RPCBaseTests.swift 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325
  1. // Copyright 2023 Google LLC
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. import Foundation
  15. import XCTest
  16. @testable import FirebaseAuth
  17. @available(iOS 13, tvOS 13, macOS 10.15, macCatalyst 13, watchOS 7, *)
  18. class RPCBaseTests: XCTestCase {
  19. let kEmail = "user@company.com"
  20. let kFakePassword = "!@#$%^"
  21. let kDisplayName = "User Doe"
  22. let kLocalID = "testLocalId"
  23. let kFakeOobCode = "fakeOobCode"
  24. let kRefreshToken = "fakeRefreshToken"
  25. let kCustomToken = "CUSTOM_TOKEN"
  26. let kFakeEmailSignInLink = "https://test.app.goo.gl/?link=https://test.firebase" +
  27. "app.com/__/auth/action?apiKey%3DtestAPIKey%26mode%3DsignIn%26oobCode%3Dtestoobcode%26continueU" +
  28. "rl%3Dhttps://test.apps.com&ibi=com.test.com&ifl=https://test.firebaseapp.com/__/auth/" +
  29. "action?apiKey%3DtestAPIKey%26mode%3DsignIn%26oobCode%3Dtestoobcode%26continueUrl%3Dhttps://" +
  30. "test.apps.com"
  31. let kFakeEmailSignInDeeplink =
  32. "https://example.domain.com/?apiKey=testAPIKey&oobCode=testoobcode&mode=signIn"
  33. let kContinueURL = "continueURL"
  34. let kIosBundleID = "testBundleID"
  35. let kAndroidPackageName = "androidpackagename"
  36. let kAndroidMinimumVersion = "3.0"
  37. let kDynamicLinkDomain = "test.page.link"
  38. let kTestPhotoURL = "https://host.domain/image"
  39. let kCreationDateTimeIntervalInSeconds = 1_505_858_500.0
  40. let kLastSignInDateTimeIntervalInSeconds = 1_505_858_583.0
  41. let kTestPhoneNumber = "415-555-1234"
  42. let kIdToken = "FAKE_ID_TOKEN"
  43. static let kOAuthSessionID = "sessionID"
  44. static let kOAuthRequestURI = "requestURI"
  45. let kGoogleIDToken = "GOOGLE_ID_TOKEN"
  46. let kGoogleAccessToken = "GOOGLE_ACCESS_TOKEN"
  47. let kGoogleID = "GOOGLE_ID"
  48. let kGoogleEmail = "usergmail.com"
  49. let kGoogleDisplayName = "Google Doe"
  50. let kGoogleProfile = ["email": "usergmail.com", "given_name": "MyFirst", "family_name": "MyLast"]
  51. let kUserName = "User Doe"
  52. /** @var kTestAPIKey
  53. @brief Fake API key used for testing.
  54. */
  55. let kTestAPIKey = "APIKey"
  56. /** @var kTestFirebaseAppID
  57. @brief Fake Firebase app ID used for testing.
  58. */
  59. let kTestFirebaseAppID = "appID"
  60. /** @var kTestIdentifier
  61. @brief Fake identifier key used for testing.
  62. */
  63. let kTestIdentifier = "Identifier"
  64. var rpcIssuer: FakeBackendRPCIssuer!
  65. override func setUp() {
  66. rpcIssuer = FakeBackendRPCIssuer()
  67. AuthBackend.setTestRPCIssuer(issuer: rpcIssuer)
  68. }
  69. override func tearDown() {
  70. rpcIssuer = nil
  71. AuthBackend.resetRPCIssuer()
  72. }
  73. /** @fn checkRequest
  74. @brief Tests the encoding of a request.
  75. */
  76. func checkRequest(request: any AuthRPCRequest,
  77. expected: String,
  78. key: String,
  79. value: String?,
  80. checkPostBody: Bool = false) async throws {
  81. rpcIssuer.respondBlock = {
  82. XCTAssertEqual(self.rpcIssuer.requestURL?.absoluteString, expected)
  83. if checkPostBody {
  84. XCTAssertFalse(request.containsPostBody)
  85. } else if let requestDictionary = self.rpcIssuer.decodedRequest as? [String: AnyHashable] {
  86. XCTAssertEqual(requestDictionary[key], value)
  87. } else {
  88. XCTFail("decodedRequest is not a dictionary")
  89. }
  90. // Dummy response to unblock await.
