# Copyright 2019 Mike Shoup # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. from flask import session def test_login(client, auth): # Test GET response = client.get('/login') assert response.status_code == 200 # Test failed login data = {'password': 'invalid'} response = client.post('/login', data=data) assert response.status_code == 200 assert b'Password is invalid' in response.data # Test successful login data = {'password': 'password'} response = client.post('/login', data=data) assert response.status_code == 302 with client.session_transaction() as session: assert session['logged_in'] def test_logout(client, auth): # Login auth.login() with client.session_transaction() as session: assert session['logged_in'] response = client.get('/logout') assert response.status_code == 302 with client.session_transaction() as session: assert not session.get('logged_in', False)