gaia_auth_fetcher.cc revision f8ee788a64d60abd8f2d742a5fdedde054ecd910
15821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Copyright (c) 2012 The Chromium Authors. All rights reserved. 25821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Use of this source code is governed by a BSD-style license that can be 35821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// found in the LICENSE file. 45821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 55821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_auth_fetcher.h" 65821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 75821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <string> 85821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <utility> 95821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <vector> 105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/json/json_reader.h" 125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/json/json_writer.h" 132a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#include "base/strings/string_split.h" 14868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)#include "base/strings/string_util.h" 15868fa2fe829687343ffae624259930155e16dbd8Torne (Richard Coles)#include "base/strings/stringprintf.h" 165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/values.h" 175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_auth_consumer.h" 185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_constants.h" 195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/gaia_urls.h" 205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "google_apis/gaia/google_service_auth_error.h" 215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/base/escape.h" 225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/base/load_flags.h" 232a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#include "net/http/http_response_headers.h" 245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/http/http_status_code.h" 255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/url_request/url_fetcher.h" 265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/url_request/url_request_context_getter.h" 275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "net/url_request/url_request_status.h" 285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)namespace { 305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const int kLoadFlagsIgnoreCookies = net::LOAD_DO_NOT_SEND_COOKIES | 315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::LOAD_DO_NOT_SAVE_COOKIES; 325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)static bool CookiePartsContains(const std::vector<std::string>& parts, 345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const char* part) { 355d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) for (std::vector<std::string>::const_iterator it = parts.begin(); 365d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) it != parts.end(); ++it) { 375d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) if (LowerCaseEqualsASCII(*it, part)) 385d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) return true; 395d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) } 405d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) return false; 415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 43eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdochbool ExtractOAuth2TokenPairResponse(base::DictionaryValue* dict, 445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* refresh_token, 455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* access_token, 465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int* expires_in_secs) { 475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(refresh_token); 485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(access_token); 495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(expires_in_secs); 505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (!dict->GetStringWithoutPathExpansion("refresh_token", refresh_token) || 525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) !dict->GetStringWithoutPathExpansion("access_token", access_token) || 535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) !dict->GetIntegerWithoutPathExpansion("expires_in", expires_in_secs)) { 545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return false; 555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return true; 585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} // namespace 615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// TODO(chron): Add sourceless version of this formatter. 635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginFormat[] = 655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "Email=%s&" 665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "Passwd=%s&" 675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "PersistentCookie=%s&" 685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "accountType=%s&" 695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "source=%s&" 705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "service=%s"; 715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginCaptchaFormat[] = 735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "Email=%s&" 745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "Passwd=%s&" 755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "PersistentCookie=%s&" 765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "accountType=%s&" 775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "source=%s&" 785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "service=%s&" 795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "logintoken=%s&" 805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "logincaptcha=%s"; 815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kIssueAuthTokenFormat[] = 835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "SID=%s&" 845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "LSID=%s&" 855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "service=%s&" 865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "Session=%s"; 875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2BodyFormat[] = 895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "scope=%s&client_id=%s"; 905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 91f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2WithDeviceTypeBodyFormat[] = 92f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) "scope=%s&client_id=%s&device_type=chrome"; 93f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)// static 945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kOAuth2CodeToTokenPairBodyFormat[] = 955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "scope=%s&" 965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "grant_type=authorization_code&" 975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "client_id=%s&" 985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "client_secret=%s&" 995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "code=%s"; 1005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 101c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)const char GaiaAuthFetcher::kOAuth2RevokeTokenBodyFormat[] = 102c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) "token=%s"; 103c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)// static 1045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kGetUserInfoFormat[] = 1055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "LSID=%s"; 1065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kMergeSessionFormat[] = 1085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "uberauth=%s&" 1095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "continue=%s&" 1105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "source=%s"; 1115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kUberAuthTokenURLFormat[] = 113d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) "?source=%s&" 1145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "issueuberauth=1"; 1155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kOAuthLoginFormat[] = "service=%s&source=%s"; 1175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountDeletedError[] = "AccountDeleted"; 1205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountDisabledError[] = "AccountDisabled"; 1225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kBadAuthenticationError[] = "BadAuthentication"; 1245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCaptchaError[] = "CaptchaRequired"; 1265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kServiceUnavailableError[] = 1285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "ServiceUnavailable"; 1295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kErrorParam[] = "Error"; 1315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kErrorUrlParam[] = "Url"; 1335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCaptchaUrlParam[] = "CaptchaUrl"; 1355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCaptchaTokenParam[] = "CaptchaToken"; 1375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kCookiePersistence[] = "true"; 