@@ -1,6 +1,5 @@ |
||
1 | 1 | <?php |
2 | 2 | /** |
3 | - |
|
4 | 3 | * |
5 | 4 | * @author Bjoern Schiessle <[email protected]> |
6 | 5 | * @author Jan-Christoph Borchardt <[email protected]> |
@@ -28,55 +28,55 @@ |
||
28 | 28 | use OCP\Settings\IIconSection; |
29 | 29 | |
30 | 30 | class Section implements IIconSection { |
31 | - /** @var IL10N */ |
|
32 | - private $l; |
|
33 | - /** @var IURLGenerator */ |
|
34 | - private $url; |
|
31 | + /** @var IL10N */ |
|
32 | + private $l; |
|
33 | + /** @var IURLGenerator */ |
|
34 | + private $url; |
|
35 | 35 | |
36 | - /** |
|
37 | - * @param IURLGenerator $url |
|
38 | - * @param IL10N $l |
|
39 | - */ |
|
40 | - public function __construct(IURLGenerator $url, IL10N $l) { |
|
41 | - $this->url = $url; |
|
42 | - $this->l = $l; |
|
43 | - } |
|
36 | + /** |
|
37 | + * @param IURLGenerator $url |
|
38 | + * @param IL10N $l |
|
39 | + */ |
|
40 | + public function __construct(IURLGenerator $url, IL10N $l) { |
|
41 | + $this->url = $url; |
|
42 | + $this->l = $l; |
|
43 | + } |
|
44 | 44 | |
45 | - /** |
|
46 | - * returns the ID of the section. It is supposed to be a lower case string, |
|
47 | - * e.g. 'ldap' |
|
48 | - * |
|
49 | - * @returns string |
|
50 | - */ |
|
51 | - public function getID() { |
|
52 | - return 'theming'; |
|
53 | - } |
|
45 | + /** |
|
46 | + * returns the ID of the section. It is supposed to be a lower case string, |
|
47 | + * e.g. 'ldap' |
|
48 | + * |
|
49 | + * @returns string |
|
50 | + */ |
|
51 | + public function getID() { |
|
52 | + return 'theming'; |
|
53 | + } |
|
54 | 54 | |
55 | - /** |
|
56 | - * returns the translated name as it should be displayed, e.g. 'LDAP / AD |
|
57 | - * integration'. Use the L10N service to translate it. |
|
58 | - * |
|
59 | - * @return string |
|
60 | - */ |
|
61 | - public function getName() { |
|
62 | - return $this->l->t('Theming'); |
|
63 | - } |
|
55 | + /** |
|
56 | + * returns the translated name as it should be displayed, e.g. 'LDAP / AD |
|
57 | + * integration'. Use the L10N service to translate it. |
|
58 | + * |
|
59 | + * @return string |
|
60 | + */ |
|
61 | + public function getName() { |
|
62 | + return $this->l->t('Theming'); |
|
63 | + } |
|
64 | 64 | |
65 | - /** |
|
66 | - * @return int whether the form should be rather on the top or bottom of |
|
67 | - * the settings navigation. The sections are arranged in ascending order of |
|
68 | - * the priority values. It is required to return a value between 0 and 99. |
|
69 | - * |
|
70 | - * E.g.: 70 |
|
71 | - */ |
|
72 | - public function getPriority() { |
|
73 | - return 30; |
|
74 | - } |
|
65 | + /** |
|
66 | + * @return int whether the form should be rather on the top or bottom of |
|
67 | + * the settings navigation. The sections are arranged in ascending order of |
|
68 | + * the priority values. It is required to return a value between 0 and 99. |
|
69 | + * |
|
70 | + * E.g.: 70 |
|
71 | + */ |
|
72 | + public function getPriority() { |
|
73 | + return 30; |
|
74 | + } |
|
75 | 75 | |
76 | - /** |
|
77 | - * {@inheritdoc} |
|
78 | - */ |
|
79 | - public function getIcon() { |
|
80 | - return $this->url->imagePath('theming', 'app-dark.svg'); |
|
81 | - } |
|
76 | + /** |
|
77 | + * {@inheritdoc} |
|
78 | + */ |
|
79 | + public function getIcon() { |
|
80 | + return $this->url->imagePath('theming', 'app-dark.svg'); |
|
81 | + } |
|
