]> WPIA git - gigi.git/blob - tests/org/cacert/gigi/pages/account/TestPasswordResetExternal.java
1ec408a5083c9f3ef8159c9883cebb05df6b06f9
[gigi.git] / tests / org / cacert / gigi / pages / account / TestPasswordResetExternal.java
1 package org.cacert.gigi.pages.account;
2
3 import static org.junit.Assert.*;
4
5 import java.io.IOException;
6 import java.io.OutputStream;
7 import java.io.UnsupportedEncodingException;
8 import java.net.HttpURLConnection;
9 import java.net.MalformedURLException;
10 import java.net.URL;
11 import java.net.URLConnection;
12 import java.net.URLEncoder;
13
14 import org.cacert.gigi.dbObjects.User;
15 import org.cacert.gigi.pages.PasswordResetPage;
16 import org.cacert.gigi.pages.wot.TestAssurance;
17 import org.cacert.gigi.testUtils.ClientTest;
18 import org.cacert.gigi.testUtils.IOUtils;
19 import org.cacert.gigi.testUtils.TestEmailReceiver.TestMail;
20 import org.cacert.gigi.util.RandomToken;
21 import org.junit.Test;
22
23 public class TestPasswordResetExternal extends ClientTest {
24
25     @Test
26     public void testByAssurance() throws IOException {
27         User u = User.getById(createAssuranceUser("fn", "ln", createUniqueName() + "@example.com", TEST_PASSWORD));
28         String cookie2 = login(u.getEmail(), TEST_PASSWORD);
29         URLConnection uc = TestAssurance.buildupAssureFormConnection(cookie2, email, true);
30         String avalue = RandomToken.generateToken(32);
31         uc.getOutputStream().write(("assuredName=" + u.getPreferredName().getId() + "&date=1910-01-01&location=testcase&certify=1&rules=1&assertion=1&points=10&passwordReset=1&passwordResetValue=" + URLEncoder.encode(avalue, "UTF-8")).getBytes("UTF-8"));
32         uc.getOutputStream().flush();
33         String error = fetchStartErrorMessage(IOUtils.readURL(uc));
34         assertNull(error);
35
36         TestMail mail = getMailReceiver().receive();
37         String link = mail.extractLink();
38         String npw = TEST_PASSWORD + "'";
39         System.out.println(link);
40         assertNotNull(toPasswordReset(avalue, link, npw, npw + "'"));
41         assertNotNull(toPasswordReset(avalue + "'", link, npw, npw));
42         assertNotNull(toPasswordReset(avalue, link, "a", "a"));
43         assertNull(toPasswordReset(avalue, link, npw, npw));
44         assertNotNull(login(email, npw));
45     }
46
47     private String toPasswordReset(String avalue, String link, String npw, String npw2) throws IOException, MalformedURLException, UnsupportedEncodingException {
48         URLConnection uc2 = new URL(link).openConnection();
49         String csrf = getCSRF(uc2);
50         String headerField = uc2.getHeaderField("Set-Cookie");
51         assertNotNull(headerField);
52         String cookie3 = stripCookie(headerField);
53         uc2 = new URL("https://" + getServerName() + PasswordResetPage.PATH).openConnection();
54         cookie(uc2, cookie3);
55         uc2.setDoOutput(true);
56         OutputStream o = uc2.getOutputStream();
57         o.write(("csrf=" + csrf + "&pword1=" + URLEncoder.encode(npw, "UTF-8") + "&pword2=" + URLEncoder.encode(npw2, "UTF-8") + "&private_token=" + URLEncoder.encode(avalue, "UTF-8")).getBytes("UTF-8"));
58         System.out.println(((HttpURLConnection) uc2).getResponseCode());
59         String readURL = IOUtils.readURL(uc2);
60         return fetchStartErrorMessage(readURL);
61     }
62 }