gaia_auth_fetcher.cc revision f8ee788a64d60abd8f2d742a5fdedde054ecd910
15821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Copyright (c) 2012 The Chromium Authors. All rights reserved.
25821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Use of this source code is governed by a BSD-style license that can be
35821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// found in the LICENSE file.
45821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
55821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_auth_fetcher.h"
65821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
75821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <string>
85821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <utility>
95821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <vector>
105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/json/json_reader.h"
125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/json/json_writer.h"
132a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#include "base/strings/string_split.h"
14868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)#include "base/strings/string_util.h"
15868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)#include "base/strings/stringprintf.h"
165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/values.h"
175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_auth_consumer.h"
185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_constants.h"
195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_urls.h"
205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/google_service_auth_error.h"
215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/base/escape.h"
225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/base/load_flags.h"
232a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#include "net/http/http_response_headers.h"
245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/http/http_status_code.h"
255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/url_request/url_fetcher.h"
265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/url_request/url_request_context_getter.h"
275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/url_request/url_request_status.h"
285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)namespace {
305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const int kLoadFlagsIgnoreCookies = net::LOAD_DO_NOT_SEND_COOKIES |
315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                    net::LOAD_DO_NOT_SAVE_COOKIES;
325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)static bool CookiePartsContains(const std::vector<std::string>& parts,
345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                const char* part) {
355d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)  for (std::vector<std::string>::const_iterator it = parts.begin();
365d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)       it != parts.end(); ++it) {
375d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)    if (LowerCaseEqualsASCII(*it, part))
385d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)      return true;
395d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)  }
405d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)  return false;
415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
43eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdochbool ExtractOAuth2TokenPairResponse(base::DictionaryValue* dict,
445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                    std::string* refresh_token,
455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                    std::string* access_token,
465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                    int* expires_in_secs) {
475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(refresh_token);
485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(access_token);
495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(expires_in_secs);
505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (!dict->GetStringWithoutPathExpansion("refresh_token", refresh_token) ||
525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      !dict->GetStringWithoutPathExpansion("access_token", access_token) ||
535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      !dict->GetIntegerWithoutPathExpansion("expires_in", expires_in_secs)) {
545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return false;
555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return true;
585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}  // namespace
615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// TODO(chron): Add sourceless version of this formatter.
635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginFormat[] =
655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "Email=%s&"
665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "Passwd=%s&"
675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "PersistentCookie=%s&"
685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "accountType=%s&"
695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "source=%s&"
705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "service=%s";
715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginCaptchaFormat[] =
735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "Email=%s&"
745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "Passwd=%s&"
755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "PersistentCookie=%s&"
765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "accountType=%s&"
775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "source=%s&"
785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "service=%s&"
795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "logintoken=%s&"
805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "logincaptcha=%s";
815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kIssueAuthTokenFormat[] =
835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "SID=%s&"
845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "LSID=%s&"
855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "service=%s&"
865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "Session=%s";
875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2BodyFormat[] =
895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "scope=%s&client_id=%s";
905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
91f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2WithDeviceTypeBodyFormat[] =
92f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)    "scope=%s&client_id=%s&device_type=chrome";
93f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)// static
945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kOAuth2CodeToTokenPairBodyFormat[] =
955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "scope=%s&"
965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "grant_type=authorization_code&"
975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "client_id=%s&"
985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "client_secret=%s&"
995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "code=%s";
1005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
101c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)const char GaiaAuthFetcher::kOAuth2RevokeTokenBodyFormat[] =
102c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)    "token=%s";
103c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)// static
1045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kGetUserInfoFormat[] =
1055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "LSID=%s";
1065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kMergeSessionFormat[] =
1085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "uberauth=%s&"
1095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "continue=%s&"
1105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "source=%s";
1115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kUberAuthTokenURLFormat[] =
113d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)    "?source=%s&"
1145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "issueuberauth=1";
1155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kOAuthLoginFormat[] = "service=%s&source=%s";
1175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountDeletedError[] = "AccountDeleted";
1205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountDisabledError[] = "AccountDisabled";
