summaryrefslogtreecommitdiff
path: root/classes/auth/base.php
blob: d8128400d3a31788d1ac6ca13255e2ced7a34b6d (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
<?php
abstract class Auth_Base extends Plugin implements IAuthModule {
	protected $pdo;

	const AUTH_SERVICE_API = '_api';

	function __construct() {
		$this->pdo = Db::pdo();
	}

	function hook_auth_user($login, $password, $service = '') {
		return $this->authenticate($login, $password, $service);
	}

	/** Auto-creates specified user if allowed by system configuration.
	 * Can be used instead of find_user_by_login() by external auth modules
	 * @param string $login
	 * @param string|false $password
	 * @return null|int
	 * @throws Exception
	 * @throws PDOException
	 */
	function auto_create_user(string $login, $password = false) {
		if ($login && Config::get(Config::AUTH_AUTO_CREATE)) {
			$user_id = UserHelper::find_user_by_login($login);

			if (!$user_id) {

				if (!$password) $password = make_password();

				$user = ORM::for_table('ttrss_users')->create();

				$user->salt = UserHelper::get_salt();
				$user->login = mb_strtolower($login);
				$user->pwd_hash = UserHelper::hash_password($password, $user->salt);
				$user->access_level = 0;
				$user->created = Db::NOW();
				$user->save();

				return UserHelper::find_user_by_login($login);

			} else {
				return $user_id;
			}
		}

		return UserHelper::find_user_by_login($login);
	}


	/** replaced with UserHelper::find_user_by_login()
	 * @param string $login
	 * @return null|int
	 * @deprecated
	 */
	function find_user_by_login(string $login) {
		return UserHelper::find_user_by_login($login);
	}
}