| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647 |
- <?php
- /**
- * Zend Framework
- *
- * LICENSE
- *
- * This source file is subject to the new BSD license that is bundled
- * with this package in the file LICENSE.txt.
- * It is also available through the world-wide-web at this URL:
- * http://framework.zend.com/license/new-bsd
- * If you did not receive a copy of the license and are unable to
- * obtain it through the world-wide-web, please send an email
- * to license@zend.com so we can send you a copy immediately.
- *
- * @category Zend
- * @package Zend_OpenId
- * @subpackage UnitTests
- * @copyright Copyright (c) 2005-2010 Zend Technologies USA Inc. (http://www.zend.com)
- * @license http://framework.zend.com/license/new-bsd New BSD License
- * @version $Id$
- */
- /**
- * Zend_OpenId
- */
- require_once 'Zend/OpenId/Provider.php';
- /**
- * PHPUnit test case
- */
- require_once 'PHPUnit/Framework.php';
- /**
- * Zend_OpenId_ResponseHelper
- */
- require_once 'Zend/OpenId/ResponseHelper.php';
- /**
- * @category Zend
- * @package Zend_OpenId
- * @subpackage UnitTests
- * @copyright Copyright (c) 2005-2010 Zend Technologies USA Inc. (http://www.zend.com)
- * @license http://framework.zend.com/license/new-bsd New BSD License
- * @group Zend_OpenId
- */
- class Zend_OpenId_ProviderTest extends PHPUnit_Framework_TestCase
- {
- const USER = "http://test_user.myopenid.com/";
- const PASSWORD = "01234567890abcdef";
- const HANDLE = "01234567890abcdef";
- private $_user;
- public function __construct($name = NULL, array $data = array(), $dataName = '')
- {
- parent::__construct($name, $data, $dataName);
- $this->_user = new Zend_OpenId_Provider_User_Session();
- }
- /**
- * testing register
- *
- */
- public function testRegister()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- $this->assertFalse( $storage->checkUser(self::USER, self::PASSWORD) );
- // wrong ID
- $this->assertFalse( $provider->register("", self::PASSWORD) );
- // registration of new user
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- // registration of existent user
- $this->assertFalse( $provider->register(self::USER, self::PASSWORD) );
- $this->assertTrue( $storage->checkUser(self::USER, md5(self::USER . self::PASSWORD)) );
- $storage->delUser(self::USER);
- }
- /**
- * testing hasUser
- *
- */
- public function testHasUser()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- // wrong ID
- $this->assertFalse( $provider->hasUser("") );
- $this->assertFalse( $provider->hasUser("http://:80/test") );
- // check for non existent
- $this->assertFalse( $provider->hasUser(self::USER) );
- // check for existent user
- $this->assertTrue( $storage->addUser(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->hasUser(self::USER) );
- $storage->delUser(self::USER);
- }
- /**
- * testing login
- *
- */
- public function testLogin()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- // wrong ID
- $this->assertFalse( $provider->login("", self::PASSWORD) );
- $this->assertFalse( $this->_user->getLoggedInUser() );
- $this->assertFalse( $provider->login("http://:80/test", self::PASSWORD) );
- $this->assertFalse( $this->_user->getLoggedInUser() );
- // login as non existent user
- $this->assertFalse( $provider->login(self::USER, self::PASSWORD) );
- $this->assertFalse( $this->_user->getLoggedInUser() );
- // login as existent user with wrong password
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- $this->assertFalse( $provider->login(self::USER, self::PASSWORD . "x") );
- $this->assertFalse( $this->_user->getLoggedInUser() );
- // login as existent user with proper password
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertSame( self::USER, $this->_user->getLoggedInUser() );
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- }
- /**
- * testing logout
- *
- */
- public function testLogout()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- $this->assertFalse( $this->_user->getLoggedInUser() );
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- $this->assertFalse( $this->_user->getLoggedInUser() );
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertSame( self::USER, $this->_user->getLoggedInUser() );
- $this->assertTrue( $provider->logout() );
- $this->assertFalse( $this->_user->getLoggedInUser() );
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- }
- /**
- * testing logout
- *
- */
- public function testLoggedInUser()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- $this->assertFalse( $provider->getLoggedInUser() );
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- $this->assertFalse( $provider->getLoggedInUser() );
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertSame( self::USER, $this->_user->getLoggedInUser() );
- $this->assertTrue( $provider->logout() );
- $this->assertFalse( $provider->getLoggedInUser() );
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- }
- /**
- * testing getSiteRoot
- *
- */
- public function testGetSiteRoot()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- $params = array(
- 'openid_realm' => "http://wrong/",
- 'openid_trust_root' => "http://root/",
- 'openid_return_to' => "http://wrong/",
- );
- $this->assertSame( "http://root/", $provider->getSiteRoot($params) );
- $params = array(
- 'openid_realm' => "http://wrong/",
- 'openid_return_to' => "http://root/",
- );
- $this->assertSame( "http://root/", $provider->getSiteRoot($params) );
- $params = array(
- 'openid_realm' => "http://wrong/",
- );
