2018-02-09 19:00:55 -05:00
|
|
|
mod accounts;
|
|
|
|
mod ciphers;
|
|
|
|
mod folders;
|
2018-02-17 16:30:19 -05:00
|
|
|
mod organizations;
|
2018-07-12 15:46:50 -04:00
|
|
|
pub(crate) mod two_factor;
|
2018-02-09 19:00:55 -05:00
|
|
|
|
|
|
|
pub fn routes() -> Vec<Route> {
|
2018-10-10 14:40:39 -04:00
|
|
|
let mut mod_routes = routes![
|
2018-02-09 19:00:55 -05:00
|
|
|
clear_device_token,
|
|
|
|
put_device_token,
|
|
|
|
|
|
|
|
get_eq_domains,
|
2018-04-20 12:35:11 -04:00
|
|
|
post_eq_domains,
|
2018-10-22 18:32:43 -04:00
|
|
|
put_eq_domains,
|
2018-10-10 14:40:39 -04:00
|
|
|
];
|
|
|
|
|
|
|
|
let mut routes = Vec::new();
|
|
|
|
routes.append(&mut accounts::routes());
|
|
|
|
routes.append(&mut ciphers::routes());
|
|
|
|
routes.append(&mut folders::routes());
|
|
|
|
routes.append(&mut organizations::routes());
|
|
|
|
routes.append(&mut two_factor::routes());
|
|
|
|
routes.append(&mut mod_routes);
|
2018-04-20 12:35:11 -04:00
|
|
|
|
2018-10-10 14:40:39 -04:00
|
|
|
routes
|
2018-02-09 19:00:55 -05:00
|
|
|
}
|
|
|
|
|
|
|
|
///
|
|
|
|
/// Move this somewhere else
|
|
|
|
///
|
|
|
|
use rocket::Route;
|
|
|
|
|
2018-10-10 14:40:39 -04:00
|
|
|
use rocket_contrib::json::Json;
|
|
|
|
use serde_json::Value;
|
2018-02-09 19:00:55 -05:00
|
|
|
|
2018-12-06 20:05:45 -05:00
|
|
|
use crate::db::DbConn;
|
2018-02-09 19:00:55 -05:00
|
|
|
|
2018-12-07 12:25:18 -05:00
|
|
|
use crate::api::{EmptyResult, JsonResult, JsonUpcase};
|
2018-12-06 20:05:45 -05:00
|
|
|
use crate::auth::Headers;
|
2018-02-09 19:00:55 -05:00
|
|
|
|
2018-12-06 10:28:36 -05:00
|
|
|
#[put("/devices/identifier/<uuid>/clear-token")]
|
2018-12-07 12:25:18 -05:00
|
|
|
fn clear_device_token(uuid: String) -> EmptyResult {
|
|
|
|
// This endpoint doesn't have auth header
|
|
|
|
|
|
|
|
let _ = uuid;
|
|
|
|
// uuid is not related to deviceId
|
2018-06-01 09:08:03 -04:00
|
|
|
|
2018-12-06 10:28:36 -05:00
|
|
|
// This only clears push token
|
|
|
|
// https://github.com/bitwarden/core/blob/master/src/Api/Controllers/DevicesController.cs#L109
|
|
|
|
// https://github.com/bitwarden/core/blob/master/src/Core/Services/Implementations/DeviceService.cs#L37
|
|
|
|
Ok(())
|
2018-02-17 14:47:13 -05:00
|
|
|
}
|
2018-02-09 19:00:55 -05:00
|
|
|
|
2018-06-01 09:08:03 -04:00
|
|
|
#[put("/devices/identifier/<uuid>/token", data = "<data>")]
|
2018-12-07 12:25:18 -05:00
|
|
|
fn put_device_token(uuid: String, data: JsonUpcase<Value>, headers: Headers) -> JsonResult {
|
2018-10-10 14:40:39 -04:00
|
|
|
let _data: Value = data.into_inner().data;
|
2018-12-07 12:25:18 -05:00
|
|
|
// Data has a single string value "PushToken"
|
|
|
|
let _ = uuid;
|
|
|
|
// uuid is not related to deviceId
|
2018-12-06 10:28:36 -05:00
|
|
|
|
2018-12-07 12:25:18 -05:00
|
|
|
// TODO: This should save the push token, but we don't have push functionality
|
2018-12-06 10:28:36 -05:00
|
|
|
|
|
|
|
Ok(Json(json!({
|
2018-12-07 12:25:18 -05:00
|
|
|
"Id": headers.device.uuid,
|
|
|
|
"Name": headers.device.name,
|
|
|
|
"Type": headers.device.type_,
|
|
|
|
"Identifier": headers.device.uuid,
|
|
|
|
