diff --git a/README.md b/README.md index 9720c7dfb..df15bedbb 100644 --- a/README.md +++ b/README.md @@ -54,8 +54,6 @@ Table of Contents * [Configuration Details](#configuration-details) * [Environment Variables](#environment-variables) * [Application Configuration](#application-configuration) - * [Actuator Endpoints](#actuator-endpoints) - * [flows-config.yaml file](#flows-configyaml-file) * [Flow and Subflow Configuration](#flow-and-subflow-configuration) * [Screens](#screens) * [Defining Subflows](#defining-subflows) @@ -81,9 +79,9 @@ Table of Contents * [How to contribute](#how-to-contribute) * [Maintainer information](#maintainer-information) -A Spring Boot Java library that provides a framework for developing **form flow** based applications. -The intention is to speed up the creation of web applications that are a series of forms that -collect input from users. +A Spring Boot Java library that provides a framework for developing **form flow** based +applications. The intention is to speed up the creation of web applications that are a series of +forms that collect input from users. The library includes tooling for: @@ -242,8 +240,8 @@ to add another. #### Delete Confirmation Screen -This screen appears when a user selects `delete` on an iteration listed on the review screen. It asks -the user to confirm their deletion before submitting the actual deletion request to the server. +This screen appears when a user selects `delete` on an iteration listed on the review screen. It +asks the user to confirm their deletion before submitting the actual deletion request to the server. This page is not technically part of the subflow and as such, does not need to be denoted with `subflow: subflowName` in the `flows-config.yaml`. @@ -302,7 +300,8 @@ form flow configuration file. They are generally used to determine template or p Conditions are Java objects that implement the `Condition` [interface](https://github.com/codeforamerica/form-flow/blob/main/src/main/java/formflow/library/config/submission/Condition.java) -. As conditions are called with the Submission object, the instance variable `inputData` is available to them. +. As conditions are called with the Submission object, the instance variable `inputData` is +available to them. Here is a simple condition that looks at data in the submission to see if the email provided is a Google address. @@ -462,11 +461,10 @@ see [Hibernate's documentation.](https://docs.jboss.org/hibernate/stable/validat Note that our implementation does not make a field required, unless `@NotEmpty`, `@NotBlank`, or `@NotNull` is used. If a validation annotation such as `@Email` is used, it will not -actually validate the annotated input unless a user actually enters a value for that input. If you use -`@Email` and `@NotBlank` together, that causes both validations to run even if the user did not -enter a value, -validating both that they need to enter a value due to `@NotBlank` and because the blank value needs -to be a validly formatted email address due to `@Email`. +actually validate the annotated input unless a user actually enters a value for that input. If you +use `@Email` and `@NotBlank` together, that causes both validations to run even if the user did not +enter a value, validating both that they need to enter a value due to `@NotBlank` and because the +blank value needs to be a validly formatted email address due to `@Email`. ### Custom Annotations @@ -1183,8 +1181,7 @@ The address fragment has two required parameters, `validate` and `inputName`. - `validate` is a boolean value that determines whether the address should be validated by Smarty - `inputName` is the name that will be associated with all of the above inputs by being used as a prefix in their input's name. For example, if the `inputName` is `homeAddress` then the - corresponding - inputs will + corresponding inputs will be `homeAddressStreetAddress1`, `homeAddressStreetAddress2`, `homeAddressCity`, `homeAddressState`, and `homeAddressZipCode`. @@ -1194,12 +1191,9 @@ parameters: `streetAddressHelpText`, `streetAddress2HelpText`, `cityHelpText`, ` These will pass helper text to each specific field. Please note that when using the address fragment you will need to create corresponding fields in -your -flow inputs class for each of the above-mentioned inputs created by the fragment. For example, if -your -address fragments input name is `mailingAddress`, then you will need to create the following fields -in -your flow inputs class: +your flow inputs class for each of the above-mentioned inputs created by the fragment. For example, +if your address fragments input name is `mailingAddress`, then you will need to create the following +fields in your flow inputs class: ``` String mailingAddressStreetAddress1; @@ -2204,8 +2198,7 @@ starting a session. If no HttpSession has been established or a session lacks an appropriate Submission id, a client will be returned to the index page of an application. -⚠️ __It is set to be the last interceptor run by any -application using Form Flow Library.__ +⚠️ __It is set to be the last interceptor run by any application using Form Flow library.__ #### Configuration @@ -2328,7 +2321,7 @@ the [Spring.io documentation](https://docs.spring.io/spring-boot/docs/current/re It is expected that this file will be located within the application that is using this form flow library. -There are a few properties that the Form Flow Library will look for in the `application.yaml` +There are a few properties that the Form Flow library will look for in the `application.yaml` file. ```yaml @@ -2354,18 +2347,20 @@ form-flow: We are moving towards using a [custom theme](https://codeforamerica.github.io/uswds/dist/) of the [US Web Design System (USWDS)](https://designsystem.digital.gov/). Enabling this -property will set template resolution to use USWDS styling in place of Honeycrisp. The USWDS -template location will become the default for your application, pulling USWDS styles, templates and fragments -in place of Honeycrisp ones. The USWDS file path will be `/resources/cfa-uswds-templates/`. You can +property will set template resolution to use USWDS styling in place of Honeycrisp. The USWDS +template location will become the default for your application, pulling USWDS styles, templates and +fragments +in place of Honeycrisp ones. The USWDS file path will be `/resources/cfa-uswds-templates/`. You can override templates and fragments in this path by placing a file with the same name and path in your -application. For example, placing a file at `/resources/cfa-uswds-templates/fragments/example.html` +application. For example, placing a file at `/resources/cfa-uswds-templates/fragments/example.html` would override the fragment with the same name in the USWDS fragments folder. -You can view all the USWDS templates and fragments in the [USWDS templates folder](https://github.com/codeforamerica/form-flow/tree/main/src/main/resources/cfa-uswds-templates). +You can view all the USWDS templates and fragments in +the [USWDS templates folder](https://github.com/codeforamerica/form-flow/tree/main/src/main/resources/cfa-uswds-templates). -| Property | Default | Description | -|--------------------------------|---------|-----------------------------------------------------------------------------------------------------------------------------------------| -| `form-flow.design-system.name` | none | Can use `cfa-uswds` to enable the CfA USWDS design system assets and templates. Otherwise Honeycrisp assets and templates are used. | +| Property | Default | Description | +|--------------------------------|---------|-------------------------------------------------------------------------------------------------------------------------------------| +| `form-flow.design-system.name` | none | Can use `cfa-uswds` to enable the CfA USWDS design system assets and templates. Otherwise Honeycrisp assets and templates are used. | | #### File upload properties @@ -2424,7 +2419,7 @@ Spring Boot provides a module, called [`spring-boot-starter-actuator`](https://docs.spring.io/spring-boot/docs/current/reference/html/actuator.html#actuator.endpoints), that will expose endpoints that will allow you to monitor and interact with your application. -**While these are very powerful, they can also reveal sensitive information about your +**⚠️ While these are very powerful, they can also reveal sensitive information about your application. They are a huge security concern.** It's best to disable them in production and demo environments, or just leave the `health` and @@ -2452,27 +2447,39 @@ actuator endpoints. * [Production-ready Features](https://docs.spring.io/spring-boot/docs/current/reference/html/actuator.html#actuator.endpoints) * [Actuator API](https://docs.spring.io/spring-boot/docs/3.1.2/actuator-api/htmlsingle) -### flows-config.yaml file - ### Flow and Subflow Configuration -Flows are defined in a file specified in the `application.yaml` file. The library will look for -the `form-flow.path` property. If that property is not set, the default file it will look for is -named `flows-config.yaml`. +#### flows-config.yaml file + +The `flows-config.yaml` file contains the core flow through screens of the application. +It will contain a list of screens in your application as well as any conditions or actions +relating to them. It will also detail out subflow information as well as landmark pages. + +The system will, by default, look for a file with the name `flows-config.yaml` +in `src/main/resources`. You can have the library load a file with a different name by including +the property `form-flow.path` in the `application.yaml` file. The library will then load the +specified file instead and pull the flow configuration from there. -To configure a flow, create a `flow-config.yaml` in your app at `src/main/resources`. +#### flows-config.yaml basic configuration + +To configure a flow, create a `flows-config.yaml` in your app at `src/main/resources`. You can define multiple flows by [separating them with `---`](https://docs.spring.io/spring-boot/docs/1.2.0.M1/reference/html/boot-features-external-config.html#boot-features-external-config-multi-profile-yaml) . -At it's base a flow as defined in yaml has a name, a flow object, and a collection of screens, their -next screens, any conditions for navigation between those screens, and optionally one or more -subflows. +In the yaml file, every flow described will have: -#### form-flow.yaml basic configuration +* a `name` +* a `flow`, which is essentially the set of screens in the application. Each screen could + have: + * next screens + * [conditions](#conditions) to apply to next screen flow + * [actions](#actions) to apply to data +* a `subflows` section, if any of the screens are part of a subflow +* a [`landmarks`](#landmarks) section -A basic flow configuration could look like this: +A basic form flow configuration file might look like this: ```yaml name: exampleFlow @@ -2481,6 +2488,7 @@ flow: nextScreens: - name: secondScreen secondScreen: + beforeSaveAction: cleanData nextScreens: - name: thirdScreen - name: otherScreen @@ -2493,14 +2501,37 @@ flow: - name: success success: nextScreens: null +landmarks: + firstScreen: firstScreen ___ name: someOtherFlow flow: otherFlowScreen: ``` -You can have autocomplete and validation for flows-config by connecting your IntelliJ to the -flows-config-schema.json [as described here](#connect-flows-config-schema). +You can have IntelliJ do autocomplete and validation for fields in the `flows-config.yaml` file by +configuring IntelliJ to use +the `flows-config-schema.json`, [as described here](#connect-flows-config-schema). + +#### Multiple Flows + +The Form Flow library is able to accommodate multiple form flows in one application. For example, +one could create a signup form in one flow and use a separate flow for collecting documentation from +a user at a later time. +The [Form Flow Starter App](https://github.com/codeforamerica/form-flow-starter-app) has two +separate flows. + +It's not recommended to allow users to work through more than one flow at once. The design of the +Form Flow library is that a user would complete one flow before working with a separate flow. + +However, it is not always possible to keep the flows separate and in cases where users do cross from +one flow to another, we will keep the data for both flows. We do this by creating a +`Submission` for each flow the user has visited. Regardless of whether the user completed +any one flow, the `Submission` for each flow will be stored in the database. + +**⚠️ If your screen flow has users crossing flows, you need to ensure that you provide a reentry +point +to go back to the other flow. Otherwise, the flows may not get completed properly.** ### Screens @@ -2531,7 +2562,7 @@ What do you need to do to create a subflow? (e.g. Ubi.java in the starter app) - Define `screen` templates in `resources/templates/` -Example `flow-config.yaml` with a docs subflow +Example `flows-config.yaml` with a docs subflow ```yaml name: docFlow @@ -2604,7 +2635,8 @@ There are spots in the templates where the `T` operator is used. ### Logging -Form Flow adds the following attributes to the [Mapped Diagnostic Context](https://logback.qos.ch/manual/mdc.html): +Form Flow adds the following attributes to +the [Mapped Diagnostic Context](https://logback.qos.ch/manual/mdc.html): | Attribute | Description | |---------------|----------------------------------------------------------------------------------------------------------------------------| @@ -2614,10 +2646,11 @@ Form Flow adds the following attributes to the [Mapped Diagnostic Context](https | submissionId | The ID of the Submission object - see https://github.com/codeforamerica/form-flow#submission-object | | xForwardedFor | The X-Forwarded-For request header - see https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Forwarded-For | -These attributes can be displayed in the logs by configuring the log format as described in the above document. For an example that exposes the entire Mapped Diagnostic Context (MDC) in JSON-formatted logs, +These attributes can be displayed in the logs by configuring the log format as described in the +above document. For an example that exposes the entire Mapped Diagnostic Context (MDC) in +JSON-formatted logs, see https://github.com/codeforamerica/form-flow-starter-app/blob/main/src/main/resources/logback-spring.xml. - ### Library Details ### Publishing diff --git a/src/main/java/formflow/library/FileController.java b/src/main/java/formflow/library/FileController.java index 9bd407d4f..07ba12b8e 100644 --- a/src/main/java/formflow/library/FileController.java +++ b/src/main/java/formflow/library/FileController.java @@ -1,5 +1,6 @@ package formflow.library; +import com.fasterxml.jackson.databind.ObjectMapper; import com.google.common.io.Files; import formflow.library.config.FlowConfiguration; import formflow.library.data.Submission; @@ -10,11 +11,11 @@ import formflow.library.file.CloudFileRepository; import formflow.library.file.FileValidationService; import formflow.library.file.FileVirusScanner; +import formflow.library.utils.UserFileMap; import jakarta.servlet.http.HttpServletRequest; import jakarta.servlet.http.HttpSession; import java.io.ByteArrayOutputStream; import java.io.IOException; -import java.util.HashMap; import java.util.List; import java.util.Locale; import java.util.Objects; @@ -50,7 +51,7 @@ @EnableAutoConfiguration @Slf4j public class FileController extends FormFlowController { - private final UserFileRepositoryService userFileRepositoryService; + private final CloudFileRepository cloudFileRepository; private final Boolean blockIfClammitUnreachable; private final FileVirusScanner fileVirusScanner; @@ -59,6 +60,8 @@ public class FileController extends FormFlowController { private final String SESSION_USERFILES_KEY = "userFiles"; private final Integer maxFiles; + private final ObjectMapper objectMapper = new ObjectMapper(); + public FileController( UserFileRepositoryService userFileRepositoryService, CloudFileRepository cloudFileRepository, @@ -69,8 +72,7 @@ public FileController( FileValidationService fileValidationService, @Value("${form-flow.uploads.max-files:20}") Integer maxFiles, @Value("${form-flow.uploads.virus-scanning.block-if-unreachable:false}") boolean blockIfClammitUnreachable) { - super(submissionRepositoryService, flowConfigurations); - this.userFileRepositoryService = userFileRepositoryService; + super(submissionRepositoryService, userFileRepositoryService, flowConfigurations); this.cloudFileRepository = cloudFileRepository; this.messageSource = messageSource; this.fileValidationService = fileValidationService; @@ -88,7 +90,7 @@ public FileController( * @param thumbDataUrl The thumbnail URL generated from the upload * @param httpSession The current HTTP session * @return ON SUCCESS: ResponseEntity with a body containing the id of a file. body. - *

ON FAILURE: RepsonseEntity with an error message and a status code.

+ *

ON FAILURE: ResponseEntity with an error message and a status code.

