Added wallPostPermission parameter to loggedIn signal
[situare] / src / facebookservice / facebookauthentication.cpp
1 /*
2    Situare - A location system for Facebook
3    Copyright (C) 2010  Ixonos Plc. Authors:
4
5        Ville Tiensuu - ville.tiensuu@ixonos.com
6        Kaj Wallin - kaj.wallin@ixonos.com
7        Henri Lampela - henri.lampela@ixonos.com
8
9    Situare is free software; you can redistribute it and/or
10    modify it under the terms of the GNU General Public License
11    version 2 as published by the Free Software Foundation.
12
13    Situare is distributed in the hope that it will be useful,
14    but WITHOUT ANY WARRANTY; without even the implied warranty of
15    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
16    GNU General Public License for more details.
17
18    You should have received a copy of the GNU General Public License
19    along with Situare; if not, write to the Free Software
20    Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA  02110-1301,
21    USA.
22 */
23
24 #include <qjson/parser.h>
25
26 #include <QtDebug>
27 #include <QDateTime>
28 #include <QNetworkReply>
29 #include <QSettings>
30 #include <QStringList>
31 #include <QVariantMap>
32 #include <QWebView>
33
34 #ifdef Q_WS_MAEMO_5
35 #include <QMaemo5InformationBox>
36 #endif // Q_WS_MAEMO_5
37
38 #include "common.h"
39 #include "../error.h"
40 #include "network/networkcookiejar.h"
41 #include "situareservice/situarecommon.h"
42 #include "ui/mainwindow.h"
43
44 #include "facebookauthentication.h"
45
46 const QString FB_LOGIN_SUCCESS_URL = "http://www.facebook.com/connect/login_success.html";
47 const QString FB_LOGIN_URL = "https://www.facebook.com/login.php";
48
49 const QString URL_SESSION_PARAMETER_BEGIN("session={");
50
51 FacebookAuthentication::FacebookAuthentication(MainWindow *mainWindow, QObject *parent)
52     : QObject(parent),
53       m_loggedIn(false),
54       m_browser(0),
55       m_mainWindow(mainWindow)
56 {
57     qDebug() << __PRETTY_FUNCTION__;
58 }
59
60 void FacebookAuthentication::browserDestroyed()
61 {
62     qWarning() << __PRETTY_FUNCTION__;
63
64     m_mainWindow->toggleProgressIndicator(false);
65     m_browser = 0;
66 }
67
68 void FacebookAuthentication::clearAccountInformation(bool clearUserInformation)
69 {
70     qWarning() << __PRETTY_FUNCTION__ << "clearUserInformation:" << clearUserInformation;
71
72     QSettings settings(SETTINGS_ORGANIZATION_NAME, SETTINGS_APPLICATION_NAME);
73
74     settings.remove(USER_UNSEND_MESSAGE);
75     settings.remove(USER_UNSEND_MESSAGE_PUBLISH);
76
77     if (clearUserInformation) {
78         NetworkCookieJar::clearCookiesSetting();
79         settings.remove(SETTINGS_AUTOMATIC_UPDATE_ENABLED);
80         settings.remove(SETTINGS_AUTOMATIC_UPDATE_INTERVAL);
81     }
82 }
83
84 void FacebookAuthentication::destroyLogin()
85 {
86     qWarning() << __PRETTY_FUNCTION__;
87
88     m_mainWindow->destroyLoginDialog();
89     m_browser->deleteLater();
90 }
91
92 bool FacebookAuthentication::isLoggedIn() const
93 {
94     qWarning() << __PRETTY_FUNCTION__;
95
96     return m_loggedIn;
97 }
98
99 void FacebookAuthentication::login()
100 {
101     qWarning() << __PRETTY_FUNCTION__;
102
103     if (!m_browser) {
104         m_browser = new QWebView(m_mainWindow);
105
106         if (m_browser) {
107             m_browser->page()->networkAccessManager()->setCookieJar(new NetworkCookieJar());
108
109             connect(m_browser, SIGNAL(urlChanged(QUrl)),
110                     this, SLOT(urlChanged(QUrl)));
111
112             connect(m_browser, SIGNAL(destroyed(QObject*)),
113                     this, SLOT(browserDestroyed()));
114
115             connect(m_browser->page()->networkAccessManager(),
116                     SIGNAL(sslErrors(QNetworkReply*, QList<QSslError>)),
117                     this, SLOT(sslErrors(QNetworkReply*, QList<QSslError>)));
118
119             connect(m_browser->page()->networkAccessManager(), SIGNAL(finished(QNetworkReply*)),
120                     this, SLOT(networkReplyHandler(QNetworkReply*)));
121         }
122     }
123
124     if (m_browser) {
125         QString url = FB_LOGIN_URL + "?";
126         url.append("api_key=" + API_KEY +"&");
127         url.append("display=touch&");
