forked from Github-Mirrors/canaille
34 lines
1,006 B
Python
34 lines
1,006 B
Python
from . import client_credentials
|
|
|
|
|
|
def test_token_introspection(testclient, user, client, token):
|
|
res = testclient.post(
|
|
"/oauth/introspect",
|
|
params=dict(
|
|
token=token.oauthAccessToken,
|
|
),
|
|
headers={"Authorization": f"Basic {client_credentials(client)}"},
|
|
status=200,
|
|
)
|
|
assert {
|
|
"active": True,
|
|
"client_id": client.oauthClientID,
|
|
"token_type": token.oauthTokenType,
|
|
"username": user.name,
|
|
"scope": token.get_scope(),
|
|
"sub": token.oauthSubject,
|
|
"aud": client.oauthClientID,
|
|
"iss": "https://mydomain.tld",
|
|
"exp": token.get_expires_at(),
|
|
"iat": token.get_issued_at(),
|
|
} == res.json
|
|
|
|
|
|
def test_token_invalid(testclient, client):
|
|
res = testclient.post(
|
|
"/oauth/introspect",
|
|
params=dict(token="invalid"),
|
|
headers={"Authorization": f"Basic {client_credentials(client)}"},
|
|
status=200,
|
|
)
|
|
assert {"active": False} == res.json
|