You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

user_test.rb 45KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367
  1. # frozen_string_literal: true
  2. # Redmine - project management software
  3. # Copyright (C) 2006- Jean-Philippe Lang
  4. #
  5. # This program is free software; you can redistribute it and/or
  6. # modify it under the terms of the GNU General Public License
  7. # as published by the Free Software Foundation; either version 2
  8. # of the License, or (at your option) any later version.
  9. #
  10. # This program is distributed in the hope that it will be useful,
  11. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  12. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  13. # GNU General Public License for more details.
  14. #
  15. # You should have received a copy of the GNU General Public License
  16. # along with this program; if not, write to the Free Software
  17. # Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
  18. require_relative '../test_helper'
  19. class UserTest < ActiveSupport::TestCase
  20. fixtures :users, :email_addresses, :members, :projects, :roles, :member_roles, :auth_sources,
  21. :trackers, :issue_statuses,
  22. :projects_trackers,
  23. :watchers,
  24. :issue_categories, :enumerations, :issues,
  25. :journals, :journal_details,
  26. :groups_users,
  27. :enabled_modules,
  28. :tokens,
  29. :user_preferences,
  30. :custom_fields, :custom_fields_projects, :custom_fields_trackers, :custom_values
  31. include Redmine::I18n
  32. def setup
  33. @admin = User.find(1)
  34. @jsmith = User.find(2)
  35. @dlopper = User.find(3)
  36. User.current = nil
  37. end
  38. def test_admin_scope_without_args_should_return_admin_users
  39. users = User.admin.to_a
  40. assert users.any?
  41. assert users.all? {|u| u.admin == true}
  42. end
  43. def test_admin_scope_with_true_should_return_admin_users
  44. users = User.admin(true).to_a
  45. assert users.any?
  46. assert users.all? {|u| u.admin == true}
  47. end
  48. def test_admin_scope_with_false_should_return_non_admin_users
  49. users = User.admin(false).to_a
  50. assert users.any?
  51. assert users.all? {|u| u.admin == false}
  52. end
  53. def test_sorted_scope_should_sort_user_by_display_name
  54. # Use .active to ignore anonymous with localized display name
  55. assert_equal User.active.map {|u| u.name.downcase}.sort,
  56. User.active.sorted.map {|u| u.name.downcase}
  57. end
  58. def test_generate
  59. User.generate!(:firstname => 'Testing connection')
  60. User.generate!(:firstname => 'Testing connection')
  61. assert_equal 2, User.where(:firstname => 'Testing connection').count
  62. end
  63. def test_truth
  64. assert_kind_of User, @jsmith
  65. end
  66. def test_should_validate_status
  67. user = User.new
  68. user.status = 0
  69. assert !user.save
  70. assert_include I18n.translate('activerecord.errors.messages.invalid'), user.errors[:status]
  71. end
  72. def test_mail_should_be_stripped
  73. u = User.new
  74. u.mail = " foo@bar.com "
  75. assert_equal "foo@bar.com", u.mail
  76. end
  77. def test_should_create_email_address
  78. u = User.new(:firstname => "new", :lastname => "user")
  79. u.login = "create_email_address"
  80. u.mail = "defaultemail@somenet.foo"
  81. assert u.save
  82. u.reload
  83. assert u.email_address
  84. assert_equal "defaultemail@somenet.foo", u.email_address.address
  85. assert_equal true, u.email_address.is_default
  86. assert_equal true, u.email_address.notify
  87. end
  88. def test_should_not_create_user_without_mail
  89. set_language_if_valid 'en'
  90. u = User.new(:firstname => "new", :lastname => "user")
  91. u.login = "user_without_mail"
  92. assert !u.save
  93. assert_equal ["Email #{I18n.translate('activerecord.errors.messages.blank')}"], u.errors.full_messages
  94. end
  95. def test_should_not_create_user_with_blank_mail
  96. set_language_if_valid 'en'
  97. u = User.new(:firstname => "new", :lastname => "user")
  98. u.login = "user_with_blank_mail"
  99. u.mail = ''
  100. assert !u.save
  101. assert_equal ["Email #{I18n.translate('activerecord.errors.messages.blank')}"], u.errors.full_messages
  102. end
  103. def test_should_not_update_user_with_blank_mail
  104. set_language_if_valid 'en'
  105. u = User.find(2)
  106. u.mail = ''
  107. assert !u.save
  108. assert_equal ["Email #{I18n.translate('activerecord.errors.messages.blank')}"], u.errors.full_messages
  109. end
  110. def test_login_length_validation
  111. user = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
  112. user.login = "x" * (User::LOGIN_LENGTH_LIMIT+1)
  113. assert user.invalid?
  114. user.login = "x" * (User::LOGIN_LENGTH_LIMIT)
  115. assert user.valid?
  116. assert user.save
  117. end
  118. def test_generate_password_should_respect_minimum_password_length
  119. with_settings :password_min_length => 15 do
  120. user = User.generate!(:generate_password => true)
  121. assert user.password.length >= 15
  122. end
  123. end
  124. def test_generate_password_should_not_generate_password_with_less_than_10_characters
  125. with_settings :password_min_length => 4 do
  126. user = User.generate!(:generate_password => true)
  127. assert user.password.length >= 10
  128. end
  129. end
  130. def test_generate_password_on_create_should_set_password
  131. user = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
  132. user.login = "newuser"
  133. user.generate_password = true
  134. assert user.save
  135. password = user.password
  136. assert user.check_password?(password)
  137. end
  138. def test_generate_password_on_update_should_update_password
  139. user = User.find(2)
  140. hash = user.hashed_password
  141. user.generate_password = true
  142. assert user.save
  143. password = user.password
  144. assert user.check_password?(password)
  145. assert_not_equal hash, user.reload.hashed_password
  146. end
  147. def test_create
  148. user = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
  149. user.login = "jsmith"
  150. user.password, user.password_confirmation = "password", "password"
  151. # login uniqueness
  152. assert !user.save
  153. assert_equal 1, user.errors.count
  154. user.login = "newuser"
  155. user.password, user.password_confirmation = "password", "pass"
  156. # password confirmation
  157. assert !user.save
  158. assert_equal 1, user.errors.count
  159. user.password, user.password_confirmation = "password", "password"
  160. assert user.save
  161. end
  162. def test_user_before_create_should_set_the_mail_notification_to_the_default_setting
  163. user1 = User.generate!
  164. assert_equal 'only_assigned', user1.mail_notification
  165. with_settings :default_notification_option => 'all' do
  166. user2 = User.generate!
