SyncPlayAccessHandler.cs 3.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105
  1. using System.Threading.Tasks;
  2. using Jellyfin.Api.Helpers;
  3. using Jellyfin.Data.Enums;
  4. using MediaBrowser.Common.Net;
  5. using MediaBrowser.Controller.Library;
  6. using MediaBrowser.Controller.SyncPlay;
  7. using Microsoft.AspNetCore.Authorization;
  8. using Microsoft.AspNetCore.Http;
  9. namespace Jellyfin.Api.Auth.SyncPlayAccessPolicy
  10. {
  11. /// <summary>
  12. /// Default authorization handler.
  13. /// </summary>
  14. public class SyncPlayAccessHandler : BaseAuthorizationHandler<SyncPlayAccessRequirement>
  15. {
  16. private readonly ISyncPlayManager _syncPlayManager;
  17. private readonly IUserManager _userManager;
  18. /// <summary>
  19. /// Initializes a new instance of the <see cref="SyncPlayAccessHandler"/> class.
  20. /// </summary>
  21. /// <param name="syncPlayManager">Instance of the <see cref="ISyncPlayManager"/> interface.</param>
  22. /// <param name="userManager">Instance of the <see cref="IUserManager"/> interface.</param>
  23. /// <param name="networkManager">Instance of the <see cref="INetworkManager"/> interface.</param>
  24. /// <param name="httpContextAccessor">Instance of the <see cref="IHttpContextAccessor"/> interface.</param>
  25. public SyncPlayAccessHandler(
  26. ISyncPlayManager syncPlayManager,
  27. IUserManager userManager,
  28. INetworkManager networkManager,
  29. IHttpContextAccessor httpContextAccessor)
  30. : base(userManager, networkManager, httpContextAccessor)
  31. {
  32. _syncPlayManager = syncPlayManager;
  33. _userManager = userManager;
  34. }
  35. /// <inheritdoc />
  36. protected override Task HandleRequirementAsync(AuthorizationHandlerContext context, SyncPlayAccessRequirement requirement)
  37. {
  38. if (!ValidateClaims(context.User))
  39. {
  40. context.Fail();
  41. return Task.CompletedTask;
  42. }
  43. var userId = ClaimHelpers.GetUserId(context.User);
  44. var user = _userManager.GetUserById(userId!.Value);
  45. if (requirement.RequiredAccess == SyncPlayAccessRequirementType.HasAccess)
  46. {
  47. if (user.SyncPlayAccess == SyncPlayUserAccessType.CreateAndJoinGroups
  48. || user.SyncPlayAccess == SyncPlayUserAccessType.JoinGroups
  49. || _syncPlayManager.IsUserActive(userId!.Value))
  50. {
  51. context.Succeed(requirement);
  52. }
  53. else
  54. {
  55. context.Fail();
  56. }
  57. }
  58. else if (requirement.RequiredAccess == SyncPlayAccessRequirementType.CreateGroup)
  59. {
  60. if (user.SyncPlayAccess == SyncPlayUserAccessType.CreateAndJoinGroups)
  61. {
  62. context.Succeed(requirement);
  63. }
  64. else
  65. {
  66. context.Fail();
  67. }
  68. }
  69. else if (requirement.RequiredAccess == SyncPlayAccessRequirementType.JoinGroup)
  70. {
  71. if (user.SyncPlayAccess == SyncPlayUserAccessType.CreateAndJoinGroups
  72. || user.SyncPlayAccess == SyncPlayUserAccessType.JoinGroups)
  73. {
  74. context.Succeed(requirement);
  75. }
  76. else
  77. {
  78. context.Fail();
  79. }
  80. }
  81. else if (requirement.RequiredAccess == SyncPlayAccessRequirementType.IsInGroup)
  82. {
  83. if (_syncPlayManager.IsUserActive(userId!.Value))
  84. {
  85. context.Succeed(requirement);
  86. }
  87. else
  88. {
  89. context.Fail();
  90. }
  91. }
  92. else
  93. {
  94. context.Fail();
  95. }
  96. return Task.CompletedTask;
  97. }
  98. }
  99. }