当我在会话中测试需要user_id的phoenix动作时,如何在设置中设置会话?

时间:2015-08-13 08:23:57

标签: session testing elixir phoenix-framework

我有一个测试需要在测试之前将user_id设置为session,因为此操作需要知道current_user。

app.Use(async (httpContext, next) =>
{
    if (httpContext.Request.Path.Value.Contains("api/") && httpContext.Request.Method == "OPTIONS")
    {
        httpContext.Response.Headers.Add("Access-Control-Allow-Origin", new[] { httpContext.Request.Headers["Origin"] });
        httpContext.Response.Headers.Add("Access-Control-Allow-Headers", new[] { "Origin, X-Requested-With, Content-Type, Accept" });
        httpContext.Response.Headers.Add("Access-Control-Allow-Methods", new[] { "GET, POST, PUT, DELETE, OPTIONS" });
        httpContext.Response.Headers.Add("Access-Control-Allow-Credentials", new[] { "true" });
        return;
    }
    await next();
});

我已尝试过此代码,但它说的是setup do %User{ id: 123456, username: "lcp", email: "abc@gmail.com", password: Comeonin.Bcrypt.hashpwsalt("password") } |> Repo.insert {:ok, user: Repo.get(User, 123456) } end test "POST /posts", context do # conn = conn() # |> put_session(:user_id, context[:user].id) # |> post("/posts", %{ post: %{ title: "title", body: "body" } }) # assert get_flash(conn, :info) == "Post created successfully." # updated to => conn = conn() |> Map.put(:secret_key_base, String.duplicate("abcdefgh", 8)) |> Plug.Session.call(@session) |> Plug.Conn.fetch_session |> put_session(:user_id, context[:user].id) |> post("/posts", %{ post: %{ title: "title", body: "body" } }) assert get_flash(conn, :info) == "Post created successfully." end

网/控制器/ controller_helper.ex

session not fetched, call fetch_session/2

更新

当我通过defmodule SimpleBlog.ControllerHelpers do alias Phoenix.Controller alias Plug.Conn alias SimpleBlog.Router.Helpers def authenticate(conn, _) do case Conn.get_session(conn, :user_id) do nil -> unauthorized(conn) user_id -> case SimpleBlog.Repo.get(SimpleBlog.User, user_id) do {:ok, user} -> Conn.assign(conn, :current_user, user) nil -> unauthorized(conn) end end end def unauthorized(conn) do conn |> Controller.put_flash(:error, "You must be logged in") |> Controller.redirect(to: Helpers.session_path(conn, :new)) |> Conn.halt end end 从会话中获取user_id时,我收到了nil。

这是帖子控制器 网/控制器/ post_controller.ex

Conn.get_session(conn, :user_id)

这是我的测试文件。

defmodule SimpleBlog.PostController do
  use SimpleBlog.Web, :controller
  import SimpleBlog.ControllerHelpers

  alias SimpleBlog.Post

  plug :authenticate when not action in [:new]

  def create(conn, %{ "post" => post_params }) do
    changeset = Post.changeset(%Post{}, post_params)

    case Repo.insert(changeset) do
      {:ok, _post} ->
        conn
          |> put_flash(:info, "Post created successfully.")
          |> redirect(to: post_path(conn, :new))
      {:error, changeset} ->
        render(conn, "new.html", changeset: changeset)
    end
  end
end

更新..

LIB / simple_blog /插头/ authenticated.ex

我定义了一个经过身份验证的插件

defmodule SimpleBlog.PostControllerTest do
  use SimpleBlog.ConnCase
  alias SimpleBlog.Repo
  alias SimpleBlog.User

  @session Plug.Session.init(
    store: :cookie,
    key: "_app",
    encryption_salt: "yadayada",
    signing_salt: "yadayada"
  )

  setup do
    %User{
      id: 123456,
      username: "lcp",
      email: "abc@gmail.com",
      password: Comeonin.Bcrypt.hashpwsalt("password")
    } |> Repo.insert

    {:ok, user: Repo.get(User, 123456) }
  end


  @tag timeout: 900000
  test "POST /posts", context do
    conn = conn()
            |> Map.put(:secret_key_base, String.duplicate("abcdefgh", 8))
            |> Plug.Session.call(@session)
            |> Plug.Conn.fetch_session
            |> put_session(:user_id, context[:user].id)
            |> post("/posts", %{ post: %{ title: "title", body: "body" } })

    assert get_flash(conn, :info) == "Post created successfully."
  end
end

在我的测试中

defmodule SimpleBlog.Plugs.Authenticated do
  import Plug.Conn
  alias Phoenix.Controller
  alias SimpleBlog.Router.Helpers
  alias SimpleBlog.User

  def init(options) do
    options
  end

  def call(conn, _) do
    case conn |> current_user_id do
      nil ->
        conn
          |> Controller.put_flash(:error, "You must be logged in")
          |> Controller.redirect(to: Helpers.session_path(conn, :new))
          |> halt
      current_user_id ->
        conn |> assign(:current_user, SimpleBlog.Repo.get(User, current_user_id))
    end
  end

  defp current_user_id(conn) do
    case Mix.env do
      :test ->
        conn.private[:authenticated_current_user_id]
      _ ->
        conn |> fetch_session |> get_session(:current_user_id)
    end
  end
end

