RoutingMiddlewareTest.php 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426
  1. <?php
  2. /**
  3. * CakePHP(tm) : Rapid Development Framework (https://cakephp.org)
  4. * Copyright (c) Cake Software Foundation, Inc. (https://cakefoundation.org)
  5. *
  6. * Licensed under The MIT License
  7. * For full copyright and license information, please see the LICENSE.txt
  8. * Redistributions of files must retain the above copyright notice.
  9. *
  10. * @copyright Copyright (c) Cake Software Foundation, Inc. (https://cakefoundation.org)
  11. * @link https://cakephp.org CakePHP(tm) Project
  12. * @since 3.3.0
  13. * @license https://opensource.org/licenses/mit-license.php MIT License
  14. */
  15. namespace Cake\Test\TestCase\Routing\Middleware;
  16. use Cake\Routing\Middleware\RoutingMiddleware;
  17. use Cake\Routing\Router;
  18. use Cake\TestSuite\TestCase;
  19. use TestApp\Application;
  20. use TestApp\Middleware\DumbMiddleware;
  21. use Zend\Diactoros\Response;
  22. use Zend\Diactoros\ServerRequestFactory;
  23. /**
  24. * Test for RoutingMiddleware
  25. */
  26. class RoutingMiddlewareTest extends TestCase
  27. {
  28. protected $log = [];
  29. /**
  30. * Setup method
  31. *
  32. * @return void
  33. */
  34. public function setUp()
  35. {
  36. parent::setUp();
  37. Router::reload();
  38. Router::connect('/articles', ['controller' => 'Articles', 'action' => 'index']);
  39. $this->log = [];
  40. }
  41. /**
  42. * Test redirect responses from redirect routes
  43. *
  44. * @return void
  45. */
  46. public function testRedirectResponse()
  47. {
  48. Router::redirect('/testpath', '/pages');
  49. $request = ServerRequestFactory::fromGlobals(['REQUEST_URI' => '/testpath']);
  50. $request = $request->withAttribute('base', '/subdir');
  51. $response = new Response();
  52. $next = function ($req, $res) {
  53. };
  54. $middleware = new RoutingMiddleware();
  55. $response = $middleware($request, $response, $next);
  56. $this->assertEquals(301, $response->getStatusCode());
  57. $this->assertEquals('http://localhost/subdir/pages', $response->getHeaderLine('Location'));
  58. }
  59. /**
  60. * Test redirects with additional headers
  61. *
  62. * @return void
  63. */
  64. public function testRedirectResponseWithHeaders()
  65. {
  66. Router::redirect('/testpath', '/pages');
  67. $request = ServerRequestFactory::fromGlobals(['REQUEST_URI' => '/testpath']);
  68. $response = new Response('php://memory', 200, ['X-testing' => 'Yes']);
  69. $next = function ($req, $res) {
  70. };
  71. $middleware = new RoutingMiddleware();
  72. $response = $middleware($request, $response, $next);
  73. $this->assertEquals(301, $response->getStatusCode());
  74. $this->assertEquals('http://localhost/pages', $response->getHeaderLine('Location'));
  75. $this->assertEquals('Yes', $response->getHeaderLine('X-testing'));
  76. }
  77. /**
  78. * Test that Router sets parameters
  79. *
  80. * @return void
  81. */
  82. public function testRouterSetParams()
  83. {
  84. $request = ServerRequestFactory::fromGlobals(['REQUEST_URI' => '/articles']);
  85. $response = new Response();
  86. $next = function ($req, $res) {
  87. $expected = [
  88. 'controller' => 'Articles',
  89. 'action' => 'index',
  90. 'plugin' => null,
  91. 'pass' => [],
  92. '_matchedRoute' => '/articles'
  93. ];
  94. $this->assertEquals($expected, $req->getAttribute('params'));
  95. };
  96. $middleware = new RoutingMiddleware();
  97. $middleware($request, $response, $next);
  98. }
  99. /**
  100. * Test routing middleware does wipe off existing params keys.
