Compare commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
010ee6aef5 | ||
|
|
039609a99c | ||
|
|
b3899c1480 | ||
|
|
3423c1eeb1 | ||
|
|
21bfaf7657 | ||
|
|
9dba08f179 | ||
|
|
438b19e170 | ||
|
|
69d908bac3 | ||
|
|
7d2faba4f2 | ||
|
|
e9b59fc1dd | ||
|
|
1ab7bd4ae1 | ||
|
|
d83591c8a4 | ||
|
|
0cab4e8530 | ||
|
|
b678c098cb | ||
|
|
e3ee24c131 | ||
|
|
8e0b8b737b | ||
|
|
e5e34b4ad3 | ||
|
|
2385307fd3 | ||
|
|
04e1fbfc7a | ||
|
|
27f4443818 | ||
|
|
5edeba0799 | ||
|
|
f596a1bbf9
|
||
|
|
7e7e561008
|
||
|
|
a19262d9a1
|
||
|
|
1cea3442ff
|
||
|
|
1ae7dc8aab
|
||
|
|
dbebaaed39
|
||
|
|
be379543bb
|
||
|
|
b60ce6ee53
|
||
|
|
6dc22d0a1d
|
||
|
|
776740e087
|
||
|
|
6713508de9
|
||
|
|
112b94f59e
|
||
|
|
775410907b
|
||
|
|
2badd0ca4d
|
||
|
|
c053a0a6cf
|
||
|
|
42dd25691c
|
||
|
|
26842175fe
|
||
|
|
dd46122270
|
||
|
|
cfae02d68f
|
||
|
|
b4cc08bfaa
|
||
|
|
37e411f58f
|
||
|
|
1a6be5f541
|
||
|
|
f6c43c283a
|
||
|
|
601193738b
|
||
|
|
9d70311648
|
||
|
|
8d358356b9
|
||
|
|
bceadfe7a6
|
||
|
|
e2f3dbbb32
|
||
|
|
0d1c0961e2
|
||
|
|
609cc22b51 | ||
|
|
2da394c7a4 |
+9
-7
@@ -1,9 +1,11 @@
|
|||||||
SECRET_KEY=NULqYIzgt28bTiyziCd7IOO7b6LnWDW!
|
SECRET_KEY=NULqYIzgt28bTiyziCd7IOO7b6LnWDW!
|
||||||
DB_NAME=textsender_auth_db
|
DB_AUTH_NAME=schedtxt_auth_db
|
||||||
DB_USER=textsender_auth
|
DB_AUTH_USER=schedtxt_auth
|
||||||
DB_PASSWORD=password
|
DB_AUTH_PASSWORD=password
|
||||||
DB_HOST=auth_db
|
DB_AUTH_HOST=auth_db
|
||||||
DB_PORT=5432
|
DB_AUTH_PORT=5432
|
||||||
DB_SSLMODE=disable
|
DB_AUTH_SSLMODE=disable
|
||||||
|
DATABASE_URL=postgres://${DB_AUTH_USER}:${DB_AUTH_PASSWORD}@${DB_AUTH_HOST}:${DB_AUTH_PORT}/${DB_AUTH_NAME}
|
||||||
ENABLE_REGISTRATION=true
|
ENABLE_REGISTRATION=true
|
||||||
ALLOWED_ORIGINS="http://textsender.com"
|
ALLOWED_ORIGINS="http://schedtxt.com,http://localhost:5173,http://localhost:9080"
|
||||||
|
APP_ENV=production
|
||||||
|
|||||||
@@ -0,0 +1,11 @@
|
|||||||
|
SECRET_KEY=NULqYIzgt28bTiyziCd7IOO7b6LnWDW!
|
||||||
|
DB_AUTH_NAME=schedtxt_auth_db
|
||||||
|
DB_AUTH_USER=schedtxt_auth
|
||||||
|
DB_AUTH_PASSWORD=password
|
||||||
|
DB_AUTH_HOST=localhost
|
||||||
|
DB_AUTH_PORT=5432
|
||||||
|
DB_AUTH_SSLMODE=disable
|
||||||
|
DATABASE_URL=postgres://${DB_AUTH_USER}:${DB_AUTH_PASSWORD}@${DB_AUTH_HOST}:${DB_AUTH_PORT}/${DB_AUTH_NAME}
|
||||||
|
ENABLE_REGISTRATION=true
|
||||||
|
ALLOWED_ORIGINS="http://schedtxt.com,http://localhost:5173,http://localhost:9080"
|
||||||
|
APP_ENV=production
|
||||||
@@ -1,9 +0,0 @@
|
|||||||
SECRET_KEY=NULqYIzgt28bTiyziCd7IOO7b6LnWDW!
|
|
||||||
DB_NAME=textsender_auth_db
|
|
||||||
DB_USER=textsender_auth
|
|
||||||
DB_PASSWORD=yEDjWZCH2vdctjn!
|
|
||||||
DB_HOST=localhost
|
|
||||||
DB_PORT=5432
|
|
||||||
DB_SSLMODE=disable
|
|
||||||
ENABLE_REGISTRATION=true
|
|
||||||
ALLOWED_ORIGINS="http://textsender.com"
|
|
||||||
@@ -0,0 +1,72 @@
|
|||||||
|
name: pr Build
|
||||||
|
|
||||||
|
on:
|
||||||
|
pull_request:
|
||||||
|
branches:
|
||||||
|
- main
|
||||||
|
|
||||||
|
concurrency:
|
||||||
|
group: ${{ github.workflow }}-${{ github.ref }}
|
||||||
|
cancel-in-progress: true
|
||||||
|
|
||||||
|
jobs:
|
||||||
|
check:
|
||||||
|
name: Check
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
|
||||||
|
cargo check
|
||||||
|
|
||||||
|
|
||||||
|
fmt:
|
||||||
|
name: Rustfmt
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add rustfmt
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo fmt --all -- --check
|
||||||
|
|
||||||
|
clippy:
|
||||||
|
name: Clippy
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add clippy
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo clippy -- -D warnings
|
||||||
@@ -1,130 +0,0 @@
|
|||||||
name: Go
|
|
||||||
|
|
||||||
on:
|
|
||||||
push:
|
|
||||||
branches: [ main ]
|
|
||||||
pull_request:
|
|
||||||
branches: [ main ]
|
|
||||||
|
|
||||||
jobs:
|
|
||||||
build:
|
|
||||||
runs-on: ubuntu-24.04 # You can change this to macos-latest or windows-latest if needed
|
|
||||||
|
|
||||||
steps:
|
|
||||||
- uses: actions/checkout@v5
|
|
||||||
|
|
||||||
- name: Set up Go
|
|
||||||
uses: actions/setup-go@v6
|
|
||||||
with:
|
|
||||||
go-version: '1.26.1' # You can specify a specific version or 'stable'
|
|
||||||
|
|
||||||
- name: Build
|
|
||||||
run: |
|
|
||||||
echo "Initializing config"
|
|
||||||
mkdir -p ~/.ssh
|
|
||||||
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/textsender_models_deploy_key
|
|
||||||
chmod 600 ~/.ssh/textsender_models_deploy_key
|
|
||||||
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
|
||||||
|
|
||||||
eval $(ssh-agent -s)
|
|
||||||
ssh-add -v ~/.ssh/textsender_models_deploy_key
|
|
||||||
|
|
||||||
go env -w GOPRIVATE='${{ secrets.GIT_HOST_ROOT }}'
|
|
||||||
|
|
||||||
echo "Creating local .gitconfig"
|
|
||||||
touch ~/.gitconfig
|
|
||||||
cat > ~/.gitconfig << "EOF"
|
|
||||||
[url "ssh://git@${{ secrets.GIT_HOST_ROOT }}"]
|
|
||||||
insteadOf = https://${{ secrets.GIT_HOST_ROOT }}
|
|
||||||
EOF
|
|
||||||
|
|
||||||
echo "Building binary"
|
|
||||||
make build
|
|
||||||
|
|
||||||
echo "Binary built"
|
|
||||||
file textsender-auth
|
|
||||||
|
|
||||||
test:
|
|
||||||
name: Test
|
|
||||||
runs-on: ubuntu-24.04
|
|
||||||
services:
|
|
||||||
postgres:
|
|
||||||
image: postgres:18.3-alpine
|
|
||||||
env:
|
|
||||||
POSTGRES_USER: ${{ secrets.DB_TEST_USER }}
|
|
||||||
POSTGRES_PASSWORD: ${{ secrets.DB_TEST_PASSWORD }}
|
|
||||||
POSTGRES_DB: ${{ secrets.DB_TEST_NAME }}
|
|
||||||
ports:
|
|
||||||
- 5432:5432
|
|
||||||
options: >-
|
|
||||||
--health-cmd pg_isready
|
|
||||||
--health-interval 10s
|
|
||||||
--health-timeout 5s
|
|
||||||
--health-retries 5
|
|
||||||
steps:
|
|
||||||
- name: Checkout code
|
|
||||||
uses: actions/checkout@v5
|
|
||||||
|
|
||||||
- name: Setup Go
|
|
||||||
uses: actions/setup-go@v6
|
|
||||||
with:
|
|
||||||
go-version: '1.26.1'
|
|
||||||
|
|
||||||
- name: Install PostgreSQL client
|
|
||||||
run: sudo apt update && sudo apt-get install -y postgresql-client
|
|
||||||
|
|
||||||
- name: Wait for PostgreSQL to be ready
|
|
||||||
run: |
|
|
||||||
for i in {1..30}; do
|
|
||||||
if pg_isready -h postgres -p 5432; then
|
|
||||||
echo "PostgreSQL is ready"
|
|
||||||
exit 0
|
|
||||||
fi
|
|
||||||
echo "Waiting for PostgreSQL... Attempt $i"
|
|
||||||
sleep 2
|
|
||||||
done
|
|
||||||
echo "PostgreSQL did not start in time"
|
|
||||||
exit 1
|
|
||||||
|
|
||||||
- name: Run tests
|
|
||||||
env:
|
|
||||||
DB_NAME: ${{ secrets.DB_TEST_NAME }}
|
|
||||||
DB_USER: ${{ secrets.DB_TEST_USER }}
|
|
||||||
DB_PASSWORD: ${{ secrets.DB_TEST_PASSWORD }}
|
|
||||||
DB_HOST: postgres
|
|
||||||
DB_PORT: 5432
|
|
||||||
DB_SSLMODE: disable
|
|
||||||
SECRET_KEY: ${{ secrets.SECRET_KEY }}
|
|
||||||
run: |
|
|
||||||
echo "Parent directory"
|
|
||||||
echo `pwd`
|
|
||||||
|
|
||||||
echo "SECRET_KEY=$SECRET_KEY" > .env
|
|
||||||
echo "DB_NAME=$DB_NAME" >> .env
|
|
||||||
echo "DB_USER=$DB_USER" >> .env
|
|
||||||
echo "DB_PASSWORD=$DB_PASSWORD" >> .env
|
|
||||||
echo "DB_HOST=$DB_HOST" >> .env
|
|
||||||
echo "DB_PORT=$DB_PORT" >> .env
|
|
||||||
echo "DB_SSLMODE=$DB_SSLMODE" >> .env
|
|
||||||
echo "ENABLE_REGISTRATION=true" >> .env
|
|
||||||
echo "ALLOWED_ORIGINS=http://localhost:9080" >> .env
|
|
||||||
|
|
||||||
echo "Initializing config"
|
|
||||||
mkdir -p ~/.ssh
|
|
||||||
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/textsender_models_deploy_key
|
|
||||||
chmod 600 ~/.ssh/textsender_models_deploy_key
|
|
||||||
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
|
||||||
|
|
||||||
eval $(ssh-agent -s)
|
|
||||||
ssh-add -v ~/.ssh/textsender_models_deploy_key
|
|
||||||
|
|
||||||
go env -w GOPRIVATE='${{ secrets.GIT_HOST_ROOT }}'
|
|
||||||
|
|
||||||
echo "Creating local .gitconfig"
|
|
||||||
touch ~/.gitconfig
|
|
||||||
cat > ~/.gitconfig << "EOF"
|
|
||||||
[url "ssh://git@${{ secrets.GIT_HOST_ROOT }}"]
|
|
||||||
insteadOf = https://${{ secrets.GIT_HOST_ROOT }}
|
|
||||||
EOF
|
|
||||||
|
|
||||||
go test -v ./...
|
|
||||||
@@ -0,0 +1,150 @@
|
|||||||
|
name: schedtxt_auth Build
|
||||||
|
|
||||||
|
on:
|
||||||
|
push:
|
||||||
|
branches:
|
||||||
|
- main
|
||||||
|
|
||||||
|
concurrency:
|
||||||
|
group: ${{ github.workflow }}-${{ github.ref }}
|
||||||
|
cancel-in-progress: true
|
||||||
|
|
||||||
|
jobs:
|
||||||
|
check:
|
||||||
|
name: Check
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
|
||||||
|
cargo check
|
||||||
|
|
||||||
|
test:
|
||||||
|
name: Test Suite
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
# --- Add database service definition ---
|
||||||
|
services:
|
||||||
|
postgres:
|
||||||
|
image: postgres:18.4-alpine
|
||||||
|
env:
|
||||||
|
# Use secrets for DB init, with fallbacks for flexibility
|
||||||
|
POSTGRES_USER: ${{ secrets.DB_TEST_USER || 'testuser' }}
|
||||||
|
POSTGRES_PASSWORD: ${{ secrets.DB_TEST_PASSWORD || 'testpassword' }}
|
||||||
|
POSTGRES_DB: ${{ secrets.DB_TEST_NAME || 'testdb' }}
|
||||||
|
POSTGRES_PORT: ${{ secrets.DB_PORT || 5432 }}
|
||||||
|
# Options to wait until the database is ready
|
||||||
|
options: >-
|
||||||
|
--health-cmd pg_isready
|
||||||
|
--health-interval 10s
|
||||||
|
--health-timeout 5s
|
||||||
|
--health-retries 5
|
||||||
|
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
# --- Add this step for explicit verification ---
|
||||||
|
- name: Verify Docker Environment
|
||||||
|
run: |
|
||||||
|
echo "Runner User Info:"
|
||||||
|
id
|
||||||
|
echo "Checking Docker Version:"
|
||||||
|
docker --version
|
||||||
|
echo "Checking Docker Daemon Status (info):"
|
||||||
|
docker info
|
||||||
|
echo "Checking Docker Daemon Status (ps):"
|
||||||
|
docker ps -a
|
||||||
|
echo "Docker environment check complete."
|
||||||
|
# NOTE: Do NOT use continue-on-error here.
|
||||||
|
# If Docker isn't working as expected, the job SHOULD fail here.
|
||||||
|
- name: Run tests
|
||||||
|
env:
|
||||||
|
# Define DATABASE_URL for tests to use
|
||||||
|
DATABASE_URL: postgresql://${{ secrets.DB_TEST_USER || 'testuser' }}:${{ secrets.DB_TEST_PASSWORD || 'testpassword' }}@postgres:${{ secrets.DB_PORT || 5432 }}/${{ secrets.DB_TEST_NAME || 'testdb' }}
|
||||||
|
RUST_LOG: info # Optional: configure test log level
|
||||||
|
SECRET_KEY: ${{ secrets.TOKEN_SECRET_KEY }}
|
||||||
|
# Make SSH agent available if tests fetch private dependencies
|
||||||
|
SSH_AUTH_SOCK: ${{ env.SSH_AUTH_SOCK }}
|
||||||
|
ENABLE_REGISTRATION: 'TRUE'
|
||||||
|
run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
|
||||||
|
cargo test
|
||||||
|
|
||||||
|
fmt:
|
||||||
|
name: Rustfmt
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add rustfmt
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo fmt --all -- --check
|
||||||
|
|
||||||
|
clippy:
|
||||||
|
name: Clippy
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add clippy
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo clippy -- -D warnings
|
||||||
|
|
||||||
|
build:
|
||||||
|
name: build
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo build --release
|
||||||
+1
-3
@@ -1,7 +1,5 @@
|
|||||||
/textsender-auth
|
|
||||||
|
|
||||||
.env
|
.env
|
||||||
.env.local
|
.env.local
|
||||||
.env.docker
|
.env.docker
|
||||||
|
|
||||||
/vendor
|
/target
|
||||||
|
|||||||
Generated
+2443
File diff suppressed because it is too large
Load Diff
+27
@@ -0,0 +1,27 @@
|
|||||||
|
[package]
|
||||||
|
name = "schedtxt_auth"
|
||||||
|
version = "0.2.4"
|
||||||
|
edition = "2024"
|
||||||
|
license = "MIT"
|
||||||
|
description = "Auth API for sending text messages"
|
||||||
|
rust-version = "1.97"
|
||||||
|
|
||||||
|
[dependencies]
|
||||||
|
axum = { version = "0.8.9" }
|
||||||
|
serde = { version = "1.0.228", features = ["derive"] }
|
||||||
|
serde_json = { version = "1.0.150" }
|
||||||
|
tokio = { version = "1.52.3", features = ["rt-multi-thread"] }
|
||||||
|
tracing-subscriber = { version = "0.3.23" }
|
||||||
|
tower-http = { version = "0.7.0", features = ["cors"] }
|
||||||
|
sqlx = { version = "0.9.0", features = ["runtime-tokio", "tls-native-tls", "postgres", "time", "uuid"] }
|
||||||
|
uuid = { version = "1.23.5", features = ["v4", "serde"] }
|
||||||
|
argon2 = { version = "0.5.3", features = ["std"] }
|
||||||
|
time = { version = "0.3.53", features = ["macros", "serde"] }
|
||||||
|
josekit = { version = "0.10.3" }
|
||||||
|
utoipa = { version = "5.5.0", features = ["axum_extras"] }
|
||||||
|
utoipa-swagger-ui = { version = "9.0.2", features = ["axum"] }
|
||||||
|
schedtxt_models = { git = "ssh://git@git.kundeng.us/phoenix/schedtxt_models.git", tag = "v0.5.3", features = ["config", "user"] }
|
||||||
|
|
||||||
|
[dev-dependencies]
|
||||||
|
tower = { version = "0.5.3", features = ["full"] }
|
||||||
|
url = { version = "2.5.8" }
|
||||||
+25
-34
@@ -1,53 +1,44 @@
|
|||||||
# Multi-stage Dockerfile for Go application
|
FROM rust:1.97 as builder
|
||||||
FROM golang:1.26.1 AS builder
|
|
||||||
|
|
||||||
WORKDIR /app
|
WORKDIR /usr/src/app
|
||||||
|
|
||||||
|
# Install build dependencies if needed (e.g., git for cloning)
|
||||||
RUN apt-get update && apt-get install -y --no-install-recommends \
|
RUN apt-get update && apt-get install -y --no-install-recommends \
|
||||||
|
pkg-config libssl3 \
|
||||||
ca-certificates \
|
ca-certificates \
|
||||||
openssh-client git
|
openssh-client git \
|
||||||
|
&& rm -rf /var/lib/apt/lists/*
|
||||||
|
|
||||||
RUN mkdir -p -m 0700 ~/.ssh && \
|
RUN mkdir -p -m 0700 ~/.ssh && \
|
||||||
ssh-keyscan git.kundeng.us >> ~/.ssh/known_hosts
|
ssh-keyscan git.kundeng.us >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
# Configure Git to use SSH for GitHub
|
COPY Cargo.toml Cargo.lock ./
|
||||||
RUN git config --global url."ssh://git@git.kundeng.us".insteadOf "https://git.kundeng.us"
|
|
||||||
|
|
||||||
# Set up the Go environment for private modules
|
|
||||||
ENV GOPRIVATE=git.kundeng.us
|
|
||||||
|
|
||||||
|
|
||||||
# Copy go mod and sum files
|
|
||||||
COPY go.mod go.sum ./
|
|
||||||
|
|
||||||
RUN --mount=type=ssh mkdir src && \
|
RUN --mount=type=ssh mkdir src && \
|
||||||
go mod download
|
echo "fn main() {println!(\"if you see this, the build broke\")}" > src/main.rs && \
|
||||||
|
cargo build --release --quiet && \
|
||||||
|
rm -rf src target/release/deps/schedtxt_auth*
|
||||||
|
|
||||||
# Copy source code
|
COPY src ./src
|
||||||
COPY ./cmd ./cmd
|
COPY .env ./.env
|
||||||
COPY ./internal ./internal
|
COPY migrations ./migrations
|
||||||
COPY ./Makefile .
|
|
||||||
COPY ./.env .
|
|
||||||
COPY ./migrations ./migrations
|
|
||||||
COPY ./docs ./docs
|
|
||||||
|
|
||||||
# Build the application
|
RUN --mount=type=ssh \
|
||||||
RUN CGO_ENABLED=0 GOOS=linux make build
|
cargo build --release --quiet
|
||||||
|
|
||||||
# Runtime stage
|
FROM debian:trixie-slim
|
||||||
FROM alpine:latest AS production
|
|
||||||
|
|
||||||
RUN apk --no-cache add ca-certificates
|
# Install runtime dependencies if needed (e.g., SSL certificates)
|
||||||
|
RUN apt-get update && apt-get install -y ca-certificates libssl-dev libssl3 && rm -rf /var/lib/apt/lists/*
|
||||||
|
|
||||||
WORKDIR /root/
|
WORKDIR /usr/local/bin
|
||||||
|
|
||||||
# Copy the pre-built binary file from the previous stage
|
COPY --from=builder /usr/src/app/target/release/schedtxt_auth .
|
||||||
COPY --from=builder /app/textsender-auth .
|
|
||||||
COPY --from=builder /app/.env ./
|
COPY --from=builder /usr/src/app/.env .
|
||||||
COPY --from=builder /app/migrations ./migrations
|
COPY --from=builder /usr/src/app/migrations ./migrations
|
||||||
|
|
||||||
# Expose port
|
|
||||||
EXPOSE 9080
|
EXPOSE 9080
|
||||||
|
|
||||||
# Command to run the executable
|
# Set the command to run your application
|
||||||
CMD ["./textsender-auth"]
|
CMD ["./schedtxt_auth"]
|
||||||
|
|||||||
+22
@@ -0,0 +1,22 @@
|
|||||||
|
Copyright (c) 2026 Kun Deng.
|
||||||
|
|
||||||
|
Permission is hereby granted, free of charge, to any person
|
||||||
|
obtaining a copy of this software and associated documentation
|
||||||
|
files (the "Software"), to deal in the Software without
|
||||||
|
restriction, including without limitation the rights to use,
|
||||||
|
copy, modify, merge, publish, distribute, sublicense, and/or sell
|
||||||
|
copies of the Software, and to permit persons to whom the
|
||||||
|
Software is furnished to do so, subject to the following
|
||||||
|
conditions:
|
||||||
|
|
||||||
|
The above copyright notice and this permission notice shall be
|
||||||
|
included in all copies or substantial portions of the Software.
|
||||||
|
|
||||||
|
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
|
||||||
|
EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES
|
||||||
|
OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
|
||||||
|
NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT
|
||||||
|
HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY,
|
||||||
|
WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
|
||||||
|
FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR
|
||||||
|
OTHER DEALINGS IN THE SOFTWARE.
|
||||||
@@ -1,21 +0,0 @@
|
|||||||
VERSION ?= $(shell git describe --tags 2>/dev/null || echo "dev")
|
|
||||||
COMMIT ?= $(shell git rev-parse --short HEAD)
|
|
||||||
BUILD_TIME ?= $(shell date -u +%Y-%m-%dT%H:%M:%SZ)
|
|
||||||
GO_VERSION ?= $(shell go version | awk '{print $$3}')
|
|
||||||
|
|
||||||
.PHONY: build
|
|
||||||
build:
|
|
||||||
go build -ldflags="\
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.Version=$(VERSION)' \
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.BuildTime=$(BUILD_TIME)' \
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.Commit=$(COMMIT)' \
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.GoVersion=$(GO_VERSION)'" \
|
|
||||||
-o textsender-auth cmd/api/main.go
|
|
||||||
|
|
||||||
.PHONY: install
|
|
||||||
install:
|
|
||||||
go install -ldflags="\
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.Version=$(VERSION)' \
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.BuildTime=$(BUILD_TIME)' \
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.Commit=$(COMMIT)' \
|
|
||||||
-X 'git.kundeng.us/phoenix/textsender-auth/internal/version.GoVersion=$(GO_VERSION)'"
|
|
||||||
@@ -1,30 +1,22 @@
|
|||||||
# textsender-auth
|
# schedtxt_auth
|
||||||
A service that handles the authorization aspect of the textsender project.
|
Auth API for `schedtxt` project.
|
||||||
|
|
||||||
|
|
||||||
## Getting started
|
## Getting started
|
||||||
Assumes that the postgresql database has already been created with privileges to
|
Quickest way to get started is with docker, make sure that it is installed. Copy over
|
||||||
create and drop databases. Copy the `.env.sample` file to `.env`. Within the `.env`
|
the `.env.docker.sample` file and name it `.env`.
|
||||||
file, update the database keys. The `SECRET_KEY` is used for token generation.
|
|
||||||
|
|
||||||
|
For `SECRET_KEY` provide a key that is at least 32-characters. This is used for token
|
||||||
|
creation. Additionally, provide credentials for the database for the `DB_*` keys.
|
||||||
|
|
||||||
### Building api
|
Make sure that `ENABLE_REGISTRATION` is set to true, otherwise registration will not work.
|
||||||
|
|
||||||
|
Build the container
|
||||||
```
|
```
|
||||||
make build
|
docker compose build
|
||||||
```
|
```
|
||||||
|
|
||||||
|
Bring up the container
|
||||||
### Resetting the database
|
|
||||||
```
|
```
|
||||||
./textsender-auth -reset-db
|
docker compose up
|
||||||
```
|
```
|
||||||
|
|
||||||
|
|
||||||
Generate API documentation
|
|
||||||
```
|
|
||||||
go install github.com/swaggo/swag/cmd/swag@latest
|
|
||||||
|
|
||||||
swag init --generalInfo main.go --dir ./cmd/api,./internal/handler --output docs/ --parseDependency --parseInternal
|
|
||||||
```
|
|
||||||
|
|
||||||
The API documentation can be viewed from `http://localhost:9080/swagger/index.html`.
|
|
||||||
|
|||||||
-144
@@ -1,144 +0,0 @@
|
|||||||
package main
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"net/http"
|
|
||||||
"os"
|
|
||||||
"os/signal"
|
|
||||||
"syscall"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"github.com/go-chi/chi/v5"
|
|
||||||
"github.com/go-chi/chi/v5/middleware"
|
|
||||||
"github.com/go-chi/cors"
|
|
||||||
"github.com/swaggo/http-swagger/v2"
|
|
||||||
|
|
||||||
_ "git.kundeng.us/phoenix/textsender-auth/docs"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
database "git.kundeng.us/phoenix/textsender-auth/internal/db"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler/endpoint"
|
|
||||||
mdleware "git.kundeng.us/phoenix/textsender-auth/internal/middleware"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/services"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store"
|
|
||||||
)
|
|
||||||
|
|
||||||
// @title textsender-auth
|
|
||||||
// @version 1.0
|
|
||||||
// @description Auth API to send text messages
|
|
||||||
|
|
||||||
// @host localhost:9080
|
|
||||||
// @BasePath /api/v1
|
|
||||||
|
|
||||||
// @securityDefinitions.apikey BearerAuth
|
|
||||||
// @in header
|
|
||||||
// @name Authorization
|
|
||||||
// @description JWT Bearer Token
|
|
||||||
func main() {
|
|
||||||
cfg := config.Load()
|
|
||||||
if cfg == nil {
|
|
||||||
fmt.Println("Error initializing config")
|
|
||||||
os.Exit(-1)
|
|
||||||
}
|
|
||||||
|
|
||||||
db, err := database.NewDatabase(cfg.GetDBConnString())
|
|
||||||
if err != nil {
|
|
||||||
log.Fatalf("Failed to connect to database: %v", err)
|
|
||||||
}
|
|
||||||
defer db.Close()
|
|
||||||
|
|
||||||
ctx := context.Background()
|
|
||||||
|
|
||||||
if cfg.ResetDB {
|
|
||||||
if err := db.ResetDatabase(ctx); err != nil {
|
|
||||||
log.Fatalf("Failed to reset database: %v", err)
|
|
||||||
} else {
|
|
||||||
log.Println("Resetting database")
|
|
||||||
log.Println("Database reset completed. Exiting.")
