FIRMessagingTokenManager.m 31 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715
  1. /*
  2. * Copyright 2019 Google
  3. *
  4. * Licensed under the Apache License, Version 2.0 (the "License");
  5. * you may not use this file except in compliance with the License.
  6. * You may obtain a copy of the License at
  7. *
  8. * http://www.apache.org/licenses/LICENSE-2.0
  9. *
  10. * Unless required by applicable law or agreed to in writing, software
  11. * distributed under the License is distributed on an "AS IS" BASIS,
  12. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. * See the License for the specific language governing permissions and
  14. * limitations under the License.
  15. */
  16. #import "FirebaseMessaging/Sources/Token/FIRMessagingTokenManager.h"
  17. #import "FirebaseInstallations/Source/Library/Private/FirebaseInstallationsInternal.h"
  18. #import "FirebaseMessaging/Sources/FIRMessagingConstants.h"
  19. #import "FirebaseMessaging/Sources/FIRMessagingDefines.h"
  20. #import "FirebaseMessaging/Sources/FIRMessagingLogger.h"
  21. #import "FirebaseMessaging/Sources/NSError+FIRMessaging.h"
  22. #import "FirebaseMessaging/Sources/Token/FIRMessagingAuthKeychain.h"
  23. #import "FirebaseMessaging/Sources/Token/FIRMessagingAuthService.h"
  24. #import "FirebaseMessaging/Sources/Token/FIRMessagingCheckinPreferences.h"
  25. #import "FirebaseMessaging/Sources/Token/FIRMessagingCheckinStore.h"
  26. #import "FirebaseMessaging/Sources/Token/FIRMessagingTokenDeleteOperation.h"
  27. #import "FirebaseMessaging/Sources/Token/FIRMessagingTokenFetchOperation.h"
  28. #import "FirebaseMessaging/Sources/Token/FIRMessagingTokenInfo.h"
  29. #import "FirebaseMessaging/Sources/Token/FIRMessagingTokenOperation.h"
  30. #import "FirebaseMessaging/Sources/Token/FIRMessagingTokenStore.h"
  31. @interface FIRMessagingTokenManager () {
  32. FIRMessagingTokenStore *_tokenStore;
  33. NSString *_defaultFCMToken;
  34. }
  35. @property(nonatomic, readwrite, strong) FIRMessagingCheckinStore *checkinStore;
  36. @property(nonatomic, readwrite, strong) FIRMessagingAuthService *authService;
  37. @property(nonatomic, readonly, strong) NSOperationQueue *tokenOperations;
  38. @property(nonatomic, readwrite, strong) FIRMessagingAPNSInfo *currentAPNSInfo;
  39. @property(nonatomic, readwrite) FIRInstallations *installations;
  40. @property(readonly) id<FIRHeartbeatLoggerProtocol> heartbeatLogger;
  41. @end
  42. @implementation FIRMessagingTokenManager
  43. - (instancetype)initWithHeartbeatLogger:(id<FIRHeartbeatLoggerProtocol>)heartbeatLogger {
  44. self = [super init];
  45. if (self) {
  46. _tokenStore = [[FIRMessagingTokenStore alloc] init];
  47. _authService = [[FIRMessagingAuthService alloc] init];
  48. [self resetCredentialsIfNeeded];
  49. [self configureTokenOperations];
  50. _installations = [FIRInstallations installations];
  51. _heartbeatLogger = heartbeatLogger;
  52. }
  53. return self;
  54. }
  55. - (void)dealloc {
  56. [self stopAllTokenOperations];
  57. }
  58. - (NSString *)tokenAndRequestIfNotExist {
  59. if (!self.fcmSenderID.length) {
  60. return nil;
  61. }
  62. if (_defaultFCMToken.length) {
  63. return _defaultFCMToken;
  64. }
  65. FIRMessagingTokenInfo *cachedTokenInfo =
  66. [self cachedTokenInfoWithAuthorizedEntity:self.fcmSenderID
  67. scope:kFIRMessagingDefaultTokenScope];
  68. NSString *cachedToken = cachedTokenInfo.token;
  69. if (cachedToken) {
  70. return cachedToken;
  71. } else {
  72. [self tokenWithAuthorizedEntity:self.fcmSenderID
  73. scope:kFIRMessagingDefaultTokenScope
  74. options:[self tokenOptions]
  75. handler:^(NSString *_Nullable FCMToken, NSError *_Nullable error){
  76. }];
  77. return nil;
  78. }
  79. }
  80. - (NSString *)defaultFCMToken {
  81. return _defaultFCMToken;
  82. }
  83. - (void)postTokenRefreshNotificationWithDefaultFCMToken:(NSString *)defaultFCMToken {
  84. // Should always trigger the token refresh notification when the delegate method is called
  85. // No need to check if the token has changed, it's handled in the notification receiver.
