|
1 |
| -var ldap = require('../lib/index'); |
| 1 | +var ldap = require('../lib/index') |
2 | 2 |
|
| 3 | +/// --- Shared handlers |
3 | 4 |
|
4 |
| -///--- Shared handlers |
5 |
| - |
6 |
| -function authorize(req, res, next) { |
| 5 | +function authorize (req, res, next) { |
7 | 6 | /* Any user may search after bind, only cn=root has full power */
|
8 |
| - var isSearch = (req instanceof ldap.SearchRequest); |
9 |
| - if (!req.connection.ldap.bindDN.equals('cn=root') && !isSearch) |
10 |
| - return next(new ldap.InsufficientAccessRightsError()); |
| 7 | + var isSearch = (req instanceof ldap.SearchRequest) |
| 8 | + if (!req.connection.ldap.bindDN.equals('cn=root') && !isSearch) { return next(new ldap.InsufficientAccessRightsError()) } |
11 | 9 |
|
12 |
| - return next(); |
| 10 | + return next() |
13 | 11 | }
|
14 | 12 |
|
| 13 | +/// --- Globals |
15 | 14 |
|
16 |
| -///--- Globals |
17 |
| - |
18 |
| -var SUFFIX = 'o=smartdc'; |
19 |
| -var db = {}; |
20 |
| -var server = ldap.createServer(); |
21 |
| - |
22 |
| - |
| 15 | +var SUFFIX = 'o=smartdc' |
| 16 | +var db = {} |
| 17 | +var server = ldap.createServer() |
23 | 18 |
|
24 | 19 | server.bind('cn=root', function (req, res, next) {
|
25 |
| - if (req.dn.toString() !== 'cn=root' || req.credentials !== 'secret') |
26 |
| - return next(new ldap.InvalidCredentialsError()); |
| 20 | + if (req.dn.toString() !== 'cn=root' || req.credentials !== 'secret') { return next(new ldap.InvalidCredentialsError()) } |
27 | 21 |
|
28 |
| - res.end(); |
29 |
| - return next(); |
30 |
| -}); |
| 22 | + res.end() |
| 23 | + return next() |
| 24 | +}) |
31 | 25 |
|
32 | 26 | server.add(SUFFIX, authorize, function (req, res, next) {
|
33 |
| - var dn = req.dn.toString(); |
| 27 | + var dn = req.dn.toString() |
34 | 28 |
|
35 |
| - if (db[dn]) |
36 |
| - return next(new ldap.EntryAlreadyExistsError(dn)); |
| 29 | + if (db[dn]) { return next(new ldap.EntryAlreadyExistsError(dn)) } |
37 | 30 |
|
38 |
| - db[dn] = req.toObject().attributes; |
39 |
| - res.end(); |
40 |
| - return next(); |
41 |
| -}); |
| 31 | + db[dn] = req.toObject().attributes |
| 32 | + res.end() |
| 33 | + return next() |
| 34 | +}) |
42 | 35 |
|
43 | 36 | server.bind(SUFFIX, function (req, res, next) {
|
44 |
| - var dn = req.dn.toString(); |
45 |
| - if (!db[dn]) |
46 |
| - return next(new ldap.NoSuchObjectError(dn)); |
| 37 | + var dn = req.dn.toString() |
| 38 | + if (!db[dn]) { return next(new ldap.NoSuchObjectError(dn)) } |
47 | 39 |
|
48 |
| - if (!db[dn].userpassword) |
49 |
| - return next(new ldap.NoSuchAttributeError('userPassword')); |
| 40 | + if (!db[dn].userpassword) { return next(new ldap.NoSuchAttributeError('userPassword')) } |
50 | 41 |
|
51 |
| - if (db[dn].userpassword.indexOf(req.credentials) === -1) |
52 |
| - return next(new ldap.InvalidCredentialsError()); |
| 42 | + if (db[dn].userpassword.indexOf(req.credentials) === -1) { return next(new ldap.InvalidCredentialsError()) } |
53 | 43 |
|
54 |
| - res.end(); |
55 |
| - return next(); |
56 |
| -}); |
| 44 | + res.end() |
| 45 | + return next() |
| 46 | +}) |
57 | 47 |
|
58 | 48 | server.compare(SUFFIX, authorize, function (req, res, next) {
|
59 |
| - var dn = req.dn.toString(); |
60 |
| - if (!db[dn]) |
61 |
| - return next(new ldap.NoSuchObjectError(dn)); |
| 49 | + var dn = req.dn.toString() |