128         url.append("fbconnect=1&");
129         url.append("next=" + FB_LOGIN_SUCCESS_URL + "&");
130         url.append("return_session=1&");
131         url.append("session_version=3&");
132         url.append("v=1.0&");
133         url.append("req_perms=publish_stream");
134
135         m_browser->load(QUrl(url));
136
137         m_mainWindow->toggleProgressIndicator(true);
138     }
139 }
140
141 void FacebookAuthentication::logOut(bool clearUserInformation)
142 {
143     qWarning() << __PRETTY_FUNCTION__;
144
145     clearAccountInformation(clearUserInformation);
146     m_loggedIn = false;
147     emit loggedOut();
148 }
149
150 void FacebookAuthentication::networkReplyHandler(QNetworkReply *reply)
151 {
152     qWarning() <<__PRETTY_FUNCTION__;
153
154     if ((reply->error() != QNetworkReply::NoError)
155         && (reply->error() != QNetworkReply::OperationCanceledError)) {
156
157         qCritical() << __PRETTY_FUNCTION__ << "error:" << reply->error() << reply->errorString();
158         emit error(ErrorContext::NETWORK, reply->error());
159         destroyLogin();
160     }
161 }
162
163 QString FacebookAuthentication::parseSession(const QUrl &url)
164 {
165     qWarning() << __PRETTY_FUNCTION__;
166
167     const QString END("}");
168
169     QString urlString = url.toString();
170
171     int begin = urlString.indexOf(URL_SESSION_PARAMETER_BEGIN);
172     int end = urlString.indexOf(END, begin);
173
174     if ((begin > -1) && (end > -1))
175         return urlString.mid(begin, end - begin + 1);
176     else
177         return QString();
178 }
179
180 void FacebookAuthentication::sslErrors(QNetworkReply *reply, const QList<QSslError> &errors)
181 {
182     qWarning() << __PRETTY_FUNCTION__;
183
184     Q_UNUSED(errors);
185     reply->ignoreSslErrors();
186 }
187
188 void FacebookAuthentication::urlChanged(const QUrl &url)
189 {
190     qWarning() << __PRETTY_FUNCTION__ << url.toString();
191
192     const QString WALL_POST_PERMISSION = "publish_stream";
193
194     /*
195       URL changes in different use cases:
196         * Login with cookie failed:
197             1) http://m.facebook.com/login.php?api_key=cf77865a5070f2c2ba3b52cbf3371579&cancel_url=http://www.facebook.com/connect/login_failure.html&display=touch&fbconnect=1&next=http://www.facebook.com/connect/uiserver.php?app_id=286811277465&next=http%3A%2F%2Fwww.facebook.com%2Fconnect%2Flogin_success.html&display=touch&cancel_url=http%3A%2F%2Fwww.facebook.com%2Fconnect%2Flogin_failure.html&perms=publish_stream&return_session=1&session_version=3&fbconnect=1&canvas=0&legacy_return=1&method=permissions.request&return_session=1&session_version=3&v=1.0&req_perms=publish_stream&app_id=286811277465&refsrc=http://www.facebook.com/login.php&fbb=ra985c5e9
198
199         * Login without cookie, not allowed to publish:
200             1) http://m.facebook.com/login.php?api_key=cf77865a5070f2c2ba3b52cbf3371579&display=touch&fbconnect=1&next=http://www.facebook.com/connect/uiserver.php?app_id=286811277465&next=http%3A%2F%2Fwww.facebook.com%2Fconnect%2Flogin_success.html&display=touch&perms=publish_stream&return_session=1&session_version=3&fbconnect=1&canvas=0&legacy_return=1&method=permissions.request&return_session=1&session_version=3&v=1.0&req_perms=publish_stream&app_id=286811277465&refsrc=http://www.facebook.com/login.php&fbb=r03cdf104"
201                  --> browser dialog is invoked, user enters correct username and password
202             2) http://www.facebook.com/connect/uiserver.php?app_id=286811277465&next=http://www.facebook.com/connect/login_success.html&display=touch&perms=publish_stream&return_session=1&session_version=3&fbconnect=1&canvas=0&legacy_return=1&method=permissions.request&session={"session_key":"2.isKv9bMtGmylvP1N6Il3IQ__.3600.1289394000-100001006647973","uid":100001006647973,"expires":1289394000,"secret":"PWiqZ9_aJjfKKJT4hJMTqA__","sig":"8f054aeca3c4d81e7efce3b90fb17d7e"}&installed=1&refsrc=http://www.facebook.com/login.php&fbb=rff1cc1be&refid=9&m_sess=sozzGNi5-SOBSb3AU
203                  --> click allow
204             3) http://www.facebook.com/connect/uiserver.php