  86. NSNotificationCenter *center = [NSNotificationCenter defaultCenter];
  87. [center postNotificationName:kFIRMessagingRegistrationTokenRefreshNotification
  88. object:defaultFCMToken];
  89. }
  90. - (void)saveDefaultTokenInfoInKeychain:(NSString *)defaultFcmToken {
  91. if ([self hasTokenChangedFromOldToken:_defaultFCMToken toNewToken:defaultFcmToken]) {
  92. _defaultFCMToken = [defaultFcmToken copy];
  93. FIRMessagingTokenInfo *tokenInfo =
  94. [[FIRMessagingTokenInfo alloc] initWithAuthorizedEntity:_fcmSenderID
  95. scope:kFIRMessagingDefaultTokenScope
  96. token:defaultFcmToken
  97. appVersion:FIRMessagingCurrentAppVersion()
  98. firebaseAppID:_firebaseAppID];
  99. tokenInfo.APNSInfo =
  100. [[FIRMessagingAPNSInfo alloc] initWithTokenOptionsDictionary:[self tokenOptions]];
  101. [self->_tokenStore saveTokenInfoInCache:tokenInfo];
  102. }
  103. }
  104. - (BOOL)hasTokenChangedFromOldToken:(NSString *)oldToken toNewToken:(NSString *)newToken {
  105. return oldToken.length != newToken.length ||
  106. (oldToken.length && newToken.length && ![oldToken isEqualToString:newToken]);
  107. }
  108. - (NSDictionary *)tokenOptions {
  109. NSDictionary *instanceIDOptions = @{};
  110. NSData *apnsTokenData = self.currentAPNSInfo.deviceToken;
  111. if (apnsTokenData) {
  112. instanceIDOptions = @{
  113. kFIRMessagingTokenOptionsAPNSKey : apnsTokenData,
  114. kFIRMessagingTokenOptionsAPNSIsSandboxKey : @(self.currentAPNSInfo.isSandbox),
  115. };
  116. }
  117. return instanceIDOptions;
  118. }
  119. - (NSString *)deviceAuthID {
  120. return [_authService checkinPreferences].deviceID;
  121. }
  122. - (NSString *)secretToken {
  123. return [_authService checkinPreferences].secretToken;
  124. }
  125. - (NSString *)versionInfo {
  126. return [_authService checkinPreferences].versionInfo;
  127. }
  128. - (void)configureTokenOperations {
  129. _tokenOperations = [[NSOperationQueue alloc] init];
  130. _tokenOperations.name = @"com.google.iid-token-operations";
  131. // For now, restrict the operations to be serial, because in some cases (like if the
  132. // authorized entity and scope are the same), order matters.
  133. // If we have to deal with several different token requests simultaneously, it would be a good
  134. // idea to add some better intelligence around this (performing unrelated token operations
  135. // simultaneously, etc.).
  136. _tokenOperations.maxConcurrentOperationCount = 1;
  137. if ([_tokenOperations respondsToSelector:@selector(qualityOfService)]) {
  138. _tokenOperations.qualityOfService = NSOperationQualityOfServiceUtility;
  139. }
  140. }
  141. - (void)tokenWithAuthorizedEntity:(NSString *)authorizedEntity
  142. scope:(NSString *)scope
  143. options:(NSDictionary *)options
  144. handler:(FIRMessagingFCMTokenFetchCompletion)handler {
  145. if (!handler) {
  146. FIRMessagingLoggerError(kFIRMessagingMessageCodeInstanceID000, @"Invalid nil handler");
  147. return;
  148. }
  149. // Add internal options
  150. NSMutableDictionary *tokenOptions = [NSMutableDictionary dictionary];
  151. if (options.count) {
  152. [tokenOptions addEntriesFromDictionary:options];
  153. }
  154. if (tokenOptions[kFIRMessagingTokenOptionsAPNSKey] != nil &&
  155. tokenOptions[kFIRMessagingTokenOptionsAPNSIsSandboxKey] == nil) {
  156. // APNS key was given, but server type is missing. Supply the server type with automatic
  157. // checking. This can happen when the token is requested from FCM, which does not include a
  158. // server type during its request.
