1 package club.wpia.gigi.pages.account;
3 import static org.hamcrest.CoreMatchers.*;
4 import static org.junit.Assert.*;
6 import java.io.IOException;
7 import java.io.OutputStream;
8 import java.io.UnsupportedEncodingException;
9 import java.net.HttpURLConnection;
10 import java.net.MalformedURLException;
12 import java.net.URLConnection;
13 import java.net.URLEncoder;
15 import org.junit.Test;
17 import club.wpia.gigi.dbObjects.User;
18 import club.wpia.gigi.pages.PasswordResetPage;
19 import club.wpia.gigi.pages.wot.TestVerification;
20 import club.wpia.gigi.testUtils.ClientTest;
21 import club.wpia.gigi.testUtils.IOUtils;
22 import club.wpia.gigi.testUtils.TestEmailReceiver.TestMail;
23 import club.wpia.gigi.util.RandomToken;
25 public class TestPasswordResetExternal extends ClientTest {
28 public void testByVerification() throws IOException {
29 User u = User.getById(createVerificationUser("fn", "ln", createUniqueName() + "@example.com", TEST_PASSWORD));
30 String cookie2 = login(u.getEmail(), TEST_PASSWORD);
31 URLConnection uc = TestVerification.buildupVerifyFormConnection(cookie2, email, true);
32 String avalue = RandomToken.generateToken(32);
33 uc.getOutputStream().write(("verifiedName=" + this.u.getPreferredName().getId() + "&date=" + TestVerification.validVerificationDateString() + "&location=testcase&countryCode=DE&certify=1&rules=1&assertion=1&points=10&passwordReset=1&passwordResetValue=" + URLEncoder.encode(avalue, "UTF-8")).getBytes("UTF-8"));
34 uc.getOutputStream().flush();
35 String error = fetchStartErrorMessage(IOUtils.readURL(uc));
38 TestMail mail = getMailReceiver().receive(this.u.getEmail());
39 assertThat(mail.getSubject(), containsString("Verification"));
40 mail = getMailReceiver().receive(this.u.getEmail());
41 String link = mail.extractLink();
42 String npw = TEST_PASSWORD + "'";
43 System.out.println(link);
44 assertNotNull(toPasswordReset(avalue, link, npw, npw + "'"));
45 assertNotNull(toPasswordReset(avalue + "'", link, npw, npw));
46 assertNotNull(toPasswordReset(avalue, link, "a", "a"));
47 assertNull(toPasswordReset(avalue, link, npw, npw));
48 assertNotNull(login(email, npw));
51 private String toPasswordReset(String avalue, String link, String npw, String npw2) throws IOException, MalformedURLException, UnsupportedEncodingException {
52 URLConnection uc2 = new URL(link).openConnection();
53 String csrf = getCSRF(uc2);
54 String headerField = uc2.getHeaderField("Set-Cookie");
55 assertNotNull(headerField);
56 String cookie3 = stripCookie(headerField);
57 uc2 = new URL("https://" + getServerName() + PasswordResetPage.PATH).openConnection();
59 uc2.setDoOutput(true);
60 OutputStream o = uc2.getOutputStream();
61 o.write(("csrf=" + csrf + "&pword1=" + URLEncoder.encode(npw, "UTF-8") + "&pword2=" + URLEncoder.encode(npw2, "UTF-8") + "&private_token=" + URLEncoder.encode(avalue, "UTF-8")).getBytes("UTF-8"));
62 System.out.println(((HttpURLConnection) uc2).getResponseCode());
63 String readURL = IOUtils.readURL(uc2);
64 return fetchStartErrorMessage(readURL);