mirror of
https://github.com/CommunitySolidServer/CommunitySolidServer.git
synced 2024-10-03 14:55:10 +00:00
* Add identity provider handler as a dependency * Temp Identity * Figured out how to get koa to work * Hooked up idp to networking * Feat/idp architecture refactor (#430) * Logs in with solid oidc * Refactored Provider * Attempt to hook up dependencies * Partial wiring of oidc provider components * IdP networking now works with architecture * Interaction Handlers Set Up * fix: Rename & adapt to CSS * Included Login Interaction * Refactored architecture to bind Interaction Policy to HttpHandlers Co-authored-by: Matthieu Bosquet <matthieubosquet@gmail.com> * fix: Rebase on master * fix: DI after rebase * Reimplemented Routing * Renamed modules and removed ProviderFactory (#450) * refactor: Solid IdP DI * refactor: IdP interaction handler DI * refactor: IdP interaction waterfall * refactor: Remove unnecessary legacy URL parse * fix: Add legacy parse back in * feat: adapter & fix: handlers * Removed adapter factory * fix: refactor IdP * fix: refactor IdP * fix: refactor IdP * feat: Add IdP to file storage config * fix: Unintended commit * fix: Components ignore * feat: Basic resource store adapter * Partially complete idp routing * Set up initial routing injection graph * Clean up ResourceStorageAdapter * Refactored configuration architecture * Hooked up Login UIs (#518) * feat: Use template path & run fileserver * feat: Use util function to read resource * Fixed DI JSON-LD context * fixed rendering * WebId validator * Set up persistent storage for loing and register * Fixed ejs template routing * Refactored StorageAdapters * NSS login successful * Forgot password infrastructure * Can send email (#557) * Can send email * fix: IdP crashes if interaction ID doesn't exist (#587) * feat: Require an issuer registration token * fix: Issuer registration token typo in error * fix: Remove dummy IdP storage adapter * fix: Remove unused library lodash * fix: Remove unused library lru-cache * Production ready keystore * Ruben comments before clownface removal * Removed clownface * Change key value store * Completed Ruben's comments * Added comments to each class * Fixed errors on login * Ruben feedback * Refactored out getPostRenderHandler * Identity provider tests (#622) * corrected tests lacking <void> on promises * Added files for all idp tests * Added unfinished tests for all added files * ErrorHandlingWaterfallHandler * RenderEjsHandler and RouterHandler tests * GetPostRouterHandler and BasicOnErrorHandler tests * Corrected tests for updates to Idp * fix: missing export * fix: audience claim * Client Id Support (#630) * Added client_id for the auth challenge * Update src/identity/storage/ClientWebIdFetchingStorageAdapterFactory.ts Co-authored-by: Matthieu Bosquet <matthieubosquet@gmail.com> Co-authored-by: Matthieu Bosquet <matthieubosquet@gmail.com> * fix: Rebase fixes * Several minor Idp changes/refactors (#656) * fix: Minor changes * refactor: Split EmailPasswordInteractionPolicy * refactor: Remove ErrorHandlingWaterfallHandler * refactor: Clean up dependencies * fix: Add dummy IdentityProviderHandler to fix integration tests * Replace KeyValueStore with KeyValueStorage (#663) * feat: Create WrappedExpiringStorage * refactor: Update ResourceStoreEmailPasswordStore to use KeyValueStorage * refactor: Update KeyGeneratingIdpConfigurationGenerator to use KeyValueStorage * refactor: Update ResourceStoreStorageAdapterFactory to use ExpiringStorage * refactor: Removed KeyValueStore * refactor: Simplify EmailPassword handlers (#664) * refactor: Order index.ts * test: Add EmailPasswordForgotPasswordHandler unit tests * test: Add EmailPasswordGetResetPasswordHandler unit tests * test: Add EmailPasswordLoginHandler unit tests * test: Add EmailPasswordRegistrationHandler unit tests * test: Add EmailPasswordResetPasswordHandler unit tests * test: Remove unnecessary test file * feat: Basic instructions for using the IdP * fix: IdP instructions and add example WebID * fix: IdP registration copy * fix: IdP instruction editorial * Update README.md Co-authored-by: Joachim Van Herwegen <joachimvh@gmail.com> * Update README.md Co-authored-by: Joachim Van Herwegen <joachimvh@gmail.com> * test: Add KeyGeneratingIdpConfigurationGenerator unit tests * test: Add KeyValueEmailPasswordStore unit tests * test: Create IdP integration test * test: Add EmailPasswordInteractionPolicy unit tests * test: Add BasicIssuerReferenceWebIdOwnershipValidator unit tests * test: Add ChooseInitialInteractionHandler unit tests Also fixes the config warning. * test: Add EjsTemplateRenderer unit tests * test: Add EmailSender unit tests * test: Add FormDataUtil unit tests * test: Add IdpRouteController unit tests * test: Add OidcInteractionCompleter unit tests * refactor: Simplify ClientWebIdFetchingStorageAdapterFactory * test: Add ClientWebIdFetchingStorageAdapterFactory unit tests * refactor: Fix ejs html warnings * test: Add step to test logging in again Included are updates to handle cookies more correctly. * feat: Add IdpConfirmHttpHandler This way there's a handler for the confirm page. * test: Add ExpiringStorageAdapterFactory unit tests * test: Add IdentityProviderFactory unit tests * test: Add IdentityProviderHttpHandler unit tests * refactor: Minor refactors * refactor: Use jose instead of node-jose * refactor: Use jose instead of node-jose Reduces the number of dependencies since other libraries also depend on jose. * Update src/identity/configuration/KeyGeneratingIdpConfigurationGenerator.ts Co-authored-by: Matthieu Bosquet <matthieubosquet@gmail.com> * refactor: Use interfaces instead of abstract classes * refactor: Make WebIdOwnershipValidator an AsyncHandler * refactor: Make TemplateRenderer an AsyncHandler * fix: Fix typing issue * fix: Convert JWK to plain object for node 15 * feat: Update CI configuration --ignore-scripts was removed because it also stopped dependency scripts, which was a requirement for bcrypt. 15.0 was removed since that version doesn't run the required scripts after install. 14.0 was removed since the somehow it caused the solid-authn client to do the wrong calls. * test: Run integration tests on Node 14.2 This is the lowest 14.x version where the IdP integration tests succeed. * feat: Use ErrorResponseWriter for handling oidc errors * test: Mock Date in OidcInteractionCompleter tests * fix: Correctly generate new identifiers Previously there could be double slashes if the base URL ended in slash. * fix: Correctly handle storagePathName in ExpiringStorageAdapterFactory * fix: Fix issue with new CliRunner test in rebase * fix: Handle unknown errors more consistently * feat: Make idp parameter dynamic * feat: Add more logging * refactor: Link css instead of injecting * fix: Fix redis integration tests with idp * refactor: Shorten idp class names * refactor: Remove e-mail configuration from default config * feat: Store JsonResourceStorage data in a single container * feat: Make sure expired data gets removed at some point * feat: Only accept strings as keys in KeyValueStorage * fix: Various minor fixes based on review Co-authored-by: Matthieu Bosquet <matthieubosquet@gmail.com> Co-authored-by: Joachim Van Herwegen <joachimvh@gmail.com>
