authorizer/server/resolvers/admin_session.go

50 lines
1.3 KiB
Go
Raw Normal View History

2021-12-31 08:58:00 +00:00
package resolvers
import (
"context"
"fmt"
2022-05-24 07:12:29 +00:00
log "github.com/sirupsen/logrus"
2021-12-31 08:58:00 +00:00
"github.com/authorizerdev/authorizer/server/constants"
"github.com/authorizerdev/authorizer/server/cookie"
2022-02-28 15:56:49 +00:00
"github.com/authorizerdev/authorizer/server/crypto"
2021-12-31 08:58:00 +00:00
"github.com/authorizerdev/authorizer/server/graph/model"
2022-05-30 03:49:55 +00:00
"github.com/authorizerdev/authorizer/server/memorystore"
"github.com/authorizerdev/authorizer/server/token"
2021-12-31 08:58:00 +00:00
"github.com/authorizerdev/authorizer/server/utils"
)
2022-01-17 06:02:13 +00:00
// AdminSessionResolver is a resolver for admin session query
func AdminSessionResolver(ctx context.Context) (*model.Response, error) {
var res *model.Response
2021-12-31 08:58:00 +00:00
2022-05-24 07:12:29 +00:00
gc, err := utils.GinContextFromContext(ctx)
2021-12-31 08:58:00 +00:00
if err != nil {
2022-05-25 07:00:22 +00:00
log.Debug("Failed to get GinContext: ", err)
2021-12-31 08:58:00 +00:00
return res, err
}
if !token.IsSuperAdmin(gc) {
2022-05-25 07:00:22 +00:00
log.Debug("Not logged in as super admin")
2021-12-31 08:58:00 +00:00
return res, fmt.Errorf("unauthorized")
}
2022-05-30 03:49:55 +00:00
adminSecret, err := memorystore.Provider.GetStringStoreEnvVariable(constants.EnvKeyAdminSecret)
if err != nil {
log.Debug("Error getting admin secret: ", err)
return res, fmt.Errorf("unauthorized")
}
hashedKey, err := crypto.EncryptPassword(adminSecret)
2021-12-31 08:58:00 +00:00
if err != nil {
2022-05-25 07:00:22 +00:00
log.Debug("Failed to encrypt key: ", err)
2021-12-31 08:58:00 +00:00
return res, err
}
cookie.SetAdminCookie(gc, hashedKey)
2021-12-31 08:58:00 +00:00
res = &model.Response{
2022-01-09 12:32:16 +00:00
Message: "admin logged in successfully",
2021-12-31 08:58:00 +00:00
}
return res, nil
}