This repository has been archived by the owner on Sep 16, 2020. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 1
/
Copy pathbasic-auth-handler.js
107 lines (101 loc) · 3.1 KB
/
basic-auth-handler.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
/**
* MOST Web Framework
* A JavaScript Web Framework
* http://themost.io
*
* Copyright (c) 2014, Kyriakos Barbounakis [email protected], Anthi Oikonomou [email protected]
*
* Released under the BSD3-Clause license
* Date: 2014-11-15
*/
/**
* @ignore
*/
var web = require('./index');
/**
* @class BasicAuthHandler
* @constructor
* @augments HttpHandler
*/
function BasicAuthHandler() {
//
}
/**
* @param {string} s
* @returns {{userName:string, userPassword:string}|undefined}
*/
BasicAuthHandler.parseBasicAuthorization = function(s)
{
try {
if (typeof s !== 'string')
return;
//get authorization type (basic)
var re = /\s?(Basic)\s+(.*)\s?/ig;
var match = re.exec(s.replace(/^\s+/g,''));
if (match) {
//get authorization token
var token = match[2];
//decode token
var buffer = new Buffer(token, 'base64');
//get args e.g. username:password
var matched = /(.*):(.*)/ig.exec(buffer.toString());
if (matched) {
return { userName:matched[1], userPassword:matched[2] };
}
}
}
catch(e) {
util.log(e);
}
};
BasicAuthHandler.USERNAME_REGEXP = /^[a-zA-Z0-9\.\@_-]{1,255}$/;
BasicAuthHandler.prototype.authenticateRequest = function (context, callback) {
callback = callback || function() {};
try {
/**
* @type {{userName: string, userPassword: string}|*}
*/
var authorizationArgs = BasicAuthHandler.parseBasicAuthorization(context.request.headers['authorization']);
if (typeof authorizationArgs !== 'undefined') {
//ensure settings
web.current.config.settings.auth = web.current.config.settings.auth || { };
var providerPath = web.current.config.settings.auth.provider || './auth-service';
//get auth provider
var svc;
if (/^\//.test(providerPath)) {
svc = require(context.application.mapPath(providerPath));
}
else {
svc = require(providerPath);
}
if (typeof svc.createInstance === 'function') {
//create provider instance
var provider = svc.createInstance(context);
//validate credentials
if (!authorizationArgs.userName.match(BasicAuthHandler.USERNAME_REGEXP)) {
callback(new Error('Wrong username format. Please contact to system administrator.'));
return;
}
provider.login(authorizationArgs.userName, authorizationArgs.userPassword, callback);
}
else
callback(null);
}
else {
callback(null);
}
}
catch(e) {
callback(e);
}
};
/**
* Creates a new instance of BasicAuthHandler class
* @returns {BasicAuthHandler}
*/
BasicAuthHandler.createInstance = function() {
return new BasicAuthHandler();
};
if (typeof exports !== 'undefined') {
module.exports.createInstance = BasicAuthHandler.createInstance;
}