82 | 82 | } |
@@ -25,58 +25,58 @@ |
||
25 | 25 | */ |
26 | 26 | |
27 | 27 | return ['routes' => [ |
28 | - [ |
|
29 | - 'name' => 'Theming#updateStylesheet', |
|
30 | - 'url' => '/ajax/updateStylesheet', |
|
31 | - 'verb' => 'POST' |
|
32 | - ], |
|
33 | - [ |
|
34 | - 'name' => 'Theming#undo', |
|
35 | - 'url' => '/ajax/undoChanges', |
|
36 | - 'verb' => 'POST' |
|
37 | - ], |
|
38 | - [ |
|
39 | - 'name' => 'Theming#updateLogo', |
|
40 | - 'url' => '/ajax/updateLogo', |
|
41 | - 'verb' => 'POST' |
|
42 | - ], |
|
43 | - [ |
|
44 | - 'name' => 'Theming#getStylesheet', |
|
45 | - 'url' => '/styles', |
|
46 | - 'verb' => 'GET', |
|
47 | - ], |
|
48 | - [ |
|
49 | - 'name' => 'Theming#getLogo', |
|
50 | - 'url' => '/logo', |
|
51 | - 'verb' => 'GET', |
|
52 | - ], |
|
53 | - [ |
|
54 | - 'name' => 'Theming#getLoginBackground', |
|
55 | - 'url' => '/loginbackground', |
|
56 | - 'verb' => 'GET', |
|
57 | - ], |
|
58 | - [ |
|
59 | - 'name' => 'Theming#getJavascript', |
|
60 | - 'url' => '/js/theming', |
|
61 | - 'verb' => 'GET', |
|
62 | - ], |
|
63 | - [ |
|
64 | - 'name' => 'Icon#getFavicon', |
|
65 | - 'url' => '/favicon/{app}', |
|
66 | - 'verb' => 'GET', |
|
67 | - 'defaults' => array('app' => 'core'), |
|
68 | - ], |
|
69 | - [ |
|
70 | - 'name' => 'Icon#getTouchIcon', |
|
71 | - 'url' => '/icon/{app}', |
|
72 | - 'verb' => 'GET', |
|
73 | - 'defaults' => array('app' => 'core'), |
|
74 | - ], |
|
75 | - [ |
|
76 | - 'name' => 'Icon#getThemedIcon', |
|
77 | - 'url' => '/img/{app}/{image}', |
|
78 | - 'verb' => 'GET', |
|
79 | - 'requirements' => array('image' => '.+') |
|
80 | - ], |
|
28 | + [ |
|
29 | + 'name' => 'Theming#updateStylesheet', |
|
30 | + 'url' => '/ajax/updateStylesheet', |
|
31 | + 'verb' => 'POST' |
|
32 | + ], |
|
33 | + [ |
|
34 | + 'name' => 'Theming#undo', |
|
35 | + 'url' => '/ajax/undoChanges', |
|
36 | + 'verb' => 'POST' |
|
37 | + ], |
|
38 | + [ |
|
39 | + 'name' => 'Theming#updateLogo', |
|
40 | + 'url' => '/ajax/updateLogo', |
|
41 | + 'verb' => 'POST' |
|
42 | + ], |
|
43 | + [ |
|
44 | + 'name' => 'Theming#getStylesheet', |
|
45 | + 'url' => '/styles', |
|
46 | + 'verb' => 'GET', |
|
47 | + ], |
|
48 | + [ |
|
49 | + 'name' => 'Theming#getLogo', |
|
50 | + 'url' => '/logo', |
|
51 | + 'verb' => 'GET', |
|
52 | + ], |
|
53 | + [ |
|
54 | + 'name' => 'Theming#getLoginBackground', |
|
55 | + 'url' => '/loginbackground', |
|
56 | + 'verb' => 'GET', |
|
57 | + ], |
|
58 | + [ |
|
59 | + 'name' => 'Theming#getJavascript', |
|
60 | + 'url' => '/js/theming', |
|
61 | + 'verb' => 'GET', |
|
62 | + ], |
|
63 | + [ |
|
64 | + 'name' => 'Icon#getFavicon', |
|
65 | + 'url' => '/favicon/{app}', |
|
66 | + 'verb' => 'GET', |
|
67 | + 'defaults' => array('app' => 'core'), |
|
68 | + ], |
|
69 | + [ |
|
70 | + 'name' => 'Icon#getTouchIcon', |
|
71 | + 'url' => '/icon/{app}', |
|
72 | + 'verb' => 'GET', |
|
73 | + 'defaults' => array('app' => 'core'), |
|
74 | + ], |
|
75 | + [ |
|
76 | + 'name' => 'Icon#getThemedIcon', |
|
77 | + 'url' => '/img/{app}/{image}', |
|
78 | + 'verb' => 'GET', |
|
79 | + 'requirements' => array('image' => '.+') |
|
80 | + ], |
|
81 | 81 | ]]; |
82 | 82 |
@@ -24,31 +24,31 @@ |
||
24 | 24 | */ |
25 | 25 | |
26 | 26 | $linkToCSS = \OC::$server->getURLGenerator()->linkToRoute( |
27 | - 'theming.Theming.getStylesheet', |
|
28 | - [ |
|
29 | - 'v' => \OC::$server->getConfig()->getAppValue('theming', 'cachebuster', '0'), |
