Ghost/ghost/members-api/lib/services/TokenService.js
Fabien "egg" O'Carroll 104f84f252 Added eslint rule for file naming convention
As discussed with the product team we want to enforce kebab-case file names for
all files, with the exception of files which export a single class, in which
case they should be PascalCase and reflect the class which they export.

This will help find classes faster, and should push better naming for them too.

Some files and packages have been excluded from this linting, specifically when
a library or framework depends on the naming of a file for the functionality
e.g. Ember, knex-migrator, adapter-manager
2023-05-09 12:34:34 -04:00

55 lines
1.3 KiB
JavaScript

const jose = require('node-jose');
const jwt = require('jsonwebtoken');
module.exports = class TokenService {
constructor({
privateKey,
publicKey,
issuer
}) {
this._keyStore = jose.JWK.createKeyStore();
this._keyStoreReady = this._keyStore.add(privateKey, 'pem');
this._privateKey = privateKey;
this._publicKey = publicKey;
this._issuer = issuer;
}
async encodeIdentityToken({sub}) {
const jwk = await this._keyStoreReady;
return jwt.sign({
sub,
kid: jwk.kid
}, this._privateKey, {
keyid: jwk.kid,
algorithm: 'RS512',
audience: this._issuer,
expiresIn: '10m',
issuer: this._issuer
});
}
/**
* @param {string} token
* @returns {Promise<jwt.JwtPayload>}
*/
async decodeToken(token) {
await this._keyStoreReady;
const result = jwt.verify(token, this._publicKey, {
algorithms: ['RS512'],
issuer: this._issuer
});
if (typeof result === 'string') {
return {sub: result};
}
return result;
}
async getPublicKeys() {
await this._keyStoreReady;
return this._keyStore.toJSON();
}
};