1405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// TODO(johnnyg): When hosted accounts are supported by sync, 1425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// we can always use "HOSTED_OR_GOOGLE" 1435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountTypeHostedOrGoogle[] = 1445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "HOSTED_OR_GOOGLE"; 1455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAccountTypeGoogle[] = 1465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "GOOGLE"; 1475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kSecondFactor[] = "Info=InvalidSecondFactor"; 1505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kAuthHeaderFormat[] = 1535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "Authorization: GoogleLogin auth=%s"; 1545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kOAuthHeaderFormat[] = "Authorization: OAuth %s"; 1565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1572a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)const char GaiaAuthFetcher::kOAuth2BearerHeaderFormat[] = 1582a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) "Authorization: Bearer %s"; 1592a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)// static 160f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)const char GaiaAuthFetcher::kDeviceIdHeaderFormat[] = "X-Device-ID: %s"; 161f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)// static 1625d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2CookiePartSecure[] = "secure"; 1635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2CookiePartHttpOnly[] = 1655d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) "httponly"; 1665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const char GaiaAuthFetcher::kClientLoginToOAuth2CookiePartCodePrefix[] = 1685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) "oauth_code="; 1695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 1705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)const int GaiaAuthFetcher::kClientLoginToOAuth2CookiePartCodePrefixLength = 1715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) arraysize(GaiaAuthFetcher::kClientLoginToOAuth2CookiePartCodePrefix) - 1; 1725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)GaiaAuthFetcher::GaiaAuthFetcher(GaiaAuthConsumer* consumer, 1745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& source, 1755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::URLRequestContextGetter* getter) 1765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) : consumer_(consumer), 1775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) getter_(getter), 1785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) source_(source), 1795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) client_login_gurl_(GaiaUrls::GetInstance()->client_login_url()), 1805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) issue_auth_token_gurl_(GaiaUrls::GetInstance()->issue_auth_token_url()), 1815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) oauth2_token_gurl_(GaiaUrls::GetInstance()->oauth2_token_url()), 182c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) oauth2_revoke_gurl_(GaiaUrls::GetInstance()->oauth2_revoke_url()), 1835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) get_user_info_gurl_(GaiaUrls::GetInstance()->get_user_info_url()), 1845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) merge_session_gurl_(GaiaUrls::GetInstance()->merge_session_url()), 185d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) uberauth_token_gurl_(GaiaUrls::GetInstance()->oauth1_login_url().Resolve( 186d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) base::StringPrintf(kUberAuthTokenURLFormat, source.c_str()))), 1875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) oauth_login_gurl_(GaiaUrls::GetInstance()->oauth1_login_url()), 188f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) list_accounts_gurl_(GaiaUrls::GetInstance()->list_accounts_url()), 1895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) client_login_to_oauth2_gurl_( 1905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GaiaUrls::GetInstance()->client_login_to_oauth2_url()), 19146d4c2bc3267f3f028f39e7e311b0f89aba2e4fdTorne (Richard Coles) fetch_pending_(false) {} 1925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)GaiaAuthFetcher::~GaiaAuthFetcher() {} 1945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::HasPendingFetch() { 1965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return fetch_pending_; 1975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 1985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 1995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::CancelRequest() { 2005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(); 2015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = false; 2025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 2035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 2055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)net::URLFetcher* GaiaAuthFetcher::CreateGaiaFetcher( 2065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::URLRequestContextGetter* getter, 2075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& body, 2085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& headers, 2095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const GURL& gaia_gurl, 2105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int load_flags, 2115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::URLFetcherDelegate* delegate) { 2125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::URLFetcher* to_return = net::URLFetcher::Create( 2135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 0, gaia_gurl, 2145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) body == "" ? net::URLFetcher::GET : net::URLFetcher::POST, 2155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) delegate); 2165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) to_return->SetRequestContext(getter); 2175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) to_return->SetUploadData("application/x-www-form-urlencoded", body); 2185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(2) << "Gaia fetcher URL: " << gaia_gurl.spec(); 2205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(2) << "Gaia fetcher headers: " << headers; 2215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(2) << "Gaia fetcher body: " << body; 2225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // The Gaia token exchange requests do not require any cookie-based 2245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // identification as part of requests. We suppress sending any cookies to 2255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // maintain a separation between the user's browsing and Chrome's internal 226f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) // services. Where such mixing is desired (MergeSession or OAuthLogin), it 227f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) // will be done explicitly. 2285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) to_return->SetLoadFlags(load_flags); 2295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2302a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // Fetchers are sometimes cancelled because a network change was detected, 2312a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // especially at startup and after sign-in on ChromeOS. Retrying once should 2322a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // be enough in those cases; let the fetcher retry up to 3 times just in case. 2332a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // http://crbug.com/163710 2342a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) to_return->SetAutomaticallyRetryOnNetworkChanges(3); 2352a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) 2365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (!headers.empty()) 2375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) to_return->SetExtraRequestHeaders(headers); 2385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return to_return; 2405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 2415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 2435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeClientLoginBody( 2445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& username, 2455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& password, 2465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& source, 2475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const char* service, 2485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& login_token, 2495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& login_captcha, 2505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) HostedAccountsSetting allow_hosted_accounts) { 2515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_username = net::EscapeUrlEncodedData(username, true); 2525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_password = net::EscapeUrlEncodedData(password, true); 2535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_login_token = net::EscapeUrlEncodedData(login_token, 2545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) true); 2555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_login_captcha = net::EscapeUrlEncodedData(login_captcha, 2565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) true); 2575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const char* account_type = allow_hosted_accounts == HostedAccountsAllowed ? 