PluginProbe ʕ •ᴥ•ʔ
Matomo Analytics – Powerful, Privacy-First Insights for WordPress / trunk
Matomo Analytics – Powerful, Privacy-First Insights for WordPress vtrunk
5.12.1 5.12.0 5.11.1 5.11.0 5.10.2 5.10.1 trunk 1.0.2 1.0.3 1.0.4 1.0.5 1.0.6 1.1.0 1.1.1 1.1.2 1.1.3 1.2.0 1.3.0 1.3.1 1.3.2 4.0.0 4.0.1 4.0.2 4.0.3 4.0.4 4.1.0 4.1.1 4.1.2 4.1.3 4.10.0 4.11.0 4.12.0 4.13.0 4.13.2 4.13.3 4.13.4 4.13.5 4.14.0 4.14.1 4.14.2 4.15.0 4.15.1 4.15.2 4.15.3 4.2.0 4.3.0 4.3.1 4.4.1 4.4.2 4.5.0 4.6.0 5.0.1 5.0.2 5.0.3 5.0.4 5.0.5 5.0.6 5.0.7 5.0.8 5.1.0 5.1.1 5.1.2 5.1.3 5.1.4 5.1.5 5.1.6 5.1.7 5.10.0 5.2.0 5.2.1 5.2.2 5.3.0 5.3.1 5.3.2 5.3.3 5.6.0 5.6.1 5.7.0 5.7.1 5.8.0 5.8.1 5.8.2
matomo / app / core / Auth.php
matomo / app / core Last commit date
API 1 month ago Access 1 month ago Application 1 month ago Archive 1 month ago ArchiveProcessor 1 month ago Archiver 2 years ago AssetManager 1 month ago Auth 1 month ago Category 1 month ago Changes 3 months ago CliMulti 1 month ago Columns 1 month ago Concurrency 1 month ago Config 1 month ago Container 3 months ago CronArchive 1 month ago DataAccess 1 month ago DataFiles 2 years ago DataTable 1 month ago Db 1 month ago DeviceDetector 1 year ago Email 2 years ago Exception 6 months ago Http 1 month ago Intl 5 months ago Log 2 years ago Mail 1 year ago Measurable 8 months ago Menu 1 month ago Metrics 1 month ago Notification 8 months ago Period 1 month ago Plugin 1 month ago Policy 3 months ago ProfessionalServices 1 year ago Report 1 year ago ReportRenderer 1 month ago Request 1 month ago Scheduler 1 month ago Segment 1 month ago Session 2 months ago Settings 1 month ago Tracker 1 month ago Translation 3 months ago Twig 1 year ago UpdateCheck 5 months ago Updater 1 month ago Updates 2 months ago Validators 1 year ago View 3 months ago ViewDataTable 1 month ago Visualization 1 month ago Widget 1 month ago .htaccess 2 years ago Access.php 1 month ago Archive.php 3 months ago ArchiveProcessor.php 1 month ago AssetManager.php 1 month ago Auth.php 8 months ago AuthResult.php 8 months ago BaseFactory.php 2 years ago Cache.php 1 month ago CacheId.php 6 months ago CliMulti.php 1 month ago Common.php 1 month ago Config.php 1 month ago Console.php 5 months ago Context.php 2 years ago Cookie.php 1 month ago CronArchive.php 1 month ago DI.php 5 months ago DataArray.php 1 month ago DataTable.php 1 month ago Date.php 3 months ago Db.php 3 months ago DbHelper.php 1 month ago Development.php 1 month ago ErrorHandler.php 8 months ago EventDispatcher.php 3 months ago ExceptionHandler.php 6 months ago FileIntegrity.php 1 month ago Filechecks.php 1 year ago Filesystem.php 1 month ago FrontController.php 1 month ago Http.php 1 month ago IP.php 1 year ago Log.php 5 months ago LogDeleter.php 1 month ago Mail.php 1 year ago Metrics.php 3 months ago NoAccessException.php 2 years ago Nonce.php 8 months ago Notification.php 3 months ago NumberFormatter.php 1 month ago Option.php 1 month ago Period.php 1 month ago Piwik.php 1 month ago Plugin.php 3 months ago Process.php 3 months ago Profiler.php 1 month ago ProxyHeaders.php 6 months ago ProxyHttp.php 1 month ago QuickForm2.php 5 months ago RankingQuery.php 3 months ago ReportRenderer.php 1 month ago Request.php 3 months ago Segment.php 1 month ago Sequence.php 1 month ago Session.php 2 months ago SettingsPiwik.php 1 month ago SettingsServer.php 1 month ago Singleton.php 2 years ago Site.php 3 months ago SiteContentDetector.php 3 months ago SupportedBrowser.php 2 years ago TCPDF.php 1 year ago Theme.php 1 month ago Timer.php 1 month ago Tracker.php 1 month ago Twig.php 3 months ago Unzip.php 1 year ago UpdateCheck.php 3 months ago Updater.php 1 month ago UpdaterErrorException.php 2 years ago Updates.php 1 month ago Url.php 1 month ago UrlHelper.php 3 months ago Version.php 1 month ago View.php 1 month ago bootstrap.php 1 year ago dispatch.php 2 years ago testMinimumPhpVersion.php 8 months ago
Auth.php
120 lines
1 <?php
2
3 /**
4 * Matomo - free/libre analytics platform
5 *
6 * @link https://matomo.org
7 * @license https://www.gnu.org/licenses/gpl-3.0.html GPL v3 or later
8 */
9 namespace Piwik;
10
11 use Exception;
12 /**
13 * Base interface for authentication implementations.