- $this->assertFalse( $provider->getSiteRoot($params) );
- $params = array(
- 'openid_ns' => Zend_OpenId::NS_2_0,
- 'openid_realm' => "http://root/",
- 'openid_trust_root' => "http://wrong/",
- 'openid_return_to' => "http://wrong/",
- );
- $this->assertSame( "http://root/", $provider->getSiteRoot($params) );
- $params = array(
- 'openid_ns' => Zend_OpenId::NS_2_0,
- 'openid_trust_root' => "http://wrong/",
- 'openid_return_to' => "http://root/",
- );
- $this->assertSame( "http://root/", $provider->getSiteRoot($params) );
- $params = array(
- 'openid_ns' => Zend_OpenId::NS_2_0,
- 'openid_return_to' => "http://root/",
- );
- $this->assertSame( "http://root/", $provider->getSiteRoot($params) );
- $params = array(
- 'openid_ns' => Zend_OpenId::NS_2_0,
- );
- $this->assertFalse( $provider->getSiteRoot($params) );
- $params = array(
- 'openid_trust_root' => "",
- );
- $this->assertFalse( $provider->getSiteRoot($params) );
- }
- /**
- * testing allowSite
- *
- */
- public function testAllowSite()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- // not logged in
- $this->assertFalse( $provider->allowSite("http://www.test.com/") );
- // logged in
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->allowSite("http://www.test.com/") );
- $trusted = $storage->getTrustedSites(self::USER);
- $this->assertTrue( is_array($trusted) );
- $this->assertSame( 1, count($trusted) );
- reset($trusted);
- $this->assertSame( "http://www.test.com/", key($trusted) );
- $this->assertSame( true, current($trusted) );
- // duplicate
- $this->assertTrue( $provider->allowSite("http://www.test.com/") );
- $trusted = $storage->getTrustedSites(self::USER);
- $this->assertTrue( is_array($trusted) );
- $this->assertSame( 1, count($trusted) );
- reset($trusted);
- $this->assertSame( "http://www.test.com/", key($trusted) );
- $this->assertSame( true, current($trusted) );
- // extensions
- $sreg = new Zend_OpenId_Extension_Sreg(array("nickname"=>"test_id"));
- $this->assertTrue( $provider->allowSite("http://www.test.com/", $sreg) );
- $trusted = $storage->getTrustedSites(self::USER);
- $this->assertTrue( is_array($trusted) );
- $this->assertSame( 1, count($trusted) );
- reset($trusted);
- $this->assertSame( "http://www.test.com/", key($trusted) );
- $this->assertSame( array('Zend_OpenId_Extension_Sreg'=>array('nickname'=>'test_id')), current($trusted) );
- $this->_user->delLoggedInUser();
- $storage->delUser(self::USER);
- }
- /**
- * testing denySite
- *
- */
- public function testDenySite()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- $sreg = new Zend_OpenId_Extension_Sreg(array("nickname"=>"test_id"));
- // not logged in
- $this->assertFalse( $provider->denySite("http://www.test.com/") );
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->allowSite("http://www.test1.com/") );
- $this->assertTrue( $provider->allowSite("http://www.test2.com/", $sreg) );
- $this->AssertSame( array(
- 'http://www.test1.com/' => true,
- 'http://www.test2.com/' => array(
- 'Zend_OpenId_Extension_Sreg' => array(
- 'nickname' => 'test_id'
- )
- )
- ),
- $storage->getTrustedSites(self::USER) );
- $this->assertTrue( $provider->denySite("http://www.test3.com/") );
- $this->AssertSame( array(
- 'http://www.test1.com/' => true,
- 'http://www.test2.com/' => array(
- 'Zend_OpenId_Extension_Sreg' => array(
- 'nickname' => 'test_id'
- )
- ),
- 'http://www.test3.com/' => false
- ),
- $storage->getTrustedSites(self::USER) );
- $this->assertTrue( $provider->denySite("http://www.test1.com/") );
- $this->AssertSame( array(
- 'http://www.test1.com/' => false,
- 'http://www.test2.com/' => array(
- 'Zend_OpenId_Extension_Sreg' => array(
- 'nickname' => 'test_id'
- )
- ),
- 'http://www.test3.com/' => false
- ),
- $storage->getTrustedSites(self::USER) );
- $this->assertTrue( $provider->denySite("http://www.test2.com/") );
- $this->AssertSame( array(
- 'http://www.test1.com/' => false,
- 'http://www.test2.com/' => false,
- 'http://www.test3.com/' => false
- ),
- $storage->getTrustedSites(self::USER) );
- $this->_user->delLoggedInUser();
- $storage->delUser(self::USER);
- }
- /**
- * testing delSite
- *
- */
- public function testDelSite()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- $sreg = new Zend_OpenId_Extension_Sreg(array("nickname"=>"test_id"));
- // not logged in
- $this->assertFalse( $provider->delSite("http://www.test.com/") );
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->allowSite("http://www.test1.com/") );
- $this->assertTrue( $provider->allowSite("http://www.test2.com/", $sreg) );
- $this->AssertSame( array(
- 'http://www.test1.com/' => true,
- 'http://www.test2.com/' => array(
- 'Zend_OpenId_Extension_Sreg' => array(
- 'nickname' => 'test_id'
- )
- )
- ),
- $storage->getTrustedSites(self::USER) );
- $this->assertTrue( $provider->delSite("http://www.test3.com/") );
- $this->AssertSame( array(
- 'http://www.test1.com/' => true,
- 'http://www.test2.com/' => array(
- 'Zend_OpenId_Extension_Sreg' => array(
- 'nickname' => 'test_id'
- )
- )
- ),
- $storage->getTrustedSites(self::USER) );
- $this->assertTrue( $provider->delSite("http://www.test1.com/") );
- $this->AssertSame( array(
- 'http://www.test2.com/' => array(
- 'Zend_OpenId_Extension_Sreg' => array(
- 'nickname' => 'test_id'
- )
- )
- ),
- $storage->getTrustedSites(self::USER) );
- $this->assertTrue( $provider->delSite("http://www.test2.com/") );
- $this->AssertSame( array(
- ),
- $storage->getTrustedSites(self::USER) );
- $this->_user->delLoggedInUser();
- $storage->delUser(self::USER);
- }
- /**
