fastmcp/tests/server/auth/providers/test_propelauth.py
Jeremiah Lowin 3a9717e6be
Publish docs for v3.2.0 (#3713)
Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
Co-authored-by: Jeremiah Lowin <jlowin@users.noreply.github.com>
Co-authored-by: Marvin Context Protocol <41898282+Marvin Context Protocol@users.noreply.github.com>
Co-authored-by: voidborne-d <voidborne-d@users.noreply.github.com>
Co-authored-by: marvin-context-protocol[bot] <225465937+marvin-context-protocol[bot]@users.noreply.github.com>
Co-authored-by: Claude <noreply@anthropic.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: d 🔹 <258577966+voidborne-d@users.noreply.github.com>
Co-authored-by: Jeremiah Lowin <153965+jlowin@users.noreply.github.com>
Co-authored-by: nightcityblade <nightcityblade@gmail.com>
Co-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
Co-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>
Co-authored-by: Bill Easton <strawgate@users.noreply.github.com>
Co-authored-by: Sumanshu Nankana <sumanshunankana@gmail.com>
Co-authored-by: Eric Robinson <ericrobinson@indeed.com>
Co-authored-by: Martim Santos <martimfasantos@gmail.com>
Co-authored-by: d 🔹 <liusway405@gmail.com>
Co-authored-by: Matthieu B <66959271+mtthidoteu@users.noreply.github.com>
Co-authored-by: Sascha Buehrle <47737812+saschabuehrle@users.noreply.github.com>
Co-authored-by: Hakancan <142545736+hkc5@users.noreply.github.com>
Co-authored-by: nightcityblade <jackchen@haloailabs.com>
Co-authored-by: Matt Hallowell <17804673+mhallo@users.noreply.github.com>
Co-authored-by: nate nowack <thrast36@gmail.com>
Co-authored-by: Bill Easton <williamseaston@gmail.com>
Co-authored-by: Marcus Shu <46469249+shulkx@users.noreply.github.com>
Co-authored-by: Rushabh Doshi <radoshi@gmail.com>
Co-authored-by: AIKAWA Shigechika <shige@aikawa.jp>
Co-authored-by: Jeremy Simon <simonjer805@gmail.com>
Co-authored-by: Miguel Miranda Dias <7780875+pandego@users.noreply.github.com>
Co-authored-by: Anthony James Padavano <padavano.anthony@gmail.com>
Co-authored-by: Mostafa Kamal <hiremostafa@gmail.com>
Fix auto-close MRE script posting comment without closing (#3386)
Fix WorkOS token scope verification bypass 🤖 Generated with Codex (#3407)
Fix initialize McpError fallthrough 🤖 Generated with Codex (#3413)
Fix transform arg collisions with passthrough params (#3431)
Fix get_* returning None when latest version is disabled (#3439)
Fix get_* returning None when latest version is disabled (#3421)
Fix server lifespan overlap teardown (#3415)
Fix $ref output schema object detection regression (#3420)
resolved annotations (#3429)
Fix async partial callables rejected by iscoroutinefunction (#3438)
Fix async partial callables rejected by iscoroutinefunction (#3423)
fix: add version to components (#3458)
fix: use intent-based flag for OIDC scope patch in load_access_token (#3465)
Fixes #3461
fix: normalize Google scope shorthands and surface valid_scopes (#3477)
fix: resolve ty 0.0.23 type-checking errors and bump pin (#3481)
fix: shield lifespan teardown from cancellation (#3480)
fix: forward custom_route endpoints from mounted servers (#3462)
fix updates _get_additional_http_routes() to traverse providers,
Fixes #3457
fix: remove hardcoded version from CLI help text (#3456)
fix: monty 0.0.8 compatibility, drop external_functions from constructor (#3468)
fix: task test teardown hanging 5s per test (#3499)
Closes #3498
fix: validate workspace path is a directory before cursor install (#3440)
Fixes #3426
fix: handle re.error from malformed URI templates in build_regex (#3501)
fix: reject empty/OIDC-only required_scopes in AzureProvider (#3503)
