DocSpace-client/common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs

283 lines
11 KiB
C#
Raw Normal View History

2022-03-15 18:00:53 +00:00
// (c) Copyright Ascensio System SIA 2010-2022
//
// This program is a free software product.
// You can redistribute it and/or modify it under the terms
// of the GNU Affero General Public License (AGPL) version 3 as published by the Free Software
// Foundation. In accordance with Section 7(a) of the GNU AGPL its Section 15 shall be amended
// to the effect that Ascensio System SIA expressly excludes the warranty of non-infringement of
// any third-party rights.
//
// This program is distributed WITHOUT ANY WARRANTY, without even the implied warranty
// of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. For details, see
// the GNU AGPL at: http://www.gnu.org/licenses/agpl-3.0.html
//
// You can contact Ascensio System SIA at Lubanas st. 125a-25, Riga, Latvia, EU, LV-1021.
//
// The interactive user interfaces in modified source and object code versions of the Program must
// display Appropriate Legal Notices, as required under Section 5 of the GNU AGPL version 3.
//
// Pursuant to Section 7(b) of the License you must retain the original Product logo when
// distributing the program. Pursuant to Section 7(e) we decline to grant you any rights under
// trademark law for use of our trademarks.
//
// All the Product's GUI elements, including illustrations and icon sets, as well as technical writing
// content are licensed under the terms of the Creative Commons Attribution-ShareAlike 4.0
// International. See the License terms at http://creativecommons.org/licenses/by-sa/4.0/legalcode
namespace ASC.FederatedLogin.LoginProviders;
[Scope]
public class GosUslugiLoginProvider : BaseLoginProvider<GosUslugiLoginProvider>
2019-06-06 13:34:46 +00:00
{
public string BaseDomain => this["gosUslugiDomain"];
public override string CodeUrl => BaseDomain + "/aas/oauth2/ac";
public override string AccessTokenUrl => BaseDomain + "/aas/oauth2/te";
public override string ClientID => this["gosUslugiClientId"];
public override string ClientSecret => this["gosUslugiCert"];
public override string RedirectUri => this["gosUslugiRedirectUrl"];
public override string Scopes => "fullname birthdate gender email";
private string GosUslugiProfileUrl => BaseDomain + "/rs/prns/";
Merge branch 'develop' into feature/backend-refactor # Conflicts: # common/ASC.Common/Threading/DistributedTaskQueue.cs # common/ASC.Core.Common/Billing/BillingClient.cs # common/ASC.Core.Common/Billing/TariffService.cs # common/ASC.Core.Common/Notify/Context.cs # common/ASC.FederatedLogin/Helpers/OAuth20TokenHelper.cs # common/ASC.FederatedLogin/Helpers/RequestHelper.cs # common/ASC.FederatedLogin/LoginProviders/DocuSignLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/FacebookLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GoogleLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/LinkedInLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/MailRuLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/VKLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/WordpressLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/YandexLoginProvider.cs # common/services/ASC.ElasticSearch/Engine/BaseIndexer.cs # common/services/ASC.Studio.Notify/Program.cs # common/services/ASC.Webhooks.Service/WebhookSender.cs # products/ASC.Files/Core/Core/Search/FactoryIndexerFile.cs # products/ASC.Files/Core/Core/Thirdparty/Box/BoxProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/ProviderAccountDao.cs # products/ASC.Files/Core/Helpers/DocuSignHelper.cs # products/ASC.Files/Core/Helpers/EasyBibHelper.cs # products/ASC.Files/Core/Helpers/WordpressHelper.cs # products/ASC.Files/Core/Services/NotifyService/NotifyClient.cs # products/ASC.Files/Core/ThirdPartyApp/BoxApp.cs # products/ASC.Files/Core/ThirdPartyApp/GoogleDriveApp.cs # products/ASC.Files/Core/ThirdPartyApp/Token.cs # products/ASC.Files/Server/Controllers/FilesController.cs
