initial commit
This commit is contained in:
@@ -0,0 +1,32 @@
|
||||
package de.walamana
|
||||
|
||||
import de.walamana.plugins.*
|
||||
import de.walamana.views.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.engine.*
|
||||
import io.ktor.server.netty.*
|
||||
import io.ktor.server.routing.*
|
||||
|
||||
//fun main() {
|
||||
// embeddedServer(Netty, port = 8080, host = "0.0.0.0", module = Application::module)
|
||||
// .start(wait = true)
|
||||
//}
|
||||
|
||||
fun main(args: Array<String>): Unit = EngineMain.main(args)
|
||||
|
||||
fun Application.module() {
|
||||
configureSecurity()
|
||||
configureHTTP()
|
||||
configureSerialization()
|
||||
configureDatabases()
|
||||
|
||||
routing {
|
||||
route("/api") {
|
||||
configureMinistrantenRoutes()
|
||||
configureGottesdiensteRoutes()
|
||||
configureMarksView()
|
||||
configurePlanRoutes()
|
||||
configureAuthenticationRoutes()
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,75 @@
|
||||
package de.walamana.models
|
||||
|
||||
import de.walamana.plugins.DateAsLong
|
||||
import de.walamana.plugins.dbQuery
|
||||
import kotlinx.serialization.Serializable
|
||||
import org.jetbrains.exposed.sql.*
|
||||
import org.jetbrains.exposed.sql.SqlExpressionBuilder.eq
|
||||
import java.util.Date
|
||||
|
||||
@Serializable
|
||||
data class Gottesdienst(
|
||||
val id: Int,
|
||||
val name: String,
|
||||
val date: DateAsLong,
|
||||
val attendance: DateAsLong,
|
||||
val planId: Int
|
||||
)
|
||||
|
||||
object Gottesdienste : Table() {
|
||||
val id = integer("id").autoIncrement()
|
||||
val name = varchar("name", 128).default("")
|
||||
val date = long("date")
|
||||
val attendance = long("attendance")
|
||||
val planId = integer("planId")
|
||||
|
||||
override val primaryKey = PrimaryKey(id, planId)
|
||||
}
|
||||
|
||||
object GottesdiensteDao {
|
||||
|
||||
private fun resultRowToGottesdienst(row: ResultRow) = Gottesdienst(
|
||||
row[Gottesdienste.id],
|
||||
row[Gottesdienste.name],
|
||||
Date(row[Gottesdienste.date]),
|
||||
Date(row[Gottesdienste.attendance]),
|
||||
row[Gottesdienste.planId]
|
||||
)
|
||||
|
||||
suspend fun allGottesdienste(): List<Gottesdienst> = dbQuery {
|
||||
Gottesdienste.selectAll().map(::resultRowToGottesdienst)
|
||||
}
|
||||
|
||||
suspend fun getGottesdiensteForPlan(planId: Int): List<Gottesdienst> = dbQuery {
|
||||
Gottesdienste.select { Gottesdienste.planId eq planId }.map(::resultRowToGottesdienst)
|
||||
}
|
||||
|
||||
suspend fun createGottesdienst(name: String, date: Date, attendance: Date, planId: Int): Gottesdienst? = dbQuery {
|
||||
val statement = Gottesdienste.insert {
|
||||
it[Gottesdienste.name] = name
|
||||
it[Gottesdienste.date] = date.time
|
||||
it[Gottesdienste.attendance] = attendance.time
|
||||
it[Gottesdienste.planId] = planId
|
||||
}
|
||||
statement.resultedValues?.singleOrNull()?.let(::resultRowToGottesdienst)
|
||||
}
|
||||
|
||||
suspend fun deleteGottesdienst(id: Int): Boolean = dbQuery {
|
||||
Gottesdienste.deleteWhere { Gottesdienste.id eq id } > 0
|
||||
}
|
||||
|
||||
suspend fun updateGottesdienst(
|
||||
id: Int,
|
||||
name: String? = null,
|
||||
date: Date? = null,
|
||||
attendance: Date? = null,
|
||||
planId: Int? = null
|
||||
): Boolean = dbQuery {
|
||||
Gottesdienste.update({ Gottesdienste.id eq id }) {
|
||||
if (name != null) it[Gottesdienste.name] = name
|
||||
if (date != null) it[Gottesdienste.date] = date.time
|
||||
if (attendance != null) it[Gottesdienste.attendance] = attendance.time
|
||||
if (planId != null) it[Gottesdienste.planId] = planId
|
||||
} > 0
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,54 @@
|
||||
package de.walamana.models
|
||||
|
||||
import de.walamana.plugins.dbQuery
|
||||
