forked from theopenlane/core
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathclient.go
More file actions
88 lines (69 loc) · 1.89 KB
/
Copy pathclient.go
File metadata and controls
88 lines (69 loc) · 1.89 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
package authentik
import (
"context"
"net/http"
"net/url"
"time"
authentikSDK "goauthentik.io/api/v3"
"github.com/theopenlane/core/internal/integrations/types"
)
const (
// authentikRequestTimeout is the per-request timeout for Authentik API calls
authentikRequestTimeout = 30 * time.Second
)
// Client builds Authentik API clients for one installation
type Client struct{}
// Build constructs the Authentik API client for one installation
func (Client) Build(_ context.Context, req types.ClientBuildRequest) (any, error) {
cred, err := resolveCredential(req.Credentials)
if err != nil {
return nil, err
}
if cred.Token == "" {
return nil, ErrAPITokenMissing
}
if cred.BaseURL == "" {
return nil, ErrBaseURLMissing
}
host, err := extractHost(cred.BaseURL)
if err != nil {
return nil, err
}
scheme, err := extractScheme(cred.BaseURL)
if err != nil {
return nil, err
}
cfg := authentikSDK.NewConfiguration()
cfg.Host = host
cfg.Scheme = scheme
cfg.HTTPClient = &http.Client{Timeout: authentikRequestTimeout}
cfg.AddDefaultHeader("Authorization", "Bearer "+cred.Token)
return authentikSDK.NewAPIClient(cfg), nil
}
// resolveCredential extracts the CredentialSchema from the provided credential bindings
func resolveCredential(bindings types.CredentialBindings) (CredentialSchema, error) {
cred, ok, err := authentikCredential.Resolve(bindings)
if err != nil {
return CredentialSchema{}, ErrCredentialDecode
}
if !ok {
return CredentialSchema{}, ErrCredentialDecode
}
return cred, nil
}
// extractHost extracts the host from a base URL
func extractHost(baseURL string) (string, error) {
u, err := url.Parse(baseURL)
if err != nil {
return "", err
}
return u.Host, nil
}
// extractScheme extracts the scheme from a base URL
func extractScheme(baseURL string) (string, error) {
u, err := url.Parse(baseURL)
if err != nil {
return "", err
}
return u.Scheme, nil
}