gnu-social/tests/oauth/fetch_temp_creds.php

106 lines
3.2 KiB
PHP
Raw Normal View History

#!/usr/bin/env php
<?php
/*
* StatusNet - a distributed open-source microblogging tool
* Copyright (C) 2010, StatusNet, Inc.
*
* This program is free software: you can redistribute it and/or modify
* it under the terms of the GNU Affero General Public License as published by
* the Free Software Foundation, either version 3 of the License, or
* (at your option) any later version.
*
* This program is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU Affero General Public License for more details.
*
* You should have received a copy of the GNU Affero General Public License
* along with this program. If not, see <http://www.gnu.org/licenses/>.
*/
2020-06-24 13:08:11 +01:00
define('INSTALLDIR', realpath(__DIR__ . '/../..'));
require_once INSTALLDIR . '/scripts/commandline.inc';
require_once INSTALLDIR . '/extlib/OAuth.php';
2020-06-24 13:08:11 +01:00
$ini = parse_ini_file('oauth.ini');
// Check to make sure we have everything we need from the ini file
2020-06-24 13:08:11 +01:00
foreach (['consumer_key', 'consumer_secret', 'apiroot', 'request_token_url'] as $inikey) {
if (empty($ini[$inikey])) {
2020-06-24 13:08:11 +01:00
echo "You forgot to specify a {$inikey} in your oauth.ini file.\n";
exit(1);
}
}
$consumer = new OAuthConsumer($ini['consumer_key'], $ini['consumer_secret']);
$endpoint = $ini['apiroot'] . $ini['request_token_url'];
2020-06-24 13:08:11 +01:00
$parsed = parse_url($endpoint);
$params = [];
2010-10-07 03:05:31 +01:00
parse_str($parsed['query'], $params);
2010-10-07 03:05:31 +01:00
$params['oauth_callback'] = 'oob'; // out-of-band
$hmac_method = new OAuthSignatureMethod_HMAC_SHA1();
try {
$req = OAuthRequest::from_consumer_and_token(
$consumer,
null,
2020-06-24 13:08:11 +01:00
'POST',
$endpoint,
$params
);
2020-06-24 13:08:11 +01:00
$req->sign_request($hmac_method, $consumer, null);
$r = httpRequest($endpoint, $req->to_postdata());
} catch (Exception $e) {
// oh noez
2020-06-24 13:08:11 +01:00
echo $e->getMessage();
echo "\nOAuth Request:\n";
var_dump($req);
exit(1);
}
2020-06-24 13:08:11 +01:00
$body = $r->getBody();
$tokenStuff = [];
2010-10-07 03:05:31 +01:00
parse_str($body, $tokenStuff);
2020-06-24 13:08:11 +01:00
$tok = $tokenStuff['oauth_token'];
2010-10-07 03:05:31 +01:00
$confirmed = $tokenStuff['oauth_callback_confirmed'];
if (empty($tokenStuff['oauth_token'])
|| empty($tokenStuff['oauth_token_secret'])
|| empty($confirmed)
2020-06-24 13:08:11 +01:00
|| $confirmed != 'true') {
echo "Error! HTTP response body: {$body}\n";
exit(1);
}
2010-10-07 03:05:31 +01:00
$authurl = $ini['apiroot'] . $ini['authorize_url'] . '?oauth_token=' . $tok;
2020-06-24 13:08:11 +01:00
echo "Request Token\n";
echo ' - oauth_token = ' . $tokenStuff['oauth_token'] . "\n";
echo ' - oauth_token_secret = ' . $tokenStuff['oauth_token_secret'] . "\n";
echo "Authorize URL\n {$authurl}\n\n";
echo "Now paste the Authorize URL into your browser and authorize your temporary credentials.\n";
function httpRequest($endpoint, $poststr)
{
$request = HTTPClient::start();
$request->setConfig(
2020-06-24 13:08:11 +01:00
[
'follow_redirects' => true,
2020-06-24 13:08:11 +01:00
'connect_timeout' => 120,
'timeout' => 120,
'ssl_verify_peer' => false,
'ssl_verify_host' => false,
]
);
// Turn signed request query string back into an array
parse_str($poststr, $postdata);
return $request->post($endpoint, null, $postdata);
}