2016-01-03 03:18:37 +03:00
|
|
|
|
<?php
|
|
|
|
|
namespace common\models;
|
|
|
|
|
|
2016-06-16 23:32:23 +03:00
|
|
|
|
use common\helpers\Error as E;
|
2016-01-15 12:21:27 +03:00
|
|
|
|
use common\components\UserPass;
|
2016-05-13 12:03:00 +03:00
|
|
|
|
use common\validators\LanguageValidator;
|
2016-05-01 19:43:28 +03:00
|
|
|
|
use Ely\Yii2\TempmailValidator;
|
2016-01-03 03:18:37 +03:00
|
|
|
|
use Yii;
|
|
|
|
|
use yii\base\InvalidConfigException;
|
|
|
|
|
use yii\behaviors\TimestampBehavior;
|
|
|
|
|
use yii\db\ActiveRecord;
|
2016-08-06 18:52:03 +03:00
|
|
|
|
use const common\LATEST_RULES_VERSION;
|
2016-01-03 03:18:37 +03:00
|
|
|
|
|
|
|
|
|
/**
|
|
|
|
|
* Поля модели:
|
|
|
|
|
* @property integer $id
|
|
|
|
|
* @property string $uuid
|
2016-01-04 18:31:14 +03:00
|
|
|
|
* @property string $username
|
2016-05-12 11:50:30 +03:00
|
|
|
|
* @property string $email
|
|
|
|
|
* @property string $password_hash
|
|
|
|
|
* @property integer $password_hash_strategy
|
2016-05-13 12:03:00 +03:00
|
|
|
|
* @property string $lang
|
2016-05-12 11:50:30 +03:00
|
|
|
|
* @property integer $status
|
2016-08-06 18:52:03 +03:00
|
|
|
|
* @property integer $rules_agreement_version
|
2016-05-12 11:50:30 +03:00
|
|
|
|
* @property integer $created_at
|
|
|
|
|
* @property integer $updated_at
|
|
|
|
|
* @property integer $password_changed_at
|
2016-01-03 03:18:37 +03:00
|
|
|
|
*
|
|
|
|
|
* Геттеры-сеттеры:
|
2016-08-04 01:07:21 +03:00
|
|
|
|
* @property string $password пароль пользователя (только для записи)
|
|
|
|
|
* @property string $profileLink ссылка на профиль на Ely без поддержки static url (только для записи)
|
2016-01-15 12:21:27 +03:00
|
|
|
|
*
|
|
|
|
|
* Отношения:
|
|
|
|
|
* @property EmailActivation[] $emailActivations
|
2016-05-30 02:44:17 +03:00
|
|
|
|
* @property OauthSession[] $oauthSessions
|
2016-04-23 21:44:10 +03:00
|
|
|
|
* @property UsernameHistory[] $usernameHistory
|
2016-05-30 02:44:17 +03:00
|
|
|
|
* @property AccountSession[] $sessions
|
2016-01-15 12:21:27 +03:00
|
|
|
|
*
|
|
|
|
|
* Поведения:
|
|
|
|
|
* @mixin TimestampBehavior
|
2016-01-03 03:18:37 +03:00
|
|
|
|
*/
|
2016-05-12 11:50:30 +03:00
|
|
|
|
class Account extends ActiveRecord {
|
2016-06-16 00:38:43 +03:00
|
|
|
|
|
2016-01-03 03:18:37 +03:00
|
|
|
|
const STATUS_DELETED = -10;
|
|
|
|
|
const STATUS_REGISTERED = 0;
|
|
|
|
|
const STATUS_ACTIVE = 10;
|
|
|
|
|
|
|
|
|
|
const PASS_HASH_STRATEGY_OLD_ELY = 0;
|
|
|
|
|
const PASS_HASH_STRATEGY_YII2 = 1;
|
|
|
|
|
|
|
|
|
|
public static function tableName() {
|
|
|
|
|
return '{{%accounts}}';
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public function behaviors() {
|
|
|
|
|
return [
|
2016-05-12 11:50:30 +03:00
|
|
|
|
TimestampBehavior::class,
|
2016-01-03 03:18:37 +03:00
|
|
|
|
];
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
public function rules() {
|
|
|
|
|
return [
|
2016-03-20 02:25:26 +03:00
|
|
|
|
[['username'], 'filter', 'filter' => 'trim'],
|
2016-06-16 23:32:23 +03:00
|
|
|
|
[['username'], 'required', 'message' => E::USERNAME_REQUIRED],
|
2016-03-20 02:25:26 +03:00
|
|
|
|
[['username'], 'string', 'min' => 3, 'max' => 21,
|
2016-06-16 23:32:23 +03:00
|
|
|
|
'tooShort' => E::USERNAME_TOO_SHORT,
|
|
|
|
|
'tooLong' => E::USERNAME_TOO_LONG,
|
2016-03-20 02:25:26 +03:00
|
|
|
|
],
|
|
|
|
|
[['username'], 'match', 'pattern' => '/^[\p{L}\d-_\.!?#$%^&*()\[\]:;]+$/u',
|
2016-06-16 23:32:23 +03:00
|
|
|
|
'message' => E::USERNAME_INVALID,
|
2016-03-20 02:25:26 +03:00
|
|
|
|
],
|
2016-06-16 23:32:23 +03:00
|
|
|
|
[['username'], 'unique', 'message' => E::USERNAME_NOT_AVAILABLE],
