user-routes.integration.test.ts 22 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732
  1. import { describe, it, expect, beforeEach, vi, afterEach } from 'vitest';
  2. import { testClient } from 'hono/testing';
  3. import { IntegrationTestDatabase, setupIntegrationDatabaseHooksWithEntities, TestDataFactory } from '@d8d/shared-test-util';
  4. import { JWTUtil } from '@d8d/shared-utils';
  5. import { UserEntityMt, RoleMt } from '@d8d/user-module-mt';
  6. import { AreaEntityMt, AreaLevel } from '@d8d/geo-areas-mt';
  7. import { FileMt } from '@d8d/file-module-mt';
  8. import { userDeliveryAddressRoutesMt } from '../../src/routes';
  9. import { DeliveryAddressMt } from '../../src/entities';
  10. // 设置集成测试钩子
  11. setupIntegrationDatabaseHooksWithEntities([UserEntityMt, RoleMt, AreaEntityMt, DeliveryAddressMt, FileMt])
  12. describe('用户配送地址管理API集成测试', () => {
  13. let client: ReturnType<typeof testClient<typeof userDeliveryAddressRoutesMt>>;
  14. let userToken: string;
  15. let otherUserToken: string;
  16. let testUser: UserEntityMt;
  17. let otherUser: UserEntityMt;
  18. let testProvince: AreaEntityMt;
  19. let testCity: AreaEntityMt;
  20. let testDistrict: AreaEntityMt;
  21. beforeEach(async () => {
  22. // 创建测试客户端
  23. client = testClient(userDeliveryAddressRoutesMt);
  24. // 使用测试数据工厂创建完整测试数据集
  25. const testData = await TestDataFactory.createTestDataSet(1);
  26. testUser = testData.user;
  27. otherUser = testData.otherUser;
  28. testProvince = testData.province;
  29. testCity = testData.city;
  30. testDistrict = testData.district;
  31. // 生成测试用户的token
  32. userToken = JWTUtil.generateToken({
  33. id: testUser.id,
  34. username: testUser.username,
  35. roles: [{name:'user'}]
  36. });
  37. // 生成其他用户的token
  38. otherUserToken = JWTUtil.generateToken({
  39. id: otherUser.id,
  40. username: otherUser.username,
  41. roles: [{name:'user'}]
  42. });
  43. });
  44. describe('GET /delivery-address', () => {
  45. it('应该返回当前用户的配送地址列表', async () => {
  46. // 为测试用户创建一些地址
  47. const userAddress1 = await TestDataFactory.createTestDeliveryAddress(
  48. testUser.id,
  49. testProvince.id,
  50. testCity.id,
  51. testDistrict.id,
  52. {
  53. name: '用户地址1',
  54. phone: '13800138001',
  55. address: '用户地址1'
  56. }
  57. );
  58. const userAddress2 = await TestDataFactory.createTestDeliveryAddress(
  59. testUser.id,
  60. testProvince.id,
  61. testCity.id,
  62. testDistrict.id,
  63. {
  64. name: '用户地址2',
  65. phone: '13800138002',
  66. address: '用户地址2'
  67. }
  68. );
  69. // 为其他用户创建一个地址,确保不会返回
  70. const otherUserAddress = await TestDataFactory.createTestDeliveryAddress(
  71. otherUser.id,
  72. testProvince.id,
  73. testCity.id,
  74. testDistrict.id,
  75. {
  76. name: '其他用户地址',
  77. phone: '13800138003',
  78. address: '其他用户地址'
  79. }
  80. );
  81. const response = await client.index.$get({
  82. query: {}
  83. }, {
  84. headers: {
  85. 'Authorization': `Bearer ${userToken}`
  86. }
  87. });
  88. console.debug('用户配送地址列表响应状态:', response.status);
  89. expect(response.status).toBe(200);
  90. if (response.status === 200) {
  91. const data = await response.json();
  92. if (data && 'data' in data) {
  93. expect(Array.isArray(data.data)).toBe(true);
  94. // 应该只返回当前用户的地址
