users_test.go 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368
  1. // Copyright 2020 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package db
  5. import (
  6. "context"
  7. "fmt"
  8. "testing"
  9. "time"
  10. "github.com/stretchr/testify/assert"
  11. "github.com/stretchr/testify/require"
  12. "gogs.io/gogs/internal/auth"
  13. "gogs.io/gogs/internal/dbtest"
  14. "gogs.io/gogs/internal/errutil"
  15. )
  16. func TestUsers(t *testing.T) {
  17. if testing.Short() {
  18. t.Skip()
  19. }
  20. t.Parallel()
  21. tables := []interface{}{new(User), new(EmailAddress), new(Repository), new(Follow)}
  22. db := &users{
  23. DB: dbtest.NewDB(t, "users", tables...),
  24. }
  25. for _, tc := range []struct {
  26. name string
  27. test func(*testing.T, *users)
  28. }{
  29. {"Authenticate", usersAuthenticate},
  30. {"Create", usersCreate},
  31. {"GetByEmail", usersGetByEmail},
  32. {"GetByID", usersGetByID},
  33. {"GetByUsername", usersGetByUsername},
  34. {"HasForkedRepository", usersHasForkedRepository},
  35. {"ListFollowers", usersListFollowers},
  36. {"ListFollowings", usersListFollowings},
  37. } {
  38. t.Run(tc.name, func(t *testing.T) {
  39. t.Cleanup(func() {
  40. err := clearTables(t, db.DB, tables...)
  41. require.NoError(t, err)
  42. })
  43. tc.test(t, db)
  44. })
  45. if t.Failed() {
  46. break
  47. }
  48. }
  49. }
  50. func usersAuthenticate(t *testing.T, db *users) {
  51. ctx := context.Background()
  52. password := "pa$$word"
  53. alice, err := db.Create(ctx, "alice", "[email protected]",
  54. CreateUserOptions{
  55. Password: password,
  56. },
  57. )
  58. require.NoError(t, err)
  59. t.Run("user not found", func(t *testing.T) {
  60. _, err := db.Authenticate(ctx, "bob", password, -1)
  61. wantErr := auth.ErrBadCredentials{Args: map[string]interface{}{"login": "bob"}}
  62. assert.Equal(t, wantErr, err)
  63. })
  64. t.Run("invalid password", func(t *testing.T) {
  65. _, err := db.Authenticate(ctx, alice.Name, "bad_password", -1)
  66. wantErr := auth.ErrBadCredentials{Args: map[string]interface{}{"login": alice.Name, "userID": alice.ID}}
  67. assert.Equal(t, wantErr, err)
  68. })
  69. t.Run("via email and password", func(t *testing.T) {
  70. user, err := db.Authenticate(ctx, alice.Email, password, -1)
  71. require.NoError(t, err)
  72. assert.Equal(t, alice.Name, user.Name)
  73. })
  74. t.Run("via username and password", func(t *testing.T) {
  75. user, err := db.Authenticate(ctx, alice.Name, password, -1)
  76. require.NoError(t, err)
  77. assert.Equal(t, alice.Name, user.Name)
  78. })
  79. t.Run("login source mismatch", func(t *testing.T) {
  80. _, err := db.Authenticate(ctx, alice.Email, password, 1)
  81. gotErr := fmt.Sprintf("%v", err)
  82. wantErr := ErrLoginSourceMismatch{args: map[string]interface{}{"actual": 0, "expect": 1}}.Error()
  83. assert.Equal(t, wantErr, gotErr)
  84. })
  85. t.Run("via login source", func(t *testing.T) {
  86. mockLoginSources := NewMockLoginSourcesStore()
  87. mockLoginSources.GetByIDFunc.SetDefaultHook(func(ctx context.Context, id int64) (*LoginSource, error) {
  88. mockProvider := NewMockProvider()
  89. mockProvider.AuthenticateFunc.SetDefaultReturn(&auth.ExternalAccount{}, nil)
  90. s := &LoginSource{
  91. IsActived: true,
  92. Provider: mockProvider,
  93. }
  94. return s, nil
  95. })
  96. setMockLoginSourcesStore(t, mockLoginSources)
  97. bob, err := db.Create(ctx, "bob", "[email protected]",
  98. CreateUserOptions{
  99. Password: password,
  100. LoginSource: 1,
  101. },
  102. )
  103. require.NoError(t, err)
  104. user, err := db.Authenticate(ctx, bob.Email, password, 1)
  105. require.NoError(t, err)
  106. assert.Equal(t, bob.Name, user.Name)
  107. })
  108. t.Run("new user via login source", func(t *testing.T) {
  109. mockLoginSources := NewMockLoginSourcesStore()
  110. mockLoginSources.GetByIDFunc.SetDefaultHook(func(ctx context.Context, id int64) (*LoginSource, error) {
  111. mockProvider := NewMockProvider()
  112. mockProvider.AuthenticateFunc.SetDefaultReturn(
