Files
spa-api/laravel/request.php

155 lines
3.2 KiB
PHP
Raw Normal View History

2011-10-04 21:43:39 -05:00
<?php namespace Laravel; use Closure;
2011-06-08 23:45:08 -05:00
2011-08-30 22:35:32 -05:00
class Request {
2011-08-23 21:04:40 -05:00
/**
2011-10-29 22:31:50 -05:00
* The route handling the current request.
*
2011-10-29 22:31:50 -05:00
* @var Routing\Route
*/
2011-10-29 22:31:50 -05:00
public static $route;
2011-10-10 21:34:15 -05:00
2011-09-21 21:46:16 -05:00
/**
* The request data key that is used to indicate a spoofed request method.
*
* @var string
*/
2011-09-20 21:28:19 -05:00
const spoofer = '__spoofer';
2011-09-16 19:59:20 -05:00
2011-06-08 23:45:08 -05:00
/**
2011-10-29 23:30:53 -05:00
* Get the URI for the current request.
2011-08-26 21:42:04 -05:00
*
2011-10-31 22:44:54 -05:00
* If the request is to the root of the application, a single forward slash
2011-11-14 21:18:18 -06:00
* will be returned. Otherwise, the URI will be returned with all of the
* leading and trailing slashes removed.
2011-10-31 22:44:54 -05:00
*
* @return string
2011-08-15 22:29:11 -05:00
*/
2011-10-29 22:31:50 -05:00
public static function uri()
2011-08-15 22:29:11 -05:00
{
2011-11-15 11:30:34 +00:00
return URI::current();
}
2011-06-08 23:45:08 -05:00
/**
* Get the request method.
*
* This will usually be the value of the REQUEST_METHOD $_SERVER variable
* However, when the request method is spoofed using a hidden form value,
* the method will be stored in the $_POST array.
2011-08-23 21:04:40 -05:00
*
2011-06-08 23:45:08 -05:00
* @return string
*/
2011-10-29 22:31:50 -05:00
public static function method()
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
return (static::spoofed()) ? $_POST[Request::spoofer] : $_SERVER['REQUEST_METHOD'];
2011-09-20 21:28:19 -05:00
}
/**
* Get an item from the $_SERVER array.
*
* Like most array retrieval methods, a default value may be specified.
*
* @param string $key
* @param mixed $default
* @return string
*/
2011-10-29 22:31:50 -05:00
public static function server($key = null, $default = null)
2011-09-20 21:28:19 -05:00
{
2011-10-29 22:31:50 -05:00
return Arr::get($_SERVER, strtoupper($key), $default);
2011-07-08 12:38:54 -07:00
}
/**
* Determine if the request method is being spoofed by a hidden Form element.
*
* @return bool
*/
2011-10-29 22:31:50 -05:00
public static function spoofed()
2011-07-08 12:38:54 -07:00
{
2011-10-29 22:31:50 -05:00
return is_array($_POST) and array_key_exists(Request::spoofer, $_POST);
2011-06-08 23:45:08 -05:00
}
/**
* Get the requestor's IP address.
*
2011-09-20 21:28:19 -05:00
* @param mixed $default
2011-06-08 23:45:08 -05:00
* @return string
*/
2011-10-29 22:31:50 -05:00
public static function ip($default = '0.0.0.0')
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
if (isset($_SERVER['HTTP_X_FORWARDED_FOR']))
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
return $_SERVER['HTTP_X_FORWARDED_FOR'];
2011-06-08 23:45:08 -05:00
}
2011-10-29 22:31:50 -05:00
elseif (isset($_SERVER['HTTP_CLIENT_IP']))
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
return $_SERVER['HTTP_CLIENT_IP'];
2011-06-08 23:45:08 -05:00
}
2011-10-29 22:31:50 -05:00
elseif (isset($_SERVER['REMOTE_ADDR']))
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
return $_SERVER['REMOTE_ADDR'];
2011-06-08 23:45:08 -05:00
}
2011-09-20 21:28:19 -05:00
2011-10-04 21:43:39 -05:00
return ($default instanceof Closure) ? call_user_func($default) : $default;
2011-06-08 23:45:08 -05:00
}
/**
2011-08-26 21:42:04 -05:00
* Get the HTTP protocol for the request.
2011-06-08 23:45:08 -05:00
*
* @return string
2011-06-08 23:45:08 -05:00
*/
2011-10-29 22:31:50 -05:00
public static function protocol()
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
return Arr::get($_SERVER, 'SERVER_PROTOCOL', 'HTTP/1.1');
2011-06-08 23:45:08 -05:00
}
/**
2011-09-20 21:28:19 -05:00
* Determine if the current request is using HTTPS.
2011-06-08 23:45:08 -05:00
*
* @return bool
2011-06-08 23:45:08 -05:00
*/
2011-10-29 22:31:50 -05:00
public static function secure()
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
return isset($_SERVER['HTTPS']) and strtolower($_SERVER['HTTPS']) !== 'off';
2011-06-08 23:45:08 -05:00
}
2011-11-02 21:27:43 -05:00
/**
* Determine if the request has been forged.
*
* The session CSRF token will be compared to the CSRF token in the request input.
*
* @return bool
*/
public static function forged()
{
if (Config::$items['session']['driver'] == '')
{
throw new \LogicException("A session driver must be specified to use the CSRF filter.");
}
2011-11-11 09:52:30 +00:00
return Input::get('csrf_token') !== IoC::core('session')->token();
2011-11-02 21:27:43 -05:00
}
2011-06-08 23:45:08 -05:00
/**
2011-09-20 21:28:19 -05:00
* Determine if the current request is an AJAX request.
2011-06-08 23:45:08 -05:00
*
* @return bool
*/
2011-10-29 22:31:50 -05:00
public static function ajax()
2011-06-08 23:45:08 -05:00
{
2011-10-29 22:31:50 -05:00
if ( ! isset($_SERVER['HTTP_X_REQUESTED_WITH'])) return false;
2011-08-26 21:42:04 -05:00
2011-10-29 22:31:50 -05:00
return strtolower($_SERVER['HTTP_X_REQUESTED_WITH']) === 'xmlhttprequest';
2011-06-08 23:45:08 -05:00
}
/**
* Get the route handling the current request.
*
* @return Route
*/
2011-10-29 22:31:50 -05:00
public static function route()
{
2011-10-29 22:31:50 -05:00
return static::$route;
}
2011-08-23 21:04:40 -05:00
2011-11-11 09:52:30 +00:00
}