2016-02-01 20:44:03 +00:00
|
|
|
<?php
|
|
|
|
|
|
|
|
|
|
namespace MediaWiki\Session;
|
|
|
|
|
|
|
|
|
|
use MediaWikiTestCase;
|
|
|
|
|
|
|
|
|
|
/**
|
|
|
|
|
* @group Session
|
|
|
|
|
* @group Database
|
|
|
|
|
* @covers MediaWiki\Session\SessionProvider
|
|
|
|
|
*/
|
|
|
|
|
class SessionProviderTest extends MediaWikiTestCase {
|
|
|
|
|
|
|
|
|
|
public function testBasics() {
|
|
|
|
|
$manager = new SessionManager();
|
|
|
|
|
$logger = new \TestLogger();
|
|
|
|
|
$config = new \HashConfig();
|
|
|
|
|
|
|
|
|
|
$provider = $this->getMockForAbstractClass( 'MediaWiki\\Session\\SessionProvider' );
|
|
|
|
|
$priv = \TestingAccessWrapper::newFromObject( $provider );
|
|
|
|
|
|
|
|
|
|
$provider->setConfig( $config );
|
|
|
|
|
$this->assertSame( $config, $priv->config );
|
|
|
|
|
$provider->setLogger( $logger );
|
|
|
|
|
$this->assertSame( $logger, $priv->logger );
|
|
|
|
|
$provider->setManager( $manager );
|
|
|
|
|
$this->assertSame( $manager, $priv->manager );
|
|
|
|
|
$this->assertSame( $manager, $provider->getManager() );
|
|
|
|
|
|
2016-02-17 09:09:32 +00:00
|
|
|
$this->assertSame( [], $provider->getVaryHeaders() );
|
|
|
|
|
$this->assertSame( [], $provider->getVaryCookies() );
|
2016-02-01 20:44:03 +00:00
|
|
|
$this->assertSame( null, $provider->suggestLoginUsername( new \FauxRequest ) );
|
|
|
|
|
|
|
|
|
|
$this->assertSame( get_class( $provider ), (string)$provider );
|
|
|
|
|
|
|
|
|
|
$this->assertNull( $provider->whyNoSession() );
|
|
|
|
|
|
2016-02-17 09:09:32 +00:00
|
|
|
$info = new SessionInfo( SessionInfo::MIN_PRIORITY, [
|
2016-02-01 20:44:03 +00:00
|
|
|
'id' => 'aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa',
|
|
|
|
|
'provider' => $provider,
|
2016-02-17 09:09:32 +00:00
|
|
|
] );
|
|
|
|
|
$metadata = [ 'foo' ];
|
2016-02-01 20:44:03 +00:00
|
|
|
$this->assertTrue( $provider->refreshSessionInfo( $info, new \FauxRequest, $metadata ) );
|
2016-02-17 09:09:32 +00:00
|
|
|
$this->assertSame( [ 'foo' ], $metadata );
|
2016-02-01 20:44:03 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
/**
|
|
|
|
|
* @dataProvider provideNewSessionInfo
|
|
|
|
|
* @param bool $persistId Return value for ->persistsSessionId()
|
|
|
|
|
* @param bool $persistUser Return value for ->persistsSessionUser()
|
|
|
|
|
* @param bool $ok Whether a SessionInfo is provided
|
|
|
|
|
*/
|
|
|
|
|
public function testNewSessionInfo( $persistId, $persistUser, $ok ) {
|
|
|
|
|
$manager = new SessionManager();
|
|
|
|
|
|
|
|
|
|
$provider = $this->getMockBuilder( 'MediaWiki\\Session\\SessionProvider' )
|
2016-02-17 09:09:32 +00:00
|
|
|
->setMethods( [ 'canChangeUser', 'persistsSessionId' ] )
|
2016-02-01 20:44:03 +00:00
|
|
|
->getMockForAbstractClass();
|
|
|
|
|
$provider->expects( $this->any() )->method( 'persistsSessionId' )
|
|
|
|
|
->will( $this->returnValue( $persistId ) );
|
|
|
|
|
$provider->expects( $this->any() )->method( 'canChangeUser' )
|
|
|
|
|
->will( $this->returnValue( $persistUser ) );
|
|
|
|
|
$provider->setManager( $manager );
|
|
|
|
|
|
|
|
|
|
if ( $ok ) {
|
|
|
|
|
$info = $provider->newSessionInfo();
|
|
|
|
|
$this->assertNotNull( $info );
|
|
|
|
|
