getMockForAbstractClass(AbstractGrant::class); $grantMock->setPathToPrivateKey('./private.key'); $grantMock->setPathToPublicKey('./public.key'); $grantMock->setEmitter(new Emitter()); } public function testValidateClientPublic() { $client = new ClientEntity(); $clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock(); $clientRepositoryMock->method('getClientEntity')->willReturn($client); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setClientRepository($clientRepositoryMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody( [ 'client_id' => 'foo', ] ); $validateClientMethod = $abstractGrantReflection->getMethod('validateClient'); $validateClientMethod->setAccessible(true); $result = $validateClientMethod->invoke($grantMock, $serverRequest, true, true); $this->assertEquals($client, $result); } public function testValidateClientConfidential() { $client = new ClientEntity(); $client->setSecret('bar'); $client->setRedirectUri('http://foo/bar'); $clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock(); $clientRepositoryMock->method('getClientEntity')->willReturn($client); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setClientRepository($clientRepositoryMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody( [ 'client_id' => 'foo', 'client_secret' => 'bar', 'redirect_uri' => 'http://foo/bar', ] ); $validateClientMethod = $abstractGrantReflection->getMethod('validateClient'); $validateClientMethod->setAccessible(true); $result = $validateClientMethod->invoke($grantMock, $serverRequest, true, true); $this->assertEquals($client, $result); } /** * @expectedException \League\OAuth2\Server\Exception\OAuthServerException */ public function testValidateClientMissingClientId() { $client = new ClientEntity(); $clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock(); $clientRepositoryMock->method('getClientEntity')->willReturn($client); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setClientRepository($clientRepositoryMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $serverRequest = new ServerRequest(); $validateClientMethod = $abstractGrantReflection->getMethod('validateClient'); $validateClientMethod->setAccessible(true); $validateClientMethod->invoke($grantMock, $serverRequest, true, true); } /** * @expectedException \League\OAuth2\Server\Exception\OAuthServerException */ public function testValidateClientMissingClientSecret() { $client = new ClientEntity(); $client->setSecret('bar'); $clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock(); $clientRepositoryMock->method('getClientEntity')->willReturn($client); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setClientRepository($clientRepositoryMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody([ 'client_id' => 'foo', ]); $validateClientMethod = $abstractGrantReflection->getMethod('validateClient'); $validateClientMethod->setAccessible(true); $validateClientMethod->invoke($grantMock, $serverRequest, true, true); } /** * @expectedException \League\OAuth2\Server\Exception\OAuthServerException */ public function testValidateClientInvalidClientSecret() { $client = new ClientEntity(); $client->setSecret('bar'); $clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock(); $clientRepositoryMock->method('getClientEntity')->willReturn($client); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setClientRepository($clientRepositoryMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody([ 'client_id' => 'foo', 'client_secret' => 'foo', ]); $validateClientMethod = $abstractGrantReflection->getMethod('validateClient'); $validateClientMethod->setAccessible(true); $validateClientMethod->invoke($grantMock, $serverRequest, true, true); } /** * @expectedException \League\OAuth2\Server\Exception\OAuthServerException */ public function testValidateClientInvalidRedirectUri() { $client = new ClientEntity(); $client->setRedirectUri('http://foo/bar'); $clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock(); $clientRepositoryMock->method('getClientEntity')->willReturn($client); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setClientRepository($clientRepositoryMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody([ 'client_id' => 'foo', 'redirect_uri' => 'http://bar/foo', ]); $validateClientMethod = $abstractGrantReflection->getMethod('validateClient'); $validateClientMethod->setAccessible(true); $validateClientMethod->invoke($grantMock, $serverRequest, true, true); } /** * @expectedException \League\OAuth2\Server\Exception\OAuthServerException */ public function testValidateClientBadClient() { $clientRepositoryMock = $this->getMockBuilder(ClientRepositoryInterface::class)->getMock(); $clientRepositoryMock->method('getClientEntity')->willReturn(null); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setClientRepository($clientRepositoryMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody([ 'client_id' => 'foo', 'client_secret' => 'bar', ]); $validateClientMethod = $abstractGrantReflection->getMethod('validateClient'); $validateClientMethod->setAccessible(true); $validateClientMethod->invoke($grantMock, $serverRequest, true); } public