2020-02-03 10:16:02 +02:00
|
|
|
package auth
|
|
|
|
|
2020-02-26 15:42:32 +02:00
|
|
|
import (
|
2020-03-23 18:19:30 +02:00
|
|
|
"github.com/google/uuid"
|
2020-02-26 15:42:32 +02:00
|
|
|
)
|
|
|
|
|
2020-02-03 10:16:02 +02:00
|
|
|
var (
|
2020-02-24 17:07:27 +02:00
|
|
|
DefaultAuth = NewAuth()
|
2020-02-03 10:16:02 +02:00
|
|
|
)
|
|
|
|
|
2020-02-24 17:07:27 +02:00
|
|
|
func NewAuth(opts ...Option) Auth {
|
2020-12-12 21:06:43 +02:00
|
|
|
options := Options{}
|
2020-04-09 15:10:17 +02:00
|
|
|
|
|
|
|
for _, o := range opts {
|
|
|
|
o(&options)
|
|
|
|
}
|
|
|
|
|
|
|
|
return &noop{
|
|
|
|
opts: options,
|
|
|
|
}
|
2020-02-03 10:16:02 +02:00
|
|
|
}
|
|
|
|
|
2020-12-12 22:08:39 +02:00
|
|
|
func NewRules() Rules {
|
|
|
|
return new(noopRules)
|
|
|
|
}
|
|
|
|
|
2020-03-23 18:19:30 +02:00
|
|
|
type noop struct {
|
2020-02-26 00:15:44 +02:00
|
|
|
opts Options
|
|
|
|
}
|
2020-02-03 10:16:02 +02:00
|
|
|
|
2020-12-12 22:08:39 +02:00
|
|
|
type noopRules struct{}
|
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// String returns the name of the implementation.
|
2020-03-23 18:19:30 +02:00
|
|
|
func (n *noop) String() string {
|
|
|
|
return "noop"
|
|
|
|
}
|
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// Init the auth.
|
2020-03-23 18:19:30 +02:00
|
|
|
func (n *noop) Init(opts ...Option) {
|
2020-02-26 00:15:44 +02:00
|
|
|
for _, o := range opts {
|
|
|
|
o(&n.opts)
|
|
|
|
}
|
2020-02-03 10:16:02 +02:00
|
|
|
}
|
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// Options set for auth.
|
2020-03-23 18:19:30 +02:00
|
|
|
func (n *noop) Options() Options {
|
2020-02-26 00:15:44 +02:00
|
|
|
return n.opts
|
2020-02-10 10:26:28 +02:00
|
|
|
}
|
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// Generate a new account.
|
2020-04-01 18:20:02 +02:00
|
|
|
func (n *noop) Generate(id string, opts ...GenerateOption) (*Account, error) {
|
2020-03-23 18:19:30 +02:00
|
|
|
options := NewGenerateOptions(opts...)
|
2020-02-26 15:42:32 +02:00
|
|
|
|
2020-03-23 18:19:30 +02:00
|
|
|
return &Account{
|
2020-05-19 19:17:17 +02:00
|
|
|
ID: id,
|
|
|
|
Secret: options.Secret,
|
|
|
|
Metadata: options.Metadata,
|
|
|
|
Scopes: options.Scopes,
|
2020-05-22 13:24:37 +02:00
|
|
|
Issuer: n.Options().Namespace,
|
2020-03-23 18:19:30 +02:00
|
|
|
}, nil
|
2020-02-03 10:16:02 +02:00
|
|
|
}
|
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// Grant access to a resource.
|
2020-12-12 22:08:39 +02:00
|
|
|
func (n *noopRules) Grant(rule *Rule) error {
|
2020-02-03 10:16:02 +02:00
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// Revoke access to a resource.
|
2020-12-12 22:08:39 +02:00
|
|
|
func (n *noopRules) Revoke(rule *Rule) error {
|
2020-03-23 18:19:30 +02:00
|
|
|
return nil
|
|
|
|
}
|
2020-02-26 15:42:32 +02:00
|
|
|
|
2020-05-20 12:59:01 +02:00
|
|
|
// Rules used to verify requests
|
2022-09-30 16:27:07 +02:00
|
|
|
// Verify an account has access to a resource.
|
2020-12-12 22:08:39 +02:00
|
|
|
func (n *noopRules) Verify(acc *Account, res *Resource, opts ...VerifyOption) error {
|
2020-03-23 18:19:30 +02:00
|
|
|
return nil
|
|
|
|
}
|
2020-02-26 15:42:32 +02:00
|
|
|
|
2020-12-12 22:08:39 +02:00
|
|
|
func (n *noopRules) List(opts ...ListOption) ([]*Rule, error) {
|
|
|
|
return []*Rule{}, nil
|
|
|
|
}
|
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// Inspect a token.
|
2020-03-23 18:19:30 +02:00
|
|
|
func (n *noop) Inspect(token string) (*Account, error) {
|
2020-05-22 13:40:34 +02:00
|
|
|
return &Account{ID: uuid.New().String(), Issuer: n.Options().Namespace}, nil
|
2020-02-03 10:16:02 +02:00
|
|
|
}
|
2020-02-24 17:07:27 +02:00
|
|
|
|
2022-09-30 16:27:07 +02:00
|
|
|
// Token generation using an account id and secret.
|
2020-04-01 15:25:00 +02:00
|
|
|
func (n *noop) Token(opts ...TokenOption) (*Token, error) {
|
2020-03-23 18:19:30 +02:00
|
|
|
return &Token{}, nil
|
2020-02-24 17:07:27 +02:00
|
|
|
}
|