$this->assertFalse( $info->wasPersisted() );
|
|
|
|
|
$this->assertTrue( $info->isIdSafe() );
|
|
|
|
|
|
|
|
|
|
$id = 'aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa';
|
|
|
|
|
$info = $provider->newSessionInfo( $id );
|
|
|
|
|
$this->assertNotNull( $info );
|
|
|
|
|
$this->assertSame( $id, $info->getId() );
|
|
|
|
|
$this->assertFalse( $info->wasPersisted() );
|
|
|
|
|
$this->assertTrue( $info->isIdSafe() );
|
|
|
|
|
} else {
|
|
|
|
|
$this->assertNull( $provider->newSessionInfo() );
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public function testMergeMetadata() {
|
|
|
|
|
$provider = $this->getMockBuilder( 'MediaWiki\\Session\\SessionProvider' )
|
|
|
|
|
->getMockForAbstractClass();
|
|
|
|
|
|
|
|
|
|
try {
|
|
|
|
|
$provider->mergeMetadata(
|
2016-02-17 09:09:32 +00:00
|
|
|
[ 'foo' => 1, 'baz' => 3 ],
|
|
|
|
|
[ 'bar' => 2, 'baz' => '3' ]
|
2016-02-01 20:44:03 +00:00
|
|
|
);
|
|
|
|
|
$this->fail( 'Expected exception not thrown' );
|
2016-02-11 16:55:37 +00:00
|
|
|
} catch ( MetadataMergeException $ex ) {
|
2016-02-01 20:44:03 +00:00
|
|
|
$this->assertSame( 'Key "baz" changed', $ex->getMessage() );
|
2016-02-11 16:55:37 +00:00
|
|
|
$this->assertSame(
|
|
|
|
|
[ 'old_value' => 3, 'new_value' => '3' ], $ex->getContext() );
|
2016-02-01 20:44:03 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
$res = $provider->mergeMetadata(
|
2016-02-17 09:09:32 +00:00
|
|
|
[ 'foo' => 1, 'baz' => 3 ],
|
|
|
|
|
[ 'bar' => 2, 'baz' => 3 ]
|
2016-02-01 20:44:03 +00:00
|
|
|
);
|
2016-02-17 09:09:32 +00:00
|
|
|
$this->assertSame( [ 'bar' => 2, 'baz' => 3 ], $res );
|
2016-02-01 20:44:03 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public static function provideNewSessionInfo() {
|
2016-02-17 09:09:32 +00:00
|
|
|
return [
|
|
|
|
|
[ false, false, false ],
|
|
|
|
|
[ true, false, false ],
|
|
|
|
|
[ false, true, false ],
|
|
|
|
|
[ true, true, true ],
|
|
|
|
|
];
|
2016-02-01 20:44:03 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public function testImmutableSessions() {
|
|
|
|
|
$provider = $this->getMockBuilder( 'MediaWiki\\Session\\SessionProvider' )
|
2016-02-17 09:09:32 +00:00
|
|
|
->setMethods( [ 'canChangeUser', 'persistsSessionId' ] )
|
2016-02-01 20:44:03 +00:00
|
|
|
->getMockForAbstractClass();
|
|
|
|
|
$provider->expects( $this->any() )->method( 'canChangeUser' )
|
|
|
|
|
->will( $this->returnValue( true ) );
|
|
|
|
|
$provider->preventSessionsForUser( 'Foo' );
|
|
|
|
|
|
|
|
|
|
$provider = $this->getMockBuilder( 'MediaWiki\\Session\\SessionProvider' )
|
2016-02-17 09:09:32 +00:00
|
|
|
->setMethods( [ 'canChangeUser', 'persistsSessionId' ] )
|
2016-02-01 20:44:03 +00:00
|
|
|
->getMockForAbstractClass();
|
|
|
|
|
$provider->expects( $this->any() )->method( 'canChangeUser' )
|
|
|
|
|
->will( $this->returnValue( false ) );
|
|
|
|
|
try {
|
|
|
|
|
$provider->preventSessionsForUser( 'Foo' );
|
|
|
|
|
$this->fail( 'Expected exception not thrown' );
|
|
|
|
|
} catch ( \BadMethodCallException $ex ) {
|
2016-02-26 20:02:56 +00:00
|
|
|
$this->assertSame(
|
|
|
|
|
'MediaWiki\\Session\\SessionProvider::preventSessionsForUser must be implmented ' .
