test_pagure_flask_ui_app.py 108 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699170017011702170317041705170617071708170917101711171217131714171517161717171817191720172117221723172417251726172717281729173017311732173317341735173617371738173917401741174217431744174517461747174817491750175117521753175417551756175717581759176017611762176317641765176617671768176917701771177217731774177517761777177817791780178117821783178417851786178717881789179017911792179317941795179617971798179918001801180218031804180518061807180818091810181118121813181418151816181718181819182018211822182318241825182618271828182918301831183218331834183518361837183818391840184118421843184418451846184718481849185018511852185318541855185618571858185918601861186218631864186518661867186818691870187118721873187418751876187718781879188018811882188318841885188618871888188918901891189218931894189518961897189818991900190119021903190419051906190719081909191019111912191319141915191619171918191919201921192219231924192519261927192819291930193119321933193419351936193719381939194019411942194319441945194619471948194919501951195219531954195519561957195819591960196119621963196419651966196719681969197019711972197319741975197619771978197919801981198219831984198519861987198819891990199119921993199419951996199719981999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202420252026202720282029203020312032203320342035203620372038203920402041204220432044204520462047204820492050205120522053205420552056205720582059206020612062206320642065206620672068206920702071207220732074207520762077207820792080208120822083208420852086208720882089209020912092209320942095209620972098209921002101210221032104210521062107210821092110211121122113211421152116211721182119212021212122212321242125212621272128212921302131213221332134213521362137213821392140214121422143214421452146214721482149215021512152215321542155215621572158215921602161216221632164216521662167216821692170217121722173217421752176217721782179218021812182218321842185218621872188218921902191219221932194219521962197219821992200220122022203220422052206220722082209221022112212221322142215221622172218221922202221222222232224222522262227222822292230223122322233223422352236223722382239224022412242224322442245224622472248224922502251225222532254225522562257225822592260226122622263226422652266226722682269227022712272227322742275227622772278227922802281228222832284228522862287228822892290229122922293229422952296229722982299230023012302230323042305230623072308230923102311231223132314231523162317231823192320232123222323232423252326232723282329233023312332233323342335233623372338233923402341234223432344234523462347234823492350235123522353235423552356235723582359236023612362236323642365236623672368236923702371237223732374237523762377237823792380238123822383238423852386238723882389239023912392239323942395239623972398239924002401240224032404240524062407240824092410241124122413241424152416241724182419242024212422242324242425242624272428242924302431243224332434243524362437243824392440244124422443244424452446244724482449245024512452245324542455245624572458245924602461246224632464246524662467246824692470247124722473247424752476247724782479248024812482248324842485248624872488248924902491249224932494249524962497249824992500250125022503250425052506250725082509251025112512251325142515251625172518251925202521252225232524252525262527252825292530253125322533253425352536253725382539254025412542254325442545254625472548254925502551255225532554255525562557255825592560256125622563256425652566256725682569257025712572257325742575257625772578257925802581258225832584258525862587258825892590259125922593259425952596259725982599260026012602260326042605260626072608260926102611261226132614261526162617261826192620262126222623262426252626262726282629263026312632263326342635263626372638263926402641264226432644264526462647264826492650265126522653265426552656265726582659266026612662266326642665266626672668266926702671267226732674267526762677267826792680268126822683268426852686268726882689269026912692269326942695269626972698269927002701270227032704270527062707270827092710271127122713271427152716271727182719272027212722272327242725272627272728272927302731273227332734273527362737273827392740274127422743274427452746274727482749275027512752275327542755275627572758275927602761276227632764276527662767276827692770277127722773277427752776277727782779278027812782278327842785278627872788278927902791279227932794279527962797279827992800280128022803280428052806280728082809281028112812281328142815281628172818281928202821282228232824282528262827282828292830283128322833283428352836283728382839284028412842284328442845284628472848284928502851285228532854285528562857285828592860286128622863286428652866286728682869287028712872287328742875287628772878287928802881288228832884288528862887288828892890289128922893
  1. # -*- coding: utf-8 -*-
  2. """
  3. (c) 2015-2018 - Copyright Red Hat Inc
  4. Authors:
  5. Pierre-Yves Chibon <pingou@pingoured.fr>
  6. """
  7. from __future__ import unicode_literals, absolute_import
  8. import datetime
  9. import unittest
  10. import shutil
  11. import sys
  12. import tempfile
  13. import os
  14. import six
  15. import json
  16. import pygit2
  17. from mock import patch, MagicMock
  18. sys.path.insert(
  19. 0, os.path.join(os.path.dirname(os.path.abspath(__file__)), "..")
  20. )
  21. import pagure.lib.query
  22. import tests
  23. class PagureFlaskApptests(tests.Modeltests):
  24. """ Tests for flask app controller of pagure """
  25. def test_watch_list(self):
  26. """ Test for watch list of a user """
  27. user = tests.FakeUser(username="pingou")
  28. with tests.user_set(self.app.application, user):
  29. output = self.app.get("/", follow_redirects=True)
  30. output_text = output.get_data(as_text=True)
  31. self.assertIn(
  32. '<div class="text-center">You have no Projects</div>',
  33. output_text,
  34. )
  35. tests.create_projects(self.session)
  36. output = self.app.get("/", follow_redirects=True)
  37. output_text = output.get_data(as_text=True)
  38. self.assertIn(
  39. '<h4 class="font-weight-bold mb-0">My Projects</h4>',
  40. output_text,
  41. )
  42. def test_view_users(self):
  43. """ Test the view_users endpoint. """
  44. output = self.app.get("/users/?page=abc")
  45. self.assertEqual(output.status_code, 200)
  46. output_text = output.get_data(as_text=True)
  47. self.assertIn(
  48. '<h3 class="mb-3 font-weight-bold">\n Users '
  49. '<span class="badge badge-secondary">2</span>',
  50. output_text,
  51. )
  52. self.assertIn(
  53. '<a href="/user/pingou">\n '
  54. '<div class="nowrap"><strong>pingou</strong>',
  55. output_text,
  56. )
  57. self.assertIn(
  58. '<a href="/user/foo">\n '
  59. '<div class="nowrap"><strong>foo</strong>',
  60. output_text,
  61. )
  62. @patch.dict("pagure.config.config", {"ITEM_PER_PAGE": 2})
  63. def test_view_user_repo_cnt(self):
  64. """ Test the repo counts on the view_user endpoint. """
  65. tests.create_projects(self.session)
  66. self.gitrepos = tests.create_projects_git(
  67. pagure.config.config["GIT_FOLDER"]
  68. )
  69. output = self.app.get("/user/pingou")
  70. self.assertEqual(output.status_code, 200)
  71. output_text = output.get_data(as_text=True)
  72. self.assertIn(
  73. """<span>
  74. <i class="fa fa-fw text-muted fa-calendar-o fa-rotate-270"></i>
  75. <span class="d-none d-md-inline">Projects&nbsp;</span>
  76. </span>
  77. <div class="ml-auto">
  78. <span class="badge badge-secondary">
  79. 3
  80. </span>
  81. </div>""",
  82. output_text,
  83. )
  84. self.assertIn(
  85. """<span>
  86. <i class="fa fa-fw text-muted fa-code-fork"></i>
  87. <span class="d-none d-md-inline">Forks&nbsp;</span>
  88. </span>
  89. <div class="ml-auto">
  90. <span class="badge badge-secondary">
  91. 0
  92. </span>
  93. </div>""",
  94. output_text,
  95. )
  96. def test_view_user(self):
  97. """ Test the view_user endpoint. """
  98. output = self.app.get("/user/pingou?repopage=abc&forkpage=def")
  99. self.assertEqual(output.status_code, 200)
  100. output_text = output.get_data(as_text=True)
  101. self.assertIn(
  102. """<span>
  103. <i class="fa fa-fw text-muted fa-calendar-o fa-rotate-270"></i>
  104. <span class="d-none d-md-inline">Projects&nbsp;</span>
  105. </span>
  106. <div class="ml-auto">
  107. <span class="badge badge-secondary">
  108. 0
  109. </span>
  110. </div>""",
  111. output_text,
  112. )
  113. self.assertIn(
  114. """<span>
  115. <i class="fa fa-fw text-muted fa-code-fork"></i>
  116. <span class="d-none d-md-inline">Forks&nbsp;</span>
  117. </span>
  118. <div class="ml-auto">
  119. <span class="badge badge-secondary">
  120. 0
  121. </span>
  122. </div>""",
  123. output_text,
  124. )
  125. tests.create_projects(self.session)
  126. self.gitrepos = tests.create_projects_git(
  127. pagure.config.config["GIT_FOLDER"]
  128. )
  129. output = self.app.get("/user/pingou?repopage=abc&forkpage=def")
  130. self.assertEqual(output.status_code, 200)
  131. output_text = output.get_data(as_text=True)
  132. self.assertIn(
  133. """<span>
  134. <i class="fa fa-fw text-muted fa-calendar-o fa-rotate-270"></i>
  135. <span class="d-none d-md-inline">Projects&nbsp;</span>
  136. </span>
  137. <div class="ml-auto">
  138. <span class="badge badge-secondary">
  139. 3
  140. </span>
  141. </div>""",
  142. output_text,
  143. )
  144. self.assertIn(
  145. """<span>
  146. <i class="fa fa-fw text-muted fa-code-fork"></i>
  147. <span class="d-none d-md-inline">Forks&nbsp;</span>
  148. </span>
  149. <div class="ml-auto">
  150. <span class="badge badge-secondary">
  151. 0
  152. </span>
  153. </div>""",
  154. output_text,
  155. )
  156. self.assertNotIn(
  157. '<a class="page-link" href="#" tabindex="-1">page 1 of 2</a>',
  158. output_text,
  159. )
  160. @patch.dict(
  161. "pagure.config.config",
  162. {
  163. "PAGURE_ADMIN_USERS": ["pingou"],
  164. "ALLOW_ADMIN_IGNORE_EXISTING_REPOS": True,
  165. },
  166. )
  167. def test_adopt_repos(self):
  168. """ Test the new_project endpoint with existing git repo. """
  169. # Before
  170. projects = pagure.lib.query.search_projects(self.session)
  171. self.assertEqual(len(projects), 0)
  172. tests.create_projects_git(os.path.join(self.path, "repos"), bare=True)
  173. tests.add_content_git_repo(
  174. os.path.join(self.path, "repos", "test.git")
  175. )
  176. user = tests.FakeUser(username="pingou")
  177. with tests.user_set(self.app.application, user):
  178. data = {
  179. "csrf_token": self.get_csrf(),
  180. "name": "test",
  181. "description": "Project #1",
  182. }
  183. output = self.app.post("/new/", data=data, follow_redirects=True)
  184. self.assertEqual(output.status_code, 200)
  185. output_text = output.get_data(as_text=True)
  186. self.assertIn("The main repo test.git already exists", output_text)
  187. data["ignore_existing_repos"] = "y"
  188. output = self.app.post("/new/", data=data, follow_redirects=True)
  189. self.assertEqual(output.status_code, 200)
  190. output_text = output.get_data(as_text=True)
  191. self.assertIn("Alice Author", output_text)
  192. @patch.dict(
  193. "pagure.config.config",
  194. {"PAGURE_ADMIN_USERS": [], "USERS_IGNORE_EXISTING_REPOS": ["pingou"]},
  195. )
  196. def test_adopt_repos_non_admin(self):
  197. """ Test the new_project endpoint with existing git repo for non-admins. """
  198. # Before
  199. projects = pagure.lib.query.search_projects(self.session)
  200. self.assertEqual(len(projects), 0)
  201. tests.create_projects_git(os.path.join(self.path, "repos"), bare=True)
  202. tests.add_content_git_repo(
  203. os.path.join(self.path, "repos", "test.git")
  204. )
  205. user = tests.FakeUser(username="pingou")
  206. with tests.user_set(self.app.application, user):
  207. data = {
  208. "csrf_token": self.get_csrf(),
  209. "name": "test",
  210. "description": "Project #1",
  211. }
  212. output = self.app.post("/new/", data=data, follow_redirects=True)