  95. data.data.forEach((address: any) => {
  96. expect(address.user?.id).toBe(testUser.id);
  97. });
  98. }
  99. }
  100. });
  101. it('应该拒绝未认证用户的访问', async () => {
  102. const response = await client.index.$get({
  103. query: {}
  104. });
  105. expect(response.status).toBe(401);
  106. });
  107. });
  108. describe('POST /delivery-address', () => {
  109. it('应该成功创建配送地址并自动使用当前用户ID', async () => {
  110. const createData = {
  111. name: '张三',
  112. phone: '13800138000',
  113. address: '朝阳区建国路88号',
  114. receiverProvince: testProvince.id,
  115. receiverCity: testCity.id,
  116. receiverDistrict: testDistrict.id,
  117. receiverTown: 1,
  118. state: 1,
  119. isDefault: 1
  120. };
  121. const response = await client.index.$post({
  122. json: createData
  123. }, {
  124. headers: {
  125. 'Authorization': `Bearer ${userToken}`
  126. }
  127. });
  128. console.debug('用户创建配送地址响应状态:', response.status);
  129. expect(response.status).toBe(201);
  130. if (response.status === 201) {
  131. const data = await response.json();
  132. console.debug('用户创建地址响应数据:', JSON.stringify(data, null, 2));
  133. expect(data).toHaveProperty('id');
  134. expect(data.userId).toBe(testUser.id); // 自动使用当前用户ID
  135. expect(data.name).toBe(createData.name);
  136. expect(data.phone).toBe(createData.phone);
  137. expect(data.address).toBe(createData.address);
  138. }
  139. });
  140. it('应该验证创建配送地址的必填字段', async () => {
  141. const invalidData = {
  142. // 缺少必填字段
  143. name: '',
  144. phone: '',
  145. address: '',
  146. receiverProvince: 0,
  147. receiverCity: 0,
  148. receiverDistrict: 0
  149. };
  150. const response = await client.index.$post({
  151. json: invalidData
  152. }, {
  153. headers: {
  154. 'Authorization': `Bearer ${userToken}`
  155. }
  156. });
  157. expect(response.status).toBe(400);
  158. });
  159. });
  160. describe('GET /delivery-address/:id', () => {
  161. it('应该返回当前用户的配送地址详情', async () => {
  162. // 先为当前用户创建一个配送地址
  163. const testDeliveryAddress = await TestDataFactory.createTestDeliveryAddress(
  164. testUser.id,
  165. testProvince.id,
  166. testCity.id,
  167. testDistrict.id,
  168. {
  169. name: '王五',
  170. phone: '13600136000',
  171. address: '海淀区中关村大街1号'
  172. }
  173. );
  174. const response = await client[':id'].$get({
  175. param: { id: testDeliveryAddress.id }
  176. }, {
  177. headers: {
  178. 'Authorization': `Bearer ${userToken}`
  179. }
  180. });
  181. console.debug('用户配送地址详情响应状态:', response.status);
  182. expect(response.status).toBe(200);
  183. if (response.status === 200) {
  184. const data = await response.json();
  185. expect(data.id).toBe(testDeliveryAddress.id);
  186. expect(data.user?.id).toBe(testUser.id);
  187. expect(data.name).toBe(testDeliveryAddress.name);
  188. expect(data.phone).toBe(testDeliveryAddress.phone);
  189. expect(data.address).toBe(testDeliveryAddress.address);
  190. }
  191. });
  192. it('应该拒绝访问其他用户的配送地址', async () => {
  193. // 为其他用户创建一个配送地址
  194. const otherUserAddress = await TestDataFactory.createTestDeliveryAddress(
  195. otherUser.id,
  196. testProvince.id,
  197. testCity.id,
  198. testDistrict.id,
  199. {
  200. name: '其他用户地址',
  201. phone: '13600136001',
  202. address: '其他用户地址'
  203. }
  204. );
