mirror of
https://github.com/Pacerino/CaddyProxyManager.git
synced 2026-08-04 11:15:08 -04:00
Introduce per-host plugin support: Caddy module discovery, module config endpoints, plugin schemas (basicauth, cloudflare) and the host plugins API. On the frontend, add the Plugins page, plugin/host plugin dialogs and schema-driven form fields.
106 lines
2.3 KiB
Go
106 lines
2.3 KiB
Go
package auth
|
|
|
|
import (
|
|
"crypto/rsa"
|
|
"crypto/x509"
|
|
"encoding/pem"
|
|
"errors"
|
|
"fmt"
|
|
"io"
|
|
"os"
|
|
|
|
"github.com/Pacerino/CaddyProxyManager/internal/config"
|
|
)
|
|
|
|
var (
|
|
privateKey *rsa.PrivateKey
|
|
publicKey *rsa.PublicKey
|
|
)
|
|
|
|
func openKey(path string) ([]byte, error) {
|
|
f, err := os.Open(path)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
defer f.Close()
|
|
fileKey, err := io.ReadAll(f)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
return fileKey, nil
|
|
}
|
|
|
|
// GetPrivateKey will load the key from config package and return a usable object
|
|
// It should only load from file once per program execution
|
|
func GetPrivateKey() (*rsa.PrivateKey, error) {
|
|
if privateKey == nil {
|
|
var blankKey *rsa.PrivateKey
|
|
|
|
var err error
|
|
key, err := openKey(fmt.Sprintf("%s/jwtkey.pem", config.Configuration.DataFolder))
|
|
if err != nil {
|
|
return blankKey, err
|
|
}
|
|
privateKey, err = LoadPemPrivateKey(key)
|
|
if err != nil {
|
|
return blankKey, err
|
|
}
|
|
}
|
|
|
|
/* pub, pubErr := GetPublicKey()
|
|
if pubErr != nil {
|
|
return privateKey, pubErr
|
|
}
|
|
|
|
privateKey.PublicKey = *pub */
|
|
|
|
return privateKey, nil
|
|
}
|
|
|
|
// LoadPemPrivateKey reads a key from a PEM encoded string and returns a private key
|
|
func LoadPemPrivateKey(content []byte) (*rsa.PrivateKey, error) {
|
|
data, _ := pem.Decode(content)
|
|
if data == nil {
|
|
return nil, errors.New("no PEM data found in private key")
|
|
}
|
|
key, err := x509.ParsePKCS1PrivateKey(data.Bytes)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
return key, nil
|
|
}
|
|
|
|
// GetPublicKey will load the key from config package and return a usable object
|
|
// It should only load once per program execution
|
|
func GetPublicKey() (*rsa.PublicKey, error) {
|
|
if publicKey == nil {
|
|
var blankKey *rsa.PublicKey
|
|
|
|
var err error
|
|
key, err := openKey(fmt.Sprintf("%s/jwtkey.pem", config.Configuration.DataFolder))
|
|
if err != nil {
|
|
return blankKey, err
|
|
}
|
|
publicKey, err = LoadPemPublicKey(key)
|
|
if err != nil {
|
|
return blankKey, err
|
|
}
|
|
}
|
|
|
|
return publicKey, nil
|
|
}
|
|
|
|
// LoadPemPublicKey reads a key from a PEM encoded string and returns a public key
|
|
func LoadPemPublicKey(content []byte) (*rsa.PublicKey, error) {
|
|
data, _ := pem.Decode(content)
|
|
if data == nil {
|
|
return nil, errors.New("no PEM data found in public key")
|
|
}
|
|
publicKeyFileImported, err := x509.ParsePKCS1PublicKey(data.Bytes)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
|
|
return publicKeyFileImported, nil
|
|
}
|