2 // System.Web.Security.MembershipHelper
5 // Ben Maurer (bmaurer@users.sourceforge.net)
6 // Lluis Sanchez Gual (lluis@novell.com)
9 // Copyright (C) 2005-2010 Novell, Inc (http://www.novell.com)
11 // Permission is hereby granted, free of charge, to any person obtaining
12 // a copy of this software and associated documentation files (the
13 // "Software"), to deal in the Software without restriction, including
14 // without limitation the rights to use, copy, modify, merge, publish,
15 // distribute, sublicense, and/or sell copies of the Software, and to
16 // permit persons to whom the Software is furnished to do so, subject to
17 // the following conditions:
19 // The above copyright notice and this permission notice shall be
20 // included in all copies or substantial portions of the Software.
22 // THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
23 // EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
24 // MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
25 // NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE
26 // LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION
27 // OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION
28 // WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
31 using System.Configuration.Provider;
32 using System.Security.Cryptography;
33 using System.Web.Configuration;
34 using System.Web.Util;
36 namespace System.Web.Security
38 sealed class MembershipHelper
43 internal const int SALT_BYTES = 16;
45 public int UserIsOnlineTimeWindow {
46 get { return Membership.UserIsOnlineTimeWindow; }
49 public MembershipProviderCollection Providers {
50 get { return Membership.Providers; }
53 static SymmetricAlgorithm GetAlgorithm ()
55 MachineKeySection section = MachineKeySection.Config;
57 if (section.DecryptionKey.StartsWith ("AutoGenerate"))
58 throw new ProviderException ("You must explicitly specify a decryption key in the <machineKey> section when using encrypted passwords.");
60 SymmetricAlgorithm sa = section.GetDecryptionAlgorithm ();
62 throw new ProviderException (String.Format ("Unsupported decryption attribute '{0}' in <machineKey> configuration section", section.Decryption));
64 sa.Key = section.GetDecryptionKey ();
68 public byte [] DecryptPassword (byte [] encodedPassword)
70 using (SymmetricAlgorithm sa = GetAlgorithm ()) {
71 return MachineKeySectionUtils.Decrypt (sa, encodedPassword, 0, encodedPassword.Length);
75 public byte[] EncryptPassword (byte[] password)
77 using (SymmetricAlgorithm sa = GetAlgorithm ()) {
78 return MachineKeySectionUtils.Encrypt (sa, password);