|
|
||||||
}
|
|
||||||
return
|
|
||||||
} else {
|
|
||||||
if exists, err := database.TableExists(ctx, db.Pool, "users"); err == nil {
|
|
||||||
if !exists {
|
|
||||||
if err = db.ResetDatabase(ctx); err != nil {
|
|
||||||
fmt.Println("Error:", err)
|
|
||||||
} else {
|
|
||||||
fmt.Println("Database reset")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
fmt.Println("Error:", err)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// Services
|
|
||||||
userStore := store.NewUserStore(db.Pool)
|
|
||||||
serviceStore := store.NewServiceStore(db.Pool)
|
|
||||||
|
|
||||||
userHandler := handler.NewUserHandler(cfg, userStore)
|
|
||||||
loginHandler := handler.NewLoginHandler(cfg, userStore)
|
|
||||||
serviceHandler := handler.NewServiceHandler(cfg, serviceStore)
|
|
||||||
refreshHandler := handler.NewRefreshHandler(cfg, userStore, serviceStore)
|
|
||||||
|
|
||||||
router := chi.NewRouter()
|
|
||||||
jwtService := services.NewJWTService(config.GetSecretKey())
|
|
||||||
|
|
||||||
// Configure CORS
|
|
||||||
router.Use(cors.Handler(cors.Options{
|
|
||||||
AllowedOrigins: cfg.AllowedOrigins,
|
|
||||||
AllowedMethods: []string{"GET", "POST", "PUT", "DELETE", "OPTIONS", "PATCH"},
|
|
||||||
AllowedHeaders: []string{"Accept", "Authorization", "Content-Type", "X-CSRF-Token"},
|
|
||||||
ExposedHeaders: []string{"Link", "X-Total-Count"},
|
|
||||||
AllowCredentials: true,
|
|
||||||
MaxAge: 300, // 5 minutes
|
|
||||||
}))
|
|
||||||
router.Use(middleware.Logger)
|
|
||||||
router.Use(middleware.Recoverer)
|
|
||||||
router.Use(middleware.Timeout(60 * time.Second))
|
|
||||||
router.Use(mdleware.JSONContentType)
|
|
||||||
|
|
||||||
router.Method("Post", endpoint.Register, http.HandlerFunc(userHandler.Register))
|
|
||||||
router.Method("Post", endpoint.Login, http.HandlerFunc(loginHandler.Login))
|
|
||||||
router.Method("Post", endpoint.CreateServiceUser, http.HandlerFunc(serviceHandler.Register))
|
|
||||||
router.Method("Post", endpoint.LoginServiceUser, http.HandlerFunc(serviceHandler.Login))
|
|
||||||
router.Method("Post", endpoint.TokenRefresh, http.HandlerFunc(refreshHandler.Refresh))
|
|
||||||
router.Method("PATCH", endpoint.UpdatePassword, mdleware.AuthMiddleware(jwtService)(http.HandlerFunc(loginHandler.UpdatePassword)))
|
|
||||||
|
|
||||||
router.Method("GET", "/swagger/*", httpSwagger.Handler(
|
|
||||||
httpSwagger.URL(fmt.Sprintf("http://localhost:%s/swagger/doc.json", config.Port)),
|
|
||||||
))
|
|
||||||
|
|
||||||
// Start server
|
|
||||||
server := &http.Server{
|
|
||||||
Addr: ":" + cfg.ServerPort,
|
|
||||||
Handler: router,
|
|
||||||
ReadTimeout: 15 * time.Second,
|
|
||||||
WriteTimeout: 15 * time.Second,
|
|
||||||
IdleTimeout: 60 * time.Second,
|
|
||||||
}
|
|
||||||
|
|
||||||
// Graceful shutdown
|
|
||||||
go func() {
|
|
||||||
log.Printf("Server starting on port %s", cfg.ServerPort)
|
|
||||||
if err := server.ListenAndServe(); err != nil && err != http.ErrServerClosed {
|
|
||||||
log.Fatalf("Server failed to start: %v", err)
|
|
||||||
}
|
|
||||||
}()
|
|
||||||
|
|
||||||
// Wait for interrupt signal
|
|
||||||
quit := make(chan os.Signal, 1)
|
|
||||||
signal.Notify(quit, syscall.SIGINT, syscall.SIGTERM)
|
|
||||||
<-quit
|
|
||||||
log.Println("Shutting down server...")
|
|
||||||
|
|
||||||
ctx, cancel := context.WithTimeout(context.Background(), 30*time.Second)
|
|
||||||
defer cancel()
|
|
||||||
|
|
||||||
if err := server.Shutdown(ctx); err != nil {
|
|
||||||
log.Fatalf("Server forced to shutdown: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
log.Println("Server exited")
|
|
||||||
}
|
|
||||||
@@ -1,96 +0,0 @@
|
|||||||
package main
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"flag"
|
|
||||||
"fmt"
|
|
||||||
"net/http"
|
|
||||||
"os"
|
|
||||||
"path"
|
|
||||||
"testing"
|
|
||||||
|
|
||||||
"github.com/go-chi/chi/v5"
|
|
||||||
"github.com/joho/godotenv"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/db"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler/endpoint"
|
|
||||||
mdleware "git.kundeng.us/phoenix/textsender-auth/internal/middleware"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/services"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store"
|
|
||||||
)
|
|
||||||
|
|
||||||
var testRouter *chi.Mux
|
|
||||||
|
|
||||||
func TestMain(m *testing.M) {
|
|
||||||
cfg := load()
|
|
||||||
|
|
||||||
database, err := db.NewDatabase(cfg.GetDBConnString())
|
|
||||||
if err != nil {
|
|
||||||
fmt.Println(err.Error())
|
|
||||||
panic("Failed to initialize database")
|
|
||||||
}
|
|
||||||
defer database.Close()
|
|
||||||
|
|
||||||
ctx := context.Background()
|
|
||||||
err = database.ResetDatabase(ctx)
|
|
||||||
if err != nil {
|
|
||||||
fmt.Println(err.Error())
|
|
||||||
panic("Failed to initialize database")
|
|
||||||
}
|
|
||||||
|
|
||||||
userStore := store.NewUserStore(database.Pool)
|
|
||||||
serviceStore := store.NewServiceStore(database.Pool)
|
|
||||||
userHandler := handler.NewUserHandler(cfg, userStore)
|
|
||||||
loginHandler := handler.NewLoginHandler(cfg, userStore)
|
|
||||||
serviceHandler := handler.NewServiceHandler(cfg, serviceStore)
|
|
||||||
refreshHandler := handler.NewRefreshHandler(cfg, userStore, serviceStore)
|
|
||||||
|
|
||||||
testRouter = chi.NewRouter()
|
|
||||||
jwtService := services.NewJWTService(config.GetSecretKey())
|
|
||||||
testRouter.Method("POST", endpoint.Register, http.HandlerFunc(userHandler.Register))
|
|
||||||
testRouter.Method("POST", endpoint.Login, http.HandlerFunc(loginHandler.Login))
|
|
||||||
testRouter.Method("POST", endpoint.CreateServiceUser, http.HandlerFunc(serviceHandler.Register))
|
|
||||||
testRouter.Method("POST", endpoint.LoginServiceUser, http.HandlerFunc(serviceHandler.Login))
|
|
||||||
testRouter.Method("POST", endpoint.TokenRefresh, http.HandlerFunc(refreshHandler.Refresh))
|
|
||||||
testRouter.Method("PATCH", endpoint.UpdatePassword, mdleware.AuthMiddleware(jwtService)(http.HandlerFunc(loginHandler.UpdatePassword)))
|
|
||||||
|
|
||||||
code := m.Run()
|
|
||||||
os.Exit(code)
|
|
||||||
}
|
|
||||||
|
|
||||||
func load() *config.Config {
|
|
||||||
resetDb := flag.Bool("reset-db", false, "Reset the database schema and exit")
|
|
||||||
port := flag.String("port", config.Port, "Server port")
|
|
||||||
flag.Parse()
|
|
||||||
|
|
||||||
cwd, _ := os.Getwd()
|
|
||||||
envPath := path.Join(cwd, ".env")
|
|
||||||
|
|
||||||
err := godotenv.Load(envPath)
|
|
||||||
if err != nil {
|
|
||||||
envPath = path.Join(cwd, "../..", ".env")
|
|
||||||
if err := godotenv.Load(envPath); err != nil {
|
|
||||||
panic("Error loading .env file: " + err.Error())
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
unpackedConnString := config.UnpackDBConnString()
|
|
||||||
dbConnString := unpackedConnString.Parse()
|
|
||||||
|
|
||||||
return &config.Config{
|
|
||||||
DBConnString: dbConnString,
|
|
||||||
ServerPort: *port,
|
|
||||||
ResetDB: *resetDb,
|
|
||||||
EnableRegistration: config.CheckRegistration(),
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func resetTestDB(t *testing.T) {
|
|
||||||
t.Helper()
|
|
||||||
_, err := db.Pool.Exec(context.Background(), "DELETE FROM users")
|
|
||||||
if err != nil {
|
|
||||||
t.Fatalf("Failed to reset test database: %v", err)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -1,44 +0,0 @@
|
|||||||
version: '3.8' # Use a recent version
|
|
||||||
|
|
||||||
services:
|
|
||||||
auth_api:
|
|
||||||
build: # Tells docker-compose to build the Dockerfile in the current directory
|
|
||||||
context: .
|
|
||||||
ssh: ["default"] # Uses host's SSH agent
|
|
||||||
container_name: textsender_auth # Optional: Give the container a specific name
|
|
||||||
ports:
|
|
||||||
# Map host port 8000 to container port 3000 (adjust as needed)
|
|
||||||
- "9080:9080"
|
|
||||||
env_file:
|
|
||||||
- .env
|
|
||||||
depends_on:
|
|
||||||
auth_db:
|
|
||||||
condition: service_healthy # Wait for the DB to be healthy before starting the app
|
|
||||||
restart: unless-stopped # Optional: Restart policy
|
|
||||||
|
|
||||||
# PostgreSQL Database Service
|
|
||||||
auth_db:
|
|
||||||
image: postgres:18.3-alpine # Use an official Postgres image (Alpine variant is smaller)
|
|
||||||
container_name: textsender_auth_db # Optional: Give the container a specific name
|
|
||||||
environment:
|
|
||||||
# These MUST match the user, password, and database name in the DATABASE_URL above
|
|
||||||
POSTGRES_USER: ${POSTGRES_AUTH_USER:-textsender_auth}
|
|
||||||
POSTGRES_PASSWORD: ${POSTGRES_AUTH_PASSWORD:-password}
|
|
||||||
POSTGRES_DB: ${POSTGRES_AUTH_DB:-textsender_auth_db}
|
|
||||||
volumes:
|
|
||||||
# Persist database data using a named volume
|
|
||||||
- postgres_data:/var/lib/postgresql/data
|
|
||||||
ports: []
|
|
||||||
healthcheck:
|
|
||||||
# Checks if Postgres is ready to accept connections
|
|
||||||
test: ["CMD-SHELL", "pg_isready -U $$POSTGRES_USER -d $$POSTGRES_DB"]
|
|
||||||
interval: 10s
|
|
||||||
timeout: 5s
|
|
||||||
retries: 5
|
|
||||||
start_period: 10s
|
|
||||||
restart: always # Optional: Restart policy
|
|
||||||
|
|
||||||
# Define the named volume for data persistence
|
|
||||||
volumes:
|
|
||||||
postgres_data:
|
|
||||||
driver: local # Use the default local driver
|
|
||||||
@@ -0,0 +1,42 @@
|
|||||||
|
version: '3.8' # Use a recent version
|
||||||
|
|
||||||
|
services:
|
||||||
|
auth_api:
|
||||||
|
build:
|
||||||
|
context: .
|
||||||
|
ssh: ["default"]
|
||||||
|
container_name: schedtxt_auth
|
||||||
|
ports:
|
||||||
|
- "9080:9080"
|
||||||
|
env_file:
|
||||||
|
- .env
|
||||||
|
depends_on:
|
||||||
|
auth_db:
|
||||||
|
condition: service_healthy
|
||||||
|
restart: unless-stopped
|
||||||
|
|
||||||
|
# PostgreSQL Database Service
|
||||||
|
auth_db:
|
||||||
|
image: postgres:18.4-alpine
|
||||||
|
container_name: schedtxt_auth_db
|
||||||
|
environment:
|
||||||
|
POSTGRES_USER: ${DB_AUTH_USER:-schedtxt_op}
|
||||||
|
POSTGRES_PASSWORD: ${DB_AUTH_PASSWORD:-password}
|
||||||
|
POSTGRES_DB: ${DB_AUTH_NAME:-schedtxt_auth_db}
|
||||||
|
volumes:
|
||||||
|
# Persist database data using a named volume
|
||||||
|
- postgres_data:/var/lib/postgresql
|
||||||
|
ports:
|
||||||
|
- "5433:5432"
|
||||||
|
healthcheck:
|
||||||
|
# Checks if Postgres is ready to accept connections
|
||||||
|
test: ["CMD-SHELL", "pg_isready -U $$POSTGRES_USER -d $$POSTGRES_DB"]
|
||||||
|
interval: 10s
|
||||||
|
timeout: 5s
|
||||||
|
retries: 5
|
||||||
|
start_period: 10s
|
||||||
|
restart: always
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
postgres_data:
|
||||||
|
driver: local
|
||||||
-684
@@ -1,684 +0,0 @@
|
|||||||
// Package docs Code generated by swaggo/swag. DO NOT EDIT
|
|
||||||
package docs
|
|
||||||
|
|
||||||
import "github.com/swaggo/swag"
|
|
||||||
|
|
||||||
const docTemplate = `{
|
|
||||||
"schemes": {{ marshal .Schemes }},
|
|
||||||
"swagger": "2.0",
|
|
||||||
"info": {
|
|
||||||
"description": "{{escape .Description}}",
|
|
||||||
"title": "{{.Title}}",
|
|
||||||
"contact": {},
|
|
||||||
"version": "{{.Version}}"
|
|
||||||
},
|
|
||||||
"host": "{{.Host}}",
|
|
||||||
"basePath": "{{.BasePath}}",
|
|
||||||
"paths": {
|
|
||||||
"/login": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Login and be given an access token (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Login",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to obtain a token",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginAccount"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/register": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Create a user that can send texts (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Register user",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to add user",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterUser"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"403": {
|
|
||||||
"description": "Forbidden",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/service/login": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Servce login and be given an access token (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"service users"
|
|
||||||
],
|
|
||||||
"summary": "Service login",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to obtain a service token",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceLoginRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceLoginResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceLoginResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/service/register": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Create a service user that can send texts (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"service users"
|
|
||||||
],
|
|
||||||
"summary": "Register service user",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to add user",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"403": {
|
|
||||||
"description": "Forbidden",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/token/refresh": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Refresh token endpoint (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"refresh"
|
|
||||||
],
|
|
||||||
"summary": "Obtain a refresh token",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to refresh token",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/user/name/update": {
|
|
||||||
"patch": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Update the first or last name of a user (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Update name of user",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to update name of user",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"403": {
|
|
||||||
"description": "Forbidden",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/user/password/update": {
|
|
||||||
"patch": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Update the password of a regular account (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Update Password",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Needed data to update password",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"definitions": {
|
|
||||||
"git_kundeng_us_phoenix_textsender-models_tx0_user.User": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"created": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"first_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"id": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_login": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"phone_number": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.LoginAccount": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.LoginResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/token.Login"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RefreshRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"access_token": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RefreshResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/token.Login"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RegisterResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponseItem"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RegisterResponseItem": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"id": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"phone_number": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RegisterUser": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"phone_number": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceCreationRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"passphrase": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceCreationResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/user.ServiceUser"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceLoginRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"passphrase": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceLoginResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/token.Login"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdateNameRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"first_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"user_id": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdateNameResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/git_kundeng_us_phoenix_textsender-models_tx0_user.User"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdatePasswordRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"confirmed_password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"current_password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"updated_password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"user_id": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdatePasswordResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/git_kundeng_us_phoenix_textsender-models_tx0_user.User"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"token.Login": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"access_token": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"expires_in": {
|
|
||||||
"type": "integer"
|
|
||||||
},
|
|
||||||
"issued_at": {
|
|
||||||
"type": "integer"
|
|
||||||
},
|
|
||||||
"token_type": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"user_id": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"user.ServiceUser": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"created": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"id": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_login": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"passphrase": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"description": "TODO: Remove the omitempty tags at a later point",
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"securityDefinitions": {
|
|
||||||
"BearerAuth": {
|
|
||||||
"description": "JWT Bearer Token",
|
|
||||||
"type": "apiKey",
|
|
||||||
"name": "Authorization",
|
|
||||||
"in": "header"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}`
|
|
||||||
|
|
||||||
// SwaggerInfo holds exported Swagger Info so clients can modify it
|
|
||||||
var SwaggerInfo = &swag.Spec{
|
|
||||||
Version: "1.0",
|
|
||||||
Host: "localhost:9080",
|
|
||||||
BasePath: "/api/v1",
|
|
||||||
Schemes: []string{},
|
|
||||||
Title: "textsender-auth",
|
|
||||||
Description: "Auth API to send text messages",
|
|
||||||
InfoInstanceName: "swagger",
|
|
||||||
SwaggerTemplate: docTemplate,
|
|
||||||
LeftDelim: "{{",
|
|
||||||
RightDelim: "}}",
|
|
||||||
}
|
|
||||||
|
|
||||||
func init() {
|
|
||||||
swag.Register(SwaggerInfo.InstanceName(), SwaggerInfo)
|
|
||||||
}
|
|
||||||
@@ -1,660 +0,0 @@
|
|||||||
{
|
|
||||||
"swagger": "2.0",
|
|
||||||
"info": {
|
|
||||||
"description": "Auth API to send text messages",
|
|
||||||
"title": "textsender-auth",
|
|
||||||
"contact": {},
|
|
||||||
"version": "1.0"
|
|
||||||
},
|
|
||||||
"host": "localhost:9080",
|
|
||||||
"basePath": "/api/v1",
|
|
||||||
"paths": {
|
|
||||||
"/login": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Login and be given an access token (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Login",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to obtain a token",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginAccount"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.LoginResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/register": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Create a user that can send texts (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Register user",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to add user",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterUser"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"403": {
|
|
||||||
"description": "Forbidden",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/service/login": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Servce login and be given an access token (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"service users"
|
|
||||||
],
|
|
||||||
"summary": "Service login",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to obtain a service token",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceLoginRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceLoginResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceLoginResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/service/register": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Create a service user that can send texts (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"service users"
|
|
||||||
],
|
|
||||||
"summary": "Register service user",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to add user",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"403": {
|
|
||||||
"description": "Forbidden",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.ServiceCreationResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/token/refresh": {
|
|
||||||
"post": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Refresh token endpoint (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"refresh"
|
|
||||||
],
|
|
||||||
"summary": "Obtain a refresh token",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to refresh token",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.RefreshResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/user/name/update": {
|
|
||||||
"patch": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Update the first or last name of a user (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Update name of user",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Data to update name of user",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"403": {
|
|
||||||
"description": "Forbidden",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdateNameResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"/user/password/update": {
|
|
||||||
"patch": {
|
|
||||||
"security": [
|
|
||||||
{
|
|
||||||
"BearerAuth": []
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"description": "Update the password of a regular account (requires JWT)",
|
|
||||||
"consumes": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"produces": [
|
|
||||||
"application/json"
|
|
||||||
],
|
|
||||||
"tags": [
|
|
||||||
"users"
|
|
||||||
],
|
|
||||||
"summary": "Update Password",
|
|
||||||
"parameters": [
|
|
||||||
{
|
|
||||||
"description": "Needed data to update password",
|
|
||||||
"name": "request",
|
|
||||||
"in": "body",
|
|
||||||
"required": true,
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordRequest"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"responses": {
|
|
||||||
"200": {
|
|
||||||
"description": "OK",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"400": {
|
|
||||||
"description": "Bad Request",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordResponse"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"500": {
|
|
||||||
"description": "Internal Server Error",
|
|
||||||
"schema": {
|
|
||||||
"$ref": "#/definitions/handler.UpdatePasswordResponse"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"definitions": {
|
|
||||||
