Ponencia
RESTest: Black-Box Constraint-Based Testing of RESTful Web APIs
Autor/es | Martín López, Alberto
Segura Rueda, Sergio Ruiz Cortés, Antonio |
Departamento | Universidad de Sevilla. Departamento de Lenguajes y Sistemas Informáticos |
Fecha de publicación | 2020 |
Fecha de depósito | 2022-05-25 |
Publicado en |
|
ISBN/ISSN | 978-3-030-65309-5 0302-9743 |
Resumen | Automated testing approaches for RESTful web APIs typi cally follow a black-box strategy, where test cases are derived from the
API specification. These techniques show promising results, but they
neglect constraints ... Automated testing approaches for RESTful web APIs typi cally follow a black-box strategy, where test cases are derived from the API specification. These techniques show promising results, but they neglect constraints among input parameters (so-called inter-parameter dependencies), as these cannot be formally described in current API specification languages. As a result, black-box tools rely on brute force to generate valid test cases, i.e., those satisfying all the input constraints. This is not only extremely inefficient, but it is also unlikely to work for most real-world services, where inter-parameter dependencies are com plex and pervasive. In this paper, we present RESTest, a framework for automated black-box testing of RESTful APIs. Among its key features, RESTest supports the specification and automated analysis of inter parameter dependencies, enabling the use of constraint solvers for the automated generation of valid test cases. This allows to detect more faults, and faster, through a deeper evaluation of valid and invalid input parameters’ combinations and the use of novel test oracles. Evaluation results on 6 commercial APIs show that RESTest can efficiently generate up to 99% more valid test cases than random testing techniques, 60% on average. More importantly, RESTest revealed 2K failures undetected by random testing, uncovering bugs in all the services under test |
Agencias financiadoras | Junta de Andalucía Ministerio de Ciencia, Innovación y Universidades (MICINN). España Ministerio de Educación, Cultura y Deporte (MECD). España |
Identificador del proyecto | APOLO (US-1264651)
EKIPMENT-PLUS (P18-FR-2895) RTI2018-101204-B-C21 (HORATIO) FPU17/04077 |
Cita | Martín López, A., Segura Rueda, S. y Ruiz Cortés, A. (2020). RESTest: Black-Box Constraint-Based Testing of RESTful Web APIs. En ICSOC 2020: 18th International Conference on Service-Oriented Computing (459-475), Dubai, United Arab Emirates: Springer. |
Ficheros | Tamaño | Formato | Ver | Descripción |
---|---|---|---|---|
RESTest Black-Box Constraint-Based ... | 565.5Kb | [PDF] | Ver/ | |