import kotlinx.serialization.Serializable
|
||||
import org.jetbrains.exposed.sql.*
|
||||
import org.jetbrains.exposed.sql.SqlExpressionBuilder.eq
|
||||
|
||||
@Serializable
|
||||
data class Mark(
|
||||
val mid: Int,
|
||||
val gid: Int,
|
||||
val value: Int
|
||||
)
|
||||
|
||||
object Marks : Table() {
|
||||
val mid = integer("mid")
|
||||
.references(Ministranten.id);
|
||||
val gid = integer("gid")
|
||||
.references(Gottesdienste.id);
|
||||
val value = integer("value");
|
||||
|
||||
override val primaryKey = PrimaryKey(mid, gid)
|
||||
}
|
||||
|
||||
object MarksDao {
|
||||
|
||||
private fun resultRowToMark(row: ResultRow) = Mark(
|
||||
row[Marks.mid],
|
||||
row[Marks.gid],
|
||||
row[Marks.value]
|
||||
)
|
||||
|
||||
suspend fun allMarksForPlan(planId: Int): List<Mark> = dbQuery {
|
||||
Gottesdienste.join(Marks, JoinType.INNER, onColumn = Marks.gid, otherColumn = Gottesdienste.id)
|
||||
.select { Gottesdienste.planId eq planId }
|
||||
.map(::resultRowToMark)
|
||||
}
|
||||
|
||||
suspend fun setMark(ministrantId: Int, gottesdienstId: Int, value: Int): Boolean = dbQuery {
|
||||
Marks.insert {
|
||||
it[Marks.mid] = ministrantId
|
||||
it[Marks.gid] = gottesdienstId
|
||||
it[Marks.value] = value
|
||||
}.resultedValues?.isNotEmpty() ?: false
|
||||
}
|
||||
|
||||
suspend fun removeMark(ministrantId: Int, gottesdienstId: Int): Boolean = dbQuery {
|
||||
Marks.deleteWhere {
|
||||
(Marks.gid eq gottesdienstId) and
|
||||
(Marks.mid eq ministrantId)
|
||||
} > 0
|
||||
}
|
||||
|
||||
}
|
||||
@@ -0,0 +1,108 @@
|
||||
package de.walamana.models
|
||||
|
||||
import de.walamana.plugins.*
|
||||
import kotlinx.serialization.Contextual
|
||||
import kotlinx.serialization.KSerializer
|
||||
import kotlinx.serialization.Serializable
|
||||
import kotlinx.serialization.descriptors.PrimitiveKind
|
||||
import kotlinx.serialization.descriptors.PrimitiveSerialDescriptor
|
||||
import kotlinx.serialization.descriptors.SerialDescriptor
|
||||
import kotlinx.serialization.encoding.Decoder
|
||||
import kotlinx.serialization.encoding.Encoder
|
||||
import org.jetbrains.exposed.sql.*
|
||||
import org.jetbrains.exposed.sql.SqlExpressionBuilder.eq
|
||||
import java.util.*
|
||||
|
||||
@Serializable
|
||||
data class Ministrant(
|
||||
val id: Int,
|
||||
val username: String,
|
||||
val passwordHash: String,
|
||||
val firstname: String,
|
||||
val lastname: String,
|
||||
val birthday: DateAsLong,
|
||||
val privileges: CommaSeperatedStringList
|
||||
)
|
||||
|
||||
@Serializable
|
||||
data class SimplifiedMinistrant(
|
||||
val id: Int,
|
||||
val firstname: String,
|
||||
val lastname: String
|
||||
)
|
||||
|
||||
object Ministranten : Table() {
|
||||
val id = integer("id").autoIncrement()
|
||||
val username = varchar("username", 128)
|
||||
val passwordHash = varchar("passwordHash", 1024)
|
||||
val firstname = varchar("firstname", 128)
|
||||
val lastname = varchar("lastname", 128)
|
||||
val birthday = long("birthday")
|
||||
val privileges = varchar("privileges", 1024)
|
||||
|
||||
override val primaryKey = PrimaryKey(id)
|
||||
}
|
||||
|
||||
object MinistrantenDao {
|
||||
private fun resultRowToMinistrant(row: ResultRow, showPasswordHash: Boolean = false) = Ministrant (
|
||||
row[Ministranten.id],
|
||||
row[Ministranten.username],
|
||||
if(showPasswordHash) row[Ministranten.passwordHash] else "",
|
||||
row[Ministranten.firstname],
|
||||
row[Ministranten.lastname],
|
||||
Date(row[Ministranten.birthday]),
|
||||
row[Ministranten.privileges].split(",")
|
||||
)
|
||||
|
||||
suspend fun allMinistranten(): List<Ministrant> = dbQuery {
|
||||
Ministranten.selectAll().map(::resultRowToMinistrant)
|
||||
}
|
||||
|
||||
suspend fun simplifiedMinistranten(): List<SimplifiedMinistrant> = dbQuery {