"git_kundeng_us_phoenix_textsender-models_tx0_user.User": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"created": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"first_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"id": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_login": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"phone_number": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.LoginAccount": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.LoginResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/token.Login"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RefreshRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"access_token": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RefreshResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/token.Login"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RegisterResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/handler.RegisterResponseItem"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RegisterResponseItem": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"id": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"phone_number": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.RegisterUser": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"phone_number": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceCreationRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"passphrase": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceCreationResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/user.ServiceUser"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceLoginRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"passphrase": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.ServiceLoginResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/token.Login"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdateNameRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"first_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_name": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"user_id": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdateNameResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/git_kundeng_us_phoenix_textsender-models_tx0_user.User"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdatePasswordRequest": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"confirmed_password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"current_password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"updated_password": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"user_id": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"handler.UpdatePasswordResponse": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"data": {
|
|
||||||
"type": "array",
|
|
||||||
"items": {
|
|
||||||
"$ref": "#/definitions/git_kundeng_us_phoenix_textsender-models_tx0_user.User"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"message": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"token.Login": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"access_token": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"expires_in": {
|
|
||||||
"type": "integer"
|
|
||||||
},
|
|
||||||
"issued_at": {
|
|
||||||
"type": "integer"
|
|
||||||
},
|
|
||||||
"token_type": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"user_id": {
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"user.ServiceUser": {
|
|
||||||
"type": "object",
|
|
||||||
"properties": {
|
|
||||||
"created": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"id": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"last_login": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"passphrase": {
|
|
||||||
"type": "string"
|
|
||||||
},
|
|
||||||
"username": {
|
|
||||||
"description": "TODO: Remove the omitempty tags at a later point",
|
|
||||||
"type": "string"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"securityDefinitions": {
|
|
||||||
"BearerAuth": {
|
|
||||||
"description": "JWT Bearer Token",
|
|
||||||
"type": "apiKey",
|
|
||||||
"name": "Authorization",
|
|
||||||
"in": "header"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -1,421 +0,0 @@
|
|||||||
basePath: /api/v1
|
|
||||||
definitions:
|
|
||||||
git_kundeng_us_phoenix_textsender-models_tx0_user.User:
|
|
||||||
properties:
|
|
||||||
created:
|
|
||||||
type: string
|
|
||||||
first_name:
|
|
||||||
type: string
|
|
||||||
id:
|
|
||||||
type: string
|
|
||||||
last_login:
|
|
||||||
type: string
|
|
||||||
last_name:
|
|
||||||
type: string
|
|
||||||
password:
|
|
||||||
type: string
|
|
||||||
phone_number:
|
|
||||||
type: string
|
|
||||||
username:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.LoginAccount:
|
|
||||||
properties:
|
|
||||||
password:
|
|
||||||
type: string
|
|
||||||
username:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.LoginResponse:
|
|
||||||
properties:
|
|
||||||
data:
|
|
||||||
items:
|
|
||||||
$ref: '#/definitions/token.Login'
|
|
||||||
type: array
|
|
||||||
message:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.RefreshRequest:
|
|
||||||
properties:
|
|
||||||
access_token:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.RefreshResponse:
|
|
||||||
properties:
|
|
||||||
data:
|
|
||||||
items:
|
|
||||||
$ref: '#/definitions/token.Login'
|
|
||||||
type: array
|
|
||||||
message:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.RegisterResponse:
|
|
||||||
properties:
|
|
||||||
data:
|
|
||||||
items:
|
|
||||||
$ref: '#/definitions/handler.RegisterResponseItem'
|
|
||||||
type: array
|
|
||||||
message:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.RegisterResponseItem:
|
|
||||||
properties:
|
|
||||||
id:
|
|
||||||
type: string
|
|
||||||
phone_number:
|
|
||||||
type: string
|
|
||||||
username:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.RegisterUser:
|
|
||||||
properties:
|
|
||||||
password:
|
|
||||||
type: string
|
|
||||||
phone_number:
|
|
||||||
type: string
|
|
||||||
username:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.ServiceCreationRequest:
|
|
||||||
properties:
|
|
||||||
passphrase:
|
|
||||||
type: string
|
|
||||||
username:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.ServiceCreationResponse:
|
|
||||||
properties:
|
|
||||||
data:
|
|
||||||
items:
|
|
||||||
$ref: '#/definitions/user.ServiceUser'
|
|
||||||
type: array
|
|
||||||
message:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.ServiceLoginRequest:
|
|
||||||
properties:
|
|
||||||
passphrase:
|
|
||||||
type: string
|
|
||||||
username:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.ServiceLoginResponse:
|
|
||||||
properties:
|
|
||||||
data:
|
|
||||||
items:
|
|
||||||
$ref: '#/definitions/token.Login'
|
|
||||||
type: array
|
|
||||||
message:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.UpdateNameRequest:
|
|
||||||
properties:
|
|
||||||
first_name:
|
|
||||||
type: string
|
|
||||||
last_name:
|
|
||||||
type: string
|
|
||||||
user_id:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.UpdateNameResponse:
|
|
||||||
properties:
|
|
||||||
data:
|
|
||||||
items:
|
|
||||||
$ref: '#/definitions/git_kundeng_us_phoenix_textsender-models_tx0_user.User'
|
|
||||||
type: array
|
|
||||||
message:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.UpdatePasswordRequest:
|
|
||||||
properties:
|
|
||||||
confirmed_password:
|
|
||||||
type: string
|
|
||||||
current_password:
|
|
||||||
type: string
|
|
||||||
updated_password:
|
|
||||||
type: string
|
|
||||||
user_id:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
handler.UpdatePasswordResponse:
|
|
||||||
properties:
|
|
||||||
data:
|
|
||||||
items:
|
|
||||||
$ref: '#/definitions/git_kundeng_us_phoenix_textsender-models_tx0_user.User'
|
|
||||||
type: array
|
|
||||||
message:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
token.Login:
|
|
||||||
properties:
|
|
||||||
access_token:
|
|
||||||
type: string
|
|
||||||
expires_in:
|
|
||||||
type: integer
|
|
||||||
issued_at:
|
|
||||||
type: integer
|
|
||||||
token_type:
|
|
||||||
type: string
|
|
||||||
user_id:
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
user.ServiceUser:
|
|
||||||
properties:
|
|
||||||
created:
|
|
||||||
type: string
|
|
||||||
id:
|
|
||||||
type: string
|
|
||||||
last_login:
|
|
||||||
type: string
|
|
||||||
passphrase:
|
|
||||||
type: string
|
|
||||||
username:
|
|
||||||
description: 'TODO: Remove the omitempty tags at a later point'
|
|
||||||
type: string
|
|
||||||
type: object
|
|
||||||
host: localhost:9080
|
|
||||||
info:
|
|
||||||
contact: {}
|
|
||||||
description: Auth API to send text messages
|
|
||||||
title: textsender-auth
|
|
||||||
version: "1.0"
|
|
||||||
paths:
|
|
||||||
/login:
|
|
||||||
post:
|
|
||||||
consumes:
|
|
||||||
- application/json
|
|
||||||
description: Login and be given an access token (requires JWT)
|
|
||||||
parameters:
|
|
||||||
- description: Data to obtain a token
|
|
||||||
in: body
|
|
||||||
name: request
|
|
||||||
required: true
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.LoginAccount'
|
|
||||||
produces:
|
|
||||||
- application/json
|
|
||||||
responses:
|
|
||||||
"200":
|
|
||||||
description: OK
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.LoginResponse'
|
|
||||||
"400":
|
|
||||||
description: Bad Request
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.LoginResponse'
|
|
||||||
"500":
|
|
||||||
description: Internal Server Error
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.LoginResponse'
|
|
||||||
security:
|
|
||||||
- BearerAuth: []
|
|
||||||
summary: Login
|
|
||||||
tags:
|
|
||||||
- users
|
|
||||||
/register:
|
|
||||||
post:
|
|
||||||
consumes:
|
|
||||||
- application/json
|
|
||||||
description: Create a user that can send texts (requires JWT)
|
|
||||||
parameters:
|
|
||||||
- description: Data to add user
|
|
||||||
in: body
|
|
||||||
name: request
|
|
||||||
required: true
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RegisterUser'
|
|
||||||
produces:
|
|
||||||
- application/json
|
|
||||||
responses:
|
|
||||||
"200":
|
|
||||||
description: OK
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RegisterResponse'
|
|
||||||
"400":
|
|
||||||
description: Bad Request
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RegisterResponse'
|
|
||||||
"403":
|
|
||||||
description: Forbidden
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RegisterResponse'
|
|
||||||
"500":
|
|
||||||
description: Internal Server Error
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RegisterResponse'
|
|
||||||
security:
|
|
||||||
- BearerAuth: []
|
|
||||||
summary: Register user
|
|
||||||
tags:
|
|
||||||
- users
|
|
||||||
/service/login:
|
|
||||||
post:
|
|
||||||
consumes:
|
|
||||||
- application/json
|
|
||||||
description: Servce login and be given an access token (requires JWT)
|
|
||||||
parameters:
|
|
||||||
- description: Data to obtain a service token
|
|
||||||
in: body
|
|
||||||
name: request
|
|
||||||
required: true
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceLoginRequest'
|
|
||||||
produces:
|
|
||||||
- application/json
|
|
||||||
responses:
|
|
||||||
"200":
|
|
||||||
description: OK
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceLoginResponse'
|
|
||||||
"500":
|
|
||||||
description: Internal Server Error
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceLoginResponse'
|
|
||||||
security:
|
|
||||||
- BearerAuth: []
|
|
||||||
summary: Service login
|
|
||||||
tags:
|
|
||||||
- service users
|
|
||||||
/service/register:
|
|
||||||
post:
|
|
||||||
consumes:
|
|
||||||
- application/json
|
|
||||||
description: Create a service user that can send texts (requires JWT)
|
|
||||||
parameters:
|
|
||||||
- description: Data to add user
|
|
||||||
in: body
|
|
||||||
name: request
|
|
||||||
required: true
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceCreationRequest'
|
|
||||||
produces:
|
|
||||||
- application/json
|
|
||||||
responses:
|
|
||||||
"200":
|
|
||||||
description: OK
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceCreationResponse'
|
|
||||||
"400":
|
|
||||||
description: Bad Request
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceCreationResponse'
|
|
||||||
"403":
|
|
||||||
description: Forbidden
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceCreationResponse'
|
|
||||||
"500":
|
|
||||||
description: Internal Server Error
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.ServiceCreationResponse'
|
|
||||||
security:
|
|
||||||
- BearerAuth: []
|
|
||||||
summary: Register service user
|
|
||||||
tags:
|
|
||||||
- service users
|
|
||||||
/token/refresh:
|
|
||||||
post:
|
|
||||||
consumes:
|
|
||||||
- application/json
|
|
||||||
description: Refresh token endpoint (requires JWT)
|
|
||||||
parameters:
|
|
||||||
- description: Data to refresh token
|
|
||||||
in: body
|
|
||||||
name: request
|
|
||||||
required: true
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RefreshRequest'
|
|
||||||
produces:
|
|
||||||
- application/json
|
|
||||||
responses:
|
|
||||||
"200":
|
|
||||||
description: OK
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RefreshResponse'
|
|
||||||
"400":
|
|
||||||
description: Bad Request
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RefreshResponse'
|
|
||||||
"500":
|
|
||||||
description: Internal Server Error
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.RefreshResponse'
|
|
||||||
security:
|
|
||||||
- BearerAuth: []
|
|
||||||
summary: Obtain a refresh token
|
|
||||||
tags:
|
|
||||||
- refresh
|
|
||||||
/user/name/update:
|
|
||||||
patch:
|
|
||||||
consumes:
|
|
||||||
- application/json
|
|
||||||
description: Update the first or last name of a user (requires JWT)
|
|
||||||
parameters:
|
|
||||||
- description: Data to update name of user
|
|
||||||
in: body
|
|
||||||
name: request
|
|
||||||
required: true
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdateNameRequest'
|
|
||||||
produces:
|
|
||||||
- application/json
|
|
||||||
responses:
|
|
||||||
"200":
|
|
||||||
description: OK
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdateNameResponse'
|
|
||||||
"400":
|
|
||||||
description: Bad Request
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdateNameResponse'
|
|
||||||
"403":
|
|
||||||
description: Forbidden
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdateNameResponse'
|
|
||||||
"500":
|
|
||||||
description: Internal Server Error
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdateNameResponse'
|
|
||||||
security:
|
|
||||||
- BearerAuth: []
|
|
||||||
summary: Update name of user
|
|
||||||
tags:
|
|
||||||
- users
|
|
||||||
/user/password/update:
|
|
||||||
patch:
|
|
||||||
consumes:
|
|
||||||
- application/json
|
|
||||||
description: Update the password of a regular account (requires JWT)
|
|
||||||
parameters:
|
|
||||||
- description: Needed data to update password
|
|
||||||
in: body
|
|
||||||
name: request
|
|
||||||
required: true
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdatePasswordRequest'
|
|
||||||
produces:
|
|
||||||
- application/json
|
|
||||||
responses:
|
|
||||||
"200":
|
|
||||||
description: OK
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdatePasswordResponse'
|
|
||||||
"400":
|
|
||||||
description: Bad Request
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdatePasswordResponse'
|
|
||||||
"500":
|
|
||||||
description: Internal Server Error
|
|
||||||
schema:
|
|
||||||
$ref: '#/definitions/handler.UpdatePasswordResponse'
|
|
||||||
security:
|
|
||||||
- BearerAuth: []
|
|
||||||
summary: Update Password
|
|
||||||
tags:
|
|
||||||
- users
|
|
||||||
securityDefinitions:
|
|
||||||
BearerAuth:
|
|
||||||
description: JWT Bearer Token
|
|
||||||
in: header
|
|
||||||
name: Authorization
|
|
||||||
type: apiKey
|
|
||||||
swagger: "2.0"
|
|
||||||
@@ -1,45 +0,0 @@
|
|||||||
module git.kundeng.us/phoenix/textsender-auth
|
|
||||||
|
|
||||||
go 1.26.1
|
|
||||||
|
|
||||||
require (
|
|
||||||
git.kundeng.us/phoenix/textsender-models v0.2.0
|
|
||||||
github.com/go-chi/chi/v5 v5.2.5
|
|
||||||
github.com/go-chi/cors v1.2.2
|
|
||||||
github.com/golang-jwt/jwt/v5 v5.3.1
|
|
||||||
github.com/google/uuid v1.6.0
|
|
||||||
github.com/jackc/pgx/v5 v5.9.1
|
|
||||||
github.com/joho/godotenv v1.5.1
|
|
||||||
github.com/stretchr/testify v1.11.1
|
|
||||||
github.com/swaggo/http-swagger/v2 v2.0.2
|
|
||||||
github.com/swaggo/swag v1.16.6
|
|
||||||
golang.org/x/crypto v0.49.0
|
|
||||||
)
|
|
||||||
|
|
||||||
require (
|
|
||||||
github.com/KyleBanks/depth v1.2.1 // indirect
|
|
||||||
github.com/davecgh/go-spew v1.1.1 // indirect
|
|
||||||
github.com/go-openapi/jsonpointer v0.22.5 // indirect
|
|
||||||
github.com/go-openapi/jsonreference v0.21.5 // indirect
|
|
||||||
github.com/go-openapi/spec v0.22.4 // indirect
|
|
||||||
github.com/go-openapi/swag/conv v0.25.5 // indirect
|
|
||||||
github.com/go-openapi/swag/jsonname v0.25.5 // indirect
|
|
||||||
github.com/go-openapi/swag/jsonutils v0.25.5 // indirect
|
|
||||||
github.com/go-openapi/swag/loading v0.25.5 // indirect
|
|
||||||
github.com/go-openapi/swag/stringutils v0.25.5 // indirect
|
|
||||||
github.com/go-openapi/swag/typeutils v0.25.5 // indirect
|
|
||||||
github.com/go-openapi/swag/yamlutils v0.25.5 // indirect
|
|
||||||
github.com/jackc/pgpassfile v1.0.0 // indirect
|
|
||||||
github.com/jackc/pgservicefile v0.0.0-20240606120523-5a60cdf6a761 // indirect
|
|
||||||
github.com/jackc/puddle/v2 v2.2.2 // indirect
|
|
||||||
github.com/kr/text v0.2.0 // indirect
|
|
||||||
github.com/pmezard/go-difflib v1.0.0 // indirect
|
|
||||||
github.com/rogpeppe/go-internal v1.14.1 // indirect
|
|
||||||
github.com/swaggo/files/v2 v2.0.2 // indirect
|
|
||||||
go.yaml.in/yaml/v3 v3.0.4 // indirect
|
|
||||||
golang.org/x/mod v0.34.0 // indirect
|
|
||||||
golang.org/x/sync v0.20.0 // indirect
|
|
||||||
golang.org/x/text v0.35.0 // indirect
|
|
||||||
golang.org/x/tools v0.43.0 // indirect
|
|
||||||
gopkg.in/yaml.v3 v3.0.1 // indirect
|
|
||||||
)
|
|
||||||
@@ -1,92 +0,0 @@
|
|||||||
git.kundeng.us/phoenix/textsender-models v0.2.0 h1:smz8Fs8VOs1Ya23txbOM0YPRidZIsM0yE9unHF0D/nQ=
|
|
||||||
git.kundeng.us/phoenix/textsender-models v0.2.0/go.mod h1:3CkqA/HFKPhpMYxkKn5uVbZEzEbG3sofLZE8pZ1BHO4=
|
|
||||||
github.com/KyleBanks/depth v1.2.1 h1:5h8fQADFrWtarTdtDudMmGsC7GPbOAu6RVB3ffsVFHc=
|
|
||||||
github.com/KyleBanks/depth v1.2.1/go.mod h1:jzSb9d0L43HxTQfT+oSA1EEp2q+ne2uh6XgeJcm8brE=
|
|
||||||
github.com/creack/pty v1.1.9/go.mod h1:oKZEueFk5CKHvIhNR5MUki03XCEU+Q6VDXinZuGJ33E=
|
|
||||||
github.com/davecgh/go-spew v1.1.0/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
|
|
||||||
github.com/davecgh/go-spew v1.1.1 h1:vj9j/u1bqnvCEfJOwUhtlOARqs3+rkHYY13jYWTU97c=
|
|
||||||
github.com/davecgh/go-spew v1.1.1/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
|
|
||||||
github.com/go-chi/chi/v5 v5.2.5 h1:Eg4myHZBjyvJmAFjFvWgrqDTXFyOzjj7YIm3L3mu6Ug=
|
|
||||||
github.com/go-chi/chi/v5 v5.2.5/go.mod h1:X7Gx4mteadT3eDOMTsXzmI4/rwUpOwBHLpAfupzFJP0=
|
|
||||||
github.com/go-chi/cors v1.2.2 h1:Jmey33TE+b+rB7fT8MUy1u0I4L+NARQlK6LhzKPSyQE=
|
|
||||||
github.com/go-chi/cors v1.2.2/go.mod h1:sSbTewc+6wYHBBCW7ytsFSn836hqM7JxpglAy2Vzc58=
|
|
||||||
github.com/go-openapi/jsonpointer v0.22.5 h1:8on/0Yp4uTb9f4XvTrM2+1CPrV05QPZXu+rvu2o9jcA=
|
|
||||||
github.com/go-openapi/jsonpointer v0.22.5/go.mod h1:gyUR3sCvGSWchA2sUBJGluYMbe1zazrYWIkWPjjMUY0=
|
|
||||||
github.com/go-openapi/jsonreference v0.21.5 h1:6uCGVXU/aNF13AQNggxfysJ+5ZcU4nEAe+pJyVWRdiE=
|
|
||||||
github.com/go-openapi/jsonreference v0.21.5/go.mod h1:u25Bw85sX4E2jzFodh1FOKMTZLcfifd1Q+iKKOUxExw=
|
|
||||||
github.com/go-openapi/spec v0.22.4 h1:4pxGjipMKu0FzFiu/DPwN3CTBRlVM2yLf/YTWorYfDQ=
|
|
||||||
github.com/go-openapi/spec v0.22.4/go.mod h1:WQ6Ai0VPWMZgMT4XySjlRIE6GP1bGQOtEThn3gcWLtQ=
|
|
||||||
github.com/go-openapi/swag v0.19.15 h1:D2NRCBzS9/pEY3gP9Nl8aDqGUcPFrwG2p+CNFrLyrCM=
|
|
||||||
github.com/go-openapi/swag/conv v0.25.5 h1:wAXBYEXJjoKwE5+vc9YHhpQOFj2JYBMF2DUi+tGu97g=
|
|
||||||
github.com/go-openapi/swag/conv v0.25.5/go.mod h1:CuJ1eWvh1c4ORKx7unQnFGyvBbNlRKbnRyAvDvzWA4k=
|
|
||||||
github.com/go-openapi/swag/jsonname v0.25.5 h1:8p150i44rv/Drip4vWI3kGi9+4W9TdI3US3uUYSFhSo=
|
|
||||||
github.com/go-openapi/swag/jsonname v0.25.5/go.mod h1:jNqqikyiAK56uS7n8sLkdaNY/uq6+D2m2LANat09pKU=
|
|
||||||
github.com/go-openapi/swag/jsonutils v0.25.5 h1:XUZF8awQr75MXeC+/iaw5usY/iM7nXPDwdG3Jbl9vYo=
|
|
||||||
github.com/go-openapi/swag/jsonutils v0.25.5/go.mod h1:48FXUaz8YsDAA9s5AnaUvAmry1UcLcNVWUjY42XkrN4=
|
|
||||||
github.com/go-openapi/swag/jsonutils/fixtures_test v0.25.5 h1:SX6sE4FrGb4sEnnxbFL/25yZBb5Hcg1inLeErd86Y1U=
|
|
||||||
github.com/go-openapi/swag/jsonutils/fixtures_test v0.25.5/go.mod h1:/2KvOTrKWjVA5Xli3DZWdMCZDzz3uV/T7bXwrKWPquo=
|
|
||||||
github.com/go-openapi/swag/loading v0.25.5 h1:odQ/umlIZ1ZVRteI6ckSrvP6e2w9UTF5qgNdemJHjuU=
|
|
||||||
github.com/go-openapi/swag/loading v0.25.5/go.mod h1:I8A8RaaQ4DApxhPSWLNYWh9NvmX2YKMoB9nwvv6oW6g=
|
|
||||||
github.com/go-openapi/swag/stringutils v0.25.5 h1:NVkoDOA8YBgtAR/zvCx5rhJKtZF3IzXcDdwOsYzrB6M=
|
|
||||||
github.com/go-openapi/swag/stringutils v0.25.5/go.mod h1:PKK8EZdu4QJq8iezt17HM8RXnLAzY7gW0O1KKarrZII=
|
|
||||||
github.com/go-openapi/swag/typeutils v0.25.5 h1:EFJ+PCga2HfHGdo8s8VJXEVbeXRCYwzzr9u4rJk7L7E=
|
|
||||||
github.com/go-openapi/swag/typeutils v0.25.5/go.mod h1:itmFmScAYE1bSD8C4rS0W+0InZUBrB2xSPbWt6DLGuc=
|
|
||||||
github.com/go-openapi/swag/yamlutils v0.25.5 h1:kASCIS+oIeoc55j28T4o8KwlV2S4ZLPT6G0iq2SSbVQ=
|
|
||||||
github.com/go-openapi/swag/yamlutils v0.25.5/go.mod h1:Gek1/SjjfbYvM+Iq4QGwa/2lEXde9n2j4a3wI3pNuOQ=
|
|
||||||
github.com/go-openapi/testify/enable/yaml/v2 v2.4.0 h1:7SgOMTvJkM8yWrQlU8Jm18VeDPuAvB/xWrdxFJkoFag=
|
|
||||||
github.com/go-openapi/testify/enable/yaml/v2 v2.4.0/go.mod h1:14iV8jyyQlinc9StD7w1xVPW3CO3q1Gj04Jy//Kw4VM=
|
|
||||||
github.com/go-openapi/testify/v2 v2.4.0 h1:8nsPrHVCWkQ4p8h1EsRVymA2XABB4OT40gcvAu+voFM=
|
|
||||||
github.com/go-openapi/testify/v2 v2.4.0/go.mod h1:HCPmvFFnheKK2BuwSA0TbbdxJ3I16pjwMkYkP4Ywn54=
|
|
||||||
github.com/golang-jwt/jwt/v5 v5.3.1 h1:kYf81DTWFe7t+1VvL7eS+jKFVWaUnK9cB1qbwn63YCY=
|
|
||||||
github.com/golang-jwt/jwt/v5 v5.3.1/go.mod h1:fxCRLWMO43lRc8nhHWY6LGqRcf+1gQWArsqaEUEa5bE=
|
|
||||||
github.com/google/go-cmp v0.6.0 h1:ofyhxvXcZhMsU5ulbFiLKl/XBFqE1GSq7atu8tAmTRI=
|
|
||||||
github.com/google/go-cmp v0.6.0/go.mod h1:17dUlkBOakJ0+DkrSSNjCkIjxS6bF9zb3elmeNGIjoY=
|
|
||||||
github.com/google/uuid v1.6.0 h1:NIvaJDMOsjHA8n1jAhLSgzrAzy1Hgr+hNrb57e+94F0=
|
|
||||||
github.com/google/uuid v1.6.0/go.mod h1:TIyPZe4MgqvfeYDBFedMoGGpEw/LqOeaOT+nhxU+yHo=
|
|
||||||
github.com/jackc/pgpassfile v1.0.0 h1:/6Hmqy13Ss2zCq62VdNG8tM1wchn8zjSGOBJ6icpsIM=
|
|
||||||
github.com/jackc/pgpassfile v1.0.0/go.mod h1:CEx0iS5ambNFdcRtxPj5JhEz+xB6uRky5eyVu/W2HEg=
|
|
||||||
github.com/jackc/pgservicefile v0.0.0-20240606120523-5a60cdf6a761 h1:iCEnooe7UlwOQYpKFhBabPMi4aNAfoODPEFNiAnClxo=
|
|
||||||
github.com/jackc/pgservicefile v0.0.0-20240606120523-5a60cdf6a761/go.mod h1:5TJZWKEWniPve33vlWYSoGYefn3gLQRzjfDlhSJ9ZKM=
|
|
||||||
github.com/jackc/pgx/v5 v5.9.1 h1:uwrxJXBnx76nyISkhr33kQLlUqjv7et7b9FjCen/tdc=
|
|
||||||
github.com/jackc/pgx/v5 v5.9.1/go.mod h1:mal1tBGAFfLHvZzaYh77YS/eC6IX9OWbRV1QIIM0Jn4=
|
|
||||||
github.com/jackc/puddle/v2 v2.2.2 h1:PR8nw+E/1w0GLuRFSmiioY6UooMp6KJv0/61nB7icHo=
|
|
||||||
github.com/jackc/puddle/v2 v2.2.2/go.mod h1:vriiEXHvEE654aYKXXjOvZM39qJ0q+azkZFrfEOc3H4=
|
|
||||||
github.com/joho/godotenv v1.5.1 h1:7eLL/+HRGLY0ldzfGMeQkb7vMd0as4CfYvUVzLqw0N0=
|
|
||||||
github.com/joho/godotenv v1.5.1/go.mod h1:f4LDr5Voq0i2e/R5DDNOoa2zzDfwtkZa6DnEwAbqwq4=
|
|
||||||
github.com/kr/pretty v0.3.0 h1:WgNl7dwNpEZ6jJ9k1snq4pZsg7DOEN8hP9Xw0Tsjwk0=
|
|
||||||
github.com/kr/pretty v0.3.0/go.mod h1:640gp4NfQd8pI5XOwp5fnNeVWj67G7CFk/SaSQn7NBk=
|
|
||||||
github.com/kr/text v0.2.0 h1:5Nx0Ya0ZqY2ygV366QzturHI13Jq95ApcVaJBhpS+AY=
|
|
||||||
github.com/kr/text v0.2.0/go.mod h1:eLer722TekiGuMkidMxC/pM04lWEeraHUUmBw8l2grE=
|
|
||||||
github.com/pmezard/go-difflib v1.0.0 h1:4DBwDE0NGyQoBHbLQYPwSUPoCMWR5BEzIk/f1lZbAQM=
|
|
||||||
github.com/pmezard/go-difflib v1.0.0/go.mod h1:iKH77koFhYxTK1pcRnkKkqfTogsbg7gZNVY4sRDYZ/4=
|
|
||||||
github.com/rogpeppe/go-internal v1.14.1 h1:UQB4HGPB6osV0SQTLymcB4TgvyWu6ZyliaW0tI/otEQ=
|
|
||||||
github.com/rogpeppe/go-internal v1.14.1/go.mod h1:MaRKkUm5W0goXpeCfT7UZI6fk/L7L7so1lCWt35ZSgc=
|
|
||||||
github.com/stretchr/objx v0.1.0/go.mod h1:HFkY916IF+rwdDfMAkV7OtwuqBVzrE8GR6GFx+wExME=
|
|
||||||
github.com/stretchr/testify v1.3.0/go.mod h1:M5WIy9Dh21IEIfnGCwXGc5bZfKNJtfHm1UVUgZn+9EI=
|
|
||||||
github.com/stretchr/testify v1.7.0/go.mod h1:6Fq8oRcR53rry900zMqJjRRixrwX3KX962/h/Wwjteg=
|
|
||||||
github.com/stretchr/testify v1.11.1 h1:7s2iGBzp5EwR7/aIZr8ao5+dra3wiQyKjjFuvgVKu7U=
|
|
||||||
github.com/stretchr/testify v1.11.1/go.mod h1:wZwfW3scLgRK+23gO65QZefKpKQRnfz6sD981Nm4B6U=
|
|
||||||
github.com/swaggo/files/v2 v2.0.2 h1:Bq4tgS/yxLB/3nwOMcul5oLEUKa877Ykgz3CJMVbQKU=
|
|
||||||
github.com/swaggo/files/v2 v2.0.2/go.mod h1:TVqetIzZsO9OhHX1Am9sRf9LdrFZqoK49N37KON/jr0=
|
|
||||||
github.com/swaggo/http-swagger/v2 v2.0.2 h1:FKCdLsl+sFCx60KFsyM0rDarwiUSZ8DqbfSyIKC9OBg=
|
|
||||||
github.com/swaggo/http-swagger/v2 v2.0.2/go.mod h1:r7/GBkAWIfK6E/OLnE8fXnviHiDeAHmgIyooa4xm3AQ=