2595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kAccountTypeHostedOrGoogle : 2605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kAccountTypeGoogle; 2615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (login_token.empty() || login_captcha.empty()) { 2635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return base::StringPrintf(kClientLoginFormat, 2645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_username.c_str(), 2655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_password.c_str(), 2665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kCookiePersistence, 2675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) account_type, 2685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) source.c_str(), 2695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) service); 2705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 2715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return base::StringPrintf(kClientLoginCaptchaFormat, 2735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_username.c_str(), 2745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_password.c_str(), 2755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kCookiePersistence, 2765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) account_type, 2775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) source.c_str(), 2785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) service, 2795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_login_token.c_str(), 2805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_login_captcha.c_str()); 2815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 2825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 2845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeIssueAuthTokenBody( 2855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& sid, 2865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& lsid, 2875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const char* const service) { 2885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_sid = net::EscapeUrlEncodedData(sid, true); 2895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_lsid = net::EscapeUrlEncodedData(lsid, true); 2905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // All tokens should be session tokens except the gaia auth token. 2925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) bool session = true; 2935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (!strcmp(service, GaiaConstants::kGaiaService)) 2945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) session = false; 2955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 2965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return base::StringPrintf(kIssueAuthTokenFormat, 2975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_sid.c_str(), 2985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_lsid.c_str(), 2995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) service, 3005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) session ? "true" : "false"); 3015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 3025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 3035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 304f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetAuthCodeBody(bool include_device_type) { 3055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_scope = net::EscapeUrlEncodedData( 306a1401311d1ab56c4ed0a474bd38c108f75cb0cd9Torne (Richard Coles) GaiaConstants::kOAuth1LoginScope, true); 3075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_client_id = net::EscapeUrlEncodedData( 3085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GaiaUrls::GetInstance()->oauth2_chrome_client_id(), true); 309f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) if (include_device_type) { 310f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) return base::StringPrintf(kClientLoginToOAuth2WithDeviceTypeBodyFormat, 311f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) encoded_scope.c_str(), 312f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) encoded_client_id.c_str()); 313f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) } else { 314f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) return base::StringPrintf(kClientLoginToOAuth2BodyFormat, 315f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) encoded_scope.c_str(), 316f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) encoded_client_id.c_str()); 317f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) } 3185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 3195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 3205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 3215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetTokenPairBody( 3225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& auth_code) { 3235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_scope = net::EscapeUrlEncodedData( 324a1401311d1ab56c4ed0a474bd38c108f75cb0cd9Torne (Richard Coles) GaiaConstants::kOAuth1LoginScope, true); 3255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_client_id = net::EscapeUrlEncodedData( 3265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GaiaUrls::GetInstance()->oauth2_chrome_client_id(), true); 3275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_client_secret = net::EscapeUrlEncodedData( 3285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GaiaUrls::GetInstance()->oauth2_chrome_client_secret(), true); 3295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_auth_code = net::EscapeUrlEncodedData(auth_code, true); 3302a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) return base::StringPrintf(kOAuth2CodeToTokenPairBodyFormat, 3312a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) encoded_scope.c_str(), 3322a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) encoded_client_id.c_str(), 3332a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) encoded_client_secret.c_str(), 3342a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) encoded_auth_code.c_str()); 3355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 3365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 3375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 338c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)std::string GaiaAuthFetcher::MakeRevokeTokenBody( 339c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) const std::string& auth_token) { 340c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) return base::StringPrintf(kOAuth2RevokeTokenBodyFormat, auth_token.c_str()); 341c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)} 342c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) 343c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)// static 3445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetUserInfoBody(const std::string& lsid) { 3455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_lsid = net::EscapeUrlEncodedData(lsid, true); 3465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return base::StringPrintf(kGetUserInfoFormat, encoded_lsid.c_str()); 3475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 3485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 3495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 3505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeMergeSessionBody( 3515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& auth_token, 3525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& continue_url, 3535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& source) { 3545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_auth_token = net::EscapeUrlEncodedData(auth_token, true); 3555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_continue_url = net::EscapeUrlEncodedData(continue_url, 3565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) true); 3575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_source = net::EscapeUrlEncodedData(source, true); 3585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return base::StringPrintf(kMergeSessionFormat, 3595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_auth_token.c_str(), 3605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_continue_url.c_str(), 3615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) encoded_source.c_str()); 3625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 3635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 3645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 3655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeGetAuthCodeHeader( 3665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& auth_token) { 3672a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) return base::StringPrintf(kAuthHeaderFormat, auth_token.c_str()); 3685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 3695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 3705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Helper method that extracts tokens from a successful reply. 