1225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kBadAuthenticationError[] = "BadAuthentication";
1245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCaptchaError[] = "CaptchaRequired";
1265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kServiceUnavailableError[] =
1285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "ServiceUnavailable";
1295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kErrorParam[] = "Error";
1315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kErrorUrlParam[] = "Url";
1335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCaptchaUrlParam[] = "CaptchaUrl";
1355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCaptchaTokenParam[] = "CaptchaToken";
1375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCookiePersistence[] = "true";
1405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// TODO(johnnyg): When hosted accounts are supported by sync,
1425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// we can always use "HOSTED_OR_GOOGLE"
1435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountTypeHostedOrGoogle[] =
1445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "HOSTED_OR_GOOGLE";
1455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountTypeGoogle[] =
1465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "GOOGLE";
1475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kSecondFactor[] = "Info=InvalidSecondFactor";
1505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAuthHeaderFormat[] =
1535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "Authorization: GoogleLogin auth=%s";
1545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kOAuthHeaderFormat[] = "Authorization: OAuth %s";
1565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1572a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)const char GaiaAuthFetcher::kOAuth2BearerHeaderFormat[] =
1582a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    "Authorization: Bearer %s";
1592a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)// static
160f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)const char GaiaAuthFetcher::kDeviceIdHeaderFormat[] = "X-Device-ID: %s";
161f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)// static
1625d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2CookiePartSecure[] = "secure";
1635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2CookiePartHttpOnly[] =
1655d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)    "httponly";
1665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2CookiePartCodePrefix[] =
1685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    "oauth_code=";
1695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
1705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const int GaiaAuthFetcher::kClientLoginToOAuth2CookiePartCodePrefixLength =
1715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    arraysize(GaiaAuthFetcher::kClientLoginToOAuth2CookiePartCodePrefix) - 1;
1725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)GaiaAuthFetcher::GaiaAuthFetcher(GaiaAuthConsumer* consumer,
1745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                 const std::string& source,
1755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                 net::URLRequestContextGetter* getter)
1765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    : consumer_(consumer),
1775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      getter_(getter),
1785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      source_(source),
1795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      client_login_gurl_(GaiaUrls::GetInstance()->client_login_url()),
1805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      issue_auth_token_gurl_(GaiaUrls::GetInstance()->issue_auth_token_url()),
1815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      oauth2_token_gurl_(GaiaUrls::GetInstance()->oauth2_token_url()),
182c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)      oauth2_revoke_gurl_(GaiaUrls::GetInstance()->oauth2_revoke_url()),
1835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      get_user_info_gurl_(GaiaUrls::GetInstance()->get_user_info_url()),
1845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      merge_session_gurl_(GaiaUrls::GetInstance()->merge_session_url()),
185d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)      uberauth_token_gurl_(GaiaUrls::GetInstance()->oauth1_login_url().Resolve(
186d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)          base::StringPrintf(kUberAuthTokenURLFormat, source.c_str()))),
1875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      oauth_login_gurl_(GaiaUrls::GetInstance()->oauth1_login_url()),
188f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)      list_accounts_gurl_(GaiaUrls::GetInstance()->list_accounts_url()),
1895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      client_login_to_oauth2_gurl_(
1905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)          GaiaUrls::GetInstance()->client_login_to_oauth2_url()),
19146d4c2bc3267f3f028f39e7e311b0f89aba2e4fdTorne (Richard Coles)      fetch_pending_(false) {}
1925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)GaiaAuthFetcher::~GaiaAuthFetcher() {}
1945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::HasPendingFetch() {
1965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return fetch_pending_;
1975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
1985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::CancelRequest() {
2005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset();
2015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = false;
2025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
2055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)net::URLFetcher* GaiaAuthFetcher::CreateGaiaFetcher(
2065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    net::URLRequestContextGetter* getter,
2075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& body,
2085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& headers,
2095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const GURL& gaia_gurl,
2105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    int load_flags,
2115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    net::URLFetcherDelegate* delegate) {
2125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  net::URLFetcher* to_return = net::URLFetcher::Create(
2135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      0, gaia_gurl,
2145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      body == "" ? net::URLFetcher::GET : net::URLFetcher::POST,
2155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      delegate);
2165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  to_return->SetRequestContext(getter);
2175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  to_return->SetUploadData("application/x-www-form-urlencoded", body);
2185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(2) << "Gaia fetcher URL: " << gaia_gurl.spec();
2205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(2) << "Gaia fetcher headers: " << headers;
2215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(2) << "Gaia fetcher body: " << body;
2225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // The Gaia token exchange requests do not require any cookie-based
2245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // identification as part of requests.  We suppress sending any cookies to
2255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // maintain a separation between the user's browsing and Chrome's internal
226f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  // services.  Where such mixing is desired (MergeSession or OAuthLogin), it
227f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  // will be done explicitly.
2285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  to_return->SetLoadFlags(load_flags);
2295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2302a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // Fetchers are sometimes cancelled because a network change was detected,
2312a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // especially at startup and after sign-in on ChromeOS. Retrying once should
2322a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // be enough in those cases; let the fetcher retry up to 3 times just in case.