- * testing getTrustedSites
- *
- */
- public function testGetTrustedSites()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $storage->delUser(self::USER);
- $this->_user->delLoggedInUser();
- $provider = new Zend_OpenId_Provider(null, null, $this->_user, $storage);
- $sreg = new Zend_OpenId_Extension_Sreg(array("nickname"=>"test_id"));
- $this->assertTrue( $provider->register(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->allowSite("http://www.test1.com/") );
- $this->assertTrue( $provider->allowSite("http://www.test2.com/", $sreg) );
- $this->AssertSame( array(
- 'http://www.test1.com/' => true,
- 'http://www.test2.com/' => array(
- 'Zend_OpenId_Extension_Sreg' => array(
- 'nickname' => 'test_id'
- )
- )
- ),
- $provider->getTrustedSites() );
- $this->_user->delLoggedInUser();
- $this->AssertFalse( $provider->getTrustedSites() );
- $storage->delUser(self::USER);
- }
- /**
- * testing genSecret
- *
- */
- public function testGenSecret()
- {
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider"));
- // SHA1
- $x = $provider->genSecret("sha1");
- $this->assertTrue( is_string($x) );
- $this->assertSame( 20, strlen($x) );
- // SHA256
- $x = $provider->genSecret("sha256");
- $this->assertTrue( is_string($x) );
- $this->assertSame( 32, strlen($x) );
- // invalid function
- $this->assertFalse( $provider->genSecret("md5") );
- }
- /**
- * testing _associate
- *
- */
- public function testAssociate()
- {
- try {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, $storage);
- // Wrong assoc_type
- $ret = $provider->handle(array('openid_mode'=>'associate'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'unsupported-type', $res['error-code'] );
- // Wrong assoc_type (OpenID 2.0)
- $ret = $provider->handle(array('openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_mode'=>'associate'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $res['ns'] );
- $this->assertSame( 'unsupported-type', $res['error-code'] );
- // Wrong session_type
- $ret = $provider->handle(array('openid_mode'=>'associate',
- 'openid_assoc_type'=>'HMAC-SHA1',
- 'openid_session_type'=>'DH-SHA257'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'unsupported-type', $res['error-code'] );
- // Associaation without encryption
- $ret = $provider->handle(array('openid_assoc_type'=>'HMAC-SHA1',
- 'openid_mode'=>'associate'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'HMAC-SHA1', $res['assoc_type'] );
- $this->assertTrue( isset($res['mac_key']) );
- $this->assertSame( 20, strlen(base64_decode($res['mac_key'])) );
- $this->assertTrue( isset($res['assoc_handle']) );
- $this->assertSame( '3600', $res['expires_in'] );
- $this->assertFalse( isset($res['session_type']) );
- $this->assertTrue( $storage->getAssociation($res['assoc_handle'], $macFunc, $secret, $expires) );
- $this->assertSame( 'sha1', $macFunc );
- $this->assertSame( bin2hex(base64_decode($res['mac_key'])), bin2hex($secret) );
- // Associaation without encryption (OpenID 2.0)
- $ret = $provider->handle(array('openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_assoc_type'=>'HMAC-SHA256',
- 'openid_mode'=>'associate'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $res['ns'] );
- $this->assertSame( 'HMAC-SHA256', $res['assoc_type'] );
- $this->assertTrue( isset($res['mac_key']) );
- $this->assertSame( 32, strlen(base64_decode($res['mac_key'])) );
- $this->assertTrue( isset($res['assoc_handle']) );
- $this->assertSame( '3600', $res['expires_in'] );
- $this->assertFalse( isset($res['session_type']) );
- $this->assertTrue( $storage->getAssociation($res['assoc_handle'], $macFunc, $secret, $expires) );
- $this->assertSame( 'sha256', $macFunc );
- $this->assertSame( bin2hex(base64_decode($res['mac_key'])), bin2hex($secret) );
- // Associaation without encryption (OpenID 2.0)
- $ret = $provider->handle(array('openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_assoc_type'=>'HMAC-SHA256',
- 'openid_mode'=>'associate',
- 'openid_session_type'=>'no-encryption'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $res['ns'] );
- $this->assertSame( 'HMAC-SHA256', $res['assoc_type'] );
- $this->assertTrue( isset($res['mac_key']) );
- $this->assertSame( 32, strlen(base64_decode($res['mac_key'])) );
- $this->assertTrue( isset($res['assoc_handle']) );
- $this->assertSame( '3600', $res['expires_in'] );
- $this->assertSame( 'no-encryption', $res['session_type'] );
- $this->assertTrue( $storage->getAssociation($res['assoc_handle'], $macFunc, $secret, $expires) );
- $this->assertSame( 'sha256', $macFunc );
- $this->assertSame( bin2hex(base64_decode($res['mac_key'])), bin2hex($secret) );
- // Associaation with DH-SHA1 encryption
- $ret = $provider->handle(array('openid_assoc_type'=>'HMAC-SHA1',
- 'openid_mode'=>'associate',
- 'openid_session_type'=>'DH-SHA1',
- 'openid_dh_modulus'=>'ANz5OguIOXLsDhmYmsWizjEOHTdxfo2Vcbt2I3MYZuYe91ouJ4mLBX+YkcLiemOcPym2CBRYHNOyyjmG0mg3BVd9RcLn5S3IHHoXGHblzqdLFEi/368Ygo79JRnxTkXjgmY0rxlJ5bU1zIKaSDuKdiI+XUkKJX8Fvf8W8vsixYOr',
- 'openid_dh_gen'=>'Ag==',
- 'openid_dh_consumer_public'=>'RqexRm+Zn5s3sXxFBjI9WfCOBwBDDQBKPzX4fjMGl3YEJh5tx8SVo7awgwuqsliR+nvjmRh5kSFIGv8YSCsy88v1CcAfWUGfjehO9euxQcXOYJnNGbl6GQrE2FYe2RCvML4Yi8eYCYtCQi0wlDE7BJXGSVPXFzj/ru0lR/voPpk=',
- ));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'HMAC-SHA1', $res['assoc_type'] );
- $this->assertSame( 'DH-SHA1', $res['session_type'] );
- $this->assertTrue( isset($res['dh_server_public']) );
- $this->assertTrue( isset($res['enc_mac_key']) );
