1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
extern crate ring;
extern crate data_encoding;
extern crate serde;
extern crate serde_json;
#[macro_use]
extern crate serde_derive;

use std::result;

use serde::Serialize;
use serde::de::DeserializeOwned;

use ring::digest;
use ring::hmac;

use data_encoding::BASE64URL_NOPAD;

pub use error::Error;

mod error;

type Result<T> = result::Result<T, error::Error>;

pub enum Algorithm {
    SHA1,
    SHA256,
    SHA384,
    SHA512
}

#[derive(Serialize, Deserialize, Debug)]
struct Header {
    alg: String,
    typ: String
}

impl Header {
    fn new(alg: Algorithm) -> Header {
        
        let algorithm = match alg {
            Algorithm::SHA1 => "HS1".to_string(),
            Algorithm::SHA256 => "HS256".to_string(),
            Algorithm::SHA384 => "HS384".to_string(),
            Algorithm::SHA512 => "HS512".to_string()
        };

        Header{
            alg: algorithm,
            typ: "JWT".to_string(),
        }
    }

    fn algorithm(&self) -> &'static digest::Algorithm {

        match &*self.alg {
            "HS1" => &digest::SHA1,
            "HS256" => &digest::SHA256,
            "HS384" => &digest::SHA384,
            "HS512" => &digest::SHA512,
            _ => &digest::SHA256
        }
    }

    fn to_string(&self) -> Result<String> {
        Ok(serde_json::to_string(self)?)
    }

    fn from_str(json: &str) -> Result<Self> {
        Ok(serde_json::from_str(json)?)
    }

    fn encode_base64(&self) -> Result<String> {
        Ok(BASE64URL_NOPAD.encode(self.to_string()?.as_bytes()))
    }

    fn decode_base64(base: &str) -> Result<Self> {
        let _json = BASE64URL_NOPAD.decode(base.as_bytes())?;
        Header::from_str(&String::from_utf8(_json)?)
    }
}

pub trait Message: Serialize + DeserializeOwned {
    fn to_string(&self) -> Result<String> {
        Ok(serde_json::to_string(self)?)
    }

    fn from_str(json: &str) -> Result<Self> {
        Ok(serde_json::from_str(json)?)
    }

    fn encode_base64(&self) -> Result<String> {
        Ok(BASE64URL_NOPAD.encode(self.to_string()?.as_bytes()))
    }

    fn decode_base64(base: &str) -> Result<Self> {
        let _json = BASE64URL_NOPAD.decode(base.as_bytes())?;
        Message::from_str(&String::from_utf8(_json)?)
    }
}

pub fn encode<M>(key: &str, message: M, alg: Algorithm) -> Result<String> where M: Message {
    let message_base64 = message.encode_base64()?;

    let header = Header::new(alg);

    let unsigned_token = header.encode_base64()? + "." + &message_base64;

    let signature = hmac::sign(
        &hmac::SigningKey::new(header.algorithm(), key.as_bytes()),
        unsigned_token.as_bytes()
    );

    let signature_base64 = BASE64URL_NOPAD.encode(signature.as_ref());

    Ok(unsigned_token + "." + &signature_base64)
}

pub fn decode<M>(key: &str, token: String) -> Result<M> where M: Message {
    let token_split: Vec<&str> = token.split('.').collect();

    if token_split.len() != 3 {
        return Err(error::JwtError::Decode.into())
    }

    let header_base64 = token_split[0];
    let message_base64 = token_split[1];

    hmac::verify(
        &hmac::VerificationKey::new(
            Header::decode_base64(&header_base64)?.algorithm(),
            key.as_bytes()
        ), 
        (header_base64.to_string() + "." + &message_base64).as_bytes(),
        &BASE64URL_NOPAD.decode(token_split[2].as_bytes())?
    ).or(Err(error::JwtError::Verify))?;

    Message::decode_base64(message_base64)
}

/*
impl Message for Messages {}

#[derive(Serialize, Deserialize, Debug)]
struct Messages {
    user_id: i64,
    date: i64,
}

fn main() {
    let key = "123ABC";

    let message = Messages {
        user_id: 10000,
        date: 123456789,
    };

    let token = encode(key, message, Algorithm::SHA256).unwrap();

    println!("{:?}", token);

    let result = decode::<Messages>(key, token);

    println!("{:?}", result);
}
*/