forked from vmware-archive/atc
-
Notifications
You must be signed in to change notification settings - Fork 0
/
team_auth_validator.go
57 lines (45 loc) · 1013 Bytes
/
team_auth_validator.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
package auth
import (
"net/http"
"github.com/concourse/atc/auth/provider"
"github.com/concourse/atc/dbng"
)
type teamAuthValidator struct {
teamFactory dbng.TeamFactory
jwtValidator Validator
}
func NewTeamAuthValidator(
teamFactory dbng.TeamFactory,
jwtValidator Validator,
) Validator {
return &teamAuthValidator{
teamFactory: teamFactory,
jwtValidator: jwtValidator,
}
}
func (v teamAuthValidator) IsAuthenticated(r *http.Request) bool {
teamName := r.FormValue(":team_name")
team, found, err := v.teamFactory.FindTeam(teamName)
if err != nil || !found {
return false
}
if !isAuthConfigured(team) {
return true
}
if team.BasicAuth != nil && NewBasicAuthValidator(team).IsAuthenticated(r) {
return true
}
return v.jwtValidator.IsAuthenticated(r)
}
func isAuthConfigured(t dbng.Team) bool {
if t.BasicAuth() != nil {
return true
}
for name := range provider.GetProviders() {
_, configured := t.Auth()[name]
if configured {
return true
}
}
return false
}