annotate .svn/pristine/23/23f046e7217770bca11bfe9989b755a158f48868.svn-base @ 1298:4f746d8966dd redmine_2.3_integration

Merge from redmine-2.3 branch to create new branch redmine-2.3-integration
author Chris Cannam
date Fri, 14 Jun 2013 09:28:30 +0100
parents 622f24f53b42
children
rev   line source
Chris@1295 1 # Redmine - project management software
Chris@1295 2 # Copyright (C) 2006-2013 Jean-Philippe Lang
Chris@1295 3 #
Chris@1295 4 # This program is free software; you can redistribute it and/or
Chris@1295 5 # modify it under the terms of the GNU General Public License
Chris@1295 6 # as published by the Free Software Foundation; either version 2
Chris@1295 7 # of the License, or (at your option) any later version.
Chris@1295 8 #
Chris@1295 9 # This program is distributed in the hope that it will be useful,
Chris@1295 10 # but WITHOUT ANY WARRANTY; without even the implied warranty of
Chris@1295 11 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
Chris@1295 12 # GNU General Public License for more details.
Chris@1295 13 #
Chris@1295 14 # You should have received a copy of the GNU General Public License
Chris@1295 15 # along with this program; if not, write to the Free Software
Chris@1295 16 # Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
Chris@1295 17
Chris@1295 18 class Token < ActiveRecord::Base
Chris@1295 19 belongs_to :user
Chris@1295 20 validates_uniqueness_of :value
Chris@1295 21
Chris@1295 22 before_create :delete_previous_tokens, :generate_new_token
Chris@1295 23
Chris@1295 24 @@validity_time = 1.day
Chris@1295 25
Chris@1295 26 def generate_new_token
Chris@1295 27 self.value = Token.generate_token_value
Chris@1295 28 end
Chris@1295 29
Chris@1295 30 # Return true if token has expired
Chris@1295 31 def expired?
Chris@1295 32 return Time.now > self.created_on + @@validity_time
Chris@1295 33 end
Chris@1295 34
Chris@1295 35 # Delete all expired tokens
Chris@1295 36 def self.destroy_expired
Chris@1295 37 Token.delete_all ["action NOT IN (?) AND created_on < ?", ['feeds', 'api'], Time.now - @@validity_time]
Chris@1295 38 end
Chris@1295 39
Chris@1295 40 # Returns the active user who owns the key for the given action
Chris@1295 41 def self.find_active_user(action, key, validity_days=nil)
Chris@1295 42 user = find_user(action, key, validity_days)
Chris@1295 43 if user && user.active?
Chris@1295 44 user
Chris@1295 45 end
Chris@1295 46 end
Chris@1295 47
Chris@1295 48 # Returns the user who owns the key for the given action
Chris@1295 49 def self.find_user(action, key, validity_days=nil)
Chris@1295 50 token = find_token(action, key, validity_days)
Chris@1295 51 if token
Chris@1295 52 token.user
Chris@1295 53 end
Chris@1295 54 end
Chris@1295 55
Chris@1295 56 # Returns the token for action and key with an optional
Chris@1295 57 # validity duration (in number of days)
Chris@1295 58 def self.find_token(action, key, validity_days=nil)
Chris@1295 59 action = action.to_s
Chris@1295 60 key = key.to_s
Chris@1295 61 return nil unless action.present? && key =~ /\A[a-z0-9]+\z/i
Chris@1295 62
Chris@1295 63 token = Token.where(:action => action, :value => key).first
Chris@1295 64 if token && (token.action == action) && (token.value == key) && token.user
Chris@1295 65 if validity_days.nil? || (token.created_on > validity_days.days.ago)
Chris@1295 66 token
Chris@1295 67 end
Chris@1295 68 end
Chris@1295 69 end
Chris@1295 70
Chris@1295 71 def self.generate_token_value
Chris@1295 72 Redmine::Utils.random_hex(20)
Chris@1295 73 end
Chris@1295 74
Chris@1295 75 private
Chris@1295 76
Chris@1295 77 # Removes obsolete tokens (same user and action)
Chris@1295 78 def delete_previous_tokens
Chris@1295 79 if user
Chris@1295 80 Token.delete_all(['user_id = ? AND action = ?', user.id, action])
Chris@1295 81 end
Chris@1295 82 end
Chris@1295 83 end