2022-02-13 23:39:27 +08:00
|
|
|
// Copyright 2021 The Casdoor Authors. All Rights Reserved.
|
2021-03-13 23:47:35 +08:00
|
|
|
//
|
|
|
|
// Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
// you may not use this file except in compliance with the License.
|
|
|
|
// You may obtain a copy of the License at
|
|
|
|
//
|
|
|
|
// http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
//
|
|
|
|
// Unless required by applicable law or agreed to in writing, software
|
|
|
|
// distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
// See the License for the specific language governing permissions and
|
|
|
|
// limitations under the License.
|
|
|
|
|
|
|
|
package controllers
|
|
|
|
|
|
|
|
import (
|
|
|
|
"encoding/json"
|
|
|
|
|
2021-11-06 11:32:22 +08:00
|
|
|
"github.com/astaxie/beego/utils/pagination"
|
2022-01-20 14:11:46 +08:00
|
|
|
"github.com/casdoor/casdoor/object"
|
|
|
|
"github.com/casdoor/casdoor/util"
|
2021-03-13 23:47:35 +08:00
|
|
|
)
|
|
|
|
|
2021-08-07 22:02:56 +08:00
|
|
|
// GetTokens
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Title GetTokens
|
2021-12-03 20:42:36 +08:00
|
|
|
// @Tag Token API
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Description get tokens
|
|
|
|
// @Param owner query string true "The owner of tokens"
|
2021-11-06 11:32:22 +08:00
|
|
|
// @Param pageSize query string true "The size of each page"
|
|
|
|
// @Param p query string true "The number of the page"
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Success 200 {array} object.Token The Response object
|
|
|
|
// @router /get-tokens [get]
|
2021-03-13 23:47:35 +08:00
|
|
|
func (c *ApiController) GetTokens() {
|
|
|
|
owner := c.Input().Get("owner")
|
2021-11-06 11:32:22 +08:00
|
|
|
limit := c.Input().Get("pageSize")
|
|
|
|
page := c.Input().Get("p")
|
2021-12-25 10:55:10 +08:00
|
|
|
field := c.Input().Get("field")
|
|
|
|
value := c.Input().Get("value")
|
|
|
|
sortField := c.Input().Get("sortField")
|
|
|
|
sortOrder := c.Input().Get("sortOrder")
|
2021-11-06 11:32:22 +08:00
|
|
|
if limit == "" || page == "" {
|
|
|
|
c.Data["json"] = object.GetTokens(owner)
|
|
|
|
c.ServeJSON()
|
|
|
|
} else {
|
|
|
|
limit := util.ParseInt(limit)
|
2021-12-25 10:55:10 +08:00
|
|
|
paginator := pagination.SetPaginator(c.Ctx, limit, int64(object.GetTokenCount(owner, field, value)))
|
|
|
|
tokens := object.GetPaginationTokens(owner, paginator.Offset(), limit, field, value, sortField, sortOrder)
|
2021-11-06 11:32:22 +08:00
|
|
|
c.ResponseOk(tokens, paginator.Nums())
|
|
|
|
}
|
2021-03-13 23:47:35 +08:00
|
|
|
}
|
|
|
|
|
2021-08-07 22:02:56 +08:00
|
|
|
// GetToken
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Title GetToken
|
2021-12-03 20:42:36 +08:00
|
|
|
// @Tag Token API
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Description get token
|
|
|
|
// @Param id query string true "The id of token"
|
|
|
|
// @Success 200 {object} object.Token The Response object
|
|
|
|
// @router /get-token [get]
|
2021-03-13 23:47:35 +08:00
|
|
|
func (c *ApiController) GetToken() {
|
|
|
|
id := c.Input().Get("id")
|
|
|
|
|
|
|
|
c.Data["json"] = object.GetToken(id)
|
|
|
|
c.ServeJSON()
|
|
|
|
}
|
|
|
|
|
2021-08-07 22:02:56 +08:00
|
|
|
// UpdateToken
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Title UpdateToken
|
2021-12-03 20:42:36 +08:00
|
|
|
// @Tag Token API
