using Microsoft.AspNetCore.Mvc.Testing; using Newtonsoft.Json; using System.Net; using System.Net.Http; using Timeline.Entities.Http; using Timeline.Tests.Helpers; using Timeline.Tests.Helpers.Authentication; using Xunit; using Xunit.Abstractions; namespace Timeline.Tests { public class JwtTokenUnitTest : IClassFixture> { private const string CreateTokenUrl = "token/create"; private const string VerifyTokenUrl = "token/verify"; private readonly WebApplicationFactory _factory; public JwtTokenUnitTest(WebApplicationFactory factory, ITestOutputHelper outputHelper) { _factory = factory.WithTestConfig(outputHelper); } [Fact] public async void CreateTokenTest_BadCredential() { using (var client = _factory.CreateDefaultClient()) { var response = await client.PostAsJsonAsync(CreateTokenUrl, new CreateTokenRequest { Username = "???", Password = "???" }); Assert.Equal(HttpStatusCode.OK, response.StatusCode); var result = JsonConvert.DeserializeObject(await response.Content.ReadAsStringAsync()); Assert.False(result.Success); Assert.Null(result.Token); Assert.Null(result.UserInfo); } } [Fact] public async void CreateTokenTest_GoodCredential() { using (var client = _factory.CreateDefaultClient()) { var response = await client.PostAsJsonAsync(CreateTokenUrl, new CreateTokenRequest { Username = "user", Password = "user" }); Assert.Equal(HttpStatusCode.OK, response.StatusCode); var result = JsonConvert.DeserializeObject(await response.Content.ReadAsStringAsync()); Assert.True(result.Success); Assert.NotNull(result.Token); Assert.NotNull(result.UserInfo); } } [Fact] public async void VerifyTokenTest_BadToken() { using (var client = _factory.CreateDefaultClient()) { var response = await client.PostAsJsonAsync(VerifyTokenUrl, new VerifyTokenRequest { Token = "bad token hahaha" }); Assert.Equal(HttpStatusCode.OK, response.StatusCode); var validationInfo = JsonConvert.DeserializeObject(await response.Content.ReadAsStringAsync()); Assert.False(validationInfo.IsValid); Assert.Null(validationInfo.UserInfo); } } [Fact] public async void VerifyTokenTest_GoodToken() { using (var client = _factory.CreateDefaultClient()) { var createTokenResult = await client.CreateUserTokenAsync("admin", "admin"); var response = await client.PostAsJsonAsync(VerifyTokenUrl, new VerifyTokenRequest { Token = createTokenResult.Token }); Assert.Equal(HttpStatusCode.OK, response.StatusCode); var result = JsonConvert.DeserializeObject(await response.Content.ReadAsStringAsync()); Assert.True(result.IsValid); Assert.NotNull(result.UserInfo); Assert.Equal(createTokenResult.UserInfo.Username, result.UserInfo.Username); Assert.Equal(createTokenResult.UserInfo.Roles, result.UserInfo.Roles); } } } }