2024-02-19 00:35:04 +00:00
|
|
|
package main
|
|
|
|
|
|
|
|
import (
|
|
|
|
"context"
|
2024-03-11 04:07:00 +00:00
|
|
|
"encoding/gob"
|
2024-02-19 00:35:04 +00:00
|
|
|
"log"
|
|
|
|
"net/http"
|
|
|
|
"os"
|
|
|
|
"os/signal"
|
|
|
|
"syscall"
|
|
|
|
"time"
|
|
|
|
|
2024-03-08 01:31:17 +00:00
|
|
|
_ "github.com/breml/rootcerts"
|
2024-03-09 06:56:47 +00:00
|
|
|
"github.com/davecgh/go-spew/spew"
|
2024-03-10 06:34:20 +00:00
|
|
|
|
2024-03-10 04:48:44 +00:00
|
|
|
"github.com/gorilla/mux"
|
2024-03-10 06:34:20 +00:00
|
|
|
"github.com/gorilla/sessions"
|
2024-03-09 06:56:47 +00:00
|
|
|
|
2024-03-10 04:48:44 +00:00
|
|
|
"golang.org/x/oauth2"
|
|
|
|
"golang.org/x/oauth2/microsoft"
|
2024-02-19 00:35:04 +00:00
|
|
|
)
|
|
|
|
|
2024-03-10 04:48:44 +00:00
|
|
|
var config = oauth2.Config{
|
|
|
|
ClientID: "dccb4b93-3f75-4775-a94a-da39216d7daf",
|
2024-03-10 05:46:59 +00:00
|
|
|
ClientSecret: "XN98Q~Wrp1RfakkihA1BaTKfokOSX9fuB01unanr",
|
2024-03-10 04:48:44 +00:00
|
|
|
Endpoint: microsoft.AzureADEndpoint("ceeae22e-f163-4ac9-b7c2-45972d3aed4f"),
|
2024-03-10 05:22:41 +00:00
|
|
|
RedirectURL: "https://alias.spamasaurus.com/callback",
|
2024-03-10 11:03:36 +00:00
|
|
|
Scopes: []string{"email", "openid", "profile", "user.read"},
|
2024-03-10 04:48:44 +00:00
|
|
|
}
|
2024-03-09 10:58:56 +00:00
|
|
|
|
2024-03-10 06:34:20 +00:00
|
|
|
var sessionStore = sessions.NewCookieStore([]byte("xDDBjhYwyndZty3exGNq2ahE8wHRCR4DfdCJCSoWXAYncfWw2UQDH63QcJ9CkrGx"))
|
|
|
|
|
2024-03-11 04:07:00 +00:00
|
|
|
func init() {
|
|
|
|
// Register the oauth2.Token type with gob
|
|
|
|
gob.Register(&oauth2.Token{})
|
|
|
|
}
|
|
|
|
|
|
|
|
func main() {
|
|
|
|
r := mux.NewRouter()
|
|
|
|
|
|
|
|
r.HandleFunc("/", rootHandler)
|
|
|
|
r.HandleFunc("/health", healthHandler)
|
|
|
|
r.HandleFunc("/callback", callbackHandler)
|
|
|
|
r.HandleFunc("/readiness", readinessHandler)
|
|
|
|
|
|
|
|
srv := &http.Server{
|
|
|
|
Handler: r,
|
|
|
|
Addr: ":8080",
|
|
|
|
ReadTimeout: 10 * time.Second,
|
|
|
|
WriteTimeout: 10 * time.Second,
|
|
|
|
}
|
|
|
|
|
|
|
|
// Start Server
|
|
|
|
go func() {
|
|
|
|
log.Println("Starting Server")
|
|
|
|
if err := srv.ListenAndServe(); err != nil {
|
|
|
|
log.Fatal(err)
|
|
|
|
}
|
|
|
|
}()
|
|
|
|
|
|
|
|
// Graceful Shutdown
|
|
|
|
waitForShutdown(srv)
|
|
|
|
}
|
|
|
|
|
2024-03-10 04:48:44 +00:00
|
|
|
func rootHandler(w http.ResponseWriter, r *http.Request) {
|
2024-03-11 03:55:49 +00:00
|
|
|
session, err := sessionStore.Get(r, "spamasaurusRex")
|
|
|
|
if err != nil {
|
|
|
|
log.Println(spew.Sdump(err))
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2024-03-10 06:34:20 +00:00
|
|
|
if token, ok := session.Values["token"]; ok {
|
2024-03-10 11:03:36 +00:00
|
|
|
log.Println(spew.Sdump(token))
|
|
|
|