  159. tokenOptions[kFIRMessagingTokenOptionsAPNSIsSandboxKey] = @(FIRMessagingIsSandboxApp());
  160. }
  161. if (self.firebaseAppID) {
  162. tokenOptions[kFIRMessagingTokenOptionsFirebaseAppIDKey] = self.firebaseAppID;
  163. }
  164. // comparing enums to ints directly throws a warning
  165. FIRMessagingErrorCode noError = INT_MAX;
  166. FIRMessagingErrorCode errorCode = noError;
  167. if (![authorizedEntity length]) {
  168. errorCode = kFIRMessagingErrorCodeMissingAuthorizedEntity;
  169. } else if (![scope length]) {
  170. errorCode = kFIRMessagingErrorCodeMissingScope;
  171. } else if (!self.installations) {
  172. errorCode = kFIRMessagingErrorCodeMissingFid;
  173. }
  174. FIRMessagingFCMTokenFetchCompletion newHandler = ^(NSString *token, NSError *error) {
  175. dispatch_async(dispatch_get_main_queue(), ^{
  176. handler(token, error);
  177. });
  178. };
  179. if (errorCode != noError) {
  180. newHandler(
  181. nil,
  182. [NSError messagingErrorWithCode:errorCode
  183. failureReason:@"Failed to send token request, missing critical info."]);
  184. return;
  185. }
  186. FIRMessaging_WEAKIFY(self);
  187. [_authService
  188. fetchCheckinInfoWithHandler:^(FIRMessagingCheckinPreferences *preferences, NSError *error) {
  189. FIRMessaging_STRONGIFY(self);
  190. if (error) {
  191. newHandler(nil, error);
  192. return;
  193. }
  194. FIRMessaging_WEAKIFY(self);
  195. [self->_installations installationIDWithCompletion:^(NSString *_Nullable identifier,
  196. NSError *_Nullable error) {
  197. FIRMessaging_STRONGIFY(self);
  198. if (error) {
  199. newHandler(nil, error);
  200. } else {
  201. FIRMessagingTokenInfo *cachedTokenInfo =
  202. [self cachedTokenInfoWithAuthorizedEntity:authorizedEntity scope:scope];
  203. FIRMessagingAPNSInfo *optionsAPNSInfo =
  204. [[FIRMessagingAPNSInfo alloc] initWithTokenOptionsDictionary:tokenOptions];
  205. // Check if APNS Info is changed
  206. if ((!cachedTokenInfo.APNSInfo && !optionsAPNSInfo) ||
  207. [cachedTokenInfo.APNSInfo isEqualToAPNSInfo:optionsAPNSInfo]) {
  208. // check if token is fresh
  209. if ([cachedTokenInfo isFreshWithIID:identifier]) {
  210. newHandler(cachedTokenInfo.token, nil);
  211. return;
  212. }
  213. }
  214. [self fetchNewTokenWithAuthorizedEntity:[authorizedEntity copy]
  215. scope:[scope copy]
  216. instanceID:identifier
  217. options:tokenOptions
  218. handler:newHandler];
  219. }
  220. }];
  221. }];
  222. }
  223. - (void)fetchNewTokenWithAuthorizedEntity:(NSString *)authorizedEntity
  224. scope:(NSString *)scope
  225. instanceID:(NSString *)instanceID
  226. options:(NSDictionary *)options
  227. handler:(FIRMessagingFCMTokenFetchCompletion)handler {
  228. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeTokenManager000,
  229. @"Fetch new token for authorizedEntity: %@, scope: %@", authorizedEntity,
  230. scope);
  231. FIRMessagingTokenFetchOperation *operation =
  232. [self createFetchOperationWithAuthorizedEntity:authorizedEntity
  233. scope:scope
  234. options:options
  235. instanceID:instanceID];
  236. FIRMessaging_WEAKIFY(self);
  237. FIRMessagingTokenOperationCompletion completion =
  238. ^(FIRMessagingTokenOperationResult result, NSString *_Nullable token,
