2024-02-17 11:55:31 +00:00
|
|
|
import { Authorizer } from '@authorizerdev/authorizer-js';
|
|
|
|
import { Server } from '@hocuspocus/server';
|
2024-02-17 11:40:34 +00:00
|
|
|
|
|
|
|
const authorizer = new Authorizer({
|
|
|
|
clientID: process.env.AUTHORIZER_CLIENT_ID,
|
|
|
|
authorizerURL: 'https://auth.discours.io',
|
|
|
|
redirectURL: 'https://testing.discours.io',
|
2024-02-17 11:55:31 +00:00
|
|
|
});
|
|
|
|
|
|
|
|
const startServer = async () => {
|
2024-02-17 11:40:34 +00:00
|
|
|
const server = await Server.configure({
|
|
|
|
port: 4242,
|
|
|
|
async onConnect({ connection }) {
|
2024-02-17 11:55:31 +00:00
|
|
|
connection.requiresAuthentication = true;
|
2024-02-17 11:40:34 +00:00
|
|
|
},
|
|
|
|
async onAuthenticate(data) {
|
|
|
|
if (data.requestHeaders) {
|
|
|
|
const params = {
|
|
|
|
token_type: 'access_token',
|
|
|
|
token: data.requestHeaders['authorization'] || '',
|
2024-02-17 11:55:31 +00:00
|
|
|
};
|
2024-02-17 11:40:34 +00:00
|
|
|
if (params.token) {
|
2024-02-17 11:55:31 +00:00
|
|
|
const response = await authorizer.validateJWTToken(params);
|
2024-02-17 11:40:34 +00:00
|
|
|
if (response?.data?.is_valid) {
|
2024-02-17 11:55:31 +00:00
|
|
|
const { sub: user, allowed_roles: roles } = response.data.claims;
|
|
|
|
console.debug(`user_id: ${user} roles: ${roles}`);
|
2024-02-17 11:40:34 +00:00
|
|
|
return {
|
|
|
|
id: user,
|
|
|
|
roles,
|
2024-02-17 11:55:31 +00:00
|
|
|
};
|
2024-02-17 11:40:34 +00:00
|
|
|
}
|
2024-02-17 11:55:31 +00:00
|
|
|
console.error('no valid auth token presented');
|
|
|
|
throw new Error('Not authorized!');
|
2024-02-17 11:40:34 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
},
|
2024-02-17 11:55:31 +00:00
|
|
|
}).listen();
|
|
|
|
|
|
|
|
server.listen();
|
|
|
|
};
|
2024-02-17 11:40:34 +00:00
|
|
|
|
2024-02-17 11:55:31 +00:00
|
|
|
startServer();
|