fix: restrict $ref resolution to local refs only (SSRF/LFI) (#3502)
fix warnings and timeouts (#3504)
close upgrade check issue when build passes (#3505)
Closes #3484
fix: URL-encode path params to prevent SSRF/path traversal (GHSA-vv7q-7jx5-f767) (#3507)
fix: prevent path traversal in skill download (#3493)
fix: prefer IdP-granted scopes over client-requested scopes in OAuthProxy (#3492)
fix: remove unrelated transform and http.py changes from PR scope
fix: remove forced follow_redirects from httpx_client_factory calls (#3496)
fix: stop passing follow_redirects to httpx_client_factory
fix: restore follow_redirects=True for custom httpx client factories
Closes #3509
fix: CSRF double-submit cookie check in consent flow (#3519)
fix: validate server names in install commands (#3522)
fix: use raw strings for regex in pytest.raises match (#3523)
fix: reject refresh tokens used as Bearer access tokens (#3524)
fix: route ResourcesAsTools/PromptsAsTools through server middleware (#3495)
fix: resolve Pyright "Module is not callable" on @tool, @resource, @prompt decorators (#3540)
fix: filter warnings by message in KEY_PREFIX test (#3549)
fix: suppress output schema for ToolResult subclass annotations (#3548)
fix: increase sleep duration in proxy cache tests (#3567)
fix: store absolute token expiry to prevent stale expires_in on reload (#3572)
fix: preserve tool properties named 'title' during schema compression (#3582)
Fix loopback redirect URI port matching per RFC 8252 §7.3 (#3589)
Fix app tool routing: visibility check and middleware propagation (#3591)
Fix query parameter serialization to respect OpenAPI explode/style settings (#3595)
Fix dev apps form: union types, textarea support, JSON parsing (#3597)
fix(google): replace deprecated /oauth2/v1/tokeninfo with /oauth2/v3/userinfo (#3603)
fix: resolve EntraOBOToken dependency injection through MultiAuth (#3609)
fix(docs): correct misleading stateless_http header (#3622)
fix: filesystem provider import machinery (#3626)
Closes #3625 (issues 2, 3, 6)
fix: recover StdioTransport after subprocess exits (#3630)
fix(server): preserve mounted tool task metadata (#3632)
fix: scope deprecation warning filter to FastMCPDeprecationWarning (#3649)
fix imports, add PrefabAppConfig (#3650)
fix: resolve CurrentFastMCP/ctx.fastmcp to child server in mounted background tasks (#3651)
Fix blocking docs issues: chart imports, Select API, Rx consistency (#3652)
closed by default (#3657)
Fix prompt caching middleware missing wrap/unwrap round-trip (#3666)
fix: serialize object query params per OpenAPI style/explode rules (#3662)
Fixes #2857
fix: HTTP request headers not accessible in background task workers (#3631)
fix: restore HTTP headers in worker execution path for background tasks (#3681)
fix: strip discriminator after dereferencing schemas (#3682)
fix: remove stale ty:ignore directives for ty 0.0.26 (#3684)
Fix docs gaps in app provider pages (#3690)
fix: dev apps log panel UX improvements (#3698)
fix dev server empty string args (#3700)
2026-03-30 16:48:30 -04:00

336 lines
13 KiB
Python

"""Tests for PropelAuthProvider."""
from typing import cast
from unittest.mock import AsyncMock
import httpx
import pytest
from pydantic import SecretStr
from fastmcp import Client, FastMCP
from fastmcp.server.auth import AccessToken
from fastmcp.server.auth.providers.introspection import IntrospectionTokenVerifier
from fastmcp.server.auth.providers.propelauth import (
PropelAuthProvider,
PropelAuthTokenIntrospectionOverrides,
)
from fastmcp.utilities.tests import run_server_async
class TestPropelAuthProvider:
"""Test PropelAuth's auth provider."""
