diff options
author | Tom Smeding <tom@tomsmeding.com> | 2025-01-20 20:27:17 +0100 |
---|---|---|
committer | Tom Smeding <tom@tomsmeding.com> | 2025-01-20 20:27:17 +0100 |
commit | c1488d6c5871044c8a4c68dd8868f143f5db13e2 (patch) | |
tree | c5bc0f09a18b477bbaebf1878daf1295767a3d2a /server/src/main.rs | |
parent | 5faf0c8b38003cea8f37167d73c4949b0c2dcc4c (diff) |
server: Logout, refresh token
Diffstat (limited to 'server/src/main.rs')
-rw-r--r-- | server/src/main.rs | 48 |
1 files changed, 33 insertions, 15 deletions
diff --git a/server/src/main.rs b/server/src/main.rs index 11fddb4..547086b 100644 --- a/server/src/main.rs +++ b/server/src/main.rs @@ -17,18 +17,6 @@ mod constants; use constants::*; mod util; mod db; use db::DB; -async fn handle_ping() -> Result<String, Rejection> { - return Ok("pong".to_string()) -} - -#[derive(Deserialize)] -struct RegisterReq { - username: String, - password: String, -} - -type Response = Result<Box<dyn Reply>, Rejection>; - macro_rules! mk_bad_request { ($res:expr) => { Ok(Box::new(warp::reply::with_status($res, warp::http::StatusCode::BAD_REQUEST))) } } @@ -41,6 +29,24 @@ macro_rules! mk_server_err { () => { Ok(Box::new(warp::reply::with_status("Internal server error", warp::http::StatusCode::INTERNAL_SERVER_ERROR))) } } +type Response = Result<Box<dyn Reply>, Rejection>; + +async fn handle_ping(db: DB, mtoken: Option<String>) -> Response { + if let Some(token) = mtoken { + match db::maybe_refresh_token(db, &token).await { + Ok(()) => {}, + Err(err) => { return mk_bad_request!(err); }, + } + } + return Ok(Box::new("pong")) +} + +#[derive(Deserialize)] +struct RegisterReq { + username: String, + password: String, +} + async fn handle_register(db: DB, req: RegisterReq) -> Response { let salt = SaltString::generate(&mut OsRng); let hash = match Argon2::default().hash_password(req.password.as_bytes(), &salt) { @@ -53,7 +59,7 @@ async fn handle_register(db: DB, req: RegisterReq) -> Response { } } -async fn handle_login(db: DB, req: RegisterReq) -> Result<Box<dyn Reply>, Rejection> { +async fn handle_login(db: DB, req: RegisterReq) -> Response { let passhash = match db::get_passhash(db.clone(), &req.username).await { Ok(passhash) => passhash, Err(()) => return mk_not_found!("User not found"), @@ -77,6 +83,11 @@ async fn handle_login(db: DB, req: RegisterReq) -> Result<Box<dyn Reply>, Reject } } +async fn handle_logout(db: DB, token: String) -> Response { + db::drop_token(db, &token).await; + Ok(Box::new("Logged out")) +} + macro_rules! db_handler1 { ($db:expr, $handler:ident) => { { let db2 = $db.clone(); move |a| $handler(db2.clone(), a) } } } @@ -86,15 +97,22 @@ async fn main() { let db: DB = Arc::new(Mutex::new(db::open().await)); println!("Opened database at {DB_FILE_NAME}."); + let use_login_token = warp::header::<String>("x-kaasnoot-token"); + let use_optional_login_token = warp::header::optional::<String>("x-kaasnoot-token"); + let router = (warp::get().and(warp::path!("ping")) - .and_then(handle_ping)) + .and(use_optional_login_token) + .and_then(db_handler1!(db, handle_ping))) .or(warp::post().and(warp::path!("register")) .and(warp::body::json()) .and_then(db_handler1!(db, handle_register))) .or(warp::post().and(warp::path!("login")) .and(warp::body::json()) - .and_then(db_handler1!(db, handle_login))); + .and_then(db_handler1!(db, handle_login))) + .or(warp::post().and(warp::path!("logout")) + .and(use_login_token) + .and_then(db_handler1!(db, handle_logout))); warp::serve(router) .run(([0, 0, 0, 0], 8775)) |