2017-06-08 16:17:13 +02:00
|
|
|
# -*- coding: utf-8 -*-
|
|
|
|
|
|
|
|
# Copyright 2017 Mike Fährmann
|
|
|
|
#
|
|
|
|
# This program is free software; you can redistribute it and/or modify
|
|
|
|
# it under the terms of the GNU General Public License version 2 as
|
|
|
|
# published by the Free Software Foundation.
|
|
|
|
|
|
|
|
"""Utility classes to setup OAuth"""
|
|
|
|
|
|
|
|
from .common import Extractor, Message
|
2017-06-12 09:36:14 +02:00
|
|
|
from . import reddit, flickr
|
2017-06-14 15:27:16 +02:00
|
|
|
import os
|
2017-06-12 09:36:14 +02:00
|
|
|
import time
|
|
|
|
import hmac
|
|
|
|
import base64
|
2017-06-08 16:17:13 +02:00
|
|
|
import random
|
|
|
|
import string
|
2017-06-12 09:36:14 +02:00
|
|
|
import hashlib
|
2017-06-08 16:17:13 +02:00
|
|
|
import urllib.parse
|
|
|
|
|
|
|
|
|
2017-06-12 09:36:14 +02:00
|
|
|
class OAuthSession():
|
|
|
|
"""Minimal wrapper for requests.session objects to support OAuth 1.0"""
|
|
|
|
def __init__(self, session, consumer_key, consumer_secret,
|
|
|
|
token=None, token_secret=None):
|
|
|
|
self.session = session
|
|
|
|
self.consumer_secret = consumer_secret
|
|
|
|
self.token_secret = token_secret or ""
|
|
|
|
self.params = session.params
|
|
|
|
self.params["oauth_consumer_key"] = consumer_key
|
|
|
|
self.params["oauth_token"] = token
|
|
|
|
self.params["oauth_signature_method"] = "HMAC-SHA1"
|
|
|
|
self.params["oauth_version"] = "1.0"
|
|
|
|
|
|
|
|
def get(self, url, params):
|
|
|
|
params.update(self.params)
|
|
|
|
params["oauth_nonce"] = self.nonce(16)
|
|
|
|
params["oauth_timestamp"] = int(time.time())
|
|
|
|
params["oauth_signature"] = self.signature(url, params)
|
|
|
|
return self.session.get(url, params=params)
|
|
|
|
|
|
|
|
def signature(self, url, params):
|
|
|
|
"""Generate 'oauth_signature' value"""
|
|
|
|
query = urllib.parse.urlencode(sorted(params.items()))
|
|
|
|
message = self.concat("GET", url, query).encode()
|
|
|
|
key = self.concat(self.consumer_secret, self.token_secret).encode()
|
|
|
|
signature = hmac.new(key, message, hashlib.sha1).digest()
|
2017-06-13 08:01:32 +02:00
|
|
|
return base64.b64encode(signature).decode()
|
2017-06-12 09:36:14 +02:00
|
|
|
|
|
|
|
@staticmethod
|
|
|
|
def concat(*args):
|
|
|
|
return "&".join(urllib.parse.quote(item, "") for item in args)
|
|
|
|
|
|
|
|
@staticmethod
|
|
|
|
def nonce(N, alphabet=string.ascii_letters):
|
|
|
|
return "".join(random.choice(alphabet) for _ in range(N))
|
|
|
|
|
|
|
|
|
2017-06-08 16:17:13 +02:00
|
|
|
class OAuthBase(Extractor):
|
2017-06-12 09:36:14 +02:00
|
|
|
"""Base class for OAuth Helpers"""
|
2017-06-08 16:17:13 +02:00
|
|
|
category = "oauth"
|
|
|
|
redirect_uri = "http://localhost:6414/"
|
|
|
|
|
|
|
|
def __init__(self):
|
|
|
|
Extractor.__init__(self)
|
|
|
|
self.client = None
|
|
|
|
|
|
|
|
def recv(self):
|
2017-06-12 09:36:14 +02:00
|
|
|
"""Open local HTTP server and recv callback parameters"""
|
|
|
|
import socket
|
