minio/auth-utils.go

79 lines
2.3 KiB
Go
Raw Normal View History

2015-02-08 02:54:21 -08:00
/*
* Minio Cloud Storage, (C) 2015 Minio, Inc.
2015-02-08 02:54:21 -08:00
*
* Licensed under the Apache License, Version 2.0 (the "License");
* you may not use this file except in compliance with the License.
* You may obtain a copy of the License at
*
* http://www.apache.org/licenses/LICENSE-2.0
*
* Unless required by applicable law or agreed to in writing, software
* distributed under the License is distributed on an "AS IS" BASIS,
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
* See the License for the specific language governing permissions and
* limitations under the License.
*/
package main
import (
"crypto/rand"
2015-01-28 15:27:59 -08:00
"encoding/base64"
"regexp"
2015-08-03 16:17:21 -07:00
"github.com/minio/minio-xl/pkg/probe"
)
const (
minioAccessID = 20
minioSecretID = 40
)
// isValidAccessKey - validate access key
func isValidAccessKey(accessKeyID string) bool {
if accessKeyID == "" {
return true
}
regex := regexp.MustCompile("^[A-Z0-9\\-\\.\\_\\~]{20}$")
return regex.MatchString(accessKeyID)
}
2015-10-04 23:11:18 -07:00
// generateAccessKeyID - generate random alpha numeric value using only uppercase characters
2015-02-23 17:44:55 -08:00
// takes input as size in integer
2015-10-04 23:11:18 -07:00
func generateAccessKeyID() ([]byte, *probe.Error) {
alpha := make([]byte, minioAccessID)
_, err := rand.Read(alpha)
if err != nil {
return nil, probe.NewError(err)
}
for i := 0; i < minioAccessID; i++ {
alpha[i] = alphaNumericTable[alpha[i]%byte(len(alphaNumericTable))]
}
return alpha, nil
}
2015-10-04 23:11:18 -07:00
// generateSecretAccessKey - generate random base64 numeric value from a random seed.
func generateSecretAccessKey() ([]byte, *probe.Error) {
rb := make([]byte, minioSecretID)
2015-01-28 15:27:59 -08:00
_, err := rand.Read(rb)
if err != nil {
return nil, probe.NewError(err)
}
return []byte(base64.StdEncoding.EncodeToString(rb))[:minioSecretID], nil
}
2015-10-04 23:11:18 -07:00
// mustGenerateAccessKeyID - must generate random alpha numeric value using only uppercase characters
// takes input as size in integer
func mustGenerateAccessKeyID() []byte {
alpha, err := generateAccessKeyID()
fatalIf(err.Trace(), "Unable to generate accessKeyID.", nil)
2015-10-04 23:11:18 -07:00
return alpha
}
// mustGenerateSecretAccessKey - generate random base64 numeric value from a random seed.
func mustGenerateSecretAccessKey() []byte {
secretKey, err := generateSecretAccessKey()
fatalIf(err.Trace(), "Unable to generate secretAccessKey.", nil)
return secretKey
2015-10-04 23:11:18 -07:00
}