| 50 | + if (!db[dn]) { return next(new ldap.NoSuchObjectError(dn)) } |
62 | 51 |
|
63 |
| - if (!db[dn][req.attribute]) |
64 |
| - return next(new ldap.NoSuchAttributeError(req.attribute)); |
| 52 | + if (!db[dn][req.attribute]) { return next(new ldap.NoSuchAttributeError(req.attribute)) } |
65 | 53 |
|
66 |
| - var matches = false; |
67 |
| - var vals = db[dn][req.attribute]; |
| 54 | + var matches = false |
| 55 | + var vals = db[dn][req.attribute] |
68 | 56 | for (var i = 0; i < vals.length; i++) {
|
69 | 57 | if (vals[i] === req.value) {
|
70 |
| - matches = true; |
71 |
| - break; |
| 58 | + matches = true |
| 59 | + break |
72 | 60 | }
|
73 | 61 | }
|
74 | 62 |
|
75 |
| - res.end(matches); |
76 |
| - return next(); |
77 |
| -}); |
| 63 | + res.end(matches) |
| 64 | + return next() |
| 65 | +}) |
78 | 66 |
|
79 | 67 | server.del(SUFFIX, authorize, function (req, res, next) {
|
80 |
| - var dn = req.dn.toString(); |
81 |
| - if (!db[dn]) |
82 |
| - return next(new ldap.NoSuchObjectError(dn)); |
| 68 | + var dn = req.dn.toString() |
| 69 | + if (!db[dn]) { return next(new ldap.NoSuchObjectError(dn)) } |
83 | 70 |
|
84 |
| - delete db[dn]; |
| 71 | + delete db[dn] |
85 | 72 |
|
86 |
| - res.end(); |
87 |
| - return next(); |
88 |
| -}); |
| 73 | + res.end() |
| 74 | + return next() |
| 75 | +}) |
89 | 76 |
|
90 | 77 | server.modify(SUFFIX, authorize, function (req, res, next) {
|
91 |
| - var dn = req.dn.toString(); |
92 |
| - if (!req.changes.length) |
93 |
| - return next(new ldap.ProtocolError('changes required')); |
94 |
| - if (!db[dn]) |
95 |
| - return next(new ldap.NoSuchObjectError(dn)); |
| 78 | + var dn = req.dn.toString() |
| 79 | + if (!req.changes.length) { return next(new ldap.ProtocolError('changes required')) } |
| 80 | + if (!db[dn]) { return next(new ldap.NoSuchObjectError(dn)) } |
96 | 81 |
|
97 |
| - var entry = db[dn]; |
| 82 | + var entry = db[dn] |
98 | 83 |
|
| 84 | + let mod |
99 | 85 | for (var i = 0; i < req.changes.length; i++) {
|
100 |
| - mod = req.changes[i].modification; |
| 86 | + mod = req.changes[i].modification |
101 | 87 | switch (req.changes[i].operation) {
|
102 |
| - case 'replace': |
103 |
| - if (!entry[mod.type]) |
104 |
| - return next(new ldap.NoSuchAttributeError(mod.type)); |
105 |
| - |
106 |
| - if (!mod.vals || !mod.vals.length) { |
107 |
| - delete entry[mod.type]; |
108 |
| - } else { |
109 |
| - entry[mod.type] = mod.vals; |
110 |
| - } |
| 88 | + case 'replace': |
| 89 | + if (!entry[mod.type]) { return next(new ldap.NoSuchAttributeError(mod.type)) } |
111 | 90 |
|
112 |
| - break; |
| 91 | + if (!mod.vals || !mod.vals.length) { |
| 92 | + delete entry[mod.type] |
| 93 | + } else { |
| 94 | + entry[mod.type] = mod.vals |
| 95 | + } |
113 | 96 |
|
114 |
| - case 'add': |
115 |
| - if (!entry[mod.type]) { |
116 |
| - entry[mod.type] = mod.vals; |
117 |
| - } else { |
118 |
| - mod.vals.forEach(function (v) { |
119 |
| - if (entry[mod.type].indexOf(v) === -1) |
120 |
| - entry[mod.type].push(v); |
121 |
| - }); |
122 |
| - } |
| 97 | + break |
| 98 | + |
| 99 | + case 'add': |
| 100 | + if (!entry[mod.type]) { |
| 101 | + entry[mod.type] = mod.vals |
| 102 | + } else { |
| 103 | + mod.vals.forEach(function (v) { |
| 104 | + if (entry[mod.type].indexOf(v) === -1) { entry[mod.type].push(v) } |
