package core import ( "fmt" "github.com/google/uuid" "log" "os" ) type NKodeAPI struct { Db DbAccessor SignupSessions map[SessionId]UserSignSession EmailQueue *EmailQueue } func NewNKodeAPI(db DbAccessor, queue *EmailQueue) NKodeAPI { return NKodeAPI{ Db: db, SignupSessions: make(map[SessionId]UserSignSession), EmailQueue: queue, } } func (n *NKodeAPI) CreateNewCustomer(nkodePolicy NKodePolicy, id *CustomerId) (*CustomerId, error) { newCustomer, err := NewCustomer(nkodePolicy) if id != nil { newCustomer.Id = *id } if err != nil { return nil, err } err = n.Db.WriteNewCustomer(*newCustomer) if err != nil { return nil, err } return &newCustomer.Id, nil } func (n *NKodeAPI) GenerateSignupResetInterface(userEmail UserEmail, customerId CustomerId, kp KeypadDimension, reset bool) (*GenerateSignupResetInterfaceResp, error) { user, err := n.Db.GetUser(userEmail, customerId) if err != nil { return nil, err } if user != nil && !reset { log.Printf("user %s already exists", string(userEmail)) return nil, ErrUserAlreadyExists } svgIdxInterface, err := n.Db.RandomSvgIdxInterface(kp) if err != nil { return nil, err } signupSession, err := NewSignupResetSession(userEmail, kp, customerId, svgIdxInterface, reset) if err != nil { return nil, err } n.SignupSessions[signupSession.Id] = *signupSession svgInterface, err := n.Db.GetSvgStringInterface(signupSession.LoginUserInterface.SvgId) if err != nil { return nil, err } resp := GenerateSignupResetInterfaceResp{ UserIdxInterface: signupSession.SetIdxInterface, SvgInterface: svgInterface, SessionId: uuid.UUID(signupSession.Id).String(), } return &resp, nil } func (n *NKodeAPI) SetNKode(customerId CustomerId, sessionId SessionId, keySelection KeySelection) (IdxInterface, error) { _, err := n.Db.GetCustomer(customerId) if err != nil { return nil, err } session, exists := n.SignupSessions[sessionId] if !exists { log.Printf("session id does not exist %s", sessionId) return nil, ErrSignupSessionDNE } confirmInterface, err := session.SetUserNKode(keySelection) if err != nil { return nil, err } n.SignupSessions[sessionId] = session return confirmInterface, nil } func (n *NKodeAPI) ConfirmNKode(customerId CustomerId, sessionId SessionId, keySelection KeySelection) error { session, exists := n.SignupSessions[sessionId] if !exists { log.Printf("session id does not exist %s", sessionId) return ErrSignupSessionDNE } customer, err := n.Db.GetCustomer(customerId) if err != nil { return err } passcode, err := session.DeducePasscode(keySelection) if err != nil { return err } err = customer.IsValidNKode(session.Kp, passcode) if err != nil { return err } user, err := NewUser(*customer, string(session.UserEmail), passcode, session.LoginUserInterface, session.Kp) if err != nil { return err } if session.Reset { err = n.Db.UpdateUserNKode(*user) } else { err = n.Db.WriteNewUser(*user) } delete(n.SignupSessions, session.Id) return err } func (n *NKodeAPI) GetLoginInterface(userEmail UserEmail, customerId CustomerId) (*GetLoginInterfaceResp, error) { user, err := n.Db.GetUser(userEmail, customerId) if err != nil { return nil, err } if user == nil { log.Printf("user %s for customer %s dne", userEmail, customerId) return nil, ErrUserForCustomerDNE } err = user.Interface.PartialInterfaceShuffle() if err != nil { return nil, err } err = n.Db.UpdateUserInterface(user.Id, user.Interface) if err != nil { return nil, err } svgInterface, err := n.Db.GetSvgStringInterface(user.Interface.SvgId) if err != nil { return nil, err } resp := GetLoginInterfaceResp{ UserIdxInterface: user.Interface.IdxInterface, SvgInterface: svgInterface, NumbOfKeys: user.Kp.NumbOfKeys, AttrsPerKey: user.Kp.AttrsPerKey, } return &resp, nil } func (n *NKodeAPI) Login(customerId CustomerId, userEmail UserEmail, keySelection KeySelection) (*AuthenticationTokens, error) { customer, err := n.Db.GetCustomer(customerId) if err != nil { return nil, err } user, err := n.Db.GetUser(userEmail, customerId) if err != nil { return nil, err } if user == nil { log.Printf("user %s for customer %s dne", userEmail, customerId) return nil, ErrUserForCustomerDNE } passcode, err := ValidKeyEntry(*user, *customer, keySelection) if err != nil { return nil, err } if user.Renew { err = n.Db.RefreshUserPasscode(*user, passcode, customer.Attributes) if err != nil { return nil, err } } jwtToken, err := NewAuthenticationTokens(string(user.Email), customerId) if err != nil { return nil, err } err = n.Db.UpdateUserRefreshToken(user.Id, jwtToken.RefreshToken) if err != nil { return nil, err } return &jwtToken, nil } func (n *NKodeAPI) RenewAttributes(customerId CustomerId) error { return n.Db.Renew(customerId) } func (n *NKodeAPI) RandomSvgInterface() ([]string, error) { return n.Db.RandomSvgInterface(KeypadMax) } func (n *NKodeAPI) GetSvgStringInterface(svgId SvgIdInterface) ([]string, error) { return n.Db.GetSvgStringInterface(svgId) } func (n *NKodeAPI) RefreshToken(userEmail UserEmail, customerId CustomerId, refreshToken string) (string, error) { user, err := n.Db.GetUser(userEmail, customerId) if err != nil { return "", err } if user == nil { log.Printf("user %s for customer %s dne", userEmail, customerId) return "", ErrUserForCustomerDNE } if user.RefreshToken != refreshToken { return "", ErrRefreshTokenInvalid } refreshClaims, err := ParseRegisteredClaimToken(refreshToken) if err != nil { return "", err } if err = ClaimExpired(*refreshClaims); err != nil { return "", err } newAccessClaims := NewAccessClaim(string(userEmail), customerId) return EncodeAndSignClaims(newAccessClaims) } func (n *NKodeAPI) ResetNKode(userEmail UserEmail, customerId CustomerId) error { user, err := n.Db.GetUser(userEmail, customerId) if err != nil { return fmt.Errorf("error getting user in rest nkode %v", err) } if user == nil { return nil } nkodeResetJwt, err := ResetNKodeToken(userEmail, customerId) if err != nil { return err } frontendHost := os.Getenv("FRONTEND_HOST") if frontendHost == "" { frontendHost = FrontendHost } htmlBody := fmt.Sprintf("

Hello!

Click the link to reset your nKode.

Reset nKode", frontendHost, nkodeResetJwt) email := Email{ Sender: "no-reply@nkode.tech", Recipient: string(userEmail), Subject: "nKode Reset", Content: htmlBody, } n.EmailQueue.AddEmail(email) return nil }