*/ @PostMapping(value = "/file-upload", consumes = MediaType.MULTIPART_FORM_DATA_VALUE) @ResponseStatus(HttpStatus.OK) @@ -108,12 +110,12 @@ public ResponseEntity upload( String.format("Could not find flow with name %s in your application's flow configuration.", flow)); } - Submission submission = submissionRepositoryService.findOrCreate(httpSession); + Submission submission = findOrCreateSubmission(httpSession, flow); UUID userFileId = UUID.randomUUID(); if (submission.getId() == null) { submission.setFlow(flow); - saveToRepository(submission); - httpSession.setAttribute("id", submission.getId()); + submission = saveToRepository(submission); + setSubmissionInSession(httpSession, submission, flow); } if (!fileValidationService.isAcceptedMimeType(file)) { @@ -174,36 +176,21 @@ public ResponseEntity upload( .virusScanned(wasScannedForVirus) .build(); - UUID newFileId = userFileRepositoryService.save(uploadedFile); - log.info("Created new file with id: " + newFileId); - - //TODO: change userFiles special string to constant to be referenced in thymeleaf - HashMap>> dzFilesMap; - HashMap> userFileMap; - HashMap fileInfo = UserFile.createFileInfo(uploadedFile, thumbDataUrl); + uploadedFile = userFileRepositoryService.save(uploadedFile); + log.info("Created new file with id: " + uploadedFile.getFileId()); + UserFileMap userFileMap = null; if (httpSession.getAttribute(SESSION_USERFILES_KEY) == null) { - // no dropzone data exists at all yet, let's create space for the session map as well - // as for the current file being uploaded - dzFilesMap = new HashMap<>(); - userFileMap = new HashMap<>(); + userFileMap = new UserFileMap(); } else { - dzFilesMap = (HashMap>>) httpSession.getAttribute(SESSION_USERFILES_KEY); - if (dzFilesMap.containsKey(inputName)) { - userFileMap = dzFilesMap.get(inputName); - // Double check that files in session cookie are in db - userFileMap.entrySet().removeIf(e -> userFileRepositoryService.findById(e.getKey()).isEmpty()); - } else { - // a map for this inputName dropzone instance does not exist yet, let's create it so we can add files to it - userFileMap = new HashMap<>(); - } + userFileMap = objectMapper.readValue((String) httpSession.getAttribute(SESSION_USERFILES_KEY), + UserFileMap.class); } - userFileMap.put(newFileId, fileInfo); - dzFilesMap.put(inputName, userFileMap); - httpSession.setAttribute(SESSION_USERFILES_KEY, dzFilesMap); + userFileMap.addUserFileToMap(flow, inputName, uploadedFile, thumbDataUrl); + httpSession.setAttribute(SESSION_USERFILES_KEY, objectMapper.writeValueAsString(userFileMap)); - return ResponseEntity.status(HttpStatus.OK).contentType(MediaType.TEXT_PLAIN).body(newFileId.toString()); + return ResponseEntity.status(HttpStatus.OK).contentType(MediaType.TEXT_PLAIN).body(uploadedFile.getFileId().toString()); } catch (Exception e) { if (e instanceof ResponseStatusException) { return ResponseEntity.status(HttpStatus.NOT_FOUND).body(e.getMessage()); @@ -218,55 +205,59 @@ public ResponseEntity upload( * @param fileId The id of an uploaded file that should be deleted * @param returnPath The path to the page that they came from * @param dropZoneInstanceName The drop zone instance used to get the user file name + * @param flow The name of the current (active) flow * @param httpSession The current HTTP session * @return ON SUCCESS: Returns a RedirectView to the returnPath *

ON FAILURE: Returns a RedirectView to the 'error' page

*/ @PostMapping("/file-delete") - RedirectView delete( + public RedirectView delete( @RequestParam("id") UUID fileId, @RequestParam("returnPath") String returnPath, @RequestParam("inputName") String dropZoneInstanceName, + @RequestParam("flow") String flow, HttpSession httpSession, HttpServletRequest request ) { try { log.info("POST delete (url: {}): fileId: {} inputName: {}", request.getRequestURI().toLowerCase(), fileId, dropZoneInstanceName); - UUID submissionId = (UUID) httpSession.getAttribute("id"); - Optional maybeSubmission = submissionRepositoryService.findById(submissionId); - if (maybeSubmission.isEmpty()) { - log.error(String.format("Submission %s does not exist", submissionId.toString())); + Submission submission = getSubmissionFromSession(httpSession, flow); + if (submission == null) { + log.error("Submission does not exist for file '{}', not deleting file", fileId); return new RedirectView("/error"); } Optional maybeFile = userFileRepositoryService.findById(fileId); if (maybeFile.isEmpty()) { - log.error(String.format("File with id %s may have already been deleted", fileId)); + log.error("File with id '{}' not found. It may have already been deleted?", fileId); return new RedirectView("/error"); } UserFile file = maybeFile.get(); - if (!submissionId.equals(file.getSubmission().getId())) { - log.error(String.format("Submission %s does not match file %s's submission id %s", submissionId, fileId, - file.getSubmission().getId())); + if (!submission.getId().equals(file.getSubmission().getId())) { + log.error( + String.format( + "Submission %s does not match file %s's submission id %s", + submission.getId(), + fileId, + file.getSubmission().getId())); return new RedirectView("/error"); } log.info("Delete file {} from cloud storage", fileId); cloudFileRepository.delete(file.getRepositoryPath()); userFileRepositoryService.deleteById(file.getFileId()); - HashMap>> dzFilesMap = - (HashMap>>) httpSession.getAttribute(SESSION_USERFILES_KEY); - HashMap> userFileMap = dzFilesMap.get(dropZoneInstanceName); - userFileMap.remove(fileId); - if (userFileMap.isEmpty()) { - dzFilesMap.remove(dropZoneInstanceName); + UserFileMap userFileMap = objectMapper.readValue((String) httpSession.getAttribute(SESSION_USERFILES_KEY), + UserFileMap.class); + if (userFileMap == null) { + log.error("User file map not set in session. Unable to update file information"); + throw new IndexOutOfBoundsException("Session does not contain user file mapping."); } - - httpSession.setAttribute(SESSION_USERFILES_KEY, dzFilesMap); + userFileMap.removeUserFileFromMap(flow, fileId); + httpSession.setAttribute(SESSION_USERFILES_KEY, objectMapper.writeValueAsString(userFileMap)); return new RedirectView(returnPath); } catch (Exception e) { @@ -276,25 +267,37 @@ RedirectView delete( } /** - * @param httpSession The current HTTP session * @param submissionId The submissionId of the file to be downloaded * @param fileId The UUID of the file to be downloaded. + * @param flow The name of the current (active) flow + * @param httpSession The current HTTP session + * @param request The HttpServletRequest * @return ON SUCCESS: ResponseEntity with a response body that includes the file. *

ON FAILURE: A ResponseEntity returns an HTTP error code

*/ - @GetMapping("/file-download/{submissionId}/{fileId}") + @GetMapping("/file-download/{flow}/{submissionId}/{fileId}") public ResponseEntity downloadSingleFile( - HttpSession httpSession, @PathVariable String submissionId, @PathVariable String fileId, + @PathVariable String flow, + HttpSession httpSession, HttpServletRequest request ) { log.info("GET downloadSingleFile (url: {}): submissionId: {} fileId {}", request.getRequestURI().toLowerCase(), submissionId, fileId); - if (!submissionId.equals(httpSession.getAttribute("id").toString())) { + + if (!submissionId.equals(getSubmissionIdForFlow(httpSession, flow).toString())) { + log.error("There was an attempt to download a file with submission ID '{}', " + + "which does not match the submission of the file being downloaded.", submissionId); return ResponseEntity.status(HttpStatus.FORBIDDEN).build(); } + Submission submission = getSubmissionFromSession(httpSession, flow); + if (submission == null) { + log.error("Submission does not exist for that file"); + return ResponseEntity.notFound().build(); + } + Optional maybeFile = userFileRepositoryService.findById(UUID.fromString(fileId)); if (maybeFile.isEmpty()) { log.error(String.format("Could not find the file with id: %s.", fileId)); @@ -302,8 +305,7 @@ public ResponseEntity downloadSingleFile( } UserFile file = maybeFile.get(); - - if (!httpSession.getAttribute("id").toString().equals(file.getSubmission().getId().toString())) { + if (!submissionId.equals(file.getSubmission().getId().toString())) { log.error(String.format("Attempt to download file with submission ID %s but session ID %s does not match", file.getSubmission().getId(), httpSession.getAttribute("id"))); return ResponseEntity.status(HttpStatus.FORBIDDEN).build(); @@ -333,31 +335,37 @@ public ResponseEntity downloadSingleFile( } /** - * @param httpSession The current HTTP session. * @param submissionId The submissionId of the all the files that you would like to download. + * @param httpSession The current HTTP session. + * @param flow The name of the current (active) flow + * @param request The HttpServletRequest * @return ON SUCCESS: ResponseEntity with a zip file containing all the files in a submission. *

ON FAILURE: ResponseEntity with a HTTP error message

*/ - @GetMapping("/file-download/{submissionId}") - ResponseEntity downloadAllFiles( - HttpSession httpSession, + @GetMapping("/file-download/{flow}/{submissionId}") + public ResponseEntity downloadAllFiles( @PathVariable String submissionId, + @PathVariable String flow, + HttpSession httpSession, HttpServletRequest request ) { log.info("GET downloadAllFiles (url: {}): submissionId: {}", request.getRequestURI().toLowerCase(), submissionId); - if (!httpSession.getAttribute("id").toString().equals(submissionId)) { + + // first check to see if the ID in the session for the current flow is equal to the + // requested submissionId in the URL path + if (!submissionId.equals(getSubmissionIdForFlow(httpSession, flow).toString())) { log.error( "Attempted to download files belonging to submission " + submissionId + " but session id " + httpSession.getAttribute( "id") + " does not match."); return ResponseEntity.status(HttpStatus.FORBIDDEN).build(); } - Optional maybeSubmission = submissionRepositoryService.findById(UUID.fromString(submissionId)); - if (maybeSubmission.isEmpty()) { + // now check to see if the submission itself exists + Submission submission = getSubmissionFromSession(httpSession, flow); + if (submission == null) { log.error(String.format("The Submission %s was not found.", submissionId)); return ResponseEntity.notFound().build(); } - Submission submission = maybeSubmission.get(); List userFiles = userFileRepositoryService.findAllBySubmission(submission); diff --git a/src/main/java/formflow/library/FormFlowController.java b/src/main/java/formflow/library/FormFlowController.java index a9f27def4..7fc311196 100644 --- a/src/main/java/formflow/library/FormFlowController.java +++ b/src/main/java/formflow/library/FormFlowController.java @@ -3,41 +3,56 @@ import formflow.library.config.FlowConfiguration; import formflow.library.data.Submission; import formflow.library.data.SubmissionRepositoryService; +import formflow.library.data.UserFileRepositoryService; +import jakarta.servlet.http.HttpSession; import java.util.List; +import java.util.Optional; +import java.util.UUID; +import java.util.Map; +import java.util.HashMap; +import lombok.extern.slf4j.Slf4j; import org.springframework.http.HttpStatus; import org.springframework.web.server.ResponseStatusException; +@Slf4j public abstract class FormFlowController { protected final SubmissionRepositoryService submissionRepositoryService; + protected final UserFileRepositoryService userFileRepositoryService; + protected final List flowConfigurations; - FormFlowController(SubmissionRepositoryService submissionRepositoryService, List flowConfigurations) { + public static final String SUBMISSION_MAP_NAME = "submissionMap"; + + FormFlowController(SubmissionRepositoryService submissionRepositoryService, UserFileRepositoryService userFileRepositoryService, + List flowConfigurations) { this.submissionRepositoryService = submissionRepositoryService; + this.userFileRepositoryService = userFileRepositoryService; this.flowConfigurations = flowConfigurations; } - protected void saveToRepository(Submission submission) { - submissionRepositoryService.removeFlowCSRF(submission); - submissionRepositoryService.save(submission); + protected Submission saveToRepository(Submission submission) { + return saveToRepository(submission, null); } - protected void saveToRepository(Submission submission, String subflowName) { + protected Submission saveToRepository(Submission submission, String subflowName) { submissionRepositoryService.removeFlowCSRF(submission); - submissionRepositoryService.removeSubflowCSRF(submission, subflowName); - submissionRepositoryService.save(submission); + if (subflowName != null && !subflowName.isBlank()) { + submissionRepositoryService.removeSubflowCSRF(submission, subflowName); + } + return submissionRepositoryService.save(submission); } protected FlowConfiguration getFlowConfigurationByName(String flow) { - List flowConfigurationList = flowConfigurations.stream().filter( - flowConfiguration -> flowConfiguration.getName().equals(flow)).toList(); - - if (flowConfigurationList.isEmpty()) { - throwNotFoundError(flow, null, String.format("Could not find flow %s in your applications flow configuration file.", flow)); - } - - return flowConfigurationList.get(0); + List flowConfigurationList = flowConfigurations.stream().filter( + flowConfiguration -> flowConfiguration.getName().equals(flow)).toList(); + + if (flowConfigurationList.isEmpty()) { + throwNotFoundError(flow, null, String.format("Could not find flow %s in your applications flow configuration file.", flow)); + } + + return flowConfigurationList.get(0); } protected Boolean doesFlowExist(String flow) { @@ -46,9 +61,110 @@ protected Boolean doesFlowExist(String flow) { ); } - protected static void throwNotFoundError(String flow,String screen, String message) { - throw new ResponseStatusException(HttpStatus.NOT_FOUND, String.format("There was a problem with the request (flow: %s, screen: %s): %s", - flow, screen, message)); + protected static void throwNotFoundError(String flow, String screen, String message) { + throw new ResponseStatusException(HttpStatus.NOT_FOUND, + String.format("There was a problem with the request (flow: %s, screen: %s): %s", + flow, screen, message)); + + } + + /** + * If the submission information exists in the HttpSession, find it in the db. If a submission is not found, create a new one. + * + * @param httpSession The HttpSession to look in for information + * @param flow The name of the flow to retrieve data about + * @return Submission A Submission object from the database or a new one if one was not found + */ + public Submission findOrCreateSubmission(HttpSession httpSession, String flow) { + Submission submission = null; + try { + submission = getSubmissionFromSession(httpSession, flow); + } catch (ResponseStatusException ignored) { + // it's okay if it doesn't exist already + } + + if (submission == null) { + log.info("Submission not found in session for flow '{}', creating one.", flow); + submission = new Submission(); + } + return submission; + } + + /** + * Returns the UUID of the Submission associated with the given flow. + * + * @param session The HttpSession the user is in + * @param flow The flow to look up the submission ID for + * @return The submission id if it exists for the given flow, else null + */ + public static UUID getSubmissionIdForFlow(HttpSession session, String flow) { + if (session == null) { + throwNotFoundError(flow, null, String.format("Session is null, unable to retrieve submission id for flow '%s'.", flow)); + } + + Map submissionMap = (Map) session.getAttribute(SUBMISSION_MAP_NAME); + if (submissionMap == null) { + throwNotFoundError(flow, null, String.format("There was no submission map present in the session for flow '%s'.", flow)); + } + + return submissionMap.get(flow); + } + + /** + * This method will return a Submission that was referenced the HttpSession for a particular flow, if one exists. If the session + * or now Submission exists, a null will be returned. + * + * @param session the HttpSession data will be looked for in + * @param flow the current flow to retrieve the Submission for + * @return Submission for the flow, if one exists, else null + */ + protected Submission getSubmissionFromSession(HttpSession session, String flow) { + if (session == null) { + throwNotFoundError(flow, null, String.format("Session is null, unable to retrieve submission for flow '%s'.", flow)); + } + + Map submissionMap = (Map) session.getAttribute(SUBMISSION_MAP_NAME); + if (submissionMap == null) { + throwNotFoundError(flow, null, String.format("There was no submission map present in the session for flow '%s'.", flow)); + } + + UUID id = submissionMap.get(flow); + if (id != null) { + Optional maybeSubmission = submissionRepositoryService.findById(id); + if (maybeSubmission.isPresent()) { + return maybeSubmission.get(); + } + throwNotFoundError(flow, null, String.format("No submission was found in the database with id '%s'.", id)); + } + + throwNotFoundError(flow, null, String.format("No ID was present in the session map for flow '%s'", flow)); + return null; + } + + /* + * A method that will store the Submission ID, based on flow, in the HttpSession provided. + * + * @param session The HttpSession to store information in + * @param submission The Submission whose information will be stored + * @param flow A string containing the name of the flow to store the Submission data for + */ + protected void setSubmissionInSession(HttpSession session, Submission submission, String flow) { + if (session == null) { + log.error( + "Unable to put the submission ID ('{}') into the session for the flow '{}'. Session is null.", + submission != null ? submission.getId() : null, + flow); + return; + } + + Map submissionMap = (Map) session.getAttribute(SUBMISSION_MAP_NAME); + UUID id = submission != null ? submission.getId() : null; + + if (submissionMap == null) { + submissionMap = new HashMap<>(); + } + submissionMap.put(flow, id); + session.setAttribute(SUBMISSION_MAP_NAME, submissionMap); } } diff --git a/src/main/java/formflow/library/PdfController.java b/src/main/java/formflow/library/PdfController.java index b100842fb..41a299bbb 100644 --- a/src/main/java/formflow/library/PdfController.java +++ b/src/main/java/formflow/library/PdfController.java @@ -3,6 +3,7 @@ import formflow.library.config.FlowConfiguration; import formflow.library.data.Submission; import formflow.library.data.SubmissionRepositoryService; +import formflow.library.data.UserFileRepositoryService; import formflow.library.pdf.PdfService; import jakarta.servlet.http.HttpServletRequest; import jakarta.servlet.http.HttpSession; @@ -34,8 +35,9 @@ public class PdfController extends FormFlowController { public PdfController(MessageSource messageSource, PdfService pdfService, SubmissionRepositoryService submissionRepositoryService, + UserFileRepositoryService userFileRepositoryService, List flowConfigurations) { - super(submissionRepositoryService, flowConfigurations); + super(submissionRepositoryService, userFileRepositoryService, flowConfigurations); this.messageSource = messageSource; this.pdfService = pdfService; } @@ -54,7 +56,7 @@ ResponseEntity downloadPdf( } Optional maybeSubmission = submissionRepositoryService.findById(UUID.fromString(submissionId)); - if (httpSession.getAttribute("id").toString().equals(submissionId) && maybeSubmission.isPresent()) { + if (getSubmissionIdForFlow(httpSession, flow).toString().equals(submissionId) && maybeSubmission.isPresent()) { log.info("Downloading PDF with submission_id: " + submissionId); Submission submission = maybeSubmission.get(); HttpHeaders headers = new HttpHeaders(); diff --git a/src/main/java/formflow/library/ScreenController.java b/src/main/java/formflow/library/ScreenController.java index 3c036e229..96b9117bc 100644 --- a/src/main/java/formflow/library/ScreenController.java +++ b/src/main/java/formflow/library/ScreenController.java @@ -12,6 +12,7 @@ import formflow.library.data.FormSubmission; import formflow.library.data.Submission; import formflow.library.data.SubmissionRepositoryService; +import formflow.library.data.UserFileRepositoryService; import formflow.library.file.FileValidationService; import formflow.library.inputs.UnvalidatedField; import jakarta.servlet.http.HttpServletRequest; @@ -58,13 +59,14 @@ public class ScreenController extends FormFlowController { public ScreenController( List flowConfigurations, + UserFileRepositoryService userFileRepositoryService, SubmissionRepositoryService submissionRepositoryService, ValidationService validationService, AddressValidationService addressValidationService, ConditionManager conditionManager, ActionManager actionManager, FileValidationService fileValidationService) { - super(submissionRepositoryService, flowConfigurations); + super(submissionRepositoryService, userFileRepositoryService, flowConfigurations); this.validationService = validationService; this.addressValidationService = addressValidationService; this.conditionManager = conditionManager; @@ -94,8 +96,8 @@ ModelAndView getScreen( log.info("GET getScreen (url: {}): flow: {}, screen: {}", request.getRequestURI().toLowerCase(), flow, screen); // this will ensure that the screen and flow actually exist ScreenNavigationConfiguration currentScreen = getScreenConfig(flow, screen); + Submission submission = findOrCreateSubmission(httpSession, flow); - Submission submission = submissionRepositoryService.findOrCreate(httpSession); if ((submission.getUrlParams() != null) && (!submission.getUrlParams().isEmpty())) { submission.mergeUrlParamsWithData(query_params); } else { @@ -103,8 +105,8 @@ ModelAndView getScreen( } submission.setFlow(flow); - saveToRepository(submission); - httpSession.setAttribute("id", submission.getId()); + submission = saveToRepository(submission); + setSubmissionInSession(httpSession, submission, flow); if (uuid != null) { actionManager.handleBeforeDisplayAction(currentScreen, submission, uuid); @@ -153,8 +155,7 @@ ModelAndView postScreen( log.info("POST postScreen (url: {}): flow: {}, screen: {}", request.getRequestURI().toLowerCase(), flow, screen); // Checks if screen and flow exist var currentScreen = getScreenConfig(flow, screen); - - Submission submission = submissionRepositoryService.findOrCreate(httpSession); + Submission submission = findOrCreateSubmission(httpSession, flow); FormSubmission formSubmission = new FormSubmission(formData); actionManager.handleOnPostAction(currentScreen, formSubmission, submission); @@ -189,8 +190,8 @@ ModelAndView postScreen( } actionManager.handleBeforeSaveAction(currentScreen, submission); - saveToRepository(submission); - httpSession.setAttribute("id", submission.getId()); + submission = saveToRepository(submission); + setSubmissionInSession(httpSession, submission, flow); actionManager.handleAfterSaveAction(currentScreen, submission); return new ModelAndView(String.format("redirect:/flow/%s/%s/navigation", flow, screen)); @@ -221,15 +222,14 @@ ModelAndView getSubflowScreen( uuid); // Checks if screen and flow exist var currentScreen = getScreenConfig(flow, screen); - Optional maybeSubmission = submissionRepositoryService.findById((UUID) httpSession.getAttribute("id")); + Submission submission = getSubmissionFromSession(httpSession, flow); - if (maybeSubmission.isEmpty()) { + if (submission == null) { // we have issues! We should not get here, really. log.error("There is no submission associated with request!"); throw new ResponseStatusException(HttpStatus.BAD_REQUEST); } - Submission submission = maybeSubmission.get(); actionManager.handleBeforeDisplayAction(currentScreen, submission, uuid); Map model = createModel(flow, screen, httpSession, submission, uuid); model.put("formAction", String.format("/flow/%s/%s/%s", flow, screen, uuid)); @@ -274,8 +274,8 @@ ModelAndView updateOrCreateIteration( boolean isNewIteration = uuid.equalsIgnoreCase("new"); String iterationUuid = isNewIteration ? UUID.randomUUID().toString() : uuid; FormSubmission formSubmission = new FormSubmission(formData); - Submission submission = submissionRepositoryService.findOrCreate(httpSession); String subflowName = currentScreen.getSubflow(); + Submission submission = findOrCreateSubmission(httpSession, flow); actionManager.handleOnPostAction(currentScreen, formSubmission, submission, iterationUuid); @@ -301,7 +301,8 @@ ModelAndView updateOrCreateIteration( handleAddressValidation(submission, formSubmission); - if (httpSession.getAttribute("id") != null) { + if (submission.getId() != null) { + // if we are not working with a new submission, make sure to update any existing data // have we submitted any data to the subflow yet? if (!submission.getInputData().containsKey(subflowName)) { submission.getInputData().put(subflowName, new ArrayList>()); @@ -350,8 +351,8 @@ ModelAndView updateOrCreateIteration( } actionManager.handleBeforeSaveAction(currentScreen, submission, iterationUuid); - saveToRepository(submission, subflowName); - httpSession.setAttribute("id", submission.getId()); + submission = saveToRepository(submission, subflowName); + setSubmissionInSession(httpSession, submission, flow); actionManager.handleAfterSaveAction(currentScreen, submission, iterationUuid); String nextScreen = getNextScreenName(submission, currentScreen, iterationUuid); String viewString = isNextScreenInSubflow(flow, submission, currentScreen, iterationUuid) ? @@ -387,11 +388,9 @@ ModelAndView deleteConfirmation( // Checks to see if flow exists String deleteConfirmationScreen = getFlowConfigurationByName(flow) .getSubflows().get(subflow).getDeleteConfirmationScreen(); - UUID id = (UUID) httpSession.getAttribute("id"); - Optional submissionOptional = submissionRepositoryService.findById(id); + Submission submission = getSubmissionFromSession(httpSession, flow); - if (submissionOptional.isPresent()) { - Submission submission = submissionOptional.get(); + if (submission != null) { var existingInputData = submission.getInputData(); var subflowArr = (ArrayList>) existingInputData.get(subflow); var entryToDelete = subflowArr.stream().filter(entry -> entry.get("uuid").equals(uuid)).findFirst(); @@ -427,32 +426,31 @@ ModelAndView deleteSubflowIteration( // Checks to make sure flow exists String subflowEntryScreen = getFlowConfigurationByName(flow).getSubflows().get(subflow) .getEntryScreen(); - UUID id = (UUID) httpSession.getAttribute("id"); - Optional submissionOptional = submissionRepositoryService.findById(id); - if (submissionOptional.isPresent()) { - Submission submission = submissionOptional.get(); - var existingInputData = submission.getInputData(); - if (existingInputData.containsKey(subflow)) { - var subflowArr = (ArrayList>) existingInputData.get(subflow); - Optional> entryToDelete = subflowArr.stream() - .filter(entry -> entry.get("uuid").equals(uuid)).findFirst(); - entryToDelete.ifPresent(subflowArr::remove); - if (!subflowArr.isEmpty()) { - existingInputData.put(subflow, subflowArr); - submission.setInputData(existingInputData); - saveToRepository(submission, subflow); - } else { - existingInputData.remove(subflow); - submission.setInputData(existingInputData); - saveToRepository(submission, subflow); - return new ModelAndView("redirect:/flow/%s/%s".formatted(flow, subflowEntryScreen)); - } + Submission submission = getSubmissionFromSession(httpSession, flow); + if (submission == null) { + throw new ResponseStatusException(HttpStatus.BAD_REQUEST); + } + + var existingInputData = submission.getInputData(); + if (existingInputData.containsKey(subflow)) { + var subflowArr = (ArrayList>) existingInputData.get(subflow); + Optional> entryToDelete = subflowArr.stream() + .filter(entry -> entry.get("uuid").equals(uuid)).findFirst(); + entryToDelete.ifPresent(subflowArr::remove); + if (!subflowArr.isEmpty()) { + existingInputData.put(subflow, subflowArr); + submission.setInputData(existingInputData); + submission = saveToRepository(submission, subflow); } else { + existingInputData.remove(subflow); + submission.setInputData(existingInputData); + submission = saveToRepository(submission, subflow); return new ModelAndView("redirect:/flow/%s/%s".formatted(flow, subflowEntryScreen)); } } else { - throw new ResponseStatusException(HttpStatus.BAD_REQUEST); + return new ModelAndView("redirect:/flow/%s/%s".formatted(flow, subflowEntryScreen)); } + String reviewScreen = getFlowConfigurationByName(flow).getSubflows().get(subflow) .getReviewScreen(); return new ModelAndView(String.format("redirect:/flow/%s/" + reviewScreen, flow)); @@ -474,10 +472,14 @@ ModelAndView navigation( HttpServletRequest request ) { log.info("GET navigation (url: {}): flow: {}, screen: {}", request.getRequestURI().toLowerCase(), flow, screen); - log.info("Current submission ID is :" + httpSession.getAttribute("id") + " and current Session ID is :" + httpSession.getId()); // Checks if the screen and flow exist var currentScreen = getScreenConfig(flow, screen); - String nextScreen = getNextScreenName(submissionRepositoryService.findOrCreate(httpSession), currentScreen, null); + Submission submission = getSubmissionFromSession(httpSession, flow); + if (submission == null) { + throwNotFoundError(flow, screen, + String.format("Submission not found in session for flow '{}', when navigating to '{}'", flow, screen)); + } + String nextScreen = getNextScreenName(submission, currentScreen, null); log.info("navigation: flow: " + flow + ", nextScreen: " + nextScreen); return new ModelAndView(new RedirectView("/flow/%s/%s".formatted(flow, nextScreen))); @@ -624,6 +626,7 @@ private Map createModel(String flow, String screen, HttpSession model.put("inputData", submission.getInputData()); model.put("errorMessages", httpSession.getAttribute("errorMessages")); model.put("fieldData", submission.getInputData()); + model.put("userFiles", userFileRepositoryService.findAllBySubmission(submission)); if (subflowName != null) { if (uuid != null && !uuid.isBlank()) { model.put("fieldData", submission.getSubflowEntryByUuid(subflowName, uuid)); diff --git a/src/main/java/formflow/library/data/SubmissionRepositoryService.java b/src/main/java/formflow/library/data/SubmissionRepositoryService.java index 09471b15d..8e35a31d8 100644 --- a/src/main/java/formflow/library/data/SubmissionRepositoryService.java +++ b/src/main/java/formflow/library/data/SubmissionRepositoryService.java @@ -1,6 +1,5 @@ package formflow.library.data; -import jakarta.servlet.http.HttpSession; import java.util.ArrayList; import java.util.Map; import java.util.Optional; @@ -33,14 +32,14 @@ public SubmissionRepositoryService(SubmissionRepository repository, SubmissionEn * @param submission the submission to save, not null * @return UUID of the saved submission */ - public UUID save(Submission submission) { + public Submission save(Submission submission) { var newRecord = submission.getId() == null; - UUID id = repository.save(encryptionService.encrypt(submission)).getId(); + Submission savedSubmission = repository.save(encryptionService.encrypt(submission)); if (newRecord) { - log.info("created submission id: " + id); + log.info("created submission id: " + savedSubmission.getId()); } - submission.setId(id); - return id; + // straight from the db will be encrypted, so decrypt first. + return encryptionService.decrypt(savedSubmission); } /** @@ -81,29 +80,4 @@ public void removeSubflowCSRF(Submission submission, String subflowName) { } } } - - /** - * If the submission exists in the session, find it in the db. If not or can't be found, create a new one. - * - * @param httpSession submission - * @return Submission - */ - public Submission findOrCreate(HttpSession httpSession) { - var id = (UUID) httpSession.getAttribute("id"); - if (id != null) { - Optional submissionOptional = findById(id); - if (submissionOptional.isEmpty()) { - log.error("findOrCreate could not find submission: " + id); - Submission newSubmission = new Submission(); - log.info("findOrCreate created new submission: " + newSubmission.getId()); - return newSubmission; - } else { - return submissionOptional.get(); - } - } else { - Submission newSubmission = new Submission(); - log.info("findOrCreate got no submission id from session, so created new submission: " + newSubmission.getId()); - return newSubmission; - } - } } diff --git a/src/main/java/formflow/library/data/UserFileRepositoryService.java b/src/main/java/formflow/library/data/UserFileRepositoryService.java index 55add6beb..61cc6bc16 100644 --- a/src/main/java/formflow/library/data/UserFileRepositoryService.java +++ b/src/main/java/formflow/library/data/UserFileRepositoryService.java @@ -27,8 +27,8 @@ public UserFileRepositoryService(UserFileRepository repository) { * @param userFile the uploadedFile to save, not null * @return UUID of the file */ - public UUID save(UserFile userFile) { - return repository.save(userFile).getFileId(); + public UserFile save(UserFile userFile) { + return repository.save(userFile); } /** diff --git a/src/main/java/formflow/library/interceptors/SessionContinuityInterceptor.java b/src/main/java/formflow/library/interceptors/SessionContinuityInterceptor.java index 36cfa24cb..a06d12d1c 100644 --- a/src/main/java/formflow/library/interceptors/SessionContinuityInterceptor.java +++ b/src/main/java/formflow/library/interceptors/SessionContinuityInterceptor.java @@ -1,5 +1,6 @@ package formflow.library.interceptors; +import formflow.library.FormFlowController; import formflow.library.config.FlowConfiguration; import formflow.library.exceptions.LandmarkNotSetException; import jakarta.servlet.http.HttpServletRequest; @@ -41,7 +42,8 @@ public SessionContinuityInterceptor(List flowConfigurations) * @param handler chosen handler to execute, for type and/or instance evaluation * @return Boolean True - allows the request to proceed to the ScreenController, False - stops the request from reaching the * Screen Controller. - * @throws IOException - thrown in the event that an input or output exception occurs when this method does a redirect. + * @throws IOException - thrown in the event that an input or output exception occurs when this method does a + * redirect. * @throws LandmarkNotSetException - thrown in the event that a landmark(s) screen is misconfigured */ @Override @@ -91,7 +93,8 @@ public boolean preHandle(HttpServletRequest request, @NotNull HttpServletRespons return false; } - if (session.getAttribute("id") == null) { + if (FormFlowController.getSubmissionIdForFlow(session, parsedUrl.get("flow")) == null && + !parsedUrl.get("screen").equals(firstScreen)) { log.error("A submission ID was not found in the session for request to {}. Redirecting to landing page.", request.getRequestURI()); response.sendRedirect(REDIRECT_URL); diff --git a/src/main/java/formflow/library/utils/UserFileMap.java b/src/main/java/formflow/library/utils/UserFileMap.java new file mode 100644 index 000000000..05c2bac02 --- /dev/null +++ b/src/main/java/formflow/library/utils/UserFileMap.java @@ -0,0 +1,64 @@ +package formflow.library.utils; + +import formflow.library.data.UserFile; +import java.util.Map; +import java.util.HashMap; +import java.util.UUID; +import lombok.Getter; +import lombok.extern.slf4j.Slf4j; + +/** + * A class to contain the file mapping for the client side rendering of DropZone files. + *

