4 class RelationsControllerTest < ActionDispatch::IntegrationTest
6 # test all routes which lead to this controller
9 { :path => "/api/0.6/relations", :method => :get },
10 { :controller => "api/relations", :action => "index" }
13 { :path => "/api/0.6/relations.json", :method => :get },
14 { :controller => "api/relations", :action => "index", :format => "json" }
17 { :path => "/api/0.6/relations", :method => :post },
18 { :controller => "api/relations", :action => "create" }
21 { :path => "/api/0.6/relation/1", :method => :get },
22 { :controller => "api/relations", :action => "show", :id => "1" }
25 { :path => "/api/0.6/relation/1.json", :method => :get },
26 { :controller => "api/relations", :action => "show", :id => "1", :format => "json" }
29 { :path => "/api/0.6/relation/1/full", :method => :get },
30 { :controller => "api/relations", :action => "show", :full => true, :id => "1" }
33 { :path => "/api/0.6/relation/1/full.json", :method => :get },
34 { :controller => "api/relations", :action => "show", :full => true, :id => "1", :format => "json" }
37 { :path => "/api/0.6/relation/1", :method => :put },
38 { :controller => "api/relations", :action => "update", :id => "1" }
41 { :path => "/api/0.6/relation/1", :method => :delete },
42 { :controller => "api/relations", :action => "destroy", :id => "1" }
46 { :controller => "api/relations", :action => "create" },
47 { :path => "/api/0.6/relation/create", :method => :put }
52 # test fetching multiple relations
54 relation1 = create(:relation)
55 relation2 = create(:relation, :deleted)
56 relation3 = create(:relation, :with_history, :version => 2)
57 relation4 = create(:relation, :with_history, :version => 2)
58 relation4.old_relations.find_by(:version => 1).redact!(create(:redaction))
60 # check error when no parameter provided
61 get api_relations_path
62 assert_response :bad_request
64 # check error when no parameter value provided
65 get api_relations_path(:relations => "")
66 assert_response :bad_request
69 get api_relations_path(:relations => "#{relation1.id},#{relation2.id},#{relation3.id},#{relation4.id}")
70 assert_response :success
71 assert_select "osm" do
72 assert_select "relation", :count => 4
73 assert_select "relation[id='#{relation1.id}'][visible='true']", :count => 1
74 assert_select "relation[id='#{relation2.id}'][visible='false']", :count => 1
75 assert_select "relation[id='#{relation3.id}'][visible='true']", :count => 1
76 assert_select "relation[id='#{relation4.id}'][visible='true']", :count => 1
79 # test a working call with json format
80 get api_relations_path(:relations => "#{relation1.id},#{relation2.id},#{relation3.id},#{relation4.id}", :format => "json")
82 js = ActiveSupport::JSON.decode(@response.body)
84 assert_equal 4, js["elements"].count
85 assert_equal 4, (js["elements"].count { |a| a["type"] == "relation" })
86 assert_equal 1, (js["elements"].count { |a| a["id"] == relation1.id && a["visible"].nil? })
87 assert_equal 1, (js["elements"].count { |a| a["id"] == relation2.id && a["visible"] == false })
88 assert_equal 1, (js["elements"].count { |a| a["id"] == relation3.id && a["visible"].nil? })
89 assert_equal 1, (js["elements"].count { |a| a["id"] == relation4.id && a["visible"].nil? })
91 # check error when a non-existent relation is included
92 get api_relations_path(:relations => "#{relation1.id},#{relation2.id},#{relation3.id},#{relation4.id},0")
93 assert_response :not_found
96 # -------------------------------------
97 # Test showing relations.
