util/sasl/external.lua
author Matthew Wild <mwild1@gmail.com>
Wed, 01 Mar 2023 12:55:00 +0000
changeset 12915 ab1164eda011
parent 8558 4f0f5b49bb03
child 12979 d10957394a3c
permissions -rw-r--r--
util.sasl: Add SASL OAUTHBEARER mechanism (RFC 7628)

local saslprep = require "util.encodings".stringprep.saslprep;

local _ENV = nil;
-- luacheck: std none

local function external(self, message)
	message = saslprep(message);
	local state
	self.username, state = self.profile.external(message);

	if state == false then
		return "failure", "account-disabled";
	elseif state == nil  then
		return "failure", "not-authorized";
	elseif state == "expired" then
		return "false", "credentials-expired";
	end

	return "success";
end

local function init(registerMechanism)
	registerMechanism("EXTERNAL", {"external"}, external);
end

return {
	init = init;
}