admin.spec.ts 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342
  1. import { isExcludedBySharding, startWith } from './helpers/config'
  2. import {
  3. activateUser,
  4. createMongoUser,
  5. ensureUserExists,
  6. login,
  7. } from './helpers/login'
  8. import { v4 as uuid } from 'uuid'
  9. import { createProject } from './helpers/project'
  10. import { beforeWithReRunOnTestRetry } from './helpers/beforeWithReRunOnTestRetry'
  11. import { openEmail } from './helpers/email'
  12. describe('admin panel', function () {
  13. function registrationTests() {
  14. it('via GUI and opening URL manually', () => {
  15. const user = `${uuid()}@example.com`
  16. cy.get('input[name="email"]').type(user + '{enter}')
  17. cy.get('td')
  18. .contains(/\/user\/activate/)
  19. .then($td => {
  20. const url = $td.text().trim()
  21. activateUser(url)
  22. })
  23. })
  24. it('via GUI and email', () => {
  25. const user = `${uuid()}@example.com`
  26. cy.get('input[name="email"]').type(user + '{enter}')
  27. let url: string
  28. cy.get('td')
  29. .contains(/\/user\/activate/)
  30. .then($td => {
  31. url = $td.text().trim()
  32. })
  33. cy.then(() => {
  34. openEmail(
  35. 'Activate your Overleaf Community Edition Account',
  36. (frame, { url }) => {
  37. frame.contains('Set password').then(el => {
  38. expect(el.attr('href')!).to.equal(url)
  39. })
  40. },
  41. { url }
  42. )
  43. // Run activateUser in the main origin instead of inside openEmail. See docs on openEmail.
  44. activateUser(url)
  45. })
  46. })
  47. it('via script and opening URL manually', () => {
  48. const user = `${uuid()}@example.com`
  49. let url: string
  50. cy.then(async () => {
  51. ;({ url } = await createMongoUser({ email: user }))
  52. })
  53. cy.then(() => {
  54. activateUser(url)
  55. })
  56. })
  57. it('via script and email', () => {
  58. const user = `${uuid()}@example.com`
  59. let url: string
  60. cy.then(async () => {
  61. ;({ url } = await createMongoUser({ email: user }))
  62. })
  63. cy.then(() => {
  64. openEmail(
  65. 'Activate your Overleaf Community Edition Account',
  66. (frame, { url }) => {
  67. frame.contains('Set password').then(el => {
  68. expect(el.attr('href')!).to.equal(url)
  69. })
  70. },
  71. { url }
  72. )
  73. // Run activateUser in the main origin instead of inside openEmail. See docs on openEmail.
  74. activateUser(url)
  75. })
  76. })
  77. }
  78. describe('in CE', () => {
  79. if (isExcludedBySharding('CE_DEFAULT')) return
  80. startWith({ pro: false, version: 'latest' })
  81. const admin = 'admin@example.com'
  82. const user = `user+${uuid()}@example.com`
  83. ensureUserExists({ email: admin, isAdmin: true })
  84. ensureUserExists({ email: user })
  85. describe('create users', () => {
  86. beforeEach(() => {
  87. login(admin)
  88. cy.visit('/project')
  89. cy.get('nav').findByText('Admin').click()
  90. cy.get('nav').findByText('Manage Users').click()
  91. })
  92. registrationTests()
  93. })
  94. })
  95. describe('in server pro', () => {
  96. const admin = 'admin@example.com'
  97. const user1 = 'user@example.com'
  98. const user2 = 'user2@example.com'
  99. let testProjectName = ''
  100. let testProjectId = ''
  101. let deletedProjectName = ''
  102. let projectToDeleteId = ''
  103. const findProjectRow = (projectName: string) => {
  104. cy.log('find project row')
  105. return cy.findByText(projectName).parent().parent()
  106. }
  107. if (isExcludedBySharding('PRO_DEFAULT_2')) return
  108. startWith({
  109. pro: true,
  110. })
  111. ensureUserExists({ email: admin, isAdmin: true })
  112. ensureUserExists({ email: user1 })
  113. ensureUserExists({ email: user2 })
  114. beforeWithReRunOnTestRetry(() => {
  115. testProjectName = `project-${uuid()}`
  116. deletedProjectName = `deleted-project-${uuid()}`
  117. login(user1)
  118. createProject(testProjectName, { open: false }).then(
  119. id => (testProjectId = id)
  120. )
  121. createProject(deletedProjectName, { open: false }).then(
  122. id => (projectToDeleteId = id)
  123. )
  124. })
  125. describe('manage site', () => {
  126. beforeEach(() => {
  127. login(admin)
  128. cy.visit('/project')
  129. cy.get('nav').findByText('Admin').click()