|
|
||||||
github.com/swaggo/swag v1.16.6 h1:qBNcx53ZaX+M5dxVyTrgQ0PJ/ACK+NzhwcbieTt+9yI=
|
|
||||||
github.com/swaggo/swag v1.16.6/go.mod h1:ngP2etMK5a0P3QBizic5MEwpRmluJZPHjXcMoj4Xesg=
|
|
||||||
go.yaml.in/yaml/v3 v3.0.4 h1:tfq32ie2Jv2UxXFdLJdh3jXuOzWiL1fo0bu/FbuKpbc=
|
|
||||||
go.yaml.in/yaml/v3 v3.0.4/go.mod h1:DhzuOOF2ATzADvBadXxruRBLzYTpT36CKvDb3+aBEFg=
|
|
||||||
golang.org/x/crypto v0.49.0 h1:+Ng2ULVvLHnJ/ZFEq4KdcDd/cfjrrjjNSXNzxg0Y4U4=
|
|
||||||
golang.org/x/crypto v0.49.0/go.mod h1:ErX4dUh2UM+CFYiXZRTcMpEcN8b/1gxEuv3nODoYtCA=
|
|
||||||
golang.org/x/mod v0.34.0 h1:xIHgNUUnW6sYkcM5Jleh05DvLOtwc6RitGHbDk4akRI=
|
|
||||||
golang.org/x/mod v0.34.0/go.mod h1:ykgH52iCZe79kzLLMhyCUzhMci+nQj+0XkbXpNYtVjY=
|
|
||||||
golang.org/x/sync v0.20.0 h1:e0PTpb7pjO8GAtTs2dQ6jYa5BWYlMuX047Dco/pItO4=
|
|
||||||
golang.org/x/sync v0.20.0/go.mod h1:9xrNwdLfx4jkKbNva9FpL6vEN7evnE43NNNJQ2LF3+0=
|
|
||||||
golang.org/x/text v0.35.0 h1:JOVx6vVDFokkpaq1AEptVzLTpDe9KGpj5tR4/X+ybL8=
|
|
||||||
golang.org/x/text v0.35.0/go.mod h1:khi/HExzZJ2pGnjenulevKNX1W67CUy0AsXcNubPGCA=
|
|
||||||
golang.org/x/tools v0.43.0 h1:12BdW9CeB3Z+J/I/wj34VMl8X+fEXBxVR90JeMX5E7s=
|
|
||||||
golang.org/x/tools v0.43.0/go.mod h1:uHkMso649BX2cZK6+RpuIPXS3ho2hZo4FVwfoy1vIk0=
|
|
||||||
gopkg.in/check.v1 v0.0.0-20161208181325-20d25e280405/go.mod h1:Co6ibVJAznAaIkqp8huTwlJQCZ016jof/cbN4VW5Yz0=
|
|
||||||
gopkg.in/check.v1 v1.0.0-20201130134442-10cb98267c6c h1:Hei/4ADfdWqJk1ZMxUNpqntNwaWcugrBjAiHlqqRiVk=
|
|
||||||
gopkg.in/check.v1 v1.0.0-20201130134442-10cb98267c6c/go.mod h1:JHkPIbrfpd72SG/EVd6muEfDQjcINNoR0C8j2r3qZ4Q=
|
|
||||||
gopkg.in/yaml.v3 v3.0.0-20200313102051-9f266ea9e77c/go.mod h1:K4uyk7z7BCEPqu6E+C64Yfv1cQ7kz7rIZviUmN+EgEM=
|
|
||||||
gopkg.in/yaml.v3 v3.0.1 h1:fxVm/GzAzEWqLHuvctI91KS9hhNmmWOoWu0XTYJS7CA=
|
|
||||||
gopkg.in/yaml.v3 v3.0.1/go.mod h1:K4uyk7z7BCEPqu6E+C64Yfv1cQ7kz7rIZviUmN+EgEM=
|
|
||||||
@@ -1,168 +0,0 @@
|
|||||||
package config
|
|
||||||
|
|
||||||
import (
|
|
||||||
"flag"
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"os"
|
|
||||||
"path"
|
|
||||||
"strconv"
|
|
||||||
"strings"
|
|
||||||
|
|
||||||
"github.com/joho/godotenv"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/version"
|
|
||||||
)
|
|
||||||
|
|
||||||
type Config struct {
|
|
||||||
DBConnString string
|
|
||||||
ServerPort string
|
|
||||||
ResetDB bool
|
|
||||||
EnableRegistration bool
|
|
||||||
AllowedOrigins []string
|
|
||||||
}
|
|
||||||
|
|
||||||
type ConnectionInfo struct {
|
|
||||||
Username string
|
|
||||||
Password string
|
|
||||||
Database string
|
|
||||||
Host string
|
|
||||||
Port int
|
|
||||||
SslMode string
|
|
||||||
}
|
|
||||||
|
|
||||||
const Port = "9080"
|
|
||||||
const App_Name = "textsender_auth"
|
|
||||||
|
|
||||||
func (ci ConnectionInfo) Parse() string {
|
|
||||||
return fmt.Sprintf("postgres://%s:%s@%s:%d/%s?sslmode=%s", ci.Username, ci.Password, ci.Host, ci.Port, ci.Database, ci.SslMode)
|
|
||||||
}
|
|
||||||
|
|
||||||
func PrintName() {
|
|
||||||
fmt.Println(App_Name)
|
|
||||||
fmt.Println(version.String())
|
|
||||||
}
|
|
||||||
|
|
||||||
func Load() *Config {
|
|
||||||
versionFlag := flag.Bool("version", false, "Print version information")
|
|
||||||
resetDb := flag.Bool("reset-db", false, "Reset the database schema and exit")
|
|
||||||
port := flag.String("port", Port, "Server port")
|
|
||||||
flag.Parse()
|
|
||||||
|
|
||||||
if *versionFlag {
|
|
||||||
fmt.Println(version.String())
|
|
||||||
os.Exit(-1)
|
|
||||||
}
|
|
||||||
|
|
||||||
err := godotenv.Load()
|
|
||||||
if err != nil {
|
|
||||||
cwd, _ := os.Getwd()
|
|
||||||
envPath := path.Join(cwd, "../..", ".env")
|
|
||||||
if err = godotenv.Load(envPath); err != nil {
|
|
||||||
prevPath := path.Join(envPath, "../..", ".env")
|
|
||||||
if err = godotenv.Load(prevPath); err != nil {
|
|
||||||
log.Fatal("Error loading .env file")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
unpackedConnString := UnpackDBConnString()
|
|
||||||
dbConnString := unpackedConnString.Parse()
|
|
||||||
allowedOrigins := unpackAllowedOrigin()
|
|
||||||
|
|
||||||
if len(allowedOrigins) > 0 {
|
|
||||||
return &Config{
|
|
||||||
DBConnString: dbConnString,
|
|
||||||
ServerPort: *port,
|
|
||||||
ResetDB: *resetDb,
|
|
||||||
EnableRegistration: CheckRegistration(),
|
|
||||||
AllowedOrigins: allowedOrigins,
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return &Config{
|
|
||||||
DBConnString: dbConnString,
|
|
||||||
ServerPort: *port,
|
|
||||||
ResetDB: *resetDb,
|
|
||||||
EnableRegistration: CheckRegistration(),
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func GetSecretKey() string {
|
|
||||||
return os.Getenv("SECRET_KEY")
|
|
||||||
}
|
|
||||||
|
|
||||||
func UnpackDBConnString() (connInfo ConnectionInfo) {
|
|
||||||
username := os.Getenv("DB_USER")
|
|
||||||
password := os.Getenv("DB_PASSWORD")
|
|
||||||
host := os.Getenv("DB_HOST")
|
|
||||||
port := os.Getenv("DB_PORT")
|
|
||||||
database := os.Getenv("DB_NAME")
|
|
||||||
sslMode := os.Getenv("DB_SSLMODE")
|
|
||||||
|
|
||||||
if username != "" {
|
|
||||||
connInfo.Username = username
|
|
||||||
} else {
|
|
||||||
connInfo.Username = "user"
|
|
||||||
}
|
|
||||||
|
|
||||||
if password != "" {
|
|
||||||
connInfo.Password = password
|
|
||||||
} else {
|
|
||||||
connInfo.Password = "password"
|
|
||||||
}
|
|
||||||
|
|
||||||
if host != "" {
|
|
||||||
connInfo.Host = host
|
|
||||||
} else {
|
|
||||||
connInfo.Host = "localhost"
|
|
||||||
}
|
|
||||||
|
|
||||||
if port != "" {
|
|
||||||
num, err := strconv.Atoi(port)
|
|
||||||
if err != nil {
|
|
||||||
return
|
|
||||||
}
|
|
||||||
connInfo.Port = num
|
|
||||||
} else {
|
|
||||||
connInfo.Port = 5432
|
|
||||||
}
|
|
||||||
|
|
||||||
if database != "" {
|
|
||||||
connInfo.Database = database
|
|
||||||
} else {
|
|
||||||
connInfo.Database = "textsender_auth_db"
|
|
||||||
}
|
|
||||||
|
|
||||||
if sslMode != "" {
|
|
||||||
connInfo.SslMode = sslMode
|
|
||||||
} else {
|
|
||||||
connInfo.SslMode = "disable"
|
|
||||||
}
|
|
||||||
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
func unpackAllowedOrigin() []string {
|
|
||||||
allowedOriginsRaw := os.Getenv("ALLOWED_ORIGINS")
|
|
||||||
allowedOriginsSplit := strings.Split(allowedOriginsRaw, ",")
|
|
||||||
return allowedOriginsSplit
|
|
||||||
}
|
|
||||||
|
|
||||||
func CheckRegistration() bool {
|
|
||||||
if flagValue := os.Getenv("ENABLE_REGISTRATION"); flagValue != "" {
|
|
||||||
if val := strings.ToUpper(flagValue); val == "TRUE" {
|
|
||||||
return true
|
|
||||||
} else if val == "FALSE" {
|
|
||||||
return false
|
|
||||||
} else {
|
|
||||||
return true
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return true
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (c *Config) GetDBConnString() string {
|
|
||||||
return c.DBConnString
|
|
||||||
}
|
|
||||||
@@ -1,136 +0,0 @@
|
|||||||
// db/connection.go
|
|
||||||
package db
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"os"
|
|
||||||
"path"
|
|
||||||
"strings"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"github.com/jackc/pgx/v5/pgxpool"
|
|
||||||
)
|
|
||||||
|
|
||||||
var Pool *pgxpool.Pool
|
|
||||||
|
|
||||||
type Database struct {
|
|
||||||
Pool *pgxpool.Pool
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewDatabase(connString string) (*Database, error) {
|
|
||||||
ctx := context.Background()
|
|
||||||
// Parse the connection string and create pool configuration
|
|
||||||
config, err := pgxpool.ParseConfig(connString)
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("unable to parse DSN: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
// Configure connection pool settings
|
|
||||||
config.MaxConns = 25
|
|
||||||
config.MinConns = 5
|
|
||||||
config.MaxConnLifetime = time.Hour
|
|
||||||
config.MaxConnIdleTime = 30 * time.Minute
|
|
||||||
config.HealthCheckPeriod = time.Minute
|
|
||||||
|
|
||||||
// Configure connection timeouts
|
|
||||||
config.ConnConfig.ConnectTimeout = 10 * time.Second
|
|
||||||
config.ConnConfig.RuntimeParams["timezone"] = "UTC"
|
|
||||||
|
|
||||||
// Create the connection pool
|
|
||||||
pool, err := pgxpool.NewWithConfig(ctx, config)
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("unable to create connection pool: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
// Test the connection with a short timeout
|
|
||||||
if err := pool.Ping(ctx); err != nil {
|
|
||||||
pool.Close()
|
|
||||||
return nil, fmt.Errorf("unable to ping database: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
log.Printf("Successfully connected to database")
|
|
||||||
return &Database{Pool: pool}, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func TableExists(ctx context.Context, conn *pgxpool.Pool, tableName string) (bool, error) {
|
|
||||||
var exists bool
|
|
||||||
|
|
||||||
query := `
|
|
||||||
SELECT EXISTS (
|
|
||||||
SELECT FROM information_schema.tables
|
|
||||||
WHERE table_schema = 'public'
|
|
||||||
AND table_name = $1
|
|
||||||
);
|
|
||||||
`
|
|
||||||
|
|
||||||
err := conn.QueryRow(ctx, query, tableName).Scan(&exists)
|
|
||||||
if err != nil {
|
|
||||||
return false, fmt.Errorf("error checking if table exists: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return exists, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (db *Database) Close() {
|
|
||||||
if db.Pool != nil {
|
|
||||||
db.Pool.Close()
|
|
||||||
log.Println("Database connection pool closed")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// HealthCheck verifies the database connection is still alive
|
|
||||||
func (db *Database) HealthCheck(ctx context.Context) error {
|
|
||||||
return db.Pool.Ping(ctx)
|
|
||||||
}
|
|
||||||
|
|
||||||
// GetPoolStats returns connection pool statistics
|
|
||||||
func (db *Database) GetPoolStats() string {
|
|
||||||
stats := db.Pool.Stat()
|
|
||||||
return fmt.Sprintf("TotalConns: %d, IdleConns: %d, AcquiredConns: %d",
|
|
||||||
stats.TotalConns(), stats.IdleConns(), stats.AcquiredConns())
|
|
||||||
}
|
|
||||||
|
|
||||||
func (db *Database) ResetDatabase(ctx context.Context) error {
|
|
||||||
tx, err := db.Pool.Begin(ctx)
|
|
||||||
if err != nil {
|
|
||||||
return fmt.Errorf("Transaction unable to begin: %v", err)
|
|
||||||
}
|
|
||||||
defer tx.Rollback(ctx)
|
|
||||||
|
|
||||||
schemaContent, err := os.ReadFile("migrations/schema.sql")
|
|
||||||
if err != nil {
|
|
||||||
log.Println("Default migrations not found. Checking different directory")
|
|
||||||
cwd, _ := os.Getwd()
|
|
||||||
migrationsPath := path.Join(cwd, "../..", "migrations/schema.sql")
|
|
||||||
schemaContent, err = os.ReadFile(migrationsPath)
|
|
||||||
if err != nil {
|
|
||||||
return fmt.Errorf("error reading schema file: %v", err)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
for _, stmt := range strings.Split(string(schemaContent), ";") {
|
|
||||||
stmt = strings.TrimSpace(stmt)
|
|
||||||
if stmt == "" {
|
|
||||||
continue
|
|
||||||
}
|
|
||||||
|
|
||||||
if strings.HasPrefix(stmt, "--") {
|
|
||||||
continue
|
|
||||||
}
|
|
||||||
|
|
||||||
_, err := tx.Exec(ctx, stmt)
|
|
||||||
if err != nil {
|
|
||||||
return fmt.Errorf("error executing SQL statement: %v\nStatement: %s", err, stmt)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
if err := tx.Commit(ctx); err != nil {
|
|
||||||
return fmt.Errorf("unable to commit transaction: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
log.Println("Database schema applied successfully")
|
|
||||||
|
|
||||||
return nil
|
|
||||||
}
|
|
||||||
@@ -1,14 +0,0 @@
|
|||||||
package endpoint
|
|
||||||
|
|
||||||
const (
|
|
||||||
// Endpoint for registering a user
|
|
||||||
Register = "/api/v1/register"
|
|
||||||
Login = "/api/v1/login"
|
|
||||||
UpdatePassword = "/api/v1/user/password/update"
|
|
||||||
UpdateName = "/api/v1/user/name/update"
|
|
||||||
|
|
||||||
CreateServiceUser = "/api/v1/service/register"
|
|
||||||
LoginServiceUser = "/api/v1/service/login"
|
|
||||||
|
|
||||||
TokenRefresh = "/api/v1/token/refresh"
|
|
||||||
)
|
|
||||||
@@ -1,191 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"log"
|
|
||||||
"net/http"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/token"
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/google/uuid"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
type LoginHandler struct {
|
|
||||||
Config *config.Config
|
|
||||||
UserStore store.UserStore
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewLoginHandler(cfg *config.Config, userStore store.UserStore) *LoginHandler {
|
|
||||||
return &LoginHandler{Config: cfg, UserStore: userStore}
|
|
||||||
}
|
|
||||||
|
|
||||||
type LoginAccount struct {
|
|
||||||
Username string `json:"username"`
|
|
||||||
Password string `json:"password"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type LoginResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []token.Login `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
// Login godoc
|
|
||||||
// @Summary Login
|
|
||||||
// @Description Login and be given an access token (requires JWT)
|
|
||||||
// @Tags users
|
|
||||||
// @Accept json
|
|
||||||
// @Produce json
|
|
||||||
// @Security BearerAuth
|
|
||||||
// @Param request body LoginAccount true "Data to obtain a token"
|
|
||||||
// @Success 200 {object} LoginResponse
|
|
||||||
// @Failure 400 {object} LoginResponse
|
|
||||||
// @Failure 500 {object} LoginResponse
|
|
||||||
// @Router /login [post]
|
|
||||||
func (l *LoginHandler) Login(w http.ResponseWriter, r *http.Request) {
|
|
||||||
var req LoginAccount
|
|
||||||
if err := ExtractFromRequest(r, &req); err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
}
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
var resp LoginResponse
|
|
||||||
|
|
||||||
ctx := r.Context()
|
|
||||||
|
|
||||||
if exists, err := l.UserStore.UserExists(ctx, req.Username); err != nil {
|
|
||||||
log.Println("Error:", err)
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if !exists {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "Failure in user check"
|
|
||||||
} else {
|
|
||||||
if user, err := l.UserStore.GetUserByUsername(ctx, req.Username); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(req.Password); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if hashing.CheckPasswordHash(req.Password, user.Password) {
|
|
||||||
lastLogin := time.Now()
|
|
||||||
var tokGen utility.TokenGenerator
|
|
||||||
secretKey := config.GetSecretKey()
|
|
||||||
tokGen.SetSecretKey(secretKey)
|
|
||||||
if myToken, err := tokGen.GenerateToken(*user); err != nil {
|
|
||||||
log.Println(err.Error())
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = "Error generating token"
|
|
||||||
} else {
|
|
||||||
log.Println("Updating user's last login")
|
|
||||||
if rowsAffected, err := l.UserStore.UpdateLastLogin(ctx, user.Id, lastLogin); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
log.Println("Rows updated:", rowsAffected)
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Data = append(resp.Data, *myToken)
|
|
||||||
resp.Message = "Successful"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
statusCode = http.StatusNotFound
|
|
||||||
resp.Message = "User not found"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
|
|
||||||
type UpdatePasswordRequest struct {
|
|
||||||
UserId uuid.UUID `json:"user_id"`
|
|
||||||
CurrentPassword string `json:"current_password"`
|
|
||||||
UpdatedPassword string `json:"updated_password"`
|
|
||||||
ConfirmedPassword string `json:"confirmed_password"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type UpdatePasswordResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []user.User `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
// UpdatePassword godoc
|
|
||||||
// @Summary Update Password
|
|
||||||
// @Description Update the password of a regular account (requires JWT)
|
|
||||||
// @Tags users
|
|
||||||
// @Accept json
|
|
||||||
// @Produce json
|
|
||||||
// @Security BearerAuth
|
|
||||||
// @Param request body UpdatePasswordRequest true "Needed data to update password"
|
|
||||||
// @Success 200 {object} UpdatePasswordResponse
|
|
||||||
// @Failure 400 {object} UpdatePasswordResponse
|
|
||||||
// @Failure 500 {object} UpdatePasswordResponse
|
|
||||||
// @Router /user/password/update [patch]
|
|
||||||
func (l *LoginHandler) UpdatePassword(w http.ResponseWriter, r *http.Request) {
|
|
||||||
var req UpdatePasswordRequest
|
|
||||||
if err := ExtractFromRequest(r, &req); err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
}
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
var resp UpdatePasswordResponse
|
|
||||||
|
|
||||||
ctx := r.Context()
|
|
||||||
|
|
||||||
if usr, err := l.UserStore.GetUserByID(ctx, req.UserId); err != nil {
|
|
||||||
log.Println("Error:", err)
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(req.CurrentPassword); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if hashing.CheckPasswordHash(req.CurrentPassword, usr.Password) {
|
|
||||||
if req.UpdatedPassword == req.ConfirmedPassword {
|
|
||||||
// Hash password
|
|
||||||
err := hashing.SetPassword(req.UpdatedPassword)
|
|
||||||
hashedPassword, err := hashing.HashPassword()
|
|
||||||
if err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
// Update user password
|
|
||||||
usr.Password = hashedPassword
|
|
||||||
// Save user in DB
|
|
||||||
if rowsAffected, err := l.UserStore.UpdatePassword(ctx, usr.Id, usr.Password); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
log.Println("Rows affected:", rowsAffected)
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Message = "Successful"
|
|
||||||
resp.Data = append(resp.Data, *usr)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "Passwords do not match"
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "User not found"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
@@ -1,70 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"encoding/json"
|
|
||||||
"net/http"
|
|
||||||
"net/http/httptest"
|
|
||||||
"strings"
|
|
||||||
"testing"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"github.com/stretchr/testify/assert"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler/endpoint"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store/mock"
|
|
||||||
)
|
|
||||||
|
|
||||||
func TestLogin(t *testing.T) {
|
|
||||||
cfg := GetConfig()
|
|
||||||
mockstore := mock.NewMockUserStore()
|
|
||||||
handler := NewLoginHandler(cfg, mockstore)
|
|
||||||
|
|
||||||
ctx, cancel := context.WithTimeout(context.Background(), 30*time.Second)
|
|
||||||
defer cancel()
|
|
||||||
|
|
||||||
testUser, unhashedPassword, err := createUser(ctx, mockstore)
|
|
||||||
assert.NoError(t, err, "Error Creating user")
|
|
||||||
|
|
||||||
loginUser := LoginAccount{Username: testUser.Username, Password: *unhashedPassword}
|
|
||||||
jsonValue, _ := json.Marshal(loginUser)
|
|
||||||
|
|
||||||
req, _ := http.NewRequest("POST", endpoint.Login, strings.NewReader(string(jsonValue)))
|
|
||||||
rr := httptest.NewRecorder()
|
|
||||||
|
|
||||||
handler.Login(rr, req)
|
|
||||||
|
|
||||||
assert.Equal(t, http.StatusOK, rr.Code)
|
|
||||||
|
|
||||||
var response LoginResponse
|
|
||||||
err = json.Unmarshal(rr.Body.Bytes(), &response)
|
|
||||||
assert.NoError(t, err)
|
|
||||||
|
|
||||||
assert.NotEmpty(t, response.Data, "An access token should have been returned")
|
|
||||||
}
|
|
||||||
|
|
||||||
func TestUpdatePassword(t *testing.T) {
|
|
||||||
cfg := GetConfig()
|
|
||||||
mockstore := mock.NewMockUserStore()
|
|
||||||
handler := NewLoginHandler(cfg, mockstore)
|
|
||||||
ctx, cancel := context.WithTimeout(context.Background(), 30*time.Second)
|
|
||||||
defer cancel()
|
|
||||||
|
|
||||||
testUser, unhashedPassword, err := createUser(ctx, mockstore)
|
|
||||||
assert.NoError(t, err, "Error Creating user")
|
|
||||||
assert.NotNil(t, testUser, "User should not be nil")
|
|
||||||
|
|
||||||
updatedPassword := "TakeATrip2yonder!"
|
|
||||||
newPassword := UpdatePasswordRequest{UserId: testUser.Id, CurrentPassword: *unhashedPassword, UpdatedPassword: updatedPassword, ConfirmedPassword: updatedPassword}
|
|
||||||
jsonValue, _ := json.Marshal(newPassword)
|
|
||||||
|
|
||||||
req, _ := http.NewRequest("PATCH", endpoint.UpdatePassword, strings.NewReader(string(jsonValue)))
|
|
||||||
rr := httptest.NewRecorder()
|
|
||||||
|
|
||||||
handler.UpdatePassword(rr, req)
|
|
||||||
assert.Equal(t, http.StatusOK, rr.Code)
|
|
||||||
|
|
||||||
var response UpdatePasswordResponse
|
|
||||||
err = json.Unmarshal(rr.Body.Bytes(), &response)
|
|
||||||
assert.NoError(t, err)
|
|
||||||
}
|
|
||||||
@@ -1,100 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"net/http"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/token"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
type RefreshHandler struct {
|
|
||||||
Config *config.Config
|
|
||||||
UserStore store.UserStore
|
|
||||||
ServiceStore store.ServiceStore
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewRefreshHandler(cfg *config.Config, userStore store.UserStore, serviceStore store.ServiceStore) *RefreshHandler {
|
|
||||||
return &RefreshHandler{Config: cfg, UserStore: userStore, ServiceStore: serviceStore}
|
|
||||||
}
|
|
||||||
|
|
||||||
type RefreshRequest struct {
|
|
||||||
AccessToken string `json:"access_token"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type RefreshResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []*token.Login `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
// Refresh godoc
|
|
||||||
// @Summary Obtain a refresh token
|
|
||||||
// @Description Refresh token endpoint (requires JWT)
|
|
||||||
// @Tags refresh
|
|
||||||
// @Accept json
|
|
||||||
// @Produce json
|
|
||||||
// @Security BearerAuth
|
|
||||||
// @Param request body RefreshRequest true "Data to refresh token"
|
|
||||||
// @Success 200 {object} RefreshResponse
|
|
||||||
// @Failure 400 {object} RefreshResponse
|
|
||||||
// @Failure 500 {object} RefreshResponse
|
|
||||||
// @Router /token/refresh [post]
|
|
||||||
func (rh *RefreshHandler) Refresh(w http.ResponseWriter, r *http.Request) {
|
|
||||||
var req RefreshRequest
|
|
||||||
if err := ExtractFromRequest(r, &req); err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
}
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
var resp RefreshResponse
|
|
||||||
|
|
||||||
secretKey := config.GetSecretKey()
|
|
||||||
tokGen := utility.TokenGenerator{}
|
|
||||||
tokGen.SetSecretKey(secretKey)
|
|
||||||
tokGen.SetHourOffset(12)
|
|
||||||
if verified, err := tokGen.VerifyToken(req.AccessToken); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if verified {
|
|
||||||
if id, err := tokGen.ExtractIdFromToken(req.AccessToken); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
ctx := r.Context()
|
|
||||||
if usr, err := rh.UserStore.GetUserByID(ctx, id); err != nil || usr == nil {
|
|
||||||
if serviceUsr, err := rh.ServiceStore.GetWithId(ctx, id); err != nil || serviceUsr == nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if myToken, err := tokGen.GenerateToken(serviceUsr); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Data = append(resp.Data, myToken)
|
|
||||||
resp.Message = "Successful"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
if myToken, err := tokGen.GenerateToken(usr); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Data = append(resp.Data, myToken)
|
|
||||||
resp.Message = "Successful"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "Unverified"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
@@ -1,70 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"encoding/json"
|
|
||||||
"net/http"
|
|
||||||
"net/http/httptest"
|
|
||||||
"strings"
|
|
||||||
"testing"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/stretchr/testify/assert"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler/endpoint"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store/mock"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
func TestRefreshTokenWithMock(t *testing.T) {
|
|
||||||
var serviceUser user.ServiceUser
|
|
||||||
var hashedPassword string
|
|
||||||
var err error
|
|
||||||
unhashed := "A9328nr29nudx3292m320!"