2332a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // http://crbug.com/163710
2342a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  to_return->SetAutomaticallyRetryOnNetworkChanges(3);
2352a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)
2365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (!headers.empty())
2375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    to_return->SetExtraRequestHeaders(headers);
2385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return to_return;
2405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
2435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeClientLoginBody(
2445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& username,
2455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& password,
2465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& source,
2475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const char* service,
2485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& login_token,
2495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& login_captcha,
2505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    HostedAccountsSetting allow_hosted_accounts) {
2515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_username = net::EscapeUrlEncodedData(username, true);
2525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_password = net::EscapeUrlEncodedData(password, true);
2535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_login_token = net::EscapeUrlEncodedData(login_token,
2545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                                              true);
2555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_login_captcha = net::EscapeUrlEncodedData(login_captcha,
2565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                                                true);
2575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  const char* account_type = allow_hosted_accounts == HostedAccountsAllowed ?
2595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      kAccountTypeHostedOrGoogle :
2605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      kAccountTypeGoogle;
2615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (login_token.empty() || login_captcha.empty()) {
2635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return base::StringPrintf(kClientLoginFormat,
2645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                              encoded_username.c_str(),
2655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                              encoded_password.c_str(),
2665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                              kCookiePersistence,
2675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                              account_type,
2685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                              source.c_str(),
2695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                              service);
2705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
2715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return base::StringPrintf(kClientLoginCaptchaFormat,
2735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_username.c_str(),
2745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_password.c_str(),
2755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            kCookiePersistence,
2765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            account_type,
2775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            source.c_str(),
2785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            service,
2795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_login_token.c_str(),
2805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_login_captcha.c_str());
2815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
2845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeIssueAuthTokenBody(
2855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& sid,
2865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& lsid,
2875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const char* const service) {
2885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_sid = net::EscapeUrlEncodedData(sid, true);
2895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_lsid = net::EscapeUrlEncodedData(lsid, true);
2905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // All tokens should be session tokens except the gaia auth token.
2925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  bool session = true;
2935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (!strcmp(service, GaiaConstants::kGaiaService))
2945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    session = false;
2955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return base::StringPrintf(kIssueAuthTokenFormat,
2975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_sid.c_str(),
2985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_lsid.c_str(),
2995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            service,
3005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            session ? "true" : "false");
3015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
304f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetAuthCodeBody(bool include_device_type) {
3055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_scope = net::EscapeUrlEncodedData(
306a1401311d1ab56c4ed0a474bd38c108f75cb0cd9Torne (Richard Coles)      GaiaConstants::kOAuth1LoginScope, true);
3075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_client_id = net::EscapeUrlEncodedData(
3085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      GaiaUrls::GetInstance()->oauth2_chrome_client_id(), true);
309f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  if (include_device_type) {
310f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)    return base::StringPrintf(kClientLoginToOAuth2WithDeviceTypeBodyFormat,
311f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)                              encoded_scope.c_str(),
312f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)                              encoded_client_id.c_str());
313f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  } else {
314f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)    return base::StringPrintf(kClientLoginToOAuth2BodyFormat,
315f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)                              encoded_scope.c_str(),
316f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)                              encoded_client_id.c_str());
317f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  }
3185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
3215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetTokenPairBody(
3225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& auth_code) {
3235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_scope = net::EscapeUrlEncodedData(
324a1401311d1ab56c4ed0a474bd38c108f75cb0cd9Torne (Richard Coles)      GaiaConstants::kOAuth1LoginScope, true);
3255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_client_id = net::EscapeUrlEncodedData(
3265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      GaiaUrls::GetInstance()->oauth2_chrome_client_id(), true);
3275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_client_secret = net::EscapeUrlEncodedData(
3285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      GaiaUrls::GetInstance()->oauth2_chrome_client_secret(), true);
3295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_auth_code = net::EscapeUrlEncodedData(auth_code, true);
3302a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  return base::StringPrintf(kOAuth2CodeToTokenPairBodyFormat,
3312a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                            encoded_scope.c_str(),
3322a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                            encoded_client_id.c_str(),
3332a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                            encoded_client_secret.c_str(),
3342a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                            encoded_auth_code.c_str());
3355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
338c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)std::string GaiaAuthFetcher::MakeRevokeTokenBody(
339c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)    const std::string& auth_token) {
340c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  return base::StringPrintf(kOAuth2RevokeTokenBodyFormat, auth_token.c_str());
341c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)}
342c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)
343c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)// static
3445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetUserInfoBody(const std::string& lsid) {
3455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_lsid = net::EscapeUrlEncodedData(lsid, true);
3465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return base::StringPrintf(kGetUserInfoFormat, encoded_lsid.c_str());
3475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
3505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeMergeSessionBody(
3515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& auth_token,
3525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& continue_url,
3535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& source) {
3545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_auth_token = net::EscapeUrlEncodedData(auth_token, true);
3555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_continue_url = net::EscapeUrlEncodedData(continue_url,
3565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                                               true);
3575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_source = net::EscapeUrlEncodedData(source, true);
3585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return base::StringPrintf(kMergeSessionFormat,
3595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_auth_token.c_str(),
3605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_continue_url.c_str(),
3615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                            encoded_source.c_str());
3625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
3655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetAuthCodeHeader(
3665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& auth_token) {
3672a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  return base::StringPrintf(kAuthHeaderFormat, auth_token.c_str());
3685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Helper method that extracts tokens from a successful reply.
