scinote-web/spec/permissions/controllers/api/v1/steps_controller_spec.rb
2022-08-31 16:37:00 +02:00

114 lines
2.5 KiB
Ruby

# frozen_string_literal: true
require 'rails_helper'
describe Api::V1::StepsController, type: :controller do
include PermissionExtends
it_behaves_like "a controller with authentication", {
show: {
id: 1,
team_id: 1,
project_id: 1,
experiment_id: 1,
task_id: 1,
protocol_id: 1,
id: 1
},
update: {
id: 1,
team_id: 1,
project_id: 1,
experiment_id: 1,
task_id: 1,
protocol_id: 1,
id: 1
},
create: {
id: 1,
team_id: 1,
project_id: 1,
experiment_id: 1,
task_id: 1,
protocol_id: 1
},
destroy: {
id: 1,
team_id: 1,
project_id: 1,
experiment_id: 1,
task_id: 1,
protocol_id: 1,
id: 1
},
index: {
id: 1,
team_id: 1,
project_id: 1,
experiment_id: 1,
task_id: 1,
protocol_id: 1
}
}, [],
:unauthorized
describe 'permissions checking' do
login_api_user
include_context 'reference_project_structure', {
team_role: :normal_user,
step: true,
result_text: true
}
let!(:result) { result_text.result }
it_behaves_like "a controller action with permissions checking", :get, :show do
let(:testable) { my_module }
let(:permissions) { [MyModulePermissions::READ] }
let(:action_params) {
{
team_id: team.id,
project_id: project.id,
experiment_id: experiment.id,
task_id: my_module.id,
protocol_id: step.protocol_id,
id: step.id
}
}
end
it_behaves_like "a controller action with permissions checking", :post, :create do
let(:testable) { my_module }
let(:permissions) { [MyModulePermissions::PROTOCOL_MANAGE] }
let(:action_params) {
{
team_id: team.id,
project_id: project.id,
experiment_id: experiment.id,
task_id: my_module.id,
protocol_id: step.protocol_id,
id: step.id
}
}
end
it_behaves_like "a controller action with permissions checking", :put, :update do
let(:testable) { my_module }
let(:permissions) { [MyModulePermissions::STEPS_MANAGE] }
let(:action_params) {
{
team_id: team.id,
project_id: project.id,
experiment_id: experiment.id,
task_id: my_module.id,
protocol_id: step.protocol_id,
data: { attributes: { name: 'Test' }, type: 'steps' },
id: step.id
}
}
end
end
end