  213. self.assertEqual(output.status_code, 200)
  214. output_text = output.get_data(as_text=True)
  215. self.assertIn("The main repo test.git already exists", output_text)
  216. data["ignore_existing_repos"] = "y"
  217. output = self.app.post("/new/", data=data, follow_redirects=True)
  218. self.assertEqual(output.status_code, 200)
  219. output_text = output.get_data(as_text=True)
  220. self.assertIn("Alice Author", output_text)
  221. @patch.dict(
  222. "pagure.config.config",
  223. {"PAGURE_ADMIN_USERS": [], "USERS_IGNORE_EXISTING_REPOS": []},
  224. )
  225. def test_adopt_repos_not_allowed(self):
  226. """ Test the new_project endpoint with existing git repo for no access. """
  227. # Before
  228. projects = pagure.lib.query.search_projects(self.session)
  229. self.assertEqual(len(projects), 0)
  230. tests.create_projects_git(os.path.join(self.path, "repos"), bare=True)
  231. tests.add_content_git_repo(
  232. os.path.join(self.path, "repos", "test.git")
  233. )
  234. user = tests.FakeUser(username="pingou")
  235. with tests.user_set(self.app.application, user):
  236. data = {
  237. "csrf_token": self.get_csrf(),
  238. "name": "test",
  239. "description": "Project #1",
  240. }
  241. output = self.app.post("/new/", data=data, follow_redirects=True)
  242. self.assertEqual(output.status_code, 200)
  243. output_text = output.get_data(as_text=True)
  244. self.assertIn("The main repo test.git already exists", output_text)
  245. data["ignore_existing_repos"] = "y"
  246. output = self.app.post("/new/", data=data, follow_redirects=True)
  247. self.assertEqual(output.status_code, 200)
  248. output_text = output.get_data(as_text=True)
  249. self.assertIn("The main repo test.git already exists", output_text)
  250. @patch.dict("pagure.config.config", {"PROJECT_NAME_REGEX": "^1[a-z]*$"})
  251. def test_new_project_diff_regex(self):
  252. """ Test the new_project endpoint with a different regex. """
  253. # Before
  254. projects = pagure.lib.query.search_projects(self.session)
  255. self.assertEqual(len(projects), 0)
  256. user = tests.FakeUser(username="foo")
  257. with tests.user_set(self.app.application, user):
  258. output = self.app.get("/new/")
  259. self.assertEqual(output.status_code, 200)
  260. output_text = output.get_data(as_text=True)
  261. self.assertIn("<strong>Create new Project</strong>", output_text)
  262. csrf_token = self.get_csrf(output=output)
  263. data = {
  264. "description": "Project #1",
  265. "name": "project-1",
  266. "csrf_token": csrf_token,
  267. }
  268. output = self.app.post("/new/", data=data, follow_redirects=True)
  269. self.assertEqual(output.status_code, 200)
  270. output_text = output.get_data(as_text=True)
  271. self.assertIn("<title>New project - Pagure</title>", output_text)
  272. self.assertIn("<strong>Create new Project</strong>", output_text)
  273. self.assertIn(
  274. "<small>\n Invalid input.&nbsp;\n"
  275. " </small>",
  276. output_text,
  277. )
  278. @patch.dict("pagure.config.config", {"PRIVATE_PROJECTS": True})
  279. def test_new_project_private(self):
  280. """ Test the new_project endpoint for a private project. """
  281. # Before
  282. projects = pagure.lib.query.search_projects(self.session)
  283. self.assertEqual(len(projects), 0)
  284. self.assertFalse(
  285. os.path.exists(
  286. os.path.join(self.path, "repos", "foo", "project#1.git")
  287. )
  288. )
  289. self.assertFalse(
  290. os.path.exists(
  291. os.path.join(
  292. self.path, "repos", "tickets", "foo", "project#1.git"
  293. )
  294. )
  295. )
  296. self.assertFalse(
  297. os.path.exists(
  298. os.path.join(
  299. self.path, "repos", "docs", "foo", "project#1.git"
  300. )
  301. )
  302. )
  303. self.assertFalse(
  304. os.path.exists(
  305. os.path.join(
  306. self.path, "repos", "requests", "foo", "project#1.git"
  307. )
  308. )
  309. )
  310. user = tests.FakeUser()
  311. with tests.user_set(self.app.application, user):
  312. output = self.app.get("/new/")
  313. self.assertEqual(output.status_code, 200)
  314. self.assertIn(
  315. "<strong>Create new Project</strong>",
  316. output.get_data(as_text=True),
  317. )
  318. csrf_token = self.get_csrf(output=output)
  319. data = {"description": "Project #1", "private": True}
  320. output = self.app.post("/new/", data=data)
  321. self.assertEqual(output.status_code, 200)
  322. output_text = output.get_data(as_text=True)
  323. self.assertIn("<strong>Create new Project</strong>", output_text)
  324. self.assertIn(
  325. "<small>\n This field is required.&nbsp;\n"
  326. " </small>",
  327. output_text,
  328. )
  329. data["name"] = "project-1"
  330. output = self.app.post("/new/", data=data)
  331. self.assertEqual(output.status_code, 200)
  332. output_text = output.get_data(as_text=True)
  333. self.assertIn("<strong>Create new Project</strong>", output_text)
  334. self.assertNotIn(
  335. "<small>\n This field is required.&nbsp;\n"
  336. " </small>",
  337. output_text,
  338. )
  339. data["csrf_token"] = csrf_token
  340. output = self.app.post("/new/", data=data)
  341. self.assertEqual(output.status_code, 200)
  342. output_text = output.get_data(as_text=True)
  343. self.assertIn("<strong>Create new Project</strong>", output_text)
  344. self.assertIn("No user " "&#34;username&#34; found", output_text)
  345. user.username = "foo"
  346. with tests.user_set(self.app.application, user):
  347. data["csrf_token"] = csrf_token
  348. output = self.app.post("/new/", data=data, follow_redirects=True)
  349. self.assertEqual(output.status_code, 200)
  350. output_text = output.get_data(as_text=True)
  351. self.assertIn(
  352. '<div class="projectinfo my-3">\nProject #1', output_text
  353. )
  354. self.assertIn("<p>This repo is brand new!</p>", output_text)
  355. self.assertIn(
  356. "<title>Overview - foo/project-1 - Pagure</title>", output_text
  357. )
  358. # After
  359. projects = pagure.lib.query.search_projects(self.session)
  360. self.assertEqual(len(projects), 0)
  361. projects = pagure.lib.query.search_projects(self.session, private=True)
  362. self.assertEqual(len(projects), 1)
  363. self.assertTrue(
  364. os.path.exists(
  365. os.path.join(self.path, "repos", "foo", "project-1.git")
  366. )
  367. )
  368. self.assertTrue(
  369. os.path.exists(
  370. os.path.join(
  371. self.path, "repos", "tickets", "foo", "project-1.git"
  372. )
  373. )
  374. )
  375. self.assertTrue(
  376. os.path.exists(
  377. os.path.join(
  378. self.path, "repos", "docs", "foo", "project-1.git"
  379. )
  380. )
  381. )
  382. self.assertTrue(
  383. os.path.exists(
  384. os.path.join(
  385. self.path, "repos", "requests", "foo", "project-1.git"
  386. )
  387. )
  388. )
  389. def test_non_ascii_new_project(self):
  390. """ Test the new_project endpoint with a non-ascii project. """
  391. # Before
  392. projects = pagure.lib.query.search_projects(self.session)
  393. self.assertEqual(len(projects), 0)
  394. self.assertFalse(
  395. os.path.exists(os.path.join(self.path, "repos", "project-1.git"))
  396. )
  397. self.assertFalse(
  398. os.path.exists(
  399. os.path.join(self.path, "repos", "tickets", "project-1.git")
  400. )
  401. )
  402. self.assertFalse(
  403. os.path.exists(
  404. os.path.join(self.path, "repos", "docs", "project-1.git")
  405. )
  406. )
  407. self.assertFalse(
  408. os.path.exists(
  409. os.path.join(self.path, "repos", "requests", "project-1.git")
  410. )
  411. )
  412. user = tests.FakeUser()
  413. user.username = "foo"
  414. with tests.user_set(self.app.application, user):
  415. output = self.app.get("/new/")
  416. self.assertEqual(output.status_code, 200)
  417. output_text = output.get_data(as_text=True)
  418. self.assertIn("<strong>Create new Project</strong>", output_text)
  419. csrf_token = output_text.split(
  420. 'name="csrf_token" type="hidden" value="'
  421. )[1].split('">')[0]
  422. data = {
  423. "description": "Prõjéctö #1",
  424. "name": "project-1",
  425. "csrf_token": csrf_token,
  426. "create_readme": True,
  427. }
  428. output = self.app.post("/new/", data=data, follow_redirects=True)
  429. self.assertEqual(output.status_code, 200)
  430. output_text = output.get_data(as_text=True)
  431. self.assertIn(
  432. '<div class="projectinfo my-3">\nPrõjéctö #1', output_text
  433. )
  434. self.assertIn(
  435. """<section class="readme">
  436. <div class="markdown"><h1>project-1</h1>
  437. <p>Prõjéctö #1</p></div>
  438. </section>""",
  439. output_text,
  440. )
  441. data = {
  442. "description": "Мой первый суперский репозиторий",
  443. "name": "project-2",
  444. "csrf_token": csrf_token,
  445. "create_readme": True,
  446. }
  447. output = self.app.post("/new/", data=data, follow_redirects=True)
  448. self.assertEqual(output.status_code, 200)
  449. output_text = output.get_data(as_text=True)
  450. self.assertIn(
  451. '<div class="projectinfo my-3">\nМой первый суперский репозиторий',
  452. output_text,
  453. )
  454. self.assertIn(
  455. """<section class="readme">
  456. <div class="markdown"><h1>project-2</h1>
  457. <p>Мой первый суперский репозиторий</p></div>
  458. </section>""",
  459. output_text,
  460. )
  461. # After
  462. projects = pagure.lib.query.search_projects(self.session)
  463. self.assertEqual(len(projects), 2)
  464. for project in ["project-1", "project-2"]:
  465. self.assertTrue(
  466. os.path.exists(
  467. os.path.join(self.path, "repos", "%s.git" % project)
  468. )
  469. )
  470. self.assertTrue(
  471. os.path.exists(
  472. os.path.join(
  473. self.path, "repos", "tickets", "%s.git" % project
  474. )
  475. )
  476. )
  477. self.assertTrue(
  478. os.path.exists(
  479. os.path.join(
  480. self.path, "repos", "docs", "%s.git" % project
  481. )
  482. )
  483. )
  484. self.assertTrue(
  485. os.path.exists(
  486. os.path.join(
  487. self.path, "repos", "requests", "%s.git" % project
  488. )
  489. )
  490. )
  491. @patch("pygit2.init_repository", wraps=pygit2.init_repository)
  492. def test_new_project_with_template(self, pygit2init):
  493. """ Test the new_project endpoint for a new project with a template set.
  494. """
  495. # Before
  496. projects = pagure.lib.query.search_projects(self.session)
  497. self.assertEqual(len(projects), 0)
  498. self.assertFalse(
  499. os.path.exists(os.path.join(self.path, "repos", "project-1.git"))
  500. )
  501. self.assertFalse(
  502. os.path.exists(
  503. os.path.join(self.path, "repos", "tickets", "project-1.git")
  504. )
  505. )
  506. self.assertFalse(
  507. os.path.exists(
  508. os.path.join(self.path, "repos", "docs", "project-1.git")
  509. )
  510. )
  511. self.assertFalse(
  512. os.path.exists(
  513. os.path.join(self.path, "repos", "requests", "project-1.git")
  514. )
  515. )
  516. user = tests.FakeUser()
  517. user.username = "foo"
  518. with tests.user_set(self.app.application, user):
  519. output = self.app.get("/new/")
  520. self.assertEqual(output.status_code, 200)
  521. self.assertIn(
  522. "<strong>Create new Project</strong>",
  523. output.get_data(as_text=True),
  524. )
  525. csrf_token = self.get_csrf(output=output)
  526. data = {
  527. "description": "test",
  528. "name": "project-1",
  529. "csrf_token": csrf_token,
  530. "create_readme": True,
  531. }
  532. output = self.app.post("/new/", data=data, follow_redirects=True)
  533. self.assertEqual(output.status_code, 200)
  534. self.assertIn(
  535. '<div class="projectinfo my-3">\ntest',
  536. output.get_data(as_text=True),
  537. )
  538. self.assertEqual(pygit2init.call_count, 4)
  539. pygit2init.assert_any_call(
  540. "%s/repos/project-1.git" % self.path,
  541. bare=True,
  542. template_path=None,
  543. )
  544. path = os.path.join(self.path, "repos", "project-1.git")
  545. with patch.dict(
  546. "pagure.config.config", {"PROJECT_TEMPLATE_PATH": path}
  547. ):
  548. data = {
  549. "description": "test2",
  550. "name": "project-2",
