user.go 2.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293
  1. package model
  2. import (
  3. "github.com/0xJacky/Nginx-UI/internal/crypto"
  4. "github.com/go-webauthn/webauthn/webauthn"
  5. "github.com/spf13/cast"
  6. "gorm.io/gorm"
  7. "gorm.io/gorm/schema"
  8. )
  9. func init() {
  10. schema.RegisterSerializer("json[aes]", crypto.JSONAesSerializer{})
  11. }
  12. type RecoveryCode struct {
  13. Code string `json:"code"`
  14. UsedTime *int64 `json:"used_time,omitempty" gorm:"type:datetime;default:null"`
  15. }
  16. type RecoveryCodes struct {
  17. Codes []*RecoveryCode `json:"codes"`
  18. LastViewed *int64 `json:"last_viewed,omitempty" gorm:"serializer:unixtime;type:datetime;default:null"`
  19. LastDownloaded *int64 `json:"last_downloaded,omitempty" gorm:"serializer:unixtime;type:datetime;default:null"`
  20. }
  21. type User struct {
  22. Model
  23. Name string `json:"name" cosy:"add:max=20;update:omitempty,max=20;list:fussy;db_unique"`
  24. Password string `json:"-" cosy:"json:password;add:required,max=20;update:omitempty,max=20"`
  25. Status bool `json:"status" gorm:"default:1"`
  26. OTPSecret []byte `json:"-" gorm:"type:blob"`
  27. RecoveryCodes RecoveryCodes `json:"-" gorm:"serializer:json[aes]"`
  28. EnabledTwoFA bool `json:"enabled_2fa" gorm:"-"`
  29. }
  30. type AuthToken struct {
  31. UserID uint64 `json:"user_id"`
  32. Token string `json:"token"`
  33. ExpiredAt int64 `json:"expired_at" gorm:"default:0"`
  34. }
  35. func (u *User) TableName() string {
  36. return "users"
  37. }
  38. func (u *User) AfterFind(_ *gorm.DB) error {
  39. u.EnabledTwoFA = u.Enabled2FA()
  40. return nil
  41. }
  42. func (u *User) EnabledOTP() bool {
  43. return len(u.OTPSecret) != 0
  44. }
  45. func (u *User) RecoveryCodeGenerated() bool {
  46. return len(u.RecoveryCodes.Codes) > 0
  47. }
  48. func (u *User) RecoveryCodeViewed() bool {
  49. return u.RecoveryCodes.LastViewed != nil
  50. }
  51. func (u *User) EnabledPasskey() bool {
  52. var passkeys Passkey
  53. db.Where("user_id", u.ID).Limit(1).Find(&passkeys)
  54. return passkeys.ID != 0
  55. }
  56. func (u *User) Enabled2FA() bool {
  57. return u.EnabledOTP() || u.EnabledPasskey()
  58. }
  59. func (u *User) WebAuthnID() []byte {
  60. return []byte(cast.ToString(u.ID))
  61. }
  62. func (u *User) WebAuthnName() string {
  63. return u.Name
  64. }
  65. func (u *User) WebAuthnDisplayName() string {
  66. return u.Name
  67. }
  68. func (u *User) WebAuthnCredentials() (credentials []webauthn.Credential) {
  69. var passkeys []Passkey
  70. db.Where("user_id", u.ID).Find(&passkeys)
  71. for _, passkey := range passkeys {
  72. credentials = append(credentials, *passkey.Credential)
  73. }
  74. return
  75. }