You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

ExportAdHocRulesStepIT.java 15KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326
  1. /*
  2. * SonarQube
  3. * Copyright (C) 2009-2024 SonarSource SA
  4. * mailto:info AT sonarsource DOT com
  5. *
  6. * This program is free software; you can redistribute it and/or
  7. * modify it under the terms of the GNU Lesser General Public
  8. * License as published by the Free Software Foundation; either
  9. * version 3 of the License, or (at your option) any later version.
  10. *
  11. * This program is distributed in the hope that it will be useful,
  12. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
  14. * Lesser General Public License for more details.
  15. *
  16. * You should have received a copy of the GNU Lesser General Public License
  17. * along with this program; if not, write to the Free Software Foundation,
  18. * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
  19. */
  20. package org.sonar.ce.task.projectexport.rule;
  21. import com.google.common.collect.ImmutableList;
  22. import com.sonarsource.governance.projectdump.protobuf.ProjectDump;
  23. import java.util.Date;
  24. import java.util.List;
  25. import java.util.Map;
  26. import java.util.Set;
  27. import java.util.stream.Collectors;
  28. import org.apache.commons.lang3.RandomStringUtils;
  29. import org.junit.Before;
  30. import org.junit.Rule;
  31. import org.junit.Test;
  32. import org.slf4j.event.Level;
  33. import org.sonar.api.issue.impact.SoftwareQuality;
  34. import org.sonar.api.rule.RuleKey;
  35. import org.sonar.api.rule.RuleStatus;
  36. import org.sonar.api.rule.Severity;
  37. import org.sonar.api.rules.CleanCodeAttribute;
  38. import org.sonar.api.rules.RuleType;
  39. import org.sonar.api.testfixtures.log.LogTester;
  40. import org.sonar.api.utils.System2;
  41. import org.sonar.ce.task.projectexport.steps.DumpElement;
  42. import org.sonar.ce.task.projectexport.steps.FakeDumpWriter;
  43. import org.sonar.ce.task.projectexport.steps.ProjectHolder;
  44. import org.sonar.ce.task.step.TestComputationStepContext;
  45. import org.sonar.db.DbTester;
  46. import org.sonar.db.component.BranchDto;
  47. import org.sonar.db.component.BranchType;
  48. import org.sonar.db.component.ComponentDto;
  49. import org.sonar.db.component.ProjectData;
  50. import org.sonar.db.issue.ImpactDto;
  51. import org.sonar.db.issue.IssueDto;
  52. import org.sonar.db.project.ProjectDto;
  53. import org.sonar.db.rule.RuleDto;
  54. import static org.assertj.core.api.Assertions.assertThat;
  55. import static org.assertj.core.api.Assertions.assertThatThrownBy;
  56. import static org.mockito.Mockito.mock;
  57. import static org.mockito.Mockito.when;
  58. public class ExportAdHocRulesStepIT {
  59. private static final String PROJECT_UUID = "some-uuid";
  60. private static final List<BranchDto> BRANCHES = ImmutableList.of(
  61. new BranchDto().setBranchType(BranchType.PULL_REQUEST).setProjectUuid(PROJECT_UUID).setKey("pr-1").setUuid("pr-1-uuid").setMergeBranchUuid("master").setIsMain(false),
  62. new BranchDto().setBranchType(BranchType.BRANCH).setProjectUuid(PROJECT_UUID).setKey("branch-2").setUuid("branch-2-uuid").setMergeBranchUuid("master")
