OAuth2GetAccessToken.java 7.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174
  1. package com.owncloud.android.operations;
  2. import java.util.HashMap;
  3. import java.util.Map;
  4. import org.apache.commons.httpclient.methods.PostMethod;
  5. import org.apache.commons.httpclient.NameValuePair;
  6. import org.json.JSONException;
  7. import org.json.JSONObject;
  8. import com.owncloud.android.Log_OC;
  9. import com.owncloud.android.authentication.OAuth2Constants;
  10. import com.owncloud.android.operations.RemoteOperationResult.ResultCode;
  11. import eu.alefzero.webdav.WebdavClient;
  12. public class OAuth2GetAccessToken extends RemoteOperation {
  13. private static final String TAG = OAuth2GetAccessToken.class.getSimpleName();
  14. private String mClientId;
  15. private String mRedirectUri;
  16. private String mGrantType;
  17. private String mOAuth2AuthorizationResponse;
  18. private Map<String, String> mOAuth2ParsedAuthorizationResponse;
  19. private Map<String, String> mResultTokenMap;
  20. public OAuth2GetAccessToken(String clientId, String redirectUri, String grantType, String oAuth2AuthorizationResponse) {
  21. mClientId = clientId;
  22. mRedirectUri = redirectUri;
  23. mGrantType = grantType;
  24. mOAuth2AuthorizationResponse = oAuth2AuthorizationResponse;
  25. mOAuth2ParsedAuthorizationResponse = new HashMap<String, String>();
  26. mResultTokenMap = null;
  27. }
  28. public Map<String, String> getOauth2AutorizationResponse() {
  29. return mOAuth2ParsedAuthorizationResponse;
  30. }
  31. public Map<String, String> getResultTokenMap() {
  32. return mResultTokenMap;
  33. }
  34. @Override
  35. protected RemoteOperationResult run(WebdavClient client) {
  36. RemoteOperationResult result = null;
  37. PostMethod postMethod = null;
  38. try {
  39. parseAuthorizationResponse();
  40. if (mOAuth2ParsedAuthorizationResponse.keySet().contains(OAuth2Constants.KEY_ERROR)) {
  41. if (OAuth2Constants.VALUE_ERROR_ACCESS_DENIED.equals(mOAuth2ParsedAuthorizationResponse.get(OAuth2Constants.KEY_ERROR))) {
  42. result = new RemoteOperationResult(ResultCode.OAUTH2_ERROR_ACCESS_DENIED);
  43. } else {
  44. result = new RemoteOperationResult(ResultCode.OAUTH2_ERROR);
  45. }
  46. }
  47. if (result == null) {
  48. NameValuePair[] nameValuePairs = new NameValuePair[4];
  49. nameValuePairs[0] = new NameValuePair(OAuth2Constants.KEY_GRANT_TYPE, mGrantType);
  50. nameValuePairs[1] = new NameValuePair(OAuth2Constants.KEY_CODE, mOAuth2ParsedAuthorizationResponse.get(OAuth2Constants.KEY_CODE));
  51. nameValuePairs[2] = new NameValuePair(OAuth2Constants.KEY_REDIRECT_URI, mRedirectUri);
  52. nameValuePairs[3] = new NameValuePair(OAuth2Constants.KEY_CLIENT_ID, mClientId);
  53. //nameValuePairs[4] = new NameValuePair(OAuth2Constants.KEY_SCOPE, mOAuth2ParsedAuthorizationResponse.get(OAuth2Constants.KEY_SCOPE));
  54. postMethod = new PostMethod(client.getBaseUri().toString());
  55. postMethod.setRequestBody(nameValuePairs);
  56. int status = client.executeMethod(postMethod);
  57. String response = postMethod.getResponseBodyAsString();
  58. if (response != null && response.length() > 0) {
  59. JSONObject tokenJson = new JSONObject(response);
  60. parseAccessTokenResult(tokenJson);
  61. if (mResultTokenMap.get(OAuth2Constants.KEY_ERROR) != null || mResultTokenMap.get(OAuth2Constants.KEY_ACCESS_TOKEN) == null) {
  62. result = new RemoteOperationResult(ResultCode.OAUTH2_ERROR);
  63. } else {
  64. result = new RemoteOperationResult(true, status, postMethod.getResponseHeaders());
  65. }
  66. } else {
  67. client.exhaustResponse(postMethod.getResponseBodyAsStream());
