File: registry.edit.php

package info (click to toggle)
simplesamlphp 1.19.7-2
  • links: PTS, VCS
  • area: main
  • in suites: sid
  • size: 42,920 kB
  • sloc: php: 202,044; javascript: 14,867; xml: 2,700; sh: 225; perl: 82; makefile: 70; python: 5
file content (61 lines) | stat: -rw-r--r-- 2,026 bytes parent folder | download | duplicates (3)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
<?php

// Load SimpleSAMLphp, configuration and metadata
$config = \SimpleSAML\Configuration::getInstance();
$session = \SimpleSAML\Session::getSessionFromRequest();
$oauthconfig = \SimpleSAML\Configuration::getOptionalConfig('module_oauth.php');

$store = new \SimpleSAML\Module\core\Storage\SQLPermanentStorage('oauth');

$authsource = "admin"; // force admin to authenticate as registry maintainer
$useridattr = $oauthconfig->getValue('useridattr', 'user');

if ($session->isValid($authsource)) {
    $attributes = $session->getAuthData($authsource, 'Attributes');
    // Check if userid exists
    if (!isset($attributes[$useridattr])) {
        throw new \Exception('User ID is missing');
    }
    $userid = $attributes[$useridattr][0];
} else {
    $as = \SimpleSAML\Auth\Source::getById($authsource);
    if (!is_null($as)) {
        $as->initLogin(\SimpleSAML\Utils\HTTP::getSelfURL());
    }
    throw new \Exception('Invalid authentication source: '.$authsource);
}

if (array_key_exists('editkey', $_REQUEST)) {
    $entryc = $store->get('consumers', $_REQUEST['editkey'], '');
    $entry = $entryc['value'];
    \SimpleSAML\Module\oauth\Registry::requireOwnership($entry, $userid);
} else {
    $entry = [
        'owner' => $userid,
        'key' => \SimpleSAML\Utils\Random::generateID(),
        'secret' => \SimpleSAML\Utils\Random::generateID(),
    ];
}

$editor = new \SimpleSAML\Module\oauth\Registry();

if (isset($_POST['submit'])) {
    $editor->checkForm($_POST);

    $entry = $editor->formToMeta($_POST, [], ['owner' => $userid]);

    \SimpleSAML\Module\oauth\Registry::requireOwnership($entry, $userid);

    $store->set('consumers', $entry['key'], '', $entry);

    $template = new \SimpleSAML\XHTML\Template($config, 'oauth:registry.saved.php');
    $template->data['entry'] = $entry;
    $template->show();
    exit;
}

$form = $editor->metaToForm($entry);

$template = new \SimpleSAML\XHTML\Template($config, 'oauth:registry.edit.tpl.php');
$template->data['form'] = $form;
$template->show();