Class: CommandTower::Services::Auth::PasswordRecovery::RateLimits::CheckSend

Inherits:
CommandTower::Services::ApplicationService show all
Includes:
Enforcement
Defined in:
app/services/command_tower/services/auth/password_recovery/rate_limits/check_send.rb

Constant Summary

Constants inherited from CommandTower::ServiceBase

CommandTower::ServiceBase::ON_ARGUMENT_VALIDATION

Instance Method Summary collapse

Methods inherited from CommandTower::Services::ApplicationService

call, inherited

Methods included from Transactional

#fail_transaction!, #transaction

Methods inherited from CommandTower::ServiceBase

#command_tower_lifecycle, inherited, #internal_validate, #service_lifecycle_error_codes, #service_lifecycle_log_level, #validate!

Methods included from Logging::LifecycleDeclaration

included

Methods included from Execution::ContextAccess

#audit, #execution_context, #log_debug, #log_error, #log_info, #log_warn, #publish_event

Methods included from ArgumentValidation

included

Methods included from CommandTower::ServiceLogging

included

Instance Method Details

#callObject



15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
# File 'app/services/command_tower/services/auth/password_recovery/rate_limits/check_send.rb', line 15

def call
  remaining = password_recovery_session.remaining_seconds
  expired_session! if remaining <= 0

  jti_ttl = remaining + CommandTower.config.password_recovery_session.cleanup_buffer_seconds

  enforce!(
    key: "password-recovery:rate:jti:#{password_recovery_session.jti}:send",
    ttl_seconds: jti_ttl,
    limit: limits.jti_send,
    scope: :session
  )

  enforce!(
    key: "password-recovery:rate:ip:#{normalize_ip(password_recovery_session.client_ip)}:send:1h:#{hour_bucket}",
    ttl_seconds: 3600,
    limit: limits.ip_send_hour,
    scope: :ip
  )
end