@@ -75,6 +75,10 @@ def test_authz_header_api_key_invalid(self):
7575 res = self .client .get (f"/api/2/roles/{ self .role .id } " , headers = headers )
7676 assert res .status_code == 403
7777
78+ headers = {"Authorization" : "ApiKey " }
79+ res = self .client .get (f"/api/2/roles/{ self .role .id } " , headers = headers )
80+ assert res .status_code == 403
81+
7882 headers = {"Authorization" : "" }
7983 res = self .client .get (f"/api/2/roles/{ self .role .id } " , headers = headers )
8084 assert res .status_code == 403
@@ -83,6 +87,10 @@ def test_authz_header_api_key_invalid(self):
8387 res = self .client .get (f"/api/2/roles/{ self .role .id } " , headers = headers )
8488 assert res .status_code == 403
8589
90+ headers = {"Authorization" : " " }
91+ res = self .client .get (f"/api/2/roles/{ self .role .id } " , headers = headers )
92+ assert res .status_code == 403
93+
8694 def test_authz_url_param_api_key (self ):
8795 query_string = {"api_key" : "1234567890" }
8896 res = self .client .get (f"/api/2/roles/{ self .role .id } " , query_string = query_string )
@@ -97,3 +105,7 @@ def test_authz_url_params_api_key_invalid(self):
97105 query_string = {"api_key" : "" }
98106 res = self .client .get (f"/api/2/roles/{ self .role .id } " , query_string = query_string )
99107 assert res .status_code == 403
108+
109+ query_string = {"api_key" : " " }
110+ res = self .client .get (f"/api/2/roles/{ self .role .id } " , query_string = query_string )
111+ assert res .status_code == 403
0 commit comments