|
@@ -1,333 +0,0 @@
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-package social
|
|
|
-
|
|
|
-import (
|
|
|
- "encoding/json"
|
|
|
- "io/ioutil"
|
|
|
- "net/http"
|
|
|
- "net/url"
|
|
|
- "strconv"
|
|
|
-
|
|
|
- "github.com/macaron-contrib/oauth2"
|
|
|
-
|
|
|
- "github.com/gogits/gogs/models"
|
|
|
- "github.com/gogits/gogs/modules/log"
|
|
|
- "github.com/gogits/gogs/modules/setting"
|
|
|
-)
|
|
|
-
|
|
|
-type BasicUserInfo struct {
|
|
|
- Identity string
|
|
|
- Name string
|
|
|
- Email string
|
|
|
-}
|
|
|
-
|
|
|
-type SocialConnector interface {
|
|
|
- Type() int
|
|
|
- UserInfo(*oauth2.Token, *url.URL) (*BasicUserInfo, error)
|
|
|
-}
|
|
|
-
|
|
|
-var (
|
|
|
- SocialMap = make(map[string]SocialConnector)
|
|
|
-)
|
|
|
-
|
|
|
-func NewOauthService() {
|
|
|
- if !setting.Cfg.Section("oauth").Key("ENABLED").MustBool() {
|
|
|
- return
|
|
|
- }
|
|
|
-
|
|
|
- oauth2.AppSubUrl = setting.AppSubUrl
|
|
|
-
|
|
|
- setting.OauthService = &setting.Oauther{}
|
|
|
- setting.OauthService.OauthInfos = make(map[string]*setting.OauthInfo)
|
|
|
-
|
|
|
- socialConfigs := make(map[string]*oauth2.Options)
|
|
|
- allOauthes := []string{"github", "google", "qq", "twitter", "weibo"}
|
|
|
-
|
|
|
- for _, name := range allOauthes {
|
|
|
- sec := setting.Cfg.Section("oauth." + name)
|
|
|
- if !sec.Key("ENABLED").MustBool() {
|
|
|
- continue
|
|
|
- }
|
|
|
- setting.OauthService.OauthInfos[name] = &setting.OauthInfo{
|
|
|
- Options: oauth2.Options{
|
|
|
- ClientID: sec.Key("CLIENT_ID").String(),
|
|
|
- ClientSecret: sec.Key("CLIENT_SECRET").String(),
|
|
|
- Scopes: sec.Key("SCOPES").Strings(" "),
|
|
|
- PathLogin: "/user/login/oauth2/" + name,
|
|
|
- PathCallback: setting.AppSubUrl + "/user/login/" + name,
|
|
|
- RedirectURL: setting.AppUrl + "user/login/" + name,
|
|
|
- },
|
|
|
- AuthUrl: sec.Key("AUTH_URL").String(),
|
|
|
- TokenUrl: sec.Key("TOKEN_URL").String(),
|
|
|
- }
|
|
|
- socialConfigs[name] = &oauth2.Options{
|
|
|
- ClientID: setting.OauthService.OauthInfos[name].ClientID,
|
|
|
- ClientSecret: setting.OauthService.OauthInfos[name].ClientSecret,
|
|
|
- Scopes: setting.OauthService.OauthInfos[name].Scopes,
|
|
|
- }
|
|
|
- }
|
|
|
- enabledOauths := make([]string, 0, 10)
|
|
|
-
|
|
|
-
|
|
|
- if setting.Cfg.Section("oauth.github").Key("ENABLED").MustBool() {
|
|
|
- setting.OauthService.GitHub = true
|
|
|
- newGitHubOauth(socialConfigs["github"])
|
|
|
- enabledOauths = append(enabledOauths, "GitHub")
|
|
|
- }
|
|
|
-
|
|
|
-
|
|
|
- if setting.Cfg.Section("oauth.google").Key("ENABLED").MustBool() {
|
|
|
- setting.OauthService.Google = true
|
|
|
- newGoogleOauth(socialConfigs["google"])
|
|
|
- enabledOauths = append(enabledOauths, "Google")
|
|
|
- }
|
|
|
-
|
|
|
-
|
|
|
- if setting.Cfg.Section("oauth.qq").Key("ENABLED").MustBool() {
|
|
|
- setting.OauthService.Tencent = true
|
|
|
- newTencentOauth(socialConfigs["qq"])
|
|
|
- enabledOauths = append(enabledOauths, "QQ")
|
|
|
- }
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
- if setting.Cfg.Section("oauth.weibo").Key("ENABLED").MustBool() {
|
|
|
- setting.OauthService.Weibo = true
|
|
|
- newWeiboOauth(socialConfigs["weibo"])
|
|
|
- enabledOauths = append(enabledOauths, "Weibo")
|
|
|
- }
|
|
|
-
|
|
|
- log.Info("Oauth Service Enabled %s", enabledOauths)
|
|
|
-}
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-type SocialGithub struct {
|
|
|
- opts *oauth2.Options
|
|
|
-}
|
|
|
-
|
|
|
-func newGitHubOauth(opts *oauth2.Options) {
|
|
|
- SocialMap["github"] = &SocialGithub{opts}
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialGithub) Type() int {
|
|
|
- return int(models.GITHUB)
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialGithub) UserInfo(token *oauth2.Token, _ *url.URL) (*BasicUserInfo, error) {
|
|
|
