enigma-bbs/core/user.js

150 lines
3.0 KiB
JavaScript
Raw Normal View History

2014-10-20 05:30:44 +00:00
/* jslint node: true */
'use strict';
var userDb = require('./database.js').dbs.user;
2014-10-20 05:30:44 +00:00
var crypto = require('crypto');
2014-10-21 04:47:13 +00:00
var assert = require('assert');
2014-10-20 05:30:44 +00:00
exports.User = User;
exports.getUserId = getUserId;
exports.createNew = createNew;
exports.generatePasswordDerivedKey = generatePasswordDerivedKey;
exports.persistAll = persistAll;
2014-10-21 04:47:13 +00:00
2014-10-20 05:30:44 +00:00
function User() {
var self = this;
this.id = 0;
this.userName = '';
2014-10-21 04:47:13 +00:00
this.isValid = function() {
if(self.id <= 0 || self.userName.length < 2) {
return false;
2014-10-21 04:47:13 +00:00
}
return this.hasValidPassword();
};
2014-10-21 04:47:13 +00:00
this.hasValidPassword = function() {
if(!this.properties || !this.properties.pw_pbkdf2_salt || !this.properties.pw_pbkdf2_dk) {
return false;
2014-10-21 04:47:13 +00:00
}
2014-10-20 05:30:44 +00:00
return this.properties.pw_pbkdf2_salt.length === User.PBKDF2.saltLen * 2 &&
this.prop_name.pw_pbkdf2_dk.length === User.PBKDF2.keyLen * 2;
};
2014-10-20 05:30:44 +00:00
this.isRoot = function() {
return 1 === this.id;
};
2014-10-21 04:47:13 +00:00
this.isSysOp = this.isRoot; // alias
}
2014-10-20 05:30:44 +00:00
User.PBKDF2 = {
iterations : 1000,
keyLen : 128,
saltLen : 32,
2014-10-21 04:47:13 +00:00
};
function getUserId(userName, cb) {
userDb.get(
'SELECT id ' +
'FROM user ' +
'WHERE user_name LIKE ?;',
[ userName ],
function onResults(err, row) {
cb(err, row.id);
2014-10-20 05:30:44 +00:00
}
);
}
2014-10-20 05:30:44 +00:00
function createNew(user, cb) {
assert(user.userName && user.userName.length > 1, 'Invalid userName');
2014-10-21 04:47:13 +00:00
userDb.run(
'INSERT INTO user (user_name) ' +
'VALUES (?);',
[ user.userName ],
function onUserInsert(err) {
2014-10-21 04:47:13 +00:00
if(err) {
cb(err);
} else {
user.id = this.lastID;
//
// Allow converting user.password -> Salt/DK
//
if(user.password && user.password.length > 0) {
generatePasswordDerivedKey(user.password, function onDkGenerated(err, dk) {
user.properties = user.properties || {
pw_pbkdf2_salt : dk.salt,
pw_pbkdf2_dk : dk.dk,
};
persistAll(user, function onUserPersisted() {
cb(null, user.id);
});
});
} else {
persistAll(user, function onUserPersisted() {
cb(null, user.id);
});
}
2014-10-21 04:47:13 +00:00
}
}
);
}
function generatePasswordDerivedKey(password, cb) {
crypto.randomBytes(User.PBKDF2.saltLen, function onRandomSalt(err, salt) {
2014-10-21 04:47:13 +00:00
if(err) {
cb(err);
return;
}
salt = salt.toString('hex');
2014-10-21 04:47:13 +00:00
password = new Buffer(password).toString('hex');
2014-10-21 04:47:13 +00:00
crypto.pbkdf2(password, salt, User.PBKDF2.iterations, User.PBKDF2.keyLen, function onDerivedKey(err, dk) {
if(err) {
cb(err);
} else {
cb(null, { dk : dk.toString('hex'), salt : salt } );
}
2014-10-20 05:30:44 +00:00
});
});
}
2014-10-20 05:30:44 +00:00
function persistProperties(user, cb) {
assert(user.id > 0);
2014-10-20 05:30:44 +00:00
var stmt = userDb.prepare(
'REPLACE INTO user_property (user_id, prop_name, prop_value) ' +
'VALUES (?, ?, ?);');
Object.keys(user.properties).forEach(function onProp(name) {
stmt.run(user.id, name, user.properties[name]);
});
stmt.finalize(function onFinalized() {
if(cb) {
cb();
2014-10-20 05:30:44 +00:00
}
});
}
2014-10-20 05:30:44 +00:00
function persistAll(user, cb) {
assert(user.id > 0);
2014-10-20 05:30:44 +00:00
userDb.serialize(function onSerialized() {
userDb.run('BEGIN;');
2014-10-20 05:30:44 +00:00
persistProperties(user);
2014-10-20 05:30:44 +00:00
userDb.run('COMMIT;');
2014-10-20 05:30:44 +00:00
});
cb();
}