PHP code example of newlandpe / oauth2-xauthconnect
1. Go to this page and download the library: Download newlandpe/oauth2-xauthconnect library. Choose the download type require.
2. Extract the ZIP file and open the index.php.
3. Add this code to the index.php.
<?php
require_once('vendor/autoload.php');
/* Start to develop here. Best regards https://php-download.com/ */
newlandpe / oauth2-xauthconnect example snippets
$provider = new ChernegaSergiy\XAuthConnect\OAuth2\Client\Provider\XAuthConnect([
'clientId' => 'your-client-id',
'clientSecret' => 'your-client-secret',
'redirectUri' => 'https://your-redirect-uri.com',
'issuer' => 'https://xauth-server.com' // Base URL of your XAuthConnect server
]);
$provider = new ChernegaSergiy\XAuthConnect\OAuth2\Client\Provider\XAuthConnect([
'clientId' => 'your-client-id',
'clientSecret' => 'your-client-secret',
'redirectUri' => 'https://your-redirect-uri.com',
'issuer' => 'https://xauth-server.com', // Still recommended
// Manually override the token endpoint
'baseAccessTokenUrl' => 'httpa://new-token-url.com/token',
]);
// If we don't have an authorization code then get one
if (!isset($_GET['code'])) {
// Fetch the authorization URL from the provider; this returns the
// urlAuthorize URL and generates and stores the state value in the session.
$authorizationUrl = $provider->getAuthorizationUrl();
$_SESSION['oauth2state'] = $provider->getState();
header('Location: ' . $authorizationUrl);
exit;
// Check given state against previously stored one to mitigate CSRF attack
} elseif (empty($_GET['state']) || (isset($_SESSION['oauth2state']) && $_GET['state'] !== $_SESSION['oauth2state'])) {
if (isset($_SESSION['oauth2state'])) {
unset($_SESSION['oauth2state']);
}
exit('Invalid state');
}
try {
// Try to get an access token using the authorization code grant.
$accessToken = $provider->getAccessToken('authorization_code', [
'code' => $_GET['code']
]);
// We have an access token, let's use it!
echo 'Access Token: ' . $accessToken->getToken() . "<br>";
echo 'Refresh Token: ' . $accessToken->getRefreshToken() . "<br>";
echo 'Expired in: ' . $accessToken->getExpires() . "<br>";
echo 'Already expired? ' . ($accessToken->hasExpired() ? 'Yes' : 'No') . "<br>";
} catch (\League\OAuth2\Client\Provider\Exception\IdentityProviderException $e) {
// Failed to get the access token or user details.
exit($e->getMessage());
}
try {
// Returns a XAuthConnectUser instance.
$user = $provider->getResourceOwner($accessToken);
printf('Hello, %s!', $user->getNickname());
echo 'Your UUID is: ' . $user->getId();
// Get all user data as an array.
var_dump($user->toArray());
} catch (Exception $e) {
// Failed to get user details
exit('Oh dear...');
}
$introspectionResult = $provider->introspectToken($accessToken->getToken());
if ($introspectionResult['active']) {
echo "Token is active.\n";
echo "Expires at: " . date('Y-m-d H:i:s', $introspectionResult['exp']);
} else {
echo "Token is not active.";
}
// Revoke the access token
$provider->revokeToken($accessToken->getToken());
// Revoke the refresh token
$provider->revokeToken($accessToken->getRefreshToken());
echo "Tokens have been revoked.";
Loading please wait ...
Before you can download the PHP files, the dependencies should be resolved. This can take some minutes. Please be patient.