Test query string authorization expiration

This commit is contained in:
Andrew Gaul 2014-08-23 18:34:02 -07:00
parent a23c81187b
commit 6aac86205a

View file

@ -2076,14 +2076,14 @@ def _setup_bucket_request(bucket_acl=None):
return bucket return bucket
def _make_request(method, bucket, key, body=None, authenticated=False, response_headers=None): def _make_request(method, bucket, key, body=None, authenticated=False, response_headers=None, expires_in=100000):
""" """
issue a request for a specified method, on a specified <bucket,key>, issue a request for a specified method, on a specified <bucket,key>,
with a specified (optional) body (encrypted per the connection), and with a specified (optional) body (encrypted per the connection), and
return the response (status, reason) return the response (status, reason)
""" """
if authenticated: if authenticated:
url = key.generate_url(100000, method=method, response_headers=response_headers) url = key.generate_url(expires_in, method=method, response_headers=response_headers)
o = urlparse(url) o = urlparse(url)
path = o.path + '?' + o.query path = o.path + '?' + o.query
else: else:
@ -2101,14 +2101,14 @@ def _make_request(method, bucket, key, body=None, authenticated=False, response_
print res.status, res.reason print res.status, res.reason
return res return res
def _make_bucket_request(method, bucket, body=None, authenticated=False): def _make_bucket_request(method, bucket, body=None, authenticated=False, expires_in=100000):
""" """
issue a request for a specified method, on a specified <bucket,key>, issue a request for a specified method, on a specified <bucket,key>,
with a specified (optional) body (encrypted per the connection), and with a specified (optional) body (encrypted per the connection), and
return the response (status, reason) return the response (status, reason)
""" """
if authenticated: if authenticated:
url = bucket.generate_url(100000, method=method) url = bucket.generate_url(expires_in, method=method)
o = urlparse(url) o = urlparse(url)
path = o.path + '?' + o.query path = o.path + '?' + o.query
else: else:
@ -2365,6 +2365,19 @@ def test_object_raw_put_authenticated():
eq(res.reason, 'OK') eq(res.reason, 'OK')
@attr(resource='object')
@attr(method='put')
@attr(operation='authenticated, no object acls')
@attr(assertion='succeeds')
def test_object_raw_put_authenticated_expired():
bucket = get_new_bucket()
key = bucket.new_key('foo')
res = _make_request('PUT', bucket, key, body='foo', authenticated=True, expires_in=-1000)
eq(res.status, 403)
eq(res.reason, 'Forbidden')
def check_bad_bucket_name(name): def check_bad_bucket_name(name):
""" """
Attempt to create a bucket with a specified name, and confirm Attempt to create a bucket with a specified name, and confirm