SyncPlayAccessHandler.cs 3.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106
  1. using System.Threading.Tasks;
  2. using Jellyfin.Api.Extensions;
  3. using Jellyfin.Api.Helpers;
  4. using Jellyfin.Data.Enums;
  5. using MediaBrowser.Common.Net;
  6. using MediaBrowser.Controller.Library;
  7. using MediaBrowser.Controller.SyncPlay;
  8. using Microsoft.AspNetCore.Authorization;
  9. using Microsoft.AspNetCore.Http;
  10. namespace Jellyfin.Api.Auth.SyncPlayAccessPolicy
  11. {
  12. /// <summary>
  13. /// Default authorization handler.
  14. /// </summary>
  15. public class SyncPlayAccessHandler : BaseAuthorizationHandler<SyncPlayAccessRequirement>
  16. {
  17. private readonly ISyncPlayManager _syncPlayManager;
  18. private readonly IUserManager _userManager;
  19. /// <summary>
  20. /// Initializes a new instance of the <see cref="SyncPlayAccessHandler"/> class.
  21. /// </summary>
  22. /// <param name="syncPlayManager">Instance of the <see cref="ISyncPlayManager"/> interface.</param>
  23. /// <param name="userManager">Instance of the <see cref="IUserManager"/> interface.</param>
  24. /// <param name="networkManager">Instance of the <see cref="INetworkManager"/> interface.</param>
  25. /// <param name="httpContextAccessor">Instance of the <see cref="IHttpContextAccessor"/> interface.</param>
  26. public SyncPlayAccessHandler(
  27. ISyncPlayManager syncPlayManager,
  28. IUserManager userManager,
  29. INetworkManager networkManager,
  30. IHttpContextAccessor httpContextAccessor)
  31. : base(userManager, networkManager, httpContextAccessor)
  32. {
  33. _syncPlayManager = syncPlayManager;
  34. _userManager = userManager;
  35. }
  36. /// <inheritdoc />
  37. protected override Task HandleRequirementAsync(AuthorizationHandlerContext context, SyncPlayAccessRequirement requirement)
  38. {
  39. if (!ValidateClaims(context.User))
  40. {
  41. context.Fail();
  42. return Task.CompletedTask;
  43. }
  44. var userId = context.User.GetUserId();
  45. var user = _userManager.GetUserById(userId);
  46. if (requirement.RequiredAccess == SyncPlayAccessRequirementType.HasAccess)
  47. {
  48. if (user.SyncPlayAccess == SyncPlayUserAccessType.CreateAndJoinGroups
  49. || user.SyncPlayAccess == SyncPlayUserAccessType.JoinGroups
  50. || _syncPlayManager.IsUserActive(userId))
  51. {
  52. context.Succeed(requirement);
  53. }
  54. else
  55. {
  56. context.Fail();
  57. }
  58. }
  59. else if (requirement.RequiredAccess == SyncPlayAccessRequirementType.CreateGroup)
  60. {
  61. if (user.SyncPlayAccess == SyncPlayUserAccessType.CreateAndJoinGroups)
  62. {
  63. context.Succeed(requirement);
  64. }
  65. else
  66. {
  67. context.Fail();
  68. }
  69. }
  70. else if (requirement.RequiredAccess == SyncPlayAccessRequirementType.JoinGroup)
  71. {
  72. if (user.SyncPlayAccess == SyncPlayUserAccessType.CreateAndJoinGroups
  73. || user.SyncPlayAccess == SyncPlayUserAccessType.JoinGroups)
  74. {
  75. context.Succeed(requirement);
  76. }
  77. else
  78. {
  79. context.Fail();
  80. }
  81. }
  82. else if (requirement.RequiredAccess == SyncPlayAccessRequirementType.IsInGroup)
  83. {
  84. if (_syncPlayManager.IsUserActive(userId))
  85. {
  86. context.Succeed(requirement);
  87. }
  88. else
  89. {
  90. context.Fail();
  91. }
  92. }
  93. else
  94. {
  95. context.Fail();
  96. }
  97. return Task.CompletedTask;
  98. }
  99. }
  100. }