UNPKG

@dgac/nmb2b-client

Version:

EUROCONTROL Network Manager B2B SOAP client

136 lines (134 loc) 3.79 kB
// src/security.ts import invariant from "invariant"; // src/utils/debug.ts import d from "debug"; var PREFIX = "@dgac/nmb2b-client"; var debug = d(PREFIX); function log(ns) { if (!ns) { return debug; } return debug.extend(ns); } var debug_default = log; // src/security.ts import { ClientSSLSecurity, ClientSSLSecurityPFX, BasicAuthSecurity } from "soap"; import fs from "fs"; var debug2 = debug_default("security"); function isValidSecurity(obj) { invariant(!!obj && typeof obj === "object", "Must be an object"); if ("apiKeyId" in obj) { invariant( !!obj.apiKeyId && typeof obj.apiKeyId === "string" && obj.apiKeyId.length > 0, "security.apiKeyId must be a string with a length > 0" ); invariant( "apiSecretKey" in obj && typeof obj.apiSecretKey === "string" && obj.apiSecretKey.length > 0, "security.apiSecretKey must be defined when using security.apiKeyId" ); return true; } invariant( "pfx" in obj && Buffer.isBuffer(obj.pfx) || "cert" in obj && Buffer.isBuffer(obj.cert), "security.pfx or security.cert must be buffers" ); if ("cert" in obj && obj.cert) { invariant( "key" in obj && obj.key && Buffer.isBuffer(obj.key), "security.key must be a buffer if security.pem is defined" ); } return true; } function prepareSecurity(config) { const { security } = config; if ("apiKeyId" in security) { const { apiKeyId, apiSecretKey } = security; debug2("Using ApiGateway security"); return new BasicAuthSecurity(apiKeyId, apiSecretKey); } else if ("pfx" in security) { const { pfx, passphrase } = security; debug2("Using PFX certificates"); return new ClientSSLSecurityPFX(pfx, passphrase); } else if ("cert" in security) { debug2("Using PEM certificates"); const { key, cert, passphrase } = security; return new ClientSSLSecurity( key, cert, void 0, passphrase ? { passphrase } : null ); } throw new Error("Invalid security object"); } var envSecurity; function fromEnv() { if (envSecurity) { return envSecurity; } const { B2B_CERT, B2B_API_KEY_ID, B2B_API_SECRET_KEY } = process.env; if (!B2B_CERT && !B2B_API_KEY_ID) { throw new Error( "Please define a B2B_CERT or a B2B_API_KEY_ID environment variable" ); } if (B2B_API_KEY_ID) { if (!B2B_API_SECRET_KEY) { throw new Error( `When using B2B_API_KEY_ID, a B2B_API_SECRET_KEY must be defined` ); } return { apiKeyId: B2B_API_KEY_ID, apiSecretKey: B2B_API_SECRET_KEY }; } if (!B2B_CERT) { throw new Error("Should never happen"); } if (!fs.existsSync(B2B_CERT)) { throw new Error(`${B2B_CERT} is not a valid certificate file`); } const pfxOrPem = fs.readFileSync(B2B_CERT); if (!process.env.B2B_CERT_FORMAT || process.env.B2B_CERT_FORMAT === "pfx") { envSecurity = { pfx: pfxOrPem, passphrase: process.env.B2B_CERT_PASSPHRASE ?? "" }; return envSecurity; } else if (process.env.B2B_CERT_FORMAT === "pem") { if (!process.env.B2B_CERT_KEY || !fs.existsSync(process.env.B2B_CERT_KEY)) { throw new Error( "Please define a valid B2B_CERT_KEY environment variable" ); } envSecurity = { cert: pfxOrPem, key: fs.readFileSync(process.env.B2B_CERT_KEY) }; if (process.env.B2B_CERT_PASSPHRASE) { envSecurity = { ...envSecurity, passphrase: process.env.B2B_CERT_PASSPHRASE }; return envSecurity; } return envSecurity; } throw new Error("Unsupported B2B_CERT_FORMAT, must be pfx or pem"); } function clearCache() { envSecurity = void 0; } export { clearCache, fromEnv, isValidSecurity, prepareSecurity }; //# sourceMappingURL=security.js.map