|
||||
Ministranten.selectAll().map { row ->
|
||||
SimplifiedMinistrant(row[Ministranten.id], row[Ministranten.firstname], row[Ministranten.lastname])
|
||||
}
|
||||
}
|
||||
|
||||
suspend fun getMinistrant(username: String, showPasswordHash: Boolean = false): Ministrant? = dbQuery {
|
||||
Ministranten.select(Ministranten.username eq username).map {
|
||||
resultRowToMinistrant(it, showPasswordHash)
|
||||
}.firstOrNull()
|
||||
}
|
||||
|
||||
suspend fun createMinistrant(username: String, passwordHash: String, firstname: String, lastname: String, birthday: Date, privileges: List<String>) = dbQuery {
|
||||
val statement = Ministranten.insert {
|
||||
it[Ministranten.username] = username
|
||||
it[Ministranten.passwordHash] = ""
|
||||
it[Ministranten.firstname] = firstname
|
||||
it[Ministranten.lastname] = lastname
|
||||
it[Ministranten.birthday] = birthday.time
|
||||
it[Ministranten.privileges] = privileges.joinToString(",")
|
||||
}
|
||||
Security.setPassword(username, passwordHash)
|
||||
statement.resultedValues?.singleOrNull()?.let(::resultRowToMinistrant)
|
||||
}
|
||||
|
||||
suspend fun deleteMinistrant(id: Int): Boolean = dbQuery {
|
||||
Ministranten.deleteWhere { Ministranten.id eq id } > 0
|
||||
}
|
||||
|
||||
suspend fun updateMinistrant(
|
||||
id: Int,
|
||||
username: String? = null,
|
||||
passwordHash: String? = null,
|
||||
firstname: String? = null,
|
||||
lastname: String? = null,
|
||||
birthday: Date? = null,
|
||||
privileges: List<String>? = null
|
||||
) = dbQuery{
|
||||
Ministranten.update({Ministranten.id eq id}) {
|
||||
if(username != null) it[Ministranten.username] = username
|
||||
if(passwordHash != null) it[Ministranten.passwordHash] = passwordHash
|
||||
if(firstname != null) it[Ministranten.firstname] = firstname
|
||||
if(lastname != null) it[Ministranten.lastname] = lastname
|
||||
if(birthday != null) it[Ministranten.birthday] = birthday.time
|
||||
if(privileges != null) it[Ministranten.privileges] = privileges.joinToString(",")
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,26 @@
|
||||
package de.walamana.plugins
|
||||
|
||||
import de.walamana.models.Gottesdienste
|
||||
import de.walamana.models.Marks
|
||||
import de.walamana.models.Ministranten
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.routing.*
|
||||
import kotlinx.coroutines.Dispatchers
|
||||
import org.jetbrains.exposed.sql.*
|
||||
import org.jetbrains.exposed.sql.transactions.experimental.newSuspendedTransaction
|
||||
import org.jetbrains.exposed.sql.transactions.transaction
|
||||
|
||||
fun Application.configureDatabases() {
|
||||
val driverClassName = "org.h2.Driver"
|
||||
val jdbcURL = "jdbc:h2:file:./build/db"
|
||||
val database = Database.connect(jdbcURL, driverClassName)
|
||||
|
||||
transaction {
|
||||
SchemaUtils.create(Gottesdienste)
|
||||
SchemaUtils.create(Ministranten)
|
||||
SchemaUtils.create(Marks)
|
||||
}
|
||||
}
|
||||
|
||||
suspend fun <T> dbQuery(block: suspend () -> T): T =
|
||||
newSuspendedTransaction(Dispatchers.IO) { block() }
|
||||
@@ -0,0 +1,20 @@
|
||||
package de.walamana.plugins
|
||||
|
||||
import io.ktor.http.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.plugins.cors.routing.*
|
||||
|
||||
fun Application.configureHTTP() {
|
||||
install(CORS) {
|
||||
allowMethod(HttpMethod.Options)
|
||||
allowMethod(HttpMethod.Put)
|
||||
allowMethod(HttpMethod.Delete)
|
||||
allowMethod(HttpMethod.Patch)
|
||||
allowMethod(HttpMethod.Options)
|
||||
allowHeader(HttpHeaders.Authorization)
|
||||
allowHeader(HttpHeaders.AccessControlAllowOrigin)
|
||||
allowNonSimpleContentTypes = true
|
||||
// allowHeader("MyCustomHeader")
|
||||
anyHost() // @TODO: Don't do this in production if possible. Try to limit it.