def test_init_with_only_required_params(self):
"""Test PropelAuthProvider initialization with only required params."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
)
# Verify the provider is configured correctly
assert len(provider.authorization_servers) == 1
assert (
str(provider.authorization_servers[0])
== "https://auth.example.com/oauth/2.1"
)
assert str(provider.base_url) == "https://example.com/"
# Verify token verifier is configured correctly
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert (
provider.token_verifier.introspection_url
== "https://auth.example.com/oauth/2.1/introspect"
)
assert provider.token_verifier.client_id == "client_id_123"
assert provider.token_verifier.client_secret == "client_secret_123"
def test_auth_url_trailing_slash_normalization(self):
"""Test that trailing slash on auth_url is stripped before building URLs."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com/",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert len(provider.authorization_servers) == 1
assert (
str(provider.authorization_servers[0])
== "https://auth.example.com/oauth/2.1"
)
assert (
provider.token_verifier.introspection_url
== "https://auth.example.com/oauth/2.1/introspect"
)
def test_required_scopes_passed_to_verifier(self):
"""Test that required_scopes are passed through to the token verifier."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
required_scopes=["read", "write"],
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert provider.token_verifier.required_scopes == ["read", "write"]
def test_introspection_client_secret_as_secret_str(self):
"""Test that SecretStr client_secret is unwrapped correctly."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret=SecretStr("my_secret"),
base_url="https://example.com",
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert provider.token_verifier.client_secret == "my_secret"
def test_authorization_servers_configuration(self):
"""Test that authorization_servers contains the correct PropelAuth URL."""
provider = PropelAuthProvider(
auth_url="https://auth.propelauth.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
)
assert len(provider.authorization_servers) == 1
assert (
str(provider.authorization_servers[0])
== "https://auth.propelauth.com/oauth/2.1"
)
def test_token_introspection_overrides_timeout(self):
"""Test that timeout_seconds override is passed to the verifier."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
token_introspection_overrides={"timeout_seconds": 30},
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert provider.token_verifier.timeout_seconds == 30
def test_token_introspection_overrides_cache(self):
"""Test that cache overrides are passed to the verifier."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
token_introspection_overrides={
"cache_ttl_seconds": 300,
"max_cache_size": 500,
},
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert provider.token_verifier._cache._ttl == 300
assert provider.token_verifier._cache._max_size == 500
def test_token_introspection_overrides_http_client(self):
"""Test that http_client override is passed to the verifier."""
client = httpx.AsyncClient()
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
token_introspection_overrides={"http_client": client},
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert provider.token_verifier._http_client is client
def test_token_introspection_overrides_ignores_unknown_keys(self):
"""Test that unknown override keys are silently ignored."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
# This won't typecheck without casting, since it shouldn't be allowed
token_introspection_overrides=cast(
PropelAuthTokenIntrospectionOverrides, {"unknown_key": "value"}
),
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert provider.token_verifier.timeout_seconds == 10
def test_token_introspection_overrides_ignores_disallowed_known_keys(self):
"""Test that known IntrospectionTokenVerifier keys not in the allow list are ignored."""
provider = PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
# This won't typecheck without casting, since it shouldn't be allowed
token_introspection_overrides=cast(
PropelAuthTokenIntrospectionOverrides, {"client_id": "sneaky_override"}
),
)
assert isinstance(provider.token_verifier, IntrospectionTokenVerifier)
assert provider.token_verifier.client_id == "client_id_123"
class TestPropelAuthResourceChecking:
"""Test audience (aud) checking when resource is configured."""
def _make_provider(self, resource: str | None = None) -> PropelAuthProvider:
return PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="https://example.com",
resource=resource,
)
def _make_access_token(self, aud: str) -> AccessToken:
return AccessToken(
token="test-token",
client_id="client_id_123",
scopes=[],
claims={"active": True, "sub": "user-1", "aud": aud},
)
async def test_no_resource_skips_aud_check(self, monkeypatch: pytest.MonkeyPatch):
"""When resource is not configured, tokens are accepted without aud checking."""