225 lines
8.3 KiB
JSON
225 lines
8.3 KiB
JSON
{
|
|
"@context": "https://linkedsoftwaredependencies.org/bundles/npm/@solid/community-server/^0.0.0/components/context.jsonld",
|
|
"@graph": [
|
|
{
|
|
"comment": "The storage adapter that persists usernames, passwords, etc.",
|
|
"@id": "urn:solid-server:auth:password:AccountStore",
|
|
"@type": "BaseAccountStore",
|
|
"args_storageName": "/idp/email-password-db",
|
|
"args_saltRounds": 10,
|
|
"args_storage": {
|
|
"@id": "urn:solid-server:default:IdpStorage"
|
|
}
|
|
},
|
|
{
|
|
"comment": "Responsible for completing an OIDC interaction after login or registration",
|
|
"@id": "urn:solid-server:auth:password:InteractionCompleter",
|
|
"@type": "InteractionCompleter"
|
|
},
|
|
{
|
|
"comment": "Renders the login page",
|
|
"@id": "urn:solid-server:auth:password:LoginRenderHandler",
|
|
"@type": "RenderEjsHandler",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/login.ejs"
|
|
},
|
|
{
|
|
"comment": "Renders the register page",
|
|
"@id": "urn:solid-server:auth:password:RegisterRenderHandler",
|
|
"@type": "RenderEjsHandler",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/register.ejs"
|
|
},
|
|
{
|
|
"comment": "Renders the forgot password page",
|
|
"@id": "urn:solid-server:auth:password:ForgotPasswordRenderHandler",
|
|
"@type": "RenderEjsHandler",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/forgotPassword.ejs"
|
|
},
|
|
{
|
|
"comment": "Renders the reset password page",
|
|
"@id": "urn:solid-server:auth:password:ResetPasswordRenderHandler",
|
|
"@type": "RenderEjsHandler",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/resetPassword.ejs"
|
|
},
|
|
{
|
|
"comment": "Renders the Email Sent message page",
|
|
"@id": "urn:solid-server:auth:password:EmailSentRenderHandler",
|
|
"@type": "RenderEjsHandler",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/emailSent.ejs"
|
|
},
|
|
{
|
|
"comment": "Renders a generic page that says a message",
|
|
"@id": "urn:solid-server:auth:password:MessageRenderHandler",
|
|
"@type": "RenderEjsHandler",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/message.ejs"
|
|
},
|
|
{
|
|
"comment": "Http handler to take care of all routing on for the email password interaction",
|
|
"@id": "urn:solid-server:auth:password:InteractionHttpHandler",
|
|
"@type": "WaterfallHandler",
|
|
"handlers": [
|
|
{
|
|
"comment": "Handles the initial route when the user is directed from their app to the IdP",
|
|
"@type": "RouterHandler",
|
|
"allowedMethods": [ "GET" ],
|
|
"allowedPathNames": [ "^/idp/interaction/[-_A-Za-z0-9]+/?$" ],
|
|
"handler": {
|
|
"@type": "InitialInteractionHandler",
|
|
"renderHandlerMap": [
|
|
{
|
|
"InitialInteractionHandler:_renderHandlerMap_key": "consent",
|
|
"InitialInteractionHandler:_renderHandlerMap_value": {
|
|
"@type": "RenderEjsHandler",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/confirm.ejs"
|
|
}
|
|
}
|
|
],
|
|
"renderHandlerMap_default": {
|
|
"@id": "urn:solid-server:auth:password:LoginRenderHandler"
|
|
}
|
|
}
|
|
},
|
|
{
|
|
"comment": "Handles all functionality on the register page",
|
|
"@type": "IdpRouteController",
|
|
"pathName": "^/idp/interaction/[-_A-Za-z0-9]+/register/?$",
|
|
"postHandler": {
|
|