+ * Warning: This class will be serialized and sent to the client side. Do not include sensitive information in here that would + * then be shared with the client. Only include information that can be shared. + *

+ */ +@Slf4j +@Getter +public class UserFileMap { + + // flow -> inputName -> fileId -> file info + private Map>>> userFileMap; + + public UserFileMap() { + userFileMap = new HashMap<>(); + } + + public void addUserFileToMap(String flow, String inputName, UserFile userFile, String thumbDataUrl) { + Map fileInfo = UserFile.createFileInfo(userFile, thumbDataUrl); + + if (!userFileMap.containsKey(flow)) { + userFileMap.put(flow, new HashMap<>()); + } + + if (!userFileMap.get(flow).containsKey(inputName)) { + userFileMap.get(flow).put(inputName, new HashMap<>()); + } + + userFileMap.get(flow).get(inputName).put(userFile.getFileId(), fileInfo); + } + + public void removeUserFileFromMap(String flow, UUID fileId) { + + if (userFileMap.get(flow) == null) { + log.warn("Unable to remove fileId '{}' from flow '{}'. Flow does not exist", + fileId.toString(), flow); + throw new IndexOutOfBoundsException( + String.format("Flow '%s' does not exist", flow) + ); + } + + log.debug("Removing fileId '{}' from user file list (flow '{}'", fileId, flow); + userFileMap.get(flow).forEach((inputField, files) -> { + files.entrySet().removeIf(e -> e.getKey().equals(fileId)); + }); + + // clean up a few things, if that was the last file listed under an inputName or flow name + userFileMap.get(flow).entrySet().removeIf(e -> e.getValue().isEmpty()); + + if (userFileMap.get(flow).isEmpty()) { + userFileMap.remove(flow); + } + } +} diff --git a/src/main/resources/templates/fragments/fileUploader.html b/src/main/resources/templates/fragments/fileUploader.html index 5b3fce361..d197eea90 100644 --- a/src/main/resources/templates/fragments/fileUploader.html +++ b/src/main/resources/templates/fragments/fileUploader.html @@ -61,7 +61,7 @@ window['myDropZone' + [[${inputName}]]] = null; window['userFileIds' + [[${inputName}]]] = []; window['cancelledFiles' + [[${inputName}]]] = []; - var userFiles = [[${session.userFiles}]] + var userFiles = [[${session.userFiles}]] != null ? JSON.parse([[${session.userFiles}]]) : null; var thumbnailWidthFromAppYml = [[${@environment.getProperty('form-flow.uploads.thumbnail-width')}]]; var thumbnailHeightFromAppYml = [[${@environment.getProperty('form-flow.uploads.thumbnail-height')}]]; var thumbnailWidth = thumbnailWidthFromAppYml ? thumbnailWidthFromAppYml : '64'; @@ -214,11 +214,11 @@ }); } - function sendDeleteXhrRequest(id) { + function sendDeleteXhrRequest(id, flow) { var xhrRequest = new XMLHttpRequest(); xhrRequest.open('POST', '/file-delete?' + id + '&returnPath=' + window.location.pathname + '&inputName=' - + [[${inputName}]], true); + + [[${inputName}]] + '&flow=' + flow, true); xhrRequest.withCredentials = false; xhrRequest.setRequestHeader("Accept", "*/*"); xhrRequest.setRequestHeader("X-Requested-With", "XMLHttpRequest"); @@ -271,7 +271,8 @@ init: function () { window[dropzonePrefix + [[${inputName}]]] = this; var dzInstance = [[${inputName}]] - var documents = userFiles !== null ? userFiles[dzInstance] : []; + var flow = [[${flow}]] + var documents = userFiles?.userFileMap?.[flow]?.[dzInstance] || []; if (documents != null && Object.entries(documents).length > this.options.maxFiles) { toggleMaxFileMessage('on'); @@ -343,7 +344,6 @@ }); this.on('maxfilesexceeded', function () { - console.log("maxfilesexceeded was emitted"); toggleMaxFileMessage('on'); }); @@ -360,7 +360,7 @@ [[#{general.files.confirm-delete}]] + fileName + '. ' + [[#{general.files.confirm-delete-ok}]]) if (confirmation) { - sendDeleteXhrRequest(id); + sendDeleteXhrRequest(id, [[${flow}]]); removeFileFromDropzone(file, id); } } diff --git a/src/test/java/formflow/library/controllers/FileControllerTest.java b/src/test/java/formflow/library/controllers/FileControllerTest.java index c8b223021..719c8673b 100644 --- a/src/test/java/formflow/library/controllers/FileControllerTest.java +++ b/src/test/java/formflow/library/controllers/FileControllerTest.java @@ -11,6 +11,8 @@ import static org.springframework.test.web.servlet.result.MockMvcResultMatchers.redirectedUrl; import static org.springframework.test.web.servlet.result.MockMvcResultMatchers.status; +import com.fasterxml.jackson.core.JsonProcessingException; +import com.fasterxml.jackson.databind.ObjectMapper; import formflow.library.FileController; import formflow.library.data.Submission; import formflow.library.data.SubmissionRepositoryService; @@ -20,13 +22,13 @@ import formflow.library.file.CloudFile; import formflow.library.file.CloudFileRepository; import formflow.library.utilities.AbstractMockMvcTest; +import formflow.library.utils.UserFileMap; import java.nio.file.Files; import java.nio.file.Paths; import java.sql.Date; import java.time.Instant; import java.util.Arrays; import java.util.Collections; -import java.util.HashMap; import java.util.List; import java.util.Map; import java.util.Optional; @@ -82,8 +84,18 @@ public void setUp() throws Exception { UUID submissionUUID = UUID.randomUUID(); mockMvc = MockMvcBuilders.standaloneSetup(fileController).build(); submission = Submission.builder().id(submissionUUID).build(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); + when(clammitVirusScanner.virusDetected(any())).thenReturn(false); + when(submissionRepositoryService.save(any())).thenReturn(submission); + // Set the file ID on the UserFile since Mockito won't actually set one (it just returns what we tell it to) + // It does not call the actual save method which is what sets the ID + when(userFileRepositoryService.save(any())).thenAnswer(invocation -> { + UserFile userFile = invocation.getArgument(0); + userFile.setFileId(fileId); + return userFile; + }); + + setFlowInfoInSession(session, "testFlow", submission.getId()); super.setUp(); } @@ -103,12 +115,11 @@ void shouldReturn404IfFlowDoesNotExist() throws Exception { @Test public void fileUploadEndpointHitsCloudFileRepositoryAndAddsUserFileToSession() throws Exception { - when(userFileRepositoryService.save(any())).thenReturn(fileId); + when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); doNothing().when(cloudFileRepository).upload(any(), any()); // the "name" param has to match what the endpoint expects: "file" MockMultipartFile testImage = new MockMultipartFile("file", "someImage.jpg", MediaType.IMAGE_JPEG_VALUE, "test".getBytes()); - session = new MockHttpSession(); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-upload") .file(testImage) @@ -121,25 +132,20 @@ public void fileUploadEndpointHitsCloudFileRepositoryAndAddsUserFileToSession() .andExpect(content().string(fileId.toString())); verify(cloudFileRepository, times(1)).upload(any(), any()); - UserFile testUserFile = new UserFile( - fileId, - new Submission(), - Date.from(Instant.now()), - "coolFile.jpg", - "pathToS3", - ".pdf", - Float.valueOf("10"), - false - ); - HashMap>> testDzInstanceMap = new HashMap<>(); - HashMap> userFiles = new HashMap<>(); - userFiles.put(1L, UserFile.createFileInfo(testUserFile, "thumbnail")); - testDzInstanceMap.put("dropZoneTestInstance", userFiles); - session = new MockHttpSession(); - session.setAttribute("id", fileId); - session.setAttribute("userFiles", testDzInstanceMap); - - assertThat(session.getAttribute("userFiles")).isEqualTo(testDzInstanceMap); + + ObjectMapper objectMapper = new ObjectMapper(); + UserFileMap userFileMap = objectMapper.readValue(session.getAttribute("userFiles").toString(), UserFileMap.class); + + // get the DZ Instance Map from the session and make sure the file info looks okay + assertThat(userFileMap.getUserFileMap().size()).isEqualTo(1); + assertThat(userFileMap.getUserFileMap().get("testFlow").size()).isEqualTo(1); + + UUID theNewFileId = (UUID) userFileMap.getUserFileMap().get("testFlow").get("dropZoneTestInstance").keySet().toArray()[0]; + Map fileData = userFileMap.getUserFileMap().get("testFlow").get("dropZoneTestInstance").get(theNewFileId); + assertThat(fileData.get("originalFilename")).isEqualTo("someImage.jpg"); + assertThat(fileData.get("filesize")).isEqualTo("4.0"); + assertThat(fileData.get("thumbnailUrl")).isEqualTo("base64string"); + assertThat(fileData.get("type")).isEqualTo(MediaType.IMAGE_JPEG_VALUE); } @Test @@ -150,6 +156,7 @@ void shouldShowFileContainsVirusErrorIfClammitScanFindsVirus() throws Exception MediaType.IMAGE_JPEG_VALUE, "X5O!P%@AP[4\\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*".getBytes()); when(clammitVirusScanner.virusDetected(testVirusFile)).thenReturn(true); + when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-upload") .file(testVirusFile) @@ -164,13 +171,13 @@ void shouldShowFileContainsVirusErrorIfClammitScanFindsVirus() throws Exception @Test void shouldAllowUploadIfBlockIfUnreachableIsSetToFalse() throws Exception { - when(userFileRepositoryService.save(any())).thenReturn(fileId); doNothing().when(cloudFileRepository).upload(any(), any()); MockMultipartFile testImage = new MockMultipartFile("file", "someImage.jpg", MediaType.IMAGE_JPEG_VALUE, "test".getBytes()); when(clammitVirusScanner.virusDetected(testImage)).thenThrow( new WebClientResponseException(500, "Failed!", null, null, null)); + when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-upload") .file(testImage) @@ -189,8 +196,8 @@ void shouldAllowUploadIfBlockIfUnreachableIsSetToFalse() throws Exception { void shouldSetFalseIfVirusScannerDidNotRun() throws Exception { MockMultipartFile testImage = new MockMultipartFile("file", "someImage.jpg", MediaType.IMAGE_JPEG_VALUE, "test".getBytes()); - when(clammitVirusScanner.virusDetected(testImage)).thenThrow(new WebClientResponseException(500, "Failed!", null, null, null)); - when(userFileRepositoryService.save(any())).thenReturn(fileId); + when(clammitVirusScanner.virusDetected(testImage)).thenThrow( + new WebClientResponseException(500, "Failed!", null, null, null)); doNothing().when(cloudFileRepository).upload(any(), any()); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-upload") @@ -207,7 +214,7 @@ void shouldSetFalseIfVirusScannerDidNotRun() throws Exception { } @Test - void shouldReturn13IfUploadedFileViolatesMaxFileSizeConstraint() throws Exception { + void shouldReturn413IfUploadedFileViolatesMaxFileSizeConstraint() throws Exception { MockMultipartFile testImage = new MockMultipartFile("file", "testFileSizeImage.jpg", MediaType.IMAGE_JPEG_VALUE, new byte[(int) (FileUtils.ONE_MB + 1)]); @@ -225,6 +232,7 @@ void shouldReturn13IfUploadedFileViolatesMaxFileSizeConstraint() throws Exceptio @Test void shouldReturn4xxIfUploadFileViolatesMaxFilesConstraint() throws Exception { when(userFileRepositoryService.countBySubmission(submission)).thenReturn(10L); + when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-upload") .file(new MockMultipartFile("file", "testFileSizeImage.jpg", MediaType.IMAGE_JPEG_VALUE, new byte[10])) @@ -242,34 +250,33 @@ void shouldReturn4xxIfUploadFileViolatesMaxFilesConstraint() throws Exception { public class Delete { String dzWidgetInputName = "coolDzWidget"; + UserFile testUserFile = UserFile.builder() + .fileId(fileId) + .submission(submission) + .createdAt(Date.from(Instant.now())) + .originalName("coolFile.jpg") + .repositoryPath("pathToS3") + .mimeType(".pdf") + .filesize(Float.valueOf("10")) + .virusScanned(false) + .build(); @BeforeEach - void setUp() { - UUID submissionUUID_1 = UUID.randomUUID(); - UUID submissionUUID_2 = UUID.randomUUID(); - submission = Submission.builder().id(submissionUUID_1).build(); - UserFile testUserFile = UserFile.builder().submission(submission).build(); - when(submissionRepositoryService.findById(submissionUUID_1)).thenReturn(Optional.ofNullable(submission)); - when(submissionRepositoryService.findById(submissionUUID_2)).thenReturn(Optional.ofNullable(submission)); + void setUp() throws JsonProcessingException { + submission = Submission.builder().id(UUID.randomUUID()).build(); + testUserFile.setSubmission(submission); + + when(submissionRepositoryService.findById(any())).thenReturn(Optional.ofNullable(submission)); when(userFileRepositoryService.findById(fileId)).thenReturn(Optional.ofNullable(testUserFile)); doNothing().when(cloudFileRepository).delete(any()); - HashMap>> dzWidgets = new HashMap<>(); - HashMap> userFiles = new HashMap<>(); - userFiles.put(fileId, UserFile.createFileInfo( - new UserFile( - fileId, - new Submission(), - Date.from(Instant.now()), - "coolFile.jpg", - "pathToS3", - ".pdf", - Float.valueOf("10"), - false - ), "thumbnail")); - dzWidgets.put(dzWidgetInputName, userFiles); + session = new MockHttpSession(); - session.setAttribute("id", submission.getId()); - session.setAttribute("userFiles", dzWidgets); + setFlowInfoInSession(session, "testFlow", submission.getId()); + + UserFileMap userFileMap = new UserFileMap(); + userFileMap.addUserFileToMap("testFlow", dzWidgetInputName, testUserFile, "thumbnail"); + ObjectMapper objectMapper = new ObjectMapper(); + session.setAttribute("userFiles", objectMapper.writeValueAsString(userFileMap)); } @Test @@ -277,6 +284,7 @@ void endpointErrorsWhenSessionDoesntExist() throws Exception { mockMvc.perform(MockMvcRequestBuilders.multipart("/file-delete") .param("returnPath", "foo") .param("inputName", dzWidgetInputName) + .param("flow", "testFlow") .param("id", fileId.toString())) .andExpect(status().is(HttpStatus.FOUND.value())).andExpect(redirectedUrl("/error")); } @@ -286,6 +294,7 @@ void endpointErrorsWhenFileNotFoundInDb() throws Exception { mockMvc.perform(MockMvcRequestBuilders.multipart("/file-delete") .param("returnPath", "foo") .param("inputName", dzWidgetInputName) + .param("flow", "testFlow") .param("id", UUID.randomUUID().toString()) .session(session)) .andExpect(status().is(HttpStatus.FOUND.value())).andExpect(redirectedUrl("/error")); @@ -295,27 +304,32 @@ void endpointErrorsWhenFileNotFoundInDb() throws Exception { void endpointErrorsWhenIdOnRequestDoesntMatchIdInDb() throws Exception { UUID submissionUUID = UUID.randomUUID(); submission = Submission.builder().id(submissionUUID).build(); - session.setAttribute("id", submissionUUID); + when(submissionRepositoryService.findById(submissionUUID)).thenReturn(Optional.ofNullable(submission)); + setFlowInfoInSession(session, "testFlow", submission.getId()); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-delete") .param("returnPath", "foo") .param("inputName", dzWidgetInputName) .param("id", fileId.toString()) + .param("flow", "testFlow") .session(session)) .andExpect(status().is(HttpStatus.FOUND.value())).andExpect(redirectedUrl("/error")); } @Test public void endpointDeletesFromCloudRepositoryDbAndSession() throws Exception { + when(userFileRepositoryService.findById(fileId)).thenReturn(Optional.ofNullable(testUserFile)); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-delete") .param("returnPath", "foo") .param("inputName", dzWidgetInputName) .param("id", fileId.toString()) + .param("flow", "testFlow") .session(session)) .andExpect(status().is(HttpStatus.FOUND.value())); - verify(cloudFileRepository, times(1)).delete(any()); verify(userFileRepositoryService, times(1)).deleteById(any()); - assertThat(session.getAttribute("userFiles")).isEqualTo(new HashMap<>()); + ObjectMapper objectMapper = new ObjectMapper(); + UserFileMap userFileMap = objectMapper.readValue(session.getAttribute("userFiles").toString(), UserFileMap.class); + assertThat(userFileMap.getUserFileMap().size()).isEqualTo(0); } } @@ -324,79 +338,101 @@ public class Download { @Test void shouldReturnForbiddenStatusIfSessionIdDoesNotMatchSubmissionIdForSingleFileEndpoint() throws Exception { - session.setAttribute("id", UUID.randomUUID()); + setFlowInfoInSession(session, "testFlow", UUID.randomUUID()); UserFile userFile = UserFile.builder().submission(submission).build(); when(userFileRepositoryService.findById(fileId)).thenReturn(Optional.ofNullable(userFile)); - mockMvc.perform(MockMvcRequestBuilders.get("/file-download/{submissionId}/{fileId}", submission.getId().toString(), fileId) - .session(session)) + mockMvc.perform( + MockMvcRequestBuilders + .get("/file-download/{flow}/{submissionId}/{fileId}", "testFlow", submission.getId().toString(), fileId) + .session(session)) .andExpect(status().is(HttpStatus.FORBIDDEN.value())); } @Test void shouldReturnForbiddenIfAFilesSubmissionIdDoesNotMatchSubmissionIdOnTheUserFile() throws Exception { Submission differentSubmissionIdFromUserFile = Submission.builder().id(UUID.randomUUID()).build(); - session.setAttribute("id", submission.getId()); + setFlowInfoInSession(session, "testFlow", submission.getId()); + UserFile userFile = UserFile.builder().submission(differentSubmissionIdFromUserFile) .fileId(fileId).build(); when(userFileRepositoryService.findById(fileId)).thenReturn(Optional.ofNullable(userFile)); - mockMvc.perform(MockMvcRequestBuilders.get("/file-download/{submissionId}/{fileId}", submission.getId().toString(), fileId) - .session(session)) + when(submissionRepositoryService.findById(submission.getId())).thenReturn(Optional.of(submission)); + mockMvc.perform( + MockMvcRequestBuilders + .get("/file-download/{flow}/{submissionId}/{fileId}", "testFlow", submission.getId().toString(), fileId) + .session(session)) .andExpect(status().is(HttpStatus.FORBIDDEN.value())); } @Test void shouldReturnForbiddenStatusIfSessionIdDoesNotMatchSubmissionIdForMultiFileEndpoint() throws Exception { - session.setAttribute("id", UUID.randomUUID()); + setFlowInfoInSession(session, "testFlow", UUID.randomUUID()); when(submissionRepositoryService.findById(submission.getId())).thenReturn(Optional.ofNullable(submission)); - mockMvc.perform(MockMvcRequestBuilders.get("/file-download/{submissionId}", submission.getId().toString()) - .session(session)) + + mockMvc.perform( + MockMvcRequestBuilders + .get("/file-download/{flow}/{submissionId}", "testFlow", submission.getId().toString()) + .session(session)) .andExpect(status().is(HttpStatus.FORBIDDEN.value())); } @Test void shouldReturnNotFoundIfSubmissionCanNotBeFoundForMultiFileEndpoint() throws Exception { - session.setAttribute("id", submission.getId()); UUID differentSubmissionId = UUID.randomUUID(); - when(submissionRepositoryService.findById(differentSubmissionId)).thenReturn(Optional.empty()); - mockMvc.perform(MockMvcRequestBuilders.get("/file-download/{submissionId}", submission.getId().toString()) - .session(session)) + setFlowInfoInSession(session, "testFlow", differentSubmissionId); + + mockMvc.perform( + MockMvcRequestBuilders + .get("/file-download/{submissionId}", differentSubmissionId.toString()) + .param("flow", "testFlow") + .session(session)) .andExpect(status().is(404)); } @Test void shouldReturnNotFoundIfSubmissionDoesNotContainAnyFiles() throws Exception { - session.setAttribute("id", submission.getId()); - + setFlowInfoInSession(session, "testFlow", submission.getId()); when(userFileRepositoryService.findAllBySubmission(submission)).thenReturn(Collections.emptyList()); when(submissionRepositoryService.findById(submission.getId())).thenReturn(Optional.ofNullable(submission)); - mockMvc.perform(MockMvcRequestBuilders.get("/file-download/{submissionId}", submission.getId().toString()) - .session(session)) + + mockMvc.perform( + MockMvcRequestBuilders + .get("/file-download/{submissionId}", submission.getId().toString()) + .param("flow", "testFlow") + .session(session)) .andExpect(status().is(404)); } @Test void singleFileEndpointShouldReturnNotFoundIfNoUserFileIsFoundForAGivenFileId() throws Exception { - session.setAttribute("id", submission.getId()); + setFlowInfoInSession(session, "testFlow", submission.getId()); when(userFileRepositoryService.findById(fileId)).thenReturn(Optional.empty()); - mockMvc.perform(MockMvcRequestBuilders.get("/file-download/{submissionId}/{fileId}", submission.getId().toString(), fileId) - .session(session)) + mockMvc.perform( + MockMvcRequestBuilders + .get("/file-download/{flow}/{submissionId}/{fileId}", "testFlow", submission.getId().toString(), fileId) + .session(session)) .andExpect(status().is(404)); } @Test void singleFileEndpointShouldReturnTheSameFileBytesAsTheCloudFileRepository() throws Exception { - session.setAttribute("id", submission.getId()); + setFlowInfoInSession(session, "testFlow", submission.getId()); byte[] testFileBytes = "foo".getBytes(); long fileSize = testFileBytes.length; CloudFile testcloudFile = new CloudFile(fileSize, testFileBytes); - UserFile testUserFile = UserFile.builder().originalName("testFileName").mimeType("image/jpeg").repositoryPath("testPath") + UserFile testUserFile = UserFile.builder() + .originalName("testFileName") + .mimeType("image/jpeg") + .repositoryPath("testPath") .submission(submission) .build(); when(userFileRepositoryService.findById(fileId)).thenReturn(Optional.ofNullable(testUserFile)); when(cloudFileRepository.get("testPath")).thenReturn(testcloudFile); + when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); MvcResult mvcResult = mockMvc.perform( - MockMvcRequestBuilders.get("/file-download/{submissionId}/{fileId}", submission.getId().toString(), fileId) + MockMvcRequestBuilders + .get("/file-download/{flow}/{submissionId}/{fileId}", "testFlow", submission.getId().toString(), fileId) .session(session)) .andExpect(MockMvcResultMatchers.request().asyncStarted()) .andReturn(); @@ -411,7 +447,7 @@ void singleFileEndpointShouldReturnTheSameFileBytesAsTheCloudFileRepository() th @Test void multiFileEndpointShouldReturnZipOfUserFilesReturnedByTheCloudFileRepository() throws Exception { - session.setAttribute("id", submission.getId()); + setFlowInfoInSession(session, "testFlow", submission.getId()); byte[] firstTestFileBytes = Files.readAllBytes(Paths.get("src/test/resources/test.png")); byte[] secondTestFileBytes = Files.readAllBytes(Paths.get("src/test/resources/test-platypus.gif")); long firstTestFileSize = firstTestFileBytes.length; @@ -419,11 +455,17 @@ void multiFileEndpointShouldReturnZipOfUserFilesReturnedByTheCloudFileRepository CloudFile firstTestcloudFile = new CloudFile(firstTestFileSize, firstTestFileBytes); CloudFile secondTestcloudFile = new CloudFile(secondTestFileSize, secondTestFileBytes); - UserFile firstTestUserFile = UserFile.builder().originalName("test.png").mimeType("image/png") + UserFile firstTestUserFile = UserFile.builder() + .originalName("test.png") + .mimeType("image/png") .repositoryPath("testPath") .filesize((float) firstTestFileSize) - .submission(submission).build(); - UserFile secondTestUserFile = UserFile.builder().originalName("test-platypus.gif").mimeType("image/gif") + .submission(submission) + .build(); + + UserFile secondTestUserFile = UserFile.builder() + .originalName("test-platypus.gif") + .mimeType("image/gif") .repositoryPath("testPath2") .filesize((float) secondTestFileSize) .submission(submission).build(); @@ -436,7 +478,8 @@ void multiFileEndpointShouldReturnZipOfUserFilesReturnedByTheCloudFileRepository when(cloudFileRepository.get("testPath2")).thenReturn(secondTestcloudFile); MvcResult mvcResult = mockMvc.perform( - MockMvcRequestBuilders.get("/file-download/{submissionId}", submission.getId().toString()) + MockMvcRequestBuilders + .get("/file-download/{flow}/{submissionId}", "testFlow", submission.getId().toString()) .session(session)) .andExpect(MockMvcResultMatchers.request().asyncStarted()) .andReturn(); diff --git a/src/test/java/formflow/library/controllers/NoOpVirusScannerTest.java b/src/test/java/formflow/library/controllers/NoOpVirusScannerTest.java index ca3d62bda..c60e2f62a 100644 --- a/src/test/java/formflow/library/controllers/NoOpVirusScannerTest.java +++ b/src/test/java/formflow/library/controllers/NoOpVirusScannerTest.java @@ -1,5 +1,6 @@ package formflow.library.controllers; +import static formflow.library.FormFlowController.SUBMISSION_MAP_NAME; import static org.mockito.ArgumentMatchers.any; import static org.mockito.Mockito.when; import static org.springframework.test.web.servlet.result.MockMvcResultMatchers.content; @@ -8,8 +9,12 @@ import formflow.library.FileController; import formflow.library.data.Submission; import formflow.library.data.SubmissionRepositoryService; +import formflow.library.data.UserFile; import formflow.library.data.UserFileRepositoryService; import formflow.library.utilities.AbstractMockMvcTest; +import java.util.HashMap; +import java.util.Map; +import java.util.Optional; import java.util.UUID; import org.junit.jupiter.api.BeforeEach; import org.junit.jupiter.api.Test; @@ -28,6 +33,7 @@ "form-flow.uploads.virus-scanning.enabled=false", }) public class NoOpVirusScannerTest extends AbstractMockMvcTest { + private MockMvc mockMvc; private UUID fileUuid; @MockBean @@ -44,8 +50,21 @@ public void setUp() throws Exception { UUID submissionUUID = UUID.randomUUID(); mockMvc = MockMvcBuilders.standaloneSetup(fileController).build(); Submission submission = Submission.builder().id(submissionUUID).build(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); - when(userFileRepositoryService.save(any())).thenReturn(fileUuid); + + setFlowInfoInSession(session, "testFlow", submission.getId()); + + UserFile userFile = UserFile.builder() + .submission(submission) + .fileId(fileUuid) + .virusScanned(false) + .originalName("testFile.jpg") + .filesize(Float.valueOf("10.0")) + .mimeType(MediaType.IMAGE_JPEG_VALUE) + .repositoryPath("/foo") + .build(); + + when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); + when(userFileRepositoryService.save(any())).thenReturn(userFile); super.setUp(); } diff --git a/src/test/java/formflow/library/controllers/PdfControllerTest.java b/src/test/java/formflow/library/controllers/PdfControllerTest.java index a4063360d..77952efa1 100644 --- a/src/test/java/formflow/library/controllers/PdfControllerTest.java +++ b/src/test/java/formflow/library/controllers/PdfControllerTest.java @@ -1,7 +1,6 @@ package formflow.library.controllers; import static org.assertj.core.api.Assertions.assertThat; -import static org.mockito.Mockito.any; import static org.mockito.Mockito.mock; import static org.mockito.Mockito.times; import static org.mockito.Mockito.verify; @@ -14,6 +13,7 @@ import formflow.library.config.FlowConfiguration; import formflow.library.data.Submission; import formflow.library.data.SubmissionRepositoryService; +import formflow.library.data.UserFileRepositoryService; import formflow.library.pdf.PdfService; import formflow.library.utilities.AbstractMockMvcTest; import java.util.List; @@ -25,7 +25,8 @@ import org.springframework.http.HttpHeaders; import org.springframework.test.web.servlet.MockMvc; import org.springframework.test.web.servlet.MvcResult; -import org.springframework.test.web.servlet.request.MockMvcRequestBuilders; +import org.springframework.test.web.servlet.ResultActions; +import org.springframework.test.web.servlet.ResultMatcher; import org.springframework.test.web.servlet.setup.MockMvcBuilders; public class PdfControllerTest extends AbstractMockMvcTest { @@ -36,56 +37,108 @@ public class PdfControllerTest extends AbstractMockMvcTest { @MockBean private SubmissionRepositoryService submissionRepositoryService; + + @MockBean + private UserFileRepositoryService userFileRepositoryService; private byte[] filledPdfByteArray; + private final String flowName = "testFlow"; + private final String otherFlowName = "otherTestFlow"; + + private final UUID submissionId = UUID.randomUUID(); + @Override @BeforeEach public void setUp() throws Exception { - String flow = "ubi"; FlowConfiguration flowConfiguration = new FlowConfiguration(); - flowConfiguration.setName(flow); - List flowConfigurations = List.of(flowConfiguration); - PdfController pdfController = new PdfController(messageSource, pdfService, submissionRepositoryService, flowConfigurations); + FlowConfiguration flowConfigurationOther = new FlowConfiguration(); + flowConfiguration.setName(flowName); + flowConfigurationOther.setName(otherFlowName); + List flowConfigurations = List.of( + flowConfiguration, flowConfigurationOther + ); + + PdfController pdfController = new PdfController(messageSource, pdfService, submissionRepositoryService, + userFileRepositoryService, flowConfigurations); mockMvc = MockMvcBuilders.standaloneSetup(pdfController).build(); + submission = Submission.builder() - .id(UUID.randomUUID()) - .flow(flow) + .id(submissionId) + .flow(flowName) .build(); filledPdfByteArray = new byte[20]; + + setFlowInfoInSession(session, + flowName, submission.getId() + ); + when(pdfService.getFilledOutPDF(submission)).thenReturn(filledPdfByteArray); - when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); + when(submissionRepositoryService.findById(submissionId)).thenReturn(Optional.of(submission)); super.setUp(); } @Test void shouldReturn404WhenFlowDoesNotExist() throws Exception { - mockMvc.perform(MockMvcRequestBuilders.get("/download/{flow}/{submissionId}", "flowThatDoesNotExist", "submissionId")) - .andExpect(status().isNotFound()); + getPdfFile(submission, "flowThatDoesNotExist", status().isNotFound(), false); } @Test - void getDownloadGeneratesAndReturnsFilledFlattenedPdf() throws Exception { - session.setAttribute("id", submission.getId()); - MvcResult result = mockMvc.perform(get("/download/ubi/" + submission.getId()).session(session)) - .andExpect(header().string(HttpHeaders.CONTENT_DISPOSITION, - "attachment; filename=%s".formatted(pdfService.generatePdfName(submission)))) - .andExpect(status().is2xxSuccessful()) - .andReturn(); + public void getDownloadGeneratesAndReturnsFilledFlattenedPdf() throws Exception { + MvcResult result = getPdfFile(submission, flowName, status().is2xxSuccessful(), true); assertThat(result.getResponse().getContentAsByteArray()).isEqualTo(filledPdfByteArray); - verify(pdfService, times(1)).getFilledOutPDF(submission); } @Test - void shouldNotAllowDownloadingAPdfWithADifferentSubmissionIdThanTheActiveSession() throws Exception { - session.setAttribute("id", UUID.randomUUID()); + public void shouldNotAllowDownloadingAPdfWithADifferentSubmissionIdThanTheActiveSession() throws Exception { + // first test with bogus id + setFlowInfoInSession(session, flowName, UUID.randomUUID()); + getPdfFile(submission, flowName, status().is4xxClientError(), false); + + // now test with legitimate id + setFlowInfoInSession(session, flowName, submission.getId()); + getPdfFile(submission, flowName, status().is2xxSuccessful(), false); + } + + @Test + public void shouldReturnCorrectFileWhenMultipleFlowsExist() throws Exception { + UUID otherSubmissionId = UUID.randomUUID(); + Submission otherSubmission = Submission.builder() + .id(otherSubmissionId) + .flow(otherFlowName) + .build(); + byte[] otherByteArray = new byte[45]; + + setFlowInfoInSession(session, + flowName, submission.getId(), + otherFlowName, otherSubmission.getId() + ); + + when(pdfService.getFilledOutPDF(otherSubmission)).thenReturn(otherByteArray); + when(submissionRepositoryService.findById(otherSubmissionId)).thenReturn(Optional.of(otherSubmission)); + + MvcResult result = getPdfFile(submission, flowName, status().is2xxSuccessful(), true); + assertThat(result.getResponse().getContentAsByteArray()).isEqualTo(filledPdfByteArray); + + MvcResult otherResult = getPdfFile(otherSubmission, otherFlowName, status().is2xxSuccessful(), true); + assertThat(otherResult.getResponse().getContentAsByteArray()).isEqualTo(otherByteArray); + + verify(pdfService, times(1)).getFilledOutPDF(submission); + } - mockMvc.perform(get("/download/ubi/" + submission.getId()).session(session)) - .andExpect(status().is4xxClientError()); + private MvcResult getPdfFile(Submission testSubmission, String testFlow, ResultMatcher resultMatcher, boolean expectsFile) + throws Exception { + ResultActions resultActions = mockMvc.perform( + get("/download/" + testFlow + "/" + testSubmission.getId()) + .session(session) + ) + .andExpect(resultMatcher); - session.setAttribute("id", submission.getId()); + if (expectsFile) { + resultActions.andExpect(header().string(HttpHeaders.CONTENT_DISPOSITION, + "attachment; filename=%s".formatted(pdfService.generatePdfName(testSubmission)))); + } - mockMvc.perform(get("/download/ubi/" + submission.getId()).session(session)) - .andExpect(status().is2xxSuccessful()); + return resultActions.andReturn(); } } diff --git a/src/test/java/formflow/library/controllers/ScreenControllerJourneyTest.java b/src/test/java/formflow/library/controllers/ScreenControllerJourneyTest.java new file mode 100644 index 000000000..979bc79a8 --- /dev/null +++ b/src/test/java/formflow/library/controllers/ScreenControllerJourneyTest.java @@ -0,0 +1,88 @@ +package formflow.library.controllers; + +import static org.assertj.core.api.Assertions.assertThat; +import static org.springframework.boot.test.context.SpringBootTest.WebEnvironment.RANDOM_PORT; + +import formflow.library.utilities.AbstractBasePageTest; +import java.io.IOException; +import org.junit.jupiter.api.BeforeEach; +import org.junit.jupiter.api.Test; +import org.springframework.boot.test.context.SpringBootTest; + +@SpringBootTest(properties = {"form-flow.path=flows-config/test-flow.yaml"}, + webEnvironment = RANDOM_PORT) +public class ScreenControllerJourneyTest extends AbstractBasePageTest { + + private final String firstFlow = "testFlow"; + + private final String secondFlow = "otherTestFlow"; + + @Override + @BeforeEach + public void setUp() throws IOException { + startingPage = "flow/" + firstFlow + "/inputs"; + super.setUp(); + } + + @Test + public void multiFlowJourneyTestDataPersists() { + // "testFlow" flow + assertThat(testPage.getTitle()).isEqualTo("Inputs Screen"); + testPage.enter("textInput", "testFlow: textInput"); + testPage.enter("areaInput", "testFlow: areaInput"); + testPage.enter("dateDay", "10"); + testPage.enter("dateMonth", "10"); + testPage.enter("dateYear", "2010"); + testPage.enter("moneyInput", "110"); + testPage.clickContinue(); + assertThat(testPage.getTitle()).isEqualTo("Test"); + + // switch to other flow "testOtherFlow" + baseUrl = "http://localhost:%s/%s".formatted(localServerPort, + "flow/" + secondFlow + "/inputs"); + driver.navigate().to(baseUrl); + + assertThat(testPage.getTitle()).isEqualTo("Inputs Screen"); + + // stop check that no values are set, as we are in other flow + assertThat(testPage.getElementText("textInput")).isEmpty(); + assertThat(testPage.getElementText("areaInput")).isEmpty(); + assertThat(testPage.getInputValue("dateDay")).isEmpty(); + + // enter some data for otherTestFlow + testPage.enter("textInput", "otherTestFlow: textInput"); + testPage.enter("areaInput", "otherTestFlow: areaInput"); + testPage.enter("dateDay", "11"); + testPage.enter("dateMonth", "11"); + testPage.enter("dateYear", "2011"); + testPage.enter("moneyInput", "111"); + testPage.clickContinue(); + assertThat(testPage.getTitle()).isEqualTo("Test"); + + baseUrl = "http://localhost:%s/%s".formatted(localServerPort, + "flow/" + firstFlow + "/inputs"); + driver.navigate().to(baseUrl); + + assertThat(testPage.getTitle()).isEqualTo("Inputs Screen"); + + assertThat(testPage.getInputValue("textInput")).isEqualTo("testFlow: textInput"); + assertThat(testPage.getElementText("areaInput")).isEqualTo("testFlow: areaInput"); + assertThat(testPage.getInputValue("dateDay")).isEqualTo("10"); + assertThat(testPage.getInputValue("dateMonth")).isEqualTo("10"); + assertThat(testPage.getInputValue("dateYear")).isEqualTo("2010"); + assertThat(testPage.getInputValue("moneyInput")).isEqualTo("110"); + + baseUrl = "http://localhost:%s/%s".formatted(localServerPort, + "flow/" + secondFlow + "/inputs"); + driver.navigate().to(baseUrl); + + assertThat(testPage.getTitle()).isEqualTo("Inputs Screen"); + + assertThat(testPage.getInputValue("textInput")).isEqualTo("otherTestFlow: textInput"); + assertThat(testPage.getElementText("areaInput")).isEqualTo("otherTestFlow: areaInput"); + assertThat(testPage.getInputValue("dateDay")).isEqualTo("11"); + assertThat(testPage.getInputValue("dateMonth")).isEqualTo("11"); + assertThat(testPage.getInputValue("dateYear")).isEqualTo("2011"); + assertThat(testPage.getInputValue("moneyInput")).isEqualTo("111"); + } +} diff --git a/src/test/java/formflow/library/controllers/ScreenControllerTest.java b/src/test/java/formflow/library/controllers/ScreenControllerTest.java index 3093f4319..70df17cdd 100644 --- a/src/test/java/formflow/library/controllers/ScreenControllerTest.java +++ b/src/test/java/formflow/library/controllers/ScreenControllerTest.java @@ -1,5 +1,7 @@ package formflow.library.controllers; +import static formflow.library.FormFlowController.SUBMISSION_MAP_NAME; +import static org.assertj.core.api.Assertions.assertThat; import static org.junit.jupiter.api.Assertions.assertEquals; import static org.junit.jupiter.api.Assertions.assertFalse; import static org.junit.jupiter.api.Assertions.assertTrue; @@ -29,7 +31,9 @@ import org.junit.jupiter.params.provider.CsvSource; import org.springframework.boot.test.context.SpringBootTest; import org.springframework.boot.test.mock.mockito.MockBean; +import org.springframework.boot.test.mock.mockito.SpyBean; import org.springframework.test.web.servlet.ResultActions; +import org.springframework.util.LinkedMultiValueMap; @SpringBootTest(properties = {"form-flow.path=flows-config/test-flow.yaml"}) public class ScreenControllerTest extends AbstractMockMvcTest { @@ -37,22 +41,21 @@ public class ScreenControllerTest extends AbstractMockMvcTest { @MockBean private AddressValidationService addressValidationService; - @MockBean + @SpyBean private SubmissionRepositoryService submissionRepositoryService; public final String uuidPatternString = "{uuid:[0-9a-f]{8}-[0-9a-f]{4}-[1-5][0-9a-f]{3}-[89ab][0-9a-f]{3}-[0-9a-f]{12}}"; - @Override @BeforeEach public void setUp() throws Exception { UUID submissionUUID = UUID.randomUUID(); submission = Submission.builder().id(submissionUUID).urlParams(new HashMap<>()).inputData(new HashMap<>()).build(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); - when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); + // this setups flow info in the session to get passed along later on. + setFlowInfoInSession(session, "testFlow", submission.getId()); + super.setUp(); } - @ParameterizedTest @CsvSource({ "GET, /flow/{flow}/{screen}, flowThatDoesNotExist, screen", @@ -70,7 +73,8 @@ public void setUp() throws Exception { "GET, /flow/{flow}/{screen}/navigation, flowThatDoesNotExist, screen", "GET, /flow/{flow}/{screen}/navigation, testFlow, screenThatDoesNotExist" }) - void endpointShouldReturn404IfFlowOrScreenDoesNotExist(String method, String path, String flow, String screen) throws Exception { + void endpointShouldReturn404IfFlowOrScreenDoesNotExist(String method, String path, String flow, String screen) + throws Exception { switch (method) { case "GET" -> mockMvc.perform(get(path, flow, screen)).andExpect(status().isNotFound()); case "POST" -> mockMvc.perform(post(path, flow, screen)).andExpect(status().isNotFound()); @@ -82,6 +86,7 @@ public class UrlParameterPersistence { @Test public void passedUrlParametersShouldBeSaved() throws Exception { + when(submissionRepositoryService.findById(submission.getId())).thenReturn(Optional.of(submission)); Map queryParams = new HashMap<>(); queryParams.put("lang", "en"); getWithQueryParam("test", "lang", "en"); @@ -94,6 +99,7 @@ public class SubflowParameters { @Test public void modelIncludesCurrentSubflowItem() throws Exception { + when(submissionRepositoryService.findById(submission.getId())).thenReturn(Optional.of(submission)); HashMap subflowItem = new HashMap<>(); subflowItem.put("uuid", "aaa-bbb-ccc"); subflowItem.put("firstNameSubflow", "foo bar baz"); @@ -152,6 +158,99 @@ public void addressValidationShouldOnlyRunWhenSetToTrue() throws Exception { } } + @Nested + public class MultiFlowTests { + // tests that related to testing out changing flows in the middle of a flow to ensure + // that no data is lost + + @Test + public void multipleFlowsResultInMultipleSubmissionsNoDataLost() throws Exception { + // session does not have to know about the flows yet, as the flows will be + // added once the post occurs + mockMvc.perform(post("/flow/testFlow/inputs") + .session(session) + .params(new LinkedMultiValueMap<>(Map.of( + "textInput", List.of("firstFlowTextInputValue"), + "numberInput", List.of("10")))) + ); + + mockMvc.perform(post("/flow/otherTestFlow/inputs") + .session(session) + .params(new LinkedMultiValueMap<>(Map.of( + "textInput", List.of("secondFlowTextInputValue"), + "numberInput", List.of("20"), + "phoneInput", List.of("(555) 123-1234")))) + ); + + Map submissionMap = (Map) session.getAttribute(SUBMISSION_MAP_NAME); + + assertThat(submissionMap.containsKey("testFlow")).isTrue(); + assertThat(submissionMap.containsKey("otherTestFlow")).isTrue(); + assertThat(submissionMap.size()).isEqualTo(2); + + Optional testFlowSubmission = submissionRepositoryService.findById(submissionMap.get("testFlow")); + Optional otherTestFlowSubmission = submissionRepositoryService.findById(submissionMap.get("otherTestFlow")); + assertThat(testFlowSubmission.isPresent()).isTrue(); + assertThat(otherTestFlowSubmission.isPresent()).isTrue(); + assertThat(testFlowSubmission.get().getInputData().size()).isEqualTo(2); + assertThat(otherTestFlowSubmission.get().getInputData().size()).isEqualTo(3); + + assertThat(testFlowSubmission.get().getInputData().get("textInput")).isEqualTo("firstFlowTextInputValue"); + assertThat(testFlowSubmission.get().getInputData().get("numberInput")).isEqualTo("10"); + assertThat(testFlowSubmission.get().getInputData().get("phoneInput")).isEqualTo(null); + assertThat(otherTestFlowSubmission.get().getInputData().get("textInput")).isEqualTo("secondFlowTextInputValue"); + assertThat(otherTestFlowSubmission.get().getInputData().get("numberInput")).isEqualTo("20"); + assertThat(otherTestFlowSubmission.get().getInputData().get("phoneInput")).isEqualTo("(555) 123-1234"); + } + + @Test + public void multipleFlowsInSubflowsNoDataLost() throws Exception { + // session doesn't have to know about the two different flows yet + // as they will get put in session during the posts + mockMvc.perform(post("/flow/testFlow/subflowAddItem/new") + .session(session) + .params(new LinkedMultiValueMap<>(Map.of( + "firstNameSubflow", List.of("Subflow testFlow Name"), + "textInputSubflow", List.of("Subflow testFlow Text Input")))) + ); + + mockMvc.perform(post("/flow/otherTestFlow/subflowAddItem/new") + .session(session) + .params(new LinkedMultiValueMap<>(Map.of( + "numberInputSubflow", List.of("23"), + "moneyInputSubflow", List.of("10.00"), + "phoneInputSubflow", List.of("(413) 123-4567")))) + ); + + Map submissionMap = (Map) session.getAttribute(SUBMISSION_MAP_NAME); + + assertThat(submissionMap.containsKey("testFlow")).isTrue(); + assertThat(submissionMap.containsKey("otherTestFlow")).isTrue(); + assertThat(submissionMap.size()).isEqualTo(2); + + Optional testFlowSubmission = submissionRepositoryService.findById(submissionMap.get("testFlow")); + Optional otherTestFlowSubmission = submissionRepositoryService.findById(submissionMap.get("otherTestFlow")); + assertThat(testFlowSubmission.isPresent()).isTrue(); + assertThat(otherTestFlowSubmission.isPresent()).isTrue(); + + List testFlowInputData = (List) (testFlowSubmission.get().getInputData()).get("testSubflow"); + List otherTestFlowInputData = (List) (otherTestFlowSubmission.get().getInputData()).get("testSubflow"); + Map testFlowIteration = (Map) testFlowInputData.get(0); + Map otherTestFlowIteration = (Map) otherTestFlowInputData.get(0); + + assertThat(testFlowInputData.size()).isEqualTo(1); + assertThat(otherTestFlowInputData.size()).isEqualTo(1); + assertThat(testFlowIteration.size()).isEqualTo(3); + assertThat(otherTestFlowIteration.size()).isEqualTo(4); + + assertThat(testFlowIteration.get("firstNameSubflow")).isEqualTo("Subflow testFlow Name"); + assertThat(testFlowIteration.get("textInputSubflow")).isEqualTo("Subflow testFlow Text Input"); + assertThat(otherTestFlowIteration.get("numberInputSubflow")).isEqualTo("23"); + assertThat(otherTestFlowIteration.get("moneyInputSubflow")).isEqualTo("10.00"); + assertThat(otherTestFlowIteration.get("phoneInputSubflow")).isEqualTo("(413) 123-4567"); + } + } + @Test public void fieldsStillHaveValuesWhenFieldValidationFailsInSubflowNewIteration() throws Exception { var params = new HashMap>(); diff --git a/src/test/java/formflow/library/controllers/UploadBlockedIfVirusScanUnreachableTest.java b/src/test/java/formflow/library/controllers/UploadBlockedIfVirusScanUnreachableTest.java index d5dadb410..8da635292 100644 --- a/src/test/java/formflow/library/controllers/UploadBlockedIfVirusScanUnreachableTest.java +++ b/src/test/java/formflow/library/controllers/UploadBlockedIfVirusScanUnreachableTest.java @@ -31,6 +31,7 @@ "form-flow.uploads.virus-scanning.block-if-unreachable=true", }) public class UploadBlockedIfVirusScanUnreachableTest extends AbstractMockMvcTest { + private MockMvc mockMvc; @MockBean private SubmissionRepositoryService submissionRepositoryService; @@ -40,14 +41,14 @@ public class UploadBlockedIfVirusScanUnreachableTest extends AbstractMockMvcTest private FileController fileController; @MockBean private ClammitVirusScanner clammitVirusScanner; - + @Override @BeforeEach public void setUp() throws Exception { UUID submissionUUID = UUID.randomUUID(); mockMvc = MockMvcBuilders.standaloneSetup(fileController).build(); Submission submission = Submission.builder().id(submissionUUID).build(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); + //when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); super.setUp(); } @@ -55,7 +56,8 @@ public void setUp() throws Exception { void shouldPreventUploadAndShowAnErrorIfBlockIfUnreachableIsSetToTrue() throws Exception { MockMultipartFile testImage = new MockMultipartFile("file", "someImage.jpg", MediaType.IMAGE_JPEG_VALUE, "test".getBytes()); - when(clammitVirusScanner.virusDetected(testImage)).thenThrow(new WebClientResponseException(500, "Failed!", null, null, null)); + when(clammitVirusScanner.virusDetected(testImage)).thenThrow( + new WebClientResponseException(500, "Failed!", null, null, null)); mockMvc.perform(MockMvcRequestBuilders.multipart("/file-upload") .file(testImage) .param("flow", "testFlow") @@ -64,6 +66,7 @@ void shouldPreventUploadAndShowAnErrorIfBlockIfUnreachableIsSetToTrue() throws E .session(session) .contentType(MediaType.MULTIPART_FORM_DATA_VALUE)) .andExpect(status().is(HttpStatus.SERVICE_UNAVAILABLE.value())) - .andExpect(content().string(this.messageSource.getMessage("upload-documents.error-virus-scanner-unavailable", null, Locale.ENGLISH))); + .andExpect(content().string( + this.messageSource.getMessage("upload-documents.error-virus-scanner-unavailable", null, Locale.ENGLISH))); } } diff --git a/src/test/java/formflow/library/file/UploadJourneyTests.java b/src/test/java/formflow/library/file/UploadJourneyTests.java index 0e75b6d0e..cdc6f0209 100644 --- a/src/test/java/formflow/library/file/UploadJourneyTests.java +++ b/src/test/java/formflow/library/file/UploadJourneyTests.java @@ -5,6 +5,7 @@ import formflow.library.utilities.AbstractBasePageTest; import java.io.IOException; +import java.util.List; import java.util.Locale; import java.util.stream.Collectors; import org.junit.jupiter.api.BeforeEach; @@ -19,10 +20,12 @@ }, webEnvironment = RANDOM_PORT) public class UploadJourneyTests extends AbstractBasePageTest { + private final String dzWidgetName = "uploadTest"; + @Override @BeforeEach public void setUp() throws IOException { - startingPage = "flow/uploadFlow/docUploadJourney"; + startingPage = "flow/uploadFlowA/docUploadJourney"; super.setUp(); } @@ -31,27 +34,27 @@ void documentUploadFlow() { assertThat(testPage.getTitle()).isEqualTo("Upload Documents"); // Test accepted file types // Extension list comes from application.yaml -- form-flow.uploads.accepted-file-types - uploadFile("test-platypus.gif", "uploadTest"); + uploadFile("test-platypus.gif", dzWidgetName); assertThat(testPage.findElementsByClass("text--error").get(0).getText()) .isEqualTo(messageSource .getMessage("upload-documents.error-invalid-file-type", null, Locale.ENGLISH) + " .jpeg, .pdf"); testPage.clickLink("remove"); - assertThat(testPage.findElementTextById("number-of-uploaded-files-uploadTest")).isEqualTo("0 files added"); + assertThat(testPage.findElementTextById("number-of-uploaded-files-" + dzWidgetName)).isEqualTo("0 files added"); // Upload a file that is too big and assert the correct error shows - max file size in test is 1MB long largeFilesize = 21000000L; driver.executeScript( - "$('#document-upload-uploadTest').get(0).dropzone.addFile({name: 'testFile.pdf', size: " + "$('#document-upload-" + dzWidgetName + "').get(0).dropzone.addFile({name: 'testFile.pdf', size: " + largeFilesize + ", type: 'not-an-image'})"); int maxFileSize = 17; assertThat(driver.findElement(By.className("text--error")).getText()).contains(messageSource .getMessage("upload-documents.this-file-is-too-large", new Object[]{maxFileSize}, Locale.ENGLISH)); testPage.clickLink("remove"); - assertThat(testPage.findElementTextById("number-of-uploaded-files-uploadTest")).isEqualTo("0 files added"); + assertThat(testPage.findElementTextById("number-of-uploaded-files-" + dzWidgetName)).isEqualTo("0 files added"); // Upload a password-protected file and assert the correct error shows - uploadPasswordProtectedPdf("uploadTest"); + uploadPasswordProtectedPdf(dzWidgetName); //Race condition caused by uploadPasswordProtectedPdf waits until upload file has file details added instead //of waiting until file upload is complete. @@ -64,21 +67,21 @@ void documentUploadFlow() { assertThat(testPage.findElementsByClass("text--error").get(0).getText()) .isEqualTo(messageSource.getMessage("upload-documents.error-password-protected", null, Locale.ENGLISH)); testPage.clickLink("remove"); - assertThat(testPage.findElementTextById("number-of-uploaded-files-uploadTest")).isEqualTo("0 files added"); + assertThat(testPage.findElementTextById("number-of-uploaded-files-" + dzWidgetName)).isEqualTo("0 files added"); // Test max number of files that can be uploaded - uploadJpgFile("uploadTest"); + uploadJpgFile(dzWidgetName); // 1 assertThat(testPage.findElementTextById("number-of-uploaded-files-uploadTest")).isEqualTo("1 file added"); - uploadJpgFile("uploadTest"); // 2 - uploadJpgFile("uploadTest"); // 3 - uploadJpgFile("uploadTest"); // 4 - uploadJpgFile("uploadTest"); // 5 - uploadJpgFile("uploadTest"); // Can't upload the 6th + uploadJpgFile(dzWidgetName); // 2 + uploadJpgFile(dzWidgetName); // 3 + uploadJpgFile(dzWidgetName); // 4 + uploadJpgFile(dzWidgetName); // 5 + uploadJpgFile(dzWidgetName); // Can't upload the 6th assertThat(testPage.findElementsByClass("text--error").get(0).getText()) .isEqualTo(messageSource.getMessage("upload-documents.error-maximum-number-of-files", null, Locale.ENGLISH)); testPage.clickLink("remove"); // Assert there are no longer any error after removing the errored item - assertThat(testPage.findElementTextById("number-of-uploaded-files-uploadTest")).isEqualTo("5 files added"); + assertThat(testPage.findElementTextById("number-of-uploaded-files-" + dzWidgetName)).isEqualTo("5 files added"); assertThat( testPage.findElementsByClass("text--error").stream().map(WebElement::getText).collect(Collectors.toList())) .allMatch(String::isEmpty); @@ -88,6 +91,68 @@ void documentUploadFlow() { driver.switchTo().alert().accept(); } assertThat(testPage.findElementsByClass("dz-remove").size()).isEqualTo(0); - assertThat(testPage.findElementTextById("number-of-uploaded-files-uploadTest")).isEqualTo("0 files added"); + assertThat(testPage.findElementTextById("number-of-uploaded-files-" + dzWidgetName)).isEqualTo("0 files added"); + } + + @Test + void documentUploadFlowMultiFlow() { + assertThat(testPage.getTitle()).isEqualTo("Upload Documents"); + + for (int i = 0; i < 5; i++) { + uploadFile("testA.jpeg", dzWidgetName); + } + + assertThat(testPage.findElementTextById("number-of-uploaded-files-" + dzWidgetName)).isEqualTo("5 files added"); + assertThat(testPage.findElementsByClass("text--error").stream() + .map(WebElement::getText) + .collect(Collectors.toList())) + .allMatch(String::isEmpty); + + List elementsA = testPage.findElementsByClass("filename-text-name"); + assertThat(elementsA.size()).isEqualTo(5); + elementsA.forEach( + element -> assertThat(element.getText()).isEqualTo("testA") + ); + + // switch flow from A to B and upload some files. Ensure you only see Flow B files. + baseUrl = "http://localhost:%s/%s".formatted(localServerPort, "flow/uploadFlowB/docUploadJourney"); + driver.navigate().to(baseUrl); + + for (int i = 0; i < 5; i++) { + uploadFile("testB.jpeg", dzWidgetName); + } + + assertThat(testPage.findElementTextById("number-of-uploaded-files-" + dzWidgetName)).isEqualTo("5 files