  101. *
  102. * @return void
  103. */
  104. public function testPreservingExistingParams()
  105. {
  106. $request = ServerRequestFactory::fromGlobals(['REQUEST_URI' => '/articles']);
  107. $request = $request->withAttribute('params', ['_csrfToken' => 'i-am-groot']);
  108. $response = new Response();
  109. $next = function ($req, $res) {
  110. $expected = [
  111. 'controller' => 'Articles',
  112. 'action' => 'index',
  113. 'plugin' => null,
  114. 'pass' => [],
  115. '_matchedRoute' => '/articles',
  116. '_csrfToken' => 'i-am-groot'
  117. ];
  118. $this->assertEquals($expected, $req->getAttribute('params'));
  119. };
  120. $middleware = new RoutingMiddleware();
  121. $middleware($request, $response, $next);
  122. }
  123. /**
  124. * Test middleware invoking hook method
  125. *
  126. * @return void
  127. */
  128. public function testRoutesHookInvokedOnApp()
  129. {
  130. Router::reload();
  131. $this->assertFalse(Router::$initialized, 'Router precondition failed');
  132. $request = ServerRequestFactory::fromGlobals(['REQUEST_URI' => '/app/articles']);
  133. $response = new Response();
  134. $next = function ($req, $res) {
  135. $expected = [
  136. 'controller' => 'Articles',
  137. 'action' => 'index',
  138. 'plugin' => null,
  139. 'pass' => [],
  140. '_matchedRoute' => '/app/articles'
  141. ];
  142. $this->assertEquals($expected, $req->getAttribute('params'));
  143. $this->assertTrue(Router::$initialized, 'Router state should indicate routes loaded');
  144. $this->assertNotEmpty(Router::routes());
  145. $this->assertEquals('/app/articles', Router::routes()[0]->template);
  146. };
  147. $app = new Application(CONFIG);
  148. $middleware = new RoutingMiddleware($app);
  149. $middleware($request, $response, $next);
  150. }
  151. /**
  152. * Test that routing is not applied if a controller exists already
  153. *
  154. * @return void
  155. */
  156. public function testRouterNoopOnController()
  157. {
  158. $request = ServerRequestFactory::fromGlobals(['REQUEST_URI' => '/articles']);
  159. $request = $request->withAttribute('params', ['controller' => 'Articles']);
  160. $response = new Response();
  161. $next = function ($req, $res) {
  162. $this->assertEquals(['controller' => 'Articles'], $req->getAttribute('params'));
  163. };
  164. $middleware = new RoutingMiddleware();
  165. $middleware($request, $response, $next);
  166. }
  167. /**
  168. * Test missing routes not being caught.
  169. *
  170. */
  171. public function testMissingRouteNotCaught()
  172. {
  173. $this->expectException(\Cake\Routing\Exception\MissingRouteException::class);
  174. $request = ServerRequestFactory::fromGlobals(['REQUEST_URI' => '/missing']);
  175. $response = new Response();
  176. $next = function ($req, $res) {
  177. };
  178. $middleware = new RoutingMiddleware();
  179. $middleware($request, $response, $next);
  180. }
  181. /**
  182. * Test route with _method being parsed correctly.
  183. *
  184. * @return void
  185. */
  186. public function testFakedRequestMethodParsed()
  187. {
  188. Router::connect('/articles-patch', [
  189. 'controller' => 'Articles',
  190. 'action' => 'index',
  191. '_method' => 'PATCH'
  192. ]);
  193. $request = ServerRequestFactory::fromGlobals(
  194. [
  195. 'REQUEST_METHOD' => 'POST',
  196. 'REQUEST_URI' => '/articles-patch'
  197. ],
  198. null,
  199. ['_method' => 'PATCH']
  200. );
  201. $response = new Response();
  202. $next = function ($req, $res) {
  203. $expected = [
  204. 'controller' => 'Articles',
  205. 'action' => 'index',
  206. '_method' => 'PATCH',
  207. 'plugin' => null,
  208. 'pass' => [],
  209. '_matchedRoute' => '/articles-patch'
  210. ];
  211. $this->assertEquals($expected, $req->getAttribute('params'));
  212. $this->assertEquals('PATCH', $req->getMethod());
  213. };
  214. $middleware = new RoutingMiddleware();
  215. $middleware($request, $response, $next);
  216. }
  217. /**
  218. * Test invoking simple scoped middleware
  219. *
  220. * @return void
  221. */
  222. public function testInvokeScopedMiddleware()
  223. {
  224. Router::scope('/api', function ($routes) {
  225. $routes->registerMiddleware('first', function ($req, $res, $next) {
  226. $this->log[] = 'first';
  227. return $next($req, $res);
  228. });
  229. $routes->registerMiddleware('second', function ($req, $res, $next) {
  230. $this->log[] = 'second';
  231. return $next($req, $res);
  232. });
  233. $routes->registerMiddleware('dumb', DumbMiddleware::class);
  234. // Connect middleware in reverse to test ordering.
  235. $routes->applyMiddleware('second', 'first', 'dumb');
  236. $routes->connect('/ping', ['controller' => 'Pings']);
  237. });
  238. $request = ServerRequestFactory::fromGlobals([
  239. 'REQUEST_METHOD' => 'GET',
  240. 'REQUEST_URI' => '/api/ping'
  241. ]);
  242. $response = new Response();
  243. $next = function ($req, $res) {
  244. $this->log[] = 'last';
  245. return $res;
  246. };
  247. $middleware = new RoutingMiddleware();
  248. $result = $middleware($request, $response, $next);
  249. $this->assertSame($response, $result, 'Should return result');
  250. $this->assertSame(['second', 'first', 'last'], $this->log);
  251. }
  252. /**
  253. * Test control flow in scoped middleware.
