summaryrefslogtreecommitdiff
path: root/pkg/test/oidc_server.go
blob: 152d68521bfcdc16e21fb8e8470ddf917a185f97 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
package test

import (
	"net/http"
	"strconv"
	"testing"
	"time"

	"github.com/coreos/go-oidc/v3/oidc"
	"github.com/oauth2-proxy/mockoidc"
	"github.com/stretchr/testify/require"
	"golang.org/x/oauth2"
)

type TestServer struct {
	*mockoidc.MockOIDC
	*oauth2.Config
	*oidc.Provider
	*testing.T
}

func NewOIDCServer(t *testing.T) *TestServer {
	srv, err := mockoidc.Run()
	require.NoError(t, err)

	srv.AddMiddleware(func(next http.Handler) http.Handler {
		return http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
			t.Logf("%v %v %v\n", r.Method, r.URL.Path, r.URL.Query())
			next.ServeHTTP(w, r)
		})
	})

	provider, err := oidc.NewProvider(t.Context(), srv.Issuer())
	require.NoError(t, err)

	config := &oauth2.Config{
		ClientID:     srv.Config().ClientID,
		ClientSecret: srv.Config().ClientSecret,
		RedirectURL:  "https://example.com/oauth/callback",
		Endpoint:     provider.Endpoint(),
		Scopes:       []string{oidc.ScopeOpenID, "profile", "email"},
	}

	return &TestServer{
		srv,
		config,
		provider,
		t,
	}
}

func (srv *TestServer) CreateAuthorizationCodeFor(user mockoidc.User) string {
	code := strconv.FormatInt(time.Now().Unix(), 10)
	srv.QueueUser(user)
	srv.QueueCode(code)

	response, err := http.Get(srv.AuthCodeURL("state"))
	require.NoError(srv, err)
	srv.Logf("%v\n", response)

	return code
}

func (srv *TestServer) CreateTokenFor(user mockoidc.User) *oauth2.Token {
	code := srv.CreateAuthorizationCodeFor(user)
	token, err := srv.Exchange(srv.Context(), code)
	require.NoError(srv, err)
	return token
}

func (srv *TestServer) CreateTokensFor(user mockoidc.User) (*oauth2.Token, string) {
	token := srv.CreateTokenFor(user)
	rawIDToken, ok := token.Extra("id_token").(string)
	require.True(srv, ok)
	return token, rawIDToken
}

func (s *TestServer) Close() {
	s.Shutdown()
}