Compare commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
010ee6aef5 | ||
|
|
039609a99c | ||
|
|
b3899c1480 | ||
|
|
3423c1eeb1 | ||
|
|
21bfaf7657 | ||
|
|
9dba08f179 | ||
|
|
438b19e170 | ||
|
|
69d908bac3 | ||
|
|
7d2faba4f2 | ||
|
|
e9b59fc1dd | ||
|
|
1ab7bd4ae1 | ||
|
|
d83591c8a4 | ||
|
|
0cab4e8530 | ||
|
|
b678c098cb | ||
|
|
e3ee24c131 | ||
|
|
8e0b8b737b | ||
|
|
e5e34b4ad3 | ||
|
|
2385307fd3 | ||
|
|
04e1fbfc7a | ||
|
|
27f4443818 | ||
|
|
5edeba0799 | ||
|
|
f596a1bbf9
|
||
|
|
7e7e561008
|
||
|
|
a19262d9a1
|
||
|
|
1cea3442ff
|
||
|
|
1ae7dc8aab
|
||
|
|
dbebaaed39
|
||
|
|
be379543bb
|
||
|
|
b60ce6ee53
|
||
|
|
6dc22d0a1d
|
||
|
|
776740e087
|
||
|
|
6713508de9
|
||
|
|
112b94f59e
|
||
|
|
775410907b
|
||
|
|
2badd0ca4d
|
||
|
|
c053a0a6cf
|
||
|
|
42dd25691c
|
||
|
|
26842175fe
|
||
|
|
dd46122270
|
||
|
|
cfae02d68f
|
||
|
|
b4cc08bfaa
|
||
|
|
37e411f58f
|
||
|
|
1a6be5f541
|
||
|
|
f6c43c283a
|
||
|
|
601193738b
|
||
|
|
9d70311648
|
||
|
|
8d358356b9
|
||
|
|
bceadfe7a6
|
||
|
|
e2f3dbbb32
|
||
|
|
0d1c0961e2
|
||
|
|
609cc22b51 | ||
|
|
2da394c7a4 | ||
|
|
f556d729a5 | ||
|
|
e06a54947f | ||
|
|
689762c72a | ||
|
|
de171b790d | ||
|
|
d34cad033d | ||
|
|
760a778a27 | ||
|
|
7597e05243
|
||
|
|
636b0280c7 | ||
|
|
223b7919f9 | ||
|
|
66221e504c
|
||
|
|
093888f7fb
|
||
|
|
225dc0c963
|
||
|
|
c7b45952fe
|
||
|
|
f305e5b2e9
|
||
|
|
9f5029dd6e | ||
|
|
d01fae0775 | ||
|
|
371dc38958 | ||
|
|
0a00282ba7 | ||
|
|
c340693b24 | ||
|
|
8a90448854 | ||
|
|
6f608b757c | ||
|
|
ef39949e77 | ||
|
|
b627c832fa | ||
|
|
60241a2b16
|
||
|
|
25c283434d
|
||
|
|
12f8b18524
|
||
|
|
b5e5c3d79a
|
||
|
|
efe43045d5
|
||
|
|
2da679afc2
|
||
|
|
9fdba18256 | ||
|
|
21d8d0f005
|
||
|
|
a19f2f353c
|
||
|
|
816a679aca
|
||
|
|
b6884f8bf3
|
||
|
|
284752c2f9
|
||
|
|
b3cd32124d
|
||
|
|
855be9289a
|
||
|
|
eb37632b8e
|
||
|
|
a635b91994
|
||
|
|
2a244c986f
|
||
|
|
a44f2c1402
|
||
|
|
821acb40b8
|
||
|
|
d004069c55
|
||
|
|
19dac619ec
|
||
|
|
cc9b53db9a
|
||
|
|
27fcfbae39
|
||
|
|
df193acdff
|
||
|
|
a0d6d8f174
|
||
|
|
878af97859
|
||
|
|
daeb210dda
|
||
|
|
d803e7d3c3
|
||
|
|
1b0ba48659
|
||
|
|
8fcba02196
|
||
|
|
ed2a440872
|
||
|
|
d261297a1c
|
||
|
|
eded5ecf5a | ||
|
|
3e28db7552 | ||
|
|
976a017b4f |
@@ -0,0 +1,9 @@
|
|||||||
|
vendor/
|
||||||
|
|
||||||
|
# Ignore git directory
|
||||||
|
.git/
|
||||||
|
|
||||||
|
.gitea/
|
||||||
|
|
||||||
|
# Ignore environment files (configure via docker-compose instead)
|
||||||
|
.env*
|
||||||
@@ -0,0 +1,11 @@
|
|||||||
|
SECRET_KEY=NULqYIzgt28bTiyziCd7IOO7b6LnWDW!
|
||||||
|
DB_AUTH_NAME=schedtxt_auth_db
|
||||||
|
DB_AUTH_USER=schedtxt_auth
|
||||||
|
DB_AUTH_PASSWORD=password
|
||||||
|
DB_AUTH_HOST=auth_db
|
||||||
|
DB_AUTH_PORT=5432
|
||||||
|
DB_AUTH_SSLMODE=disable
|
||||||
|
DATABASE_URL=postgres://${DB_AUTH_USER}:${DB_AUTH_PASSWORD}@${DB_AUTH_HOST}:${DB_AUTH_PORT}/${DB_AUTH_NAME}
|
||||||
|
ENABLE_REGISTRATION=true
|
||||||
|
ALLOWED_ORIGINS="http://schedtxt.com,http://localhost:5173,http://localhost:9080"
|
||||||
|
APP_ENV=production
|
||||||
@@ -0,0 +1,11 @@
|
|||||||
|
SECRET_KEY=NULqYIzgt28bTiyziCd7IOO7b6LnWDW!
|
||||||
|
DB_AUTH_NAME=schedtxt_auth_db
|
||||||
|
DB_AUTH_USER=schedtxt_auth
|
||||||
|
DB_AUTH_PASSWORD=password
|
||||||
|
DB_AUTH_HOST=localhost
|
||||||
|
DB_AUTH_PORT=5432
|
||||||
|
DB_AUTH_SSLMODE=disable
|
||||||
|
DATABASE_URL=postgres://${DB_AUTH_USER}:${DB_AUTH_PASSWORD}@${DB_AUTH_HOST}:${DB_AUTH_PORT}/${DB_AUTH_NAME}
|
||||||
|
ENABLE_REGISTRATION=true
|
||||||
|
ALLOWED_ORIGINS="http://schedtxt.com,http://localhost:5173,http://localhost:9080"
|
||||||
|
APP_ENV=production
|
||||||
@@ -1,6 +0,0 @@
|
|||||||
DB_NAME=textsender_auth_db
|
|
||||||
DB_USER=textsender_auth
|
|
||||||
DB_PASSWORD=yEDjWZCH2vdctjn!
|
|
||||||
DB_HOST=localhost
|
|
||||||
DB_PORT=5432
|
|
||||||
DB_SSLMODE=disable
|
|
||||||
@@ -0,0 +1,72 @@
|
|||||||
|
name: pr Build
|
||||||
|
|
||||||
|
on:
|
||||||
|
pull_request:
|
||||||
|
branches:
|
||||||
|
- main
|
||||||
|
|
||||||
|
concurrency:
|
||||||
|
group: ${{ github.workflow }}-${{ github.ref }}
|
||||||
|
cancel-in-progress: true
|
||||||
|
|
||||||
|
jobs:
|
||||||
|
check:
|
||||||
|
name: Check
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
|
||||||
|
cargo check
|
||||||
|
|
||||||
|
|
||||||
|
fmt:
|
||||||
|
name: Rustfmt
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add rustfmt
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo fmt --all -- --check
|
||||||
|
|
||||||
|
clippy:
|
||||||
|
name: Clippy
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add clippy
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo clippy -- -D warnings
|
||||||
@@ -1,46 +0,0 @@
|
|||||||
name: Go
|
|
||||||
|
|
||||||
on:
|
|
||||||
push:
|
|
||||||
branches: [ main ]
|
|
||||||
pull_request:
|
|
||||||
branches: [ main ]
|
|
||||||
|
|
||||||
jobs:
|
|
||||||
build:
|
|
||||||
runs-on: ubuntu-24.04 # You can change this to macos-latest or windows-latest if needed
|
|
||||||
|
|
||||||
steps:
|
|
||||||
- uses: actions/checkout@v3
|
|
||||||
|
|
||||||
- name: Set up Go
|
|
||||||
uses: actions/setup-go@v3
|
|
||||||
with:
|
|
||||||
go-version: '1.25.1' # You can specify a specific version or 'stable'
|
|
||||||
|
|
||||||
- name: Build
|
|
||||||
run: |
|
|
||||||
go build -v -ldflags "\
|
|
||||||
-X main.version=${{ github.ref_name }} \
|
|
||||||
-X main.commit=${{ github.sha }} \
|
|
||||||
-X main.date=$(date +%Y-%m-%dT%H:%M:%S%z)" \
|
|
||||||
-o textsender-auth cmd/api/main.go
|
|
||||||
|
|
||||||
- name: Test
|
|
||||||
run: go test -v ./...
|
|
||||||
|
|
||||||
# - name: Run gofmt (optional)
|
|
||||||
# Uncomment to check code formatting with gofmt
|
|
||||||
# run: |
|
|
||||||
# if [ -n "$(gofmt -l.)" ]; then
|
|
||||||
# echo "Go code is not formatted. Please run 'gofmt -w.' to fix it."
|
|
||||||
# exit 1
|
|
||||||
# fi
|
|
||||||
|
|
||||||
# - name: Run golint (optional)
|
|
||||||
# Uncomment to check code style with golint
|
|
||||||
# run: |
|
|
||||||
# if [ -n "$(golint./...)" ]; then
|
|
||||||
# echo "Go code has style issues. Please run 'golint./...' to see them."
|
|
||||||
# exit 1
|
|
||||||
# fi
|
|
||||||
@@ -0,0 +1,150 @@
|
|||||||
|
name: schedtxt_auth Build
|
||||||
|
|
||||||
|
on:
|
||||||
|
push:
|
||||||
|
branches:
|
||||||
|
- main
|
||||||
|
|
||||||
|
concurrency:
|
||||||
|
group: ${{ github.workflow }}-${{ github.ref }}
|
||||||
|
cancel-in-progress: true
|
||||||
|
|
||||||
|
jobs:
|
||||||
|
check:
|
||||||
|
name: Check
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
|
||||||
|
cargo check
|
||||||
|
|
||||||
|
test:
|
||||||
|
name: Test Suite
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
# --- Add database service definition ---
|
||||||
|
services:
|
||||||
|
postgres:
|
||||||
|
image: postgres:18.4-alpine
|
||||||
|
env:
|
||||||
|
# Use secrets for DB init, with fallbacks for flexibility
|
||||||
|
POSTGRES_USER: ${{ secrets.DB_TEST_USER || 'testuser' }}
|
||||||
|
POSTGRES_PASSWORD: ${{ secrets.DB_TEST_PASSWORD || 'testpassword' }}
|
||||||
|
POSTGRES_DB: ${{ secrets.DB_TEST_NAME || 'testdb' }}
|
||||||
|
POSTGRES_PORT: ${{ secrets.DB_PORT || 5432 }}
|
||||||
|
# Options to wait until the database is ready
|
||||||
|
options: >-
|
||||||
|
--health-cmd pg_isready
|
||||||
|
--health-interval 10s
|
||||||
|
--health-timeout 5s
|
||||||
|
--health-retries 5
|
||||||
|
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
# --- Add this step for explicit verification ---
|
||||||
|
- name: Verify Docker Environment
|
||||||
|
run: |
|
||||||
|
echo "Runner User Info:"
|
||||||
|
id
|
||||||
|
echo "Checking Docker Version:"
|
||||||
|
docker --version
|
||||||
|
echo "Checking Docker Daemon Status (info):"
|
||||||
|
docker info
|
||||||
|
echo "Checking Docker Daemon Status (ps):"
|
||||||
|
docker ps -a
|
||||||
|
echo "Docker environment check complete."