3715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 3725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::ParseClientLoginResponse(const std::string& data, 3735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* sid, 3745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* lsid, 3755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* token) { 3765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) using std::vector; 3775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) using std::pair; 3785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) using std::string; 3792a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) sid->clear(); 3802a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) lsid->clear(); 3812a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) token->clear(); 3825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) vector<pair<string, string> > tokens; 3835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) base::SplitStringIntoKeyValuePairs(data, '=', '\n', &tokens); 3845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) for (vector<pair<string, string> >::iterator i = tokens.begin(); 3855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) i != tokens.end(); ++i) { 3865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (i->first == "SID") { 3875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) sid->assign(i->second); 3885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (i->first == "LSID") { 3895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) lsid->assign(i->second); 3905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (i->first == "Auth") { 3915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) token->assign(i->second); 3925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 3935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 3942a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // If this was a request for uberauth token, then that's all we've got in 3952a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // data. 3962a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) if (sid->empty() && lsid->empty() && token->empty()) 3972a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) token->assign(data); 3985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 3995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 4015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)std::string GaiaAuthFetcher::MakeOAuthLoginBody(const std::string& service, 4025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& source) { 4035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_service = net::EscapeUrlEncodedData(service, true); 4045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string encoded_source = net::EscapeUrlEncodedData(source, true); 4052a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) return base::StringPrintf(kOAuthLoginFormat, 4062a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) encoded_service.c_str(), 4072a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) encoded_source.c_str()); 4085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 4095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 4115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::ParseClientLoginFailure(const std::string& data, 4125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* error, 4135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* error_url, 4145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* captcha_url, 4155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* captcha_token) { 4165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) using std::vector; 4175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) using std::pair; 4185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) using std::string; 4195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) vector<pair<string, string> > tokens; 4215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) base::SplitStringIntoKeyValuePairs(data, '=', '\n', &tokens); 4225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) for (vector<pair<string, string> >::iterator i = tokens.begin(); 4235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) i != tokens.end(); ++i) { 4245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (i->first == kErrorParam) { 4255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) error->assign(i->second); 4265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (i->first == kErrorUrlParam) { 4275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) error_url->assign(i->second); 4285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (i->first == kCaptchaUrlParam) { 4295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) captcha_url->assign(i->second); 4305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (i->first == kCaptchaTokenParam) { 4315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) captcha_token->assign(i->second); 4325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 4335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 4345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 4355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 4375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::ParseClientLoginToOAuth2Response( 4385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::ResponseCookies& cookies, 4395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* auth_code) { 4405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(auth_code); 4415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::ResponseCookies::const_iterator iter; 4425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) for (iter = cookies.begin(); iter != cookies.end(); ++iter) { 4435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (ParseClientLoginToOAuth2Cookie(*iter, auth_code)) 4445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return true; 4455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 4465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return false; 4475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 4485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 4505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::ParseClientLoginToOAuth2Cookie(const std::string& cookie, 4515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string* auth_code) { 4525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::vector<std::string> parts; 4535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) base::SplitString(cookie, ';', &parts); 4545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // Per documentation, the cookie should have Secure and HttpOnly. 4555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (!CookiePartsContains(parts, kClientLoginToOAuth2CookiePartSecure) || 4565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) !CookiePartsContains(parts, kClientLoginToOAuth2CookiePartHttpOnly)) { 4575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return false; 4585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 4595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::vector<std::string>::const_iterator iter; 4615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) for (iter = parts.begin(); iter != parts.end(); ++iter) { 4625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& part = *iter; 4635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (StartsWithASCII( 4645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) part, kClientLoginToOAuth2CookiePartCodePrefix, false)) { 4655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) auth_code->assign(part.substr( 4665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kClientLoginToOAuth2CookiePartCodePrefixLength)); 4675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return true; 4685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 4695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 4705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return false; 4715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 4725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartClientLogin( 4745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& username, 4755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& password, 4765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const char* const service, 4775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& login_token, 4785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& login_captcha, 4795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) HostedAccountsSetting allow_hosted_accounts) { 4805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 4825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // This class is thread agnostic, so be sure to call this only on the 4845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // same thread each time. 4855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "Starting new ClientLogin fetch for:" << username; 4865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 4875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // Must outlive fetcher_. 