  91. let _ = try self.rpcIssuer?.respond(withJSON: [:])
  92. }
  93. let _ = try await AuthBackend.call(with: request)
  94. }
  95. /** @fn checkBackendError
  96. @brief This test checks error messages from the backend map to the expected error codes
  97. */
  98. func checkBackendError(request: any AuthRPCRequest,
  99. message: String = "",
  100. reason: String? = nil,
  101. json: [String: AnyHashable]? = nil,
  102. errorCode: AuthErrorCode,
  103. errorReason: String? = nil,
  104. underlyingErrorKey: String? = nil,
  105. checkLocalizedDescription: String? = nil) async throws {
  106. rpcIssuer.respondBlock = {
  107. if let json = json {
  108. _ = try self.rpcIssuer.respond(withJSON: json)
  109. } else if let reason = reason {
  110. _ = try self.rpcIssuer.respond(underlyingErrorMessage: reason, message: message)
  111. } else {
  112. _ = try self.rpcIssuer.respond(serverErrorMessage: message)
  113. }
  114. }
  115. do {
  116. let _ = try await AuthBackend.call(with: request)
  117. XCTFail("Did not throw expected error")
  118. return
  119. } catch {
  120. let rpcError = error as NSError
  121. XCTAssertEqual(rpcError.code, errorCode.rawValue)
  122. if errorCode == .internalError {
  123. let underlyingError = try XCTUnwrap(rpcError.userInfo[NSUnderlyingErrorKey] as? NSError)
  124. XCTAssertNotNil(underlyingError.userInfo[AuthErrorUtils.userInfoDeserializedResponseKey])
  125. }
  126. if let errorReason {
  127. XCTAssertEqual(errorReason, rpcError.userInfo[NSLocalizedFailureReasonErrorKey] as? String)
  128. }
  129. if let checkLocalizedDescription {
  130. let localizedDescription = try XCTUnwrap(rpcError
  131. .userInfo[NSLocalizedDescriptionKey] as? String)
  132. XCTAssertEqual(checkLocalizedDescription, localizedDescription)
  133. }
  134. }
  135. }
  136. func makeRequestConfiguration() -> AuthRequestConfiguration {
  137. return AuthRequestConfiguration(
  138. apiKey: kTestAPIKey,
  139. appID: kTestFirebaseAppID
  140. )
  141. }
  142. static let kFakeAccessToken =
  143. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZDBhODBiYzh" +
  144. "jM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  145. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vZmItc2EtdXBncm" +
  146. "FkZWQiLCJhdWQiOiJ0ZXN0X2F1ZCIsImF1dGhfdGltZSI6MTUyMjM2MDU0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZCIs" +
  147. "InN1YiI6InRlc3Rfc3ViIiwiaWF0IjoxNTIyMzYwNTU3LCJleHAiOjE1MjIzNjQxNTcsImVtYWlsIjoiYXVuaXRlc3R1c2" +
  148. "VyQGdtYWlsLmNvbSIsImVtYWlsX3ZlcmlmaWVkIjpmYWxzZSwiZmlyZWJhc2UiOnsiaWRlbnRpdGllcyI6eyJlbWFpbCI6" +
  149. "WyJhdW5pdGVzdHVzZXJAZ21haWwuY29tIl19LCJzaWduX2luX3Byb3ZpZGVyIjoicGFzc3dvcmQifX0=." +
  150. "WFQqSrpVnxx7m" +
  151. "UrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  152. "BKkcbZuq8O7iDVpOvqKC" +
  153. "3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  154. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjN" +
  155. "hHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  156. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbW" +
  157. "lddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  158. static let kFakeAccessTokenLength415 =
  159. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZD" +
  160. "BhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  161. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vdGVzd" +
  162. "CIsImF1ZCI6InRlc3RfYXVkIiwiYXV0aF90aW1lIjoxNTIyMzYwNTQ5LCJ1c2VyX2lkIjoidGVzdF91c2VyX2lkIiwic3V" +
  163. "iIjoidGVzdF9zdWIiLCJpYXQiOjE1MjIzNjA1NTcsImV4cCI6MTUyMjM2NDE1NywiZW1haWwiOiJhdW5pdGVzdHVzZXJAZ" +
