File: ExtendIdPSession.php

package info (click to toggle)
simplesamlphp 1.14.11-1%2Bdeb9u2
  • links: PTS, VCS
  • area: main
  • in suites: stretch
  • size: 15,024 kB
  • sloc: php: 72,337; xml: 1,078; python: 376; sh: 220; perl: 185; makefile: 57
file content (47 lines) | stat: -rw-r--r-- 1,315 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
<?php

/**
 * Extend IdP session and cookies.
*/
class sspmod_core_Auth_Process_ExtendIdPSession extends SimpleSAML_Auth_ProcessingFilter {

	public function process(&$state) {
		assert('is_array($state)');

		if (empty($state['Expire']) || empty($state['Authority'])) {
			return;
		}

		$now = time();
		$delta = $state['Expire'] - $now;

		$globalConfig = SimpleSAML_Configuration::getInstance();
		$sessionDuration = $globalConfig->getInteger('session.duration', 8*60*60);

		// Extend only if half of session duration already passed
		if ($delta >= ($sessionDuration * 0.5)) {
			return;
		}

		// Update authority expire time
		$session = SimpleSAML_Session::getSessionFromRequest();
		$session->setAuthorityExpire($state['Authority']);

		/* Update session cookies duration */

		/* If remember me is active */
		$rememberMeExpire = $session->getRememberMeExpire();
		if (!empty($state['RememberMe']) && $rememberMeExpire !== NULL && $globalConfig->getBoolean('session.rememberme.enable', FALSE)) {
			$session->setRememberMeExpire();
			return;
		}

		/* Or if session lifetime is more than zero */
		$sessionHandler = SimpleSAML_SessionHandler::getSessionHandler();
		$cookieParams = $sessionHandler->getCookieParams();
		if ($cookieParams['lifetime'] > 0) {
			$session->updateSessionCookies();
		}
	}

}