  130. cy.get('nav').findByText('Manage Site').click()
  131. })
  132. it('publish and clear admin messages', () => {
  133. const message = 'Admin Message ' + uuid()
  134. cy.log('create system message')
  135. cy.get('[role="tab"]').contains('System Messages').click()
  136. cy.get('input[name="content"]').type(message)
  137. cy.get('button').contains('Post Message').click()
  138. cy.findByText(message)
  139. login(user1)
  140. cy.visit('/project')
  141. cy.findByText(message)
  142. cy.log('clear system messages')
  143. login(admin)
  144. cy.visit('/project')
  145. cy.get('nav').findByText('Admin').click()
  146. cy.get('nav').findByText('Manage Site').click()
  147. cy.get('[role="tab"]').contains('System Messages').click()
  148. cy.get('button').contains('Clear all messages').click()
  149. cy.log('verify system messages are no longer displayed')
  150. login(user1)
  151. cy.visit('/project')
  152. cy.findByText(message).should('not.exist')
  153. })
  154. })
  155. describe('manage users', () => {
  156. beforeEach(() => {
  157. login(admin)
  158. cy.visit('/project')
  159. cy.get('nav').findByText('Admin').click()
  160. cy.get('nav').findByText('Manage Users').click()
  161. })
  162. it('displays expected tabs', () => {
  163. const tabs = ['Users', 'License Usage']
  164. cy.get('[role="tab"]').each((el, index) => {
  165. cy.wrap(el).findByText(tabs[index]).click()
  166. })
  167. cy.get('[role="tab"]').should('have.length', tabs.length)
  168. })
  169. it('license usage tab', () => {
  170. cy.get('a').contains('License Usage').click()
  171. cy.findByText(
  172. 'An active user is one who has opened a project in this Server Pro instance in the last 12 months.'
  173. )
  174. })
  175. describe('create users', () => {
  176. beforeEach(() => {
  177. cy.get('a').contains('New User').click()
  178. })
  179. registrationTests()
  180. })
  181. it('user list RegExp search', () => {
  182. cy.get('input[name="isRegExpSearch"]').click()
  183. cy.get('input[name="email"]').type('user[0-9]{enter}')
  184. cy.findByText(user2)
  185. cy.findByText(user1).should('not.exist')
  186. })
  187. })
  188. describe('user page', () => {
  189. beforeEach(() => {
  190. login(admin)
  191. cy.visit('/project')
  192. cy.get('nav').findByText('Admin').click()
  193. cy.get('nav').findByText('Manage Users').click()
  194. cy.get('input[name="email"]').type(user1 + '{enter}')
  195. cy.findByText(user1).click()
  196. cy.url().should('match', /\/admin\/user\/[a-fA-F0-9]{24}/)
  197. })
  198. it('displays expected tabs', () => {
  199. const tabs = [
  200. 'User Info',
  201. 'Projects',
  202. 'Deleted Projects',
  203. 'Audit Log',
  204. 'Sessions',
  205. ]
  206. cy.get('[role="tab"]').each((el, index) => {
  207. cy.wrap(el).findByText(tabs[index]).click()
  208. })
  209. cy.get('[role="tab"]').should('have.length', tabs.length)
  210. })
  211. describe('user info tab', () => {
  212. beforeEach(() => {
  213. cy.get('[role="tab"]').contains('User Info').click()
  214. })
  215. it('displays required sections', () => {
  216. // not exhaustive list, checks the tab content is rendered
  217. cy.findByText('Profile')
  218. cy.findByText('Editor Settings')
  219. })
  220. it('should not display SaaS-only sections', () => {
  221. cy.findByText('Referred User Count').should('not.exist')
  222. cy.findByText('Split Test Assignments').should('not.exist')
  223. cy.findByText('Experimental Features').should('not.exist')
  224. cy.findByText('Service Integration').should('not.exist')
  225. cy.findByText('SSO Integrations').should('not.exist')
  226. cy.findByText('Security').should('not.exist')
  227. })
  228. })
  229. it('transfer project ownership', () => {
  230. cy.log("access project admin through owners' project list")
  231. cy.get('[role="tab"]').contains('Projects').click()
  232. cy.get(`a[href="/admin/project/${testProjectId}"]`).click()
  233. cy.findByText('Transfer Ownership').click()
  234. cy.get('button[type="submit"]').should('be.disabled')
  235. cy.get('input[name="user_id"]').type(user2)
  236. cy.get('button[type="submit"]').should('not.be.disabled')
  237. cy.get('button[type="submit"]').click()
  238. cy.findByText('Transfer project to this user?')