|
||||||
|
# NOTE: Do NOT use continue-on-error here.
|
||||||
|
# If Docker isn't working as expected, the job SHOULD fail here.
|
||||||
|
- name: Run tests
|
||||||
|
env:
|
||||||
|
# Define DATABASE_URL for tests to use
|
||||||
|
DATABASE_URL: postgresql://${{ secrets.DB_TEST_USER || 'testuser' }}:${{ secrets.DB_TEST_PASSWORD || 'testpassword' }}@postgres:${{ secrets.DB_PORT || 5432 }}/${{ secrets.DB_TEST_NAME || 'testdb' }}
|
||||||
|
RUST_LOG: info # Optional: configure test log level
|
||||||
|
SECRET_KEY: ${{ secrets.TOKEN_SECRET_KEY }}
|
||||||
|
# Make SSH agent available if tests fetch private dependencies
|
||||||
|
SSH_AUTH_SOCK: ${{ env.SSH_AUTH_SOCK }}
|
||||||
|
ENABLE_REGISTRATION: 'TRUE'
|
||||||
|
run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
|
||||||
|
cargo test
|
||||||
|
|
||||||
|
fmt:
|
||||||
|
name: Rustfmt
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add rustfmt
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo fmt --all -- --check
|
||||||
|
|
||||||
|
clippy:
|
||||||
|
name: Clippy
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: rustup component add clippy
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo clippy -- -D warnings
|
||||||
|
|
||||||
|
build:
|
||||||
|
name: build
|
||||||
|
runs-on: ubuntu-24.04
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v6
|
||||||
|
- uses: actions-rust-lang/setup-rust-toolchain@v1
|
||||||
|
with:
|
||||||
|
toolchain: 1.97
|
||||||
|
- uses: Swatinem/rust-cache@v2
|
||||||
|
- run: |
|
||||||
|
mkdir -p ~/.ssh
|
||||||
|
echo "${{ secrets.MYREPO_TOKEN }}" > ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
chmod 600 ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
ssh-keyscan ${{ secrets.MY_HOST }} >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
eval $(ssh-agent -s)
|
||||||
|
ssh-add -v ~/.ssh/schedtxt-models_deploy_key
|
||||||
|
cargo build --release
|
||||||
+4
-2
@@ -1,3 +1,5 @@
|
|||||||
/textsender-auth
|
|
||||||
.env
|
.env
|
||||||
/vendor
|
.env.local
|
||||||
|
.env.docker
|
||||||
|
|
||||||
|
/target
|
||||||
|
|||||||
Generated
+2443
File diff suppressed because it is too large
Load Diff
+27
@@ -0,0 +1,27 @@
|
|||||||
|
[package]
|
||||||
|
name = "schedtxt_auth"
|
||||||
|
version = "0.2.4"
|
||||||
|
edition = "2024"
|
||||||
|
license = "MIT"
|
||||||
|
description = "Auth API for sending text messages"
|
||||||
|
rust-version = "1.97"
|
||||||
|
|
||||||
|
[dependencies]
|
||||||
|
axum = { version = "0.8.9" }
|
||||||
|
serde = { version = "1.0.228", features = ["derive"] }
|
||||||
|
serde_json = { version = "1.0.150" }
|
||||||
|
tokio = { version = "1.52.3", features = ["rt-multi-thread"] }
|
||||||
|
tracing-subscriber = { version = "0.3.23" }
|
||||||
|
tower-http = { version = "0.7.0", features = ["cors"] }
|
||||||
|
sqlx = { version = "0.9.0", features = ["runtime-tokio", "tls-native-tls", "postgres", "time", "uuid"] }
|
||||||
|
uuid = { version = "1.23.5", features = ["v4", "serde"] }
|
||||||
|
argon2 = { version = "0.5.3", features = ["std"] }
|
||||||
|
time = { version = "0.3.53", features = ["macros", "serde"] }
|
||||||
|
josekit = { version = "0.10.3" }
|
||||||
|
utoipa = { version = "5.5.0", features = ["axum_extras"] }
|
||||||
|
utoipa-swagger-ui = { version = "9.0.2", features = ["axum"] }
|
||||||
|
schedtxt_models = { git = "ssh://git@git.kundeng.us/phoenix/schedtxt_models.git", tag = "v0.5.3", features = ["config", "user"] }
|
||||||
|
|
||||||
|
[dev-dependencies]
|
||||||
|
tower = { version = "0.5.3", features = ["full"] }
|
||||||
|
url = { version = "2.5.8" }
|
||||||
+44
@@ -0,0 +1,44 @@
|
|||||||
|
FROM rust:1.97 as builder
|
||||||
|
|
||||||
|
WORKDIR /usr/src/app
|
||||||
|
|
||||||
|
# Install build dependencies if needed (e.g., git for cloning)
|
||||||
|
RUN apt-get update && apt-get install -y --no-install-recommends \
|
||||||
|
pkg-config libssl3 \
|
||||||
|
ca-certificates \
|
||||||
|
openssh-client git \
|
||||||
|
&& rm -rf /var/lib/apt/lists/*
|
||||||
|
|
||||||
|
RUN mkdir -p -m 0700 ~/.ssh && \
|
||||||
|
ssh-keyscan git.kundeng.us >> ~/.ssh/known_hosts
|
||||||
|
|
||||||
|
COPY Cargo.toml Cargo.lock ./
|
||||||
|
|
||||||
|
RUN --mount=type=ssh mkdir src && \
|
||||||
|
echo "fn main() {println!(\"if you see this, the build broke\")}" > src/main.rs && \
|
||||||
|
cargo build --release --quiet && \
|
||||||
|
rm -rf src target/release/deps/schedtxt_auth*
|
||||||
|
|
||||||
|
COPY src ./src
|
||||||
|
COPY .env ./.env
|
||||||
|
COPY migrations ./migrations
|
||||||
|
|
||||||
|
RUN --mount=type=ssh \
|
||||||
|
cargo build --release --quiet
|
||||||
|
|
||||||
|
FROM debian:trixie-slim
|
||||||
|
|
||||||
|
# Install runtime dependencies if needed (e.g., SSL certificates)
|
||||||
|
RUN apt-get update && apt-get install -y ca-certificates libssl-dev libssl3 && rm -rf /var/lib/apt/lists/*
|
||||||
|
|
||||||
|
WORKDIR /usr/local/bin
|
||||||
|
|
||||||
|
COPY --from=builder /usr/src/app/target/release/schedtxt_auth .
|
||||||
|
|
||||||
|
COPY --from=builder /usr/src/app/.env .
|
||||||
|
COPY --from=builder /usr/src/app/migrations ./migrations
|
||||||
|
|
||||||
|
EXPOSE 9080
|
||||||
|
|
||||||
|
# Set the command to run your application
|
||||||
|
CMD ["./schedtxt_auth"]
|
||||||
+22
@@ -0,0 +1,22 @@
|
|||||||
|
Copyright (c) 2026 Kun Deng.
|
||||||
|
|
||||||
|
Permission is hereby granted, free of charge, to any person
|
||||||
|
obtaining a copy of this software and associated documentation
|
||||||
|
files (the "Software"), to deal in the Software without
|
||||||
|
restriction, including without limitation the rights to use,
|
||||||
|
copy, modify, merge, publish, distribute, sublicense, and/or sell
|
||||||
|
copies of the Software, and to permit persons to whom the
|
||||||
|
Software is furnished to do so, subject to the following
|
||||||
|
conditions:
|
||||||
|
|
||||||
|
The above copyright notice and this permission notice shall be
|
||||||
|
included in all copies or substantial portions of the Software.
|
||||||
|
|
||||||
|
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
|
||||||
|
EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES
|
||||||
|
OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
|
||||||
|
NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT
|
||||||
|
HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY,
|
||||||
|
WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
|
||||||
|
FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR
|
||||||
|
OTHER DEALINGS IN THE SOFTWARE.
|
||||||
@@ -1,2 +1,22 @@
|
|||||||
# textsender-auth
|
# schedtxt_auth
|
||||||
A service that handles the authorization aspect of the textsender project.
|
Auth API for `schedtxt` project.
|
||||||
|
|
||||||
|
|
||||||
|
## Getting started
|
||||||
|
Quickest way to get started is with docker, make sure that it is installed. Copy over
|
||||||
|
the `.env.docker.sample` file and name it `.env`.
|
||||||
|
|
||||||
|
For `SECRET_KEY` provide a key that is at least 32-characters. This is used for token
|
||||||
|
creation. Additionally, provide credentials for the database for the `DB_*` keys.
|
||||||
|
|
||||||
|
Make sure that `ENABLE_REGISTRATION` is set to true, otherwise registration will not work.
|
||||||
|
|
||||||
|
Build the container
|
||||||
|
```
|
||||||
|
docker compose build
|
||||||
|
```
|
||||||
|
|
||||||
|
Bring up the container
|
||||||
|
```
|
||||||
|
docker compose up
|
||||||
|
```
|
||||||
|
|||||||
@@ -1,90 +0,0 @@
|
|||||||
package main
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"net/http"
|
|
||||||
"os"
|
|
||||||
"os/signal"
|
|
||||||
"syscall"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"github.com/go-chi/chi/v5"
|
|
||||||
"github.com/go-chi/chi/v5/middleware"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/config"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/db"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/handler/endpoint"
|
|
||||||
mdleware "git.kundeng.us/phoenix/textsender-auth/internal/middleware"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/model"
|
|
||||||
)
|
|
||||||
|
|
||||||
func main() {
|
|
||||||
fmt.Println("textsender-auth")
|
|
||||||
|
|
||||||
cfg := config.Load()
|
|
||||||
|
|
||||||
db, err := db.NewDatabase(cfg.GetDBConnString())
|
|
||||||
if err != nil {
|
|
||||||
log.Fatalf("Failed to connect to database: %v", err)
|
|
||||||
}
|
|
||||||
defer db.Close()
|
|
||||||
|
|
||||||
ctx := context.Background()
|
|
||||||
|
|
||||||
if cfg.ResetDB {
|
|
||||||
log.Println("Resetting database")
|
|
||||||
if err := db.ResetDatabase(ctx); err != nil {
|
|
||||||
log.Fatalf("Failed to reset database: %v", err)
|
|
||||||
}
|
|
||||||
log.Println("Database reset completed. Exiting.")
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
// Services
|
|
||||||
userStore := model.NewUserStore(db.Pool)
|
|
||||||
userHandler := handler.NewUserHandler(userStore)
|
|
||||||
|
|
||||||
router := chi.NewRouter()
|
|
||||||
|
|
||||||
router.Use(middleware.Logger)
|
|
||||||
router.Use(middleware.Recoverer)
|
|
||||||
router.Use(middleware.Timeout(60 * time.Second))
|
|
||||||
router.Use(mdleware.JSONContentType)
|
|
||||||
|
|
||||||
router.Post(endpoint.Register, userHandler.Register)
|
|
||||||
|
|
||||||
// Start server
|
|
||||||
server := &http.Server{
|
|
||||||
Addr: ":" + cfg.ServerPort,
|
|
||||||
Handler: router,
|
|
||||||
ReadTimeout: 15 * time.Second,
|
|
||||||
WriteTimeout: 15 * time.Second,
|
|
||||||
IdleTimeout: 60 * time.Second,
|
|
||||||
}
|
|
||||||
|
|
||||||
// Graceful shutdown
|
|
||||||
go func() {
|
|
||||||
log.Printf("Server starting on port %s", cfg.ServerPort)
|
|
||||||
if err := server.ListenAndServe(); err != nil && err != http.ErrServerClosed {
|
|
||||||
log.Fatalf("Server failed to start: %v", err)
|
|
||||||
}
|
|
||||||
}()
|
|
||||||
|
|
||||||
// Wait for interrupt signal
|
|
||||||
quit := make(chan os.Signal, 1)
|
|
||||||
signal.Notify(quit, syscall.SIGINT, syscall.SIGTERM)
|
|
||||||
<-quit
|
|
||||||
log.Println("Shutting down server...")
|
|
||||||
|
|
||||||
ctx, cancel := context.WithTimeout(context.Background(), 30*time.Second)
|
|
||||||
defer cancel()
|
|
||||||
|
|
||||||
if err := server.Shutdown(ctx); err != nil {
|
|
||||||
log.Fatalf("Server forced to shutdown: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
log.Println("Server exited")
|
|
||||||
}
|
|
||||||
@@ -0,0 +1,42 @@
|
|||||||
|
version: '3.8' # Use a recent version
|
||||||
|
|
||||||
|
services:
|
||||||
|
auth_api:
|
||||||
|
build:
|
||||||
|
context: .
|
||||||
|
ssh: ["default"]
|
||||||
|
container_name: schedtxt_auth
|
||||||
|
ports:
|
||||||
|
- "9080:9080"
|
||||||
|
env_file:
|
||||||
|
- .env
|
||||||
|
depends_on:
|
||||||
|
auth_db:
|
||||||
|
condition: service_healthy
|
||||||
|
restart: unless-stopped
|
||||||
|
|
||||||
|
# PostgreSQL Database Service
|
||||||
|
auth_db:
|
||||||
|
image: postgres:18.4-alpine
|
||||||
|
container_name: schedtxt_auth_db
|
||||||
|
environment:
|
||||||
|
POSTGRES_USER: ${DB_AUTH_USER:-schedtxt_op}
|
||||||
|
POSTGRES_PASSWORD: ${DB_AUTH_PASSWORD:-password}
|
||||||
|
POSTGRES_DB: ${DB_AUTH_NAME:-schedtxt_auth_db}
|
||||||
|
volumes:
|
||||||
|
# Persist database data using a named volume
|
||||||
|
- postgres_data:/var/lib/postgresql
|
||||||
|
ports:
|
||||||
|
- "5433:5432"
|
||||||
|
healthcheck:
|
||||||
|
# Checks if Postgres is ready to accept connections
|
||||||
|
