bemade-addons/odoo_to_odoo_sync/tests/test_authentication.py
mathis 9df769be69 feat: Complete bidirectional sync system with legacy cleanup
BREAKING CHANGE: Legacy API key system (sync.api.key) completely removed

Major Features:
- Complete bidirectional synchronization system between Odoo instances
- Legacy API key system removal and migration to built-in Odoo API keys
- Full protocol support: XML-RPC, JSON-RPC, and OdooRPC with API token authentication
- Bidirectional project sync with assign/receive wizard system
- Auto-sync wizard for intelligent field selection
- Comprehensive test suite for sync workflows

Detailed Changes:

odoo_to_odoo_sync (base module):
- Removed legacy sync.api.key and sync.api.key.log models entirely
- Added sync_project and sync_project_config_wizard models
- Enhanced sync_instance with proper Odoo 18 API key format support
- Added protocol selection (XML-RPC, JSON-RPC, OdooRPC) with API token auth
- Implemented comprehensive authentication with debug logging
- Added test_sync_workflow.py for complete workflow testing
- Updated security access rules for new models
- Enhanced error handling and state management

odoo_to_odoo_bemade (server module):
- Created OdooToBemadeInstance model for enhanced instance management
- Added assign project wizard for server-side project distribution
- Implemented project key and API token generation system
- Added automatic sync model creation for projects and tasks
- Enhanced sync_instance with bidirectional sync capabilities
- Updated views and security access for new functionality
- Removed legacy API key references and views

odoo_to_odoo_bemade_customer (client module):
- Added project model with Bemade sync flags (is_bemade_project, bemade_project_key)
- Created receive project wizard for client-side project acquisition
- Implemented multi-protocol support (XML-RPC, JSON-RPC, OdooRPC)
- Added project sync validation and configuration system
- Enhanced security access rules for client operations
- Updated views for project management interface

Authentication & Protocol Support:
- Fixed Odoo 18 API key format: {'scope': 'rpc', 'key': api_token}
- Added comprehensive debug logging for authentication flow
- Enhanced error handling with detailed state management
- Maintained backward compatibility with fallback attempts
- Updated all protocol implementations (XML-RPC, JSON-RPC, OdooRPC)

Testing & Validation:
- Added complete test suite for bidirectional sync workflow
- Implemented comprehensive authentication testing
- Added protocol-specific test cases
- Enhanced error state validation

UI/UX Improvements:
- Added intuitive wizards for project assign/receive operations
- Implemented auto-sync wizard with field selection modes (Full, Required, Balanced)
- Enhanced form views with radio button selections
- Added descriptive text and user guidance

Security:
- Updated security access rules for all new models
- Enhanced authentication token handling
- Added proper model access controls

Migration Notes:
- Legacy API key system completely removed - no migration path needed
- Uses built-in Odoo API key functionality
- All existing configurations remain compatible

Files Added/Modified:
- Multiple new model files for project sync functionality
- Wizard implementations for user workflows
- Enhanced test coverage
- Updated security rules and access controls
- New view definitions for UI components
2025-08-17 08:20:24 -04:00

130 lines
4.5 KiB
Python

# -*- coding: utf-8 -*-
from odoo.tests import common
from odoo.exceptions import ValidationError
import logging
_logger = logging.getLogger(__name__)
class TestAPITokenAuthentication(common.TransactionCase):
"""Test API token authentication functionality."""
def setUp(self):
super(TestAPITokenAuthentication, self).setUp()
self.SyncInstance = self.env['odoo.sync.instance']
def test_api_key_encryption_decryption(self):
"""Test API key encryption and decryption."""
original_key = 'secret_api_key_67890'
instance = self.SyncInstance.create({
'name': 'Test Instance',
'url': 'https://test.example.com',
'database': 'test_db',
'username': 'test_user',
'api_key': original_key
})
# Verify encryption happened
self.assertTrue(instance.encrypted_api_key)
self.assertNotEqual(instance.encrypted_api_key, original_key)
# Verify decryption returns original
decrypted = instance._decrypt_sensitive_data()
self.assertEqual(decrypted, original_key)
def test_api_key_field_requirements(self):
"""Test that API key field is properly required."""
# Should succeed with API key
instance = self.SyncInstance.create({
'name': 'Test Instance',
'url': 'https://test.example.com',
'database': 'test_db',
'username': 'test_user',
'api_key': 'valid_api_key'
})
self.assertTrue(instance.id)
# Verify key is stored correctly
self.assertEqual(instance.api_key, 'valid_api_key')
def test_missing_credentials_error_handling(self):
"""Test error handling for missing credentials."""
# Should fail without API key
with self.assertRaises(ValidationError):
self.SyncInstance.create({
'name': 'Test Instance',
'url': 'https://test.example.com',
'database': 'test_db',
'username': 'test_user',
# Missing api_key
})
def test_api_key_format_validation(self):
"""Test API key format validation."""
# Test valid API key format
instance = self.SyncInstance.create({
'name': 'Test Instance',
'url': 'https://test.example.com',
'database': 'test_db',
'username': 'test_user',
'api_key': '1f940dce111dd177907678547230ca6e854ad270'
})
# Verify key is stored correctly
self.assertEqual(len(instance.api_key), 40) # Odoo 18 API key length
self.assertTrue(instance.api_key.isalnum())
def test_field_validation(self):
"""Test field validation for sync instance."""
# Test valid URL format
instance = self.SyncInstance.create({
'name': 'Test Instance',
'url': 'https://valid-url.example.com',
'database': 'test_db',
'username': 'test_user',
'api_key': 'valid_api_key'
})
self.assertTrue(instance.url.startswith('http'))
def test_protocol_selection(self):
"""Test protocol selection validation."""
# Test valid protocols
valid_protocols = ['jsonrpc', 'xmlrpc', 'odoorpc']
for protocol in valid_protocols:
instance = self.SyncInstance.create({
'name': f'Test {protocol}',
'url': 'https://test.example.com',
'database': 'test_db',
'username': 'test_user',
'api_key': 'test_api_key',
'connection_type': protocol
})
self.assertEqual(instance.connection_type, protocol)
def test_instance_creation_and_cleanup(self):
"""Test instance creation and cleanup."""
instance = self.SyncInstance.create({
'name': 'Test Instance',
'url': 'https://test.example.com',
'database': 'test_db',
'username': 'test_user',
'api_key': 'test_api_key'
})
# Verify instance was created
self.assertTrue(instance.id)
# Test that instance can be found
found = self.SyncInstance.search([('name', '=', 'Test Instance')])
self.assertEqual(len(found), 1)
self.assertEqual(found[0].id, instance.id)
# Test cleanup
instance.unlink()
# Verify instance was removed
remaining = self.SyncInstance.search([('id', '=', instance.id)])
self.assertFalse(remaining)