- $this->assertSame( 20, strlen(base64_decode($res['enc_mac_key'])) );
- $this->assertTrue( isset($res['assoc_handle']) );
- $this->assertSame( '3600', $res['expires_in'] );
- $this->assertTrue( $storage->getAssociation($res['assoc_handle'], $macFunc, $secret, $expires) );
- $this->assertSame( 'sha1', $macFunc );
- // Associaation with DH-SHA256 encryption (OpenID 2.0)
- $ret = $provider->handle(array('openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_assoc_type'=>'HMAC-SHA256',
- 'openid_mode'=>'associate',
- 'openid_session_type'=>'DH-SHA256',
- 'openid_dh_modulus'=>'ANz5OguIOXLsDhmYmsWizjEOHTdxfo2Vcbt2I3MYZuYe91ouJ4mLBX+YkcLiemOcPym2CBRYHNOyyjmG0mg3BVd9RcLn5S3IHHoXGHblzqdLFEi/368Ygo79JRnxTkXjgmY0rxlJ5bU1zIKaSDuKdiI+XUkKJX8Fvf8W8vsixYOr',
- 'openid_dh_gen'=>'Ag==',
- 'openid_dh_consumer_public'=>'RqexRm+Zn5s3sXxFBjI9WfCOBwBDDQBKPzX4fjMGl3YEJh5tx8SVo7awgwuqsliR+nvjmRh5kSFIGv8YSCsy88v1CcAfWUGfjehO9euxQcXOYJnNGbl6GQrE2FYe2RCvML4Yi8eYCYtCQi0wlDE7BJXGSVPXFzj/ru0lR/voPpk=',
- ));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'HMAC-SHA256', $res['assoc_type'] );
- $this->assertSame( 'DH-SHA256', $res['session_type'] );
- $this->assertTrue( isset($res['dh_server_public']) );
- $this->assertTrue( isset($res['enc_mac_key']) );
- $this->assertSame( 32, strlen(base64_decode($res['enc_mac_key'])) );
- $this->assertTrue( isset($res['assoc_handle']) );
- $this->assertSame( '3600', $res['expires_in'] );
- $this->assertTrue( $storage->getAssociation($res['assoc_handle'], $macFunc, $secret, $expires) );
- $this->assertSame( 'sha256', $macFunc );
- } catch (Zend_OpenId_Exception $e) {
- $this->markTestSkipped($e->getMessage());
- }
- }
- /**
- * testing _checkAuthentication
- *
- */
- public function testCheckAuthentication()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, $storage);
- // Wrong arguments
- $ret = $provider->handle(array('openid_mode'=>'check_authentication'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'id_res', $res['openid.mode'] );
- $this->assertSame( 'false', $res['is_valid'] );
- // Wrong arguments (OpenID 2.0)
- $ret = $provider->handle(array('openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_mode'=>'check_authentication'));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $res['ns'] );
- $this->assertSame( 'id_res', $res['openid.mode'] );
- $this->assertSame( 'false', $res['is_valid'] );
- // Wrong session id
- $storage->delAssociation(self::HANDLE);
- $ret = $provider->handle(array('openid_mode'=>'check_authentication',
- 'openid_assoc_handle'=>self::HANDLE));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'id_res', $res['openid.mode'] );
- $this->assertSame( 'false', $res['is_valid'] );
- // Proper session signed with HAMC-SHA256
- $storage->addAssociation(self::HANDLE, "sha1", pack("H*", '0102030405060708091011121314151617181920'), time() + 3660);
- $ret = $provider->handle(array('openid_mode'=>'check_authentication',
- 'openid_assoc_handle'=>self::HANDLE,
- 'openid_signed'=>'mode,assoc_handle,signed',
- 'openid_sig'=>'IgLZCOXmEPowYl6yyFZjYL4ZTtQ='));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'id_res', $res['openid.mode'] );
- $this->assertSame( 'true', $res['is_valid'] );
- // Proper session signed with HAMC-SHA256
- $storage->delAssociation(self::HANDLE);
- $storage->addAssociation(self::HANDLE, "sha256", pack("H*", '0102030405060708091011121314151617181920212223242526272829303132'), time() + 3660);
- $ret = $provider->handle(array('openid_mode'=>'check_authentication',
- 'openid_assoc_handle'=>self::HANDLE,
- 'openid_signed'=>'mode,assoc_handle,signed',
- 'openid_sig'=>'xoJcXj30L1N7QRir7I2ovop1SaijXnAI97X/yH+kvck='));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'id_res', $res['openid.mode'] );
- $this->assertSame( 'true', $res['is_valid'] );
- // Wrong signature
- $storage->delAssociation(self::HANDLE);
- $storage->addAssociation(self::HANDLE, "sha256", pack("H*", '0102030405060708091011121314151617181920212223242526272829303132'), time() + 3660);
- $ret = $provider->handle(array('openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_mode'=>'check_authentication',
- 'openid_assoc_handle'=>self::HANDLE,
- 'openid_signed'=>'ns,mode,assoc_handle,signed',
- 'openid_sig'=>'xoJcXj30L1N7QRir7I2ovop1SaijXnAI97X/yH+kvck='));
- $res = array();
- foreach (explode("\n", $ret) as $line) {
- if (!empty($line)) {
- list($key, $val) = explode(":", $line, 2);
- $res[$key] = $val;
- }
- }
- $this->assertSame( 'id_res', $res['openid.mode'] );
- $this->assertSame( 'false', $res['is_valid'] );
- $storage->delAssociation(self::HANDLE);
- }
- /**
- * testing respondToConsumer
- *
- */
- public function testRespondToConsumer()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, $storage);
- // dumb mode
- $response = new Zend_OpenId_ResponseHelper(true);
- $storage->delAssociation(self::HANDLE);
- $this->assertTrue( $provider->respondToConsumer(array(
- 'openid_assoc_handle' => self::HANDLE,
- 'openid_return_to' => 'http://www.test.com/test.php'
- ), null, $response) );
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $ret = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $ret[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $ret['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $ret['openid.return_to'] );
- $this->assertTrue( isset($ret['openid.assoc_handle']) );
- $this->assertTrue( isset($ret['openid.response_nonce']) );
- $this->assertTrue( isset($ret['openid.signed']) );
- $this->assertTrue( isset($ret['openid.sig']) );