test: ["CMD-SHELL", "pg_isready -U $$POSTGRES_USER -d $$POSTGRES_DB"]
|
||||||
|
interval: 10s
|
||||||
|
timeout: 5s
|
||||||
|
retries: 5
|
||||||
|
start_period: 10s
|
||||||
|
restart: always
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
postgres_data:
|
||||||
|
driver: local
|
||||||
@@ -1,19 +0,0 @@
|
|||||||
module git.kundeng.us/phoenix/textsender-auth
|
|
||||||
|
|
||||||
go 1.25.1
|
|
||||||
|
|
||||||
require (
|
|
||||||
github.com/go-chi/chi/v5 v5.2.3
|
|
||||||
github.com/google/uuid v1.6.0
|
|
||||||
github.com/jackc/pgx/v5 v5.7.5
|
|
||||||
github.com/joho/godotenv v1.5.1
|
|
||||||
golang.org/x/crypto v0.42.0
|
|
||||||
)
|
|
||||||
|
|
||||||
require (
|
|
||||||
github.com/jackc/pgpassfile v1.0.0 // indirect
|
|
||||||
github.com/jackc/pgservicefile v0.0.0-20240606120523-5a60cdf6a761 // indirect
|
|
||||||
github.com/jackc/puddle/v2 v2.2.2 // indirect
|
|
||||||
golang.org/x/sync v0.17.0 // indirect
|
|
||||||
golang.org/x/text v0.29.0 // indirect
|
|
||||||
)
|
|
||||||
@@ -1,34 +0,0 @@
|
|||||||
github.com/davecgh/go-spew v1.1.0/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
|
|
||||||
github.com/davecgh/go-spew v1.1.1 h1:vj9j/u1bqnvCEfJOwUhtlOARqs3+rkHYY13jYWTU97c=
|
|
||||||
github.com/davecgh/go-spew v1.1.1/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
|
|
||||||
github.com/go-chi/chi/v5 v5.2.3 h1:WQIt9uxdsAbgIYgid+BpYc+liqQZGMHRaUwp0JUcvdE=
|
|
||||||
github.com/go-chi/chi/v5 v5.2.3/go.mod h1:L2yAIGWB3H+phAw1NxKwWM+7eUH/lU8pOMm5hHcoops=
|
|
||||||
github.com/google/uuid v1.6.0 h1:NIvaJDMOsjHA8n1jAhLSgzrAzy1Hgr+hNrb57e+94F0=
|
|
||||||
github.com/google/uuid v1.6.0/go.mod h1:TIyPZe4MgqvfeYDBFedMoGGpEw/LqOeaOT+nhxU+yHo=
|
|
||||||
github.com/jackc/pgpassfile v1.0.0 h1:/6Hmqy13Ss2zCq62VdNG8tM1wchn8zjSGOBJ6icpsIM=
|
|
||||||
github.com/jackc/pgpassfile v1.0.0/go.mod h1:CEx0iS5ambNFdcRtxPj5JhEz+xB6uRky5eyVu/W2HEg=
|
|
||||||
github.com/jackc/pgservicefile v0.0.0-20240606120523-5a60cdf6a761 h1:iCEnooe7UlwOQYpKFhBabPMi4aNAfoODPEFNiAnClxo=
|
|
||||||
github.com/jackc/pgservicefile v0.0.0-20240606120523-5a60cdf6a761/go.mod h1:5TJZWKEWniPve33vlWYSoGYefn3gLQRzjfDlhSJ9ZKM=
|
|
||||||
github.com/jackc/pgx/v5 v5.7.5 h1:JHGfMnQY+IEtGM63d+NGMjoRpysB2JBwDr5fsngwmJs=
|
|
||||||
github.com/jackc/pgx/v5 v5.7.5/go.mod h1:aruU7o91Tc2q2cFp5h4uP3f6ztExVpyVv88Xl/8Vl8M=
|
|
||||||
github.com/jackc/puddle/v2 v2.2.2 h1:PR8nw+E/1w0GLuRFSmiioY6UooMp6KJv0/61nB7icHo=
|
|
||||||
github.com/jackc/puddle/v2 v2.2.2/go.mod h1:vriiEXHvEE654aYKXXjOvZM39qJ0q+azkZFrfEOc3H4=
|
|
||||||
github.com/joho/godotenv v1.5.1 h1:7eLL/+HRGLY0ldzfGMeQkb7vMd0as4CfYvUVzLqw0N0=
|
|
||||||
github.com/joho/godotenv v1.5.1/go.mod h1:f4LDr5Voq0i2e/R5DDNOoa2zzDfwtkZa6DnEwAbqwq4=
|
|
||||||
github.com/pmezard/go-difflib v1.0.0 h1:4DBwDE0NGyQoBHbLQYPwSUPoCMWR5BEzIk/f1lZbAQM=
|
|
||||||
github.com/pmezard/go-difflib v1.0.0/go.mod h1:iKH77koFhYxTK1pcRnkKkqfTogsbg7gZNVY4sRDYZ/4=
|
|
||||||
github.com/stretchr/objx v0.1.0/go.mod h1:HFkY916IF+rwdDfMAkV7OtwuqBVzrE8GR6GFx+wExME=
|
|
||||||
github.com/stretchr/testify v1.3.0/go.mod h1:M5WIy9Dh21IEIfnGCwXGc5bZfKNJtfHm1UVUgZn+9EI=
|
|
||||||
github.com/stretchr/testify v1.7.0/go.mod h1:6Fq8oRcR53rry900zMqJjRRixrwX3KX962/h/Wwjteg=
|
|
||||||
github.com/stretchr/testify v1.8.1 h1:w7B6lhMri9wdJUVmEZPGGhZzrYTPvgJArz7wNPgYKsk=
|
|
||||||
github.com/stretchr/testify v1.8.1/go.mod h1:w2LPCIKwWwSfY2zedu0+kehJoqGctiVI29o6fzry7u4=
|
|
||||||
golang.org/x/crypto v0.42.0 h1:chiH31gIWm57EkTXpwnqf8qeuMUi0yekh6mT2AvFlqI=
|
|
||||||
golang.org/x/crypto v0.42.0/go.mod h1:4+rDnOTJhQCx2q7/j6rAN5XDw8kPjeaXEUR2eL94ix8=
|
|
||||||
golang.org/x/sync v0.17.0 h1:l60nONMj9l5drqw6jlhIELNv9I0A4OFgRsG9k2oT9Ug=
|
|
||||||
golang.org/x/sync v0.17.0/go.mod h1:9KTHXmSnoGruLpwFjVSX0lNNA75CykiMECbovNTZqGI=
|
|
||||||
golang.org/x/text v0.29.0 h1:1neNs90w9YzJ9BocxfsQNHKuAT4pkghyXc4nhZ6sJvk=
|
|
||||||
golang.org/x/text v0.29.0/go.mod h1:7MhJOA9CD2qZyOKYazxdYMF85OwPdEr9jTtBpO7ydH4=
|
|
||||||
gopkg.in/check.v1 v0.0.0-20161208181325-20d25e280405/go.mod h1:Co6ibVJAznAaIkqp8huTwlJQCZ016jof/cbN4VW5Yz0=
|
|
||||||
gopkg.in/yaml.v3 v3.0.0-20200313102051-9f266ea9e77c/go.mod h1:K4uyk7z7BCEPqu6E+C64Yfv1cQ7kz7rIZviUmN+EgEM=
|
|
||||||
gopkg.in/yaml.v3 v3.0.1 h1:fxVm/GzAzEWqLHuvctI91KS9hhNmmWOoWu0XTYJS7CA=
|
|
||||||
gopkg.in/yaml.v3 v3.0.1/go.mod h1:K4uyk7z7BCEPqu6E+C64Yfv1cQ7kz7rIZviUmN+EgEM=
|
|
||||||
@@ -1,107 +0,0 @@
|
|||||||
package config
|
|
||||||
|
|
||||||
import (
|
|
||||||
"flag"
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"os"
|
|
||||||
"strconv"
|
|
||||||
|
|
||||||
"github.com/joho/godotenv"
|
|
||||||
)
|
|
||||||
|
|
||||||
type Config struct {
|
|
||||||
DBConnString string
|
|
||||||
ServerPort string
|
|
||||||
ResetDB bool
|
|
||||||
}
|
|
||||||
|
|
||||||
type ConnectionInfo struct {
|
|
||||||
Username string
|
|
||||||
Password string
|
|
||||||
Database string
|
|
||||||
Host string
|
|
||||||
Port int
|
|
||||||
SslMode string
|
|
||||||
}
|
|
||||||
|
|
||||||
const Port = "9080"
|
|
||||||
|
|
||||||
func (ci ConnectionInfo) Parse() string {
|
|
||||||
return fmt.Sprintf("postgres://%s:%s@%s:%d/%s?sslmode=%s", ci.Username, ci.Password, ci.Host, ci.Port, ci.Database, ci.SslMode)
|
|
||||||
}
|
|
||||||
|
|
||||||
func Load() *Config {
|
|
||||||
resetDb := flag.Bool("reset-db", false, "Reset the database schema and exit")
|
|
||||||
port := flag.String("port", Port, "Server port")
|
|
||||||
flag.Parse()
|
|
||||||
|
|
||||||
err := godotenv.Load()
|
|
||||||
if err != nil {
|
|
||||||
log.Fatal("Error loading .env file")
|
|
||||||
}
|
|
||||||
|
|
||||||
unpackedConnString := unpackDBConnString()
|
|
||||||
dbConnString := unpackedConnString.Parse()
|
|
||||||
|
|
||||||
return &Config{
|
|
||||||
DBConnString: dbConnString,
|
|
||||||
ServerPort: *port,
|
|
||||||
ResetDB: *resetDb,
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
func unpackDBConnString() (connInfo ConnectionInfo) {
|
|
||||||
username := os.Getenv("DB_USER")
|
|
||||||
password := os.Getenv("DB_PASSWORD")
|
|
||||||
host := os.Getenv("DB_HOST")
|
|
||||||
port := os.Getenv("DB_PORT")
|
|
||||||
database := os.Getenv("DB_NAME")
|
|
||||||
sslMode := os.Getenv("DB_SSLMODE")
|
|
||||||
|
|
||||||
if username != "" {
|
|
||||||
connInfo.Username = username
|
|
||||||
} else {
|
|
||||||
connInfo.Username = "user"
|
|
||||||
}
|
|
||||||
|
|
||||||
if password != "" {
|
|
||||||
connInfo.Password = password
|
|
||||||
} else {
|
|
||||||
connInfo.Password = "password"
|
|
||||||
}
|
|
||||||
|
|
||||||
if host != "" {
|
|
||||||
connInfo.Host = host
|
|
||||||
} else {
|
|
||||||
connInfo.Host = "localhost"
|
|
||||||
}
|
|
||||||
|
|
||||||
if port != "" {
|
|
||||||
num, err := strconv.Atoi(port)
|
|
||||||
if err != nil {
|
|
||||||
return
|
|
||||||
}
|
|
||||||
connInfo.Port = num
|
|
||||||
} else {
|
|
||||||
connInfo.Port = 5432
|
|
||||||
}
|
|
||||||
|
|
||||||
if database != "" {
|
|
||||||
connInfo.Database = database
|
|
||||||
} else {
|
|
||||||
connInfo.Database = "textsender_auth_db"
|
|
||||||
}
|
|
||||||
|
|
||||||
if sslMode != "" {
|
|
||||||
connInfo.SslMode = sslMode
|
|
||||||
} else {
|
|
||||||
connInfo.SslMode = "disable"
|
|
||||||
}
|
|
||||||
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
func (c *Config) GetDBConnString() string {
|
|
||||||
return c.DBConnString
|
|
||||||
}
|
|
||||||
@@ -1,113 +0,0 @@
|
|||||||
// db/connection.go
|
|
||||||
package db
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
"log"
|
|
||||||
"os"
|
|
||||||
"strings"
|
|
||||||
"time"
|
|
||||||
|
|
||||||
"github.com/jackc/pgx/v5/pgxpool"
|
|
||||||
)
|
|
||||||
|
|
||||||
var Pool *pgxpool.Pool
|
|
||||||
|
|
||||||
type Database struct {
|
|
||||||
Pool *pgxpool.Pool
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewDatabase(connString string) (*Database, error) {
|
|
||||||
ctx := context.Background()
|
|
||||||
// Parse the connection string and create pool configuration
|
|
||||||
config, err := pgxpool.ParseConfig(connString)
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("unable to parse DSN: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
// Configure connection pool settings
|
|
||||||
config.MaxConns = 25
|
|
||||||
config.MinConns = 5
|
|
||||||
config.MaxConnLifetime = time.Hour
|
|
||||||
config.MaxConnIdleTime = 30 * time.Minute
|
|
||||||
config.HealthCheckPeriod = time.Minute
|
|
||||||
|
|
||||||
// Configure connection timeouts
|
|
||||||
config.ConnConfig.ConnectTimeout = 10 * time.Second
|
|
||||||
config.ConnConfig.RuntimeParams["timezone"] = "UTC"
|
|
||||||
|
|
||||||
// Create the connection pool
|
|
||||||
pool, err := pgxpool.NewWithConfig(ctx, config)
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("unable to create connection pool: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
// Test the connection with a short timeout
|
|
||||||
|
|
||||||
if err := pool.Ping(ctx); err != nil {
|
|
||||||
pool.Close()
|
|
||||||
return nil, fmt.Errorf("unable to ping database: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
log.Printf("Successfully connected to database")
|
|
||||||
return &Database{Pool: pool}, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (db *Database) Close() {
|
|
||||||
if db.Pool != nil {
|
|
||||||
db.Pool.Close()
|
|
||||||
log.Println("Database connection pool closed")
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// HealthCheck verifies the database connection is still alive
|
|
||||||
func (db *Database) HealthCheck(ctx context.Context) error {
|
|
||||||
return db.Pool.Ping(ctx)
|
|
||||||
}
|
|
||||||
|
|
||||||
// GetPoolStats returns connection pool statistics
|
|
||||||
func (db *Database) GetPoolStats() string {
|
|
||||||
stats := db.Pool.Stat()
|
|
||||||
return fmt.Sprintf("TotalConns: %d, IdleConns: %d, AcquiredConns: %d",
|
|
||||||
stats.TotalConns(), stats.IdleConns(), stats.AcquiredConns())
|
|
||||||
}
|
|
||||||
|
|
||||||
func (db *Database) ResetDatabase(ctx context.Context) error {
|
|
||||||
tx, err := db.Pool.Begin(ctx)
|
|
||||||
if err != nil {
|
|
||||||
return fmt.Errorf("Transaction unable to begin: %v", err)
|
|
||||||
}
|
|
||||||
defer tx.Rollback(ctx)
|
|
||||||
|
|
||||||
schemaContent, err := os.ReadFile("migrations/schema.sql")
|
|
||||||
if err != nil {
|
|
||||||
return fmt.Errorf("error reading schema file: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
statements := strings.Split(string(schemaContent), ";")
|
|
||||||
|
|
||||||
for _, stmt := range statements {
|
|
||||||
stmt = strings.TrimSpace(stmt)
|
|
||||||
if stmt == "" {
|
|
||||||
continue
|
|
||||||
}
|
|
||||||
|
|
||||||
if strings.HasPrefix(stmt, "--") {
|
|
||||||
continue
|
|
||||||
}
|
|
||||||
|
|
||||||
_, err := tx.Exec(ctx, stmt)
|
|
||||||
if err != nil {
|
|
||||||
return fmt.Errorf("error executing SQL statement: %v\nStatement: %s", err, stmt)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
if err := tx.Commit(ctx); err != nil {
|
|
||||||
return fmt.Errorf("unable to commit transaction: %v", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
log.Println("Database schema applied successfully")
|
|
||||||
|
|
||||||
return nil
|
|
||||||
}
|
|
||||||
@@ -1,4 +0,0 @@
|
|||||||
package endpoint
|
|
||||||
|
|
||||||
// Endpoint for registering a user
|
|
||||||
const Register = "/api/v1/register"
|
|
||||||
@@ -1,108 +0,0 @@
|
|||||||
package handler
|
|
||||||
|
|
||||||
import "net/http"
|
|
||||||
import "encoding/json"
|
|
||||||
import "fmt"
|
|
||||||
|
|
||||||
import (
|
|