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,102 @@
|
||||
package de.walamana.plugins
|
||||
|
||||
import at.favre.lib.crypto.bcrypt.BCrypt
|
||||
import com.auth0.jwt.JWT
|
||||
import com.auth0.jwt.algorithms.Algorithm
|
||||
import com.auth0.jwt.interfaces.Payload
|
||||
import de.walamana.models.Ministrant
|
||||
import de.walamana.models.MinistrantenDao
|
||||
import io.ktor.http.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.auth.*
|
||||
import io.ktor.server.auth.jwt.*
|
||||
import io.ktor.server.response.*
|
||||
import io.ktor.server.routing.*
|
||||
import io.ktor.server.sessions.*
|
||||
import java.util.*
|
||||
|
||||
|
||||
const val SALT_ROUNDS = 10;
|
||||
data class JWTEnvironment(
|
||||
val secret: String,
|
||||
val issuer: String,
|
||||
val audience: String,
|
||||
)
|
||||
|
||||
fun Application.configureSecurity() {
|
||||
val jwtEnv = getJWTEnvironment()
|
||||
authentication {
|
||||
jwt() {
|
||||
verifier(
|
||||
JWT
|
||||
.require(Algorithm.HMAC256(jwtEnv.secret))
|
||||
.withAudience(jwtEnv.audience)
|
||||
.withIssuer(jwtEnv.issuer)
|
||||
.build()
|
||||
)
|
||||
validate { credential ->
|
||||
if (credential.payload.audience.contains(jwtEnv.audience)) JWTPrincipal(credential.payload) else null
|
||||
}
|
||||
challenge { _, _ ->
|
||||
call.respond(HttpStatusCode.Unauthorized, hashMapOf("msg" to "Token is not valid or has expired"))
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
}
|
||||
|
||||
fun Application.getJWTEnvironment(): JWTEnvironment{
|
||||
|
||||
val secret = environment.config.property("jwt.secret").getString()
|
||||
val issuer = environment.config.property("jwt.issuer").getString()
|
||||
val audience = environment.config.property("jwt.audience").getString()
|
||||
return JWTEnvironment(secret, issuer, audience)
|
||||
}
|
||||
|
||||
fun Payload.username() = getClaim("username").asString()
|
||||
fun Payload.mid() = getClaim("id").asInt()
|
||||
|
||||
|
||||
object Security {
|
||||
suspend fun authenticateUser(application: Application, username: String, password: String): Ministrant? {
|
||||
if(username == "admin") {
|
||||
val adminPw = application.environment.config.property("admin.password").getString()
|
||||
if(adminPw == password) {
|
||||
val allMinis = MinistrantenDao.allMinistranten().map { it.username }
|
||||
return Ministrant(
|
||||
0, "admin", "", "admin", "admin", Date(), allMinis
|
||||
)
|
||||
}
|
||||
return null
|
||||
}
|
||||
|
||||
val ministrant = MinistrantenDao.getMinistrant(username, true)
|
||||
?: return null
|
||||
|
||||
if(!BCrypt.verifyer().verify(password.toCharArray(), ministrant.passwordHash).verified) {
|
||||
return null
|
||||
}
|
||||
|
||||
return ministrant
|
||||
}
|
||||
|
||||
suspend fun setPassword(username: String, password: String): Boolean {
|
||||
val ministrant = MinistrantenDao.getMinistrant(username) ?: return false
|
||||
|
||||
val hash = BCrypt.withDefaults().hashToString(SALT_ROUNDS, password.toCharArray())
|
||||
|
||||
print(hash)
|
||||
|
||||
MinistrantenDao.updateMinistrant(ministrant.id, passwordHash = hash)
|
||||
|
||||
return true
|
||||
}
|
||||
|
||||
fun createToken(jwtEnv: JWTEnvironment, ministrant: Ministrant) = JWT.create()
|
||||
.withAudience(jwtEnv.audience)
|
||||
.withIssuer(jwtEnv.issuer)
|
||||
.withClaim("username", ministrant.username)
|
||||
.withClaim("id", ministrant.id)
|
||||