98 # -------------------------------------
100 def test_show_not_found
101 get api_relation_path(0)
102 assert_response :not_found
105 def test_show_deleted
106 get api_relation_path(create(:relation, :deleted))
107 assert_response :gone
111 relation = create(:relation, :timestamp => "2021-02-03T00:00:00Z")
112 node = create(:node, :timestamp => "2021-04-05T00:00:00Z")
113 create(:relation_member, :relation => relation, :member => node)
115 get api_relation_path(relation)
117 assert_response :success
118 assert_not_nil @response.header["Last-Modified"]
119 assert_equal "2021-02-03T00:00:00Z", Time.parse(@response.header["Last-Modified"]).utc.xmlschema
120 assert_dom "node", :count => 0
121 assert_dom "relation", :count => 1 do
122 assert_dom "> @id", :text => relation.id.to_s
126 def test_full_not_found
127 get api_relation_path(999999, :full => true)
128 assert_response :not_found
131 def test_full_deleted
132 get api_relation_path(create(:relation, :deleted), :full => true)
133 assert_response :gone
137 relation = create(:relation)
139 get api_relation_path(relation, :full => true)
141 assert_response :success
142 assert_dom "relation", :count => 1 do
143 assert_dom "> @id", :text => relation.id.to_s
147 def test_full_with_node_member
148 relation = create(:relation)
150 create(:relation_member, :relation => relation, :member => node)
152 get api_relation_path(relation, :full => true)
154 assert_response :success
155 assert_dom "node", :count => 1 do
156 assert_dom "> @id", :text => node.id.to_s
158 assert_dom "relation", :count => 1 do
159 assert_dom "> @id", :text => relation.id.to_s
163 def test_full_with_way_member
164 relation = create(:relation)
165 way = create(:way_with_nodes)
166 create(:relation_member, :relation => relation, :member => way)
168 get api_relation_path(relation, :full => true)
170 assert_response :success
171 assert_dom "node", :count => 1 do
172 assert_dom "> @id", :text => way.nodes[0].id.to_s
174 assert_dom "way", :count => 1 do
175 assert_dom "> @id", :text => way.id.to_s
177 assert_dom "relation", :count => 1 do
178 assert_dom "> @id", :text => relation.id.to_s
182 def test_full_with_node_member_json
183 relation = create(:relation)
185 create(:relation_member, :relation => relation, :member => node)
187 get api_relation_path(relation, :full => true, :format => "json")
189 assert_response :success
190 js = ActiveSupport::JSON.decode(@response.body)
192 assert_equal 2, js["elements"].count
194 js_relations = js["elements"].filter { |e| e["type"] == "relation" }
195 assert_equal 1, js_relations.count
196 assert_equal relation.id, js_relations[0]["id"]
197 assert_equal 1, js_relations[0]["members"].count
198 assert_equal "node", js_relations[0]["members"][0]["type"]
199 assert_equal node.id, js_relations[0]["members"][0]["ref"]
201 js_nodes = js["elements"].filter { |e| e["type"] == "node" }
202 assert_equal 1, js_nodes.count
203 assert_equal node.id, js_nodes[0]["id"]
206 # -------------------------------------
207 # Test simple relation creation.
208 # -------------------------------------
211 private_user = create(:user, :data_public => false)
212 private_changeset = create(:changeset, :user => private_user)
214 changeset = create(:changeset, :user => user)
216 way = create(:way_with_nodes, :nodes_count => 2)
218 auth_header = bearer_authorization_header private_user
220 # create an relation without members
221 xml = "<osm><relation changeset='#{private_changeset.id}'><tag k='test' v='yes' /></relation></osm>"
222 post api_relations_path, :params => xml, :headers => auth_header
223 # hope for forbidden, due to user
224 assert_response :forbidden,
225 "relation upload should have failed with forbidden"
228 # create an relation with a node as member
229 # This time try with a role attribute in the relation
230 xml = "<osm><relation changeset='#{private_changeset.id}'>" \
231 "<member ref='#{node.id}' type='node' role='some'/>" \
232 "<tag k='test' v='yes' /></relation></osm>"
233 post api_relations_path, :params => xml, :headers => auth_header
234 # hope for forbidden due to user
235 assert_response :forbidden,
236 "relation upload did not return forbidden status"
239 # create an relation with a node as member, this time test that we don't
240 # need a role attribute to be included
241 xml = "<osm><relation changeset='#{private_changeset.id}'>" \
242 "<member ref='#{node.id}' type='node'/><tag k='test' v='yes' /></relation></osm>"
243 post api_relations_path, :params => xml, :headers => auth_header
244 # hope for forbidden due to user
245 assert_response :forbidden,
246 "relation upload did not return forbidden status"
249 # create an relation with a way and a node as members
250 xml = "<osm><relation changeset='#{private_changeset.id}'>" \
251 "<member type='node' ref='#{node.id}' role='some'/>" \
252 "<member type='way' ref='#{way.id}' role='other'/>" \
253 "<tag k='test' v='yes' /></relation></osm>"
254 post api_relations_path, :params => xml, :headers => auth_header
255 # hope for forbidden, due to user
256 assert_response :forbidden,
257 "relation upload did not return success status"
259 ## Now try with the public user
260 auth_header = bearer_authorization_header user
262 # create an relation without members
263 xml = "<osm><relation changeset='#{changeset.id}'><tag k='test' v='yes' /></relation></osm>"
264 post api_relations_path, :params => xml, :headers => auth_header
266 assert_response :success,
267 "relation upload did not return success status"
268 # read id of created relation and search for it
269 relationid = @response.body
270 checkrelation = Relation.find(relationid)
271 assert_not_nil checkrelation,
272 "uploaded relation not found in data base after upload"
274 assert_equal(0, checkrelation.members.length, "saved relation contains members but should not")
275 assert_equal(1, checkrelation.tags.length, "saved relation does not contain exactly one tag")
276 assert_equal changeset.id, checkrelation.changeset.id,
277 "saved relation does not belong in the changeset it was assigned to"
278 assert_equal user.id, checkrelation.changeset.user_id,
279 "saved relation does not belong to user that created it"
280 assert checkrelation.visible,
281 "saved relation is not visible"
282 # ok the relation is there but can we also retrieve it?
