Added user admin auto creation for Sqlite
This commit is contained in:
@@ -77,6 +77,178 @@ class TestAuthServiceRegisterLogin(object):
|
||||
"""Failure: Login fails if the user does not exist."""
|
||||
with pytest.raises(InvalidCredentialsError):
|
||||
auth_service.login("non.existent@example.com", "AnyPassword")
|
||||
|
||||
def test_create_admin_if_needed_success_with_custom_credentials(
|
||||
self,
|
||||
auth_service: AuthService
|
||||
):
|
||||
"""Success: Admin is created with custom credentials when no users exist."""
|
||||
|
||||
# Arrange
|
||||
custom_email = "custom.admin@example.com"
|
||||
custom_username = "custom_admin"
|
||||
custom_password = "CustomAdminPass123!"
|
||||
|
||||
# Act
|
||||
result = auth_service.create_admin_if_needed(
|
||||
admin_email=custom_email,
|
||||
admin_username=custom_username,
|
||||
admin_password=custom_password
|
||||
)
|
||||
|
||||
# Assert
|
||||
assert result is True
|
||||
|
||||
# Verify admin user was created
|
||||
admin_user = auth_service.user_repository.get_user_by_email(custom_email)
|
||||
assert admin_user is not None
|
||||
assert admin_user.email == custom_email
|
||||
assert admin_user.username == custom_username
|
||||
assert "admin" in admin_user.roles
|
||||
|
||||
# Verify password was hashed
|
||||
auth_service.password_manager.hash_password.assert_called()
|
||||
|
||||
def test_create_admin_if_needed_success_with_default_credentials(
|
||||
self,
|
||||
auth_service: AuthService,
|
||||
monkeypatch
|
||||
):
|
||||
"""Success: Admin is created with default credentials from environment variables."""
|
||||
|
||||
# Arrange
|
||||
monkeypatch.setenv("AUTH_ADMIN_EMAIL", "env.admin@example.com")
|
||||
monkeypatch.setenv("AUTH_ADMIN_USERNAME", "env_admin")
|
||||
monkeypatch.setenv("AUTH_ADMIN_PASSWORD", "EnvAdminPass123!")
|
||||
|
||||
# Act
|
||||
result = auth_service.create_admin_if_needed()
|
||||
|
||||
# Assert
|
||||
assert result is True
|
||||
|
||||
# Verify admin user was created with env variables
|
||||
admin_user = auth_service.user_repository.get_user_by_email("env.admin@example.com")
|
||||
assert admin_user is not None
|
||||
assert admin_user.email == "env.admin@example.com"
|
||||
assert admin_user.username == "env_admin"
|
||||
assert "admin" in admin_user.roles
|
||||
|
||||
def test_create_admin_if_needed_success_with_hardcoded_defaults(
|
||||
self,
|
||||
auth_service: AuthService,
|
||||
monkeypatch
|
||||
):
|
||||
"""Success: Admin is created with hardcoded defaults when no env vars or params provided."""
|
||||
|
||||
# Arrange - Clear any existing env variables
|
||||
monkeypatch.delenv("AUTH_ADMIN_EMAIL", raising=False)
|
||||
monkeypatch.delenv("AUTH_ADMIN_USERNAME", raising=False)
|
||||
monkeypatch.delenv("AUTH_ADMIN_PASSWORD", raising=False)
|
||||
|
||||
# Act
|
||||
result = auth_service.create_admin_if_needed()
|
||||
|
||||
# Assert
|
||||
assert result is True
|
||||
|
||||
# Verify admin user was created with hardcoded defaults
|
||||
admin_user = auth_service.user_repository.get_user_by_email("admin@myauth.com")
|
||||
assert admin_user is not None
|
||||
assert admin_user.email == "admin@myauth.com"
|
||||
assert admin_user.username == "admin"
|
||||
assert "admin" in admin_user.roles
|
||||
|
||||
def test_create_admin_if_needed_no_creation_when_users_exist(
|
||||
self,
|
||||
auth_service: AuthService,
|
||||
test_user_data_create: UserCreate
|
||||
):
|
||||
"""Failure: Admin is not created when users already exist in the system."""
