test_user_username_api.py 7.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213
  1. import json
  2. from django.contrib.auth import get_user_model
  3. from django.utils.encoding import smart_str
  4. from django.utils.six.moves import range
  5. from misago.acl.testutils import override_acl
  6. from misago.conf import settings
  7. from ..testutils import AuthenticatedUserTestCase
  8. class UserUsernameTests(AuthenticatedUserTestCase):
  9. """
  10. tests for user change name RPC (POST to /api/users/1/username/)
  11. """
  12. def setUp(self):
  13. super(UserUsernameTests, self).setUp()
  14. self.link = '/api/users/%s/username/' % self.user.pk
  15. def test_get_change_username_options(self):
  16. """get to API returns options"""
  17. response = self.client.get(self.link)
  18. self.assertEqual(response.status_code, 200)
  19. response_json = json.loads(smart_str(response.content))
  20. self.assertIsNotNone(response_json['changes_left'])
  21. self.assertEqual(response_json['length_min'],
  22. settings.username_length_min)
  23. self.assertEqual(response_json['length_max'],
  24. settings.username_length_max)
  25. self.assertIsNone(response_json['next_on'])
  26. for i in range(response_json['changes_left']):
  27. self.user.set_username('NewName%s' % i, self.user)
  28. response = self.client.get(self.link)
  29. self.assertEqual(response.status_code, 200)
  30. response_json = json.loads(smart_str(response.content))
  31. self.assertEqual(response_json['changes_left'], 0)
  32. self.assertIsNotNone(response_json['next_on'])
  33. def test_change_username_no_changes_left(self):
  34. """api returns error 400 if there are no username changes left"""
  35. response = self.client.get(self.link)
  36. self.assertEqual(response.status_code, 200)
  37. response_json = json.loads(smart_str(response.content))
  38. for i in range(response_json['changes_left']):
  39. self.user.set_username('NewName%s' % i, self.user)
  40. response = self.client.get(self.link)
  41. response_json = json.loads(smart_str(response.content))
  42. self.assertEqual(response_json['changes_left'], 0)
  43. response = self.client.post(self.link, data={
  44. 'username': 'Pointless'
  45. })
  46. self.assertContains(response, 'change your username now', status_code=400)
  47. self.assertTrue(self.user.username != 'Pointless')
  48. def test_change_username_no_input(self):
  49. """api returns error 400 if new username is empty"""
  50. response = self.client.post(self.link, data={})
  51. self.assertContains(response, 'Enter new username.', status_code=400)
  52. def test_change_username_invalid_name(self):
  53. """api returns error 400 if new username is wrong"""
  54. response = self.client.post(self.link, data={
  55. 'username': '####'
  56. })
  57. self.assertContains(response, 'can only contain latin', status_code=400)
  58. def test_change_username(self):
  59. """api changes username and records change"""
  60. response = self.client.get(self.link)
  61. changes_left = json.loads(smart_str(response.content))['changes_left']
  62. username = self.user.username
  63. new_username = 'NewUsernamu'
  64. response = self.client.post(self.link, data={
  65. 'username': new_username
  66. })
  67. self.assertEqual(response.status_code, 200)
  68. options = json.loads(smart_str(response.content))['options']
  69. self.assertEqual(changes_left, options['changes_left'] + 1)
  70. self.reload_user()
  71. self.assertEqual(self.user.username, new_username)
  72. self.assertEqual(self.user.namechanges.last().new_username,
  73. new_username)
  74. class UserUsernameModerationTests(AuthenticatedUserTestCase):
  75. """
  76. tests for moderate username RPC (/api/users/1/moderate-username/)
  77. """
  78. def setUp(self):
  79. super(UserUsernameModerationTests, self).setUp()
  80. User = get_user_model()
  81. self.other_user = User.objects.create_user(
  82. "OtherUser", "other@user.com", "pass123")
  83. self.link = '/api/users/%s/moderate-username/' % self.other_user.pk
  84. def test_no_permission(self):
  85. """no permission to moderate avatar"""
  86. override_acl(self.user, {
  87. 'can_rename_users': 0,
  88. })
  89. response = self.client.get(self.link)
  90. self.assertContains(response, "can't rename users", status_code=403)
  91. override_acl(self.user, {
  92. 'can_rename_users': 0,
  93. })
  94. response = self.client.post(self.link)
  95. self.assertContains(response, "can't rename users", status_code=403)
  96. def test_moderate_username(self):
  97. """moderate username"""
  98. override_acl(self.user, {
  99. 'can_rename_users': 1,
  100. })
  101. response = self.client.get(self.link)
  102. self.assertEqual(response.status_code, 200)
  103. options = json.loads(smart_str(response.content))
  104. self.assertEqual(options['length_min'],
  105. settings.username_length_min)
  106. self.assertEqual(options['length_max'],
  107. settings.username_length_max)
  108. override_acl(self.user, {
  109. 'can_rename_users': 1,
  110. })
  111. response = self.client.post(self.link, json.dumps({
  112. 'username': '',
  113. }),
  114. content_type="application/json")
  115. self.assertContains(response, "Enter new username", status_code=400)
  116. override_acl(self.user, {
  117. 'can_rename_users': 1,
  118. })
  119. response = self.client.post(self.link, json.dumps({
  120. 'username': '$$$',
  121. }),
  122. content_type="application/json")
  123. self.assertContains(response,
  124. "Username can only contain latin alphabet letters and digits.",
  125. status_code=400)
  126. override_acl(self.user, {
  127. 'can_rename_users': 1,
  128. })
  129. response = self.client.post(self.link, json.dumps({
  130. 'username': 'a',
  131. }),
  132. content_type="application/json")
  133. self.assertEqual(response.status_code, 400)
  134. self.assertContains(response,
  135. "Username must be at least 3 characters long.",
  136. status_code=400)
  137. override_acl(self.user, {
  138. 'can_rename_users': 1,
  139. })
  140. response = self.client.post(self.link, json.dumps({
  141. 'username': 'BobBoberson',
  142. }),
  143. content_type="application/json")
  144. self.assertEqual(response.status_code, 200)
  145. User = get_user_model()
  146. other_user = User.objects.get(pk=self.other_user.pk)
  147. self.assertEqual('BobBoberson', other_user.username)
  148. self.assertEqual('bobboberson', other_user.slug)
  149. options = json.loads(smart_str(response.content))
  150. self.assertEqual(options['username'], other_user.username)
  151. self.assertEqual(options['slug'], other_user.slug)
  152. def test_moderate_own_username(self):
  153. """moderate own username"""
  154. override_acl(self.user, {
  155. 'can_rename_users': 1,
  156. })
  157. response = self.client.get(
  158. '/api/users/%s/moderate-username/' % self.user.pk)
  159. self.assertEqual(response.status_code, 200)