205             4) http://www.facebook.com/connect/login_success.html?perms=publish_stream&selected_profiles=100001006647973&session={"session_key":"2.isKv9bMtGmylvP1N6Il3IQ__.3600.1289394000-100001006647973","uid":"100001006647973","expires":1289394000,"secret":"PWiqZ9_aJjfKKJT4hJMTqA__","access_token":"286811277465|2.isKv9bMtGmylvP1N6Il3IQ__.3600.1289394000-100001006647973|bo9YniMczKY7PwlUEy9f40w3v5I","sig":"6b80d6928cf8f61b4c0c59d33d3127b6"}
206
207         * Login without cookie, not allowed to publish:
208             1) http://m.facebook.com/login.php?api_key=cf77865a5070f2c2ba3b52cbf3371579&display=touch&fbconnect=1&next=http://www.facebook.com/connect/uiserver.php?app_id=286811277465&next=http%3A%2F%2Fwww.facebook.com%2Fconnect%2Flogin_success.html&display=touch&perms=publish_stream&return_session=1&session_version=3&fbconnect=1&canvas=0&legacy_return=1&method=permissions.request&return_session=1&session_version=3&v=1.0&req_perms=publish_stream&app_id=286811277465&refsrc=http://www.facebook.com/login.php&fbb=r3fa0d31d
209                  --> browser dialog is invoked, user enters correct username and password
210             2) http://www.facebook.com/connect/uiserver.php?app_id=286811277465&next=http://www.facebook.com/connect/login_success.html&display=touch&perms=publish_stream&return_session=1&session_version=3&fbconnect=1&canvas=0&legacy_return=1&method=permissions.request&session={"session_key":"2.isKv9bMtGmylvP1N6Il3IQ__.3600.1289394000-100001006647973","uid":100001006647973,"expires":1289394000,"secret":"PWiqZ9_aJjfKKJT4hJMTqA__","sig":"8f054aeca3c4d81e7efce3b90fb17d7e"}&installed=1&refsrc=http://www.facebook.com/login.php&fbb=r29076109&refid=9&m_sess=sozzGNi5-SOBSb3AU
211                  --> click deny
212             3) http://www.facebook.com/connect/uiserver.php
213             4) http://www.facebook.com/connect/login_success.html?perms&selected_profiles=100001006647973&session={"session_key":"2.isKv9bMtGmylvP1N6Il3IQ__.3600.1289394000-100001006647973","uid":"100001006647973","expires":1289394000,"secret":"PWiqZ9_aJjfKKJT4hJMTqA__","access_token":"286811277465|2.isKv9bMtGmylvP1N6Il3IQ__.3600.1289394000-100001006647973|bo9YniMczKY7PwlUEy9f40w3v5I","sig":"6b80d6928cf8f61b4c0c59d33d3127b6"}
214
215         * Login with cookie succeeded, already allowed to publish:
216             1) http://www.facebook.com/connect/uiserver.php?app_id=286811277465&next=http://www.facebook.com/connect/login_success.html&display=touch&cancel_url=http://www.facebook.com/connect/login_failure.html&perms=publish_stream&return_session=1&session_version=3&fbconnect=1&canvas=0&legacy_return=1&method=permissions.request&session={"session_key":"2.iHXi5fLKlHktva2R71xSAw__.3600.1289228400-100001006647973","uid":100001006647973,"expires":1289228400,"secret":"q4_Hn5qRdxnVT_qh3ztv5w__","sig":"c9d29ca857bacec48b952e7d2826a3ca"}&fbb=rb28f24e5
217             2) http://www.facebook.com/connect/login_success.html?perms=publish_stream&selected_profiles=100001006647973&session={"session_key":"2.iHXi5fLKlHktva2R71xSAw__.3600.1289228400-100001006647973","uid":"100001006647973","expires":1289228400,"secret":"q4_Hn5qRdxnVT_qh3ztv5w__","access_token":"286811277465|2.iHXi5fLKlHktva2R71xSAw__.3600.1289228400-100001006647973|LVTHGW82A98SGvv6Fl43DlCrFT0","sig":"8edd8d611047bcd162abbe9983b25a56"}
218      */
219
220     const QString urlString = url.toString();
221     if (!urlString.contains(URL_SESSION_PARAMETER_BEGIN)) {
222         // login page url doesn't contain session
223         /// @todo INVOKE DIALOG ALSO WHEN STOPPED TO PERMISSION PAGE
224         /// @todo case: set cookie, remove situare app, re-login, 1 extra allow page before permissions, redirect from extra page when denying?
225         m_mainWindow->buildLoginDialog(m_browser);
226     } else if (urlString.startsWith(FB_LOGIN_SUCCESS_URL)) {
227         // login succeeded, permissions granted/declined
228         const QString session = parseSession(url);
229         qWarning() << __PRETTY_FUNCTION__ << "login finished, parsed session:" << session;
230         if (!session.isEmpty()) {
231             destroyLogin();
232             m_loggedIn = true;
233             emit loggedIn(session, urlString.contains(WALL_POST_PERMISSION));
234         }
235     }
236     else {
237         qCritical() << __PRETTY_FUNCTION__ << "new url was not recognised, url:" << urlString;
238     }
239 }