File size: 2,462 Bytes
afa0cbf
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
use super::*;
use pretty_assertions::assert_eq;
use serde_json::json;

#[test]
fn enrollment_response_accepts_older_servers_without_public_metadata() {
    for response in [
        json!({"credentialId": "credential"}),
        json!({"credentialId": "credential", "algorithm": null, "publicKey": null}),
    ] {
        assert_eq!(
            serde_json::from_value::<UserVerificationEnrollResponse>(response).unwrap(),
            UserVerificationEnrollResponse {
                credential_id: "credential".into(),
                algorithm: None,
                public_key: None,
            }
        );
    }
    let response = UserVerificationEnrollResponse {
        credential_id: "credential".into(),
        algorithm: Some("ecdsaP256Sha256X962".into()),
        public_key: Some("public-key".into()),
    };
    assert_eq!(
        serde_json::from_value::<UserVerificationEnrollResponse>(
            serde_json::to_value(&response).unwrap()
        )
        .unwrap(),
        response
    );
}

#[test]
fn local_readiness_retains_credential_during_biometric_unavailability() {
    let status = UserVerificationStatusResponse {
        credential_id: Some("credential".into()),
        unavailable_reason: Some(UserVerificationUnavailableReason::BiometricsUnavailable),
        unavailable_message: Some("Unlock biometrics to continue.".into()),
    };
    assert_eq!(
        serde_json::to_value(&status).unwrap(),
        json!({
            "credentialId": "credential",
            "unavailableReason": "biometricsUnavailable",
            "unavailableMessage": "Unlock biometrics to continue."
        })
    );
    assert_eq!(
        serde_json::from_value::<UserVerificationStatusResponse>(
            serde_json::to_value(&status).unwrap()
        )
        .unwrap(),
        status
    );
}

#[test]
fn error_details_reject_cross_category_reasons_and_native_payloads() {
    let details = UserVerificationErrorDetails::Cancelled {
        reason: UserVerificationCancellationReason::UserCancelled,
    };
    assert_eq!(
        serde_json::to_value(details).unwrap(),
        json!({"type": "cancelled", "reason": "userCancelled"})
    );
    for invalid in [
        json!({"type": "failed", "reason": "userCancelled"}),
        json!({"type": "unavailable", "reason": "providerUnavailable", "nativeError": {"code": 1}}),
    ] {
        assert!(serde_json::from_value::<UserVerificationErrorDetails>(invalid).is_err());
    }
}