mirror of
https://github.com/rails/rails.git
synced 2022-11-09 12:12:34 -05:00
Implement API suggestions of pull request.
This commit is contained in:
parent
a8aaef6762
commit
db040cdf8b
4 changed files with 34 additions and 18 deletions
|
@ -13,13 +13,12 @@ module ActiveSupport
|
|||
class InvalidMessage < StandardError; end
|
||||
OpenSSLCipherError = OpenSSL::Cipher.const_defined?(:CipherError) ? OpenSSL::Cipher::CipherError : OpenSSL::CipherError
|
||||
|
||||
attr_accessor :serializer, :deserializer
|
||||
attr_accessor :serializer
|
||||
|
||||
def initialize(secret, cipher = 'aes-256-cbc')
|
||||
def initialize(secret, cipher = 'aes-256-cbc', serializer = Marshal)
|
||||
@secret = secret
|
||||
@cipher = cipher
|
||||
@serializer = lambda { |value| Marshal.dump(value) }
|
||||
@deserializer = lambda { |value| Marshal.load(value) }
|
||||
@serializer = serializer
|
||||
end
|
||||
|
||||
def encrypt(value)
|
||||
|
@ -31,7 +30,7 @@ module ActiveSupport
|
|||
cipher.key = @secret
|
||||
cipher.iv = iv
|
||||
|
||||
encrypted_data = cipher.update(serializer.call(value))
|
||||
encrypted_data = cipher.update(serializer.dump(value))
|
||||
encrypted_data << cipher.final
|
||||
|
||||
[encrypted_data, iv].map {|v| ActiveSupport::Base64.encode64s(v)}.join("--")
|
||||
|
@ -48,7 +47,7 @@ module ActiveSupport
|
|||
decrypted_data = cipher.update(encrypted_data)
|
||||
decrypted_data << cipher.final
|
||||
|
||||
deserializer.call(decrypted_data)
|
||||
serializer.load(decrypted_data)
|
||||
rescue OpenSSLCipherError, TypeError
|
||||
raise InvalidMessage
|
||||
end
|
||||
|
|
|
@ -21,13 +21,12 @@ module ActiveSupport
|
|||
class MessageVerifier
|
||||
class InvalidSignature < StandardError; end
|
||||
|
||||
attr_accessor :serializer, :deserializer
|
||||
attr_accessor :serializer
|
||||
|
||||
def initialize(secret, digest = 'SHA1')
|
||||
def initialize(secret, digest = 'SHA1', serializer = Marshal)
|
||||
@secret = secret
|
||||
@digest = digest
|
||||
@serializer = lambda { |value| Marshal.dump(value) }
|
||||
@deserializer = lambda { |value| Marshal.load(value) }
|
||||
@serializer = serializer
|
||||
end
|
||||
|
||||
def verify(signed_message)
|
||||
|
@ -35,14 +34,14 @@ module ActiveSupport
|
|||
|
||||
data, digest = signed_message.split("--")
|
||||
if data.present? && digest.present? && secure_compare(digest, generate_digest(data))
|
||||
deserializer.call(ActiveSupport::Base64.decode64(data))
|
||||
serializer.load(ActiveSupport::Base64.decode64(data))
|
||||
else
|
||||
raise InvalidSignature
|
||||
end
|
||||
end
|
||||
|
||||
def generate(value)
|
||||
data = ActiveSupport::Base64.encode64s(serializer.call(value))
|
||||
data = ActiveSupport::Base64.encode64s(serializer.dump(value))
|
||||
"#{data}--#{generate_digest(data)}"
|
||||
end
|
||||
|
||||
|
|
|
@ -11,6 +11,17 @@ require 'active_support/time'
|
|||
require 'active_support/json'
|
||||
|
||||
class MessageEncryptorTest < Test::Unit::TestCase
|
||||
|
||||
class JSONSerializer
|
||||
def dump(value)
|
||||
ActiveSupport::JSON.encode(value)
|
||||
end
|
||||
|
||||
def load(value)
|
||||
ActiveSupport::JSON.decode(value)
|
||||
end
|
||||
end
|
||||
|
||||
def setup
|
||||
@encryptor = ActiveSupport::MessageEncryptor.new(SecureRandom.hex(64))
|
||||
@data = { :some => "data", :now => Time.local(2010) }
|
||||
|
@ -41,9 +52,7 @@ class MessageEncryptorTest < Test::Unit::TestCase
|
|||
end
|
||||
|
||||
def test_alternative_serialization_method
|
||||
@encryptor.serializer = lambda { |value| ActiveSupport::JSON.encode(value) }
|
||||
@encryptor.deserializer = lambda { |value| ActiveSupport::JSON.decode(value) }
|
||||
|
||||
@encryptor.serializer = JSONSerializer.new
|
||||
message = @encryptor.encrypt_and_sign({ :foo => 123, 'bar' => Time.utc(2010) })
|
||||
assert_equal @encryptor.decrypt_and_verify(message), { "foo" => 123, "bar" => "2010-01-01T00:00:00Z" }
|
||||
end
|
||||
|
|
|
@ -11,6 +11,17 @@ require 'active_support/time'
|
|||
require 'active_support/json'
|
||||
|
||||
class MessageVerifierTest < Test::Unit::TestCase
|
||||
|
||||
class JSONSerializer
|
||||
def dump(value)
|
||||
ActiveSupport::JSON.encode(value)
|
||||
end
|
||||
|
||||
def load(value)
|
||||
ActiveSupport::JSON.decode(value)
|
||||
end
|
||||
end
|
||||
|
||||
def setup
|
||||
@verifier = ActiveSupport::MessageVerifier.new("Hey, I'm a secret!")
|
||||
@data = { :some => "data", :now => Time.local(2010) }
|
||||
|
@ -34,9 +45,7 @@ class MessageVerifierTest < Test::Unit::TestCase
|
|||
end
|
||||
|
||||
def test_alternative_serialization_method
|
||||
@verifier.serializer = lambda { |value| ActiveSupport::JSON.encode(value) }
|
||||
@verifier.deserializer = lambda { |value| ActiveSupport::JSON.decode(value) }
|
||||
|
||||
@verifier.serializer = JSONSerializer.new
|
||||
message = @verifier.generate({ :foo => 123, 'bar' => Time.utc(2010) })
|
||||
assert_equal @verifier.verify(message), { "foo" => 123, "bar" => "2010-01-01T00:00:00Z" }
|
||||
end
|
||||
|
|
Loading…
Reference in a new issue