Search in sources :

Example 6 with UserId

use of com.bakdata.conquery.models.identifiable.ids.specific.UserId in project conquery by bakdata.

the class SerializingStoreDumpTest method testCorruptKeyDump.

/**
 * Tests if entries with corrupted keys are dumped.
 */
@Test
public void testCorruptKeyDump() throws IOException {
    // Set dump directory to this tests temp-dir
    config.setUnreadableDataDumpDirectory(tmpDir);
    {
        // Open a store and insert a valid key-value pair (UserId & User)
        SerializingStore<UserId, User> store = createSerializedStore(config, env, Validators.newValidator(), USER_STORE_ID);
        store.add(new UserId("testU1"), user);
    }
    {
        // Open that store again, with a different config to insert a corrupt entry
        // (String & ManagedQuery)
        SerializingStore<String, QueryDescription> store = createSerializedStore(config, env, Validators.newValidator(), new StoreInfo<>(USER_STORE_ID.getName(), String.class, QueryDescription.class));
        store.add("not a valid conquery Id", cQuery);
    }
    {
        // Reopen the store with the initial value and try to iterate over all entries
        // (this triggers the dump or removal of invalid entries)
        SerializingStore<UserId, User> store = createSerializedStore(config, env, Validators.newValidator(), USER_STORE_ID);
        IterationStatistic expectedResult = new IterationStatistic();
        expectedResult.setTotalProcessed(2);
        expectedResult.setFailedKeys(1);
        expectedResult.setFailedValues(0);
        // Iterate (do nothing with the entries themselves)
        IterationStatistic result = store.forEach((k, v, s) -> {
        });
        assertThat(result).isEqualTo(expectedResult);
    }
    // Test if the correct number of dumpfiles was generated
    Condition<File> dumpFileCond = new Condition<>(f -> f.getName().endsWith(SerializingStore.DUMP_FILE_EXTENTION), "dump file");
    assertThat(tmpDir.listFiles()).areExactly(1, dumpFileCond);
    // Test if the dump is correct
    File dumpFile = getDumpFile(dumpFileCond);
    assertThat((QueryDescription) Jackson.MAPPER.readerFor(QueryDescription.class).readValue(dumpFile)).isEqualTo(cQuery);
}
Also used : BeforeEach(org.junit.jupiter.api.BeforeEach) ManagedQuery(com.bakdata.conquery.models.query.ManagedQuery) Validators(io.dropwizard.jersey.validation.Validators) Environments(jetbrains.exodus.env.Environments) Assertions.assertThat(org.assertj.core.api.Assertions.assertThat) UserId(com.bakdata.conquery.models.identifiable.ids.specific.UserId) StoreMappings(com.bakdata.conquery.io.storage.StoreMappings) Environment(jetbrains.exodus.env.Environment) Files(com.google.common.io.Files) QueryDescription(com.bakdata.conquery.apiv1.query.QueryDescription) IterationStatistic(com.bakdata.conquery.io.storage.xodus.stores.SerializingStore.IterationStatistic) Validator(javax.validation.Validator) IOException(java.io.IOException) FileUtils(org.apache.commons.io.FileUtils) User(com.bakdata.conquery.models.auth.entities.User) File(java.io.File) Dataset(com.bakdata.conquery.models.datasets.Dataset) Objects(java.util.Objects) Test(org.junit.jupiter.api.Test) ConceptQuery(com.bakdata.conquery.apiv1.query.ConceptQuery) Slf4j(lombok.extern.slf4j.Slf4j) AfterEach(org.junit.jupiter.api.AfterEach) Condition(org.assertj.core.api.Condition) CQReusedQuery(com.bakdata.conquery.apiv1.query.concept.specific.CQReusedQuery) Jackson(com.bakdata.conquery.io.jackson.Jackson) XodusStoreFactory(com.bakdata.conquery.models.config.XodusStoreFactory) MetaStorage(com.bakdata.conquery.io.storage.MetaStorage) NonPersistentStoreFactory(com.bakdata.conquery.util.NonPersistentStoreFactory) Condition(org.assertj.core.api.Condition) UserId(com.bakdata.conquery.models.identifiable.ids.specific.UserId) IterationStatistic(com.bakdata.conquery.io.storage.xodus.stores.SerializingStore.IterationStatistic) QueryDescription(com.bakdata.conquery.apiv1.query.QueryDescription) File(java.io.File) Test(org.junit.jupiter.api.Test)

Example 7 with UserId

use of com.bakdata.conquery.models.identifiable.ids.specific.UserId in project conquery by bakdata.

the class IntrospectionDelegatingRealmTest method tokenIntrospectionGroupedUser.

@Test
public void tokenIntrospectionGroupedUser() {
    STORAGE.addUser(USER_2);
    AuthenticationInfo info = REALM.doGetAuthenticationInfo(USER_2_TOKEN_WRAPPED);
    final ConqueryAuthenticationInfo expected = new ConqueryAuthenticationInfo(USER_2, USER_2_TOKEN_WRAPPED, REALM, true);
    assertThat(info).usingRecursiveComparison().isEqualTo(expected);
    assertThat(STORAGE.getAllUsers()).containsOnly(USER_2);
    // Pre-existing group and a second group that has been added in the process
    assertThat(STORAGE.getAllGroups()).hasSize(2);
    assertThat(STORAGE.getGroup(new GroupId(GROUPNAME_1)).getMembers()).contains(new UserId(USER_2_NAME));
    assertThat(STORAGE.getGroup(new GroupId(GROUPNAME_2)).getMembers()).contains(new UserId(USER_2_NAME));
}
Also used : UserId(com.bakdata.conquery.models.identifiable.ids.specific.UserId) AuthenticationInfo(org.apache.shiro.authc.AuthenticationInfo) GroupId(com.bakdata.conquery.models.identifiable.ids.specific.GroupId) Test(org.junit.jupiter.api.Test)

Example 8 with UserId

use of com.bakdata.conquery.models.identifiable.ids.specific.UserId in project conquery by bakdata.

the class JwtPkceVerifyingRealmTest method falsifyTokenOutdated.