4885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_ = MakeClientLoginBody(username, 4895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) password, 4905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) source_, 4915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) service, 4925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) login_token, 4935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) login_captcha, 4945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) allow_hosted_accounts); 4955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 4965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_, 497c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) std::string(), 4985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) client_login_gurl_, 4995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kLoadFlagsIgnoreCookies, 5005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 5015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 5025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 5035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 5045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 5055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartIssueAuthToken(const std::string& sid, 5065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& lsid, 5075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const char* const service) { 5085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 5095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 5105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "Starting IssueAuthToken for: " << service; 5115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) requested_service_ = service; 5125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_ = MakeIssueAuthTokenBody(sid, lsid, service); 5135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 5145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_, 515c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) std::string(), 5165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) issue_auth_token_gurl_, 5175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kLoadFlagsIgnoreCookies, 5185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 5195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 5205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 5215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 5225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 5235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartLsoForOAuthLoginTokenExchange( 5245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& auth_token) { 5255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 5265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 5275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "Starting OAuth login token exchange with auth_token"; 528f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) request_body_ = MakeGetAuthCodeBody(false); 5295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) client_login_to_oauth2_gurl_ = 530d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) GaiaUrls::GetInstance()->client_login_to_oauth2_url(); 5315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 5325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 5335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_, 5345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) MakeGetAuthCodeHeader(auth_token), 5355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) client_login_to_oauth2_gurl_, 5365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kLoadFlagsIgnoreCookies, 5375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 5385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 5395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 5405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 5415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 542c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)void GaiaAuthFetcher::StartRevokeOAuth2Token(const std::string& auth_token) { 543c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 544c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) 545c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) DVLOG(1) << "Starting OAuth2 token revocation"; 546c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) request_body_ = MakeRevokeTokenBody(auth_token); 547c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 548c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) request_body_, 549c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) std::string(), 550c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) oauth2_revoke_gurl_, 551c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) kLoadFlagsIgnoreCookies, 552c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) this)); 553c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) fetch_pending_ = true; 554c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) fetcher_->Start(); 555c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)} 556c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) 5575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartCookieForOAuthLoginTokenExchange( 5585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& session_index) { 559f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) StartCookieForOAuthLoginTokenExchangeWithDeviceId(session_index, 560f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) std::string()); 561f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)} 562f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) 563f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles)void GaiaAuthFetcher::StartCookieForOAuthLoginTokenExchangeWithDeviceId( 564f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) const std::string& session_index, 565f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) const std::string& device_id) { 5665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 5675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 5685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "Starting OAuth login token fetch with cookie jar"; 569f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) request_body_ = MakeGetAuthCodeBody(!device_id.empty()); 5705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 571d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) client_login_to_oauth2_gurl_ = 572d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) GaiaUrls::GetInstance()->client_login_to_oauth2_url(); 573d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) if (!session_index.empty()) { 574d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) client_login_to_oauth2_gurl_ = 575d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) client_login_to_oauth2_gurl_.Resolve("?authuser=" + session_index); 576d0247b1b59f9c528cb6df88b4f2b9afaf80d181eTorne (Richard Coles) } 5775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 578f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) std::string device_id_header; 579f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) if (!device_id.empty()) { 580f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) device_id_header = 581f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) base::StringPrintf(kDeviceIdHeaderFormat, device_id.c_str()); 582f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) } 583f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) 5845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 5855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_, 586f8ee788a64d60abd8f2d742a5fdedde054ecd910Torne (Richard Coles) device_id_header, 5875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) client_login_to_oauth2_gurl_, 5885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::LOAD_NORMAL, 5895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 5905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 5915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 5925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 5935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 5942a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)void GaiaAuthFetcher::StartAuthCodeForOAuth2TokenExchange( 5952a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) const std::string& auth_code) { 5962a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 5972a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) 5982a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) DVLOG(1) << "Starting OAuth token pair fetch"; 5992a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) request_body_ = MakeGetTokenPairBody(auth_code); 6002a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 6012a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) request_body_, 