.withExpiresAt(Date(System.currentTimeMillis() + 1000*60*60))
|
||||
.sign(Algorithm.HMAC256(jwtEnv.secret))
|
||||
}
|
||||
@@ -0,0 +1,66 @@
|
||||
package de.walamana.plugins
|
||||
|
||||
import io.ktor.serialization.kotlinx.json.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.plugins.contentnegotiation.*
|
||||
import io.ktor.server.response.*
|
||||
import io.ktor.server.routing.*
|
||||
import kotlinx.serialization.KSerializer
|
||||
import kotlinx.serialization.Serializable
|
||||
import kotlinx.serialization.descriptors.PrimitiveKind
|
||||
import kotlinx.serialization.descriptors.PrimitiveSerialDescriptor
|
||||
import kotlinx.serialization.descriptors.SerialDescriptor
|
||||
import kotlinx.serialization.encoding.Decoder
|
||||
import kotlinx.serialization.encoding.Encoder
|
||||
import kotlinx.serialization.json.Json
|
||||
import java.util.*
|
||||
|
||||
fun Application.configureSerialization() {
|
||||
install(ContentNegotiation) {
|
||||
json(Json {
|
||||
prettyPrint = true
|
||||
})
|
||||
|
||||
}
|
||||
|
||||
routing {
|
||||
get("/json/kotlinx-serialization") {
|
||||
println("Test")
|
||||
// call.respond("Test")
|
||||
call.respond(mapOf("hello" to "world"))
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
typealias CommaSeperatedStringList = @Serializable(StringListAsCommaSeperatedString::class) List<String>;
|
||||
|
||||
object StringListAsCommaSeperatedString : KSerializer<List<String>> {
|
||||
override val descriptor: SerialDescriptor
|
||||
= PrimitiveSerialDescriptor("List<String>", PrimitiveKind.STRING)
|
||||
|
||||
override fun deserialize(decoder: Decoder): List<String> {
|
||||
return decoder.decodeString().split(",")
|
||||
}
|
||||
|
||||
override fun serialize(encoder: Encoder, value: List<String>) {
|
||||
encoder.encodeString(value.joinToString(","))
|
||||
}
|
||||
|
||||
}
|
||||
|
||||
|
||||
typealias DateAsLong = @Serializable(DateAsLongSerializer::class) Date
|
||||
object DateAsLongSerializer : KSerializer<Date> {
|
||||
override val descriptor: SerialDescriptor
|
||||
= PrimitiveSerialDescriptor("Date", PrimitiveKind.LONG)
|
||||
|
||||
override fun serialize(encoder: Encoder, value: Date) {
|
||||
encoder.encodeLong(value.time)
|
||||
}
|
||||
|
||||
override fun deserialize(decoder: Decoder): Date {
|
||||
return Date(decoder.decodeLong())
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,59 @@
|
||||
package de.walamana.plugins
|
||||
|
||||
import org.jetbrains.exposed.sql.transactions.transaction
|
||||
import org.jetbrains.exposed.sql.transactions.experimental.newSuspendedTransaction
|
||||
import org.jetbrains.exposed.sql.SqlExpressionBuilder.eq
|
||||
import kotlinx.serialization.Serializable
|
||||
import kotlinx.coroutines.Dispatchers
|
||||
import org.jetbrains.exposed.sql.*
|
||||
|
||||
@Serializable
|
||||
data class ExposedUser(val name: String, val age: Int)
|
||||
class UserService(private val database: Database) {
|
||||
object Users : Table() {
|
||||
val id = integer("id").autoIncrement()
|
||||
val name = varchar("name", length = 50)
|
||||
val age = integer("age")
|
||||
|
||||
override val primaryKey = PrimaryKey(id)
|
||||
}
|
||||
|
||||
init {
|
||||
transaction(database) {
|
||||
SchemaUtils.create(Users)
|
||||
}
|
||||
}
|
||||
|
||||
suspend fun <T> dbQuery(block: suspend () -> T): T =
|
||||
newSuspendedTransaction(Dispatchers.IO) { block() }
|
||||
|
