You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

api_team_test.go 4.4KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109
  1. // Copyright 2017 The Gitea Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package integrations
  5. import (
  6. "fmt"
  7. "net/http"
  8. "sort"
  9. "testing"
  10. "code.gitea.io/gitea/models"
  11. api "code.gitea.io/gitea/modules/structs"
  12. "code.gitea.io/gitea/routers/api/v1/convert"
  13. "github.com/stretchr/testify/assert"
  14. )
  15. func TestAPITeam(t *testing.T) {
  16. prepareTestEnv(t)
  17. teamUser := models.AssertExistsAndLoadBean(t, &models.TeamUser{}).(*models.TeamUser)
  18. team := models.AssertExistsAndLoadBean(t, &models.Team{ID: teamUser.TeamID}).(*models.Team)
  19. user := models.AssertExistsAndLoadBean(t, &models.User{ID: teamUser.UID}).(*models.User)
  20. session := loginUser(t, user.Name)
  21. token := getTokenForLoggedInUser(t, session)
  22. req := NewRequestf(t, "GET", "/api/v1/teams/%d?token="+token, teamUser.TeamID)
  23. resp := session.MakeRequest(t, req, http.StatusOK)
  24. var apiTeam api.Team
  25. DecodeJSON(t, resp, &apiTeam)
  26. assert.EqualValues(t, team.ID, apiTeam.ID)
  27. assert.Equal(t, team.Name, apiTeam.Name)
  28. // non team member user will not access the teams details
  29. teamUser2 := models.AssertExistsAndLoadBean(t, &models.TeamUser{ID: 3}).(*models.TeamUser)
  30. user2 := models.AssertExistsAndLoadBean(t, &models.User{ID: teamUser2.UID}).(*models.User)
  31. session = loginUser(t, user2.Name)
  32. token = getTokenForLoggedInUser(t, session)
  33. req = NewRequestf(t, "GET", "/api/v1/teams/%d?token="+token, teamUser.TeamID)
  34. resp = session.MakeRequest(t, req, http.StatusForbidden)
  35. req = NewRequestf(t, "GET", "/api/v1/teams/%d", teamUser.TeamID)
  36. resp = session.MakeRequest(t, req, http.StatusUnauthorized)
  37. // Get an admin user able to create, update and delete teams.
  38. user = models.AssertExistsAndLoadBean(t, &models.User{ID: 1}).(*models.User)
  39. session = loginUser(t, user.Name)
  40. token = getTokenForLoggedInUser(t, session)
  41. org := models.AssertExistsAndLoadBean(t, &models.User{ID: 6}).(*models.User)
  42. // Create team.
  43. teamToCreate := &api.CreateTeamOption{
  44. Name: "team1",
  45. Description: "team one",
  46. Permission: "write",
  47. Units: []string{"repo.code", "repo.issues"},
  48. }
  49. req = NewRequestWithJSON(t, "POST", fmt.Sprintf("/api/v1/orgs/%s/teams?token=%s", org.Name, token), teamToCreate)
  50. resp = session.MakeRequest(t, req, http.StatusCreated)
  51. DecodeJSON(t, resp, &apiTeam)
  52. checkTeamResponse(t, &apiTeam, teamToCreate.Name, teamToCreate.Description, teamToCreate.Permission, teamToCreate.Units)
  53. checkTeamBean(t, apiTeam.ID, teamToCreate.Name, teamToCreate.Description, teamToCreate.Permission, teamToCreate.Units)
  54. teamID := apiTeam.ID
  55. // Edit team.
  56. teamToEdit := &api.EditTeamOption{
  57. Name: "teamone",
  58. Description: "team 1",
  59. Permission: "admin",
  60. Units: []string{"repo.code", "repo.pulls", "repo.releases"},
  61. }
  62. req = NewRequestWithJSON(t, "PATCH", fmt.Sprintf("/api/v1/teams/%d?token=%s", teamID, token), teamToEdit)
  63. resp = session.MakeRequest(t, req, http.StatusOK)
  64. DecodeJSON(t, resp, &apiTeam)
  65. checkTeamResponse(t, &apiTeam, teamToEdit.Name, teamToEdit.Description, teamToEdit.Permission, teamToEdit.Units)
  66. checkTeamBean(t, apiTeam.ID, teamToEdit.Name, teamToEdit.Description, teamToEdit.Permission, teamToEdit.Units)
  67. // Read team.
  68. teamRead := models.AssertExistsAndLoadBean(t, &models.Team{ID: teamID}).(*models.Team)
  69. req = NewRequestf(t, "GET", "/api/v1/teams/%d?token="+token, teamID)
  70. resp = session.MakeRequest(t, req, http.StatusOK)
  71. DecodeJSON(t, resp, &apiTeam)
  72. checkTeamResponse(t, &apiTeam, teamRead.Name, teamRead.Description, teamRead.Authorize.String(), teamRead.GetUnitNames())
  73. // Delete team.
  74. req = NewRequestf(t, "DELETE", "/api/v1/teams/%d?token="+token, teamID)
  75. session.MakeRequest(t, req, http.StatusNoContent)
  76. models.AssertNotExistsBean(t, &models.Team{ID: teamID})
  77. }
  78. func checkTeamResponse(t *testing.T, apiTeam *api.Team, name, description string, permission string, units []string) {
  79. assert.Equal(t, name, apiTeam.Name, "name")
  80. assert.Equal(t, description, apiTeam.Description, "description")
  81. assert.Equal(t, permission, apiTeam.Permission, "permission")
  82. sort.StringSlice(units).Sort()
  83. sort.StringSlice(apiTeam.Units).Sort()
  84. assert.EqualValues(t, units, apiTeam.Units, "units")
  85. }
  86. func checkTeamBean(t *testing.T, id int64, name, description string, permission string, units []string) {
  87. team := models.AssertExistsAndLoadBean(t, &models.Team{ID: id}).(*models.Team)
  88. assert.NoError(t, team.GetUnits(), "GetUnits")
  89. checkTeamResponse(t, convert.ToTeam(team), name, description, permission, units)
  90. }