|
30 | - ] |
|
27 | + 'theming.Theming.getStylesheet', |
|
28 | + [ |
|
29 | + 'v' => \OC::$server->getConfig()->getAppValue('theming', 'cachebuster', '0'), |
|
30 | + ] |
|
31 | 31 | ); |
32 | 32 | \OCP\Util::addHeader( |
33 | - 'link', |
|
34 | - [ |
|
35 | - 'rel' => 'stylesheet', |
|
36 | - 'href' => $linkToCSS, |
|
37 | - ] |
|
33 | + 'link', |
|
34 | + [ |
|
35 | + 'rel' => 'stylesheet', |
|
36 | + 'href' => $linkToCSS, |
|
37 | + ] |
|
38 | 38 | ); |
39 | 39 | |
40 | 40 | $linkToJs = \OC::$server->getURLGenerator()->linkToRoute( |
41 | - 'theming.Theming.getJavascript', |
|
42 | - [ |
|
43 | - 'v' => \OC::$server->getConfig()->getAppValue('theming', 'cachebuster', '0'), |
|
44 | - ] |
|
41 | + 'theming.Theming.getJavascript', |
|
42 | + [ |
|
43 | + 'v' => \OC::$server->getConfig()->getAppValue('theming', 'cachebuster', '0'), |
|
44 | + ] |
|
45 | 45 | ); |
46 | 46 | \OCP\Util::addHeader( |
47 | - 'script', |
|
48 | - [ |
|
49 | - 'src' => $linkToJs, |
|
50 | - 'nonce' => \OC::$server->getContentSecurityPolicyNonceManager()->getNonce() |
|
51 | - ], '' |
|
47 | + 'script', |
|
48 | + [ |
|
49 | + 'src' => $linkToJs, |
|
50 | + 'nonce' => \OC::$server->getContentSecurityPolicyNonceManager()->getNonce() |
|
51 | + ], '' |
|
52 | 52 | ); |
53 | 53 | |
54 | 54 | $app = new \OCP\AppFramework\App('theming'); |
@@ -31,42 +31,42 @@ |
||
31 | 31 | |
32 | 32 | class Provider implements IProvider { |
33 | 33 | |
34 | - /** @var L10nFactory */ |
|
35 | - private $l10n; |
|
34 | + /** @var L10nFactory */ |
|
35 | + private $l10n; |
|
36 | 36 | |
37 | - /** @var IURLGenerator */ |
|
38 | - private $urlGenerator; |
|
37 | + /** @var IURLGenerator */ |
|
38 | + private $urlGenerator; |
|
39 | 39 | |
40 | - /** @var ILogger */ |
|
41 | - private $logger; |
|
40 | + /** @var ILogger */ |
|
41 | + private $logger; |
|
42 | 42 | |
43 | - /** |
|
44 | - * @param L10nFactory $l10n |
|
45 | - * @param IURLGenerator $urlGenerator |
|
46 | - * @param ILogger $logger |
|
47 | - */ |
|
48 | - public function __construct(L10nFactory $l10n, IURLGenerator $urlGenerator, ILogger $logger) { |
|
49 | - $this->logger = $logger; |
|
50 | - $this->urlGenerator = $urlGenerator; |
|
51 | - $this->l10n = $l10n; |
|
52 | - } |
|
43 | + /** |
|
44 | + * @param L10nFactory $l10n |
|
45 | + * @param IURLGenerator $urlGenerator |
|
46 | + * @param ILogger $logger |
|
47 | + */ |
|
48 | + public function __construct(L10nFactory $l10n, IURLGenerator $urlGenerator, ILogger $logger) { |
|
49 | + $this->logger = $logger; |
|
50 | + $this->urlGenerator = $urlGenerator; |
|
51 | + $this->l10n = $l10n; |
|
52 | + } |
|
53 | 53 | |
54 | - public function parse($language, IEvent $event, IEvent $previousEvent = null) { |
|
55 | - if ($event->getApp() !== 'twofactor_backupcodes') { |
|
56 | - throw new InvalidArgumentException(); |
|
57 | - } |
|
54 | + public function parse($language, IEvent $event, IEvent $previousEvent = null) { |
|
55 | + if ($event->getApp() !== 'twofactor_backupcodes') { |
|
56 | + throw new InvalidArgumentException(); |
|
57 | + } |
|
58 | 58 | |
59 | - $l = $this->l10n->get('twofactor_backupcodes', $language); |
|
59 | + $l = $this->l10n->get('twofactor_backupcodes', $language); |
|
60 | 60 | |
61 | - switch ($event->getSubject()) { |
|
62 | - case 'codes_generated': |
|
