bigbluebutton-Github/bigbluebutton-html5/imports/ui/services/auth/index.js

311 lines
8.2 KiB
JavaScript
Raw Normal View History

/* eslint prefer-promise-reject-errors: 0 */
2017-03-11 02:33:46 +08:00
import { Tracker } from 'meteor/tracker';
2016-07-07 20:50:32 +08:00
import Storage from '/imports/ui/services/storage/session';
2017-03-11 02:33:46 +08:00
import Users from '/imports/api/users';
import logger from '/imports/startup/client/logger';
2018-01-30 12:23:56 +08:00
import { makeCall } from '/imports/ui/services/api';
2019-12-07 01:46:58 +08:00
import { initAnnotationsStreamListener } from '/imports/ui/components/whiteboard/service';
import { initCursorStreamListener } from '/imports/ui/components/cursor/service';
import AuthTokenValidation, { ValidationStates } from '/imports/api/auth-token-validation';
2017-05-05 22:30:15 +08:00
const CONNECTION_TIMEOUT = Meteor.settings.public.app.connectionTimeout;
class Auth {
constructor() {
this._loggedIn = {
value: false,
tracker: new Tracker.Dependency(),
};
const queryParams = new URLSearchParams(document.location.search);
if (queryParams.has('sessionToken')
&& queryParams.get('sessionToken') !== Session.get('sessionToken')) {
return;
}
this._meetingID = Storage.getItem('meetingID');
this._userID = Storage.getItem('userID');
this._authToken = Storage.getItem('authToken');
2017-07-19 20:44:47 +08:00
this._sessionToken = Storage.getItem('sessionToken');
2017-07-15 00:59:02 +08:00
this._logoutURL = Storage.getItem('logoutURL');
2018-06-20 00:46:59 +08:00
this._confname = Storage.getItem('confname');
this._externUserID = Storage.getItem('externUserID');
this._fullname = Storage.getItem('fullname');
}
get meetingID() {
return this._meetingID;
}
set meetingID(meetingID) {
this._meetingID = meetingID;
Storage.setItem('meetingID', this._meetingID);
}
2017-07-19 20:44:47 +08:00
set sessionToken(sessionToken) {
this._sessionToken = sessionToken;
Storage.setItem('sessionToken', this._sessionToken);
}
get sessionToken() {
return this._sessionToken;
}
get userID() {
return this._userID;
}
set userID(userID) {
this._userID = userID;
Storage.setItem('userID', this._userID);
}
2016-06-18 06:15:11 +08:00
get token() {
return this._authToken;
2016-06-25 07:09:32 +08:00
}
2016-06-18 06:15:11 +08:00
set token(authToken) {
this._authToken = authToken;
Storage.setItem('authToken', this._authToken);
}
2017-07-15 00:59:02 +08:00
set logoutURL(logoutURL) {
this._logoutURL = logoutURL;
Storage.setItem('logoutURL', this._logoutURL);
}
get logoutURL() {
return this._logoutURL;
}
2018-06-20 00:46:59 +08:00
set confname(confname) {
this._confname = confname;
Storage.setItem('confname', this._confname);
}
get confname() {
return this._confname;
}
set externUserID(externUserID) {
this._externUserID = externUserID;
Storage.setItem('externUserID', this._externUserID);
}
get externUserID() {
return this._externUserID;
}
set fullname(fullname) {
this._fullname = fullname;
Storage.setItem('fullname', this._fullname);
}
get fullname() {
return this._fullname;
}
2017-03-10 03:50:21 +08:00
get loggedIn() {
2017-03-11 02:33:46 +08:00
this._loggedIn.tracker.depend();
return this._loggedIn.value;
2017-03-10 03:50:21 +08:00
}
2017-03-11 02:33:46 +08:00
set loggedIn(value) {
this._loggedIn.value = value;
this._loggedIn.tracker.changed();
}
get credentials() {
return {
meetingId: this.meetingID,
requesterUserId: this.userID,
requesterToken: this.token,
2017-07-15 00:59:02 +08:00
logoutURL: this.logoutURL,
2017-07-19 20:44:47 +08:00
sessionToken: this.sessionToken,
2018-06-20 00:46:59 +08:00
fullname: this.fullname,
externUserID: this.externUserID,
2018-08-14 03:52:44 +08:00
confname: this.confname,
2018-06-20 00:46:59 +08:00
};
}
get fullInfo() {
return {
sessionToken: this.sessionToken,
meetingId: this.meetingID,
requesterUserId: this.userID,
fullname: this.fullname,
confname: this.confname,
externUserID: this.externUserID,
uniqueClientSession: this.uniqueClientSession,
};
}
2018-12-11 01:05:17 +08:00
set(
meetingId,
requesterUserId,
requesterToken,
logoutURL,
sessionToken,
fullname,
externUserID,
confname,
) {
2017-04-27 03:56:29 +08:00
this.meetingID = meetingId;
this.userID = requesterUserId;
this.token = requesterToken;
2017-07-15 00:59:02 +08:00
this.logoutURL = logoutURL;
2017-07-19 20:44:47 +08:00
this.sessionToken = sessionToken;
2018-06-20 00:46:59 +08:00