@Test
void falsifyTokenOutdated() {
    // Setup the expected user id
    UserId expected = new UserId("Test");
    Date issueDate = new Date();
    Date expDate = DateUtils.addMinutes(issueDate, -2);
    String token = JWT.create().withIssuer(HTTP_REALM_URL).withSubject(expected.getName()).withClaim("groups", "conquery").withIssuedAt(issueDate).withExpiresAt(expDate).sign(Algorithm.RSA256(PUBLIC_KEY, PRIVATE_KEY));
    BearerToken accessToken = new BearerToken(token);
    assertThatCode(() -> REALM.doGetAuthenticationInfo(accessToken)).hasCauseInstanceOf(VerificationException.class);
}
Also used : UserId(com.bakdata.conquery.models.identifiable.ids.specific.UserId) BearerToken(org.apache.shiro.authc.BearerToken) Date(java.util.Date) Test(org.junit.jupiter.api.Test)

Example 9 with UserId

use of com.bakdata.conquery.models.identifiable.ids.specific.UserId in project conquery by bakdata.

the class JwtPkceVerifyingRealmTest method falsifyTokenWrongIssuer.

@Test
void falsifyTokenWrongIssuer() {
    // Setup the expected user id
    UserId expected = new UserId("Test");
    Date issueDate = new Date();
    Date expDate = DateUtils.addMinutes(issueDate, 1);
    String token = JWT.create().withIssuer("wrong_iss").withAudience(AUDIENCE).withSubject(expected.getName()).withIssuedAt(issueDate).withExpiresAt(expDate).withClaim("groups", "conquery").withIssuedAt(issueDate).withExpiresAt(expDate).sign(Algorithm.RSA256(PUBLIC_KEY, PRIVATE_KEY));
    BearerToken accessToken = new BearerToken(token);
    assertThatCode(() -> REALM.doGetAuthenticationInfo(accessToken)).hasCauseInstanceOf(VerificationException.class);
}
Also used : UserId(com.bakdata.conquery.models.identifiable.ids.specific.UserId) BearerToken(org.apache.shiro.authc.BearerToken) Date(java.util.Date) Test(org.junit.jupiter.api.Test)

Example 10 with UserId

use of com.bakdata.conquery.models.identifiable.ids.specific.UserId in project conquery by bakdata.

the class JwtPkceVerifyingRealmTest method falsifyTokenWrongAudience.

@Test
void falsifyTokenWrongAudience() {
    // Setup the expected user id
    UserId expected = new UserId("Test");
    Date issueDate = new Date();
    Date expDate = DateUtils.addMinutes(issueDate, 1);
    String token = JWT.create().withIssuer(HTTP_REALM_URL).withAudience("wrong_aud").withSubject(expected.getName()).withClaim("groups", "conquery").withIssuedAt(issueDate).withExpiresAt(expDate).sign(Algorithm.RSA256(PUBLIC_KEY, PRIVATE_KEY));
    BearerToken accessToken = new BearerToken(token);
    assertThatCode(() -> REALM.doGetAuthenticationInfo(accessToken)).hasCauseInstanceOf(VerificationException.class);
}
Also used : UserId(com.bakdata.conquery.models.identifiable.ids.specific.UserId) BearerToken(org.apache.shiro.authc.BearerToken) Date(java.util.Date) Test(org.junit.jupiter.api.Test)

Aggregations

UserId (com.bakdata.conquery.models.identifiable.ids.specific.UserId)19 User (com.bakdata.conquery.models.auth.entities.User)10 Test (org.junit.jupiter.api.Test)10 MetaStorage (com.bakdata.conquery.io.storage.MetaStorage)4 ConqueryAuthenticationInfo (com.bakdata.conquery.models.auth.ConqueryAuthenticationInfo)4 Date (java.util.Date)4 ConceptQuery (com.bakdata.conquery.apiv1.query.ConceptQuery)3 QueryDescription (com.bakdata.conquery.apiv1.query.QueryDescription)3 CQReusedQuery (com.bakdata.conquery.apiv1.query.concept.specific.CQReusedQuery)3 Jackson (com.bakdata.conquery.io.jackson.Jackson)3 StoreMappings (com.bakdata.conquery.io.storage.StoreMappings)3 IterationStatistic (com.bakdata.conquery.io.storage.xodus.stores.SerializingStore.IterationStatistic)3 XodusStoreFactory (com.bakdata.conquery.models.config.XodusStoreFactory)3 Dataset (com.bakdata.conquery.models.datasets.Dataset)3 ManagedQuery (com.bakdata.conquery.models.query.ManagedQuery)3 NonPersistentStoreFactory (com.bakdata.conquery.util.NonPersistentStoreFactory)3 Files (com.google.common.io.Files)3 Validators (io.dropwizard.jersey.validation.Validators)3 File (java.io.File)3 IOException (java.io.IOException)3