3715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
3725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::ParseClientLoginResponse(const std::string& data,
3735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                               std::string* sid,
3745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                               std::string* lsid,
3755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                               std::string* token) {
3765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  using std::vector;
3775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  using std::pair;
3785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  using std::string;
3792a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  sid->clear();
3802a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  lsid->clear();
3812a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  token->clear();
3825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  vector<pair<string, string> > tokens;
3835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  base::SplitStringIntoKeyValuePairs(data, '=', '\n', &tokens);
3845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  for (vector<pair<string, string> >::iterator i = tokens.begin();
3855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      i != tokens.end(); ++i) {
3865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (i->first == "SID") {
3875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      sid->assign(i->second);
3885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    } else if (i->first == "LSID") {
3895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      lsid->assign(i->second);
3905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    } else if (i->first == "Auth") {
3915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      token->assign(i->second);
3925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
3935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
3942a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // If this was a request for uberauth token, then that's all we've got in
3952a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // data.
3962a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  if (sid->empty() && lsid->empty() && token->empty())
3972a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    token->assign(data);
3985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
4015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeOAuthLoginBody(const std::string& service,
4025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                                const std::string& source) {
4035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_service = net::EscapeUrlEncodedData(service, true);
4045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string encoded_source = net::EscapeUrlEncodedData(source, true);
4052a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  return base::StringPrintf(kOAuthLoginFormat,
4062a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                            encoded_service.c_str(),
4072a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                            encoded_source.c_str());
4085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
4115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::ParseClientLoginFailure(const std::string& data,
4125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                              std::string* error,
4135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                              std::string* error_url,
4145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                              std::string* captcha_url,
4155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                              std::string* captcha_token) {
4165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  using std::vector;
4175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  using std::pair;
4185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  using std::string;
4195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  vector<pair<string, string> > tokens;
4215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  base::SplitStringIntoKeyValuePairs(data, '=', '\n', &tokens);
4225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  for (vector<pair<string, string> >::iterator i = tokens.begin();
4235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)       i != tokens.end(); ++i) {
4245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (i->first == kErrorParam) {
4255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      error->assign(i->second);
4265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    } else if (i->first == kErrorUrlParam) {
4275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      error_url->assign(i->second);
4285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    } else if (i->first == kCaptchaUrlParam) {
4295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      captcha_url->assign(i->second);
4305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    } else if (i->first == kCaptchaTokenParam) {
4315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      captcha_token->assign(i->second);
4325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
4335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
4345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
4375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::ParseClientLoginToOAuth2Response(
4385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const net::ResponseCookies& cookies,
4395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string* auth_code) {
4405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(auth_code);
4415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  net::ResponseCookies::const_iterator iter;
4425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  for (iter = cookies.begin(); iter != cookies.end(); ++iter) {
4435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (ParseClientLoginToOAuth2Cookie(*iter, auth_code))
4445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      return true;
4455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
4465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return false;
4475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
4505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::ParseClientLoginToOAuth2Cookie(const std::string& cookie,
4515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                                     std::string* auth_code) {
4525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::vector<std::string> parts;
4535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  base::SplitString(cookie, ';', &parts);
4545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // Per documentation, the cookie should have Secure and HttpOnly.
