summaryrefslogtreecommitdiff
path: root/internal/auth/auth_test.go
blob: 013a4aac3c420063ab3e04b28649be9415322473 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
package auth

import (
	"database/sql"
	"errors"
	"testing"
	"time"

	"github.com/DATA-DOG/go-sqlmock"
	"golang.org/x/crypto/bcrypt"
)

func TestAuthenticate(t *testing.T) {
	db, mock, err := sqlmock.New()
	if err != nil {
		t.Fatalf("an error '%s' was not expected when opening a stub database connection", err)
	}
	defer func() { _ = db.Close() }()

	service := NewService(db)

	password := "secret"
	hash, _ := bcrypt.GenerateFromPassword([]byte(password), bcrypt.DefaultCost)

	rows := sqlmock.NewRows([]string{"id", "username", "password_hash", "created_at"}).
		AddRow(1, "testuser", string(hash), time.Now())

	mock.ExpectQuery("SELECT id, username, password_hash, created_at FROM users WHERE username = ?").
		WithArgs("testuser").
		WillReturnRows(rows)

	user, err := service.Authenticate("testuser", password)
	if err != nil {
		t.Errorf("expected no error, got %v", err)
	}
	if user == nil {
		t.Fatal("expected user, got nil")
	}
	if user.Username != "testuser" {
		t.Errorf("expected username testuser, got %s", user.Username)
	}

	if err := mock.ExpectationsWereMet(); err != nil {
		t.Errorf("there were unfulfilled expectations: %s", err)
	}
}

func TestAuthenticate_InvalidCredentials(t *testing.T) {
	db, mock, err := sqlmock.New()
	if err != nil {
		t.Fatalf("an error '%s' was not expected when opening a stub database connection", err)
	}
	defer func() { _ = db.Close() }()

	service := NewService(db)

	mock.ExpectQuery("SELECT id, username, password_hash, created_at FROM users WHERE username = ?").
		WithArgs("nonexistent").
		WillReturnError(sql.ErrNoRows)

	_, err = service.Authenticate("nonexistent", "password")
	if !errors.Is(err, ErrInvalidCredentials) {
		t.Errorf("expected ErrInvalidCredentials, got %v", err)
	}

	if err := mock.ExpectationsWereMet(); err != nil {
		t.Errorf("there were unfulfilled expectations: %s", err)
	}
}

func TestCreateUser(t *testing.T) {
	db, mock, err := sqlmock.New()
	if err != nil {
		t.Fatalf("an error '%s' was not expected when opening a stub database connection", err)
	}
	defer func() { _ = db.Close() }()

	service := NewService(db)

	// Expect check if user exists
	mock.ExpectQuery("SELECT id, username, password_hash, created_at FROM users WHERE username = ?").
		WithArgs("newuser").
		WillReturnError(sql.ErrNoRows)

	// Expect insert
	mock.ExpectExec("INSERT INTO users").
		WithArgs("newuser", sqlmock.AnyArg()).
		WillReturnResult(sqlmock.NewResult(1, 1))

	// Expect retrieve created user
	rows := sqlmock.NewRows([]string{"id", "username", "password_hash", "created_at"}).
		AddRow(1, "newuser", "hashedpassword", time.Now())
	mock.ExpectQuery("SELECT id, username, password_hash, created_at FROM users WHERE id = ?").
		WithArgs(1).
		WillReturnRows(rows)

	user, err := service.CreateUser("newuser", "password")
	if err != nil {
		t.Errorf("expected no error, got %v", err)
	}
	if user.Username != "newuser" {
		t.Errorf("expected username newuser, got %s", user.Username)
	}

	if err := mock.ExpectationsWereMet(); err != nil {
		t.Errorf("there were unfulfilled expectations: %s", err)
	}
}