api_utils.go 6.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236
  1. package api
  2. import (
  3. "bytes"
  4. "encoding/json"
  5. "errors"
  6. "fmt"
  7. "io/ioutil"
  8. "net/http"
  9. "strconv"
  10. "github.com/drakkan/sftpgo/dataprovider"
  11. "github.com/drakkan/sftpgo/sftpd"
  12. "github.com/drakkan/sftpgo/utils"
  13. "github.com/go-chi/render"
  14. )
  15. const (
  16. httpBaseURL = "http://127.0.0.1:8080"
  17. )
  18. var (
  19. defaultPerms = []string{dataprovider.PermAny}
  20. )
  21. // AddUser add a new user, useful for tests
  22. func AddUser(user dataprovider.User, expectedStatusCode int) (dataprovider.User, error) {
  23. var newUser dataprovider.User
  24. userAsJSON, err := json.Marshal(user)
  25. if err != nil {
  26. return newUser, err
  27. }
  28. resp, err := http.Post(httpBaseURL+userPath, "application/json", bytes.NewBuffer(userAsJSON))
  29. if err != nil {
  30. return newUser, err
  31. }
  32. defer resp.Body.Close()
  33. err = checkResponse(resp.StatusCode, expectedStatusCode, resp)
  34. if expectedStatusCode != http.StatusOK {
  35. return newUser, err
  36. }
  37. if err == nil {
  38. err = render.DecodeJSON(resp.Body, &newUser)
  39. }
  40. if err == nil {
  41. err = checkUser(user, newUser)
  42. }
  43. return newUser, err
  44. }
  45. // UpdateUser update an user, useful for tests
  46. func UpdateUser(user dataprovider.User, expectedStatusCode int) (dataprovider.User, error) {
  47. var newUser dataprovider.User
  48. userAsJSON, err := json.Marshal(user)
  49. if err != nil {
  50. return user, err
  51. }
  52. req, err := http.NewRequest(http.MethodPut, httpBaseURL+userPath+"/"+strconv.FormatInt(user.ID, 10), bytes.NewBuffer(userAsJSON))
  53. if err != nil {
  54. return user, err
  55. }
  56. req.Header.Set("Content-Type", "application/json")
  57. resp, err := http.DefaultClient.Do(req)
  58. if err != nil {
  59. return user, err
  60. }
  61. defer resp.Body.Close()
  62. err = checkResponse(resp.StatusCode, expectedStatusCode, resp)
  63. if expectedStatusCode != http.StatusOK {
  64. return newUser, err
  65. }
  66. if err == nil {
  67. newUser, err = GetUserByID(user.ID, expectedStatusCode)
  68. }
  69. if err == nil {
  70. err = checkUser(user, newUser)
  71. }
  72. return newUser, err
  73. }
  74. // RemoveUser remove user, useful for tests
  75. func RemoveUser(user dataprovider.User, expectedStatusCode int) error {
  76. req, err := http.NewRequest(http.MethodDelete, httpBaseURL+userPath+"/"+strconv.FormatInt(user.ID, 10), nil)
  77. if err != nil {
  78. return err
  79. }
  80. resp, err := http.DefaultClient.Do(req)
  81. if err != nil {
  82. return err
  83. }
  84. defer resp.Body.Close()
  85. return checkResponse(resp.StatusCode, expectedStatusCode, resp)
  86. }
  87. // GetUserByID get user by id, useful for tests
  88. func GetUserByID(userID int64, expectedStatusCode int) (dataprovider.User, error) {
  89. var user dataprovider.User
  90. resp, err := http.Get(httpBaseURL + userPath + "/" + strconv.FormatInt(userID, 10))
  91. if err != nil {
  92. return user, err
  93. }
  94. defer resp.Body.Close()
  95. err = checkResponse(resp.StatusCode, expectedStatusCode, resp)
  96. if err == nil && expectedStatusCode == http.StatusOK {
  97. err = render.DecodeJSON(resp.Body, &user)
  98. }
  99. return user, err
  100. }
  101. // GetUsers useful for tests
  102. func GetUsers(limit int64, offset int64, username string, expectedStatusCode int) ([]dataprovider.User, error) {
  103. var users []dataprovider.User
  104. req, err := http.NewRequest(http.MethodGet, httpBaseURL+userPath, nil)
  105. if err != nil {
  106. return users, err
  107. }
  108. q := req.URL.Query()
  109. if limit > 0 {
  110. q.Add("limit", strconv.FormatInt(limit, 10))
  111. }
  112. if offset > 0 {
  113. q.Add("offset", strconv.FormatInt(offset, 10))
  114. }