  551. "csrf_token": csrf_token,
  552. "create_readme": True,
  553. }
  554. output = self.app.post(
  555. "/new/", data=data, follow_redirects=True
  556. )
  557. self.assertEqual(output.status_code, 200)
  558. self.assertIn(
  559. '<div class="projectinfo my-3">\ntest2',
  560. output.get_data(as_text=True),
  561. )
  562. self.assertEqual(pygit2init.call_count, 8)
  563. pygit2init.assert_any_call(
  564. "%s/repos/project-2.git" % self.path,
  565. bare=True,
  566. template_path="%s/repos/project-1.git" % self.path,
  567. )
  568. # After
  569. projects = pagure.lib.query.search_projects(self.session)
  570. self.assertEqual(len(projects), 2)
  571. for project in ["project-1", "project-2"]:
  572. self.assertTrue(
  573. os.path.exists(
  574. os.path.join(self.path, "repos", "%s.git" % project)
  575. )
  576. )
  577. self.assertTrue(
  578. os.path.exists(
  579. os.path.join(
  580. self.path, "repos", "tickets", "%s.git" % project
  581. )
  582. )
  583. )
  584. self.assertTrue(
  585. os.path.exists(
  586. os.path.join(
  587. self.path, "repos", "docs", "%s.git" % project
  588. )
  589. )
  590. )
  591. self.assertTrue(
  592. os.path.exists(
  593. os.path.join(
  594. self.path, "repos", "requests", "%s.git" % project
  595. )
  596. )
  597. )
  598. @patch("pagure.ui.app.admin_session_timedout")
  599. def test_user_settings(self, ast):
  600. """ Test the user_settings endpoint. """
  601. ast.return_value = False
  602. user = tests.FakeUser()
  603. with tests.user_set(self.app.application, user):
  604. output = self.app.get("/settings/")
  605. self.assertEqual(output.status_code, 404)
  606. self.assertIn(
  607. "<h2>Page not found (404)</h2>", output.get_data(as_text=True)
  608. )
  609. user.username = "foo"
  610. with tests.user_set(self.app.application, user):
  611. output = self.app.get("/settings/")
  612. self.assertEqual(output.status_code, 200)
  613. output_text = output.get_data(as_text=True)
  614. self.assertIn(
  615. "<title>foo's settings - Pagure</title>", output_text
  616. )
  617. ast.return_value = True
  618. output = self.app.get("/settings/")
  619. self.assertEqual(output.status_code, 302)
  620. @patch("pagure.decorators.admin_session_timedout")
  621. def test_add_user_sshkey(self, ast):
  622. """ Test the add_user_sshkey endpoint. """
  623. ast.return_value = False
  624. # User not logged in
  625. output = self.app.get("/settings/")
  626. self.assertEqual(output.status_code, 302)
  627. ast.return_value = False
  628. user = tests.FakeUser(username="pingou")
  629. with tests.user_set(self.app.application, user):
  630. output = self.app.get("/settings", follow_redirects=True)
  631. self.assertEqual(output.status_code, 200)
  632. output_text = output.get_data(as_text=True)
  633. self.assertIn("<strong>Add SSH key", output_text)
  634. csrf_token = self.get_csrf(output=output)
  635. data = {"ssh_key": "asdf"}
  636. # No CSRF token
  637. output = self.app.post(
  638. "/settings/usersettings/addkey",
  639. data=data,
  640. follow_redirects=True,
  641. )
  642. self.assertEqual(output.status_code, 200)
  643. output_text = output.get_data(as_text=True)
  644. self.assertIn("<strong>Add SSH key", output_text)
  645. data["csrf_token"] = csrf_token
  646. # First, invalid SSH key
  647. output = self.app.post(
  648. "/settings/usersettings/addkey",
  649. data=data,
  650. follow_redirects=True,
  651. )
  652. self.assertEqual(output.status_code, 200)
  653. output_text = output.get_data(as_text=True)
  654. self.assertIn("<strong>Add SSH key", output_text)
  655. self.assertIn("SSH key invalid", output_text)
  656. # Next up, multiple SSH keys
  657. data[
  658. "ssh_key"
  659. ] = "ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAAAgQDAzBMSIlvPRaEiLOTVInErkRIw9CzQQcnslDekAn1jFnGf+SNa1acvbTiATbCX71AA03giKrPxPH79dxcC7aDXerc6zRcKjJs6MAL9PrCjnbyxCKXRNNZU5U9X/DLaaL1b3caB+WD6OoorhS3LTEtKPX8xyjOzhf3OQSzNjhJp5Q==\nssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAAAgQDAzBMSIlvPRaEiLOTVInErkRIw9CzQQcnslDekAn1jFnGf+SNa1acvbTiATbCX71AA03giKrPxPH79dxcC7aDXerc6zRcKjJs6MAL9PrCjnbyxCKXRNNZU5U9X/DLaaL1b3caB+WD6OoorhS3LTEtKPX8xyjOzhf3OQSzNjhJp5Q=="
  660. output = self.app.post(
  661. "/settings/usersettings/addkey",
  662. data=data,
  663. follow_redirects=True,
  664. )
  665. self.assertEqual(output.status_code, 200)
  666. output_text = output.get_data(as_text=True)
  667. self.assertIn("Please add single SSH keys.", output_text)
  668. # Now, a valid SSH key
  669. data[
  670. "ssh_key"
  671. ] = "ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAAAgQDAzBMSIlvPRaEiLOTVInErkRIw9CzQQcnslDekAn1jFnGf+SNa1acvbTiATbCX71AA03giKrPxPH79dxcC7aDXerc6zRcKjJs6MAL9PrCjnbyxCKXRNNZU5U9X/DLaaL1b3caB+WD6OoorhS3LTEtKPX8xyjOzhf3OQSzNjhJp5Q=="
  672. output = self.app.post(
  673. "/settings/usersettings/addkey",
  674. data=data,
  675. follow_redirects=True,
  676. )
  677. self.assertEqual(output.status_code, 200)
  678. output_text = output.get_data(as_text=True)
  679. self.assertIn(
  680. "<title>pingou's settings - Pagure</title>", output_text
  681. )
  682. self.assertIn("SSH key added", output_text)
  683. self.assertNotIn("Push Access", output_text)
  684. # And now, adding the same key
  685. output = self.app.post(
  686. "/settings/usersettings/addkey",
  687. data=data,
  688. follow_redirects=True,
  689. )
  690. self.assertEqual(output.status_code, 200)
  691. output_text = output.get_data(as_text=True)
  692. self.assertIn("SSH key already exists", output_text)
  693. # And next, a key with push access
  694. data[
  695. "ssh_key"
  696. ] = "ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAAAgQC9Xwc2RDzPBhlEDARfHldGjudIVoa04tqT1JVKGQmyllTFz7Rb8CngQL3e7zyNzotnhwYKHdoiLlPkVEiDee4dWMUe48ilqId+FJZQGhyv8fu4BoFdE1AJUVylzmltbLg14VqG5gjTpXgtlrEva9arKwBMHJjRYc8ScaSn3OgyQw=="
  697. output = self.app.post(
  698. "/settings/usersettings/addkey",
  699. data=data,
  700. follow_redirects=True,
  701. )
  702. self.assertEqual(output.status_code, 200)
  703. output_text = output.get_data(as_text=True)
  704. self.assertIn(
  705. "<title>pingou's settings - Pagure</title>", output_text
  706. )
  707. self.assertIn("SSH key added", output_text)
  708. @patch("pagure.decorators.admin_session_timedout")
  709. def test_remove_user_sshkey(self, ast):
  710. """ Test the remove_sshkey endpoint. """
  711. ast.return_value = False
  712. user = tests.FakeUser()
  713. # User not logged in
  714. output = self.app.post("/settings/usersettings/removekey/1")
  715. self.assertEqual(output.status_code, 302)
  716. user.username = "pingou"
  717. with tests.user_set(self.app.application, user):
  718. data = {"csrf_token": self.get_csrf()}
  719. output = self.app.post(
  720. "/settings/usersettings/removekey/1",
  721. data=data,
  722. follow_redirects=True,
  723. )
  724. self.assertEqual(output.status_code, 200)
  725. output_text = output.get_data(as_text=True)
  726. self.assertIn(
  727. "<title>pingou's settings - Pagure</title>", output_text
  728. )
  729. self.assertIn("SSH key does not exist", output_text)
  730. # Add a deploy key to a project
  731. pingou = pagure.lib.query.get_user(self.session, "pingou")
  732. msg = pagure.lib.query.add_sshkey_to_project_or_user(
  733. session=self.session,
  734. ssh_key="ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAAAgQDAzBMSIlvPRaEiLOTVInErkRIw9CzQQcnslDekAn1jFnGf+SNa1acvbTiATbCX71AA03giKrPxPH79dxcC7aDXerc6zRcKjJs6MAL9PrCjnbyxCKXRNNZU5U9X/DLaaL1b3caB+WD6OoorhS3LTEtKPX8xyjOzhf3OQSzNjhJp5Q==",
  735. user=pingou,
  736. pushaccess=True,
  737. creator=pingou,
  738. )
  739. self.session.commit()
  740. self.assertEqual(msg, "SSH key added")
  741. with tests.user_set(self.app.application, user):
  742. output = self.app.post(
  743. "/settings/usersettings/removekey/1", follow_redirects=True
  744. )
  745. self.assertEqual(output.status_code, 200)
  746. output_text = output.get_data(as_text=True)
  747. self.assertIn(
  748. "<title>pingou's settings - Pagure</title>", output_text
  749. )
  750. self.assertNotIn("SSH key removed", output_text)
  751. data = {"csrf_token": self.get_csrf()}
  752. output = self.app.post(
  753. "/settings/usersettings/removekey/1",
  754. data=data,
  755. follow_redirects=True,
  756. )
  757. self.assertEqual(output.status_code, 200)
  758. output_text = output.get_data(as_text=True)
  759. self.assertIn(
  760. "<title>pingou's settings - Pagure</title>", output_text
  761. )
  762. self.assertIn("SSH key removed", output_text)
  763. def patched_commit_exists(user, namespace, repo, githash):
  764. """ Patched version of pagure.pfmarkdown._commit_exists to enforce
  765. returning true on some given hash without having us actually check
  766. the git repos.
  767. """
  768. if githash in [
  769. "9364354",
  770. "9364354a",
  771. "9364354a4555ba17aa60f0dc844d70b74eb1aecd",
  772. ]:
  773. return True
  774. else:
  775. return False
  776. @patch(
  777. "pagure.pfmarkdown._commit_exists",
  778. MagicMock(side_effect=patched_commit_exists),
  779. )
  780. def test_patched_markdown_preview(self):
  781. """ Test the markdown_preview endpoint. """
  782. data = {"content": "test\n----\n\n * 1\n * item 2"}
  783. # CSRF missing
  784. output = self.app.post("/markdown/", data=data)
  785. self.assertEqual(output.status_code, 400)
  786. user = tests.FakeUser()
  787. user.username = "foo"
  788. with tests.user_set(self.app.application, user):
  789. output = self.app.get("/settings/")
  790. self.assertEqual(output.status_code, 200)
  791. output_text = output.get_data(as_text=True)
  792. self.assertIn(
  793. "<title>foo's settings - Pagure</title>", output_text
  794. )
  795. csrf_token = self.get_csrf(output=output)
  796. # With CSRF
  797. data["csrf_token"] = csrf_token
  798. output = self.app.post("/markdown/", data=data)
  799. self.assertEqual(output.status_code, 200)
  800. exp = """<div class="markdown"><h2>test</h2>
  801. <ul>
  802. <li>1</li>
  803. <li>item 2</li>
  804. </ul></div>"""
  805. self.assertEqual(output.get_data(as_text=True), exp)
  806. tests.create_projects(self.session)
  807. texts = [
  808. "pingou committed on test#9364354a4555ba17aa60f0dc844d70b74eb1aecd",
  809. "Cf commit 936435", # 6 chars - not long enough
  810. "Cf commit 9364354", # 7 chars - long enough
  811. "Cf commit 9364354a", # 8 chars - still long enough
  812. "Cf commit 9364354a4555ba17aa60f0dc844d70b74eb1aecd", # 40 chars
  813. ]
  814. expected = [
  815. # 'pingou committed on test#9364354a4555ba17aa60f0dc844d70b74eb1aecd',
  816. '<div class="markdown"><p>pingou committed on <a href="/test/c/9364354a4555ba17aa60f0dc844d70b74eb1aecd" '
  817. 'title="Commit 9364354a4555ba17aa60f0dc844d70b74eb1aecd"'
  818. ">test#9364354a4555ba17aa60f0dc844d70b74eb1aecd</a></p></div>",
  819. # 'Cf commit 936435',
  820. '<div class="markdown"><p>Cf commit 936435</p></div>',
  821. # 'Cf commit 9364354',
  822. #'<p>Cf commit 9364354</p>',
  823. '<div class="markdown"><p>Cf commit <a href="/test/c/9364354" '
  824. 'title="Commit 9364354">9364354</a></p></div>',
  825. # 'Cf commit 9364354a',
  826. '<div class="markdown"><p>Cf commit <a href="/test/c/9364354a" '
  827. 'title="Commit 9364354a">9364354</a></p></div>',
  828. # 'Cf commit 9364354a4555ba17aa60f0dc844d70b74eb1aecd',
  829. '<div class="markdown"><p>Cf commit <a href="/test/c/9364354a4555ba17aa60f0dc844d70b74eb1aecd" '
  830. 'title="Commit 9364354a4555ba17aa60f0dc844d70b74eb1aecd"'
  831. ">9364354</a></p></div>",
  832. ]
  833. with self.app.application.app_context():
  834. for idx, text in enumerate(texts):
  835. data = {"content": text, "csrf_token": csrf_token}
  836. output = self.app.post("/markdown/?repo=test", data=data)
  837. self.assertEqual(output.status_code, 200)
  838. self.assertEqual(expected[idx], output.get_data(as_text=True))
  839. def test_markdown_preview(self):
  840. """ Test the markdown_preview endpoint with a non-existing commit.
