role.e2e-spec.ts 4.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134
  1. import { CreateRole, GetRole, GetRoles, Permission, Role, UpdateRole } from 'shared/generated-types';
  2. import { omit } from 'shared/omit';
  3. import { CUSTOMER_ROLE_CODE, SUPER_ADMIN_ROLE_CODE } from 'shared/shared-constants';
  4. import {
  5. CREATE_ROLE,
  6. GET_ROLE,
  7. GET_ROLES,
  8. UPDATE_ROLE,
  9. } from '../../admin-ui/src/app/data/definitions/administrator-definitions';
  10. import { TestClient } from './test-client';
  11. import { TestServer } from './test-server';
  12. describe('Role resolver', () => {
  13. const client = new TestClient();
  14. const server = new TestServer();
  15. let createdRole: Role.Fragment;
  16. let defaultRoles: Role.Fragment[];
  17. beforeAll(async () => {
  18. const token = await server.init({
  19. productCount: 1,
  20. customerCount: 1,
  21. });
  22. await client.init();
  23. }, 60000);
  24. afterAll(async () => {
  25. await server.destroy();
  26. });
  27. it('roles', async () => {
  28. const result = await client.query<GetRoles.Query, GetRoles.Variables>(GET_ROLES);
  29. defaultRoles = result.roles.items;
  30. expect(result.roles.items.length).toBe(2);
  31. expect(result.roles.totalItems).toBe(2);
  32. });
  33. it('createRole', async () => {
  34. const result = await client.query<CreateRole.Mutation, CreateRole.Variables>(CREATE_ROLE, {
  35. input: {
  36. code: 'test',
  37. description: 'test role',
  38. permissions: [Permission.ReadCustomer, Permission.UpdateCustomer],
  39. },
  40. });
  41. createdRole = result.createRole;
  42. expect(omit(createdRole, ['channels'])).toMatchSnapshot();
  43. });
  44. it('role', async () => {
  45. const result = await client.query<GetRole.Query, GetRole.Variables>(GET_ROLE, { id: createdRole.id });
  46. expect(result.role).toEqual(createdRole);
  47. });
  48. it('updateRole', async () => {
  49. const result = await client.query<UpdateRole.Mutation, UpdateRole.Variables>(UPDATE_ROLE, {
  50. input: {
  51. id: createdRole.id,
  52. code: 'test-modified',
  53. description: 'test role modified',
  54. permissions: [Permission.ReadCustomer, Permission.UpdateCustomer, Permission.DeleteCustomer],
  55. },
  56. });
  57. expect(omit(result.updateRole, ['channels'])).toMatchSnapshot();
  58. });
  59. it('updateRole works with partial input', async () => {
  60. const result = await client.query<UpdateRole.Mutation, UpdateRole.Variables>(UPDATE_ROLE, {
  61. input: {
  62. id: createdRole.id,
  63. code: 'test-modified-again',
  64. },
  65. });
  66. expect(result.updateRole.code).toBe('test-modified-again');
  67. expect(result.updateRole.description).toBe('test role modified');
  68. expect(result.updateRole.permissions).toEqual([
  69. Permission.ReadCustomer,
  70. Permission.UpdateCustomer,
  71. Permission.DeleteCustomer,
  72. ]);
  73. });
  74. it('updateRole is not allowed for SuperAdmin role', async () => {
  75. const superAdminRole = defaultRoles.find(r => r.code === SUPER_ADMIN_ROLE_CODE);
  76. if (!superAdminRole) {
  77. fail(`Could not find SuperAdmin role`);
  78. return;
  79. }
  80. try {
  81. const result = await client.query<UpdateRole.Mutation, UpdateRole.Variables>(UPDATE_ROLE, {
  82. input: {
  83. id: superAdminRole.id,
  84. code: 'superadmin-modified',
  85. description: 'superadmin modified',
  86. permissions: [Permission.Authenticated],
  87. },
  88. });
  89. fail(`Should throw`);
  90. } catch (err) {
  91. expect(err.message).toEqual(
  92. expect.stringContaining(`The role '${SUPER_ADMIN_ROLE_CODE}' cannot be modified`),
  93. );
  94. }
  95. });
  96. it('updateRole is not allowed for Customer role', async () => {
  97. const customerRole = defaultRoles.find(r => r.code === CUSTOMER_ROLE_CODE);
  98. if (!customerRole) {
  99. fail(`Could not find Customer role`);
  100. return;
  101. }
  102. try {
  103. const result = await client.query<UpdateRole.Mutation, UpdateRole.Variables>(UPDATE_ROLE, {
  104. input: {
  105. id: customerRole.id,
  106. code: 'customer-modified',
  107. description: 'customer modified',
  108. permissions: [Permission.Authenticated, Permission.DeleteAdministrator],
  109. },
  110. });
  111. fail(`Should throw`);
  112. } catch (err) {
  113. expect(err.message).toEqual(
  114. expect.stringContaining(`The role '${CUSTOMER_ROLE_CODE}' cannot be modified`),
  115. );
  116. }
  117. });
  118. });