123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147 |
- <?php
- namespace Aws\Signature;
- use Aws\Exception\UnresolvedSignatureException;
- use Aws\Token\BearerTokenAuthorization;
- class SignatureProvider
- {
- private static $s3v4SignedServices = [
- 's3' => true,
- 's3control' => true,
- 's3-outposts' => true,
- 's3-object-lambda' => true,
- 's3express' => true
- ];
-
- public static function resolve(callable $provider, $version, $service, $region)
- {
- $result = $provider($version, $service, $region);
- if ($result instanceof SignatureInterface
- || $result instanceof BearerTokenAuthorization
- ) {
- return $result;
- }
- throw new UnresolvedSignatureException(
- "Unable to resolve a signature for $version/$service/$region.\n"
- . "Valid signature versions include v4 and anonymous."
- );
- }
-
- public static function defaultProvider()
- {
- return self::memoize(self::version());
- }
-
- public static function memoize(callable $provider)
- {
- $cache = [];
- return function ($version, $service, $region) use (&$cache, $provider) {
- $key = "($version)($service)($region)";
- if (!isset($cache[$key])) {
- $cache[$key] = $provider($version, $service, $region);
- }
- return $cache[$key];
- };
- }
-
- public static function version()
- {
- return function ($version, $service, $region) {
- switch ($version) {
- case 'v4-s3express':
- return new S3ExpressSignature($service, $region);
- case 's3v4':
- case 'v4':
- return !empty(self::$s3v4SignedServices[$service])
- ? new S3SignatureV4($service, $region)
- : new SignatureV4($service, $region);
- case 'v4a':
- return !empty(self::$s3v4SignedServices[$service])
- ? new S3SignatureV4($service, $region, ['use_v4a' => true])
- : new SignatureV4($service, $region, ['use_v4a' => true]);
- case 'v4-unsigned-body':
- return !empty(self::$s3v4SignedServices[$service])
- ? new S3SignatureV4($service, $region, ['unsigned-body' => 'true'])
- : new SignatureV4($service, $region, ['unsigned-body' => 'true']);
- case 'bearer':
- return new BearerTokenAuthorization();
- case 'anonymous':
- return new AnonymousSignature();
- default:
- return null;
- }
- };
- }
- }
|