2018-07-10 01:26:02 +01:00
|
|
|
<?php
|
|
|
|
/**
|
|
|
|
* GNU social - a federating social network
|
|
|
|
*
|
2018-07-10 01:47:52 +01:00
|
|
|
* ActivityPubPlugin implementation for GNU Social
|
2018-07-10 01:26:02 +01:00
|
|
|
*
|
|
|
|
* LICENCE: This program is free software: you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU Affero General Public License as published by
|
|
|
|
* the Free Software Foundation, either version 3 of the License, or
|
|
|
|
* (at your option) any later version.
|
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU Affero General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU Affero General Public License
|
|
|
|
* along with this program. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
*
|
|
|
|
* @category Plugin
|
|
|
|
* @package GNUsocial
|
|
|
|
* @author Diogo Cordeiro <diogo@fc.up.pt>
|
|
|
|
* @author Daniel Supernault <danielsupernault@gmail.com>
|
2018-07-10 01:47:52 +01:00
|
|
|
* @copyright 2018 Free Software Foundation http://fsf.org
|
2018-07-10 01:26:02 +01:00
|
|
|
* @license http://www.fsf.org/licensing/licenses/agpl-3.0.html GNU Affero General Public License version 3.0
|
2018-07-10 01:47:52 +01:00
|
|
|
* @link https://www.gnu.org/software/social/
|
2018-07-10 01:26:02 +01:00
|
|
|
*/
|
2018-07-10 01:47:52 +01:00
|
|
|
if (!defined ('GNUSOCIAL')) {
|
|
|
|
exit (1);
|
|
|
|
}
|
2018-07-10 01:26:02 +01:00
|
|
|
|
2018-07-10 01:47:52 +01:00
|
|
|
/**
|
2018-07-13 12:32:27 +01:00
|
|
|
* Shared Inbox Handler
|
|
|
|
*
|
2018-07-10 01:47:52 +01:00
|
|
|
* @category Plugin
|
|
|
|
* @package GNUsocial
|
|
|
|
* @author Diogo Cordeiro <diogo@fc.up.pt>
|
|
|
|
* @license http://www.fsf.org/licensing/licenses/agpl-3.0.html GNU Affero General Public License version 3.0
|
|
|
|
* @link http://www.gnu.org/software/social/
|
|
|
|
*/
|
2018-07-10 01:26:02 +01:00
|
|
|
class apSharedInboxAction extends ManagedAction
|
|
|
|
{
|
2018-07-10 01:47:52 +01:00
|
|
|
protected $needLogin = false;
|
|
|
|
protected $canPost = true;
|
2018-07-10 01:26:02 +01:00
|
|
|
|
2018-07-10 01:47:52 +01:00
|
|
|
/**
|
|
|
|
* Handle the Shared Inbox request
|
|
|
|
*
|
2018-07-20 16:04:17 +01:00
|
|
|
* @author Diogo Cordeiro <diogo@fc.up.pt>
|
2018-07-10 01:47:52 +01:00
|
|
|
* @return void
|
|
|
|
*/
|
|
|
|
protected function handle ()
|
|
|
|
{
|
|
|
|
if ($_SERVER['REQUEST_METHOD'] !== 'POST') {
|
|
|
|
ActivityPubReturn::error ("Only POST requests allowed.");
|
|
|
|
}
|
2018-07-10 01:26:02 +01:00
|
|
|
|
2018-07-10 01:47:52 +01:00
|
|
|
$data = json_decode (file_get_contents ('php://input'));
|
2018-07-10 01:26:02 +01:00
|
|
|
|
2018-07-10 01:47:52 +01:00
|
|
|
// Validate data
|
2018-07-15 02:13:46 +01:00
|
|
|
if (!isset ($data->type)) {
|
2018-07-10 01:47:52 +01:00
|
|
|
ActivityPubReturn::error ("Type was not specified.");
|
|
|
|
}
|
2018-07-15 02:13:46 +01:00
|
|
|
if (!isset ($data->actor)) {
|
2018-07-10 01:47:52 +01:00
|
|
|
ActivityPubReturn::error ("Actor was not specified.");
|
|
|
|
}
|
2018-07-15 02:13:46 +01:00
|
|
|
if (!isset ($data->object)) {
|
