| Server IP : 54.233.248.239 / Your IP : 172.28.1.13 Web Server : Apache System : Linux ip-172-28-29-189 6.5.0-1014-aws #14~22.04.1-Ubuntu SMP Thu Feb 15 15:27:06 UTC 2024 x86_64 User : www-data ( 33) PHP Version : 7.2.34-43+ubuntu22.04.1+deb.sury.org+1 Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals, MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : OFF | Sudo : ON | Pkexec : ON Directory : /lib/python3/dist-packages/pymacaroons/caveat_delegates/ |
Upload File : |
from __future__ import unicode_literals
import binascii
from six import iteritems
from pymacaroons.field_encryptors import SecretBoxEncryptor
from .first_party import (
FirstPartyCaveatDelegate, FirstPartyCaveatVerifierDelegate
)
class EncryptedFirstPartyCaveatDelegate(FirstPartyCaveatDelegate):
def __init__(self, field_encryptor=None, *args, **kwargs):
self.field_encryptor = field_encryptor or SecretBoxEncryptor()
super(EncryptedFirstPartyCaveatDelegate, self).__init__(
*args, **kwargs
)
def add_first_party_caveat(self, macaroon, predicate, **kwargs):
if kwargs.get('encrypted'):
predicate = self.field_encryptor.encrypt(
binascii.unhexlify(macaroon.signature_bytes),
predicate
)
return super(EncryptedFirstPartyCaveatDelegate,
self).add_first_party_caveat(macaroon,
predicate,
**kwargs)
class EncryptedFirstPartyCaveatVerifierDelegate(
FirstPartyCaveatVerifierDelegate):
def __init__(self, field_encryptors=None, *args, **kwargs):
secret_box_encryptor = SecretBoxEncryptor()
self.field_encryptors = dict(
(f.signifier, f) for f in field_encryptors
) if field_encryptors else {
secret_box_encryptor.signifier: secret_box_encryptor
}
super(EncryptedFirstPartyCaveatVerifierDelegate, self).__init__(
*args, **kwargs
)
def verify_first_party_caveat(self, verifier, caveat, signature):
predicate = caveat.caveat_id_bytes
for signifier, encryptor in iteritems(self.field_encryptors):
if predicate.startswith(signifier):
predicate = encryptor.decrypt(
signature,
predicate
)
caveat_met = sum(callback(predicate)
for callback in verifier.callbacks)
return caveat_met