FIRAppCheckStorage.m 4.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125
  1. /*
  2. * Copyright 2020 Google LLC
  3. *
  4. * Licensed under the Apache License, Version 2.0 (the "License");
  5. * you may not use this file except in compliance with the License.
  6. * You may obtain a copy of the License at
  7. *
  8. * http://www.apache.org/licenses/LICENSE-2.0
  9. *
  10. * Unless required by applicable law or agreed to in writing, software
  11. * distributed under the License is distributed on an "AS IS" BASIS,
  12. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. * See the License for the specific language governing permissions and
  14. * limitations under the License.
  15. */
  16. #import "FirebaseAppCheck/Sources/Core/Storage/FIRAppCheckStorage.h"
  17. #if __has_include(<FBLPromises/FBLPromises.h>)
  18. #import <FBLPromises/FBLPromises.h>
  19. #else
  20. #import "FBLPromises.h"
  21. #endif
  22. #import <GoogleUtilities/GULKeychainStorage.h>
  23. #import "FirebaseAppCheck/Sources/Core/Errors/FIRAppCheckErrorUtil.h"
  24. #import "FirebaseAppCheck/Sources/Core/Storage/FIRAppCheckStoredToken+FIRAppCheckToken.h"
  25. NS_ASSUME_NONNULL_BEGIN
  26. static NSString *const kKeychainService = @"com.firebase.app_check.token_storage";
  27. @interface FIRAppCheckStorage ()
  28. @property(nonatomic, readonly) NSString *appName;
  29. @property(nonatomic, readonly) NSString *appID;
  30. @property(nonatomic, readonly) GULKeychainStorage *keychainStorage;
  31. @property(nonatomic, readonly, nullable) NSString *accessGroup;
  32. @end
  33. @implementation FIRAppCheckStorage
  34. - (instancetype)initWithAppName:(NSString *)appName
  35. appID:(NSString *)appID
  36. keychainStorage:(GULKeychainStorage *)keychainStorage
  37. accessGroup:(nullable NSString *)accessGroup {
  38. self = [super init];
  39. if (self) {
  40. _appName = [appName copy];
  41. _appID = [appID copy];
  42. _keychainStorage = keychainStorage;
  43. _accessGroup = [accessGroup copy];
  44. }
  45. return self;
  46. }
  47. - (instancetype)initWithAppName:(NSString *)appName
  48. appID:(NSString *)appID
  49. accessGroup:(nullable NSString *)accessGroup {
  50. GULKeychainStorage *keychainStorage =
  51. [[GULKeychainStorage alloc] initWithService:kKeychainService];
  52. return [self initWithAppName:appName
  53. appID:appID
  54. keychainStorage:keychainStorage
  55. accessGroup:accessGroup];
  56. }
  57. - (FBLPromise<FIRAppCheckToken *> *)getToken {
  58. return [self.keychainStorage getObjectForKey:[self tokenKey]
  59. objectClass:[FIRAppCheckStoredToken class]
  60. accessGroup:self.accessGroup]
  61. .then(^FIRAppCheckToken *(id<NSSecureCoding> storedToken) {
  62. if ([(NSObject *)storedToken isKindOfClass:[FIRAppCheckStoredToken class]]) {
  63. return [(FIRAppCheckStoredToken *)storedToken appCheckToken];
  64. } else {
  65. return nil;
  66. }
  67. })
  68. .recover(^NSError *(NSError *error) {
  69. return [FIRAppCheckErrorUtil keychainErrorWithError:error];
  70. });
  71. }
  72. - (FBLPromise<NSNull *> *)setToken:(nullable FIRAppCheckToken *)token {
  73. if (token) {
  74. return [self storeToken:token].recover(^NSError *(NSError *error) {
  75. return [FIRAppCheckErrorUtil keychainErrorWithError:error];
  76. });
  77. } else {
  78. return [self.keychainStorage removeObjectForKey:[self tokenKey] accessGroup:self.accessGroup]
  79. .then(^id _Nullable(NSNull *_Nullable value) {
  80. return token;
  81. })
  82. .recover(^NSError *(NSError *error) {
  83. return [FIRAppCheckErrorUtil keychainErrorWithError:error];
  84. });
  85. }
  86. }
  87. #pragma mark - Helpers
  88. - (FBLPromise<NSNull *> *)storeToken:(nullable FIRAppCheckToken *)token {
  89. FIRAppCheckStoredToken *storedToken = [[FIRAppCheckStoredToken alloc] init];
  90. [storedToken updateWithToken:token];
  91. return [self.keychainStorage setObject:storedToken
  92. forKey:[self tokenKey]
  93. accessGroup:self.accessGroup]
  94. .then(^id _Nullable(NSNull *_Nullable value) {
  95. return token;
  96. });
  97. }
  98. - (NSString *)tokenKey {
  99. return [[self class] tokenKeyForAppName:self.appName appID:self.appID];
  100. }
  101. + (NSString *)tokenKeyForAppName:(NSString *)appName appID:(NSString *)appID {
  102. return [NSString stringWithFormat:@"app_check_token.%@.%@", appName, appID];
  103. }
  104. @end
  105. NS_ASSUME_NONNULL_END