- $this->assertTrue( $storage->getAssociation($ret['openid.assoc_handle'], $macFunc, $secret, $expires) );
- $this->assertSame( 'sha1', $macFunc );
- // OpenID 2.0 with SHA256
- $_SERVER['SCRIPT_URI'] = "http://www.test.com/endpoint.php";
- $response = new Zend_OpenId_ResponseHelper(true);
- $storage->addAssociation(self::HANDLE, "sha256", pack("H*", '0102030405060708091011121314151617181920212223242526272829303132'), time() + 3660);
- $this->assertTrue( $provider->respondToConsumer(array(
- 'openid_ns' => Zend_OpenId::NS_2_0,
- 'openid_assoc_handle' => self::HANDLE,
- 'openid_return_to' => 'http://www.test.com/test.php'
- ), null, $response) );
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $ret = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $ret[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $ret['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $ret['openid.return_to'] );
- $this->assertSame( self::HANDLE, $ret['openid.assoc_handle'] );
- $this->assertTrue( isset($ret['openid.response_nonce']) );
- $this->assertTrue( isset($ret['openid.signed']) );
- $this->assertTrue( isset($ret['openid.sig']) );
- $this->assertSame( Zend_OpenId::NS_2_0, $ret['openid.ns'] );
- $this->assertSame( "http://www.test.com/endpoint.php", $ret['openid.op_endpoint'] );
- $this->assertTrue( $storage->getAssociation(self::HANDLE, $macFunc, $secret, $expires) );
- $this->assertSame( 'sha256', $macFunc );
- $storage->delAssociation(self::HANDLE);
- // OpenID 1.1 with SHA1
- $storage->addAssociation(self::HANDLE, "sha1", pack("H*", '0102030405060708091011121314151617181920'), time() + 3660);
- $response = new Zend_OpenId_ResponseHelper(true);
- $ret = $provider->respondToConsumer(array(
- 'openid_assoc_handle' => self::HANDLE,
- 'openid_return_to' => 'http://www.test.com/test.php',
- 'openid_claimed_id' => 'http://claimed_id/',
- 'openid_identity' => 'http://identity/',
- 'openid_unknown' => 'http://www.test.com/test.php',
- ), null, $response);
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $ret = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $ret[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $ret['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $ret['openid.return_to'] );
- $this->assertSame( self::HANDLE, $ret['openid.assoc_handle'] );
- $this->assertTrue( isset($ret['openid.response_nonce']) );
- $this->assertTrue( isset($ret['openid.signed']) );
- $this->assertTrue( isset($ret['openid.sig']) );
- $this->assertFalse( isset($ret['openid.ns']) );
- $this->assertFalse( isset($ret['openid.op_endpoint']) );
- $this->assertSame( 'http://claimed_id/', $ret['openid.claimed_id'] );
- $this->assertSame( 'http://identity/', $ret['openid.identity'] );
- $this->assertFalse( isset($ret['openid.unknown']) );
- $this->assertTrue( $storage->getAssociation(self::HANDLE, $macFunc, $secret, $expires) );
- $this->assertSame( 'sha1', $macFunc );
- $storage->delAssociation(self::HANDLE);
- // extensions
- $sreg = new Zend_OpenId_Extension_Sreg(array("nickname"=>"test_id"));
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue( $provider->respondToConsumer(array(
- 'openid_return_to' => 'http://www.test.com/test.php',
- ), $sreg, $response) );
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $ret = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $ret[$key] = urldecode($val);
- }
- $this->assertSame( 'test_id', $ret['openid.sreg.nickname'] );
- }
- /**
- * testing _checkId
- *
- */
- public function testCheckIdImmediate()
- {
- $_SERVER['SCRIPT_URI'] = "http://www.test.com/server.php";
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, $storage);
- $provider->logout();
- // Wrong arguments (no openid.return_to and openid.trust_root)
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertFalse( $provider->handle(array(
- 'openid_mode'=>'checkid_immediate'),
- null, $response) );
- // Unexistent user
- $storage->delUser(self::USER);
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $this->assertSame( 'http://www.test.com/test.php?openid.mode=cancel', $headers[0]['value'] );
- // No openid_identity
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $url2 = parse_url($query['openid.user_setup_url']);
- $this->assertSame( 'www.test.com', $url2['host'] );
- $this->assertSame( '/server.php', $url2['path'] );
- $query2 = array();
- foreach (explode('&', $url2['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query2[$key] = urldecode($val);
- }
- $this->assertSame( 'login', $query2['openid.action'] );
- $this->assertSame( 'checkid_setup', $query2['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query2['openid.return_to'] );
- // Non logged in user
- $provider->register(self::USER, self::PASSWORD);
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $url2 = parse_url($query['openid.user_setup_url']);
- $this->assertSame( 'www.test.com', $url2['host'] );
- $this->assertSame( '/server.php', $url2['path'] );
- $query2 = array();
- foreach (explode('&', $url2['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query2[$key] = urldecode($val);
- }
- $this->assertSame( 'login', $query2['openid.action'] );
- $this->assertSame( 'checkid_setup', $query2['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query2['openid.return_to'] );
- $this->assertSame( self::USER, $query2['openid.identity'] );
- // Non logged in user with SREG
- $provider->register(self::USER, self::PASSWORD);
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php',
- 'openid_ns_sreg'=>Zend_OpenId_Extension_Sreg::NAMESPACE_1_1,
