mirror of
https://github.com/oauth2-proxy/oauth2-proxy.git
synced 2025-01-24 05:26:55 +02:00
d228d5a928
* Refactor the utils package to other areas Move cookieSession functions to cookie session store & align the double implementation of SecretBytes to be united and housed under encryption * Remove unused Provider SessionFromCookie/CookieForSession These implementations aren't used, these are handled in the cookie store. * Add changelog entry for session/utils refactor
53 lines
1.6 KiB
Go
53 lines
1.6 KiB
Go
package providers
|
|
|
|
import (
|
|
"context"
|
|
|
|
"github.com/coreos/go-oidc"
|
|
"github.com/oauth2-proxy/oauth2-proxy/pkg/apis/sessions"
|
|
)
|
|
|
|
// Provider represents an upstream identity provider implementation
|
|
type Provider interface {
|
|
Data() *ProviderData
|
|
GetEmailAddress(ctx context.Context, s *sessions.SessionState) (string, error)
|
|
GetUserName(ctx context.Context, s *sessions.SessionState) (string, error)
|
|
GetPreferredUsername(ctx context.Context, s *sessions.SessionState) (string, error)
|
|
Redeem(ctx context.Context, redirectURI, code string) (*sessions.SessionState, error)
|
|
ValidateGroup(string) bool
|
|
ValidateSessionState(ctx context.Context, s *sessions.SessionState) bool
|
|
GetLoginURL(redirectURI, finalRedirect string) string
|
|
RefreshSessionIfNeeded(ctx context.Context, s *sessions.SessionState) (bool, error)
|
|
CreateSessionStateFromBearerToken(ctx context.Context, rawIDToken string, idToken *oidc.IDToken) (*sessions.SessionState, error)
|
|
}
|
|
|
|
// New provides a new Provider based on the configured provider string
|
|
func New(provider string, p *ProviderData) Provider {
|
|
switch provider {
|
|
case "linkedin":
|
|
return NewLinkedInProvider(p)
|
|
case "facebook":
|
|
return NewFacebookProvider(p)
|
|
case "github":
|
|
return NewGitHubProvider(p)
|
|
case "keycloak":
|
|
return NewKeycloakProvider(p)
|
|
case "azure":
|
|
return NewAzureProvider(p)
|
|
case "gitlab":
|
|
return NewGitLabProvider(p)
|
|
case "oidc":
|
|
return NewOIDCProvider(p)
|
|
case "login.gov":
|
|
return NewLoginGovProvider(p)
|
|
case "bitbucket":
|
|
return NewBitbucketProvider(p)
|
|
case "nextcloud":
|
|
return NewNextcloudProvider(p)
|
|
case "digitalocean":
|
|
return NewDigitalOceanProvider(p)
|
|
default:
|
|
return NewGoogleProvider(p)
|
|
}
|
|
}
|