/
X5UFactory.php
75 lines (66 loc) · 2 KB
/
X5UFactory.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
<?php
declare(strict_types=1);
/*
* The MIT License (MIT)
*
* Copyright (c) 2014-2017 Spomky-Labs
*
* This software may be modified and distributed under the terms
* of the MIT license. See the LICENSE file for details.
*/
namespace Jose\Component\KeyManagement;
use Http\Client\HttpClient;
use Http\Message\RequestFactory;
use Jose\Component\Core\Converter\JsonConverter;
use Jose\Component\Core\JWK;
use Jose\Component\Core\JWKSet;
use Jose\Component\KeyManagement\KeyConverter\KeyConverter;
/**
* Class X5UFactory.
*/
final class X5UFactory extends UrlKeySetFactory
{
private $jsonConverter;
/**
* X5UFactory constructor.
*
* @param JsonConverter $jsonConverter
* @param HttpClient $client
* @param RequestFactory $requestFactory
*/
public function __construct(JsonConverter $jsonConverter, HttpClient $client, RequestFactory $requestFactory)
{
$this->jsonConverter = $jsonConverter;
parent::__construct($client, $requestFactory);
}
/**
* @param string $url
* @param array $header
*
* @throws \InvalidArgumentException
*
* @return JWKSet
*/
public function loadFromUrl(string $url, array $header = []): JWKSet
{
$content = $this->getContent($url, $header);
$data = $this->jsonConverter->decode($content);
if (!is_array($data)) {
throw new \RuntimeException('Invalid content.');
}
$keys = [];
foreach ($data as $kid => $cert) {
if (false === strpos($cert, '-----BEGIN CERTIFICATE-----')) {
$cert = '-----BEGIN CERTIFICATE-----'.PHP_EOL.$cert.PHP_EOL.'-----END CERTIFICATE-----';
}
$jwk = KeyConverter::loadKeyFromCertificate($cert);
if (is_string($kid)) {
$jwk['kid'] = $kid;
$keys[$kid] = JWK::create($jwk);
} else {
$keys[] = JWK::create($jwk);
}
}
return JWKSet::createFromKeys($keys);
}
}