  205. // 当前用户尝试访问其他用户的地址
  206. const response = await client[':id'].$get({
  207. param: { id: otherUserAddress.id }
  208. }, {
  209. headers: {
  210. 'Authorization': `Bearer ${userToken}`
  211. }
  212. });
  213. console.debug('用户访问其他用户地址响应状态:', response.status);
  214. expect(response.status).toBe(403); // 数据权限控制返回403
  215. });
  216. it('应该处理不存在的配送地址', async () => {
  217. const response = await client[':id'].$get({
  218. param: { id: 999999 }
  219. }, {
  220. headers: {
  221. 'Authorization': `Bearer ${userToken}`
  222. }
  223. });
  224. expect(response.status).toBe(404);
  225. });
  226. });
  227. describe('PUT /delivery-address/:id', () => {
  228. it('应该成功更新当前用户的配送地址', async () => {
  229. // 先为当前用户创建一个配送地址
  230. const testDeliveryAddress = await TestDataFactory.createTestDeliveryAddress(
  231. testUser.id,
  232. testProvince.id,
  233. testCity.id,
  234. testDistrict.id,
  235. {
  236. name: '原始姓名',
  237. phone: '13500135000',
  238. address: '原始地址'
  239. }
  240. );
  241. const updateData = {
  242. name: '更新后的姓名',
  243. phone: '13700137000',
  244. address: '更新后的地址',
  245. isDefault: 1
  246. };
  247. const response = await client[':id'].$put({
  248. param: { id: testDeliveryAddress.id },
  249. json: updateData
  250. }, {
  251. headers: {
  252. 'Authorization': `Bearer ${userToken}`
  253. }
  254. });
  255. console.debug('用户更新配送地址响应状态:', response.status);
  256. expect(response.status).toBe(200);
  257. if (response.status === 200) {
  258. const data = await response.json();
  259. expect(data.name).toBe(updateData.name);
  260. expect(data.phone).toBe(updateData.phone);
  261. expect(data.address).toBe(updateData.address);
  262. expect(data.isDefault).toBe(updateData.isDefault);
  263. }
  264. });
  265. it('应该拒绝更新其他用户的配送地址', async () => {
  266. // 为其他用户创建一个配送地址
  267. const otherUserAddress = await TestDataFactory.createTestDeliveryAddress(
  268. otherUser.id,
  269. testProvince.id,
  270. testCity.id,
  271. testDistrict.id,
  272. {
  273. name: '其他用户地址',
  274. phone: '13500135001',
  275. address: '其他用户地址'
  276. }
  277. );
  278. const updateData = {
  279. name: '尝试更新的姓名',
  280. phone: '13700137001',
  281. address: '尝试更新的地址'
  282. };
  283. // 当前用户尝试更新其他用户的地址
  284. const response = await client[':id'].$put({
  285. param: { id: otherUserAddress.id },
  286. json: updateData
  287. }, {
  288. headers: {
  289. 'Authorization': `Bearer ${userToken}`
  290. }
  291. });
  292. console.debug('用户更新其他用户地址响应状态:', response.status);
  293. expect(response.status).toBe(403); // 数据权限控制返回403
  294. });
  295. });
  296. describe('DELETE /delivery-address/:id', () => {
  297. it('应该成功删除当前用户的配送地址', async () => {
  298. // 先为当前用户创建一个配送地址
  299. const testDeliveryAddress = await TestDataFactory.createTestDeliveryAddress(
  300. testUser.id,
  301. testProvince.id,
  302. testCity.id,
  303. testDistrict.id,
  304. {
  305. name: '待删除地址',
  306. phone: '13400134000',
  307. address: '待删除地址'
  308. }
  309. );
  310. const response = await client[':id'].$delete({
  311. param: { id: testDeliveryAddress.id }
  312. }, {
  313. headers: {
  314. 'Authorization': `Bearer ${userToken}`
  315. }
  316. });
  317. console.debug('用户删除配送地址响应状态:', response.status);