||||
suspend fun create(user: ExposedUser): Int = dbQuery {
|
||||
Users.insert {
|
||||
it[name] = user.name
|
||||
it[age] = user.age
|
||||
}[Users.id]
|
||||
}
|
||||
|
||||
suspend fun read(id: Int): ExposedUser? {
|
||||
return dbQuery {
|
||||
Users.select { Users.id eq id }
|
||||
.map { ExposedUser(it[Users.name], it[Users.age]) }
|
||||
.singleOrNull()
|
||||
}
|
||||
}
|
||||
|
||||
suspend fun update(id: Int, user: ExposedUser) {
|
||||
dbQuery {
|
||||
Users.update({ Users.id eq id }) {
|
||||
it[name] = user.name
|
||||
it[age] = user.age
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
suspend fun delete(id: Int) {
|
||||
dbQuery {
|
||||
Users.deleteWhere { Users.id.eq(id) }
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,24 @@
|
||||
package de.walamana.service
|
||||
|
||||
import de.walamana.models.*
|
||||
import kotlinx.serialization.Serializable
|
||||
|
||||
|
||||
@Serializable
|
||||
data class Plan (
|
||||
val gottesdienste: List<Gottesdienst>,
|
||||
val ministranten: List<SimplifiedMinistrant>,
|
||||
val marks: List<Mark>
|
||||
)
|
||||
|
||||
object PlanDao {
|
||||
|
||||
suspend fun constructPlan(planId: Int): Plan {
|
||||
val gottesdienste = GottesdiensteDao.getGottesdiensteForPlan(planId)
|
||||
val ministranten = MinistrantenDao.simplifiedMinistranten()
|
||||
val marks = MarksDao.allMarksForPlan(planId)
|
||||
|
||||
return Plan(gottesdienste, ministranten, marks)
|
||||
}
|
||||
|
||||
}
|
||||
@@ -0,0 +1,89 @@
|
||||
package de.walamana.views
|
||||
|
||||
import at.favre.lib.crypto.bcrypt.BCrypt
|
||||
import com.auth0.jwt.JWT
|
||||
import com.auth0.jwt.algorithms.Algorithm
|
||||
import de.walamana.models.MinistrantenDao
|
||||
import de.walamana.plugins.Security
|
||||
import de.walamana.plugins.getJWTEnvironment
|
||||
import de.walamana.plugins.mid
|
||||
import de.walamana.plugins.username
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.auth.*
|
||||
import io.ktor.server.auth.jwt.*
|
||||
import io.ktor.server.request.*
|
||||
import io.ktor.server.response.*
|
||||
import io.ktor.server.routing.*
|
||||
import kotlinx.serialization.Serializable
|
||||
import java.util.*
|
||||
import kotlin.math.max
|
||||
import kotlin.math.min
|
||||
|
||||
@Serializable
|
||||
data class AuthenticationRequest(
|
||||
val username: String,
|
||||
val password: String
|
||||
)
|
||||
|
||||
@Serializable
|
||||
data class AuthenticationResult(
|
||||
val success: Boolean,
|
||||
val token: String? = null
|
||||
)
|
||||
|
||||
@Serializable
|
||||
data class AuthenticationUpdateRequest(
|
||||
val newPassword: String
|
||||
)
|
||||
|
||||
@Serializable
|
||||
data class PasswordResetRequest(
|
||||
val username: String
|
||||
)
|
||||
|
||||
fun Route.configureAuthenticationRoutes() {
|
||||
route("/auth") {
|
||||
post {
|
||||
val request = call.receive<AuthenticationRequest>()
|
||||
val jwtEnv = application.getJWTEnvironment();
|
||||
|
||||
val ministrant = Security.authenticateUser(application, request.username, request.password)
|
||||
if(ministrant == null){
|
||||
call.respond(AuthenticationResult(false))
|
||||
return@post
|
||||
}
|
||||
|
||||
val token = Security.createToken(jwtEnv, ministrant)
|
||||
|
||||
call.respond(AuthenticationResult(true, token.toString()))
|
||||
}
|
||||
|
||||
authenticate {
|
||||
put("update") {
|
||||
val principal = call.principal<JWTPrincipal>()!!