added"); + assertThat(testPage.findElementsByClass("text--error").stream() + .map(WebElement::getText) + .collect(Collectors.toList())) + .allMatch(String::isEmpty); + + List elementsB = testPage.findElementsByClass("filename-text-name"); + elementsB.forEach( + element -> assertThat(element.getText()).isEqualTo("testB") + ); + + // go forward and back and ensure you only see flow B files + testPage.clickContinue(); + testPage.goBack(); + + elementsB = testPage.findElementsByClass("filename-text-name"); + assertThat(elementsB.size()).isEqualTo(5); + elementsB.forEach( + element -> { + assertThat(element.getText()).isEqualTo("testB"); + }); + + // switch back to A and ensure no B flow files are present + baseUrl = "http://localhost:%s/%s".formatted(localServerPort, "flow/uploadFlowA/docUploadJourney"); + driver.navigate().to(baseUrl); + + elementsA = testPage.findElementsByClass("filename-text-name"); + assertThat(elementsA.size()).isEqualTo(5); + elementsA.forEach( + element -> { + assertThat(element.getText()).isEqualTo("testA"); + }); } } diff --git a/src/test/java/formflow/library/file/UploadUnitTests.java b/src/test/java/formflow/library/file/UploadUnitTests.java index 9cfaa3d56..a51c481b5 100644 --- a/src/test/java/formflow/library/file/UploadUnitTests.java +++ b/src/test/java/formflow/library/file/UploadUnitTests.java @@ -17,7 +17,7 @@ public class UploadUnitTests extends AbstractBasePageTest { @Override @BeforeEach public void setUp() throws IOException { - startingPage = "flow/uploadFlow/docUploadUnit"; + startingPage = "flow/uploadFlowA/docUploadUnit"; super.setUp(); } diff --git a/src/test/java/formflow/library/framework/AfterSaveActionTest.java b/src/test/java/formflow/library/framework/AfterSaveActionTest.java index 1bf1fb2eb..12d17826a 100644 --- a/src/test/java/formflow/library/framework/AfterSaveActionTest.java +++ b/src/test/java/formflow/library/framework/AfterSaveActionTest.java @@ -50,7 +50,7 @@ public void setUp() throws Exception { mailgunEmailClient.setMailgunMessagesApi(mailgunMessagesApi); super.setUp(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); + ////when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); } diff --git a/src/test/java/formflow/library/framework/BeforeDisplayActionTest.java b/src/test/java/formflow/library/framework/BeforeDisplayActionTest.java index 778978a72..cbf303cd0 100644 --- a/src/test/java/formflow/library/framework/BeforeDisplayActionTest.java +++ b/src/test/java/formflow/library/framework/BeforeDisplayActionTest.java @@ -31,10 +31,10 @@ public class BeforeDisplayActionTest extends AbstractMockMvcTest { public void setUp() throws Exception { UUID submissionUUID = UUID.randomUUID(); submission = Submission.builder().id(submissionUUID).inputData(new HashMap<>()).build(); - + setFlowInfoInSession(session, "testFlow", submission.getId()); super.setUp(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); + when(submissionRepositoryService.save(any())).thenReturn(submission); } @Test @@ -58,7 +58,6 @@ void shouldSaveEncryptedSSN() throws Exception { @Test void shouldSaveEncryptedSSNInSubflow() throws Exception { String subflowUuid = UUID.randomUUID().toString(); - Map sessionAttrs = new HashMap<>(); List> subflowList = new ArrayList<>(); subflowList.add(Map.of("uuid", subflowUuid)); @@ -70,12 +69,11 @@ void shouldSaveEncryptedSSNInSubflow() throws Exception { "iterationIsComplete", true)); submission.getInputData().put("householdMembers", subflowList); - sessionAttrs.put("id", submission.getId()); // beforeSave String ssnInput = "333-33-3333"; postToUrlExpectingSuccess("/flow/testFlow/pageWithSSNInput", "/flow/testFlow/subflowReview", - Map.of("ssnInput", List.of(ssnInput)), subflowUuid, sessionAttrs); + Map.of("ssnInput", List.of(ssnInput)), subflowUuid); Map subflowEntry = submission.getSubflowEntryByUuid("householdMembers", subflowUuid); diff --git a/src/test/java/formflow/library/framework/BeforeSaveActionTest.java b/src/test/java/formflow/library/framework/BeforeSaveActionTest.java index c84c0009b..4b174e01c 100644 --- a/src/test/java/formflow/library/framework/BeforeSaveActionTest.java +++ b/src/test/java/formflow/library/framework/BeforeSaveActionTest.java @@ -37,9 +37,8 @@ public void setUp() throws Exception { UUID submissionUUID = UUID.randomUUID(); mockMvc = MockMvcBuilders.standaloneSetup(screenController).build(); submission = Submission.builder().id(submissionUUID).inputData(new HashMap<>()).build(); - + setFlowInfoInSession(session, "testFlow", submission.getId()); super.setUp(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); } @@ -49,7 +48,8 @@ void shouldSaveFormattedDate() throws Exception { Map.of( "dateMonth", List.of("1"), "dateDay", List.of("2"), - "dateYear", List.of("1934"))); + "dateYear", List.of("1934")) + ); assertThat(submission.getInputData().get("formattedDate")).isEqualTo("1/2/1934"); } @@ -57,7 +57,6 @@ void shouldSaveFormattedDate() throws Exception { @Test void shouldSaveTotalIncome() throws Exception { String subflowUuid = UUID.randomUUID().toString(); - Map sessionAttrs = new HashMap<>(); List> subflowList = new ArrayList<>(); subflowList.add(Map.of("uuid", subflowUuid)); @@ -69,10 +68,9 @@ void shouldSaveTotalIncome() throws Exception { "iterationIsComplete", true)); submission.getInputData().put("income", subflowList); - sessionAttrs.put("id", submission.getId()); postToUrlExpectingSuccess("/flow/testFlow/next", "/flow/testFlow/subflowReview", - Map.of("textInput", List.of("1000")), subflowUuid, sessionAttrs); + Map.of("textInput", List.of("1000")), subflowUuid); assertThat(submission.getInputData().get("totalIncome")).isEqualTo(6530.0); } diff --git a/src/test/java/formflow/library/framework/ConditionalNavigationTest.java b/src/test/java/formflow/library/framework/ConditionalNavigationTest.java index 06fe6531a..03a2d0738 100644 --- a/src/test/java/formflow/library/framework/ConditionalNavigationTest.java +++ b/src/test/java/formflow/library/framework/ConditionalNavigationTest.java @@ -1,15 +1,37 @@ package formflow.library.framework; +import static formflow.library.FormFlowController.SUBMISSION_MAP_NAME; +import static org.mockito.Mockito.when; import static org.springframework.test.web.servlet.result.MockMvcResultMatchers.redirectedUrl; +import formflow.library.data.Submission; +import formflow.library.data.SubmissionRepositoryService; import formflow.library.utilities.AbstractMockMvcTest; +import java.util.HashMap; +import java.util.Map; +import java.util.Optional; +import java.util.UUID; +import org.junit.jupiter.api.BeforeEach; import org.junit.jupiter.api.Test; import org.springframework.boot.test.context.SpringBootTest; +import org.springframework.boot.test.mock.mockito.SpyBean; import org.springframework.test.web.servlet.ResultActions; @SpringBootTest(properties = {"form-flow.path=flows-config/test-conditional-navigation.yaml"}) public class ConditionalNavigationTest extends AbstractMockMvcTest { + @SpyBean + private SubmissionRepositoryService submissionRepositoryService; + + @BeforeEach + public void setup() { + submission = Submission.builder().id(UUID.randomUUID()).urlParams(new HashMap<>()).inputData(new HashMap<>()).build(); + when(submissionRepositoryService.findById(submission.getId())).thenReturn(Optional.of(submission)); + setFlowInfoInSession(session, + "testFlow", submission.getId() + ); + } + @Test void shouldGoToPageWhoseConditionIsSatisfied() throws Exception { continueExpectingNextPageTitle("first", "Second Page"); diff --git a/src/test/java/formflow/library/framework/CrossValidationTest.java b/src/test/java/formflow/library/framework/CrossValidationTest.java index a87c88709..a12be3d8e 100644 --- a/src/test/java/formflow/library/framework/CrossValidationTest.java +++ b/src/test/java/formflow/library/framework/CrossValidationTest.java @@ -1,5 +1,6 @@ package formflow.library.framework; +import static formflow.library.FormFlowController.SUBMISSION_MAP_NAME; import static org.mockito.ArgumentMatchers.any; import static org.mockito.Mockito.when; @@ -25,8 +26,6 @@ public class CrossValidationTest extends AbstractMockMvcTest { Submission submission; - private MockMvc mockMvc; - @MockBean private SubmissionRepositoryService submissionRepositoryService; @@ -42,10 +41,10 @@ public void setUp() throws Exception { UUID submissionUUID = UUID.randomUUID(); mockMvc = MockMvcBuilders.standaloneSetup(screenController).build(); submission = Submission.builder().id(submissionUUID).inputData(new HashMap<>()).build(); - + setFlowInfoInSession(session, "testFlow", submission.getId()); super.setUp(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); + when(submissionRepositoryService.save(any())).thenReturn(submission); } @Test @@ -53,13 +52,15 @@ void shouldAcceptEmailWithPreference() throws Exception { postExpectingSuccess("contactInfoPreference", Map.of( "email", List.of("foo@bar.com"), - "howToContactYou[]", List.of("email"))); + "howToContactYou[]", List.of("email")) + ); } @Test void shouldAlsoDisplayFieldValidationMessages() throws Exception { postExpectingFailure("contactInfoPreference", - Map.of("email", List.of("malformed.com"), "howToContactYou[]", List.of("email"))); + Map.of("email", List.of("malformed.com"), "howToContactYou[]", List.of("email")) + ); assertPageHasInputError("contactInfoPreference", "email", INVALID_EMAIL_ERROR_MESSAGE); } @@ -68,7 +69,8 @@ void shouldAcceptPhoneNumberWithPreference() throws Exception { postExpectingSuccess("contactInfoPreference", Map.of( "phoneNumber", List.of("223-456-7891"), - "howToContactYou", List.of("phone"))); + "howToContactYou", List.of("phone")) + ); } @Test @@ -76,7 +78,8 @@ void shouldFailWithPhoneNumberPreferenceNoPhone() throws Exception { postExpectingFailure("contactInfoPreference", Map.of( "howToContactYou[]", List.of("", "phone"), - "phoneNumber", List.of(""))); + "phoneNumber", List.of("")) + ); assertPageHasInputError("contactInfoPreference", "phoneNumber", NO_PHONE_ERROR_MESSAGE); } @@ -86,7 +89,8 @@ void shouldFailWithEmailPreferenceNoEmail() throws Exception { postExpectingFailure("contactInfoPreference", Map.of( "howToContactYou[]", List.of("", "email"), - "email", List.of(""))); + "email", List.of("")) + ); assertPageHasInputError("contactInfoPreference", "email", NO_EMAIL_ERROR_MESSAGE); } @@ -97,7 +101,8 @@ void shouldDisplayErrorMessagesForBothPhoneAndEmailIfBothAreMissing() throws Exc Map.of( "howToContactYou[]", List.of("email", "phone"), "email", List.of(""), - "phoneNumber", List.of(""))); + "phoneNumber", List.of("")) + ); assertPageHasInputError("contactInfoPreference", "email", NO_EMAIL_ERROR_MESSAGE); assertPageHasInputError("contactInfoPreference", "phoneNumber", NO_PHONE_ERROR_MESSAGE); diff --git a/src/test/java/formflow/library/framework/OnPostActionTest.java b/src/test/java/formflow/library/framework/OnPostActionTest.java index 923b024a8..82346d932 100644 --- a/src/test/java/formflow/library/framework/OnPostActionTest.java +++ b/src/test/java/formflow/library/framework/OnPostActionTest.java @@ -1,8 +1,8 @@ package formflow.library.framework; import static org.assertj.core.api.AssertionsForClassTypes.assertThat; -import static org.mockito.ArgumentMatchers.any; import static org.mockito.Mockito.when; +import static org.mockito.Mockito.any; import formflow.library.ScreenController; import formflow.library.data.Submission; @@ -18,7 +18,6 @@ import org.springframework.beans.factory.annotation.Autowired; import org.springframework.boot.test.context.SpringBootTest; import org.springframework.boot.test.mock.mockito.MockBean; -import org.springframework.test.web.servlet.MockMvc; import org.springframework.test.web.servlet.setup.MockMvcBuilders; @SpringBootTest(properties = {"form-flow.path=flows-config/test-on-post-action.yaml"}) @@ -26,8 +25,6 @@ public class OnPostActionTest extends AbstractMockMvcTest { Submission submission; - private MockMvc mockMvc; - @MockBean private SubmissionRepositoryService submissionRepositoryService; @@ -39,10 +36,10 @@ public void setUp() throws Exception { mockMvc = MockMvcBuilders.standaloneSetup(screenController).build(); UUID submissionUUID = UUID.randomUUID(); submission = Submission.builder().id(submissionUUID).inputData(new HashMap<>()).build(); - + setFlowInfoInSession(session, "testFlow", submission.getId()); super.setUp(); - when(submissionRepositoryService.findOrCreate(any())).thenReturn(submission); when(submissionRepositoryService.findById(any())).thenReturn(Optional.of(submission)); + when(submissionRepositoryService.save(any())).thenReturn(submission); } @Test @@ -51,7 +48,8 @@ void shouldSaveFormattedDataInNewFieldAndValidateSuccessfully() throws Exception Map.of( "dateMonth", List.of("1"), "dateDay", List.of("3"), - "dateYear", List.of("1999"))); + "dateYear", List.of("1999")) + ); assertThat(submission.getInputData().get("dateFull")).isEqualTo("1/3/1999"); } @@ -63,7 +61,8 @@ void shouldSaveFormattedDateInNewFieldAndFailValidation() throws Exception { Map.of( "dateMonth", List.of("abc"), "dateDay", List.of("1"), - "dateYear", List.of("1999"))); + "dateYear", List.of("1999")) + ); assertPageHasInputError("inputs", "dateFull", dateErrorMessage); } diff --git a/src/test/java/formflow/library/inputs/OtherTestFlow.java b/src/test/java/formflow/library/inputs/OtherTestFlow.java new file mode 100644 index 000000000..bb030d3ef --- /dev/null +++ b/src/test/java/formflow/library/inputs/OtherTestFlow.java @@ -0,0 +1,160 @@ +package formflow.library.inputs; + +import formflow.library.data.FlowInputs; +import formflow.library.data.validators.Money; +import formflow.library.data.validators.Phone; +import jakarta.validation.constraints.Email; +import jakarta.validation.constraints.Max; +import jakarta.validation.constraints.NotBlank; +import jakarta.validation.constraints.NotEmpty; +import jakarta.validation.constraints.Pattern; +import jakarta.validation.constraints.Positive; +import jakarta.validation.constraints.Size; +import java.util.ArrayList; +import java.util.List; +import org.springframework.boot.test.context.TestConfiguration; +import org.springframework.web.multipart.MultipartFile; + +@TestConfiguration +@SuppressWarnings("unused") +public class OtherTestFlow extends FlowInputs { + + @NotBlank(message = "{validations.make-sure-to-provide-a-first-name}") + String firstName; + + String textInput; + String areaInput; + String dateDay; + String dateMonth; + String dateYear; + @NotBlank(message = "Date may not be empty") + @Pattern(regexp = "\\d/\\d/\\d\\d\\d\\d", message = "Date must be in the format of mm/dd/yyyy") + String dateFull; + + String numberInput; + ArrayList checkboxSet; + ArrayList checkboxInput; + String radioInput; + String selectInput; + String moneyInput; + String phoneInput; + @Encrypted + String ssnInput; + @Encrypted + String ssnInputSubflow; + String stateInput; + @NotEmpty(message = "Please select at least one") + List favoriteFruitCheckbox; + + @NotBlank(message = "Don't leave this blank") + @Size(min = 2, message = "You must enter a value 2 characters or longer") + String inputWithMultipleValidations; + + @NotBlank(message = "Enter a value") + String inputWithSingleValidation; + + String householdMemberFirstName; + String householdMemberLastName; + String householdMemberRelationship; + String householdMemberRecentlyMovedToUS; + MultipartFile testFile; + String dropZoneTestInstance; + + @Positive() + String validatePositiveIfNotEmpty; + + @Email(message = "Please enter a valid email address.") + String email; + + String phoneNumber; + + ArrayList howToContactYou; + + @NotBlank + String validationOffStreetAddress1; + String validationOffStreetAddress2; + @NotBlank + String validationOffCity; + @NotBlank + String validationOffState; + @NotBlank + String validationOffZipCode; + + @NotBlank + String validationOnStreetAddress1; + String validationOnStreetAddress2; + @NotBlank + String validationOnCity; + @NotBlank + String validationOnState; + @NotBlank + String validationOnZipCode; + Boolean useValidatedValidationOn; + + // now lets test some fields in a subflow + String firstNameSubflow; + @NotBlank + String textInputSubflow; + @NotBlank + String areaInputSubflow; + @NotBlank + String dateSubflowDay; + @NotBlank + String dateSubflowMonth; + @NotBlank + String dateSubflowYear; + @NotBlank(message = "Date may not be empty") + @Pattern(regexp = "\\d/\\d/\\d\\d\\d\\d", message = "Date must be in the format of mm/dd/yyyy") + String dateSubflowFull; + + @NotBlank + @Max(value = 100) + String numberInputSubflow; + @NotEmpty + ArrayList checkboxSetSubflow; + @NotEmpty + ArrayList checkboxInputSubflow; + @NotBlank + String radioInputSubflow; + @NotBlank + String selectInputSubflow; + @NotBlank + @Money + String moneyInputSubflow; + @NotBlank + @Phone + String phoneInputSubflow; + + // now lets test some fields in the second page of a subflow + String firstNameSubflowPage2; + @NotBlank + String textInputSubflowPage2; + @NotBlank + String areaInputSubflowPage2; + @NotBlank + String dateSubflowPage2Day; + @NotBlank + String dateSubflowPage2Month; + @NotBlank + String dateSubflowPage2Year; + @NotBlank(message = "Date may not be empty") + @Pattern(regexp = "\\d/\\d/\\d\\d\\d\\d", message = "Date must be in the format of mm/dd/yyyy") + String dateSubflowPage2Full; + @NotBlank + @Max(value = 100) + String numberInputSubflowPage2; + @NotEmpty + ArrayList checkboxSetSubflowPage2; + @NotEmpty + ArrayList checkboxInputSubflowPage2; + @NotBlank + String radioInputSubflowPage2; + @NotBlank + String selectInputSubflowPage2; + @NotBlank + @Money + String moneyInputSubflowPage2; + @NotBlank + @Phone + String phoneInputSubflowPage2; +} diff --git a/src/test/java/formflow/library/inputs/UploadFlow.java b/src/test/java/formflow/library/inputs/UploadFlowA.java