2010-09-01 12:56:06 +01:00
|
|
|
<?php
|
|
|
|
|
|
|
|
/*
|
|
|
|
* This file is part of the Symfony package.
|
|
|
|
*
|
2011-03-06 11:40:06 +00:00
|
|
|
* (c) Fabien Potencier <fabien@symfony.com>
|
2010-09-01 12:56:06 +01:00
|
|
|
*
|
|
|
|
* For the full copyright and license information, please view the LICENSE
|
|
|
|
* file that was distributed with this source code.
|
|
|
|
*/
|
|
|
|
|
2011-01-15 13:29:43 +00:00
|
|
|
namespace Symfony\Component\HttpFoundation;
|
|
|
|
|
2010-09-01 12:56:06 +01:00
|
|
|
/**
|
|
|
|
* RequestMatcher compares a pre-defined set of checks against a Request instance.
|
|
|
|
*
|
2011-03-06 11:40:06 +00:00
|
|
|
* @author Fabien Potencier <fabien@symfony.com>
|
2011-07-20 09:06:02 +01:00
|
|
|
*
|
|
|
|
* @api
|
2010-09-01 12:56:06 +01:00
|
|
|
*/
|
|
|
|
class RequestMatcher implements RequestMatcherInterface
|
|
|
|
{
|
2011-05-28 21:37:43 +01:00
|
|
|
private $path;
|
|
|
|
private $host;
|
|
|
|
private $methods;
|
|
|
|
private $ip;
|
|
|
|
private $attributes;
|
2011-01-21 10:00:52 +00:00
|
|
|
|
|
|
|
public function __construct($path = null, $host = null, $methods = null, $ip = null, array $attributes = array())
|
|
|
|
{
|
|
|
|
$this->path = $path;
|
|
|
|
$this->host = $host;
|
|
|
|
$this->methods = $methods;
|
|
|
|
$this->ip = $ip;
|
|
|
|
$this->attributes = $attributes;
|
|
|
|
}
|
2010-09-01 12:56:06 +01:00
|
|
|
|
|
|
|
/**
|
|
|
|
* Adds a check for the URL host name.
|
|
|
|
*
|
|
|
|
* @param string $regexp A Regexp
|
|
|
|
*/
|
|
|
|
public function matchHost($regexp)
|
|
|
|
{
|
|
|
|
$this->host = $regexp;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Adds a check for the URL path info.
|
|
|
|
*
|
|
|
|
* @param string $regexp A Regexp
|
|
|
|
*/
|
|
|
|
public function matchPath($regexp)
|
|
|
|
{
|
|
|
|
$this->path = $regexp;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Adds a check for the client IP.
|
|
|
|
*
|
|
|
|
* @param string $ip A specific IP address or a range specified using IP/netmask like 192.168.1.0/24
|
|
|
|
*/
|
|
|
|
public function matchIp($ip)
|
|
|
|
{
|
|
|
|
$this->ip = $ip;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Adds a check for the HTTP method.
|
|
|
|
*
|
2011-04-23 16:05:44 +01:00
|
|
|
* @param string|array $method An HTTP method or an array of HTTP methods
|
2010-09-01 12:56:06 +01:00
|
|
|
*/
|
|
|
|
public function matchMethod($method)
|
|
|
|
{
|
2011-06-14 15:08:07 +01:00
|
|
|
$this->methods = array_map('strtoupper', is_array($method) ? $method : array($method));
|
2010-09-01 12:56:06 +01:00
|
|
|
}
|
|
|
|
|
2010-10-05 19:20:28 +01:00
|
|
|
/**
|
|
|
|
* Adds a check for request attribute.