  167. assert_equal 'all', user2.mail_notification
  168. end
  169. end
  170. def test_user_login_should_be_case_insensitive
  171. u = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
  172. u.login = 'newuser'
  173. u.password, u.password_confirmation = "password", "password"
  174. assert u.save
  175. u = User.new(:firstname => "Similar", :lastname => "User",
  176. :mail => "similaruser@somenet.foo")
  177. u.login = 'NewUser'
  178. u.password, u.password_confirmation = "password", "password"
  179. assert !u.save
  180. assert_include I18n.translate('activerecord.errors.messages.taken'), u.errors[:login]
  181. end
  182. def test_mail_uniqueness_should_not_be_case_sensitive
  183. set_language_if_valid 'en'
  184. u = User.new(:firstname => "new", :lastname => "user", :mail => "newuser@somenet.foo")
  185. u.login = 'newuser1'
  186. u.password, u.password_confirmation = "password", "password"
  187. assert u.save
  188. u = User.new(:firstname => "new", :lastname => "user", :mail => "newUser@Somenet.foo")
  189. u.login = 'newuser2'
  190. u.password, u.password_confirmation = "password", "password"
  191. assert !u.save
  192. assert_include "Email #{I18n.translate('activerecord.errors.messages.taken')}", u.errors.full_messages
  193. end
  194. def test_update
  195. assert_equal "admin", @admin.login
  196. @admin.login = "john"
  197. assert @admin.save, @admin.errors.full_messages.join("; ")
  198. @admin.reload
  199. assert_equal "john", @admin.login
  200. end
  201. def test_update_should_not_fail_for_legacy_user_with_different_case_logins
  202. u1 = User.new(:firstname => "new", :lastname => "user", :mail => "newuser1@somenet.foo")
  203. u1.login = 'newuser1'
  204. assert u1.save
  205. u2 = User.new(:firstname => "new", :lastname => "user", :mail => "newuser2@somenet.foo")
  206. u2.login = 'newuser1'
  207. assert u2.save(:validate => false)
  208. user = User.find(u2.id)
  209. user.firstname = "firstname"
  210. assert user.save, "Save failed"
  211. end
  212. def test_destroy_should_delete_members_and_roles
  213. members = Member.where(:user_id => 2)
  214. ms = members.count
  215. rs = members.collect(&:roles).flatten.size
  216. assert ms > 0
  217. assert rs > 0
  218. assert_difference 'Member.count', - ms do
  219. assert_difference 'MemberRole.count', - rs do
  220. User.find(2).destroy
  221. end
  222. end
  223. assert_nil User.find_by_id(2)
  224. assert_equal 0, Member.where(:user_id => 2).count
  225. end
  226. def test_destroy_should_update_attachments
  227. set_tmp_attachments_directory
  228. attachment = Attachment.create!(:container => Project.find(1),
  229. :file => uploaded_test_file("testfile.txt", "text/plain"),
  230. :author_id => 2)
  231. User.find(2).destroy
  232. assert_nil User.find_by_id(2)
  233. assert_equal User.anonymous, attachment.reload.author
  234. end
  235. def test_destroy_should_update_comments
  236. comment = Comment.create!(
  237. :commented => News.create!(:project_id => 1,
  238. :author_id => 1, :title => 'foo', :description => 'foo'),
  239. :author => User.find(2),
  240. :comments => 'foo'
  241. )
  242. User.find(2).destroy
  243. assert_nil User.find_by_id(2)
  244. assert_equal User.anonymous, comment.reload.author
  245. end
  246. def test_destroy_should_update_issues
  247. issue = Issue.create!(:project_id => 1, :author_id => 2,
  248. :tracker_id => 1, :subject => 'foo')
  249. User.find(2).destroy
  250. assert_nil User.find_by_id(2)
  251. assert_equal User.anonymous, issue.reload.author
  252. end
  253. def test_destroy_should_unassign_issues
  254. issue = Issue.create!(:project_id => 1, :author_id => 1,
  255. :tracker_id => 1, :subject => 'foo', :assigned_to_id => 2)
  256. User.find(2).destroy
  257. assert_nil User.find_by_id(2)
  258. assert_nil issue.reload.assigned_to
  259. end
  260. def test_destroy_should_update_journals
  261. issue = Issue.generate!(:project_id => 1, :author_id => 2,
  262. :tracker_id => 1, :subject => 'foo')
  263. issue.init_journal(User.find(2), "update")
  264. issue.save!
  265. User.find(2).destroy
  266. assert_nil User.find_by_id(2)
  267. assert_equal User.anonymous, issue.journals.first.reload.user
  268. end
  269. def test_destroy_should_update_journal_details_old_value
  270. issue = Issue.generate!(:project_id => 1, :author_id => 1,
  271. :tracker_id => 1, :subject => 'foo', :assigned_to_id => 2)
  272. issue.init_journal(User.find(1), "update")
  273. issue.assigned_to_id = nil
  274. assert_difference 'JournalDetail.count' do
  275. issue.save!
  276. end
  277. journal_detail = JournalDetail.order('id DESC').first
  278. assert_equal '2', journal_detail.old_value
  279. User.find(2).destroy
  280. assert_nil User.find_by_id(2)
  281. assert_equal User.anonymous.id.to_s, journal_detail.reload.old_value
  282. end
  283. def test_destroy_should_update_journal_details_value
  284. issue = Issue.generate!(:project_id => 1, :author_id => 1,
  285. :tracker_id => 1, :subject => 'foo')
  286. issue.init_journal(User.find(1), "update")
  287. issue.assigned_to_id = 2
  288. assert_difference 'JournalDetail.count' do
  289. issue.save!
  290. end
  291. journal_detail = JournalDetail.order('id DESC').first
  292. assert_equal '2', journal_detail.value
  293. User.find(2).destroy
  294. assert_nil User.find_by_id(2)
  295. assert_equal User.anonymous.id.to_s, journal_detail.reload.value
  296. end
  297. def test_destroy_should_update_messages
  298. board = Board.create!(:project_id => 1, :name => 'Board', :description => 'Board')
  299. message = Message.create!(:board_id => board.id, :author_id => 2,
  300. :subject => 'foo', :content => 'foo')
  301. User.find(2).destroy
  302. assert_nil User.find_by_id(2)
  303. assert_equal User.anonymous, message.reload.author
  304. end
  305. def test_destroy_should_update_news
  306. news = News.create!(:project_id => 1, :author_id => 2,
  307. :title => 'foo', :description => 'foo')
  308. User.find(2).destroy
  309. assert_nil User.find_by_id(2)
  310. assert_equal User.anonymous, news.reload.author
  311. end
  312. def test_destroy_should_delete_private_queries
  313. query = Query.new(:name => 'foo', :visibility => Query::VISIBILITY_PRIVATE)
  314. query.project_id = 1
  315. query.user_id = 2
  316. query.save!
