BEGIN {
$ENV{GITALIST_CONFIG} = $Bin;
- use_ok 'Catalyst::Test', 'Gitalist'
+ $ENV{GITALIST_REPO_DIR} = '';
+ use_ok 'Catalyst::Test', 'Gitalist';
}
ok( request('/')->is_success, 'Request should succeed' );
-for my $p (qw/ bare.git repo1 nodescription /) {
- my $path = '/summary?p=' . $p;
+for my $p (qw/ repo1 nodescription bare.git opml /) {
+ my $path = '/' . $p;
ok( request($path)->is_success, "$path should succeed");
}
-is request('/summary?p=DoesNotExist')->code, 404,
- '/summary?p=DoesNotExist 404s';
+my $response = request('/DoesNotExist');
+is $response->code, 404, 'invalid repository 404s';
+like $response->content, qr/Page not found/, 'invalid repository handled correctly';
+
+is request('/../../../')->code, 404, 'directory traversal failed';
+is request('/..%2F..%2F../')->code, 404, 'directory traversal failed';
+
{
# URI tests for repo1
local *test = curry_test_uri('repo1');
test('/summary');
test('/shortlog');
test('/log');
+ test('/reflog');
test('/commit');
test('/commitdiff', 'h=36c6c6708b8360d7023e8a1649c45bcf9b3bd818');
test('/tree', 'h=145dc3ef5d307be84cb9b325d70bd08aeed0eceb;hb=36c6c6708b8360d7023e8a1649c45bcf9b3bd818');
-# $test_repo1->('/', 'a=blob;f=file1');
+ test('/search', 'h=36c6c6708b8360d7023e8a1649c45bcf9b3bd818&f=&type=commit&text=added');
+ test('/blobdiff', 'f=file1;h=5716ca5987cbf97d6bb54920bea6adde242d87e6;hp=257cc5642cb1a054f08cc83f2d943e56fd3ebe99;hb=refs/heads/master;hpb=3bc0634310b9c62222bb0e724c11ffdfb297b4ac');
+ test('/blob', 'f=dir1/file2;hb=36c6c6708b8360d7023e8a1649c45bcf9b3bd818');
+ test('/patch');
+ test('/patch', 'h=3f7567c7bdf7e7ebf410926493b92d398333116e');
+ test('/patch', 'h=3f7567c7bdf7e7ebf410926493b92d398333116e;hp=3bc0634310b9c62222bb0e724c11ffdfb297b4ac');
+ test('/patches');
+ test('/patches', 'h=3f7567c7bdf7e7ebf410926493b92d398333116e');
+ test('/patches', 'h=3f7567c7bdf7e7ebf410926493b92d398333116e;hp=3bc0634310b9c62222bb0e724c11ffdfb297b4ac');
}
done_testing;
my ($p, $uri, $qs) = @_;
$qs ||= '';
my $request = "$uri?p=repo1;$qs";
- warn("request: $request");
my $response = request($request);
- ok($response->is_success, "ok $p - $uri");
+ ok($response->is_success, "ok $p - $uri - $qs");
}
sub curry_test_uri {
my $p = shift;
sub {
- my $uri = shift;
- test_uri($p, $uri);
+ my ($uri, $qs) = @_;
+ test_uri($p, $uri, $qs);
};
};