  63. .setExcludeFromPurge(true).setIsMain(false),
  64. new BranchDto().setBranchType(BranchType.BRANCH).setProjectUuid(PROJECT_UUID).setKey("branch-3").setUuid("branch-3-uuid").setMergeBranchUuid("master")
  65. .setExcludeFromPurge(false).setIsMain(false));
  66. @Rule
  67. public LogTester logTester = new LogTester();
  68. @Rule
  69. public DbTester dbTester = DbTester.create(System2.INSTANCE);
  70. private int issueUuidGenerator = 1;
  71. private ComponentDto mainBranch;
  72. private final FakeDumpWriter dumpWriter = new FakeDumpWriter();
  73. private final ProjectHolder projectHolder = mock(ProjectHolder.class);
  74. private final ExportAdHocRulesStep underTest = new ExportAdHocRulesStep(dbTester.getDbClient(), projectHolder, dumpWriter);
  75. @Before
  76. public void setup() {
  77. logTester.setLevel(Level.DEBUG);
  78. ProjectDto project = createProject();
  79. when(projectHolder.projectDto()).thenReturn(project);
  80. }
  81. @Test
  82. public void export_zero_ad_hoc_rules() {
  83. underTest.execute(new TestComputationStepContext());
  84. List<ProjectDump.AdHocRule> exportedRules = dumpWriter.getWrittenMessagesOf(DumpElement.AD_HOC_RULES);
  85. assertThat(exportedRules).isEmpty();
  86. assertThat(logTester.logs(Level.DEBUG)).contains("0 ad-hoc rules exported");
  87. }
  88. @Test
  89. public void execute_only_exports_ad_hoc_rules_that_reference_project_issue() {
  90. String differentProject = "diff-proj-uuid";
  91. RuleDto rule1 = insertAddHocRule("rule-1");
  92. RuleDto rule2 = insertAddHocRule("rule-2");
  93. insertAddHocRule("rule-3");
  94. insertIssue(rule1, differentProject, differentProject);
  95. insertIssue(rule2, mainBranch.uuid(), mainBranch.uuid());
  96. underTest.execute(new TestComputationStepContext());
  97. List<ProjectDump.AdHocRule> exportedRules = dumpWriter.getWrittenMessagesOf(DumpElement.AD_HOC_RULES);
  98. assertThat(exportedRules).hasSize(1);
  99. assertProtobufAdHocRuleIsCorrectlyBuilt(exportedRules.iterator().next(), rule2);
  100. assertThat(logTester.logs(Level.DEBUG)).contains("1 ad-hoc rules exported");
  101. }
  102. @Test
  103. public void execute_only_exports_rules_that_are_ad_hoc() {
  104. RuleDto rule1 = insertStandardRule("rule-1");
  105. RuleDto rule2 = insertExternalRule("rule-2");
  106. RuleDto rule3 = insertAddHocRule("rule-3");
  107. insertIssue(rule1, mainBranch.uuid(), mainBranch.uuid());
  108. insertIssue(rule2, mainBranch.uuid(), mainBranch.uuid());
  109. insertIssue(rule3, mainBranch.uuid(), mainBranch.uuid());
  110. underTest.execute(new TestComputationStepContext());
  111. List<ProjectDump.AdHocRule> exportedRules = dumpWriter.getWrittenMessagesOf(DumpElement.AD_HOC_RULES);
  112. assertThat(exportedRules).hasSize(1);
  113. assertProtobufAdHocRuleIsCorrectlyBuilt(exportedRules.iterator().next(), rule3);
  114. assertThat(logTester.logs(Level.DEBUG)).contains("1 ad-hoc rules exported");
  115. }
  116. @Test
  117. public void execute_exports_ad_hoc_rules_that_are_referenced_by_issues_on_branches_excluded_from_purge() {
  118. when(projectHolder.branches()).thenReturn(BRANCHES);
  119. RuleDto rule1 = insertAddHocRule("rule-1");
