Page Menu
Home
WickedGov Phorge
Search
Configure Global Search
Log In
Files
F4140897
PasswordPolicyChecksTest.php
No One
Temporary
Actions
Download File
Edit File
Delete File
View Transforms
Subscribe
Flag For Later
Award Token
Size
5 KB
Referenced Files
None
Subscribers
None
PasswordPolicyChecksTest.php
View Options
<?php
/**
* Testing password-policy check functions
*
* This program is free software; you can redistribute it and/or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation; either version 2 of the License, or
* (at your option) any later version.
*
* This program is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU General Public License for more details.
*
* You should have received a copy of the GNU General Public License along
* with this program; if not, write to the Free Software Foundation, Inc.,
* 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
* http://www.gnu.org/copyleft/gpl.html
*
* @file
*/
namespace
MediaWiki\Tests\Unit
;
use
MediaWiki\Password\PasswordPolicyChecks
;
use
MediaWiki\User\User
;
use
MediaWikiUnitTestCase
;
use
PHPUnit\Framework\MockObject\MockObject
;
/**
* Split from \PasswordPolicyChecksTest integration tests
*
* @coversDefaultClass \MediaWiki\Password\PasswordPolicyChecks
*/
class
PasswordPolicyChecksTest
extends
MediaWikiUnitTestCase
{
/**
* @param string $name
* @return User|MockObject
*/
private
function
getUser
(
$name
=
'user'
)
{
$user
=
$this
->
createMock
(
User
::
class
);
$user
->
method
(
'getName'
)->
willReturn
(
$name
);
return
$user
;
}
/**
* @covers ::checkMinimalPasswordLength
*/
public
function
testCheckMinimalPasswordLength
()
{
$statusOK
=
PasswordPolicyChecks
::
checkMinimalPasswordLength
(
3
,
// policy value
$this
->
getUser
(),
// User
'password'
// password
);
$this
->
assertStatusGood
(
$statusOK
,
'Password is longer than minimal policy'
);
$statusShort
=
PasswordPolicyChecks
::
checkMinimalPasswordLength
(
10
,
// policy value
$this
->
getUser
(),
// User
'password'
// password
);
$this
->
assertStatusWarning
(
'passwordtooshort'
,
$statusShort
,
'Password is shorter than minimal policy, not fatal'
);
}
/**
* @covers ::checkMinimumPasswordLengthToLogin
*/
public
function
testCheckMinimumPasswordLengthToLogin
()
{
$statusOK
=
PasswordPolicyChecks
::
checkMinimumPasswordLengthToLogin
(
3
,
// policy value
$this
->
getUser
(),
// User
'password'
// password
);
$this
->
assertStatusGood
(
$statusOK
,
'Password is longer than minimal policy'
);
$statusShort
=
PasswordPolicyChecks
::
checkMinimumPasswordLengthToLogin
(
10
,
// policy value
$this
->
getUser
(),
// User
'password'
// password
);
$this
->
assertStatusError
(
'passwordtooshort'
,
$statusShort
,
'Password is shorter than minimum login policy, fatal'
);
}
/**
* @covers ::checkMaximalPasswordLength
*/
public
function
testCheckMaximalPasswordLength
()
{
$statusOK
=
PasswordPolicyChecks
::
checkMaximalPasswordLength
(
100
,
// policy value
$this
->
getUser
(),
// User
'password'
// password
);
$this
->
assertStatusGood
(
$statusOK
,
'Password is shorter than maximal policy'
);
$statusLong
=
PasswordPolicyChecks
::
checkMaximalPasswordLength
(
4
,
// policy value
$this
->
getUser
(),
// User
'password'
// password
);
$this
->
assertStatusError
(
'passwordtoolong'
,
$statusLong
,
'Password is longer than maximal policy, fatal'
);
}
/**
* @covers ::checkPasswordCannotBeSubstringInUsername
*/
public
function
testCheckPasswordCannotBeSubstringInUsername
()
{
$statusOK
=
PasswordPolicyChecks
::
checkPasswordCannotBeSubstringInUsername
(
1
,
// policy value
$this
->
getUser
(),
// User
'password'
// password
);
$this
->
assertStatusGood
(
$statusOK
,
'Password is not a substring of username'
);
$statusLong
=
PasswordPolicyChecks
::
checkPasswordCannotBeSubstringInUsername
(
1
,
// policy value
$this
->
getUser
(
'123user123'
),
// User
'user'
// password
);
$this
->
assertStatusWarning
(
'password-substring-username-match'
,
$statusLong
,
'Password is a substring of username, not fatal'
);
}
/**
* @covers ::checkPasswordCannotMatchDefaults
* @dataProvider provideCheckPasswordCannotMatchDefaults
*/
public
function
testCheckPasswordCannotMatchDefaults
(
bool
$failureExpected
,
bool
$policyValue
,
string
$username
,
string
$password
)
{
$status
=
PasswordPolicyChecks
::
checkPasswordCannotMatchDefaults
(
$policyValue
,
$this
->
getUser
(
$username
),
$password
);
if
(
$failureExpected
)
{
$this
->
assertStatusWarning
(
'password-login-forbidden'
,
$status
);
}
else
{
$this
->
assertStatusGood
(
$status
,
'Password is not on defaults list'
);
}
}
public
static
function
provideCheckPasswordCannotMatchDefaults
()
{
return
[
'Unique username and password'
=>
[
false
,
true
,
'Unique username'
,
'AUniquePassword'
],
'Invalid combination'
=>
[
true
,
true
,
'Useruser1'
,
'Passpass1'
],
'Invalid password'
=>
[
true
,
true
,
'Whatever username'
,
'ExamplePassword'
],
'Uniques but no policy'
=>
[
false
,
false
,
'Unique username'
,
'AUniquePassword'
],
'Invalid combination but no policy'
=>
[
false
,
false
,
'Useruser1'
,
'Passpass1'
],
'Invalid password but no policy'
=>
[
false
,
false
,
'Whatever username'
,
'ExamplePassword'
],
];
}
/**
* @covers ::checkPasswordNotInCommonList
* @dataProvider provideCommonList
*/
public
function
testCheckNotInCommonList
(
$expected
,
$password
)
{
$status
=
PasswordPolicyChecks
::
checkPasswordNotInCommonList
(
true
,
$this
->
getUser
(
'username'
),
$password
);
$this
->
assertSame
(
$expected
,
$status
->
isGood
()
);
}
public
static
function
provideCommonList
()
{
return
[
[
false
,
'testpass'
],
[
false
,
'password'
],
[
false
,
'12345'
],
[
true
,
'DKn17egcA4'
],
[
true
,
'testwikijenkinspass'
],
];
}
}
File Metadata
Details
Attached
Mime Type
text/x-php
Expires
Wed, Aug 19, 15:43 (3 w, 6 d ago)
Storage Engine
local-disk
Storage Format
Raw Data
Storage Handle
fb/de/9da80adf3086e382881a14945b2a
Default Alt Text
PasswordPolicyChecksTest.php (5 KB)
Attached To
Mode
rMWPROD MediaWiki Production
Attached
Detach File
Event Timeline
Log In to Comment