"CreationDate": crate::util::format_date(&headers.device.created_at),
|
2018-12-06 10:28:36 -05:00
|
|
|
})))
|
2018-02-17 14:47:13 -05:00
|
|
|
}
|
2018-02-09 19:00:55 -05:00
|
|
|
|
2018-02-17 17:21:04 -05:00
|
|
|
#[derive(Serialize, Deserialize, Debug)]
|
|
|
|
#[allow(non_snake_case)]
|
|
|
|
struct GlobalDomain {
|
|
|
|
Type: i32,
|
|
|
|
Domains: Vec<String>,
|
|
|
|
Excluded: bool,
|
|
|
|
}
|
|
|
|
|
2018-06-11 09:44:37 -04:00
|
|
|
const GLOBAL_DOMAINS: &str = include_str!("global_domains.json");
|
2018-02-17 17:21:04 -05:00
|
|
|
|
2018-02-09 19:00:55 -05:00
|
|
|
#[get("/settings/domains")]
|
2018-02-20 08:09:00 -05:00
|
|
|
fn get_eq_domains(headers: Headers) -> JsonResult {
|
2018-02-17 17:21:04 -05:00
|
|
|
let user = headers.user;
|
|
|
|
use serde_json::from_str;
|
|
|
|
|
|
|
|
let equivalent_domains: Vec<Vec<String>> = from_str(&user.equivalent_domains).unwrap();
|
|
|
|
let excluded_globals: Vec<i32> = from_str(&user.excluded_globals).unwrap();
|
|
|
|
|
|
|
|
let mut globals: Vec<GlobalDomain> = from_str(GLOBAL_DOMAINS).unwrap();
|
|
|
|
|
|
|
|
for global in &mut globals {
|
|
|
|
global.Excluded = excluded_globals.contains(&global.Type);
|
|
|
|
}
|
|
|
|
|
|
|
|
Ok(Json(json!({
|
|
|
|
"EquivalentDomains": equivalent_domains,
|
2018-02-20 08:09:00 -05:00
|
|
|
"GlobalEquivalentDomains": globals,
|
|
|
|
"Object": "domains",
|
2018-02-17 17:21:04 -05:00
|
|
|
})))
|
2018-02-09 19:00:55 -05:00
|
|
|
}
|
|
|
|
|
2018-02-22 18:38:54 -05:00
|
|
|
#[derive(Deserialize, Debug)]
|
|
|
|
#[allow(non_snake_case)]
|
|
|
|
struct EquivDomainData {
|
|
|
|
ExcludedGlobalEquivalentDomains: Option<Vec<i32>>,
|
|
|
|
EquivalentDomains: Option<Vec<Vec<String>>>,
|
|
|
|
}
|
|
|
|
|
2018-02-14 18:40:34 -05:00
|
|
|
#[post("/settings/domains", data = "<data>")]
|
2018-10-22 18:32:43 -04:00
|
|
|
fn post_eq_domains(data: JsonUpcase<EquivDomainData>, headers: Headers, conn: DbConn) -> JsonResult {
|
2018-05-31 18:18:50 -04:00
|
|
|
let data: EquivDomainData = data.into_inner().data;
|
2018-02-14 18:40:34 -05:00
|
|
|
|
2018-06-11 09:44:37 -04:00
|
|
|
let excluded_globals = data.ExcludedGlobalEquivalentDomains.unwrap_or_default();
|
|
|
|
let equivalent_domains = data.EquivalentDomains.unwrap_or_default();
|
2018-02-14 18:40:34 -05:00
|
|
|
|
2018-02-17 17:21:04 -05:00
|
|
|
let mut user = headers.user;
|
|
|
|
use serde_json::to_string;
|
2018-02-14 18:40:34 -05:00
|
|
|
|
2018-02-17 17:21:04 -05:00
|
|
|
user.excluded_globals = to_string(&excluded_globals).unwrap_or("[]".to_string());
|
|
|
|
user.equivalent_domains = to_string(&equivalent_domains).unwrap_or("[]".to_string());
|
|
|
|
|
2018-10-14 13:32:43 -04:00
|
|
|
match user.save(&conn) {
|
2018-10-22 18:32:43 -04:00
|
|
|
Ok(()) => Ok(Json(json!({}))),
|
2018-12-07 12:25:18 -05:00
|
|
|
Err(_) => err!("Failed to save user"),
|
2018-10-14 13:32:43 -04:00
|
|
|
}
|
2018-02-09 19:00:55 -05:00
|
|
|
}
|
2018-10-22 18:32:43 -04:00
|
|
|
|
|
|
|
#[put("/settings/domains", data = "<data>")]
|
|
|
|
fn put_eq_domains(data: JsonUpcase<EquivDomainData>, headers: Headers, conn: DbConn) -> JsonResult {
|
|
|
|
post_eq_domains(data, headers, conn)
|
|
|
|
}
|