  841. """
  842. user = tests.FakeUser()
  843. user.username = "foo"
  844. with tests.user_set(self.app.application, user):
  845. output = self.app.get("/settings/")
  846. self.assertEqual(output.status_code, 200)
  847. output_text = output.get_data(as_text=True)
  848. self.assertIn(
  849. "<title>foo's settings - Pagure</title>", output_text
  850. )
  851. csrf_token = self.get_csrf(output=output)
  852. tests.create_projects(self.session)
  853. tests.create_projects_git(os.path.join(self.path, "repos"), bare=True)
  854. text = "Cf commit 9364354a4555ba17aa60f0d"
  855. exp = '<div class="markdown"><p>Cf commit 9364354a4555ba17aa60f0d</p></div>'
  856. with self.app.application.app_context():
  857. data = {"content": text, "csrf_token": csrf_token}
  858. output = self.app.post("/markdown/?repo=test", data=data)
  859. self.assertEqual(output.status_code, 200)
  860. self.assertEqual(exp, output.get_data(as_text=True))
  861. def test_markdown_preview_valid_commit(self):
  862. """ Test the markdown_preview endpoint with an existing commit. """
  863. user = tests.FakeUser()
  864. user.username = "foo"
  865. with tests.user_set(self.app.application, user):
  866. output = self.app.get("/settings/")
  867. self.assertEqual(output.status_code, 200)
  868. output_text = output.get_data(as_text=True)
  869. self.assertIn(
  870. "<title>foo's settings - Pagure</title>", output_text
  871. )
  872. csrf_token = self.get_csrf(output=output)
  873. tests.create_projects(self.session)
  874. tests.create_projects_git(os.path.join(self.path, "repos"), bare=True)
  875. repopath = os.path.join(self.path, "repos", "test.git")
  876. tests.add_content_git_repo(repopath)
  877. repo = pygit2.Repository(repopath)
  878. first_commit = repo.revparse_single("HEAD")
  879. text = "Cf commit %s" % first_commit.oid.hex
  880. exp = (
  881. '<div class="markdown"><p>Cf commit <a href="/test/c/{0}" title="Commit {0}">{1}'
  882. "</a></p></div>".format(
  883. first_commit.oid.hex, first_commit.oid.hex[:7]
  884. )
  885. )
  886. with self.app.application.app_context():
  887. data = {"content": text, "csrf_token": csrf_token}
  888. output = self.app.post("/markdown/?repo=test", data=data)
  889. self.assertEqual(output.status_code, 200)
  890. self.assertEqual(exp, output.get_data(as_text=True))
  891. @patch("pagure.ui.app.admin_session_timedout")
  892. def test_remove_user_email(self, ast):
  893. """ Test the remove_user_email endpoint. """
  894. ast.return_value = False
  895. user = tests.FakeUser()
  896. with tests.user_set(self.app.application, user):
  897. output = self.app.post("/settings/email/drop")
  898. self.assertEqual(output.status_code, 404)
  899. self.assertIn(
  900. "<h2>Page not found (404)</h2>", output.get_data(as_text=True)
  901. )
  902. user.username = "foo"
  903. with tests.user_set(self.app.application, user):
  904. output = self.app.get("/settings/")
  905. self.assertEqual(output.status_code, 200)
  906. output_text = output.get_data(as_text=True)
  907. self.assertIn(
  908. "<title>foo's settings - Pagure</title>", output_text
  909. )
  910. csrf_token = self.get_csrf(output=output)
  911. data = {"email": "foo@pingou.com"}
  912. output = self.app.post(
  913. "/settings/email/drop", data=data, follow_redirects=True
  914. )
  915. self.assertEqual(output.status_code, 200)
  916. output_text = output.get_data(as_text=True)
  917. self.assertIn(
  918. "<title>foo's settings - Pagure</title>", output_text
  919. )
  920. self.assertIn(
  921. "You must always have at " "least one email", output_text
  922. )
  923. user.username = "pingou"
  924. with tests.user_set(self.app.application, user):
  925. output = self.app.get("/settings/")
  926. self.assertEqual(output.status_code, 200)
  927. output_text = output.get_data(as_text=True)
  928. self.assertIn(
  929. "<title>pingou's settings - Pagure</title>", output_text
  930. )
  931. csrf_token = self.get_csrf(output=output)
  932. data = {"email": "foo@pingou.com"}
  933. output = self.app.post(
  934. "/settings/email/drop", data=data, follow_redirects=True
  935. )
  936. self.assertEqual(output.status_code, 200)
  937. output_text = output.get_data(as_text=True)
  938. self.assertIn(
  939. "<title>pingou's settings - Pagure</title>", output_text
  940. )
  941. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  942. data = {"csrf_token": csrf_token, "email": "foobar@pingou.com"}
  943. output = self.app.post(
  944. "/settings/email/drop", data=data, follow_redirects=True
  945. )
  946. self.assertEqual(output.status_code, 200)
  947. output_text = output.get_data(as_text=True)
  948. self.assertIn(
  949. "<title>pingou's settings - Pagure</title>", output_text
  950. )
  951. self.assertIn(
  952. "You do not have the "
  953. "email: foobar@pingou.com, nothing to remove",
  954. output_text,
  955. )
  956. data = {"csrf_token": csrf_token, "email": "foo@pingou.com"}
  957. output = self.app.post(
  958. "/settings/email/drop", data=data, follow_redirects=True
  959. )
  960. self.assertEqual(output.status_code, 200)
  961. output_text = output.get_data(as_text=True)
  962. self.assertEqual(output_text.count("foo@pingou.com"), 0)
  963. self.assertEqual(output_text.count("bar@pingou.com"), 3)
  964. output = self.app.post(
  965. "/settings/email/drop", data=data, follow_redirects=True
  966. )
  967. self.assertEqual(output.status_code, 200)
  968. output_text = output.get_data(as_text=True)
  969. self.assertEqual(output_text.count("foo@pingou.com"), 0)
  970. self.assertEqual(output_text.count("bar@pingou.com"), 3)
  971. ast.return_value = True
  972. output = self.app.post("/settings/email/drop", data=data)
  973. self.assertEqual(output.status_code, 302)
  974. @patch("pagure.lib.notify.send_email")
  975. @patch("pagure.ui.app.admin_session_timedout")
  976. def test_add_api_user_email(self, ast, send_email):
  977. """ Test the add_api_user_email endpoint. """
  978. send_email.return_value = True
  979. ast.return_value = False
  980. user = tests.FakeUser()
  981. with tests.user_set(self.app.application, user):
  982. output = self.app.post("/settings/email/add")
  983. self.assertEqual(output.status_code, 404)
  984. self.assertIn(
  985. "<h2>Page not found (404)</h2>", output.get_data(as_text=True)
  986. )
  987. user.username = "foo"
  988. with tests.user_set(self.app.application, user):
  989. output = self.app.post("/settings/email/add")
  990. self.assertEqual(output.status_code, 200)
  991. output_text = output.get_data(as_text=True)
  992. self.assertIn("<strong>Add new email</strong>", output_text)
  993. if self.get_wtforms_version() >= (2, 2):
  994. self.assertIn(
  995. '<input class="form-control form-control-error" id="email" '
  996. 'name="email" required type="text" value="">',
  997. output_text,
  998. )
  999. else:
  1000. self.assertIn(
  1001. '<input class="form-control form-control-error" id="email" '
  1002. 'name="email" type="text" value="">',
  1003. output_text,
  1004. )
  1005. user.username = "pingou"
  1006. with tests.user_set(self.app.application, user):
  1007. output = self.app.post("/settings/email/add")
  1008. self.assertEqual(output.status_code, 200)
  1009. output_text = output.get_data(as_text=True)
  1010. self.assertIn("<strong>Add new email</strong>", output_text)
  1011. if self.get_wtforms_version() >= (2, 2):
  1012. self.assertIn(
  1013. '<input class="form-control form-control-error" id="email" '
  1014. 'name="email" required type="text" value="">',
  1015. output_text,
  1016. )
  1017. else:
  1018. self.assertIn(
  1019. '<input class="form-control form-control-error" id="email" '
  1020. 'name="email" type="text" value="">',
  1021. output_text,
  1022. )
  1023. csrf_token = output_text.split(
  1024. 'name="csrf_token" type="hidden" value="'
  1025. )[1].split('">')[0]
  1026. data = {"email": "foo2@pingou.com"}
  1027. output = self.app.post(
  1028. "/settings/email/add", data=data, follow_redirects=True
  1029. )
  1030. self.assertEqual(output.status_code, 200)
  1031. output_text = output.get_data(as_text=True)
  1032. self.assertIn("<strong>Add new email</strong>", output_text)
  1033. self.assertEqual(output_text.count("foo2@pingou.com"), 1)
  1034. # New email
  1035. data = {"csrf_token": csrf_token, "email": "foðbar@pingou.com"}
  1036. output = self.app.post(
  1037. "/settings/email/add", data=data, follow_redirects=True
  1038. )
  1039. self.assertEqual(output.status_code, 200)
  1040. output_text = output.get_data(as_text=True)
  1041. self.assertIn(
  1042. "<title>pingou's settings - Pagure</title>", output_text
  1043. )
  1044. self.assertIn("Email pending validation", output_text)
  1045. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  1046. self.assertEqual(output_text.count("bar@pingou.com"), 5)
  1047. self.assertEqual(output_text.count("foðbar@pingou.com"), 2)
  1048. # Email already pending
  1049. output = self.app.post(
  1050. "/settings/email/add", data=data, follow_redirects=True
  1051. )
  1052. self.assertEqual(output.status_code, 200)
  1053. output_text = output.get_data(as_text=True)
  1054. self.assertIn(
  1055. '<div class="card-header">\n '
  1056. "<strong>Add new email</strong>",
  1057. output_text,
  1058. )
  1059. self.assertIn(
  1060. "This email is already " "pending confirmation", output_text
  1061. )
  1062. # User already has this email
  1063. data = {"csrf_token": csrf_token, "email": "foo@pingou.com"}
  1064. output = self.app.post(
  1065. "/settings/email/add", data=data, follow_redirects=True
  1066. )
  1067. self.assertEqual(output.status_code, 200)
  1068. output_text = output.get_data(as_text=True)
  1069. self.assertTrue("<strong>Add new email</strong>" in output_text)
  1070. self.assertTrue(
  1071. "Invalid value, can&#39;t be any of: bar@pingou.com, "
  1072. "foo@pingou.com.&nbsp;" in output_text
  1073. or "Invalid value, can&#39;t be any of: foo@pingou.com, "
  1074. "bar@pingou.com.&nbsp;" in output_text
  1075. )
  1076. self.assertEqual(output_text.count("foo@pingou.com"), 6)
  1077. self.assertEqual(output_text.count("bar@pingou.com"), 5)
  1078. self.assertEqual(output_text.count("foðbar@pingou.com"), 0)
  1079. # Email registered by someone else
  1080. data = {"csrf_token": csrf_token, "email": "foo@bar.com"}
  1081. output = self.app.post(
  1082. "/settings/email/add", data=data, follow_redirects=True
  1083. )
  1084. self.assertEqual(output.status_code, 200)
  1085. output_text = output.get_data(as_text=True)
  1086. self.assertTrue("<strong>Add new email</strong>" in output_text)
  1087. self.assertIn(
  1088. "Invalid value, can&#39;t be any of: foo@bar.com.&nbsp;",
  1089. output_text,
  1090. )
  1091. ast.return_value = True
  1092. output = self.app.post("/settings/email/add", data=data)
  1093. self.assertEqual(output.status_code, 302)
  1094. @patch("pagure.lib.notify.send_email")
  1095. @patch("pagure.ui.app.admin_session_timedout")
  1096. def test_set_default_email(self, ast, send_email):
  1097. """ Test the set_default_email endpoint. """
  1098. send_email.return_value = True
  1099. ast.return_value = False
  1100. user = tests.FakeUser()
  1101. with tests.user_set(self.app.application, user):
  1102. output = self.app.post("/settings/email/default")
  1103. self.assertEqual(output.status_code, 404)
  1104. self.assertTrue(
  1105. "<h2>Page not found (404)</h2>"
  1106. in output.get_data(as_text=True)
  1107. )
  1108. user.username = "pingou"
  1109. with tests.user_set(self.app.application, user):
  1110. output = self.app.get("/settings/")
  1111. self.assertEqual(output.status_code, 200)
  1112. output_text = output.get_data(as_text=True)
  1113. self.assertIn(
  1114. "<title>pingou's settings - Pagure</title>", output_text
  1115. )
  1116. csrf_token = self.get_csrf(output=output)
  1117. data = {"email": "foo@pingou.com"}
  1118. output = self.app.post(
  1119. "/settings/email/default", data=data, follow_redirects=True
  1120. )
  1121. self.assertEqual(output.status_code, 200)
  1122. output_text = output.get_data(as_text=True)
  1123. self.assertIn(
  1124. "<title>pingou's settings - Pagure</title>", output_text
  1125. )
  1126. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  1127. # Set invalid default email
  1128. data = {"csrf_token": csrf_token, "email": "foobar@pingou.com"}
  1129. output = self.app.post(
  1130. "/settings/email/default", data=data, follow_redirects=True
  1131. )
  1132. self.assertEqual(output.status_code, 200)
  1133. output_text = output.get_data(as_text=True)
  1134. self.assertIn(
  1135. "<title>pingou's settings - Pagure</title>", output_text
  1136. )
  1137. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  1138. self.assertIn(
  1139. "You do not have the "
  1140. "email: foobar@pingou.com, nothing to set",
  1141. output_text,
  1142. )
  1143. # Set default email
  1144. data = {"csrf_token": csrf_token, "email": "foo@pingou.com"}
  1145. output = self.app.post(
  1146. "/settings/email/default", data=data, follow_redirects=True
  1147. )
  1148. self.assertEqual(output.status_code, 200)
  1149. output_text = output.get_data(as_text=True)
  1150. self.assertIn(
  1151. "<title>pingou's settings - Pagure</title>", output_text
  1152. )
  1153. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  1154. self.assertIn(
  1155. "Default email set to: " "foo@pingou.com", output_text
  1156. )
  1157. ast.return_value = True
  1158. output = self.app.post("/settings/email/default", data=data)
  1159. self.assertEqual(output.status_code, 302)
  1160. @patch("pagure.lib.notify.send_email")
  1161. @patch("pagure.ui.app.admin_session_timedout")
  1162. def test_reconfirm_email(self, ast, send_email):
  1163. """ Test the reconfirm_email endpoint. """
  1164. send_email.return_value = True
  1165. ast.return_value = False
  1166. # Add a pending email to pingou
  1167. userobj = pagure.lib.query.search_user(self.session, username="pingou")
  1168. self.assertEqual(len(userobj.emails), 2)
  1169. email_pend = pagure.lib.model.UserEmailPending(
  1170. user_id=userobj.id, email="foo@fp.o", token="abcdef"
  1171. )
  1172. self.session.add(email_pend)
  1173. self.session.commit()
  1174. user = tests.FakeUser()
  1175. with tests.user_set(self.app.application, user):
  1176. output = self.app.post("/settings/email/resend")
  1177. self.assertEqual(output.status_code, 404)
  1178. self.assertTrue(
  1179. "<h2>Page not found (404)</h2>"
  1180. in output.get_data(as_text=True)
  1181. )
  1182. user.username = "pingou"
  1183. with tests.user_set(self.app.application, user):
  1184. output = self.app.get("/settings/")
  1185. self.assertEqual(output.status_code, 200)
  1186. output_text = output.get_data(as_text=True)
  1187. self.assertIn(
  1188. "<title>pingou's settings - Pagure</title>", output_text
  1189. )
  1190. csrf_token = self.get_csrf(output=output)
  1191. data = {"email": "foo@pingou.com"}
  1192. output = self.app.post(
  1193. "/settings/email/resend", data=data, follow_redirects=True
  1194. )
  1195. self.assertEqual(output.status_code, 200)
  1196. output_text = output.get_data(as_text=True)
  1197. self.assertIn(
  1198. "<title>pingou's settings - Pagure</title>", output_text
  1199. )
  1200. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  1201. # Set invalid default email
  1202. data = {"csrf_token": csrf_token, "email": "foobar@pingou.com"}
  1203. output = self.app.post(
  1204. "/settings/email/resend", data=data, follow_redirects=True
  1205. )
  1206. self.assertEqual(output.status_code, 200)
  1207. output_text = output.get_data(as_text=True)
  1208. self.assertIn(
  1209. "<title>pingou's settings - Pagure</title>", output_text
  1210. )
  1211. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  1212. self.assertIn(
  1213. "This email address has " "already been confirmed", output_text
  1214. )
  1215. # Validate a non-validated email
  1216. data = {"csrf_token": csrf_token, "email": "foo@fp.o"}
  1217. output = self.app.post(
  1218. "/settings/email/resend", data=data, follow_redirects=True
  1219. )
  1220. self.assertEqual(output.status_code, 200)
  1221. output_text = output.get_data(as_text=True)
  1222. self.assertIn(
  1223. "<title>pingou's settings - Pagure</title>", output_text
  1224. )
  1225. self.assertEqual(output_text.count("foo@pingou.com"), 4)
  1226. self.assertIn("Confirmation email re-sent", output_text)
  1227. ast.return_value = True
  1228. output = self.app.post("/settings/email/resend", data=data)
  1229. self.assertEqual(output.status_code, 302)
  1230. @patch("pagure.ui.app.admin_session_timedout")
  1231. def test_confirm_email(self, ast):
  1232. """ Test the confirm_email endpoint. """
  1233. output = self.app.get("/settings/email/confirm/foobar")
  1234. self.assertEqual(output.status_code, 302)
  1235. ast.return_value = False
  1236. # Add a pending email to pingou
  1237. userobj = pagure.lib.query.search_user(self.session, username="pingou")
  1238. self.assertEqual(len(userobj.emails), 2)
  1239. email_pend = pagure.lib.model.UserEmailPending(
  1240. user_id=userobj.id, email="foo@fp.o", token="abcdef"
  1241. )
  1242. self.session.add(email_pend)
  1243. self.session.commit()
  1244. user = tests.FakeUser()
  1245. user.username = "pingou"
  1246. with tests.user_set(self.app.application, user):
  1247. # Wrong token
  1248. output = self.app.get(
  1249. "/settings/email/confirm/foobar", follow_redirects=True
  1250. )
  1251. self.assertEqual(output.status_code, 200)
  1252. output_text = output.get_data(as_text=True)
  1253. self.assertIn(
  1254. "<title>pingou's settings - Pagure</title>", output_text
  1255. )
  1256. self.assertIn("No email associated with this token.", output_text)
  1257. # Confirm email
  1258. output = self.app.get(
  1259. "/settings/email/confirm/abcdef", follow_redirects=True
  1260. )
  1261. self.assertEqual(output.status_code, 200)
  1262. output_text = output.get_data(as_text=True)
  1263. self.assertIn(
  1264. "<title>pingou's settings - Pagure</title>", output_text
  1265. )
  1266. self.assertIn("Email validated", output_text)
  1267. userobj = pagure.lib.query.search_user(self.session, username="pingou")
  1268. self.assertEqual(len(userobj.emails), 3)
  1269. ast.return_value = True
  1270. output = self.app.get("/settings/email/confirm/foobar")
  1271. self.assertEqual(output.status_code, 302)
  1272. def test_view_my_requests_no_user(self):
  1273. """Test the view_user_requests endpoint."""