2017-06-08 16:17:13 +02:00
|
|
|
print("Waiting for response. (Cancel with Ctrl+c)")
|
|
|
|
server = socket.socket(socket.AF_INET, socket.SOCK_STREAM)
|
|
|
|
server.setsockopt(socket.SOL_SOCKET, socket.SO_REUSEADDR, 1)
|
|
|
|
server.bind(("localhost", 6414))
|
|
|
|
server.listen(1)
|
2017-06-14 15:27:16 +02:00
|
|
|
|
|
|
|
# workaround for ctrl+c not working during server.accept on Windows
|
|
|
|
if os.name == "nt":
|
|
|
|
server.settimeout(1.0)
|
|
|
|
while True:
|
|
|
|
try:
|
|
|
|
self.client = server.accept()[0]
|
|
|
|
break
|
|
|
|
except socket.timeout:
|
|
|
|
pass
|
2017-06-08 16:17:13 +02:00
|
|
|
server.close()
|
|
|
|
|
|
|
|
data = self.client.recv(1024).decode()
|
|
|
|
path = data.split(" ", 2)[1]
|
|
|
|
query = path.partition("?")[2]
|
|
|
|
return {
|
|
|
|
key: urllib.parse.unquote(value)
|
|
|
|
for key, _, value in [
|
|
|
|
part.partition("=")
|
|
|
|
for part in query.split("&")
|
|
|
|
]
|
|
|
|
}
|
|
|
|
|
|
|
|
def send(self, msg):
|
2017-06-12 09:36:14 +02:00
|
|
|
"""Send 'msg' to the socket opened in 'recv()'"""
|
2017-06-08 16:17:13 +02:00
|
|
|
print(msg)
|
|
|
|
self.client.send(b"HTTP/1.1 200 OK\r\n\r\n" + msg.encode())
|
|
|
|
self.client.close()
|
|
|
|
|
2017-06-12 09:36:14 +02:00
|
|
|
def open(self, url, params):
|
|
|
|
"""Open 'url' in browser amd return response parameters"""
|
|
|
|
import webbrowser
|
|
|
|
url += "?" + urllib.parse.urlencode(params)
|
|
|
|
if not webbrowser.open(url):
|
|
|
|
print("Please open this URL in your browser:")
|
|
|
|
print(url, end="\n\n", flush=True)
|
|
|
|
return self.recv()
|
|
|
|
|
2017-06-08 16:17:13 +02:00
|
|
|
|
|
|
|
class OAuthReddit(OAuthBase):
|
|
|
|
subcategory = "reddit"
|
|
|
|
pattern = ["oauth:reddit$"]
|
|
|
|
|
|
|
|
def __init__(self, match):
|
|
|
|
OAuthBase.__init__(self)
|
|
|
|
self.session.headers["User-Agent"] = reddit.RedditAPI.USER_AGENT
|
|
|
|
self.client_id = reddit.RedditAPI.CLIENT_ID
|
|
|
|
self.state = "gallery-dl:{}:{}".format(
|
2017-06-12 09:36:14 +02:00
|
|
|
self.subcategory, OAuthSession.nonce(8))
|
2017-06-08 16:17:13 +02:00
|
|
|
|
|
|
|
def items(self):
|
|
|
|
yield Message.Version, 1
|
|
|
|
|
2017-06-12 09:36:14 +02:00
|
|
|
url = "https://www.reddit.com/api/v1/authorize"
|
2017-06-08 16:17:13 +02:00
|
|
|
params = {
|
|
|
|
"client_id": self.client_id,
|
|
|
|
"response_type": "code",
|
|
|
|
"state": self.state,
|
|
|
|
"redirect_uri": self.redirect_uri,
|
|
|
|
"duration": "permanent",
|
|
|
|
"scope": "read",
|
|
|
|
}
|
|
|
|
|
2017-06-12 09:36:14 +02:00
|
|
|
# receive 'code'
|
|
|
|
params = self.open(url, params)
|
2017-06-08 16:17:13 +02:00
|
|
|
|
|
|
|
if self.state != params.get("state"):
|
|
|
|
self.send("'state' mismatch: expected {}, got {}.".format(
|
|
|
|
self.state, params.get("state")))
|
|
|
|
return
|
|
|
|
if "error" in params:
|
|
|
|
self.send(params["error"])
|
|
|
|
return
|
|
|
|
|
2017-06-12 09:36:14 +02:00
|
|
|
# exchange 'code' for 'refresh_token'
|
