2019-02-26 13:26:54 +00:00
|
|
|
# Pleroma: A lightweight social networking server
|
|
|
|
# Copyright © 2017-2019 Pleroma Authors <https://pleroma.social/>
|
|
|
|
# SPDX-License-Identifier: AGPL-3.0-only
|
|
|
|
|
2019-02-28 11:12:41 +00:00
|
|
|
defmodule Pleroma.Web.Auth.PleromaAuthenticator do
|
2019-02-21 15:55:19 +00:00
|
|
|
alias Comeonin.Pbkdf2
|
2019-03-05 02:52:23 +00:00
|
|
|
alias Pleroma.User
|
2019-03-18 14:23:38 +00:00
|
|
|
alias Pleroma.Registration
|
|
|
|
alias Pleroma.Repo
|
2019-02-21 15:55:19 +00:00
|
|
|
|
2019-02-28 11:12:41 +00:00
|
|
|
@behaviour Pleroma.Web.Auth.Authenticator
|
2019-02-21 15:55:19 +00:00
|
|
|
|
2019-03-18 07:26:41 +00:00
|
|
|
def get_user(%Plug.Conn{} = _conn, params) do
|
2019-03-03 19:20:36 +00:00
|
|
|
{name, password} =
|
2019-03-18 07:26:41 +00:00
|
|
|
case params do
|
2019-03-03 19:20:36 +00:00
|
|
|
%{"authorization" => %{"name" => name, "password" => password}} ->
|
|
|
|
{name, password}
|
|
|
|
|
|
|
|
%{"grant_type" => "password", "username" => name, "password" => password} ->
|
|
|
|
{name, password}
|
|
|
|
end
|
2019-02-21 15:55:19 +00:00
|
|
|
|
|
|
|
with {_, %User{} = user} <- {:user, User.get_by_nickname_or_email(name)},
|
|
|
|
{_, true} <- {:checkpw, Pbkdf2.checkpw(password, user.password_hash)} do
|
|
|
|
{:ok, user}
|
|
|
|
else
|
|
|
|
error ->
|
|
|
|
{:error, error}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2019-03-20 07:35:31 +00:00
|
|
|
def get_registration(
|
2019-03-15 14:08:03 +00:00
|
|
|
%Plug.Conn{assigns: %{ueberauth_auth: %{provider: provider, uid: uid} = auth}},
|
|
|
|
_params
|
|
|
|
) do
|
2019-03-18 14:23:38 +00:00
|
|
|
registration = Registration.get_by_provider_uid(provider, uid)
|
2019-03-15 14:08:03 +00:00
|
|
|
|
2019-03-18 14:23:38 +00:00
|
|
|
if registration do
|
2019-03-20 07:35:31 +00:00
|
|
|
{:ok, registration}
|
2019-03-15 14:08:03 +00:00
|
|
|
else
|
|
|
|
info = auth.info
|
|
|
|
|
2019-03-20 07:35:31 +00:00
|
|
|
Registration.changeset(%Registration{}, %{
|
|
|
|
provider: to_string(provider),
|
|
|
|
uid: to_string(uid),
|
|
|
|
info: %{
|
|
|
|
"nickname" => info.nickname,
|
|
|
|
"email" => info.email,
|
|
|
|
"name" => info.name,
|
|
|
|
"description" => info.description
|
|
|
|
}
|
|
|
|
})
|
|
|
|
|> Repo.insert()
|
|
|
|
end
|
|
|
|
end
|
2019-03-15 14:08:03 +00:00
|
|
|
|
2019-03-20 07:35:31 +00:00
|
|
|
def get_registration(%Plug.Conn{} = _conn, _params), do: {:error, :missing_credentials}
|
2019-03-15 14:08:03 +00:00
|
|
|
|
2019-03-20 07:35:31 +00:00
|
|
|
def create_from_registration(_conn, params, registration) do
|
|
|
|
nickname = value([params["nickname"], Registration.nickname(registration)])
|
|
|
|
email = value([params["email"], Registration.email(registration)])
|
|
|
|
name = value([params["name"], Registration.name(registration)]) || nickname
|
|
|
|
bio = value([params["bio"], Registration.description(registration)])
|
2019-03-18 15:09:53 +00:00
|
|
|
|
2019-03-20 07:35:31 +00:00
|
|
|
random_password = :crypto.strong_rand_bytes(64) |> Base.encode64()
|
|
|
|
|
|
|
|
with {:ok, new_user} <-
|
|
|
|
User.register_changeset(
|
|
|
|
%User{},
|
|
|
|
%{
|
|
|
|
email: email,
|
|
|
|
nickname: nickname,
|
|
|
|
name: name,
|
|
|
|
bio: bio,
|
|
|
|
password: random_password,
|
|
|
|
password_confirmation: random_password
|
|
|
|
},
|
|
|
|
external: true,
|
|
|
|
confirmed: true
|
|
|
|
)
|
|
|
|
|> Repo.insert(),
|
|
|
|
{:ok, _} <-
|
|
|
|
Registration.changeset(registration, %{user_id: new_user.id}) |> Repo.update() do
|
|
|
|
{:ok, new_user}
|
2019-03-15 14:08:03 +00:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2019-03-20 07:35:31 +00:00
|
|
|
defp value(list), do: Enum.find(list, &(to_string(&1) != ""))
|
2019-03-15 14:08:03 +00:00
|
|
|
|
2019-02-21 15:55:19 +00:00
|
|
|
def handle_error(%Plug.Conn{} = _conn, error) do
|
|
|
|
error
|
|
|
|
end
|
2019-02-28 10:58:58 +00:00
|
|
|
|
|
|
|
def auth_template, do: nil
|
2019-02-21 15:55:19 +00:00
|
|
|
end
|