  1274. output = self.app.get("/user/somenonexistentuser/requests")
  1275. self.assertEqual(output.status_code, 404)
  1276. @patch("pagure.lib.git.update_git", MagicMock(return_value=True))
  1277. @patch("pagure.lib.notify.send_email", MagicMock(return_value=True))
  1278. def test_view_my_requests(self):
  1279. """Test the view_user_requests endpoint. """
  1280. # Create the PR
  1281. tests.create_projects(self.session)
  1282. repo = pagure.lib.query._get_project(self.session, "test")
  1283. req = pagure.lib.query.new_pull_request(
  1284. session=self.session,
  1285. repo_from=repo,
  1286. branch_from="dev",
  1287. repo_to=repo,
  1288. branch_to="master",
  1289. title="test pull-request #1",
  1290. user="pingou",
  1291. )
  1292. self.session.commit()
  1293. self.assertEqual(req.id, 1)
  1294. self.assertEqual(req.title, "test pull-request #1")
  1295. output = self.app.get("/user/pingou/requests")
  1296. self.assertEqual(output.status_code, 200)
  1297. output_text = output.get_data(as_text=True)
  1298. self.assertIn("test pull-request #1", output_text)
  1299. self.assertEqual(output_text.count('pr-status pr-status-open"'), 1)
  1300. # Add a PR in a fork
  1301. item = pagure.lib.model.Project(
  1302. user_id=1, # pingou
  1303. name="test_fork",
  1304. description="test project #1",
  1305. is_fork=True,
  1306. parent_id=1,
  1307. hook_token="aaabbbttt",
  1308. )
  1309. self.session.add(item)
  1310. repo = pagure.lib.query._get_project(
  1311. self.session, "test_fork", user="pingou"
  1312. )
  1313. req = pagure.lib.query.new_pull_request(
  1314. session=self.session,
  1315. repo_from=repo,
  1316. branch_from="dev",
  1317. repo_to=repo,
  1318. branch_to="master",
  1319. title="tést pull-request #2",
  1320. user="pingou",
  1321. )
  1322. self.session.commit()
  1323. self.assertEqual(req.id, 1)
  1324. self.assertEqual(req.title, "tést pull-request #2")
  1325. output = self.app.get("/user/pingou/requests")
  1326. self.assertEqual(output.status_code, 200)
  1327. output_text = output.get_data(as_text=True)
  1328. self.assertIn("test pull-request #1", output_text)
  1329. self.assertIn("tést pull-request #2", output_text)
  1330. self.assertEqual(output_text.count('pr-status pr-status-open"'), 2)
  1331. @patch("pagure.lib.git.update_git", MagicMock(return_value=True))
  1332. @patch("pagure.lib.notify.send_email", MagicMock(return_value=True))
  1333. def test_view_my_requests_pr_in_another_project(self):
  1334. """Test the view_user_requests endpoint when the user opened a PR
  1335. in another project. """
  1336. # Pingou creates the PR on test
  1337. tests.create_projects(self.session)
  1338. repo = pagure.lib.query._get_project(self.session, "test")
  1339. req = pagure.lib.query.new_pull_request(
  1340. session=self.session,
  1341. repo_from=repo,
  1342. branch_from="dev",
  1343. repo_to=repo,
  1344. branch_to="master",
  1345. title="test pull-request #1",
  1346. user="pingou",
  1347. )
  1348. self.session.commit()
  1349. self.assertEqual(req.id, 1)
  1350. self.assertEqual(req.title, "test pull-request #1")
  1351. # foo creates the PR on test
  1352. repo = pagure.lib.query._get_project(self.session, "test")
  1353. req = pagure.lib.query.new_pull_request(
  1354. session=self.session,
  1355. repo_from=repo,
  1356. branch_from="dev",
  1357. repo_to=repo,
  1358. branch_to="master",
  1359. title="test pull-request #2",
  1360. user="foo",
  1361. )
  1362. self.session.commit()
  1363. self.assertEqual(req.id, 2)
  1364. self.assertEqual(req.title, "test pull-request #2")
  1365. # Check pingou's PR list
  1366. output = self.app.get("/user/pingou/requests?type=filed")
  1367. self.assertEqual(output.status_code, 200)
  1368. output_text = output.get_data(as_text=True)
  1369. self.assertIn("test pull-request #1", output_text)
  1370. self.assertNotIn("test pull-request #2", output_text)
  1371. self.assertEqual(output_text.count('pr-status pr-status-open"'), 1)
  1372. output = self.app.get("/user/pingou/requests?type=actionable")
  1373. self.assertEqual(output.status_code, 200)
  1374. output_text = output.get_data(as_text=True)
  1375. self.assertNotIn("test pull-request #1", output_text)
  1376. self.assertIn("test pull-request #2", output_text)
  1377. self.assertEqual(output_text.count('pr-status pr-status-open"'), 1)
  1378. # Check foo's PR list
  1379. output = self.app.get("/user/foo/requests")
  1380. self.assertEqual(output.status_code, 200)
  1381. output_text = output.get_data(as_text=True)
  1382. self.assertNotIn("test pull-request #1", output_text)
  1383. self.assertIn("test pull-request #2", output_text)
  1384. self.assertEqual(output_text.count('pr-status pr-status-open"'), 1)
  1385. @patch("pagure.lib.git.update_git", MagicMock(return_value=True))
  1386. @patch("pagure.lib.notify.send_email", MagicMock(return_value=True))
  1387. def test_view_my_requests_against_another_project(self):
  1388. """Test the view_user_requests endpoint when there is a PR opened
  1389. by me against a project I do not have rights on. """
  1390. # Create the PR
  1391. tests.create_projects(self.session)
  1392. repo = pagure.lib.query._get_project(self.session, "test")
  1393. req = pagure.lib.query.new_pull_request(
  1394. session=self.session,
  1395. repo_from=repo,
  1396. branch_from="dev",
  1397. repo_to=repo,
  1398. branch_to="master",
  1399. title="test pull-request #1",
  1400. user="foo",
  1401. )
  1402. self.session.commit()
  1403. self.assertEqual(req.id, 1)
  1404. self.assertEqual(req.title, "test pull-request #1")
  1405. output = self.app.get("/user/foo/requests")
  1406. self.assertEqual(output.status_code, 200)
  1407. output_text = output.get_data(as_text=True)
  1408. self.assertIn("test pull-request #1", output_text)
  1409. self.assertEqual(output_text.count('pr-status pr-status-open"'), 1)
  1410. def test_view_my_issues_no_user(self):
  1411. """Test the view_user_issues endpoint with a missing user."""
  1412. output = self.app.get("/user/somenonexistentuser/issues")
  1413. self.assertEqual(output.status_code, 404)
  1414. @patch("pagure.lib.git.update_git", MagicMock(return_value=True))
  1415. @patch("pagure.lib.notify.send_email", MagicMock(return_value=True))
  1416. def test_view_my_issues(self):
  1417. """Test the view_user_issues endpoint when the user exists."""
  1418. # Create the issue
  1419. tests.create_projects(self.session)
  1420. repo = pagure.lib.query._get_project(self.session, "test")
  1421. msg = pagure.lib.query.new_issue(
  1422. session=self.session,
  1423. repo=repo,
  1424. title="Test issue #1",
  1425. content="We should work on this for the second time",
  1426. user="pingou",
  1427. status="Open",
  1428. )
  1429. self.session.commit()
  1430. self.assertEqual(msg.title, "Test issue #1")
  1431. output = self.app.get("/user/pingou/issues")
  1432. self.assertEqual(output.status_code, 200)
  1433. output_text = output.get_data(as_text=True)
  1434. self.assertIn("Test issue #1", output_text)
  1435. self.assertEqual(
  1436. output_text.count("issue-status issue-status-open"), 1
  1437. )
  1438. # Add an issue in a fork
  1439. item = pagure.lib.model.Project(
  1440. user_id=2, # foo
  1441. name="test_fork",
  1442. description="test project #1",
  1443. is_fork=True,
  1444. parent_id=1,
  1445. hook_token="aaabbbttt",
  1446. )
  1447. self.session.add(item)
  1448. repo = pagure.lib.query._get_project(
  1449. self.session, "test_fork", user="foo"
  1450. )
  1451. msg = pagure.lib.query.new_issue(
  1452. session=self.session,
  1453. repo=repo,
  1454. title="Test issue #2",
  1455. content="We should work on this for the second time",
  1456. user="pingou",
  1457. status="Open",
  1458. )
  1459. self.session.commit()
  1460. self.assertEqual(msg.title, "Test issue #2")
  1461. # Test the assigned issue table. Create issue then set the assignee
  1462. msg = pagure.lib.query.new_issue(
  1463. session=self.session,
  1464. repo=repo,
  1465. title="Test issue #3",
  1466. content="This issue created by foo, but assigned to pingou",
  1467. user="foo",
  1468. status="Open",
  1469. )
  1470. self.session.commit()
  1471. self.assertEqual(msg.title, "Test issue #3")
  1472. msg = pagure.lib.query.add_issue_assignee(
  1473. session=self.session, issue=msg, assignee="pingou", user="foo"
  1474. )
  1475. self.session.commit()
  1476. self.assertEqual(msg, "Issue assigned to pingou")
  1477. output = self.app.get("/user/pingou/issues")
  1478. self.assertEqual(output.status_code, 200)
  1479. output_text = output.get_data(as_text=True)
  1480. self.assertIn("Test issue #1", output_text)
  1481. self.assertIn("Test issue #2", output_text)
  1482. self.assertIn("Test issue #3", output_text)
  1483. self.assertEqual(
  1484. output_text.count("issue-status issue-status-open"), 3
  1485. )
  1486. @patch("pagure.lib.git.update_git", MagicMock(return_value=True))
  1487. @patch("pagure.lib.notify.send_email", MagicMock(return_value=True))
  1488. def test_view_my_issues_disabled(self):
  1489. """Test the view_user_issues endpoint when the project disabled issue
  1490. tracking."""
