3 +--------------------------------------------------------------------+
4 | CiviCRM version 4.6 |
5 +--------------------------------------------------------------------+
6 | Copyright CiviCRM LLC (c) 2004-2014 |
7 +--------------------------------------------------------------------+
8 | This file is a part of CiviCRM. |
10 | CiviCRM is free software; you can copy, modify, and distribute it |
11 | under the terms of the GNU Affero General Public License |
12 | Version 3, 19 November 2007 and the CiviCRM Licensing Exception. |
14 | CiviCRM is distributed in the hope that it will be useful, but |
15 | WITHOUT ANY WARRANTY; without even the implied warranty of |
16 | MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. |
17 | See the GNU Affero General Public License for more details. |
19 | You should have received a copy of the GNU Affero General Public |
20 | License and the CiviCRM Licensing Exception along |
21 | with this program; if not, contact CiviCRM LLC |
22 | at info[AT]civicrm[DOT]org. If you have questions about the |
23 | GNU Affero General Public License or the licensing of CiviCRM, |
24 | see the CiviCRM license FAQ at http://civicrm.org/licensing |
25 +--------------------------------------------------------------------+
31 * @copyright CiviCRM LLC (c) 2004-2014
37 * A utility which signs and verifies a list of key-value pairs
39 * FIXME: Add TTL support?
42 * $signer = new CRM_Utils_Signer('myprivatekey', array('param1','param2'));
44 * 'param1' => 'hello',
45 * 'param2' => 'world',
47 * $token = $signer->sign($params);
49 * assertTrue($signer->validate($token, $params));
52 class CRM_Utils_Signer
{
54 * Expected length of the salt
61 * Instantiate a signature-processor
63 * @param string $secret
65 * @param array $paramNames
66 * Array, fields which should be part of the signature.
68 public function __construct($secret, $paramNames) {
69 sort($paramNames); // ensure consistent serialization of payloads
70 $this->secret
= $secret;
71 $this->paramNames
= $paramNames;
72 $this->signDelim
= "_"; // chosen to be valid in URLs but not in salt or md5
73 $this->defaultSalt
= CRM_Utils_String
::createRandom(self
::SALT_LEN
, CRM_Utils_String
::ALPHANUMERIC
);
77 * Generate a signature for a set of key-value pairs
79 * @param array $params
80 * Array, key-value pairs.
82 * the salt (if known) or NULL (for auto-generated).
83 * @return string, the full public token representing the signature
85 public function sign($params, $salt = NULL) {
87 $message['secret'] = $this->secret
;
88 $message['payload'] = array();
90 $message['salt'] = $this->createSalt();
93 $message['salt'] = $salt;
95 // recall: paramNames is pre-sorted for stability
96 foreach ($this->paramNames
as $paramName) {
97 if (isset($params[$paramName])) {
98 if (is_numeric($params[$paramName])) {
99 $params[$paramName] = (string) $params[$paramName];
102 else {// $paramName is not included or ===NULL
103 $params[$paramName] = '';
105 $message['payload'][$paramName] = $params[$paramName];
107 $token = $message['salt'] . $this->signDelim
. md5(serialize($message));
112 * Determine whether a token represents a proper signature for $params
114 * @param string $token
115 * the full public token representing the signature.
116 * @param array $params
117 * Array, key-value pairs.
120 * @return bool, TRUE iff all $paramNames for the submitted validate($params) and the original sign($params)
122 public function validate($token, $params) {
123 list ($salt, $signature) = explode($this->signDelim
, $token);
124 if (strlen($salt) != self
::SALT_LEN
) {
125 throw new Exception("Invalid salt [$token]=[$salt][$signature]");
127 $newToken = $this->sign($params, $salt);
128 return ($token == $newToken);
134 public function createSalt() {
135 // It would be more secure to generate a new value but liable to run this
136 // many times on certain admin pages; so instead we'll re-use the hash.
137 return $this->defaultSalt
;