Method: Appoxy::Sessions::SessionsController#openid_start

Defined in:
lib/sessions/sessions_controller.rb

#openid_startObject



140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
# File 'lib/sessions/sessions_controller.rb', line 140

def openid_start

  begin
    identifier = params[:openid_identifier]
    if identifier.nil?
      flash[:warning] = "There is no openid identifier."
      redirect_to root_path
      return
    end
    oidreq = consumer.begin(identifier)
  rescue OpenID::OpenIDError => e
    flash[:error] = "Discovery failed for #{identifier}: #{e}"
    redirect_to root_path
    return
  end
  if true || params[:use_ax]
    sregreq = OpenID::AX::FetchRequest.new
    sregreq.add(OpenID::AX::AttrInfo.new("http://schema.openid.net/contact/email", "email", true))
    oidreq.add_extension(sregreq)
    oidreq.return_to_args['did_ax'] = 'y'
  end
  if params[:use_sreg]
    sregreq = OpenID::SReg::Request.new
    # required fields
    sregreq.request_fields(['email', 'nickname'], true)
    # optional fields
    sregreq.request_fields(['dob', 'fullname'], false)
    oidreq.add_extension(sregreq)
    oidreq.return_to_args['did_sreg'] = 'y'
  end
  if params[:use_pape]
    papereq = OpenID::PAPE::Request.new
    papereq.add_policy_uri(OpenID::PAPE::AUTH_PHISHING_RESISTANT)
    papereq.max_auth_age = 2*60*60
    oidreq.add_extension(papereq)
    oidreq.return_to_args['did_pape'] = 'y'
  end
  if params[:force_post]
    oidreq.return_to_args['force_post']='x'*2048
  end
  return_to = base_url + "/sessions/openid_complete"
  realm = base_url

  puts 'about to redirect'

  if oidreq.send_redirect?(realm, return_to, params[:immediate])
    url = oidreq.redirect_url(realm, return_to, params[:immediate])
    puts 'yep, redirecting to ' + url
#                response["x-test-yo"] = "fuck me"
    redirect_to url
  else
    haml oidreq.html_markup(realm, return_to, params[:immediate], {'id' => 'openid_form'})
  end
#            dump_flash

end