Skip to content

Commit

Permalink
Merge pull request etcd-io#15000 from wafuwafu13/server-access-contro…
Browse files Browse the repository at this point in the history
…l-test

tests(etcdserver): add `server_access_control_test.go`
  • Loading branch information
ahrtr authored Dec 16, 2022
2 parents 677b07b + 2ffa9e7 commit 1cde380
Showing 1 changed file with 119 additions and 0 deletions.
119 changes: 119 additions & 0 deletions server/etcdserver/server_access_control_test.go
Original file line number Diff line number Diff line change
@@ -0,0 +1,119 @@
// Copyright 2022 The etcd Authors
//
// Licensed under the Apache License, Version 2.0 (the "License");
// you may not use this file except in compliance with the License.
// You may obtain a copy of the License at
//
// http://www.apache.org/licenses/LICENSE-2.0
//
// Unless required by applicable law or agreed to in writing, software
// distributed under the License is distributed on an "AS IS" BASIS,
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
// See the License for the specific language governing permissions and
// limitations under the License.

package etcdserver

import (
"testing"

"github.com/stretchr/testify/assert"
)

func TestOriginAllowed(t *testing.T) {
tests := []struct {
accessController *AccessController
origin string
allowed bool
}{
{
&AccessController{
CORS: map[string]struct{}{},
},
"https://example.com",
true,
},
{
&AccessController{
CORS: map[string]struct{}{"*": {}},
},
"https://example.com",
true,
},
{
&AccessController{
CORS: map[string]struct{}{"https://example.com": {}, "http://example.org": {}},
},
"https://example.com",
true,
},
{
&AccessController{
CORS: map[string]struct{}{"http://example.org": {}},
},
"https://example.com",
false,
},
{
&AccessController{
CORS: map[string]struct{}{"*": {}, "http://example.org/": {}},
},
"https://example.com",
true,
},
}

for _, tt := range tests {
allowed := tt.accessController.OriginAllowed(tt.origin)
assert.Equal(t, allowed, tt.allowed)
}
}

func TestIsHostWhitelisted(t *testing.T) {
tests := []struct {
accessController *AccessController
host string
whitelisted bool
}{
{
&AccessController{
HostWhitelist: map[string]struct{}{},
},
"example.com",
true,
},
{
&AccessController{
HostWhitelist: map[string]struct{}{"*": {}},
},
"example.com",
true,
},
{
&AccessController{
HostWhitelist: map[string]struct{}{"example.com": {}, "example.org": {}},
},
"example.com",
true,
},
{
&AccessController{
HostWhitelist: map[string]struct{}{"example.org": {}},
},
"example.com",
false,
},
{
&AccessController{
HostWhitelist: map[string]struct{}{"*": {}, "example.org/": {}},
},
"example.com",
true,
},
}

for _, tt := range tests {
whitelisted := tt.accessController.IsHostWhitelisted(tt.host)
assert.Equal(t, whitelisted, tt.whitelisted)
}
}

0 comments on commit 1cde380

Please sign in to comment.