UNPKG

@silvermine/apigateway-utils

Version:

Utility functions for working with AWS API Gateway

342 lines (341 loc) 9.87 kB
<!doctype html> <html lang="en"> <head> <title>Code coverage report for apigateway-utils/src/JWTSecuredRequest.js</title> <meta charset="utf-8" /> <link rel="stylesheet" href="../../prettify.css" /> <link rel="stylesheet" href="../../base.css" /> <meta name="viewport" content="width=device-width, initial-scale=1"> <style type='text/css'> .coverage-summary .sorter { background-image: url(../../sort-arrow-sprite.png); } </style> </head> <body> <div class='wrapper'> <div class='pad1'> <h1> <a href="../../index.html">all files</a> / <a href="index.html">apigateway-utils/src/</a> JWTSecuredRequest.js </h1> <div class='clearfix'> <div class='fl pad1y space-right2'> <span class="strong">100% </span> <span class="quiet">Statements</span> <span class='fraction'>40/40</span> </div> <div class='fl pad1y space-right2'> <span class="strong">100% </span> <span class="quiet">Branches</span> <span class='fraction'>34/34</span> </div> <div class='fl pad1y space-right2'> <span class="strong">100% </span> <span class="quiet">Functions</span> <span class='fraction'>6/6</span> </div> <div class='fl pad1y space-right2'> <span class="strong">100% </span> <span class="quiet">Lines</span> <span class='fraction'>40/40</span> </div> </div> </div> <div class='status-line high'></div> <pre><table class="coverage"> <tr><td class="line-count quiet">1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93</td><td class="line-coverage quiet"><span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes">14×</span> <span class="cline-any cline-yes">14×</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes">33×</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes">11×</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes">11×</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes">15×</span> <span class="cline-any cline-yes">10×</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes">24×</span> <span class="cline-any cline-yes">14×</span> <span class="cline-any cline-yes">10×</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes">21×</span> <span class="cline-any cline-yes">12×</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-yes"></span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span> <span class="cline-any cline-neutral">&nbsp;</span></td><td class="text"><pre class="prettyprint lang-js">'use strict'; &nbsp; var _ = require('underscore'), jwt = require('jwt-simple'), Request = require('./Request'), BEARER_REGEX = /^Bearer /; &nbsp; module.exports = Request.extend({ &nbsp; init: function(evt, context) { this._super(evt, context); this._token = false; }, &nbsp; getToken: function() { return this._token; }, &nbsp; validateAuthorizationHeader: function(publicKey, validationUserOpts) { var rawHeader = this.header('Authorization') || '', rawToken = rawHeader.replace(BEARER_REGEX, ''), validationOpts = _.isObject(validationUserOpts) ? validationUserOpts : {}, decoded; &nbsp; if (_.isEmpty(rawHeader) || _.isEmpty(rawToken)) { this._token = false; return { isValid: false, msg: 'No token supplied in Authorization header' }; } &nbsp; if (!BEARER_REGEX.test(rawHeader)) { this._token = false; return { isValid: false, msg: 'Authorization header not in correct format' }; } &nbsp; try { decoded = jwt.decode(rawToken, publicKey, false, 'RS256'); } catch(err) { this._token = false; return { isValid: false, msg: 'Invalid authorization token', err: err.message }; } &nbsp; decoded = this._validateTokenAudience(decoded, validationOpts.audience); decoded = this._validateTokenIssuer(decoded, validationOpts.issuer); decoded = this._validateRevocationList(decoded, validationOpts.revokedTokenIDs); &nbsp; this._token = decoded; &nbsp; if (this._token === false) { // TODO: add an err message here, which will require changing all the // _validate* functions return { isValid: false, msg: 'Invalid authorization token', err: 'TODO' }; } &nbsp; return { isValid: true }; }, &nbsp; _validateTokenIssuer: function(token, issuer) { if (_.isEmpty(issuer)) { return token; } else if (!_.isObject(token)) { return token; } &nbsp; return token.iss === issuer ? token : false; }, &nbsp; _validateTokenAudience: function(token, intendedAudience) { if (_.isEmpty(intendedAudience)) { return token; } else if (!_.isObject(token)) { return token; } &nbsp; if (_.isArray(token.aud)) { return _.contains(token.aud, intendedAudience) ? token : false; } &nbsp; // audience is a single value: return token.aud === intendedAudience ? token : false; }, &nbsp; _validateRevocationList: function(token, revokedTokenIDs) { if (_.isEmpty(revokedTokenIDs)) { return token; } else if (!_.isObject(token)) { return token; } &nbsp; return _.contains(revokedTokenIDs, token.jti) ? false : token; }, &nbsp; }); &nbsp;</pre></td></tr> </table></pre> <div class='push'></div><!-- for sticky footer --> </div><!-- /wrapper --> <div class='footer quiet pad2 space-top1 center small'> Code coverage generated by <a href="http://istanbul-js.org/" target="_blank">istanbul</a> at Mon Mar 20 2017 10:38:20 GMT-0400 (EDT) </div> </div> <script src="../../prettify.js"></script> <script> window.onload = function () { if (typeof prettyPrint === 'function') { prettyPrint(); } }; </script> <script src="../../sorter.js"></script> </body> </html>