  164. "21haWwuY29tIiwiZW1haWxfdmVyaWZpZWQiOmZhbHNlLCJmaXJlYmFzZSI6eyJpZGVudGl0aWVzIjp7ImVtYWlsIjpbImF" +
  165. "1bml0ZXN0dXNlckBnbWFpbC5jb20iXX0sInNpZ25faW5fcHJvdmlkZXIiOiJwYXNzd29yZCJ9fQ=.WFQqSrpVnxx7m" +
  166. "UrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  167. "BKkcbZuq8O7iDVpOvqKC" +
  168. "3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  169. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjN" +
  170. "hHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  171. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbW" +
  172. "lddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  173. static let kFakeAccessTokenLength416 =
  174. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZD" +
  175. "BhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  176. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vdGVzd" +
  177. "DIiLCJhdWQiOiJ0ZXN0X2F1ZCIsImF1dGhfdGltZSI6MTUyMjM2MDU0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZCIsInN" +
  178. "1YiI6InRlc3Rfc3ViIiwiaWF0IjoxNTIyMzYwNTU3LCJleHAiOjE1MjIzNjQxNTcsImVtYWlsIjoiYXVuaXRlc3R1c2VyQ" +
  179. "GdtYWlsLmNvbSIsImVtYWlsX3ZlcmlmaWVkIjpmYWxzZSwiZmlyZWJhc2UiOnsiaWRlbnRpdGllcyI6eyJlbWFpbCI6WyJ" +
  180. "hdW5pdGVzdHVzZXJAZ21haWwuY29tIl19LCJzaWduX2luX3Byb3ZpZGVyIjoicGFzc3dvcmQifX0=.WFQqSrpVnxx7m" +
  181. "UrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  182. "BKkcbZuq8O7iDVpOvqKC" +
  183. "3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  184. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjN" +
  185. "hHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  186. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbW" +
  187. "lddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  188. static let kFakeAccessTokenLength523 =
  189. "eyJhbGciOimnuzI1NiIsImtpZCI6ImY1YjE4Mjc2YTQ4NjYxZD" +
  190. "BhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  191. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2dsZS5jb20vdGVzd" +
  192. "DQiLCJhdWQiOiJ0ZXN0X2F1ZCIsImF1dGhfdGltZSI6MTUyMjM2MDU0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZF81NDM" +
  193. "yIiwic3ViIjoidGVzdF9zdWIiLCJpYXQiOjE1MjIzNjA1NTcsImV4cCI6MTUyMjM2NDE1OSwiZW1haWwiOiJhdW5pdGVzd" +
  194. "HVzZXI0QGdtYWlsLmNvbSIsImVtYWlsX3ZlcmlmaWVkIjp0cnVlLCJmaXJlYmFzZSI6eyJpZGVudGl0aWVzIjp7ImVtYWl" +
  195. "sIjpbImF1bml0ZXN0dXNlckBnbWFpbC5jb20iXX0sInNpZ25faW5fcHJvdmlkZXIiOiJwYXNzd29yZCJ9fQ=." +
  196. "WFQqSrpVn" +
  197. "xx7mUrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-aTYMvND3-4aS3qRnN2kvk9KJAaF3eI_" +
  198. "BKkcbZuq8O7iDVpO" +
  199. "vqKC3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  200. "XtBt1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH" +
  201. "7jjNhHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  202. "dDV7jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqV" +
  203. "kPbWlddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  204. static let kFakeAccessTokenWithBase64 =
  205. "ey?hbGciOimnuzI1NiIsImtpZCI6ImY1YjE4M" +
  206. "jc2YTQ4NjYxZDBhODBiYzhjM2U5NDM0OTc0ZDFmMWRiNTEifQ." +
  207. "eyJpc3MiOiJodHRwczovL3NlY3VyZXRva2VuLmdvb2ds" +
  208. "ZS5jb20vZmItc2EtdXBncmFkZWQiLCJhdWQiOiI_Pz8_Pz8_Pz8_Pj4-Pj4-Pj4-" +
  209. "PiIsImF1dGhfdGltZSI6MTUyMjM2MD" +
  210. "U0OSwidXNlcl9pZCI6InRlc3RfdXNlcl9pZCIsInN1YiI6InRlc3Rfc3ViIiwiaWF0IjoxNTIyMzYwNTU3LCJleHAiOjE1" +
  211. "MjIzNjQxNTcsImVtYWlsIjoiPj4-Pj4-Pj4_Pz8_Pz8_" +
  212. "P0BnbWFpbC5jb20iLCJlbWFpbF92ZXJpZmllZCI6ZmFsc2UsIm" +
  213. "ZpcmViYXNlIjp7ImlkZW50aXRpZXMiOnsiZW1haWwiOlsiYXVuaXRlc3R1c2VyQGdtYWlsLmNvbSJdfSwic2lnbl9pbl9w" +
  214. "cm92aWRlciI6IlBhc3N3b3JkIn19.WFQqSrpVnxx7mUrdKZA517Sp4ZBt-l2xQzGKNMVE90JB3vuNa-NyWZC-" +