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(unhashed); err != nil {
|
|
||||||
assert.NoError(t, err, "Error setting password")
|
|
||||||
}
|
|
||||||
|
|
||||||
if hashedPassword, err = hashing.HashPassword(); err != nil {
|
|
||||||
assert.NoError(t, err, "Error hashing password: %v", err)
|
|
||||||
} else {
|
|
||||||
serviceUser.Passphrase = hashedPassword
|
|
||||||
}
|
|
||||||
serviceUser.Username = "swoon"
|
|
||||||
ctx := t.Context()
|
|
||||||
mockStore := mock.NewMockServiceUserStore()
|
|
||||||
userStore := mock.NewMockUserStore()
|
|
||||||
|
|
||||||
if err := mockStore.Create(ctx, &serviceUser); err != nil {
|
|
||||||
assert.NoError(t, err, "Error creating service user: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
cfg := GetConfig()
|
|
||||||
handler := NewServiceHandler(cfg, mockStore)
|
|
||||||
testService := ServiceLoginRequest{Username: serviceUser.Username, Passphrase: unhashed}
|
|
||||||
jsonValue, err := json.Marshal(testService)
|
|
||||||
assert.NoError(t, err, "Error marshaling request")
|
|
||||||
|
|
||||||
req, _ := http.NewRequest("POST", endpoint.LoginServiceUser, strings.NewReader(string(jsonValue)))
|
|
||||||
rr := httptest.NewRecorder()
|
|
||||||
|
|
||||||
handler.Login(rr, req)
|
|
||||||
assert.Equal(t, http.StatusOK, rr.Code)
|
|
||||||
|
|
||||||
var response ServiceLoginResponse
|
|
||||||
err = json.Unmarshal(rr.Body.Bytes(), &response)
|
|
||||||
assert.NoError(t, err)
|
|
||||||
|
|
||||||
accessToken := response.Data[0].AccessToken
|
|
||||||
|
|
||||||
testReq := RefreshRequest{AccessToken: accessToken}
|
|
||||||
jsonValue, err = json.Marshal(testReq)
|
|
||||||
assert.NoError(t, err, "Error marshaling request")
|
|
||||||
|
|
||||||
newHandler := NewRefreshHandler(cfg, userStore, mockStore)
|
|
||||||
req, _ = http.NewRequest("POST", endpoint.TokenRefresh, strings.NewReader(string(jsonValue)))
|
|
||||||
rr = httptest.NewRecorder()
|
|
||||||
|
|
||||||
newHandler.Refresh(rr, req)
|
|
||||||
assert.Equal(t, http.StatusOK, rr.Code)
|
|
||||||
}
|
|
||||||
@@ -1,188 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"net/http"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/google/uuid"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
type UserHandler struct {
|
|
||||||
Config *config.Config
|
|
||||||
UserStore store.UserStore
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewUserHandler(cfg *config.Config, userStore store.UserStore) *UserHandler {
|
|
||||||
return &UserHandler{Config: cfg, UserStore: userStore}
|
|
||||||
}
|
|
||||||
|
|
||||||
type RegisterUser struct {
|
|
||||||
PhoneNumber string `json:"phone_number"`
|
|
||||||
Username string `json:"username"`
|
|
||||||
Password string `json:"password"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type RegisterResponseItem struct {
|
|
||||||
Id uuid.UUID `json:"id"`
|
|
||||||
PhoneNumber string `json:"phone_number"`
|
|
||||||
Username string `json:"username"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type RegisterResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []RegisterResponseItem `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
// Register godoc
|
|
||||||
// @Summary Register user
|
|
||||||
// @Description Create a user that can send texts (requires JWT)
|
|
||||||
// @Tags users
|
|
||||||
// @Accept json
|
|
||||||
// @Produce json
|
|
||||||
// @Security BearerAuth
|
|
||||||
// @Param request body RegisterUser true "Data to add user"
|
|
||||||
// @Success 200 {object} RegisterResponse
|
|
||||||
// @Failure 400 {object} RegisterResponse
|
|
||||||
// @Failure 403 {object} RegisterResponse
|
|
||||||
// @Failure 500 {object} RegisterResponse
|
|
||||||
// @Router /register [post]
|
|
||||||
func (u *UserHandler) Register(w http.ResponseWriter, r *http.Request) {
|
|
||||||
var req RegisterUser
|
|
||||||
err := ExtractFromRequest(r, &req)
|
|
||||||
if err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
var resp RegisterResponse
|
|
||||||
if !u.Config.EnableRegistration {
|
|
||||||
statusCode = http.StatusForbidden
|
|
||||||
resp.Message = "Registration disabled"
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
user := user.User{Username: req.Username, Password: req.Password, PhoneNumber: req.PhoneNumber}
|
|
||||||
|
|
||||||
fmt.Println("Username:", user.Username)
|
|
||||||
|
|
||||||
ctx := r.Context()
|
|
||||||
|
|
||||||
if exists, err := u.UserStore.UserExists(ctx, user.Username); err != nil {
|
|
||||||
fmt.Printf("Error: %v", err)
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if exists {
|
|
||||||
// User already exists
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "Failure in creating User"
|
|
||||||
} else {
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(req.Password); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if hashedPassword, err := hashing.HashPassword(); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
user.Password = hashedPassword
|
|
||||||
err := u.UserStore.CreateUser(ctx, &user)
|
|
||||||
if err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
resp.Message = "Successful"
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Data = append(resp.Data, RegisterResponseItem{Id: user.Id, PhoneNumber: user.PhoneNumber, Username: user.Username})
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
}
|
|
||||||
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
|
|
||||||
type UpdateNameRequest struct {
|
|
||||||
Firstname *string `json:"first_name,omitempty"`
|
|
||||||
Lastname *string `json:"last_name,omitempty"`
|
|
||||||
UserId uuid.UUID `json:"user_id"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type UpdateNameResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []*user.User `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
// UpdateName godoc
|
|
||||||
// @Summary Update name of user
|
|
||||||
// @Description Update the first or last name of a user (requires JWT)
|
|
||||||
// @Tags users
|
|
||||||
// @Accept json
|
|
||||||
// @Produce json
|
|
||||||
// @Security BearerAuth
|
|
||||||
// @Param request body UpdateNameRequest true "Data to update name of user"
|
|
||||||
// @Success 200 {object} UpdateNameResponse
|
|
||||||
// @Failure 400 {object} UpdateNameResponse
|
|
||||||
// @Failure 403 {object} UpdateNameResponse
|
|
||||||
// @Failure 500 {object} UpdateNameResponse
|
|
||||||
// @Router /user/name/update [patch]
|
|
||||||
func (u *UserHandler) UpdateName(w http.ResponseWriter, r *http.Request) {
|
|
||||||
var req UpdateNameRequest
|
|
||||||
err := ExtractFromRequest(r, &req)
|
|
||||||
if err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
var resp UpdateNameResponse
|
|
||||||
updateFirstname := req.Firstname != nil && len(*req.Firstname) > 0
|
|
||||||
updateLastname := req.Lastname != nil && len(*req.Lastname) > 0
|
|
||||||
|
|
||||||
if req.UserId == uuid.Nil {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "User Id not provided"
|
|
||||||
} else if !updateFirstname && !updateLastname {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "No name provided"
|
|
||||||
} else {
|
|
||||||
ctx := r.Context()
|
|
||||||
if usr, err := u.UserStore.GetUserByID(ctx, req.UserId); err != nil {
|
|
||||||
log.Println("Error:", err)
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if usr == nil {
|
|
||||||
statusCode = http.StatusNotFound
|
|
||||||
resp.Message = "User not found"
|
|
||||||
} else {
|
|
||||||
// Add query to update names
|
|
||||||
if rowsAffected, err := u.UserStore.UpdateName(ctx, req.Firstname, req.Lastname, usr); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
log.Println("Rows updated:", rowsAffected)
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Message = "Successful"
|
|
||||||
resp.Data = append(resp.Data, usr)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
@@ -1,65 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"encoding/json"
|
|
||||||
"net/http"
|
|
||||||
"net/http/httptest"
|
|
||||||
"strings"
|
|
||||||
"testing"
|
|
||||||
|
|
||||||
"github.com/stretchr/testify/assert"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler/endpoint"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store/mock"
|
|
||||||
)
|
|
||||||
|
|
||||||
func TestCreateUserWithMock(t *testing.T) {
|
|
||||||
cfg := GetConfig()
|
|
||||||
mockstore := mock.NewMockUserStore()
|
|
||||||
handler := NewUserHandler(cfg, mockstore)
|
|
||||||
|
|
||||||
testUser := GetTestUser()
|
|
||||||
jsonValue, _ := json.Marshal(testUser)
|
|
||||||
|
|
||||||
req, _ := http.NewRequest("POST", endpoint.Register, strings.NewReader(string(jsonValue)))
|
|
||||||
rr := httptest.NewRecorder()
|
|
||||||
|
|
||||||
handler.Register(rr, req)
|
|
||||||
|
|
||||||
assert.Equal(t, http.StatusOK, rr.Code)
|
|
||||||
|
|
||||||
var response RegisterResponse
|
|
||||||
err := json.Unmarshal(rr.Body.Bytes(), &response)
|
|
||||||
assert.NoError(t, err)
|
|
||||||
|
|
||||||
assert.NotNil(t, response.Data[0].Id, "Id should not be nil")
|
|
||||||
}
|
|
||||||
|
|
||||||
func TestUpdateNameOfUser(t *testing.T) {
|
|
||||||
ctx := t.Context()
|
|
||||||
cfg := GetConfig()
|
|
||||||
userStore := mock.NewMockUserStore()
|
|
||||||
|
|
||||||
usr := GetTestUser()
|
|
||||||
if err := userStore.CreateUser(ctx, &usr); err != nil {
|
|
||||||
assert.NoError(t, err, "Error creating user")
|
|
||||||
}
|
|
||||||
|
|
||||||
testNameChange := UpdateNameRequest{}
|
|
||||||
testNameChange.Firstname = &[]string{"Bob"}[0]
|
|
||||||
testNameChange.Lastname = &[]string{"De-Buildor"}[0]
|
|
||||||
testNameChange.UserId = usr.Id
|
|
||||||
jsonValue, _ := json.Marshal(testNameChange)
|
|
||||||
|
|
||||||
req, _ := http.NewRequest("PATCH", endpoint.UpdateName, strings.NewReader(string(jsonValue)))
|
|
||||||
rr := httptest.NewRecorder()
|
|
||||||
|
|
||||||
handler := NewUserHandler(cfg, userStore)
|
|
||||||
handler.UpdateName(rr, req)
|
|
||||||
|
|
||||||
assert.Equal(t, http.StatusOK, rr.Code)
|
|
||||||
|
|
||||||
var response UpdateNameResponse
|
|
||||||
err := json.Unmarshal(rr.Body.Bytes(), &response)
|
|
||||||
assert.NoError(t, err)
|
|
||||||
}
|
|
||||||
@@ -1,185 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"log"
|
|
||||||
"net/http"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/token"
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
type ServiceHandler struct {
|
|
||||||
Config *config.Config
|
|
||||||
ServiceStore store.ServiceStore
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewServiceHandler(cfg *config.Config, serviceStore store.ServiceStore) *ServiceHandler {
|
|
||||||
return &ServiceHandler{Config: cfg, ServiceStore: serviceStore}
|
|
||||||
}
|
|
||||||
|
|
||||||
type ServiceCreationRequest struct {
|
|
||||||
Username string `json:"username"`
|
|
||||||
Passphrase string `json:"passphrase"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type ServiceCreationResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []*user.ServiceUser `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
// Register godoc
|
|
||||||
// @Summary Register service user
|
|
||||||
// @Description Create a service user that can send texts (requires JWT)
|
|
||||||
// @Tags service users
|
|
||||||
// @Accept json
|
|
||||||
// @Produce json
|
|
||||||
// @Security BearerAuth
|
|
||||||
// @Param request body ServiceCreationRequest true "Data to add user"
|
|
||||||
// @Success 200 {object} ServiceCreationResponse
|
|
||||||
// @Failure 400 {object} ServiceCreationResponse
|
|
||||||
// @Failure 403 {object} ServiceCreationResponse
|
|
||||||
// @Failure 500 {object} ServiceCreationResponse
|
|
||||||
// @Router /service/register [post]
|
|
||||||
func (s *ServiceHandler) Register(w http.ResponseWriter, r *http.Request) {
|
|
||||||
var req ServiceCreationRequest
|
|
||||||
if err := ExtractFromRequest(r, &req); err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
var resp ServiceCreationResponse
|
|
||||||
if !s.Config.EnableRegistration {
|
|
||||||
statusCode = http.StatusForbidden
|
|
||||||
resp.Message = "Registration disabled"
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
ctx := r.Context()
|
|
||||||
if exists, err := s.ServiceStore.CheckWithUsername(ctx, req.Username); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if exists {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "Service user already exists"
|
|
||||||
} else {
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(req.Passphrase); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if hashedPassword, err := hashing.HashPassword(); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
serviceUser := user.ServiceUser{Username: req.Username, Passphrase: hashedPassword}
|
|
||||||
if err := s.ServiceStore.Create(ctx, &serviceUser); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
statusCode = http.StatusCreated
|
|
||||||
resp.Message = "Successful"
|
|
||||||
resp.Data = append(resp.Data, &serviceUser)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
|
|
||||||
type ServiceLoginRequest struct {
|
|
||||||
Username string `json:"username"`
|
|
||||||
Passphrase string `json:"passphrase"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type ServiceLoginResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []*token.Login `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
// Login godoc
|
|
||||||
// @Summary Service login
|
|
||||||
// @Description Servce login and be given an access token (requires JWT)
|
|
||||||
// @Tags service users
|
|
||||||
// @Accept json
|
|
||||||
// @Produce json
|
|
||||||
// @Security BearerAuth
|
|
||||||
// @Param request body ServiceLoginRequest true "Data to obtain a service token"
|
|
||||||
// @Success 200 {object} ServiceLoginResponse
|
|
||||||
// @Failure 500 {object} ServiceLoginResponse
|
|
||||||
// @Router /service/login [post]
|
|
||||||
func (s *ServiceHandler) Login(w http.ResponseWriter, r *http.Request) {
|
|
||||||
var req ServiceLoginRequest
|
|
||||||
if err := ExtractFromRequest(r, &req); err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
}
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
var resp ServiceLoginResponse
|
|
||||||
|
|
||||||
if len(req.Username) == 0 || len(req.Passphrase) == 0 {
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "Invalid request"
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
ctx := r.Context()
|
|
||||||
|
|
||||||
if serviceUser, err := s.ServiceStore.GetWithUsername(ctx, req.Username); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if serviceUser == nil {
|
|
||||||
statusCode = http.StatusNotFound
|
|
||||||
resp.Message = "Not found"
|
|
||||||
} else {
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(req.Passphrase); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
if !hashing.CheckPasswordHash(req.Passphrase, serviceUser.Passphrase) {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = "Not valid"
|
|
||||||
} else {
|
|
||||||
lastLogin := time.Now()
|
|
||||||
var tokGen utility.TokenGenerator
|
|
||||||
tokGen.SetHourOffset(8)
|
|
||||||
secretKey := config.GetSecretKey()
|
|
||||||
tokGen.SetSecretKey(secretKey)
|
|
||||||
|
|
||||||
if myToken, err := tokGen.GenerateToken(*serviceUser); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
log.Println("Updating service user's last login")
|
|
||||||
if rowsAffected, err := s.ServiceStore.UpdateLastLogin(ctx, serviceUser.Id, lastLogin); err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
log.Println("Rows updated:", rowsAffected)
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Data = append(resp.Data, myToken)
|
|
||||||
resp.Message = "Successful"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
RespondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
@@ -1,76 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"encoding/json"
|
|
||||||
"net/http"
|
|
||||||
"net/http/httptest"
|
|
||||||
"strings"
|
|
||||||
"testing"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/stretchr/testify/assert"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler/endpoint"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store/mock"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
func TestCreateServiceUserWithMock(t *testing.T) {
|
|
||||||
cfg := GetConfig()
|
|
||||||
mockStore := mock.NewMockServiceUserStore()
|
|
||||||
handler := NewServiceHandler(cfg, mockStore)
|
|
||||||
|
|
||||||
testService := ServiceCreationRequest{Username: "swoon", Passphrase: "Ewrewr329n12y3x2!2"}
|
|
||||||
jsonValue, err := json.Marshal(testService)
|
|
||||||
assert.NoError(t, err, "Error marshaling request")
|
|
||||||
|
|
||||||
req, _ := http.NewRequest("POST", endpoint.CreateServiceUser, strings.NewReader(string(jsonValue)))
|
|
||||||
rr := httptest.NewRecorder()
|
|
||||||
|
|
||||||
handler.Register(rr, req)
|
|
||||||
assert.Equal(t, http.StatusCreated, rr.Code)
|
|
||||||
|
|
||||||
var response ServiceCreationResponse
|
|
||||||
err = json.Unmarshal(rr.Body.Bytes(), &response)
|
|
||||||
assert.NoError(t, err)
|
|
||||||
}
|
|
||||||
|
|
||||||
func TestLoginServiceUserWithMock(t *testing.T) {
|
|
||||||
var serviceUser user.ServiceUser
|
|
||||||
var hashedPassword string
|
|
||||||
var err error
|
|
||||||
unhashed := "A9328nr29nudx3292m320!"
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(unhashed); err != nil {
|
|
||||||
assert.NoError(t, err, "Error setting password")
|
|
||||||
}
|
|
||||||
|
|
||||||
if hashedPassword, err = hashing.HashPassword(); err != nil {
|
|
||||||
assert.NoError(t, err, "Error hashing password: %v", err)
|
|
||||||
} else {
|
|
||||||
serviceUser.Passphrase = hashedPassword
|
|
||||||
}
|
|
||||||
serviceUser.Username = "swoon"
|
|
||||||
ctx := t.Context()
|
|
||||||
mockStore := mock.NewMockServiceUserStore()
|
|
||||||
|
|
||||||
if err := mockStore.Create(ctx, &serviceUser); err != nil {
|
|
||||||
assert.NoError(t, err, "Error creating service user: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
cfg := GetConfig()
|
|
||||||
handler := NewServiceHandler(cfg, mockStore)
|
|
||||||
testService := ServiceLoginRequest{Username: serviceUser.Username, Passphrase: unhashed}
|
|
||||||
jsonValue, err := json.Marshal(testService)
|
|
||||||
assert.NoError(t, err, "Error marshaling request")
|
|
||||||
|
|
||||||
req, _ := http.NewRequest("POST", endpoint.LoginServiceUser, strings.NewReader(string(jsonValue)))
|
|
||||||
rr := httptest.NewRecorder()
|
|
||||||
|
|
||||||
handler.Login(rr, req)
|
|
||||||
assert.Equal(t, http.StatusOK, rr.Code)
|
|
||||||
|
|
||||||
var response ServiceLoginResponse
|
|
||||||
err = json.Unmarshal(rr.Body.Bytes(), &response)
|
|
||||||
assert.NoError(t, err)
|
|
||||||
}
|
|
||||||
@@ -1,21 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"encoding/json"
|
|
||||||
"net/http"
|
|
||||||
)
|
|
||||||
|
|
||||||
func ExtractFromRequest(r *http.Request, reqItem interface{}) error {
|
|
||||||
err := json.NewDecoder(r.Body).Decode(&reqItem)
|
|
||||||
if err != nil {
|
|
||||||
return err
|
|
||||||
} else {
|
|
||||||
return nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func RespondWithJson(w http.ResponseWriter, statusCode int, data interface{}) {
|
|
||||||
w.Header().Set("Content-type", "application/json")
|
|
||||||
w.WriteHeader(statusCode)
|
|
||||||
json.NewEncoder(w).Encode(data)
|
|
||||||
}
|
|
||||||
@@ -1,63 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"os"
|
|
||||||
"path"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/joho/godotenv"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/store/mock"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
func GetTestUser() user.User {
|
|
||||||
return user.User{Username: "ghost", PhoneNumber: "+1234567890", Password: "Dfgdffd343dfd!"}
|
|
||||||
}
|
|
||||||
|
|
||||||
func GetConfig() *config.Config {
|
|
||||||
err := godotenv.Load()
|
|
||||||
if err != nil {
|
|
||||||
cwd, _ := os.Getwd()
|
|
||||||
envPath := path.Join(cwd, "../..", ".env")
|
|
||||||
if err = godotenv.Load(envPath); err != nil {
|
|
||||||
prevPath := path.Join(envPath, "../..", ".env")
|
|
||||||
if err = godotenv.Load(prevPath); err != nil {
|
|
||||||
log.Fatal("Error loading .env file")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
unpackedConnString := config.UnpackDBConnString()
|
|
||||||
dbConnString := unpackedConnString.Parse()
|
|
||||||
|
|
||||||
return &config.Config{
|
|
||||||
DBConnString: dbConnString,
|
|
||||||
ServerPort: config.Port,
|
|
||||||
ResetDB: false,
|
|
||||||
EnableRegistration: config.CheckRegistration(),
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func createUser(ctx context.Context, userStore *mock.MockUserStore) (*user.User, *string, error) {
|
|
||||||
testUser := GetTestUser()
|
|
||||||
unhashedPassword := testUser.Password
|
|
||||||
hashing := utility.HashMash{}
|
|
||||||
if err := hashing.SetPassword(testUser.Password); err != nil {
|
|
||||||
return nil, nil, fmt.Errorf("Error setting password: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
hashedPassword, err := hashing.HashPassword()
|
|
||||||
if err != nil {
|
|
||||||
return nil, nil, err
|
|
||||||
}
|
|
||||||
|
|
||||||
testUser.Password = hashedPassword
|
|
||||||
userStore.CreateUser(ctx, &testUser)
|
|
||||||
|
|
||||||
return &testUser, &unhashedPassword, nil
|
|
||||||
}
|
|
||||||
@@ -1,47 +0,0 @@
|
|||||||
package middleware
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"net/http"
|
|
||||||
"strings"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/services"
|
|
||||||
)
|
|
||||||
|
|
||||||
type contextKey string
|
|
||||||
|
|
||||||
const (
|
|
||||||
UserContextKey contextKey = "user"
|
|
||||||
)
|
|
||||||
|
|
||||||
func AuthMiddleware(authService *services.JWTService) func(http.Handler) http.Handler {
|
|
||||||
return func(next http.Handler) http.Handler {
|
|
||||||
return http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
|
|
||||||
authHeader := r.Header.Get("Authorization")
|
|
||||||
if authHeader == "" {
|
|
||||||
http.Error(w, "Authorization header required", http.StatusUnauthorized)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
// Extract token from "Bearer <token>"
|
|
||||||
parts := strings.Split(authHeader, " ")
|
|
||||||
if len(parts) != 2 || parts[0] != "Bearer" {
|
|
||||||
http.Error(w, "Invalid authorization header format", http.StatusUnauthorized)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
token := parts[1]
|
|
||||||
|
|
||||||
// Validate token with auth service
|
|
||||||
user, err := authService.ValidateToken(token)
|
|
||||||
if err != nil {
|
|
||||||
http.Error(w, "Invalid token", http.StatusUnauthorized)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
// Add user to context
|
|
||||||
ctx := context.WithValue(r.Context(), UserContextKey, user)
|
|
||||||
next.ServeHTTP(w, r.WithContext(ctx))
|
|
||||||
})
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -1,22 +0,0 @@
|
|||||||
package middleware
|
|
||||||
|
|
||||||
import (
|
|
||||||
"log"
|
|
||||||
"net/http"
|
|
||||||
"time"
|
|
||||||
)
|
|
||||||
|
|
||||||
func Logging(next http.Handler) http.Handler {
|
|
||||||
return http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
|
|
||||||
start := time.Now()
|
|
||||||
next.ServeHTTP(w, r)
|
|
||||||
log.Printf("%s %s %v", r.Method, r.URL.Path, time.Since(start))
|
|
||||||
})
|
|
||||||
}
|
|
||||||
|
|
||||||
func JSONContentType(next http.Handler) http.Handler {
|
|
||||||
return http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
|
|
||||||
w.Header().Set("Content-Type", "application/json")
|
|
||||||
next.ServeHTTP(w, r)
|
|
||||||
})
|
|
||||||
}
|
|
||||||
@@ -1,49 +0,0 @@
|
|||||||
package services
|
|
||||||
|
|
||||||
import (
|
|
||||||
"time"
|
|
||||||
|
|
||||||
txtmodels_token "git.kundeng.us/phoenix/textsender-models/tx0/token"
|
|
||||||
txtmodels_user "git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/golang-jwt/jwt/v5"
|
|
||||||
)
|
|
||||||
|
|
||||||
type JWTService struct {
|
|
||||||
secretKey []byte
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewJWTService(secretKey string) *JWTService {
|
|
||||||
return &JWTService{
|
|
||||||
secretKey: []byte(secretKey),
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *JWTService) ValidateToken(tokenString string) (*txtmodels_user.User, error) {
|
|
||||||
// TODO: Include more user information in the claims to populate user
|
|
||||||
claims := &txtmodels_token.Claims{}
|
|
||||||
|
|
||||||
token, err := jwt.ParseWithClaims(tokenString, claims, func(token *jwt.Token) (interface{}, error) {
|
|
||||||
// Validate the signing method
|
|
||||||
if _, ok := token.Method.(*jwt.SigningMethodHMAC); !ok {
|
|
||||||
return nil, jwt.ErrSignatureInvalid
|
|
||||||
}
|
|
||||||
return s.secretKey, nil
|
|
||||||
})
|
|
||||||
|
|
||||||
if err != nil {
|
|
||||||
return nil, err
|
|
||||||
}
|
|
||||||
|
|
||||||
if !token.Valid {
|
|
||||||
return nil, jwt.ErrSignatureInvalid
|
|
||||||
}
|
|
||||||
|
|
||||||
// Check token expiration
|
|
||||||
if time.Now().After(claims.ExpiresAt.Time) {
|
|
||||||
return nil, jwt.ErrTokenExpired
|
|
||||||
}
|
|
||||||
|
|
||||||
return &txtmodels_user.User{
|
|
||||||
Id: claims.UserId,
|
|
||||||
}, nil
|
|
||||||
}
|
|
||||||
@@ -1,125 +0,0 @@
|
|||||||
package mock
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"errors"
|
|
||||||
"fmt"
|
|
||||||
"sync"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/google/uuid"
|
|
||||||
)
|
|
||||||
|
|
||||||
type MockServiceUserStore struct {
|
|
||||||
ServiceUsers map[uuid.UUID]*user.ServiceUser
|
|
||||||
ServiceUsersByUsername map[string]*user.ServiceUser
|
|
||||||
mu sync.RWMutex
|
|
||||||
Error error // Optional: simulate errors
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewMockServiceUserStore() *MockServiceUserStore {
|
|
||||||
return &MockServiceUserStore{
|
|
||||||
ServiceUsers: make(map[uuid.UUID]*user.ServiceUser),
|
|
||||||
ServiceUsersByUsername: make(map[string]*user.ServiceUser),
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockServiceUserStore) Create(ctx context.Context, user *user.ServiceUser) error {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
if user.Id == uuid.Nil {
|
|
||||||
user.Id = uuid.New()
|
|
||||||
}
|
|
||||||
|
|
||||||
if _, exists := m.ServiceUsersByUsername[user.Username]; exists {
|
|
||||||
return errors.New("service User with username already exists")
|
|
||||||
}
|
|
||||||
|
|
||||||
m.ServiceUsers[user.Id] = user
|
|
||||||
m.ServiceUsersByUsername[user.Username] = user
|
|
||||||
return nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockServiceUserStore) CheckWithUsername(ctx context.Context, username string) (bool, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return false, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
var exists bool
|
|
||||||
|
|
||||||
for _, serviceUser := range m.ServiceUsers {
|
|
||||||
if serviceUser.Username == username {
|
|
||||||
