summaryrefslogtreecommitdiff
path: root/src/processor/http/process-inbox.ts
diff options
context:
space:
mode:
authorsyuilo <syuilotan@yahoo.co.jp>2018-04-02 18:41:02 +0900
committersyuilo <syuilotan@yahoo.co.jp>2018-04-02 18:41:02 +0900
commitcb5fe0d48f5a434bf699394cb79d623ec1259ef8 (patch)
treedf15572b8147873066b4dfb10de481e5580f73b0 /src/processor/http/process-inbox.ts
parentFix bug (diff)
parentMerge pull request #1371 from akihikodaki/misc (diff)
downloadmisskey-cb5fe0d48f5a434bf699394cb79d623ec1259ef8.tar.gz
misskey-cb5fe0d48f5a434bf699394cb79d623ec1259ef8.tar.bz2
misskey-cb5fe0d48f5a434bf699394cb79d623ec1259ef8.zip
Merge branch 'master' of https://github.com/syuilo/misskey
Diffstat (limited to 'src/processor/http/process-inbox.ts')
-rw-r--r--src/processor/http/process-inbox.ts38
1 files changed, 38 insertions, 0 deletions
diff --git a/src/processor/http/process-inbox.ts b/src/processor/http/process-inbox.ts
new file mode 100644
index 0000000000..78c20f8a7e
--- /dev/null
+++ b/src/processor/http/process-inbox.ts
@@ -0,0 +1,38 @@
+import { verifySignature } from 'http-signature';
+import parseAcct from '../../acct/parse';
+import User, { IRemoteUser } from '../../models/user';
+import act from '../../remote/activitypub/act';
+import resolvePerson from '../../remote/activitypub/resolve-person';
+
+export default ({ data }, done) => (async () => {
+ const keyIdLower = data.signature.keyId.toLowerCase();
+ let user;
+
+ if (keyIdLower.startsWith('acct:')) {
+ const { username, host } = parseAcct(keyIdLower.slice('acct:'.length));
+ if (host === null) {
+ throw 'request was made by local user';
+ }
+
+ user = await User.findOne({ usernameLower: username, hostLower: host }) as IRemoteUser;
+ } else {
+ user = await User.findOne({
+ host: { $ne: null },
+ 'account.publicKey.id': data.signature.keyId
+ }) as IRemoteUser;
+
+ if (user === null) {
+ user = await resolvePerson(data.signature.keyId);
+ }
+ }
+
+ if (user === null) {
+ throw 'failed to resolve user';
+ }
+
+ if (!verifySignature(data.signature, user.account.publicKey.publicKeyPem)) {
+ throw 'signature verification failed';
+ }
+
+ await act(user, data.inbox, true);
+})().then(done, done);