63 | - $event->setParsedSubject($l->t('You created two-factor backup codes for your account')); |
|
64 | - $event->setIcon($this->urlGenerator->getAbsoluteURL($this->urlGenerator->imagePath('core', 'actions/password.svg'))); |
|
65 | - break; |
|
66 | - default: |
|
67 | - throw new InvalidArgumentException(); |
|
68 | - } |
|
69 | - return $event; |
|
70 | - } |
|
61 | + switch ($event->getSubject()) { |
|
62 | + case 'codes_generated': |
|
63 | + $event->setParsedSubject($l->t('You created two-factor backup codes for your account')); |
|
64 | + $event->setIcon($this->urlGenerator->getAbsoluteURL($this->urlGenerator->imagePath('core', 'actions/password.svg'))); |
|
65 | + break; |
|
66 | + default: |
|
67 | + throw new InvalidArgumentException(); |
|
68 | + } |
|
69 | + return $event; |
|
70 | + } |
|
71 | 71 | |
72 | 72 | } |
@@ -78,7 +78,7 @@ discard block |
||
78 | 78 | |
79 | 79 | $uid = $user->getUID(); |
80 | 80 | foreach (range(1, min([$number, 20])) as $i) { |
81 | - $code = $this->random->generate(self::$CODE_LENGTH, ISecureRandom::CHAR_UPPER . ISecureRandom::CHAR_DIGITS); |
|
81 | + $code = $this->random->generate(self::$CODE_LENGTH, ISecureRandom::CHAR_UPPER.ISecureRandom::CHAR_DIGITS); |
|
82 | 82 | |
83 | 83 | $dbCode = new BackupCode(); |
84 | 84 | $dbCode->setUserId($uid); |
@@ -132,7 +132,7 @@ discard block |
||
132 | 132 | $codes = $this->mapper->getBackupCodes($user); |
133 | 133 | $total = count($codes); |
134 | 134 | $used = 0; |
135 | - array_walk($codes, function (BackupCode $code) use (&$used) { |
|
135 | + array_walk($codes, function(BackupCode $code) use (&$used) { |
|
136 | 136 | if (1 === (int) $code->getUsed()) { |
137 | 137 | $used++; |
138 | 138 | } |
@@ -33,133 +33,133 @@ |
||
33 | 33 | |
34 | 34 | class BackupCodeStorage { |
35 | 35 | |
36 | - private static $CODE_LENGTH = 16; |
|
37 | - |
|
38 | - /** @var BackupCodeMapper */ |
|
39 | - private $mapper; |
|
40 | - |
|
41 | - /** @var IHasher */ |
|
42 | - private $hasher; |
|
43 | - |
|
44 | - /** @var ISecureRandom */ |
|
45 | - private $random; |
|
46 | - |
|
47 | - /** @var IManager */ |
|
48 | - private $activityManager; |
|
49 | - |
|
50 | - /** @var ILogger */ |
|
51 | - private $logger; |
|
52 | - |
|
53 | - /** |
|
54 | - * @param BackupCodeMapper $mapper |
|
55 | - * @param ISecureRandom $random |
|
56 | - * @param IHasher $hasher |
|
57 | - * @param IManager $activityManager |
|
58 | - * @param ILogger $logger |
|
59 | - */ |
|
60 | - public function __construct(BackupCodeMapper $mapper, ISecureRandom $random, IHasher $hasher, |
|
61 | - IManager $activityManager, ILogger $logger) { |
|
62 | - $this->mapper = $mapper; |
|
63 | - $this->hasher = $hasher; |
|
64 | - $this->random = $random; |
|
65 | - $this->activityManager = $activityManager; |
|
66 | - $this->logger = $logger; |
|
67 | - } |
|
68 | - |
|
69 | - /** |
|
70 | - * @param IUser $user |
|
71 | - * @return string[] |
|
72 | - */ |
|
73 | - public function createCodes(IUser $user, $number = 10) { |
|
74 | - $result = []; |
|
75 | - |
|
76 | - // Delete existing ones |
|
77 | - $this->mapper->deleteCodes($user); |
|
78 | - |
|
79 | - $uid = $user->getUID(); |
|
80 | - foreach (range(1, min([$number, 20])) as $i) { |
|
81 | - $code = $this->random->generate(self::$CODE_LENGTH, ISecureRandom::CHAR_UPPER . ISecureRandom::CHAR_DIGITS); |
|
82 | - |
|
83 | - $dbCode = new BackupCode(); |
|
84 | - $dbCode->setUserId($uid); |