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Description update token
|
|
|
|
// @Param id query string true "The id of token"
|
|
|
|
// @Param body body object.Token true "Details of the token"
|
|
|
|
// @Success 200 {object} controllers.Response The Response object
|
|
|
|
// @router /update-token [post]
|
2021-03-13 23:47:35 +08:00
|
|
|
func (c *ApiController) UpdateToken() {
|
|
|
|
id := c.Input().Get("id")
|
|
|
|
|
|
|
|
var token object.Token
|
|
|
|
err := json.Unmarshal(c.Ctx.Input.RequestBody, &token)
|
|
|
|
if err != nil {
|
|
|
|
panic(err)
|
|
|
|
}
|
|
|
|
|
2021-03-28 00:48:34 +08:00
|
|
|
c.Data["json"] = wrapActionResponse(object.UpdateToken(id, &token))
|
2021-03-13 23:47:35 +08:00
|
|
|
c.ServeJSON()
|
|
|
|
}
|
|
|
|
|
2021-08-07 22:02:56 +08:00
|
|
|
// AddToken
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Title AddToken
|
2021-12-03 20:42:36 +08:00
|
|
|
// @Tag Token API
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Description add token
|
|
|
|
// @Param body body object.Token true "Details of the token"
|
|
|
|
// @Success 200 {object} controllers.Response The Response object
|
|
|
|
// @router /add-token [post]
|
2021-03-13 23:47:35 +08:00
|
|
|
func (c *ApiController) AddToken() {
|
|
|
|
var token object.Token
|
|
|
|
err := json.Unmarshal(c.Ctx.Input.RequestBody, &token)
|
|
|
|
if err != nil {
|
|
|
|
panic(err)
|
|
|
|
}
|
|
|
|
|
2021-03-28 00:48:34 +08:00
|
|
|
c.Data["json"] = wrapActionResponse(object.AddToken(&token))
|
2021-03-13 23:47:35 +08:00
|
|
|
c.ServeJSON()
|
|
|
|
}
|
|
|
|
|
2021-08-07 22:02:56 +08:00
|
|
|
// DeleteToken
|
2021-12-03 20:42:36 +08:00
|
|
|
// @Tag Token API
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Title DeleteToken
|
|
|
|
// @Description delete token
|
|
|
|
// @Param body body object.Token true "Details of the token"
|
|
|
|
// @Success 200 {object} controllers.Response The Response object
|
|
|
|
// @router /delete-token [post]
|
2021-03-13 23:47:35 +08:00
|
|
|
func (c *ApiController) DeleteToken() {
|
|
|
|
var token object.Token
|
|
|
|
err := json.Unmarshal(c.Ctx.Input.RequestBody, &token)
|
|
|
|
if err != nil {
|
|
|
|
panic(err)
|
|
|
|
}
|
|
|
|
|
2021-03-28 00:48:34 +08:00
|
|
|
c.Data["json"] = wrapActionResponse(object.DeleteToken(&token))
|
2021-03-13 23:47:35 +08:00
|
|
|
c.ServeJSON()
|
|
|
|
}
|
2021-03-14 00:08:59 +08:00
|
|
|
|
2021-11-08 23:28:41 +08:00
|
|
|
// GetOAuthCode
|
|
|
|
// @Title GetOAuthCode
|
2021-12-03 20:42:36 +08:00
|
|
|
// @Tag Token API
|
2021-11-08 23:28:41 +08:00
|
|
|
// @Description get OAuth code
|
|
|
|
// @Param user_id query string true "The id of user"
|
|
|
|
// @Param client_id query string true "OAuth client id"
|
|
|
|
// @Param response_type query string true "OAuth response type"
|
|
|
|
// @Param redirect_uri query string true "OAuth redirect URI"
|
|
|
|
// @Param scope query string true "OAuth scope"
|
|
|
|
// @Param state query string true "OAuth state"
|
|
|
|
// @Success 200 {object} object.TokenWrapper The Response object
|
|
|
|
// @router /login/oauth/code [post]
|
|
|
|
func (c *ApiController) GetOAuthCode() {
|
|
|
|
userId := c.Input().Get("user_id")
|
|
|
|
clientId := c.Input().Get("client_id")
|
|
|
|
responseType := c.Input().Get("response_type")
|
|
|
|
redirectUri := c.Input().Get("redirect_uri")
|
|
|
|
scope := c.Input().Get("scope")
|
|
|
|
state := c.Input().Get("state")
|
