Coverage for tests/test_security_openid_connect_description.py: 100%

32 statements  

« prev     ^ index     » next       coverage.py v7.6.1, created at 2025-12-04 08:29 +0000

1from fastapi import Depends, FastAPI, Security 1abcdefg

2from fastapi.security.open_id_connect_url import OpenIdConnect 1abcdefg

3from fastapi.testclient import TestClient 1abcdefg

4from pydantic import BaseModel 1abcdefg

5 

6app = FastAPI() 1abcdefg

7 

8oid = OpenIdConnect( 1abcdefg

9 openIdConnectUrl="/openid", description="OpenIdConnect security scheme" 

10) 

11 

12 

13class User(BaseModel): 1abcdefg

14 username: str 1abcdefg

15 

16 

17def get_current_user(oauth_header: str = Security(oid)): 1abcdefg

18 user = User(username=oauth_header) 1hijklmnopqrstu

19 return user 1hijklmnopqrstu

20 

21 

22@app.get("/users/me") 1abcdefg

23def read_current_user(current_user: User = Depends(get_current_user)): 1abcdefg

24 return current_user 1hijklmnopqrstu

25 

26 

27client = TestClient(app) 1abcdefg

28 

29 

30def test_security_oauth2(): 1abcdefg

31 response = client.get("/users/me", headers={"Authorization": "Bearer footokenbar"}) 1hjlnprt

32 assert response.status_code == 200, response.text 1hjlnprt

33 assert response.json() == {"username": "Bearer footokenbar"} 1hjlnprt

34 

35 

36def test_security_oauth2_password_other_header(): 1abcdefg

37 response = client.get("/users/me", headers={"Authorization": "Other footokenbar"}) 1ikmoqsu

38 assert response.status_code == 200, response.text 1ikmoqsu

39 assert response.json() == {"username": "Other footokenbar"} 1ikmoqsu

40 

41 

42def test_security_oauth2_password_bearer_no_header(): 1abcdefg

43 response = client.get("/users/me") 1vwxyzAB

44 assert response.status_code == 401, response.text 1vwxyzAB

45 assert response.json() == {"detail": "Not authenticated"} 1vwxyzAB

46 assert response.headers["WWW-Authenticate"] == "Bearer" 1vwxyzAB

47 

48 

49def test_openapi_schema(): 1abcdefg

50 response = client.get("/openapi.json") 1CDEFGHI

51 assert response.status_code == 200, response.text 1CDEFGHI

52 assert response.json() == { 1CDEFGHI

53 "openapi": "3.1.0", 

54 "info": {"title": "FastAPI", "version": "0.1.0"}, 

55 "paths": { 

56 "/users/me": { 

57 "get": { 

58 "responses": { 

59 "200": { 

60 "description": "Successful Response", 

61 "content": {"application/json": {"schema": {}}}, 

62 } 

63 }, 

64 "summary": "Read Current User", 

65 "operationId": "read_current_user_users_me_get", 

66 "security": [{"OpenIdConnect": []}], 

67 } 

68 } 

69 }, 

70 "components": { 

71 "securitySchemes": { 

72 "OpenIdConnect": { 

73 "type": "openIdConnect", 

74 "openIdConnectUrl": "/openid", 

75 "description": "OpenIdConnect security scheme", 

76 } 

77 } 

78 }, 

79 }