|
85 | - $dbCode->setCode($this->hasher->hash($code)); |
|
86 | - $dbCode->setUsed(0); |
|
87 | - $this->mapper->insert($dbCode); |
|
88 | - |
|
89 | - array_push($result, $code); |
|
90 | - } |
|
91 | - |
|
92 | - $this->publishEvent($user, 'codes_generated'); |
|
93 | - |
|
94 | - return $result; |
|
95 | - } |
|
96 | - |
|
97 | - /** |
|
98 | - * Push an event the user's activity stream |
|
99 | - * |
|
100 | - * @param IUser $user |
|
101 | - * @param string $event |
|
102 | - */ |
|
103 | - private function publishEvent(IUser $user, $event) { |
|
104 | - $activity = $this->activityManager->generateEvent(); |
|
105 | - $activity->setApp('twofactor_backupcodes') |
|
106 | - ->setType('security') |
|
107 | - ->setAuthor($user->getUID()) |
|
108 | - ->setAffectedUser($user->getUID()) |
|
109 | - ->setSubject($event); |
|
110 | - try { |
|
111 | - $this->activityManager->publish($activity); |
|
112 | - } catch (BadMethodCallException $e) { |
|
113 | - $this->logger->warning('could not publish backup code creation activity', ['app' => 'twofactor_backupcodes']); |
|
114 | - $this->logger->logException($e, ['app' => 'twofactor_backupcodes']); |
|
115 | - } |
|
116 | - } |
|
117 | - |
|
118 | - /** |
|
119 | - * @param IUser $user |
|
120 | - * @return bool |
|
121 | - */ |
|
122 | - public function hasBackupCodes(IUser $user) { |
|
123 | - $codes = $this->mapper->getBackupCodes($user); |
|
124 | - return count($codes) > 0; |
|
125 | - } |
|
126 | - |
|
127 | - /** |
|
128 | - * @param IUser $user |
|
129 | - * @return array |
|
130 | - */ |
|
131 | - public function getBackupCodesState(IUser $user) { |
|
132 | - $codes = $this->mapper->getBackupCodes($user); |
|
133 | - $total = count($codes); |
|
134 | - $used = 0; |
|
135 | - array_walk($codes, function (BackupCode $code) use (&$used) { |
|
136 | - if (1 === (int) $code->getUsed()) { |
|
137 | - $used++; |
|
138 | - } |
|
139 | - }); |
|
140 | - return [ |
|
141 | - 'enabled' => $total > 0, |
|
142 | - 'total' => $total, |
|
143 | - 'used' => $used, |
|
144 | - ]; |
|
145 | - } |
|
146 | - |
|
147 | - /** |
|
148 | - * @param IUser $user |
|
149 | - * @param string $code |
|
150 | - * @return bool |
|
151 | - */ |
|
152 | - public function validateCode(IUser $user, $code) { |
|
153 | - $dbCodes = $this->mapper->getBackupCodes($user); |
|
154 | - |
|
155 | - foreach ($dbCodes as $dbCode) { |
|
156 | - if (0 === (int) $dbCode->getUsed() && $this->hasher->verify($code, $dbCode->getCode())) { |
|
157 | - $dbCode->setUsed(1); |
|
158 | - $this->mapper->update($dbCode); |
|
159 | - return true; |
|
160 | - } |
|
161 | - } |
|
162 | - return false; |
|
163 | - } |
|
36 | + private static $CODE_LENGTH = 16; |
|
37 | + |
|
38 | + /** @var BackupCodeMapper */ |
|
39 | + private $mapper; |
|
40 | + |
|
41 | + /** @var IHasher */ |
|
42 | + private $hasher; |
|
43 | + |
|
44 | + /** @var ISecureRandom */ |
|
45 | + private $random; |
|
46 | + |
|
47 | + /** @var IManager */ |
|
48 | + private $activityManager; |
|
49 | + |
|
50 | + /** @var ILogger */ |
|
51 | + private $logger; |
|
52 | + |
|
53 | + /** |
|
54 | + * @param BackupCodeMapper $mapper |
|
55 | + * @param ISecureRandom $random |
|
56 | + * @param IHasher $hasher |
|
57 | + * @param IManager $activityManager |
|
58 | + * @param ILogger $logger |
|
59 | + */ |
|