2017-06-08 16:17:13 +02:00
|
|
|
url = "https://www.reddit.com/api/v1/access_token"
|
2017-06-12 09:36:14 +02:00
|
|
|
auth = (self.client_id, "")
|
2017-06-08 16:17:13 +02:00
|
|
|
data = {
|
|
|
|
"grant_type": "authorization_code",
|
|
|
|
"code": params["code"],
|
|
|
|
"redirect_uri": self.redirect_uri,
|
|
|
|
}
|
2017-06-12 09:36:14 +02:00
|
|
|
data = self.session.post(url, auth=auth, data=data).json()
|
2017-06-08 16:17:13 +02:00
|
|
|
|
|
|
|
if "error" in data:
|
|
|
|
self.send(data["error"])
|
|
|
|
else:
|
|
|
|
self.send(REDDIT_MSG_TEMPLATE.format(token=data["refresh_token"]))
|
|
|
|
|
|
|
|
|
2017-06-12 09:36:14 +02:00
|
|
|
class OAuthFlickr(OAuthBase):
|
|
|
|
subcategory = "flickr"
|
|
|
|
pattern = ["oauth:flickr$"]
|
|
|
|
|
|
|
|
def __init__(self, match):
|
|
|
|
OAuthBase.__init__(self)
|
|
|
|
self.session = OAuthSession(self.session,
|
|
|
|
flickr.FlickrAPI.API_KEY,
|
|
|
|
flickr.FlickrAPI.API_SECRET)
|
|
|
|
del self.session.params["oauth_token"]
|
|
|
|
|
|
|
|
def items(self):
|
|
|
|
yield Message.Version, 1
|
|
|
|
|
|
|
|
# Get a Request Token
|
|
|
|
url = "https://www.flickr.com/services/oauth/request_token"
|
|
|
|
params = {"oauth_callback": self.redirect_uri}
|
|
|
|
data = self.session.get(url, params=params).text
|
|
|
|
|
|
|
|
data = urllib.parse.parse_qs(data)
|
|
|
|
self.session.params["oauth_token"] = token = data["oauth_token"][0]
|
|
|
|
self.session.token_secret = data["oauth_token_secret"][0]
|
|
|
|
|
|
|
|
# Get the User's Authorization
|
|
|
|
url = "https://www.flickr.com/services/oauth/authorize"
|
|
|
|
params = {"oauth_token": token, "perms": "read"}
|
|
|
|
data = self.open(url, params)
|
|
|
|
|
|
|
|
# Exchange the Request Token for an Access Token
|
|
|
|
url = "https://www.flickr.com/services/oauth/access_token"
|
|
|
|
data = self.session.get(url, params=data).text
|
|
|
|
|
|
|
|
data = urllib.parse.parse_qs(data)
|
|
|
|
self.send(FLICKR_MSG_TEMPLATE.format(
|
|
|
|
token=data["oauth_token"][0],
|
|
|
|
token_secret=data["oauth_token_secret"][0]))
|
|
|
|
|
|
|
|
|
2017-06-08 16:17:13 +02:00
|
|
|
REDDIT_MSG_TEMPLATE = """
|
|
|
|
Your Refresh Token is
|
|
|
|
|
|
|
|
{token}
|
|
|
|
|
|
|
|
Put this value into your configuration file as 'extractor.reddit.refesh-token'.
|
|
|
|
|
|
|
|
Example:
|
|
|
|
{{
|
|
|
|
"extractor": {{
|
|
|
|
"reddit": {{
|
|
|
|
"refresh-token": "{token}"
|
|
|
|
}}
|
|
|
|
}}
|
|
|
|
}}
|
|
|
|
"""
|
2017-06-12 09:36:14 +02:00
|
|
|
|
|
|
|
FLICKR_MSG_TEMPLATE = """
|
|
|
|
Your Access Token and Access Token Secret are
|
|
|
|
|
|
|
|
{token}
|
|
|
|
{token_secret}
|
|
|
|
|
|
|
|
Put these values into your configuration file as
|
|
|
|
'extractor.flickr.access-token' and 'extractor.flickr.access-token-secret'.
|
|
|
|
|
|
|
|
Example:
|
|
|
|
{{
|
|
|
|
"extractor": {{
|
|
|
|
"flickr": {{
|
|
|
|
"access-token": "{token}",
|
|
|
|
"access-token-secret": "{token_secret}"
|
|
|
|
}}
|
|
|
|
}}
|
|
|
|
}}
|
|
|
|
"""
|