homebridge-config-ui-x
Version:
A web based management, configuration and control platform for Homebridge.
60 lines • 2.65 kB
JavaScript
var __decorate = (this && this.__decorate) || function (decorators, target, key, desc) {
var c = arguments.length, r = c < 3 ? target : desc === null ? desc = Object.getOwnPropertyDescriptor(target, key) : desc, d;
if (typeof Reflect === "object" && typeof Reflect.decorate === "function") r = Reflect.decorate(decorators, target, key, desc);
else for (var i = decorators.length - 1; i >= 0; i--) if (d = decorators[i]) r = (c < 3 ? d(r) : c > 3 ? d(target, key, r) : d(target, key)) || r;
return c > 3 && r && Object.defineProperty(target, key, r), r;
};
var __metadata = (this && this.__metadata) || function (k, v) {
if (typeof Reflect === "object" && typeof Reflect.metadata === "function") return Reflect.metadata(k, v);
};
var __param = (this && this.__param) || function (paramIndex, decorator) {
return function (target, key) { decorator(target, key, paramIndex); }
};
import { Inject, Injectable } from '@nestjs/common';
import { ModuleRef } from '@nestjs/core';
import { WsException } from '@nestjs/websockets';
import jwt from 'jsonwebtoken';
import { ConfigService } from '../../config/config.service.js';
import { AuthService } from '../auth.service.js';
import { extractWsToken } from './ws-token.js';
let WsGuard = class WsGuard {
configService;
moduleRef;
constructor(configService, moduleRef) {
this.configService = configService;
this.moduleRef = moduleRef;
}
get authService() {
return this.moduleRef.get(AuthService, { strict: false });
}
async canActivate(context) {
const client = context.switchToWs().getClient();
try {
const payload = jwt.verify(extractWsToken(client.handshake), this.configService.secrets.secretKey);
if (payload?.instanceId !== this.configService.instanceId) {
const isLiveWizardToken = payload?.username === 'setup-wizard'
&& this.configService.setupWizardComplete === false;
if (!isLiveWizardToken) {
throw new Error('Stale token');
}
}
if (!await this.authService.validateUser(payload)) {
throw new Error('User no longer valid');
}
return true;
}
catch (e) {
client.disconnect();
throw new WsException('Unauthorized');
}
}
};
WsGuard = __decorate([
Injectable(),
__param(0, Inject(ConfigService)),
__param(1, Inject(ModuleRef)),
__metadata("design:paramtypes", [ConfigService,
ModuleRef])
], WsGuard);
export { WsGuard };
//# sourceMappingURL=ws.guard.js.map