srchub-old

srchub-old Mercurial Source Tree


Root/pluf/src/Pluf/Precondition.php

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
<?php
/* -*- tab-width: 4; indent-tabs-mode: nil; c-basic-offset: 4 -*- */
/*
# ***** BEGIN LICENSE BLOCK *****
# This file is part of Plume Framework, a simple PHP Application Framework.
# Copyright (C) 2001-2007 Loic d'Anterroches and contributors.
#
# Plume Framework is free software; you can redistribute it and/or modify
# it under the terms of the GNU Lesser General Public License as published by
# the Free Software Foundation; either version 2.1 of the License, or
# (at your option) any later version.
#
# Plume Framework is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
# GNU Lesser General Public License for more details.
#
# You should have received a copy of the GNU Lesser General Public License
# along with this program; if not, write to the Free Software
# Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA
#
# ***** END LICENSE BLOCK ***** */
 
/**
 * Ready to use preconditions to test if the user is logged in, etc.
 */
class Pluf_Precondition
{
    /**
     * Check if the user is logged in.
     *
     * Returns a redirection to the login page, but if not active
     * returns a forbidden error.
     *
     * @param Pluf_HTTP_Request
     * @return mixed
     */
    static public function loginRequired($request)
    {
        if (!isset($request->user) or $request->user->isAnonymous()) {
            return new Pluf_HTTP_Response_RedirectToLogin($request);
        }
        if (!$request->user->active) {
            return new Pluf_HTTP_Response_Forbidden($request);
        }
        return true;
    }
 
    /**
     * Check if the user is admin or staff.
     *
     * @param Pluf_HTTP_Request
     * @return mixed
     */
    static public function staffRequired($request)
    {
        $res = Pluf_Precondition::loginRequired($request);
        if (true !== $res) {
            return $res;
        }
        if ($request->user->administrator or $request->user->staff) {
            return true;
        }
        return new Pluf_HTTP_Response_Forbidden($request);
    }
 
    /**
     * Check if the user is administrator..
     *
     * @param Pluf_HTTP_Request
     * @return mixed
     */
    static public function adminRequired($request)
    {
        $res = Pluf_Precondition::loginRequired($request);
        if (true !== $res) {
            return $res;
        }
        if ($request->user->administrator) {
            return true;
        }
        return new Pluf_HTTP_Response_Forbidden($request);
    }
 
    /**
     * Check if the user has a given permission..
     *
     * @param Pluf_HTTP_Request
     * @param string Permission
     * @return mixed
     */
    static public function hasPerm($request, $permission)
    {
        $res = Pluf_Precondition::loginRequired($request);
        if (true !== $res) {
            return $res;
        }
        if ($request->user->hasPerm($permission)) {
            return true;
        }
        return new Pluf_HTTP_Response_Forbidden($request);
    }
 
    /**
     * Requires SSL to access the view.
     *
     * It will redirect the user to the same URL but over SSL if the
     * user is not using SSL, if POST request, the data are lost, so
     * handle it with care.
     *
     * @param Pluf_HTTP_Request
     * @return mixed
     */
    static public function sslRequired($request)
    {
        if (empty($_SERVER['HTTPS']) or $_SERVER['HTTPS'] == 'off') {
            return new Pluf_HTTP_Response_Redirect('https://'.$request->http_host.$request->uri);
        }
        return true;
    }
 
}
Source at commit 3e122c7af4b4 created 11 years 5 months ago.
By Nathan Adams, Adding bootstrap script

Archive Download this file

Branches

Tags

Page rendered in 0.84368s using 11 queries.