def test_authentication_rule_filter_foreign_attributes(mocker):
    schema_method_mock = mocker.patch(
        'ansible_collections.notstdlib.moveitallout.plugins.module_utils.network.fortios.fortios.FortiOSHandler.schema'
    )

    set_method_result = {
        'status': 'success',
        'http_method': 'POST',
        'http_status': 200
    }
    set_method_mock = mocker.patch(
        'ansible_collections.notstdlib.moveitallout.plugins.module_utils.network.fortios.fortios.FortiOSHandler.set',
        return_value=set_method_result)

    input_data = {
        'username': '******',
        'state': 'present',
        'authentication_rule': {
            'random_attribute_not_valid': 'tag',
            'active_auth_method': 'test_value_3',
            'comments': 'test_value_4',
            'ip_based': 'enable',
            'name': 'default_name_6',
            'protocol': 'http',
            'sso_auth_method': 'test_value_8',
            'status': 'enable',
            'transaction_based': 'enable',
            'web_auth_cookie': 'enable'
        },
        'vdom': 'root'
    }

    is_error, changed, response = fortios_authentication_rule.fortios_authentication(
        input_data, fos_instance)

    expected_data = {
        'active-auth-method': 'test_value_3',
        'comments': 'test_value_4',
        'ip-based': 'enable',
        'name': 'default_name_6',
        'protocol': 'http',
        'sso-auth-method': 'test_value_8',
        'status': 'enable',
        'transaction-based': 'enable',
        'web-auth-cookie': 'enable'
    }

    set_method_mock.assert_called_with('authentication',
                                       'rule',
                                       data=expected_data,
                                       vdom='root')
    schema_method_mock.assert_not_called()
    assert not is_error
    assert changed
    assert response['status'] == 'success'
    assert response['http_status'] == 200
def test_authentication_rule_deletion_fails(mocker):
    schema_method_mock = mocker.patch(
        'ansible_collections.notstdlib.moveitallout.plugins.module_utils.network.fortios.fortios.FortiOSHandler.schema'
    )

    delete_method_result = {
        'status': 'error',
        'http_method': 'POST',
        'http_status': 500
    }
    delete_method_mock = mocker.patch(
        'ansible_collections.notstdlib.moveitallout.plugins.module_utils.network.fortios.fortios.FortiOSHandler.delete',
        return_value=delete_method_result)

    input_data = {
        'username': '******',
        'state': 'absent',
        'authentication_rule': {
            'active_auth_method': 'test_value_3',
            'comments': 'test_value_4',
            'ip_based': 'enable',
            'name': 'default_name_6',
            'protocol': 'http',
            'sso_auth_method': 'test_value_8',
            'status': 'enable',
            'transaction_based': 'enable',
            'web_auth_cookie': 'enable'
        },
        'vdom': 'root'
    }

    is_error, changed, response = fortios_authentication_rule.fortios_authentication(
        input_data, fos_instance)

    delete_method_mock.assert_called_with('authentication',
                                          'rule',
                                          mkey=ANY,
                                          vdom='root')
    schema_method_mock.assert_not_called()
    assert is_error
    assert not changed
    assert response['status'] == 'error'
    assert response['http_status'] == 500