import { omit } from 'lodash'
import 'mocha'
import { join } from 'path'
-import { UserRole, VideoImport, VideoImportState } from '../../../../shared'
+import { User, UserRole, VideoImport, VideoImportState } from '../../../../shared'
import {
addVideoChannel,
const path = '/api/v1/users/'
let userId: number
let rootId: number
+ let moderatorId: number
let videoId: number
let server: ServerInfo
let serverWithRegistrationDisabled: ServerInfo
let userAccessToken = ''
+ let moderatorAccessToken = ''
let channelId: number
- const user = {
- username: 'user1',
- password: 'my super password'
- }
// ---------------------------------------------------------------
before(async function () {
this.timeout(30000)
- server = await flushAndRunServer(1)
- serverWithRegistrationDisabled = await flushAndRunServer(2)
+ {
+ const res = await Promise.all([
+ flushAndRunServer(1, { signup: { limit: 7 } }),
+ flushAndRunServer(2)
+ ])
- await setAccessTokensToServers([ server ])
+ server = res[0]
+ serverWithRegistrationDisabled = res[1]
- const videoQuota = 42000000
- await createUser({
- url: server.url,
- accessToken: server.accessToken,
- username: user.username,
- password: user.password,
- videoQuota: videoQuota
- })
- userAccessToken = await userLogin(server, user)
+ await setAccessTokensToServers([ server ])
+ }
+
+ {
+ const user = {
+ username: 'user1',
+ password: 'my super password'
+ }
+
+ const videoQuota = 42000000
+ await createUser({
+ url: server.url,
+ accessToken: server.accessToken,
+ username: user.username,
+ password: user.password,
+ videoQuota: videoQuota
+ })
+ userAccessToken = await userLogin(server, user)
+ }
+
+ {
+ const moderator = {
+ username: 'moderator1',
+ password: 'super password'
+ }
+
+ await createUser({
+ url: server.url,
+ accessToken: server.accessToken,
+ username: moderator.username,
+ password: moderator.password,
+ role: UserRole.MODERATOR
+ })
+
+ moderatorAccessToken = await userLogin(server, moderator)
+ }
+
+ {
+ const moderator = {
+ username: 'moderator2',
+ password: 'super password'
+ }
+
+ await createUser({
+ url: server.url,
+ accessToken: server.accessToken,
+ username: moderator.username,
+ password: moderator.password,
+ role: UserRole.MODERATOR
+ })
+ }
{
const res = await getMyUserInformation(server.url, server.accessToken)
const res = await uploadVideo(server.url, server.accessToken, {})
videoId = res.body.video.id
}
+
+ {
+ const res = await getUsersList(server.url, server.accessToken)
+ const users: User[] = res.body.data
+
+ userId = users.find(u => u.username === 'user1').id
+ rootId = users.find(u => u.username === 'root').id
+ moderatorId = users.find(u => u.username === 'moderator2').id
+ }
})
describe('When listing users', function () {
})
})
+ it('Should fail to create a moderator or an admin with a moderator', async function () {
+ for (const role of [ UserRole.MODERATOR, UserRole.ADMINISTRATOR ]) {
+ const fields = immutableAssign(baseCorrectParams, { role })
+
+ await makePostBodyRequest({
+ url: server.url,
+ path,
+ token: moderatorAccessToken,
+ fields,
+ statusCodeExpected: 403
+ })
+ }
+ })
+
+ it('Should succeed to create a user with a moderator', async function () {
+ const fields = immutableAssign(baseCorrectParams, { username: 'a4656', email: 'a4656@example.com', role: UserRole.USER })
+
+ await makePostBodyRequest({
+ url: server.url,
+ path,
+ token: moderatorAccessToken,
+ fields,
+ statusCodeExpected: 200
+ })
+ })
+
it('Should succeed with the correct params', async function () {
await makePostBodyRequest({
url: server.url,
await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields })
})
+ it('Should fail with an invalid videoLanguages attribute', async function () {
+ {
+ const fields = {
+ videoLanguages: 'toto'
+ }
+
+ await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields })
+ }
+
+ {
+ const languages = []
+ for (let i = 0; i < 1000; i++) {
+ languages.push('fr')
+ }
+
+ const fields = {
