by a BSD-style
  3. // license that can be found in the LICENSE file.
  4. package internal
  5. import (
  6. "fmt"
  7. "io"
  8. "net/http"
  9. "net/http/httptest"
  10. "net/url"
  11. "testing"
  12. "golang.org/x/net/context"
  13. )
  14. func TestRegisterBrokenAuthHeaderProvider(t *testing.T) {
  15. RegisterBrokenAuthHeaderProvider("https://aaa.com/")
  16. tokenURL := "https://aaa.com/token"
  17. if providerAuthHeaderWorks(tokenURL) {
  18. t.Errorf("got %q as unbroken; want broken", tokenURL)
  19. }
  20. }
  21. func TestRetrieveTokenBustedNoSecret(t *testing.T) {
  22. const clientID = "client-id"
  23. ts := httptest.NewServer(http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
  24. if got, want := r.FormValue("client_id"), clientID; got != want {
  25. t.Errorf("client_id = %q; want %q", got, want)
  26. }
  27. if got, want := r.FormValue("client_secret"), ""; got != want {
  28. t.Errorf("client_secret = %q; want empty", got)
  29. }
  30. w.Header().Set("Content-Type", "application/json")
  31. io.WriteString(w, `{"access_token": "ACCESS_TOKEN", "token_type": "bearer"}`)
  32. }))
  33. defer ts.Close()
  34. RegisterBrokenAuthHeaderProvider(ts.URL)
  35. _, err := RetrieveToken(context.Background(), clientID, "", ts.URL, url.Values{})
  36. if err != nil {
  37. t.Errorf("RetrieveToken = %v; want no error", err)
  38. }
  39. }
  40. func Test_providerAuthHeaderWorks(t *testing.T) {
  41. for _, p := range brokenAuthHeaderProviders {
  42. if providerAuthHeaderWorks(p) {
  43. t.Errorf("got %q as unbroken; want broken", p)
  44. }
  45. p := fmt.Sprintf("%ssomesuffix", p)
  46. if providerAuthHeaderWorks(p) {
  47. t.Errorf("got %q as unbroken; want broken", p)
  48. }
  49. }
  50. p := "https://api.not-in-the-list-example.com/"
  51. if !providerAuthHeaderWorks(p) {
  52. t.Errorf("got %q as unbroken; want broken", p)
  53. }
  54. }
  55. func TestProviderAuthHeaderWorksDomain(t *testing.T) {
  56. tests := []struct {
  57. tokenURL string
  58. wantWorks bool
  59. }{
  60. {"https://dev-12345.okta.com/token-url", false},
  61. {"https://dev-12345.oktapreview.com/token-url", false},
  62. {"https://dev-12345.okta.org/token-url", true},
  63. {"https://foo.bar.force.com/token-url", false},
  64. {"https://foo.force.com/token-url", false},
  65. {"https://force.com/token-url", true},
  66. }
  67. for _, test := range tests {
  68. got := providerAuthHeaderWorks(test.tokenURL)
  69. if got != test.wantWorks {
  70. t.Errorf("providerAuthHeaderWorks(%q) = %v; want %v", test.tokenURL, got, test.wantWorks)
  71. }
  72. }
  73. }
  74. func TestRetrieveTokenWithContexts(t *testing.T) {
  75. const clientID = "client-id"
  76. ts := httptest.NewServer(http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
  77. w.Header().Set("Content-Type", "application/json")
  78. io.WriteString(w, `{"access_token": "ACCESS_TOKEN", "token_type": "bearer"}`)
  79. }))
  80. defer ts.Close()
  81. _, err := RetrieveToken(context.Background(), clientID, "", ts.URL, url.Values{})
  82. if err != nil {
  83. t.Errorf("RetrieveToken (with background context) = %v; want no error", err)
  84. }
  85. retrieved := make(chan struct{})
  86. cancellingts := httptest.NewServer(http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
  87. <-retrieved
  88. }))
  89. defer cancellingts.Close()
  90. ctx, cancel := context.WithCancel(context.Background())
  91. cancel()
  92. _, err = RetrieveToken(ctx, clientID, "", cancellingts.URL, url.Values{})
  93. close(retrieved)
  94. if err == nil {
  95. t.Errorf("RetrieveToken (with cancelled context) = nil; want error")
  96. }
  97. }