||||||
"github.com/google/uuid"
|
|
||||||
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/model"
|
|
||||||
"git.kundeng.us/phoenix/textsender-auth/internal/utility"
|
|
||||||
)
|
|
||||||
|
|
||||||
type RegisterUser struct {
|
|
||||||
PhoneNumber string `json:"phone_number"`
|
|
||||||
Username string `json:"username"`
|
|
||||||
Password string `json:"password"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type RegisterResponseItem struct {
|
|
||||||
Id uuid.UUID `json:"id"`
|
|
||||||
PhoneNumber string `json:"phone_number"`
|
|
||||||
Username string `json:"username"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type RegisterResponse struct {
|
|
||||||
Message string `json:"message"`
|
|
||||||
Data []RegisterResponseItem `json:"data"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type UserHandler struct {
|
|
||||||
UserStore model.UserStore
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewUserHandler(userStore model.UserStore) *UserHandler {
|
|
||||||
return &UserHandler{UserStore: userStore}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (h *UserHandler) Register(w http.ResponseWriter, r *http.Request) {
|
|
||||||
if r.Method != http.MethodPost {
|
|
||||||
http.Error(w, "Method not allowed", http.StatusMethodNotAllowed)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
user, err := extractUserFromReq(r)
|
|
||||||
if err != nil {
|
|
||||||
http.Error(w, "Invalid JSON: "+err.Error(), http.StatusBadRequest)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
defer r.Body.Close()
|
|
||||||
|
|
||||||
var statusCode int
|
|
||||||
resp := RegisterResponse{}
|
|
||||||
|
|
||||||
fmt.Println("Username:", user.Username)
|
|
||||||
|
|
||||||
ctx := r.Context()
|
|
||||||
|
|
||||||
exists, err := h.UserStore.UserExists(ctx, user.Username)
|
|
||||||
if err != nil {
|
|
||||||
fmt.Printf("Error: %v", err)
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
}
|
|
||||||
|
|
||||||
if exists {
|
|
||||||
// User already exists
|
|
||||||
statusCode = http.StatusBadRequest
|
|
||||||
resp.Message = "Failure in creating User"
|
|
||||||
} else {
|
|
||||||
hashing := utility.HashMash{user.Password}
|
|
||||||
hashedPassword, err := hashing.HashPassword()
|
|
||||||
if err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
user.Password = hashedPassword
|
|
||||||
err := h.UserStore.CreateUser(ctx, &user)
|
|
||||||
if err != nil {
|
|
||||||
statusCode = http.StatusInternalServerError
|
|
||||||
resp.Message = err.Error()
|
|
||||||
} else {
|
|
||||||
resp.Message = "Successful"
|
|
||||||
statusCode = http.StatusOK
|
|
||||||
resp.Data = append(resp.Data, RegisterResponseItem{Id: user.Id, PhoneNumber: user.PhoneNumber, Username: user.Username})
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
respondWithJson(w, statusCode, &resp)
|
|
||||||
}
|
|
||||||
|
|
||||||
func extractUserFromReq(r *http.Request) (user model.User, myError error) {
|
|
||||||
var usr RegisterUser
|
|
||||||
err := json.NewDecoder(r.Body).Decode(&usr)
|
|
||||||
if err != nil {
|
|
||||||
return user, err
|
|
||||||
}
|
|
||||||
|
|
||||||
return model.User{PhoneNumber: usr.PhoneNumber, Username: usr.Username, Password: usr.Password}, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func respondWithJson(w http.ResponseWriter, statusCode int, data interface{}) {
|
|
||||||
w.Header().Set("Content-type", "application/json")
|
|
||||||
w.WriteHeader(statusCode)
|
|
||||||
json.NewEncoder(w).Encode(data)
|
|
||||||
}
|
|
||||||
@@ -1,22 +0,0 @@
|
|||||||
package middleware
|
|
||||||
|
|
||||||
import (
|
|
||||||
"log"
|
|
||||||
"net/http"
|
|
||||||
"time"
|
|
||||||
)
|
|
||||||
|
|
||||||
func Logging(next http.Handler) http.Handler {
|
|
||||||
return http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
|
|
||||||
start := time.Now()
|
|
||||||
next.ServeHTTP(w, r)
|
|
||||||
log.Printf("%s %s %v", r.Method, r.URL.Path, time.Since(start))
|
|
||||||
})
|
|
||||||
}
|
|
||||||
|
|
||||||
func JSONContentType(next http.Handler) http.Handler {
|
|
||||||
return http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
|
|
||||||
w.Header().Set("Content-Type", "application/json")
|
|
||||||
next.ServeHTTP(w, r)
|
|
||||||
})
|
|
||||||
}
|
|
||||||
@@ -1 +0,0 @@
|
|||||||
package model
|
|
||||||
@@ -1,120 +0,0 @@
|
|||||||
package model
|
|
||||||
|
|
||||||
import (
|
|
||||||
"context"
|
|
||||||
"fmt"
|
|
||||||
|
|
||||||
"github.com/google/uuid"
|
|
||||||
"github.com/jackc/pgx/v5"
|
|
||||||
"github.com/jackc/pgx/v5/pgxpool"
|
|
||||||
)
|
|
||||||
|
|
||||||
type User struct {
|
|
||||||
Id uuid.UUID `json:"id"`
|
|
||||||
PhoneNumber string `json:"phone_number"`
|
|
||||||
Username string `json:"username"`
|
|
||||||
Password string `json:"password"`
|
|
||||||
}
|
|
||||||
|
|
||||||
type UserStore interface {
|
|
||||||
CreateUser(ctx context.Context, user *User) error
|
|
||||||
GetUserByID(ctx context.Context, id uuid.UUID) (*User, error)
|
|
||||||
GetUserByUsername(ctx context.Context, username string) (*User, error)
|
|
||||||
GetAllUsers(ctx context.Context) ([]*User, error)
|
|
||||||
UserExists(ctx context.Context, email string) (bool, error)
|
|
||||||
}
|
|
||||||
|
|
||||||
type PGUserStore struct {
|
|
||||||
db *pgxpool.Pool
|
|
||||||
}
|
|
||||||
|
|
||||||
func NewUserStore(db *pgxpool.Pool) *PGUserStore {
|
|
||||||
return &PGUserStore{db: db}
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) CreateUser(ctx context.Context, user *User) error {
|
|
||||||
query := `
|
|
||||||
INSERT INTO users (phone_number, username, password)
|
|
||||||
VALUES ($1, $2, $3)
|
|
||||||
RETURNING id, phone_number, username
|
|
||||||
`
|
|
||||||
|
|
||||||
return s.db.QueryRow(ctx, query, user.PhoneNumber, user.Username, user.Password).Scan(
|
|
||||||
&user.Id, &user.PhoneNumber, &user.Username,
|
|
||||||
)
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) GetUserByID(ctx context.Context, id uuid.UUID) (*User, error) {
|
|
||||||
query := `SELECT id, username, password, phone_number FROM users WHERE id = $1`
|
|
||||||
|
|
||||||
var user User
|
|
||||||
err := s.db.QueryRow(ctx, query, id).Scan(
|
|
||||||
&user.Id, &user.Username, &user.Password, &user.PhoneNumber,
|
|
||||||
)
|
|
||||||
|
|
||||||
if err == pgx.ErrNoRows {
|
|
||||||
return nil, nil
|
|
||||||
}
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("getting user by ID: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return &user, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) GetUserByUsername(ctx context.Context, username string) (*User, error) {
|
|
||||||
query := `SELECT id, username, password, phone_number FROM users WHERE username = $1`
|
|
||||||
|
|
||||||
var user User
|
|
||||||
err := s.db.QueryRow(ctx, query, username).Scan(
|
|
||||||
&user.Id, &user.Username, &user.Password, &user.PhoneNumber,
|
|
||||||
)
|
|
||||||
|
|
||||||
if err == pgx.ErrNoRows {
|
|
||||||
return nil, nil
|
|
||||||
}
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("getting user by ID: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return &user, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) GetAllUsers(ctx context.Context) ([]*User, error) {
|
|
||||||
query := `SELECT id, username, password, phone_number FROM users`
|
|
||||||
|
|
||||||
rows, err := s.db.Query(ctx, query)
|
|
||||||
if err != nil {
|
|
||||||
return nil, fmt.Errorf("querying all users: %w", err)
|
|
||||||
}
|
|
||||||
defer rows.Close()
|
|
||||||
|
|
||||||
var users []*User
|
|
||||||
for rows.Next() {
|
|
||||||
var user User
|
|
||||||
if err := rows.Scan(
|
|
||||||
&user.Id, &user.Username, &user.Password, &user.PhoneNumber,
|
|
||||||
); err != nil {
|
|
||||||
return nil, fmt.Errorf("scanning user row: %w", err)
|
|
||||||
}
|
|
||||||
users = append(users, &user)
|
|
||||||
}
|
|
||||||
|
|
||||||
if err := rows.Err(); err != nil {
|
|
||||||
return nil, fmt.Errorf("iterating user rows: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return users, nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (s *PGUserStore) UserExists(ctx context.Context, username string) (bool, error) {
|
|
||||||
query := `SELECT EXISTS(SELECT 1 FROM users WHERE username = $1)`
|
|
||||||
|
|
||||||
var exists bool
|
|
||||||
err := s.db.QueryRow(ctx, query, username).Scan(&exists)
|
|
||||||
if err != nil {
|
|
||||||
return false, fmt.Errorf("checking if user exists: %w", err)
|
|
||||||
}
|
|
||||||
|
|
||||||
return exists, nil
|
|
||||||
}
|
|
||||||
@@ -1,24 +0,0 @@
|
|||||||
package utility
|
|
||||||
|
|
||||||
|
|
||||||
import (
|
|
||||||
"golang.org/x/crypto/bcrypt"
|
|
||||||
)
|
|
||||||
|
|
||||||
type HashMash struct {
|
|
||||||
Password string
|
|
||||||
}
|
|
||||||
|
|
||||||
func (h HashMash) HashPassword() (string, error) {
|
|
||||||
bytes, err := bcrypt.GenerateFromPassword([]byte(h.Password), bcrypt.DefaultCost)
|
|
||||||
return string(bytes), err
|
|
||||||
}
|
|
||||||
|
|
||||||
func (h HashMash) CheckPasswordHash(password string, hash string) bool {
|
|
||||||
err := bcrypt.CompareHashAndPassword([]byte(hash), []byte(password))
|
|
||||||
return err == nil
|
|
||||||
}
|
|
||||||
|
|
||||||
func (h *HashMash) SetPassword(password string) {
|
|
||||||
h.Password = password
|
|
||||||
}
|
|
||||||
@@ -0,0 +1,30 @@
|
|||||||
|
-- Add migration script here
|
||||||
|
CREATE EXTENSION IF NOT EXISTS pgcrypto;
|
||||||
|
CREATE EXTENSION IF NOT EXISTS "uuid-ossp";
|
||||||
|
|
||||||
|
CREATE TABLE IF NOT EXISTS "user" (
|
||||||
|
id UUID PRIMARY KEY DEFAULT gen_random_uuid(),
|
||||||
|
firstname TEXT NOT NULL,
|
||||||
|
lastname TEXT NOT NULL,
|
||||||
|
phone_number TEXT NOT NULL,
|
||||||
|
username TEXT NOT NULL,
|
||||||
|
password TEXT NOT NULL,
|
||||||
|
created TIMESTAMPTZ NOT NULL DEFAULT NOW(),
|
||||||
|
last_login TIMESTAMPTZ NOT NULL DEFAULT NOW(),
|
||||||
|
salt_id UUID NOT NULL
|
||||||
|
);
|
||||||
|
|
||||||
|
|
||||||
|
CREATE TABLE IF NOT EXISTS "salt" (
|
||||||
|
id UUID PRIMARY KEY DEFAULT gen_random_uuid(),
|
||||||
|
salt TEXT NOT NULL
|
||||||
|
);
|
||||||
|
|
||||||
|
CREATE TABLE IF NOT EXISTS "service_user" (
|
||||||
|
id UUID PRIMARY KEY DEFAULT gen_random_uuid(),
|
||||||
|
username TEXT NOT NULL,
|
||||||
|
passphrase TEXT NOT NULL,
|
||||||
|
created TIMESTAMPTZ NOT NULL DEFAULT NOW(),
|
||||||
|
last_login timestamptz NULL,
|
||||||
|
salt_id UUID NOT NULL
|
||||||
|
);
|
||||||
@@ -1,11 +0,0 @@
|
|||||||
CREATE EXTENSION IF NOT EXISTS "uuid-ossp";
|
|
||||||
|
|
||||||
DROP TABLE IF EXISTS users CASCADE;
|
|
||||||
|
|
||||||
CREATE TABLE users (
|
|
||||||
id UUID PRIMARY KEY DEFAULT uuid_generate_v4(),
|
|
||||||
phone_number TEXT NOT NULL,
|
|
||||||
username TEXT NOT NULL,
|
|
||||||
password TEXT NOT NULL
|
|
||||||
);
|
|
||||||
|
|
||||||
@@ -0,0 +1,54 @@
|
|||||||
|
pub mod response {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct TestResult {
|
||||||
|
pub message: String,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod endpoint {
|
||||||
|
use super::*;
|
||||||
|
use axum::{Extension, Json, http::StatusCode};
|
||||||
|
|
||||||
|
/// Endpoint to hit the root
|
||||||
|
/// basic handler that responds with a static string
|
||||||
|
#[utoipa::path(
|
||||||
|
get,
|
||||||
|
path = super::super::endpoints::ROOT,
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Test", body = &str),
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn root() -> &'static str {
|
||||||
|
"Hello, World!"
