cic-staff-client/src/app/_services/auth.service.ts

152 lines
5.2 KiB
TypeScript
Raw Normal View History

2020-12-28 10:09:11 +01:00
import { Injectable } from '@angular/core';
import { hobaParseChallengeHeader } from '@src/assets/js/hoba.js';
import { signChallenge } from '@src/assets/js/hoba-pgp.js';
import {environment} from '@src/environments/environment';
import {LoggingService} from '@app/_services/logging.service';
import {HttpWrapperService} from '@app/_services/http-wrapper.service';
import {MutableKeyStore, MutablePgpKeyStore} from '@app/_pgp';
import {ErrorDialogService} from '@app/_services/error-dialog.service';
2021-03-15 06:57:47 +01:00
import {first} from 'rxjs/operators';
2020-12-28 10:09:11 +01:00
@Injectable({
providedIn: 'root'
})
export class AuthService {
2021-01-18 14:04:16 +01:00
sessionToken: any;
2020-12-28 10:09:11 +01:00
sessionLoginCount = 0;
2021-01-18 14:04:16 +01:00
privateKey: any;
2021-02-16 14:18:41 +01:00
mutableKeyStore: MutableKeyStore = new MutablePgpKeyStore();
2020-12-28 10:09:11 +01:00
constructor(
private httpWrapperService: HttpWrapperService,
private loggingService: LoggingService,
private errorDialogService: ErrorDialogService
) {
2021-01-18 14:04:16 +01:00
if (sessionStorage.getItem(btoa('CICADA_SESSION_TOKEN'))) {
this.sessionToken = sessionStorage.getItem(btoa('CICADA_SESSION_TOKEN'));
}
if (localStorage.getItem(btoa('CICADA_PRIVATE_KEY'))) {
this.privateKey = localStorage.getItem(btoa('CICADA_PRIVATE_KEY'));
}
}
2020-12-28 10:09:11 +01:00
setState(s): void {
document.getElementById('state').innerHTML = s;
2020-12-28 10:09:11 +01:00
}
getWithToken(): void {
const xhr = new XMLHttpRequest();
xhr.responseType = 'text';
xhr.open('GET', environment.cicAuthUrl + window.location.search.substring(1));
2020-12-28 10:09:11 +01:00
xhr.setRequestHeader('Authorization', 'Bearer ' + this.sessionToken);
xhr.setRequestHeader('Content-Type', 'application/json');
xhr.setRequestHeader('x-cic-automerge', 'none');
xhr.addEventListener('load', (e) => {
if (xhr.status === 401) {
throw new Error('login rejected');
}
this.sessionLoginCount++;
this.setState('Click button to perform login ' + this.sessionLoginCount + ' with token ' + this.sessionToken);
2020-12-28 10:09:11 +01:00
return;
});
xhr.send();
}
sendResponse(hobaResponseEncoded): void {
const xhr = new XMLHttpRequest();
xhr.responseType = 'text';
xhr.open('GET', environment.cicAuthUrl + window.location.search.substring(1));
2020-12-28 10:09:11 +01:00
xhr.setRequestHeader('Authorization', 'HOBA ' + hobaResponseEncoded);
xhr.setRequestHeader('Content-Type', 'application/json');
xhr.setRequestHeader('x-cic-automerge', 'none');
xhr.addEventListener('load', (e) => {
if (xhr.status === 401) {
throw new Error('login rejected');
}
this.sessionToken = xhr.getResponseHeader('Token');
2021-01-18 14:04:16 +01:00
sessionStorage.setItem(btoa('CICADA_SESSION_TOKEN'), this.sessionToken);
2020-12-28 10:09:11 +01:00
this.sessionLoginCount++;
this.setState('Click button to perform login ' + this.sessionLoginCount + ' with token ' + this.sessionToken);
2020-12-28 10:09:11 +01:00
return;
});
xhr.send();
}
2021-01-18 14:04:16 +01:00
getChallenge(): void {
2020-12-28 10:09:11 +01:00
const xhr = new XMLHttpRequest();
xhr.responseType = 'arraybuffer';
xhr.open('GET', environment.cicAuthUrl + window.location.search.substring(1));
2020-12-28 10:09:11 +01:00
xhr.onload = (e) => {
if (xhr.status === 401) {
const authHeader = xhr.getResponseHeader('WWW-Authenticate');
const o = hobaParseChallengeHeader(authHeader);
2021-01-18 14:04:16 +01:00
this.loginResponse(o).then();
2020-12-28 10:09:11 +01:00
}
};
xhr.send();
}
login(): boolean {
if (this.sessionToken !== undefined) {
try {
this.getWithToken();
return true;
} catch (e) {
this.loggingService.sendErrorLevelMessage('Login token failed', this, {error: e});
2020-12-28 10:09:11 +01:00
}
} else {
try {
this.getChallenge();
2020-12-28 10:09:11 +01:00
} catch (e) {
this.loggingService.sendErrorLevelMessage('Login challenge failed', this, {error: e});
2020-12-28 10:09:11 +01:00
}
}
return false;
}
2021-01-18 14:04:16 +01:00
async loginResponse(o): Promise<any> {
const r = await signChallenge(o.challenge, o.realm, environment.cicAuthUrl, this.mutableKeyStore);
2020-12-28 10:09:11 +01:00
this.sendResponse(r);
}
loginView(): void {
document.getElementById('one').style.display = 'none';
document.getElementById('two').style.display = 'block';
this.setState('Click button to log in with PGP key ' + this.mutableKeyStore.getPrivateKeyId());
2020-12-28 10:09:11 +01:00
}
async setKey(privateKeyArmored): Promise<boolean> {
try {
2021-02-16 14:18:41 +01:00
await this.mutableKeyStore.importPrivateKey(privateKeyArmored);
localStorage.setItem(btoa('CICADA_PRIVATE_KEY'), privateKeyArmored);
} catch (err) {
this.loggingService.sendErrorLevelMessage('Failed setting key', this, {error: err});
this.errorDialogService.openDialog({
message: `Failed to set key, Enter your private key again. Reason: ${err.error.message || err.statusText}`,
status: err.status
});
2020-12-28 10:09:11 +01:00
return false;
}
this.loginView();
return true;
}
2021-01-18 14:04:16 +01:00
logout(): void {
sessionStorage.removeItem(btoa('CICADA_SESSION_TOKEN'));
window.location.reload(true);
}
async getPublicKeys(): Promise<void> {
this.httpWrapperService.get(`${environment.publicKeysUrl}`).pipe(first()).subscribe(async res => {
2021-03-15 06:56:38 +01:00
await this.mutableKeyStore.importPublicKey(res.body);
}, error => {
this.loggingService.sendErrorLevelMessage('There was an error fetching public keys!', this, {error});
2021-03-15 06:56:38 +01:00
});
2021-02-16 14:18:41 +01:00
if (this.privateKey !== undefined) {
await this.mutableKeyStore.importPrivateKey(this.privateKey);
}
}
2020-12-28 10:09:11 +01:00
}