|
35 | 35 | namespace tests\units\Glpi\Api\HL\Controller; |
36 | 36 |
|
37 | 37 | use AuthLDAP; |
| 38 | +use Config; |
38 | 39 | use Glpi\Api\HL\Middleware\InternalAuthMiddleware; |
39 | 40 | use Glpi\Http\Request; |
40 | 41 |
|
@@ -156,4 +157,129 @@ public function testCRUDNoRights() |
156 | 157 | }); |
157 | 158 | }); |
158 | 159 | } |
| 160 | + |
| 161 | + public function testCRUDConfigValues() |
| 162 | + { |
| 163 | + $this->loginWeb(); |
| 164 | + |
| 165 | + $this->api->getRouter()->registerAuthMiddleware(new InternalAuthMiddleware()); |
| 166 | + // Can get a config value |
| 167 | + $this->api->call(new Request('GET', '/Setup/Config/core/priority_1'), function ($call) { |
| 168 | + /** @var \HLAPICallAsserter $call */ |
| 169 | + $call->response |
| 170 | + ->isOK() |
| 171 | + ->jsonContent(function ($content) { |
| 172 | + $this->assertEquals('priority_1', $content['name']); |
| 173 | + $this->assertEquals('core', $content['context']); |
| 174 | + $this->assertEquals('#fff2f2', $content['value']); |
| 175 | + }); |
| 176 | + }); |
| 177 | + |
| 178 | + // Get an undisclosable config value |
| 179 | + Config::setConfigurationValues('core', ['smtp_passwd' => 'test']); |
| 180 | + $this->api->call(new Request('GET', '/Setup/Config/core/smtp_passwd'), function ($call) { |
| 181 | + /** @var \HLAPICallAsserter $call */ |
| 182 | + $call->response->isAccessDenied(); |
| 183 | + }); |
| 184 | + |
| 185 | + // Not existing config value |
| 186 | + $this->api->call(new Request('GET', '/Setup/Config/core/notrealconfig'), function ($call) { |
| 187 | + /** @var \HLAPICallAsserter $call */ |
| 188 | + $call->response->isNotFoundError(); |
| 189 | + }); |
| 190 | + |
| 191 | + // Can update a config value |
| 192 | + $request = new Request('PATCH', '/Setup/Config/core/priority_1'); |
| 193 | + $request->setParameter('value', '#ffffff'); |
| 194 | + $this->api->call($request, function ($call) { |
| 195 | + /** @var \HLAPICallAsserter $call */ |
| 196 | + $call->response |
| 197 | + ->isOK() |
| 198 | + ->jsonContent(function ($content) { |
| 199 | + $this->assertEquals('priority_1', $content['name']); |
| 200 | + $this->assertEquals('core', $content['context']); |
| 201 | + $this->assertEquals('#ffffff', $content['value']); |
| 202 | + }); |
| 203 | + }); |
| 204 | + $this->api->call(new Request('GET', '/Setup/Config/core/priority_1'), function ($call) { |
| 205 | + /** @var \HLAPICallAsserter $call */ |
| 206 | + $call->response |
| 207 | + ->isOK() |
| 208 | + ->jsonContent(function ($content) { |
| 209 | + $this->assertEquals('priority_1', $content['name']); |
| 210 | + $this->assertEquals('core', $content['context']); |
| 211 | + $this->assertEquals('#ffffff', $content['value']); |
| 212 | + }); |
| 213 | + }); |
| 214 | + |
| 215 | + // Can update an undisclosable config value |
| 216 | + $request = new Request('PATCH', '/Setup/Config/core/smtp_passwd'); |
| 217 | + $request->setParameter('value', 'newtest'); |
| 218 | + $this->api->call($request, function ($call) { |
| 219 | + /** @var \HLAPICallAsserter $call */ |
| 220 | + $call->response |
| 221 | + ->status(static fn ($status) => $status === 204); |
| 222 | + }); |
| 223 | + |
| 224 | + // Can delete a config value |
| 225 | + $this->api->call(new Request('DELETE', '/Setup/Config/core/priority_1'), function ($call) { |
| 226 | + /** @var \HLAPICallAsserter $call */ |
| 227 | + $call->response |
| 228 | + ->status(static fn ($status) => $status === 204); |
| 229 | + }); |
| 230 | + $this->api->call(new Request('GET', '/Setup/Config/core/priority_1'), function ($call) { |
| 231 | + /** @var \HLAPICallAsserter $call */ |
| 232 | + $call->response->isNotFoundError(); |
| 233 | + }); |
| 234 | + |
| 235 | + // Can delete an undisclosable config value |
| 236 | + $this->api->call(new Request('DELETE', '/Setup/Config/core/smtp_passwd'), function ($call) { |
| 237 | + /** @var \HLAPICallAsserter $call */ |
| 238 | + $call->response |
| 239 | + ->status(static fn ($status) => $status === 204); |
| 240 | + }); |
| 241 | + |
| 242 | + // Cannot get an undisclosable config value using GraphQL |
| 243 | + //FIXME: There are currently no restrictions in GraphQL to avoid fetching undisclosable config values |
| 244 | + $request = new Request('POST', '/GraphQL', [], 'query { Config(filter: "context==core;name==smtp_passwd") { context, name, value } }'); |
| 245 | + $this->api->call($request, function ($call) { |
| 246 | + /** @var \HLAPICallAsserter $call */ |
| 247 | + $call->response |
| 248 | + ->isOK() |
| 249 | + ->jsonContent(function ($content) { |
| 250 | + $this->assertArrayHasKey('data', $content); |
| 251 | + $this->assertArrayHasKey('Config', $content['data']); |
| 252 | + $this->assertEmpty($content['data']['Config']); |
| 253 | + }); |
| 254 | + }); |
| 255 | + } |
| 256 | + |
| 257 | + public function testConfigNotIn2_0() |
| 258 | + { |
| 259 | + $this->login(); |
| 260 | + |
| 261 | + $v2_api = $this->api->withVersion('2.0.0'); |
| 262 | + $v2_api->call(new Request('GET', '/Setup/Config/core/test'), function ($call) { |
| 263 | + /** @var \HLAPICallAsserter $call */ |
| 264 | + $call->response->isNotFoundError(); |
| 265 | + }); |
| 266 | + $v2_api->call(new Request('PATCH', '/Setup/Config/core/test'), function ($call) { |
| 267 | + /** @var \HLAPICallAsserter $call */ |
| 268 | + $call->response->isNotFoundError(); |
| 269 | + }); |
| 270 | + $v2_api->call(new Request('DELETE', '/Setup/Config/core/test'), function ($call) { |
| 271 | + /** @var \HLAPICallAsserter $call */ |
| 272 | + $call->response->isNotFoundError(); |
| 273 | + }); |
| 274 | + |
| 275 | + $request = new Request('POST', '/GraphQL', [], 'query { Config(filter: "context==core;name==test") { context, name, value } }'); |
| 276 | + $v2_api->call($request, function ($call) { |
| 277 | + /** @var \HLAPICallAsserter $call */ |
| 278 | + $call->response |
| 279 | + ->isOK() |
| 280 | + ->jsonContent(function ($content) { |
| 281 | + $this->assertArrayHasKey('errors', $content); |
| 282 | + }); |
| 283 | + }); |
| 284 | + } |
159 | 285 | } |
0 commit comments