602c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) std::string(), 6032a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) oauth2_token_gurl_, 6042a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) kLoadFlagsIgnoreCookies, 6052a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) this)); 6062a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) fetch_pending_ = true; 6072a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) fetcher_->Start(); 6082a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)} 6092a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) 6105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartGetUserInfo(const std::string& lsid) { 6115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 6125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "Starting GetUserInfo for lsid=" << lsid; 6145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_ = MakeGetUserInfoBody(lsid); 6155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 6165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_, 617c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) std::string(), 6185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) get_user_info_gurl_, 6195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) kLoadFlagsIgnoreCookies, 6205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 6215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 6225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 6235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 6245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartMergeSession(const std::string& uber_token) { 6265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 6275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "Starting MergeSession with uber_token=" << uber_token; 6295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // The continue URL is a required parameter of the MergeSession API, but in 6315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // this case we don't actually need or want to navigate to it. Setting it to 6325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // an arbitrary Google URL. 6335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // 6345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // In order for the new session to be merged correctly, the server needs to 6355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // know what sessions already exist in the browser. The fetcher needs to be 6365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // created such that it sends the cookies with the request, which is 6375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // different from all other requests the fetcher can make. 6385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string continue_url("http://www.google.com"); 6395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_ = MakeMergeSessionBody(uber_token, continue_url, source_); 6405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 6415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_, 642c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) std::string(), 6435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) merge_session_gurl_, 6445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) net::LOAD_NORMAL, 6455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 6465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 6475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 6485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 6495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartTokenFetchForUberAuthExchange( 6515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& access_token) { 6525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 6535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "Starting StartTokenFetchForUberAuthExchange with access_token=" 6555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) << access_token; 6565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string authentication_header = 6575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) base::StringPrintf(kOAuthHeaderFormat, access_token.c_str()); 6585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 659c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) std::string(), 6605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) authentication_header, 6615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) uberauth_token_gurl_, 662f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) net::LOAD_NORMAL, 6635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 6645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 6655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 6665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 6675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::StartOAuthLogin(const std::string& access_token, 6695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& service) { 6705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 6715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_ = MakeOAuthLoginBody(service, source_); 6735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string authentication_header = 6742a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) base::StringPrintf(kOAuth2BearerHeaderFormat, access_token.c_str()); 6755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 6765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) request_body_, 6775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) authentication_header, 6785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) oauth_login_gurl_, 679f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) net::LOAD_NORMAL, 680f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) this)); 681f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) fetch_pending_ = true; 682f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) fetcher_->Start(); 683f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)} 684f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) 685f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)void GaiaAuthFetcher::StartListAccounts() { 686f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) DCHECK(!fetch_pending_) << "Tried to fetch two things at once!"; 687f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) 688f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) fetcher_.reset(CreateGaiaFetcher(getter_, 689f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) " ", // To force an HTTP POST. 690f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) "Origin: https://www.google.com", 691f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) list_accounts_gurl_, 692f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) net::LOAD_NORMAL, 6935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) this)); 6945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = true; 6955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetcher_->Start(); 6965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 6975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 6985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 6995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)GoogleServiceAuthError GaiaAuthFetcher::GenerateAuthError( 7005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& data, 7015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status) { 7025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (!status.is_success()) { 7035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.status() == net::URLRequestStatus::CANCELED) { 7045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return GoogleServiceAuthError(GoogleServiceAuthError::REQUEST_CANCELED); 7055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 70623730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) DLOG(WARNING) << "Could not reach Google Accounts servers: errno " 70723730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) << status.error(); 70823730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) return GoogleServiceAuthError::FromConnectionError(status.error()); 70923730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) } 7105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 71123730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) if (IsSecondFactorSuccess(data)) 71223730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) return GoogleServiceAuthError(GoogleServiceAuthError::TWO_FACTOR); 71323730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) 71423730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) std::string error; 71523730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) std::string url; 71623730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) std::string captcha_url; 71723730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) std::string captcha_token; 71823730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) ParseClientLoginFailure(data, &error, &url, &captcha_url, &captcha_token); 71923730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) DLOG(WARNING) << "ClientLogin