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to do a database ping
|
||||||
|
#[utoipa::path(
|
||||||
|
get,
|
||||||
|
path = super::super::endpoints::DBTEST,
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Successful ping of the db", body = super::response::TestResult),
|
||||||
|
(status = 400, description = "Failure in pinging the db", body = super::response::TestResult)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn db_ping(
|
||||||
|
Extension(pool): Extension<sqlx::PgPool>,
|
||||||
|
) -> (StatusCode, Json<response::TestResult>) {
|
||||||
|
match sqlx::query("SELECT 1").execute(&pool).await {
|
||||||
|
Ok(_) => {
|
||||||
|
let tr = response::TestResult {
|
||||||
|
message: String::from("This works"),
|
||||||
|
};
|
||||||
|
(StatusCode::OK, Json(tr))
|
||||||
|
}
|
||||||
|
Err(e) => (
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::TestResult {
|
||||||
|
message: e.to_string(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,870 @@
|
|||||||
|
use crate::hashing;
|
||||||
|
use crate::repo;
|
||||||
|
use crate::token_stuff;
|
||||||
|
|
||||||
|
pub mod request {
|
||||||
|
use serde::Deserialize;
|
||||||
|
#[derive(Default, Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct LoginRequest {
|
||||||
|
pub username: String,
|
||||||
|
pub password: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct ServiceUserLoginRequest {
|
||||||
|
pub username: String,
|
||||||
|
pub passphrase: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl ServiceUserLoginRequest {
|
||||||
|
pub fn is_empty(&self) -> (bool, Option<String>) {
|
||||||
|
if self.username.is_empty() && self.passphrase.is_empty() {
|
||||||
|
(
|
||||||
|
true,
|
||||||
|
Some(String::from("Username and passphrase are empty")),
|
||||||
|
)
|
||||||
|
} else if self.username.is_empty() {
|
||||||
|
(true, Some(String::from("Username is empty")))
|
||||||
|
} else if self.username.is_empty() {
|
||||||
|
(true, Some(String::from("Passphrase is empty")))
|
||||||
|
} else {
|
||||||
|
(false, None)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct RefreshTokenRequest {
|
||||||
|
pub access_token: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct UpdatePasswordRequest {
|
||||||
|
pub user_id: uuid::Uuid,
|
||||||
|
pub current_password: String,
|
||||||
|
pub updated_password: String,
|
||||||
|
pub confirmed_password: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl UpdatePasswordRequest {
|
||||||
|
pub fn is_valid(&self) -> bool {
|
||||||
|
if self.user_id.is_nil()
|
||||||
|
|| self.current_password.is_empty()
|
||||||
|
|| self.updated_password.is_empty()
|
||||||
|
|| self.confirmed_password.is_empty()
|
||||||
|
{
|
||||||
|
false
|
||||||
|
} else {
|
||||||
|
self.updated_password == self.confirmed_password
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, utoipa::ToSchema)]
|
||||||
|
pub struct UserUpdateNameRequest {
|
||||||
|
pub user_id: uuid::Uuid,
|
||||||
|
pub firstname: String,
|
||||||
|
pub lastname: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl UserUpdateNameRequest {
|
||||||
|
pub fn is_valid(&self) -> (bool, Option<String>) {
|
||||||
|
if self.user_id.is_nil() || self.firstname.is_empty() || self.lastname.is_empty() {
|
||||||
|
let reason = String::from("Missing fields");
|
||||||
|
(false, Some(reason))
|
||||||
|
} else {
|
||||||
|
(true, None)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod response {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct LoginResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::token::LoginResult>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct ServiceUserLoginResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::token::LoginResult>,
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn extract(
|
||||||
|
response: axum::response::Response,
|
||||||
|
) -> Result<LoginResponse, std::io::Error> {
|
||||||
|
let body = match axum::body::to_bytes(response.into_body(), usize::MAX).await {
|
||||||
|
Ok(body) => body,
|
||||||
|
Err(err) => {
|
||||||
|
return Err(std::io::Error::other(err));
|
||||||
|
}
|
||||||
|
};
|
||||||
|
let parsed_body: LoginResponse = match serde_json::from_slice(&body) {
|
||||||
|
Ok(body) => body,
|
||||||
|
Err(err) => {
|
||||||
|
return Err(std::io::Error::other(err));
|
||||||
|
}
|
||||||
|
};
|
||||||
|
Ok(parsed_body)
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct RefreshTokenResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::token::LoginResult>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct UpdatePasswordResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<uuid::Uuid>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct UserUpdateNameResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::User>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct GetUserProfileResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::UserProfile>,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for a user login
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::LOGIN,
|
||||||
|
request_body(
|
||||||
|
content = request::LoginRequest,
|
||||||
|
description = "Data required for a user to lgoin",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "User login successful", body = response::LoginResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::LoginResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::LoginResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn user_login(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::LoginRequest>,
|
||||||
|
) -> (axum::http::StatusCode, axum::Json<response::LoginResponse>) {
|
||||||
|
if payload.username.is_empty() || payload.password.is_empty() {
|
||||||
|
let reason = if payload.username.is_empty() {
|
||||||
|
String::from("Username not provided")
|
||||||
|
} else {
|
||||||
|
String::from("Password not provided")
|
||||||
|
};
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: reason,
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::user::exists(&pool, &payload.username).await {
|
||||||
|
Ok(exists) => {
|
||||||
|
if !exists {
|
||||||
|
println!("User does not exists");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let user = match repo::user::get(&pool, &payload.username).await {
|
||||||
|
Ok(user) => user,
|
||||||
|
Err(_err) => {
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
let hashed_password = user.password.clone();
|
||||||
|
|
||||||
|
match hashing::verify_password(&payload.password, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
// Create token
|
||||||
|
let key =
|
||||||
|
schedtxt_models::envy::environment::get_secret_key().value;
|
||||||
|
let cst = match token_stuff::create_token(&key, &user.id) {
|
||||||
|
Ok(token) => token,
|
||||||
|
Err(_err) => {
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Error creating token"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
if token_stuff::verify_token(&key, &cst.access_token) {
|
||||||
|
let current_time = time::OffsetDateTime::now_utc();
|
||||||
|
let _ =
|
||||||
|
repo::user::update_last_login(&pool, &user, ¤t_time)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Successful"),
|
||||||
|
data: vec![schedtxt_models::token::LoginResult {
|
||||||
|
user_id: user.id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
token_type: String::from(
|
||||||
|
schedtxt_models::token::TOKEN_TYPE,
|
||||||
|
),
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
}],
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::LoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for service user login
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::LOGIN_SERVICE_USER,
|
||||||
|
request_body(
|
||||||
|
content = request::ServiceUserLoginRequest,
|
||||||
|
description = "Data required for service user to lgoin",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "Service uuser login successful", body = response::ServiceUserLoginResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::ServiceUserLoginResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::ServiceUserLoginResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn service_user_login(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::ServiceUserLoginRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::ServiceUserLoginResponse>,
|
||||||
|
) {
|
||||||
|
if payload.username.is_empty() || payload.passphrase.is_empty() {
|
||||||
|
let reason = if payload.username.is_empty() {
|
||||||
|
String::from("Username not provided")
|
||||||
|
} else {
|
||||||
|
String::from("Passphrase not provided")
|
||||||
|
};
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: reason,
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::service::exists(&pool, &payload.username).await {
|
||||||
|
Ok(exists) => {
|
||||||
|
if !exists {
|
||||||
|
println!("User does not exists");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
println!("Good to create");
|
||||||
|
let service_user =
|
||||||
|
match repo::service::get_with_username(&pool, &payload.username).await {
|
||||||
|
Ok(service_user) => service_user,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Unable to login"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
println!("Service user: {service_user:?}");
|
||||||
|
println!("Payload: {:?}", payload.passphrase);
|
||||||
|
let hashed_password = service_user.passphrase.clone();
|
||||||
|
println!("Hash password: {hashed_password:?}");
|
||||||
|
|
||||||
|
match hashing::verify_password(&payload.passphrase, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
// Create token
|
||||||
|
println!("Creating token");
|
||||||
|
let key =
|
||||||
|
schedtxt_models::envy::environment::get_secret_key().value;
|
||||||
|
let cst =
|
||||||
|
token_stuff::create_token(&key, &service_user.id).unwrap();
|
||||||
|
|
||||||
|
if token_stuff::verify_token(&key, &cst.access_token) {
|
||||||
|
let current_time = time::OffsetDateTime::now_utc();
|
||||||
|
let _ = repo::service::update_last_login(
|
||||||
|
&pool,
|
||||||
|
&service_user,
|
||||||
|
¤t_time,
|
||||||
|
)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from(
|
||||||
|
super::messages::SUCCESSFUL_MESSAGE,
|
||||||
|
),
|
||||||
|
data: vec![schedtxt_models::token::LoginResult {
|
||||||
|
user_id: service_user.id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
token_type: String::from(
|
||||||
|
schedtxt_models::token::TOKEN_TYPE,
|
||||||
|
),
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
}],
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
eprintln!("Invalid token");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
eprintln!("No match");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: String::from("Invalid attempt"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::ServiceUserLoginResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for service user login
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::REFRESH_TOKEN,
|
||||||
|
request_body(
|
||||||
|
content = request::RefreshTokenRequest,
|
||||||
|
description = "Data required refresh token",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Service uuser login successful", body = response::RefreshTokenResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::RefreshTokenResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::RefreshTokenResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn refresh_token(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::RefreshTokenRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::RefreshTokenResponse>,
|
||||||
|
) {
|
||||||
|
if payload.access_token.is_empty() {
|
||||||
|
let reason = String::from("Access token not provided");
|
||||||
|
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: reason,
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let key = schedtxt_models::envy::environment::get_secret_key().value;
|
||||||
|
if token_stuff::verify_token(&key, &payload.access_token) {
|
||||||
|
match token_stuff::extract_id_from_token(&key, &payload.access_token) {
|
||||||
|
Ok(id) => {
|
||||||
|
let generate_service_token =
|
||||||
|
|id, key| -> Option<schedtxt_models::token::CreateTokenResult> {
|
||||||
|
token_stuff::create_service_refresh_token(key, id).ok()
|
||||||
|
};
|
||||||
|
|
||||||
|
let mut response = response::RefreshTokenResponse {
|
||||||
|
message: String::new(),
|
||||||
|
data: Vec::new(),
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::user::get_with_id(&pool, &id).await {
|
||||||
|
Ok(_user) => match generate_service_token(&id, &key) {
|
||||||
|
Some(cst) => {
|
||||||
|
response.message =
|
||||||
|
String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
let lr = schedtxt_models::token::LoginResult {
|
||||||
|
user_id: id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
token_type: String::from(schedtxt_models::token::TOKEN_TYPE),
|
||||||
|
};
|
||||||
|
response.data.push(lr);
|
||||||
|
(axum::http::StatusCode::OK, axum::Json(response))
|
||||||
|
}
|
||||||
|
None => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: String::from("Refresh token not generated"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
},
|
||||||
|
Err(err) => {
|
||||||
|
println!("Unable to find user, checking service user: {err:?}");
|
||||||
|
match repo::service::get(&pool, &id).await {
|
||||||
|
Ok(_service_user) => match generate_service_token(&id, &key) {
|
||||||
|
Some(cst) => {
|
||||||
|
response.message =
|
||||||
|
String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
let lr = schedtxt_models::token::LoginResult {
|
||||||
|
user_id: id,
|
||||||
|
access_token: cst.access_token,
|
||||||
|
issued_at: cst.issued,
|
||||||
|
expires_in: cst.expires_in,
|
||||||
|
token_type: String::from(
|
||||||
|
schedtxt_models::token::TOKEN_TYPE,
|
||||||
|
),
|
||||||
|
};
|
||||||
|
response.data.push(lr);
|
||||||
|
(axum::http::StatusCode::OK, axum::Json(response))
|
||||||
|
}
|
||||||
|
None => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: String::from("Issued at not returned"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
},
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::RefreshTokenResponse {
|
||||||
|
message: String::from("Unable to verify token"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for a updating password
|
||||||
|
#[utoipa::path(
|
||||||
|
patch,
|
||||||
|
path = super::endpoints::UPDATE_PASSWORD,
|
||||||
|
request_body(
|
||||||
|
content = request::UpdatePasswordRequest,
|
||||||
|
description = "Data required to update password",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "User login successful", body = response::UpdatePasswordResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::UpdatePasswordResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::UpdatePasswordResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn update_password(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::UpdatePasswordRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::UpdatePasswordResponse>,
|
||||||
|
) {
|
||||||
|
if !payload.is_valid() {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from("Invalid passwords"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let verify_password = |current_password, hashed_password| -> Result<bool, std::io::Error> {
|
||||||
|
match hashing::verify_password(current_password, hashed_password) {
|
||||||
|
Ok(matches) => Ok(matches),
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::user::get_with_id(&pool, &payload.user_id).await {
|
||||||
|
Ok(user) => {
|
||||||
|
let hashed_password = user.password.clone();
|
||||||
|
match verify_password(&payload.current_password, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
let (generate_salt, mut salt) = super::register::generate_the_salt();
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
let updated_hashed_password = match hashing::hash_password(
|
||||||
|
&payload.updated_password,
|
||||||
|
&generate_salt,
|
||||||
|
) {
|
||||||
|
Ok(hashed) => hashed,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
String::new()
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::user::update_password(
|
||||||
|
&pool,
|
||||||
|
&user,
|
||||||
|
&updated_hashed_password,
|
||||||
|
)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(()) => (
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from(super::messages::SUCCESSFUL_MESSAGE),
|
||||||
|
data: vec![user.id],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from("Issue updating password"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
println!("No User found, trying Service User: {err:?}");
|
||||||
|
|
||||||
|
// Try service user
|
||||||
|
match repo::service::get(&pool, &payload.user_id).await {
|
||||||
|
Ok(service_user) => {
|
||||||
|
let hashed_password = service_user.passphrase.clone();
|
||||||
|
match verify_password(&payload.current_password, hashed_password) {
|
||||||
|
Ok(matches) => {
|
||||||
|
if matches {
|
||||||
|
let (generate_salt, mut salt) =
|
||||||
|
super::register::generate_the_salt();
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
let updated_hashed_password = match hashing::hash_password(
|
||||||
|
&payload.updated_password,
|
||||||
|
&generate_salt,
|
||||||
|
) {
|
||||||
|
Ok(hashed) => hashed,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
String::new()
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
match repo::service::update_passphrase(
|
||||||
|
&pool,
|
||||||
|
&service_user,
|
||||||
|
&updated_hashed_password,
|
||||||
|
)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(()) => (
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from(
|
||||||
|
super::messages::SUCCESSFUL_MESSAGE,
|
||||||
|
),
|
||||||
|
data: vec![service_user.id],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: String::from("Issue updating password"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UpdatePasswordResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint for a updating password