exists = true
|
|
||||||
break
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
if !exists {
|
|
||||||
return exists, nil
|
|
||||||
} else {
|
|
||||||
return exists, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockServiceUserStore) GetWithUsername(ctx context.Context, username string) (*user.ServiceUser, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return nil, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
serviceUser := m.ServiceUsersByUsername[username]
|
|
||||||
if serviceUser != nil {
|
|
||||||
return serviceUser, nil
|
|
||||||
} else {
|
|
||||||
return nil, fmt.Errorf("User not found")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockServiceUserStore) GetWithId(ctx context.Context, id uuid.UUID) (*user.ServiceUser, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return nil, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
for _, serviceUser := range m.ServiceUsers {
|
|
||||||
if serviceUser.Id == id {
|
|
||||||
return serviceUser, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
return nil, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockServiceUserStore) UpdateLastLogin(ctx context.Context, id uuid.UUID, lastLogin time.Time) (int64, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return 0, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
serviceUser, exists := m.ServiceUsers[id]
|
|
||||||
if !exists {
|
|
||||||
return 0, errors.New("Service user not found")
|
|
||||||
}
|
|
||||||
|
|
||||||
serviceUser.LastLogin = &lastLogin
|
|
||||||
|
|
||||||
m.ServiceUsers[id] = serviceUser
|
|
||||||
m.ServiceUsersByUsername[serviceUser.Username] = serviceUser
|
|
||||||
|
|
||||||
return 1, nil
|
|
||||||
}
|
|
||||||
@@ -1,192 +0,0 @@
|
|||||||
package mock
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"errors"
|
|
||||||
"fmt"
|
|
||||||
"sync"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"github.com/google/uuid"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
)
|
|
||||||
|
|
||||||
type MockUserStore struct {
|
|
||||||
Users map[uuid.UUID]*user.User
|
|
||||||
UsersByUsername map[string]*user.User
|
|
||||||
mu sync.RWMutex
|
|
||||||
Error error // Optional: simulate errors
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewMockUserStore() *MockUserStore {
|
|
||||||
return &MockUserStore{
|
|
||||||
Users: make(map[uuid.UUID]*user.User),
|
|
||||||
UsersByUsername: make(map[string]*user.User),
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) CreateUser(ctx context.Context, user *user.User) error {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
if user.Id == uuid.Nil {
|
|
||||||
user.Id = uuid.New()
|
|
||||||
}
|
|
||||||
|
|
||||||
if _, exists := m.UsersByUsername[user.Username]; exists {
|
|
||||||
return errors.New("User with username already exists")
|
|
||||||
}
|
|
||||||
|
|
||||||
user.Created = time.Now()
|
|
||||||
|
|
||||||
m.Users[user.Id] = user
|
|
||||||
m.UsersByUsername[user.Username] = user
|
|
||||||
return nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) GetUserByID(ctx context.Context, id uuid.UUID) (*user.User, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return nil, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return nil, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
user, exists := m.Users[id]
|
|
||||||
if !exists {
|
|
||||||
return nil, errors.New("User not found")
|
|
||||||
}
|
|
||||||
|
|
||||||
return user, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) GetUserByUsername(ctx context.Context, username string) (*user.User, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return nil, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
user, exists := m.UsersByUsername[username]
|
|
||||||
if !exists {
|
|
||||||
return nil, errors.New("User not found")
|
|
||||||
}
|
|
||||||
|
|
||||||
return user, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) GetAllUsers(ctx context.Context) ([]*user.User, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return nil, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
users := make([]*user.User, 0, len(m.Users))
|
|
||||||
for _, user := range m.Users {
|
|
||||||
users = append(users, user)
|
|
||||||
}
|
|
||||||
|
|
||||||
return users, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) UserExists(ctx context.Context, username string) (bool, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return false, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
_, exists := m.UsersByUsername[username]
|
|
||||||
if !exists {
|
|
||||||
return exists, nil
|
|
||||||
} else {
|
|
||||||
return exists, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) UpdatePassword(ctx context.Context, id uuid.UUID, password string) (int64, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return 0, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
user, exists := m.Users[id]
|
|
||||||
if !exists {
|
|
||||||
return 0, errors.New("User not found")
|
|
||||||
}
|
|
||||||
|
|
||||||
user.Password = password
|
|
||||||
|
|
||||||
m.Users[id] = user
|
|
||||||
m.UsersByUsername[user.Username] = user
|
|
||||||
|
|
||||||
return 1, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) UpdateLastLogin(ctx context.Context, id uuid.UUID, lastLogin time.Time) (int64, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return 0, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
user, exists := m.Users[id]
|
|
||||||
if !exists {
|
|
||||||
return 0, errors.New("User not found")
|
|
||||||
}
|
|
||||||
|
|
||||||
user.LastLogin = &lastLogin
|
|
||||||
|
|
||||||
m.Users[id] = user
|
|
||||||
m.UsersByUsername[user.Username] = user
|
|
||||||
|
|
||||||
return 1, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (m *MockUserStore) UpdateName(ctx context.Context, firstname *string, lastname *string, usr *user.User) (int64, error) {
|
|
||||||
m.mu.Lock()
|
|
||||||
defer m.mu.Unlock()
|
|
||||||
|
|
||||||
if m.Error != nil {
|
|
||||||
return 0, m.Error
|
|
||||||
}
|
|
||||||
|
|
||||||
if firstname == nil && lastname == nil {
|
|
||||||
return 0, fmt.Errorf("Names not provided")
|
|
||||||
}
|
|
||||||
|
|
||||||
user, exists := m.Users[usr.Id]
|
|
||||||
if !exists {
|
|
||||||
return 0, errors.New("User not found")
|
|
||||||
}
|
|
||||||
|
|
||||||
if firstname != nil && lastname != nil {
|
|
||||||
user.Firstname = firstname
|
|
||||||
user.Lastname = lastname
|
|
||||||
} else if firstname != nil {
|
|
||||||
user.Firstname = firstname
|
|
||||||
} else {
|
|
||||||
user.Lastname = lastname
|
|
||||||
}
|
|
||||||
|
|
||||||
m.Users[usr.Id] = user
|
|
||||||
m.UsersByUsername[user.Username] = user
|
|
||||||
|
|
||||||
return 1, nil
|
|
||||||
}
|
|
||||||
@@ -1,95 +0,0 @@
|
|||||||
package store
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/google/uuid"
|
|
||||||
"github.com/jackc/pgx/v5"
|
|
||||||
"github.com/jackc/pgx/v5/pgxpool"
|
|
||||||
)
|
|
||||||
|
|
||||||
// TODO: Rename this to ServiceUserStore
|
|
||||||
type ServiceStore interface {
|
|
||||||
CheckWithUsername(ctx context.Context, username string) (bool, error)
|
|
||||||
GetWithUsername(ctx context.Context, username string) (*user.ServiceUser, error)
|
|
||||||
GetWithId(ctx context.Context, id uuid.UUID) (*user.ServiceUser, error)
|
|
||||||
Create(ctx context.Context, serviceUser *user.ServiceUser) error
|
|
||||||
UpdateLastLogin(ctx context.Context, id uuid.UUID, lastLogin time.Time) (int64, error)
|
|
||||||
}
|
|
||||||
|
|
||||||
type PGServiceStore struct {
|
|
||||||
db *pgxpool.Pool
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewServiceStore(db *pgxpool.Pool) *PGServiceStore {
|
|
||||||
return &PGServiceStore{db: db}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGServiceStore) CheckWithUsername(ctx context.Context, username string) (bool, error) {
|
|
||||||
var exists bool
|
|
||||||
query := `SELECT EXISTS(SELECT 1 FROM service_users WHERE Username = $1)`
|
|
||||||
|
|
||||||
if err := s.db.QueryRow(ctx, query, username).Scan(&exists); err != nil {
|
|
||||||
if err == pgx.ErrNoRows {
|
|
||||||
return exists, nil
|
|
||||||
} else {
|
|
||||||
return exists, fmt.Errorf("Error querying row: %v", err)
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return exists, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGServiceStore) GetWithUsername(ctx context.Context, username string) (*user.ServiceUser, error) {
|
|
||||||
var serviceUser user.ServiceUser
|
|
||||||
query := `SELECT id, username, passphrase, created FROM service_users WHERE username = $1`
|
|
||||||
|
|
||||||
if err := s.db.QueryRow(ctx, query, username).Scan(&serviceUser.Id, &serviceUser.Username, &serviceUser.Passphrase, &serviceUser.Created); err != nil {
|
|
||||||
if err == pgx.ErrNoRows {
|
|
||||||
return nil, nil
|
|
||||||
} else {
|
|
||||||
return nil, fmt.Errorf("Error querying row: %v", err)
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return &serviceUser, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGServiceStore) GetWithId(ctx context.Context, id uuid.UUID) (*user.ServiceUser, error) {
|
|
||||||
var serviceUser user.ServiceUser
|
|
||||||
query := `SELECT id, username, passphrase, created FROM service_users WHERE id = $1`
|
|
||||||
|
|
||||||
if err := s.db.QueryRow(ctx, query, id).Scan(&serviceUser.Id, &serviceUser.Username, &serviceUser.Passphrase, &serviceUser.Created); err != nil {
|
|
||||||
if err == pgx.ErrNoRows {
|
|
||||||
return nil, nil
|
|
||||||
} else {
|
|
||||||
return nil, fmt.Errorf("Error querying row: %v", err)
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return &serviceUser, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGServiceStore) Create(ctx context.Context, serviceUser *user.ServiceUser) error {
|
|
||||||
query := `
|
|
||||||
INSERT INTO service_users (username, passphrase)
|
|
||||||
VALUES ($1, $2)
|
|
||||||
RETURNING id, created
|
|
||||||
`
|
|
||||||
|
|
||||||
return s.db.QueryRow(ctx, query, serviceUser.Username, serviceUser.Passphrase).Scan(
|
|
||||||
&serviceUser.Id, &serviceUser.Created,
|
|
||||||
)
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGServiceStore) UpdateLastLogin(ctx context.Context, id uuid.UUID, lastLogin time.Time) (int64, error) {
|
|
||||||
query := `UPDATE service_users SET last_login = $1 WHERE id = $2`
|
|
||||||
if affected, err := s.db.Exec(ctx, query, lastLogin, id); err != nil {
|
|
||||||
return 0, err
|
|
||||||
} else {
|
|
||||||
return affected.RowsAffected(), nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -1,173 +0,0 @@
|
|||||||
package store
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"github.com/google/uuid"
|
|
||||||
"github.com/jackc/pgx/v5"
|
|
||||||
"github.com/jackc/pgx/v5/pgxpool"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
)
|
|
||||||
|
|
||||||
type UserStore interface {
|
|
||||||
CreateUser(ctx context.Context, user *user.User) error
|
|
||||||
GetUserByID(ctx context.Context, id uuid.UUID) (*user.User, error)
|
|
||||||
GetUserByUsername(ctx context.Context, username string) (*user.User, error)
|
|
||||||
GetAllUsers(ctx context.Context) ([]*user.User, error)
|
|
||||||
UserExists(ctx context.Context, username string) (bool, error)
|
|
||||||
UpdatePassword(ctx context.Context, id uuid.UUID, password string) (int64, error)
|
|
||||||
UpdateLastLogin(ctx context.Context, id uuid.UUID, lastLogin time.Time) (int64, error)
|
|
||||||
UpdateName(ctx context.Context, firstname *string, lastname *string, usr *user.User) (int64, error)
|
|
||||||
}
|
|
||||||
|
|
||||||
type PGUserStore struct {
|
|
||||||
db *pgxpool.Pool
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewUserStore(db *pgxpool.Pool) *PGUserStore {
|
|
||||||
return &PGUserStore{db: db}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) CreateUser(ctx context.Context, user *user.User) error {
|
|
||||||
query := `
|
|
||||||
INSERT INTO users (phone_number, username, password)
|
|
||||||
VALUES ($1, $2, $3)
|
|
||||||
RETURNING id, phone_number, username, created
|
|
||||||
`
|
|
||||||
|
|
||||||
return s.db.QueryRow(ctx, query, user.PhoneNumber, user.Username, user.Password).Scan(
|
|
||||||
&user.Id, &user.PhoneNumber, &user.Username, &user.Created,
|
|
||||||
)
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) GetUserByID(ctx context.Context, id uuid.UUID) (*user.User, error) {
|
|
||||||
query := `SELECT id, username, password, phone_number, created FROM users WHERE id = $1`
|
|
||||||
|
|
||||||
var user user.User
|
|
||||||
err := s.db.QueryRow(ctx, query, id).Scan(
|
|
||||||
&user.Id, &user.Username, &user.Password, &user.PhoneNumber, &user.Created,
|
|
||||||
)
|
|
||||||
|
|
||||||
if err == pgx.ErrNoRows {
|
|
||||||
return nil, nil
|
|
||||||
}
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("getting user by ID: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return &user, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) GetUserByUsername(ctx context.Context, username string) (*user.User, error) {
|
|
||||||
query := `SELECT id, username, password, phone_number, created FROM users WHERE username = $1`
|
|
||||||
|
|
||||||
var user user.User
|
|
||||||
err := s.db.QueryRow(ctx, query, username).Scan(
|
|
||||||
&user.Id, &user.Username, &user.Password, &user.PhoneNumber, &user.Created,
|
|
||||||
)
|
|
||||||
|
|
||||||
if err == pgx.ErrNoRows {
|
|
||||||
return nil, nil
|
|
||||||
}
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("getting user by ID: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return &user, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) GetAllUsers(ctx context.Context) ([]*user.User, error) {
|
|
||||||
query := `SELECT id, username, password, phone_number, created FROM users`
|
|
||||||
|
|
||||||
rows, err := s.db.Query(ctx, query)
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("querying all users: %w", err)
|
|
||||||
}
|
|
||||||
defer rows.Close()
|
|
||||||
|
|
||||||
var users []*user.User
|
|
||||||
for rows.Next() {
|
|
||||||
var user user.User
|
|
||||||
if err := rows.Scan(
|
|
||||||
&user.Id, &user.Username, &user.Password, &user.PhoneNumber, &user.Created,
|
|
||||||
); err != nil {
|
|
||||||
return nil, fmt.Errorf("scanning user row: %w", err)
|
|
||||||
}
|
|
||||||
users = append(users, &user)
|
|
||||||
}
|
|
||||||
|
|
||||||
if err := rows.Err(); err != nil {
|
|
||||||
return nil, fmt.Errorf("iterating user rows: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return users, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) UserExists(ctx context.Context, username string) (bool, error) {
|
|
||||||
query := `SELECT EXISTS(SELECT 1 FROM users WHERE username = $1)`
|
|
||||||
|
|
||||||
var exists bool
|
|
||||||
err := s.db.QueryRow(ctx, query, username).Scan(&exists)
|
|
||||||
if err != nil {
|
|
||||||
return false, fmt.Errorf("checking if user exists: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return exists, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) UpdatePassword(ctx context.Context, id uuid.UUID, password string) (int64, error) {
|
|
||||||
query := `UPDATE users SET password = $1 WHERE id = $2`
|
|
||||||
if affected, err := s.db.Exec(ctx, query, password, id); err != nil {
|
|
||||||
return 0, err
|
|
||||||
} else {
|
|
||||||
return affected.RowsAffected(), nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) UpdateLastLogin(ctx context.Context, id uuid.UUID, lastLogin time.Time) (int64, error) {
|
|
||||||
query := `UPDATE users SET last_login = $1 WHERE id = $2`
|
|
||||||
if affected, err := s.db.Exec(ctx, query, lastLogin, id); err != nil {
|
|
||||||
return 0, err
|
|
||||||
} else {
|
|
||||||
return affected.RowsAffected(), nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) UpdateName(ctx context.Context, firstname *string, lastname *string, usr *user.User) (int64, error) {
|
|
||||||
var query string
|
|
||||||
|
|
||||||
if firstname == nil && lastname == nil {
|
|
||||||
return 0, fmt.Errorf("Provided names are empty")
|
|
||||||
} else {
|
|
||||||
tableName := "users"
|
|
||||||
if firstname != nil && lastname != nil {
|
|
||||||
query = fmt.Sprintf("UPDATE %s SET first_name = $1, last_name = $2 WHERE id = $3", tableName)
|
|
||||||
if affected, err := s.db.Exec(ctx, query, firstname, lastname, usr.Id); err != nil {
|
|
||||||
return 0, err
|
|
||||||
} else {
|
|
||||||
usr.Firstname = firstname
|
|
||||||
usr.Lastname = lastname
|
|
||||||
return affected.RowsAffected(), nil
|
|
||||||
}
|
|
||||||
} else if firstname != nil {
|
|
||||||
query = fmt.Sprintf("UPDATE %s SET first_name = $1 WHERE id = $2", tableName)
|
|
||||||
if affected, err := s.db.Exec(ctx, query, firstname, usr.Id); err != nil {
|
|
||||||
return 0, err
|
|
||||||
} else {
|
|
||||||
usr.Firstname = firstname
|
|
||||||
return affected.RowsAffected(), nil
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
query = fmt.Sprintf("UPDATE %s SET last_name = $1 WHERE id = $2", tableName)
|
|
||||||
if affected, err := s.db.Exec(ctx, query, lastname, usr.Id); err != nil {
|
|
||||||
return 0, err
|
|
||||||
} else {
|
|
||||||
usr.Lastname = lastname
|
|
||||||
return affected.RowsAffected(), nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -1,62 +0,0 @@
|
|||||||
package utility
|
|
||||||
|
|
||||||
import (
|
|
||||||
"fmt"
|
|
||||||
"strings"
|
|
||||||
"unicode"
|
|
||||||
|
|
||||||
"golang.org/x/crypto/bcrypt"
|
|
||||||
)
|
|
||||||
|
|
||||||
type HashMash struct {
|
|
||||||
password string
|
|
||||||
}
|
|
||||||
|
|
||||||
func (h *HashMash) HashPassword() (string, error) {
|
|
||||||
bytes, err := bcrypt.GenerateFromPassword([]byte(h.password), bcrypt.DefaultCost)
|
|
||||||
return string(bytes), err
|
|
||||||
}
|
|
||||||
|
|
||||||
func (h *HashMash) CheckPasswordHash(password string, hash string) bool {
|
|
||||||
err := bcrypt.CompareHashAndPassword([]byte(hash), []byte(password))
|
|
||||||
return err == nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (h *HashMash) SetPassword(password string) error {
|
|
||||||
if len(password) < 8 {
|
|
||||||
return fmt.Errorf("Password length is not enought")
|
|
||||||
} else if len(password) > 32 {
|
|
||||||
return fmt.Errorf("Password length is too long")
|
|
||||||
} else {
|
|
||||||
specialCharacters := "!@#$%^&*?"
|
|
||||||
numbers := "0123456789"
|
|
||||||
if strings.ContainsAny(password, specialCharacters) && strings.ContainsAny(password, numbers) {
|
|
||||||
var hasAtleastOneUpper, hasAtleastOneLower bool
|
|
||||||
|
|
||||||
for _, c := range password {
|
|
||||||
if unicode.IsUpper(c) {
|
|
||||||
hasAtleastOneUpper = true
|
|
||||||
} else if unicode.IsLower(c) {
|
|
||||||
hasAtleastOneLower = true
|
|
||||||
}
|
|
||||||
|
|
||||||
if hasAtleastOneLower && hasAtleastOneUpper {
|
|
||||||
break
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
if hasAtleastOneUpper && hasAtleastOneLower {
|
|
||||||
h.password = password
|
|
||||||
return nil
|
|
||||||
} else {
|
|
||||||
if !hasAtleastOneUpper {
|
|
||||||
return fmt.Errorf("Password requires at least one upper case letter")
|
|
||||||
} else {
|
|
||||||
return fmt.Errorf("Password requires at least one lower case letter")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return fmt.Errorf("Password should contain special characters and numbers")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
@@ -1,130 +0,0 @@
|
|||||||
package utility
|
|
||||||
|
|
||||||
import (
|
|
||||||
"fmt"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/token"
|
|
||||||
"git.kundeng.us/phoenix/textsender-models/tx0/user"
|
|
||||||
"github.com/golang-jwt/jwt/v5"
|
|
||||||
"github.com/google/uuid"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
)
|
|
||||||
|
|
||||||
const ROLE_TYPE = "regular"
|
|
||||||
const TOKEN_TYPE = "Bearer"
|
|
||||||
|
|
||||||
type TokenGenerator struct {
|
|
||||||
SecretKey []byte
|
|
||||||
hourOffset time.Duration
|
|
||||||
}
|
|
||||||
|
|
||||||
func (t *TokenGenerator) SetSecretKey(secretKey string) {
|
|
||||||
t.SecretKey = []byte(secretKey)
|
|
||||||
}
|
|
||||||
|
|
||||||
func (t *TokenGenerator) SetHourOffset(offset time.Duration) error {
|
|
||||||
if offset < 48 {
|
|
||||||
t.hourOffset = offset
|
|
||||||
return nil
|
|
||||||
} else {
|
|
||||||
return fmt.Errorf("No change")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (t *TokenGenerator) GenerateToken(usr any) (*token.Login, error) {
|
|
||||||
issuedAt := time.Now()
|
|
||||||
if t.hourOffset == 0 {
|
|
||||||
t.hourOffset = 4
|
|
||||||
}
|
|
||||||
expirationTime := time.Now().Add(t.hourOffset * time.Hour)
|
|
||||||
|
|
||||||
if claims, err := t.generateClaims(usr, TOKEN_TYPE, issuedAt, expirationTime); err != nil {
|
|
||||||
return nil, fmt.Errorf("Error generating claims: %v", err)
|
|
||||||
} else {
|
|
||||||
myToken := jwt.NewWithClaims(jwt.SigningMethodHS256, *claims)
|
|
||||||
if tokenString, err := myToken.SignedString(t.SecretKey); err != nil {
|
|
||||||
return nil, err
|
|
||||||
} else {
|
|
||||||
return &token.Login{UserId: claims.UserId, AccessToken: tokenString, TokenType: TOKEN_TYPE, ExpiresIn: expirationTime.Unix(), IssuedAt: issuedAt.Unix()}, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (t *TokenGenerator) VerifyToken(accessToken string) (bool, error) {
|
|
||||||
clms := &token.Claims{}
|
|
||||||
|
|
||||||
if tken, err := t.parseTokenWithClaims(accessToken, clms); err != nil {
|
|
||||||
return false, nil
|
|
||||||
} else {
|
|
||||||
if tken.Valid {
|
|
||||||
if clms.UserId != uuid.Nil {
|
|
||||||
return true, nil
|
|
||||||
} else {
|
|
||||||
return false, fmt.Errorf("User Id was not set")
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return false, fmt.Errorf("Invalid access token")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (t *TokenGenerator) ExtractIdFromToken(accessToken string) (uuid.UUID, error) {
|
|
||||||
clms := &token.Claims{}
|
|
||||||
|
|
||||||
if tken, err := t.parseTokenWithClaims(accessToken, clms); err != nil {
|
|
||||||
return uuid.Nil, nil
|
|
||||||
} else {
|
|
||||||
if tken.Valid {
|
|
||||||
if clms.UserId != uuid.Nil {
|
|
||||||
return clms.UserId, nil
|
|
||||||
} else {
|
|
||||||
return uuid.Nil, fmt.Errorf("User Id was not set")
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
return uuid.Nil, fmt.Errorf("Invalid access token")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (t *TokenGenerator) parseTokenWithClaims(accessToken string, claims *token.Claims) (*jwt.Token, error) {
|
|
||||||
tken, err := jwt.ParseWithClaims(accessToken, claims, func(tken *jwt.Token) (any, error) {
|
|
||||||
if _, ok := tken.Method.(*jwt.SigningMethodHMAC); !ok {
|
|
||||||
return nil, fmt.Errorf("unexpected signing method: %v", tken.Header["alg"])
|
|
||||||
}
|
|
||||||
return t.SecretKey, nil
|
|
||||||
}, jwt.WithValidMethods([]string{jwt.SigningMethodHS256.Alg()}))
|
|
||||||
|
|
||||||
if err != nil {
|
|
||||||
return nil, err
|
|
||||||
} else {
|
|
||||||
return tken, nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (t *TokenGenerator) generateClaims(usr any, role string, issuedAt time.Time, expiredAt time.Time) (*token.Claims, error) {
|
|
||||||
var id uuid.UUID
|
|
||||||
switch val := usr.(type) {
|
|
||||||
case user.User:
|
|
||||||
id = val.Id
|
|
||||||
case *user.User:
|
|
||||||
id = val.Id
|
|
||||||
case user.ServiceUser:
|
|
||||||
id = val.Id
|
|
||||||
case *user.ServiceUser:
|
|
||||||
id = val.Id
|
|
||||||
default:
|
|
||||||
return nil, fmt.Errorf("Invalid type")
|
|
||||||
}
|
|
||||||
|
|
||||||
return &token.Claims{
|
|
||||||
UserId: id,
|
|
||||||
Role: role,
|
|
||||||
RegisteredClaims: jwt.RegisteredClaims{
|
|
||||||
Issuer: config.App_Name,
|
|
||||||
ExpiresAt: jwt.NewNumericDate(expiredAt),
|
|
||||||
IssuedAt: jwt.NewNumericDate(issuedAt),
|
|
||||||
},
|
|
||||||
}, nil
|
|
||||||
}
|
|
||||||
@@ -1,17 +0,0 @@
|
|||||||
package version
|
|
||||||
|
|
||||||
import "fmt"
|
|
||||||
|
|
||||||
var (
|
|
||||||
Version = "dev"
|
|
||||||
BuildTime = "unknown"
|
|
||||||
Commit = "unknown"
|
|
||||||
GoVersion = "unknown"
|
|
||||||
)
|
|
||||||
|
|
||||||
func String() string {
|
|
||||||
return fmt.Sprintf(
|
|
||||||
"Version: %s\nBuild Date: %s\nCommit: %s\nGo Version: %s",
|
|
||||||
Version, BuildTime, Commit, GoVersion,
|
|
||||||
)
|
|
||||||
}
|
|
||||||
@@ -0,0 +1,30 @@
|
|||||||
|
-- Add migration script here
|
||||||
|
CREATE EXTENSION IF NOT EXISTS pgcrypto;
|
||||||
|
CREATE EXTENSION IF NOT EXISTS "uuid-ossp";
|
||||||
|
|
||||||
|
CREATE TABLE IF NOT EXISTS "user" (
|
||||||
|
id UUID PRIMARY KEY DEFAULT gen_random_uuid(),
|
||||||
|
firstname TEXT NOT NULL,
|
||||||
|
lastname TEXT NOT NULL,
|
||||||
|
phone_number TEXT NOT NULL,
|
||||||
|
username TEXT NOT NULL,
|
||||||
|
password TEXT NOT NULL,
|
||||||
|
created TIMESTAMPTZ NOT NULL DEFAULT NOW(),
|
||||||
|
last_login TIMESTAMPTZ NOT NULL DEFAULT NOW(),
|
||||||
|
salt_id UUID NOT NULL
|
||||||
|
);
|
||||||
|
|
||||||
|
|
||||||
|
CREATE TABLE IF NOT EXISTS "salt" (
|
||||||
|
id UUID PRIMARY KEY DEFAULT gen_random_uuid(),
|
||||||
|
salt TEXT NOT NULL
|
||||||
|
);
|
||||||
|
|
||||||
|
CREATE TABLE IF NOT EXISTS "service_user" (
|
||||||
|
id UUID PRIMARY KEY DEFAULT gen_random_uuid(),
|
||||||
|
username TEXT NOT NULL,
|
||||||
|
passphrase TEXT NOT NULL,
|
||||||
|
created TIMESTAMPTZ NOT NULL DEFAULT NOW(),
|
||||||
|
last_login timestamptz NULL,
|
||||||
|
salt_id UUID NOT NULL
|
||||||
|
);
|
||||||
@@ -1,23 +0,0 @@
|
|||||||
CREATE EXTENSION IF NOT EXISTS "uuid-ossp";
|
|
||||||
|
|
||||||
DROP TABLE IF EXISTS users CASCADE;
|
|
||||||
DROP TABLE IF EXISTS service_users CASCADE;
|
|
||||||
|
|
||||||
CREATE TABLE users (
|
|
||||||
id UUID PRIMARY KEY DEFAULT uuid_generate_v4(),
|
|
||||||
first_name TEXT NULL,
|
|
||||||
last_name TEXT NULL,
|
|
||||||
phone_number TEXT NOT NULL,
|
|
||||||
username TEXT NOT NULL,
|
|
||||||
password TEXT NOT NULL,
|
|
||||||
created timestamptz DEFAULT now(),
|
|
||||||
last_login timestamptz NULL
|
|
||||||
);
|
|
||||||
|
|
||||||
CREATE TABLE service_users (
|
|
||||||
id UUID PRIMARY KEY DEFAULT uuid_generate_v4(),
|
|
||||||
username TEXT NOT NULL,
|
|
||||||
passphrase TEXT NOT NULL,
|
|
||||||
created timestamptz DEFAULT now(),
|
|
||||||
last_login timestamptz NULL
|
|
||||||
);
|
|
||||||
@@ -0,0 +1,54 @@
|
|||||||
|
pub mod response {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct TestResult {
|
||||||
|
pub message: String,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod endpoint {
|
||||||
|
use super::*;
|
||||||
|
use axum::{Extension, Json, http::StatusCode};
|
||||||
|
|
||||||
|
/// Endpoint to hit the root
|
||||||
|
/// basic handler that responds with a static string
|
||||||
|
#[utoipa::path(
|
||||||
|
get,
|
||||||
|
path = super::super::endpoints::ROOT,
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Test", body = &str),
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn root() -> &'static str {
|
||||||
|
"Hello, World!"