283 get api_relation_path(relationid)
284 assert_response :success
287 # create an relation with a node as member
288 # This time try with a role attribute in the relation
289 xml = "<osm><relation changeset='#{changeset.id}'>" \
290 "<member ref='#{node.id}' type='node' role='some'/>" \
291 "<tag k='test' v='yes' /></relation></osm>"
292 post api_relations_path, :params => xml, :headers => auth_header
294 assert_response :success,
295 "relation upload did not return success status"
296 # read id of created relation and search for it
297 relationid = @response.body
298 checkrelation = Relation.find(relationid)
299 assert_not_nil checkrelation,
300 "uploaded relation not found in data base after upload"
302 assert_equal(1, checkrelation.members.length, "saved relation does not contain exactly one member")
303 assert_equal(1, checkrelation.tags.length, "saved relation does not contain exactly one tag")
304 assert_equal changeset.id, checkrelation.changeset.id,
305 "saved relation does not belong in the changeset it was assigned to"
306 assert_equal user.id, checkrelation.changeset.user_id,
307 "saved relation does not belong to user that created it"
308 assert checkrelation.visible,
309 "saved relation is not visible"
310 # ok the relation is there but can we also retrieve it?
312 get api_relation_path(relationid)
313 assert_response :success
316 # create an relation with a node as member, this time test that we don't
317 # need a role attribute to be included
318 xml = "<osm><relation changeset='#{changeset.id}'>" \
319 "<member ref='#{node.id}' type='node'/><tag k='test' v='yes' /></relation></osm>"
320 post api_relations_path, :params => xml, :headers => auth_header
322 assert_response :success,
323 "relation upload did not return success status"
324 # read id of created relation and search for it
325 relationid = @response.body
326 checkrelation = Relation.find(relationid)
327 assert_not_nil checkrelation,
328 "uploaded relation not found in data base after upload"
330 assert_equal(1, checkrelation.members.length, "saved relation does not contain exactly one member")
331 assert_equal(1, checkrelation.tags.length, "saved relation does not contain exactly one tag")
332 assert_equal changeset.id, checkrelation.changeset.id,
333 "saved relation does not belong in the changeset it was assigned to"
334 assert_equal user.id, checkrelation.changeset.user_id,
335 "saved relation does not belong to user that created it"
336 assert checkrelation.visible,
337 "saved relation is not visible"
338 # ok the relation is there but can we also retrieve it?
340 get api_relation_path(relationid)
341 assert_response :success
344 # create an relation with a way and a node as members
345 xml = "<osm><relation changeset='#{changeset.id}'>" \
346 "<member type='node' ref='#{node.id}' role='some'/>" \
347 "<member type='way' ref='#{way.id}' role='other'/>" \
348 "<tag k='test' v='yes' /></relation></osm>"
349 post api_relations_path, :params => xml, :headers => auth_header
351 assert_response :success,
352 "relation upload did not return success status"
353 # read id of created relation and search for it
354 relationid = @response.body
355 checkrelation = Relation.find(relationid)
356 assert_not_nil checkrelation,
357 "uploaded relation not found in data base after upload"
359 assert_equal(2, checkrelation.members.length, "saved relation does not have exactly two members")
360 assert_equal(1, checkrelation.tags.length, "saved relation does not contain exactly one tag")
361 assert_equal changeset.id, checkrelation.changeset.id,
362 "saved relation does not belong in the changeset it was assigned to"
363 assert_equal user.id, checkrelation.changeset.user_id,
364 "saved relation does not belong to user that created it"
365 assert checkrelation.visible,
366 "saved relation is not visible"
367 # ok the relation is there but can we also retrieve it?