failed with " << error; 72023730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) 72123730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) if (error == kCaptchaError) { 72223730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) return GoogleServiceAuthError::FromClientLoginCaptchaChallenge( 72323730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) captcha_token, 72423730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) GURL(GaiaUrls::GetInstance()->captcha_base_url().Resolve(captcha_url)), 72523730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) GURL(url)); 72623730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) } 72723730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) if (error == kAccountDeletedError) 72823730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) return GoogleServiceAuthError(GoogleServiceAuthError::ACCOUNT_DELETED); 72923730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) if (error == kAccountDisabledError) 73023730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) return GoogleServiceAuthError(GoogleServiceAuthError::ACCOUNT_DISABLED); 73123730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) if (error == kBadAuthenticationError) { 7325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return GoogleServiceAuthError( 73323730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) GoogleServiceAuthError::INVALID_GAIA_CREDENTIALS); 7345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 73523730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) if (error == kServiceUnavailableError) { 7365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return GoogleServiceAuthError( 7375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GoogleServiceAuthError::SERVICE_UNAVAILABLE); 7385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 7395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 74023730a6e56a168d1879203e4b3819bb36e3d8f1fTorne (Richard Coles) DLOG(WARNING) << "Incomprehensible response from Google Accounts servers."; 7415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return GoogleServiceAuthError(GoogleServiceAuthError::SERVICE_UNAVAILABLE); 7425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 7435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 7445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnClientLoginFetched(const std::string& data, 7455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 7465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 7475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 7485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "ClientLogin successful!"; 7495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string sid; 7505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string lsid; 7515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string token; 7525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) ParseClientLoginResponse(data, &sid, &lsid, &token); 7535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnClientLoginSuccess( 7545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GaiaAuthConsumer::ClientLoginResult(sid, lsid, token, data)); 7555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 7565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnClientLoginFailure(GenerateAuthError(data, status)); 7575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 7585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 7595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 7605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnIssueAuthTokenFetched( 7615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& data, 7625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 7635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 7645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 7655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // Only the bare token is returned in the body of this Gaia call 7665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // without any padding. 7675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnIssueAuthTokenSuccess(requested_service_, data); 7685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 7695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnIssueAuthTokenFailure(requested_service_, 7705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GenerateAuthError(data, status)); 7715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 7725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 7735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 7745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnClientLoginToOAuth2Fetched( 7755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& data, 7765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::ResponseCookies& cookies, 7775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 7785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 7795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 7805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string auth_code; 7815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) ParseClientLoginToOAuth2Response(cookies, &auth_code); 78246d4c2bc3267f3f028f39e7e311b0f89aba2e4fdTorne (Richard Coles) StartAuthCodeForOAuth2TokenExchange(auth_code); 7835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 7845d1f7b1de12d16ceb2c938c56701a3e8bfa558f7Torne (Richard Coles) GoogleServiceAuthError auth_error(GenerateAuthError(data, status)); 78546d4c2bc3267f3f028f39e7e311b0f89aba2e4fdTorne (Richard Coles) consumer_->OnClientOAuthFailure(auth_error); 7865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 7875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 7885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 7895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnOAuth2TokenPairFetched( 7905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& data, 7915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 7925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 7935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string refresh_token; 7945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string access_token; 7955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int expires_in_secs = 0; 7965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 7975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) bool success = false; 7985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 7995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) scoped_ptr<base::Value> value(base::JSONReader::Read(data)); 8005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (value.get() && value->GetType() == base::Value::TYPE_DICTIONARY) { 801eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch base::DictionaryValue* dict = 802eb525c5499e34cc9c4b825d6d9e75bb07cc06aceBen Murdoch static_cast<base::DictionaryValue*>(value.get()); 8035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) success = ExtractOAuth2TokenPairResponse(dict, &refresh_token, 8045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) &access_token, &expires_in_secs); 8055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 8085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (success) { 8095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnClientOAuthSuccess( 8105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GaiaAuthConsumer::ClientOAuthResult(refresh_token, access_token, 8115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) expires_in_secs)); 8125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 8135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnClientOAuthFailure(GenerateAuthError(data, status)); 8145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 8165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 817c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)void GaiaAuthFetcher::OnOAuth2RevokeTokenFetched( 818c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) const std::string& data, 819c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) const net::URLRequestStatus& status, 820c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) int response_code) { 821c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) consumer_->OnOAuth2RevokeTokenCompleted(); 822c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)} 823c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) 824f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)void GaiaAuthFetcher::OnListAccountsFetched(const std::string& data, 825f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) const net::URLRequestStatus& status, 826f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) int response_code) { 827f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 828f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) consumer_->OnListAccountsSuccess(data); 829f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) } else { 830f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) consumer_->OnListAccountsFailure(GenerateAuthError(data, status)); 831f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) } 