  215. "aTYMvND3-" +
  216. "4aS3qRnN2kvk9KJAaF3eI_BKkcbZuq8O7iDVpOvqKC3QcW0PnwqSPChL3XqoDF322FcBEgemwwgaEVZMuo7GhJvHw-" +
  217. "XtBt" +
  218. "1KRXOoGHcr3P6RsvoulUouKQmqt6TP27eZtrgH7jjNhHm7gjX_WaRmgTOvYsuDbBBGdE15yIVZ3acI4cFUgwMRhaW-" +
  219. "dDV7" +
  220. "jTOqZGYJlTsI5oRMehphoVnYnEedJga28r4mqVkPbWlddL4dVVm85FYmQcRc0b2CLMnSevBDlwu754ZUZmRgnuvDA"
  221. func setFakeSecureTokenService(fakeAccessToken: String = RPCBaseTests.kFakeAccessToken) {
  222. rpcIssuer?.fakeSecureTokenServiceJSON = ["access_token": fakeAccessToken,
  223. "expires_in": "3600"]
  224. }
  225. func setFakeGetAccountProvider(withNewDisplayName displayName: String = "User Doe",
  226. withLocalID localID: String = "testLocalId",
  227. withProviderID providerID: String = "testProviderID",
  228. withFederatedID federatedID: String = "testFederatedId",
  229. withEmail email: String = "user@company.com",
  230. withPasswordHash passwordHash: String? = nil) {
  231. let kProviderUserInfoKey = "providerUserInfo"
  232. let kPhotoUrlKey = "photoUrl"
  233. let kProviderIDkey = "providerId"
  234. let kDisplayNameKey = "displayName"
  235. let kFederatedIDKey = "federatedId"
  236. let kEmailKey = "email"
  237. let kPasswordHashKey = "passwordHash"
  238. let kTestPasswordHash = passwordHash
  239. let kEmailVerifiedKey = "emailVerified"
  240. let kLocalIDKey = "localId"
  241. rpcIssuer?.fakeGetAccountProviderJSON = [[
  242. kProviderUserInfoKey: [[
  243. kProviderIDkey: providerID,
  244. kDisplayNameKey: displayName,
  245. kPhotoUrlKey: kTestPhotoURL,
  246. kFederatedIDKey: federatedID,
  247. kEmailKey: email,
  248. ]],
  249. kLocalIDKey: localID,
  250. kDisplayNameKey: displayName,
  251. kEmailKey: email,
  252. kPhotoUrlKey: kTestPhotoURL,
  253. kEmailVerifiedKey: true,
  254. kPasswordHashKey: kTestPasswordHash,
  255. "phoneNumber": kTestPhoneNumber,
  256. ]]
  257. }
  258. func setFakeGoogleGetAccountProvider() {
  259. setFakeGetAccountProvider(withNewDisplayName: kGoogleDisplayName,
  260. withProviderID: GoogleAuthProvider.id,
  261. withFederatedID: kGoogleID,
  262. withEmail: kGoogleEmail)
  263. }
  264. func setFakeGetAccountProviderAnonymous() {
  265. let kPasswordHashKey = "passwordHash"
  266. let kTestPasswordHash = "testPasswordHash"
  267. let kLocalIDKey = "localId"
  268. rpcIssuer?.fakeGetAccountProviderJSON = [[
  269. kLocalIDKey: kLocalID,
  270. kPasswordHashKey: kTestPasswordHash,
  271. ]]
  272. }
  273. func fakeActionCodeSettings() -> ActionCodeSettings {
  274. let settings = ActionCodeSettings()
  275. settings.iOSBundleID = kIosBundleID
  276. settings.setAndroidPackageName(kAndroidPackageName,
  277. installIfNotAvailable: true,
  278. minimumVersion: kAndroidMinimumVersion)
  279. settings.handleCodeInApp = true
  280. settings.url = URL(string: kContinueURL)
  281. settings.dynamicLinkDomain = kDynamicLinkDomain
  282. return settings
  283. }
  284. func assertUserGoogle(_ user: User?) throws {
  285. let user = try XCTUnwrap(user)
  286. XCTAssertEqual(user.uid, kLocalID)
  287. XCTAssertEqual(user.displayName, kGoogleDisplayName)
  288. XCTAssertEqual(user.providerData.count, 1)
  289. let googleUserInfo = user.providerData[0]
  290. XCTAssertEqual(googleUserInfo.providerID, GoogleAuthProvider.id)
  291. XCTAssertEqual(googleUserInfo.uid, kGoogleID)
  292. XCTAssertEqual(googleUserInfo.displayName, kGoogleDisplayName)
  293. XCTAssertEqual(googleUserInfo.email, kGoogleEmail)
  294. }
  295. /// Sleep long enough for pending async task to start.
  296. static func waitSleep() {
  297. usleep(10000)
  298. }
  299. }