  120. RuleDto rule2 = insertAddHocRule("rule-2");
  121. RuleDto rule3 = insertAddHocRule("rule-3");
  122. insertIssue(rule1, "branch-1-uuid", "branch-1-uuid");
  123. insertIssue(rule2, "branch-2-uuid", "branch-2-uuid");
  124. insertIssue(rule3, "branch-3-uuid", "branch-3-uuid");
  125. underTest.execute(new TestComputationStepContext());
  126. List<ProjectDump.AdHocRule> exportedRules = dumpWriter.getWrittenMessagesOf(DumpElement.AD_HOC_RULES);
  127. assertThat(exportedRules).hasSize(1);
  128. assertProtobufAdHocRuleIsCorrectlyBuilt(exportedRules.iterator().next(), rule2);
  129. assertThat(logTester.logs(Level.DEBUG)).contains("1 ad-hoc rules exported");
  130. }
  131. @Test
  132. public void execute_throws_ISE_with_number_of_successful_exports_before_failure() {
  133. RuleDto rule1 = insertAddHocRule("rule-1");
  134. RuleDto rule2 = insertAddHocRule("rule-2");
  135. RuleDto rule3 = insertAddHocRule("rule-3");
  136. insertIssue(rule1, mainBranch.uuid(), mainBranch.uuid());
  137. insertIssue(rule2, mainBranch.uuid(), mainBranch.uuid());
  138. insertIssue(rule3, mainBranch.uuid(), mainBranch.uuid());
  139. dumpWriter.failIfMoreThan(2, DumpElement.AD_HOC_RULES);
  140. assertThatThrownBy(() -> underTest.execute(new TestComputationStepContext()))
  141. .isInstanceOf(IllegalStateException.class)
  142. .hasMessage("Ad-hoc rules export failed after processing 2 rules successfully");
  143. }
  144. @Test
  145. public void execute_shouldReturnCorrectAdhocRules_whenMultipleIssuesForSameRule() {
  146. RuleDto rule1 = insertAddHocRule("rule-1");
  147. insertIssue(rule1, mainBranch.uuid(), mainBranch.uuid());
  148. insertIssue(rule1, mainBranch.uuid(), mainBranch.uuid());
  149. insertIssue(rule1, mainBranch.uuid(), mainBranch.uuid());
  150. underTest.execute(new TestComputationStepContext());
  151. List<ProjectDump.AdHocRule> exportedRules = dumpWriter.getWrittenMessagesOf(DumpElement.AD_HOC_RULES);
  152. assertThat(exportedRules).hasSize(1);
  153. assertProtobufAdHocRuleIsCorrectlyBuilt(exportedRules.iterator().next(), rule1);
  154. }
  155. @Test
  156. public void getDescription() {
  157. assertThat(underTest.getDescription()).isEqualTo("Export ad-hoc rules");
  158. }
  159. @Test
  160. public void execute_shouldMapFieldWithEmptyString_whenNameOrPluginKeyAreNull() {
  161. RuleKey ruleKey = RuleKey.of("plugin1", "partiallyInit");
  162. RuleDto partiallyInitRuleDto = insertAdHocRuleWithoutNameAndPluginKeyAndAdHocInformations(ruleKey);
  163. insertIssue(partiallyInitRuleDto, mainBranch.uuid(), mainBranch.uuid());
  164. underTest.execute(new TestComputationStepContext());
  165. List<ProjectDump.AdHocRule> exportedRules = dumpWriter.getWrittenMessagesOf(DumpElement.AD_HOC_RULES);
  166. assertThat(exportedRules).hasSize(1);
  167. ProjectDump.AdHocRule adHocRule = exportedRules.iterator().next();
  168. assertThat(adHocRule.getName()).isEmpty();
  169. assertThat(adHocRule.getPluginKey()).isEmpty();
  170. ProjectDump.AdHocRule.RuleMetadata adHocRuleMetadata = adHocRule.getMetadata();
  171. assertThat(adHocRuleMetadata.getAdHocDescription()).isEmpty();
  172. assertThat(adHocRuleMetadata.getAdHocName()).isEmpty();
