namespace Tests\Auth;
-use BookStack\Auth\Role;
-use BookStack\Auth\User;
-use BookStack\Notifications\ConfirmEmail;
+use BookStack\Access\Notifications\ConfirmEmailNotification;
+use BookStack\Users\Models\Role;
+use BookStack\Users\Models\User;
use Illuminate\Support\Facades\DB;
use Illuminate\Support\Facades\Notification;
use Tests\TestCase;
// Ensure notification sent
/** @var User $dbUser */
$dbUser = User::query()->where('email', '=', $user->email)->first();
- Notification::assertSentTo($dbUser, ConfirmEmail::class);
+ Notification::assertSentTo($dbUser, ConfirmEmailNotification::class);
// Test access and resend confirmation email
$resp = $this->post('/login', ['email' => $user->email, 'password' => $user->password]);
// Get confirmation and confirm notification matches
$emailConfirmation = DB::table('email_confirmations')->where('user_id', '=', $dbUser->id)->first();
- Notification::assertSentTo($dbUser, ConfirmEmail::class, function ($notification, $channels) use ($emailConfirmation) {
+ Notification::assertSentTo($dbUser, ConfirmEmailNotification::class, function ($notification, $channels) use ($emailConfirmation) {
return $notification->token === $emailConfirmation->token;
});
- // Check confirmation email confirmation activation.
- $this->get('/register/confirm/' . $emailConfirmation->token)->assertRedirect('/login');
+ // Check confirmation email confirmation accept page.
+ $resp = $this->get('/register/confirm/' . $emailConfirmation->token);
+ $acceptPage = $this->withHtml($resp);
+ $resp->assertOk();
+ $resp->assertSee('Thanks for confirming!');
+ $acceptPage->assertElementExists('form[method="post"][action$="/register/confirm/accept"][component="auto-submit"] button');
+ $acceptPage->assertFieldHasValue('token', $emailConfirmation->token);
+
+ // Check acceptance confirm
+ $this->post('/register/confirm/accept', ['token' => $emailConfirmation->token])->assertRedirect('/login');
+
+ // Check state on login redirect
$this->get('/login')->assertSee('Your email has been confirmed! You should now be able to login using this email address.');
$this->assertDatabaseMissing('email_confirmations', ['token' => $emailConfirmation->token]);
$this->assertDatabaseHas('users', ['name' => $dbUser->name, 'email' => $dbUser->email, 'email_confirmed' => true]);
$resp->assertSee('The email must be a valid email address.');
$resp->assertSee('The password must be at least 8 characters.');
}
+
+ public function test_registration_simple_honeypot_active()
+ {
+ $this->setSettings(['registration-enabled' => 'true']);
+
+ $resp = $this->get('/register');
+ $this->withHtml($resp)->assertElementExists('form input[name="username"]');
+
+ $resp = $this->post('/register', [
+ 'name' => 'Barry',
+ 'password' => 'barryIsTheBestBot',
+ 'username' => 'MyUsername'
+ ]);
+ $resp->assertRedirect('/register');
+
+ $resp = $this->followRedirects($resp);
+ $this->withHtml($resp)->assertElementExists('form input[name="username"].text-neg');
+ }
}