mz_frontegg_auth/
app_password.rsuse std::error::Error;
use std::fmt;
use std::str::FromStr;
use serde::Deserialize;
use uuid::Uuid;
pub const PREFIX: &str = "mzp_";
#[derive(Debug, Clone, Copy, Deserialize, PartialEq, Eq, PartialOrd, Ord, Hash)]
pub struct AppPassword {
pub client_id: Uuid,
pub secret_key: Uuid,
}
impl fmt::Display for AppPassword {
fn fmt(&self, f: &mut fmt::Formatter) -> fmt::Result {
let mut buf = vec![];
buf.extend(self.client_id.as_bytes());
buf.extend(self.secret_key.as_bytes());
let encoded = base64::encode_config(buf, base64::URL_SAFE_NO_PAD);
f.write_str(PREFIX)?;
f.write_str(&encoded)
}
}
impl FromStr for AppPassword {
type Err = AppPasswordParseError;
fn from_str(password: &str) -> Result<AppPassword, AppPasswordParseError> {
let password = password.strip_prefix(PREFIX).ok_or(AppPasswordParseError)?;
if password.len() == 43 || password.len() == 44 {
let buf = base64::decode_config(password, base64::URL_SAFE)
.map_err(|_| AppPasswordParseError)?;
let client_id = Uuid::from_slice(&buf[..16]).map_err(|_| AppPasswordParseError)?;
let secret_key = Uuid::from_slice(&buf[16..]).map_err(|_| AppPasswordParseError)?;
Ok(AppPassword {
client_id,
secret_key,
})
} else if password.len() >= 64 {
let mut chars = password.chars().filter(|c| c.is_alphanumeric());
let client_id = Uuid::parse_str(&chars.by_ref().take(32).collect::<String>())
.map_err(|_| AppPasswordParseError)?;
let secret_key = Uuid::parse_str(&chars.take(32).collect::<String>())
.map_err(|_| AppPasswordParseError)?;
Ok(AppPassword {
client_id,
secret_key,
})
} else {
Err(AppPasswordParseError)
}
}
}
#[derive(Clone, Debug)]
pub struct AppPasswordParseError;
impl Error for AppPasswordParseError {}
impl fmt::Display for AppPasswordParseError {
fn fmt(&self, f: &mut fmt::Formatter) -> fmt::Result {
f.write_str("invalid app password format")
}
}
#[cfg(test)]
mod tests {
use uuid::Uuid;
use super::AppPassword;
#[mz_ore::test]
fn test_app_password() {
struct TestCase {
input: &'static str,
expected_output: &'static str,
expected_client_id: Uuid,
expected_secret_key: Uuid,
}
for tc in [
TestCase {
input: "mzp_7ce3c1e8ea854594ad5d785f17d1736f1947fdcef5404adb84a47347e5d30c9f",
expected_output: "mzp_fOPB6OqFRZStXXhfF9FzbxlH_c71QErbhKRzR-XTDJ8",
expected_client_id: "7ce3c1e8-ea85-4594-ad5d-785f17d1736f".parse().unwrap(),
expected_secret_key: "1947fdce-f540-4adb-84a4-7347e5d30c9f".parse().unwrap(),
},
TestCase {
input: "mzp_fOPB6OqFRZStXXhfF9FzbxlH_c71QErbhKRzR-XTDJ8",
expected_output: "mzp_fOPB6OqFRZStXXhfF9FzbxlH_c71QErbhKRzR-XTDJ8",
expected_client_id: "7ce3c1e8-ea85-4594-ad5d-785f17d1736f".parse().unwrap(),
expected_secret_key: "1947fdce-f540-4adb-84a4-7347e5d30c9f".parse().unwrap(),
},
TestCase {
input:
"mzp_0445db36-5826-41af-84f6-e09402fc6171:a0c11434-07ba-426a-b83d-cc4f192325a3",
expected_output: "mzp_BEXbNlgmQa-E9uCUAvxhcaDBFDQHukJquD3MTxkjJaM",
expected_client_id: "0445db36-5826-41af-84f6-e09402fc6171".parse().unwrap(),
expected_secret_key: "a0c11434-07ba-426a-b83d-cc4f192325a3".parse().unwrap(),
},
] {
let app_password: AppPassword = tc.input.parse().unwrap();
assert_eq!(app_password.to_string(), tc.expected_output);
assert_eq!(app_password.client_id, tc.expected_client_id);
assert_eq!(app_password.secret_key, tc.expected_secret_key);
}
}
}