- transport := s.opts.NewTransportFromToken(token)
|
|
|
- var data struct {
|
|
|
- Id int `json:"id"`
|
|
|
- Name string `json:"login"`
|
|
|
- Email string `json:"email"`
|
|
|
- }
|
|
|
- r, err := transport.Client().Get("https://api.github.com/user")
|
|
|
- if err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- defer r.Body.Close()
|
|
|
- if err = json.NewDecoder(r.Body).Decode(&data); err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- return &BasicUserInfo{
|
|
|
- Identity: strconv.Itoa(data.Id),
|
|
|
- Name: data.Name,
|
|
|
- Email: data.Email,
|
|
|
- }, nil
|
|
|
-}
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-type SocialGoogle struct {
|
|
|
- opts *oauth2.Options
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialGoogle) Type() int {
|
|
|
- return int(models.GOOGLE)
|
|
|
-}
|
|
|
-
|
|
|
-func newGoogleOauth(opts *oauth2.Options) {
|
|
|
- SocialMap["google"] = &SocialGoogle{opts}
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialGoogle) UserInfo(token *oauth2.Token, _ *url.URL) (*BasicUserInfo, error) {
|
|
|
- transport := s.opts.NewTransportFromToken(token)
|
|
|
- var data struct {
|
|
|
- Id string `json:"id"`
|
|
|
- Name string `json:"name"`
|
|
|
- Email string `json:"email"`
|
|
|
- }
|
|
|
- r, err := transport.Client().Get("https://www.googleapis.com/userinfo/v2/me")
|
|
|
- if err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- defer r.Body.Close()
|
|
|
- if err = json.NewDecoder(r.Body).Decode(&data); err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- return &BasicUserInfo{
|
|
|
- Identity: data.Id,
|
|
|
- Name: data.Name,
|
|
|
- Email: data.Email,
|
|
|
- }, nil
|
|
|
-}
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-type SocialTencent struct {
|
|
|
- opts *oauth2.Options
|
|
|
-}
|
|
|
-
|
|
|
-func newTencentOauth(opts *oauth2.Options) {
|
|
|
- SocialMap["qq"] = &SocialTencent{opts}
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialTencent) Type() int {
|
|
|
- return int(models.QQ)
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialTencent) UserInfo(token *oauth2.Token, URL *url.URL) (*BasicUserInfo, error) {
|
|
|
- r, err := http.Get("https://graph.z.qq.com/moc2/me?access_token=" + url.QueryEscape(token.AccessToken))
|
|
|
- if err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- defer r.Body.Close()
|
|
|
-
|
|
|
- body, err := ioutil.ReadAll(r.Body)
|
|
|
- if err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- vals, err := url.ParseQuery(string(body))
|
|
|
- if err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
-
|
|
|
- return &BasicUserInfo{
|
|
|
- Identity: vals.Get("openid"),
|
|
|
- }, nil
|
|
|
-}
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-
|
|
|
-type SocialWeibo struct {
|
|
|
- opts *oauth2.Options
|
|
|
-}
|
|
|
-
|
|
|
-func newWeiboOauth(opts *oauth2.Options) {
|
|
|
- SocialMap["weibo"] = &SocialWeibo{opts}
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialWeibo) Type() int {
|
|
|
- return int(models.WEIBO)
|
|
|
-}
|
|
|
-
|
|
|
-func (s *SocialWeibo) UserInfo(token *oauth2.Token, _ *url.URL) (*BasicUserInfo, error) {
|
|
|
- transport := s.opts.NewTransportFromToken(token)
|
|
|
- var data struct {
|
|
|
- Name string `json:"name"`
|
|
|
- }
|
|
|
- var urls = url.Values{
|
|
|
- "access_token": {token.AccessToken},
|
|
|
- "uid": {token.Extra("uid")},
|
|
|
- }
|
|
|
- reqUrl := "https://api.weibo.com/2/users/show.json"
|
|
|
- r, err := transport.Client().Get(reqUrl + "?" + urls.Encode())
|
|
|
- if err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- defer r.Body.Close()
|
|
|
-
|
|
|
- if err = json.NewDecoder(r.Body).Decode(&data); err != nil {
|
|
|
- return nil, err
|
|
|
- }
|
|
|
- return &BasicUserInfo{
|
|
|
- Identity: token.Extra("uid"),
|
|
|
- Name: data.Name,
|
|
|
- }, nil
|
|
|
-}
|