  317. User.find(2).destroy
  318. assert_nil User.find_by_id(2)
  319. assert_nil Query.find_by_id(query.id)
  320. end
  321. def test_destroy_should_update_public_queries
  322. query = Query.new(:name => 'foo', :visibility => Query::VISIBILITY_PUBLIC)
  323. query.project_id = 1
  324. query.user_id = 2
  325. query.save!
  326. User.find(2).destroy
  327. assert_nil User.find_by_id(2)
  328. assert_equal User.anonymous, query.reload.user
  329. end
  330. def test_destroy_should_update_time_entries
  331. entry = TimeEntry.new(:hours => '2', :spent_on => Date.today,
  332. :activity => TimeEntryActivity.create!(:name => 'foo'))
  333. entry.project_id = 1
  334. entry.user_id = 2
  335. entry.save!
  336. User.find(2).destroy
  337. assert_nil User.find_by_id(2)
  338. assert_equal User.anonymous, entry.reload.user
  339. end
  340. def test_destroy_should_delete_tokens
  341. token = Token.create!(:user_id => 2, :value => 'foo')
  342. User.find(2).destroy
  343. assert_nil User.find_by_id(2)
  344. assert_nil Token.find_by_id(token.id)
  345. end
  346. def test_destroy_should_delete_watchers
  347. issue = Issue.create!(:project_id => 1, :author_id => 1,
  348. :tracker_id => 1, :subject => 'foo')
  349. watcher = Watcher.create!(:user_id => 2, :watchable => issue)
  350. User.find(2).destroy
  351. assert_nil User.find_by_id(2)
  352. assert_nil Watcher.find_by_id(watcher.id)
  353. end
  354. def test_destroy_should_update_wiki_contents
  355. wiki_content = WikiContent.create!(
  356. :text => 'foo',
  357. :author_id => 2,
  358. :page => WikiPage.create!(:title => 'Foo',
  359. :wiki => Wiki.create!(:project_id => 3,
  360. :start_page => 'Start'))
  361. )
  362. wiki_content.text = 'bar'
  363. assert_difference 'WikiContentVersion.count' do
  364. wiki_content.save!
  365. end
  366. User.find(2).destroy
  367. assert_nil User.find_by_id(2)
  368. assert_equal User.anonymous, wiki_content.reload.author
  369. wiki_content.versions.each do |version|
  370. assert_equal User.anonymous, version.reload.author
  371. end
  372. end
  373. def test_destroy_should_nullify_issue_categories
  374. category = IssueCategory.create!(:project_id => 1, :assigned_to_id => 2, :name => 'foo')
  375. User.find(2).destroy
  376. assert_nil User.find_by_id(2)
  377. assert_nil category.reload.assigned_to_id
  378. end
  379. def test_destroy_should_nullify_changesets
  380. changeset =
  381. Changeset.
  382. create!(
  383. :repository =>
  384. Repository::Subversion.
  385. create!(
  386. :project_id => 1,
  387. :url => 'file:///tmp',
  388. :identifier => 'tmp'
  389. ),
  390. :revision => '12',
  391. :committed_on => Time.now,
  392. :committer => 'jsmith'
  393. )
  394. assert_equal 2, changeset.user_id
  395. User.find(2).destroy
  396. assert_nil User.find_by_id(2)
  397. assert_nil changeset.reload.user_id
  398. end
  399. def test_anonymous_user_should_not_be_destroyable
  400. assert_no_difference 'User.count' do
  401. assert_equal false, User.anonymous.destroy
  402. end
  403. end
  404. def test_password_change_should_destroy_tokens
  405. recovery_token = Token.create!(:user_id => 2, :action => 'recovery')
  406. autologin_token = Token.create!(:user_id => 2, :action => 'autologin')
  407. user = User.find(2)
  408. user.password, user.password_confirmation = "a new password", "a new password"
  409. assert user.save
  410. assert_nil Token.find_by_id(recovery_token.id)
  411. assert_nil Token.find_by_id(autologin_token.id)
  412. end
  413. def test_mail_change_should_destroy_tokens
  414. recovery_token = Token.create!(:user_id => 2, :action => 'recovery')
  415. autologin_token = Token.create!(:user_id => 2, :action => 'autologin')
  416. user = User.find(2)
  417. user.mail = "user@somwehere.com"
  418. assert user.save
  419. assert_nil Token.find_by_id(recovery_token.id)
  420. assert_equal autologin_token, Token.find_by_id(autologin_token.id)
  421. end
  422. def test_change_on_other_fields_should_not_destroy_tokens
  423. recovery_token = Token.create!(:user_id => 2, :action => 'recovery')
  424. autologin_token = Token.create!(:user_id => 2, :action => 'autologin')
  425. user = User.find(2)
  426. user.firstname = "Bobby"
  427. assert user.save
  428. assert_equal recovery_token, Token.find_by_id(recovery_token.id)
  429. assert_equal autologin_token, Token.find_by_id(autologin_token.id)
  430. end
  431. def test_validate_login_presence
  432. @admin.login = ""
  433. assert !@admin.save
  434. assert_equal 1, @admin.errors.count
  435. end
  436. def test_validate_mail_notification_inclusion
  437. u = User.new
  438. u.mail_notification = 'foo'
  439. u.save
  440. assert_not_equal [], u.errors[:mail_notification]
  441. end
  442. def test_password
  443. user = User.try_to_login("admin", "admin")
  444. assert_kind_of User, user
  445. assert_equal "admin", user.login
  446. user.password = "hello123"
  447. assert user.save
  448. user = User.try_to_login("admin", "hello123")
  449. assert_kind_of User, user
  450. assert_equal "admin", user.login
  451. end
  452. def test_validate_password_length
  453. with_settings :password_min_length => '100' do
  454. user = User.new(:firstname => "new100",
  455. :lastname => "user100", :mail => "newuser100@somenet.foo")
  456. user.login = "newuser100"
  457. user.password, user.password_confirmation = "password100", "password100"