  239. NSError *_Nullable error) {
  240. FIRMessaging_STRONGIFY(self);
  241. if (error) {
  242. handler(nil, error);
  243. return;
  244. }
  245. if ([self isDefaultTokenWithAuthorizedEntity:authorizedEntity scope:scope]) {
  246. [self postTokenRefreshNotificationWithDefaultFCMToken:token];
  247. }
  248. NSString *firebaseAppID = options[kFIRMessagingTokenOptionsFirebaseAppIDKey];
  249. FIRMessagingTokenInfo *tokenInfo =
  250. [[FIRMessagingTokenInfo alloc] initWithAuthorizedEntity:authorizedEntity
  251. scope:scope
  252. token:token
  253. appVersion:FIRMessagingCurrentAppVersion()
  254. firebaseAppID:firebaseAppID];
  255. tokenInfo.APNSInfo = [[FIRMessagingAPNSInfo alloc] initWithTokenOptionsDictionary:options];
  256. [self->_tokenStore
  257. saveTokenInfo:tokenInfo
  258. handler:^(NSError *error) {
  259. if (!error) {
  260. // Do not send the token back in case the save was unsuccessful. Since with
  261. // the new asychronous fetch mechanism this can lead to infinite loops, for
  262. // example, we will return a valid token even though we weren't able to store
  263. // it in our cache. The first token will lead to a onTokenRefresh callback
  264. // wherein the user again calls `getToken` but since we weren't able to save
  265. // it we won't hit the cache but hit the server again leading to an infinite
  266. // loop.
  267. FIRMessagingLoggerDebug(
  268. kFIRMessagingMessageCodeTokenManager001,
  269. @"Token fetch successful, token: %@, authorizedEntity: %@, scope:%@",
  270. token, authorizedEntity, scope);
  271. if (handler) {
  272. handler(token, nil);
  273. }
  274. } else {
  275. if (handler) {
  276. handler(nil, error);
  277. }
  278. }
  279. }];
  280. };
  281. // Add completion handler, and ensure it's called on the main queue
  282. [operation addCompletionHandler:^(FIRMessagingTokenOperationResult result,
  283. NSString *_Nullable token, NSError *_Nullable error) {
  284. dispatch_async(dispatch_get_main_queue(), ^{
  285. completion(result, token, error);
  286. });
  287. }];
  288. [self.tokenOperations addOperation:operation];
  289. }
  290. - (FIRMessagingTokenInfo *)cachedTokenInfoWithAuthorizedEntity:(NSString *)authorizedEntity
  291. scope:(NSString *)scope {
  292. FIRMessagingTokenInfo *tokenInfo = [_tokenStore tokenInfoWithAuthorizedEntity:authorizedEntity
  293. scope:scope];
  294. return tokenInfo;
  295. }
  296. - (BOOL)isDefaultTokenWithAuthorizedEntity:(NSString *)authorizedEntity scope:(NSString *)scope {
  297. if (_fcmSenderID.length != authorizedEntity.length) {
  298. return NO;
  299. }
  300. if (![_fcmSenderID isEqualToString:authorizedEntity]) {
  301. return NO;
  302. }
  303. return [scope isEqualToString:kFIRMessagingDefaultTokenScope];
  304. }
  305. - (void)deleteTokenWithAuthorizedEntity:(NSString *)authorizedEntity
  306. scope:(NSString *)scope
  307. instanceID:(NSString *)instanceID
  308. handler:(FIRMessagingDeleteFCMTokenCompletion)handler {
  309. if ([_tokenStore tokenInfoWithAuthorizedEntity:authorizedEntity scope:scope]) {
  310. [_tokenStore removeTokenWithAuthorizedEntity:authorizedEntity scope:scope];
  311. }
  312. // Does not matter if we cannot find it in the cache. Still make an effort to unregister
  313. // from the server.
