/
CasClientTests.java
218 lines (197 loc) · 9.3 KB
/
CasClientTests.java
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
package org.pac4j.cas.client;
import org.junit.Test;
import org.pac4j.cas.config.CasConfiguration;
import org.pac4j.core.context.MockWebContext;
import org.pac4j.core.context.WebContext;
import org.pac4j.core.credentials.TokenCredentials;
import org.pac4j.core.exception.HttpAction;
import org.pac4j.core.http.callback.CallbackUrlResolver;
import org.pac4j.core.http.url.UrlResolver;
import org.pac4j.core.util.TestsConstants;
import org.pac4j.core.util.TestsHelper;
import java.nio.charset.StandardCharsets;
import java.util.Base64;
import java.util.zip.Deflater;
import static org.junit.Assert.*;
import static org.pac4j.core.context.HttpConstants.*;
/**
* This class tests the {@link CasClient} class.
*
* @author Jerome Leleu
* @since 1.4.0
*/
public final class CasClientTests implements TestsConstants {
private static final String CAS = "/cas";
private static final String CASBACK = "/casback";
private static final String HOST = "protocol://myHost";
private static final String LOGIN = "/login";
private static final String PREFIX_URL = "http://myserver/";
private static final String PREFIX_URL_WITHOUT_SLASH = "http://myserver";
private static final String LOGOUT_MESSAGE = "\"<samlp:LogoutRequest xmlns:samlp=\\\"urn:oasis:names:tc:SAML:2.0:protocol\\\""
+ "ID=\\\"LR-1-B2b0CVRW5eSvPBZPsAVXdNPj7jee4SWjr9y\\\" Version=\\\"2.0\\\" IssueInstant=\\\"2012-12-19T15:30:55Z\\\">"
+ "<saml:NameID xmlns:saml=\\\"urn:oasis:names:tc:SAML:2.0:assertion\\\">@NOT_USED@</saml:NameID><samlp:SessionIndex>\""
+ TICKET + "\"</samlp:SessionIndex></samlp:LogoutRequest>\";";
@Test
public void testMissingCasUrls() {
final CasClient casClient = new CasClient();
casClient.setCallbackUrl(CALLBACK_URL);
TestsHelper.initShouldFail(casClient.getConfiguration(), "loginUrl, prefixUrl and restUrl cannot be all blank");
}
@Test
public void testMissingSlashOnPrefixUrl() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
configuration.setPrefixUrl(PREFIX_URL_WITHOUT_SLASH);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
configuration.init();
assertEquals(PREFIX_URL, configuration.getPrefixUrl());
}
@Test
public void testInitPrefixUrl() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
assertEquals(null, configuration.getPrefixUrl());
configuration.init();
assertEquals(PREFIX_URL, configuration.getPrefixUrl());
}
@Test
public void testInitLoginUrl() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setPrefixUrl(PREFIX_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
assertEquals(null, configuration.getLoginUrl());
configuration.init();
assertEquals(LOGIN_URL, configuration.getLoginUrl());
}
@Test
public void testCallbackUrlResolver() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setPrefixUrl(CAS);
configuration.setLoginUrl(CAS + LOGIN);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CASBACK);
casClient.setUrlResolver((url, context) -> HOST + url);
casClient.setCallbackUrlResolver(new CallbackUrlResolver() {
@Override
public String compute(final UrlResolver urlResolver, final String url, final String clientName, final WebContext context) {
return null;
}
@Override
public boolean matches(final String clientName, final WebContext context) {
return false;
}
});
casClient.init();
assertEquals(HOST + CAS + LOGIN, configuration.computeFinalLoginUrl(null));
assertEquals(HOST + CAS + "/", configuration.computeFinalPrefixUrl(null));
}
@Test
public void testRenewMissing() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
final MockWebContext context = MockWebContext.create();
casClient.redirect(context);
assertFalse(context.getResponseLocation().indexOf("renew=true") >= 0);
}
@Test
public void testRenew() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
configuration.setRenew(true);
final MockWebContext context = MockWebContext.create();
casClient.redirect(context);
assertTrue(context.getResponseLocation().indexOf("renew=true") >= 0);
}
@Test
public void testGatewayMissing() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
final MockWebContext context = MockWebContext.create();
casClient.redirect(context);
assertFalse(context.getResponseLocation().indexOf("gateway=true") >= 0);
}
@Test
public void testGatewayOK() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
final MockWebContext context = MockWebContext.create();
configuration.setGateway(true);
casClient.redirect(context);
assertTrue(context.getResponseLocation().indexOf("gateway=true") >= 0);
final TokenCredentials credentials = casClient.getCredentials(context);
assertNull(credentials);
}
@Test
public void testBackLogout() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
casClient.init();
final MockWebContext context = MockWebContext.create()
.addRequestParameter(CasConfiguration.LOGOUT_REQUEST_PARAMETER, LOGOUT_MESSAGE)
.setRequestMethod(HTTP_METHOD.POST.name());
TestsHelper.expectException(() -> casClient.getCredentials(context), HttpAction.class,
"Performing a 204 HTTP action");
assertEquals(204, context.getResponseStatus());
}
private String deflateAndBase64(final String data) {
final Deflater deflater = new Deflater();
deflater.setInput(data.getBytes(StandardCharsets.UTF_8));
deflater.finish();
final byte[] buffer = new byte[data.length()];
final int resultSize = deflater.deflate(buffer);
final byte[] output = new byte[resultSize];
System.arraycopy(buffer, 0, output, 0, resultSize);
return Base64.getEncoder().encodeToString(output);
}
@Test
public void testFrontLogout() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
casClient.init();
final MockWebContext context = MockWebContext.create()
.addRequestParameter(CasConfiguration.LOGOUT_REQUEST_PARAMETER, deflateAndBase64(LOGOUT_MESSAGE))
.setRequestMethod(HTTP_METHOD.GET.name());
assertNull(casClient.getCredentials(context));
}
@Test
public void testFrontLogoutWithRelayState() {
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(LOGIN_URL);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
casClient.init();
final MockWebContext context = MockWebContext.create()
.addRequestParameter(CasConfiguration.LOGOUT_REQUEST_PARAMETER, deflateAndBase64(LOGOUT_MESSAGE))
.addRequestParameter(CasConfiguration.RELAY_STATE_PARAMETER, VALUE).setRequestMethod(HTTP_METHOD.GET.name());
final HttpAction action = (HttpAction) TestsHelper.expectException(() -> casClient.getCredentials(context));
assertEquals(TEMP_REDIRECT, action.getCode());
}
@Test
public void testInitUrlWithLoginString() {
final String testCasLoginUrl = "https://login.foo.bar/login/login";
final String testCasPrefixUrl = "https://login.foo.bar/login/";
final CasConfiguration configuration = new CasConfiguration();
configuration.setLoginUrl(testCasLoginUrl);
final CasClient casClient = new CasClient(configuration);
casClient.setCallbackUrl(CALLBACK_URL);
assertEquals(null, configuration.getPrefixUrl());
configuration.init();
assertEquals(testCasPrefixUrl, configuration.getPrefixUrl());
}
}