123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104 |
- <?php
- /**
- * SPDX-FileCopyrightText: 2017-2024 Nextcloud GmbH and Nextcloud contributors
- * SPDX-FileCopyrightText: 2016 ownCloud, Inc.
- * SPDX-License-Identifier: AGPL-3.0-only
- */
- namespace OCA\Files_External\Controller;
- use OCA\Files_External\Lib\Auth\Password\GlobalAuth;
- use OCA\Files_External\Lib\Auth\PublicKey\RSA;
- use OCP\AppFramework\Controller;
- use OCP\AppFramework\Http\JSONResponse;
- use OCP\IGroupManager;
- use OCP\IRequest;
- use OCP\IUserSession;
- class AjaxController extends Controller {
- /** @var RSA */
- private $rsaMechanism;
- /** @var GlobalAuth */
- private $globalAuth;
- /** @var IUserSession */
- private $userSession;
- /** @var IGroupManager */
- private $groupManager;
- /**
- * @param string $appName
- * @param IRequest $request
- * @param RSA $rsaMechanism
- * @param GlobalAuth $globalAuth
- * @param IUserSession $userSession
- * @param IGroupManager $groupManager
- */
- public function __construct($appName,
- IRequest $request,
- RSA $rsaMechanism,
- GlobalAuth $globalAuth,
- IUserSession $userSession,
- IGroupManager $groupManager) {
- parent::__construct($appName, $request);
- $this->rsaMechanism = $rsaMechanism;
- $this->globalAuth = $globalAuth;
- $this->userSession = $userSession;
- $this->groupManager = $groupManager;
- }
- /**
- * @param int $keyLength
- * @return array
- */
- private function generateSshKeys($keyLength) {
- $key = $this->rsaMechanism->createKey($keyLength);
- // Replace the placeholder label with a more meaningful one
- $key['publickey'] = str_replace('phpseclib-generated-key', gethostname(), $key['publickey']);
- return $key;
- }
- /**
- * Generates an SSH public/private key pair.
- *
- * @NoAdminRequired
- * @param int $keyLength
- */
- public function getSshKeys($keyLength = 1024) {
- $key = $this->generateSshKeys($keyLength);
- return new JSONResponse(
- ['data' => [
- 'private_key' => $key['privatekey'],
- 'public_key' => $key['publickey']
- ],
- 'status' => 'success'
- ]);
- }
- /**
- * @NoAdminRequired
- *
- * @param string $uid
- * @param string $user
- * @param string $password
- * @return bool
- */
- public function saveGlobalCredentials($uid, $user, $password) {
- $currentUser = $this->userSession->getUser();
- if ($currentUser === null) {
- return false;
- }
- // Non-admins can only edit their own credentials
- // Admin can edit global credentials
- $allowedToEdit = $uid === ''
- ? $this->groupManager->isAdmin($currentUser->getUID())
- : $currentUser->getUID() === $uid;
- if ($allowedToEdit) {
- $this->globalAuth->saveAuth($uid, $user, $password);
- return true;
- }
- return false;
- }
- }
|