|
||||||
|
#[utoipa::path(
|
||||||
|
patch,
|
||||||
|
path = super::endpoints::UPDATE_USER_NAME,
|
||||||
|
request_body(
|
||||||
|
content = request::UserUpdateNameRequest,
|
||||||
|
description = "Data required to update name of a user",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Names were updated", body = response::UserUpdateNameResponse),
|
||||||
|
(status = 304, description = "Nothing to change", body = response::UserUpdateNameResponse),
|
||||||
|
(status = 400, description = "Bad data", body = response::UserUpdateNameResponse),
|
||||||
|
(status = 500, description = "Something went wrong", body = response::UserUpdateNameResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn update_name_of_user(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::Json(payload): axum::Json<request::UserUpdateNameRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::UserUpdateNameResponse>,
|
||||||
|
) {
|
||||||
|
let (valid_request, reason) = payload.is_valid();
|
||||||
|
if !valid_request {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::BAD_REQUEST,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: reason.unwrap_or_default(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::user::get_with_id(&pool, &payload.user_id).await {
|
||||||
|
Ok(user) => {
|
||||||
|
if user.firstname == payload.firstname || user.lastname == payload.lastname {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::NOT_MODIFIED,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: String::from("No change"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
match repo::user::update_name(
|
||||||
|
&pool,
|
||||||
|
&user.id,
|
||||||
|
&payload.firstname,
|
||||||
|
&payload.lastname,
|
||||||
|
)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(_) => (
|
||||||
|
axum::http::StatusCode::OK,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: String::from(super::messages::SUCCESSFUL_MESSAGE),
|
||||||
|
data: vec![schedtxt_models::user::User {
|
||||||
|
id: user.id,
|
||||||
|
phone_number: user.phone_number,
|
||||||
|
firstname: payload.firstname,
|
||||||
|
lastname: payload.lastname,
|
||||||
|
username: user.username,
|
||||||
|
created: user.created,
|
||||||
|
last_login: user.last_login,
|
||||||
|
..Default::default()
|
||||||
|
}],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response::UserUpdateNameResponse {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to get User Profile
|
||||||
|
#[utoipa::path(
|
||||||
|
delete,
|
||||||
|
path = super::endpoints::GET_USER_PROFILE,
|
||||||
|
params(("id" = uuid::Uuid, Path, description = "User Id")),
|
||||||
|
responses(
|
||||||
|
(status = 200, description = "Deleted", body = response::GetUserProfileResponse),
|
||||||
|
(status = 400, description = "Bad request", body = response::GetUserProfileResponse),
|
||||||
|
(status = 500, description = "Error", body = response::GetUserProfileResponse)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn get_user_profile(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
axum::extract::Path(id): axum::extract::Path<uuid::Uuid>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::GetUserProfileResponse>,
|
||||||
|
) {
|
||||||
|
let mut response = response::GetUserProfileResponse::default();
|
||||||
|
if id.is_nil() {
|
||||||
|
response.message = String::from("Invalid");
|
||||||
|
return (axum::http::StatusCode::BAD_REQUEST, axum::Json(response));
|
||||||
|
}
|
||||||
|
|
||||||
|
match repo::user::get_with_id(&pool, &id).await {
|
||||||
|
Ok(user) => {
|
||||||
|
let user_profile = schedtxt_models::user::UserProfile {
|
||||||
|
user_id: user.id,
|
||||||
|
phone_number: user.phone_number,
|
||||||
|
firstname: user.firstname,
|
||||||
|
lastname: user.lastname,
|
||||||
|
last_login: user.last_login,
|
||||||
|
created: user.created,
|
||||||
|
username: user.username,
|
||||||
|
};
|
||||||
|
response.message = String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
response.data.push(user_profile);
|
||||||
|
|
||||||
|
(axum::http::StatusCode::OK, axum::Json(response))
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
response.message = String::from("Bad request");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(response),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1 @@
|
|||||||
|
pub const SUCCESSFUL_MESSAGE: &str = "Successful";
|
||||||
@@ -0,0 +1,24 @@
|
|||||||
|
pub mod common;
|
||||||
|
pub mod login;
|
||||||
|
pub mod messages;
|
||||||
|
pub mod register;
|
||||||
|
|
||||||
|
pub mod endpoints {
|
||||||
|
pub const ROOT: &str = "/";
|
||||||
|
pub const REGISTER: &str = "/api/v1/register";
|
||||||
|
/// Endpoint for a user to login
|
||||||
|
pub const LOGIN: &str = "/api/v1/login";
|
||||||
|
pub const DBTEST: &str = "/api/v1/test/db";
|
||||||
|
/// Endpoint constant for service user registration
|
||||||
|
pub const REGISTER_SERVICE_USER: &str = "/api/v1/service/register";
|
||||||
|
/// Endpoint constant for service login user
|
||||||
|
pub const LOGIN_SERVICE_USER: &str = "/api/v1/service/login";
|
||||||
|
/// Endpoint constant for refresh token
|
||||||
|
pub const REFRESH_TOKEN: &str = "/api/v1/token/refresh";
|
||||||
|
/// Endpoint constant for updating password
|
||||||
|
pub const UPDATE_PASSWORD: &str = "/api/v1/user/password/update";
|
||||||
|
/// Endpoint constant for updating user's name
|
||||||
|
pub const UPDATE_USER_NAME: &str = "/api/v1/user/name/update";
|
||||||
|
/// Endpoint constant for getting user profile
|
||||||
|
pub const GET_USER_PROFILE: &str = "/api/v1/user/profile/{id}";
|
||||||
|
}
|
||||||
@@ -0,0 +1,292 @@
|
|||||||
|
use axum::{Json, http::StatusCode};
|
||||||
|
|
||||||
|
use crate::hashing;
|
||||||
|
use crate::repo;
|
||||||
|
|
||||||
|
pub mod request {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct Request {
|
||||||
|
pub username: String,
|
||||||
|
pub password: String,
|
||||||
|
pub phone_number: String,
|
||||||
|
#[serde(skip_serializing_if = "Option::is_none")]
|
||||||
|
pub email: Option<String>,
|
||||||
|
#[serde(skip_serializing_if = "Option::is_none")]
|
||||||
|
pub firstname: Option<String>,
|
||||||
|
#[serde(skip_serializing_if = "Option::is_none")]
|
||||||
|
pub lastname: Option<String>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct RegisterServiceUserRequest {
|
||||||
|
pub username: String,
|
||||||
|
pub passphrase: String,
|
||||||
|
}
|
||||||
|
|
||||||
|
impl RegisterServiceUserRequest {
|
||||||
|
pub fn is_empty(&self) -> (bool, Option<String>) {
|
||||||
|
if self.username.is_empty() && self.passphrase.is_empty() {
|
||||||
|
(
|
||||||
|
true,
|
||||||
|
Some(String::from("Username and Passphrase are empty")),
|
||||||
|
)
|
||||||
|
} else if self.username.is_empty() {
|
||||||
|
(true, Some(String::from("Username is empty")))
|
||||||
|
} else if self.passphrase.is_empty() {
|
||||||
|
(true, Some(String::from("Passphrase is empty")))
|
||||||
|
} else {
|
||||||
|
(false, None)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod response {
|
||||||
|
use serde::{Deserialize, Serialize};
|
||||||
|
|
||||||
|
#[derive(Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct Response {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::User>,
|
||||||
|
}
|
||||||
|
|
||||||
|
#[derive(Default, Deserialize, Serialize, utoipa::ToSchema)]
|
||||||
|
pub struct RegisterServiceUserResponse {
|
||||||
|
pub message: String,
|
||||||
|
pub data: Vec<schedtxt_models::user::ServiceUser>,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn generate_the_salt() -> (
|
||||||
|
argon2::password_hash::SaltString,
|
||||||
|
schedtxt_models::user::Salt,
|
||||||
|
) {
|
||||||
|
let salt_string = hashing::generate_salt().unwrap();
|
||||||
|
let salt = schedtxt_models::user::Salt::default();
|
||||||
|
(salt_string, salt)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to register a user
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::REGISTER,
|
||||||
|
request_body(
|
||||||
|
content = request::Request,
|
||||||
|
description = "Data required to register",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "User created", body = response::Response),
|
||||||
|
(status = 404, description = "User already exists", body = response::Response),
|
||||||
|
(status = 500, description = "Issue creating user", body = response::Response)
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn register_user(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
Json(payload): Json<request::Request>,
|
||||||
|
) -> (StatusCode, Json<response::Response>) {
|
||||||
|
let registration_enabled = match is_registration_enabled().await {
|
||||||
|
Ok(value) => value,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
return (
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("Registration check failed"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
if registration_enabled {
|
||||||
|
let mut user = schedtxt_models::user::User {
|
||||||
|
username: payload.username.clone(),
|
||||||
|
password: payload.password.clone(),
|
||||||
|
phone_number: payload.phone_number.clone(),
|
||||||
|
..Default::default()
|
||||||
|
};
|
||||||
|
|
||||||
|
user.firstname = payload.firstname.unwrap_or_default();
|
||||||
|
user.lastname = payload.lastname.unwrap_or_default();
|
||||||
|
|
||||||
|
println!("Checking if user exists");
|
||||||
|
match repo::user::exists(&pool, &user.username).await {
|
||||||
|
Ok(res) => {
|
||||||
|
if res {
|
||||||
|
println!("Already exists");
|
||||||
|
(
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("Error"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
println!("Good to create");
|
||||||
|
println!("Generate salt string");
|
||||||
|
|
||||||
|
let (generated_salt, mut salt) = generate_the_salt();
|
||||||
|
println!("Creating salt");
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
user.salt_id = salt.id;
|
||||||
|
let hashed_password =
|
||||||
|
hashing::hash_password(&user.password, &generated_salt).unwrap();
|
||||||
|
user.password = hashed_password;
|
||||||
|
|
||||||
|
println!("Creating user");
|
||||||
|
match repo::user::insert(&pool, &user).await {
|
||||||
|
Ok((id, date_created)) => {
|
||||||
|
user.id = id;
|
||||||
|
user.created = date_created;
|
||||||
|
(
|
||||||
|
StatusCode::CREATED,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("User created"),
|
||||||
|
data: vec![user],
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::Response {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: vec![user],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => (
|
||||||
|
StatusCode::BAD_REQUEST,
|
||||||
|
Json(response::Response {
|
||||||
|
message: err.to_string(),
|
||||||
|
data: vec![user],
|
||||||
|
}),
|
||||||
|
),
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::NOT_ACCEPTABLE,
|
||||||
|
Json(response::Response {
|
||||||
|
message: String::from("Registration is not enabled"),
|
||||||
|
data: Vec::new(),
|
||||||
|
}),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Checks to see if registration is enabled
|
||||||
|
async fn is_registration_enabled() -> Result<bool, std::io::Error> {
|
||||||
|
let key = String::from("ENABLE_REGISTRATION");
|
||||||
|
let var = schedtxt_models::envy::environment::get_env(&key);
|
||||||
|
let parsed_value = var.value.to_uppercase();
|
||||||
|
|
||||||
|
if parsed_value == "TRUE" {
|
||||||
|
Ok(true)
|
||||||
|
} else if parsed_value == "FALSE" {
|
||||||
|
Ok(false)
|
||||||
|
} else {
|
||||||
|
Err(std::io::Error::other(
|
||||||
|
"Could not determine value of ENABLE_REGISTRATION",
|
||||||
|
))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Endpoint to register a service user
|
||||||
|
#[utoipa::path(
|
||||||
|
post,
|
||||||
|
path = super::endpoints::REGISTER_SERVICE_USER,
|
||||||
|
request_body(
|
||||||
|
content = request::RegisterServiceUserRequest,
|
||||||
|
description = "Data required to register service user",
|
||||||
|
content_type = "application/json"
|
||||||
|
),
|
||||||
|
responses(
|
||||||
|
(status = 201, description = "Service user created", body = response::RegisterServiceUserResponse),
|
||||||
|
(status = 400, description = "Issue creating service user", body = response::RegisterServiceUserResponse),
|
||||||
|
(status = 406, description = "Cannot create service user", body = response::RegisterServiceUserResponse),
|
||||||
|
(status = 500, description = "Issue creating service user", body = response::RegisterServiceUserResponse),
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
pub async fn register_service_user(
|
||||||
|
axum::Extension(pool): axum::Extension<sqlx::PgPool>,
|
||||||
|
Json(payload): Json<request::RegisterServiceUserRequest>,
|
||||||
|
) -> (
|
||||||
|
axum::http::StatusCode,
|
||||||
|
axum::Json<response::RegisterServiceUserResponse>,
|
||||||
|
) {
|
||||||
|
let mut resp = response::RegisterServiceUserResponse {
|
||||||
|
..Default::default()
|
||||||
|
};
|
||||||
|
|
||||||
|
let registration_enabled = match is_registration_enabled().await {
|
||||||
|
Ok(value) => value,
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
resp.message = String::from("Registration check failed");
|
||||||
|
return (axum::http::StatusCode::INTERNAL_SERVER_ERROR, Json(resp));
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
let (res, msg) = payload.is_empty();
|
||||||
|
if res {
|
||||||
|
resp.message = msg.unwrap();
|
||||||
|
(axum::http::StatusCode::BAD_REQUEST, axum::Json(resp))
|
||||||
|
} else {
|
||||||
|
if registration_enabled {
|
||||||
|
match repo::service::exists(&pool, &payload.username).await {
|
||||||
|
Ok(exists) => {
|
||||||
|
if exists {
|
||||||
|
resp.message = String::from("Invalid");
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(resp),
|
||||||
|
)
|
||||||
|
} else {
|
||||||
|
let (generate_salt, mut salt) = generate_the_salt();
|
||||||
|
salt.id = repo::salt::insert(&pool, &salt).await.unwrap();
|
||||||
|
let mut service_user = schedtxt_models::user::ServiceUser {
|
||||||
|
username: payload.username.clone(),
|
||||||
|
passphrase: hashing::hash_password(&payload.passphrase, &generate_salt)
|
||||||
|
.unwrap(),
|
||||||
|
salt_id: salt.id,
|
||||||
|
..Default::default()
|
||||||
|
};
|
||||||
|
|
||||||
|
println!("Creating user");
|
||||||
|
|
||||||
|
match repo::service::insert(&pool, &service_user).await {
|
||||||
|
Ok((service_user_id, created)) => {
|
||||||
|
resp.message = String::from(super::messages::SUCCESSFUL_MESSAGE);
|
||||||
|
service_user.created = Some(created);
|
||||||
|
service_user.id = service_user_id;
|
||||||
|
resp.data.push(service_user);
|
||||||
|
(axum::http::StatusCode::CREATED, axum::Json(resp))
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
resp.message = err.to_string();
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(resp),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
resp.message = err.to_string();
|
||||||
|
(
|
||||||
|
axum::http::StatusCode::INTERNAL_SERVER_ERROR,
|
||||||
|
axum::Json(resp),
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
resp.message = String::from("Registration is not enabled");
|
||||||
|
(axum::http::StatusCode::NOT_ACCEPTABLE, Json(resp))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,6 @@
|
|||||||
|
const ADDRESS: &str = "0.0.0.0";
|
||||||
|
const PORT: &str = "9080";
|
||||||
|
|
||||||
|
pub fn get_full() -> String {
|
||||||
|
format!("{ADDRESS}:{PORT}")
|
||||||
|
}
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
use sqlx::postgres::PgPoolOptions;
|
||||||
|
|
||||||
|
pub async fn create_pool() -> Result<sqlx::PgPool, sqlx::Error> {
|
||||||
|
let database_url = schedtxt_models::envy::environment::get_db_url().value;
|
||||||
|
println!("Database url: {database_url}");
|
||||||
|
|
||||||
|
PgPoolOptions::new()
|
||||||
|
.max_connections(super::connection_settings::MAXCONN)
|
||||||
|
.connect(&database_url)
|
||||||
|
.await
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn migrations(pool: &sqlx::PgPool) {
|
||||||
|
// Run migrations using the sqlx::migrate! macro
|
||||||
|
// Assumes your migrations are in a ./migrations folder relative to Cargo.toml
|
||||||
|
sqlx::migrate!("./migrations")
|
||||||
|
.run(pool)
|
||||||
|
.await
|
||||||
|
.expect("Failed to run migrations");
|
||||||
|
}
|
||||||
@@ -0,0 +1,5 @@
|
|||||||
|
pub mod init;
|
||||||
|
|
||||||
|
mod connection_settings {
|
||||||
|
pub const MAXCONN: u32 = 5;
|
||||||
|
}
|
||||||
@@ -0,0 +1,101 @@
|
|||||||
|
use argon2::{
|
||||||
|
Argon2, // The Argon2 algorithm struct
|
||||||
|
PasswordVerifier,
|
||||||
|
password_hash::{
|
||||||
|
PasswordHasher,
|
||||||
|
SaltString,
|
||||||
|
rand_core::OsRng, // Secure random number generator
|
||||||
|
},
|
||||||
|
};
|
||||||
|
|
||||||
|
pub fn generate_salt() -> Result<SaltString, argon2::Error> {
|
||||||
|
// Generate a random salt
|
||||||
|
// SaltString::generate uses OsRng internally for cryptographic security
|
||||||
|
Ok(SaltString::generate(&mut OsRng))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn get_salt(s: &str) -> Result<SaltString, argon2::password_hash::Error> {
|
||||||
|
SaltString::from_b64(s)
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn hash_password(
|
||||||
|
password: &String,
|
||||||
|
salt: &SaltString,
|
||||||
|
) -> Result<String, argon2::password_hash::Error> {
|
||||||
|
let password_bytes = password.as_bytes();
|
||||||
|
|
||||||
|
// Create an Argon2 instance with default parameters (recommended)
|
||||||
|
// You could customize parameters here if needed, but defaults are strong
|
||||||
|
let argon2 = Argon2::default();
|
||||||
|
|
||||||
|
// Hash the password with the salt
|
||||||
|
// The output is a PasswordHash string format that includes algorithm, version,
|
||||||
|
// parameters, salt, and the hash itself.