现在,测试通过了。

3 个答案:

答案 0 :(得分:11)

由于post操作重置会话,您实际上无法执行此操作。你有几个选择。

首先,您可以使用有效凭据执行访问登录路径的集成测试,然后发出创建帖子的请求。

其次,您可以创建如下的身份验证插件:

defmodule SimpleBlog.Plug.Authenticate do
  import Plug.Conn
  alias SimpleBlog.Router.Helpers, as: RouteHelpers
  import Phoenix.Controller

  alias SimpleBlog.Repo
  alias SimpleBlog.User

  def init(opts), do: opts

  def call(conn, _opts) do
    if user = get_user(conn) do
      assign(conn, :current_user, user)
    else
      auth_error!(conn)
    end
  end

  def get_user(conn) do
    case conn.assigns[:current_user] do
      nil      -> fetch_user(conn)
      user     -> user
    end
  end

  defp fetch_user(conn) do
    case get_session(conn, :current_user) |> find_user
      {:ok, user} -> user
      _           -> nil
    end
  end

  defp find_user(id) when do
    Repo.get(User, id)
  end

  defp auth_error!(conn) do
    conn
    |> put_flash(:error, "You need to be signed in to view this page")
    |> redirect(to: RouteHelpers.session_path(conn, :new))
    |> halt
  end
end

您可以通过执行以下Phoenix tests

中的操作来测试此操作
defmodule SimpleBlog.Plug.AuthenticationTest do
  use ExUnit.Case
  use Plug.Test

  alias Plug.Conn
  alias SimpleBlog.Plug.Authenticate
  alias SimpleBlog.Repo
  alias SimpleBlog.User
  import SimpleBlog.Router.Helpers

  @session Plug.Session.init(
    store: :cookie,
    key: "_app",
    encryption_salt: "yadayada",
    signing_salt: "yadayada"
  )

  setup do
    user = %User{
      id: 123456,
      username: "lcp",
      email: "abc@gmail.com",
      password: Comeonin.Bcrypt.hashpwsalt("password")
    } |> Repo.insert!

    session_data = %{id: user.id}
    conn =
      conn(:get, "/")
      |> Map.put(:secret_key_base, String.duplicate("abcdefgh", 8))
      |> Plug.Session.call(@session)
      |> Conn.fetch_session()
    {:ok, conn: conn, user: user, session_data: session_data}
  end

  test "get_user returns the user if it is set in conn.assigns", %{conn: conn, user: user} do
    conn = Conn.assign(conn, :current_user, user)
    assert Authenticate.get_user(conn) == user
  end

  test "get_user returns the user if it is set in a session", %{conn: conn, user: user, session_data: session_data} do
    conn = Conn.put_session(conn, :current_user, session_data)
    assert Authenticate.get_user(conn) == user
  end

  test "get_user returns nil if the user is not in assigns or session", %{conn: conn} do
    assert Authenticate.get_user(conn) == nil
  end

  test "when there is not user stored", %{conn: conn} do
    conn =
      |> Phoenix.Controller.fetch_flash
      |> Authenticate.call([])
    assert Phoenix.Controller.get_flash(new_conn, :error) == "You need to be signed in to view this page"
    assert Phoenix.ConnTest.redirected_to(new_conn) == session_path(new_conn, :new)
  end
end

您现在可以通过执行以下操作来测试您的控制器:

setup do
  %User{
    id: 123456,
    username: "lcp",
    email: "abc@gmail.com",
    password: Comeonin.Bcrypt.hashpwsalt("password")
  } |> Repo.insert

  {:ok, user: Repo.get(User, 123456) }
end

test "POST /posts", %{user: user} do
   conn = conn()
        |> assign(:current_user, user)
        |> post("/posts", %{ post: %{ title: "title", body: "body" } })

   assert get_flash(conn, :info) == "Post created successfully."
end

答案 1 :(得分:3)

另一种简单的方法是使用assigns,并从会话中懒洋洋地加载数据。在集成测试期间,将加载会话中的数据,但在单元测试期间,您只需分配数据:

# controller code
def success(conn, _params) do
  conn
  |> assign(:username, conn.assigns[:username] || get_session(conn, :username))
  |> render("auth_success.html")
end

# test
test "it renders success page with username and token", %{conn: conn} do
  conn = conn
  |> assign(:username, "unpredictablestring")
  |> get("/portal/success")

  assert html_response(conn, 200) =~ "unpredictablestring"
end

来自评论的信用转到@carp,我只是认为这应该作为答案发布。

答案 2 :(得分:1)

Phoenix.ConnTest.init_test_session/2 可能有助于在测试中设置会话。如果例如您需要 { "some":"param", "updated_at":"2021-07-08 10:49:44", <-- "created_at":"2021-07-08 10:39:55", "your":"new params" <-- } 出现在会话中,您可以这样设置:

:token