368 get api_relation_path(relationid)
369 assert_response :success
372 # ------------------------------------
373 # Test updating relations
374 # ------------------------------------
377 # test that, when tags are updated on a relation, the correct things
378 # happen to the correct tables and the API gives sensible results.
379 # this is to test a case that gregory marler noticed and posted to
381 ## FIXME Move this to an integration test
382 def test_update_relation_tags
384 changeset = create(:changeset, :user => user)
385 relation = create(:relation)
386 create_list(:relation_tag, 4, :relation => relation)
388 auth_header = bearer_authorization_header user
390 get api_relation_path(relation)
391 assert_response :success
392 rel = xml_parse(@response.body)
393 rel_id = rel.find("//osm/relation").first["id"].to_i
395 # alter one of the tags
396 tag = rel.find("//osm/relation/tag").first
397 tag["v"] = "some changed value"
398 update_changeset(rel, changeset.id)
399 put api_relation_path(rel_id), :params => rel.to_s, :headers => auth_header
400 assert_response :success, "can't update relation: #{@response.body}"
401 new_version = @response.body.to_i
403 # check that the downloaded tags are the same as the uploaded tags...
404 get api_relation_path(rel_id)
405 assert_tags_equal_response rel
407 # check the original one in the current_* table again
408 get api_relation_path(relation)
409 assert_tags_equal_response rel
411 # now check the version in the history
412 get api_relation_version_path(relation, new_version)
413 assert_tags_equal_response rel
417 # test that, when tags are updated on a relation when using the diff
418 # upload function, the correct things happen to the correct tables
419 # and the API gives sensible results. this is to test a case that
420 # gregory marler noticed and posted to josm-dev.
421 def test_update_relation_tags_via_upload
423 changeset = create(:changeset, :user => user)
424 relation = create(:relation)
425 create_list(:relation_tag, 4, :relation => relation)
427 auth_header = bearer_authorization_header user
429 get api_relation_path(relation)
430 assert_response :success
431 rel = xml_parse(@response.body)
432 rel_id = rel.find("//osm/relation").first["id"].to_i
434 # alter one of the tags
435 tag = rel.find("//osm/relation/tag").first
436 tag["v"] = "some changed value"
437 update_changeset(rel, changeset.id)
439 with_controller(Api::ChangesetsController.new) do
440 doc = OSM::API.new.xml_doc
441 change = XML::Node.new "osmChange"
443 modify = XML::Node.new "modify"
445 modify << doc.import(rel.find("//osm/relation").first)
447 post api_changeset_upload_path(changeset), :params => doc.to_s, :headers => auth_header
448 assert_response :success, "can't upload diff relation: #{@response.body}"
449 new_version = xml_parse(@response.body).find("//diffResult/relation").first["new_version"].to_i
452 # check that the downloaded tags are the same as the uploaded tags...
453 get api_relation_path(rel_id)
454 assert_tags_equal_response rel
456 # check the original one in the current_* table again
457 get api_relation_path(relation)
458 assert_tags_equal_response rel
460 # now check the version in the history
461 get api_relation_version_path(relation, new_version)
462 assert_tags_equal_response rel
465 def test_update_wrong_id
467 changeset = create(:changeset, :user => user)
468 relation = create(:relation)
469 other_relation = create(:relation)
471 auth_header = bearer_authorization_header user
472 get api_relation_path(relation)
473 assert_response :success
474 rel = xml_parse(@response.body)
476 update_changeset(rel, changeset.id)
477 put api_relation_path(other_relation), :params => rel.to_s, :headers => auth_header
478 assert_response :bad_request
481 # -------------------------------------
482 # Test creating some invalid relations.