  173. assertThat(adHocRuleMetadata.getAdHocSeverity()).isEmpty();
  174. assertThat(adHocRuleMetadata.getAdHocType()).isZero();
  175. }
  176. private RuleDto insertAdHocRuleWithoutNameAndPluginKeyAndAdHocInformations(RuleKey ruleKey) {
  177. RuleDto partiallyInitRuleDto = new RuleDto()
  178. .setIsExternal(false)
  179. .setIsAdHoc(true)
  180. .setCleanCodeAttribute(CleanCodeAttribute.CONVENTIONAL)
  181. .addDefaultImpact(new ImpactDto().setSoftwareQuality(SoftwareQuality.MAINTAINABILITY).setSeverity(org.sonar.api.issue.impact.Severity.MEDIUM))
  182. .addDefaultImpact(new ImpactDto().setSoftwareQuality(SoftwareQuality.RELIABILITY).setSeverity(org.sonar.api.issue.impact.Severity.HIGH))
  183. .setRuleKey(ruleKey)
  184. .setScope(RuleDto.Scope.ALL)
  185. .setStatus(RuleStatus.READY);
  186. dbTester.rules().insert(partiallyInitRuleDto);
  187. dbTester.commit();
  188. return dbTester.getDbClient().ruleDao().selectByKey(dbTester.getSession(), ruleKey)
  189. .orElseThrow(() -> new RuntimeException("insertAdHocRule failed"));
  190. }
  191. private ProjectDto createProject() {
  192. Date createdAt = new Date();
  193. ProjectData projectData = dbTester.components().insertPublicProject(PROJECT_UUID);
  194. mainBranch = projectData.getMainBranchComponent();
  195. BRANCHES.forEach(branch -> dbTester.components().insertProjectBranch(projectData.getProjectDto(), branch).setCreatedAt(createdAt));
  196. dbTester.commit();
  197. return projectData.getProjectDto();
  198. }
  199. private void insertIssue(RuleDto ruleDto, String branchUuid, String componentUuid) {
  200. IssueDto dto = createBaseIssueDto(ruleDto, branchUuid, componentUuid);
  201. insertIssue(dto);
  202. }
  203. private void insertIssue(IssueDto dto) {
  204. dbTester.getDbClient().issueDao().insert(dbTester.getSession(), dto);
  205. dbTester.commit();
  206. }
  207. private IssueDto createBaseIssueDto(RuleDto ruleDto, String branchUuid, String componentUuid) {
  208. return new IssueDto()
  209. .setKee("issue_uuid_" + issueUuidGenerator++)
  210. .setComponentUuid(componentUuid)
  211. .setProjectUuid(branchUuid)
  212. .setRuleUuid(ruleDto.getUuid())
  213. .setStatus("OPEN");
  214. }
  215. private RuleDto insertExternalRule(String ruleName) {
  216. RuleDto ruleDto = new RuleDto()
  217. .setIsExternal(true)
  218. .setIsAdHoc(false);
  219. return insertRule(ruleName, ruleDto);
  220. }
  221. private RuleDto insertAddHocRule(String ruleName) {
  222. RuleDto ruleDto = new RuleDto()
  223. .setIsExternal(false)
  224. .setIsAdHoc(true)
  225. .setCleanCodeAttribute(CleanCodeAttribute.CONVENTIONAL)
  226. .addDefaultImpact(new ImpactDto().setSoftwareQuality(SoftwareQuality.MAINTAINABILITY).setSeverity(org.sonar.api.issue.impact.Severity.MEDIUM))
  227. .addDefaultImpact(new ImpactDto().setSoftwareQuality(SoftwareQuality.RELIABILITY).setSeverity(org.sonar.api.issue.impact.Severity.HIGH))
  228. .setAdHocName("ad_hoc_rule" + RandomStringUtils.randomAlphabetic(10))
  229. .setAdHocType(RuleType.VULNERABILITY)
  230. .setAdHocSeverity(Severity.CRITICAL)
  231. .setAdHocDescription("ad hoc description: " + RandomStringUtils.randomAlphanumeric(100));