"@type": "RegistrationHandler",
|
|
"args_ownershipValidator": {
|
|
"@type": "IssuerOwnershipValidator",
|
|
"issuer": {
|
|
"@id": "urn:solid-server:default:variable:baseUrl"
|
|
}
|
|
},
|
|
"args_accountStore": {
|
|
"@id": "urn:solid-server:auth:password:AccountStore"
|
|
},
|
|
"args_interactionCompleter": {
|
|
"@id": "urn:solid-server:auth:password:InteractionCompleter"
|
|
}
|
|
},
|
|
"renderHandler": {
|
|
"@id": "urn:solid-server:auth:password:RegisterRenderHandler"
|
|
}
|
|
},
|
|
{
|
|
"comment": "Handles all functionality on the Login Page",
|
|
"@type": "IdpRouteController",
|
|
"pathName": "^/idp/interaction/[-_A-Za-z0-9]+/login/?$",
|
|
"postHandler": {
|
|
"@type": "LoginHandler",
|
|
"args_accountStore": {
|
|
"@id": "urn:solid-server:auth:password:AccountStore"
|
|
},
|
|
"args_interactionCompleter": {
|
|
"@id": "urn:solid-server:auth:password:InteractionCompleter"
|
|
}
|
|
},
|
|
"renderHandler": {
|
|
"@id": "urn:solid-server:auth:password:LoginRenderHandler"
|
|
}
|
|
},
|
|
{
|
|
"comment": "Handles confirm requests",
|
|
"@type": "RouterHandler",
|
|
"allowedMethods": [ "POST" ],
|
|
"allowedPathNames": [ "^/idp/interaction/[-_A-Za-z0-9]+/confirm/?$" ],
|
|
"handler": {
|
|
"@type": "SessionHttpHandler",
|
|
"interactionCompleter": {
|
|
"@id": "urn:solid-server:auth:password:InteractionCompleter"
|
|
}
|
|
}
|
|
},
|
|
{
|
|
"comment": "Handles all functionality on the forgot password page",
|
|
"@type": "IdpRouteController",
|
|
"pathName": "^/idp/interaction/[-_A-Za-z0-9]+/forgotpassword/?$",
|
|
"postHandler": {
|
|
"@type": "ForgotPasswordHandler",
|
|
"args_messageRenderHandler": {
|
|
"@id": "urn:solid-server:auth:password:EmailSentRenderHandler"
|
|
},
|
|
"args_accountStore": {
|
|
"@id": "urn:solid-server:auth:password:AccountStore"
|
|
},
|
|
"args_baseUrl": {
|
|
"@id": "urn:solid-server:default:variable:baseUrl"
|
|
},
|
|
"args_idpPath": "/idp",
|
|
"args_emailTemplateRenderer": {
|
|
"@type": "EjsTemplateRenderer",
|
|
"templatePath": {
|
|
"@id": "urn:solid-server:default:variable:idpTemplateFolder"
|
|
},
|
|
"templateFile": "./email-password-interaction/resetPasswordEmail.ejs"
|
|
},
|
|
"args_emailSender": {
|
|
"@id": "urn:solid-server:default:EmailSender"
|
|
}
|
|
},
|
|
"renderHandler": {
|
|
"@id": "urn:solid-server:auth:password:ForgotPasswordRenderHandler"
|
|
}
|
|
},
|
|
{
|
|
"comment": "Renders the reset password page",
|
|
"@type": "RouterHandler",
|
|
"allowedMethods": [ "GET" ],
|
|
"allowedPathNames": [ "^/idp/resetpassword/?$" ],
|
|
"handler": {
|
|
"@type": "ResetPasswordViewHandler",
|
|
"renderHandler": {
|
|
"@id": "urn:solid-server:auth:password:ResetPasswordRenderHandler"
|
|
}
|
|
}
|
|
},
|
|
{
|
|
"comment": "Handles the reset password page submission",
|
|
"@type": "RouterHandler",
|
|
"allowedMethods": [ "POST" ],
|
|
"allowedPathNames": [ "^/idp/resetpassword/?$" ],
|
|
"handler": {
|
|
"@type": "ResetPasswordHandler",
|
|
"args_accountStore": {
|
|
"@id": "urn:solid-server:auth:password:AccountStore"
|
|
},
|
|
"args_renderHandler": {
|
|
"@id": "urn:solid-server:auth:password:ResetPasswordRenderHandler"
|
|
},
|
|
"args_messageRenderHandler": {
|
|
"@id": "urn:solid-server:auth:password:MessageRenderHandler"
|
|
}
|
|
}
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "Sets up the email password interaction policy",
|
|
"@id": "urn:solid-server:auth:password:AccountInteractionPolicy",
|
|
"@type": "AccountInteractionPolicy",
|
|
"idpPath": "/idp"
|
|
}
|
|
]
|
|
}
|