Co-authored-by: Brendan Allan <14191578+Brendonovich@users.noreply.github.com> Co-authored-by: Kit Langton <kit.langton@gmail.com> Co-authored-by: opencode-agent[bot] <opencode-agent[bot]@users.noreply.github.com> Co-authored-by: Affan Ali <93028901+affanali2k3@users.noreply.github.com> Co-authored-by: affanali2k3 <affanalikhanxx@gmail.com> Co-authored-by: Frank <frank@anoma.ly> Co-authored-by: opencode-agent[bot] <219766164+opencode-agent[bot]@users.noreply.github.com> Co-authored-by: 𝓛𝓲𝓽𝓽𝓵𝓮 𝓕𝓻𝓪𝓷𝓴 <little-frank@opencord.local> Co-authored-by: Aiden Cline <63023139+rekram1-node@users.noreply.github.com> Co-authored-by: Jay V <air@live.ca> Co-authored-by: Dax Raad <d@ironbay.co> Co-authored-by: Aarav Sareen <96787824+arvsrn@users.noreply.github.com> Co-authored-by: OpeOginni <107570612+OpeOginni@users.noreply.github.com> Co-authored-by: Luke Parker <10430890+Hona@users.noreply.github.com> Co-authored-by: Ben Guthrie <benjee.012@gmail.com> Co-authored-by: Dax <mail@thdxr.com> Co-authored-by: Filip <34747899+neriousy@users.noreply.github.com> Co-authored-by: Max Anderson <max.a.anderson95@gmail.com> Co-authored-by: Brendan Allan <git@brendonovich.dev> Co-authored-by: Jack <jack@anoma.ly> Co-authored-by: Shoubhit Dash <shoubhit2005@gmail.com> Co-authored-by: Dustin Deus <deusdustin@gmail.com> Co-authored-by: starptech <starptech@starptechs-MBP.fritz.box> Co-authored-by: Aiden Cline <aidenpcline@gmail.com> Co-authored-by: usrnk1 <7547651+usrnk1@users.noreply.github.com> Co-authored-by: Jay <53023+jayair@users.noreply.github.com> Co-authored-by: runvip <164729189+runvip@users.noreply.github.com> Co-authored-by: opencode <opencode@sst.dev> Co-authored-by: Julian Coy <julian@ex-machina.co> Co-authored-by: Vladimir Glafirov <vglafirov@gitlab.com>
63 lines
1.8 KiB
TypeScript
63 lines
1.8 KiB
TypeScript
export * as ServerAuth from "./auth"
|
|
|
|
import { Config as EffectConfig, Context, Effect, Layer, Option, Redacted } from "effect"
|
|
|
|
export type Credentials = {
|
|
password?: string
|
|
username?: string
|
|
}
|
|
|
|
export type DecodedCredentials = {
|
|
readonly username: string
|
|
readonly password: Redacted.Redacted
|
|
}
|
|
|
|
export type Info = {
|
|
readonly password: Option.Option<string>
|
|
readonly username: string
|
|
}
|
|
|
|
export class Config extends Context.Service<Config, Info>()("@opencode/ServerAuthConfig") {
|
|
static configLayer(input: Info) {
|
|
return Layer.succeed(this, this.of(input))
|
|
}
|
|
|
|
static get layer() {
|
|
return Layer.effect(
|
|
this,
|
|
Effect.gen(function* () {
|
|
return Config.of(
|
|
yield* EffectConfig.all({
|
|
password: EffectConfig.string("OPENCODE_SERVER_PASSWORD").pipe(EffectConfig.option),
|
|
username: EffectConfig.string("OPENCODE_SERVER_USERNAME").pipe(EffectConfig.withDefault("opencode")),
|
|
}),
|
|
)
|
|
}),
|
|
)
|
|
}
|
|
}
|
|
|
|
export function required(config: Info) {
|
|
return Option.isSome(config.password) && config.password.value !== ""
|
|
}
|
|
|
|
export function authorized(credentials: DecodedCredentials, config: Info) {
|
|
return (
|
|
Option.isSome(config.password) &&
|
|
credentials.username === config.username &&
|
|
Redacted.value(credentials.password) === config.password.value
|
|
)
|
|
}
|
|
|
|
export function header(credentials?: Credentials) {
|
|
const password = credentials?.password ?? process.env.OPENCODE_SERVER_PASSWORD
|
|
if (!password) return undefined
|
|
|
|
return `Basic ${Buffer.from(`${credentials?.username ?? process.env.OPENCODE_SERVER_USERNAME ?? "opencode"}:${password}`).toString("base64")}`
|
|
}
|
|
|
|
export function headers(credentials?: Credentials) {
|
|
const authorization = header(credentials)
|
|
if (!authorization) return undefined
|
|
return { Authorization: authorization }
|
|
}
|