  314. FIRMessagingCheckinPreferences *checkinPreferences = self.authService.checkinPreferences;
  315. FIRMessagingTokenDeleteOperation *operation =
  316. [self createDeleteOperationWithAuthorizedEntity:authorizedEntity
  317. scope:scope
  318. checkinPreferences:checkinPreferences
  319. instanceID:instanceID
  320. action:FIRMessagingTokenActionDeleteToken];
  321. if (handler) {
  322. [operation addCompletionHandler:^(FIRMessagingTokenOperationResult result,
  323. NSString *_Nullable token, NSError *_Nullable error) {
  324. if ([self isDefaultTokenWithAuthorizedEntity:authorizedEntity scope:scope]) {
  325. [self postTokenRefreshNotificationWithDefaultFCMToken:nil];
  326. }
  327. dispatch_async(dispatch_get_main_queue(), ^{
  328. handler(error);
  329. });
  330. }];
  331. }
  332. [self.tokenOperations addOperation:operation];
  333. }
  334. - (void)deleteAllTokensWithHandler:(void (^)(NSError *))handler {
  335. FIRMessaging_WEAKIFY(self);
  336. [self.installations
  337. installationIDWithCompletion:^(NSString *_Nullable identifier, NSError *_Nullable error) {
  338. FIRMessaging_STRONGIFY(self);
  339. if (error) {
  340. if (handler) {
  341. dispatch_async(dispatch_get_main_queue(), ^{
  342. handler(error);
  343. });
  344. }
  345. return;
  346. }
  347. // delete all tokens
  348. FIRMessagingCheckinPreferences *checkinPreferences = self.authService.checkinPreferences;
  349. if (!checkinPreferences) {
  350. // The checkin is already deleted. No need to trigger the token delete operation as client
  351. // no longer has the checkin information for server to delete.
  352. dispatch_async(dispatch_get_main_queue(), ^{
  353. handler(nil);
  354. });
  355. return;
  356. }
  357. FIRMessagingTokenDeleteOperation *operation = [self
  358. createDeleteOperationWithAuthorizedEntity:kFIRMessagingKeychainWildcardIdentifier
  359. scope:kFIRMessagingKeychainWildcardIdentifier
  360. checkinPreferences:checkinPreferences
  361. instanceID:identifier
  362. action:FIRMessagingTokenActionDeleteTokenAndIID];
  363. if (handler) {
  364. [operation addCompletionHandler:^(FIRMessagingTokenOperationResult result,
  365. NSString *_Nullable token, NSError *_Nullable error) {
  366. self->_defaultFCMToken = nil;
  367. dispatch_async(dispatch_get_main_queue(), ^{
  368. handler(error);
  369. });
  370. }];
  371. }
  372. [self.tokenOperations addOperation:operation];
  373. }];
  374. }
  375. - (void)deleteAllTokensLocallyWithHandler:(void (^)(NSError *error))handler {
  376. [_tokenStore removeAllTokensWithHandler:handler];
  377. }
  378. - (void)stopAllTokenOperations {
  379. [self.authService stopCheckinRequest];
  380. [self.tokenOperations cancelAllOperations];
  381. }
  382. - (void)deleteWithHandler:(void (^)(NSError *))handler {
  383. FIRMessaging_WEAKIFY(self);
  384. [self deleteAllTokensWithHandler:^(NSError *_Nullable error) {
  385. FIRMessaging_STRONGIFY(self);
  386. if (error) {
  387. handler(error);
  388. return;
  389. }
  390. [self deleteAllTokensLocallyWithHandler:^(NSError *localError) {
  391. [self postTokenRefreshNotificationWithDefaultFCMToken:nil];
  392. self->_defaultFCMToken = nil;
  393. if (localError) {
  394. handler(localError);
  395. return;
  396. }
  397. [self.authService resetCheckinWithHandler:^(NSError *_Nonnull authError) {
  398. handler(authError);
  399. }];
  400. }];
  401. }];
  402. }
  403. #pragma mark - CheckinStore
  404. /**
  405. * Reset the keychain preferences if the app had been deleted earlier and then reinstalled.
  406. * Keychain preferences are not cleared in the above scenario so explicitly clear them.
  407. *
  408. * In case of an iCloud backup and restore the Keychain preferences should already be empty
  409. * since the Keychain items are marked with `*BackupThisDeviceOnly`.
  410. */
  411. - (void)resetCredentialsIfNeeded {
  412. BOOL checkinPlistExists = [_authService hasCheckinPlist];
  413. // Checkin info existed in backup excluded plist. Should not be a fresh install.
  414. if (checkinPlistExists) {
  415. return;
  416. }
  417. // Keychain can still exist even if app is uninstalled.