  318. expect(response.status).toBe(204);
  319. // 验证配送地址确实被删除
  320. const dataSource = await IntegrationTestDatabase.getDataSource();
  321. const deliveryAddressRepository = dataSource.getRepository(DeliveryAddressMt);
  322. const deletedDeliveryAddress = await deliveryAddressRepository.findOne({
  323. where: { id: testDeliveryAddress.id }
  324. });
  325. expect(deletedDeliveryAddress).toBeNull();
  326. });
  327. it('应该拒绝删除其他用户的配送地址', async () => {
  328. // 为其他用户创建一个配送地址
  329. const otherUserAddress = await TestDataFactory.createTestDeliveryAddress(
  330. otherUser.id,
  331. testProvince.id,
  332. testCity.id,
  333. testDistrict.id,
  334. {
  335. name: '其他用户地址',
  336. phone: '13400134001',
  337. address: '其他用户地址'
  338. }
  339. );
  340. // 当前用户尝试删除其他用户的地址
  341. const response = await client[':id'].$delete({
  342. param: { id: otherUserAddress.id }
  343. }, {
  344. headers: {
  345. 'Authorization': `Bearer ${userToken}`
  346. }
  347. });
  348. console.debug('用户删除其他用户地址响应状态:', response.status);
  349. expect(response.status).toBe(403); // 数据权限控制返回403
  350. });
  351. });
  352. describe('数据权限验证', () => {
  353. it('用户应该只能访问和操作自己的数据', async () => {
  354. // 为两个用户都创建地址
  355. const userAddress = await TestDataFactory.createTestDeliveryAddress(
  356. testUser.id,
  357. testProvince.id,
  358. testCity.id,
  359. testDistrict.id,
  360. {
  361. name: '用户地址',
  362. phone: '13800138004',
  363. address: '用户地址'
  364. }
  365. );
  366. const otherUserAddress = await TestDataFactory.createTestDeliveryAddress(
  367. otherUser.id,
  368. testProvince.id,
  369. testCity.id,
  370. testDistrict.id,
  371. {
  372. name: '其他用户地址',
  373. phone: '13800138005',
  374. address: '其他用户地址'
  375. }
  376. );
  377. // 当前用户应该只能看到自己的地址
  378. const listResponse = await client.index.$get({
  379. query: {}
  380. }, {
  381. headers: {
  382. 'Authorization': `Bearer ${userToken}`
  383. }
  384. });
  385. expect(listResponse.status).toBe(200);
  386. const listData = await listResponse.json();
  387. if (listData && 'data' in listData) {
  388. expect(Array.isArray(listData.data)).toBe(true);
  389. // 应该只包含当前用户的地址
  390. listData.data.forEach((address: any) => {
  391. expect(address.user?.id).toBe(testUser.id);
  392. });
  393. }
  394. // 当前用户应该无法访问其他用户的地址详情
  395. const getResponse = await client[':id'].$get({
  396. param: { id: otherUserAddress.id }
  397. }, {
  398. headers: {
  399. 'Authorization': `Bearer ${userToken}`
  400. }
  401. });
  402. expect(getResponse.status).toBe(403);
  403. // 当前用户应该无法更新其他用户的地址
  404. const updateResponse = await client[':id'].$put({
  405. param: { id: otherUserAddress.id },
  406. json: { name: '尝试更新' }
  407. }, {
  408. headers: {
  409. 'Authorization': `Bearer ${userToken}`
  410. }
  411. });
  412. expect(updateResponse.status).toBe(403);
  413. // 当前用户应该无法删除其他用户的地址
  414. const deleteResponse = await client[':id'].$delete({
  415. param: { id: otherUserAddress.id }
  416. }, {
  417. headers: {
  418. 'Authorization': `Bearer ${userToken}`
  419. }
  420. });
  421. expect(deleteResponse.status).toBe(403);
  422. });
  423. });
  424. describe('用户租户隔离测试', () => {
  425. let tenant1UserToken: string;
  426. let tenant2UserToken: string;
  427. let tenant1User: UserEntityMt;
