Dev #1
@@ -1,47 +1,49 @@
|
|||||||
package dev.ksan.etfoglasiserver.service;
|
package dev.ksan.etfoglasiserver.service;
|
||||||
|
|
||||||
|
import org.junit.jupiter.api.BeforeEach;
|
||||||
import org.junit.jupiter.api.Test;
|
import org.junit.jupiter.api.Test;
|
||||||
|
import org.junit.jupiter.api.extension.ExtendWith;
|
||||||
|
import org.mockito.junit.jupiter.MockitoExtension;
|
||||||
import org.springframework.beans.factory.annotation.Autowired;
|
import org.springframework.beans.factory.annotation.Autowired;
|
||||||
import org.springframework.boot.test.context.SpringBootTest;
|
import org.springframework.boot.test.context.SpringBootTest;
|
||||||
import org.springframework.security.core.userdetails.UserDetails;
|
|
||||||
import org.springframework.test.context.TestPropertySource;
|
import org.springframework.test.context.TestPropertySource;
|
||||||
|
|
||||||
|
import java.lang.reflect.Field;
|
||||||
|
|
||||||
import static org.assertj.core.api.AssertionsForClassTypes.assertThat;
|
import static org.assertj.core.api.AssertionsForClassTypes.assertThat;
|
||||||
import static org.assertj.core.api.AssertionsForClassTypes.assertThatThrownBy;
|
import static org.assertj.core.api.AssertionsForClassTypes.assertThatThrownBy;
|
||||||
|
|
||||||
@SpringBootTest
|
@ExtendWith(MockitoExtension.class)
|
||||||
@TestPropertySource(locations = "classpath:application.properties")
|
|
||||||
class JWTServiceTest {
|
class JWTServiceTest {
|
||||||
|
|
||||||
@Autowired
|
private JWTService jwtService;
|
||||||
JWTService jwtService;
|
|
||||||
|
|
||||||
private org.springframework.security.core.userdetails.UserDetails userDetails(String email) {
|
private static final String TEST_SECRET =
|
||||||
return org.springframework.security.core.userdetails.User
|
"dGVzdHNlY3JldGtleXRoYXRpc2xvbmdlbm91Z2hmb3JibWFjc2hhMjU2dGVzdGtleQ==";
|
||||||
.withUsername(email)
|
|
||||||
.password("irrelevant")
|
@BeforeEach
|
||||||
.roles("USER")
|
void setUp() throws Exception {
|
||||||
.build();
|
jwtService = new JWTService();
|
||||||
|
Field secret = JWTService.class.getDeclaredField("secretKey");
|
||||||
|
secret.setAccessible(true);
|
||||||
|
secret.set(jwtService, TEST_SECRET);
|
||||||
}
|
}
|
||||||
|
|
||||||
@Test
|
@Test
|
||||||
void generateToken_extractEmail_returnsCorrectEmail() {
|
void generateToken_extractEmail_returnsCorrectEmail() {
|
||||||
String token = jwtService.generateToken("alice@example.com");
|
String token = jwtService.generateToken("alice@example.com");
|
||||||
|
|
||||||
assertThat(jwtService.extractEmail(token)).isEqualTo("alice@example.com");
|
assertThat(jwtService.extractEmail(token)).isEqualTo("alice@example.com");
|
||||||
}
|
}
|
||||||
|
|
||||||
@Test
|
@Test
|
||||||
void validateToken_correctUser_returnsTrue() {
|
void validateToken_correctUser_returnsTrue() {
|
||||||
String token = jwtService.generateToken("alice@example.com");
|
String token = jwtService.generateToken("alice@example.com");
|
||||||
|
|
||||||
assertThat(jwtService.validateToken(token, userDetails("alice@example.com"))).isTrue();
|
assertThat(jwtService.validateToken(token, userDetails("alice@example.com"))).isTrue();
|
||||||
}
|
}
|
||||||
|
|
||||||
@Test
|
@Test
|
||||||
void validateToken_differentUser_returnsFalse() {
|
void validateToken_differentUser_returnsFalse() {
|
||||||
String token = jwtService.generateToken("alice@example.com");
|
String token = jwtService.generateToken("alice@example.com");
|
||||||
|
|
||||||
assertThat(jwtService.validateToken(token, userDetails("bob@example.com"))).isFalse();
|
assertThat(jwtService.validateToken(token, userDetails("bob@example.com"))).isFalse();
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -49,8 +51,12 @@ class JWTServiceTest {
|
|||||||
void validateToken_tamperedToken_throwsException() {
|
void validateToken_tamperedToken_throwsException() {
|
||||||
String token = jwtService.generateToken("alice@example.com");
|
String token = jwtService.generateToken("alice@example.com");
|
||||||
String tampered = token.substring(0, token.length() - 4) + "XXXX";
|
String tampered = token.substring(0, token.length() - 4) + "XXXX";
|
||||||
|
|
||||||
assertThatThrownBy(() -> jwtService.validateToken(tampered, userDetails("alice@example.com")))
|
assertThatThrownBy(() -> jwtService.validateToken(tampered, userDetails("alice@example.com")))
|
||||||
.isInstanceOf(Exception.class);
|
.isInstanceOf(Exception.class);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
private org.springframework.security.core.userdetails.UserDetails userDetails(String email) {
|
||||||
|
return org.springframework.security.core.userdetails.User
|
||||||
|
.withUsername(email).password("x").roles("USER").build();
|
||||||
|
}
|
||||||
}
|
}
|
||||||
Reference in New Issue
Block a user