  458. assert !user.save
  459. assert_equal 1, user.errors.count
  460. end
  461. end
  462. def test_validate_password_format
  463. Setting::PASSWORD_CHAR_CLASSES.each do |key, regexp|
  464. with_settings :password_required_char_classes => key do
  465. user = User.new(:firstname => "new", :lastname => "user", :login => "random", :mail => "random@somnet.foo")
  466. p = 'PASSWDpasswd01234!@#$%'.gsub(regexp, '')
  467. user.password, user.password_confirmation = p, p
  468. assert !user.save
  469. assert_equal 1, user.errors.count
  470. end
  471. end
  472. end
  473. def test_name_format
  474. assert_equal 'John S.', @jsmith.name(:firstname_lastinitial)
  475. assert_equal 'Smith, John', @jsmith.name(:lastname_comma_firstname)
  476. assert_equal 'J. Smith', @jsmith.name(:firstinitial_lastname)
  477. assert_equal 'J.-P. Lang', User.new(:firstname => 'Jean-Philippe', :lastname => 'Lang').name(:firstinitial_lastname)
  478. end
  479. def test_name_should_use_setting_as_default_format
  480. with_settings :user_format => :firstname_lastname do
  481. assert_equal 'John Smith', @jsmith.reload.name
  482. end
  483. with_settings :user_format => :username do
  484. assert_equal 'jsmith', @jsmith.reload.name
  485. end
  486. with_settings :user_format => :lastname do
  487. assert_equal 'Smith', @jsmith.reload.name
  488. end
  489. end
  490. def test_lastname_should_accept_255_characters
  491. u = User.first
  492. u.lastname = 'a' * 255
  493. assert u.save
  494. end
  495. def test_today_should_return_the_day_according_to_user_time_zone
  496. preference = User.find(1).pref
  497. date = Date.new(2012, 05, 15)
  498. time = Time.gm(2012, 05, 15, 23, 30).utc # 2012-05-15 23:30 UTC
  499. Date.stubs(:today).returns(date)
  500. Time.stubs(:now).returns(time)
  501. preference.update_attribute :time_zone, 'Baku' # UTC+4
  502. assert_equal '2012-05-16', User.find(1).today.to_s
  503. preference.update_attribute :time_zone, 'La Paz' # UTC-4
  504. assert_equal '2012-05-15', User.find(1).today.to_s
  505. preference.update_attribute :time_zone, ''
  506. assert_equal '2012-05-15', User.find(1).today.to_s
  507. end
  508. def test_time_to_date_should_return_the_date_according_to_user_time_zone
  509. preference = User.find(1).pref
  510. time = Time.gm(2012, 05, 15, 23, 30).utc # 2012-05-15 23:30 UTC
  511. preference.update_attribute :time_zone, 'Baku' # UTC+4
  512. assert_equal '2012-05-16', User.find(1).time_to_date(time).to_s
  513. preference.update_attribute :time_zone, 'La Paz' # UTC-4
  514. assert_equal '2012-05-15', User.find(1).time_to_date(time).to_s
  515. preference.update_attribute :time_zone, ''
  516. assert_equal time.localtime.to_date.to_s, User.find(1).time_to_date(time).to_s
  517. end
  518. def test_convert_time_to_user_timezone_should_return_the_time_according_to_user_time_zone
  519. preference = User.find(1).pref
  520. time = Time.gm(2012, 05, 15, 23, 30).utc # 2012-05-15 23:30 UTC
  521. time_not_utc = Time.new(2012, 05, 15, 23, 30)
  522. preference.update_attribute :time_zone, 'Baku' # UTC+5
  523. assert_equal '2012-05-16 04:30:00 +0500', User.find(1).convert_time_to_user_timezone(time).to_s
  524. preference.update_attribute :time_zone, 'La Paz' # UTC-4
  525. assert_equal '2012-05-15 19:30:00 -0400', User.find(1).convert_time_to_user_timezone(time).to_s
  526. preference.update_attribute :time_zone, ''
  527. assert_equal time.localtime.to_s, User.find(1).convert_time_to_user_timezone(time).to_s
  528. assert_equal time_not_utc, User.find(1).convert_time_to_user_timezone(time_not_utc)
  529. end
  530. def test_fields_for_order_statement_should_return_fields_according_user_format_setting
  531. with_settings :user_format => 'lastname_comma_firstname' do
  532. assert_equal ['users.lastname', 'users.firstname', 'users.id'],
  533. User.fields_for_order_statement
  534. end
  535. end
  536. def test_fields_for_order_statement_width_table_name_should_prepend_table_name
  537. with_settings :user_format => 'lastname_firstname' do
  538. assert_equal ['authors.lastname', 'authors.firstname', 'authors.id'],
  539. User.fields_for_order_statement('authors')
  540. end
  541. end
  542. def test_fields_for_order_statement_with_blank_format_should_return_default
  543. with_settings :user_format => '' do
  544. assert_equal ['users.firstname', 'users.lastname', 'users.id'],
  545. User.fields_for_order_statement
  546. end
  547. end
  548. def test_fields_for_order_statement_with_invalid_format_should_return_default
  549. with_settings :user_format => 'foo' do
  550. assert_equal ['users.firstname', 'users.lastname', 'users.id'],
  551. User.fields_for_order_statement
  552. end
  553. end
  554. test ".try_to_login with good credentials should return the user" do
  555. user = User.try_to_login("admin", "admin")
  556. assert_kind_of User, user
  557. assert_equal "admin", user.login
  558. end
  559. test ".try_to_login with wrong credentials should return nil" do
  560. assert_nil User.try_to_login("admin", "foo")
  561. end
  562. def test_try_to_login_with_locked_user_should_return_nil
  563. @jsmith.status = User::STATUS_LOCKED
  564. @jsmith.save!
  565. user = User.try_to_login("jsmith", "jsmith")
  566. assert_nil user
  567. end
  568. def test_try_to_login_with_locked_user_and_not_active_only_should_return_user
  569. @jsmith.status = User::STATUS_LOCKED
  570. @jsmith.save!
