Sha256: 0395c0dac0c3c90960ae6141c161559079d0672ec30e226096ef895c90489c31

Contents?: true

Size: 1.65 KB

Versions: 2

Compression:

Stored size: 1.65 KB

Contents

require 'spec_helper'

describe Rack::OAuth2::Server::Authorize::Extension::CodeAndIdToken do
  subject { response }
  let(:request)      { Rack::MockRequest.new app }
  let(:response)     { request.get("/?response_type=code%20id_token&client_id=client&state=state") }
  let(:redirect_uri) { 'http://client.example.com/callback' }
  let(:code)         { 'authorization_code' }
  let :id_token do
    OpenIDConnect::ResponseObject::IdToken.new(
      :iss => 'https://server.example.com',
      :user_id => 'user_id',
      :aud => 'client_id',
      :nonce => 'nonce',
      :exp => 1313424327,
      :iat => 1313420327
    ).to_jwt private_key
  end

  context "when id_token is given" do
    let :app do
      Rack::OAuth2::Server::Authorize.new do |request, response|
        response.redirect_uri = redirect_uri
        response.code = code
        response.id_token = id_token
        response.approve!
      end
    end
    its(:status)   { should == 302 }
    its(:location) { should include "#{redirect_uri}#" }
    its(:location) { should include "code=#{code}" }
    its(:location) { should include "id_token=#{id_token}" }
    its(:location) { should include "state=state" }

    context 'when id_token is String' do
      let(:id_token) { 'non_jwt_string' }
      its(:location) { should include "id_token=non_jwt_string" }
    end
  end

  context "otherwise" do
    let :app do
      Rack::OAuth2::Server::Authorize.new do |request, response|
        response.redirect_uri = redirect_uri
        response.code = code
        response.approve!
      end
    end
    it do
      expect { response }.to raise_error AttrRequired::AttrMissing, "'id_token' required."
    end
  end
end

Version data entries

2 entries across 2 versions & 1 rubygems

Version Path
openid_connect-0.3.3 spec/rack/oauth2/server/authorize/extension/code_and_id_token_spec.rb
openid_connect-0.3.2 spec/rack/oauth2/server/authorize/extension/code_and_id_token_spec.rb