  1491. # Create the issue
  1492. tests.create_projects(self.session)
  1493. repo = pagure.lib.query._get_project(self.session, "test")
  1494. msg = pagure.lib.query.new_issue(
  1495. session=self.session,
  1496. repo=repo,
  1497. title="Test issue #1",
  1498. content="We should work on this for the second time",
  1499. user="pingou",
  1500. status="Open",
  1501. )
  1502. self.session.commit()
  1503. self.assertEqual(msg.title, "Test issue #1")
  1504. # Before
  1505. output = self.app.get("/user/pingou/issues")
  1506. self.assertEqual(output.status_code, 200)
  1507. output_text = output.get_data(as_text=True)
  1508. self.assertIn("Test issue #1", output_text)
  1509. self.assertEqual(
  1510. output_text.count("issue-status issue-status-open"), 1
  1511. )
  1512. # Disable issue tracking
  1513. repo = pagure.lib.query._get_project(self.session, "test")
  1514. settings = repo.settings
  1515. settings["issue_tracker"] = False
  1516. repo.settings = settings
  1517. self.session.add(repo)
  1518. self.session.commit()
  1519. # After
  1520. output = self.app.get("/user/pingou/issues")
  1521. self.assertEqual(output.status_code, 200)
  1522. output_text = output.get_data(as_text=True)
  1523. self.assertNotIn("Test issue #1", output_text)
  1524. self.assertEqual(
  1525. output_text.count("issue-status issue-status-open"), 0
  1526. )
  1527. def test_view_my_issues_tickets_turned_off(self):
  1528. """Test the view_user_issues endpoint when the user exists and
  1529. and ENABLE_TICKETS is False """
  1530. # Turn off the tickets instance wide
  1531. pagure.config.config["ENABLE_TICKETS"] = False
  1532. output = self.app.get("/user/pingou/issues")
  1533. self.assertEqual(output.status_code, 404)
  1534. pagure.config.config["ENABLE_TICKETS"] = True
  1535. @patch("pagure.ui.app.admin_session_timedout")
  1536. def test_add_user_token(self, ast):
  1537. """ Test the add_user_token endpoint. """
  1538. ast.return_value = False
  1539. user = tests.FakeUser()
  1540. with tests.user_set(self.app.application, user):
  1541. output = self.app.get("/settings/token/new/")
  1542. self.assertEqual(output.status_code, 404)
  1543. self.assertIn(
  1544. "<h2>Page not found (404)</h2>", output.get_data(as_text=True)
  1545. )
  1546. user.username = "foo"
  1547. with tests.user_set(self.app.application, user):
  1548. output = self.app.get("/settings/token/new")
  1549. self.assertEqual(output.status_code, 200)
  1550. output_text = output.get_data(as_text=True)
  1551. self.assertIn(
  1552. '<div class="card-header">\n <strong>'
  1553. "Create a new token</strong>\n",
  1554. output_text,
  1555. )
  1556. self.assertIn(
  1557. '<input type="checkbox" name="acls" value="create_project">',
  1558. output_text,
  1559. )
  1560. csrf_token = output_text.split(
  1561. 'name="csrf_token" type="hidden" value="'
  1562. )[1].split('">')[0]
  1563. data = {"acls": ["create_project", "fork_project"]}
  1564. # missing CSRF
  1565. output = self.app.post("/settings/token/new", data=data)
  1566. self.assertEqual(output.status_code, 200)
  1567. output_text = output.get_data(as_text=True)
  1568. self.assertIn("<title>Create token - Pagure</title>", output_text)
  1569. self.assertIn(
  1570. '<div class="card-header">\n <strong>'
  1571. "Create a new token</strong>\n",
  1572. output_text,
  1573. )
  1574. self.assertIn(
  1575. '<input type="checkbox" name="acls" value="create_project">',
  1576. output_text,
  1577. )
  1578. data = {"acls": ["new_project"], "csrf_token": csrf_token}
  1579. # Invalid ACLs
  1580. output = self.app.post("/settings/token/new", data=data)
  1581. self.assertEqual(output.status_code, 200)
  1582. output_text = output.get_data(as_text=True)
  1583. self.assertIn("<title>Create token - Pagure</title>", output_text)
  1584. self.assertIn(
  1585. '<div class="card-header">\n <strong>'
  1586. "Create a new token</strong>\n",
  1587. output_text,
  1588. )
  1589. self.assertIn(
  1590. '<input type="checkbox" name="acls" value="create_project">',
  1591. output_text,
  1592. )
  1593. data = {
  1594. "acls": ["create_project", "fork_project"],
  1595. "csrf_token": csrf_token,
  1596. }
  1597. # All good
  1598. output = self.app.post(
  1599. "/settings/token/new", data=data, follow_redirects=True
  1600. )
  1601. self.assertEqual(output.status_code, 200)
  1602. output_text = output.get_data(as_text=True)
  1603. self.assertIn(
  1604. "<title>foo's settings - Pagure</title>", output_text
  1605. )
  1606. self.assertIn("Token created", output_text)
  1607. self.assertEqual(
  1608. output_text.count(
  1609. '<small class="font-weight-bold">Active until'
  1610. ),
  1611. 1,
  1612. )
  1613. ast.return_value = True
  1614. output = self.app.get("/settings/token/new")
  1615. self.assertEqual(output.status_code, 302)
  1616. @patch("pagure.ui.app.admin_session_timedout")
  1617. def test_revoke_api_user_token(self, ast):
  1618. """ Test the revoke_api_user_token endpoint. """
  1619. ast.return_value = False
  1620. user = tests.FakeUser()
  1621. with tests.user_set(self.app.application, user):
  1622. # Token doesn't exist
  1623. output = self.app.post("/settings/token/revoke/foobar")
  1624. self.assertEqual(output.status_code, 404)
  1625. self.assertTrue(
  1626. "<h2>Page not found (404)</h2>"
  1627. in output.get_data(as_text=True)
  1628. )
  1629. # Create the foobar API token but associated w/ the user 'foo'
  1630. item = pagure.lib.model.Token(
  1631. id="foobar",
  1632. user_id=2, # foo
  1633. expiration=datetime.datetime.utcnow()
  1634. + datetime.timedelta(days=30),
  1635. )
  1636. self.session.add(item)
  1637. self.session.commit()
  1638. # Token not associated w/ this user
  1639. output = self.app.post("/settings/token/revoke/foobar")
  1640. self.assertEqual(output.status_code, 404)
  1641. self.assertTrue(
  1642. "<h2>Page not found (404)</h2>"
  1643. in output.get_data(as_text=True)
  1644. )
  1645. user.username = "foo"
  1646. with tests.user_set(self.app.application, user):
  1647. # Missing CSRF token
  1648. output = self.app.post(
  1649. "/settings/token/revoke/foobar", follow_redirects=True
  1650. )
  1651. self.assertEqual(output.status_code, 200)
  1652. output_text = output.get_data(as_text=True)
  1653. self.assertIn(
  1654. "<title>foo's settings - Pagure</title>", output_text
  1655. )
  1656. self.assertEqual(
  1657. output_text.count(
  1658. '<small class="font-weight-bold">Active until'
  1659. ),
  1660. 1,
  1661. )
  1662. csrf_token = output_text.split(
  1663. 'name="csrf_token" type="hidden" value="'
  1664. )[1].split('">')[0]
  1665. data = {"csrf_token": csrf_token}
  1666. # All good - token is deleted
  1667. output = self.app.post(
  1668. "/settings/token/revoke/foobar",
  1669. data=data,
  1670. follow_redirects=True,
  1671. )
  1672. self.assertEqual(output.status_code, 200)
  1673. output_text = output.get_data(as_text=True)
  1674. self.assertIn(
  1675. "<title>foo's settings - Pagure</title>", output_text
  1676. )
  1677. self.assertEqual(
  1678. output_text.count(
  1679. '<small class="font-weight-bold">Active until'
  1680. ),
  1681. 0,
  1682. )
  1683. user = pagure.lib.query.get_user(self.session, key="foo")
  1684. self.assertEqual(len(user.tokens), 1)
  1685. expiration_dt = user.tokens[0].expiration
  1686. # Token was already deleted - no changes
  1687. output = self.app.post(
  1688. "/settings/token/revoke/foobar",
  1689. data=data,
  1690. follow_redirects=True,
  1691. )
  1692. self.assertEqual(output.status_code, 200)
  1693. output_text = output.get_data(as_text=True)
  1694. self.assertIn(
  1695. "<title>foo's settings - Pagure</title>", output_text
  1696. )
  1697. self.assertEqual(
  1698. output_text.count(
  1699. '<small class="font-weight-bold">Active until'
  1700. ),
  1701. 0,
  1702. )
  1703. # Ensure the expiration date did not change
  1704. user = pagure.lib.query.get_user(self.session, key="foo")
  1705. self.assertEqual(len(user.tokens), 1)
  1706. self.assertEqual(expiration_dt, user.tokens[0].expiration)
  1707. ast.return_value = True
  1708. output = self.app.get("/settings/token/new")
  1709. self.assertEqual(output.status_code, 302)
  1710. @patch.dict("pagure.config.config", {"PAGURE_AUTH": "fas"})
  1711. @patch.dict("pagure.utils.pagure_config", {"PAGURE_AUTH": "fas"})
  1712. def test_create_project_auth_FAS_no_FPCA(self):
  1713. """ Test creating a project when auth is FAS and the user did not
  1714. sign the FPCA. """
  1715. user = tests.FakeUser(username="foo", cla_done=False)
  1716. with tests.user_set(self.app.application, user):
  1717. output = self.app.get("/new/", follow_redirects=True)
  1718. self.assertEqual(output.status_code, 200)
  1719. output_text = output.get_data(as_text=True)
  1720. self.assertIn("<title>Home - Pagure</title>", output_text)
  1721. self.assertIn(
  1722. '</i> You must <a href="https://admin.fedoraproject.org/accounts/'
  1723. '">sign the FPCA</a> (Fedora Project Contributor Agreement) '
  1724. "to use pagure</div>",
  1725. output_text,
  1726. )
  1727. class PagureFlaskAppAboutPagetests(tests.Modeltests):
  1728. """ Unit-tests for the about page. """
  1729. def test_about_page(self):
  1730. """ Test the about page when an admin_email is set. """
  1731. output = self.app.get("/about/")
  1732. self.assertEqual(output.status_code, 200)
  1733. output_text = output.get_data(as_text=True)
  1734. self.assertIn("<title>About - Pagure</title>", output_text)
  1735. self.assertIn(
  1736. "by emailing:\n "
  1737. '<a href="mailto:root@localhost.localdomain">',
  1738. output_text,
  1739. )
  1740. self.assertIn(
  1741. 'href="https://pagure.io/pagure/issues">open a ticket</a>',
  1742. output_text,
  1743. )
  1744. @patch.dict("pagure.config.config", {"ADMIN_EMAIL": "admin@fp.o"})
  1745. def test_about_page_admin_email(self):
  1746. """ Test the about page when an admin_email is set. """
  1747. output = self.app.get("/about/")
  1748. self.assertEqual(output.status_code, 200)
  1749. output_text = output.get_data(as_text=True)
  1750. self.assertIn("<title>About - Pagure</title>", output_text)
  1751. self.assertIn(
  1752. 'by emailing:\n <a href="mailto:admin@fp.o">', output_text
  1753. )
  1754. self.assertIn(
  1755. 'href="https://pagure.io/pagure/issues">open a ticket</a>',
  1756. output_text,
  1757. )
  1758. class PagureFlaskAppNoDocstests(tests.Modeltests):
  1759. """ Tests for flask app controller of pagure """
  1760. config_values = {"enable_docs": False, "docs_folder": None}
  1761. def test_new_project_no_docs_folder(self):
  1762. """ Test the new_project endpoint with DOCS_FOLDER is None. """
  1763. # Before
  1764. projects = pagure.lib.query.search_projects(self.session)
  1765. self.assertEqual(len(projects), 0)
  1766. self.assertFalse(
  1767. os.path.exists(os.path.join(self.path, "repos", "project#1.git"))
  1768. )
  1769. self.assertFalse(
  1770. os.path.exists(
  1771. os.path.join(self.path, "repos", "tickets", "project#1.git")
  1772. )
  1773. )
  1774. self.assertFalse(
  1775. os.path.exists(
  1776. os.path.join(self.path, "repos", "docs", "project#1.git")
  1777. )
  1778. )
  1779. self.assertFalse(
  1780. os.path.exists(
  1781. os.path.join(self.path, "repos", "requests", "project#1.git")
  1782. )
  1783. )
  1784. user = tests.FakeUser(username="foo")
  1785. with tests.user_set(self.app.application, user):
  1786. csrf_token = self.get_csrf()
  1787. data = {
  1788. "description": "Project #1",
  1789. "name": "project-1",
  1790. "csrf_token": csrf_token,
  1791. }
  1792. output = self.app.post("/new/", data=data, follow_redirects=True)
  1793. self.assertEqual(output.status_code, 200)
  1794. output_text = output.get_data(as_text=True)
  1795. self.assertIn(
  1796. '<div class="projectinfo my-3">\nProject #1', output_text
  1797. )
  1798. self.assertIn("<p>This repo is brand new!</p>", output_text)
  1799. self.assertIn(
  1800. "<title>Overview - project-1 - Pagure</title>", output_text
  1801. )
  1802. # After
  1803. projects = pagure.lib.query.search_projects(self.session)
  1804. self.assertEqual(len(projects), 1)
  1805. self.assertTrue(
  1806. os.path.exists(os.path.join(self.path, "repos", "project-1.git"))
  1807. )
  1808. self.assertTrue(
  1809. os.path.exists(
  1810. os.path.join(self.path, "repos", "tickets", "project-1.git")
  1811. )
  1812. )
  1813. self.assertFalse(
  1814. os.path.exists(
  1815. os.path.join(self.path, "repos", "docs", "project-1.git")
  1816. )
  1817. )
  1818. self.assertTrue(
  1819. os.path.exists(
  1820. os.path.join(self.path, "repos", "requests", "project-1.git")
  1821. )
  1822. )
  1823. class PagureFlaskAppNoTicketstests(tests.Modeltests):
  1824. """ Tests for flask app controller of pagure """
  1825. config_values = {"enable_tickets": False, "tickets_folder": None}
  1826. def test_new_project_no_tickets_folder(self):
  1827. """ Test the new_project endpoint with TICKETS_FOLDER is None. """
  1828. # Before
  1829. projects = pagure.lib.query.search_projects(self.session)
  1830. self.assertEqual(len(projects), 0)
  1831. self.assertFalse(
  1832. os.path.exists(os.path.join(self.path, "repos", "project#1.git"))
  1833. )
  1834. self.assertFalse(
  1835. os.path.exists(
  1836. os.path.join(self.path, "repos", "tickets", "project#1.git")
  1837. )
  1838. )
  1839. self.assertFalse(
  1840. os.path.exists(
  1841. os.path.join(self.path, "repos", "docs", "project#1.git")
  1842. )
  1843. )
  1844. self.assertFalse(
  1845. os.path.exists(
  1846. os.path.join(self.path, "repos", "requests", "project#1.git")
  1847. )
  1848. )
  1849. user = tests.FakeUser(username="foo")
  1850. with tests.user_set(self.app.application, user):
  1851. csrf_token = self.get_csrf()