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to do a database ping
|
||||||
|
#[utoipa::path(
|
||||||
|
get,
|
||||||
|
path = super::super::endpoints::DBTEST,
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Successful ping of the db", body = super::response::TestResult),
|
||||||
|
(status = 400, description = "Failure in pinging the db", body = super::response::TestResult)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn db_ping(
|
||||||
|
Extension(pool): Extension<sqlx::PgPool>,
|
||||||
|
) -> (StatusCode, Json<response::TestResult>) {
|
||||||
|
match sqlx::query("SELECT 1").execute(&pool).await {
|
||||||
|
Ok(_) => {
|
||||||
|
let tr = response::TestResult {
|
||||||
|
message: String::from("This works"),
|
||||||
|
};
|
||||||
|
(StatusCode::OK, Json(tr))
|
||||||
|
}
|
||||||
|
Err(e) => (
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::TestResult {
|
||||||
|
message: e.to_string(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,870 @@
|
|||||||
|
use crate::hashing;
|
||||||
|
use crate::repo;
|
||||||
|
use crate::token_stuff;
|
||||||
|
|
||||||
|
pub mod request {
|
||||||
|
use serde::Deserialize;
|
||||||
|
#[derive(Default, Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct LoginRequest {
|
||||||
|
pub username: String,
|
||||||
|
pub password: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct ServiceUserLoginRequest {
|
||||||
|
pub username: String,
|
||||||
|
pub passphrase: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl ServiceUserLoginRequest {
|
||||||
|
pub fn is_empty(&self) -> (bool, Option<String>) {
|
||||||
|
if self.username.is_empty() && self.passphrase.is_empty() {
|
||||||
|
(
|
||||||
|
true,
|
||||||
|
Some(String::from("Username and passphrase are empty")),
|
||||||
|
)
|
||||||
|
} else if self.username.is_empty() {
|
||||||
|
(true, Some(String::from("Username is empty")))
|
||||||
|
} else if self.username.is_empty() {
|
||||||
|
(true, Some(String::from("Passphrase is empty")))
|
||||||
|
} else {
|
||||||
|
(false, None)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct RefreshTokenRequest {
|
||||||
|
pub access_token: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct UpdatePasswordRequest {
|
||||||
|
pub user_id: uuid::Uuid,
|
||||||
|
pub current_password: String,
|
||||||
|
pub updated_password: String,
|
||||||
|
pub confirmed_password: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl UpdatePasswordRequest {
|
||||||
|
pub fn is_valid(&self) -> bool {
|
||||||
|
if self.user_id.is_nil()
|
||||||
|
|| self.current_password.is_empty()
|
||||||
|
|| self.updated_password.is_empty()
|
||||||
|
|| self.confirmed_password.is_empty()
|
||||||
|
{
|
||||||
|
false
|
||||||
|
} else {
|
||||||
|
self.updated_password == self.confirmed_password
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct UserUpdateNameRequest {
|
||||||
|
pub user_id: uuid::Uuid,
|
||||||
|
pub firstname: String,
|
||||||
|
pub lastname: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl UserUpdateNameRequest {
|
||||||
|
pub fn is_valid(&self) -> (bool, Option<String>) {
|
||||||
|
if self.user_id.is_nil() || self.firstname.is_empty() || self.lastname.is_empty() {
|
||||||
|
let reason = String::from("Missing fields");
|
||||||
|
(false, Some(reason))
|
||||||
|
} else {
|
||||||
|
(true, None)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod response {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct LoginResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::token::LoginResult>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct ServiceUserLoginResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::token::LoginResult>,
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn extract(
|
||||||
|
response: axum::response::Response,
|
||||||
|
) -> Result<LoginResponse, std::io::Error> {
|
||||||
|
let body = match axum::body::to_bytes(response.into_body(), usize::MAX).await {
|
||||||
|
Ok(body) => body,
|
||||||
|
Err(err) => {
|
||||||
|
return Err(std::io::Error::other(err));
|
||||||
|
}
|
||||||
|
};
|
||||||
|
let parsed_body: LoginResponse = match serde_json::from_slice(&body) {
|
||||||
|
Ok(body) => body,
|
||||||
|
Err(err) => {
|
||||||
|
return Err(std::io::Error::other(err));
|
||||||
|
}
|
||||||
|
};
|
||||||
|
Ok(parsed_body)
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct RefreshTokenResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::token::LoginResult>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct UpdatePasswordResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<uuid::Uuid>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct UserUpdateNameResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::User>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct GetUserProfileResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::UserProfile>,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for a user login
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::LOGIN,
|
||||||
|
request_body(
|
||||||
|
content = request::LoginRequest,
|
||||||
|
description = "Data required for a user to lgoin",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "User login successful", body = response::LoginResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::LoginResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::LoginResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn user_login(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::LoginRequest>,
|
||||||
|
) -> (axum::http::StatusCode, axum::Json<response::LoginResponse>) {
|
||||||
|
if payload.username.is_empty() || payload.password.is_empty() {
|
||||||
|
let reason = if payload.username.is_empty() {
|
||||||
|
String::from("Username not provided")
|
||||||
|
} else {
|
||||||
|
String::from("Password not provided")
|
||||||
|
};
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: reason,
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::user::exists(&pool, &payload.username).await {
|
||||||
|
Ok(exists) => {
|
||||||
|
if !exists {
|
||||||
|
println!("User does not exists");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let user = match repo::user::get(&pool, &payload.username).await {
|
||||||
|
Ok(user) => user,
|
||||||
|
Err(_err) => {
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
let hashed_password = user.password.clone();
|
||||||
|
|
||||||
|
match hashing::verify_password(&payload.password, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
// Create token
|
||||||
|
let key =
|
||||||
|
schedtxt_models::envy::environment::get_secret_key().value;
|
||||||
|
let cst = match token_stuff::create_token(&key, &user.id) {
|
||||||
|
Ok(token) => token,
|
||||||
|
Err(_err) => {
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Error creating token"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
if token_stuff::verify_token(&key, &cst.access_token) {
|
||||||
|
let current_time = time::OffsetDateTime::now_utc();
|
||||||
|
let _ =
|
||||||
|
repo::user::update_last_login(&pool, &user, ¤t_time)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Successful"),
|
||||||
|
data: vec![schedtxt_models::token::LoginResult {
|
||||||
|
user_id: user.id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
token_type: String::from(
|
||||||
|
schedtxt_models::token::TOKEN_TYPE,
|
||||||
|
),
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
}],
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for service user login
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::LOGIN_SERVICE_USER,
|
||||||
|
request_body(
|
||||||
|
content = request::ServiceUserLoginRequest,
|
||||||
|
description = "Data required for service user to lgoin",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "Service uuser login successful", body = response::ServiceUserLoginResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::ServiceUserLoginResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::ServiceUserLoginResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn service_user_login(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::ServiceUserLoginRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::ServiceUserLoginResponse>,
|
||||||
|
) {
|
||||||
|
if payload.username.is_empty() || payload.passphrase.is_empty() {
|
||||||
|
let reason = if payload.username.is_empty() {
|
||||||
|
String::from("Username not provided")
|
||||||
|
} else {
|
||||||
|
String::from("Passphrase not provided")
|
||||||
|
};
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: reason,
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::service::exists(&pool, &payload.username).await {
|
||||||
|
Ok(exists) => {
|
||||||
|
if !exists {
|
||||||
|
println!("User does not exists");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
println!("Good to create");
|
||||||
|
let service_user =
|
||||||
|
match repo::service::get_with_username(&pool, &payload.username).await {
|
||||||
|
Ok(service_user) => service_user,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
println!("Service user: {service_user:?}");
|
||||||
|
println!("Payload: {:?}", payload.passphrase);
|
||||||
|
let hashed_password = service_user.passphrase.clone();
|
||||||
|
println!("Hash password: {hashed_password:?}");
|
||||||
|
|
||||||
|
match hashing::verify_password(&payload.passphrase, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
// Create token
|
||||||
|
println!("Creating token");
|
||||||
|
let key =
|
||||||
|
schedtxt_models::envy::environment::get_secret_key().value;
|
||||||
|
let cst =
|
||||||
|
token_stuff::create_token(&key, &service_user.id).unwrap();
|
||||||
|
|
||||||
|
if token_stuff::verify_token(&key, &cst.access_token) {
|
||||||
|
let current_time = time::OffsetDateTime::now_utc();
|
||||||
|
let _ = repo::service::update_last_login(
|
||||||
|
&pool,
|
||||||
|
&service_user,
|
||||||
|
¤t_time,
|
||||||
|
)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from(
|
||||||
|
super::messages::SUCCESSFUL_MESSAGE,
|
||||||
|
),
|
||||||
|
data: vec![schedtxt_models::token::LoginResult {
|
||||||
|
user_id: service_user.id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
token_type: String::from(
|
||||||
|
schedtxt_models::token::TOKEN_TYPE,
|
||||||
|
),
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
}],
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
eprintln!("Invalid token");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
eprintln!("No match");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for service user login
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::REFRESH_TOKEN,
|
||||||
|
request_body(
|
||||||
|
content = request::RefreshTokenRequest,
|
||||||
|
description = "Data required refresh token",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Service uuser login successful", body = response::RefreshTokenResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::RefreshTokenResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::RefreshTokenResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn refresh_token(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::RefreshTokenRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::RefreshTokenResponse>,
|
||||||
|
) {
|
||||||
|
if payload.access_token.is_empty() {
|
||||||
|
let reason = String::from("Access token not provided");
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: reason,
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let key = schedtxt_models::envy::environment::get_secret_key().value;
|
||||||
|
if token_stuff::verify_token(&key, &payload.access_token) {
|
||||||
|
match token_stuff::extract_id_from_token(&key, &payload.access_token) {
|
||||||
|
Ok(id) => {
|
||||||
|
let generate_service_token =
|
||||||
|
|id, key| -> Option<schedtxt_models::token::CreateTokenResult> {
|
||||||
|
token_stuff::create_service_refresh_token(key, id).ok()
|
||||||
|
};
|
||||||
|
|
||||||
|
let mut response = response::RefreshTokenResponse {
|
||||||
|
message: String::new(),
|
||||||
|
data: Vec::new(),
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::user::get_with_id(&pool, &id).await {
|
||||||
|
Ok(_user) => match generate_service_token(&id, &key) {
|
||||||
|
Some(cst) => {
|
||||||
|
response.message =
|
||||||
|
String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
let lr = schedtxt_models::token::LoginResult {
|
||||||
|
user_id: id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
token_type: String::from(schedtxt_models::token::TOKEN_TYPE),
|
||||||
|
};
|
||||||
|
response.data.push(lr);
|
||||||
|
(axum::http::StatusCode::OK, axum::Json(response))
|
||||||
|
}
|
||||||
|
None => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: String::from("Refresh token not generated"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
},
|
||||||
|
Err(err) => {
|
||||||
|
println!("Unable to find user, checking service user: {err:?}");
|
||||||
|
match repo::service::get(&pool, &id).await {
|
||||||
|
Ok(_service_user) => match generate_service_token(&id, &key) {
|
||||||
|
Some(cst) => {
|
||||||
|
response.message =
|
||||||
|
String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
let lr = schedtxt_models::token::LoginResult {
|
||||||
|
user_id: id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
token_type: String::from(
|
||||||
|
schedtxt_models::token::TOKEN_TYPE,
|
||||||
|
),
|
||||||
|
};
|
||||||
|
response.data.push(lr);
|
||||||
|
(axum::http::StatusCode::OK, axum::Json(response))
|
||||||
|
}
|
||||||
|
None => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: String::from("Issued at not returned"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
},
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: String::from("Unable to verify token"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for a updating password
|
||||||
|
#[utoipa::path(
|
||||||
|
patch,
|
||||||
|
path = super::endpoints::UPDATE_PASSWORD,
|
||||||
|
request_body(
|
||||||
|
content = request::UpdatePasswordRequest,
|
||||||
|
description = "Data required to update password",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "User login successful", body = response::UpdatePasswordResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::UpdatePasswordResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::UpdatePasswordResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn update_password(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::UpdatePasswordRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::UpdatePasswordResponse>,
|
||||||
|
) {
|
||||||
|
if !payload.is_valid() {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from("Invalid passwords"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let verify_password = |current_password, hashed_password| -> Result<bool, std::io::Error> {
|
||||||
|
match hashing::verify_password(current_password, hashed_password) {
|
||||||
|
Ok(matches) => Ok(matches),
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::user::get_with_id(&pool, &payload.user_id).await {
|
||||||
|
Ok(user) => {
|
||||||
|
let hashed_password = user.password.clone();
|
||||||
|
match verify_password(&payload.current_password, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
let (generate_salt, mut salt) = super::register::generate_the_salt();
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
let updated_hashed_password = match hashing::hash_password(
|
||||||
|
&payload.updated_password,
|
||||||
|
&generate_salt,
|
||||||
|
) {
|
||||||
|
Ok(hashed) => hashed,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
String::new()
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::user::update_password(
|
||||||
|
&pool,
|
||||||
|
&user,
|
||||||
|
&updated_hashed_password,
|
||||||
|
)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(()) => (
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from(super::messages::SUCCESSFUL_MESSAGE),
|
||||||
|
data: vec![user.id],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from("Issue updating password"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
println!("No User found, trying Service User: {err:?}");
|
||||||
|
|
||||||
|
// Try service user
|
||||||
|
match repo::service::get(&pool, &payload.user_id).await {
|
||||||
|
Ok(service_user) => {
|
||||||
|
let hashed_password = service_user.passphrase.clone();
|
||||||
|
match verify_password(&payload.current_password, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
let (generate_salt, mut salt) =
|
||||||
|
super::register::generate_the_salt();
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
let updated_hashed_password = match hashing::hash_password(
|
||||||
|
&payload.updated_password,
|
||||||
|
&generate_salt,
|
||||||
|
) {
|
||||||
|
Ok(hashed) => hashed,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
String::new()
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::service::update_passphrase(
|
||||||
|
&pool,
|
||||||
|
&service_user,
|
||||||
|
&updated_hashed_password,
|
||||||
|
)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(()) => (
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from(
|
||||||
|
super::messages::SUCCESSFUL_MESSAGE,
|
||||||
|
),
|
||||||
|
data: vec![service_user.id],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from("Issue updating password"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for a updating password
|
||||||
|
#[utoipa::path(
|
||||||
|
patch,
|
||||||
|
path = super::endpoints::UPDATE_USER_NAME,
|
||||||
|
request_body(
|
||||||
|
content = request::UserUpdateNameRequest,
|
||||||
|
description = "Data required to update name of a user",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Names were updated", body = response::UserUpdateNameResponse),
|
||||||
|
(status = 304, description = "Nothing to change", body = response::UserUpdateNameResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::UserUpdateNameResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::UserUpdateNameResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn update_name_of_user(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::UserUpdateNameRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::UserUpdateNameResponse>,
|
||||||
|
) {
|
||||||
|
let (valid_request, reason) = payload.is_valid();
|
||||||
|
if !valid_request {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: reason.unwrap_or_default(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::user::get_with_id(&pool, &payload.user_id).await {
|
||||||
|
Ok(user) => {
|
||||||
|
if user.firstname == payload.firstname || user.lastname == payload.lastname {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::NOT_MODIFIED,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: String::from("No change"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::user::update_name(
|
||||||
|
&pool,
|
||||||
|
&user.id,
|
||||||
|
&payload.firstname,
|
||||||
|
&payload.lastname,
|
||||||
|
)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(_) => (
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: String::from(super::messages::SUCCESSFUL_MESSAGE),
|
||||||
|
data: vec![schedtxt_models::user::User {
|
||||||
|
id: user.id,
|
||||||
|
phone_number: user.phone_number,
|
||||||
|
firstname: payload.firstname,
|
||||||
|
lastname: payload.lastname,
|
||||||
|
username: user.username,
|
||||||
|
created: user.created,
|
||||||
|
last_login: user.last_login,
|
||||||
|
..Default::default()
|
||||||
|
}],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to get User Profile
|
||||||
|
#[utoipa::path(
|
||||||
|
delete,
|
||||||
|
path = super::endpoints::GET_USER_PROFILE,
|
||||||
|
params(("id" = uuid::Uuid, Path, description = "User Id")),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Deleted", body = response::GetUserProfileResponse),
|
||||||
|
(status = 400, description = "Bad request", body = response::GetUserProfileResponse),
|
||||||
|
(status = 500, description = "Error", body = response::GetUserProfileResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn get_user_profile(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::extract::Path(id): axum::extract::Path<uuid::Uuid>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::GetUserProfileResponse>,
|
||||||
|
) {
|
||||||
|
let mut response = response::GetUserProfileResponse::default();
|
||||||
|
if id.is_nil() {
|
||||||
|
response.message = String::from("Invalid");
|
||||||
|
return (axum::http::StatusCode::BAD_REQUEST, axum::Json(response));
|
||||||
|
}
|
||||||
|
|
||||||
|
match repo::user::get_with_id(&pool, &id).await {
|
||||||
|
Ok(user) => {
|
||||||
|
let user_profile = schedtxt_models::user::UserProfile {
|
||||||
|
user_id: user.id,
|
||||||
|
phone_number: user.phone_number,
|
||||||
|
firstname: user.firstname,
|
||||||
|
lastname: user.lastname,
|
||||||
|
last_login: user.last_login,
|
||||||
|
created: user.created,
|
||||||
|
username: user.username,
|
||||||
|
};
|
||||||
|
response.message = String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
response.data.push(user_profile);
|
||||||
|
|
||||||
|
(axum::http::StatusCode::OK, axum::Json(response))
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
response.message = String::from("Bad request");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1 @@
|
|||||||
|
pub const SUCCESSFUL_MESSAGE: &str = "Successful";
|
||||||
@@ -0,0 +1,24 @@
|
|||||||
|
pub mod common;
|
||||||
|
pub mod login;
|
||||||
|
pub mod messages;
|
||||||
|
pub mod register;
|
||||||
|
|
||||||
|
pub mod endpoints {
|
||||||
|
pub const ROOT: &str = "/";
|
||||||
|
pub const REGISTER: &str = "/api/v1/register";
|
||||||
|
/// Endpoint for a user to login
|
||||||
|
pub const LOGIN: &str = "/api/v1/login";
|
||||||
|
pub const DBTEST: &str = "/api/v1/test/db";
|
||||||
|
/// Endpoint constant for service user registration
|
||||||
|
pub const REGISTER_SERVICE_USER: &str = "/api/v1/service/register";
|
||||||
|
/// Endpoint constant for service login user
|
||||||
|
pub const LOGIN_SERVICE_USER: &str = "/api/v1/service/login";
|
||||||
|
/// Endpoint constant for refresh token
|
||||||
|
pub const REFRESH_TOKEN: &str = "/api/v1/token/refresh";
|
||||||
|
/// Endpoint constant for updating password
|
||||||
|
pub const UPDATE_PASSWORD: &str = "/api/v1/user/password/update";
|
||||||
|
/// Endpoint constant for updating user's name
|
||||||
|
pub const UPDATE_USER_NAME: &str = "/api/v1/user/name/update";
|
||||||
|
/// Endpoint constant for getting user profile
|
||||||
|
pub const GET_USER_PROFILE: &str = "/api/v1/user/profile/{id}";
|
||||||
|
}
|
||||||
@@ -0,0 +1,292 @@
|
|||||||
|
use axum::{Json, http::StatusCode};
|
||||||
|
|
||||||
|
use crate::hashing;
|
||||||
|
use crate::repo;
|
||||||
|
|
||||||
|
pub mod request {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct Request {
|
||||||
|
pub username: String,
|
||||||
|
pub password: String,
|
||||||
|
pub phone_number: String,
|
||||||
|
#[serde(skip_serializing_if = "Option::is_none")]
|
||||||
|
pub email: Option<String>,
|
||||||
|
#[serde(skip_serializing_if = "Option::is_none")]
|
||||||
|
pub firstname: Option<String>,
|
||||||
|
#[serde(skip_serializing_if = "Option::is_none")]
|
||||||
|
pub lastname: Option<String>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct RegisterServiceUserRequest {
|
||||||
|
pub username: String,
|
||||||
|
pub passphrase: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl RegisterServiceUserRequest {
|
||||||
|
pub fn is_empty(&self) -> (bool, Option<String>) {
|
||||||
|
if self.username.is_empty() && self.passphrase.is_empty() {
|
||||||
|
(
|
||||||
|
true,
|
||||||
|
Some(String::from("Username and Passphrase are empty")),
|
||||||
|
)
|
||||||
|
} else if self.username.is_empty() {
|
||||||
|
(true, Some(String::from("Username is empty")))
|
||||||
|
} else if self.passphrase.is_empty() {
|
||||||
|
(true, Some(String::from("Passphrase is empty")))
|
||||||
|
} else {
|
||||||
|
(false, None)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod response {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct Response {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::User>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct RegisterServiceUserResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::ServiceUser>,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn generate_the_salt() -> (
|
||||||
|
argon2::password_hash::SaltString,
|
||||||
|
schedtxt_models::user::Salt,
|
||||||
|
) {
|
||||||
|
let salt_string = hashing::generate_salt().unwrap();
|
||||||
|
let salt = schedtxt_models::user::Salt::default();
|
||||||
|
(salt_string, salt)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to register a user
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::REGISTER,
|
||||||
|
request_body(
|
||||||
|
content = request::Request,
|
||||||
|
description = "Data required to register",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "User created", body = response::Response),
|
||||||
|
(status = 404, description = "User already exists", body = response::Response),
|
||||||
|
(status = 500, description = "Issue creating user", body = response::Response)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn register_user(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
Json(payload): Json<request::Request>,
|
||||||
|
) -> (StatusCode, Json<response::Response>) {
|
||||||
|
let registration_enabled = match is_registration_enabled().await {
|
||||||
|
Ok(value) => value,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("Registration check failed"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
if registration_enabled {
|
||||||
|
let mut user = schedtxt_models::user::User {
|
||||||
|
username: payload.username.clone(),
|
||||||
|
password: payload.password.clone(),
|
||||||
|
phone_number: payload.phone_number.clone(),
|
||||||
|
..Default::default()
|
||||||
|
};
|
||||||
|
|
||||||
|
user.firstname = payload.firstname.unwrap_or_default();
|
||||||
|
user.lastname = payload.lastname.unwrap_or_default();
|
||||||
|
|
||||||
|
println!("Checking if user exists");
|
||||||
|
match repo::user::exists(&pool, &user.username).await {
|
||||||
|
Ok(res) => {
|
||||||
|
if res {
|
||||||
|
println!("Already exists");
|
||||||
|
(
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("Error"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
println!("Good to create");
|
||||||
|
println!("Generate salt string");
|
||||||
|
|
||||||
|
let (generated_salt, mut salt) = generate_the_salt();
|
||||||
|
println!("Creating salt");
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
user.salt_id = salt.id;
|
||||||
|
let hashed_password =
|
||||||
|
hashing::hash_password(&user.password, &generated_salt).unwrap();
|
||||||
|
user.password = hashed_password;
|
||||||
|
|
||||||
|
println!("Creating user");
|
||||||
|
match repo::user::insert(&pool, &user).await {
|
||||||
|
Ok((id, date_created)) => {
|
||||||
|
user.id = id;
|
||||||
|
user.created = date_created;
|
||||||
|
(
|
||||||
|
StatusCode::CREATED,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("User created"),
|
||||||
|
data: vec![user],
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::Response {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: vec![user],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::Response {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: vec![user],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::NOT_ACCEPTABLE,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("Registration is not enabled"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Checks to see if registration is enabled
|
||||||
|
async fn is_registration_enabled() -> Result<bool, std::io::Error> {
|
||||||
|
let key = String::from("ENABLE_REGISTRATION");
|
||||||
|
let var = schedtxt_models::envy::environment::get_env(&key);
|
||||||
|
let parsed_value = var.value.to_uppercase();
|
||||||
|
|
||||||
|
if parsed_value == "TRUE" {
|
||||||
|
Ok(true)
|
||||||
|
} else if parsed_value == "FALSE" {
|
||||||
|
Ok(false)
|
||||||
|
} else {
|
||||||
|
Err(std::io::Error::other(
|
||||||
|
"Could not determine value of ENABLE_REGISTRATION",
|
||||||
|
))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to register a service user
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::REGISTER_SERVICE_USER,
|
||||||
|
request_body(
|
||||||
|
content = request::RegisterServiceUserRequest,
|
||||||
|
description = "Data required to register service user",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "Service user created", body = response::RegisterServiceUserResponse),
|
||||||
|
(status = 400, description = "Issue creating service user", body = response::RegisterServiceUserResponse),
|
||||||
|
(status = 406, description = "Cannot create service user", body = response::RegisterServiceUserResponse),
|
||||||
|
(status = 500, description = "Issue creating service user", body = response::RegisterServiceUserResponse),
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn register_service_user(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
Json(payload): Json<request::RegisterServiceUserRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::RegisterServiceUserResponse>,
|
||||||
|
) {
|
||||||
|
let mut resp = response::RegisterServiceUserResponse {
|
||||||
|
..Default::default()
|
||||||
|
};
|
||||||
|
|
||||||
|
let registration_enabled = match is_registration_enabled().await {
|
||||||
|
Ok(value) => value,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
resp.message = String::from("Registration check failed");
|
||||||
|
return (axum::http::StatusCode::INTERNAL_SERVER_ERROR, Json(resp));
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
let (res, msg) = payload.is_empty();
|
||||||
|
if res {
|
||||||
|
resp.message = msg.unwrap();
|
||||||
|
(axum::http::StatusCode::BAD_REQUEST, axum::Json(resp))
|
||||||
|
} else {
|
||||||
|
if registration_enabled {
|
||||||
|
match repo::service::exists(&pool, &payload.username).await {
|
||||||
|
Ok(exists) => {
|
||||||
|
if exists {
|
||||||
|
resp.message = String::from("Invalid");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(resp),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let (generate_salt, mut salt) = generate_the_salt();
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
let mut service_user = schedtxt_models::user::ServiceUser {
|
||||||
|
username: payload.username.clone(),
|
||||||
|
passphrase: hashing::hash_password(&payload.passphrase, &generate_salt)
|
||||||
|
.unwrap(),
|
||||||
|
salt_id: salt.id,
|
||||||
|
..Default::default()
|
||||||
|
};
|
||||||
|
|
||||||
|
println!("Creating user");
|
||||||
|
|
||||||
|
match repo::service::insert(&pool, &service_user).await {
|
||||||
|
Ok((service_user_id, created)) => {
|
||||||
|
resp.message = String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
service_user.created = Some(created);
|
||||||
|
service_user.id = service_user_id;
|
||||||
|
resp.data.push(service_user);
|
||||||
|
(axum::http::StatusCode::CREATED, axum::Json(resp))
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
resp.message = err.to_string();
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(resp),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
resp.message = err.to_string();
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(resp),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
resp.message = String::from("Registration is not enabled");
|
||||||
|
(axum::http::StatusCode::NOT_ACCEPTABLE, Json(resp))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,6 @@
|
|||||||
|
const ADDRESS: &str = "0.0.0.0";
|
||||||
|
const PORT: &str = "9080";
|
||||||
|
|
||||||
|
pub fn get_full() -> String {
|
||||||
|
format!("{ADDRESS}:{PORT}")
|
||||||
|
}
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
use sqlx::postgres::PgPoolOptions;
|
||||||
|
|
||||||
|
pub async fn create_pool() -> Result<sqlx::PgPool, sqlx::Error> {
|
||||||
|
let database_url = schedtxt_models::envy::environment::get_db_url().value;
|
||||||
|
println!("Database url: {database_url}");
|
||||||
|
|
||||||
|
PgPoolOptions::new()
|
||||||
|
.max_connections(super::connection_settings::MAXCONN)
|
||||||
|
.connect(&database_url)
|
||||||
|
.await
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn migrations(pool: &sqlx::PgPool) {
|
||||||
|
// Run migrations using the sqlx::migrate! macro
|
||||||
|
// Assumes your migrations are in a ./migrations folder relative to Cargo.toml
|
||||||
|
sqlx::migrate!("./migrations")
|
||||||
|
.run(pool)
|
||||||
|
.await
|
||||||
|
.expect("Failed to run migrations");
|
||||||
|
}
|
||||||
@@ -0,0 +1,5 @@
|
|||||||
|
pub mod init;
|
||||||
|
|
||||||
|
mod connection_settings {
|
||||||
|
pub const MAXCONN: u32 = 5;
|
||||||
|
}
|
||||||
@@ -0,0 +1,101 @@
|
|||||||
|
use argon2::{
|
||||||
|
Argon2, // The Argon2 algorithm struct
|
||||||
|
PasswordVerifier,
|
||||||
|
password_hash::{
|
||||||
|
PasswordHasher,
|
||||||
|
SaltString,
|
||||||
|
rand_core::OsRng, // Secure random number generator
|
||||||
|
},
|
||||||
|
};
|
||||||
|
|
||||||
|
pub fn generate_salt() -> Result<SaltString, argon2::Error> {
|
||||||
|
// Generate a random salt
|
||||||
|
// SaltString::generate uses OsRng internally for cryptographic security
|
||||||
|
Ok(SaltString::generate(&mut OsRng))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn get_salt(s: &str) -> Result<SaltString, argon2::password_hash::Error> {
|
||||||
|
SaltString::from_b64(s)
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn hash_password(
|
||||||
|
password: &String,
|
||||||
|
salt: &SaltString,
|
||||||
|
) -> Result<String, argon2::password_hash::Error> {
|
||||||
|
let password_bytes = password.as_bytes();
|
||||||
|
|
||||||
|
// Create an Argon2 instance with default parameters (recommended)
|
||||||
|
// You could customize parameters here if needed, but defaults are strong
|
||||||
|
let argon2 = Argon2::default();
|
||||||
|
|
||||||
|
// Hash the password with the salt
|
||||||
|
// The output is a PasswordHash string format that includes algorithm, version,
|
||||||
|
// parameters, salt, and the hash itself.
