rsaMechanism = $rsaMechanism; $this->globalAuth = $globalAuth; $this->userSession = $userSession; $this->groupManager = $groupManager; } /** * @param int $keyLength * @return array */ private function generateSshKeys($keyLength) { $key = $this->rsaMechanism->createKey($keyLength); // Replace the placeholder label with a more meaningful one $key['publickey'] = str_replace('phpseclib-generated-key', gethostname(), $key['publickey']); return $key; } /** * Generates an SSH public/private key pair. * * @NoAdminRequired * @param int $keyLength */ public function getSshKeys($keyLength = 1024) { $key = $this->generateSshKeys($keyLength); return new JSONResponse( ['data' => [ 'private_key' => $key['privatekey'], 'public_key' => $key['publickey'] ], 'status' => 'success' ]); } /** * @NoAdminRequired * * @param string $uid * @param string $user * @param string $password * @return bool */ public function saveGlobalCredentials($uid, $user, $password) { $currentUser = $this->userSession->getUser(); if ($currentUser === null) { return false; } // Non-admins can only edit their own credentials // Admin can edit global credentials $allowedToEdit = $uid === '' ? $this->groupManager->isAdmin($currentUser->getUID()) : $currentUser->getUID() === $uid; if ($allowedToEdit) { $this->globalAuth->saveAuth($uid, $user, $password); return true; } return false; } }