|
| 1 | +package org.cyclonedx.maven; |
| 2 | + |
| 3 | +import java.io.File; |
| 4 | +import java.util.Set; |
| 5 | + |
| 6 | +import static org.cyclonedx.maven.TestUtils.getComponentNode; |
| 7 | +import static org.cyclonedx.maven.TestUtils.getDependencyNode; |
| 8 | +import static org.cyclonedx.maven.TestUtils.getDependencyReferences; |
| 9 | +import static org.cyclonedx.maven.TestUtils.readXML; |
| 10 | + |
| 11 | +import static org.junit.Assert.assertEquals; |
| 12 | +import static org.junit.Assert.assertNotNull; |
| 13 | +import static org.junit.Assert.assertNull; |
| 14 | +import static org.junit.Assert.assertTrue; |
| 15 | +import static org.junit.jupiter.api.Assertions.fail; |
| 16 | + |
| 17 | +import org.junit.Test; |
| 18 | +import org.junit.runner.RunWith; |
| 19 | +import org.w3c.dom.Document; |
| 20 | +import org.w3c.dom.Node; |
| 21 | +import org.w3c.dom.NodeList; |
| 22 | + |
| 23 | +import io.takari.maven.testing.executor.MavenRuntime.MavenRuntimeBuilder; |
| 24 | +import io.takari.maven.testing.executor.MavenVersions; |
| 25 | +import io.takari.maven.testing.executor.junit.MavenJUnitTestRunner; |
| 26 | + |
| 27 | +/** |
| 28 | + * Test for cyclic dependencies on the same project |
| 29 | + */ |
| 30 | +@RunWith(MavenJUnitTestRunner.class) |
| 31 | +@MavenVersions({"3.8.7"}) |
| 32 | +public class CyclicTest extends BaseMavenVerifier { |
| 33 | + private static final String CYCLIC_A_DEPENDENCY = "pkg:maven/com.example.cyclic/cyclic_A@1.0.0?type=jar"; |
| 34 | + private static final String CYCLIC_A_DEPENDENCY_CLASSIFIER_1 = "pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_1&type=jar"; |
| 35 | + private static final String CYCLIC_A_DEPENDENCY_CLASSIFIER_2 = "pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_2&type=jar"; |
| 36 | + private static final String CYCLIC_A_DEPENDENCY_CLASSIFIER_3 = "pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_3&type=jar"; |
| 37 | + |
| 38 | + public CyclicTest(MavenRuntimeBuilder runtimeBuilder) throws Exception { |
| 39 | + super(runtimeBuilder); |
| 40 | + } |
| 41 | + |
| 42 | + @Test |
| 43 | + public void testCyclicDependency() throws Exception { |
| 44 | + cleanAndBuild("cyclic", null); |
| 45 | + File projDir = null; |
| 46 | + try { |
| 47 | + projDir = mvnBuild("cyclic", new String[]{"package"}, null, new String[] {"profile"}); |
| 48 | + } catch (final Exception ex) { |
| 49 | + fail("Failed to generate SBOM", ex); |
| 50 | + } |
| 51 | + |
| 52 | + final Document bom = readXML(new File(projDir, "target/bom.xml")); |
| 53 | + |
| 54 | + final NodeList componentsList = bom.getElementsByTagName("components"); |
| 55 | + assertEquals("Expected a single components element", 1, componentsList.getLength()); |
| 56 | + final Node components = componentsList.item(0); |
| 57 | + |
| 58 | + final NodeList dependenciesList = bom.getElementsByTagName("dependencies"); |
| 59 | + assertEquals("Expected a single dependencies element", 1, dependenciesList.getLength()); |
| 60 | + final Node dependencies = dependenciesList.item(0); |
| 61 | + |
| 62 | + // BOM should contain pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_1&type=jar |
| 63 | + final Node cyclicAClassifier1ComponentNode = getComponentNode(components, CYCLIC_A_DEPENDENCY_CLASSIFIER_1); |
| 64 | + assertNotNull("Missing cyclic_A:classifier_1:1.0.0 component", cyclicAClassifier1ComponentNode); |
| 65 | + |
| 66 | + // BOM should contain pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_2&type=jar |
| 67 | + final Node cyclicAClassifier2ComponentNode = getComponentNode(components, CYCLIC_A_DEPENDENCY_CLASSIFIER_2); |