provider = self._make_provider(resource=None)
token = self._make_access_token(aud="https://anything.example.com")
monkeypatch.setattr(
provider.token_verifier, "verify_token", AsyncMock(return_value=token)
)
result = await provider.verify_token("test-token")
assert result is token
async def test_aud_matches_resource(self, monkeypatch: pytest.MonkeyPatch):
"""Token is accepted when aud matches the configured resource."""
provider = self._make_provider(resource="https://api.example.com/mcp")
token = self._make_access_token(aud="https://api.example.com/mcp")
monkeypatch.setattr(
provider.token_verifier, "verify_token", AsyncMock(return_value=token)
)
result = await provider.verify_token("test-token")
assert result is token
async def test_aud_does_not_match_resource(self, monkeypatch: pytest.MonkeyPatch):
"""Token is rejected when aud doesn't match the configured resource."""
provider = self._make_provider(resource="https://api.example.com/mcp")
token = self._make_access_token(aud="https://other-server.example.com/mcp")
monkeypatch.setattr(
provider.token_verifier, "verify_token", AsyncMock(return_value=token)
)
result = await provider.verify_token("test-token")
assert result is None
async def test_inner_verifier_returns_none(self, monkeypatch: pytest.MonkeyPatch):
"""When the inner verifier rejects the token, None is returned without aud checking."""
provider = self._make_provider(resource="https://api.example.com/mcp")
monkeypatch.setattr(
provider.token_verifier, "verify_token", AsyncMock(return_value=None)
)
result = await provider.verify_token("test-token")
assert result is None
@pytest.fixture
async def mcp_server_url():
"""Start MCP server with PropelAuth authentication."""
mcp = FastMCP(
auth=PropelAuthProvider(
auth_url="https://auth.example.com",
introspection_client_id="client_id_123",
introspection_client_secret="client_secret_123",
base_url="http://localhost:4321",
)
)
@mcp.tool
def add(a: int, b: int) -> int:
return a + b
async with run_server_async(mcp, transport="http") as url:
yield url
class TestPropelAuthProviderIntegration:
async def test_unauthorized_access(self, mcp_server_url: str):
with pytest.raises(httpx.HTTPStatusError) as exc_info:
async with Client(mcp_server_url) as client:
tools = await client.list_tools() # noqa: F841
assert isinstance(exc_info.value, httpx.HTTPStatusError)
assert exc_info.value.response.status_code == 401
assert "tools" not in locals()
async def test_metadata_route_forwards_propelauth_response(
self,
monkeypatch: pytest.MonkeyPatch,
mcp_server_url: str,
) -> None:
"""Ensure PropelAuth metadata route proxies upstream JSON."""
metadata_payload = {
"issuer": "https://auth.example.com",
"token_endpoint": "https://auth.example.com/oauth/2.1/token",
"authorization_endpoint": "https://auth.example.com/oauth/2.1/authorize",
}
class DummyResponse:
status_code = 200
def __init__(self, data: dict[str, str]):
self._data = data
def json(self):
return self._data
def raise_for_status(self):
return None
class DummyAsyncClient:
last_url: str | None = None
async def __aenter__(self):
return self
async def __aexit__(self, exc_type, exc, tb):
return False
async def get(self, url: str):
DummyAsyncClient.last_url = url
return DummyResponse(metadata_payload)
real_httpx_client = httpx.AsyncClient
monkeypatch.setattr(
"fastmcp.server.auth.providers.propelauth.httpx.AsyncClient",
DummyAsyncClient,
)
base_url = mcp_server_url.rsplit("/mcp", 1)[0]
async with real_httpx_client() as client:
response = await client.get(
f"{base_url}/.well-known/oauth-authorization-server"
)
assert response.status_code == 200
assert response.json() == metadata_payload
assert (
DummyAsyncClient.last_url
== "https://auth.example.com/.well-known/oauth-authorization-server/oauth/2.1"
)