2022-03-15 18:00:53 +00:00
|
|
|
// (c) Copyright Ascensio System SIA 2010-2022
|
|
|
|
//
|
|
|
|
// This program is a free software product.
|
|
|
|
// You can redistribute it and/or modify it under the terms
|
|
|
|
// of the GNU Affero General Public License (AGPL) version 3 as published by the Free Software
|
|
|
|
// Foundation. In accordance with Section 7(a) of the GNU AGPL its Section 15 shall be amended
|
|
|
|
// to the effect that Ascensio System SIA expressly excludes the warranty of non-infringement of
|
|
|
|
// any third-party rights.
|
|
|
|
//
|
|
|
|
// This program is distributed WITHOUT ANY WARRANTY, without even the implied warranty
|
|
|
|
// of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. For details, see
|
|
|
|
// the GNU AGPL at: http://www.gnu.org/licenses/agpl-3.0.html
|
|
|
|
//
|
|
|
|
// You can contact Ascensio System SIA at Lubanas st. 125a-25, Riga, Latvia, EU, LV-1021.
|
|
|
|
//
|
|
|
|
// The interactive user interfaces in modified source and object code versions of the Program must
|
|
|
|
// display Appropriate Legal Notices, as required under Section 5 of the GNU AGPL version 3.
|
|
|
|
//
|
|
|
|
// Pursuant to Section 7(b) of the License you must retain the original Product logo when
|
|
|
|
// distributing the program. Pursuant to Section 7(e) we decline to grant you any rights under
|
|
|
|
// trademark law for use of our trademarks.
|
|
|
|
//
|
|
|
|
// All the Product's GUI elements, including illustrations and icon sets, as well as technical writing
|
|
|
|
// content are licensed under the terms of the Creative Commons Attribution-ShareAlike 4.0
|
|
|
|
// International. See the License terms at http://creativecommons.org/licenses/by-sa/4.0/legalcode
|
|
|
|
|
2022-02-10 16:26:09 +00:00
|
|
|
namespace ASC.FederatedLogin.LoginProviders;
|
|
|
|
|
|
|
|
public enum LoginProviderEnum
|
|
|
|
{
|
|
|
|
Facebook,
|
|
|
|
Google,
|
|
|
|
Dropbox,
|
|
|
|
Docusign,
|
|
|
|
Box,
|
|
|
|
OneDrive,
|
|
|
|
GosUslugi,
|
|
|
|
LinkedIn,
|
|
|
|
MailRu,
|
|
|
|
VK,
|
|
|
|
Wordpress,
|
|
|
|
Yahoo,
|
|
|
|
Yandex
|
|
|
|
}
|
|
|
|
|
|
|
|
public abstract class BaseLoginProvider<T> : Consumer, ILoginProvider where T : Consumer, ILoginProvider, new()
|
2020-11-11 09:11:44 +00:00
|
|
|
{
|
2022-02-10 16:26:09 +00:00
|
|
|
public T Instance => ConsumerFactory.Get<T>();
|
|
|
|
public virtual bool IsEnabled
|
2020-11-11 09:11:44 +00:00
|
|
|
{
|
2022-02-10 16:26:09 +00:00
|
|
|
get
|
|
|
|
{
|
|
|
|
return !string.IsNullOrEmpty(ClientID) &&
|
|
|
|
!string.IsNullOrEmpty(ClientSecret) &&
|
|
|
|
!string.IsNullOrEmpty(RedirectUri);
|
|
|
|
}
|
2020-11-11 09:11:44 +00:00
|
|
|
}
|
2022-02-10 16:26:09 +00:00
|
|
|
|
|
|
|
public abstract string CodeUrl { get; }
|
|
|
|
public abstract string AccessTokenUrl { get; }
|
|
|
|
public abstract string RedirectUri { get; }
|
|
|
|
public abstract string ClientID { get; }
|
|
|
|
public abstract string ClientSecret { get; }
|
|
|
|
public virtual string Scopes => string.Empty;
|
|
|
|
|
2022-02-11 10:12:25 +00:00
|
|
|
internal readonly Signature Signature;
|
|
|
|
internal readonly InstanceCrypto InstanceCrypto;
|
|
|
|
|
2022-06-09 15:36:57 +00:00
|
|
|
protected readonly OAuth20TokenHelper _oAuth20TokenHelper;
|
2022-02-10 16:26:09 +00:00
|
|
|
|
|
|
|
protected BaseLoginProvider() { }
|
|
|
|
|
|
|
|
protected BaseLoginProvider(
|
|
|
|
OAuth20TokenHelper oAuth20TokenHelper,
|
|
|
|
TenantManager tenantManager,
|
|
|
|
CoreBaseSettings coreBaseSettings,
|
|
|
|
CoreSettings coreSettings,
|
|
|
|
IConfiguration configuration,
|
|
|
|
ICacheNotify<ConsumerCacheItem> cache,