14 *
15 * Plugins that provide Auth implementations must provide a class that implements
16 * this interface. Additionally, an instance of that class must be set in the
17 * container with the 'Piwik\Auth' key during the
18 * [Request.initAuthenticationObject](https://developer.matomo.org/api-reference/events#requestinitauthenticationobject)
19 * event.
20 *
21 * Authentication implementations must support authentication via username and
22 * clear-text password and authentication via username and token auth. They can
23 * additionally support authentication via username and an MD5 hash of a password. If
24 * they don't support it, then [formless authentication](https://matomo.org/faq/how-to/faq_30/) will fail.
25 *
26 * Derived implementations should favor authenticating by password over authenticating
27 * by token auth. That is to say, if a token auth and a password are set, password
28 * authentication should be used.
29 *
30 * ### Examples
31 *
32 * **How an Auth implementation will be used**
33 *
34 * // authenticating by password
35 * $auth = StaticContainer::get('Piwik\Auth');
36 * $auth->setLogin('user');
37 * $auth->setPassword('password');
38 * $result = $auth->authenticate();
39 *
40 * // authenticating by token auth
41 * $auth = StaticContainer::get('Piwik\Auth');
42 * $auth->setLogin('user');
43 * $auth->setTokenAuth('...');
44 * $result = $auth->authenticate();
45 *
46 * @api
47 */
48 interface Auth
49 {
50 /**
51 * Must return the Authentication module's name, e.g., `"Login"`.
52 *
53 * @return ?string
54 */
55 public function getName();
56 /**
57 * Sets the authentication token to authenticate with.
58 *
59 * @param string|null $token_auth authentication token
60 */
61 public function setTokenAuth(
62 #[\SensitiveParameter]
63 $token_auth);
64 /**
65 * Returns the login of the user being authenticated.
66 *
67 * @return ?string
68 */
69 public function getLogin();
70 /**
71 * Returns the secret used to calculate a user's token auth.
72 *
73 * A users token auth is generated using the user's login and this secret. The secret
74 * should be specific to the user and not easily guessed. Piwik's default Auth implementation
75 * uses an MD5 hash of a user's password.
76 *
77 * @return ?string
78 * @throws Exception if the token auth secret does not exist or cannot be obtained.
79 */
80 public function getTokenAuthSecret();
81 /**
82 * Sets the login name to authenticate with.
83 *
84 * @param string $login The username.
85 */
86 public function setLogin($login);
87 /**
88 * Sets the password to authenticate with.
89 *
90 * @param string $password Password (not hashed).
91 */
92 public function setPassword(
93 #[\SensitiveParameter]
94 $password);
95 /**
96 * Sets the hash of the password to authenticate with. The hash will be an MD5 hash.
97 *
98 * @param string $passwordHash The hashed password.
99 * @throws Exception if authentication by hashed password is not supported.
100 */
101 public function setPasswordHash(
102 #[\SensitiveParameter]
103 $passwordHash);
104 /**
105 * Authenticates a user using the login and password set using the setters. Can also authenticate
106 * via token auth if one is set and no password is set.
107 *
108 * Note: this method must successfully authenticate if the token auth supplied is a special hash
109 * of the user's real token auth. This is because the SessionInitializer class stores a
110 * hash of the token auth in the session cookie. You can calculate the token auth hash using the
111 * {@link \Piwik\Plugins\Login\SessionInitializer::getHashTokenAuth()} method.
112 *
113 * @return AuthResult
114 * @throws Exception if the Auth implementation has an invalid state (ie, no login
115 * was specified). Note: implementations are not **required** to throw
116 * exceptions for invalid state, but they are allowed to.
117 */
118 public function authenticate();
119 }
120