w.Write([]byte("Token retrieved from session"))
|
2024-03-10 06:34:20 +00:00
|
|
|
} else {
|
2024-03-11 03:32:17 +00:00
|
|
|
log.Println(spew.Sdump(session))
|
2024-03-10 06:34:20 +00:00
|
|
|
url := config.AuthCodeURL("state", oauth2.AccessTypeOffline)
|
|
|
|
http.Redirect(w, r, url, http.StatusFound)
|
|
|
|
}
|
2024-03-10 04:48:44 +00:00
|
|
|
}
|
2024-03-01 06:15:06 +00:00
|
|
|
|
2024-03-10 04:48:44 +00:00
|
|
|
func callbackHandler(w http.ResponseWriter, r *http.Request) {
|
|
|
|
// Handle the callback after successful authentication
|
2024-03-10 06:05:47 +00:00
|
|
|
token, err := config.Exchange(r.Context(), r.URL.Query().Get("code"))
|
2024-03-08 08:24:19 +00:00
|
|
|
if err != nil {
|
2024-03-10 06:05:47 +00:00
|
|
|
if retrieveErr, ok := err.(*oauth2.RetrieveError); ok {
|
2024-03-10 11:03:36 +00:00
|
|
|
log.Println(retrieveErr.ErrorDescription + " (" + retrieveErr.ErrorCode + ")")
|
2024-03-10 06:05:47 +00:00
|
|
|
}
|
2024-03-10 04:48:44 +00:00
|
|
|
http.Error(w, "Error exchanging code for token", http.StatusInternalServerError)
|
|
|
|
return
|
2024-03-08 08:24:19 +00:00
|
|
|
}
|
2024-03-08 00:50:00 +00:00
|
|
|
|
2024-03-10 06:34:20 +00:00
|
|
|
// Store the token in the session
|
2024-03-10 11:48:34 +00:00
|
|
|
session, err := sessionStore.Get(r, "spamasaurusRex")
|
|
|
|
if err != nil {
|
|
|
|
log.Println(spew.Sdump(err))
|
|
|
|
return
|
|
|
|
}
|
2024-03-10 06:34:20 +00:00
|
|
|
session.Values["token"] = token
|
2024-03-11 03:55:49 +00:00
|
|
|
|
|
|
|
err = session.Save(r, w)
|
|
|
|
if err != nil {
|
|
|
|
log.Println(spew.Sdump(err))
|
|
|
|
return
|
|
|
|
}
|
2024-03-10 04:48:44 +00:00
|
|
|
|
2024-03-11 03:42:01 +00:00
|
|
|
log.Println(spew.Sdump(session))
|
|
|
|
|
2024-03-10 11:16:52 +00:00
|
|
|
// w.Write([]byte("Authentication successful!"))
|
2024-03-10 06:34:20 +00:00
|
|
|
|
|
|
|
url := "https://alias.spamasaurus.com"
|
2024-03-10 11:27:34 +00:00
|
|
|
http.Redirect(w, r, url, http.StatusSeeOther)
|
2024-02-19 00:35:04 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
func healthHandler(w http.ResponseWriter, r *http.Request) {
|
|
|
|
w.WriteHeader(http.StatusOK)
|
|
|
|
}
|
|
|
|
|
|
|
|
func readinessHandler(w http.ResponseWriter, r *http.Request) {
|
|
|
|
w.WriteHeader(http.StatusOK)
|
|
|
|
}
|
|
|
|
|
|
|
|
func waitForShutdown(srv *http.Server) {
|
|
|
|
interruptChan := make(chan os.Signal, 1)
|
|
|
|
signal.Notify(interruptChan, os.Interrupt, syscall.SIGINT, syscall.SIGTERM)
|
|
|
|
|
|
|
|
// Block until we receive our signal.
|
|
|
|
<-interruptChan
|
|
|
|
|
|
|
|
// create a deadline to wait for.
|
|
|
|
ctx, cancel := context.WithTimeout(context.Background(), time.Second*10)
|
|
|
|
defer cancel()
|
|
|
|
srv.Shutdown(ctx)
|
|
|
|
|
|
|
|
log.Println("Shutting down")
|
|
|
|
os.Exit(0)
|
|
|
|
}
|