2 require "openid/fetchers"
5 CA_BUNDLES = ["/etc/ssl/certs/ca-certificates.crt", "/etc/pki/tls/cert.pem"].freeze
7 OpenID.fetcher.ca_file = CA_BUNDLES.find { |f| File.exist?(f) }
8 OpenID::Util.logger = Rails.logger
10 OmniAuth.config.logger = Rails.logger
11 OmniAuth.config.failure_raise_out_environments = []
12 OmniAuth.config.allowed_request_methods = [:post, :patch]
14 if Settings.key?(:memcache_servers)
15 require "openid/store/memcache"
17 openid_store = OpenID::Store::Memcache.new(Dalli::Client.new(Settings.memcache_servers, :namespace => "rails"))
19 require "openid/store/filesystem"
21 openid_store = OpenID::Store::Filesystem.new(Rails.root.join("tmp/openids"))
24 openid_options = { :name => "openid", :store => openid_store }
25 google_options = { :name => "google", :scope => "email", :access_type => "online" }
26 facebook_options = { :name => "facebook", :scope => "email", :client_options => { :site => "https://graph.facebook.com/v4.0", :authorize_url => "https://www.facebook.com/v4.0/dialog/oauth" } }
27 microsoft_options = { :name => "microsoft", :scope => "openid User.Read" }
28 github_options = { :name => "github", :scope => "user:email" }
29 wikipedia_options = { :name => "wikipedia", :client_options => { :site => "https://meta.wikimedia.org" } }
31 google_options[:openid_realm] = Settings.google_openid_realm if Settings.key?(:google_openid_realm)
33 Rails.application.config.middleware.use OmniAuth::Builder do
34 provider :openid, openid_options
35 provider :google_oauth2, Settings.google_auth_id, Settings.google_auth_secret, google_options if Settings.key?(:google_auth_id)
36 provider :facebook, Settings.facebook_auth_id, Settings.facebook_auth_secret, facebook_options if Settings.key?(:facebook_auth_id)
37 provider :microsoft_graph, Settings.microsoft_auth_id, Settings.microsoft_auth_secret, microsoft_options if Settings.key?(:microsoft_auth_id)
38 provider :github, Settings.github_auth_id, Settings.github_auth_secret, github_options if Settings.key?(:github_auth_id)
39 provider :mediawiki, Settings.wikipedia_auth_id, Settings.wikipedia_auth_secret, wikipedia_options if Settings.key?(:wikipedia_auth_id)