|
||||
val request = call.receive<AuthenticationUpdateRequest>()
|
||||
|
||||
Security.setPassword(principal.payload.username(), request.newPassword)
|
||||
|
||||
call.respond(hashMapOf("success" to true))
|
||||
}
|
||||
post("reset") {
|
||||
val principal = call.principal<JWTPrincipal>()!!
|
||||
if(principal.payload.username() != "admin") {
|
||||
// TODO: fail
|
||||
return@post
|
||||
}
|
||||
val request = call.receive<PasswordResetRequest>()
|
||||
val newPassword = BCrypt.withDefaults()
|
||||
.hash(Math.random().toInt() * 3 + 4, Math.random().toString().toCharArray())
|
||||
.toString().substring(3..10);
|
||||
|
||||
Security.setPassword(request.username, newPassword)
|
||||
|
||||
call.respond(hashMapOf("password" to newPassword))
|
||||
|
||||
|
||||
}
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,47 @@
|
||||
package de.walamana.views
|
||||
|
||||
import de.walamana.models.Gottesdienst
|
||||
import de.walamana.models.Gottesdienste
|
||||
import de.walamana.models.GottesdiensteDao
|
||||
import io.ktor.http.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.request.*
|
||||
import io.ktor.server.response.*
|
||||
import io.ktor.server.routing.*
|
||||
import io.ktor.server.util.*
|
||||
|
||||
fun Route.configureGottesdiensteRoutes() {
|
||||
route("/gottesdienste") {
|
||||
get {
|
||||
val data = GottesdiensteDao.allGottesdienste()
|
||||
call.respond(data)
|
||||
}
|
||||
put {
|
||||
val data = call.receive<Gottesdienst>()
|
||||
val gottesdienst = GottesdiensteDao.createGottesdienst(
|
||||
data.name,
|
||||
data.date,
|
||||
data.attendance,
|
||||
data.planId
|
||||
)
|
||||
call.respond(mapOf("id" to gottesdienst?.id))
|
||||
}
|
||||
patch {
|
||||
// TODO: Access only by admin
|
||||
val data = call.receive<Gottesdienst>()
|
||||
val changed = GottesdiensteDao.updateGottesdienst(
|
||||
data.id,
|
||||
data.name,
|
||||
data.date,
|
||||
data.attendance,
|
||||
data.planId
|
||||
)
|
||||
call.respond(HttpStatusCode.OK)
|
||||
}
|
||||
delete {
|
||||
val id = call.request.queryParameters["id"]?.toInt() ?: TODO("fail")
|
||||
GottesdiensteDao.deleteGottesdienst(id)
|
||||
call.respond(HttpStatusCode.OK)
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,41 @@
|
||||
package de.walamana.views
|
||||
|
||||
import de.walamana.models.*
|
||||
import io.ktor.http.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.request.*
|
||||
import io.ktor.server.response.*
|
||||
import io.ktor.server.routing.*
|
||||
import io.ktor.server.util.*
|
||||
|
||||
fun Route.configureMarksView() {
|
||||
route("/marks") {
|
||||
get {
|
||||
val data = MarksDao.allMarksForPlan(call.receiveParameters().getOrFail("id").toInt())
|
||||
call.respond(data)
|
||||
}
|
||||
put {
|
||||
val data = call.receive<Mark>()
|
||||
val mark = MarksDao.setMark(
|
||||
data.mid,
|
||||
data.gid,
|
||||
data.value
|
||||
)
|
||||
call.respond(HttpStatusCode.OK)
|
||||
}
|
||||
patch {
|
||||
// TODO: Access only by admin
|
||||
val data = call.receive<Mark>()
|
||||
val changed = MarksDao.setMark(
|
||||
data.mid,
|
||||
data.gid,
|
||||
data.value
|
||||
)
|
||||
call.respond(HttpStatusCode.OK)
|
||||
}
|
||||
delete {
|
||||
GottesdiensteDao.deleteGottesdienst(call.receiveParameters().getOrFail("id").toInt())
|
||||
call.respond(HttpStatusCode.OK)
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,50 @@
|
||||
package de.walamana.views
|
||||
|
||||
import de.walamana.models.Ministrant
|
||||
import de.walamana.models.MinistrantenDao
|
||||