  571. user = User.try_to_login("jsmith", "jsmith", false)
  572. assert_equal @jsmith, user
  573. end
  574. test ".try_to_login should fall-back to case-insensitive if user login is not found as-typed" do
  575. user = User.try_to_login("AdMin", "admin")
  576. assert_kind_of User, user
  577. assert_equal "admin", user.login
  578. end
  579. test ".try_to_login should select the exact matching user first" do
  580. case_sensitive_user = User.generate! do |user|
  581. user.password = "admin123"
  582. end
  583. # bypass validations to make it appear like existing data
  584. case_sensitive_user.update_attribute(:login, 'ADMIN')
  585. user = User.try_to_login("ADMIN", "admin123")
  586. assert_kind_of User, user
  587. assert_equal "ADMIN", user.login
  588. end
  589. test "#try_to_login! using LDAP with existing user and failed connection to the LDAP server" do
  590. auth_source = AuthSourceLdap.find(1)
  591. user = users(:users_001)
  592. user.update_column :auth_source_id, auth_source.id
  593. AuthSource.any_instance.stubs(:initialize_ldap_con).raises(Net::LDAP::Error, 'Cannot connect')
  594. assert_raise(AuthSourceException){User.try_to_login!('admin', 'admin')}
  595. end
  596. test "#try_to_login using LDAP with existing user and failed connection to the LDAP server" do
  597. auth_source = AuthSourceLdap.find(1)
  598. user = users(:users_001)
  599. user.update_column :auth_source_id, auth_source.id
  600. AuthSource.any_instance.stubs(:initialize_ldap_con).raises(Net::LDAP::Error, 'Cannot connect')
  601. assert_nil User.try_to_login('admin', 'admin')
  602. end
  603. test "#try_to_login using LDAP with new user and failed connection to the LDAP server" do
  604. auth_source = AuthSourceLdap.find(1)
  605. auth_source.update onthefly_register: true
  606. AuthSource.any_instance.stubs(:initialize_ldap_con).raises(Net::LDAP::Error, 'Cannot connect')
  607. assert_nil User.try_to_login('edavis', 'wrong')
  608. end
  609. if ldap_configured?
  610. test "#try_to_login using LDAP" do
  611. assert_nil User.try_to_login('edavis', 'wrong')
  612. end
  613. test "#try_to_login using LDAP binding with user's account" do
  614. auth_source = AuthSourceLdap.find(1)
  615. auth_source.account = "uid=$login,ou=Person,dc=redmine,dc=org"
  616. auth_source.account_password = ''
  617. auth_source.save!
  618. ldap_user = User.new(:mail => 'example1@redmine.org', :firstname => 'LDAP', :lastname => 'user', :auth_source_id => 1)
  619. ldap_user.login = 'example1'
  620. ldap_user.save!
  621. assert_equal ldap_user, User.try_to_login('example1', '123456')
  622. assert_nil User.try_to_login('example1', '11111')
  623. end
  624. test "#try_to_login using LDAP on the fly registration" do
  625. AuthSourceLdap.find(1).update_attribute :onthefly_register, true
  626. assert_difference('User.count') do
  627. assert User.try_to_login('edavis', '123456')
  628. end
  629. assert_no_difference('User.count') do
  630. assert User.try_to_login('edavis', '123456')
  631. end
  632. assert_nil User.try_to_login('example1', '11111')
  633. end
  634. test "#try_to_login using LDAP on the fly registration and binding with user's account" do
  635. auth_source = AuthSourceLdap.find(1)
  636. auth_source.update_attribute :onthefly_register, true
  637. auth_source = AuthSourceLdap.find(1)
  638. auth_source.account = "uid=$login,ou=Person,dc=redmine,dc=org"
  639. auth_source.account_password = ''
  640. auth_source.save!
  641. assert_difference('User.count') do
  642. assert User.try_to_login('example1', '123456')
  643. end
  644. assert_no_difference('User.count') do
  645. assert User.try_to_login('example1', '123456')
  646. end
  647. assert_nil User.try_to_login('example1', '11111')
  648. end
  649. else
  650. puts "Skipping LDAP tests."
  651. end
  652. def test_create_anonymous
  653. AnonymousUser.delete_all
  654. anon = User.anonymous
  655. assert !anon.new_record?
  656. assert_kind_of AnonymousUser, anon
  657. end
  658. def test_ensure_single_anonymous_user
  659. AnonymousUser.delete_all
  660. anon1 = User.anonymous
  661. assert !anon1.new_record?
  662. assert_kind_of AnonymousUser, anon1
  663. anon2 =
  664. AnonymousUser.
  665. create(
  666. :lastname => 'Anonymous', :firstname => '',
  667. :login => '', :status => 0
  668. )
  669. assert_equal 1, anon2.errors.count
  670. end
  671. def test_atom_key
  672. assert_nil @jsmith.atom_token
  673. key = @jsmith.atom_key
  674. assert_equal 40, key.length
  675. @jsmith.reload
  676. assert_equal key, @jsmith.atom_key
  677. end
  678. def test_atom_key_should_not_be_generated_twice
  679. assert_difference 'Token.count', 1 do
  680. key1 = @jsmith.atom_key
  681. key2 = @jsmith.atom_key
  682. assert_equal key1, key2
  683. end
  684. end
  685. def test_api_key_should_not_be_generated_twice
  686. assert_difference 'Token.count', 1 do
  687. key1 = @jsmith.api_key
  688. key2 = @jsmith.api_key
  689. assert_equal key1, key2
  690. end
  691. end
  692. test "#api_key should generate a new one if the user doesn't have one" do
  693. user = User.generate!(:api_token => nil)
  694. assert_nil user.api_token
  695. key = user.api_key
  696. assert_equal 40, key.length
  697. user.reload
  698. assert_equal key, user.api_key
  699. end
  700. test "#api_key should return the existing api token value" do
  701. user = User.generate!
  702. token = Token.create!(:action => 'api')
  703. user.api_token = token
  704. assert user.save
  705. assert_equal token.value, user.api_key
  706. end
  707. test "#find_by_api_key should return nil if no matching key is found" do
  708. assert_nil User.find_by_api_key('zzzzzzzzz')
  709. end
  710. test "#find_by_api_key should return nil if the key is found for an inactive user" do
  711. user = User.generate!
  712. user.status = User::STATUS_LOCKED
  713. token = Token.create!(:action => 'api')
  714. user.api_token = token
  715. user.save
  716. assert_nil User.find_by_api_key(token.value)
  717. end
  718. test "#find_by_api_key should return the user if the key is found for an active user" do
  719. user = User.generate!
  720. token = Token.create!(:action => 'api')
  721. user.api_token = token
  722. user.save
  723. assert_equal user, User.find_by_api_key(token.value)
  724. end
  725. def test_default_admin_account_changed_should_return_false_if_account_was_not_changed
  726. user = User.find_by_login("admin")
  727. user.password = "admin"
  728. assert user.save(:validate => false)
  729. assert_equal false, User.default_admin_account_changed?
  730. end
  731. def test_default_admin_account_changed_should_return_true_if_password_was_changed
  732. user = User.find_by_login("admin")
  733. user.password = "newpassword"
  734. user.save!
  735. assert_equal true, User.default_admin_account_changed?
