aboutsummaryrefslogtreecommitdiffstats
path: root/Software/Visual_Studio/Tango.Web/Security/WebToken.cs
blob: 7aa4860ab21554eac63aecdcc318e31988d94efd (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
pre { line-height: 125%; }
td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }
span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }
td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }
span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }
.highlight .hll { background-color: #ffffcc }
.highlight .c { color: #888888 } /* Comment */
.highlight .err { color: #a61717; background-color: #e3d2d2 } /* Error */
.highlight .k { color: #008800; font-weight: bold } /* Keyword */
.highlight .ch { color: #888888 } /* Comment.Hashbang */
.highlight .cm { color: #888888 } /* Comment.Multiline */
.highlight .cp { color: #cc0000; font-weight: bold } /* Comment.Preproc */
.highlight .cpf { color: #888888 } /* Comment.PreprocFile */
.highlight .c1 { color: #888888 } /* Comment.Single */
.highlight .cs { color: #cc0000; font-weight: bold; background-color: #fff0f0 } /* Comment.Special */
.highlight .gd { color: #000000; background-color: #ffdddd } /* Generic.Deleted */
.highlight .ge { font-style: italic } /* Generic.Emph */
.highlight .ges { font-weight: bold; font-style: italic } /* Generic.EmphStrong */
.highlight .gr { color: #aa0000 } /* Generic.Error */
.highlight .gh { color: #333333 } /* Generic.Heading */
.highlight .gi { color: #000000; background-color: #ddffdd } /* Generic.Inserted */
.highlight .go { color: #888888 } /* Generic.Output */
.highlight .gp { color: #555555 } /* Generic.Prompt */
.highlight .gs { font-weight: bold } /* Generic.Strong */
.highlight .gu { color: #666666 } /* Generic.Subheading */
.highlight .gt { color: #aa0000 } /* Generic.Traceback */
.highlight .kc { color: #008800; font-weight: bold } /* Keyword.Constant */
.highlight .kd { color: #008800; font-weight: bold } /* Keyword.Declaration */
.highlight .kn { color: #008800; font-weight: bold } /* Keyword.Namespace */
.highlight .kp { color: #008800 } /* Keyword.Pseudo */
.highlight .kr { color: #008800; font-weight: bold } /* Keyword.Reserved */
.highlight .kt { color: #888888; font-weight: bold } /* Keyword.Type */
.highlight .m { color: #0000DD; font-weight: bold } /* Literal.Number */
.highlight .s { color: #dd2200; background-color: #fff0f0 } /* Literal.String */
.highlight .na { color: #336699 } /* Name.Attribute */
.highlight .nb { color: #003388 } /* Name.Builtin */
.highlight .nc { color: #bb0066; font-weight: bold } /* Name.Class */
.highlight .no { color: #003366; font-weight: bold } /* Name.Constant */
.highlight .nd { color: #555555 } /* Name.Decorator */
.highlight .ne { color: #bb0066; font-weight: bold } /* Name.Exception */
.highlight .nf { color: #0066bb; font-weight: bold } /* Name.Function */
.highlight .nl { color: #336699; font-style: italic } /* Name.Label */
.highlight .nn { color: #bb0066; font-weight: bold } /* Name.Namespace */
.highlight .py { color: #336699; font-weight: bold } /* Name.Property */
.highlight .nt { color: #bb0066; font-weight: bold } /* Name.Tag */
.highlight .nv { color: #336699 } /* Name.Variable */
.highlight .ow { color: #008800 } /* Operator.Word */
.highlight .w { color: #bbbbbb } /* Text.Whitespace */
.highlight .mb { color: #0000DD; font-weight: bold } /* Literal.Number.Bin */
.highlight .mf { color: #0000DD; font-weight: bold } /* Literal.Number.Float */
.highlight .mh { color: #0000DD; font-weight: bold } /* Literal.Number.Hex */
.highlight .mi { color: #0000DD; font-weight: bold } /* Literal.Number.Integer */
.highlight .mo { color: #0000DD; font-weight: bold } /* Literal.Number.Oct */
.highlight .sa { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Affix */
.highlight .sb { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Backtick */
.highlight .sc { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Char */
.highlight .dl { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Delimiter */
.highlight .sd { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Doc */
.highlight .s2 { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Double */
.highlight .se { color: #0044dd; background-color: #fff0f0 } /* Literal.String.Escape */
.highlight .sh { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Heredoc */
.highlight .si { color: #3333bb; background-color: #fff0f0 } /* Literal.String.Interpol */
.highlight .sx { color: #22bb22; background-color: #f0fff0 } /* Literal.String.Other */
.highlight .sr { color: #008800; background-color: #fff0ff } /* Literal.String.Regex */
.highlight .s1 { color: #dd2200; background-color: #fff0f0 } /* Literal.String.Single */
.highlight .ss { color: #aa6600; background-color: #fff0f0 } /* Literal.String.Symbol */
.highlight .bp { color: #003388 } /* Name.Builtin.Pseudo */
.highlight .fm { color: #0066bb; font-weight: bold } /* Name.Function.Magic */
.highlight .vc { color: #336699 } /* Name.Variable.Class */
.highlight .vg { color: #dd7700 } /* Name.Variable.Global */
.highlight .vi { color: #3333bb } /* Name.Variable.Instance */
.highlight .vm { color: #336699 } /* Name.Variable.Magic */
.highlight .il { color: #0000DD; font-weight: bold } /* Literal.Number.Integer.Long */
<Re
using JWT;
using JWT.Algorithms;
using JWT.Builder;
using JWT.Serializers;
using Newtonsoft.Json;
using System;
using System.Collections.Generic;
using System.Linq;
using System.Security.Claims;
using System.Text;
using System.Threading.Tasks;

