2016-03-16 19:49:25 +00:00
|
|
|
from datetime import datetime
|
|
|
|
|
2016-03-22 15:44:54 +00:00
|
|
|
from data.model import ServiceKeyDoesNotExist, db_transaction
|
|
|
|
from data.database import db_for_update, ServiceKey, ServiceKeyApproval
|
2016-03-16 19:49:25 +00:00
|
|
|
|
|
|
|
def _gc_expired(service):
|
|
|
|
ServiceKey.delete().where(ServiceKey.service == service,
|
|
|
|
ServiceKey.expiration_date <= datetime.now).execute()
|
|
|
|
|
|
|
|
|
|
|
|
def upsert_service_key(kid, service, jwk, expiration_date):
|
|
|
|
_gc_expired(service)
|
|
|
|
|
|
|
|
try:
|
2016-03-22 15:44:54 +00:00
|
|
|
with db_transaction():
|
|
|
|
key = db_for_update(ServiceKey.select().where(ServiceKey.kid == kid)).get()
|
|
|
|
key.service = service
|
|
|
|
key.jwk = jwk
|
|
|
|
key.expiration_date = expiration_date
|
|
|
|
key.save()
|
2016-03-16 19:49:25 +00:00
|
|
|
except ServiceKey.DoesNotExist:
|
|
|
|
ServiceKey.create(kid=kid, service=service, jwk=jwk, expiration_date=expiration_date)
|
|
|
|
|
|
|
|
|
|
|
|
def get_service_keys(service, kid=None):
|
|
|
|
_gc_expired(service)
|
|
|
|
|
2016-03-22 15:44:54 +00:00
|
|
|
query = ServiceKey.select().where(ServiceKey.service == service,
|
|
|
|
~(ServiceKey.approval >> None))
|
|
|
|
if kid:
|
|
|
|
query.where(ServiceKey.kid == kid)
|
|
|
|
return query
|
2016-03-16 19:49:25 +00:00
|
|
|
|
|
|
|
|
|
|
|
def delete_service_key(service, kid):
|
|
|
|
_gc_expired(service)
|
|
|
|
|
|
|
|
try:
|
|
|
|
ServiceKey.delete().where(ServiceKey.service == service,
|
|
|
|
ServiceKey.kid == kid).execute()
|
|
|
|
except ServiceKey.DoesNotExist:
|
|
|
|
raise ServiceKeyDoesNotExist()
|
2016-03-22 15:44:54 +00:00
|
|
|
|
|
|
|
|
|
|
|
def approve_service_key(service, kid, approver, approval_type):
|
|
|
|
try:
|
|
|
|
with db_transaction():
|
|
|
|
approval = ServiceKeyApproval.create(approver=approver, approval_type=approval_type)
|
|
|
|
key = db_for_update(ServiceKey.select().where(ServiceKey.service == service,
|
|
|
|
ServiceKey.kid == kid)).get()
|
|
|
|
key.approval = approval
|
|
|
|
key.save()
|
|
|
|
except ServiceKey.DoesNotExist:
|
|
|
|
raise ServiceKeyDoesNotExist
|