2021-12-15 21:42:16 +08:00
|
|
|
nonce := c.Input().Get("nonce")
|
2021-11-08 23:28:41 +08:00
|
|
|
|
2022-01-21 09:29:19 +08:00
|
|
|
challengeMethod := c.Input().Get("code_challenge_method")
|
|
|
|
codeChallenge := c.Input().Get("code_challenge")
|
|
|
|
|
2022-01-30 17:58:54 +08:00
|
|
|
if challengeMethod != "S256" && challengeMethod != "null" && challengeMethod != "" {
|
2022-01-21 09:29:19 +08:00
|
|
|
c.ResponseError("Challenge method should be S256")
|
|
|
|
return
|
|
|
|
}
|
2022-02-18 12:36:11 +08:00
|
|
|
host := c.Ctx.Request.Host
|
2022-01-21 09:29:19 +08:00
|
|
|
|
2022-02-18 12:36:11 +08:00
|
|
|
c.Data["json"] = object.GetOAuthCode(userId, clientId, responseType, redirectUri, scope, state, nonce, codeChallenge, host)
|
2021-11-08 23:28:41 +08:00
|
|
|
c.ServeJSON()
|
|
|
|
}
|
|
|
|
|
2021-08-07 22:02:56 +08:00
|
|
|
// GetOAuthToken
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Title GetOAuthToken
|
2021-12-03 20:42:36 +08:00
|
|
|
// @Tag Token API
|
2021-11-08 23:28:41 +08:00
|
|
|
// @Description get OAuth access token
|
|
|
|
// @Param grant_type query string true "OAuth grant type"
|
|
|
|
// @Param client_id query string true "OAuth client id"
|
|
|
|
// @Param client_secret query string true "OAuth client secret"
|
|
|
|
// @Param code query string true "OAuth code"
|
2021-03-29 23:40:25 +08:00
|
|
|
// @Success 200 {object} object.TokenWrapper The Response object
|
|
|
|
// @router /login/oauth/access_token [post]
|
2021-03-14 00:08:59 +08:00
|
|
|
func (c *ApiController) GetOAuthToken() {
|
|
|
|
grantType := c.Input().Get("grant_type")
|
|
|
|
clientId := c.Input().Get("client_id")
|
|
|
|
clientSecret := c.Input().Get("client_secret")
|
2021-03-14 18:18:03 +08:00
|
|
|
code := c.Input().Get("code")
|
2022-01-21 09:29:19 +08:00
|
|
|
verifier := c.Input().Get("code_verifier")
|
2021-03-14 00:08:59 +08:00
|
|
|
|
2021-11-28 16:19:42 +08:00
|
|
|
if clientId == "" && clientSecret == "" {
|
|
|
|
clientId, clientSecret, _ = c.Ctx.Request.BasicAuth()
|
|
|
|
}
|
|
|
|
|
2022-01-21 09:29:19 +08:00
|
|
|
c.Data["json"] = object.GetOAuthToken(grantType, clientId, clientSecret, code, verifier)
|
2021-03-14 00:08:59 +08:00
|
|
|
c.ServeJSON()
|
|
|
|
}
|
2021-12-18 18:49:38 +08:00
|
|
|
|
|
|
|
// RefreshToken
|
|
|
|
// @Title RefreshToken
|
|
|
|
// @Description refresh OAuth access token
|
|
|
|
// @Param grant_type query string true "OAuth grant type"
|
|
|
|
// @Param refresh_token query string true "OAuth refresh token"
|
|
|
|
// @Param scope query string true "OAuth scope"
|
|
|
|
// @Param client_id query string true "OAuth client id"
|
|
|
|
// @Param client_secret query string true "OAuth client secret"
|
|
|
|
// @Success 200 {object} object.TokenWrapper The Response object
|
|
|
|
// @router /login/oauth/refresh_token [post]
|
|
|
|
func (c *ApiController) RefreshToken() {
|
|
|
|
grantType := c.Input().Get("grant_type")
|
|
|
|
refreshToken := c.Input().Get("refresh_token")
|
|
|
|
scope := c.Input().Get("scope")
|
|
|
|
clientId := c.Input().Get("client_id")
|
|
|
|
clientSecret := c.Input().Get("client_secret")
|
2022-02-18 12:36:11 +08:00
|
|
|
host := c.Ctx.Request.Host
|
2021-12-18 18:49:38 +08:00
|
|
|
|
2022-02-18 12:36:11 +08:00
|
|
|
c.Data["json"] = object.RefreshToken(grantType, refreshToken, scope, clientId, clientSecret, host)
|
2021-12-18 18:49:38 +08:00
|
|
|
c.ServeJSON()
|
|
|
|
}
|