2022-03-19 19:16:03 +00:00
private readonly RequestHelper _requestHelper;
public GosUslugiLoginProvider() { }
public GosUslugiLoginProvider(
OAuth20TokenHelper oAuth20TokenHelper,
TenantManager tenantManager,
CoreBaseSettings coreBaseSettings,
CoreSettings coreSettings,
IConfiguration configuration,
ICacheNotify<ConsumerCacheItem> cache,
ConsumerFactory consumerFactory,
Signature signature,
InstanceCrypto instanceCrypto,
Merge branch 'develop' into feature/backend-refactor # Conflicts: # common/ASC.Common/Threading/DistributedTaskQueue.cs # common/ASC.Core.Common/Billing/BillingClient.cs # common/ASC.Core.Common/Billing/TariffService.cs # common/ASC.Core.Common/Notify/Context.cs # common/ASC.FederatedLogin/Helpers/OAuth20TokenHelper.cs # common/ASC.FederatedLogin/Helpers/RequestHelper.cs # common/ASC.FederatedLogin/LoginProviders/DocuSignLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/FacebookLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GoogleLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/LinkedInLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/MailRuLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/VKLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/WordpressLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/YandexLoginProvider.cs # common/services/ASC.ElasticSearch/Engine/BaseIndexer.cs # common/services/ASC.Studio.Notify/Program.cs # common/services/ASC.Webhooks.Service/WebhookSender.cs # products/ASC.Files/Core/Core/Search/FactoryIndexerFile.cs # products/ASC.Files/Core/Core/Thirdparty/Box/BoxProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/ProviderAccountDao.cs # products/ASC.Files/Core/Helpers/DocuSignHelper.cs # products/ASC.Files/Core/Helpers/EasyBibHelper.cs # products/ASC.Files/Core/Helpers/WordpressHelper.cs # products/ASC.Files/Core/Services/NotifyService/NotifyClient.cs # products/ASC.Files/Core/ThirdPartyApp/BoxApp.cs # products/ASC.Files/Core/ThirdPartyApp/GoogleDriveApp.cs # products/ASC.Files/Core/ThirdPartyApp/Token.cs # products/ASC.Files/Server/Controllers/FilesController.cs
2022-03-19 19:16:03 +00:00
RequestHelper requestHelper,
string name, int order, Dictionary<string, string> props, Dictionary<string, string> additional = null)
: base(oAuth20TokenHelper, tenantManager, coreBaseSettings, coreSettings, configuration, cache, consumerFactory, signature, instanceCrypto, name, order, props, additional)
2019-06-06 13:34:46 +00:00
{
Merge branch 'develop' into feature/backend-refactor # Conflicts: # common/ASC.Common/Threading/DistributedTaskQueue.cs # common/ASC.Core.Common/Billing/BillingClient.cs # common/ASC.Core.Common/Billing/TariffService.cs # common/ASC.Core.Common/Notify/Context.cs # common/ASC.FederatedLogin/Helpers/OAuth20TokenHelper.cs # common/ASC.FederatedLogin/Helpers/RequestHelper.cs # common/ASC.FederatedLogin/LoginProviders/DocuSignLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/FacebookLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GoogleLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/LinkedInLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/MailRuLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/VKLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/WordpressLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/YandexLoginProvider.cs # common/services/ASC.ElasticSearch/Engine/BaseIndexer.cs # common/services/ASC.Studio.Notify/Program.cs # common/services/ASC.Webhooks.Service/WebhookSender.cs # products/ASC.Files/Core/Core/Search/FactoryIndexerFile.cs # products/ASC.Files/Core/Core/Thirdparty/Box/BoxProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/ProviderAccountDao.cs # products/ASC.Files/Core/Helpers/DocuSignHelper.cs # products/ASC.Files/Core/Helpers/EasyBibHelper.cs # products/ASC.Files/Core/Helpers/WordpressHelper.cs # products/ASC.Files/Core/Services/NotifyService/NotifyClient.cs # products/ASC.Files/Core/ThirdPartyApp/BoxApp.cs # products/ASC.Files/Core/ThirdPartyApp/GoogleDriveApp.cs # products/ASC.Files/Core/ThirdPartyApp/Token.cs # products/ASC.Files/Server/Controllers/FilesController.cs
2022-03-19 19:16:03 +00:00
_requestHelper = requestHelper;
}
2019-06-06 13:34:46 +00:00
public override LoginProfile ProcessAuthoriztion(HttpContext context, IDictionary<string, string> @params, IDictionary<string, string> additionalStateArgs)
{
try
2019-06-06 13:34:46 +00:00
{
var token = Auth(context, Scopes, out var redirect);
2019-06-06 13:34:46 +00:00
if (redirect)
2019-06-06 13:34:46 +00:00
{
return null;
2019-06-06 13:34:46 +00:00
}
if (token == null)
2019-06-06 13:34:46 +00:00
{
throw new Exception("Login failed");
2019-06-06 13:34:46 +00:00
}
return GetLoginProfile(token.AccessToken);
2019-06-06 13:34:46 +00:00
}
catch (ThreadAbortException)
{
throw;
}
catch (Exception ex)
{
2022-02-11 10:12:25 +00:00
return LoginProfile.FromError(Signature, InstanceCrypto, ex);
}
}
2019-06-06 13:34:46 +00:00
public override LoginProfile GetLoginProfile(string accessToken)
{
2022-06-20 14:01:59 +00:00
#pragma warning disable CS0618 // Type or member is obsolete
2022-06-09 15:36:57 +00:00
var tokenPayloadString = JwtBuilder.Create()
.WithAlgorithm(new HMACSHA256Algorithm())
.Decode(accessToken);
2022-06-20 14:01:59 +00:00
#pragma warning restore CS0618 // Type or member is obsolete
var tokenPayload = JObject.Parse(tokenPayloadString);
if (tokenPayload == null)
{
throw new Exception("Payload is incorrect");
}
var oid = tokenPayload.Value<string>("urn:esia:sbj_id");
Merge branch 'develop' into feature/backend-refactor # Conflicts: # common/ASC.Common/Threading/DistributedTaskQueue.cs # common/ASC.Core.Common/Billing/BillingClient.cs # common/ASC.Core.Common/Billing/TariffService.cs # common/ASC.Core.Common/Notify/Context.cs # common/ASC.FederatedLogin/Helpers/OAuth20TokenHelper.cs # common/ASC.FederatedLogin/Helpers/RequestHelper.cs # common/ASC.FederatedLogin/LoginProviders/DocuSignLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/FacebookLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GoogleLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/LinkedInLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/MailRuLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/VKLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/WordpressLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/YandexLoginProvider.cs # common/services/ASC.ElasticSearch/Engine/BaseIndexer.cs # common/services/ASC.Studio.Notify/Program.cs # common/services/ASC.Webhooks.Service/WebhookSender.cs # products/ASC.Files/Core/Core/Search/FactoryIndexerFile.cs # products/ASC.Files/Core/Core/Thirdparty/Box/BoxProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/ProviderAccountDao.cs # products/ASC.Files/Core/Helpers/DocuSignHelper.cs # products/ASC.Files/Core/Helpers/EasyBibHelper.cs # products/ASC.Files/Core/Helpers/WordpressHelper.cs # products/ASC.Files/Core/Services/NotifyService/NotifyClient.cs # products/ASC.Files/Core/ThirdPartyApp/BoxApp.cs # products/ASC.Files/Core/ThirdPartyApp/GoogleDriveApp.cs # products/ASC.Files/Core/ThirdPartyApp/Token.cs # products/ASC.Files/Server/Controllers/FilesController.cs
