rosa-build/spec/controllers/groups_controller_spec.rb

157 lines
4.6 KiB
Ruby
Raw Normal View History

2012-01-30 20:39:34 +00:00
# -*- encoding : utf-8 -*-
2011-12-07 19:51:08 +00:00
require 'spec_helper'
2012-03-20 15:40:49 +00:00
shared_examples_for 'group user without update rights' do
it 'should be not able to perform update action' do
put :update, {:id => @group.id}.merge(@update_params)
response.should redirect_to(forbidden_path)
end
it 'should not be able to update group data' do
put :update, :id => @group.id, :group => {:description => 'new description'}
@group.reload.description.should_not == 'new description'
end
pending 'should be able to manage_members group' do
get :manage_members, :id => @group.id
response.should render_template("")
end
end
shared_examples_for 'group user without destroy rights' do
it 'should not be able to destroy group' do
delete :destroy, :id => @group.id
response.should redirect_to(forbidden_path)
end
it 'should not change groups count after destroy action' do
lambda { delete :destroy, :id => @group.id }.should change{ Group.count }.by(0)
end
end
shared_examples_for 'group admin' do
it_should_behave_like 'no group user'
it 'should be able to update group data' do
put :update, :id => @group.id, :group => {:description => 'new description'}
@group.reload.description.should == 'new description'
end
it 'should be able to perform update action' do
put :update, {:id => @group.id}.merge(@update_params)
response.should redirect_to(group_path(@group))
end
pending 'should be able to manage_members group' do
get :manage_members, :id => @group.id
response.should render_template("")
end
end
shared_examples_for 'no group user' do
it 'should be able to perform create action' do
post :create, @create_params
response.should redirect_to(group_path( Group.last.id ))
end
it 'should change objects count on create' do
lambda { post :create, @create_params }.should change{ Group.count }.by(1)
end
it 'should be able to perform autocomplete_group_uname action' do
get :autocomplete_group_uname
response.should be_success
end
end
shared_examples_for 'group owner' do
it_should_behave_like 'group admin'
it 'should be able to destroy group' do
delete :destroy, :id => @group.id
response.should redirect_to(groups_path)
end
it 'should change groups count after destroy action' do
lambda { delete :destroy, :id => @group.id }.should change{ Group.count }.by(-1)
end
end
2011-12-07 19:51:08 +00:00
describe GroupsController do
before(:each) do
stub_rsync_methods
2011-12-07 19:51:08 +00:00
@group = Factory(:group)
@another_user = Factory(:user)
@create_params = {:group => {:description => 'grp1', :uname => 'un_grp1'}}
@update_params = {:group => {:description => 'grp2'}}
2011-12-07 19:51:08 +00:00
end
context 'for guest' do
it 'should not be able to perform index action' do
get :index
response.should redirect_to(new_user_session_path)
end
it 'should not be able to perform update action' do
put :update, {:id => @group.id}.merge(@update_params)
response.should redirect_to(new_user_session_path)
end
end
2012-03-20 15:40:49 +00:00
context 'for global admin' do
2011-12-07 19:51:08 +00:00
before(:each) do
@admin = Factory(:admin)
set_session_for(@admin)
end
it_should_behave_like 'update_member_relation'
2012-03-20 15:40:49 +00:00
it_should_behave_like 'group owner'
2011-12-07 19:51:08 +00:00
it 'should be able to perform index action' do
get :index
response.should render_template(:index)
end
it 'should be able to perform update action' do
put :update, {:id => @group.id}.merge(@update_params)
response.should redirect_to(group_path(@group))
end
2012-03-20 15:40:49 +00:00
end
2012-03-20 15:40:49 +00:00
context 'for group admin' do
before(:each) do
@user = Factory(:user)
set_session_for(@user)
@group.objects.create(:object_type => 'User', :object_id => @user.id, :role => 'admin')
2011-12-07 19:51:08 +00:00
end
2012-03-20 15:40:49 +00:00
it_should_behave_like 'update_member_relation'
it_should_behave_like 'group admin'
it_should_behave_like 'group user without destroy rights'
end
context 'for group owner' do
before(:each) do
@user = Factory(:user)
set_session_for(@user)
@group.update_attribute(:owner, @user)
@group.objects.create(:object_type => 'User', :object_id => @user.id, :role => 'admin')
2011-12-07 19:51:08 +00:00
end
2012-03-20 15:40:49 +00:00
it_should_behave_like 'update_member_relation'
it_should_behave_like 'group owner'
end
context 'for group reader and writer user' do
before(:each) do
@user = Factory(:user)
set_session_for(@user)
@group.objects.create(:object_type => 'User', :object_id => @user.id, :role => 'reader')
end
it_should_behave_like 'no group user'
it_should_behave_like 'group user without destroy rights'
it_should_behave_like 'group user without update rights'
2011-12-07 19:51:08 +00:00
end
end