  736. end
  737. def test_default_admin_account_changed_should_return_true_if_account_is_disabled
  738. user = User.find_by_login("admin")
  739. user.password = "admin"
  740. user.status = User::STATUS_LOCKED
  741. assert user.save(:validate => false)
  742. assert_equal true, User.default_admin_account_changed?
  743. end
  744. def test_default_admin_account_changed_should_return_true_if_account_does_not_exist
  745. user = User.find_by_login("admin")
  746. user.destroy
  747. assert_equal true, User.default_admin_account_changed?
  748. end
  749. def test_membership_with_project_should_return_membership
  750. project = Project.find(1)
  751. membership = @jsmith.membership(project)
  752. assert_kind_of Member, membership
  753. assert_equal @jsmith, membership.user
  754. assert_equal project, membership.project
  755. end
  756. def test_membership_with_project_id_should_return_membership
  757. project = Project.find(1)
  758. membership = @jsmith.membership(1)
  759. assert_kind_of Member, membership
  760. assert_equal @jsmith, membership.user
  761. assert_equal project, membership.project
  762. end
  763. def test_membership_for_non_member_should_return_nil
  764. project = Project.find(1)
  765. user = User.generate!
  766. membership = user.membership(1)
  767. assert_nil membership
  768. end
  769. def test_roles_for_project_with_member_on_public_project_should_return_roles_and_non_member
  770. roles = @jsmith.roles_for_project(Project.find(1))
  771. assert_kind_of Role, roles.first
  772. assert_equal ["Manager"], roles.map(&:name)
  773. end
  774. def test_roles_for_project_with_member_on_private_project_should_return_roles
  775. Project.find(1).update_attribute :is_public, false
  776. roles = @jsmith.roles_for_project(Project.find(1))
  777. assert_kind_of Role, roles.first
  778. assert_equal ["Manager"], roles.map(&:name)
  779. end
  780. def test_roles_for_project_with_non_member_with_public_project_should_return_non_member
  781. set_language_if_valid 'en'
  782. roles = User.find(8).roles_for_project(Project.find(1))
  783. assert_equal ["Non member"], roles.map(&:name)
  784. end
  785. def test_roles_for_project_with_non_member_with_public_project_and_override_should_return_override_roles
  786. project = Project.find(1)
  787. Member.create!(:project => project, :principal => Group.non_member, :role_ids => [1, 2])
  788. roles = User.find(8).roles_for_project(project)
  789. assert_equal ["Developer", "Manager"], roles.map(&:name).sort
  790. end
  791. def test_roles_for_project_with_non_member_with_private_project_should_return_no_roles
  792. Project.find(1).update_attribute :is_public, false
  793. roles = User.find(8).roles_for_project(Project.find(1))
  794. assert_equal [], roles.map(&:name)
  795. end
  796. def test_roles_for_project_with_non_member_with_private_project_and_override_should_return_no_roles
  797. project = Project.find(1)
  798. project.update_attribute :is_public, false
  799. Member.create!(:project => project, :principal => Group.non_member, :role_ids => [1, 2])
  800. roles = User.find(8).roles_for_project(project)
  801. assert_equal [], roles.map(&:name).sort
  802. end
  803. def test_roles_for_project_with_anonymous_with_public_project_should_return_anonymous
  804. set_language_if_valid 'en'
  805. roles = User.anonymous.roles_for_project(Project.find(1))
  806. assert_equal ["Anonymous"], roles.map(&:name)
  807. end
  808. def test_roles_for_project_with_anonymous_with_public_project_and_override_should_return_override_roles
  809. project = Project.find(1)
  810. Member.create!(:project => project, :principal => Group.anonymous, :role_ids => [1, 2])
  811. roles = User.anonymous.roles_for_project(project)
  812. assert_equal ["Developer", "Manager"], roles.map(&:name).sort
  813. end
  814. def test_roles_for_project_with_anonymous_with_private_project_should_return_no_roles
  815. Project.find(1).update_attribute :is_public, false
  816. roles = User.anonymous.roles_for_project(Project.find(1))
  817. assert_equal [], roles.map(&:name)
  818. end
  819. def test_roles_for_project_with_anonymous_with_private_project_and_override_should_return_no_roles
  820. project = Project.find(1)
  821. project.update_attribute :is_public, false
  822. Member.create!(:project => project, :principal => Group.anonymous, :role_ids => [1, 2])
  823. roles = User.anonymous.roles_for_project(project)
  824. assert_equal [], roles.map(&:name).sort
  825. end
  826. def test_roles_for_project_should_be_unique
  827. m = Member.new(:user_id => 1, :project_id => 1)
  828. m.member_roles.build(:role_id => 1)
  829. m.member_roles.build(:role_id => 1)
  830. m.save!
  831. user = User.find(1)
  832. project = Project.find(1)
  833. assert_equal 1, user.roles_for_project(project).size
  834. assert_equal [1], user.roles_for_project(project).map(&:id)
  835. end
  836. def test_projects_by_role_for_user_with_role
  837. user = User.find(2)
  838. assert_kind_of Hash, user.projects_by_role
  839. assert_equal 2, user.projects_by_role.size
  840. assert_equal [1, 5], user.projects_by_role[Role.find(1)].collect(&:id).sort
  841. assert_equal [2], user.projects_by_role[Role.find(2)].collect(&:id).sort
  842. end
  843. def test_project_ids_by_role_should_not_poison_cache_when_first_called_from_chained_scopes
  844. user = User.find(2)
  845. project = Project.find(1)
  846. project.children.visible(user)
  847. assert_equal [1, 2, 5], user.project_ids_by_role.values.flatten.sort
  848. end
  849. def test_accessing_projects_by_role_with_no_projects_should_return_an_empty_array
  850. user = User.find(2)
  851. assert_equal [], user.projects_by_role[Role.find(3)]
  852. # should not update the hash
  853. assert_nil user.projects_by_role.values.detect(&:blank?)
  854. end
  855. def test_projects_by_role_for_user_with_no_role
  856. user = User.generate!
