summaryrefslogtreecommitdiff
path: root/src/server/api/endpoints/auth/session/generate.ts
diff options
context:
space:
mode:
authorsyuilo <Syuilotan@yahoo.co.jp>2018-03-29 14:51:06 +0900
committerGitHub <noreply@github.com>2018-03-29 14:51:06 +0900
commit0b5597c873d2d9d45be94a18e1b74f44d9925185 (patch)
tree8b4dac3a56cf703650c8207f9279028a8560a96b /src/server/api/endpoints/auth/session/generate.ts
parentoops (diff)
parentResolve conflicts (diff)
downloadmisskey-0b5597c873d2d9d45be94a18e1b74f44d9925185.tar.gz
misskey-0b5597c873d2d9d45be94a18e1b74f44d9925185.tar.bz2
misskey-0b5597c873d2d9d45be94a18e1b74f44d9925185.zip
Merge pull request #1332 from syuilo/pr/1327
Pr/1327
Diffstat (limited to 'src/server/api/endpoints/auth/session/generate.ts')
-rw-r--r--src/server/api/endpoints/auth/session/generate.ts76
1 files changed, 76 insertions, 0 deletions
diff --git a/src/server/api/endpoints/auth/session/generate.ts b/src/server/api/endpoints/auth/session/generate.ts
new file mode 100644
index 0000000000..180ad83ccd
--- /dev/null
+++ b/src/server/api/endpoints/auth/session/generate.ts
@@ -0,0 +1,76 @@
+/**
+ * Module dependencies
+ */
+import * as uuid from 'uuid';
+import $ from 'cafy';
+import App from '../../../models/app';
+import AuthSess from '../../../models/auth-session';
+import config from '../../../../../conf';
+
+/**
+ * @swagger
+ * /auth/session/generate:
+ * post:
+ * summary: Generate a session
+ * parameters:
+ * -
+ * name: appSecret
+ * description: App Secret
+ * in: formData
+ * required: true
+ * type: string
+ *
+ * responses:
+ * 200:
+ * description: OK
+ * schema:
+ * type: object
+ * properties:
+ * token:
+ * type: string
+ * description: Session Token
+ * url:
+ * type: string
+ * description: Authentication form's URL
+ * default:
+ * description: Failed
+ * schema:
+ * $ref: "#/definitions/Error"
+ */
+
+/**
+ * Generate a session
+ *
+ * @param {any} params
+ * @return {Promise<any>}
+ */
+module.exports = (params) => new Promise(async (res, rej) => {
+ // Get 'appSecret' parameter
+ const [appSecret, appSecretErr] = $(params.appSecret).string().$;
+ if (appSecretErr) return rej('invalid appSecret param');
+
+ // Lookup app
+ const app = await App.findOne({
+ secret: appSecret
+ });
+
+ if (app == null) {
+ return rej('app not found');
+ }
+
+ // Generate token
+ const token = uuid.v4();
+
+ // Create session token document
+ const doc = await AuthSess.insert({
+ createdAt: new Date(),
+ appId: app._id,
+ token: token
+ });
+
+ // Response
+ res({
+ token: doc.token,
+ url: `${config.auth_url}/${doc.token}`
+ });
+});