Class: PlatformSdk::Identity::AuthClient

Inherits:
Object
  • Object
show all
Defined in:
lib/platform_sdk/identity/clients.rb

Overview

Client for getting auth tokens from identity server

Instance Attribute Summary collapse

Instance Method Summary collapse

Constructor Details

#initialize(base_url, client_id, client_secret) ⇒ AuthClient

Returns a new instance of AuthClient.



29
30
31
32
33
34
35
36
37
38
# File 'lib/platform_sdk/identity/clients.rb', line 29

def initialize(base_url, client_id, client_secret)
  @client_id = client_id
  @client_secret = client_secret
  @conn = Faraday.new(base_url) do |conn|
    conn.request :url_encoded
    conn.response :raise_error
    conn.response :json
    conn.adapter :net_http
  end
end

Instance Attribute Details

#connObject

Returns the value of attribute conn.



27
28
29
# File 'lib/platform_sdk/identity/clients.rb', line 27

def conn
  @conn
end

#tokenObject

Returns the value of attribute token.



27
28
29
# File 'lib/platform_sdk/identity/clients.rb', line 27

def token
  @token
end

Instance Method Details

#auth_tokenObject



40
41
42
43
44
45
46
47
# File 'lib/platform_sdk/identity/clients.rb', line 40

def auth_token
  if expired?
    response = @conn.post("/connect/token", request_body)
    @token = response.body.transform_keys(&:to_sym)
  end

  @token[:access_token]
end

#expired?Boolean

Returns:

  • (Boolean)


49
50
51
52
53
# File 'lib/platform_sdk/identity/clients.rb', line 49

def expired?
  return true if @token.nil?

  token_expired?(@token[:access_token])
end

#jwt_expiry_time(jwt) ⇒ Object



64
65
66
# File 'lib/platform_sdk/identity/clients.rb', line 64

def jwt_expiry_time(jwt)
  Time.at(JWT.decode(jwt, nil, false)[0]["exp"])
end

#refresh_session(session: {}) ⇒ Object

Raises:

  • (ArgumentError)


77
78
79
80
81
82
83
84
85
86
87
# File 'lib/platform_sdk/identity/clients.rb', line 77

def refresh_session(session: {})
  raise ArgumentError if session[:id_token].nil? || session[:refresh_token].nil?

  refreshed_tokens = refresh_token(jwt: session[:id_token], refresh_token: session[:refresh_token])

  return if refreshed_tokens.nil?
  
  session[:id_token] = refreshed_tokens[:id_token]
  session[:access_token] = refreshed_tokens[:access_token]
  session[:refresh_token] = refreshed_tokens[:refresh_token]
end

#refresh_token(jwt:, refresh_token:) ⇒ Object

Raises:

  • (ArgumentError)


68
69
70
71
72
73
74
75
# File 'lib/platform_sdk/identity/clients.rb', line 68

def refresh_token(jwt:, refresh_token:)
  raise ArgumentError if refresh_token.nil? || jwt.nil?
  return unless token_expired?(jwt)

  response = @conn.post("/connect/token", request_body(
    grant_type: "refresh_token", refresh_token:))
  response.body.transform_keys!(&:to_sym)
end

#token_expired?(jwt) ⇒ Boolean

Returns:

  • (Boolean)


55
56
57
58
59
60
61
62
# File 'lib/platform_sdk/identity/clients.rb', line 55

def token_expired?(jwt)
  begin
    expiry_time = jwt_expiry_time(jwt)
  rescue JWT::ExpiredSignature
    return true
  end
  expiry_time <= Time.now.utc + 45
end