60 | + public function __construct(BackupCodeMapper $mapper, ISecureRandom $random, IHasher $hasher, |
|
61 | + IManager $activityManager, ILogger $logger) { |
|
62 | + $this->mapper = $mapper; |
|
63 | + $this->hasher = $hasher; |
|
64 | + $this->random = $random; |
|
65 | + $this->activityManager = $activityManager; |
|
66 | + $this->logger = $logger; |
|
67 | + } |
|
68 | + |
|
69 | + /** |
|
70 | + * @param IUser $user |
|
71 | + * @return string[] |
|
72 | + */ |
|
73 | + public function createCodes(IUser $user, $number = 10) { |
|
74 | + $result = []; |
|
75 | + |
|
76 | + // Delete existing ones |
|
77 | + $this->mapper->deleteCodes($user); |
|
78 | + |
|
79 | + $uid = $user->getUID(); |
|
80 | + foreach (range(1, min([$number, 20])) as $i) { |
|
81 | + $code = $this->random->generate(self::$CODE_LENGTH, ISecureRandom::CHAR_UPPER . ISecureRandom::CHAR_DIGITS); |
|
82 | + |
|
83 | + $dbCode = new BackupCode(); |
|
84 | + $dbCode->setUserId($uid); |
|
85 | + $dbCode->setCode($this->hasher->hash($code)); |
|
86 | + $dbCode->setUsed(0); |
|
87 | + $this->mapper->insert($dbCode); |
|
88 | + |
|
89 | + array_push($result, $code); |
|
90 | + } |
|
91 | + |
|
92 | + $this->publishEvent($user, 'codes_generated'); |
|
93 | + |
|
94 | + return $result; |
|
95 | + } |
|
96 | + |
|
97 | + /** |
|
98 | + * Push an event the user's activity stream |
|
99 | + * |
|
100 | + * @param IUser $user |
|
101 | + * @param string $event |
|
102 | + */ |
|
103 | + private function publishEvent(IUser $user, $event) { |
|
104 | + $activity = $this->activityManager->generateEvent(); |
|
105 | + $activity->setApp('twofactor_backupcodes') |
|
106 | + ->setType('security') |
|
107 | + ->setAuthor($user->getUID()) |
|
108 | + ->setAffectedUser($user->getUID()) |
|
109 | + ->setSubject($event); |
|
110 | + try { |
|
111 | + $this->activityManager->publish($activity); |
|
112 | + } catch (BadMethodCallException $e) { |
|
113 | + $this->logger->warning('could not publish backup code creation activity', ['app' => 'twofactor_backupcodes']); |
|
114 | + $this->logger->logException($e, ['app' => 'twofactor_backupcodes']); |
|
115 | + } |
|
116 | + } |
|
117 | + |
|
118 | + /** |
|
119 | + * @param IUser $user |
|
120 | + * @return bool |
|
121 | + */ |
|
122 | + public function hasBackupCodes(IUser $user) { |
|
123 | + $codes = $this->mapper->getBackupCodes($user); |
|
124 | + return count($codes) > 0; |
|
125 | + } |
|
126 | + |
|
127 | + /** |
|
128 | + * @param IUser $user |
|
129 | + * @return array |
|
130 | + */ |
|
131 | + public function getBackupCodesState(IUser $user) { |
|
132 | + $codes = $this->mapper->getBackupCodes($user); |
|
133 | + $total = count($codes); |
|
134 | + $used = 0; |
|
135 | + array_walk($codes, function (BackupCode $code) use (&$used) { |
|
136 | + if (1 === (int) $code->getUsed()) { |
|
137 | + $used++; |
|
138 | + } |
|
139 | + }); |
|
140 | + return [ |
|
141 | + 'enabled' => $total > 0, |
|
142 | + 'total' => $total, |
|
143 | + 'used' => $used, |
|
144 | + ]; |
|
145 | + } |
|
146 | + |
|
147 | + /** |
|
148 | + * @param IUser $user |
|
149 | + * @param string $code |
|
150 | + * @return bool |
|
151 | + */ |
|
152 | + public function validateCode(IUser $user, $code) { |
|
153 | + $dbCodes = $this->mapper->getBackupCodes($user); |
|
154 | + |
|
155 | + foreach ($dbCodes as $dbCode) { |
|
156 | + if (0 === (int) $dbCode->getUsed() && $this->hasher->verify($code, $dbCode->getCode())) { |