  113. &auth.ExternalAccount{
  114. Name: "cindy",
  115. Email: "[email protected]",
  116. },
  117. nil,
  118. )
  119. s := &LoginSource{
  120. IsActived: true,
  121. Provider: mockProvider,
  122. }
  123. return s, nil
  124. })
  125. setMockLoginSourcesStore(t, mockLoginSources)
  126. user, err := db.Authenticate(ctx, "cindy", password, 1)
  127. require.NoError(t, err)
  128. assert.Equal(t, "cindy", user.Name)
  129. user, err = db.GetByUsername(ctx, "cindy")
  130. require.NoError(t, err)
  131. assert.Equal(t, "[email protected]", user.Email)
  132. })
  133. }
  134. func usersCreate(t *testing.T, db *users) {
  135. ctx := context.Background()
  136. alice, err := db.Create(ctx, "alice", "[email protected]",
  137. CreateUserOptions{
  138. Activated: true,
  139. },
  140. )
  141. require.NoError(t, err)
  142. t.Run("name not allowed", func(t *testing.T) {
  143. _, err := db.Create(ctx, "-", "", CreateUserOptions{})
  144. wantErr := ErrNameNotAllowed{args: errutil.Args{"reason": "reserved", "name": "-"}}
  145. assert.Equal(t, wantErr, err)
  146. })
  147. t.Run("name already exists", func(t *testing.T) {
  148. _, err := db.Create(ctx, alice.Name, "", CreateUserOptions{})
  149. wantErr := ErrUserAlreadyExist{args: errutil.Args{"name": alice.Name}}
  150. assert.Equal(t, wantErr, err)
  151. })
  152. t.Run("email already exists", func(t *testing.T) {
  153. _, err := db.Create(ctx, "bob", alice.Email, CreateUserOptions{})
  154. wantErr := ErrEmailAlreadyUsed{args: errutil.Args{"email": alice.Email}}
  155. assert.Equal(t, wantErr, err)
  156. })
  157. user, err := db.GetByUsername(ctx, alice.Name)
  158. require.NoError(t, err)
  159. assert.Equal(t, db.NowFunc().Format(time.RFC3339), user.Created.UTC().Format(time.RFC3339))
  160. assert.Equal(t, db.NowFunc().Format(time.RFC3339), user.Updated.UTC().Format(time.RFC3339))
  161. }
  162. func usersGetByEmail(t *testing.T, db *users) {
  163. ctx := context.Background()
  164. t.Run("empty email", func(t *testing.T) {
  165. _, err := db.GetByEmail(ctx, "")
  166. wantErr := ErrUserNotExist{args: errutil.Args{"email": ""}}
  167. assert.Equal(t, wantErr, err)
  168. })
  169. t.Run("ignore organization", func(t *testing.T) {
  170. // TODO: Use Orgs.Create to replace SQL hack when the method is available.
  171. org, err := db.Create(ctx, "gogs", "[email protected]", CreateUserOptions{})
  172. require.NoError(t, err)
  173. err = db.Model(&User{}).Where("id", org.ID).UpdateColumn("type", UserTypeOrganization).Error
  174. require.NoError(t, err)
  175. _, err = db.GetByEmail(ctx, org.Email)
  176. wantErr := ErrUserNotExist{args: errutil.Args{"email": org.Email}}
  177. assert.Equal(t, wantErr, err)
  178. })
  179. t.Run("by primary email", func(t *testing.T) {
  180. alice, err := db.Create(ctx, "alice", "[email protected]", CreateUserOptions{})
  181. require.NoError(t, err)
  182. _, err = db.GetByEmail(ctx, alice.Email)
  183. wantErr := ErrUserNotExist{args: errutil.Args{"email": alice.Email}}
  184. assert.Equal(t, wantErr, err)
  185. // Mark user as activated
  186. // TODO: Use UserEmails.Verify to replace SQL hack when the method is available.
  187. err = db.Model(&User{}).Where("id", alice.ID).UpdateColumn("is_active", true).Error
  188. require.NoError(t, err)
  189. user, err := db.GetByEmail(ctx, alice.Email)
  190. require.NoError(t, err)
  191. assert.Equal(t, alice.Name, user.Name)
  192. })
  193. t.Run("by secondary email", func(t *testing.T) {
  194. bob, err := db.Create(ctx, "bob", "[email protected]", CreateUserOptions{})
  195. require.NoError(t, err)
  196. // TODO: Use UserEmails.Create to replace SQL hack when the method is available.
  197. email2 := "[email protected]"
  198. err = db.Exec(`INSERT INTO email_address (uid, email) VALUES (?, ?)`, bob.ID, email2).Error
  199. require.NoError(t, err)
  200. _, err = db.GetByEmail(ctx, email2)
  201. wantErr := ErrUserNotExist{args: errutil.Args{"email": email2}}
  202. assert.Equal(t, wantErr, err)
  203. // TODO: Use UserEmails.Verify to replace SQL hack when the method is available.