  857. assert_equal({}, user.projects_by_role)
  858. end
  859. def test_projects_by_role_for_anonymous
  860. assert_equal({}, User.anonymous.projects_by_role)
  861. end
  862. def test_valid_notification_options
  863. # without memberships
  864. assert_equal 5, User.find(7).valid_notification_options.size
  865. # with memberships
  866. assert_equal 6, User.find(2).valid_notification_options.size
  867. end
  868. def test_valid_notification_options_class_method
  869. assert_equal 5, User.valid_notification_options.size
  870. assert_equal 5, User.valid_notification_options(User.find(7)).size
  871. assert_equal 6, User.valid_notification_options(User.find(2)).size
  872. end
  873. def test_notified_project_ids_setter_should_coerce_to_unique_integer_array
  874. @jsmith.notified_project_ids = ["1", "123", "2u", "wrong", "12", 6, 12, -35, ""]
  875. assert_equal [1, 123, 2, 12, 6], @jsmith.notified_projects_ids
  876. end
  877. def test_mail_notification_all
  878. @jsmith.mail_notification = 'all'
  879. @jsmith.notified_project_ids = []
  880. @jsmith.save
  881. @jsmith.reload
  882. assert @jsmith.projects.first.recipients.include?(@jsmith.mail)
  883. end
  884. def test_mail_notification_selected
  885. @jsmith.mail_notification = 'selected'
  886. @jsmith.notified_project_ids = [1]
  887. @jsmith.save
  888. @jsmith.reload
  889. assert Project.find(1).recipients.include?(@jsmith.mail)
  890. end
  891. def test_mail_notification_only_my_events
  892. @jsmith.mail_notification = 'only_my_events'
  893. @jsmith.notified_project_ids = []
  894. @jsmith.save
  895. @jsmith.reload
  896. assert !@jsmith.projects.first.recipients.include?(@jsmith.mail)
  897. end
  898. def test_comments_sorting_preference
  899. assert !@jsmith.wants_comments_in_reverse_order?
  900. @jsmith.pref.comments_sorting = 'asc'
  901. assert !@jsmith.wants_comments_in_reverse_order?
  902. @jsmith.pref.comments_sorting = 'desc'
  903. assert @jsmith.wants_comments_in_reverse_order?
  904. end
  905. def test_find_by_mail_should_be_case_insensitive
  906. u = User.find_by_mail('JSmith@somenet.foo')
  907. assert_not_nil u
  908. assert_equal 'jsmith@somenet.foo', u.mail
  909. end
  910. def test_random_password
  911. u = User.new
  912. u.random_password
  913. assert u.password.present?
  914. assert u.password_confirmation.present?
  915. end
  916. def test_random_password_include_required_characters
  917. with_settings :password_required_char_classes => Setting::PASSWORD_CHAR_CLASSES.keys do
  918. u = User.new(:firstname => "new", :lastname => "user", :login => "random", :mail => "random@somnet.foo")
  919. u.random_password
  920. assert u.valid?
  921. end
  922. end
  923. test "#change_password_allowed? should be allowed if no auth source is set" do
  924. user = User.generate!
  925. assert user.change_password_allowed?
  926. end
  927. test "#change_password_allowed? should delegate to the auth source" do
  928. user = User.generate!
  929. allowed_auth_source = AuthSource.generate!
  930. def allowed_auth_source.allow_password_changes?; true; end
  931. denied_auth_source = AuthSource.generate!
  932. def denied_auth_source.allow_password_changes?; false; end
  933. assert user.change_password_allowed?
  934. user.auth_source = allowed_auth_source
  935. assert user.change_password_allowed?, "User not allowed to change password, though auth source does"
  936. user.auth_source = denied_auth_source
  937. assert !user.change_password_allowed?, "User allowed to change password, though auth source does not"
  938. end
  939. def test_own_account_deletable_should_be_true_with_unsubscrive_enabled
  940. with_settings :unsubscribe => '1' do
  941. assert_equal true, User.find(2).own_account_deletable?
  942. end
  943. end
  944. def test_own_account_deletable_should_be_false_with_unsubscrive_disabled
  945. with_settings :unsubscribe => '0' do
  946. assert_equal false, User.find(2).own_account_deletable?
  947. end
  948. end
  949. def test_own_account_deletable_should_be_false_for_a_single_admin
  950. User.admin.where("id <> ?", 1).delete_all
  951. with_settings :unsubscribe => '1' do
  952. assert_equal false, User.find(1).own_account_deletable?
  953. end
  954. end
  955. def test_own_account_deletable_should_be_true_for_an_admin_if_other_admin_exists
  956. User.generate! do |user|
  957. user.admin = true
  958. end
  959. with_settings :unsubscribe => '1' do
  960. assert_equal true, User.find(1).own_account_deletable?
  961. end
  962. end
  963. test "#allowed_to? for archived project should return false" do
  964. project = Project.find(1)
  965. project.archive
  966. project.reload
  967. assert_equal false, @admin.allowed_to?(:view_issues, project)
  968. end
  969. test "#allowed_to? for closed project should return true for read actions" do
  970. project = Project.find(1)
  971. project.close
  972. project.reload
  973. assert_equal false, @admin.allowed_to?(:edit_project, project)
  974. assert_equal true, @admin.allowed_to?(:view_project, project)
  975. end
  976. test "#allowed_to? for project with module disabled should return false" do
  977. project = Project.find(1)
  978. project.enabled_module_names = ["issue_tracking"]
  979. assert_equal true, @admin.allowed_to?(:add_issues, project)
  980. assert_equal false, @admin.allowed_to?(:view_wiki_pages, project)
  981. end
  982. test "#allowed_to? for admin users should return true" do
  983. project = Project.find(1)
  984. assert ! @admin.member_of?(project)
  985. %w(edit_issues delete_issues manage_news add_documents manage_wiki).each do |p|
  986. assert_equal true, @admin.allowed_to?(p.to_sym, project)
  987. end
  988. end
  989. test "#allowed_to? for normal users" do
  990. project = Project.find(1)
  991. # Manager
  992. assert_equal true, @jsmith.allowed_to?(:delete_messages, project)
  993. # Developer
  994. assert_equal false, @dlopper.allowed_to?(:delete_messages, project)
  995. end
  996. test "#allowed_to? with empty array should return false" do
  997. assert_equal false, @admin.allowed_to?(:view_project, [])
  998. end
  999. test "#allowed_to? with multiple projects" do
  1000. assert_equal true, @admin.allowed_to?(:view_project, Project.all.to_a)
  1001. # cannot see Project(2)
  1002. assert_equal false, @dlopper.allowed_to?(:view_project, Project.all.to_a)
  1003. # Manager or Developer everywhere
  1004. assert_equal true, @jsmith.allowed_to?(:edit_issues, @jsmith.projects.to_a)
  1005. # Dev cannot delete_issue_watchers
  1006. assert_equal false, @jsmith.allowed_to?(:delete_issue_watchers, @jsmith.projects.to_a)
  1007. end
  1008. test "#allowed_to? with with options[:global] should return true if user has one role with the permission" do
  1009. # only Developer on a project, not Manager anywhere
  1010. @dlopper2 = User.find(5)
  1011. @anonymous = User.find(6)
  1012. assert_equal true, @jsmith.allowed_to?(:delete_issue_watchers, nil, :global => true)
  1013. assert_equal false, @dlopper2.allowed_to?(:delete_issue_watchers, nil, :global => true)
  1014. assert_equal true, @dlopper2.allowed_to?(:add_issues, nil, :global => true)
  1015. assert_equal false, @anonymous.allowed_to?(:add_issues, nil, :global => true)
  1016. assert_equal true, @anonymous.allowed_to?(:view_issues, nil, :global => true)
  1017. end
  1018. # this is just a proxy method, the test only calls it to ensure it doesn't break trivially
  1019. test "#allowed_to_globally?" do
  1020. # only Developer on a project, not Manager anywhere
  1021. @dlopper2 = User.find(5)
  1022. @anonymous = User.find(6)
  1023. assert_equal true, @jsmith.allowed_to_globally?(:delete_issue_watchers)
  1024. assert_equal false, @dlopper2.allowed_to_globally?(:delete_issue_watchers)
  1025. assert_equal true, @dlopper2.allowed_to_globally?(:add_issues)
  1026. assert_equal false, @anonymous.allowed_to_globally?(:add_issues)
  1027. assert_equal true, @anonymous.allowed_to_globally?(:view_issues)
  1028. end
  1029. def test_notify_about_issue
  1030. project = Project.find(1)
  1031. author = User.generate!