| 105 | + }) |
| 106 | + } |
123 | 107 |
|
124 |
| - break; |
| 108 | + break |
125 | 109 |
|
126 |
| - case 'delete': |
127 |
| - if (!entry[mod.type]) |
128 |
| - return next(new ldap.NoSuchAttributeError(mod.type)); |
| 110 | + case 'delete': |
| 111 | + if (!entry[mod.type]) { return next(new ldap.NoSuchAttributeError(mod.type)) } |
129 | 112 |
|
130 |
| - delete entry[mod.type]; |
| 113 | + delete entry[mod.type] |
131 | 114 |
|
132 |
| - break; |
| 115 | + break |
133 | 116 | }
|
134 | 117 | }
|
135 | 118 |
|
136 |
| - res.end(); |
137 |
| - return next(); |
138 |
| -}); |
| 119 | + res.end() |
| 120 | + return next() |
| 121 | +}) |
139 | 122 |
|
140 | 123 | server.search(SUFFIX, authorize, function (req, res, next) {
|
141 |
| - var dn = req.dn.toString(); |
142 |
| - if (!db[dn]) |
143 |
| - return next(new ldap.NoSuchObjectError(dn)); |
| 124 | + var dn = req.dn.toString() |
| 125 | + if (!db[dn]) { return next(new ldap.NoSuchObjectError(dn)) } |
144 | 126 |
|
145 |
| - var scopeCheck; |
| 127 | + var scopeCheck |
146 | 128 |
|
147 | 129 | switch (req.scope) {
|
148 |
| - case 'base': |
149 |
| - if (req.filter.matches(db[dn])) { |
150 |
| - res.send({ |
151 |
| - dn: dn, |
152 |
| - attributes: db[dn] |
153 |
| - }); |
154 |
| - } |
| 130 | + case 'base': |
| 131 | + if (req.filter.matches(db[dn])) { |
| 132 | + res.send({ |
| 133 | + dn: dn, |
| 134 | + attributes: db[dn] |
| 135 | + }) |
| 136 | + } |
155 | 137 |
|
156 |
| - res.end(); |
157 |
| - return next(); |
| 138 | + res.end() |
| 139 | + return next() |
158 | 140 |
|
159 |
| - case 'one': |
160 |
| - scopeCheck = function (k) { |
161 |
| - if (req.dn.equals(k)) |
162 |
| - return true; |
| 141 | + case 'one': |
| 142 | + scopeCheck = function (k) { |
| 143 | + if (req.dn.equals(k)) { return true } |
163 | 144 |
|
164 |
| - var parent = ldap.parseDN(k).parent(); |
165 |
| - return (parent ? parent.equals(req.dn) : false); |
166 |
| - }; |
167 |
| - break; |
| 145 | + var parent = ldap.parseDN(k).parent() |
| 146 | + return (parent ? parent.equals(req.dn) : false) |
| 147 | + } |
| 148 | + break |
168 | 149 |
|
169 |
| - case 'sub': |
170 |
| - scopeCheck = function (k) { |
171 |
| - return (req.dn.equals(k) || req.dn.parentOf(k)); |
172 |
| - }; |
| 150 | + case 'sub': |
| 151 | + scopeCheck = function (k) { |
| 152 | + return (req.dn.equals(k) || req.dn.parentOf(k)) |
| 153 | + } |
173 | 154 |
|
174 |
| - break; |
| 155 | + break |
175 | 156 | }
|
176 | 157 |
|
177 | 158 | Object.keys(db).forEach(function (key) {
|
178 |
| - if (!scopeCheck(key)) |
179 |
| - return; |
| 159 | + if (!scopeCheck(key)) { return } |
180 | 160 |
|
181 | 161 | if (req.filter.matches(db[key])) {
|
182 | 162 | res.send({
|
183 | 163 | dn: key,
|
184 | 164 | attributes: db[key]
|
185 |
| - }); |
| 165 | + }) |
186 | 166 | }
|
187 |
| - }); |
188 |
| - |
189 |
| - res.end(); |
190 |
| - return next(); |
191 |
| -}); |
192 |
| - |
| 167 | + }) |
193 | 168 |
|
| 169 | + res.end() |
| 170 | + return next() |
| 171 | +}) |
194 | 172 |
|
195 |
| -///--- Fire it up |
| 173 | +/// --- Fire it up |
196 | 174 |
|
197 | 175 | server.listen(1389, function () {
|
198 |
| - console.log('LDAP server up at: %s', server.url); |
199 |
| -}); |
| 176 | + console.log('LDAP server up at: %s', server.url) |
| 177 | +}) |
0 commit comments