summaryrefslogtreecommitdiff
path: root/pkg/authz/remote_check_service_test.go
blob: 338625f485bd3127aa688d424d87e1058c83a16a (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
package authz

import (
	"context"
	"net"
	"testing"

	auth "github.com/envoyproxy/go-control-plane/envoy/service/auth/v3"
	"github.com/stretchr/testify/assert"
	"github.com/stretchr/testify/require"
	"google.golang.org/grpc"
	"google.golang.org/grpc/codes"
	"google.golang.org/grpc/credentials/insecure"
	"google.golang.org/grpc/test/bufconn"
)

func TestRemoteCheckService(t *testing.T) {
	t.Run("Check", func(t *testing.T) {
		t.Run("when a client is not configured", func(t *testing.T) {
			svc := NewRemoteCheckService(nil)

			result, err := svc.Check(t.Context(), &auth.CheckRequest{})

			require.Nil(t, result)
			require.Error(t, err)
		})

		t.Run("when a client is configured", func(t *testing.T) {
			socket := bufconn.Listen(1024 * 1024)
			srv := grpc.NewServer()
			auth.RegisterAuthorizationServer(srv, NewLocalCheckService())

			defer srv.GracefulStop()
			go func() {
				require.NoError(t, srv.Serve(socket))
			}()

			connection, err := grpc.DialContext(
				t.Context(),
				"bufnet",
				grpc.WithContextDialer(func(context.Context, string) (net.Conn, error) {
					return socket.Dial()
				}),
				grpc.WithTransportCredentials(insecure.NewCredentials()),
			)
			require.NoError(t, err)
			defer connection.Close()

			t.Run("returns a response from the client", func(t *testing.T) {
				client := auth.NewAuthorizationClient(connection)
				svc := NewRemoteCheckService(client)

				response, err := svc.Check(t.Context(), &auth.CheckRequest{
					Attributes: &auth.AttributeContext{
						Request: &auth.AttributeContext_Request{
							Http: &auth.AttributeContext_HttpRequest{
								Method: "GET",
								Path:   "/",
							},
						},
					},
				})

				require.NoError(t, err)
				assert.Equal(t, int32(codes.OK), response.Status.Code)
			})
		})
	})
}