  1852. data = {
  1853. "description": "Project #1",
  1854. "name": "project-1",
  1855. "csrf_token": csrf_token,
  1856. }
  1857. output = self.app.post("/new/", data=data, follow_redirects=True)
  1858. self.assertEqual(output.status_code, 200)
  1859. output_text = output.get_data(as_text=True)
  1860. self.assertIn(
  1861. '<div class="projectinfo my-3">\nProject #1', output_text
  1862. )
  1863. self.assertIn("<p>This repo is brand new!</p>", output_text)
  1864. self.assertIn(
  1865. "<title>Overview - project-1 - Pagure</title>", output_text
  1866. )
  1867. # After
  1868. projects = pagure.lib.query.search_projects(self.session)
  1869. self.assertEqual(len(projects), 1)
  1870. self.assertTrue(
  1871. os.path.exists(os.path.join(self.path, "repos", "project-1.git"))
  1872. )
  1873. self.assertFalse(
  1874. os.path.exists(
  1875. os.path.join(self.path, "repos", "tickets", "project-1.git")
  1876. )
  1877. )
  1878. self.assertTrue(
  1879. os.path.exists(
  1880. os.path.join(self.path, "repos", "docs", "project-1.git")
  1881. )
  1882. )
  1883. self.assertTrue(
  1884. os.path.exists(
  1885. os.path.join(self.path, "repos", "requests", "project-1.git")
  1886. )
  1887. )
  1888. class PagureFlaskAppRenewUserApiTokentests(tests.Modeltests):
  1889. @patch("pagure.decorators.admin_session_timedout")
  1890. def setUp(self, ast):
  1891. """ Constructor """
  1892. super(PagureFlaskAppRenewUserApiTokentests, self).setUp()
  1893. self.ast = ast
  1894. self.ast.return_value = False
  1895. user = tests.FakeUser(username="pingou")
  1896. with tests.user_set(self.app.application, user):
  1897. output = self.app.get("/settings/token/new")
  1898. self.assertEqual(output.status_code, 200)
  1899. output_text = output.get_data(as_text=True)
  1900. self.assertIn("<strong>Create a new token</strong>", output_text)
  1901. self.csrf_token = self.get_csrf(output=output)
  1902. # Create a token to renew
  1903. data = {"csrf_token": self.csrf_token, "acls": ["modify_project"]}
  1904. output = self.app.post(
  1905. "/settings/token/new/", data=data, follow_redirects=True
  1906. )
  1907. self.assertEqual(output.status_code, 200)
  1908. output_text = output.get_data(as_text=True)
  1909. self.assertIn("Token created", output_text)
  1910. # 1 token associated with the user, expires in 60 days
  1911. userobj = pagure.lib.query.search_user(self.session, username="pingou")
  1912. self.assertEqual(len(userobj.tokens), 1)
  1913. self.assertEqual(
  1914. userobj.tokens[0].expiration.date(),
  1915. datetime.datetime.utcnow().date()
  1916. + datetime.timedelta(days=(30 * 6)),
  1917. )
  1918. self.token = userobj.tokens[0].id
  1919. def test_renew_api_token_not_in(self):
  1920. """ Test the renew_api_token endpoint. """
  1921. # User not logged in
  1922. output = self.app.post("/settings/token/renew/123")
  1923. self.assertEqual(output.status_code, 302)
  1924. @patch("pagure.ui.app.admin_session_timedout")
  1925. def test_renew_api_token_session_old(self, ast):
  1926. """ Test the renew_api_token endpoint. """
  1927. ast.return_value = True
  1928. user = tests.FakeUser(username="pingou")
  1929. with tests.user_set(self.app.application, user):
  1930. data = {"csrf_token": self.csrf_token}
  1931. # Test when the session timed-out
  1932. output = self.app.post("/settings/token/renew/123", data=data)
  1933. self.assertEqual(output.status_code, 302)
  1934. output = self.app.get("/", follow_redirects=True)
  1935. self.assertEqual(output.status_code, 200)
  1936. output_text = output.get_data(as_text=True)
  1937. self.assertIn("Action canceled, try it again", output_text)
  1938. def test_renew_api_token_invalid_token(self):
  1939. """ Test the renew_api_token endpoint. """
  1940. user = tests.FakeUser(username="pingou")
  1941. with tests.user_set(self.app.application, user):
  1942. output = self.app.post(
  1943. "/settings/token/renew/123",
  1944. data={"csrf_token": self.csrf_token},
  1945. )
  1946. self.assertEqual(output.status_code, 404)
  1947. output_text = output.get_data(as_text=True)
  1948. self.assertIn("<p>Token not found</p>", output_text)
  1949. def test_renew_api_token(self):
  1950. """ Test the renew_api_token endpoint. """
  1951. user = tests.FakeUser(username="pingou")
  1952. with tests.user_set(self.app.application, user):
  1953. output = self.app.post(
  1954. "/settings/token/renew/%s" % self.token,
  1955. data={"csrf_token": self.csrf_token},
  1956. follow_redirects=True,
  1957. )
  1958. output_text = output.get_data(as_text=True)
  1959. self.assertIn(
  1960. "<title>pingou's settings - Pagure</title>", output_text
  1961. )
  1962. self.assertIn("Token created", output_text)
  1963. self.assertEqual(output_text.count('title="Revoke token">'), 2)
  1964. self.assertEqual(output_text.count('title="Renew token">'), 2)
  1965. self.session.commit()
  1966. # Existing token has been renewed
  1967. userobj = pagure.lib.query.search_user(
  1968. self.session, username="pingou"
  1969. )
  1970. self.assertEqual(len(userobj.tokens), 2)
  1971. self.assertEqual(
  1972. userobj.tokens[0].expiration.date(),
  1973. userobj.tokens[1].expiration.date(),
  1974. )
  1975. self.assertEqual(
  1976. userobj.tokens[0].created.date(),
  1977. userobj.tokens[1].created.date(),
  1978. )
  1979. self.assertEqual(userobj.tokens[0].acls, userobj.tokens[1].acls)
  1980. self.assertEqual(
  1981. userobj.tokens[0].description, userobj.tokens[1].description
  1982. )
  1983. class PagureFlaskAppNewProjecttests(tests.Modeltests):
  1984. """ Tests creating new project via the flask app controller of pagure """
  1985. def setUp(self):
  1986. """ Setup the environment. """
  1987. super(PagureFlaskAppNewProjecttests, self).setUp()
  1988. # Before
  1989. projects = pagure.lib.query.search_projects(self.session)
  1990. self.assertEqual(len(projects), 0)
  1991. self.assertFalse(
  1992. os.path.exists(os.path.join(self.path, "repos", "project#1.git"))
  1993. )
  1994. self.assertFalse(
  1995. os.path.exists(
  1996. os.path.join(self.path, "repos", "tickets", "project#1.git")
  1997. )
  1998. )
  1999. self.assertFalse(
  2000. os.path.exists(
  2001. os.path.join(self.path, "repos", "docs", "project#1.git")
  2002. )
  2003. )
  2004. self.assertFalse(
  2005. os.path.exists(
  2006. os.path.join(self.path, "repos", "requests", "project#1.git")
  2007. )
  2008. )
  2009. @patch.dict("pagure.config.config", {"CASE_SENSITIVE": True})
  2010. def test_new_project_case_sensitive(self):
  2011. tests.create_projects(self.session)
  2012. tests.create_projects_git(os.path.join(self.path, "repos"), bare=True)
  2013. output = self.app.get("/test")
  2014. self.assertEqual(output.status_code, 200)
  2015. output = self.app.get("/TEST")
  2016. self.assertEqual(output.status_code, 404)
  2017. user = tests.FakeUser()
  2018. user.username = "foo"
  2019. with tests.user_set(self.app.application, user):
  2020. output = self.app.get("/new/")
  2021. self.assertEqual(output.status_code, 200)
  2022. csrf_token = self.get_csrf(output=output)
  2023. data = {
  2024. "description": "TEST",
  2025. "name": "TEST",
  2026. "csrf_token": csrf_token,
  2027. "create_readme": True,
  2028. }
  2029. self.app.post("/new/", data=data, follow_redirects=True)
  2030. self.assertEqual(output.status_code, 200)
  2031. output = self.app.get("/TEST")
  2032. self.assertEqual(output.status_code, 200)
  2033. def test_new_project_readme(self):
  2034. # Before
  2035. projects = pagure.lib.query.search_projects(self.session)
  2036. self.assertEqual(len(projects), 0)
  2037. user = tests.FakeUser(username="foo")
  2038. with tests.user_set(self.app.application, user):
  2039. csrf_token = self.get_csrf()
  2040. data = {
  2041. "description": "testproject",
  2042. "name": "testproject",
  2043. "csrf_token": csrf_token,
  2044. "create_readme": True,
  2045. }
  2046. output = self.app.post("/new/", data=data, follow_redirects=True)
  2047. self.assertEqual(output.status_code, 200)
  2048. output_text = output.get_data(as_text=True)
  2049. self.assertIn(
  2050. "<title>Overview - testproject - Pagure</title>", output_text
  2051. )
  2052. self.assertIn(
  2053. '<a href="/testproject"><strong>testproject</strong></a>',
  2054. output_text,
  2055. )
  2056. self.assertIn(
  2057. '<code class="py-1 px-2 font-weight-bold '
  2058. 'commit_branch">master</code>',
  2059. output_text,
  2060. )
  2061. # After
  2062. projects = pagure.lib.query.search_projects(self.session)
  2063. self.assertEqual(len(projects), 1)
  2064. project = pagure.lib.query._get_project(self.session, "testproject")
  2065. repo = pygit2.Repository(project.repopath("main"))
  2066. self.assertEqual(repo.listall_branches(), ["master"])
  2067. @patch.dict("pagure.config.config", {"ENABLE_UI_NEW_PROJECTS": False})
  2068. def test_new_project_when_turned_off_in_the_ui(self):
  2069. """ Test the new_project endpoint when new project creation is
  2070. not allowed in the UI of this pagure instance. """
  2071. user = tests.FakeUser(username="foo")
  2072. with tests.user_set(self.app.application, user):
  2073. output = self.app.get("/new/")
  2074. self.assertEqual(output.status_code, 404)
  2075. data = {"description": "Project #1", "name": "project-1"}
  2076. output = self.app.post("/new/", data=data, follow_redirects=True)
  2077. self.assertEqual(output.status_code, 404)
  2078. @patch.dict("pagure.config.config", {"ENABLE_UI_NEW_PROJECTS": False})
  2079. def test_new_project_button_when_turned_off_in_the_ui_no_project(self):
  2080. """ Test the index endpoint when new project creation is
  2081. not allowed in the UI of this pagure instance. """
  2082. user = tests.FakeUser(username="foo")
  2083. with tests.user_set(self.app.application, user):
  2084. output = self.app.get("/", follow_redirects=True)
  2085. self.assertEqual(output.status_code, 200)
  2086. output_text = output.get_data(as_text=True)
  2087. self.assertIn(
  2088. '<h4 class="font-weight-bold mb-0">My Projects</h4>',
  2089. output_text,
  2090. )
  2091. # master template
  2092. self.assertNotIn(
  2093. '<span class="oi" data-glyph="plus" title="Create New"',
  2094. output_text,
  2095. )
  2096. # index_auth template
  2097. self.assertNotIn(
  2098. 'title="Create New Project" aria-hidden="true">', output_text
  2099. )
  2100. @patch.dict("pagure.config.config", {"ENABLE_UI_NEW_PROJECTS": False})
  2101. def test_new_project_button_when_turned_off_in_the_ui_w_project(self):
  2102. """ Test the index endpoint when new project creation is
  2103. not allowed in the UI of this pagure instance. """
  2104. tests.create_projects(self.session)
  2105. user = tests.FakeUser(username="pingou")
  2106. with tests.user_set(self.app.application, user):
  2107. output = self.app.get("/", follow_redirects=True)
  2108. self.assertEqual(output.status_code, 200)
  2109. output_text = output.get_data(as_text=True)
  2110. self.assertIn(
  2111. '<h4 class="font-weight-bold mb-0">My Projects</h4>',
  2112. output_text,
  2113. )
  2114. # master template
  2115. self.assertNotIn(
  2116. '<span class="oi" data-glyph="plus" title="Create New"',
  2117. output_text,
  2118. )
  2119. # index_auth template
  2120. self.assertNotIn(
  2121. 'title="Create New Project" aria-hidden="true">', output_text
  2122. )
  2123. def test_new_project_with_dot(self):
  2124. """ Test the new_project endpoint when new project contains a dot.
  2125. """
  2126. # Before
  2127. projects = pagure.lib.query.search_projects(self.session)
  2128. self.assertEqual(len(projects), 0)
  2129. user = tests.FakeUser(username="foo")
  2130. with tests.user_set(self.app.application, user):
  2131. csrf_token = self.get_csrf()
  2132. data = {
  2133. "description": "Project #1.",
  2134. "name": "project.1",
  2135. "csrf_token": csrf_token,
  2136. }
  2137. output = self.app.post("/new/", data=data, follow_redirects=True)
  2138. self.assertEqual(output.status_code, 200)
  2139. output_text = output.get_data(as_text=True)
  2140. self.assertIn(
  2141. "<title>Overview - project.1 - Pagure</title>", output_text
  2142. )
  2143. self.assertIn(
  2144. '<a href="/project.1"><strong>project.1</strong></a>',
  2145. output_text,
  2146. )
  2147. # After
  2148. projects = pagure.lib.query.search_projects(self.session)
  2149. self.assertEqual(len(projects), 1)
  2150. def test_new_project_with_plus(self):
  2151. """ Test the new_project endpoint when new project contains a plus sign.
  2152. """
  2153. # Before
  2154. projects = pagure.lib.query.search_projects(self.session)
  2155. self.assertEqual(len(projects), 0)
  2156. user = tests.FakeUser(username="foo")
  2157. with tests.user_set(self.app.application, user):
  2158. csrf_token = self.get_csrf()
  2159. data = {
  2160. "description": "Project #1.",
  2161. "name": "project+1",
  2162. "csrf_token": csrf_token,
  2163. }
  2164. output = self.app.post("/new/", data=data, follow_redirects=True)
  2165. self.assertEqual(output.status_code, 200)
  2166. output_text = output.get_data(as_text=True)
  2167. self.assertIn(
  2168. "<title>Overview - project+1 - Pagure</title>", output_text
  2169. )
  2170. self.assertTrue(
  2171. '<a href="/project+1"><strong>project+1</strong></a>'
  2172. in output_text
  2173. or '<a href="/project%2B1"><strong>project+1</strong></a>'
  2174. in output_text
  2175. )
  2176. # After
  2177. projects = pagure.lib.query.search_projects(self.session)
  2178. self.assertEqual(len(projects), 1)
  2179. repo = pygit2.Repository(projects[0].repopath("main"))
  2180. self.assertEqual(repo.listall_branches(), [])
  2181. def test_new_project_with_default_branch(self):
  2182. """ Test the new_project endpoint when new project contains a plus sign.
