|
82 | 82 | ], |
83 | 83 | }, |
84 | 84 | } |
| 85 | +ENDPOINT_AUTH_SCHEMES_DICT = { |
| 86 | + "url": URL_TEMPLATE, |
| 87 | + "properties": { |
| 88 | + "authSchemes": [ |
| 89 | + { |
| 90 | + "disableDoubleEncoding": True, |
| 91 | + "name": "foo", |
| 92 | + "signingName": "s3-outposts", |
| 93 | + "signingRegionSet": ["*"], |
| 94 | + }, |
| 95 | + { |
| 96 | + "disableDoubleEncoding": True, |
| 97 | + "name": "bar", |
| 98 | + "signingName": "s3-outposts", |
| 99 | + "signingRegion": REGION_TEMPLATE, |
| 100 | + }, |
| 101 | + ], |
| 102 | + }, |
| 103 | + "headers": {}, |
| 104 | +} |
85 | 105 |
|
86 | 106 |
|
87 | 107 | @pytest.fixture(scope="module") |
@@ -619,3 +639,78 @@ def test_construct_endpoint_parametrized( |
619 | 639 | ): |
620 | 640 | result = resolver.construct_endpoint(None, None, None) |
621 | 641 | assert result.url == expected_url |
| 642 | + |
| 643 | + |
| 644 | +@pytest.mark.parametrize( |
| 645 | + "auth_scheme_preference,expected_auth_scheme_name", |
| 646 | + [ |
| 647 | + ( |
| 648 | + 'foo,bar', |
| 649 | + 'foo', |
| 650 | + ), |
| 651 | + ( |
| 652 | + 'bar,foo', |
| 653 | + 'bar', |
| 654 | + ), |
| 655 | + ( |
| 656 | + 'xyz,foo,bar', |
| 657 | + 'foo', |
| 658 | + ), |
| 659 | + ], |
| 660 | +) |
| 661 | +def test_auth_scheme_preference( |
| 662 | + auth_scheme_preference, expected_auth_scheme_name, monkeypatch |
| 663 | +): |
| 664 | + conditions = ( |
| 665 | + [ |
| 666 | + PARSE_ARN_FUNC, |
| 667 | + { |
| 668 | + "fn": "not", |
| 669 | + "argv": [STRING_EQUALS_FUNC], |
| 670 | + }, |
| 671 | + { |
| 672 | + "fn": "aws.partition", |
| 673 | + "argv": [REGION_REF], |
| 674 | + "assign": "PartitionResults", |
| 675 | + }, |
| 676 | + ], |
| 677 | + ) |
| 678 | + resolver = EndpointRulesetResolver( |
| 679 | + endpoint_ruleset_data={ |
| 680 | + 'version': '1.0', |
| 681 | + 'parameters': {}, |
| 682 | + 'rules': [ |
| 683 | + { |
| 684 | + 'conditions': conditions, |
| 685 | + 'type': 'endpoint', |
| 686 | + 'endpoint': ENDPOINT_AUTH_SCHEMES_DICT, |
| 687 | + } |
| 688 | + ], |
| 689 | + }, |
| 690 | + partition_data={}, |
| 691 | + service_model=None, |
| 692 | + builtins={}, |
| 693 | + client_context=None, |
| 694 | + event_emitter=None, |
| 695 | + use_ssl=True, |
| 696 | + requested_auth_scheme=None, |
| 697 | + auth_scheme_preference=auth_scheme_preference, |
| 698 | + ) |
| 699 | + auth_schemes = [ |
| 700 | + {'name': 'foo', 'signingName': 's3', 'signingRegion': 'ap-south-1'}, |
| 701 | + {'name': 'bar', 'signingName': 's3', 'signingRegion': 'ap-south-2'}, |
| 702 | + ] |
| 703 | + with ( |
| 704 | + patch.dict( |
| 705 | + 'botocore.auth.AUTH_TYPE_MAPS', |
| 706 | + {'bar': None, 'foo': None}, |
| 707 | + clear=True, |
| 708 | + ), |
| 709 | + patch.dict( |
| 710 | + 'botocore.auth.AUTH_PREF_TO_SIGNATURE_VERSION', |
| 711 | + {'bar': 'bar', 'foo': 'foo'}, |
| 712 | + clear=True, |
| 713 | + ), |
| 714 | + ): |
| 715 | + name, scheme = resolver.auth_schemes_to_signing_ctx(auth_schemes) |
| 716 | + assert name == expected_auth_scheme_name |
0 commit comments