4555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (!CookiePartsContains(parts, kClientLoginToOAuth2CookiePartSecure) ||
4565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      !CookiePartsContains(parts, kClientLoginToOAuth2CookiePartHttpOnly)) {
4575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return false;
4585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
4595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::vector<std::string>::const_iterator iter;
4615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  for (iter = parts.begin(); iter != parts.end(); ++iter) {
4625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& part = *iter;
4635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (StartsWithASCII(
4645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        part, kClientLoginToOAuth2CookiePartCodePrefix, false)) {
4655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      auth_code->assign(part.substr(
4665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)          kClientLoginToOAuth2CookiePartCodePrefixLength));
4675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      return true;
4685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
4695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
4705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return false;
4715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
4725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartClientLogin(
4745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& username,
4755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& password,
4765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const char* const service,
4775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& login_token,
4785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& login_captcha,
4795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    HostedAccountsSetting allow_hosted_accounts) {
4805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
4825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // This class is thread agnostic, so be sure to call this only on the
4845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // same thread each time.
4855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(1) << "Starting new ClientLogin fetch for:" << username;
4865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
4875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // Must outlive fetcher_.
4885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  request_body_ = MakeClientLoginBody(username,
4895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      password,
4905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      source_,
4915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      service,
4925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      login_token,
4935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      login_captcha,
4945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      allow_hosted_accounts);
4955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
4965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   request_body_,
497c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   std::string(),
4985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   client_login_gurl_,
4995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   kLoadFlagsIgnoreCookies,
5005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
5015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
5025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
5035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
5045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartIssueAuthToken(const std::string& sid,
5065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                          const std::string& lsid,
5075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                          const char* const service) {
5085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
5095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(1) << "Starting IssueAuthToken for: " << service;
5115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  requested_service_ = service;
5125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  request_body_ = MakeIssueAuthTokenBody(sid, lsid, service);
5135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
5145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   request_body_,
515c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   std::string(),
5165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   issue_auth_token_gurl_,
5175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   kLoadFlagsIgnoreCookies,
5185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
5195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
5205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
5215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
5225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartLsoForOAuthLoginTokenExchange(
5245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& auth_token) {
5255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
5265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(1) << "Starting OAuth login token exchange with auth_token";
528f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  request_body_ = MakeGetAuthCodeBody(false);
5295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  client_login_to_oauth2_gurl_ =
530d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)      GaiaUrls::GetInstance()->client_login_to_oauth2_url();
5315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
5335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   request_body_,
5345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   MakeGetAuthCodeHeader(auth_token),
5355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   client_login_to_oauth2_gurl_,
5365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   kLoadFlagsIgnoreCookies,
5375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
5385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
5395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
5405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
5415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
542c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)void GaiaAuthFetcher::StartRevokeOAuth2Token(const std::string& auth_token) {
543c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
544c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)
545c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  DVLOG(1) << "Starting OAuth2 token revocation";
546c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  request_body_ = MakeRevokeTokenBody(auth_token);
547c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
548c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   request_body_,
549c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   std::string(),
550c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   oauth2_revoke_gurl_,
551c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   kLoadFlagsIgnoreCookies,
552c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   this));
553c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  fetch_pending_ = true;
554c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  fetcher_->Start();
555c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)}
556c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)
5575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartCookieForOAuthLoginTokenExchange(
5585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& session_index) {
559f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  StartCookieForOAuthLoginTokenExchangeWithDeviceId(session_index,
560f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)                                                    std::string());
561f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)}
562f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)
563f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)void GaiaAuthFetcher::StartCookieForOAuthLoginTokenExchangeWithDeviceId(
564f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)    const std::string& session_index,
565f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)    const std::string& device_id) {
5665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
5675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(1) << "Starting OAuth login token fetch with cookie jar";
569f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  request_body_ = MakeGetAuthCodeBody(!device_id.empty());
5705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
571d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)  client_login_to_oauth2_gurl_ =
572d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)      GaiaUrls::GetInstance()->client_login_to_oauth2_url();
573d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)  if (!session_index.empty()) {
574d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)    client_login_to_oauth2_gurl_ =
575d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)        client_login_to_oauth2_gurl_.Resolve("?authuser=" + session_index);
576d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles)  }
5775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
578f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  std::string device_id_header;
579f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  if (!device_id.empty()) {
580f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)    device_id_header =
581f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)        base::StringPrintf(kDeviceIdHeaderFormat, device_id.c_str());
582f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)  }
583f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)
5845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
5855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   request_body_,
586f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)                                   device_id_header,
5875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   client_login_to_oauth2_gurl_,
5885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   net::LOAD_NORMAL,
5895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
5905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
5915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
5925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
5935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
5942a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)void GaiaAuthFetcher::StartAuthCodeForOAuth2TokenExchange(
5952a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    const std::string& auth_code) {
5962a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
5972a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)
5982a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  DVLOG(1) << "Starting OAuth token pair fetch";
5992a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  request_body_ = MakeGetTokenPairBody(auth_code);
6002a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
6012a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                                   request_body_,
602c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   std::string(),
6032a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                                   oauth2_token_gurl_,
6042a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                                   kLoadFlagsIgnoreCookies,
6052a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)                                   this));
6062a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  fetch_pending_ = true;
6072a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  fetcher_->Start();
6082a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)}
6092a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)
6105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartGetUserInfo(const std::string& lsid) {
6115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
6125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(1) << "Starting GetUserInfo for lsid=" << lsid;
6145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  request_body_ = MakeGetUserInfoBody(lsid);
6155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
6165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   request_body_,
617c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   std::string(),
6185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   get_user_info_gurl_,
6195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   kLoadFlagsIgnoreCookies,
6205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
6215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
6225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
6235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
6245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartMergeSession(const std::string& uber_token) {
6265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
6275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(1) << "Starting MergeSession with uber_token=" << uber_token;
6295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // The continue URL is a required parameter of the MergeSession API, but in
6315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // this case we don't actually need or want to navigate to it.  Setting it to
6325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // an arbitrary Google URL.
