forked from TrueCloudLab/frostfs-s3-gw
26 lines
691 B
Go
26 lines
691 B
Go
package main
|
|
|
|
import (
|
|
"net/http"
|
|
|
|
"github.com/gorilla/mux"
|
|
"github.com/minio/minio/auth"
|
|
"go.uber.org/zap"
|
|
)
|
|
|
|
func attachNewUserAuth(router *mux.Router, center *auth.Center, log *zap.Logger) {
|
|
uamw := func(h http.Handler) http.Handler {
|
|
return http.HandlerFunc(func(w http.ResponseWriter, r *http.Request) {
|
|
bearerToken, err := center.AuthenticationPassed(r)
|
|
if err != nil {
|
|
log.Error("failed to pass authentication", zap.Error(err))
|
|
// TODO: Handle any auth error by rejecting request.
|
|
}
|
|
h.ServeHTTP(w, r.WithContext(auth.SetBearerToken(r.Context(), bearerToken)))
|
|
|
|
})
|
|
}
|
|
// TODO: should not be used for all routes,
|
|
// only for API
|
|
router.Use(uamw)
|
|
}
|