2018-07-10 01:47:52 +01:00
|
|
|
ActivityPubReturn::error ("Object was not specified.");
|
|
|
|
}
|
2018-07-10 01:26:02 +01:00
|
|
|
|
2018-07-13 00:20:18 +01:00
|
|
|
$discovery = new Activitypub_explorer;
|
2018-07-10 01:26:02 +01:00
|
|
|
|
2018-07-10 01:47:52 +01:00
|
|
|
// Get valid Actor object
|
2018-07-10 01:26:02 +01:00
|
|
|
try {
|
2018-07-10 01:47:52 +01:00
|
|
|
$actor_profile = $discovery->lookup ($data->actor);
|
|
|
|
$actor_profile = $actor_profile[0];
|
2018-07-10 01:26:02 +01:00
|
|
|
} catch (Exception $e) {
|
2018-07-10 01:47:52 +01:00
|
|
|
ActivityPubReturn::error ("Invalid Actor.", 404);
|
2018-07-10 01:26:02 +01:00
|
|
|
}
|
|
|
|
|
2018-07-13 00:20:18 +01:00
|
|
|
unset ($discovery);
|
|
|
|
|
2018-07-10 01:47:52 +01:00
|
|
|
// Public To:
|
|
|
|
$public_to = array ("https://www.w3.org/ns/activitystreams#Public",
|
|
|
|
"Public",
|
|
|
|
"as:Public");
|
|
|
|
|
|
|
|
// Process request
|
|
|
|
switch ($data->type) {
|
|
|
|
case "Create":
|
2018-07-13 00:20:18 +01:00
|
|
|
if (!isset($data->to)) {
|
|
|
|
ActivityPubReturn::error ("To was not specified.");
|
|
|
|
}
|
2018-07-15 02:13:46 +01:00
|
|
|
$discovery = new Activitypub_explorer;
|
2018-07-13 00:20:18 +01:00
|
|
|
$to_profiles = array ();
|
|
|
|
// Generate To objects
|
|
|
|
if (is_array ($data->to)) {
|
|
|
|
// Remove duplicates from To actors set
|
|
|
|
array_unique ($data->to);
|
|
|
|
foreach ($data->to as $to_url) {
|
|
|
|
try {
|
|
|
|
$to_profiles = array_merge ($to_profiles, $discovery->lookup ($to_url));
|
|
|
|
} catch (Exception $e) {
|
|
|
|
// XXX: Invalid actor found, not sure how we handle those
|
|
|
|
}
|
|
|
|
}
|
|
|
|
} else if (empty ($data->to) || in_array ($data->to, $public_to)) {
|
|
|
|
// No need to do anything else at this point, let's just break out the if
|
|
|
|
} else {
|
|
|
|
try {
|
|
|
|
$to_profiles[]= $discovery->lookup ($data->to);
|
|
|
|
} catch (Exception $e) {
|
|
|
|
ActivityPubReturn::error ("Invalid Actor.", 404);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
unset ($discovery);
|
2018-07-10 01:47:52 +01:00
|
|
|
require_once __DIR__ . DIRECTORY_SEPARATOR . "inbox" . DIRECTORY_SEPARATOR . "Create.php";
|
|
|
|
break;
|
|
|
|
case "Follow":
|
|
|
|
require_once __DIR__ . DIRECTORY_SEPARATOR . "inbox" . DIRECTORY_SEPARATOR . "Follow.php";
|
|
|
|
break;
|
|
|
|
case "Like":
|
|
|
|
require_once __DIR__ . DIRECTORY_SEPARATOR . "inbox" . DIRECTORY_SEPARATOR . "Like.php";
|
|
|
|
break;
|
|
|
|
case "Announce":
|
|
|
|
require_once __DIR__ . DIRECTORY_SEPARATOR . "inbox" . DIRECTORY_SEPARATOR . "Announce.php";
|
|
|
|
break;
|
2018-07-13 00:20:18 +01:00
|
|
|
case "Undo":
|
|
|
|
require_once __DIR__ . DIRECTORY_SEPARATOR . "inbox" . DIRECTORY_SEPARATOR . "Undo.php";
|
|
|
|
break;
|
2018-07-15 02:13:46 +01:00
|
|
|
case "Delete":
|
|
|
|
require_once __DIR__ . DIRECTORY_SEPARATOR . "inbox" . DIRECTORY_SEPARATOR . "Delete.php";
|
|
|
|
break;
|
2018-07-10 01:47:52 +01:00
|
|
|
default:
|
|
|
|
ActivityPubReturn::error ("Invalid type value.");
|
|
|
|
}
|
2018-07-10 01:26:02 +01:00
|
|
|
}
|
|
|
|
}
|