Page Menu
Home
WickedGov Phorge
Search
Configure Global Search
Log In
Files
F4141370
AuthorizationProvider.php
No One
Temporary
Actions
Download File
Edit File
Delete File
View Transforms
Subscribe
Flag For Later
Award Token
Size
3 KB
Referenced Files
None
Subscribers
None
AuthorizationProvider.php
View Options
<?php
namespace
MediaWiki\Extension\OAuth\AuthorizationProvider
;
use
DateInterval
;
use
Exception
;
use
League\OAuth2\Server\AuthorizationServer
;
use
League\OAuth2\Server\Grant\GrantTypeInterface
;
use
MediaWiki\Config\Config
;
use
MediaWiki\Extension\OAuth\AuthorizationServerFactory
;
use
MediaWiki\Extension\OAuth\Repository\AuthCodeRepository
;
use
MediaWiki\Extension\OAuth\Repository\RefreshTokenRepository
;
use
MediaWiki\Logger\LoggerFactory
;
use
MediaWiki\MediaWikiServices
;
use
MediaWiki\User\User
;
use
Psr\Http\Message\ServerRequestInterface
;
use
Psr\Log\LoggerInterface
;
abstract
class
AuthorizationProvider
implements
IAuthorizationProvider
{
/**
* @var AuthorizationServer
*/
protected
$server
;
/**
* @var Config|null
*/
protected
$config
;
/**
* @var User
*/
protected
$user
;
/**
* @var LoggerInterface
*/
protected
$logger
;
/**
* @var GrantTypeInterface
*/
protected
$grant
;
/**
* @return AuthorizationProvider
* @throws Exception
*/
public
static
function
factory
()
{
$services
=
MediaWikiServices
::
getInstance
();
$config
=
$services
->
getConfigFactory
()->
makeConfig
(
'mwoauth'
);
$serverFactory
=
AuthorizationServerFactory
::
factory
();
$logger
=
LoggerFactory
::
getInstance
(
'OAuth'
);
// @phan-suppress-next-line PhanTypeInstantiateAbstractStatic
return
new
static
(
$config
,
$serverFactory
->
getAuthorizationServer
(),
$logger
);
}
/**
* @param Config $config
* @param AuthorizationServer $server
* @param LoggerInterface $logger
* @throws Exception
*/
public
function
__construct
(
$config
,
$server
,
$logger
)
{
$this
->
config
=
$config
;
$this
->
server
=
$server
;
$this
->
logger
=
$logger
;
$this
->
decorateAuthServer
();
}
/**
* @inheritDoc
*/
public
function
setUser
(
User
$user
)
{
$this
->
user
=
$user
;
}
/**
* @inheritDoc
*/
public
function
needsUserApproval
()
{
return
false
;
}
/**
* @return GrantTypeInterface
*/
abstract
protected
function
getGrant
():
GrantTypeInterface
;
/**
* @return GrantTypeInterface
*/
protected
function
getGrantSingleton
()
{
if
(
!
$this
->
grant
)
{
$this
->
grant
=
$this
->
getGrant
();
}
return
$this
->
grant
;
}
/**
* @throws Exception
*/
protected
function
decorateAuthServer
()
{
$grant
=
$this
->
getGrantSingleton
();
$grant
->
setRefreshTokenTTL
(
$this
->
getRefreshTokenTTL
()
);
$this
->
server
->
setDefaultScope
(
'#default'
);
$this
->
server
->
enableGrantType
(
$grant
,
$this
->
getGrantExpirationInterval
()
);
}
/**
* @return RefreshTokenRepository
*/
protected
function
getRefreshTokenRepo
()
{
return
RefreshTokenRepository
::
factory
();
}
/**
* @return AuthCodeRepository
*/
protected
function
getAuthCodeRepo
()
{
return
AuthCodeRepository
::
factory
();
}
/**
* @return DateInterval
* @throws Exception
*/
protected
function
getGrantExpirationInterval
()
{
$intervalSpec
=
$this
->
parseExpiration
(
$this
->
config
->
get
(
'OAuth2GrantExpirationInterval'
)
);
return
new
DateInterval
(
$intervalSpec
);
}
/**
* @return DateInterval
* @throws Exception
*/
protected
function
getRefreshTokenTTL
()
{
$intervalSpec
=
$this
->
parseExpiration
(
$this
->
config
->
get
(
'OAuth2RefreshTokenTTL'
)
);
return
new
DateInterval
(
$intervalSpec
);
}
/**
* @param ServerRequestInterface $request
* @param string $default
* @return mixed|string
*/
protected
function
getClientIdFromRequest
(
ServerRequestInterface
$request
,
$default
=
''
)
{
$params
=
(
array
)
$request
->
getParsedBody
();
return
$params
[
'client_id'
]
??
$default
;
}
private
function
parseExpiration
(
$expiration
)
{
if
(
$expiration
===
false
||
$expiration
===
'infinity'
)
{
// Effectively non-expiring tokens
$expiration
=
'P1000Y'
;
}
return
$expiration
;
}
}
File Metadata
Details
Attached
Mime Type
text/x-php
Expires
Wed, Aug 19, 15:55 (3 w, 6 d ago)
Storage Engine
local-disk
Storage Format
Raw Data
Storage Handle
5c/22/f344064fc35ec5ce4fafd1f3aee0
Default Alt Text
AuthorizationProvider.php (3 KB)
Attached To
Mode
rMWPROD MediaWiki Production
Attached
Detach File
Event Timeline
Log In to Comment