Subversion Repositories oidplus

Rev

Rev 1116 | Blame | Compare with Previous | Last modification | View Log | RSS feed

  1. <?php
  2.  
  3. /*
  4.  * OIDplus 2.0
  5.  * Copyright 2023 Daniel Marschall, ViaThinkSoft
  6.  *
  7.  * Licensed under the Apache License, Version 2.0 (the "License");
  8.  * you may not use this file except in compliance with the License.
  9.  * You may obtain a copy of the License at
  10.  *
  11.  *     http://www.apache.org/licenses/LICENSE-2.0
  12.  *
  13.  * Unless required by applicable law or agreed to in writing, software
  14.  * distributed under the License is distributed on an "AS IS" BASIS,
  15.  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  16.  * See the License for the specific language governing permissions and
  17.  * limitations under the License.
  18.  */
  19.  
  20. namespace ViaThinkSoft\OIDplus;
  21.  
  22. // phpcs:disable PSR1.Files.SideEffects
  23. \defined('INSIDE_OIDPLUS') or die;
  24. // phpcs:enable PSR1.Files.SideEffects
  25.  
  26. class OIDplusAuthPluginVtsMcf extends OIDplusAuthPlugin {
  27.  
  28.         /**
  29.          * @return string
  30.          */
  31.         public function id(): string {
  32.                 return 'A5_vts_mcf';
  33.         }
  34.  
  35.         /**
  36.          * @param OIDplusRAAuthInfo $authInfo
  37.          * @param string $check_password
  38.          * @return bool
  39.          */
  40.         public function verify(OIDplusRAAuthInfo $authInfo, string $check_password): bool {
  41.                 $authKey = $authInfo->getAuthKey();
  42.  
  43.                 if (vts_crypt_version($authKey) != '0') {
  44.                         return vts_password_verify($check_password, $authKey);
  45.                 } else {
  46.                         return false;
  47.                 }
  48.         }
  49.  
  50.         /**
  51.          * @param string $password
  52.          * @return OIDplusRAAuthInfo
  53.          * @throws OIDplusException
  54.          */
  55.         public function generate(string $password): OIDplusRAAuthInfo {
  56.                 $calc_authkey = vts_password_hash($password, PASSWORD_VTS_MCF1, array(
  57.                         'algo' => 'sha3-512', // we can safely use it, because we have a pure-PHP implementation shipped with OIDplus
  58.                         'mode' => 'hmac'
  59.                 ));
  60.                 return new OIDplusRAAuthInfo($calc_authkey);
  61.         }
  62.  
  63.         /**
  64.          * @param string $reason
  65.          * @return bool
  66.          */
  67.         public function availableForHash(string &$reason): bool {
  68.                 return function_exists('vts_password_hash');
  69.         }
  70.  
  71.         /**
  72.          * @param string $reason
  73.          * @return bool
  74.          */
  75.         public function availableForVerify(string &$reason): bool {
  76.                 return function_exists('vts_password_verify');
  77.         }
  78.  
  79. }
  80.