|
157 | + $dbCode->setUsed(1); |
|
158 | + $this->mapper->update($dbCode); |
|
159 | + return true; |
|
160 | + } |
|
161 | + } |
|
162 | + return false; |
|
163 | + } |
|
164 | 164 | |
165 | 165 | } |
@@ -30,46 +30,46 @@ |
||
30 | 30 | |
31 | 31 | class SettingsController extends Controller { |
32 | 32 | |
33 | - /** @var BackupCodeStorage */ |
|
34 | - private $storage; |
|
33 | + /** @var BackupCodeStorage */ |
|
34 | + private $storage; |
|
35 | 35 | |
36 | - /** @var IUserSession */ |
|
37 | - private $userSession; |
|
36 | + /** @var IUserSession */ |
|
37 | + private $userSession; |
|
38 | 38 | |
39 | - /** |
|
40 | - * @param string $appName |
|
41 | - * @param IRequest $request |
|
42 | - * @param BackupCodeStorage $storage |
|
43 | - * @param IUserSession $userSession |
|
44 | - */ |
|
45 | - public function __construct($appName, IRequest $request, BackupCodeStorage $storage, IUserSession $userSession) { |
|
46 | - parent::__construct($appName, $request); |
|
47 | - $this->userSession = $userSession; |
|
48 | - $this->storage = $storage; |
|
49 | - } |
|
39 | + /** |
|
40 | + * @param string $appName |
|
41 | + * @param IRequest $request |
|
42 | + * @param BackupCodeStorage $storage |
|
43 | + * @param IUserSession $userSession |
|
44 | + */ |
|
45 | + public function __construct($appName, IRequest $request, BackupCodeStorage $storage, IUserSession $userSession) { |
|
46 | + parent::__construct($appName, $request); |
|
47 | + $this->userSession = $userSession; |
|
48 | + $this->storage = $storage; |
|
49 | + } |
|
50 | 50 | |
51 | - /** |
|
52 | - * @NoAdminRequired |
|
53 | - * @return JSONResponse |
|
54 | - */ |
|
55 | - public function state() { |
|
56 | - $user = $this->userSession->getUser(); |
|
57 | - return $this->storage->getBackupCodesState($user); |
|
58 | - } |
|
51 | + /** |
|
52 | + * @NoAdminRequired |
|
53 | + * @return JSONResponse |
|
54 | + */ |
|
55 | + public function state() { |
|
56 | + $user = $this->userSession->getUser(); |
|
57 | + return $this->storage->getBackupCodesState($user); |
|
58 | + } |
|
59 | 59 | |
60 | - /** |
|
61 | - * @NoAdminRequired |
|
62 | - * @PasswordConfirmationRequired |
|
63 | - * |
|
64 | - * @return JSONResponse |
|
65 | - */ |
|
66 | - public function createCodes() { |
|
67 | - $user = $this->userSession->getUser(); |
|
68 | - $codes = $this->storage->createCodes($user); |
|
69 | - return new JSONResponse([ |
|
70 | - 'codes' => $codes, |
|
71 | - 'state' => $this->storage->getBackupCodesState($user), |
|
72 | - ]); |
|
73 | - } |
|
60 | + /** |
|
61 | + * @NoAdminRequired |
|
62 | + * @PasswordConfirmationRequired |
|
63 | + * |
|
64 | + * @return JSONResponse |
|
65 | + */ |
|
66 | + public function createCodes() { |
|
67 | + $user = $this->userSession->getUser(); |
|
68 | + $codes = $this->storage->createCodes($user); |
|
69 | + return new JSONResponse([ |
|
70 | + 'codes' => $codes, |
|
71 | + 'state' => $this->storage->getBackupCodesState($user), |
|
72 | + ]); |
|
73 | + } |
|
74 | 74 | |
75 | 75 | } |
@@ -47,7 +47,7 @@ |
||
47 | 47 | $rows = $result->fetchAll(); |
48 | 48 | $result->closeCursor(); |
49 | 49 | |
50 | - return array_map(function ($row) { |
|
50 | + return array_map(function($row) { |
|
51 | 51 | return BackupCode::fromRow($row); |
52 | 52 | }, $rows); |
53 | 53 | } |
@@ -28,48 +28,48 @@ |
||
28 | 28 | |