6335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  //
6345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // In order for the new session to be merged correctly, the server needs to
6355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // know what sessions already exist in the browser.  The fetcher needs to be
6365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // created such that it sends the cookies with the request, which is
6375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // different from all other requests the fetcher can make.
6385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string continue_url("http://www.google.com");
6395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  request_body_ = MakeMergeSessionBody(uber_token, continue_url, source_);
6405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
6415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   request_body_,
642c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   std::string(),
6435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   merge_session_gurl_,
6445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   net::LOAD_NORMAL,
6455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
6465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
6475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
6485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
6495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartTokenFetchForUberAuthExchange(
6515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& access_token) {
6525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
6535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DVLOG(1) << "Starting StartTokenFetchForUberAuthExchange with access_token="
6555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)           << access_token;
6565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string authentication_header =
6575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      base::StringPrintf(kOAuthHeaderFormat, access_token.c_str());
6585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
659c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)                                   std::string(),
6605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   authentication_header,
6615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   uberauth_token_gurl_,
662f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                   net::LOAD_NORMAL,
6635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
6645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
6655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
6665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
6675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartOAuthLogin(const std::string& access_token,
6695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                      const std::string& service) {
6705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
6715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  request_body_ = MakeOAuthLoginBody(service, source_);
6735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string authentication_header =
6742a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)      base::StringPrintf(kOAuth2BearerHeaderFormat, access_token.c_str());
6755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
6765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   request_body_,
6775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   authentication_header,
6785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   oauth_login_gurl_,
679f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                   net::LOAD_NORMAL,
680f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                   this));
681f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  fetch_pending_ = true;
682f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  fetcher_->Start();
683f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)}
684f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)
685f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)void GaiaAuthFetcher::StartListAccounts() {
686f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  DCHECK(!fetch_pending_) << "Tried to fetch two things at once!";
687f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)
688f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  fetcher_.reset(CreateGaiaFetcher(getter_,
689f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                   " ",  // To force an HTTP POST.
690f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                   "Origin: https://www.google.com",
691f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                   list_accounts_gurl_,
692f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                   net::LOAD_NORMAL,
6935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                   this));
6945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = true;
6955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetcher_->Start();
6965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
6975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
6985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
6995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)GoogleServiceAuthError GaiaAuthFetcher::GenerateAuthError(
7005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& data,
7015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const net::URLRequestStatus& status) {
7025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (!status.is_success()) {
7035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (status.status() == net::URLRequestStatus::CANCELED) {
7045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      return GoogleServiceAuthError(GoogleServiceAuthError::REQUEST_CANCELED);
7055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
70623730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)    DLOG(WARNING) << "Could not reach Google Accounts servers: errno "
70723730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)                  << status.error();
70823730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)    return GoogleServiceAuthError::FromConnectionError(status.error());
70923730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  }
7105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
71123730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  if (IsSecondFactorSuccess(data))
71223730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)    return GoogleServiceAuthError(GoogleServiceAuthError::TWO_FACTOR);
71323730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)
71423730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  std::string error;
71523730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  std::string url;
71623730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  std::string captcha_url;
71723730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  std::string captcha_token;
71823730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  ParseClientLoginFailure(data, &error, &url, &captcha_url, &captcha_token);
71923730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  DLOG(WARNING) << "ClientLogin failed with " << error;
72023730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)
72123730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  if (error == kCaptchaError) {
72223730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)    return GoogleServiceAuthError::FromClientLoginCaptchaChallenge(
72323730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)        captcha_token,
72423730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)        GURL(GaiaUrls::GetInstance()->captcha_base_url().Resolve(captcha_url)),
72523730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)        GURL(url));
72623730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  }
72723730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  if (error == kAccountDeletedError)
72823730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)    return GoogleServiceAuthError(GoogleServiceAuthError::ACCOUNT_DELETED);
72923730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  if (error == kAccountDisabledError)
73023730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)    return GoogleServiceAuthError(GoogleServiceAuthError::ACCOUNT_DISABLED);
73123730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  if (error == kBadAuthenticationError) {
7325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return GoogleServiceAuthError(
73323730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)        GoogleServiceAuthError::INVALID_GAIA_CREDENTIALS);
7345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
73523730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  if (error == kServiceUnavailableError) {
