2017-05-20 01:48:22 -07:00
|
|
|
// Copyright 2017 The Gitea Authors. All rights reserved.
|
|
|
|
// Use of this source code is governed by a MIT-style
|
|
|
|
// license that can be found in the LICENSE file.
|
|
|
|
|
|
|
|
package integrations
|
|
|
|
|
|
|
|
import (
|
2017-11-12 06:36:16 -07:00
|
|
|
"fmt"
|
2017-05-20 01:48:22 -07:00
|
|
|
"net/http"
|
|
|
|
"testing"
|
|
|
|
|
|
|
|
"code.gitea.io/gitea/models"
|
|
|
|
)
|
|
|
|
|
2017-11-12 06:36:16 -07:00
|
|
|
func assertUserDeleted(t *testing.T, userID int64) {
|
|
|
|
models.AssertNotExistsBean(t, &models.User{ID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.Follow{UserID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.Follow{FollowID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.Repository{OwnerID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.Access{UserID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.OrgUser{UID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.IssueUser{UID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.TeamUser{UID: userID})
|
|
|
|
models.AssertNotExistsBean(t, &models.Star{UID: userID})
|
|
|
|
}
|
|
|
|
|
|
|
|
func TestAdminDeleteUser(t *testing.T) {
|
2017-05-20 01:48:22 -07:00
|
|
|
prepareTestEnv(t)
|
|
|
|
|
2017-06-16 21:49:45 -07:00
|
|
|
session := loginUser(t, "user1")
|
2017-05-20 01:48:22 -07:00
|
|
|
|
2017-07-07 12:36:47 -07:00
|
|
|
csrf := GetCSRF(t, session, "/admin/users/8")
|
|
|
|
req := NewRequestWithValues(t, "POST", "/admin/users/8/delete", map[string]string{
|
|
|
|
"_csrf": csrf,
|
2017-06-16 21:49:45 -07:00
|
|
|
})
|
2017-07-07 12:36:47 -07:00
|
|
|
session.MakeRequest(t, req, http.StatusOK)
|
2017-05-20 01:48:22 -07:00
|
|
|
|
2017-11-12 06:36:16 -07:00
|
|
|
assertUserDeleted(t, 8)
|
2017-05-20 01:48:22 -07:00
|
|
|
models.CheckConsistencyFor(t, &models.User{})
|
|
|
|
}
|
2017-11-12 06:36:16 -07:00
|
|
|
|
|
|
|
func TestUserDeleteAccount(t *testing.T) {
|
|
|
|
prepareTestEnv(t)
|
|
|
|
|
|
|
|
session := loginUser(t, "user8")
|
2018-05-15 03:07:32 -07:00
|
|
|
csrf := GetCSRF(t, session, "/user/settings/account")
|
|
|
|
urlStr := fmt.Sprintf("/user/settings/account/delete?password=%s", userPassword)
|
2017-11-12 06:36:16 -07:00
|
|
|
req := NewRequestWithValues(t, "POST", urlStr, map[string]string{
|
|
|
|
"_csrf": csrf,
|
|
|
|
})
|
|
|
|
session.MakeRequest(t, req, http.StatusFound)
|
|
|
|
|
|
|
|
assertUserDeleted(t, 8)
|
|
|
|
models.CheckConsistencyFor(t, &models.User{})
|
|
|
|
}
|
|
|
|
|
|
|
|
func TestUserDeleteAccountStillOwnRepos(t *testing.T) {
|
|
|
|
prepareTestEnv(t)
|
|
|
|
|
|
|
|
session := loginUser(t, "user2")
|
2018-05-15 03:07:32 -07:00
|
|
|
csrf := GetCSRF(t, session, "/user/settings/account")
|
|
|
|
urlStr := fmt.Sprintf("/user/settings/account/delete?password=%s", userPassword)
|
2017-11-12 06:36:16 -07:00
|
|
|
req := NewRequestWithValues(t, "POST", urlStr, map[string]string{
|
|
|
|
"_csrf": csrf,
|
|
|
|
})
|
|
|
|
session.MakeRequest(t, req, http.StatusFound)
|
|
|
|
|
|
|
|
// user should not have been deleted, because the user still owns repos
|
|
|
|
models.AssertExistsAndLoadBean(t, &models.User{ID: 2})
|
|
|
|
}
|