Skip to content

Commit 2a19602

Browse files
committed
🔥(back) remove mozilla OIDCAuthentication fron DRF settings
The mozilla OIDCAuthentication backend was configured in the DRF settings but not used. We have to remove it.
1 parent 738a024 commit 2a19602

18 files changed

+33
-34
lines changed

src/backend/core/tests/items/test_api_item_accesses.py

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -21,7 +21,7 @@ def test_api_item_accesses_list_anonymous():
2121
factories.UserItemAccessFactory.create_batch(2, item=item)
2222

2323
response = APIClient().get(f"/api/v1.0/items/{item.id!s}/accesses/")
24-
assert response.status_code == 401
24+
assert response.status_code == 403
2525
assert response.json() == {
2626
"errors": [
2727
{
@@ -145,7 +145,7 @@ def test_api_item_accesses_retrieve_anonymous():
145145
f"/api/v1.0/items/{access.item_id!s}/accesses/{access.id!s}/",
146146
)
147147

148-
assert response.status_code == 401
148+
assert response.status_code == 403
149149
assert response.json() == {
150150
"errors": [
151151
{
@@ -262,7 +262,7 @@ def test_api_item_accesses_update_anonymous():
262262
{**old_values, field: value},
263263
format="json",
264264
)
265-
assert response.status_code == 401
265+
assert response.status_code == 403
266266

267267
access.refresh_from_db()
268268
updated_values = serializers.ItemAccessSerializer(instance=access).data
@@ -631,7 +631,7 @@ def test_api_item_accesses_delete_anonymous():
631631
f"/api/v1.0/items/{item.id!s}/accesses/{access.id!s}/",
632632
)
633633

634-
assert response.status_code == 401
634+
assert response.status_code == 403
635635
assert models.ItemAccess.objects.count() == 1
636636

637637

src/backend/core/tests/items/test_api_item_accesses_create.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ def test_api_item_accesses_create_anonymous():
3232
format="json",
3333
)
3434

35-
assert response.status_code == 401
35+
assert response.status_code == 403
3636
assert response.json() == {
3737
"errors": [
3838
{

src/backend/core/tests/items/test_api_item_invitations.py

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,7 @@ def test_api_item_invitations_list_anonymous_user():
2727
"""Anonymous users should not be able to list invitations."""
2828
invitation = factories.InvitationFactory()
2929
response = APIClient().get(f"/api/v1.0/items/{invitation.item.id!s}/invitations/")
30-
assert response.status_code == 401
30+
assert response.status_code == 403
3131

3232

3333
@pytest.mark.parametrize("via", VIA)
@@ -189,7 +189,7 @@ def test_api_item_invitations_retrieve_anonymous_user():
189189
f"/api/v1.0/items/{invitation.item.id!s}/invitations/{invitation.id!s}/",
190190
)
191191

192-
assert response.status_code == 401
192+
assert response.status_code == 403
193193

194194

195195
def test_api_item_invitations_retrieve_unrelated_user():
@@ -293,7 +293,7 @@ def test_api_item_invitations_create_anonymous():
293293
format="json",
294294
)
295295

296-
assert response.status_code == 401
296+
assert response.status_code == 403
297297
assert response.json() == {
298298
"errors": [
299299
{
@@ -775,7 +775,7 @@ def test_api_item_invitations_delete_anonymous():
775775
response = APIClient().delete(
776776
f"/api/v1.0/items/{invitation.item.id!s}/invitations/{invitation.id!s}/",
777777
)
778-
assert response.status_code == 401
778+
assert response.status_code == 403
779779

780780

781781
def test_api_item_invitations_delete_authenticated_outsider():

src/backend/core/tests/items/test_api_item_upload_ended.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ def test_api_item_upload_ended_anonymous():
1818
item = factories.ItemFactory()
1919
response = APIClient().post(f"/api/v1.0/items/{item.id!s}/upload-ended/")
2020

21-
assert response.status_code == 401
21+
assert response.status_code == 403
2222

2323

2424
@pytest.mark.parametrize("role", [None, "reader"])

src/backend/core/tests/items/test_api_items_children_create.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ def test_api_items_children_create_anonymous(reach, role, depth):
4141
)
4242

4343
assert Item.objects.count() == items_created
44-
assert response.status_code == 401
44+
assert response.status_code == 403
4545
assert response.json() == {
4646
"type": "client_error",
4747
"errors": [

src/backend/core/tests/items/test_api_items_children_list.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -207,7 +207,7 @@ def test_api_items_children_list_anonymous_restricted_or_authenticated(reach):
207207

208208
response = APIClient().get(f"/api/v1.0/items/{item.id!s}/children/")
209209

210-
assert response.status_code == 401
210+
assert response.status_code == 403
211211
assert response.json() == {
212212
"errors": [
213213
{

src/backend/core/tests/items/test_api_items_create.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,7 @@ def test_api_items_create_anonymous():
2626
},
2727
)
2828

29-
assert response.status_code == 401
29+
assert response.status_code == 403
3030
assert not Item.objects.exists()
3131

3232

src/backend/core/tests/items/test_api_items_delete.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ def test_api_items_delete_anonymous():
2020
f"/api/v1.0/items/{item.id!s}/",
2121
)
2222

23-
assert response.status_code == 401
23+
assert response.status_code == 403
2424
assert models.Item.objects.count() == existing_items
2525

2626

src/backend/core/tests/items/test_api_items_favorite.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ def test_api_item_favorite_anonymous_user(method, reach):
2323

2424
response = getattr(APIClient(), method)(f"/api/v1.0/items/{item.id!s}/favorite/")
2525

26-
assert response.status_code == 401
26+
assert response.status_code == 403
2727
assert response.json() == {
2828
"errors": [
2929
{

src/backend/core/tests/items/test_api_items_favorite_list.py

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -9,13 +9,13 @@
99

1010

1111
def test_api_item_favorite_list_anonymous():
12-
"""Anonymous users should receive a 401 error."""
12+
"""Anonymous users should receive a 403 error."""
1313

1414
client = APIClient()
1515

1616
response = client.get("/api/v1.0/items/favorite_list/")
1717

18-
assert response.status_code == 401
18+
assert response.status_code == 403
1919

2020

2121
def test_api_item_favorite_list_authenticated_no_favorite():

0 commit comments

Comments
 (0)