|
|
|
|
ConsumerFactory consumerFactory,
|
|
|
|
Signature signature,
|
|
|
|
InstanceCrypto instanceCrypto,
|
|
|
|
string name, int order, Dictionary<string, string> props, Dictionary<string, string> additional = null)
|
|
|
|
: base(tenantManager, coreBaseSettings, coreSettings, configuration, cache, consumerFactory, name, order, props, additional)
|
2022-01-31 13:56:30 +00:00
|
|
|
{
|
2022-02-10 16:26:09 +00:00
|
|
|
_oAuth20TokenHelper = oAuth20TokenHelper;
|
2022-02-11 10:12:25 +00:00
|
|
|
Signature = signature;
|
|
|
|
InstanceCrypto = instanceCrypto;
|
2022-02-10 16:26:09 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
public virtual LoginProfile ProcessAuthoriztion(HttpContext context, IDictionary<string, string> @params, IDictionary<string, string> additionalStateArgs)
|
|
|
|
{
|
|
|
|
try
|
2019-08-15 12:04:42 +00:00
|
|
|
{
|
2022-02-10 16:26:09 +00:00
|
|
|
var token = Auth(context, Scopes, out var redirect, @params, additionalStateArgs);
|
2022-02-10 16:22:16 +00:00
|
|
|
|
2022-02-10 16:26:09 +00:00
|
|
|
if (redirect)
|
|
|
|
{
|
|
|
|
return null;
|
|
|
|
}
|
2020-07-28 08:13:49 +00:00
|
|
|
|
2022-02-10 16:26:09 +00:00
|
|
|
return GetLoginProfile(token?.AccessToken);
|
|
|
|
}
|
|
|
|
catch (ThreadAbortException)
|
|
|
|
{
|
|
|
|
throw;
|
|
|
|
}
|
|
|
|
catch (Exception ex)
|
|
|
|
{
|
2022-02-11 10:12:25 +00:00
|
|
|
return LoginProfile.FromError(Signature, InstanceCrypto, ex);
|
2022-02-10 16:26:09 +00:00
|
|
|
}
|
2021-04-26 18:42:39 +00:00
|
|
|
}
|
|
|
|
|
2022-02-10 16:26:09 +00:00
|
|
|
public abstract LoginProfile GetLoginProfile(string accessToken);
|
|
|
|
|
|
|
|
protected virtual OAuth20Token Auth(HttpContext context, string scopes, out bool redirect, IDictionary<string, string> additionalArgs = null, IDictionary<string, string> additionalStateArgs = null)
|
2021-04-26 18:42:39 +00:00
|
|
|
{
|
2022-02-10 16:26:09 +00:00
|
|
|
var error = context.Request.Query["error"];
|
|
|
|
if (!string.IsNullOrEmpty(error))
|
2021-04-26 18:42:39 +00:00
|
|
|
{
|
2022-02-10 16:26:09 +00:00
|
|
|
if (error == "access_denied")
|
|
|
|
{
|
|
|
|
error = "Canceled at provider";
|
|
|
|
}
|
|
|
|
|
|
|
|
throw new Exception(error);
|
2021-04-26 18:42:39 +00:00
|
|
|
}
|
2022-02-10 16:26:09 +00:00
|
|
|
|
|
|
|
var code = context.Request.Query["code"];
|
|
|
|
if (string.IsNullOrEmpty(code))
|
|
|
|
{
|
|
|
|
context.Response.Redirect(_oAuth20TokenHelper.RequestCode<T>(scopes, additionalArgs, additionalStateArgs));
|
|
|
|
redirect = true;
|
|
|
|
|
|
|
|
return null;
|
|
|
|
}
|
|
|
|
|
|
|
|
redirect = false;
|
|
|
|
|
2022-03-19 19:16:03 +00:00
|
|
|
return _oAuth20TokenHelper.GetAccessToken<T>(ConsumerFactory, code);
|
2022-02-10 16:26:09 +00:00
|
|
|
}
|
2022-06-09 15:36:57 +00:00
|
|
|
|
|
|
|
public virtual LoginProfile GetLoginProfile(OAuth20Token token)
|
|
|
|
{
|
|
|
|
return GetLoginProfile(token.AccessToken);
|
|
|
|
}
|
|
|
|
|
|
|
|
public OAuth20Token GetToken(string codeOAuth)
|
|
|
|
{
|
|
|
|
return _oAuth20TokenHelper.GetAccessToken<T>(ConsumerFactory, codeOAuth);
|
|
|
|
}
|
2022-02-10 16:26:09 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
public static class BaseLoginProviderExtension
|
|
|
|
{
|
|
|
|
public static void Register(DIHelper services)
|
|
|
|
{
|
|
|
|
services.TryAdd<BoxLoginProvider>();
|
|
|
|
services.TryAdd<DropboxLoginProvider>();
|
|
|
|
services.TryAdd<OneDriveLoginProvider>();
|
|
|
|
services.TryAdd<DocuSignLoginProvider>();
|
|
|
|
services.TryAdd<GoogleLoginProvider>();
|
|
|
|
services.TryAdd<WordpressLoginProvider>();
|
|
|
|
}
|
2019-06-06 13:34:46 +00:00
|
|
|
}
|