function testCanRespondToRequest() { $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->method('getIdentifier')->willReturn('foobar'); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody([ 'grant_type' => 'foobar', ]); $this->assertTrue($grantMock->canRespondToRequest($serverRequest)); } public function testIssueRefreshToken() { $refreshTokenRepoMock = $this->getMock(RefreshTokenRepositoryInterface::class); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setRefreshTokenTTL(new \DateInterval('PT1M')); $grantMock->setRefreshTokenRepository($refreshTokenRepoMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $issueRefreshTokenMethod = $abstractGrantReflection->getMethod('issueRefreshToken'); $issueRefreshTokenMethod->setAccessible(true); $accessToken = new AccessTokenEntity(); /** @var RefreshTokenEntityInterface $refreshToken */ $refreshToken = $issueRefreshTokenMethod->invoke($grantMock, $accessToken); $this->assertTrue($refreshToken instanceof RefreshTokenEntityInterface); $this->assertFalse($refreshToken->isExpired()); $this->assertEquals($accessToken, $refreshToken->getAccessToken()); } public function testIssueAccessToken() { $accessTokenRepoMock = $this->getMock(AccessTokenRepositoryInterface::class); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setAccessTokenRepository($accessTokenRepoMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $issueAccessTokenMethod = $abstractGrantReflection->getMethod('issueAccessToken'); $issueAccessTokenMethod->setAccessible(true); /** @var AccessTokenEntityInterface $accessToken */ $accessToken = $issueAccessTokenMethod->invoke( $grantMock, new \DateInterval('PT1H'), new ClientEntity(), 123, [new ScopeEntity()] ); $this->assertTrue($accessToken instanceof AccessTokenEntityInterface); $this->assertFalse($accessToken->isExpired()); } public function testIssueAuthCode() { $authCodeRepoMock = $this->getMock(AuthCodeRepositoryInterface::class); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setAuthCodeRepository($authCodeRepoMock); $abstractGrantReflection = new \ReflectionClass($grantMock); $issueAuthCodeMethod = $abstractGrantReflection->getMethod('issueAuthCode'); $issueAuthCodeMethod->setAccessible(true); $this->assertTrue( $issueAuthCodeMethod->invoke( $grantMock, new \DateInterval('PT1H'), new ClientEntity(), 123, 'http://foo/bar', [new ScopeEntity()] ) instanceof AuthCodeEntityInterface ); } public function testGetCookieParameter() { $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->method('getIdentifier')->willReturn('foobar'); $abstractGrantReflection = new \ReflectionClass($grantMock); $method = $abstractGrantReflection->getMethod('getCookieParameter'); $method->setAccessible(true); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withCookieParams([ 'foo' => 'bar', ]); $this->assertEquals('bar', $method->invoke($grantMock, 'foo', $serverRequest)); $this->assertEquals('foo', $method->invoke($grantMock, 'bar', $serverRequest, 'foo')); } public function testGetQueryStringParameter() { $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->method('getIdentifier')->willReturn('foobar'); $abstractGrantReflection = new \ReflectionClass($grantMock); $method = $abstractGrantReflection->getMethod('getQueryStringParameter'); $method->setAccessible(true); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withQueryParams([ 'foo' => 'bar', ]); $this->assertEquals('bar', $method->invoke($grantMock, 'foo', $serverRequest)); $this->assertEquals('foo', $method->invoke($grantMock, 'bar', $serverRequest, 'foo')); } public function testValidateScopes() { $scope = new ScopeEntity(); $scopeRepositoryMock = $this->getMockBuilder(ScopeRepositoryInterface::class)->getMock(); $scopeRepositoryMock->method('getScopeEntityByIdentifier')->willReturn($scope); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setScopeRepository($scopeRepositoryMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody( [ 'scope' => 'basic ', ] ); $this->assertEquals([$scope], $grantMock->validateScopes($serverRequest, new ClientEntity())); } /** * @expectedException \League\OAuth2\Server\Exception\OAuthServerException */ public function testValidateScopesBadScope() { $scopeRepositoryMock = $this->getMockBuilder(ScopeRepositoryInterface::class)->getMock(); $scopeRepositoryMock->method('getScopeEntityByIdentifier')->willReturn(null); /** @var AbstractGrant $grantMock */ $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $grantMock->setScopeRepository($scopeRepositoryMock); $serverRequest = new ServerRequest(); $serverRequest = $serverRequest->withParsedBody( [ 'scope' => 'basic ', ] ); $grantMock->validateScopes($serverRequest, new ClientEntity()); } public function testGenerateUniqueIdentifier() { $grantMock = $this->getMockForAbstractClass(AbstractGrant::class); $abstractGrantReflection = new \ReflectionClass($grantMock); $method = $abstractGrantReflection->getMethod('generateUniqueIdentifier'); $method->setAccessible(true); $this->assertTrue(is_string($method->invoke($grantMock))); } }