  418. FIRMessagingCheckinPreferences *oldCheckinPreferences = _authService.checkinPreferences;
  419. if (!oldCheckinPreferences) {
  420. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeStore009,
  421. @"App reset detected but no valid checkin auth preferences found."
  422. @" Will not delete server token registrations.");
  423. return;
  424. }
  425. [_authService resetCheckinWithHandler:^(NSError *_Nonnull error) {
  426. if (!error) {
  427. FIRMessagingLoggerDebug(
  428. kFIRMessagingMessageCodeStore002,
  429. @"Removed cached checkin preferences from Keychain because this is a fresh install.");
  430. } else {
  431. FIRMessagingLoggerError(
  432. kFIRMessagingMessageCodeStore003,
  433. @"Couldn't remove cached checkin preferences for a fresh install. Error: %@", error);
  434. }
  435. if (oldCheckinPreferences.deviceID.length && oldCheckinPreferences.secretToken.length) {
  436. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeStore006,
  437. @"Resetting old checkin and deleting server token registrations.");
  438. // We don't really need to delete old FCM tokens created via IID auth tokens since
  439. // those tokens are already hashed by APNS token as the has so creating a new
  440. // token should automatically delete the old-token.
  441. [self didDeleteFCMScopedTokensForCheckin:oldCheckinPreferences];
  442. }
  443. }];
  444. }
  445. - (void)didDeleteFCMScopedTokensForCheckin:(FIRMessagingCheckinPreferences *)checkin {
  446. // Make a best effort try to delete the old client related state on the FCM server. This is
  447. // required to delete old pubusb registrations which weren't cleared when the app was deleted.
  448. //
  449. // This is only a one time effort. If this call fails the client would still receive duplicate
  450. // pubsub notifications if he is again subscribed to the same topic.
  451. //
  452. // The client state should be cleared on the server for the provided checkin preferences.
  453. FIRMessagingTokenDeleteOperation *operation =
  454. [self createDeleteOperationWithAuthorizedEntity:nil
  455. scope:nil
  456. checkinPreferences:checkin
  457. instanceID:nil
  458. action:FIRMessagingTokenActionDeleteToken];
  459. [operation addCompletionHandler:^(FIRMessagingTokenOperationResult result,
  460. NSString *_Nullable token, NSError *_Nullable error) {
  461. if (error) {
  462. FIRMessagingMessageCode code =
  463. kFIRMessagingMessageCodeTokenManagerErrorDeletingFCMTokensOnAppReset;
  464. FIRMessagingLoggerDebug(code, @"Failed to delete GCM server registrations on app reset.");
  465. } else {
  466. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeTokenManagerDeletedFCMTokensOnAppReset,
  467. @"Successfully deleted GCM server registrations on app reset");
  468. }
  469. }];
  470. [self.tokenOperations addOperation:operation];
  471. }
  472. #pragma mark - Unit Testing Stub Helpers
  473. // We really have this method so that we can more easily stub it out for unit testing
  474. - (FIRMessagingTokenFetchOperation *)
  475. createFetchOperationWithAuthorizedEntity:(NSString *)authorizedEntity
  476. scope:(NSString *)scope
  477. options:(NSDictionary<NSString *, NSString *> *)options
  478. instanceID:(NSString *)instanceID {
  479. FIRMessagingCheckinPreferences *checkinPreferences = self.authService.checkinPreferences;
  480. FIRMessagingTokenFetchOperation *operation =
  481. [[FIRMessagingTokenFetchOperation alloc] initWithAuthorizedEntity:authorizedEntity
  482. scope:scope
  483. options:options
  484. checkinPreferences:checkinPreferences
  485. instanceID:instanceID
  486. heartbeatLogger:self.heartbeatLogger];
  487. return operation;
  488. }
  489. // We really have this method so that we can more easily stub it out for unit testing
  490. - (FIRMessagingTokenDeleteOperation *)
  491. createDeleteOperationWithAuthorizedEntity:(NSString *)authorizedEntity
  492. scope:(NSString *)scope
  493. checkinPreferences:(FIRMessagingCheckinPreferences *)checkinPreferences
  494. instanceID:(NSString *)instanceID
  495. action:(FIRMessagingTokenAction)action {
  496. FIRMessagingTokenDeleteOperation *operation =
  497. [[FIRMessagingTokenDeleteOperation alloc] initWithAuthorizedEntity:authorizedEntity
  498. scope:scope
  499. checkinPreferences:checkinPreferences
  500. instanceID:instanceID
  501. action:action
  502. heartbeatLogger:self.heartbeatLogger];
  503. return operation;
  504. }
  505. #pragma mark - Invalidating Cached Tokens
  506. - (BOOL)checkTokenRefreshPolicyWithIID:(NSString *)IID {
  507. // We know at least one cached token exists.