- 'openid_sreg_required'=>'nickname'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $url2 = parse_url($query['openid.user_setup_url']);
- $this->assertSame( 'www.test.com', $url2['host'] );
- $this->assertSame( '/server.php', $url2['path'] );
- $query2 = array();
- foreach (explode('&', $url2['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query2[$key] = urldecode($val);
- }
- $this->assertSame( 'login', $query2['openid.action'] );
- $this->assertSame( 'checkid_setup', $query2['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query2['openid.return_to'] );
- $this->assertSame( self::USER, $query2['openid.identity'] );
- $this->assertSame( Zend_OpenId_Extension_Sreg::NAMESPACE_1_1, $query2['openid.ns.sreg'] );
- $this->assertSame( "nickname", $query2['openid.sreg.required'] );
- // Logged in user (unknown site)
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $url2 = parse_url($query['openid.user_setup_url']);
- $this->assertSame( 'www.test.com', $url2['host'] );
- $this->assertSame( '/server.php', $url2['path'] );
- $query2 = array();
- foreach (explode('&', $url2['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query2[$key] = urldecode($val);
- }
- $this->assertSame( 'trust', $query2['openid.action'] );
- $this->assertSame( 'checkid_setup', $query2['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query2['openid.return_to'] );
- $this->assertSame( self::USER, $query2['openid.identity'] );
- // Logged in user (unknown site 2)
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $this->assertTrue( $provider->allowSite('http://www.test.com/test1.php') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $url2 = parse_url($query['openid.user_setup_url']);
- $this->assertSame( 'www.test.com', $url2['host'] );
- $this->assertSame( '/server.php', $url2['path'] );
- $query2 = array();
- foreach (explode('&', $url2['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query2[$key] = urldecode($val);
- }
- $this->assertSame( 'trust', $query2['openid.action'] );
- $this->assertSame( 'checkid_setup', $query2['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query2['openid.return_to'] );
- $this->assertSame( self::USER, $query2['openid.identity'] );
- // Logged in user (unknown site + SREG)
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue( $provider->delSite('http://www.test.com/test1.php') );
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php',
- 'openid_ns_sreg'=>Zend_OpenId_Extension_Sreg::NAMESPACE_1_1,
- 'openid_sreg_required'=>'nickname'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $url2 = parse_url($query['openid.user_setup_url']);
- $this->assertSame( 'www.test.com', $url2['host'] );
- $this->assertSame( '/server.php', $url2['path'] );
- $query2 = array();
- foreach (explode('&', $url2['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query2[$key] = urldecode($val);
- }
- $this->assertSame( 'trust', $query2['openid.action'] );
- $this->assertSame( 'checkid_setup', $query2['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query2['openid.return_to'] );
- $this->assertSame( self::USER, $query2['openid.identity'] );
- $this->assertSame( Zend_OpenId_Extension_Sreg::NAMESPACE_1_1, $query2['openid.ns.sreg'] );
- $this->assertSame( "nickname", $query2['openid.sreg.required'] );
- // Logged in user (untrusted site)
- $this->assertTrue( $provider->denySite('http://www.test.com') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $this->assertSame( 'http://www.test.com/test.php?openid.mode=cancel', $headers[0]['value'] );
- // Logged in user (untrusted site with wildcard)
- $this->assertTrue( $provider->delSite('http://www.test.com') );
- $this->assertTrue( $provider->denySite('http://*.test.com') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $this->assertSame( 'http://www.test.com/test.php?openid.mode=cancel', $headers[0]['value'] );
- // Logged in user (trusted site)
- $this->assertTrue( $provider->delSite('http://*.test.com') );
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertTrue( isset($query['openid.assoc_handle']) );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 20, strlen(base64_decode($query['openid.sig'])) );
- // Logged in user (trusted site without openid.return_to)
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_trust_root'=>'http://www.test.com/test.php'),
- null, $response));
- $this->assertSame( array(), $response->getHeaders() );
- $this->assertSame( '', $response->getBody() );
- // Logged in user (trusted site) & OpenID 2.0 & established session
- $storage->delAssociation(self::HANDLE);
- $storage->addAssociation(self::HANDLE, "sha1", pack("H*", '0102030405060708091011121314151617181920'), time() + 3660);
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_assoc_handle'=>self::HANDLE,
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $query['openid.ns'] );
- $this->assertSame( "http://www.test.com/server.php", $query['openid.op_endpoint'] );
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertSame( self::HANDLE, $query['openid.assoc_handle'] );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 20, strlen(base64_decode($query['openid.sig'])) );
- // Logged in user (trusted site) & invalid association handle
- $storage->delAssociation(self::HANDLE);
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_assoc_handle'=>self::HANDLE,
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $query['openid.ns'] );
- $this->assertSame( "http://www.test.com/server.php", $query['openid.op_endpoint'] );