29 | 29 | class BackupCodeMapper extends Mapper { |
30 | 30 | |
31 | - public function __construct(IDBConnection $db) { |
|
32 | - parent::__construct($db, 'twofactor_backupcodes'); |
|
33 | - } |
|
31 | + public function __construct(IDBConnection $db) { |
|
32 | + parent::__construct($db, 'twofactor_backupcodes'); |
|
33 | + } |
|
34 | 34 | |
35 | - /** |
|
36 | - * @param IUser $user |
|
37 | - * @return BackupCode[] |
|
38 | - */ |
|
39 | - public function getBackupCodes(IUser $user) { |
|
40 | - /* @var IQueryBuilder $qb */ |
|
41 | - $qb = $this->db->getQueryBuilder(); |
|
35 | + /** |
|
36 | + * @param IUser $user |
|
37 | + * @return BackupCode[] |
|
38 | + */ |
|
39 | + public function getBackupCodes(IUser $user) { |
|
40 | + /* @var IQueryBuilder $qb */ |
|
41 | + $qb = $this->db->getQueryBuilder(); |
|
42 | 42 | |
43 | - $qb->select('id', 'user_id', 'code', 'used') |
|
44 | - ->from('twofactor_backupcodes') |
|
45 | - ->where($qb->expr()->eq('user_id', $qb->createNamedParameter($user->getUID()))); |
|
46 | - $result = $qb->execute(); |
|
43 | + $qb->select('id', 'user_id', 'code', 'used') |
|
44 | + ->from('twofactor_backupcodes') |
|
45 | + ->where($qb->expr()->eq('user_id', $qb->createNamedParameter($user->getUID()))); |
|
46 | + $result = $qb->execute(); |
|
47 | 47 | |
48 | - $rows = $result->fetchAll(); |
|
49 | - $result->closeCursor(); |
|
48 | + $rows = $result->fetchAll(); |
|
49 | + $result->closeCursor(); |
|
50 | 50 | |
51 | - return array_map(function ($row) { |
|
52 | - return BackupCode::fromRow($row); |
|
53 | - }, $rows); |
|
54 | - } |
|
51 | + return array_map(function ($row) { |
|
52 | + return BackupCode::fromRow($row); |
|
53 | + }, $rows); |
|
54 | + } |
|
55 | 55 | |
56 | - /** |
|
57 | - * @param IUser $user |
|
58 | - */ |
|
59 | - public function deleteCodes(IUser $user) { |
|
60 | - $this->deleteCodesByUserId($user->getUID()); |
|
61 | - } |
|
56 | + /** |
|
57 | + * @param IUser $user |
|
58 | + */ |
|
59 | + public function deleteCodes(IUser $user) { |
|
60 | + $this->deleteCodesByUserId($user->getUID()); |
|
61 | + } |
|
62 | 62 | |
63 | - /** |
|
64 | - * @param string $uid |
|
65 | - */ |
|
66 | - public function deleteCodesByUserId($uid) { |
|
67 | - /* @var IQueryBuilder $qb */ |
|
68 | - $qb = $this->db->getQueryBuilder(); |
|
63 | + /** |
|
64 | + * @param string $uid |
|
65 | + */ |
|
66 | + public function deleteCodesByUserId($uid) { |
|
67 | + /* @var IQueryBuilder $qb */ |
|
68 | + $qb = $this->db->getQueryBuilder(); |
|
69 | 69 | |
70 | - $qb->delete('twofactor_backupcodes') |
|
71 | - ->where($qb->expr()->eq('user_id', $qb->createNamedParameter($uid))); |
|
72 | - $qb->execute(); |
|
73 | - } |
|
70 | + $qb->delete('twofactor_backupcodes') |
|
71 | + ->where($qb->expr()->eq('user_id', $qb->createNamedParameter($uid))); |
|
72 | + $qb->execute(); |
|
73 | + } |
|
74 | 74 | |
75 | 75 | } |
@@ -34,13 +34,13 @@ |
||
34 | 34 | */ |
35 | 35 | class BackupCode extends Entity { |
36 | 36 | |
37 | - /** @var string */ |
|
38 | - protected $userId; |
|
37 | + /** @var string */ |
|
38 | + protected $userId; |
|
39 | 39 | |
40 | - /** @var string */ |
|
41 | - protected $code; |
|
40 | + /** @var string */ |
|
41 | + protected $code; |
|
42 | 42 | |
43 | - /** @var int */ |
|
44 | - protected $used; |
|
43 | + /** @var int */ |
|
44 | + protected $used; |
|
45 | 45 | |
46 | 46 | } |