001: /*
002: * ====================================================================
003: * JAFFA - Java Application Framework For All
004: *
005: * Copyright (C) 2002 JAFFA Development Group
006: *
007: * This library is free software; you can redistribute it and/or
008: * modify it under the terms of the GNU Lesser General Public
009: * License as published by the Free Software Foundation; either
010: * version 2.1 of the License, or (at your option) any later version.
011: *
012: * This library is distributed in the hope that it will be useful,
013: * but WITHOUT ANY WARRANTY; without even the implied warranty of
014: * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
015: * Lesser General Public License for more details.
016: *
017: * You should have received a copy of the GNU Lesser General Public
018: * License along with this library; if not, write to the Free Software
019: * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
020: *
021: * Redistribution and use of this software and associated documentation ("Software"),
022: * with or without modification, are permitted provided that the following conditions are met:
023: * 1. Redistributions of source code must retain copyright statements and notices.
024: * Redistributions must also contain a copy of this document.
025: * 2. Redistributions in binary form must reproduce the above copyright notice,
026: * this list of conditions and the following disclaimer in the documentation
027: * and/or other materials provided with the distribution.
028: * 3. The name "JAFFA" must not be used to endorse or promote products derived from
029: * this Software without prior written permission. For written permission,
030: * please contact mail to: jaffagroup@yahoo.com.
031: * 4. Products derived from this Software may not be called "JAFFA" nor may "JAFFA"
032: * appear in their names without prior written permission.
033: * 5. Due credit should be given to the JAFFA Project (http://jaffa.sourceforge.net).
034: *
035: * THIS SOFTWARE IS PROVIDED "AS IS" AND ANY EXPRESSED OR IMPLIED
036: * WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
037: * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
038: * DISCLAIMED. IN NO EVENT SHALL THE APACHE SOFTWARE FOUNDATION OR
039: * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
040: * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
041: * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF
042: * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
043: * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
044: * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
045: * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
046: * SUCH DAMAGE.
047: * ====================================================================
048: */
049:
050: /*
051: * TestDataSecurity.java
052: *
053: * Created on July 16, 2004
054: */
055:
056: package org.jaffa.security;
057:
058: import helpers.ConnectionHelper;
059: import java.sql.Connection;
060: import java.sql.Statement;
061: import java.util.Map;
062: import junit.framework.TestCase;
063: import org.jaffa.persistence.UOW;
064: import org.jaffa.persistence.blackboxtests.Wrapper;
065: import org.jaffa.persistence.domainobjects.Item;
066:
067: /**
068: *
069: * @author maheshd
070: * @version
071: */
072: public class TestDataSecurity extends TestCase {
073:
074: /** Creates new TestDataSecurity */
075: public TestDataSecurity(String name) {
076: super (name);
077: }
078:
079: static final String ENGINE = "engine";
080: static final String URL = "url";
081: static final String DRIVER_CLASS = "driverClass";
082: static final String USER = "user";
083: static final String PASSWORD = "password";
084: static final String MAXIMUM_CONNECTIONS = "maximumConnections";
085:
086: protected void setUp() {
087: }
088:
089: protected void tearDown() {
090: }
091:
092: public void testItemFilterPolicy1() {
093: Connection connection = null;
094: String sql = null;
095: try {
096: UOW uow = null;
097: connection = ConnectionHelper.getConnection();
098: connection.setAutoCommit(false);
099: Statement statement = connection.createStatement();
100: sql = "insert into zz_jut_item (item_id,part,qty,sc,status_1,status_2,status_3) "
101: + " values('Z-TESTITEM-11,'Z-TESTPART-01','2' , 'JAFFASC1','X','S','A')";
102: statement.execute(sql);
103: sql = "insert into zz_jut_item (item_id,part,qty,sc,status_1,status_2,status_3) "
104: + " values('Z-TESTITEM-12,'Z-TESTPART-01','2' , 'JAFFASC2','X','S','A')";
105: statement.execute(sql);
106: sql = "insert into zz_jut_item (item_id,part,qty,sc,status_1,status_2,status_3) "
107: + " values('Z-TESTITEM-13,'Z-TESTPART-01','2' , 'SOME SC','X','S','A')";
108: statement.execute(sql);
109: sql = "insert into zz_jut_item (item_id,part,qty,sc,status_1,status_2,status_3) "
110: + " values('Z-TESTITEM-14,'Z-TESTPART-01','2' , 'SOME SC','X','S','A')";
111: statement.execute(sql);
112: connection.commit();
113: sql = "exec jaffa_sec.set_userid('TESTUSER',role('Clerk')))";
114: statement.execute(sql);
115: if (uow == null) {
116: uow = new UOW();
117: }
118:
119: assertTrue(
120: "Should retreive Item - Z-TESTITEM-10 for this user",
121: Item.exists(uow, "Z-TESTITEM-11"));
122: assertTrue(
123: "Should retreive Item - Z-TESTITEM-11 for this user",
124: Item.exists(uow, "Z-TESTITEM-12"));
125: assertTrue(
126: "Should not retreive Item - Z-TESTITEM-12 for this user",
127: !Item.exists(uow, "Z-TESTITEM-13"));
128: assertTrue(
129: "Should not retreive Item - Z-TESTITEM-13 for this user",
130: !Item.exists(uow, "Z-TESTITEM-14"));
131:
132: sql = "exec jaffa_sec.set_userid('TESTUSER',role('Manager')))";
133: statement.execute(sql);
134:
135: assertTrue(
136: "Should retreive Item - Z-TESTITEM-10 for this user",
137: Item.exists(uow, "Z-TESTITEM-11"));
138: assertTrue(
139: "Should retreive Item - Z-TESTITEM-11 for this user",
140: Item.exists(uow, "Z-TESTITEM-12"));
141: assertTrue(
142: "Should retreive Item - Z-TESTITEM-12 for this user",
143: Item.exists(uow, "Z-TESTITEM-13"));
144: assertTrue(
145: "Should retreive Item - Z-TESTITEM-13 for this user",
146: Item.exists(uow, "Z-TESTITEM-14"));
147:
148: for (int i = 1; i <= 4; i++) {
149: sql = "delete zz_jut_item where item_id = 'Z-TESTITEM-1"
150: + i + "'";
151: }
152: statement.execute(sql);
153: connection.close();
154: connection = null;
155:
156: } catch (Exception e) {
157: e.printStackTrace();
158: } finally {
159: if (connection != null) {
160: try {
161: connection.rollback();
162: connection.close();
163: } catch (Exception e) {
164: e.printStackTrace();
165: }
166: }
167: }
168:
169: }
170:
171: }
|