+ videoLanguages: languages
+ }
+
+ await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields })
+ }
+ })
+
+ it('Should fail with an invalid theme', async function () {
+ const fields = { theme: 'invalid' }
+ await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields })
+ })
+
+ it('Should fail with an unknown theme', async function () {
+ const fields = { theme: 'peertube-theme-unknown' }
+ await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields })
+ })
+
+ it('Should fail with an invalid noInstanceConfigWarningModal attribute', async function () {
+ const fields = {
+ noInstanceConfigWarningModal: -1
+ }
+
+ await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields })
+ })
+
+ it('Should fail with an invalid noWelcomeModal attribute', async function () {
+ const fields = {
+ noWelcomeModal: -1
+ }
+
+ await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields })
+ })
+
it('Should succeed to change password with the correct params', async function () {
const fields = {
currentPassword: 'my super password',
password: 'my super password',
nsfwPolicy: 'blur',
autoPlayVideo: false,
- email: 'super_email@example.com'
+ email: 'super_email@example.com',
+ theme: 'default',
+ noInstanceConfigWarningModal: true,
+ noWelcomeModal: true
}
await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields, statusCodeExpected: 204 })
it('Should succeed without password change with the correct params', async function () {
const fields = {
nsfwPolicy: 'blur',
- autoPlayVideo: false,
- email: 'super_email@example.com'
+ autoPlayVideo: false
}
await makePutBodyRequest({ url: server.url, path: path + 'me', token: userAccessToken, fields, statusCodeExpected: 204 })
})
describe('When getting a user', function () {
- before(async function () {
- const res = await getUsersList(server.url, server.accessToken)
-
- userId = res.body.data[1].id
- })
it('Should fail with an non authenticated user', async function () {
await makeGetRequest({ url: server.url, path: path + userId, token: 'super token', statusCodeExpected: 401 })
describe('When updating a user', function () {
- before(async function () {
- const res = await getUsersList(server.url, server.accessToken)
-
- userId = res.body.data[1].id
- rootId = res.body.data[2].id
- })
-
it('Should fail with an invalid email attribute', async function () {
const fields = {
email: 'blabla'
it('Should fail with invalid admin flags', async function () {
const fields = { adminFlags: 'toto' }
- await makePostBodyRequest({ url: server.url, path, token: server.accessToken, fields })
+ await makePutBodyRequest({ url: server.url, path, token: server.accessToken, fields })
+ })
+
+ it('Should fail to update an admin with a moderator', async function () {
+ const fields = {
+ videoQuota: 42
+ }
+
+ await makePutBodyRequest({
+ url: server.url,
+ path: path + moderatorId,
+ token: moderatorAccessToken,
+ fields,
+ statusCodeExpected: 403
+ })
+ })
+
+ it('Should succeed to update a user with a moderator', async function () {
+ const fields = {
+ videoQuota: 42
+ }
+
+ await makePutBodyRequest({
+ url: server.url,
+ path: path + userId,
+ token: moderatorAccessToken,
+ fields,
+ statusCodeExpected: 204
+ })
})
it('Should succeed with the correct params', async function () {
await blockUser(server.url, userId, userAccessToken, 403)
await unblockUser(server.url, userId, userAccessToken, 403)
})
+
+ it('Should fail on a moderator with a moderator', async function () {
+ await removeUser(server.url, moderatorId, moderatorAccessToken, 403)
+ await blockUser(server.url, moderatorId, moderatorAccessToken, 403)
+ await unblockUser(server.url, moderatorId, moderatorAccessToken, 403)
+ })
+
+ it('Should succeed on a user with a moderator', async function () {
+ await blockUser(server.url, userId, moderatorAccessToken)
+ await unblockUser(server.url, userId, moderatorAccessToken)
+ })
})
describe('When deleting our account', function () {