import io.ktor.http.*
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.request.*
|
||||
import io.ktor.server.response.*
|
||||
import io.ktor.server.routing.*
|
||||
import io.ktor.server.util.*
|
||||
|
||||
fun Route.configureMinistrantenRoutes() {
|
||||
route("/ministranten") {
|
||||
get {
|
||||
val data = MinistrantenDao.allMinistranten();
|
||||
call.respond(data)
|
||||
}
|
||||
put {
|
||||
val data = call.receive<Ministrant>()
|
||||
val ministrant = MinistrantenDao.createMinistrant(
|
||||
data.username,
|
||||
data.passwordHash,
|
||||
data.firstname,
|
||||
data.lastname,
|
||||
data.birthday,
|
||||
data.privileges
|
||||
)
|
||||
call.respond(mapOf("id" to ministrant?.id))
|
||||
}
|
||||
patch {
|
||||
// TODO: Access only by admin
|
||||
val data = call.receive<Ministrant>()
|
||||
val changed = MinistrantenDao.updateMinistrant(
|
||||
data.id,
|
||||
data.username,
|
||||
data.passwordHash,
|
||||
data.firstname,
|
||||
data.lastname,
|
||||
data.birthday,
|
||||
data.privileges
|
||||
)
|
||||
call.respond(HttpStatusCode.OK)
|
||||
}
|
||||
delete {
|
||||
val id = call.request.queryParameters["id"]?.toInt() ?: TODO("fail")
|
||||
MinistrantenDao.deleteMinistrant(id)
|
||||
call.respond(HttpStatusCode.OK)
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,18 @@
|
||||
package de.walamana.views
|
||||
|
||||
import de.walamana.service.PlanDao
|
||||
import io.ktor.server.application.*
|
||||
import io.ktor.server.request.*
|
||||
import io.ktor.server.response.*
|
||||
import io.ktor.server.routing.*
|
||||
import io.ktor.server.util.*
|
||||
|
||||
fun Route.configurePlanRoutes() {
|
||||
route("/plan") {
|
||||
get {
|
||||
val id = call.parameters.getOrFail("id").toInt()
|
||||
val plan = PlanDao.constructPlan(id);
|
||||
call.respond(plan)
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,20 @@
|
||||
ktor {
|
||||
development = true
|
||||
deployment {
|
||||
port = 8080
|
||||
}
|
||||
application {
|
||||
modules = [ de.walamana.ApplicationKt.module ]
|
||||
}
|
||||
}
|
||||
|
||||
jwt {
|
||||
secret = ${SECRET}
|
||||
issuer = "http://0.0.0.0:8080/"
|
||||
audience = "http://0.0.0.0:8080/"
|
||||
realm = "mini-data"
|
||||
}
|
||||
|
||||
admin {
|
||||
password = ${ADMIN}
|
||||
}
|
||||
@@ -0,0 +1,12 @@
|
||||
<configuration>
|
||||
<appender name="STDOUT" class="ch.qos.logback.core.ConsoleAppender">
|
||||
<encoder>
|
||||
<pattern>%d{YYYY-MM-dd HH:mm:ss.SSS} [%thread] %-5level %logger{36} - %msg%n</pattern>
|
||||
</encoder>
|
||||
</appender>
|
||||
<root level="trace">
|
||||
<appender-ref ref="STDOUT"/>
|
||||
</root>
|
||||
<logger name="org.eclipse.jetty" level="INFO"/>
|
||||
<logger name="io.netty" level="INFO"/>
|
||||
</configuration>
|
||||
@@ -0,0 +1,7 @@
|
||||
<html>
|
||||
<head>
|
||||
</head>
|
||||
<body>
|
||||
<h1>Hello Ktor!</h1>
|
||||
</body>
|
||||
</html>
|
||||
@@ -0,0 +1,21 @@
|
||||
package de.walamana
|
||||
|
||||
import de.walamana.plugins.*
|
||||
import io.ktor.client.request.*
|
||||
import io.ktor.client.statement.*
|
||||
import io.ktor.http.*
|
||||
import io.ktor.server.testing.*
|
||||
import kotlin.test.*
|
||||
|
||||
class ApplicationTest {
|
||||
@Test
|
||||
fun testRoot() = testApplication {
|
||||
// application {
|
||||
// configureRouting()
|
||||
// }
|
||||
// client.get("/").apply {
|
||||
// assertEquals(HttpStatusCode.OK, status)
|
||||
// assertEquals("Hello World!", bodyAsText())
|
||||
// }
|
||||
}
|
||||
}
|
||||
Reference in New Issue
Block a user