2016-02-14 20:50:10 +03:00
|
|
|
|
<?php
|
|
|
|
|
namespace common\components\oauth\Storage\Yii2;
|
|
|
|
|
|
|
|
|
|
use common\components\oauth\Entity\SessionEntity;
|
|
|
|
|
use common\models\OauthClient;
|
|
|
|
|
use League\OAuth2\Server\Entity\ClientEntity;
|
|
|
|
|
use League\OAuth2\Server\Entity\SessionEntity as OriginalSessionEntity;
|
|
|
|
|
use League\OAuth2\Server\Storage\AbstractStorage;
|
|
|
|
|
use League\OAuth2\Server\Storage\ClientInterface;
|
2016-03-20 17:39:09 +03:00
|
|
|
|
use yii\helpers\StringHelper;
|
2016-02-14 20:50:10 +03:00
|
|
|
|
|
|
|
|
|
class ClientStorage extends AbstractStorage implements ClientInterface {
|
|
|
|
|
|
2016-03-20 17:39:09 +03:00
|
|
|
|
const REDIRECT_STATIC_PAGE = 'static_page';
|
|
|
|
|
const REDIRECT_STATIC_PAGE_WITH_CODE = 'static_page_with_code';
|
|
|
|
|
|
2016-02-14 20:50:10 +03:00
|
|
|
|
/**
|
|
|
|
|
* @inheritdoc
|
|
|
|
|
*/
|
|
|
|
|
public function get($clientId, $clientSecret = null, $redirectUri = null, $grantType = null) {
|
|
|
|
|
$query = OauthClient::find()
|
2016-03-20 17:39:09 +03:00
|
|
|
|
->select(['id', 'name', 'secret', 'redirect_uri'])
|
2016-02-14 20:50:10 +03:00
|
|
|
|
->where([OauthClient::tableName() . '.id' => $clientId]);
|
|
|
|
|
|
|
|
|
|
if ($clientSecret !== null) {
|
|
|
|
|
$query->andWhere(['secret' => $clientSecret]);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
$model = $query->asArray()->one();
|
|
|
|
|
if ($model === null) {
|
|
|
|
|
return null;
|
|
|
|
|
}
|
|
|
|
|
|
2016-03-20 17:39:09 +03:00
|
|
|
|
// TODO: нужно учитывать тип приложения
|
|
|
|
|
/*
|
|
|
|
|
* Для приложений типа "настольный" redirect_uri необязателем - он должен быть по умолчанию равен
|
|
|
|
|
* статичному редиректу на страницу сайта
|
|
|
|
|
* А для приложений типа "сайт" редирект должен быть всегда.
|
|
|
|
|
* Короче это нужно учесть
|
|
|
|
|
*/
|
|
|
|
|
if ($redirectUri !== null) {
|
|
|
|
|
if ($redirectUri === self::REDIRECT_STATIC_PAGE || $redirectUri === self::REDIRECT_STATIC_PAGE_WITH_CODE) {
|
|
|
|
|
// Тут, наверное, нужно проверить тип приложения
|
|
|
|
|
} else {
|
|
|
|
|
if (!StringHelper::startsWith($redirectUri, $model['redirect_uri'], false)) {
|
|
|
|
|
return null;
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
|
2016-02-14 20:50:10 +03:00
|
|
|
|
$entity = new ClientEntity($this->server);
|
|
|
|
|
$entity->hydrate([
|
|
|
|
|
'id' => $model['id'],
|
|
|
|
|
'name' => $model['name'],
|
|
|
|
|
'secret' => $model['secret'],
|
2016-03-20 17:39:09 +03:00
|
|
|
|
'redirectUri' => $redirectUri,
|
2016-02-14 20:50:10 +03:00
|
|
|
|
]);
|
|
|
|
|
|
|
|
|
|
return $entity;
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
/**
|
|
|
|
|
* @inheritdoc
|
|
|
|
|
*/
|
|
|
|
|
public function getBySession(OriginalSessionEntity $session) {
|
|
|
|
|
if (!$session instanceof SessionEntity) {
|
|
|
|
|
throw new \ErrorException('This module assumes that $session typeof ' . SessionEntity::class);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
$model = OauthClient::find()
|
|
|
|
|
->select(['id', 'name'])
|
|
|
|
|
->andWhere(['id' => $session->getClientId()])
|
|
|
|
|
->asArray()
|
|
|
|
|
->one();
|
|
|
|
|
|
|
|
|
|
if ($model === null) {
|
|
|
|
|
return null;
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
return (new ClientEntity($this->server))->hydrate($model);
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
}
|