GroupControllerTest.php 8.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336
  1. <?php
  2. namespace Tests\Api\v1\Controllers;
  3. use App\User;
  4. use App\Group;
  5. use Tests\FeatureTestCase;
  6. use App\TwoFAccount;
  7. class GroupControllerTest extends FeatureTestCase
  8. {
  9. /**
  10. * @var \App\User
  11. */
  12. protected $user;
  13. /**
  14. * @test
  15. */
  16. public function setUp(): void
  17. {
  18. parent::setUp();
  19. $this->user = factory(User::class)->create();
  20. }
  21. /**
  22. * @test
  23. */
  24. public function test_index_returns_group_collection_with_pseudo_group()
  25. {
  26. factory(Group::class, 3)->create();
  27. $response = $this->actingAs($this->user, 'api')
  28. ->json('GET', '/api/v1/groups')
  29. ->assertOk()
  30. ->assertJsonCount(4, $key = null)
  31. ->assertJsonStructure([
  32. '*' => [
  33. 'id',
  34. 'name',
  35. 'twofaccounts_count',
  36. ]
  37. ])
  38. ->assertJsonFragment([
  39. 'id' => 0,
  40. 'name' => 'All',
  41. 'twofaccounts_count' => 0,
  42. ]);
  43. }
  44. /**
  45. * @test
  46. */
  47. public function test_store_returns_created_group_resource()
  48. {
  49. $response = $this->actingAs($this->user, 'api')
  50. ->json('POST', '/api/v1/groups', [
  51. 'name' => 'My second group',
  52. ])
  53. ->assertCreated()
  54. ->assertExactJson([
  55. 'id' => 1,
  56. 'name' => 'My second group',
  57. 'twofaccounts_count' => 0,
  58. ]);
  59. }
  60. /**
  61. * @test
  62. */
  63. public function test_store_invalid_data_returns_validation_error()
  64. {
  65. $response = $this->actingAs($this->user, 'api')
  66. ->json('POST', '/api/v1/groups', [
  67. 'name' => null,
  68. ])
  69. ->assertStatus(422);
  70. }
  71. /**
  72. * @test
  73. */
  74. public function test_show_returns_group_resource()
  75. {
  76. $group = factory(Group::class)->create([
  77. 'name' => 'My group',
  78. ]);
  79. $response = $this->actingAs($this->user, 'api')
  80. ->json('GET', '/api/v1/groups/' . $group->id)
  81. ->assertOk()
  82. ->assertExactJson([
  83. 'id' => 1,
  84. 'name' => 'My group',
  85. 'twofaccounts_count' => 0,
  86. ]);
  87. }
  88. /**
  89. * @test
  90. */
  91. public function test_show_missing_group_returns_not_found()
  92. {
  93. $response = $this->actingAs($this->user, 'api')
  94. ->json('GET', '/api/v1/groups/1000')
  95. ->assertNotFound()
  96. ->assertJsonStructure([
  97. 'message'
  98. ]);
  99. }
  100. /**
  101. * @test
  102. */
  103. public function test_update_returns_updated_group_resource()
  104. {
  105. $group = factory(Group::class)->create();
  106. $response = $this->actingAs($this->user, 'api')
  107. ->json('PUT', '/api/v1/groups/' . $group->id, [
  108. 'name' => 'name updated',
  109. ])
  110. ->assertOk()
  111. ->assertExactJson([
  112. 'id' => 1,
  113. 'name' => 'name updated',
  114. 'twofaccounts_count' => 0,
  115. ]);
  116. }
  117. /**
  118. * @test
  119. */
  120. public function test_update_missing_group_returns_not_found()
  121. {
  122. $response = $this->actingAs($this->user, 'api')
  123. ->json('PUT', '/api/v1/groups/1000', [
  124. 'name' => 'testUpdate',
  125. ])
  126. ->assertNotFound()
  127. ->assertJsonStructure([
  128. 'message'
  129. ]);
  130. }
  131. /**
  132. * @test
  133. */
  134. public function test_update_with_invalid_data_returns_validation_error()
  135. {
  136. $group = factory(Group::class)->create();
  137. $response = $this->actingAs($this->user, 'api')
  138. ->json('PUT', '/api/v1/groups/' . $group->id, [
  139. 'name' => null,
  140. ])
  141. ->assertStatus(422);
  142. }
  143. /**
  144. * @test
  145. */
  146. public function test_assign_accounts_returns_updated_group_resource()
  147. {
  148. $group = factory(Group::class)->create();
  149. $accounts = factory(TwoFAccount::class, 2)->create();