  115. if len(username) > 0 {
  116. q.Add("username", username)
  117. }
  118. req.URL.RawQuery = q.Encode()
  119. resp, err := http.DefaultClient.Do(req)
  120. if err != nil {
  121. return users, err
  122. }
  123. defer resp.Body.Close()
  124. err = checkResponse(resp.StatusCode, expectedStatusCode, resp)
  125. if err == nil && expectedStatusCode == http.StatusOK {
  126. err = render.DecodeJSON(resp.Body, &users)
  127. }
  128. return users, err
  129. }
  130. // GetQuotaScans get active quota scans, useful for tests
  131. func GetQuotaScans(expectedStatusCode int) ([]sftpd.ActiveQuotaScan, error) {
  132. var quotaScans []sftpd.ActiveQuotaScan
  133. resp, err := http.Get(httpBaseURL + quotaScanPath)
  134. if err != nil {
  135. return quotaScans, err
  136. }
  137. defer resp.Body.Close()
  138. err = checkResponse(resp.StatusCode, expectedStatusCode, resp)
  139. if err == nil && expectedStatusCode == http.StatusOK {
  140. err = render.DecodeJSON(resp.Body, &quotaScans)
  141. }
  142. return quotaScans, err
  143. }
  144. // StartQuotaScan start a new quota scan
  145. func StartQuotaScan(user dataprovider.User, expectedStatusCode int) error {
  146. userAsJSON, err := json.Marshal(user)
  147. if err != nil {
  148. return err
  149. }
  150. resp, err := http.Post(httpBaseURL+quotaScanPath, "application/json", bytes.NewBuffer(userAsJSON))
  151. if err != nil {
  152. return err
  153. }
  154. defer resp.Body.Close()
  155. return checkResponse(resp.StatusCode, expectedStatusCode, resp)
  156. }
  157. func checkResponse(actual int, expected int, resp *http.Response) error {
  158. if expected != actual {
  159. return fmt.Errorf("wrong status code: got %v want %v", actual, expected)
  160. }
  161. if expected != http.StatusOK {
  162. b, err := ioutil.ReadAll(resp.Body)
  163. if err == nil {
  164. fmt.Printf("request: %v, response body: %v", resp.Request.URL, string(b))
  165. }
  166. }
  167. return nil
  168. }
  169. func checkUser(expected dataprovider.User, actual dataprovider.User) error {
  170. if len(actual.Password) > 0 {
  171. return errors.New("User password must not be visible")
  172. }
  173. if len(actual.PublicKey) > 0 {
  174. return errors.New("User public key must not be visible")
  175. }
  176. if expected.ID <= 0 {
  177. if actual.ID <= 0 {
  178. return errors.New("actual user ID must be > 0")
  179. } else if actual.ID <= 0 {
  180. return errors.New("user ID must be >=0")
  181. }
  182. } else {
  183. if actual.ID != expected.ID {
  184. return errors.New("user ID mismatch")
  185. }
  186. }
  187. if expected.Username != actual.Username {
  188. return errors.New("Username mismatch")
  189. }
  190. if expected.HomeDir != actual.HomeDir {
  191. return errors.New("HomeDir mismatch")
  192. }
  193. if expected.UID != actual.UID {
  194. return errors.New("UID mismatch")
  195. }
  196. if expected.GID != actual.GID {
  197. return errors.New("GID mismatch")
  198. }
  199. if expected.MaxSessions != actual.MaxSessions {
  200. return errors.New("MaxSessions mismatch")
  201. }
  202. if expected.QuotaSize != actual.QuotaSize {
  203. return errors.New("QuotaSize mismatch")
  204. }
  205. if expected.QuotaFiles != actual.QuotaFiles {
  206. return errors.New("QuotaFiles mismatch")
  207. }
  208. if len(expected.Permissions) != len(actual.Permissions) {
  209. return errors.New("Permissions mismatch")
  210. }
  211. for _, v := range expected.Permissions {
  212. if !utils.IsStringInSlice(v, actual.Permissions) {
  213. return errors.New("Permissions contents mismatch")
  214. }
  215. }
  216. if expected.UploadBandwidth != actual.UploadBandwidth {
  217. return errors.New("UploadBandwidth mismatch")
  218. }
  219. if expected.DownloadBandwidth != actual.DownloadBandwidth {
  220. return errors.New("DownloadBandwidth mismatch")
  221. }
  222. return nil
  223. }