sync
[Pman.Core] / DataObjects / Core_setting.php
index ff156e2..b09acb2 100644 (file)
@@ -8,11 +8,11 @@ class Pman_Core_DataObjects_Core_setting extends DB_DataObject
     
     function initKeys()
     {
-        $d = HTML_FlexyFramework::get()->Pman['storedir'].'/key';
+        $dir = $this->getKeyDirectory();
         
         if(
-            file_exists("{$d}/pub.key") ||
-            file_exists("{$d}/pri.key")
+            file_exists("{$dir}/pub.key") ||
+            file_exists("{$dir}/pri.key")
         ){
             return;
         }
@@ -27,11 +27,11 @@ class Pman_Core_DataObjects_Core_setting extends DB_DataObject
         $pub_key = openssl_pkey_get_details($ssl);
         $pub_key = $pub_key["key"];
         
-        file_put_contents("{$d}/pub.key",$pub_key);
-        file_put_contents("{$d}/pri.key",$pri_key);
+        file_put_contents("{$dir}/pub.key",$pub_key);
+        file_put_contents("{$dir}/pri.key",$pri_key);
     }
     
-    function getSetting($m,$n)
+    function lookup($m,$n)
     {
         $s = DB_DataObject::factory('core_setting');
         $s->setFrom(array(
@@ -47,61 +47,92 @@ class Pman_Core_DataObjects_Core_setting extends DB_DataObject
     function beforeInsert($q, $roo)
     {
         exit;
-        
-        return;
     }
     
+    function getKeyDirectory()
+    {
+        $client_dir = HTML_FlexyFramework::get()->Pman['storedir'];
+        $key_dir = $client_dir.'/keys';
+        if(!file_exists($key_dir)) {
+            $this->checkWritable(get_class($this),__FUNCTION__,$client_dir);
+            exec("mkdir -m775 {$key_dir}");
+        }
+        return $key_dir;
+    }
+    
+    // FIXME  - this needs to go in beforeInsert/beforeUpdate
+    // should not be sending this the values..
     function initSetting($a)
     {
         if(empty($a)) {
             return;
         }
         
-        $c = $this->getSetting($a['module'], $a['name']);
+        $c = $this->lookup($a['module'], $a['name']);
         if($c) {
             return;
         }
         
-        $d = HTML_FlexyFramework::get()->Pman['storedir'].'/key';
-        
-        $this->setStoreDir($dir);
-        
         $this->initKeys();
         
-        $val = $a['val'];
-        if(!isset($a['is_encrypt']) || $a['is_encrypt'] == 1) {
-            $val = $this->encrypt($val);
-        }
-        
         $s = DB_DataObject::factory('core_setting');
+        
         $s->setFrom(array(
-            'module' => $a['module'],
-            'name' => $a['name'],
-            'description' => $a['description'],
-            'val' =>$val,
+            'module'        =>     $a['module'],
+            'name'          =>       $a['name'],
+            'description'   => $a['description'],
+            'val' => (!isset($a['is_encrypt']) || $a['is_encrypt'] == 1) ?
+                $this->encrypt($a['val']) : $a['val'],
             'is_encrypt' => isset($a['is_encrypt']) ? $a['is_encrypt'] : 1
         ));
         
         $s->insert();
     }
     
+    //one key for encrypting all the settings
     function encrypt($v)
     {
-        $pub_key = file_get_contents("{$this->storedir}/pub.key");
+        $key_dir = "{$this->getKeyDirectory()}/pub.key";
+        
+        if(!file_exists($key_dir)) {
+            print_r("Cannot find {$key_dir}");
+            exit;
+        }
+        
+        $pub_key = file_get_contents($key_dir);
         if(!$pub_key) {
             return;
         }
-        openssl_public_encrypt($v, $cipher, $pub_key);
-        return $cipher;
+        openssl_public_encrypt($v, $ciphertext, $pub_key);
+        return $ciphertext;
     }
     
-    function setStoreDir($dir)
+    function decrypt($v)
     {
-        if(!file_exists($dir)) {
-            $oldumask = umask(0);
-            mkdir($dir, 0775, true);
-            umask($oldumask);  
+        $key_dir = "{$this->getKeyDirectory()}/pri.key";
+        
+        if(!file_exists($key_dir)) {
+            print_r("Cannot find {$key_dir}");
+            exit;
+        }
+        
+        $pri_key = file_get_contents($key_dir);
+        if(!$pri_key) {
+            return;
         }
-        $this->storedir = $dir;
+        
+        openssl_private_decrypt($v, $plaintext, $pri_key);
+        return $plaintext;
+    }
+    
+    function checkWritable($cls_name,$func_name,$dir)
+    {
+        if(!is_writable($dir)) {
+            print_r("Cannot run {$cls_name} :: {$func_name}\n");
+            print_r("Directory: {$dir} is not writable by current user\n");
+            exit;
+        }
+        
+        return true;
     }
 }