  508. BOOL shouldFetchDefaultToken = NO;
  509. NSArray<FIRMessagingTokenInfo *> *tokenInfos = [_tokenStore cachedTokenInfos];
  510. NSMutableArray<FIRMessagingTokenInfo *> *tokenInfosToDelete =
  511. [NSMutableArray arrayWithCapacity:tokenInfos.count];
  512. for (FIRMessagingTokenInfo *tokenInfo in tokenInfos) {
  513. if ([tokenInfo isFreshWithIID:IID]) {
  514. // Token is fresh and in right format, do nothing
  515. continue;
  516. }
  517. if ([tokenInfo isDefaultToken]) {
  518. // Default token is expired, do not mark for deletion. Fetch directly from server to
  519. // replace the current one.
  520. shouldFetchDefaultToken = YES;
  521. } else {
  522. // Non-default token is expired, mark for deletion.
  523. [tokenInfosToDelete addObject:tokenInfo];
  524. }
  525. FIRMessagingLoggerDebug(
  526. kFIRMessagingMessageCodeTokenManagerInvalidateStaleToken,
  527. @"Invalidating cached token for %@ (%@) due to token is no longer fresh.",
  528. tokenInfo.authorizedEntity, tokenInfo.scope);
  529. }
  530. for (FIRMessagingTokenInfo *tokenInfoToDelete in tokenInfosToDelete) {
  531. [_tokenStore removeTokenWithAuthorizedEntity:tokenInfoToDelete.authorizedEntity
  532. scope:tokenInfoToDelete.scope];
  533. }
  534. return shouldFetchDefaultToken;
  535. }
  536. - (NSArray<FIRMessagingTokenInfo *> *)updateTokensToAPNSDeviceToken:(NSData *)deviceToken
  537. isSandbox:(BOOL)isSandbox {
  538. // Each cached IID token that is missing an APNSInfo, or has an APNSInfo associated should be
  539. // checked and invalidated if needed.
  540. FIRMessagingAPNSInfo *APNSInfo = [[FIRMessagingAPNSInfo alloc] initWithDeviceToken:deviceToken
  541. isSandbox:isSandbox];
  542. if ([self.currentAPNSInfo isEqualToAPNSInfo:APNSInfo]) {
  543. return @[];
  544. }
  545. self.currentAPNSInfo = APNSInfo;
  546. NSArray<FIRMessagingTokenInfo *> *tokenInfos = [_tokenStore cachedTokenInfos];
  547. NSMutableArray<FIRMessagingTokenInfo *> *tokenInfosToDelete =
  548. [NSMutableArray arrayWithCapacity:tokenInfos.count];
  549. for (FIRMessagingTokenInfo *cachedTokenInfo in tokenInfos) {
  550. // Check if the cached APNSInfo is nil, or if it is an old APNSInfo.
  551. if (!cachedTokenInfo.APNSInfo ||
  552. ![cachedTokenInfo.APNSInfo isEqualToAPNSInfo:self.currentAPNSInfo]) {
  553. // Mark for invalidation.
