user.go 2.5 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495
  1. package model
  2. import (
  3. "github.com/0xJacky/Nginx-UI/internal/crypto"
  4. "github.com/go-webauthn/webauthn/webauthn"
  5. "github.com/spf13/cast"
  6. "gorm.io/gorm"
  7. "gorm.io/gorm/schema"
  8. )
  9. func init() {
  10. schema.RegisterSerializer("json[aes]", crypto.JSONAesSerializer{})
  11. }
  12. type RecoveryCode struct {
  13. Code string `json:"code"`
  14. UsedTime *int64 `json:"used_time,omitempty" gorm:"type:datetime;default:null"`
  15. }
  16. type RecoveryCodes struct {
  17. Codes []*RecoveryCode `json:"codes"`
  18. LastViewed *int64 `json:"last_viewed,omitempty" gorm:"serializer:unixtime;type:datetime;default:null"`
  19. LastDownloaded *int64 `json:"last_downloaded,omitempty" gorm:"serializer:unixtime;type:datetime;default:null"`
  20. }
  21. type User struct {
  22. Model
  23. Name string `json:"name" cosy:"add:max=20;update:omitempty,max=20;list:fussy;db_unique"`
  24. Password string `json:"-" cosy:"json:password;add:required,max=20;update:omitempty,max=20"`
  25. Status bool `json:"status" gorm:"default:1"`
  26. OTPSecret []byte `json:"-" gorm:"type:blob"`
  27. RecoveryCodes RecoveryCodes `json:"-" gorm:"serializer:json[aes]"`
  28. EnabledTwoFA bool `json:"enabled_2fa" gorm:"-"`
  29. Language string `json:"language" gorm:"default:en"`
  30. }
  31. type AuthToken struct {
  32. UserID uint64 `json:"user_id"`
  33. Token string `json:"token"`
  34. ShortToken string `json:"short_token"`
  35. ExpiredAt int64 `json:"expired_at" gorm:"default:0"`
  36. }
  37. func (u *User) TableName() string {
  38. return "users"
  39. }
  40. func (u *User) AfterFind(_ *gorm.DB) error {
  41. u.EnabledTwoFA = u.Enabled2FA()
  42. return nil
  43. }
  44. func (u *User) EnabledOTP() bool {
  45. return len(u.OTPSecret) != 0
  46. }
  47. func (u *User) RecoveryCodeGenerated() bool {
  48. return len(u.RecoveryCodes.Codes) > 0
  49. }
  50. func (u *User) RecoveryCodeViewed() bool {
  51. return u.RecoveryCodes.LastViewed != nil
  52. }
  53. func (u *User) EnabledPasskey() bool {
  54. var passkeys Passkey
  55. db.Where("user_id", u.ID).Limit(1).Find(&passkeys)
  56. return passkeys.ID != 0
  57. }
  58. func (u *User) Enabled2FA() bool {
  59. return u.EnabledOTP() || u.EnabledPasskey()
  60. }
  61. func (u *User) WebAuthnID() []byte {
  62. return []byte(cast.ToString(u.ID))
  63. }
  64. func (u *User) WebAuthnName() string {
  65. return u.Name
  66. }
  67. func (u *User) WebAuthnDisplayName() string {
  68. return u.Name
  69. }
  70. func (u *User) WebAuthnCredentials() (credentials []webauthn.Credential) {
  71. var passkeys []Passkey
  72. db.Where("user_id", u.ID).Find(&passkeys)
  73. for _, passkey := range passkeys {
  74. credentials = append(credentials, *passkey.Credential)
  75. }
  76. return
  77. }