PluginProbe
InfiniteWP Client / trunk
InfiniteWP Client vtrunk
1.13.10 1.13.7 trunk 0.1.4 0.1.5 1.0.0 1.0.1 1.0.2 1.0.3 1.0.4 1.1.0 1.1.1 1.1.10 1.1.2 1.1.3 1.1.4 1.1.5 1.1.6 1.1.7 1.1.8 1.1.9 1.11.0 1.11.1 1.12.1 1.12.3 All 92 releases
iwp-client / lib / Google / Verifier / Pem.php

Pem.php in InfiniteWP Client trunk, at lib/Google/Verifier/Pem.php

75 lines 2.3 KB
No matching file
Up and down to move Enter to open Esc to close
Raw Download Zip
1 <?php
2 /*
3 * Copyright 2011 Google Inc.
4 *
5 * Licensed under the Apache License, Version 2.0 (the "License");
6 * you may not use this file except in compliance with the License.
7 * You may obtain a copy of the License at
8 *
9 * http://www.apache.org/licenses/LICENSE-2.0
10 *
11 * Unless required by applicable law or agreed to in writing, software
12 * distributed under the License is distributed on an "AS IS" BASIS,
13 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
14 * See the License for the specific language governing permissions and
15 * limitations under the License.
16 */
17
18 require_once $GLOBALS['iwp_mmb_plugin_dir'].'/lib/Google/Auth/Exception.php';
19 require_once $GLOBALS['iwp_mmb_plugin_dir'].'/lib/Google/Verifier/Abstract.php';
20
21 /**
22 * Verifies signatures using PEM encoded certificates.
23 *
24 * @author Brian Eaton <beaton@google.com>
25 */
26 class IWP_google_Verifier_Pem extends IWP_google_Verifier_Abstract
27 {
28 private $publicKey;
29
30 /**
31 * Constructs a verifier from the supplied PEM-encoded certificate.
32 *
33 * $pem: a PEM encoded certificate (not a file).
34 * @param $pem
35 * @throws IWP_google_Auth_Exception
36 * @throws IWP_google_Exception
37 */
38 public function __construct($pem)
39 {
40 if (!function_exists('openssl_x509_read')) {
41 throw new IWP_google_Exception('Google API PHP client needs the openssl PHP extension');
42 }
43 $this->publicKey = openssl_x509_read($pem);
44 if (!$this->publicKey) {
45 throw new IWP_google_Auth_Exception("Unable to parse PEM: $pem");
46 }
47 }
48
49 public function __destruct()
50 {
51 if ($this->publicKey) {
52 openssl_x509_free($this->publicKey);
53 }
54 }
55
56 /**
57 * Verifies the signature on data.
58 *
59 * Returns true if the signature is valid, false otherwise.
60 * @param $data
61 * @param $signature
62 * @throws IWP_google_Auth_Exception
63 * @return bool
64 */
65 public function verify($data, $signature)
66 {
67 $hash = defined("OPENSSL_ALGO_SHA256") ? OPENSSL_ALGO_SHA256 : "sha256";
68 $status = openssl_verify($data, $signature, $this->publicKey, $hash);
69 if ($status === -1) {
70 throw new IWP_google_Auth_Exception('Signature verification error: ' . openssl_error_string());
71 }
72 return $status === 1;
73 }
74 }
75