|
||||||
|
Ok(argon2.hash_password(password_bytes, salt)?.to_string())
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn verify_password(
|
||||||
|
password_attempt: &String,
|
||||||
|
stored_hash: String,
|
||||||
|
) -> Result<bool, argon2::password_hash::Error> {
|
||||||
|
let password_bytes = password_attempt.as_bytes();
|
||||||
|
|
||||||
|
// Parse the stored hash string
|
||||||
|
// This extracts the salt, parameters, and hash digest
|
||||||
|
let parsed_hash = argon2::PasswordHash::new(stored_hash.as_str())?;
|
||||||
|
|
||||||
|
// Create an Argon2 instance (it will use the parameters from the parsed hash)
|
||||||
|
// Verify the password against the parsed hash
|
||||||
|
// This automatically uses the correct salt and parameters embedded in `parsed_hash`
|
||||||
|
match Argon2::default().verify_password(password_bytes, &parsed_hash) {
|
||||||
|
Ok(()) => Ok(true), // Passwords match
|
||||||
|
Err(argon2::password_hash::Error::Password) => Ok(false), // Passwords don't match
|
||||||
|
Err(e) => Err(e), // Some other error occurred (e.g., invalid hash format)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[cfg(test)]
|
||||||
|
mod tests {
|
||||||
|
use super::*;
|
||||||
|
|
||||||
|
#[test]
|
||||||
|
fn test_hash_password() {
|
||||||
|
let some_password = String::from("somethingrandom");
|
||||||
|
match hash_password(&some_password, &generate_salt().unwrap()) {
|
||||||
|
Ok(p) => match verify_password(&some_password, p.clone()) {
|
||||||
|
Ok(res) => {
|
||||||
|
assert_eq!(res, true);
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
},
|
||||||
|
Err(eerr) => {
|
||||||
|
assert!(false, "Error: {:?}", eerr.to_string());
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#[test]
|
||||||
|
fn test_wrong_password() {
|
||||||
|
let some_password = String::from("somethingrandom");
|
||||||
|
match hash_password(&some_password, &generate_salt().unwrap()) {
|
||||||
|
Ok(p) => {
|
||||||
|
match verify_password(&some_password, p.clone()) {
|
||||||
|
Ok(res) => {
|
||||||
|
assert_eq!(res, true, "Passwords are not verified");
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
}
|
||||||
|
let wrong_password = String::from("Differentanotherlevel");
|
||||||
|
let result = verify_password(&wrong_password, p.clone()).unwrap();
|
||||||
|
assert_eq!(false, result, "Passwords should not match");
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
+151
@@ -0,0 +1,151 @@
|
|||||||
|
pub mod callers;
|
||||||
|
pub mod config;
|
||||||
|
pub mod db;
|
||||||
|
pub mod hashing;
|
||||||
|
pub mod repo;
|
||||||
|
pub mod token_stuff;
|
||||||
|
|
||||||
|
pub mod init {
|
||||||
|
use axum::{
|
||||||
|
Router,
|
||||||
|
routing::{get, patch, post},
|
||||||
|
};
|
||||||
|
use utoipa::OpenApi;
|
||||||
|
|
||||||
|
use super::callers;
|
||||||
|
use callers::common as common_callers;
|
||||||
|
use callers::login as login_caller;
|
||||||
|
use callers::register as register_caller;
|
||||||
|
use login_caller::response as login_responses;
|
||||||
|
use register_caller::response as register_responses;
|
||||||
|
|
||||||
|
#[derive(utoipa::OpenApi)]
|
||||||
|
#[openapi(
|
||||||
|
paths(
|
||||||
|
common_callers::endpoint::db_ping, common_callers::endpoint::root,
|
||||||
|
register_caller::register_user, login_caller::user_login,
|
||||||
|
login_caller::get_user_profile,
|
||||||
|
),
|
||||||
|
components(schemas(common_callers::response::TestResult,
|
||||||
|
register_responses::Response, login_responses::LoginResponse,
|
||||||
|
login_responses::GetUserProfileResponse,
|
||||||
|
)),
|
||||||
|
tags(
|
||||||
|
(name = "TextSender Auth API", description = "Auth API for TextSender API")
|
||||||
|
)
|
||||||
|
)]
|
||||||
|
struct ApiDoc;
|
||||||
|
|
||||||
|
mod cors {
|
||||||
|
pub async fn configure_cors() -> tower_http::cors::CorsLayer {
|
||||||
|
let cors = tower_http::cors::CorsLayer::new()
|
||||||
|
.allow_methods([
|
||||||
|
axum::http::Method::GET,
|
||||||
|
axum::http::Method::PATCH,
|
||||||
|
axum::http::Method::POST,
|
||||||
|
axum::http::Method::PUT,
|
||||||
|
axum::http::Method::DELETE,
|
||||||
|
])
|
||||||
|
.allow_headers([
|
||||||
|
axum::http::header::CONTENT_TYPE,
|
||||||
|
axum::http::header::AUTHORIZATION,
|
||||||
|
])
|
||||||
|
.allow_credentials(true) // If you need to send cookies or authentication headers:cite[2]
|
||||||
|
.max_age(std::time::Duration::from_secs(3600)); // Cache the preflight response for 1 hour:cite[2]
|
||||||
|
|
||||||
|
// Dynamically set the allowed origin based on the environment
|
||||||
|
match std::env::var(schedtxt_models::envy::keys::APP_ENV).as_deref() {
|
||||||
|
Ok("production") => {
|
||||||
|
let allowed_origins_env =
|
||||||
|
schedtxt_models::envy::environment::get_allowed_origins();
|
||||||
|
match schedtxt_models::envy::utility::delimitize(&allowed_origins_env) {
|
||||||
|
Ok(alwd) => {
|
||||||
|
let allowed_origins: Vec<axum::http::HeaderValue> = alwd
|
||||||
|
.into_iter()
|
||||||
|
.map(|s| s.parse::<axum::http::HeaderValue>().unwrap())
|
||||||
|
.collect();
|
||||||
|
cors.allow_origin(allowed_origins)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!(
|
||||||
|
"Could not parse out allowed origins from env: Error: {err:?}"
|
||||||
|
);
|
||||||
|
std::process::exit(-1);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
_ => {
|
||||||
|
// Development (default): Allow localhost origins
|
||||||
|
cors.allow_origin(vec![
|
||||||
|
"http://localhost:4200".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:4200".parse().unwrap(),
|
||||||
|
"http://localhost:5173".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:5173".parse().unwrap(),
|
||||||
|
"http://localhost:9080".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:9080".parse().unwrap(),
|
||||||
|
"http://localhost:9081".parse().unwrap(),
|
||||||
|
"http://127.0.0.1:9081".parse().unwrap(),
|
||||||
|
])
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn routes() -> Router {
|
||||||
|
Router::new()
|
||||||
|
.route(
|
||||||
|
callers::endpoints::DBTEST,
|
||||||
|
get(callers::common::endpoint::db_ping),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::ROOT,
|
||||||
|
get(callers::common::endpoint::root),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::REGISTER,
|
||||||
|
post(callers::register::register_user),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::REGISTER_SERVICE_USER,
|
||||||
|
post(callers::register::register_service_user),
|
||||||
|
)
|
||||||
|
.route(callers::endpoints::LOGIN, post(callers::login::user_login))
|
||||||
|
.route(
|
||||||
|
callers::endpoints::LOGIN_SERVICE_USER,
|
||||||
|
post(callers::login::service_user_login),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::REFRESH_TOKEN,
|
||||||
|
post(callers::login::refresh_token),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::UPDATE_PASSWORD,
|
||||||
|
patch(callers::login::update_password),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::UPDATE_USER_NAME,
|
||||||
|
patch(callers::login::update_name_of_user),
|
||||||
|
)
|
||||||
|
.route(
|
||||||
|
callers::endpoints::GET_USER_PROFILE,
|
||||||
|
get(callers::login::get_user_profile),
|
||||||
|
)
|
||||||
|
.layer(cors::configure_cors().await)
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn app() -> Router {
|
||||||
|
let pool = super::db::init::create_pool()
|
||||||
|
.await
|
||||||
|
.expect("Failed to create pool");
|
||||||
|
|
||||||
|
super::db::init::migrations(&pool).await;
|
||||||
|
|
||||||
|
routes()
|
||||||
|
.await
|
||||||
|
.merge(
|
||||||
|
utoipa_swagger_ui::SwaggerUi::new("/swagger-ui")
|
||||||
|
.url("/api-docs/openapi.json", ApiDoc::openapi()),
|
||||||
|
)
|
||||||
|
.layer(axum::Extension(pool))
|
||||||
|
}
|
||||||
|
}
|
||||||
+12
@@ -0,0 +1,12 @@
|
|||||||
|
#[tokio::main]
|
||||||
|
async fn main() {
|
||||||
|
// initialize tracing
|
||||||
|
tracing_subscriber::fmt::init();
|
||||||
|
|
||||||
|
let app = schedtxt_auth::init::app().await;
|
||||||
|
|
||||||
|
// run our app with hyper, listening globally on port 9080
|
||||||
|
let url = schedtxt_auth::config::get_full();
|
||||||
|
let listener = tokio::net::TcpListener::bind(url).await.unwrap();
|
||||||
|
axum::serve(listener, app).await.unwrap();
|
||||||
|
}
|
||||||
+291
@@ -0,0 +1,291 @@
|
|||||||
|
pub mod service;
|
||||||
|
|
||||||
|
pub mod user {
|
||||||
|
use sqlx::Row;
|
||||||
|
|
||||||
|
#[derive(Debug, serde::Serialize, sqlx::FromRow)]
|
||||||
|
pub struct InsertedData {
|
||||||
|
pub id: uuid::Uuid,
|
||||||
|
pub date_created: Option<time::OffsetDateTime>,
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
username: &String,
|
||||||
|
) -> Result<schedtxt_models::user::User, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, username, password, phone_number, salt_id, firstname, lastname, created, last_login FROM "user" WHERE username = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(username)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(r) => Ok(schedtxt_models::user::User {
|
||||||
|
id: r.try_get("id")?,
|
||||||
|
username: r.try_get("username")?,
|
||||||
|
password: r.try_get("password")?,
|
||||||
|
phone_number: r.try_get("phone_number")?,
|
||||||
|
salt_id: r.try_get("salt_id")?,
|
||||||
|
firstname: r.try_get("firstname")?,
|
||||||
|
lastname: r.try_get("lastname")?,
|
||||||
|
created: r.try_get("created")?,
|
||||||
|
last_login: r.try_get("last_login")?,
|
||||||
|
}),
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(e) => Err(e),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get_with_id(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::user::User, sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, username, password, phone_number, salt_id, firstname, lastname, created, last_login FROM "user" WHERE id = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(r) => Ok(schedtxt_models::user::User {
|
||||||
|
id: r.try_get("id")?,
|
||||||
|
username: r.try_get("username")?,
|
||||||
|
password: r.try_get("password")?,
|
||||||
|
phone_number: r.try_get("phone_number")?,
|
||||||
|
salt_id: r.try_get("salt_id")?,
|
||||||
|
firstname: r.try_get("firstname")?,
|
||||||
|
lastname: r.try_get("lastname")?,
|
||||||
|
created: r.try_get("created")?,
|
||||||
|
last_login: r.try_get("last_login")?,
|
||||||
|
}),
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(e) => Err(e),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_last_login(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::User,
|
||||||
|
time: &time::OffsetDateTime,
|
||||||
|
) -> Result<time::OffsetDateTime, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "user" SET last_login = $1 WHERE id = $2 RETURNING last_login
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(time)
|
||||||
|
.bind(user.id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error updating time: {e}");
|
||||||
|
e
|
||||||
|
});
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => match row {
|
||||||
|
Some(r) => {
|
||||||
|
let last_login: time::OffsetDateTime = r
|
||||||
|
.try_get("last_login")
|
||||||
|
.map_err(|_e| sqlx::Error::RowNotFound)?;
|
||||||
|
Ok(last_login)
|
||||||
|
}
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_password(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::User,
|
||||||
|
updated_hashed_password: &String,
|
||||||
|
) -> Result<(), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "user" SET password = $1 WHERE id = $2
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(updated_hashed_password)
|
||||||
|
.bind(user.id)
|
||||||
|
.execute(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
if row.rows_affected() > 0 {
|
||||||
|
Ok(())
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_name(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
firstname: &str,
|
||||||
|
lastname: &str,
|
||||||
|
) -> Result<(), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "user" SET firstname = $1, lastname = $2 WHERE id = $3
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(firstname)
|
||||||
|
.bind(lastname)
|
||||||
|
.bind(id)
|
||||||
|
.execute(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
if row.rows_affected() > 0 {
|
||||||
|
Ok(())
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn exists(pool: &sqlx::PgPool, username: &String) -> Result<bool, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT 1 FROM "user" WHERE username = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(username)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(row) => {
|
||||||
|
if row.is_empty() {
|
||||||
|
Ok(false)
|
||||||
|
} else {
|
||||||
|
Ok(true)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
None => Ok(false),
|
||||||
|
},
|
||||||
|
Err(e) => {
|
||||||
|
eprintln!("What??");
|
||||||
|
eprintln!("Error: {e:?}");
|
||||||
|
Err(e)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn insert(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::User,
|
||||||
|
) -> Result<(uuid::Uuid, std::option::Option<time::OffsetDateTime>), sqlx::Error> {
|
||||||
|
let row = sqlx::query(
|
||||||
|
r#"
|
||||||
|
INSERT INTO "user" (username, password, phone_number, firstname, lastname, salt_id)
|
||||||
|
VALUES ($1, $2, $3, $4, $5, $6)
|
||||||
|
RETURNING id, created;
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(&user.username)
|
||||||
|
.bind(&user.password)
|
||||||
|
.bind(&user.phone_number)
|
||||||
|
.bind(&user.firstname)
|
||||||
|
.bind(&user.lastname)
|
||||||
|
.bind(user.salt_id)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error inserting item: {e}");
|
||||||
|
e
|
||||||
|
})?;
|
||||||
|
|
||||||
|
let result = InsertedData {
|
||||||
|
id: row.try_get("id").map_err(|_e| sqlx::Error::RowNotFound)?,
|
||||||
|
date_created: row
