Test Failed
Pull Request — master (#7)
by
unknown
01:39
created

UserPermissionsComponent::redirectIfIsSet()   B

Complexity

Conditions 5
Paths 5

Size

Total Lines 17
Code Lines 10

Duplication

Lines 0
Ratio 0 %

Code Coverage

Tests 1
CRAP Score 12.4085

Importance

Changes 0
Metric Value
c 0
b 0
f 0
dl 0
loc 17
ccs 1
cts 3
cp 0.3333
rs 8.8571
cc 5
eloc 10
nc 5
nop 0
crap 12.4085
1
<?php
2
namespace UserPermissions\Controller\Component;
3
4
use Cake\Controller\Component;
5
use Cake\Controller\ComponentRegistry;
6
use Cake\Controller\Component\FlashComponent;
7
use Cake\Datasource\ConnectionManager;
8
use Cake\Log\Log;
9
use Cake\ORM\TableRegistry;
10
use UserPermissions\Exception\MissingHandlerException;
11
12
class UserPermissionsComponent extends Component {
13
14
    /**
15
     * Controller name
16
     *
17
     * @var string
18
     */
19
	public $controller = null;
20
21
    /**
22
     * Session
23
     *
24
     * @var string
25
     */
26
	public $session = null;
27
28
    /**
29
     * Components array
30
     *
31
     * @var array
32
     */
33
   	public $components = ['Flash'];
34
35
    private $actions;
36
37
    private $allow;
38
39
    private $redirect;
40
41
    private $params;
42
43
    private $message;
44
45
    private $userType;
46
47
    private $action;
48
	
49
	/**
50
	 * Boolean value which holds the configuration for the behavior in case of
51
	 * missing handlers.
52
	 */
53
	private $throwEx;
54
55
	/**
56
	 * Boolean value true if an redirect is already invoked.
57
	 */
58
	private $isRedirecting;
59
60
    /**
61
    * Initialization to get controller variable
62
    *
63
	* For this component available settings:
64 7
	* 	bool throwEx - default false - if set to true, an exception will be
65
	*		thrown, if a handler is about to be called but does not exist.
66 7
	*
67
    * @param array $config Configuration array for the component.
68 7
    */
69 7
    public function initialize(array $config)
70
    {
71 7
        parent::initialize($config);
72 7
        
73 7
        $this->controller = $this->_registry->getController();
0 ignored issues
show
Documentation Bug introduced by
It seems like $this->_registry->getController() of type object<Cake\Controller\Controller> is incompatible with the declared type string of property $controller.

Our type inference engine has found an assignment to a property that is incompatible with the declared type of that property.

Either this assignment is in error or the assigned type should be added to the documentation/type hint for that property..

Loading history...
74 7
        $this->session = $this->controller->request->session();
75 7
76 7
        $this->actions 		 = array();
77 7
		$this->allow 		 = true;
78 7
		$this->redirect 	 = null;
79 7
		$this->params 		 = '';
80
		$this->message 		 = '';
81
		$this->userType 	 = '';
82
		$this->action   	 = null;
83
		$this->throwEx       = isset($config["throwEx"]) && $config["throwEx"];
84
		$this->isRedirecting = false;
85
    }
86
87 7
    /**
88 7
    * Initialization to get controller variable
89 7
    *
90
    * @param array $rules Array of rules for permissions.
91 7
    * @return bool false if user / group doesn't have permission, true if has permission
92 7
    */
93
    public function allow ($rules) {
94
    	$this->setUserValues();
95 6
    	$this->bindConfiguration($rules);
96
97
		if (!$this->applyGroupsRules($rules)) {
98 7
			$this->applyViewsRules($rules);
99
		}
100 7
101
		return $this->allow;
102 7
    }
103 7
104
    private function setUserValues()
105 7
    {
106
    	$userId = $this->session->read('Auth.User.id');
0 ignored issues
show
Bug introduced by
The method read cannot be called on $this->session (of type string).

Methods can only be called on objects. This check looks for methods being called on variables that have been inferred to never be objects.