  254. *
  255. * Scoped middleware should be able to generate a response
  256. * and abort lower layers.
  257. *
  258. * @return void
  259. */
  260. public function testInvokeScopedMiddlewareReturnResponse()
  261. {
  262. Router::scope('/', function ($routes) {
  263. $routes->registerMiddleware('first', function ($req, $res, $next) {
  264. $this->log[] = 'first';
  265. return $next($req, $res);
  266. });
  267. $routes->registerMiddleware('second', function ($req, $res, $next) {
  268. $this->log[] = 'second';
  269. return $res;
  270. });
  271. $routes->applyMiddleware('first');
  272. $routes->connect('/', ['controller' => 'Home']);
  273. $routes->scope('/api', function ($routes) {
  274. $routes->applyMiddleware('second');
  275. $routes->connect('/articles', ['controller' => 'Articles']);
  276. });
  277. });
  278. $request = ServerRequestFactory::fromGlobals([
  279. 'REQUEST_METHOD' => 'GET',
  280. 'REQUEST_URI' => '/api/articles'
  281. ]);
  282. $response = new Response();
  283. $next = function ($req, $res) {
  284. $this->fail('Should not be invoked as first should be ignored.');
  285. };
  286. $middleware = new RoutingMiddleware();
  287. $result = $middleware($request, $response, $next);
  288. $this->assertSame($response, $result, 'Should return result');
  289. $this->assertSame(['first', 'second'], $this->log);
  290. }
  291. /**
  292. * Test control flow in scoped middleware.
  293. *
  294. * @return void
  295. */
  296. public function testInvokeScopedMiddlewareReturnResponseMainScope()
  297. {
  298. Router::scope('/', function ($routes) {
  299. $routes->registerMiddleware('first', function ($req, $res, $next) {
  300. $this->log[] = 'first';
  301. return $res;
  302. });
  303. $routes->registerMiddleware('second', function ($req, $res, $next) {
  304. $this->log[] = 'second';
  305. return $next($req, $res);
  306. });
  307. $routes->applyMiddleware('first');
  308. $routes->connect('/', ['controller' => 'Home']);
  309. $routes->scope('/api', function ($routes) {
  310. $routes->applyMiddleware('second');
  311. $routes->connect('/articles', ['controller' => 'Articles']);
  312. });
  313. });
  314. $request = ServerRequestFactory::fromGlobals([
  315. 'REQUEST_METHOD' => 'GET',
  316. 'REQUEST_URI' => '/'
  317. ]);
  318. $response = new Response();
  319. $next = function ($req, $res) {
  320. $this->fail('Should not be invoked as second should be ignored.');
  321. };
  322. $middleware = new RoutingMiddleware();
  323. $result = $middleware($request, $response, $next);
  324. $this->assertSame($response, $result, 'Should return result');
  325. $this->assertSame(['first'], $this->log);
  326. }
  327. /**
  328. * Test invoking middleware & scope separation
  329. *
  330. * Re-opening a scope should not inherit middleware declared
  331. * in the first context.
  332. *
  333. * @dataProvider scopedMiddlewareUrlProvider
  334. * @return void
  335. */
  336. public function testInvokeScopedMiddlewareIsolatedScopes($url, $expected)
  337. {
  338. Router::scope('/', function ($routes) {
  339. $routes->registerMiddleware('first', function ($req, $res, $next) {
  340. $this->log[] = 'first';
  341. return $next($req, $res);
  342. });
  343. $routes->registerMiddleware('second', function ($req, $res, $next) {
  344. $this->log[] = 'second';
  345. return $next($req, $res);
  346. });
  347. $routes->scope('/api', function ($routes) {
  348. $routes->applyMiddleware('first');
  349. $routes->connect('/ping', ['controller' => 'Pings']);
  350. });
  351. $routes->scope('/api', function ($routes) {
  352. $routes->applyMiddleware('second');
  353. $routes->connect('/version', ['controller' => 'Version']);
  354. });
  355. });
  356. $request = ServerRequestFactory::fromGlobals([
  357. 'REQUEST_METHOD' => 'GET',
  358. 'REQUEST_URI' => $url
  359. ]);
  360. $response = new Response();
  361. $next = function ($req, $res) {
  362. $this->log[] = 'last';
  363. return $res;
  364. };
  365. $middleware = new RoutingMiddleware();
  366. $result = $middleware($request, $response, $next);
  367. $this->assertSame($response, $result, 'Should return result');
  368. $this->assertSame($expected, $this->log);
  369. }
  370. /**
  371. * Provider for scope isolation test.
  372. *
  373. * @return array
  374. */
  375. public function scopedMiddlewareUrlProvider()
  376. {
  377. return [
  378. ['/api/ping', ['first', 'last']],
  379. ['/api/version', ['second', 'last']],
  380. ];
  381. }
  382. }