similarity index 79% rename from src/test/java/formflow/library/inputs/UploadFlow.java rename to src/test/java/formflow/library/inputs/UploadFlowA.java index c421811c4..03cd45766 100644 --- a/src/test/java/formflow/library/inputs/UploadFlow.java +++ b/src/test/java/formflow/library/inputs/UploadFlowA.java @@ -4,7 +4,7 @@ import org.springframework.boot.test.context.TestConfiguration; @TestConfiguration -public class UploadFlow extends FlowInputs { +public class UploadFlowA extends FlowInputs { String uploadTest; } diff --git a/src/test/java/formflow/library/inputs/UploadFlowB.java b/src/test/java/formflow/library/inputs/UploadFlowB.java new file mode 100644 index 000000000..f4d543613 --- /dev/null +++ b/src/test/java/formflow/library/inputs/UploadFlowB.java @@ -0,0 +1,10 @@ +package formflow.library.inputs; + +import formflow.library.data.FlowInputs; +import org.springframework.boot.test.context.TestConfiguration; + +@TestConfiguration +public class UploadFlowB extends FlowInputs { + + String uploadTest; +} diff --git a/src/test/java/formflow/library/repository/SubmissionRepositoryServiceTest.java b/src/test/java/formflow/library/repository/SubmissionRepositoryServiceTest.java index 78a6ee27b..5b85fea46 100644 --- a/src/test/java/formflow/library/repository/SubmissionRepositoryServiceTest.java +++ b/src/test/java/formflow/library/repository/SubmissionRepositoryServiceTest.java @@ -36,7 +36,7 @@ void shouldSaveASubmissionWithUUID() { Submission firstSubmission = new Submission(); firstSubmission.setFlow("testFlow"); - submissionRepositoryService.save(firstSubmission); + firstSubmission = submissionRepositoryService.save(firstSubmission); assertThat(firstSubmission.getId()).isInstanceOf(UUID.class); } @@ -55,9 +55,9 @@ void shouldSaveSubmission() { .submittedAt(Date.from(timeNow)) .build(); - UUID submissionId = submissionRepositoryService.save(submission); + UUID subId = submissionRepositoryService.save(submission).getId(); - Optional savedSubmissionOptional = submissionRepositoryService.findById(submissionId); + Optional savedSubmissionOptional = submissionRepositoryService.findById(subId); Submission savedSubmission = savedSubmissionOptional.orElseThrow(); assertThat(savedSubmission.getFlow()).isEqualTo("testFlow"); assertThat(savedSubmission.getInputData()).isEqualTo(inputData); @@ -77,7 +77,7 @@ void shouldUpdateExistingSubmission() { .flow("testFlow") .submittedAt(Date.from(timeNow)) .build(); - submissionRepositoryService.save(submission); + submission = submissionRepositoryService.save(submission); var newInputData = Map.of( "newKey", "this is a new value", @@ -145,7 +145,7 @@ void findByIdShouldReturnsDecryptedField() { .submittedAt(Date.from(timeNow)) .build(); - UUID subId = submissionRepositoryService.save(submission); + UUID subId = submissionRepositoryService.save(submission).getId(); Submission dbSubmission = (submissionRepositoryService.findById(subId)).get(); assertThat(dbSubmission.getInputData().containsKey("ssnInput")).isTrue(); @@ -173,7 +173,7 @@ void saveShouldEncryptFieldInDB() { .submittedAt(Date.from(timeNow)) .build(); - UUID subId = submissionRepositoryService.save(submission); + UUID subId = submissionRepositoryService.save(submission).getId(); var query = entityManager.createQuery("SELECT s FROM Submission s WHERE s.id = :id"); query.setParameter("id", subId); @@ -208,7 +208,7 @@ void shouldSetCreatedAtAndUpdatedAtFields() { .flow("testFlow") .build(); - UUID id = submissionRepositoryService.save(submission); + UUID id = submissionRepositoryService.save(submission).getId(); Submission savedSubmission = submissionRepositoryService.findById(id).get(); assertThat(savedSubmission.getCreatedAt()).isInThePast(); diff --git a/src/test/java/formflow/library/utilities/AbstractBasePageTest.java b/src/test/java/formflow/library/utilities/AbstractBasePageTest.java index 84636cfc3..fa6d95dbc 100644 --- a/src/test/java/formflow/library/utilities/AbstractBasePageTest.java +++ b/src/test/java/formflow/library/utilities/AbstractBasePageTest.java @@ -74,7 +74,6 @@ public void takeSnapShot(String fileWithPath) { } protected void uploadFile(String filepath, String dzName) { - testPage.clickElementById("drag-and-drop-box-" + dzName); // is this needed? WebElement upload = driver.findElement(By.className("dz-hidden-input")); upload.sendKeys(TestUtils.getAbsoluteFilepathString(filepath)); await().until( diff --git a/src/test/java/formflow/library/utilities/AbstractMockMvcTest.java b/src/test/java/formflow/library/utilities/AbstractMockMvcTest.java index b231d498a..8443c3506 100644 --- a/src/test/java/formflow/library/utilities/AbstractMockMvcTest.java +++ b/src/test/java/formflow/library/utilities/AbstractMockMvcTest.java @@ -1,5 +1,6 @@ package formflow.library.utilities; +import static formflow.library.FormFlowController.SUBMISSION_MAP_NAME; import static formflow.library.utilities.TestUtils.resetSubmission; import static org.assertj.core.api.Assertions.assertThat; import static org.junit.jupiter.api.Assertions.assertEquals; @@ -25,10 +26,13 @@ import java.nio.file.Path; import java.time.Clock; import java.util.ArrayList; +import java.util.Arrays; import java.util.HashMap; +import java.util.Iterator; import java.util.List; import java.util.Map; import java.util.Objects; +import java.util.UUID; import java.util.stream.Collectors; import java.util.zip.ZipEntry; import java.util.zip.ZipInputStream; @@ -47,6 +51,7 @@ import org.springframework.test.context.ContextConfiguration; import org.springframework.test.web.servlet.MockMvc; import org.springframework.test.web.servlet.ResultActions; +import org.springframework.test.web.servlet.request.MockHttpServletRequestBuilder; import org.springframework.test.web.servlet.setup.MockMvcBuilders; import org.springframework.util.LinkedMultiValueMap; import org.springframework.util.MultiValueMap; @@ -70,7 +75,6 @@ public abstract class AbstractMockMvcTest { @Autowired protected MockMvc mockMvc; - protected MockHttpSession session = new MockHttpSession(); @Autowired @@ -89,6 +93,25 @@ void cleanup() { resetSubmission(); } + protected void setFlowInfoInSession(MockHttpSession mockHttpSession, Object... flowInfo) { + + if (flowInfo.length % 2 != 0) { + throw new IllegalArgumentException("Arguments should be paired flowName -> submission id (UUID)."); + } + + Iterator iterator = Arrays.stream(flowInfo).iterator(); + + Map flowMap = new HashMap<>(); + + while (iterator.hasNext()) { + String flowName = (String) iterator.next(); + UUID submissionId = (UUID) iterator.next(); + flowMap.put(flowName, submissionId); + } + + mockHttpSession.setAttribute(SUBMISSION_MAP_NAME, flowMap); + } + protected void postWithQueryParam(String pageName, String queryParam, String value) throws Exception { mockMvc.perform( @@ -99,7 +122,10 @@ protected void postWithQueryParam(String pageName, String queryParam, String val protected ResultActions getWithQueryParam(String pageName, String queryParam, String value) throws Exception { String getUrl = getUrlForPageName(pageName); - return mockMvc.perform(get(getUrl).queryParam(queryParam, value)) + return mockMvc.perform( + get(getUrl) + .queryParam(queryParam, value) + .session(session)) .andExpect(status().isOk()); } @@ -197,23 +223,20 @@ protected ResultActions postStartSubflowExpectingSuccess(String pageName) throws } // Post to a page with an arbitrary number of multi-value inputs - protected ResultActions postExpectingSuccess(String pageName, Map> params) - throws Exception { + protected ResultActions postExpectingSuccess(String pageName, Map> params) throws Exception { String postUrl = getUrlForPageName(pageName); return postToUrlExpectingSuccess(postUrl, postUrl + "/navigation", params); } // Post to a page with a single input that only accepts a single value - protected ResultActions postExpectingSuccess(String pageName, String inputName, String value) - throws Exception { + protected ResultActions postExpectingSuccess(String pageName, String inputName, String value) throws Exception { String postUrl = getUrlForPageName(pageName); var params = Map.of(inputName, List.of(value)); return postToUrlExpectingSuccess(postUrl, postUrl + "/navigation", params); } // Post to a page with a single input that accepts multiple values - protected ResultActions postExpectingSuccess(String pageName, String inputName, - List values) throws Exception { + protected ResultActions postExpectingSuccess(String pageName, String inputName, List values) throws Exception { String postUrl = getUrlForPageName(pageName); return postToUrlExpectingSuccess(postUrl, postUrl + "/navigation", Map.of(inputName, values)); } @@ -222,20 +245,21 @@ protected ResultActions postToUrlExpectingSuccess(String postUrl, String redirec Map> params) throws Exception { - return mockMvc.perform( - post(postUrl) - .with(csrf()) - .contentType(MediaType.APPLICATION_FORM_URLENCODED_VALUE) - .params(new LinkedMultiValueMap<>(params)) - ).andExpect(redirectedUrl(redirectUrl)); + MockHttpServletRequestBuilder post = post(postUrl) + .with(csrf()) + .session(session) + .contentType(MediaType.APPLICATION_FORM_URLENCODED_VALUE) + .params(new LinkedMultiValueMap<>(params)); + + return mockMvc.perform(post).andExpect(redirectedUrl(redirectUrl)); } protected ResultActions postToUrlExpectingSuccess(String postUrl, String redirectUrl, - Map> params, String id, Map sessionAttrs) throws + Map> params, String id) throws Exception { return mockMvc.perform( post(postUrl + '/' + id) - .sessionAttrs(sessionAttrs) + .session(session) .with(csrf()) .contentType(MediaType.APPLICATION_FORM_URLENCODED_VALUE) .params(new LinkedMultiValueMap<>(params)) @@ -248,6 +272,7 @@ protected ResultActions postToUrlExpectingSuccessRedirectPattern(String postUrl, return mockMvc.perform( post(postUrl) .with(csrf()) + .session(session) .contentType(MediaType.APPLICATION_FORM_URLENCODED_VALUE) .params(new LinkedMultiValueMap<>(params)) ).andExpect(redirectedUrlPattern(redirectUrlPattern)); @@ -345,6 +370,7 @@ protected ResultActions postExpectingFailure(String pageName, String inputName, String postUrl = getUrlForPageName(pageName); return mockMvc.perform( post(postUrl) + .session(session) .with(csrf()) .contentType(MediaType.APPLICATION_FORM_URLENCODED_VALUE) .param(inputName, value) @@ -360,20 +386,17 @@ protected ResultActions postExpectingFailure(String pageName, Map> params, - String redirectUrl) - throws Exception { + String redirectUrl) throws Exception { String postUrl = getUrlForPageName(pageName); - return mockMvc.perform( - post(postUrl) - .with(csrf()) - .contentType(MediaType.APPLICATION_FORM_URLENCODED_VALUE) - .params(new LinkedMultiValueMap<>(params)) - ).andExpect(redirectedUrl(getUrlForPageName(redirectUrl))); + MockHttpServletRequestBuilder post = post(postUrl) + .session(session) + .with(csrf()) + .contentType(MediaType.APPLICATION_FORM_URLENCODED_VALUE) + .params(new LinkedMultiValueMap<>(params)); + + return mockMvc.perform(post).andExpect(redirectedUrl(getUrlForPageName(redirectUrl))); } protected ResultActions postExpectingFailures(String pageName, Map params) @@ -535,7 +558,8 @@ protected void assertPageHasWarningMessage(String pageName, String warningMessag @NotNull protected ResultActions getPage(String pageName) throws Exception { // TODO - remove assumption that flow is named testFlow - may not always be - return mockMvc.perform(get("/flow/testFlow/" + pageName)); + MockHttpServletRequestBuilder get = get("/flow/testFlow/" + pageName).session(session); + return mockMvc.perform(get); } @NotNull @@ -560,7 +584,7 @@ private String followRedirectsForPageName(String currentPageName) throws Excepti var nextPage = "/flow/testFlow/" + currentPageName + "/navigation"; while (Objects.requireNonNull(nextPage).contains("/navigation")) { // follow redirects - nextPage = mockMvc.perform(get(nextPage)) + nextPage = mockMvc.perform(get(nextPage).session(session)) .andExpect(status().is3xxRedirection()).andReturn() .getResponse() .getRedirectedUrl(); @@ -572,7 +596,7 @@ private String followRedirectsForUrl(String currentPageUrl) throws Exception { var nextPage = currentPageUrl; while (Objects.requireNonNull(nextPage).contains("/navigation")) { // follow redirects - nextPage = mockMvc.perform(get(nextPage)) + nextPage = mockMvc.perform(get(nextPage).session(session)) .andExpect(status().is3xxRedirection()).andReturn() .getResponse() .getRedirectedUrl(); diff --git a/src/test/resources/flows-config/test-flow.yaml b/src/test/resources/flows-config/test-flow.yaml index 190792f03..90f6f4da7 100644 --- a/src/test/resources/flows-config/test-flow.yaml +++ b/src/test/resources/flows-config/test-flow.yaml @@ -48,4 +48,27 @@ subflows: entryScreen: testEntryScreen iterationStartScreen: subflowAddItem reviewScreen: testReviewScreen - deleteConfirmationScreen: testDeleteConfirmationScreen \ No newline at end of file + deleteConfirmationScreen: testDeleteConfirmationScreen +--- +name: otherTestFlow +flow: + inputs: + nextScreens: + - name: test + subflowAddItem: + subflow: testSubflow + nextScreens: + - name: subflowAddItemPage2 + subflowAddItemPage2: + subflow: testSubflow + nextScreens: + - name: test + test: + nextScreens: + - name: success +subflows: + testSubflow: + entryScreen: testEntryScreen + iterationStartScreen: subflowAddItem + reviewScreen: testReviewScreen + deleteConfirmationScreen: testDeleteConfirmationScreen diff --git a/src/test/resources/flows-config/test-upload-flow.yaml b/src/test/resources/flows-config/test-upload-flow.yaml index 271fe0238..278fb2ff6 100644 --- a/src/test/resources/flows-config/test-upload-flow.yaml +++ b/src/test/resources/flows-config/test-upload-flow.yaml @@ -1,4 +1,11 @@ -name: uploadFlow +name: uploadFlowA +flow: + docUploadUnit: + nextScreens: null + docUploadJourney: + nextScreens: null +--- +name: uploadFlowB flow: docUploadUnit: nextScreens: null diff --git a/src/test/resources/templates/otherTestFlow/inputs.html b/src/test/resources/templates/otherTestFlow/inputs.html new file mode 100644 index 000000000..aa2b7e1a7 --- /dev/null +++ b/src/test/resources/templates/otherTestFlow/inputs.html @@ -0,0 +1,101 @@ + + + + +
+
+
+
+
+ + + +
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+ +
+
+
+
+
+
+ + + diff --git a/src/test/resources/templates/otherTestFlow/subflowAddItem.html b/src/test/resources/templates/otherTestFlow/subflowAddItem.html new file mode 100644 index 000000000..33e9d729b --- /dev/null +++ b/src/test/resources/templates/otherTestFlow/subflowAddItem.html @@ -0,0 +1,89 @@ + + + + +
+
+
+
+
+ + +
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+ +
+
+
+
+ + + diff --git a/src/test/resources/templates/otherTestFlow/subflowAddItemPage2.html b/src/test/resources/templates/otherTestFlow/subflowAddItemPage2.html new file mode 100644 index 000000000..a8aec541a --- /dev/null +++ b/src/test/resources/templates/otherTestFlow/subflowAddItemPage2.html @@ -0,0 +1,85 @@ + + + + +
+
+
+
+
+ + +
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+ +
+
+
+
+ + + diff --git a/src/test/resources/templates/otherTestFlow/success.html b/src/test/resources/templates/otherTestFlow/success.html new file mode 100644 index 000000000..0b6933f78 --- /dev/null +++ b/src/test/resources/templates/otherTestFlow/success.html @@ -0,0 +1,26 @@ + + + + +
+
+
+
+
+
+ + +
+

Congratulations, you did it! 🎉

+
+ +
+
+
+
+
+ + + diff --git a/src/test/resources/templates/otherTestFlow/test.html b/src/test/resources/templates/otherTestFlow/test.html new file mode 100644 index 000000000..c53739d06 --- /dev/null +++ b/src/test/resources/templates/otherTestFlow/test.html @@ -0,0 +1,21 @@ + + + + +
+
+
+
+
+ + +
+
+
+
+ + + diff --git a/src/test/resources/templates/testFlow/inputs.html b/src/test/resources/templates/testFlow/inputs.html index 7a57cb1e3..2ab3f896d 100644 --- a/src/test/resources/templates/testFlow/inputs.html +++ b/src/test/resources/templates/testFlow/inputs.html @@ -87,7 +87,8 @@ placeholderText='State')}"/>
diff --git a/src/test/resources/templates/uploadFlow/docUploadJourney.html b/src/test/resources/templates/uploadFlowA/docUploadJourney.html similarity index 100% rename from src/test/resources/templates/uploadFlow/docUploadJourney.html rename to src/test/resources/templates/uploadFlowA/docUploadJourney.html diff --git a/src/test/resources/templates/uploadFlow/docUploadUnit.html b/src/test/resources/templates/uploadFlowA/docUploadUnit.html similarity index 100% rename from src/test/resources/templates/uploadFlow/docUploadUnit.html rename to src/test/resources/templates/uploadFlowA/docUploadUnit.html diff --git a/src/test/resources/templates/uploadFlowB/docUploadJourney.html b/src/test/resources/templates/uploadFlowB/docUploadJourney.html new file mode 100644 index 000000000..9c8cc83c9 --- /dev/null +++ b/src/test/resources/templates/uploadFlowB/docUploadJourney.html @@ -0,0 +1,34 @@ + + + + +
+
+
+
+
+
+ + + +
+ +
+ +
+
+
+
+
+
+ + + diff --git a/src/test/resources/templates/uploadFlowB/docUploadUnit.html b/src/test/resources/templates/uploadFlowB/docUploadUnit.html new file mode 100644 index 000000000..0708ca841 --- /dev/null +++ b/src/test/resources/templates/uploadFlowB/docUploadUnit.html @@ -0,0 +1,40 @@ + + + + + + + +
+
+
+
+
+
+
+
+ + + +
+ +
+ +
+
+
+
+
+
+ + + diff --git a/src/test/resources/testA.jpeg b/src/test/resources/testA.jpeg new file mode 100644 index 000000000..b299ccc67 Binary files /dev/null and b/src/test/resources/testA.jpeg differ diff --git a/src/test/resources/testB.jpeg b/src/test/resources/testB.jpeg new file mode 100644 index 000000000..b299ccc67 Binary files /dev/null and b/src/test/resources/testB.jpeg differ