this.fullname = fullname;
this.externUserID = externUserID;
this.confname = confname;
2017-04-27 03:56:29 +08:00
}
2017-07-15 00:59:02 +08:00
clearCredentials(...args) {
this.meetingID = null;
this.userID = null;
this.token = null;
this.loggedIn = false;
2017-07-15 00:59:02 +08:00
this.logoutURL = null;
2017-07-19 20:44:47 +08:00
this.sessionToken = null;
2018-06-20 00:46:59 +08:00
this.fullname = null;
2018-08-14 03:52:44 +08:00
this.externUserID = null;
2018-06-20 00:46:59 +08:00
this.confname = null;
this.uniqueClientSession = null;
2017-07-15 00:59:02 +08:00
return Promise.resolve(...args);
2017-06-03 03:25:02 +08:00
}
logout() {
if (!this.loggedIn) {
return Promise.resolve();
}
2017-07-15 00:59:02 +08:00
return new Promise((resolve) => {
2017-12-14 02:59:24 +08:00
resolve(this._logoutURL);
});
2017-06-03 03:25:02 +08:00
}
2017-04-27 03:56:29 +08:00
authenticate(force) {
if (this.loggedIn && !force) {
return Promise.resolve();
}
2017-04-18 01:14:31 +08:00
if (!(this.meetingID && this.userID && this.token)) {
return Promise.reject({
error: 401,
description: 'Authentication failed due to missing credentials.',
2017-03-11 02:33:46 +08:00
});
}
this.loggedIn = false;
return this.validateAuthToken()
.then(() => {
this.loggedIn = true;
this.uniqueClientSession = `${this.sessionToken}-${Math.random().toString(36).substring(6)}`;
});
2017-03-11 02:33:46 +08:00
}
validateAuthToken() {
return new Promise(async (resolve, reject) => {
let computation = null;
2017-03-11 02:33:46 +08:00
const validationTimeout = setTimeout(() => {
computation.stop();
2017-04-18 01:14:31 +08:00
reject({
error: 401,
2017-04-18 01:14:31 +08:00
description: 'Authentication timeout.',
});
2017-05-05 22:30:15 +08:00
}, CONNECTION_TIMEOUT);
2017-03-11 02:33:46 +08:00
Meteor.subscribe('auth-token-validation', { meetingId: this.meetingID, userId: this.userID });
const result = await makeCall('validateAuthToken', this.meetingID, this.userID, this.token, this.externUserID);
if (!result) {
clearTimeout(validationTimeout);
reject({
error: 401,
description: 'User has been banned.',
});
return;
}
2017-03-11 02:33:46 +08:00
Tracker.autorun((c) => {
computation = c;
Meteor.subscribe('current-user');
2017-03-11 02:33:46 +08:00
const selector = { meetingId: this.meetingID, userId: this.userID };
const fields = {
ejected: 1, intId: 1, validated: 1, userId: 1,
};
const User = Users.findOne(selector, { fields });
// Skip in case the user is not in the collection yet or is a dummy user
if (!User || !('intId' in User)) {
logger.info({ logCode: 'auth_service_resend_validateauthtoken' }, 're-send validateAuthToken for delayed authentication');
makeCall('validateAuthToken', this.meetingID, this.userID, this.token);
return;
}
2018-01-30 12:23:56 +08:00
if (User.ejected) {
computation.stop();
reject({
2018-01-30 12:23:56 +08:00
error: 401,
description: 'User has been ejected.',
});
return;
2018-01-30 12:23:56 +08:00
}
// if (User.validated === true && User.connectionStatus === 'online') {
// logger.info({ logCode: 'auth_service_init_streamers', extraInfo: { userId: User.userId } }, 'Calling init streamers functions');
// initCursorStreamListener();
// initAnnotationsStreamListener();
// computation.stop();
// clearTimeout(validationTimeout);
// // setTimeout to prevent race-conditions with subscription
// setTimeout(() => resolve(true), 100);
// }
const authenticationTokenValidation = AuthTokenValidation.findOne();
if (!authenticationTokenValidation) return;
switch (authenticationTokenValidation.validationStatus) {
case ValidationStates.INVALID:
c.stop();
reject({ error: 401, description: 'User has been ejected.' });
break;
case ValidationStates.VALIDATED:
initCursorStreamListener();
initAnnotationsStreamListener();
c.stop();
clearTimeout(validationTimeout);
resolve(true);
break;
case ValidationStates.VALIDATING:
break;
case ValidationStates.NOT_VALIDATED:
break;
default:
}
2017-03-11 02:33:46 +08:00
});
});
}
authenticateURL(url) {
let authURL = url;
if (authURL.indexOf('sessionToken=') === -1) {
if (authURL.indexOf('?') !== -1) {
authURL = `${authURL}&sessionToken=${this.sessionToken}`;
} else {
authURL = `${authURL}?sessionToken=${this.sessionToken}`;
}
}
return authURL;
}
2017-06-03 03:25:02 +08:00
}
2016-06-29 02:50:44 +08:00
2017-06-03 03:25:02 +08:00
const AuthSingleton = new Auth();
export default AuthSingleton;