  1032. assignee = User.generate!
  1033. Member.create!(:user => assignee, :project => project, :role_ids => [1])
  1034. member = User.generate!
  1035. Member.create!(:user => member, :project => project, :role_ids => [1])
  1036. issue = Issue.generate!(:project => project, :assigned_to => assignee, :author => author)
  1037. tests = {
  1038. author => %w(all only_my_events only_owner selected),
  1039. assignee => %w(all only_my_events only_assigned selected),
  1040. member => %w(all)
  1041. }
  1042. tests.each do |user, expected|
  1043. User::MAIL_NOTIFICATION_OPTIONS.map(&:first).each do |option|
  1044. user.mail_notification = option
  1045. assert_equal expected.include?(option), user.notify_about?(issue)
  1046. end
  1047. end
  1048. end
  1049. def test_notify_about_issue_for_previous_assignee
  1050. assignee = User.generate!(:mail_notification => 'only_assigned')
  1051. Member.create!(:user => assignee, :project_id => 1, :role_ids => [1])
  1052. new_assignee = User.generate!(:mail_notification => 'only_assigned')
  1053. Member.create!(:user => new_assignee, :project_id => 1, :role_ids => [1])
  1054. issue = Issue.generate!(:assigned_to => assignee)
  1055. assert assignee.notify_about?(issue)
  1056. assert !new_assignee.notify_about?(issue)
  1057. issue.assigned_to = new_assignee
  1058. assert assignee.notify_about?(issue)
  1059. assert new_assignee.notify_about?(issue)
  1060. issue.save!
  1061. assert assignee.notify_about?(issue)
  1062. assert new_assignee.notify_about?(issue)
  1063. issue.save!
  1064. assert !assignee.notify_about?(issue)
  1065. assert new_assignee.notify_about?(issue)
  1066. end
  1067. def test_notify_about_news
  1068. user = User.generate!
  1069. news = News.new
  1070. User::MAIL_NOTIFICATION_OPTIONS.map(&:first).each do |option|
  1071. user.mail_notification = option
  1072. assert_equal (option != 'none'), user.notify_about?(news)
  1073. end
  1074. end
  1075. def test_salt_unsalted_passwords
  1076. # Restore a user with an unsalted password
  1077. user = User.find(1)
  1078. user.salt = nil
  1079. user.hashed_password = User.hash_password("unsalted")
  1080. user.save!
  1081. User.salt_unsalted_passwords!
  1082. user.reload
  1083. # Salt added
  1084. assert user.salt.present?
  1085. # Password still valid
  1086. assert user.check_password?("unsalted")
  1087. assert_equal user, User.try_to_login(user.login, "unsalted")
  1088. end
  1089. def test_bookmarked_project_ids
  1090. # User with bookmarked projects
  1091. assert_equal [1, 5], User.find(1).bookmarked_project_ids
  1092. # User without bookmarked projects
  1093. assert_equal [], User.find(2).bookmarked_project_ids
  1094. end
  1095. def test_remove_custom_field_references_upon_destroy
  1096. cf1 = IssueCustomField.create(field_format: 'user', name: 'user cf', is_for_all: true, tracker_ids: Tracker.pluck(:id))
  1097. cf2 = IssueCustomField.create(field_format: 'user', name: 'users cf', is_for_all: true, multiple: true, tracker_ids: Tracker.pluck(:id))
  1098. issue = Issue.first
  1099. issue.init_journal(@admin)
  1100. assert_difference ->{cf1.custom_values.count} do
  1101. assert_difference ->{cf2.custom_values.count}, 2 do
  1102. issue.update(custom_field_values:
  1103. {
  1104. cf1.id => @jsmith.id,
  1105. cf2.id => [@dlopper.id, @jsmith.id]
  1106. })
  1107. end
  1108. end
  1109. assert cv1 = cf1.custom_values.where(customized_id: issue.id).last
  1110. assert_equal @jsmith.id.to_s, cv1.value
  1111. assert cv2 = cf2.custom_values.where(customized_id: issue.id)
  1112. assert_equal 2, cv2.size
  1113. assert cv2a = cv2.detect{|cv| cv.value == @dlopper.id.to_s}
  1114. assert cv2b = cv2.detect{|cv| cv.value == @jsmith.id.to_s}
  1115. # 2 custom values from the issue and 1 custom value from the user (CustomValue#3)
  1116. assert_difference ->{CustomValue.count}, -3 do
  1117. @jsmith.destroy
  1118. end
  1119. assert_raise(ActiveRecord::RecordNotFound){cv1.reload}
  1120. assert_raise(ActiveRecord::RecordNotFound){cv2b.reload}
  1121. cv2a.reload
  1122. assert_equal @dlopper.id.to_s, cv2a.value
  1123. end
  1124. def test_prune_should_destroy_unactivated_old_users
  1125. User.generate!(:status => User::STATUS_REGISTERED, :created_on => 6.days.ago)
  1126. User.generate!(:status => User::STATUS_REGISTERED, :created_on => 7.days.ago)
  1127. User.generate!(:status => User::STATUS_REGISTERED)
  1128. assert_difference 'User.count', -2 do
  1129. User.prune(7)
  1130. end
  1131. end
  1132. end