483 # -------------------------------------
485 def test_create_invalid
487 changeset = create(:changeset, :user => user)
489 auth_header = bearer_authorization_header user
491 # create a relation with non-existing node as member
492 xml = "<osm><relation changeset='#{changeset.id}'>" \
493 "<member type='node' ref='0'/><tag k='test' v='yes' />" \
495 post api_relations_path, :params => xml, :headers => auth_header
497 assert_response :precondition_failed,
498 "relation upload with invalid node did not return 'precondition failed'"
499 assert_equal "Precondition failed: Relation with id cannot be saved due to Node with id 0", @response.body
502 # -------------------------------------
503 # Test creating a relation, with some invalid XML
504 # -------------------------------------
505 def test_create_invalid_xml
507 changeset = create(:changeset, :user => user)
510 auth_header = bearer_authorization_header user
512 # create some xml that should return an error
513 xml = "<osm><relation changeset='#{changeset.id}'>" \
514 "<member type='type' ref='#{node.id}' role=''/>" \
515 "<tag k='tester' v='yep'/></relation></osm>"
516 post api_relations_path, :params => xml, :headers => auth_header
518 assert_response :bad_request
519 assert_match(/Cannot parse valid relation from xml string/, @response.body)
520 assert_match(/The type is not allowed only, /, @response.body)
523 # -------------------------------------
524 # Test deleting relations.
525 # -------------------------------------
528 private_user = create(:user, :data_public => false)
529 private_user_closed_changeset = create(:changeset, :closed, :user => private_user)
531 closed_changeset = create(:changeset, :closed, :user => user)
532 changeset = create(:changeset, :user => user)
533 relation = create(:relation)
534 used_relation = create(:relation)
535 super_relation = create(:relation_member, :member => used_relation).relation
536 deleted_relation = create(:relation, :deleted)
537 multi_tag_relation = create(:relation)
538 create_list(:relation_tag, 4, :relation => multi_tag_relation)
540 ## First try to delete relation without auth
541 delete api_relation_path(relation)
542 assert_response :unauthorized
544 ## Then try with the private user, to make sure that you get a forbidden
545 auth_header = bearer_authorization_header private_user
547 # this shouldn't work, as we should need the payload...
548 delete api_relation_path(relation), :headers => auth_header
549 assert_response :forbidden
551 # try to delete without specifying a changeset
552 xml = "<osm><relation id='#{relation.id}'/></osm>"
553 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
554 assert_response :forbidden
556 # try to delete with an invalid (closed) changeset
557 xml = update_changeset(xml_for_relation(relation),
558 private_user_closed_changeset.id)
559 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
560 assert_response :forbidden
562 # try to delete with an invalid (non-existent) changeset
563 xml = update_changeset(xml_for_relation(relation), 0)
564 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
565 assert_response :forbidden
567 # this won't work because the relation is in-use by another relation
568 xml = xml_for_relation(used_relation)
569 delete api_relation_path(used_relation), :params => xml.to_s, :headers => auth_header
570 assert_response :forbidden
572 # this should work when we provide the appropriate payload...
573 xml = xml_for_relation(relation)
574 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
575 assert_response :forbidden
577 # this won't work since the relation is already deleted
578 xml = xml_for_relation(deleted_relation)
579 delete api_relation_path(deleted_relation), :params => xml.to_s, :headers => auth_header
580 assert_response :forbidden
582 # this won't work since the relation never existed
583 delete api_relation_path(0), :headers => auth_header
584 assert_response :forbidden
586 ## now set auth for the public user
587 auth_header = bearer_authorization_header user
589 # this shouldn't work, as we should need the payload...
590 delete api_relation_path(relation), :headers => auth_header
591 assert_response :bad_request
593 # try to delete without specifying a changeset
594 xml = "<osm><relation id='#{relation.id}' version='#{relation.version}' /></osm>"
595 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
596 assert_response :bad_request
597 assert_match(/Changeset id is missing/, @response.body)
599 # try to delete with an invalid (closed) changeset
600 xml = update_changeset(xml_for_relation(relation),
602 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
603 assert_response :conflict
605 # try to delete with an invalid (non-existent) changeset
606 xml = update_changeset(xml_for_relation(relation), 0)
607 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
608 assert_response :conflict
610 # this won't work because the relation is in a changeset owned by someone else
611 xml = update_changeset(xml_for_relation(relation), create(:changeset).id)
612 delete api_relation_path(relation), :params => xml.to_s, :headers => auth_header
613 assert_response :conflict,
614 "shouldn't be able to delete a relation in a changeset owned by someone else (#{@response.body})"
616 # this won't work because the relation in the payload is different to that passed
617 xml = update_changeset(xml_for_relation(relation), changeset.id)
618 delete api_relation_path(create(:relation)), :params => xml.to_s, :headers => auth_header
619 assert_response :bad_request, "shouldn't be able to delete a relation when payload is different to the url"
621 # this won't work because the relation is in-use by another relation
622 xml = update_changeset(xml_for_relation(used_relation), changeset.id)
623 delete api_relation_path(used_relation), :params => xml.to_s, :headers => auth_header
624 assert_response :precondition_failed,
625 "shouldn't be able to delete a relation used in a relation (#{@response.body})"
626 assert_equal "Precondition failed: The relation #{used_relation.id} is used in relation #{super_relation.id}.", @response.body
628 # this should work when we provide the appropriate payload...
