|
6 | 6 |
|
7 | 7 |
|
8 | 8 | @override_settings(ROOT_URLCONF='tests.urls_admin')
|
9 |
| -class AdminSiteTest(UserMixin, TestCase): |
10 |
| - |
11 |
| - def setUp(self): |
12 |
| - super().setUp() |
13 |
| - self.user = self.create_superuser() |
14 |
| - self.login_user() |
15 |
| - |
16 |
| - def test_default_admin(self): |
17 |
| - response = self.client.get('/admin/') |
18 |
| - self.assertEqual(response.status_code, 200) |
19 |
| - |
20 |
| - |
21 |
| -@override_settings(ROOT_URLCONF='tests.urls_otp_admin') |
22 | 9 | class OTPAdminSiteTest(UserMixin, TestCase):
|
23 | 10 | """
|
24 | 11 | otp_admin is admin console that needs OTP for access.
|
25 | 12 | Only admin users (is_staff and is_active)
|
26 | 13 | with OTP can access it.
|
27 | 14 | """
|
28 | 15 |
|
29 |
| - def test_admin_not_authenticated_with_otp_enabled(self): |
30 |
| - response = self.client.get('/otp_admin/', follow=True) |
31 |
| - redirect_to = '%s?next=/otp_admin/' % reverse('admin:login') |
| 16 | + def test_anonymous_get_admin_index_redirects_to_admin_login(self): |
| 17 | + index_url = reverse('admin:index') |
| 18 | + login_url = reverse('admin:login') |
| 19 | + response = self.client.get(index_url, follow=True) |
| 20 | + redirect_to = '%s?next=%s' % (login_url, index_url) |
32 | 21 | self.assertRedirects(response, redirect_to)
|
33 | 22 |
|
34 |
| - def test_otp_admin_without_otp(self): |
| 23 | + def test_anonymous_get_admin_logout_redirects_to_admin_index(self): |
| 24 | + # see: django.tests.admin_views.test_client_logout_url_can_be_used_to_login |
| 25 | + index_url = reverse('admin:index') |
| 26 | + logout_url = reverse('admin:logout') |
| 27 | + response = self.client.get(logout_url) |
| 28 | + self.assertEqual( |
| 29 | + response.status_code, 302 |
| 30 | + ) |
| 31 | + self.assertEqual(response.headers.get('Location'), index_url) |
| 32 | + |
| 33 | + def test_anonymous_get_admin_login(self): |
| 34 | + index_url = reverse('admin:index') |
| 35 | + login_url = reverse('admin:login') |
| 36 | + |
| 37 | + response = self.client.get(login_url, follow=True) |
| 38 | + self.assertEqual(response.status_code, 200) |
| 39 | + redirect_to = '%s?next=%s' % (login_url, index_url) |
| 40 | + self.assertRedirects(response, redirect_to) |
| 41 | + |
| 42 | + def test_is_staff_not_verified_not_setup_get_admin_index_redirects_to_setup(self): |
35 | 43 | """
|
36 | 44 | admins without MFA setup should be redirected to the setup page.
|
37 | 45 | """
|
| 46 | + index_url = reverse('admin:index') |
| 47 | + setup_url = reverse('two_factor:setup') |
38 | 48 | self.user = self.create_superuser()
|
39 | 49 | self.login_user()
|
40 |
| - response = self.client.get('/otp_admin/', follow=True) |
41 |
| - redirect_to = '%s?next=/admin/' % reverse('two_factor:setup') |
| 50 | + response = self.client.get(index_url, follow=True) |
| 51 | + redirect_to = '%s?next=%s' % (setup_url, index_url) |
42 | 52 | self.assertRedirects(response, redirect_to)
|
43 | 53 |
|
44 |
| - def test_otp_admin_without_otp_named_url(self): |
| 54 | + def test_is_staff_not_verified_not_setup_get_admin_login_redirects_to_setup(self): |
| 55 | + index_url = reverse('admin:index') |
| 56 | + login_url = reverse('admin:login') |
| 57 | + setup_url = reverse('two_factor:setup') |
45 | 58 | self.user = self.create_superuser()
|
46 | 59 | self.login_user()
|
47 |
| - response = self.client.get('/otp_admin/', follow=True) |
48 |
| - redirect_to = '%s?next=/admin/' % reverse('two_factor:setup') |
| 60 | + response = self.client.get(login_url, follow=True) |
| 61 | + redirect_to = '%s?next=%s' % (setup_url, index_url) |
49 | 62 | self.assertRedirects(response, redirect_to)
|
50 | 63 |
|
51 |
| - def test_otp_admin_with_otp(self): |
| 64 | + def test_is_staff_is_verified_get_admin_index(self): |
| 65 | + index_url = reverse('admin:index') |
52 | 66 | self.user = self.create_superuser()
|
53 | 67 | self.enable_otp(self.user)
|
54 | 68 | self.login_user()
|
55 |
| - response = self.client.get('/otp_admin/') |
| 69 | + response = self.client.get(index_url) |
56 | 70 | self.assertEqual(response.status_code, 200)
|
57 | 71 |
|
58 |
| - def test_client_logout_url_can_be_used_to_login(self): |
59 |
| - # see: django.tests.admin_views.test_client_logout_url_can_be_used_to_login |
60 |
| - admin_logout_url = reverse('admin:logout') |
61 |
| - response = self.client.get(admin_logout_url) |
62 |
| - self.assertEqual( |
63 |
| - response.status_code, 302 |
64 |
| - ) |
65 |
| - admin_index_url = reverse('admin:index') |
66 |
| - self.assertEqual(response.headers.get('Location'), admin_index_url) |
| 72 | + def test_is_staff_is_verified_get_admin_login_redirects_to_admin_index(self): |
| 73 | + login_url = reverse('admin:login') |
| 74 | + index_url = reverse('admin:index') |
| 75 | + self.user = self.create_superuser() |
| 76 | + self.enable_otp(self.user) |
| 77 | + self.login_user() |
| 78 | + response = self.client.get(login_url) |
| 79 | + self.assertEqual(response.headers.get('Location'), index_url) |
0 commit comments