Passed
Push — develop ( 7714f7...f140eb )
by nguereza
01:47
created

createAuthorizationResponse()   A

Complexity

Conditions 1
Paths 1

Size

Total Lines 6
Code Lines 1

Duplication

Lines 0
Ratio 0 %

Importance

Changes 1
Bugs 0 Features 0
Metric Value
cc 1
eloc 1
c 1
b 0
f 0
nc 1
nop 3
dl 0
loc 6
rs 10
1
<?php
2
3
/**
4
 * Platine OAuth2
5
 *
6
 * Platine OAuth2 is a library that implements the OAuth2 specification
7
 *
8
 * This content is released under the MIT License (MIT)
9
 *
10
 * Copyright (c) 2020 Platine OAuth2
11
 *
12
 * Permission is hereby granted, free of charge, to any person obtaining a copy
13
 * of this software and associated documentation files (the "Software"), to deal
14
 * in the Software without restriction, including without limitation the rights
15
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
16
 * copies of the Software, and to permit persons to whom the Software is
17
 * furnished to do so, subject to the following conditions:
18
 *
19
 * The above copyright notice and this permission notice shall be included in all
20
 * copies or substantial portions of the Software.
21
 *
22
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
23
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
24
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
25
 * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
26
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
27
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
28
 * SOFTWARE.
29
 */
30
31
declare(strict_types=1);
32
33
namespace Platine\OAuth2\Grant;
34
35
use Platine\Http\ResponseInterface;
36
use Platine\Http\ServerRequestInterface;
37
use Platine\OAuth2\Entity\Client;
38
use Platine\OAuth2\Entity\TokenOwnerInterface;
39
use Platine\OAuth2\Exception\OAuth2Exception;
40
use Platine\OAuth2\Service\AccessTokenService;
41
42
/**
43
 * This is the most easy grant. It can creates an access token only by authenticating the client
44
 *
45
 * @class ClientCredentialsGrant
46
 * @package Platine\OAuth2\Grant
47
 */
48
class ClientCredentialsGrant extends BaseGrant
49
{
50
    public const GRANT_TYPE = 'client_credentials';
51
    public const GRANT_RESPONSE_TYPE = '';
52
53
    /**
54
     * The AccessTokenService
55
     * @var AccessTokenService
56
     */
57
    protected AccessTokenService $accessTokenService;
58
59
    /**
60
     * Create new instance
61
     * @param AccessTokenService $accessTokenService
62
     */
63
    public function __construct(
64
        AccessTokenService $accessTokenService
65
    ) {
66
        $this->accessTokenService = $accessTokenService;
67
    }
68
69
        /**
70
     * {@inheritdoc}
71
     */
72
    public function createAuthorizationResponse(
73
        ServerRequestInterface $request,
74
        Client $client,
75
        ?TokenOwnerInterface $owner = null
76
    ): ResponseInterface {
77
        throw OAuth2Exception::invalidRequest('Client credentials grant does not support authorization');
78
    }
79
80
    /**
81
     * {@inheritdoc}
82
     */
83
    public function createTokenResponse(
84
        ServerRequestInterface $request,
85
        ?Client $client = null,
86
        ?TokenOwnerInterface $owner = null
87
    ): ResponseInterface {
88
        $postParams = (array) $request->getParsedBody();
89
        $scope = $postParams['scope'] ?? null;
90
        $scopes = is_string($scope) ? explode(' ', $scope) : [];
91
92
        $accessToken = $this->accessTokenService->createToken($owner, $client, $scopes);
93
94
        return $this->generateTokenResponse($accessToken);
95
    }
96
97
98
    /**
99
     * {@inheritdoc}
100
     */
101
    public function allowPublicClients(): bool
102
    {
103
        return false;
104
    }
105
}
106