2016-01-03 03:18:37 +03:00
namespace common\models;
2016-01-15 12:21:27 +03:00
use common\components\UserPass;
2016-02-23 01:22:04 +03:00
use damirka\JWT\UserTrait;
2016-01-03 03:18:37 +03:00
use Yii;
use yii\base\InvalidConfigException;
use yii\base\NotSupportedException;
use yii\behaviors\TimestampBehavior;
use yii\db\ActiveRecord;
use yii\web\IdentityInterface;
* Поля модели:
* @property integer $id
* @property string $uuid
2016-01-04 18:31:14 +03:00
* @property string $username
* @property string $email
2016-01-03 03:18:37 +03:00
* @property string $password_hash
* @property integer $password_hash_strategy
* @property string $password_reset_token
* @property string $auth_key
* @property integer $status
* @property integer $created_at
* @property integer $updated_at
* Геттеры-сеттеры:
* @property string $password пароль пользователя (только для записи)
2016-01-15 12:21:27 +03:00
* Отношения:
* @property EmailActivation[] $emailActivations
2016-02-14 20:50:10 +03:00
* @property OauthSession[] $sessions
2016-01-15 12:21:27 +03:00
* Поведения:
* @mixin TimestampBehavior
2016-01-03 03:18:37 +03:00
class Account extends ActiveRecord implements IdentityInterface {
2016-02-23 01:22:04 +03:00
use UserTrait;
2016-01-03 03:18:37 +03:00
const STATUS_DELETED = -10;
const STATUS_ACTIVE = 10;
public static function tableName() {
return '{{%accounts}}';
public function behaviors() {
return [
public function rules() {
return [
* @inheritdoc
public static function findIdentity($id) {
return static::findOne(['id' => $id]);
* Finds user by password reset token
* @param string $token password reset token
* @return static|null
* TODO: этот метод нужно убрать из базовой модели
public static function findByPasswordResetToken($token) {
if (!static::isPasswordResetTokenValid($token)) {
return null;
return static::findOne([
'password_reset_token' => $token,
'status' => self::STATUS_ACTIVE,
* Finds out if password reset token is valid
* @param string $token password reset token
* @return boolean
* TODO: этот метод нужно убрать из базовой модели
public static function isPasswordResetTokenValid($token) {
if (empty($token)) {
return false;
$timestamp = (int) substr($token, strrpos($token, '_') + 1);
$expire = Yii::$app->params['user.passwordResetTokenExpire'];
return $timestamp + $expire >= time();
* @inheritdoc
public function getId() {
return $this->getPrimaryKey();
* @inheritdoc
public function getAuthKey() {
return $this->auth_key;
* @inheritdoc
public function validateAuthKey($authKey) {
return $this->getAuthKey() === $authKey;
* Validates password
* @param string $password password to validate
* @param integer $passwordHashStrategy
* @return bool if password provided is valid for current user
* @throws InvalidConfigException
public function validatePassword($password, $passwordHashStrategy = NULL) {
if ($passwordHashStrategy === NULL) {
$passwordHashStrategy = $this->password_hash_strategy;
switch($passwordHashStrategy) {
$hashedPass = UserPass::make($this->email, $password);
return $hashedPass === $this->password_hash;
return Yii::$app->security->validatePassword($password, $this->password_hash);
throw new InvalidConfigException('You must set valid password_hash_strategy before you can validate password');
* @param string $password
* @throws InvalidConfigException
public function setPassword($password) {
2016-02-27 01:22:09 +03:00
$this->password_hash_strategy = self::PASS_HASH_STRATEGY_YII2;
$this->password_hash = Yii::$app->security->generatePasswordHash($password);
2016-01-03 03:18:37 +03:00
* Generates "remember me" authentication key
public function generateAuthKey() {
$this->auth_key = Yii::$app->security->generateRandomString();
* Generates new password reset token
* TODO: этот метод нужно отсюда убрать
public function generatePasswordResetToken() {
$this->password_reset_token = Yii::$app->security->generateRandomString() . '_' . time();
* Removes password reset token
* TODO: этот метод нужно отсюда убрать
public function removePasswordResetToken() {
$this->password_reset_token = null;
2016-01-15 12:21:27 +03:00
public function getEmailActivations() {
return $this->hasMany(EmailActivation::class, ['id' => 'account_id']);
2016-02-14 20:50:10 +03:00
public function getSessions() {
return $this->hasMany(OauthSession::class, ['owner_id' => 'id']);
* Метод проверяет, может ли текщий пользователь быть автоматически авторизован
* для указанного клиента без запроса доступа к необходимому списку прав
* @param OauthClient $client
* @param \League\OAuth2\Server\Entity\ScopeEntity[] $scopes
* @return bool
public function canAutoApprove(OauthClient $client, array $scopes = []) {
2016-02-28 00:26:13 +03:00
//if ($client->is_trusted) {
// return true;
2016-02-14 20:50:10 +03:00
/** @var OauthSession|null $session */
$session = $this->getSessions()->andWhere(['client_id' => $client->id])->one();
if ($session !== null) {
$existScopes = $session->getScopes()->members();
if (empty(array_diff(array_keys($scopes), $existScopes))) {
return true;
return false;
2016-02-23 01:22:04 +03:00
* @inheritdoc
protected static function getSecretKey() {
return Yii::$app->params['jwtSecret'];
* Getter for "header" array that's used for generation of JWT
* @return array JWT Header Token param, see http://jwt.io/ for details
protected static function getHeaderToken() {
return [
'iss' => Yii::$app->request->hostInfo,
'aud' => Yii::$app->request->hostInfo,
2016-01-03 03:18:37 +03:00