  428. let tenant2User: UserEntityMt;
  429. let tenant1Province: AreaEntityMt;
  430. let tenant1City: AreaEntityMt;
  431. let tenant1District: AreaEntityMt;
  432. let tenant2Province: AreaEntityMt;
  433. let tenant2City: AreaEntityMt;
  434. let tenant2District: AreaEntityMt;
  435. beforeEach(async () => {
  436. // 创建租户1的测试数据
  437. const tenant1Data = await TestDataFactory.createTestDataSet(1);
  438. tenant1User = tenant1Data.user;
  439. tenant1Province = tenant1Data.province;
  440. tenant1City = tenant1Data.city;
  441. tenant1District = tenant1Data.district;
  442. // 创建租户2的测试数据
  443. const tenant2Data = await TestDataFactory.createTestDataSet(2);
  444. tenant2User = tenant2Data.user;
  445. tenant2Province = tenant2Data.province;
  446. tenant2City = tenant2Data.city;
  447. tenant2District = tenant2Data.district;
  448. // 生成各租户用户的token
  449. tenant1UserToken = JWTUtil.generateToken({
  450. id: tenant1User.id,
  451. username: tenant1User.username,
  452. roles: [{name:'user'}],
  453. tenantId: 1
  454. });
  455. tenant2UserToken = JWTUtil.generateToken({
  456. id: tenant2User.id,
  457. username: tenant2User.username,
  458. roles: [{name:'user'}],
  459. tenantId: 2
  460. });
  461. // 为两个租户都创建一些配送地址
  462. await TestDataFactory.createTestDeliveryAddress(
  463. tenant1User.id,
  464. tenant1Province.id,
  465. tenant1City.id,
  466. tenant1District.id,
  467. {
  468. name: '租户1地址1',
  469. phone: '13800138001',
  470. address: '租户1地址1'
  471. }
  472. );
  473. await TestDataFactory.createTestDeliveryAddress(
  474. tenant2User.id,
  475. tenant2Province.id,
  476. tenant2City.id,
  477. tenant2District.id,
  478. {
  479. name: '租户2地址1',
  480. phone: '13800138002',
  481. address: '租户2地址1'
  482. }
  483. );
  484. });
  485. it('用户应该只能看到自己租户的地址', async () => {
  486. // 租户1用户访问地址列表
  487. const tenant1Response = await client.index.$get({
  488. query: {}
  489. }, {
  490. headers: {
  491. 'Authorization': `Bearer ${tenant1UserToken}`
  492. }
  493. });
  494. expect(tenant1Response.status).toBe(200);
  495. const tenant1Data = await tenant1Response.json();
  496. if (tenant1Data && 'data' in tenant1Data) {
  497. // 租户1用户应该只能看到租户1的地址
  498. tenant1Data.data.forEach((address: any) => {
  499. expect(address.tenantId).toBe(1);
  500. expect(address.userId).toBe(tenant1User.id);
  501. });
  502. }
  503. // 租户2用户访问地址列表
  504. const tenant2Response = await client.index.$get({
  505. query: {}
  506. }, {
  507. headers: {
  508. 'Authorization': `Bearer ${tenant2UserToken}`
  509. }
  510. });
  511. expect(tenant2Response.status).toBe(200);
  512. const tenant2Data = await tenant2Response.json();
  513. if (tenant2Data && 'data' in tenant2Data) {
  514. // 租户2用户应该只能看到租户2的地址
  515. tenant2Data.data.forEach((address: any) => {
  516. expect(address.tenantId).toBe(2);
  517. expect(address.userId).toBe(tenant2User.id);
  518. });
  519. }
  520. });
  521. it('用户应该无法访问其他租户的地址详情', async () => {
  522. // 为租户1和租户2都创建地址
  523. const tenant1Address = await TestDataFactory.createTestDeliveryAddress(
  524. tenant1User.id,
  525. tenant1Province.id,
  526. tenant1City.id,
  527. tenant1District.id,
  528. {
  529. name: '租户1专用地址',
  530. phone: '13800138003',
  531. address: '租户1专用地址',
  532. tenantId: 1
