Passed
Push — main ( e591c1...2428da )
by Jean-Christophe
02:42
created

AclManager   A

Complexity

Total Complexity 7

Size/Duplication

Total Lines 62
Duplicated Lines 0 %

Test Coverage

Coverage 100%

Importance

Changes 1
Bugs 0 Features 1
Metric Value
eloc 14
dl 0
loc 62
ccs 25
cts 25
cp 1
rs 10
c 1
b 0
f 1
wmc 7

7 Methods

Rating   Name   Duplication   Size   Complexity  
A start() 0 3 1
A isAllowed() 0 2 1
A addRole() 0 2 1
A initFromProviders() 0 6 1
A allow() 0 2 1
A addResource() 0 2 1
A addPermission() 0 2 1
1
<?php
2
namespace Ubiquity\security\acl;
3
4
use Ubiquity\security\acl\models\AclList;
5
use Ubiquity\security\acl\models\Role;
6
use Ubiquity\security\acl\models\Resource;
7
use Ubiquity\security\acl\models\Permission;
8
use Ubiquity\security\acl\models\AclElement;
9
use Ubiquity\security\acl\persistence\AclProviderInterface;
10
11
/**
12
 * Ubiquity\security\acl$AclManager
13
 * This class is part of Ubiquity
14
 *
15
 * @author jc
16
 * @version 1.0.0
17
 *
18
 */
19
class AclManager {
20
21
	/**
22
	 *
23
	 * @var AclList
24
	 */
25
	protected static $aclList;
26
27
	/**
28
	 * Create AclList with default roles and resources.
29
	 */
30 7
	public static function start(): void {
31 7
		self::$aclList = new AclList();
32 7
		self::$aclList->init();
33 7
	}
34
35
	/**
36
	 * Load acls, roles, resources and permissions from providers.
37
	 *
38
	 * @param AclProviderInterface[] $providers
39
	 */
40 1
	public static function initFromProviders(?array $providers = []): void {
41 1
		self::$aclList->setProviders($providers);
42 1
		self::$aclList->loadAcls();
43 1
		self::$aclList->loadRoles();
44 1
		self::$aclList->loadResources();
45 1
		self::$aclList->loadPermissions();
46 1
	}
47
48 2
	public static function addRole(string $name, ?array $parents = []) {
49 2
		self::$aclList->addRole(new Role($name, $parents));
50 2
	}
51
52 3
	public static function addResource(string $name, ?string $value = null) {
53 3
		self::$aclList->addResource(new Resource($name, $value));
54 3
	}
55
56 2
	public static function addPermission(string $name, int $level = 0) {
57 2
		self::$aclList->addPermission(new Permission($name, $level));
58 2
	}
59
60
	/**
61
	 * Allow role to access to resource with the permission.
62
	 *
63
	 * @param string $role
64
	 * @param string $resource
65
	 * @param string $permission
66
	 */
67 3
	public static function allow(string $role, ?string $resource = '*', ?string $permission = 'ALL') {
68 3
		self::$aclList->allow($role, $resource ?? '*', $permission ?? 'ALL');
69 3
	}
70
71
	/**
72
	 * Check if access to resource is allowed for role with the permission.
73
	 *
74
	 * @param string $role
75
	 * @param string $resource
76
	 * @param string $permission
77
	 * @return bool
78
	 */
79 7
	public static function isAllowed(string $role, ?string $resource = '*', ?string $permission = 'ALL'): bool {
80 7
		return self::$aclList->isAllowed($role, $resource ?? '*', $permission ?? 'ALL');
81
	}
82
}
83
84