  239. cy.get('button').contains('Confirm').click()
  240. cy.log('check the project is displayed in the new owner projects tab')
  241. cy.get('input[name="email"]').type(user2 + '{enter}')
  242. cy.findByText(user2).click()
  243. cy.get('[role="tab"]').contains('Projects').click()
  244. cy.get(`a[href="/admin/project/${testProjectId}"]`)
  245. })
  246. })
  247. describe('project page', () => {
  248. beforeEach(() => {
  249. login(admin)
  250. cy.visit(`/admin/project/${testProjectId}`)
  251. })
  252. it('displays expected tabs', () => {
  253. const tabs = ['Project Info', 'Deleted Docs', 'Audit Log']
  254. cy.get('[role="tab"]').each((el, index) => {
  255. cy.wrap(el).findByText(tabs[index]).click()
  256. })
  257. cy.get('[role="tab"]').should('have.length', tabs.length)
  258. })
  259. })
  260. it('restore deleted projects', () => {
  261. login(user1)
  262. cy.visit('/project')
  263. cy.log('select project to delete')
  264. findProjectRow(deletedProjectName).within(() =>
  265. cy.get('input[type="checkbox"]').first().check()
  266. )
  267. cy.log('delete project')
  268. findProjectRow(deletedProjectName).within(() =>
  269. cy.findByRole('button', { name: 'Trash' }).click()
  270. )
  271. cy.get('button').contains('Confirm').click()
  272. cy.findByText(deletedProjectName).should('not.exist')
  273. cy.log('navigate to thrashed projects and delete the project')
  274. cy.get('.project-list-sidebar-scroll').within(() => {
  275. cy.findByText('Trashed projects').click()
  276. })
  277. findProjectRow(deletedProjectName).within(() =>
  278. cy.findByRole('button', { name: 'Delete' }).click()
  279. )
  280. cy.get('button').contains('Confirm').click()
  281. cy.findByText(deletedProjectName).should('not.exist')
  282. cy.log('login as an admin and navigate to the deleted project')
  283. login(admin)
  284. cy.visit('/admin/user')
  285. cy.get('input[name="email"]').type(user1 + '{enter}')
  286. cy.get('a').contains(user1).click()
  287. cy.findByText('Deleted Projects').click()
  288. cy.get('a').contains(deletedProjectName).click()
  289. cy.log('undelete the project')
  290. cy.findByText('Undelete').click()
  291. cy.findByText('Undelete').should('not.exist')
  292. cy.url().should('contain', `/admin/project/${projectToDeleteId}`)
  293. cy.log('login as the user and verify the project is restored')
  294. login(user1)
  295. cy.visit('/project')
  296. cy.get('.project-list-sidebar-scroll').within(() => {
  297. cy.findByText('Trashed projects').click()
  298. })
  299. cy.findByText(`${deletedProjectName} (Restored)`)
  300. })
  301. })
  302. })