2023-01-13 05:40:33 +01:00
|
|
|
import { generateKeyPair } from "node:crypto";
|
2023-12-05 08:12:10 +01:00
|
|
|
import generateUserToken from "./generate-native-user-token.js";
|
|
|
|
import { User } from "@/models/entities/user.js";
|
|
|
|
import { Users, UsedUsernames } from "@/models/index.js";
|
|
|
|
import { UserProfile } from "@/models/entities/user-profile.js";
|
|
|
|
import { IsNull } from "typeorm";
|
2023-11-26 21:33:46 +01:00
|
|
|
import { genId } from "@/misc/gen-id.js";
|
2023-12-05 08:12:10 +01:00
|
|
|
import { toPunyNullable } from "@/misc/convert-host.js";
|
2023-01-13 05:40:33 +01:00
|
|
|
import { UserKeypair } from "@/models/entities/user-keypair.js";
|
2023-12-05 08:12:10 +01:00
|
|
|
import { UsedUsername } from "@/models/entities/used-username.js";
|
|
|
|
import { db } from "@/db/postgre.js";
|
|
|
|
import config from "@/config/index.js";
|
|
|
|
import { hashPassword } from "@/misc/password.js";
|
2020-01-29 20:37:25 +01:00
|
|
|
|
2021-10-08 06:37:02 +02:00
|
|
|
export async function signup(opts: {
|
2023-01-13 05:40:33 +01:00
|
|
|
username: User["username"];
|
2021-10-08 06:37:02 +02:00
|
|
|
password?: string | null;
|
2023-01-13 05:40:33 +01:00
|
|
|
passwordHash?: UserProfile["password"] | null;
|
2021-10-08 06:37:02 +02:00
|
|
|
host?: string | null;
|
|
|
|
}) {
|
|
|
|
const { username, password, passwordHash, host } = opts;
|
|
|
|
let hash = passwordHash;
|
|
|
|
|
2022-10-31 05:38:20 +01:00
|
|
|
const userCount = await Users.countBy({
|
|
|
|
host: IsNull(),
|
|
|
|
});
|
|
|
|
|
2022-11-02 02:41:59 +01:00
|
|
|
if (config.maxUserSignups != null && userCount > config.maxUserSignups) {
|
2023-01-13 05:40:33 +01:00
|
|
|
throw new Error("MAX_USERS_REACHED");
|
2022-10-31 05:38:20 +01:00
|
|
|
}
|
|
|
|
|
2020-01-29 20:37:25 +01:00
|
|
|
// Validate username
|
2022-02-19 06:05:32 +01:00
|
|
|
if (!Users.validateLocalUsername(username)) {
|
2023-01-13 05:40:33 +01:00
|
|
|
throw new Error("INVALID_USERNAME");
|
2020-01-29 20:37:25 +01:00
|
|
|
}
|
|
|
|
|
2021-10-08 06:37:02 +02:00
|
|
|
if (password != null && passwordHash == null) {
|
|
|
|
// Validate password
|
2022-02-19 06:05:32 +01:00
|
|
|
if (!Users.validatePassword(password)) {
|
2023-01-13 05:40:33 +01:00
|
|
|
throw new Error("INVALID_PASSWORD");
|
2021-10-08 06:37:02 +02:00
|
|
|
}
|
2020-01-29 20:37:25 +01:00
|
|
|
|
2021-10-08 06:37:02 +02:00
|
|
|
// Generate hash of password
|
2023-04-03 11:23:51 +02:00
|
|
|
hash = await hashPassword(password);
|
2021-10-08 06:37:02 +02:00
|
|
|
}
|
2020-01-29 20:37:25 +01:00
|
|
|
|
|
|
|
// Generate secret
|
|
|
|
const secret = generateUserToken();
|
|
|
|
|
|
|
|
// Check username duplication
|
2023-01-13 05:40:33 +01:00
|
|
|
if (
|
|
|
|
