2016-01-21 19:28:15 -05:00
|
|
|
package jwt
|
|
|
|
|
|
|
|
import (
|
|
|
|
"errors"
|
|
|
|
)
|
|
|
|
|
|
|
|
// Error constants
|
|
|
|
var (
|
2016-07-14 17:59:20 -04:00
|
|
|
ErrInvalidKey = errors.New("key is invalid")
|
|
|
|
ErrInvalidKeyType = errors.New("key is of invalid type")
|
|
|
|
ErrHashUnavailable = errors.New("the requested hash function is unavailable")
|
2016-01-21 19:28:15 -05:00
|
|
|
)
|
|
|
|
|
|
|
|
// The errors that might occur when parsing and validating a token
|
|
|
|
const (
|
|
|
|
ValidationErrorMalformed uint32 = 1 << iota // Token is malformed
|
|
|
|
ValidationErrorUnverifiable // Token could not be verified because of signing problems
|
|
|
|
ValidationErrorSignatureInvalid // Signature validation failed
|
2016-07-14 17:59:20 -04:00
|
|
|
|
|
|
|
// Standard Claim validation errors
|
|
|
|
ValidationErrorAudience // AUD validation failed
|
|
|
|
ValidationErrorExpired // EXP validation failed
|
|
|
|
ValidationErrorIssuedAt // IAT validation failed
|
|
|
|
ValidationErrorIssuer // ISS validation failed
|
|
|
|
ValidationErrorNotValidYet // NBF validation failed
|
|
|
|
ValidationErrorId // JTI validation failed
|
|
|
|
ValidationErrorClaimsInvalid // Generic claims validation error
|
2016-01-21 19:28:15 -05:00
|
|
|
)
|
|
|
|
|
2016-07-14 17:59:20 -04:00
|
|
|
// Helper for constructing a ValidationError with a string error message
|
|
|
|
func NewValidationError(errorText string, errorFlags uint32) *ValidationError {
|
|
|
|
return &ValidationError{
|
|
|
|
text: errorText,
|
|
|
|
Errors: errorFlags,
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2016-01-21 19:28:15 -05:00
|
|
|
// The error from Parse if token is not valid
|
|
|
|
type ValidationError struct {
|
2016-07-14 17:59:20 -04:00
|
|
|
Inner error // stores the error returned by external dependencies, i.e.: KeyFunc
|
2016-01-21 19:28:15 -05:00
|
|
|
Errors uint32 // bitfield. see ValidationError... constants
|
2016-07-14 17:59:20 -04:00
|
|
|
text string // errors that do not have a valid error just have text
|
2016-01-21 19:28:15 -05:00
|
|
|
}
|
|
|
|
|
|
|
|
// Validation error is an error type
|
|
|
|
func (e ValidationError) Error() string {
|
2016-07-14 17:59:20 -04:00
|
|
|
if e.Inner != nil {
|
|
|
|
return e.Inner.Error()
|
|
|
|
} else if e.text != "" {
|
|
|
|
return e.text
|
|
|
|
} else {
|
2016-01-21 19:28:15 -05:00
|
|
|
return "token is invalid"
|
|
|
|
}
|
2016-07-14 17:59:20 -04:00
|
|
|
return e.Inner.Error()
|
2016-01-21 19:28:15 -05:00
|
|
|
}
|
|
|
|
|
|
|
|
// No errors
|
|
|
|
func (e *ValidationError) valid() bool {
|
|
|
|
if e.Errors > 0 {
|
|
|
|
return false
|
|
|
|
}
|
|
|
|
return true
|
|
|
|
}
|