Loading history...
107 7
108
    	if (!isset($userId)) {
109 7
			$this->userType = 'guest';
110
		}
111 7
    }
112 7
113 7
    private function bindConfiguration(array $rules) 
114 7
    {
115 7
    	foreach($rules as $key => $value){
116 7
			switch($key){
117 7
				case "user_type":
118 7
			        $this->userType = $value;
119 7
			        break;
120 7
			    case "redirect":
121 7
			        $this->redirect = $value;
122 7
			        break;
123
			    case "action":
124
			        $this->action = $value;
125 7
			        break;
126 7
			    case "controller":
127 7
			        $this->controller = $value;
128 7
					if(!is_object($value)) {
129
						Log::write("warning", sprintf("controller is not an object (%s)", gettype($value)));
130
					}
131
			        break;
132 7
			    case "message":
133 7
			        $this->message = $value;
134 7
			        break;
135 7
			}
136
		}
137
138
		foreach($rules['groups']  as $key => $value){
139 7
			if($key == $this->userType){
140
				foreach($value as $v){
141 7
					array_push($this->actions, $v);
142
				}
143 7
			}
144
		}
145 7
    }
146 7
147 7
    private function applyGroupsRules(array $rules)
148
    {
149
    	$existRulesForGroups = false;
150
151 7
    	if(isset($rules['groups'])){
152
			foreach($rules['groups'] as $key => $value){
153
				$this->searchForApplyGroupRules($key, $value);
0 ignored issues
show
Unused Code introduced by
The call to UserPermissionsComponent...rchForApplyGroupRules() has too many arguments starting with $value.

This check compares calls to functions or methods with their respective definitions. If the call has more arguments than are defined, it raises an issue.

If a function is defined several times with a different number of parameters, the check may pick up the wrong definition and report false positives. One codebase where this has been known to happen is Wordpress.

In this case you can add the @ignore PhpDoc annotation to the duplicate definition and it will be ignored.

Loading history...
154 7
			}
155
		}
156 7
157 7
		return $existRulesForGroups;
158 2
    }
159
160 2
    private function searchForApplyGroupRules($key)
161
    {
162
    	if($key == $this->userType){
163 7
    		if ($this->notInArrayAction()) {
164
				$this->redirectIfIsSet();
165 7
				
166
				$this->allow = false;
167 7
			}
168
		}
169
    }
170 7
171
    private function notInArrayAction()
172 7
    {
173 4
    	return ((!in_array('*', $this->actions)) && (!in_array($this->action, $this->actions)));
174 4
    }
175
176
    private function applyViewsRules(array $rules)
177 6
    {
178
    	if(isset($rules['views'])){
179 4
			foreach($rules['views'] as $key => $value){
180
				$this->searchForApplyViewRules($key, $value);
181 4
			}
182 4
		}
183 2
    }
184
185 2
    private function searchForApplyViewRules($key, $value)
186
    {
187
    	if($key == $this->action) {
188 3
			if(!$this->checkForHandler($this->controller, $value) || !$this->controller->$value()){
0 ignored issues
show
Bug introduced by
The method $value cannot be called on $this->controller (of type string).

Methods can only be called on objects. This check looks for methods being called on variables that have been inferred to never be objects.

Loading history...
189
				$this->redirectIfIsSet();
190 4
				
191
				$this->allow = false;
192 4
			}
193 2
		}
194 2
    }
195 2
	
196 2
	private function checkForHandler($controller, $handler)
197 2
	{
198
		if(!method_exists($controller, $handler)) {
199 2
			$msg = sprintf(
200 2
				"Controller %s=%s has no method called '%s'",
201 1
				is_object($controller) ? "class" : "type",
202
				is_object($controller) ? get_class($controller) : gettype($controller),
203 1
				$handler
204
			);
205
			Log::write("debug", $msg);
206 2
			if($this->throwEx) {
207
				throw new MissingHandlerException($msg);
208
			}
209 4
			return false;
210
		}
211 4
		
212
		return true;
213
	}
214
	
215
    private function redirectIfIsSet()
216
    {
217
    	if($this->redirect && !$this->isRedirecting){
218
			$this->isRedirecting = true;
219 4
			if($this->message != ''){
220
				$this->Flash->set($this->message);
0 ignored issues
show
Documentation introduced by
The property Flash does not exist on object<UserPermissions\C...erPermissionsComponent>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
221
			}
222
			
223
			if(method_exists($this->controller, "redirect")) {
224
				$this->controller->redirect($this->redirect);
0 ignored issues
show
Bug introduced by
The method redirect cannot be called on $this->controller (of type string).

Methods can only be called on objects. This check looks for methods being called on variables that have been inferred to never be objects.

Loading history...
225
			}
226
			else {
227
				header("Location: " . $this->redirect);
228
				exit;
0 ignored issues
show
Coding Style Compatibility introduced by
The method redirectIfIsSet() contains an exit expression.

An exit expression should only be used in rare cases. For example, if you write a short command line script.

In most cases however, using an exit expression makes the code untestable and often causes incompatibilities with other libraries. Thus, unless you are absolutely sure it is required here, we recommend to refactor your code to avoid its usage.

Loading history...
229
			}
230
		}
231
	}
232
}
233