await Users.findOneBy({
|
|
|
|
usernameLower: username.toLowerCase(),
|
|
|
|
host: IsNull(),
|
|
|
|
})
|
|
|
|
) {
|
|
|
|
throw new Error("DUPLICATED_USERNAME");
|
2020-01-29 20:37:25 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
// Check deleted username duplication
|
2022-03-26 07:34:00 +01:00
|
|
|
if (await UsedUsernames.findOneBy({ username: username.toLowerCase() })) {
|
2023-01-13 05:40:33 +01:00
|
|
|
throw new Error("USED_USERNAME");
|
2020-01-29 20:37:25 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
const keyPair = await new Promise<string[]>((res, rej) =>
|
2023-01-13 05:40:33 +01:00
|
|
|
generateKeyPair(
|
|
|
|
"rsa",
|
|
|
|
{
|
|
|
|
modulusLength: 4096,
|
|
|
|
publicKeyEncoding: {
|
|
|
|
type: "spki",
|
|
|
|
format: "pem",
|
|
|
|
},
|
|
|
|
privateKeyEncoding: {
|
|
|
|
type: "pkcs8",
|
|
|
|
format: "pem",
|
|
|
|
cipher: undefined,
|
|
|
|
passphrase: undefined,
|
|
|
|
},
|
|
|
|
} as any,
|
|
|
|
(err, publicKey, privateKey) =>
|
|
|
|
err ? rej(err) : res([publicKey, privateKey]),
|
|
|
|
),
|
|
|
|
);
|
2020-01-29 20:37:25 +01:00
|
|
|
|
|
|
|
let account!: User;
|
|
|
|
|
|
|
|
// Start transaction
|
2023-01-13 05:40:33 +01:00
|
|
|
await db.transaction(async (transactionalEntityManager) => {
|
2022-03-26 07:34:00 +01:00
|
|
|
const exist = await transactionalEntityManager.findOneBy(User, {
|
2020-01-29 20:37:25 +01:00
|
|
|
usernameLower: username.toLowerCase(),
|
2022-03-26 07:34:00 +01:00
|
|
|
host: IsNull(),
|
2020-01-29 20:37:25 +01:00
|
|
|
});
|
|
|
|
|
2023-01-13 05:40:33 +01:00
|
|
|
if (exist) throw new Error(" the username is already used");
|
|
|
|
|
|
|
|
account = await transactionalEntityManager.save(
|
|
|
|
new User({
|
|
|
|
id: genId(),
|
|
|
|
createdAt: new Date(),
|
|
|
|
username: username,
|
|
|
|
usernameLower: username.toLowerCase(),
|
|
|
|
host: toPunyNullable(host),
|
|
|
|
token: secret,
|
|
|
|
isAdmin:
|
|
|
|
(await Users.countBy({
|
|
|
|
host: IsNull(),
|
2023-02-13 05:18:45 +01:00
|
|
|
isAdmin: true,
|
2023-01-13 05:40:33 +01:00
|
|
|
})) === 0,
|
|
|
|
}),
|
|
|
|
);
|
|
|
|
|
|
|
|
await transactionalEntityManager.save(
|
|
|
|
new UserKeypair({
|
|
|
|
publicKey: keyPair[0],
|
|
|
|
privateKey: keyPair[1],
|
|
|
|
userId: account.id,
|
|
|
|
}),
|
|
|
|
);
|
|
|
|
|
|
|
|
await transactionalEntityManager.save(
|
|
|
|
new UserProfile({
|
|
|
|
userId: account.id,
|
|
|
|
autoAcceptFollowed: true,
|
|
|
|
password: hash,
|
|
|
|
}),
|
|
|
|
);
|
|
|
|
|
|
|
|
await transactionalEntityManager.save(
|
|
|
|
new UsedUsername({
|
|
|
|
createdAt: new Date(),
|
|
|
|
username: username.toLowerCase(),
|
|
|
|
}),
|
|
|
|
);
|
2020-01-29 20:37:25 +01:00
|
|
|
});
|
|
|
|
|
|
|
|
return { account, secret };
|
|
|
|
}
|