|
2016-03-20 02:25:26 +03:00
|
|
|
|
|
|
|
|
|
[['email'], 'filter', 'filter' => 'trim'],
|
2016-06-16 23:32:23 +03:00
|
|
|
|
[['email'], 'required', 'message' => E::EMAIL_REQUIRED],
|
|
|
|
|
[['email'], 'string', 'max' => 255, 'tooLong' => E::EMAIL_TOO_LONG],
|
|
|
|
|
[['email'], 'email', 'checkDNS' => true, 'enableIDN' => true, 'message' => E::EMAIL_INVALID],
|
|
|
|
|
[['email'], TempmailValidator::class, 'message' => E::EMAIL_IS_TEMPMAIL],
|
|
|
|
|
[['email'], 'unique', 'message' => E::EMAIL_NOT_AVAILABLE],
|
2016-05-13 12:03:00 +03:00
|
|
|
|
|
|
|
|
|
[['lang'], LanguageValidator::class],
|
|
|
|
|
[['lang'], 'default', 'value' => 'en'],
|
2016-01-03 03:18:37 +03:00
|
|
|
|
];
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
/**
|
|
|
|
|
* Validates password
|
|
|
|
|
*
|
|
|
|
|
* @param string $password password to validate
|
|
|
|
|
* @param integer $passwordHashStrategy
|
|
|
|
|
*
|
|
|
|
|
* @return bool if password provided is valid for current user
|
|
|
|
|
* @throws InvalidConfigException
|
|
|
|
|
*/
|
2016-07-25 14:07:14 +03:00
|
|
|
|
public function validatePassword($password, $passwordHashStrategy = NULL) : bool {
|
2016-01-03 03:18:37 +03:00
|
|
|
|
if ($passwordHashStrategy === NULL) {
|
|
|
|
|
$passwordHashStrategy = $this->password_hash_strategy;
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
switch($passwordHashStrategy) {
|
|
|
|
|
case self::PASS_HASH_STRATEGY_OLD_ELY:
|
|
|
|
|
$hashedPass = UserPass::make($this->email, $password);
|
|
|
|
|
return $hashedPass === $this->password_hash;
|
|
|
|
|
|
|
|
|
|
case self::PASS_HASH_STRATEGY_YII2:
|
|
|
|
|
return Yii::$app->security->validatePassword($password, $this->password_hash);
|
|
|
|
|
|
|
|
|
|
default:
|
|
|
|
|
throw new InvalidConfigException('You must set valid password_hash_strategy before you can validate password');
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
/**
|
|
|
|
|
* @param string $password
|
|
|
|
|
* @throws InvalidConfigException
|
|
|
|
|
*/
|
|
|
|
|
public function setPassword($password) {
|
2016-02-27 01:22:09 +03:00
|
|
|
|
$this->password_hash_strategy = self::PASS_HASH_STRATEGY_YII2;
|
|
|
|
|
$this->password_hash = Yii::$app->security->generatePasswordHash($password);
|
2016-03-12 00:55:46 +03:00
|
|
|
|
$this->password_changed_at = time();
|
2016-01-03 03:18:37 +03:00
|
|
|
|
}
|
|
|
|
|
|
2016-01-15 12:21:27 +03:00
|
|
|
|
public function getEmailActivations() {
|
2016-03-13 02:19:00 +03:00
|
|
|
|
return $this->hasMany(EmailActivation::class, ['account_id' => 'id']);
|
2016-01-15 12:21:27 +03:00
|
|
|
|
}
|
|
|
|
|
|
2016-05-30 02:44:17 +03:00
|
|
|
|
public function getOauthSessions() {
|
2016-02-14 20:50:10 +03:00
|
|
|
|
return $this->hasMany(OauthSession::class, ['owner_id' => 'id']);
|
|
|
|
|
}
|
|
|
|
|
|
2016-04-23 21:44:10 +03:00
|
|
|
|
public function getUsernameHistory() {
|
|
|
|
|
return $this->hasMany(UsernameHistory::class, ['account_id' => 'id']);
|
|
|
|
|
}
|
|
|
|
|
|
2016-05-30 02:44:17 +03:00
|
|
|
|
public function getSessions() {
|
|
|
|
|
return $this->hasMany(AccountSession::class, ['account_id' => 'id']);
|
|
|
|
|
}
|
|
|
|
|
|
2016-02-14 20:50:10 +03:00
|
|
|
|
/**
|
2016-04-23 21:44:10 +03:00
|
|
|
|
* Метод проверяет, может ли текущий пользователь быть автоматически авторизован
|
2016-02-14 20:50:10 +03:00
|
|
|
|
* для указанного клиента без запроса доступа к необходимому списку прав
|
|
|
|
|
*
|
|
|
|
|
* @param OauthClient $client
|
|
|
|
|
* @param \League\OAuth2\Server\Entity\ScopeEntity[] $scopes
|
|
|
|
|
*
|
2016-07-17 15:27:29 +03:00
|
|
|
|
* TODO: этому методу здесь не место.