|
||||||
|
Ok(argon2.hash_password(password_bytes, salt)?.to_string())
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn verify_password(
|
||||||
|
password_attempt: &String,
|
||||||
|
stored_hash: String,
|
||||||
|
) -> Result<bool, argon2::password_hash::Error> {
|
||||||
|
let password_bytes = password_attempt.as_bytes();
|
||||||
|
|
||||||
|
// Parse the stored hash string
|
||||||
|
// This extracts the salt, parameters, and hash digest
|
||||||
|
let parsed_hash = argon2::PasswordHash::new(stored_hash.as_str())?;
|
||||||
|
|
||||||
|
// Create an Argon2 instance (it will use the parameters from the parsed hash)
|
||||||
|
// Verify the password against the parsed hash
|
||||||
|
// This automatically uses the correct salt and parameters embedded in `parsed_hash`
|
||||||
|
match Argon2::default().verify_password(password_bytes, &parsed_hash) {
|
||||||
|
Ok(()) => Ok(true), // Passwords match
|
||||||
|
Err(argon2::password_hash::Error::Password) => Ok(false), // Passwords don't match
|
||||||
|
Err(e) => Err(e), // Some other error occurred (e.g., invalid hash format)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[cfg(test)]
|
||||||
|
mod tests {
|
||||||
|
use super::*;
|
||||||
|
|
||||||
|
#[test]
|
||||||
|
fn test_hash_password() {
|
||||||
|
let some_password = String::from("somethingrandom");
|
||||||
|
match hash_password(&some_password, &generate_salt().unwrap()) {
|
||||||
|
Ok(p) => match verify_password(&some_password, p.clone()) {
|
||||||
|
Ok(res) => {
|
||||||
|
assert_eq!(res, true);
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
},
|
||||||
|
Err(eerr) => {
|
||||||
|
assert!(false, "Error: {:?}", eerr.to_string());
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[test]
|
||||||
|
fn test_wrong_password() {
|
||||||
|
let some_password = String::from("somethingrandom");
|
||||||
|
match hash_password(&some_password, &generate_salt().unwrap()) {
|
||||||
|
Ok(p) => {
|
||||||
|
match verify_password(&some_password, p.clone()) {
|
||||||
|
Ok(res) => {
|
||||||
|
assert_eq!(res, true, "Passwords are not verified");
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
}
|
||||||
|
let wrong_password = String::from("Differentanotherlevel");
|
||||||
|
let result = verify_password(&wrong_password, p.clone()).unwrap();
|
||||||
|
assert_eq!(false, result, "Passwords should not match");
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
+151
@@ -0,0 +1,151 @@
|
|||||||
|
pub mod callers;
|
||||||
|
pub mod config;
|
||||||
|
pub mod db;
|
||||||
|
pub mod hashing;
|
||||||
|
pub mod repo;
|
||||||
|
pub mod token_stuff;
|
||||||
|
|
||||||
|
pub mod init {
|
||||||
|
use axum::{
|
||||||
|
Router,
|
||||||
|
routing::{get, patch, post},
|
||||||
|
};
|
||||||
|
use utoipa::OpenApi;
|
||||||
|
|
||||||
|
use super::callers;
|
||||||
|
use callers::common as common_callers;
|
||||||
|
use callers::login as login_caller;
|
||||||
|
use callers::register as register_caller;
|
||||||
|
use login_caller::response as login_responses;
|
||||||
|
use register_caller::response as register_responses;
|
||||||
|
|
||||||
|
#[derive(utoipa::OpenApi)]
|
||||||
|
#[openapi(
|
||||||
|
paths(
|
||||||
|
common_callers::endpoint::db_ping, common_callers::endpoint::root,
|
||||||
|
register_caller::register_user, login_caller::user_login,
|
||||||
|
login_caller::get_user_profile,
|
||||||
|
),
|
||||||
|
components(schemas(common_callers::response::TestResult,
|
||||||
|
register_responses::Response, login_responses::LoginResponse,
|
||||||
|
login_responses::GetUserProfileResponse,
|
||||||
|
)),
|
||||||
|
tags(
|
||||||
|
(name = "TextSender Auth API", description = "Auth API for TextSender API")
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
struct ApiDoc;
|
||||||
|
|
||||||
|
mod cors {
|
||||||
|
pub async fn configure_cors() -> tower_http::cors::CorsLayer {
|
||||||
|
let cors = tower_http::cors::CorsLayer::new()
|
||||||
|
.allow_methods([
|
||||||
|
axum::http::Method::GET,
|
||||||
|
axum::http::Method::PATCH,
|
||||||
|
axum::http::Method::POST,
|
||||||
|
axum::http::Method::PUT,
|
||||||
|
axum::http::Method::DELETE,
|
||||||
|
])
|
||||||
|
.allow_headers([
|
||||||
|
axum::http::header::CONTENT_TYPE,
|
||||||
|
axum::http::header::AUTHORIZATION,
|
||||||
|
])
|
||||||
|
.allow_credentials(true) // If you need to send cookies or authentication headers:cite[2]
|
||||||
|
.max_age(std::time::Duration::from_secs(3600)); // Cache the preflight response for 1 hour:cite[2]
|
||||||
|
|
||||||
|
// Dynamically set the allowed origin based on the environment
|
||||||
|
match std::env::var(schedtxt_models::envy::keys::APP_ENV).as_deref() {
|
||||||
|
Ok("production") => {
|
||||||
|
let allowed_origins_env =
|
||||||
|
schedtxt_models::envy::environment::get_allowed_origins();
|
||||||
|
match schedtxt_models::envy::utility::delimitize(&allowed_origins_env) {
|
||||||
|
Ok(alwd) => {
|
||||||
|
let allowed_origins: Vec<axum::http::HeaderValue> = alwd
|
||||||
|
.into_iter()
|
||||||
|
.map(|s| s.parse::<axum::http::HeaderValue>().unwrap())
|
||||||
|
.collect();
|
||||||
|
cors.allow_origin(allowed_origins)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!(
|
||||||
|
"Could not parse out allowed origins from env: Error: {err:?}"
|
||||||
|
);
|
||||||
|
std::process::exit(-1);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
_ => {
|
||||||
|
// Development (default): Allow localhost origins
|
||||||
|
cors.allow_origin(vec![
|
||||||
|
"http://localhost:4200".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:4200".parse().unwrap(),
|
||||||
|
"http://localhost:5173".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:5173".parse().unwrap(),
|
||||||
|
"http://localhost:9080".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:9080".parse().unwrap(),
|
||||||
|
"http://localhost:9081".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:9081".parse().unwrap(),
|
||||||
|
])
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn routes() -> Router {
|
||||||
|
Router::new()
|
||||||
|
.route(
|
||||||
|
callers::endpoints::DBTEST,
|
||||||
|
get(callers::common::endpoint::db_ping),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::ROOT,
|
||||||
|
get(callers::common::endpoint::root),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::REGISTER,
|
||||||
|
post(callers::register::register_user),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::REGISTER_SERVICE_USER,
|
||||||
|
post(callers::register::register_service_user),
|
||||||
|
)
|
||||||
|
.route(callers::endpoints::LOGIN, post(callers::login::user_login))
|
||||||
|
.route(
|
||||||
|
callers::endpoints::LOGIN_SERVICE_USER,
|
||||||
|
post(callers::login::service_user_login),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::REFRESH_TOKEN,
|
||||||
|
post(callers::login::refresh_token),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::UPDATE_PASSWORD,
|
||||||
|
patch(callers::login::update_password),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::UPDATE_USER_NAME,
|
||||||
|
patch(callers::login::update_name_of_user),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::GET_USER_PROFILE,
|
||||||
|
get(callers::login::get_user_profile),
|
||||||
|
)
|
||||||
|
.layer(cors::configure_cors().await)
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn app() -> Router {
|
||||||
|
let pool = super::db::init::create_pool()
|
||||||
|
.await
|
||||||
|
.expect("Failed to create pool");
|
||||||
|
|
||||||
|
super::db::init::migrations(&pool).await;
|
||||||
|
|
||||||
|
routes()
|
||||||
|
.await
|
||||||
|
.merge(
|
||||||
|
utoipa_swagger_ui::SwaggerUi::new("/swagger-ui")
|
||||||
|
.url("/api-docs/openapi.json", ApiDoc::openapi()),
|
||||||
|
)
|
||||||
|
.layer(axum::Extension(pool))
|
||||||
|
}
|
||||||
|
}
|
||||||
+12
@@ -0,0 +1,12 @@
|
|||||||
|
#[tokio::main]
|
||||||
|
async fn main() {
|
||||||
|
// initialize tracing
|
||||||
|
tracing_subscriber::fmt::init();
|
||||||
|
|
||||||
|
let app = schedtxt_auth::init::app().await;
|
||||||
|
|
||||||
|
// run our app with hyper, listening globally on port 9080
|
||||||
|
let url = schedtxt_auth::config::get_full();
|
||||||
|
let listener = tokio::net::TcpListener::bind(url).await.unwrap();
|
||||||
|
axum::serve(listener, app).await.unwrap();
|
||||||
|
}
|
||||||
+291
@@ -0,0 +1,291 @@
|
|||||||
|
pub mod service;
|
||||||
|
|
||||||
|
pub mod user {
|
||||||
|
use sqlx::Row;
|
||||||
|
|
||||||
|
#[derive(Debug, serde::Serialize, sqlx::FromRow)]
|
||||||
|
pub struct InsertedData {
|
||||||
|
pub id: uuid::Uuid,
|
||||||
|
pub date_created: Option<time::OffsetDateTime>,
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
username: &String,
|
||||||
|
) -> Result<schedtxt_models::user::User, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, username, password, phone_number, salt_id, firstname, lastname, created, last_login FROM "user" WHERE username = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(username)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(r) => Ok(schedtxt_models::user::User {
|
||||||
|
id: r.try_get("id")?,
|
||||||
|
username: r.try_get("username")?,
|
||||||
|
password: r.try_get("password")?,
|
||||||
|
phone_number: r.try_get("phone_number")?,
|
||||||
|
salt_id: r.try_get("salt_id")?,
|
||||||
|
firstname: r.try_get("firstname")?,
|
||||||
|
lastname: r.try_get("lastname")?,
|
||||||
|
created: r.try_get("created")?,
|
||||||
|
last_login: r.try_get("last_login")?,
|
||||||
|
}),
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(e) => Err(e),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get_with_id(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::user::User, sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, username, password, phone_number, salt_id, firstname, lastname, created, last_login FROM "user" WHERE id = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(r) => Ok(schedtxt_models::user::User {
|
||||||
|
id: r.try_get("id")?,
|
||||||
|
username: r.try_get("username")?,
|
||||||
|
password: r.try_get("password")?,
|
||||||
|
phone_number: r.try_get("phone_number")?,
|
||||||
|
salt_id: r.try_get("salt_id")?,
|
||||||
|
firstname: r.try_get("firstname")?,
|
||||||
|
lastname: r.try_get("lastname")?,
|
||||||
|
created: r.try_get("created")?,
|
||||||
|
last_login: r.try_get("last_login")?,
|
||||||
|
}),
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(e) => Err(e),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_last_login(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::User,
|
||||||
|
time: &time::OffsetDateTime,
|
||||||
|
) -> Result<time::OffsetDateTime, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "user" SET last_login = $1 WHERE id = $2 RETURNING last_login
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(time)
|
||||||
|
.bind(user.id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error updating time: {e}");
|
||||||
|
e
|
||||||
|
});
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => match row {
|
||||||
|
Some(r) => {
|
||||||
|
let last_login: time::OffsetDateTime = r
|
||||||
|
.try_get("last_login")
|
||||||
|
.map_err(|_e| sqlx::Error::RowNotFound)?;
|
||||||
|
Ok(last_login)
|
||||||
|
}
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_password(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::User,
|
||||||
|
updated_hashed_password: &String,
|
||||||
|
) -> Result<(), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "user" SET password = $1 WHERE id = $2
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(updated_hashed_password)
|
||||||
|
.bind(user.id)
|
||||||
|
.execute(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
if row.rows_affected() > 0 {
|
||||||
|
Ok(())
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_name(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
firstname: &str,
|
||||||
|
lastname: &str,
|
||||||
|
) -> Result<(), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "user" SET firstname = $1, lastname = $2 WHERE id = $3
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(firstname)
|
||||||
|
.bind(lastname)
|
||||||
|
.bind(id)
|
||||||
|
.execute(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
if row.rows_affected() > 0 {
|
||||||
|
Ok(())
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn exists(pool: &sqlx::PgPool, username: &String) -> Result<bool, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT 1 FROM "user" WHERE username = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(username)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(row) => {
|
||||||
|
if row.is_empty() {
|
||||||
|
Ok(false)
|
||||||
|
} else {
|
||||||
|
Ok(true)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
None => Ok(false),
|
||||||
|
},
|
||||||
|
Err(e) => {
|
||||||
|
eprintln!("What??");
|
||||||
|
eprintln!("Error: {e:?}");
|
||||||
|
Err(e)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn insert(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::User,
|
||||||
|
) -> Result<(uuid::Uuid, std::option::Option<time::OffsetDateTime>), sqlx::Error> {
|
||||||
|
let row = sqlx::query(
|
||||||
|
r#"
|
||||||
|
INSERT INTO "user" (username, password, phone_number, firstname, lastname, salt_id)
|
||||||
|
VALUES ($1, $2, $3, $4, $5, $6)
|
||||||
|
RETURNING id, created;
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(&user.username)
|
||||||
|
.bind(&user.password)
|
||||||
|
.bind(&user.phone_number)
|
||||||
|
.bind(&user.firstname)
|
||||||
|
.bind(&user.lastname)
|
||||||
|
.bind(user.salt_id)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error inserting item: {e}");
|
||||||
|
e
|
||||||
|
})?;
|
||||||
|
|
||||||
|
let result = InsertedData {
|
||||||
|
id: row.try_get("id").map_err(|_e| sqlx::Error::RowNotFound)?,
|
||||||
|
date_created: row
|
||||||
|
.try_get("created")
|
||||||
|
.map_err(|_e| sqlx::Error::RowNotFound)?,
|
||||||
|
};
|
||||||
|
|
||||||
|
if result.id.is_nil() && result.date_created.is_none() {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
} else {
|
||||||
|
Ok((result.id, result.date_created))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod salt {
|
||||||
|
use sqlx::Row;
|
||||||
|
|
||||||
|
#[derive(Debug, serde::Serialize, sqlx::FromRow)]
|
||||||
|
pub struct InsertedData {
|
||||||
|
pub id: uuid::Uuid,
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::user::Salt, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, salt FROM "salt" WHERE id = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(r) => Ok(schedtxt_models::user::Salt {
|
||||||
|
id: r.try_get("id")?,
|
||||||
|
salt: r.try_get("salt")?,
|
||||||
|
}),
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(e) => Err(e),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn insert(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
salt: &schedtxt_models::user::Salt,
|
||||||
|
) -> Result<uuid::Uuid, sqlx::Error> {
|
||||||
|
let row = sqlx::query(
|
||||||
|
r#"
|
||||||
|
INSERT INTO "salt" (salt)
|
||||||
|
VALUES ($1)
|
||||||
|
RETURNING id;
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(&salt.salt)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error inserting item: {e}");
|
||||||
|
e
|
||||||
|
})?;
|
||||||
|
|
||||||
|
let result = InsertedData {
|
||||||
|
id: row.try_get("id").map_err(|_e| sqlx::Error::RowNotFound)?,
|
||||||
|
};
|
||||||
|
|
||||||
|
if !result.id.is_nil() {
|
||||||
|
Ok(result.id)
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,235 @@
|
|||||||
|
use sqlx::Row;
|
||||||
|
|
||||||
|
pub async fn valid_passphrase(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
passphrase: &String,
|
||||||
|
) -> Result<(uuid::Uuid, String, time::OffsetDateTime), sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, username, date_created FROM "passphrase" WHERE passphrase = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(passphrase)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => {
|
||||||
|
let id: uuid::Uuid = row.try_get("id")?;
|
||||||
|
let username: String = row.try_get("username")?;
|
||||||
|
let date_created: Option<time::OffsetDateTime> = row.try_get("date_created")?;
|
||||||
|
|
||||||
|
Ok((id, username, date_created.unwrap()))
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get_passphrase(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<(String, String, time::OffsetDateTime), sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT username, passphrase, date_created FROM "passphrase" WHERE id = $1;
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(id)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => {
|
||||||
|
let username: String = row.try_get("username")?;
|
||||||
|
let passphrase: String = row.try_get("passphrase")?;
|
||||||
|
let date_created: time::OffsetDateTime = row.try_get("date_created")?;
|
||||||
|
Ok((username, passphrase, date_created))
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::user::ServiceUser, sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"SELECT id, username, passphrase, created, last_login, salt_id FROM "service_user" WHERE id = $1"#
|
||||||
|
).bind(id)
|
||||||
|
.fetch_one(pool).await {
|
||||||
|
Ok(row) => {
|
||||||
|
let last_login: Option<time::OffsetDateTime> = match row.try_get("last_login") {
|
||||||
|
Ok(login) => {
|
||||||
|
Some(login)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
None
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
let service_user = schedtxt_models::user::ServiceUser {
|
||||||
|
id: row.try_get("id")?,
|
||||||
|
username: row.try_get("username")?,
|
||||||
|
passphrase: row.try_get("passphrase")?,
|
||||||
|
created: row.try_get("created")?,
|
||||||
|
last_login,
|
||||||
|
salt_id: row.try_get("salt_id")?,
|
||||||
|
};
|
||||||
|
|
||||||
|
Ok(service_user)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
Err(err)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get_with_username(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
username: &String,
|
||||||
|
) -> Result<schedtxt_models::user::ServiceUser, sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"SELECT id, username, passphrase, created, last_login, salt_id FROM "service_user" WHERE username = $1"#
|
||||||
|
).bind(username)
|
||||||
|
.fetch_one(pool).await {
|
||||||
|
Ok(row) => {
|
||||||
|
let last_login: Option<time::OffsetDateTime> = match row.try_get("last_login") {
|
||||||
|
Ok(login) => {
|
||||||
|
Some(login)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
None
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
let service_user = schedtxt_models::user::ServiceUser {
|
||||||
|
id: row.try_get("id")?,
|
||||||
|
username: row.try_get("username")?,
|
||||||
|
passphrase: row.try_get("passphrase")?,
|
||||||
|
created: row.try_get("created")?,
|
||||||
|
last_login,
|
||||||
|
salt_id: row.try_get("salt_id")?,
|
||||||
|
};
|
||||||
|
|
||||||
|
Ok(service_user)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
Err(err)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_last_login(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
service_user: &schedtxt_models::user::ServiceUser,
|
||||||
|
time: &time::OffsetDateTime,
|
||||||
|
) -> Result<time::OffsetDateTime, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "service_user" SET last_login = $1 WHERE id = $2 RETURNING last_login
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(time)
|
||||||
|
.bind(service_user.id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error updating time: {e}");
|
||||||
|
e
|
||||||
|
});
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => match row {
|
||||||
|
Some(r) => {
|
||||||
|
let last_login: time::OffsetDateTime = r
|
||||||
|
.try_get("last_login")
|
||||||
|
.map_err(|_e| sqlx::Error::RowNotFound)?;
|
||||||
|
Ok(last_login)
|
||||||
|
}
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_passphrase(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::ServiceUser,
|
||||||
|
updated_hashed_passphrase: &String,
|
||||||
|
) -> Result<(), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "service_user" SET passphrase = $1 WHERE id = $2
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(updated_hashed_passphrase)
|
||||||
|
.bind(user.id)
|
||||||
|
.execute(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
if row.rows_affected() > 0 {
|
||||||
|
Ok(())
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn insert(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
service_user: &schedtxt_models::user::ServiceUser,
|
||||||
|
) -> Result<(uuid::Uuid, time::OffsetDateTime), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"INSERT INTO "service_user" (username, passphrase, salt_id)
|
||||||
|
VALUES ($1, $2, $3)
|
||||||
|
RETURNING id, created
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(&service_user.username)
|
||||||
|
.bind(&service_user.passphrase)
|
||||||
|
.bind(service_user.salt_id)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
let id: uuid::Uuid = row.try_get("id")?;
|
||||||
|
let created: time::OffsetDateTime = row.try_get("created")?;
|
||||||
|
Ok((id, created))
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn exists(pool: &sqlx::PgPool, service_username: &String) -> Result<bool, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT 1 FROM "service_user" WHERE username = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(service_username)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(row) => {
|
||||||
|
if row.is_empty() {
|
||||||
|
Ok(false)
|
||||||
|
} else {
|
||||||
|
Ok(true)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
None => Ok(false),
|
||||||
|
},
|
||||||
|
Err(e) => {
|
||||||
|
eprintln!("What??");
|
||||||
|
eprintln!("Error: {e:?}");
|
||||||
|
Err(e)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,134 @@
|
|||||||
|
use josekit::{
|
||||||
|
self,
|
||||||
|
jws::alg::hmac::HmacJwsAlgorithm::Hs256,
|
||||||
|
jwt::{self},
|
||||||
|
};
|
||||||
|
|
||||||
|
use time;
|
||||||
|
|
||||||
|
pub const KEY_ENV: &str = "SECRET_KEY";
|
||||||
|
pub const MESSAGE: &str = "Something random";
|
||||||
|
pub const ISSUER: &str = "schedtxt_auth";
|
||||||
|
pub const AUDIENCE: &str = "schedtxt";
|
||||||
|
|
||||||
|
pub fn get_expiration(issued: &time::OffsetDateTime) -> Result<time::OffsetDateTime, time::Error> {
|
||||||
|
let duration_expire = time::Duration::hours(4);
|
||||||
|
Ok(*issued + duration_expire)
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn create_token(
|
||||||
|
provided_key: &str,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::token::CreateTokenResult, josekit::JoseError> {
|
||||||
|
let resource = schedtxt_models::token::TokenResource {
|
||||||
|
message: String::from(MESSAGE),
|
||||||
|
issuer: String::from(ISSUER),
|
||||||
|
audiences: vec![String::from(AUDIENCE)],
|
||||||
|
user_id: *id,
|
||||||
|
};
|
||||||
|
schedtxt_models::token::create_token(provided_key, resource, time::Duration::hours(4))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn create_service_token(
|
||||||
|
provided: &str,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::token::CreateTokenResult, josekit::JoseError> {
|
||||||
|
let resource = schedtxt_models::token::TokenResource {
|
||||||
|
message: String::from(SERVICE_SUBJECT),
|
||||||
|
issuer: String::from(ISSUER),
|
||||||
|
audiences: vec![String::from(AUDIENCE)],
|
||||||
|
user_id: *id,
|
||||||
|
};
|
||||||
|
schedtxt_models::token::create_token(provided, resource, time::Duration::hours(1))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn create_service_refresh_token(
|
||||||
|
key: &str,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::token::CreateTokenResult, josekit::JoseError> {
|
||||||
|
let resource = schedtxt_models::token::TokenResource {
|
||||||
|
message: String::from(SERVICE_SUBJECT),
|
||||||
|
issuer: String::from(ISSUER),
|
||||||
|
audiences: vec![String::from(AUDIENCE)],
|
||||||
|
user_id: *id,
|
||||||
|
};
|
||||||
|
schedtxt_models::token::create_token(key, resource, time::Duration::hours(4))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn verify_token(key: &str, token: &str) -> bool {
|
||||||
|
match get_payload(key, token) {
|
||||||
|
Ok((payload, _header)) => match payload.subject() {
|
||||||
|
Some(_sub) => true,
|
||||||
|
None => false,
|
||||||
|
},
|
||||||
|
Err(_err) => false,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn extract_id_from_token(key: &str, token: &str) -> Result<uuid::Uuid, std::io::Error> {
|
||||||
|
match get_payload(key, token) {
|
||||||
|
Ok((payload, _header)) => match payload.claim("user_id") {
|
||||||
|
Some(id) => match uuid::Uuid::parse_str(id.as_str().unwrap()) {
|
||||||
|
Ok(extracted) => Ok(extracted),
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
},
|
||||||
|
None => Err(std::io::Error::other("No claim found")),
|
||||||
|
},
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub const APP_TOKEN_TYPE: &str = "Schedtxt_App";
|
||||||
|
pub const APP_SUBJECT: &str = "Something random";
|
||||||
|
pub const SERVICE_TOKEN_TYPE: &str = "Schedtxt_Service";
|
||||||
|
pub const SERVICE_SUBJECT: &str = "Service random";
|
||||||
|
|
||||||
|
pub fn get_token_type(key: &str, token: &str) -> Result<String, std::io::Error> {
|
||||||
|
match get_payload(key, token) {
|
||||||
|
Ok((payload, _header)) => match payload.subject() {
|
||||||
|
Some(subject) => {
|
||||||
|
if subject == APP_SUBJECT {
|
||||||
|
Ok(String::from(APP_TOKEN_TYPE))
|
||||||
|
} else if subject == SERVICE_SUBJECT {
|
||||||
|
Ok(String::from(SERVICE_TOKEN_TYPE))
|
||||||
|
} else {
|
||||||
|
Err(std::io::Error::other(String::from("Invalid subject")))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
None => Err(std::io::Error::other(String::from("Invalid payload"))),
|
||||||
|
},
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn is_token_type_valid(token_type: &str) -> bool {
|
||||||
|
token_type == SERVICE_TOKEN_TYPE
|
||||||
|
}
|
||||||
|
|
||||||
|
fn get_payload(
|
||||||
|
key: &str,
|
||||||
|
token: &str,
|
||||||
|
) -> Result<(josekit::jwt::JwtPayload, josekit::jws::JwsHeader), josekit::JoseError> {
|
||||||
|
let ver = Hs256.verifier_from_bytes(key.as_bytes()).unwrap();
|
||||||
|
jwt::decode_with_verifier(token, &ver)
|
||||||
|
}
|
||||||
|
|
||||||
|
#[cfg(test)]
|
||||||
|
mod tests {
|
||||||
|
use super::*;
|
||||||
|
|
||||||
|
#[test]
|
||||||
|
fn test_tokenize() {
|
||||||
|
let special_key = schedtxt_models::envy::environment::get_secret_key();
|
||||||
|
let id = uuid::Uuid::new_v4();
|
||||||
|
match create_token(&special_key.value, &id) {
|
||||||
|
Ok(cst) => {
|
||||||
|
let result = verify_token(&special_key.value, &cst.access_token);
|
||||||
|
assert!(result, "Token not verified");
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
};
|
||||||
|
}
|
||||||
|
}
|
||||||
+1094
File diff suppressed because it is too large
Load Diff
Reference in New Issue
Block a user