7365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return GoogleServiceAuthError(
7375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        GoogleServiceAuthError::SERVICE_UNAVAILABLE);
7385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
7395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
74023730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles)  DLOG(WARNING) << "Incomprehensible response from Google Accounts servers.";
7415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return GoogleServiceAuthError(GoogleServiceAuthError::SERVICE_UNAVAILABLE);
7425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
7435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
7445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnClientLoginFetched(const std::string& data,
7455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                           const net::URLRequestStatus& status,
7465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                           int response_code) {
7475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
7485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    DVLOG(1) << "ClientLogin successful!";
7495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string sid;
7505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string lsid;
7515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string token;
7525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    ParseClientLoginResponse(data, &sid, &lsid, &token);
7535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnClientLoginSuccess(
7545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        GaiaAuthConsumer::ClientLoginResult(sid, lsid, token, data));
7555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
7565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnClientLoginFailure(GenerateAuthError(data, status));
7575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
7585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
7595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
7605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnIssueAuthTokenFetched(
7615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& data,
7625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const net::URLRequestStatus& status,
7635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    int response_code) {
7645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
7655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // Only the bare token is returned in the body of this Gaia call
7665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // without any padding.
7675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnIssueAuthTokenSuccess(requested_service_, data);
7685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
7695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnIssueAuthTokenFailure(requested_service_,
7705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        GenerateAuthError(data, status));
7715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
7725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
7735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
7745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnClientLoginToOAuth2Fetched(
7755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& data,
7765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const net::ResponseCookies& cookies,
7775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const net::URLRequestStatus& status,
7785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    int response_code) {
7795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
7805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string auth_code;
7815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    ParseClientLoginToOAuth2Response(cookies, &auth_code);
78246d4c2bc3267f3f028f39e7e311b0f89aba2e4fdTorne (Richard Coles)    StartAuthCodeForOAuth2TokenExchange(auth_code);
7835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
7845d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)    GoogleServiceAuthError auth_error(GenerateAuthError(data, status));
78546d4c2bc3267f3f028f39e7e311b0f89aba2e4fdTorne (Richard Coles)    consumer_->OnClientOAuthFailure(auth_error);
7865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
7875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
7885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
7895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnOAuth2TokenPairFetched(
7905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& data,
7915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const net::URLRequestStatus& status,
7925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    int response_code) {
7935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string refresh_token;
7945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string access_token;
7955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  int expires_in_secs = 0;
7965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
7975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  bool success = false;
7985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
7995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    scoped_ptr<base::Value> value(base::JSONReader::Read(data));
8005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (value.get() && value->GetType() == base::Value::TYPE_DICTIONARY) {
801eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch      base::DictionaryValue* dict =
802eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch          static_cast<base::DictionaryValue*>(value.get());
8035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      success = ExtractOAuth2TokenPairResponse(dict, &refresh_token,
8045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                               &access_token, &expires_in_secs);
8055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
8065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
8075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
8085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (success) {
8095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnClientOAuthSuccess(
8105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        GaiaAuthConsumer::ClientOAuthResult(refresh_token, access_token,
8115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                            expires_in_secs));
8125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
8135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnClientOAuthFailure(GenerateAuthError(data, status));
8145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
8155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
8165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
817c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)void GaiaAuthFetcher::OnOAuth2RevokeTokenFetched(
818c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)    const std::string& data,
819c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)    const net::URLRequestStatus& status,
820c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)    int response_code) {
821c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  consumer_->OnOAuth2RevokeTokenCompleted();
822c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)}
823c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)
824f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)void GaiaAuthFetcher::OnListAccountsFetched(const std::string& data,
825f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                            const net::URLRequestStatus& status,
826f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)                                            int response_code) {
827f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
828f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)    consumer_->OnListAccountsSuccess(data);
829f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  } else {
830f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)    consumer_->OnListAccountsFailure(GenerateAuthError(data, status));
831f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  }
832f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)}
833f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)
8345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnGetUserInfoFetched(
8355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& data,
8365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const net::URLRequestStatus& status,
8375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    int response_code) {
8385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
8395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::vector<std::pair<std::string, std::string> > tokens;
8405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    UserInfoMap matches;
