class Rack::MicroService::SignedRequest

Constants

VERSION

Public Class Methods

new(app, opts={}, &block) click to toggle source
# File lib/rack/micro_service/signed_request.rb, line 10
def initialize(app, opts={}, &block)
        @app = app

        if block_given?
                if block.arity == 1
                        block.call(self)
                else
                        instance_eval(&block)
                end
        end
end

Public Instance Methods

call(env) click to toggle source
# File lib/rack/micro_service/signed_request.rb, line 22
def call(env)
        request = Request.new(env)

        # Prefix to look for in Authorization header
        header_prefix = (!@prefix.nil?) ? @prefix.call() : "MicroService"

        # Only bother authenticating if the request is identifying itself as signed
        if env["HTTP_X_SHINDIG_AUTHTYPE"] === "signed" || env["HTTP_AUTHORIZATION"].to_s.match(/^#{header_prefix}/)
                auth_header_params = ::CGI.parse env["HTTP_AUTHORIZATION"].gsub(/^#{header_prefix}\s/,'')

                begin
                        secret = @secret.call(auth_header_params)
                        if ::MicroService::SignedRequest::Utils.validate(env["HTTP_AUTHORIZATION"], secret, header_prefix)
                                env["micro_service.client_id"] = auth_header_params["client_id"].first
                        else
                                env["micro_service.errors.signed_request"] = "AUTHENTICATION_ERROR"
                        end
                rescue ArgumentError => $e
                        env["micro_service.errors.signed_request"] = $e.message
                end
        end

        @app.call(env)
end
prefix(&block) click to toggle source
# File lib/rack/micro_service/signed_request.rb, line 51
def prefix(&block)
        @prefix = block
end
secret(&block) click to toggle source
# File lib/rack/micro_service/signed_request.rb, line 47
def secret(&block)
        @secret = block
end