Laravel 13 в laravel-app/, Breeze (Blade) для сессионного логина + Sanctum для API-токенов (задел под Vue/Flutter на этапе 3). Схема Postgres перенесена из сырого SQL в Laravel-миграции (владелец схемы теперь Laravel, Go-сервисы как читали/писали эти таблицы, так и продолжают). Роли/категории/ операторы условий — закрытые PHP-enum'ы (UserRole, DeviceCategory, ConditionOperator); action_type правил намеренно остаётся строкой — открытый, управляемый данными список, а не код. Сидер device_types с growbox-типами как пример данных, не бизнес-логика. Docker: один контейнер (php-fpm + nginx через supervisord, multi-stage сборка vendor/assets). Образ пока не --no-dev — сидер использует fake() для демо-аккаунта. Проверено: миграции применяются на реальном Postgres (в докере и локально), дефолтные тесты Breeze проходят (25/25), Breeze-логин подтверждён вживую через браузер, Sanctum корректно отдаёт 401 на защищённый /api/user без токена.
74 lines
1.9 KiB
PHP
74 lines
1.9 KiB
PHP
<?php
|
|
|
|
namespace Tests\Feature\Auth;
|
|
|
|
use App\Models\User;
|
|
use Illuminate\Auth\Notifications\ResetPassword;
|
|
use Illuminate\Foundation\Testing\RefreshDatabase;
|
|
use Illuminate\Support\Facades\Notification;
|
|
use Tests\TestCase;
|
|
|
|
class PasswordResetTest extends TestCase
|
|
{
|
|
use RefreshDatabase;
|
|
|
|
public function test_reset_password_link_screen_can_be_rendered(): void
|
|
{
|
|
$response = $this->get('/forgot-password');
|
|
|
|
$response->assertStatus(200);
|
|
}
|
|
|
|
public function test_reset_password_link_can_be_requested(): void
|
|
{
|
|
Notification::fake();
|
|
|
|
$user = User::factory()->create();
|
|
|
|
$this->post('/forgot-password', ['email' => $user->email]);
|
|
|
|
Notification::assertSentTo($user, ResetPassword::class);
|
|
}
|
|
|
|
public function test_reset_password_screen_can_be_rendered(): void
|
|
{
|
|
Notification::fake();
|
|
|
|
$user = User::factory()->create();
|
|
|
|
$this->post('/forgot-password', ['email' => $user->email]);
|
|
|
|
Notification::assertSentTo($user, ResetPassword::class, function ($notification) {
|
|
$response = $this->get('/reset-password/'.$notification->token);
|
|
|
|
$response->assertStatus(200);
|
|
|
|
return true;
|
|
});
|
|
}
|
|
|
|
public function test_password_can_be_reset_with_valid_token(): void
|
|
{
|
|
Notification::fake();
|
|
|
|
$user = User::factory()->create();
|
|
|
|
$this->post('/forgot-password', ['email' => $user->email]);
|
|
|
|
Notification::assertSentTo($user, ResetPassword::class, function ($notification) use ($user) {
|
|
$response = $this->post('/reset-password', [
|
|
'token' => $notification->token,
|
|
'email' => $user->email,
|
|
'password' => 'password',
|
|
'password_confirmation' => 'password',
|
|
]);
|
|
|
|
$response
|
|
->assertSessionHasNoErrors()
|
|
->assertRedirect(route('login'));
|
|
|
|
return true;
|
|
});
|
|
}
|
|
}
|