| Conditions | 8 |
| Paths | 24 |
| Total Lines | 70 |
| Code Lines | 47 |
| Lines | 0 |
| Ratio | 0 % |
| Changes | 7 | ||
| Bugs | 0 | Features | 0 |
Small methods make your code easier to understand, in particular if combined with a good name. Besides, if your method is small, finding a good name is usually much easier.
For example, if you find yourself adding comments to a method's body, this is usually a good sign to extract the commented part to a new method, and use the comment as a starting point when coming up with a good name for this new method.
Commonly applied refactorings include:
If many parameters/temporary variables are present:
| 1 | <?php |
||
| 94 | public function main(/** @scrutinizer ignore-unused */ Request $request): RunnableResponse |
||
| 95 | { |
||
| 96 | $moduleConfig = Configuration::getOptionalConfig('module_webauthn.php'); |
||
| 97 | $registrationConfig = $moduleConfig->getArray('registration'); |
||
| 98 | $registrationAuthSource = $registrationConfig['auth_source'] ?? 'default-sp'; |
||
| 99 | |||
| 100 | $state = []; |
||
| 101 | $state['SPMetadata']['entityid'] = "WEBAUTHN-SP-REGISTRATION"; |
||
| 102 | |||
| 103 | $authSimple = $this->authSimple; |
||
| 104 | $as = new $authSimple($registrationAuthSource); |
||
| 105 | $as->requireAuth(); |
||
| 106 | $attrs = $as->getAttributes(); |
||
| 107 | |||
| 108 | $state['Attributes'] = $attrs; |
||
| 109 | |||
| 110 | $stateData = new StateData(); |
||
| 111 | // phpcs:disable Generic.Files.LineLength.TooLong |
||
| 112 | $stateData->requestTokenModel = ($registrationConfig['policy_2fa']['minimum_certification_level'] == WebAuthnRegistrationEvent::CERTIFICATION_NOT_REQUIRED ? false : true); |
||
| 113 | $stateData->minCertLevel2FA = $registrationConfig['policy_2fa']['minimum_certification_level']; |
||
| 114 | $stateData->aaguidWhitelist2FA = $registrationConfig['policy_2fa']['aaguid_whitelist'] ?? []; |
||
| 115 | $stateData->attFmtWhitelist2FA = $registrationConfig['policy_2fa']['attestation_format_whitelist'] ?? []; |
||
| 116 | $stateData->minCertLevelPasswordless = $registrationConfig['policy_passwordless']['minimum_certification_level']; |
||
| 117 | $stateData->aaguidWhitelistPasswordless = $registrationConfig['policy_passwordless']['aaguid_whitelist'] ?? []; |
||
| 118 | $stateData->attFmtWhitelistPasswordless = $registrationConfig['policy_passwordless']['attestation_format_whitelist'] ?? []; |
||
| 119 | // phpcs:enable Generic.Files.LineLength.TooLong |
||
| 120 | |||
| 121 | try { |
||
| 122 | $stateData->store = Store::parseStoreConfig($moduleConfig->getArray('store')); |
||
| 123 | } catch (Exception $e) { |
||
| 124 | $this->logger::error( |
||
| 125 | 'webauthn: Could not create storage: ' . $e->getMessage(), |
||
| 126 | ); |
||
| 127 | } |
||
| 128 | |||
| 129 | $stateData->scope = $moduleConfig->getOptionalString('scope', null); |
||
| 130 | $httpUtils = new Utils\HTTP(); |
||
| 131 | $baseurl = $httpUtils->getSelfHost(); |
||
| 132 | $hostname = parse_url($baseurl, PHP_URL_HOST); |
||
| 133 | if ($hostname !== null) { |
||
| 134 | $stateData->derivedScope = $hostname; |
||
| 135 | } |
||
| 136 | $stateData->usernameAttrib = $moduleConfig->getString('identifyingAttribute'); |
||
| 137 | $stateData->displaynameAttrib = $moduleConfig->getString('attrib_displayname'); |
||
| 138 | |||
| 139 | StaticProcessHelper::prepareState($stateData, $state); |
||
| 140 | |||
| 141 | $metadataHandler = MetaDataStorageHandler::getMetadataHandler(); |
||
| 142 | $metadata = $metadataHandler->getMetaDataCurrent('saml20-idp-hosted'); |
||
| 143 | $state['Source'] = $metadata; |
||
| 144 | $state['IdPMetadata'] = $metadata; |
||
| 145 | // inflow users are not allowed to enter the Registration page. If they |
||
| 146 | // did, kill the session |
||
| 147 | $moduleConfig = Configuration::getOptionalConfig('module_webauthn.php')->toArray(); |
||
| 148 | |||
| 149 | if ($moduleConfig['registration']['use_inflow_registration']) { |
||
| 150 | throw new Exception("Attempt to access the stand-alone registration page in inflow mode!"); |
||
| 151 | } |
||
| 152 | |||
| 153 | $state['Registration'] = true; |
||
| 154 | $state['FIDO2WantsRegister'] = true; |
||
| 155 | if ( |
||
| 156 | isset($state['Attributes']['FIDO2AuthSuccessful']) |
||
| 157 | && is_array($state['Attributes']['FIDO2AuthSuccessful']) |
||
| 158 | && count($state['Attributes']['FIDO2AuthSuccessful']) > 0 |
||
| 159 | ) { |
||
| 160 | $state['FIDO2AuthSuccessful'] = $state['Attributes']['FIDO2AuthSuccessful'][0]; |
||
| 161 | } |
||
| 162 | |||
| 163 | return new RunnableResponse([StaticProcessHelper::class, 'saveStateAndRedirect'], [&$state]); |
||
| 164 | } |
||
| 166 |