Wsse::authenticate()   A
last analyzed

Complexity

Conditions 1
Paths 1

Size

Total Lines 18
Code Lines 12

Duplication

Lines 0
Ratio 0 %

Code Coverage

Tests 12
CRAP Score 1

Importance

Changes 1
Bugs 0 Features 0
Metric Value
cc 1
eloc 12
nc 1
nop 1
dl 0
loc 18
ccs 12
cts 12
cp 1
crap 1
rs 9.8666
c 1
b 0
f 0
1
<?php
2
3
namespace Http\Message\Authentication;
4
5
use Http\Message\Authentication;
6
use Psr\Http\Message\RequestInterface;
7
8
/**
9
 * Authenticate a PSR-7 Request using WSSE.
10
 *
11
 * @author Márk Sági-Kazár <[email protected]>
12
 */
13
final class Wsse implements Authentication
14
{
15
    /**
16
     * @var string
17
     */
18
    private $username;
19
20
    /**
21
     * @var string
22
     */
23
    private $password;
24
25
    /**
26
     * @param string $username
27
     * @param string $password
28
     */
29 3
    public function __construct($username, $password)
30
    {
31 3
        $this->username = $username;
32 3
        $this->password = $password;
33 3
    }
34
35
    /**
36
     * {@inheritdoc}
37
     */
38 1
    public function authenticate(RequestInterface $request)
39
    {
40
        // TODO: generate better nonce?
41 1
        $nonce = substr(md5(uniqid(uniqid().'_', true)), 0, 16);
42 1
        $created = date('c');
43 1
        $digest = base64_encode(sha1(base64_decode($nonce).$created.$this->password, true));
44
45 1
        $wsse = sprintf(
46 1
            'UsernameToken Username="%s", PasswordDigest="%s", Nonce="%s", Created="%s"',
47 1
            $this->username,
48 1
            $digest,
49 1
            $nonce,
50 1
            $created
51
        );
52
53
        return $request
54 1
            ->withHeader('Authorization', 'WSSE profile="UsernameToken"')
55 1
            ->withHeader('X-WSSE', $wsse)
56
        ;
57
    }
58
}
59