  232. return insertRule(ruleName, ruleDto);
  233. }
  234. private RuleDto insertStandardRule(String ruleName) {
  235. RuleDto ruleDto = new RuleDto()
  236. .setIsExternal(false)
  237. .setIsAdHoc(false);
  238. return insertRule(ruleName, ruleDto);
  239. }
  240. private RuleDto insertRule(String ruleName, RuleDto partiallyInitRuleDto) {
  241. RuleKey ruleKey = RuleKey.of("plugin1", ruleName);
  242. partiallyInitRuleDto
  243. .setName("ruleName" + RandomStringUtils.randomAlphanumeric(10))
  244. .setRuleKey(ruleKey)
  245. .setPluginKey("pluginKey" + RandomStringUtils.randomAlphanumeric(10))
  246. .setStatus(RuleStatus.READY)
  247. .setScope(RuleDto.Scope.ALL);
  248. dbTester.rules().insert(partiallyInitRuleDto);
  249. dbTester.commit();
  250. return dbTester.getDbClient().ruleDao().selectByKey(dbTester.getSession(), ruleKey)
  251. .orElseThrow(() -> new RuntimeException("insertAdHocRule failed"));
  252. }
  253. private static void assertProtobufAdHocRuleIsCorrectlyBuilt(ProjectDump.AdHocRule protobufAdHocRule, RuleDto source) {
  254. assertThat(protobufAdHocRule.getName()).isEqualTo(source.getName());
  255. assertThat(protobufAdHocRule.getRef()).isEqualTo(source.getUuid());
  256. assertThat(protobufAdHocRule.getPluginKey()).isEqualTo(source.getPluginKey());
  257. assertThat(protobufAdHocRule.getPluginRuleKey()).isEqualTo(source.getRuleKey());
  258. assertThat(protobufAdHocRule.getPluginName()).isEqualTo(source.getRepositoryKey());
  259. assertThat(protobufAdHocRule.getName()).isEqualTo(source.getName());
  260. assertThat(protobufAdHocRule.getStatus()).isEqualTo(source.getStatus().name());
  261. assertThat(protobufAdHocRule.getType()).isEqualTo(source.getType());
  262. assertThat(protobufAdHocRule.getScope()).isEqualTo(source.getScope().name());
  263. assertThat(protobufAdHocRule.getCleanCodeAttribute()).isEqualTo(source.getCleanCodeAttribute().name());
  264. assertThat(toImpactMap(protobufAdHocRule.getImpactsList())).isEqualTo(toImpactMap(source.getDefaultImpacts()));
  265. assertProtobufAdHocRuleIsCorrectlyBuilt(protobufAdHocRule.getMetadata(), source);
  266. }
  267. private static Map<SoftwareQuality, org.sonar.api.issue.impact.Severity> toImpactMap(Set<ImpactDto> defaultImpacts) {
  268. return defaultImpacts
  269. .stream().collect(Collectors.toMap(ImpactDto::getSoftwareQuality, ImpactDto::getSeverity));
  270. }
  271. private static Map<SoftwareQuality, org.sonar.api.issue.impact.Severity> toImpactMap(List<ProjectDump.Impact> impactsList) {
  272. return impactsList.stream()
  273. .collect(Collectors.toMap(i -> SoftwareQuality.valueOf(i.getSoftwareQuality().name()),
  274. i -> org.sonar.api.issue.impact.Severity.valueOf(i.getSeverity().name())));
  275. }
  276. private static void assertProtobufAdHocRuleIsCorrectlyBuilt(ProjectDump.AdHocRule.RuleMetadata metadata, RuleDto expected) {
  277. assertThat(metadata.getAdHocName()).isEqualTo(expected.getAdHocName());
  278. assertThat(metadata.getAdHocDescription()).isEqualTo(expected.getAdHocDescription());
  279. assertThat(metadata.getAdHocSeverity()).isEqualTo(expected.getAdHocSeverity());
  280. assertThat(metadata.getAdHocType()).isEqualTo(expected.getAdHocType());
  281. }
  282. }