1 # == Schema Information
3 # Table name: oauth_tokens
5 # id :integer not null, primary key
8 # client_application_id :integer
11 # authorized_at :datetime
12 # invalidated_at :datetime
13 # created_at :datetime
14 # updated_at :datetime
15 # allow_read_prefs :boolean default(FALSE), not null
16 # allow_write_prefs :boolean default(FALSE), not null
17 # allow_write_diary :boolean default(FALSE), not null
18 # allow_write_api :boolean default(FALSE), not null
19 # allow_read_gpx :boolean default(FALSE), not null
20 # allow_write_gpx :boolean default(FALSE), not null
21 # callback_url :string
22 # verifier :string(20)
25 # allow_write_notes :boolean default(FALSE), not null
29 # index_oauth_tokens_on_token (token) UNIQUE
30 # index_oauth_tokens_on_user_id (user_id)
34 # oauth_tokens_client_application_id_fkey (client_application_id => client_applications.id)
35 # oauth_tokens_user_id_fkey (user_id => users.id)
38 class RequestToken < OauthToken
39 attr_accessor :provided_oauth_verifier
42 return false if authorized?
44 self.authorized_at = Time.now
45 self.verifier = OAuth::Helper.generate_key(20)[0, 20] unless oauth10?
50 return false unless authorized?
51 return false unless oauth10? || verifier == provided_oauth_verifier
53 RequestToken.transaction do
54 params = { :user => user, :client_application => client_application }
55 # copy the permissions from the authorised request token to the access token
56 client_application.permissions.each do |p|
60 access_token = AccessToken.create(params)
70 "#{super}&oauth_callback_confirmed=true"
75 callback_url.nil? || callback_url.casecmp("oob").zero?
79 (defined? OAUTH_10_SUPPORT) && OAUTH_10_SUPPORT && callback_url.blank?