  554. [tokenInfosToDelete addObject:cachedTokenInfo];
  555. }
  556. }
  557. for (FIRMessagingTokenInfo *tokenInfoToDelete in tokenInfosToDelete) {
  558. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeTokenManagerAPNSChangedTokenInvalidated,
  559. @"Invalidating cached token for %@ (%@) due to APNs token change.",
  560. tokenInfoToDelete.authorizedEntity, tokenInfoToDelete.scope);
  561. [_tokenStore removeTokenWithAuthorizedEntity:tokenInfoToDelete.authorizedEntity
  562. scope:tokenInfoToDelete.scope];
  563. }
  564. return tokenInfosToDelete;
  565. }
  566. #pragma mark - APNS Token
  567. - (void)setAPNSToken:(NSData *)APNSToken withUserInfo:(NSDictionary *)userInfo {
  568. if (!APNSToken || ![APNSToken isKindOfClass:[NSData class]]) {
  569. if ([APNSToken class]) {
  570. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeInternal002, @"Invalid APNS token type %@",
  571. NSStringFromClass([APNSToken class]));
  572. } else {
  573. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeInternal002, @"Empty APNS token type");
  574. }
  575. return;
  576. }
  577. NSInteger type = [userInfo[kFIRMessagingAPNSTokenType] integerValue];
  578. // The APNS token is being added, or has changed (rare)
  579. if ([self.currentAPNSInfo.deviceToken isEqualToData:APNSToken]) {
  580. FIRMessagingLoggerDebug(kFIRMessagingMessageCodeInstanceID011,
  581. @"Trying to reset APNS token to the same value. Will return");
  582. return;
  583. }
  584. // Use this token type for when we have to automatically fetch tokens in the future
  585. BOOL isSandboxApp = (type == FIRMessagingAPNSTokenTypeSandbox);
  586. if (type == FIRMessagingAPNSTokenTypeUnknown) {
  587. isSandboxApp = FIRMessagingIsSandboxApp();
  588. }
  589. // Pro-actively invalidate the default token, if the APNs change makes it
  590. // invalid. Previously, we invalidated just before fetching the token.
  591. NSArray<FIRMessagingTokenInfo *> *invalidatedTokens =
  592. [self updateTokensToAPNSDeviceToken:APNSToken isSandbox:isSandboxApp];
  593. self.currentAPNSInfo = [[FIRMessagingAPNSInfo alloc] initWithDeviceToken:[APNSToken copy]
  594. isSandbox:isSandboxApp];
  595. // Re-fetch any invalidated tokens automatically, this time with the current APNs token, so that
  596. // they are up-to-date. Or this is a fresh install and no apns token stored yet.
  597. if (invalidatedTokens.count > 0 || [_tokenStore cachedTokenInfos].count == 0) {
  598. FIRMessaging_WEAKIFY(self);
  599. [self.installations installationIDWithCompletion:^(NSString *_Nullable identifier,
  600. NSError *_Nullable error) {
  601. FIRMessaging_STRONGIFY(self);
  602. if (self == nil) {
  603. FIRMessagingLoggerError(kFIRMessagingMessageCodeInstanceID017,
  604. @"Instance ID shut down during token reset. Aborting");
  605. return;
  606. }
  607. if (self.currentAPNSInfo == nil) {
  608. FIRMessagingLoggerError(kFIRMessagingMessageCodeInstanceID018,
  609. @"apnsTokenData was set to nil during token reset. Aborting");
  610. return;
  611. }
  612. NSMutableDictionary *tokenOptions = [@{
  613. kFIRMessagingTokenOptionsAPNSKey : self.currentAPNSInfo.deviceToken,
  614. kFIRMessagingTokenOptionsAPNSIsSandboxKey : @(isSandboxApp)
  615. } mutableCopy];
  616. if (self.firebaseAppID) {
  617. tokenOptions[kFIRMessagingTokenOptionsFirebaseAppIDKey] = self.firebaseAppID;
  618. }
  619. for (FIRMessagingTokenInfo *tokenInfo in invalidatedTokens) {
  620. [self fetchNewTokenWithAuthorizedEntity:tokenInfo.authorizedEntity
  621. scope:tokenInfo.scope
  622. instanceID:identifier
  623. options:tokenOptions
  624. handler:^(NSString *_Nullable token,
  625. NSError *_Nullable error){
  626. // Do nothing as callback is not needed and the
  627. // sub-funciton already handle errors.
  628. }];
  629. }
  630. if ([self->_tokenStore cachedTokenInfos].count == 0) {
  631. [self tokenWithAuthorizedEntity:self.fcmSenderID
  632. scope:kFIRMessagingDefaultTokenScope
  633. options:tokenOptions
  634. handler:^(NSString *_Nullable FCMToken, NSError *_Nullable error){
  635. // Do nothing as callback is not needed and the sub-funciton
  636. // already handle errors.
  637. }];
  638. }
  639. }];
  640. }
  641. }
  642. #pragma mark - checkin
  643. - (BOOL)hasValidCheckinInfo {
  644. return self.authService.checkinPreferences.hasValidCheckinInfo;
  645. }
  646. @end