7 Commits
Author SHA1 Message Date
bence fd286c9cff Merge pull request 'check session validity by DatabaseSessionHandler' (#16) from feature/sessions-should-expire into master
soko-web/pipeline/head This commit looks good
Reviewed-on: #16
2023-05-02 12:55:47 +02:00
bence 72fc78220f check session validity by DatabaseSessionHandler
soko-web/pipeline/pr-master This commit looks good
2023-05-02 12:37:31 +02:00
bence 0da1d00c3d Merge pull request 'feature/implement-separate-remember-me' (#15) from feature/implement-separate-remember-me into master
soko-web/pipeline/head This commit looks good
Reviewed-on: #15
2023-05-02 12:08:16 +02:00
bence c57d1d40d4 fixup! remove unnecessary "pass by reference" variables from Request
soko-web/pipeline/pr-master This commit looks good
2023-05-02 12:02:30 +02:00
bence 6a35344210 pass Session object to Request
soko-web/pipeline/pr-master There was a failure building this commit
2023-05-02 11:47:08 +02:00
bence 9ade08d8bd session handler should receive table name in the constructor 2023-05-02 10:52:22 +02:00
bence a982be6645 remove unnecessary "pass by reference" variables from Request 2023-05-02 10:36:04 +02:00
4 changed files with 27 additions and 18 deletions

No files matched your search

+1 -1
View File
@@ -4,7 +4,7 @@ use SokoWeb\Interfaces\Authentication\IUser;
interface IRequest interface IRequest
{ {
public function setParsedRouteParams(array &$routeParams): void; public function setParsedRouteParams(array $routeParams): void;
public function getBase(): string; public function getBase(): string;
+9 -9
View File
@@ -17,23 +17,23 @@ class Request implements IRequest
private array $headers; private array $headers;
private Session $session; private ISession $session;
private ?IUser $user = null; private ?IUser $user = null;
public function __construct( public function __construct(
string $base, string $base,
array &$get, array $get,
array &$post, array $post,
array $headers, array $headers,
array &$session, ISession $session,
IUserRepository $userRepository) IUserRepository $userRepository)
{ {
$this->base = $base; $this->base = $base;
$this->get = &$get; $this->get = $get;
$this->post = &$post; $this->post = $post;
$this->headers = $headers; $this->headers = $headers;
$this->session = new Session($session); $this->session = $session;
$userId = $this->session->get('userId'); $userId = $this->session->get('userId');
if ($userId !== null) { if ($userId !== null) {
@@ -41,9 +41,9 @@ class Request implements IRequest
} }
} }
public function setParsedRouteParams(array &$routeParams): void public function setParsedRouteParams(array $routeParams): void
{ {
$this->routeParams = &$routeParams; $this->routeParams = $routeParams;
} }
public function getBase(): string public function getBase(): string
+16 -7
View File
@@ -11,13 +11,19 @@ class DatabaseSessionHandler implements ISessionHandler
{ {
private IConnection $dbConnection; private IConnection $dbConnection;
private string $table;
private DateTime $shouldBeNewerThan;
private bool $exists = false; private bool $exists = false;
private bool $written = false; private bool $written = false;
public function __construct(IConnection $dbConnection) public function __construct(IConnection $dbConnection, string $table, DateTime $shouldBeNewerThan)
{ {
$this->dbConnection = $dbConnection; $this->dbConnection = $dbConnection;
$this->table = $table;
$this->shouldBeNewerThan = $shouldBeNewerThan;
} }
public function open($savePath, $sessionName): bool public function open($savePath, $sessionName): bool
@@ -32,24 +38,27 @@ class DatabaseSessionHandler implements ISessionHandler
public function read($id): string public function read($id): string
{ {
$select = new Select($this->dbConnection, 'sessions'); $select = new Select($this->dbConnection, $this->table);
$select->columns(['data']); $select->columns(['data', 'updated']);
$select->whereId(substr($id, 0, 32)); $select->whereId(substr($id, 0, 32));
$result = $select->execute()->fetch(IResultSet::FETCH_ASSOC); $result = $select->execute()->fetch(IResultSet::FETCH_ASSOC);
if ($result === null) { if ($result === null) {
return ''; return '';
} }
$this->exists = true; $this->exists = true;
if (new DateTime($result['updated']) < $this->shouldBeNewerThan) {
return '';
}
return $result['data']; return $result['data'];
} }
public function write($id, $data): bool public function write($id, $data): bool
{ {
$modify = new Modify($this->dbConnection, 'sessions'); $modify = new Modify($this->dbConnection, $this->table);
if ($this->exists) { if ($this->exists) {
$modify->setId(substr($id, 0, 32)); $modify->setId(substr($id, 0, 32));
@@ -68,7 +77,7 @@ class DatabaseSessionHandler implements ISessionHandler
public function destroy($id): bool public function destroy($id): bool
{ {
$modify = new Modify($this->dbConnection, 'sessions'); $modify = new Modify($this->dbConnection, $this->table);
$modify->setId(substr($id, 0, 32)); $modify->setId(substr($id, 0, 32));
$modify->delete(); $modify->delete();
@@ -101,7 +110,7 @@ class DatabaseSessionHandler implements ISessionHandler
return true; return true;
} }
$modify = new Modify($this->dbConnection, 'sessions'); $modify = new Modify($this->dbConnection, $this->table);
$modify->setId(substr($id, 0, 32)); $modify->setId(substr($id, 0, 32));
$modify->set('updated', (new DateTime())->format('Y-m-d H:i:s')); $modify->set('updated', (new DateTime())->format('Y-m-d H:i:s'));
+1 -1
View File
@@ -14,7 +14,7 @@ Container::$routeCollection = new SokoWeb\Routing\RouteCollection();
Container::$routeCollection->get('index', '', [{app}\Controller\HomeController::class, 'getIndex']); Container::$routeCollection->get('index', '', [{app}\Controller\HomeController::class, 'getIndex']);
if (isset($_COOKIE['COOKIES_CONSENT'])) { if (isset($_COOKIE['COOKIES_CONSENT'])) {
Container::$sessionHandler = new SokoWeb\Session\DatabaseSessionHandler(Container::$dbConnection); Container::$sessionHandler = new SokoWeb\Session\DatabaseSessionHandler(Container::$dbConnection, 'sessions');
session_set_save_handler(Container::$sessionHandler, true); session_set_save_handler(Container::$sessionHandler, true);
session_start([ session_start([