|
0
|
1 |
<?php |
|
|
2 |
|
|
|
3 |
namespace JMS\SecurityExtraBundle\Tests\Analysis; |
|
|
4 |
|
|
|
5 |
use Doctrine\Common\Annotations\AnnotationReader; |
|
|
6 |
|
|
|
7 |
use JMS\SecurityExtraBundle\Analysis\ServiceAnalyzer; |
|
|
8 |
|
|
|
9 |
class ServiceAnalyzerTest extends \PHPUnit_Framework_TestCase |
|
|
10 |
{ |
|
|
11 |
/** |
|
|
12 |
* @expectedException \RuntimeException |
|
|
13 |
* @expectedMessage You have overridden a secured method "differentMethodSignature" in "SubService". Please copy over the applicable security metadata, and also add @SatisfiesParentSecurityPolicy. |
|
|
14 |
*/ |
|
|
15 |
public function testAnalyzeThrowsExceptionWhenSecureMethodIsOverridden() |
|
|
16 |
{ |
|
|
17 |
$service = new ServiceAnalyzer('JMS\SecurityExtraBundle\Tests\Fixtures\SubService', new AnnotationReader()); |
|
|
18 |
$service->analyze(); |
|
|
19 |
} |
|
|
20 |
|
|
|
21 |
public function testAnalyzeThrowsNoExceptionWhenAbstractMethodIsNotOverridenInDirectChildClass() |
|
|
22 |
{ |
|
|
23 |
$service = new ServiceAnalyzer('JMS\SecurityExtraBundle\Tests\Fixtures\AbstractMethodNotDirectlyOverwrittenInDirectChildService', new AnnotationReader()); |
|
|
24 |
$service->analyze(); |
|
|
25 |
|
|
|
26 |
$methods = $service->getMetadata()->methodMetadata; |
|
|
27 |
$this->assertTrue(isset($methods['abstractMethod'])); |
|
|
28 |
|
|
|
29 |
$metadata = $methods['abstractMethod']; |
|
|
30 |
$this->assertEquals(array('VIEW'), $metadata->returnPermissions); |
|
|
31 |
} |
|
|
32 |
|
|
|
33 |
public function testAnalyzeThrowsNoExceptionWhenSatisfiesParentSecurityPolicyIsDefined() |
|
|
34 |
{ |
|
|
35 |
$service = new ServiceAnalyzer('JMS\SecurityExtraBundle\Tests\Fixtures\CorrectSubService', new AnnotationReader()); |
|
|
36 |
$service->analyze(); |
|
|
37 |
|
|
|
38 |
$methods = $service->getMetadata()->methodMetadata; |
|
|
39 |
$this->assertTrue(isset($methods['differentMethodSignature'])); |
|
|
40 |
|
|
|
41 |
$metadata = $methods['differentMethodSignature']; |
|
|
42 |
$this->assertEquals(array(), $metadata->roles); |
|
|
43 |
$this->assertEquals(array(), $metadata->paramPermissions); |
|
|
44 |
$this->assertEquals(array('VIEW'), $metadata->returnPermissions); |
|
|
45 |
} |
|
|
46 |
|
|
|
47 |
public function testAnalyzeWithComplexHierarchy() |
|
|
48 |
{ |
|
|
49 |
$service = new ServiceAnalyzer('JMS\SecurityExtraBundle\Tests\Fixtures\ComplexService', new AnnotationReader()); |
|
|
50 |
$service->analyze(); |
|
|
51 |
|
|
|
52 |
$methods = $service->getMetadata()->methodMetadata; |
|
|
53 |
$this->assertTrue(isset($methods['delete'], $methods['retrieve'], $methods['abstractMethod'])); |
|
|
54 |
|
|
|
55 |
$metadata = $methods['delete']; |
|
|
56 |
$this->assertEquals(array(0 => array('MASTER', 'EDIT'), 2 => array('OWNER')), $metadata->paramPermissions); |
|
|
57 |
$this->assertEquals(array(), $metadata->returnPermissions); |
|
|
58 |
$this->assertEquals(array(), $metadata->roles); |
|
|
59 |
|
|
|
60 |
$metadata = $methods['retrieve']; |
|
|
61 |
$this->assertEquals(array('VIEW', 'UNDELETE'), $metadata->returnPermissions); |
|
|
62 |
$this->assertEquals(array(), $metadata->paramPermissions); |
|
|
63 |
$this->assertEquals(array(), $metadata->roles); |
|
|
64 |
|
|
|
65 |
$metadata = $methods['abstractMethod']; |
|
|
66 |
$this->assertEquals(array('ROLE_FOO', 'IS_AUTHENTICATED_FULLY'), $metadata->roles); |
|
|
67 |
$this->assertEquals(array(1 => array('FOO')), $metadata->paramPermissions); |
|
|
68 |
$this->assertEquals(array('WOW'), $metadata->returnPermissions); |
|
|
69 |
} |
|
|
70 |
|
|
|
71 |
public function testAnalyze() |
|
|
72 |
{ |
|
|
73 |
$service = new ServiceAnalyzer('JMS\SecurityExtraBundle\Tests\Fixtures\MainService', new AnnotationReader()); |
|
|
74 |
$service->analyze(); |
|
|
75 |
|
|
|
76 |
$methods = $service->getMetadata()->methodMetadata; |
|
|
77 |
$this->assertTrue(isset($methods['differentMethodSignature'])); |
|
|
78 |
|
|
|
79 |
$metadata = $methods['differentMethodSignature']; |
|
|
80 |
$this->assertEquals(array(array('EDIT')), $metadata->paramPermissions); |
|
|
81 |
$this->assertEquals(array(), $metadata->returnPermissions); |
|
|
82 |
$this->assertEquals(array(), $metadata->roles); |
|
|
83 |
$this->assertFalse($metadata->isDeclaredOnInterface()); |
|
|
84 |
} |
|
|
85 |
} |