832f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles)} 833f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) 8345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnGetUserInfoFetched( 8355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& data, 8365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 8375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 8385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 8395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::vector<std::pair<std::string, std::string> > tokens; 8405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) UserInfoMap matches; 8415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) base::SplitStringIntoKeyValuePairs(data, '=', '\n', &tokens); 8425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::vector<std::pair<std::string, std::string> >::iterator i; 8435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) for (i = tokens.begin(); i != tokens.end(); ++i) { 8445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) matches[i->first] = i->second; 8455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnGetUserInfoSuccess(matches); 8475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 8485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnGetUserInfoFailure(GenerateAuthError(data, status)); 8495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 8515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 8525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnMergeSessionFetched(const std::string& data, 8535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 8545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 8555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 8565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnMergeSessionSuccess(data); 8575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 8585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnMergeSessionFailure(GenerateAuthError(data, status)); 8595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 8615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 8625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnUberAuthTokenFetch(const std::string& data, 8635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 8645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 8655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 8665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnUberAuthTokenSuccess(data); 8675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 8685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnUberAuthTokenFailure(GenerateAuthError(data, status)); 8695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 8715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 8725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnOAuthLoginFetched(const std::string& data, 8735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status, 8745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code) { 8755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (status.is_success() && response_code == net::HTTP_OK) { 8765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) DVLOG(1) << "ClientLogin successful!"; 8775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string sid; 8785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string lsid; 8795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string token; 8805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) ParseClientLoginResponse(data, &sid, &lsid, &token); 8815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnClientLoginSuccess( 8825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) GaiaAuthConsumer::ClientLoginResult(sid, lsid, token, data)); 8835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 8845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) consumer_->OnClientLoginFailure(GenerateAuthError(data, status)); 8855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 8865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 8875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 8885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void GaiaAuthFetcher::OnURLFetchComplete(const net::URLFetcher* source) { 8895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) fetch_pending_ = false; 8905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // Some of the GAIA requests perform redirects, which results in the final 8915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // URL of the fetcher not being the original URL requested. Therefore use 8925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) // the original URL when determining which OnXXX function to call. 8935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const GURL& url = source->GetOriginalURL(); 8945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const net::URLRequestStatus& status = source->GetStatus(); 8955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) int response_code = source->GetResponseCode(); 8965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string data; 8975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) source->GetResponseAsString(&data); 8982a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#ifndef NDEBUG 8992a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) std::string headers; 9002a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) if (source->GetResponseHeaders()) 9012a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) source->GetResponseHeaders()->GetNormalizedHeaders(&headers); 9022a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) DVLOG(2) << "Response " << url.spec() << ", code = " << response_code << "\n" 9032a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) << headers << "\n"; 9042a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) DVLOG(2) << "data: " << data << "\n"; 9052a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#endif 9062a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // Retrieve the response headers from the request. Must only be called after 9072a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles) // the OnURLFetchComplete callback has run. 9085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) if (url == client_login_gurl_) { 9095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnClientLoginFetched(data, status, response_code); 9105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (url == issue_auth_token_gurl_) { 9115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnIssueAuthTokenFetched(data, status, response_code); 9125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (url == client_login_to_oauth2_gurl_) { 9135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnClientLoginToOAuth2Fetched( 9145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) data, source->GetCookies(), status, response_code); 9155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (url == oauth2_token_gurl_) { 9165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnOAuth2TokenPairFetched(data, status, response_code); 9175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (url == get_user_info_gurl_) { 9185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnGetUserInfoFetched(data, status, response_code); 9195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (url == merge_session_gurl_) { 9205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnMergeSessionFetched(data, status, response_code); 9215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (url == uberauth_token_gurl_) { 9225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnUberAuthTokenFetch(data, status, response_code); 9235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else if (url == oauth_login_gurl_) { 9245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) OnOAuthLoginFetched(data, status, response_code); 925c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) } else if (url == oauth2_revoke_gurl_) { 926c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles) OnOAuth2RevokeTokenFetched(data, status, response_code); 927f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) } else if (url == list_accounts_gurl_) { 928f2477e01787aa58f445919b809d89e252beef54fTorne (Richard Coles) OnListAccountsFetched(data, status, response_code); 9295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } else { 9305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) NOTREACHED(); 9315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) } 9325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 9335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) 9345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static 9355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool GaiaAuthFetcher::IsSecondFactorSuccess( 9365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) const std::string& alleged_error) { 9375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) return alleged_error.find(kSecondFactor) != 9385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles) std::string::npos; 9395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)} 940