629 xml = update_changeset(xml_for_relation(multi_tag_relation), changeset.id)
630 delete api_relation_path(multi_tag_relation), :params => xml.to_s, :headers => auth_header
631 assert_response :success
633 # valid delete should return the new version number, which should
634 # be greater than the old version number
635 assert_operator @response.body.to_i, :>, multi_tag_relation.version, "delete request should return a new version number for relation"
637 # this won't work since the relation is already deleted
638 xml = update_changeset(xml_for_relation(deleted_relation), changeset.id)
639 delete api_relation_path(deleted_relation), :params => xml.to_s, :headers => auth_header
640 assert_response :gone
642 # Public visible relation needs to be deleted
643 xml = update_changeset(xml_for_relation(super_relation), changeset.id)
644 delete api_relation_path(super_relation), :params => xml.to_s, :headers => auth_header
645 assert_response :success
647 # this works now because the relation which was using this one
649 xml = update_changeset(xml_for_relation(used_relation), changeset.id)
650 delete api_relation_path(used_relation), :params => xml.to_s, :headers => auth_header
651 assert_response :success,
652 "should be able to delete a relation used in an old relation (#{@response.body})"
654 # this won't work since the relation never existed
655 delete api_relation_path(0), :headers => auth_header
656 assert_response :not_found
660 # check that relations are ordered
661 def test_relation_member_ordering
663 changeset = create(:changeset, :user => user)
664 node1 = create(:node)
665 node2 = create(:node)
666 node3 = create(:node)
667 way1 = create(:way_with_nodes, :nodes_count => 2)
668 way2 = create(:way_with_nodes, :nodes_count => 2)
670 auth_header = bearer_authorization_header user
674 <relation changeset='#{changeset.id}'>
675 <member ref='#{node1.id}' type='node' role='first'/>
676 <member ref='#{node2.id}' type='node' role='second'/>
677 <member ref='#{way1.id}' type='way' role='third'/>
678 <member ref='#{way2.id}' type='way' role='fourth'/>
682 doc = XML::Parser.string(doc_str).parse
684 post api_relations_path, :params => doc.to_s, :headers => auth_header
685 assert_response :success, "can't create a relation: #{@response.body}"
686 relation_id = @response.body.to_i
688 # get it back and check the ordering
689 get api_relation_path(relation_id)
690 assert_members_equal_response doc
692 # check the ordering in the history tables:
693 get api_relation_version_path(relation_id, 1)
694 assert_members_equal_response doc, "can't read back version 2 of the relation"
696 # insert a member at the front
697 new_member = XML::Node.new "member"
698 new_member["ref"] = node3.id.to_s
699 new_member["type"] = "node"
700 new_member["role"] = "new first"
701 doc.find("//osm/relation").first.child.prev = new_member
702 # update the version, should be 1?
