Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(15)

Unified Diff: chrome/browser/chromeos/login/multi_profile_user_controller_unittest.cc

Issue 117263002: Prevent ONC-pushed certificates from being used with multiprofiles. (Closed) Base URL: https://chromium.googlesource.com/chromium/src.git@master
Patch Set: fixed login_utils_browsertest Created 7 years ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View side-by-side diff with in-line comments
Download patch
Index: chrome/browser/chromeos/login/multi_profile_user_controller_unittest.cc
diff --git a/chrome/browser/chromeos/login/multi_profile_user_controller_unittest.cc b/chrome/browser/chromeos/login/multi_profile_user_controller_unittest.cc
index a5e1a2ad1304b20911a154d633a9b94274ec6a2e..89e198015a3cfe059d23918c0122cfad3bf5352b 100644
--- a/chrome/browser/chromeos/login/multi_profile_user_controller_unittest.cc
+++ b/chrome/browser/chromeos/login/multi_profile_user_controller_unittest.cc
@@ -9,6 +9,7 @@
#include "chrome/browser/chromeos/login/fake_user_manager.h"
#include "chrome/browser/chromeos/login/multi_profile_user_controller_delegate.h"
#include "chrome/browser/chromeos/login/user_manager.h"
+#include "chrome/browser/chromeos/policy/policy_cert_service_factory.h"
#include "chrome/browser/prefs/browser_prefs.h"
#include "chrome/common/pref_names.h"
#include "chrome/test/base/scoped_testing_local_state.h"
@@ -263,4 +264,21 @@ TEST_F(MultiProfileUserControllerTest, NoSecondaryOwner) {
EXPECT_EQ(1, user_not_allowed_count());
}
+TEST_F(MultiProfileUserControllerTest,
+ UsedPolicyCertificatesAllowedForPrimary) {
+ policy::PolicyCertServiceFactory::SetUsedPolicyCertificates(kUsers[0]);
+ EXPECT_TRUE(controller()->IsUserAllowedInSession(kUsers[0]));
+ EXPECT_TRUE(controller()->IsUserAllowedInSession(kUsers[1]));
Nikita (slow) 2013/12/17 18:42:05 nit: It seems that you're actually checking both u
Joao da Silva 2013/12/17 20:44:21 Yes; this test verifies that both "normal" and "ta
+ policy::PolicyCertServiceFactory::ClearUsedPolicyCertificates(kUsers[0]);
+}
+
+TEST_F(MultiProfileUserControllerTest,
+ UsedPolicyCertificatesDisallowedForSecondary) {
+ LoginUser(1);
+ EXPECT_TRUE(controller()->IsUserAllowedInSession(kUsers[0]));
+ policy::PolicyCertServiceFactory::SetUsedPolicyCertificates(kUsers[0]);
+ EXPECT_FALSE(controller()->IsUserAllowedInSession(kUsers[0]));
+ policy::PolicyCertServiceFactory::ClearUsedPolicyCertificates(kUsers[0]);
+}
+
} // namespace chromeos

Powered by Google App Engine
This is Rietveld 408576698