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertSame( self::HANDLE, $query['openid.invalidate_handle'] );
- $this->assertTrue( isset($query['openid.assoc_handle']) );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 32, strlen(base64_decode($query['openid.sig'])) );
- // SREG success
- $sreg = new Zend_OpenId_Extension_Sreg(array('nickname'=>'test','email'=>'test@test.com'));
- $this->assertTrue( $provider->allowSite('http://www.test.com/', $sreg) );
- $sreg = new Zend_OpenId_Extension_Sreg();
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php',
- 'openid_ns_sreg'=>Zend_OpenId_Extension_Sreg::NAMESPACE_1_1,
- 'openid_sreg_required'=>'nickname',
- 'openid_sreg_optional'=>'email',
- ),
- $sreg, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $query['openid.ns'] );
- $this->assertSame( "http://www.test.com/server.php", $query['openid.op_endpoint'] );
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertTrue( isset($query['openid.assoc_handle']) );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 32, strlen(base64_decode($query['openid.sig'])) );
- $this->assertSame( Zend_OpenId_Extension_Sreg::NAMESPACE_1_1, $query['openid.ns.sreg'] );
- $this->assertSame( 'test', $query['openid.sreg.nickname'] );
- $this->assertSame( 'test@test.com', $query['openid.sreg.email'] );
- // SREG failed
- $sreg = new Zend_OpenId_Extension_Sreg(array('nickname'=>'test'));
- $this->assertTrue( $provider->allowSite('http://www.test.com/', $sreg) );
- $sreg = new Zend_OpenId_Extension_Sreg();
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_immediate',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php',
- 'openid_sreg_required'=>'nickname,email',
- ),
- $sreg, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $url2 = parse_url($query['openid.user_setup_url']);
- $this->assertSame( 'www.test.com', $url2['host'] );
- $this->assertSame( '/server.php', $url2['path'] );
- $query2 = array();
- foreach (explode('&', $url2['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query2[$key] = urldecode($val);
- }
- $this->assertSame( 'trust', $query2['openid.action'] );
- $this->assertSame( 'checkid_setup', $query2['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query2['openid.return_to'] );
- $this->assertSame( self::USER, $query2['openid.identity'] );
- $this->assertSame( "nickname,email", $query2['openid.sreg.required'] );
- $provider->logout();
- $storage->delUser(self::USER);
- }
- /**
- * testing handle
- *
- */
- public function testCheckIdSetup()
- {
- $_SERVER['SCRIPT_URI'] = "http://www.test.com/server.php";
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, $storage);
- $provider->logout();
- // Wrong arguments (no openid.return_to and openid.trust_root)
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertFalse( $provider->handle(array(
- 'openid_mode'=>'checkid_setup'),
- null, $response) );
- // Unexistent user
- $storage->delUser(self::USER);
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $this->assertSame( 'http://www.test.com/test.php?openid.mode=cancel', $headers[0]['value'] );
- // No openid_identity
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/server.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'login', $query['openid.action'] );
- $this->assertSame( 'checkid_setup', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- // Non logged in user
- $provider->register(self::USER, self::PASSWORD);
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/server.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'login', $query['openid.action'] );
- $this->assertSame( 'checkid_setup', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- // Logged in user (unknown site)
- $this->assertTrue( $provider->login(self::USER, self::PASSWORD) );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/server.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'trust', $query['openid.action'] );
- $this->assertSame( 'checkid_setup', $query['openid.mode'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- // Logged in user (untrusted site)
- $this->assertTrue( $provider->denySite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $this->assertSame( 'http://www.test.com/test.php?openid.mode=cancel', $headers[0]['value'] );
- // Logged in user (trusted site)
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertTrue( isset($query['openid.assoc_handle']) );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 20, strlen(base64_decode($query['openid.sig'])) );
- // Logged in user (trusted site without openid.return_to)
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_trust_root'=>'http://www.test.com/test.php'),
- null, $response));
- $this->assertSame( array(), $response->getHeaders() );
- $this->assertSame( '', $response->getBody() );
- // Logged in user (trusted site) & OpenID 2.0 & established session
- $storage->delAssociation(self::HANDLE);
- $storage->addAssociation(self::HANDLE, "sha1", pack("H*", '0102030405060708091011121314151617181920'), time() + 3660);
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_assoc_handle'=>self::HANDLE,
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $query['openid.ns'] );
- $this->assertSame( "http://www.test.com/server.php", $query['openid.op_endpoint'] );
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertSame( self::HANDLE, $query['openid.assoc_handle'] );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 20, strlen(base64_decode($query['openid.sig'])) );
- // Logged in user (trusted site) & invalid association handle