|
||||
|
||||
# Arrange - Create a regular user first
|
||||
auth_service.register(test_user_data_create)
|
||||
|
||||
# Act
|
||||
result = auth_service.create_admin_if_needed(
|
||||
admin_email="should.not.be.created@example.com",
|
||||
admin_username="should_not_exist",
|
||||
admin_password="ShouldNotExist123!"
|
||||
)
|
||||
|
||||
# Assert
|
||||
assert result is False
|
||||
|
||||
# Verify admin user was NOT created
|
||||
admin_user = auth_service.user_repository.get_user_by_email(
|
||||
"should.not.be.created@example.com"
|
||||
)
|
||||
assert admin_user is None
|
||||
|
||||
# Verify only the original user exists
|
||||
assert auth_service.count_users() == 1
|
||||
|
||||
def test_create_admin_if_needed_parameters_override_env_variables(
|
||||
self,
|
||||
auth_service: AuthService,
|
||||
monkeypatch
|
||||
):
|
||||
"""Success: Parameters take precedence over environment variables."""
|
||||
|
||||
# Arrange
|
||||
monkeypatch.setenv("AUTH_ADMIN_EMAIL", "env.admin@example.com")
|
||||
monkeypatch.setenv("AUTH_ADMIN_USERNAME", "env_admin")
|
||||
monkeypatch.setenv("AUTH_ADMIN_PASSWORD", "EnvAdminPass123!")
|
||||
|
||||
param_email = "param.admin@example.com"
|
||||
param_username = "param_admin"
|
||||
param_password = "ParamAdminPass123!"
|
||||
|
||||
# Act
|
||||
result = auth_service.create_admin_if_needed(
|
||||
admin_email=param_email,
|
||||
admin_username=param_username,
|
||||
admin_password=param_password
|
||||
)
|
||||
|
||||
# Assert
|
||||
assert result is True
|
||||
|
||||
# Verify parameters were used, not env variables
|
||||
admin_user = auth_service.user_repository.get_user_by_email(param_email)
|
||||
assert admin_user is not None
|
||||
assert admin_user.email == param_email
|
||||
assert admin_user.username == param_username
|
||||
|
||||
# Verify env admin was NOT created
|
||||
env_admin = auth_service.user_repository.get_user_by_email("env.admin@example.com")
|
||||
assert env_admin is None
|
||||
|
||||
def test_create_admin_if_needed_mixed_parameters_and_env(
|
||||
self,
|
||||
auth_service: AuthService,
|
||||
monkeypatch
|
||||
):
|
||||
"""Success: Partial parameters combine with environment variables."""
|
||||
|
||||
# Arrange
|
||||
monkeypatch.setenv("AUTH_ADMIN_EMAIL", "env.admin@example.com")
|
||||
monkeypatch.setenv("AUTH_ADMIN_USERNAME", "env_admin")
|
||||
monkeypatch.setenv("AUTH_ADMIN_PASSWORD", "EnvAdminPass123!")
|
||||
|
||||
# Act - Only provide email as parameter
|
||||
result = auth_service.create_admin_if_needed(
|
||||
admin_email="partial.admin@example.com"
|
||||
)
|
||||
|
||||
# Assert
|
||||
assert result is True
|
||||
|
||||
# Verify email from parameter, username and password from env
|
||||
admin_user = auth_service.user_repository.get_user_by_email("partial.admin@example.com")
|
||||
assert admin_user is not None
|
||||
assert admin_user.email == "partial.admin@example.com"
|
||||
assert admin_user.username == "env_admin"
|
||||
|
||||
|
||||
class TestAuthServiceTokenManagement(object):
|
||||
|
||||
Reference in New Issue
Block a user