2022-03-19 19:16:03 +00:00
var userInfoString = _requestHelper.PerformRequest(GosUslugiProfileUrl + oid, "application/x-www-form-urlencoded", headers: new Dictionary<string, string> { { "Authorization", "Bearer " + accessToken } });
var userInfo = JObject.Parse(userInfoString);
if (userInfo == null)
{
throw new Exception("userinfo is incorrect");
}
2022-02-11 10:12:25 +00:00
var profile = new LoginProfile(Signature, InstanceCrypto)
{
Id = oid,
FirstName = userInfo.Value<string>("firstName"),
LastName = userInfo.Value<string>("lastName"),
Provider = ProviderConstants.GosUslugi,
};
Merge branch 'develop' into feature/backend-refactor # Conflicts: # common/ASC.Common/Threading/DistributedTaskQueue.cs # common/ASC.Core.Common/Billing/BillingClient.cs # common/ASC.Core.Common/Billing/TariffService.cs # common/ASC.Core.Common/Notify/Context.cs # common/ASC.FederatedLogin/Helpers/OAuth20TokenHelper.cs # common/ASC.FederatedLogin/Helpers/RequestHelper.cs # common/ASC.FederatedLogin/LoginProviders/DocuSignLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/FacebookLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GoogleLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/LinkedInLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/MailRuLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/VKLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/WordpressLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/YandexLoginProvider.cs # common/services/ASC.ElasticSearch/Engine/BaseIndexer.cs # common/services/ASC.Studio.Notify/Program.cs # common/services/ASC.Webhooks.Service/WebhookSender.cs # products/ASC.Files/Core/Core/Search/FactoryIndexerFile.cs # products/ASC.Files/Core/Core/Thirdparty/Box/BoxProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/ProviderAccountDao.cs # products/ASC.Files/Core/Helpers/DocuSignHelper.cs # products/ASC.Files/Core/Helpers/EasyBibHelper.cs # products/ASC.Files/Core/Helpers/WordpressHelper.cs # products/ASC.Files/Core/Services/NotifyService/NotifyClient.cs # products/ASC.Files/Core/ThirdPartyApp/BoxApp.cs # products/ASC.Files/Core/ThirdPartyApp/GoogleDriveApp.cs # products/ASC.Files/Core/ThirdPartyApp/Token.cs # products/ASC.Files/Server/Controllers/FilesController.cs
2022-03-19 19:16:03 +00:00
var userContactsString = _requestHelper.PerformRequest(GosUslugiProfileUrl + oid + "/ctts", "application/x-www-form-urlencoded", headers: new Dictionary<string, string> { { "Authorization", "Bearer " + accessToken } });
var userContacts = JObject.Parse(userContactsString);
if (userContacts == null)
{
throw new Exception("usercontacts is incorrect");
}
var contactElements = userContacts.Value<JArray>("elements");
if (contactElements == null)
{
throw new Exception("usercontacts elements is incorrect");
}
foreach (var contactElement in contactElements.ToObject<List<string>>())
{
Merge branch 'develop' into feature/backend-refactor # Conflicts: # common/ASC.Common/Threading/DistributedTaskQueue.cs # common/ASC.Core.Common/Billing/BillingClient.cs # common/ASC.Core.Common/Billing/TariffService.cs # common/ASC.Core.Common/Notify/Context.cs # common/ASC.FederatedLogin/Helpers/OAuth20TokenHelper.cs # common/ASC.FederatedLogin/Helpers/RequestHelper.cs # common/ASC.FederatedLogin/LoginProviders/DocuSignLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/FacebookLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GoogleLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/LinkedInLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/MailRuLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/VKLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/WordpressLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/YandexLoginProvider.cs # common/services/ASC.ElasticSearch/Engine/BaseIndexer.cs # common/services/ASC.Studio.Notify/Program.cs # common/services/ASC.Webhooks.Service/WebhookSender.cs # products/ASC.Files/Core/Core/Search/FactoryIndexerFile.cs # products/ASC.Files/Core/Core/Thirdparty/Box/BoxProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/ProviderAccountDao.cs # products/ASC.Files/Core/Helpers/DocuSignHelper.cs # products/ASC.Files/Core/Helpers/EasyBibHelper.cs # products/ASC.Files/Core/Helpers/WordpressHelper.cs # products/ASC.Files/Core/Services/NotifyService/NotifyClient.cs # products/ASC.Files/Core/ThirdPartyApp/BoxApp.cs # products/ASC.Files/Core/ThirdPartyApp/GoogleDriveApp.cs # products/ASC.Files/Core/ThirdPartyApp/Token.cs # products/ASC.Files/Server/Controllers/FilesController.cs
2022-03-19 19:16:03 +00:00
var userContactString = _requestHelper.PerformRequest(contactElement, "application/x-www-form-urlencoded", headers: new Dictionary<string, string> { { "Authorization", "Bearer " + accessToken } });
var userContact = JObject.Parse(userContactString);
if (userContact == null)
{
throw new Exception("usercontacts is incorrect");
}
var type = userContact.Value<string>("type");
if (type != "EML")
{
continue;
}
profile.EMail = userContact.Value<string>("value");
break;
}
return profile;
}
protected override OAuth20Token Auth(HttpContext context, string scopes, out bool redirect, IDictionary<string, string> additionalArgs = null, IDictionary<string, string> additionalStateArgs = null)
{
var error = context.Request.Query["error"];
if (!string.IsNullOrEmpty(error))
{
if (error == "access_denied")
{
error = "Canceled at provider";
}
throw new Exception(error);
}
var code = context.Request.Query["code"];
if (string.IsNullOrEmpty(code))
2019-06-06 13:34:46 +00:00
{
RequestCode(context, scopes);
redirect = true;
return null;
}
redirect = false;
var state = context.Request.Query["state"];
return GetAccessToken(state, code);
}
2019-06-06 13:34:46 +00:00
private void RequestCode(HttpContext context, string scope = null)
{
var timestamp = DateTime.UtcNow.ToString("yyyy.MM.dd HH:mm:ss +0000");
var state = Guid.NewGuid().ToString();//HttpContext.Current.Request.GetUrlRewriter().AbsoluteUri;
2019-06-06 13:34:46 +00:00
var msg = scope + timestamp + ClientID + state;
var encodedSignature = SignMsg(msg);
var clientSecret = WebEncoders.Base64UrlEncode(encodedSignature);
2019-06-06 13:34:46 +00:00
var requestParams = new Dictionary<string, string>
2019-06-06 13:34:46 +00:00
{
{ "client_id", ClientID },
{ "client_secret", clientSecret },
{ "redirect_uri", RedirectUri },
{ "scope", scope },
{ "response_type", "code" },
{ "state", state },
{ "timestamp", timestamp },
{ "access_type", "online" },
{ "display", "popup" }
};
var requestQuery = string.Join("&", requestParams.Select(pair => pair.Key + "=" + HttpUtility.UrlEncode(pair.Value)));//.Replace("+", "%2b");
2019-06-06 13:34:46 +00:00
var redURL = CodeUrl + "?" + requestQuery;
context.Response.Redirect(redURL, true);
}
2019-06-06 13:34:46 +00:00
private OAuth20Token GetAccessToken(string state, string code)
{
var timestamp = DateTime.UtcNow.ToString("yyyy.MM.dd HH:mm:ss +0000");
2019-06-06 13:34:46 +00:00
var msg = Scopes + timestamp + ClientID + state;
var encodedSignature = SignMsg(msg);
var clientSecret = WebEncoders.Base64UrlEncode(encodedSignature);
2019-06-06 13:34:46 +00:00
var requestParams = new Dictionary<string, string>
2019-06-06 13:34:46 +00:00
{
{ "client_id", ClientID },
{ "code", code },
{ "grant_type", "authorization_code" },