|
|
|
|
*
|
|
|
|
* @param string $key The request attribute name
|
|
|
|
* @param string $regexp A Regexp
|
|
|
|
*/
|
|
|
|
public function matchAttribute($key, $regexp)
|
|
|
|
{
|
|
|
|
$this->attributes[$key] = $regexp;
|
|
|
|
}
|
|
|
|
|
2010-09-01 12:56:06 +01:00
|
|
|
/**
|
|
|
|
* {@inheritdoc}
|
2011-07-20 09:06:02 +01:00
|
|
|
*
|
|
|
|
* @api
|
2010-09-01 12:56:06 +01:00
|
|
|
*/
|
|
|
|
public function matches(Request $request)
|
|
|
|
{
|
2011-06-14 15:08:07 +01:00
|
|
|
if (null !== $this->methods && !in_array($request->getMethod(), $this->methods)) {
|
2010-09-01 12:56:06 +01:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
2010-10-05 19:20:28 +01:00
|
|
|
foreach ($this->attributes as $key => $pattern) {
|
2011-03-23 20:27:04 +00:00
|
|
|
if (!preg_match('#'.str_replace('#', '\\#', $pattern).'#', $request->attributes->get($key))) {
|
2010-10-05 19:20:28 +01:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2011-05-28 21:37:43 +01:00
|
|
|
if (null !== $this->path) {
|
2011-07-19 15:21:58 +01:00
|
|
|
$path = str_replace('#', '\\#', $this->path);
|
2011-05-28 21:37:43 +01:00
|
|
|
|
|
|
|
if (!preg_match('#'.$path.'#', $request->getPathInfo())) {
|
|
|
|
return false;
|
|
|
|
}
|
2010-09-01 12:56:06 +01:00
|
|
|
}
|
|
|
|
|
2011-03-23 20:27:04 +00:00
|
|
|
if (null !== $this->host && !preg_match('#'.str_replace('#', '\\#', $this->host).'#', $request->getHost())) {
|
2010-09-01 12:56:06 +01:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
2011-06-14 14:31:52 +01:00
|
|
|
if (null !== $this->ip && !$this->checkIp($request->getClientIp(), $this->ip)) {
|
2010-09-01 12:56:06 +01:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
2011-06-14 14:31:52 +01:00
|
|
|
protected function checkIp($requestIp, $ip)
|
2011-04-22 16:37:22 +01:00
|
|
|
{
|
|
|
|
// IPv6 address
|
2011-06-14 14:31:52 +01:00
|
|
|
if (false !== strpos($requestIp, ':')) {
|
|
|
|
return $this->checkIp6($requestIp, $ip);
|
2011-04-22 16:37:22 +01:00
|
|
|
} else {
|
2011-06-14 14:31:52 +01:00
|
|
|
return $this->checkIp4($requestIp, $ip);
|
2011-04-22 16:37:22 +01:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2011-06-14 14:31:52 +01:00
|
|
|
protected function checkIp4($requestIp, $ip)
|
2010-09-01 12:56:06 +01:00
|
|
|
{
|
2011-06-14 14:31:52 +01:00
|
|
|
if (false !== strpos($ip, '/')) {
|
|
|
|
list($address, $netmask) = explode('/', $ip);
|
2010-09-01 12:56:06 +01:00
|
|
|
|
2010-11-16 18:45:19 +00:00
|
|
|
if ($netmask < 1 || $netmask > 32) {
|
2010-09-01 12:56:06 +01:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
} else {
|
2011-06-14 14:31:52 +01:00
|
|
|
$address = $ip;
|
2010-12-01 15:38:58 +00:00
|
|
|
$netmask = 32;
|
2010-09-01 12:56:06 +01:00
|
|
|
}
|
|
|
|
|
2011-06-14 14:31:52 +01:00
|
|
|
return 0 === substr_compare(sprintf('%032b', ip2long($requestIp)), sprintf('%032b', ip2long($address)), 0, $netmask);
|
2010-09-01 12:56:06 +01:00
|
|
|
}
|
2011-04-22 16:37:22 +01:00
|
|
|
|
|
|
|
/**
|
|
|
|
* @author David Soria Parra <dsp at php dot net>
|
|
|
|
* @see https://github.com/dsp/v6tools
|
|
|
|
*/
|
2011-06-14 14:31:52 +01:00
|
|
|
protected function checkIp6($requestIp, $ip)
|
2011-04-22 16:37:22 +01:00
|
|
|
{
|
2011-07-15 09:28:46 +01:00
|
|
|
if (!defined('AF_INET6')) {
|
|
|
|
throw new \RuntimeException('Unable to check Ipv6. Check that PHP was not compiled with option "disable-ipv6".');
|
|
|
|
}
|
|
|
|
|
2011-06-14 14:31:52 +01:00
|
|
|
list($address, $netmask) = explode('/', $ip);
|
2011-04-22 16:37:22 +01:00
|
|
|
|
|
|
|
$bytes_addr = unpack("n*", inet_pton($address));
|
2011-06-14 14:31:52 +01:00
|
|
|
$bytes_test = unpack("n*", inet_pton($requestIp));
|
2011-04-22 16:37:22 +01:00
|
|
|
|
2011-04-22 21:20:12 +01:00
|
|
|
for ($i = 1, $ceil = ceil($netmask / 16); $i <= $ceil; $i++) {
|
2011-04-22 16:37:22 +01:00
|
|
|
$left = $netmask - 16 * ($i-1);
|
|
|
|
$left = ($left <= 16) ?: 16;
|
|
|
|
$mask = ~(0xffff >> $left) & 0xffff;
|
|
|
|
if (($bytes_addr[$i] & $mask) != ($bytes_test[$i] & $mask)) {
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
return true;
|
|
|
|
}
|
2010-09-01 12:56:06 +01:00
|
|
|
}
|