|
|
|
|
|
'when canChangeUser() is false',
|
|
|
|
|
$ex->getMessage()
|
|
|
|
|
);
|
2016-02-01 20:44:03 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public function testHashToSessionId() {
|
2016-02-17 09:09:32 +00:00
|
|
|
$config = new \HashConfig( [
|
2016-02-01 20:44:03 +00:00
|
|
|
'SecretKey' => 'Shhh!',
|
2016-02-17 09:09:32 +00:00
|
|
|
] );
|
2016-02-01 20:44:03 +00:00
|
|
|
|
|
|
|
|
$provider = $this->getMockForAbstractClass( 'MediaWiki\\Session\\SessionProvider',
|
2016-02-17 09:09:32 +00:00
|
|
|
[], 'MockSessionProvider' );
|
2016-02-01 20:44:03 +00:00
|
|
|
$provider->setConfig( $config );
|
|
|
|
|
$priv = \TestingAccessWrapper::newFromObject( $provider );
|
|
|
|
|
|
|
|
|
|
$this->assertSame( 'eoq8cb1mg7j30ui5qolafps4hg29k5bb', $priv->hashToSessionId( 'foobar' ) );
|
|
|
|
|
$this->assertSame( '4do8j7tfld1g8tte9jqp3csfgmulaun9',
|
|
|
|
|
$priv->hashToSessionId( 'foobar', 'secret' ) );
|
|
|
|
|
|
|
|
|
|
try {
|
2016-02-17 09:09:32 +00:00
|
|
|
$priv->hashToSessionId( [] );
|
2016-02-01 20:44:03 +00:00
|
|
|
$this->fail( 'Expected exception not thrown' );
|
|
|
|
|
} catch ( \InvalidArgumentException $ex ) {
|
|
|
|
|
$this->assertSame(
|
|
|
|
|
'$data must be a string, array was passed',
|
|
|
|
|
$ex->getMessage()
|
|
|
|
|
);
|
|
|
|
|
}
|
|
|
|
|
try {
|
|
|
|
|
$priv->hashToSessionId( '', false );
|
|
|
|
|
$this->fail( 'Expected exception not thrown' );
|
|
|
|
|
} catch ( \InvalidArgumentException $ex ) {
|
|
|
|
|
$this->assertSame(
|
|
|
|
|
'$key must be a string or null, boolean was passed',
|
|
|
|
|
$ex->getMessage()
|
|
|
|
|
);
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public function testDescribe() {
|
|
|
|
|
$provider = $this->getMockForAbstractClass( 'MediaWiki\\Session\\SessionProvider',
|
2016-02-17 09:09:32 +00:00
|
|
|
[], 'MockSessionProvider' );
|
2016-02-01 20:44:03 +00:00
|
|
|
|
|
|
|
|
$this->assertSame(
|
|
|
|
|
'MockSessionProvider sessions',
|
|
|
|
|
$provider->describe( \Language::factory( 'en' ) )
|
|
|
|
|
);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public function testGetAllowedUserRights() {
|
|
|
|
|
$provider = $this->getMockForAbstractClass( 'MediaWiki\\Session\\SessionProvider' );
|
|
|
|
|
$backend = TestUtils::getDummySessionBackend();
|
|
|
|
|
|
|
|
|
|
try {
|
|
|
|
|
$provider->getAllowedUserRights( $backend );
|
|
|
|
|
$this->fail( 'Expected exception not thrown' );
|
|
|
|
|
} catch ( \InvalidArgumentException $ex ) {
|
|
|
|
|
$this->assertSame(
|
|
|
|
|
'Backend\'s provider isn\'t $this',
|
|
|
|
|
$ex->getMessage()
|
|
|
|
|
);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
\TestingAccessWrapper::newFromObject( $backend )->provider = $provider;
|
|
|
|
|
$this->assertNull( $provider->getAllowedUserRights( $backend ) );
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
}
|