X-Git-Url: http://git.cielonegro.org/gitweb.cgi?a=blobdiff_plain;f=Rakka%2FAuthorization.hs;h=0f865c3dee08b7be0baf710c5a6216d23d41a879;hb=df6079ca32f808d76c595e7953bff7a1dd46b10b;hp=8da8afe95a590ca44552084ee92f9a95672d17db;hpb=9f49e3384f1925d295355e5f60e94a8ca95039ea;p=Rakka.git diff --git a/Rakka/Authorization.hs b/Rakka/Authorization.hs index 8da8afe..0f865c3 100644 --- a/Rakka/Authorization.hs +++ b/Rakka/Authorization.hs @@ -5,14 +5,15 @@ module Rakka.Authorization ) where -import qualified Codec.Binary.Base64 as B64 import qualified Codec.Binary.UTF8.String as UTF8 import Control.Concurrent.STM -import qualified Data.Digest.SHA1 as SHA1 +import Control.Monad.Trans +import qualified Data.ByteString as B import Data.Map (Map) import qualified Data.Map as M hiding (Map) import Data.Maybe -import Data.Word +import OpenSSL.EVP.Base64 +import OpenSSL.EVP.Digest import Rakka.SystemConfig import System.Directory import System.FilePath @@ -27,7 +28,7 @@ data AuthDB } -type UserMap = Map String [Word8] +type UserMap = Map String String mkAuthDB :: FilePath -> IO AuthDB @@ -42,32 +43,34 @@ mkAuthDB lsdir } -isValidPair :: AuthDB -> String -> String -> IO Bool +isValidPair :: MonadIO m => AuthDB -> String -> String -> m Bool isValidPair adb name pass - = let hash = SHA1.hash (UTF8.encode pass) - in - atomically $ do m <- readTVar (adbUserMap adb) - return (M.lookup name m == Just hash) + = liftIO $ do sha1 <- return . fromJust =<< getDigestByName "SHA1" + let hash = digestBS sha1 $ B.pack $ UTF8.encode pass + atomically $ do m <- readTVar (adbUserMap adb) + return (M.lookup name m == Just hash) loadUserMap :: FilePath -> IO UserMap loadUserMap path = do exist <- doesFileExist path - if exist then - readFile path - >>= - return . initMap . M.fromList . map decodePair . fromJust . deserializeStringPairs - else - return M.empty + m <- if exist then + readFile path + >>= + return . M.fromList . map decodePair . fromJust . deserializeStringPairs + else + return M.empty + sha1 <- return . fromJust =<< getDigestByName "SHA1" + return (initMap sha1 m) where - decodePair :: (String, String) -> (String, [Word8]) + decodePair :: (String, String) -> (String, String) decodePair (name, b64Hash) - = (UTF8.decodeString name, B64.decode b64Hash) + = (UTF8.decodeString name, decodeBase64 b64Hash) - initMap :: UserMap -> UserMap - initMap m + initMap :: Digest -> UserMap -> UserMap + initMap sha1 m | M.null m = let name = "root" - hash = SHA1.hash [] + hash = digest sha1 "" in M.singleton name hash | otherwise = m