|
||||||
|
.try_get("created")
|
||||||
|
.map_err(|_e| sqlx::Error::RowNotFound)?,
|
||||||
|
};
|
||||||
|
|
||||||
|
if result.id.is_nil() && result.date_created.is_none() {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
} else {
|
||||||
|
Ok((result.id, result.date_created))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub mod salt {
|
||||||
|
use sqlx::Row;
|
||||||
|
|
||||||
|
#[derive(Debug, serde::Serialize, sqlx::FromRow)]
|
||||||
|
pub struct InsertedData {
|
||||||
|
pub id: uuid::Uuid,
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::user::Salt, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, salt FROM "salt" WHERE id = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(r) => Ok(schedtxt_models::user::Salt {
|
||||||
|
id: r.try_get("id")?,
|
||||||
|
salt: r.try_get("salt")?,
|
||||||
|
}),
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(e) => Err(e),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn insert(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
salt: &schedtxt_models::user::Salt,
|
||||||
|
) -> Result<uuid::Uuid, sqlx::Error> {
|
||||||
|
let row = sqlx::query(
|
||||||
|
r#"
|
||||||
|
INSERT INTO "salt" (salt)
|
||||||
|
VALUES ($1)
|
||||||
|
RETURNING id;
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(&salt.salt)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error inserting item: {e}");
|
||||||
|
e
|
||||||
|
})?;
|
||||||
|
|
||||||
|
let result = InsertedData {
|
||||||
|
id: row.try_get("id").map_err(|_e| sqlx::Error::RowNotFound)?,
|
||||||
|
};
|
||||||
|
|
||||||
|
if !result.id.is_nil() {
|
||||||
|
Ok(result.id)
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,235 @@
|
|||||||
|
use sqlx::Row;
|
||||||
|
|
||||||
|
pub async fn valid_passphrase(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
passphrase: &String,
|
||||||
|
) -> Result<(uuid::Uuid, String, time::OffsetDateTime), sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT id, username, date_created FROM "passphrase" WHERE passphrase = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(passphrase)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => {
|
||||||
|
let id: uuid::Uuid = row.try_get("id")?;
|
||||||
|
let username: String = row.try_get("username")?;
|
||||||
|
let date_created: Option<time::OffsetDateTime> = row.try_get("date_created")?;
|
||||||
|
|
||||||
|
Ok((id, username, date_created.unwrap()))
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get_passphrase(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<(String, String, time::OffsetDateTime), sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT username, passphrase, date_created FROM "passphrase" WHERE id = $1;
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(id)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => {
|
||||||
|
let username: String = row.try_get("username")?;
|
||||||
|
let passphrase: String = row.try_get("passphrase")?;
|
||||||
|
let date_created: time::OffsetDateTime = row.try_get("date_created")?;
|
||||||
|
Ok((username, passphrase, date_created))
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::user::ServiceUser, sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"SELECT id, username, passphrase, created, last_login, salt_id FROM "service_user" WHERE id = $1"#
|
||||||
|
).bind(id)
|
||||||
|
.fetch_one(pool).await {
|
||||||
|
Ok(row) => {
|
||||||
|
let last_login: Option<time::OffsetDateTime> = match row.try_get("last_login") {
|
||||||
|
Ok(login) => {
|
||||||
|
Some(login)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
None
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
let service_user = schedtxt_models::user::ServiceUser {
|
||||||
|
id: row.try_get("id")?,
|
||||||
|
username: row.try_get("username")?,
|
||||||
|
passphrase: row.try_get("passphrase")?,
|
||||||
|
created: row.try_get("created")?,
|
||||||
|
last_login,
|
||||||
|
salt_id: row.try_get("salt_id")?,
|
||||||
|
};
|
||||||
|
|
||||||
|
Ok(service_user)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
Err(err)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn get_with_username(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
username: &String,
|
||||||
|
) -> Result<schedtxt_models::user::ServiceUser, sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"SELECT id, username, passphrase, created, last_login, salt_id FROM "service_user" WHERE username = $1"#
|
||||||
|
).bind(username)
|
||||||
|
.fetch_one(pool).await {
|
||||||
|
Ok(row) => {
|
||||||
|
let last_login: Option<time::OffsetDateTime> = match row.try_get("last_login") {
|
||||||
|
Ok(login) => {
|
||||||
|
Some(login)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
eprintln!("Error: {err:?}");
|
||||||
|
None
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
let service_user = schedtxt_models::user::ServiceUser {
|
||||||
|
id: row.try_get("id")?,
|
||||||
|
username: row.try_get("username")?,
|
||||||
|
passphrase: row.try_get("passphrase")?,
|
||||||
|
created: row.try_get("created")?,
|
||||||
|
last_login,
|
||||||
|
salt_id: row.try_get("salt_id")?,
|
||||||
|
};
|
||||||
|
|
||||||
|
Ok(service_user)
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
Err(err)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_last_login(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
service_user: &schedtxt_models::user::ServiceUser,
|
||||||
|
time: &time::OffsetDateTime,
|
||||||
|
) -> Result<time::OffsetDateTime, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "service_user" SET last_login = $1 WHERE id = $2 RETURNING last_login
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(time)
|
||||||
|
.bind(service_user.id)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await
|
||||||
|
.map_err(|e| {
|
||||||
|
eprintln!("Error updating time: {e}");
|
||||||
|
e
|
||||||
|
});
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(row) => match row {
|
||||||
|
Some(r) => {
|
||||||
|
let last_login: time::OffsetDateTime = r
|
||||||
|
.try_get("last_login")
|
||||||
|
.map_err(|_e| sqlx::Error::RowNotFound)?;
|
||||||
|
Ok(last_login)
|
||||||
|
}
|
||||||
|
None => Err(sqlx::Error::RowNotFound),
|
||||||
|
},
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn update_passphrase(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
user: &schedtxt_models::user::ServiceUser,
|
||||||
|
updated_hashed_passphrase: &String,
|
||||||
|
) -> Result<(), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"
|
||||||
|
UPDATE "service_user" SET passphrase = $1 WHERE id = $2
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(updated_hashed_passphrase)
|
||||||
|
.bind(user.id)
|
||||||
|
.execute(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
if row.rows_affected() > 0 {
|
||||||
|
Ok(())
|
||||||
|
} else {
|
||||||
|
Err(sqlx::Error::RowNotFound)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn insert(
|
||||||
|
pool: &sqlx::PgPool,
|
||||||
|
service_user: &schedtxt_models::user::ServiceUser,
|
||||||
|
) -> Result<(uuid::Uuid, time::OffsetDateTime), sqlx::Error> {
|
||||||
|
match sqlx::query(
|
||||||
|
r#"INSERT INTO "service_user" (username, passphrase, salt_id)
|
||||||
|
VALUES ($1, $2, $3)
|
||||||
|
RETURNING id, created
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(&service_user.username)
|
||||||
|
.bind(&service_user.passphrase)
|
||||||
|
.bind(service_user.salt_id)
|
||||||
|
.fetch_one(pool)
|
||||||
|
.await
|
||||||
|
{
|
||||||
|
Ok(row) => {
|
||||||
|
let id: uuid::Uuid = row.try_get("id")?;
|
||||||
|
let created: time::OffsetDateTime = row.try_get("created")?;
|
||||||
|
Ok((id, created))
|
||||||
|
}
|
||||||
|
Err(err) => Err(err),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub async fn exists(pool: &sqlx::PgPool, service_username: &String) -> Result<bool, sqlx::Error> {
|
||||||
|
let result = sqlx::query(
|
||||||
|
r#"
|
||||||
|
SELECT 1 FROM "service_user" WHERE username = $1
|
||||||
|
"#,
|
||||||
|
)
|
||||||
|
.bind(service_username)
|
||||||
|
.fetch_optional(pool)
|
||||||
|
.await;
|
||||||
|
|
||||||
|
match result {
|
||||||
|
Ok(r) => match r {
|
||||||
|
Some(row) => {
|
||||||
|
if row.is_empty() {
|
||||||
|
Ok(false)
|
||||||
|
} else {
|
||||||
|
Ok(true)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
None => Ok(false),
|
||||||
|
},
|
||||||
|
Err(e) => {
|
||||||
|
eprintln!("What??");
|
||||||
|
eprintln!("Error: {e:?}");
|
||||||
|
Err(e)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,134 @@
|
|||||||
|
use josekit::{
|
||||||
|
self,
|
||||||
|
jws::alg::hmac::HmacJwsAlgorithm::Hs256,
|
||||||
|
jwt::{self},
|
||||||
|
};
|
||||||
|
|
||||||
|
use time;
|
||||||
|
|
||||||
|
pub const KEY_ENV: &str = "SECRET_KEY";
|
||||||
|
pub const MESSAGE: &str = "Something random";
|
||||||
|
pub const ISSUER: &str = "schedtxt_auth";
|
||||||
|
pub const AUDIENCE: &str = "schedtxt";
|
||||||
|
|
||||||
|
pub fn get_expiration(issued: &time::OffsetDateTime) -> Result<time::OffsetDateTime, time::Error> {
|
||||||
|
let duration_expire = time::Duration::hours(4);
|
||||||
|
Ok(*issued + duration_expire)
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn create_token(
|
||||||
|
provided_key: &str,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::token::CreateTokenResult, josekit::JoseError> {
|
||||||
|
let resource = schedtxt_models::token::TokenResource {
|
||||||
|
message: String::from(MESSAGE),
|
||||||
|
issuer: String::from(ISSUER),
|
||||||
|
audiences: vec![String::from(AUDIENCE)],
|
||||||
|
user_id: *id,
|
||||||
|
};
|
||||||
|
schedtxt_models::token::create_token(provided_key, resource, time::Duration::hours(4))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn create_service_token(
|
||||||
|
provided: &str,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::token::CreateTokenResult, josekit::JoseError> {
|
||||||
|
let resource = schedtxt_models::token::TokenResource {
|
||||||
|
message: String::from(SERVICE_SUBJECT),
|
||||||
|
issuer: String::from(ISSUER),
|
||||||
|
audiences: vec![String::from(AUDIENCE)],
|
||||||
|
user_id: *id,
|
||||||
|
};
|
||||||
|
schedtxt_models::token::create_token(provided, resource, time::Duration::hours(1))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn create_service_refresh_token(
|
||||||
|
key: &str,
|
||||||
|
id: &uuid::Uuid,
|
||||||
|
) -> Result<schedtxt_models::token::CreateTokenResult, josekit::JoseError> {
|
||||||
|
let resource = schedtxt_models::token::TokenResource {
|
||||||
|
message: String::from(SERVICE_SUBJECT),
|
||||||
|
issuer: String::from(ISSUER),
|
||||||
|
audiences: vec![String::from(AUDIENCE)],
|
||||||
|
user_id: *id,
|
||||||
|
};
|
||||||
|
schedtxt_models::token::create_token(key, resource, time::Duration::hours(4))
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn verify_token(key: &str, token: &str) -> bool {
|
||||||
|
match get_payload(key, token) {
|
||||||
|
Ok((payload, _header)) => match payload.subject() {
|
||||||
|
Some(_sub) => true,
|
||||||
|
None => false,
|
||||||
|
},
|
||||||
|
Err(_err) => false,
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn extract_id_from_token(key: &str, token: &str) -> Result<uuid::Uuid, std::io::Error> {
|
||||||
|
match get_payload(key, token) {
|
||||||
|
Ok((payload, _header)) => match payload.claim("user_id") {
|
||||||
|
Some(id) => match uuid::Uuid::parse_str(id.as_str().unwrap()) {
|
||||||
|
Ok(extracted) => Ok(extracted),
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
},
|
||||||
|
None => Err(std::io::Error::other("No claim found")),
|
||||||
|
},
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub const APP_TOKEN_TYPE: &str = "Schedtxt_App";
|
||||||
|
pub const APP_SUBJECT: &str = "Something random";
|
||||||
|
pub const SERVICE_TOKEN_TYPE: &str = "Schedtxt_Service";
|
||||||
|
pub const SERVICE_SUBJECT: &str = "Service random";
|
||||||
|
|
||||||
|
pub fn get_token_type(key: &str, token: &str) -> Result<String, std::io::Error> {
|
||||||
|
match get_payload(key, token) {
|
||||||
|
Ok((payload, _header)) => match payload.subject() {
|
||||||
|
Some(subject) => {
|
||||||
|
if subject == APP_SUBJECT {
|
||||||
|
Ok(String::from(APP_TOKEN_TYPE))
|
||||||
|
} else if subject == SERVICE_SUBJECT {
|
||||||
|
Ok(String::from(SERVICE_TOKEN_TYPE))
|
||||||
|
} else {
|
||||||
|
Err(std::io::Error::other(String::from("Invalid subject")))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
None => Err(std::io::Error::other(String::from("Invalid payload"))),
|
||||||
|
},
|
||||||
|
Err(err) => Err(std::io::Error::other(err.to_string())),
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
pub fn is_token_type_valid(token_type: &str) -> bool {
|
||||||
|
token_type == SERVICE_TOKEN_TYPE
|
||||||
|
}
|
||||||
|
|
||||||
|
fn get_payload(
|
||||||
|
key: &str,
|
||||||
|
token: &str,
|
||||||
|
) -> Result<(josekit::jwt::JwtPayload, josekit::jws::JwsHeader), josekit::JoseError> {
|
||||||
|
let ver = Hs256.verifier_from_bytes(key.as_bytes()).unwrap();
|
||||||
|
jwt::decode_with_verifier(token, &ver)
|
||||||
|
}
|
||||||
|
|
||||||
|
#[cfg(test)]
|
||||||
|
mod tests {
|
||||||
|
use super::*;
|
||||||
|
|
||||||
|
#[test]
|
||||||
|
fn test_tokenize() {
|
||||||
|
let special_key = schedtxt_models::envy::environment::get_secret_key();
|
||||||
|
let id = uuid::Uuid::new_v4();
|
||||||
|
match create_token(&special_key.value, &id) {
|
||||||
|
Ok(cst) => {
|
||||||
|
let result = verify_token(&special_key.value, &cst.access_token);
|
||||||
|
assert!(result, "Token not verified");
|
||||||
|
}
|
||||||
|
Err(err) => {
|
||||||
|
assert!(false, "Error: {:?}", err.to_string());
|
||||||
|
}
|
||||||
|
};
|
||||||
|
}
|
||||||
|
}
|
||||||
+1094
File diff suppressed because it is too large
Load Diff
Reference in New Issue
Block a user