{ "client_secret", clientSecret },
{ "state", state },
{ "redirect_uri", RedirectUri },
{ "scope", Scopes },
{ "timestamp", timestamp },
{ "token_type", "Bearer" }
};
var requestQuery = string.Join("&", requestParams.Select(pair => pair.Key + "=" + HttpUtility.UrlEncode(pair.Value)));
2019-06-06 13:34:46 +00:00
Merge branch 'develop' into feature/backend-refactor # Conflicts: # common/ASC.Common/Threading/DistributedTaskQueue.cs # common/ASC.Core.Common/Billing/BillingClient.cs # common/ASC.Core.Common/Billing/TariffService.cs # common/ASC.Core.Common/Notify/Context.cs # common/ASC.FederatedLogin/Helpers/OAuth20TokenHelper.cs # common/ASC.FederatedLogin/Helpers/RequestHelper.cs # common/ASC.FederatedLogin/LoginProviders/DocuSignLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/FacebookLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GoogleLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/GosUslugiLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/LinkedInLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/MailRuLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/VKLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/WordpressLoginProvider.cs # common/ASC.FederatedLogin/LoginProviders/YandexLoginProvider.cs # common/services/ASC.ElasticSearch/Engine/BaseIndexer.cs # common/services/ASC.Studio.Notify/Program.cs # common/services/ASC.Webhooks.Service/WebhookSender.cs # products/ASC.Files/Core/Core/Search/FactoryIndexerFile.cs # products/ASC.Files/Core/Core/Thirdparty/Box/BoxProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/GoogleDrive/GoogleDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveProviderInfo.cs # products/ASC.Files/Core/Core/Thirdparty/OneDrive/OneDriveStorage.cs # products/ASC.Files/Core/Core/Thirdparty/ProviderAccountDao.cs # products/ASC.Files/Core/Helpers/DocuSignHelper.cs # products/ASC.Files/Core/Helpers/EasyBibHelper.cs # products/ASC.Files/Core/Helpers/WordpressHelper.cs # products/ASC.Files/Core/Services/NotifyService/NotifyClient.cs # products/ASC.Files/Core/ThirdPartyApp/BoxApp.cs # products/ASC.Files/Core/ThirdPartyApp/GoogleDriveApp.cs # products/ASC.Files/Core/ThirdPartyApp/Token.cs # products/ASC.Files/Server/Controllers/FilesController.cs
2022-03-19 19:16:03 +00:00
var result = _requestHelper.PerformRequest(AccessTokenUrl, "application/x-www-form-urlencoded", "POST", requestQuery);
2019-06-06 13:34:46 +00:00
return OAuth20Token.FromJson(result);
}
2019-06-06 13:34:46 +00:00
private X509Certificate2 GetSignerCert()
{
var storeMy = new X509Store(StoreName.Root, StoreLocation.LocalMachine);
storeMy.Open(OpenFlags.ReadOnly);
var certColl = storeMy.Certificates.Find(X509FindType.FindBySubjectKeyIdentifier, ClientSecret, false);
storeMy.Close();
if (certColl.Count == 0)
2019-06-06 13:34:46 +00:00
{
throw new Exception("Certificate not found");
2019-06-06 13:34:46 +00:00
}
return certColl[0];
}
2019-06-06 13:34:46 +00:00
private byte[] SignMsg(string msg)
{
var signerCert = GetSignerCert();
var msgBytes = Encoding.UTF8.GetBytes(msg);
var contentInfo = new ContentInfo(msgBytes);
var signedCms = new SignedCms(contentInfo, true);
var cmsSigner = new CmsSigner(signerCert);
signedCms.ComputeSignature(cmsSigner);
2019-06-06 13:34:46 +00:00
return signedCms.Encode();
2019-06-06 13:34:46 +00:00
}
//private static bool VerifyMsg(Byte[] msg, byte[] encodedSignature)
//{
// ContentInfo contentInfo = new ContentInfo(msg);
// SignedCms signedCms = new SignedCms(contentInfo, true);
// signedCms.Decode(encodedSignature);
// try
// {
// signedCms.CheckSignature(true);
// }
// catch (System.Security.Cryptography.CryptographicException e)
// {
// return false;
// }
// return true;
//}
}