  68. result = new RemoteOperationResult(false, status, postMethod.getResponseHeaders());
  69. }
  70. }
  71. } catch (Exception e) {
  72. result = new RemoteOperationResult(e);
  73. } finally {
  74. if (postMethod != null)
  75. postMethod.releaseConnection(); // let the connection available for other methods
  76. if (result.isSuccess()) {
  77. Log_OC.i(TAG, "OAuth2 TOKEN REQUEST with auth code " + mOAuth2ParsedAuthorizationResponse.get("code") + " to " + client.getBaseUri() + ": " + result.getLogMessage());
  78. } else if (result.getException() != null) {
  79. Log_OC.e(TAG, "OAuth2 TOKEN REQUEST with auth code " + mOAuth2ParsedAuthorizationResponse.get("code") + " to " + client.getBaseUri() + ": " + result.getLogMessage(), result.getException());
  80. } else if (result.getCode() == ResultCode.OAUTH2_ERROR) {
  81. Log_OC.e(TAG, "OAuth2 TOKEN REQUEST with auth code " + mOAuth2ParsedAuthorizationResponse.get("code") + " to " + client.getBaseUri() + ": " + ((mResultTokenMap != null) ? mResultTokenMap.get(OAuth2Constants.KEY_ERROR) : "NULL"));
  82. } else {
  83. Log_OC.e(TAG, "OAuth2 TOKEN REQUEST with auth code " + mOAuth2ParsedAuthorizationResponse.get("code") + " to " + client.getBaseUri() + ": " + result.getLogMessage());
  84. }
  85. }
  86. return result;
  87. }
  88. private void parseAuthorizationResponse() {
  89. String[] pairs = mOAuth2AuthorizationResponse.split("&");
  90. int i = 0;
  91. String key = "";
  92. String value = "";
  93. StringBuilder sb = new StringBuilder();
  94. while (pairs.length > i) {
  95. int j = 0;
  96. String[] part = pairs[i].split("=");
  97. while (part.length > j) {
  98. String p = part[j];
  99. if (j == 0) {
  100. key = p;
  101. sb.append(key + " = ");
  102. } else if (j == 1) {
  103. value = p;
  104. mOAuth2ParsedAuthorizationResponse.put(key, value);
  105. sb.append(value + "\n");
  106. }
  107. Log_OC.v(TAG, "[" + i + "," + j + "] = " + p);
  108. j++;
  109. }
  110. i++;
  111. }
  112. }
  113. private void parseAccessTokenResult (JSONObject tokenJson) throws JSONException {
  114. mResultTokenMap = new HashMap<String, String>();
  115. if (tokenJson.has(OAuth2Constants.KEY_ACCESS_TOKEN)) {
  116. mResultTokenMap.put(OAuth2Constants.KEY_ACCESS_TOKEN, tokenJson.getString(OAuth2Constants.KEY_ACCESS_TOKEN));
  117. }
  118. if (tokenJson.has(OAuth2Constants.KEY_TOKEN_TYPE)) {
  119. mResultTokenMap.put(OAuth2Constants.KEY_TOKEN_TYPE, tokenJson.getString(OAuth2Constants.KEY_TOKEN_TYPE));
  120. }
  121. if (tokenJson.has(OAuth2Constants.KEY_EXPIRES_IN)) {
  122. mResultTokenMap.put(OAuth2Constants.KEY_EXPIRES_IN, tokenJson.getString(OAuth2Constants.KEY_EXPIRES_IN));
  123. }
  124. if (tokenJson.has(OAuth2Constants.KEY_REFRESH_TOKEN)) {
  125. mResultTokenMap.put(OAuth2Constants.KEY_REFRESH_TOKEN, tokenJson.getString(OAuth2Constants.KEY_REFRESH_TOKEN));
  126. }
  127. if (tokenJson.has(OAuth2Constants.KEY_SCOPE)) {
  128. mResultTokenMap.put(OAuth2Constants.KEY_SCOPE, tokenJson.getString(OAuth2Constants.KEY_SCOPE));
  129. }
  130. if (tokenJson.has(OAuth2Constants.KEY_ERROR)) {
  131. mResultTokenMap.put(OAuth2Constants.KEY_ERROR, tokenJson.getString(OAuth2Constants.KEY_ERROR));
  132. }
  133. if (tokenJson.has(OAuth2Constants.KEY_ERROR_DESCRIPTION)) {
  134. mResultTokenMap.put(OAuth2Constants.KEY_ERROR_DESCRIPTION, tokenJson.getString(OAuth2Constants.KEY_ERROR_DESCRIPTION));
  135. }
  136. if (tokenJson.has(OAuth2Constants.KEY_ERROR_URI)) {
  137. mResultTokenMap.put(OAuth2Constants.KEY_ERROR_URI, tokenJson.getString(OAuth2Constants.KEY_ERROR_URI));
  138. }
  139. }
  140. }