  2183. """
  2184. # Before
  2185. projects = pagure.lib.query.search_projects(self.session)
  2186. self.assertEqual(len(projects), 0)
  2187. user = tests.FakeUser(username="foo")
  2188. with tests.user_set(self.app.application, user):
  2189. csrf_token = self.get_csrf()
  2190. data = {
  2191. "description": "Project #1.",
  2192. "name": "project_main",
  2193. "csrf_token": csrf_token,
  2194. "default_branch": "main",
  2195. "create_readme": True,
  2196. }
  2197. output = self.app.post("/new/", data=data, follow_redirects=True)
  2198. self.assertEqual(output.status_code, 200)
  2199. output_text = output.get_data(as_text=True)
  2200. self.assertIn(
  2201. "<title>Overview - project_main - Pagure</title>", output_text
  2202. )
  2203. self.assertIn(
  2204. '<a href="/project_main"><strong>project_main</strong></a>',
  2205. output_text,
  2206. )
  2207. self.assertIn(
  2208. '<code class="py-1 px-2 font-weight-bold '
  2209. 'commit_branch">main</code>',
  2210. output_text,
  2211. )
  2212. # After
  2213. projects = pagure.lib.query.search_projects(self.session)
  2214. self.assertEqual(len(projects), 1)
  2215. repo = pygit2.Repository(projects[0].repopath("main"))
  2216. self.assertEqual(repo.listall_branches(), ["main"])
  2217. def test_new_project_when_turned_off(self):
  2218. """ Test the new_project endpoint when new project creation is
  2219. not allowed in the pagure instance. """
  2220. # turn the project creation off
  2221. pagure.config.config["ENABLE_NEW_PROJECTS"] = False
  2222. # Before
  2223. projects = pagure.lib.query.search_projects(self.session)
  2224. self.assertEqual(len(projects), 0)
  2225. self.assertFalse(
  2226. os.path.exists(os.path.join(self.path, "repos", "project-1.git"))
  2227. )
  2228. self.assertFalse(
  2229. os.path.exists(
  2230. os.path.join(self.path, "repos", "tickets", "project-1.git")
  2231. )
  2232. )
  2233. self.assertFalse(
  2234. os.path.exists(
  2235. os.path.join(self.path, "repos", "docs", "project-1.git")
  2236. )
  2237. )
  2238. self.assertFalse(
  2239. os.path.exists(
  2240. os.path.join(self.path, "repos", "requests", "project-1.git")
  2241. )
  2242. )
  2243. user = tests.FakeUser()
  2244. with tests.user_set(self.app.application, user):
  2245. output = self.app.get("/new/")
  2246. self.assertEqual(output.status_code, 404)
  2247. # just get the csrf token
  2248. pagure.config.config["ENABLE_NEW_PROJECTS"] = True
  2249. output = self.app.get("/new/")
  2250. pagure.config.config["ENABLE_NEW_PROJECTS"] = False
  2251. csrf_token = (
  2252. output.get_data(as_text=True)
  2253. .split('name="csrf_token" type="hidden" value="')[1]
  2254. .split('">')[0]
  2255. )
  2256. data = {"description": "Project #1", "name": "project-1"}
  2257. user.username = "foo"
  2258. with tests.user_set(self.app.application, user):
  2259. data["csrf_token"] = csrf_token
  2260. output = self.app.post("/new/", data=data, follow_redirects=True)
  2261. self.assertEqual(output.status_code, 404)
  2262. # After
  2263. projects = pagure.lib.query.search_projects(self.session)
  2264. self.assertEqual(len(projects), 0)
  2265. self.assertFalse(
  2266. os.path.exists(os.path.join(self.path, "repos", "project-1.git"))
  2267. )
  2268. self.assertFalse(
  2269. os.path.exists(
  2270. os.path.join(self.path, "repos", "tickets", "project-1.git")
  2271. )
  2272. )
  2273. self.assertFalse(
  2274. os.path.exists(
  2275. os.path.join(self.path, "repos", "docs", "project-1.git")
  2276. )
  2277. )
  2278. self.assertFalse(
  2279. os.path.exists(
  2280. os.path.join(self.path, "repos", "requests", "project-1.git")
  2281. )
  2282. )
  2283. pagure.config.config["ENABLE_NEW_PROJECTS"] = True
  2284. def test_new_project_mirrored_invalid_url(self):
  2285. """ Test the new_project with a mirrored repo but an invalid URL. """
  2286. user = tests.FakeUser(username="foo")
  2287. with tests.user_set(self.app.application, user):
  2288. output = self.app.get("/new/")
  2289. self.assertEqual(output.status_code, 200)
  2290. csrf_token = self.get_csrf(output=output)
  2291. data = {
  2292. "description": "Project #1",
  2293. "name": "project-1",
  2294. "mirrored_from": "abcd",
  2295. "csrf_token": csrf_token,
  2296. }
  2297. output = self.app.post("/new/", data=data, follow_redirects=True)
  2298. self.assertEqual(output.status_code, 200)
  2299. output_text = output.get_data(as_text=True)
  2300. self.assertIn("<title>New project - Pagure</title>", output_text)
  2301. self.assertIn("Invalid input.&nbsp;", output_text)
  2302. def test_new_project_mirrored_invalid_sshurl(self):
  2303. """ Test the new_project with a mirrored repo but an invalid
  2304. SSH-like url.
  2305. """
  2306. user = tests.FakeUser(username="foo")
  2307. with tests.user_set(self.app.application, user):
  2308. output = self.app.get("/new/")
  2309. self.assertEqual(output.status_code, 200)
  2310. csrf_token = self.get_csrf(output=output)
  2311. data = {
  2312. "description": "Project #1",
  2313. "name": "project-1",
  2314. "mirrored_from": "ssh://git@server.org/foo/bar.git",
  2315. "csrf_token": csrf_token,
  2316. }
  2317. output = self.app.post("/new/", data=data, follow_redirects=True)
  2318. self.assertEqual(output.status_code, 200)
  2319. output_text = output.get_data(as_text=True)
  2320. self.assertIn("<title>New project - Pagure</title>", output_text)
  2321. self.assertIn("Invalid input.&nbsp;", output_text)
  2322. def test_new_project_mirrored_valid_url(self):
  2323. """ Test the new_project with a mirrored repo with a valid url. """
  2324. user = tests.FakeUser(username="foo")
  2325. with tests.user_set(self.app.application, user):
  2326. output = self.app.get("/new/")
  2327. self.assertEqual(output.status_code, 200)
  2328. output_text = output.get_data(as_text=True)
  2329. self.assertIn(
  2330. '<strong><label for="mirrored_from">Mirror from URL'
  2331. "</label> </strong>",
  2332. output_text,
  2333. )
  2334. csrf_token = self.get_csrf(output=output)
  2335. data = {
  2336. "description": "Project #1",
  2337. "name": "project-1",
  2338. "mirrored_from": "https://example.com/foo/bar.git",
  2339. "csrf_token": csrf_token,
  2340. }
  2341. output = self.app.post("/new/", data=data, follow_redirects=True)
  2342. self.assertEqual(output.status_code, 200)
  2343. output_text = output.get_data(as_text=True)
  2344. self.assertIn(
  2345. "<title>Overview - project-1 - Pagure</title>", output_text
  2346. )
  2347. self.assertIn(
  2348. "<p>This repo is brand new and meant to be mirrored from "
  2349. "https://example.com/foo/bar.git !</p>",
  2350. output_text,
  2351. )
  2352. @patch.dict("pagure.config.config", {"DISABLE_MIRROR_IN": True})
  2353. def test_new_project_mirrored_mirror_disabled(self):
  2354. """ Test the new_project with a mirrored repo when that feature is
  2355. disabled.
  2356. """
  2357. user = tests.FakeUser(username="foo")
  2358. with tests.user_set(self.app.application, user):
  2359. output = self.app.get("/new/")
  2360. self.assertEqual(output.status_code, 200)
  2361. output_text = output.get_data(as_text=True)
  2362. self.assertNotIn(
  2363. '<strong><label for="mirrored_from">Mirror from URL'
  2364. "</label> </strong>",
  2365. output_text,
  2366. )
  2367. csrf_token = self.get_csrf(output=output)
  2368. data = {
  2369. "description": "Project #1",
  2370. "name": "project-1",
  2371. "mirrored_from": "https://example.com/foo/bar.git",
  2372. "csrf_token": csrf_token,
  2373. }
  2374. output = self.app.post("/new/", data=data, follow_redirects=True)
  2375. self.assertEqual(output.status_code, 200)
  2376. output_text = output.get_data(as_text=True)
  2377. self.assertIn("<title>New project - Pagure</title>", output_text)
  2378. self.assertIn(
  2379. "</i> Mirroring in projects has been disabled in "
  2380. "this instance</div>",
  2381. output_text,
  2382. )
  2383. def test_new_project(self):
  2384. """ Test the new_project endpoint. """
  2385. user = tests.FakeUser()
  2386. with tests.user_set(self.app.application, user):
  2387. output = self.app.get("/new/")
  2388. self.assertEqual(output.status_code, 200)
  2389. output_text = output.get_data(as_text=True)
  2390. self.assertIn("<strong>Create new Project</strong>", output_text)
  2391. csrf_token = output_text.split(
  2392. 'name="csrf_token" type="hidden" value="'
  2393. )[1].split('">')[0]
  2394. data = {"description": "Project #1"}
  2395. output = self.app.post("/new/", data=data)
  2396. self.assertEqual(output.status_code, 200)
  2397. output_text = output.get_data(as_text=True)
  2398. self.assertIn("<strong>Create new Project</strong>", output_text)
  2399. self.assertIn(
  2400. "<small>\n This field is required.&nbsp;\n"
  2401. " </small>",
  2402. output_text,
  2403. )
  2404. data["name"] = "project-1"
  2405. output = self.app.post("/new/", data=data)
  2406. self.assertEqual(output.status_code, 200)
  2407. output_text = output.get_data(as_text=True)
  2408. self.assertIn("<strong>Create new Project</strong>", output_text)
  2409. self.assertNotIn(
  2410. "<small>\n This field is required.&nbsp;\n"
  2411. " </small>",
  2412. output_text,
  2413. )
  2414. data["csrf_token"] = csrf_token
  2415. output = self.app.post("/new/", data=data)
  2416. self.assertEqual(output.status_code, 200)
  2417. output_text = output.get_data(as_text=True)
  2418. self.assertIn("<strong>Create new Project</strong>", output_text)
  2419. self.assertIn("No user " "&#34;username&#34; found", output_text)
  2420. user.username = "foo"
  2421. with tests.user_set(self.app.application, user):
  2422. data["csrf_token"] = csrf_token
  2423. output = self.app.post("/new/", data=data, follow_redirects=True)
  2424. self.assertEqual(output.status_code, 200)
  2425. output_text = output.get_data(as_text=True)
  2426. self.assertIn(
  2427. '<div class="projectinfo my-3">\nProject #1', output_text
  2428. )
  2429. self.assertIn("<p>This repo is brand new!</p>", output_text)
  2430. self.assertIn(
  2431. "<title>Overview - project-1 - Pagure</title>", output_text
  2432. )
  2433. # After
  2434. projects = pagure.lib.query.search_projects(self.session)
  2435. self.assertEqual(len(projects), 1)
  2436. self.assertTrue(
  2437. os.path.exists(os.path.join(self.path, "repos", "project-1.git"))
  2438. )
  2439. self.assertTrue(
  2440. os.path.exists(
  2441. os.path.join(self.path, "repos", "tickets", "project-1.git")
  2442. )
  2443. )
  2444. self.assertTrue(
  2445. os.path.exists(
  2446. os.path.join(self.path, "repos", "docs", "project-1.git")
  2447. )
  2448. )
  2449. self.assertTrue(
  2450. os.path.exists(
  2451. os.path.join(self.path, "repos", "requests", "project-1.git")
  2452. )
  2453. )
  2454. @patch.dict("pagure.config.config", {"USER_NAMESPACE": True})
  2455. def test_new_project_user_namespaced(self):
  2456. """ Test the new_project with a user namespaced enabled.
  2457. """
  2458. user = tests.FakeUser(username="foo")
  2459. with tests.user_set(self.app.application, user):
  2460. output = self.app.get("/new/")
  2461. self.assertEqual(output.status_code, 200)
  2462. output_text = output.get_data(as_text=True)
  2463. csrf_token = self.get_csrf(output=output)
  2464. data = {
  2465. "description": "Project #1",
  2466. "name": "project-1",
  2467. "csrf_token": csrf_token,
  2468. }
  2469. output = self.app.post("/new/", data=data, follow_redirects=True)
  2470. self.assertEqual(output.status_code, 200)
  2471. output_text = output.get_data(as_text=True)
  2472. self.assertIn(
  2473. "<title>Overview - foo/project-1 - Pagure</title>", output_text
  2474. )
  2475. self.assertIn(
  2476. '<div class="projectinfo my-3">\nProject #1', output_text
  2477. )
  2478. self.assertIn("<p>This repo is brand new!</p>", output_text)
  2479. # After
  2480. projects = pagure.lib.query.search_projects(self.session)
  2481. self.assertEqual(len(projects), 1)
  2482. self.assertTrue(
  2483. os.path.exists(
  2484. os.path.join(self.path, "repos", "foo", "project-1.git")
  2485. )
  2486. )
  2487. self.assertTrue(
  2488. os.path.exists(
  2489. os.path.join(
  2490. self.path, "repos", "tickets", "foo", "project-1.git"
  2491. )
  2492. )
  2493. )
  2494. self.assertTrue(
  2495. os.path.exists(
  2496. os.path.join(
  2497. self.path, "repos", "docs", "foo", "project-1.git"
  2498. )
  2499. )
  2500. )
  2501. self.assertTrue(
  2502. os.path.exists(
  2503. os.path.join(
  2504. self.path, "repos", "requests", "foo", "project-1.git"
  2505. )
  2506. )
  2507. )
  2508. @patch.dict("pagure.config.config", {"USER_NAMESPACE": True})
  2509. def test_new_project_user_namespaced_invalid_user(self):
  2510. """ Test the new_project with a user namespaced enabled.
  2511. """
  2512. tests.create_user(self.session, "docs", "evil docs", ["docs@bar.com"])
  2513. user = tests.FakeUser(username="docs")
  2514. with tests.user_set(self.app.application, user):
  2515. output = self.app.get("/new/")
  2516. self.assertEqual(output.status_code, 200)
  2517. output_text = output.get_data(as_text=True)
  2518. csrf_token = self.get_csrf(output=output)
  2519. data = {
  2520. "description": "Project #1",
  2521. "name": "project-1",
  2522. "csrf_token": csrf_token,
  2523. }
  2524. output = self.app.post("/new/", data=data, follow_redirects=True)
  2525. self.assertEqual(output.status_code, 200)
  2526. output_text = output.get_data(as_text=True)
  2527. self.assertIn("<title>New project - Pagure</title>", output_text)
  2528. self.assertIn(
  2529. "</i> No project &#34;docs/project-1&#34; are allowed to be "
  2530. "created due to potential conflicts in URLs with pagure "
  2531. "itself</div>",
  2532. output_text,
  2533. )
  2534. # After
  2535. projects = pagure.lib.query.search_projects(self.session)
  2536. self.assertEqual(len(projects), 0)
  2537. if __name__ == "__main__":
  2538. unittest.main(verbosity=2)