|
|
|
|
|
*
|
2016-02-14 20:50:10 +03:00
|
|
|
|
* @return bool
|
|
|
|
|
*/
|
2016-08-04 01:07:21 +03:00
|
|
|
|
public function canAutoApprove(OauthClient $client, array $scopes = []) : bool {
|
2016-03-13 02:19:00 +03:00
|
|
|
|
if ($client->is_trusted) {
|
|
|
|
|
return true;
|
|
|
|
|
}
|
2016-02-14 20:50:10 +03:00
|
|
|
|
|
|
|
|
|
/** @var OauthSession|null $session */
|
2016-05-30 02:44:17 +03:00
|
|
|
|
$session = $this->getOauthSessions()->andWhere(['client_id' => $client->id])->one();
|
2016-02-14 20:50:10 +03:00
|
|
|
|
if ($session !== null) {
|
|
|
|
|
$existScopes = $session->getScopes()->members();
|
|
|
|
|
if (empty(array_diff(array_keys($scopes), $existScopes))) {
|
|
|
|
|
return true;
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
return false;
|
|
|
|
|
}
|
|
|
|
|
|
2016-04-23 21:44:10 +03:00
|
|
|
|
/**
|
|
|
|
|
* Выполняет проверку, принадлежит ли этому нику аккаунт у Mojang
|
2016-08-06 18:52:03 +03:00
|
|
|
|
*
|
2016-04-23 21:44:10 +03:00
|
|
|
|
* @return bool
|
|
|
|
|
*/
|
2016-08-04 01:07:21 +03:00
|
|
|
|
public function hasMojangUsernameCollision() : bool {
|
2016-04-23 21:44:10 +03:00
|
|
|
|
return MojangUsername::find()
|
|
|
|
|
->andWhere(['username' => $this->username])
|
|
|
|
|
->exists();
|
|
|
|
|
}
|
|
|
|
|
|
2016-08-06 18:52:03 +03:00
|
|
|
|
/**
|
|
|
|
|
* Т.к. у нас нет инфы по static_url пользователя, то пока генерируем самый простой вариант
|
|
|
|
|
* с ссылкой на профиль по id. На Ely он всё равно редиректнется на static, а мы так или
|
|
|
|
|
* иначе обеспечим отдачу этой инфы.
|
|
|
|
|
*
|
|
|
|
|
* @return string
|
|
|
|
|
*/
|
2016-08-04 01:07:21 +03:00
|
|
|
|
public function getProfileLink() : string {
|
|
|
|
|
return 'http://ely.by/u' . $this->id;
|
|
|
|
|
}
|
|
|
|
|
|
2016-08-06 18:52:03 +03:00
|
|
|
|
/**
|
|
|
|
|
* При создании структуры БД все аккаунты получают null значение в это поле, однако оно
|
|
|
|
|
* обязательно для заполнения. Все мигрировавшие с Ely аккаунты будут иметь null значение,
|
|
|
|
|
* а актуальной версией будет 1 версия правил сайта (т.к. раньше их просто не было). Ну а
|
|
|
|
|
* дальше уже будем инкрементить.
|
|
|
|
|
*
|
|
|
|
|
* @return bool
|
|
|
|
|
*/
|
|
|
|
|
public function isAgreedWithActualRules() : bool {
|
|
|
|
|
return $this->rules_agreement_version === LATEST_RULES_VERSION;
|
|
|
|
|
}
|
|
|
|
|
|
2016-01-03 03:18:37 +03:00
|
|
|
|
}
|