Passed
Push — main ( e591c1...2428da )
by Jean-Christophe
02:42
created

AclManager::initFromProviders()   A

Complexity

Conditions 1
Paths 1

Size

Total Lines 6
Code Lines 5

Duplication

Lines 0
Ratio 0 %

Code Coverage

Tests 6
CRAP Score 1

Importance

Changes 0
Metric Value
cc 1
eloc 5
nc 1
nop 1
dl 0
loc 6
ccs 6
cts 6
cp 1
crap 1
rs 10
c 0
b 0
f 0
1
<?php
2
namespace Ubiquity\security\acl;
3
4
use Ubiquity\security\acl\models\AclList;
5
use Ubiquity\security\acl\models\Role;
6
use Ubiquity\security\acl\models\Resource;
7
use Ubiquity\security\acl\models\Permission;
8
use Ubiquity\security\acl\models\AclElement;
9
use Ubiquity\security\acl\persistence\AclProviderInterface;
10
11
/**
12
 * Ubiquity\security\acl$AclManager
13
 * This class is part of Ubiquity
14
 *
15
 * @author jc
16
 * @version 1.0.0
17
 *
18
 */
19
class AclManager {
20
21
	/**
22
	 *
23
	 * @var AclList
24
	 */
25
	protected static $aclList;
26
27
	/**
28
	 * Create AclList with default roles and resources.
29
	 */
30 7
	public static function start(): void {
31 7
		self::$aclList = new AclList();
32 7
		self::$aclList->init();
33 7
	}
34
35
	/**
36
	 * Load acls, roles, resources and permissions from providers.
37
	 *
38
	 * @param AclProviderInterface[] $providers
39
	 */
40 1
	public static function initFromProviders(?array $providers = []): void {
41 1
		self::$aclList->setProviders($providers);
42 1
		self::$aclList->loadAcls();
43 1
		self::$aclList->loadRoles();
44 1
		self::$aclList->loadResources();
45 1
		self::$aclList->loadPermissions();
46 1
	}
47
48 2
	public static function addRole(string $name, ?array $parents = []) {
49 2
		self::$aclList->addRole(new Role($name, $parents));
50 2
	}
51
52 3
	public static function addResource(string $name, ?string $value = null) {
53 3
		self::$aclList->addResource(new Resource($name, $value));
54 3
	}
55
56 2
	public static function addPermission(string $name, int $level = 0) {
57 2
		self::$aclList->addPermission(new Permission($name, $level));
58 2
	}
59
60
	/**
61
	 * Allow role to access to resource with the permission.
62
	 *
63
	 * @param string $role
64
	 * @param string $resource
65
	 * @param string $permission
66
	 */
67 3
	public static function allow(string $role, ?string $resource = '*', ?string $permission = 'ALL') {
68 3
		self::$aclList->allow($role, $resource ?? '*', $permission ?? 'ALL');
69 3
	}
70
71
	/**
72
	 * Check if access to resource is allowed for role with the permission.
73
	 *
74
	 * @param string $role
75
	 * @param string $resource
76
	 * @param string $permission
77
	 * @return bool
78
	 */
79 7
	public static function isAllowed(string $role, ?string $resource = '*', ?string $permission = 'ALL'): bool {
80 7
		return self::$aclList->isAllowed($role, $resource ?? '*', $permission ?? 'ALL');
81
	}
82
}
83
84