8415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    base::SplitStringIntoKeyValuePairs(data, '=', '\n', &tokens);
8425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::vector<std::pair<std::string, std::string> >::iterator i;
8435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    for (i = tokens.begin(); i != tokens.end(); ++i) {
8445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      matches[i->first] = i->second;
8455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
8465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnGetUserInfoSuccess(matches);
8475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
8485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnGetUserInfoFailure(GenerateAuthError(data, status));
8495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
8505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
8515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
8525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnMergeSessionFetched(const std::string& data,
8535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                            const net::URLRequestStatus& status,
8545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                            int response_code) {
8555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
8565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnMergeSessionSuccess(data);
8575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
8585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnMergeSessionFailure(GenerateAuthError(data, status));
8595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
8605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
8615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
8625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnUberAuthTokenFetch(const std::string& data,
8635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                           const net::URLRequestStatus& status,
8645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                           int response_code) {
8655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
8665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnUberAuthTokenSuccess(data);
8675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
8685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnUberAuthTokenFailure(GenerateAuthError(data, status));
8695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
8705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
8715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
8725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnOAuthLoginFetched(const std::string& data,
8735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                          const net::URLRequestStatus& status,
8745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                          int response_code) {
8755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (status.is_success() && response_code == net::HTTP_OK) {
8765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    DVLOG(1) << "ClientLogin successful!";
8775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string sid;
8785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string lsid;
8795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    std::string token;
8805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    ParseClientLoginResponse(data, &sid, &lsid, &token);
8815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnClientLoginSuccess(
8825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        GaiaAuthConsumer::ClientLoginResult(sid, lsid, token, data));
8835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
8845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    consumer_->OnClientLoginFailure(GenerateAuthError(data, status));
8855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
8865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
8875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
8885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnURLFetchComplete(const net::URLFetcher* source) {
8895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  fetch_pending_ = false;
8905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // Some of the GAIA requests perform redirects, which results in the final
8915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // URL of the fetcher not being the original URL requested.  Therefore use
8925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // the original URL when determining which OnXXX function to call.
8935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  const GURL& url = source->GetOriginalURL();
8945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  const net::URLRequestStatus& status = source->GetStatus();
8955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  int response_code = source->GetResponseCode();
8965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::string data;
8975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  source->GetResponseAsString(&data);
8982a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#ifndef NDEBUG
8992a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  std::string headers;
9002a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  if (source->GetResponseHeaders())
9012a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    source->GetResponseHeaders()->GetNormalizedHeaders(&headers);
9022a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  DVLOG(2) << "Response " << url.spec() << ", code = " << response_code << "\n"
9032a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)           << headers << "\n";
9042a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  DVLOG(2) << "data: " << data << "\n";
9052a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#endif
9062a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // Retrieve the response headers from the request.  Must only be called after
9072a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  // the OnURLFetchComplete callback has run.
9085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (url == client_login_gurl_) {
9095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnClientLoginFetched(data, status, response_code);
9105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (url == issue_auth_token_gurl_) {
9115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnIssueAuthTokenFetched(data, status, response_code);
9125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (url == client_login_to_oauth2_gurl_) {
9135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnClientLoginToOAuth2Fetched(
9145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        data, source->GetCookies(), status, response_code);
9155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (url == oauth2_token_gurl_) {
9165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnOAuth2TokenPairFetched(data, status, response_code);
9175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (url == get_user_info_gurl_) {
9185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnGetUserInfoFetched(data, status, response_code);
9195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (url == merge_session_gurl_) {
9205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnMergeSessionFetched(data, status, response_code);
9215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (url == uberauth_token_gurl_) {
9225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnUberAuthTokenFetch(data, status, response_code);
9235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (url == oauth_login_gurl_) {
9245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    OnOAuthLoginFetched(data, status, response_code);
925c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  } else if (url == oauth2_revoke_gurl_) {
926c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)    OnOAuth2RevokeTokenFetched(data, status, response_code);
927f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)  } else if (url == list_accounts_gurl_) {
928f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)    OnListAccountsFetched(data, status, response_code);
9295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
9305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    NOTREACHED();
9315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
9325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
9335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
9345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
9355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::IsSecondFactorSuccess(
9365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const std::string& alleged_error) {
9375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return alleged_error.find(kSecondFactor) !=
9385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      std::string::npos;
9395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
940