703 doc.find("//osm/relation").first["id"] = relation_id.to_s
704 doc.find("//osm/relation").first["version"] = 1.to_s
706 # upload the next version of the relation
707 put api_relation_path(relation_id), :params => doc.to_s, :headers => auth_header
708 assert_response :success, "can't update relation: #{@response.body}"
709 assert_equal 2, @response.body.to_i
711 # get it back again and check the ordering again
712 get api_relation_path(relation_id)
713 assert_members_equal_response doc
715 # check the ordering in the history tables:
716 get api_relation_version_path(relation_id, 2)
717 assert_members_equal_response doc, "can't read back version 2 of the relation"
721 # check that relations can contain duplicate members
722 def test_relation_member_duplicates
723 private_user = create(:user, :data_public => false)
725 changeset = create(:changeset, :user => user)
726 node1 = create(:node)
727 node2 = create(:node)
731 <relation changeset='#{changeset.id}'>
732 <member ref='#{node1.id}' type='node' role='forward'/>
733 <member ref='#{node2.id}' type='node' role='forward'/>
734 <member ref='#{node1.id}' type='node' role='forward'/>
735 <member ref='#{node2.id}' type='node' role='forward'/>
739 doc = XML::Parser.string(doc_str).parse
741 ## First try with the private user
742 auth_header = bearer_authorization_header private_user
744 post api_relations_path, :params => doc.to_s, :headers => auth_header
745 assert_response :forbidden
747 ## Now try with the public user
748 auth_header = bearer_authorization_header user
750 post api_relations_path, :params => doc.to_s, :headers => auth_header
751 assert_response :success, "can't create a relation: #{@response.body}"
752 relation_id = @response.body.to_i
754 # get it back and check the ordering
755 get api_relation_path(relation_id)
756 assert_members_equal_response doc
758 # check the ordering in the history tables:
759 get api_relation_version_path(relation_id, 1)
760 assert_members_equal_response doc, "can't read back version 1 of the relation"
764 # test that the ordering of elements in the history is the same as in current.
765 def test_history_ordering
767 changeset = create(:changeset, :user => user)
768 node1 = create(:node)
769 node2 = create(:node)
770 node3 = create(:node)
771 node4 = create(:node)
775 <relation changeset='#{changeset.id}'>
776 <member ref='#{node1.id}' type='node' role='forward'/>
777 <member ref='#{node4.id}' type='node' role='forward'/>
778 <member ref='#{node3.id}' type='node' role='forward'/>
779 <member ref='#{node2.id}' type='node' role='forward'/>
783 doc = XML::Parser.string(doc_str).parse
784 auth_header = bearer_authorization_header user
786 post api_relations_path, :params => doc.to_s, :headers => auth_header
787 assert_response :success, "can't create a relation: #{@response.body}"
788 relation_id = @response.body.to_i
790 # check the ordering in the current tables:
791 get api_relation_path(relation_id)
792 assert_members_equal_response doc
794 # check the ordering in the history tables:
795 get api_relation_version_path(relation_id, 1)
796 assert_members_equal_response doc, "can't read back version 1 of the relation"
800 # test initial rate limit
801 def test_initial_rate_limit
806 node1 = create(:node)
807 node2 = create(:node)
809 # create a changeset that puts us near the initial rate limit
810 changeset = create(:changeset, :user => user,
811 :created_at => Time.now.utc - 5.minutes,
812 :num_changes => Settings.initial_changes_per_hour - 1)
814 # create authentication header
815 auth_header = bearer_authorization_header user
817 # try creating a relation
818 xml = "<osm><relation changeset='#{changeset.id}'>" \
819 "<member ref='#{node1.id}' type='node' role='some'/>" \
820 "<member ref='#{node2.id}' type='node' role='some'/>" \
821 "<tag k='test' v='yes' /></relation></osm>"
822 post api_relations_path, :params => xml, :headers => auth_header
823 assert_response :success, "relation create did not return success status"
825 # get the id of the relation we created
826 relationid = @response.body
828 # try updating the relation, which should be rate limited
829 xml = "<osm><relation id='#{relationid}' version='1' changeset='#{changeset.id}'>" \
830 "<member ref='#{node2.id}' type='node' role='some'/>" \
831 "<member ref='#{node1.id}' type='node' role='some'/>" \
832 "<tag k='test' v='yes' /></relation></osm>"
833 put api_relation_path(relationid), :params => xml, :headers => auth_header
834 assert_response :too_many_requests, "relation update did not hit rate limit"
836 # try deleting the relation, which should be rate limited
837 xml = "<osm><relation id='#{relationid}' version='2' changeset='#{changeset.id}'/></osm>"
838 delete api_relation_path(relationid), :params => xml, :headers => auth_header
839 assert_response :too_many_requests, "relation delete did not hit rate limit"
841 # try creating a relation, which should be rate limited
842 xml = "<osm><relation changeset='#{changeset.id}'>" \
843 "<member ref='#{node1.id}' type='node' role='some'/>" \
844 "<member ref='#{node2.id}' type='node' role='some'/>" \
845 "<tag k='test' v='yes' /></relation></osm>"
846 post api_relations_path, :params => xml, :headers => auth_header
847 assert_response :too_many_requests, "relation create did not hit rate limit"
851 # test maximum rate limit
852 def test_maximum_rate_limit
857 node1 = create(:node)
858 node2 = create(:node)
860 # create a changeset to establish our initial edit time
861 changeset = create(:changeset, :user => user,
862 :created_at => Time.now.utc - 28.days)
864 # create changeset to put us near the maximum rate limit
865 total_changes = Settings.max_changes_per_hour - 1
866 while total_changes.positive?