  204. err = db.Exec(`UPDATE email_address SET is_activated = ? WHERE email = ?`, true, email2).Error
  205. require.NoError(t, err)
  206. user, err := db.GetByEmail(ctx, email2)
  207. require.NoError(t, err)
  208. assert.Equal(t, bob.Name, user.Name)
  209. })
  210. }
  211. func usersGetByID(t *testing.T, db *users) {
  212. ctx := context.Background()
  213. alice, err := db.Create(ctx, "alice", "[email protected]", CreateUserOptions{})
  214. require.NoError(t, err)
  215. user, err := db.GetByID(ctx, alice.ID)
  216. require.NoError(t, err)
  217. assert.Equal(t, alice.Name, user.Name)
  218. _, err = db.GetByID(ctx, 404)
  219. wantErr := ErrUserNotExist{args: errutil.Args{"userID": int64(404)}}
  220. assert.Equal(t, wantErr, err)
  221. }
  222. func usersGetByUsername(t *testing.T, db *users) {
  223. ctx := context.Background()
  224. alice, err := db.Create(ctx, "alice", "[email protected]", CreateUserOptions{})
  225. require.NoError(t, err)
  226. user, err := db.GetByUsername(ctx, alice.Name)
  227. require.NoError(t, err)
  228. assert.Equal(t, alice.Name, user.Name)
  229. _, err = db.GetByUsername(ctx, "bad_username")
  230. wantErr := ErrUserNotExist{args: errutil.Args{"name": "bad_username"}}
  231. assert.Equal(t, wantErr, err)
  232. }
  233. func usersHasForkedRepository(t *testing.T, db *users) {
  234. ctx := context.Background()
  235. has := db.HasForkedRepository(ctx, 1, 1)
  236. assert.False(t, has)
  237. _, err := NewReposStore(db.DB).Create(
  238. ctx,
  239. 1,
  240. CreateRepoOptions{
  241. Name: "repo1",
  242. ForkID: 1,
  243. },
  244. )
  245. require.NoError(t, err)
  246. has = db.HasForkedRepository(ctx, 1, 1)
  247. assert.True(t, has)
  248. }
  249. func usersListFollowers(t *testing.T, db *users) {
  250. ctx := context.Background()
  251. john, err := db.Create(ctx, "john", "[email protected]", CreateUserOptions{})
  252. require.NoError(t, err)
  253. got, err := db.ListFollowers(ctx, john.ID, 1, 1)
  254. require.NoError(t, err)
  255. assert.Empty(t, got)
  256. alice, err := db.Create(ctx, "alice", "[email protected]", CreateUserOptions{})
  257. require.NoError(t, err)
  258. bob, err := db.Create(ctx, "bob", "[email protected]", CreateUserOptions{})
  259. require.NoError(t, err)
  260. followsStore := NewFollowsStore(db.DB)
  261. err = followsStore.Follow(ctx, alice.ID, john.ID)
  262. require.NoError(t, err)
  263. err = followsStore.Follow(ctx, bob.ID, john.ID)
  264. require.NoError(t, err)
  265. // First page only has bob
  266. got, err = db.ListFollowers(ctx, john.ID, 1, 1)
  267. require.NoError(t, err)
  268. require.Len(t, got, 1)
  269. assert.Equal(t, bob.ID, got[0].ID)
  270. // Second page only has alice
  271. got, err = db.ListFollowers(ctx, john.ID, 2, 1)
  272. require.NoError(t, err)
  273. require.Len(t, got, 1)
  274. assert.Equal(t, alice.ID, got[0].ID)
  275. }
  276. func usersListFollowings(t *testing.T, db *users) {
  277. ctx := context.Background()
  278. john, err := db.Create(ctx, "john", "[email protected]", CreateUserOptions{})
  279. require.NoError(t, err)
  280. got, err := db.ListFollowers(ctx, john.ID, 1, 1)
  281. require.NoError(t, err)
  282. assert.Empty(t, got)
  283. alice, err := db.Create(ctx, "alice", "[email protected]", CreateUserOptions{})
  284. require.NoError(t, err)
  285. bob, err := db.Create(ctx, "bob", "[email protected]", CreateUserOptions{})
  286. require.NoError(t, err)
  287. followsStore := NewFollowsStore(db.DB)
  288. err = followsStore.Follow(ctx, john.ID, alice.ID)
  289. require.NoError(t, err)
  290. err = followsStore.Follow(ctx, john.ID, bob.ID)
  291. require.NoError(t, err)
  292. // First page only has bob
  293. got, err = db.ListFollowings(ctx, john.ID, 1, 1)
  294. require.NoError(t, err)
  295. require.Len(t, got, 1)
  296. assert.Equal(t, bob.ID, got[0].ID)
  297. // Second page only has alice
  298. got, err = db.ListFollowings(ctx, john.ID, 2, 1)
  299. require.NoError(t, err)
  300. require.Len(t, got, 1)
  301. assert.Equal(t, alice.ID, got[0].ID)
  302. }