  533. }
  534. );
  535. const tenant2Address = await TestDataFactory.createTestDeliveryAddress(
  536. tenant2User.id,
  537. tenant2Province.id,
  538. tenant2City.id,
  539. tenant2District.id,
  540. {
  541. name: '租户2专用地址',
  542. phone: '13800138004',
  543. address: '租户2专用地址',
  544. tenantId: 2
  545. }
  546. );
  547. // 租户1用户尝试访问租户2的地址
  548. const crossTenantResponse = await client[':id'].$get({
  549. param: { id: tenant2Address.id }
  550. }, {
  551. headers: {
  552. 'Authorization': `Bearer ${tenant1UserToken}`
  553. }
  554. });
  555. // 应该返回404,因为租户隔离机制应该阻止跨租户访问
  556. expect(crossTenantResponse.status).toBe(404);
  557. // 租户2用户尝试访问租户1的地址
  558. const crossTenantResponse2 = await client[':id'].$get({
  559. param: { id: tenant1Address.id }
  560. }, {
  561. headers: {
  562. 'Authorization': `Bearer ${tenant2UserToken}`
  563. }
  564. });
  565. // 应该返回404
  566. expect(crossTenantResponse2.status).toBe(404);
  567. });
  568. it('用户应该无法操作其他租户的地址', async () => {
  569. // 为租户2创建一个地址
  570. const tenant2Address = await TestDataFactory.createTestDeliveryAddress(
  571. tenant2User.id,
  572. tenant2Province.id,
  573. tenant2City.id,
  574. tenant2District.id,
  575. {
  576. name: '租户2地址',
  577. phone: '13800138005',
  578. address: '租户2地址',
  579. tenantId: 2
  580. }
  581. );
  582. // 租户1用户尝试更新租户2的地址
  583. const updateResponse = await client[':id'].$put({
  584. param: { id: tenant2Address.id },
  585. json: { name: '尝试更新' }
  586. }, {
  587. headers: {
  588. 'Authorization': `Bearer ${tenant1UserToken}`
  589. }
  590. });
  591. // 应该返回404
  592. expect(updateResponse.status).toBe(404);
  593. // 租户1用户尝试删除租户2的地址
  594. const deleteResponse = await client[':id'].$delete({
  595. param: { id: tenant2Address.id }
  596. }, {
  597. headers: {
  598. 'Authorization': `Bearer ${tenant1UserToken}`
  599. }
  600. });
  601. // 应该返回404
  602. expect(deleteResponse.status).toBe(404);
  603. });
  604. describe('地区数据租户隔离', () => {
  605. it('应该使用正确的租户地区数据', async () => {
  606. // 租户1用户创建地址,应该使用租户1的地区数据
  607. const createData = {
  608. name: '租户1地区测试',
  609. phone: '13800138009',
  610. address: '租户1地区测试',
  611. receiverProvince: tenant1Province.id,
  612. receiverCity: tenant1City.id,
  613. receiverDistrict: tenant1District.id,
  614. receiverTown: 1,
  615. state: 1,
  616. isDefault: 0
  617. };
  618. const response = await client.index.$post({
  619. json: createData
  620. }, {
  621. headers: {
  622. 'Authorization': `Bearer ${tenant1UserToken}`
  623. }
  624. });
  625. expect(response.status).toBe(201);
  626. // 租户1用户尝试使用租户2的地区数据创建地址
  627. const crossTenantAreaData = {
  628. name: '跨租户地区测试',
  629. phone: '13800138010',
  630. address: '跨租户地区测试',
  631. receiverProvince: tenant2Province.id, // 租户2的省份
  632. receiverCity: tenant1City.id,
  633. receiverDistrict: tenant1District.id,
  634. receiverTown: 1,
  635. state: 1,
  636. isDefault: 0
  637. };
  638. const crossTenantResponse = await client.index.$post({
  639. json: crossTenantAreaData
  640. }, {
  641. headers: {
  642. 'Authorization': `Bearer ${tenant1UserToken}`
  643. }
  644. });
  645. // 应该返回400,因为地区数据不属于当前租户
  646. expect(crossTenantResponse.status).toBe(400);
  647. });
  648. });
  649. });
  650. });