| 68 | + assertNotNull("Missing cyclic_A:classifier_2:1.0.0 component", cyclicAClassifier2ComponentNode); |
| 69 | + |
| 70 | + // BOM should contain pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_3&type=jar |
| 71 | + final Node cyclicAClassifier3ComponentNode = getComponentNode(components, CYCLIC_A_DEPENDENCY_CLASSIFIER_3); |
| 72 | + assertNotNull("Missing cyclic_A:classifier_3:1.0.0 component", cyclicAClassifier3ComponentNode); |
| 73 | + |
| 74 | + /* |
| 75 | + <dependency ref="pkg:maven/com.example.cyclic/cyclic_A@1.0.0?type=jar"> |
| 76 | + <dependency ref="pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_1&type=jar"/> |
| 77 | + <dependency ref="pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_2&type=jar"/> |
| 78 | + <dependency ref="pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_3&type=jar"/> |
| 79 | + </dependency> |
| 80 | + */ |
| 81 | + final Node cyclicADependencyNode = getDependencyNode(dependencies, CYCLIC_A_DEPENDENCY); |
| 82 | + assertNotNull("Missing cyclic_A:1.0.0 dependency", cyclicADependencyNode); |
| 83 | + Set<String> cyclicADependencies = getDependencyReferences(cyclicADependencyNode); |
| 84 | + assertEquals("Invalid dependency count for cyclic_A:1.0.0", 3, cyclicADependencies.size()); |
| 85 | + assertTrue("Missing cyclic_A:classifier_1:1.0.0 dependency for cyclic_A:1.0.0", cyclicADependencies.contains(CYCLIC_A_DEPENDENCY_CLASSIFIER_1)); |
| 86 | + assertTrue("Missing cyclic_A:classifier_2:1.0.0 dependency for cyclic_A:1.0.0", cyclicADependencies.contains(CYCLIC_A_DEPENDENCY_CLASSIFIER_2)); |
| 87 | + assertTrue("Missing cyclic_A:classifier_3:1.0.0 dependency for cyclic_A:1.0.0", cyclicADependencies.contains(CYCLIC_A_DEPENDENCY_CLASSIFIER_3)); |
| 88 | + |
| 89 | + /* |
| 90 | + <dependency ref="pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_1&type=jar"/> |
| 91 | + */ |
| 92 | + final Node cyclicAClassifier1DependencyNode = getDependencyNode(dependencies, CYCLIC_A_DEPENDENCY_CLASSIFIER_1); |
| 93 | + assertNotNull("Missing cyclic_A:classifier_1:1.0.0 dependency", cyclicAClassifier1DependencyNode); |
| 94 | + Set<String> cyclicAClassifier1Dependencies = getDependencyReferences(cyclicAClassifier1DependencyNode); |
| 95 | + assertEquals("Invalid dependency count for cyclic_A:classifier_1:1.0.0", 0, cyclicAClassifier1Dependencies.size()); |
| 96 | + |
| 97 | + /* |
| 98 | + <dependency ref="pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_2&type=jar"/> |
| 99 | + */ |
| 100 | + final Node cyclicAClassifier2DependencyNode = getDependencyNode(dependencies, CYCLIC_A_DEPENDENCY_CLASSIFIER_2); |
| 101 | + assertNotNull("Missing cyclic_A:classifier_2:1.0.0 dependency", cyclicAClassifier2DependencyNode); |
| 102 | + Set<String> cyclicAClassifier2Dependencies = getDependencyReferences(cyclicAClassifier2DependencyNode); |
| 103 | + assertEquals("Invalid dependency count for cyclic_A:classifier_2:1.0.0", 0, cyclicAClassifier2Dependencies.size()); |
| 104 | + |
| 105 | + /* |
| 106 | + <dependency ref="pkg:maven/com.example.cyclic/cyclic_A@1.0.0?classifier=classifier_3&type=jar"/> |
| 107 | + */ |
| 108 | + final Node cyclicAClassifier3DependencyNode = getDependencyNode(dependencies, CYCLIC_A_DEPENDENCY_CLASSIFIER_3); |
| 109 | + assertNotNull("Missing cyclic_A:classifier_3:1.0.0 dependency", cyclicAClassifier3DependencyNode); |
| 110 | + Set<String> cyclicAClassifier3Dependencies = getDependencyReferences(cyclicAClassifier3DependencyNode); |
| 111 | + assertEquals("Invalid dependency count for cyclic_A:classifier_3:1.0.0", 0, cyclicAClassifier3Dependencies.size()); |
| 112 | + } |
| 113 | +} |
0 commit comments