|
5 | 5 |
|
6 | 6 | import modal |
7 | 7 | from fastapi import APIRouter, File, Form, HTTPException, UploadFile |
| 8 | +from pydantic import BaseModel |
8 | 9 |
|
9 | 10 | logger = logging.getLogger(__name__) |
10 | 11 |
|
11 | 12 |
|
| 13 | +class AuthorizeDeviceRequest(BaseModel): |
| 14 | + """Request body for device code authorization.""" |
| 15 | + user_code: str |
| 16 | + user_id: str |
| 17 | + id_token: str |
| 18 | + refresh_token: str |
| 19 | + |
| 20 | + |
12 | 21 | class ServerFastAPIRouter: |
13 | 22 | """ |
14 | 23 | FastAPI router for the Server service. |
@@ -93,6 +102,7 @@ def _register_routes(self): |
93 | 102 | self.router.add_api_route("/cache/clear", self.clear_cache, methods=["POST"]) |
94 | 103 | self.router.add_api_route("/auth/device/code", self.request_device_code, methods=["POST"]) |
95 | 104 | self.router.add_api_route("/auth/device/poll", self.poll_device_code, methods=["POST"]) |
| 105 | + self.router.add_api_route("/auth/device/authorize", self.authorize_device_code, methods=["POST"]) |
96 | 106 |
|
97 | 107 | async def health(self): |
98 | 108 | """ |
@@ -355,3 +365,38 @@ async def poll_device_code(self, device_code: str): |
355 | 365 | except Exception as e: |
356 | 366 | logger.error(f"[Device Poll] Error polling device code: {e}") |
357 | 367 | raise HTTPException(status_code=500, detail=str(e)) |
| 368 | + |
| 369 | + async def authorize_device_code(self, request: AuthorizeDeviceRequest): |
| 370 | + try: |
| 371 | + # Look up device_code by user_code |
| 372 | + device_code = self.server_instance.auth_connector.get_device_code_by_user_code(request.user_code) |
| 373 | + |
| 374 | + if device_code is None: |
| 375 | + raise HTTPException( |
| 376 | + status_code=404, |
| 377 | + detail="User code not found or expired" |
| 378 | + ) |
| 379 | + |
| 380 | + # Mark device code as authorized with user tokens |
| 381 | + success = self.server_instance.auth_connector.set_device_code_authorized( |
| 382 | + device_code=device_code, |
| 383 | + user_id=request.user_id, |
| 384 | + id_token=request.id_token, |
| 385 | + refresh_token=request.refresh_token |
| 386 | + ) |
| 387 | + |
| 388 | + if not success: |
| 389 | + raise HTTPException( |
| 390 | + status_code=500, |
| 391 | + detail="Failed to authorize device code" |
| 392 | + ) |
| 393 | + |
| 394 | + logger.info(f"[Device Authorize] User code {request.user_code} authorized for user {request.user_id}") |
| 395 | + |
| 396 | + return {"status": "success"} |
| 397 | + |
| 398 | + except HTTPException: |
| 399 | + raise |
| 400 | + except Exception as e: |
| 401 | + logger.error(f"[Device Authorize] Error authorizing device code: {e}") |
| 402 | + raise HTTPException(status_code=500, detail=str(e)) |
0 commit comments