867 changes = [total_changes, Changeset::MAX_ELEMENTS].min
868 changeset = create(:changeset, :user => user,
869 :created_at => Time.now.utc - 5.minutes,
870 :num_changes => changes)
871 total_changes -= changes
874 # create authentication header
875 auth_header = bearer_authorization_header user
877 # try creating a relation
878 xml = "<osm><relation changeset='#{changeset.id}'>" \
879 "<member ref='#{node1.id}' type='node' role='some'/>" \
880 "<member ref='#{node2.id}' type='node' role='some'/>" \
881 "<tag k='test' v='yes' /></relation></osm>"
882 post api_relations_path, :params => xml, :headers => auth_header
883 assert_response :success, "relation create did not return success status"
885 # get the id of the relation we created
886 relationid = @response.body
888 # try updating the relation, which should be rate limited
889 xml = "<osm><relation id='#{relationid}' version='1' changeset='#{changeset.id}'>" \
890 "<member ref='#{node2.id}' type='node' role='some'/>" \
891 "<member ref='#{node1.id}' type='node' role='some'/>" \
892 "<tag k='test' v='yes' /></relation></osm>"
893 put api_relation_path(relationid), :params => xml, :headers => auth_header
894 assert_response :too_many_requests, "relation update did not hit rate limit"
896 # try deleting the relation, which should be rate limited
897 xml = "<osm><relation id='#{relationid}' version='2' changeset='#{changeset.id}'/></osm>"
898 delete api_relation_path(relationid), :params => xml, :headers => auth_header
899 assert_response :too_many_requests, "relation delete did not hit rate limit"
901 # try creating a relation, which should be rate limited
902 xml = "<osm><relation changeset='#{changeset.id}'>" \
903 "<member ref='#{node1.id}' type='node' role='some'/>" \
904 "<member ref='#{node2.id}' type='node' role='some'/>" \
905 "<tag k='test' v='yes' /></relation></osm>"
906 post api_relations_path, :params => xml, :headers => auth_header
907 assert_response :too_many_requests, "relation create did not hit rate limit"
913 # checks that the XML document and the response have
914 # members in the same order.
915 def assert_members_equal_response(doc, response_message = "can't read back the relation")
916 assert_response :success, "#{response_message}: #{@response.body}"
917 new_doc = XML::Parser.string(@response.body).parse
919 doc_members = doc.find("//osm/relation/member").collect do |m|
920 [m["ref"].to_i, m["type"].to_sym, m["role"]]
923 new_members = new_doc.find("//osm/relation/member").collect do |m|
924 [m["ref"].to_i, m["type"].to_sym, m["role"]]
927 assert_equal doc_members, new_members, "members are not equal - ordering is wrong? (#{doc}, #{@response.body})"
931 # returns a k->v hash of tags from an xml doc
932 def get_tags_as_hash(a)
933 a.find("//osm/relation/tag").to_h do |tag|
939 # assert that tags on relation document +rel+
940 # are equal to tags in response
941 def assert_tags_equal_response(rel)
942 assert_response :success
943 response_xml = xml_parse(@response.body)
945 # turn the XML doc into tags hashes
946 rel_tags = get_tags_as_hash(rel)
947 response_tags = get_tags_as_hash(response_xml)
949 assert_equal rel_tags, response_tags, "Tags should be identical."
953 # update the changeset_id of a node element
954 def update_changeset(xml, changeset_id)
955 xml_attr_rewrite(xml, "changeset", changeset_id)
959 # update an attribute in the node element
960 def xml_attr_rewrite(xml, name, value)
961 xml.find("//osm/relation").first[name] = value.to_s
968 parser = XML::Parser.string(xml)