- $storage->delAssociation(self::HANDLE);
- $this->assertTrue( $provider->allowSite('http://www.test.com/') );
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_assoc_handle'=>self::HANDLE,
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php'),
- null, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $query['openid.ns'] );
- $this->assertSame( "http://www.test.com/server.php", $query['openid.op_endpoint'] );
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertSame( self::HANDLE, $query['openid.invalidate_handle'] );
- $this->assertTrue( isset($query['openid.assoc_handle']) );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 32, strlen(base64_decode($query['openid.sig'])) );
- // SREG success
- $sreg = new Zend_OpenId_Extension_Sreg(array('nickname'=>'test','email'=>'test@test.com'));
- $this->assertTrue( $provider->allowSite('http://www.test.com/', $sreg) );
- $sreg = new Zend_OpenId_Extension_Sreg();
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_ns'=>Zend_OpenId::NS_2_0,
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php',
- 'openid_ns_sreg'=>Zend_OpenId_Extension_Sreg::NAMESPACE_1_1,
- 'openid_sreg_required'=>'nickname',
- 'openid_sreg_optional'=>'email',
- ),
- $sreg, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( Zend_OpenId::NS_2_0, $query['openid.ns'] );
- $this->assertSame( "http://www.test.com/server.php", $query['openid.op_endpoint'] );
- $this->assertSame( 'id_res', $query['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertTrue( isset($query['openid.assoc_handle']) );
- $this->assertTrue( isset($query['openid.response_nonce']) );
- $this->assertTrue( isset($query['openid.signed']) );
- $this->assertTrue( isset($query['openid.sig']) );
- $this->assertSame( 32, strlen(base64_decode($query['openid.sig'])) );
- $this->assertSame( Zend_OpenId_Extension_Sreg::NAMESPACE_1_1, $query['openid.ns.sreg'] );
- $this->assertSame( 'test', $query['openid.sreg.nickname'] );
- $this->assertSame( 'test@test.com', $query['openid.sreg.email'] );
- // SREG failed
- $sreg = new Zend_OpenId_Extension_Sreg(array('nickname'=>'test'));
- $this->assertTrue( $provider->allowSite('http://www.test.com/', $sreg) );
- $sreg = new Zend_OpenId_Extension_Sreg();
- $response = new Zend_OpenId_ResponseHelper(true);
- $this->assertTrue($provider->handle(array(
- 'openid_mode'=>'checkid_setup',
- 'openid_identity'=>self::USER,
- 'openid_return_to'=>'http://www.test.com/test.php',
- 'openid_sreg_required'=>'nickname,email',
- ),
- $sreg, $response));
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/server.php', $url['path'] );
- $query = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $query[$key] = urldecode($val);
- }
- $this->assertSame( 'trust', $query['openid.action'] );
- $this->assertSame( 'checkid_setup', $query['openid.mode'] );
- $this->assertSame( self::USER, $query['openid.identity'] );
- $this->assertSame( 'http://www.test.com/test.php', $query['openid.return_to'] );
- $this->assertSame( 'nickname,email', $query['openid.sreg.required'] );
- $provider->logout();
- $storage->delUser(self::USER);
- }
- /**
- * testing handle
- *
- */
- public function testHandle()
- {
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider"));
- // no openid_mode
- $this->assertFalse( $provider->handle(array()) );
- // wrong openid_mode
- $this->assertFalse( $provider->handle(array('openid_mode'=>'wrong')) );
- }
- /**
- * testing setOpEndpoint
- *
- */
- public function testSetOpEndpoint()
- {
- $storage = new Zend_OpenId_Provider_Storage_File(dirname(__FILE__)."/_files/provider");
- $provider = new Zend_OpenId_ProviderHelper(null, null, $this->_user, $storage);
- $provider->setOpEndpoint("http://www.test.com/real_endpoint.php");
- // OpenID 2.0 with SHA256
- $_SERVER['SCRIPT_URI'] = "http://www.test.com/endpoint.php";
- $response = new Zend_OpenId_ResponseHelper(true);
- $storage->addAssociation(self::HANDLE, "sha256", pack("H*", '0102030405060708091011121314151617181920212223242526272829303132'), time() + 3660);
- $this->assertTrue( $provider->respondToConsumer(array(
- 'openid_ns' => Zend_OpenId::NS_2_0,
- 'openid_assoc_handle' => self::HANDLE,
- 'openid_return_to' => 'http://www.test.com/test.php'
- ), null, $response) );
- $headers = $response->getHeaders();
- $this->assertSame( 'Location', $headers[0]['name'] );
- $url = parse_url($headers[0]['value']);
- $this->assertSame( 'www.test.com', $url['host'] );
- $this->assertSame( '/test.php', $url['path'] );
- $ret = array();
- foreach (explode('&', $url['query']) as $line) {
- list($key,$val) = explode('=', $line, 2);
- $ret[$key] = urldecode($val);
- }
- $this->assertSame( 'id_res', $ret['openid.mode'] );
- $this->assertSame( 'http://www.test.com/test.php', $ret['openid.return_to'] );
- $this->assertSame( self::HANDLE, $ret['openid.assoc_handle'] );
- $this->assertTrue( isset($ret['openid.response_nonce']) );
- $this->assertTrue( isset($ret['openid.signed']) );
- $this->assertTrue( isset($ret['openid.sig']) );
- $this->assertSame( Zend_OpenId::NS_2_0, $ret['openid.ns'] );
- $this->assertSame( "http://www.test.com/real_endpoint.php", $ret['openid.op_endpoint'] );
- $this->assertTrue( $storage->getAssociation(self::HANDLE, $macFunc, $secret, $expires) );
- $this->assertSame( 'sha256', $macFunc );
- $storage->delAssociation(self::HANDLE);
- }
- }
- class Zend_OpenId_ProviderHelper extends Zend_OpenId_Provider
- {
- public function genSecret($func)
- {
- return $this->_genSecret($func);
- }
- }
|