123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378 |
- import { SharedVaultValetTokenData, TokenEncoderInterface, ValetTokenOperation } from '@standardnotes/security'
- import { SharedVaultRepositoryInterface } from '../../../SharedVault/SharedVaultRepositoryInterface'
- import { SharedVaultUserRepositoryInterface } from '../../../SharedVault/User/SharedVaultUserRepositoryInterface'
- import { CreateSharedVaultFileValetToken } from './CreateSharedVaultFileValetToken'
- import { SharedVault } from '../../../SharedVault/SharedVault'
- import { SharedVaultUser } from '../../../SharedVault/User/SharedVaultUser'
- import { SharedVaultUserPermission, Timestamps, Uuid } from '@standardnotes/domain-core'
- describe('CreateSharedVaultFileValetToken', () => {
- let sharedVaultRepository: SharedVaultRepositoryInterface
- let sharedVaultUserRepository: SharedVaultUserRepositoryInterface
- let tokenEncoder: TokenEncoderInterface<SharedVaultValetTokenData>
- const valetTokenTTL = 3600
- let sharedVault: SharedVault
- let sharedVaultUser: SharedVaultUser
- const createUseCase = () =>
- new CreateSharedVaultFileValetToken(sharedVaultRepository, sharedVaultUserRepository, tokenEncoder, valetTokenTTL)
- beforeEach(() => {
- sharedVault = SharedVault.create({
- fileUploadBytesUsed: 2,
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue()
- sharedVaultRepository = {} as jest.Mocked<SharedVaultRepositoryInterface>
- sharedVaultRepository.findByUuid = jest.fn().mockResolvedValue(sharedVault)
- sharedVaultUser = SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Read).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue()
- sharedVaultUserRepository = {} as jest.Mocked<SharedVaultUserRepositoryInterface>
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest.fn().mockResolvedValue(sharedVaultUser)
- tokenEncoder = {} as jest.Mocked<TokenEncoderInterface<SharedVaultValetTokenData>>
- tokenEncoder.encodeExpirableToken = jest.fn().mockReturnValue('encoded-token')
- })
- it('should return error when shared vault uuid is invalid', async () => {
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: 'invalid-uuid',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Read,
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Given value is not a valid uuid: invalid-uuid')
- })
- it('should return error when user uuid is invalid', async () => {
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: 'invalid-uuid',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Read,
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Given value is not a valid uuid: invalid-uuid')
- })
- it('should return error when shared vault is not found', async () => {
- sharedVaultRepository.findByUuid = jest.fn().mockResolvedValue(null)
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Read,
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Shared vault not found')
- })
- it('should return error when shared vault user is not found', async () => {
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest.fn().mockResolvedValue(null)
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Read,
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Shared vault user not found')
- })
- it('should return error when shared vault user does not have permission', async () => {
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Write,
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('User does not have permission to perform this operation')
- })
- it('should create a shared vault file valet token', async () => {
- sharedVaultUser = SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue()
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest.fn().mockResolvedValue(sharedVaultUser)
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Write,
- })
- expect(result.isFailed()).toBe(false)
- expect(result.getValue()).toBe('encoded-token')
- })
- describe('move operation', () => {
- beforeEach(() => {
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest
- .fn()
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Read).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- })
- it('should return error when move operation type is not specified', async () => {
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Move operation type is required')
- })
- it('should return error when target uuid is missing on a shared-vault-to-shared-vault move operation', async () => {
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'shared-vault-to-shared-vault',
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Shared vault to shared vault move target uuid is required')
- })
- it('should return error when target uuid is invalid on a shared-vault-to-shared-vault move operation', async () => {
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'shared-vault-to-shared-vault',
- sharedVaultToSharedVaultMoveTargetUuid: 'invalid-uuid',
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Given value is not a valid uuid: invalid-uuid')
- })
- it('should return error when target shared vault user is not found on a shared-vault-to-shared-vault move operation', async () => {
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest
- .fn()
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- .mockReturnValueOnce(null)
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'shared-vault-to-shared-vault',
- sharedVaultToSharedVaultMoveTargetUuid: '00000000-0000-0000-0000-000000000000',
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Shared vault target user not found')
- })
- it('should return error when target shared vault user does not have permission on a shared-vault-to-shared-vault move operation', async () => {
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest
- .fn()
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Read).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'shared-vault-to-shared-vault',
- sharedVaultToSharedVaultMoveTargetUuid: '00000000-0000-0000-0000-000000000000',
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('User does not have permission to perform this operation')
- })
- it('should return error when target shared vault does not exist for shared-vault-to-shared-vault move operation', async () => {
- sharedVaultRepository.findByUuid = jest.fn().mockResolvedValueOnce(sharedVault).mockResolvedValueOnce(null)
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'shared-vault-to-shared-vault',
- sharedVaultToSharedVaultMoveTargetUuid: '00000000-0000-0000-0000-000000000000',
- })
- expect(result.isFailed()).toBe(true)
- expect(result.getError()).toBe('Target shared vault not found')
- })
- it('should create move valet token for shared-vault-to-shared-vault operation', async () => {
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest
- .fn()
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'shared-vault-to-shared-vault',
- sharedVaultToSharedVaultMoveTargetUuid: '00000000-0000-0000-0000-000000000000',
- })
- expect(result.isFailed()).toBe(false)
- expect(result.getValue()).toBe('encoded-token')
- })
- it('should create move valet token for shared-vault-to-user operation', async () => {
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest
- .fn()
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'shared-vault-to-user',
- sharedVaultToSharedVaultMoveTargetUuid: '00000000-0000-0000-0000-000000000000',
- })
- expect(result.isFailed()).toBe(false)
- expect(result.getValue()).toBe('encoded-token')
- })
- it('should create move valet token for user-to-shared-vault operation', async () => {
- sharedVaultUserRepository.findByUserUuidAndSharedVaultUuid = jest
- .fn()
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- .mockReturnValueOnce(
- SharedVaultUser.create({
- permission: SharedVaultUserPermission.create(SharedVaultUserPermission.PERMISSIONS.Write).getValue(),
- sharedVaultUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- userUuid: Uuid.create('00000000-0000-0000-0000-000000000000').getValue(),
- timestamps: Timestamps.create(123, 123).getValue(),
- }).getValue(),
- )
- const useCase = createUseCase()
- const result = await useCase.execute({
- userUuid: '00000000-0000-0000-0000-000000000000',
- sharedVaultUuid: '00000000-0000-0000-0000-000000000000',
- remoteIdentifier: 'remote-identifier',
- operation: ValetTokenOperation.Move,
- moveOperationType: 'user-to-shared-vault',
- sharedVaultToSharedVaultMoveTargetUuid: '00000000-0000-0000-0000-000000000000',
- })
- expect(result.isFailed()).toBe(false)
- expect(result.getValue()).toBe('encoded-token')
- })
- })
- })
|