-
Notifications
You must be signed in to change notification settings - Fork 3
/
users.go
74 lines (67 loc) · 1.84 KB
/
users.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
package authb
import (
"github.com/nats-io/jwt/v2"
"github.com/nats-io/nkeys"
)
type UsersImpl struct {
accountData *AccountData
}
func (a *UsersImpl) Add(name string, key string) (User, error) {
if key == "" {
key = a.accountData.Key.Public
}
k, signingKey, err := a.accountData.getKey(key)
if err != nil {
return nil, err
}
_, scoped := a.accountData.Claim.SigningKeys.GetScope(key)
uk, err := KeyFor(nkeys.PrefixByteUser)
if err != nil {
return nil, err
}
d := &UserData{
BaseData: BaseData{EntityName: name, Key: uk, Modified: true},
AccountData: a.accountData,
Claim: jwt.NewUserClaims(uk.Public),
RejectEdits: scoped,
}
d.Claim.Name = name
if signingKey {
d.Claim.IssuerAccount = a.accountData.Key.Public
}
if scoped {
d.Claim.UserPermissionLimits = jwt.UserPermissionLimits{}
}
d.Token, err = d.Claim.Encode(k.Pair)
if err != nil {
return nil, err
}
a.accountData.UserDatas = append(a.accountData.UserDatas, d)
a.accountData.Operator.AddedKeys = append(a.accountData.Operator.AddedKeys, uk)
return d, nil
}
func (a *UsersImpl) Get(name string) (User, error) {
for _, u := range a.accountData.UserDatas {
if u.EntityName == name || u.Claim.Subject == name {
return u, nil
}
}
return nil, ErrNotFound
}
func (a *UsersImpl) List() []User {
v := make([]User, len(a.accountData.UserDatas))
for idx, u := range a.accountData.UserDatas {
v[idx] = u
}
return v
}
func (a *UsersImpl) Delete(name string) error {
for idx, u := range a.accountData.UserDatas {
if u.EntityName == name || u.Claim.Subject == name {
a.accountData.DeletedUsers = append(a.accountData.DeletedUsers, u)
a.accountData.UserDatas = append(a.accountData.UserDatas[:idx], a.accountData.UserDatas[idx+1:]...)
a.accountData.Operator.DeletedKeys = append(a.accountData.Operator.DeletedKeys, u.Key.Public)
}
}
return nil
}