|
6 | 6 |
|
7 | 7 |
|
8 | 8 | @override_settings(ROOT_URLCONF='tests.urls_admin') |
9 | | -class AdminSiteTest(UserMixin, TestCase): |
10 | | - |
11 | | - def setUp(self): |
12 | | - super().setUp() |
13 | | - self.user = self.create_superuser() |
14 | | - self.login_user() |
15 | | - |
16 | | - def test_default_admin(self): |
17 | | - response = self.client.get('/admin/') |
18 | | - self.assertEqual(response.status_code, 200) |
19 | | - |
20 | | - |
21 | | -@override_settings(ROOT_URLCONF='tests.urls_otp_admin') |
22 | 9 | class OTPAdminSiteTest(UserMixin, TestCase): |
23 | 10 | """ |
24 | 11 | otp_admin is admin console that needs OTP for access. |
25 | 12 | Only admin users (is_staff and is_active) |
26 | 13 | with OTP can access it. |
27 | 14 | """ |
28 | 15 |
|
29 | | - def test_admin_not_authenticated_with_otp_enabled(self): |
30 | | - response = self.client.get('/otp_admin/', follow=True) |
31 | | - redirect_to = '%s?next=/otp_admin/' % reverse('admin:login') |
| 16 | + def test_anonymous_get_admin_index_redirects_to_admin_login(self): |
| 17 | + index_url = reverse('admin:index') |
| 18 | + login_url = reverse('admin:login') |
| 19 | + response = self.client.get(index_url, follow=True) |
| 20 | + redirect_to = '%s?next=%s' % (login_url, index_url) |
32 | 21 | self.assertRedirects(response, redirect_to) |
33 | 22 |
|
34 | | - def test_otp_admin_without_otp(self): |
| 23 | + def test_anonymous_get_admin_logout_redirects_to_admin_index(self): |
| 24 | + # see: django.tests.admin_views.test_client_logout_url_can_be_used_to_login |
| 25 | + index_url = reverse('admin:index') |
| 26 | + logout_url = reverse('admin:logout') |
| 27 | + response = self.client.get(logout_url) |
| 28 | + self.assertEqual( |
| 29 | + response.status_code, 302 |
| 30 | + ) |
| 31 | + self.assertEqual(response.headers.get('Location'), index_url) |
| 32 | + |
| 33 | + def test_anonymous_get_admin_login(self): |
| 34 | + index_url = reverse('admin:index') |
| 35 | + login_url = reverse('admin:login') |
| 36 | + |
| 37 | + response = self.client.get(login_url, follow=True) |
| 38 | + self.assertEqual(response.status_code, 200) |
| 39 | + redirect_to = '%s?next=%s' % (login_url, index_url) |
| 40 | + self.assertRedirects(response, redirect_to) |
| 41 | + |
| 42 | + def test_is_staff_not_verified_not_setup_get_admin_index_redirects_to_setup(self): |
35 | 43 | """ |
36 | 44 | admins without MFA setup should be redirected to the setup page. |
37 | 45 | """ |
| 46 | + index_url = reverse('admin:index') |
| 47 | + setup_url = reverse('two_factor:setup') |
38 | 48 | self.user = self.create_superuser() |
39 | 49 | self.login_user() |
40 | | - response = self.client.get('/otp_admin/', follow=True) |
41 | | - redirect_to = '%s?next=/admin/' % reverse('two_factor:setup') |
| 50 | + response = self.client.get(index_url, follow=True) |
| 51 | + redirect_to = '%s?next=%s' % (setup_url, index_url) |
42 | 52 | self.assertRedirects(response, redirect_to) |
43 | 53 |
|
44 | | - def test_otp_admin_without_otp_named_url(self): |
| 54 | + def test_is_staff_not_verified_not_setup_get_admin_login_redirects_to_setup(self): |
| 55 | + index_url = reverse('admin:index') |
| 56 | + login_url = reverse('admin:login') |
| 57 | + setup_url = reverse('two_factor:setup') |
45 | 58 | self.user = self.create_superuser() |
46 | 59 | self.login_user() |
47 | | - response = self.client.get('/otp_admin/', follow=True) |
48 | | - redirect_to = '%s?next=/admin/' % reverse('two_factor:setup') |
| 60 | + response = self.client.get(login_url, follow=True) |
| 61 | + redirect_to = '%s?next=%s' % (setup_url, index_url) |
49 | 62 | self.assertRedirects(response, redirect_to) |
50 | 63 |
|
51 | | - def test_otp_admin_with_otp(self): |
| 64 | + def test_is_staff_is_verified_get_admin_index(self): |
| 65 | + index_url = reverse('admin:index') |
52 | 66 | self.user = self.create_superuser() |
53 | 67 | self.enable_otp(self.user) |
54 | 68 | self.login_user() |
55 | | - response = self.client.get('/otp_admin/') |
| 69 | + response = self.client.get(index_url) |
56 | 70 | self.assertEqual(response.status_code, 200) |
57 | 71 |
|
58 | | - def test_client_logout_url_can_be_used_to_login(self): |
59 | | - # see: django.tests.admin_views.test_client_logout_url_can_be_used_to_login |
60 | | - admin_logout_url = reverse('admin:logout') |
61 | | - response = self.client.get(admin_logout_url) |
62 | | - self.assertEqual( |
63 | | - response.status_code, 302 |
64 | | - ) |
65 | | - admin_index_url = reverse('admin:index') |
66 | | - self.assertEqual(response.headers.get('Location'), admin_index_url) |
| 72 | + def test_is_staff_is_verified_get_admin_login_redirects_to_admin_index(self): |
| 73 | + login_url = reverse('admin:login') |
| 74 | + index_url = reverse('admin:index') |
| 75 | + self.user = self.create_superuser() |
| 76 | + self.enable_otp(self.user) |
| 77 | + self.login_user() |
| 78 | + response = self.client.get(login_url) |
| 79 | + self.assertEqual(response.headers.get('Location'), index_url) |
0 commit comments