  150. $response = $this->actingAs($this->user, 'api')
  151. ->json('POST', '/api/v1/groups/' . $group->id . '/assign', [
  152. 'ids' => [1,2],
  153. ])
  154. ->assertOk()
  155. ->assertExactJson([
  156. 'id' => $group->id,
  157. 'name' => $group->name,
  158. 'twofaccounts_count' => 2,
  159. ]);
  160. }
  161. /**
  162. * @test
  163. */
  164. public function test_assign_accounts_to_missing_group_returns_not_found()
  165. {
  166. $accounts = factory(TwoFAccount::class, 2)->create();
  167. $response = $this->actingAs($this->user, 'api')
  168. ->json('POST', '/api/v1/groups/1000/assign', [
  169. 'ids' => [1,2],
  170. ])
  171. ->assertNotFound()
  172. ->assertJsonStructure([
  173. 'message'
  174. ]);
  175. }
  176. /**
  177. * @test
  178. */
  179. public function test_assign_invalid_accounts_returns_validation_error()
  180. {
  181. $group = factory(Group::class)->create();
  182. $accounts = factory(TwoFAccount::class, 2)->create();
  183. $response = $this->actingAs($this->user, 'api')
  184. ->json('POST', '/api/v1/groups/' . $group->id . '/assign', [
  185. 'ids' => 1,
  186. ])
  187. ->assertStatus(422);
  188. }
  189. /**
  190. * @test
  191. */
  192. public function test_get_assigned_accounts_returns_twofaccounts_collection()
  193. {
  194. $group = factory(Group::class)->create();
  195. $accounts = factory(TwoFAccount::class, 2)->create();
  196. $assign = $this->actingAs($this->user, 'api')
  197. ->json('POST', '/api/v1/groups/' . $group->id . '/assign', [
  198. 'ids' => [1,2],
  199. ]);
  200. $response = $this->actingAs($this->user, 'api')
  201. ->json('GET', '/api/v1/groups/' . $group->id . '/twofaccounts')
  202. ->assertOk()
  203. ->assertJsonCount(2)
  204. ->assertJsonStructure([
  205. '*' => [
  206. 'group_id',
  207. 'service',
  208. 'account',
  209. 'icon',
  210. 'otp_type',
  211. 'digits',
  212. 'algorithm',
  213. 'period',
  214. 'counter'
  215. ]
  216. ]);
  217. }
  218. /**
  219. * @test
  220. */
  221. public function test_get_assigned_accounts_returns_twofaccounts_collection_with_secret()
  222. {
  223. $group = factory(Group::class)->create();
  224. $accounts = factory(TwoFAccount::class, 2)->create();
  225. $assign = $this->actingAs($this->user, 'api')
  226. ->json('POST', '/api/v1/groups/' . $group->id . '/assign', [
  227. 'ids' => [1,2],
  228. ]);
  229. $response = $this->actingAs($this->user, 'api')
  230. ->json('GET', '/api/v1/groups/' . $group->id . '/twofaccounts?withSecret=1')
  231. ->assertOk()
  232. ->assertJsonCount(2)
  233. ->assertJsonStructure([
  234. '*' => [
  235. 'group_id',
  236. 'service',
  237. 'account',
  238. 'icon',
  239. 'secret',
  240. 'otp_type',
  241. 'digits',
  242. 'algorithm',
  243. 'period',
  244. 'counter'
  245. ]
  246. ]);
  247. }
  248. /**
  249. * @test
  250. */
  251. public function test_get_assigned_accounts_of_missing_group_returns_not_found()
  252. {
  253. $response = $this->actingAs($this->user, 'api')
  254. ->json('GET', '/api/v1/groups/1000/twofaccounts')
  255. ->assertNotFound()
  256. ->assertJsonStructure([
  257. 'message'
  258. ]);
  259. }
  260. /**
  261. * test Group deletion via API
  262. *
  263. * @test
  264. */
  265. public function test_destroy_group_returns_success()
  266. {
  267. $group = factory(Group::class)->create();
  268. $response = $this->actingAs($this->user, 'api')
  269. ->json('DELETE', '/api/v1/groups/' . $group->id)
  270. ->assertNoContent();
  271. }
  272. /**
  273. * test Group deletion via API
  274. *
  275. * @test
  276. */
  277. public function test_destroy_missing_group_returns_not_found()
  278. {
  279. $response = $this->actingAs($this->user, 'api')
  280. ->json('DELETE', '/api/v1/groups/1000')
  281. ->assertNotFound()
  282. ->assertJsonStructure([
  283. 'message'
  284. ]);
  285. }
  286. }