namespace Tango.Web.Security
{
    public class WebToken
    {
        public DateTime Issued { get; protected set; }
        public DateTime? Expiration { get; protected set; }
        public String AccessToken { get; protected set; }
        public String RefreshToken { get; protected set; }

        public WebToken()
        {

        }

        public static WebToken CreateNew(String secret, DateTime? expiration = null)
        {
            DateTime issued = DateTime.UtcNow;

            var builder = new JwtBuilder()
                 .WithAlgorithm(new HMACSHA256Algorithm())
                 .WithSecret(secret)
                 .IssuedAt(issued);

            if (expiration != null)
            {
                builder = builder.ExpirationTime(expiration.Value);
            }

            String refreshToken = Guid.NewGuid().ToString();

            builder = builder.AddClaim("object", null);
            builder = builder.AddClaim("refresh-token", refreshToken);

            return new WebToken()
            {
                AccessToken = builder.Build(),
                RefreshToken = refreshToken,
                Expiration = expiration,
                Issued = issued,
            };
        }

        public static void Validate(String secret, String token)
        {
            var json = new JwtBuilder()
                 .WithSecret(secret)
                 .MustVerifySignature()
                 .Decode(token);
        }

        public void Validate(String secret)
        {
            var json = new JwtBuilder()
                        .WithSecret(secret)
                        .MustVerifySignature()
                        .Decode(AccessToken);
        }

        public WebToken Renew(String secret)
        {
            var newToken = CreateNew(secret, DateTime.UtcNow.Add(Expiration.Value - Issued));
            newToken.RefreshToken = RefreshToken;
            return newToken;
        }

        public static WebToken FromToken(String token)
        {
            WebToken webToken = new WebToken();

            var payload = new JwtBuilder()
                  .WithValidator(null)
                  .Decode<IDictionary<string, object>>(token);

            webToken.AccessToken = token;

            if (payload.ContainsKey("exp"))
            {
                long exp = long.Parse(payload["exp"].ToString());
                webToken.Expiration = ConvertEpochToDateTime(exp);
            }

            if (payload.ContainsKey("iat"))
            {
                long iat = long.Parse(payload["iat"].ToString());
                webToken.Issued = ConvertEpochToDateTime(iat);
            }

            if (payload.ContainsKey("refresh-token"))
            {
                webToken.RefreshToken = payload["refresh-token"].ToString();
            }

            return webToken;
        }

        protected static DateTime ConvertEpochToDateTime(long seconds)
        {
            var epoch = new DateTime(1970, 1, 1, 0, 0, 0, DateTimeKind.Utc);
            return epoch.AddSeconds(seconds);
        }
    }

    public class WebToken<T> : WebToken where T : class
    {
        public T Object { get; protected set; }

        private WebToken()
        {

        }

        public static WebToken<T> CreateNew(String secret, T obj = null, DateTime? expiration = null)
        {
            DateTime issued = DateTime.UtcNow;

            var builder = new JwtBuilder()
                 .WithAlgorithm(new HMACSHA256Algorithm())
                 .WithSecret(secret)
                 .IssuedAt(issued);

            if (expiration != null)
            {
                builder = builder.ExpirationTime(expiration.Value);
            }

            String refreshToken = Guid.NewGuid().ToString();

            builder = builder.AddClaim("object", obj);
            builder = builder.AddClaim("refresh-token", refreshToken);

            return new WebToken<T>()
            {
                AccessToken = builder.Build(),
                RefreshToken = refreshToken,
                Expiration = expiration,
                Issued = issued,
                Object = obj,
            };
        }

        public static new WebToken<T> FromToken(String token)
        {
            WebToken<T> webToken = new WebToken<T>();

            var payload = new JwtBuilder()
                  .WithValidator(null)
                  .Decode<IDictionary<string, object>>(token);

            webToken.AccessToken = token;

            if (payload.ContainsKey("exp"))
            {
                long exp = long.Parse(payload["exp"].ToString());
                webToken.Expiration = ConvertEpochToDateTime(exp);
            }

            if (payload.ContainsKey("iat"))
            {
                long iat = long.Parse(payload["iat"].ToString());
                webToken.Issued = ConvertEpochToDateTime(iat);
            }

            if (payload.ContainsKey("refresh-token"))
            {
                webToken.RefreshToken = payload["refresh-token"].ToString();
            }

            webToken.Object = JsonConvert.DeserializeObject<T>(payload["object"].ToString());

            return webToken;
        }

        public new WebToken<T> Renew(String secret)
        {
            var newToken = WebToken<T>.CreateNew(secret, Object, DateTime.UtcNow.Add(Expiration.Value - Issued));
            newToken.RefreshToken = RefreshToken;
            return newToken;
        }
    }
}