]>
git.immae.eu Git - github/Chocobozzz/PeerTube.git/blob - server/helpers/peertube-crypto.js
2e07df00e97a32333b8af34aa51322084041e93b
3 const bcrypt
= require('bcrypt')
4 const crypto
= require('crypto')
5 const fs
= require('fs')
6 const openssl
= require('openssl-wrapper')
7 const ursa
= require('ursa')
9 const constants
= require('../initializers/constants')
10 const logger
= require('./logger')
12 const algorithm
= 'aes-256-ctr'
14 const peertubeCrypto
= {
17 createCertsIfNotExist
,
22 function checkSignature (publicKey
, rawData
, hexSignature
) {
23 const crt
= ursa
.createPublicKey(publicKey
)
24 const isValid
= crt
.hashAndVerify('sha256', new Buffer(rawData
).toString('hex'), hexSignature
, 'hex')
28 function comparePassword (plainPassword
, hashPassword
, callback
) {
29 bcrypt
.compare(plainPassword
, hashPassword
, function (err
, isPasswordMatch
) {
30 if (err
) return callback(err
)
32 return callback(null, isPasswordMatch
)
36 function createCertsIfNotExist (callback
) {
37 certsExist(function (exist
) {
42 createCerts(function (err
) {
48 function cryptPassword (password
, callback
) {
49 bcrypt
.genSalt(constants
.BCRYPT_SALT_SIZE
, function (err
, salt
) {
50 if (err
) return callback(err
)
52 bcrypt
.hash(password
, salt
, function (err
, hash
) {
53 return callback(err
, hash
)
58 function sign (data
) {
59 const myKey
= ursa
.createPrivateKey(fs
.readFileSync(constants
.CONFIG
.STORAGE
.CERT_DIR
+ 'peertube.key.pem'))
60 const signature
= myKey
.hashAndSign('sha256', data
, 'utf8', 'hex')
65 // ---------------------------------------------------------------------------
67 module
.exports
= peertubeCrypto
69 // ---------------------------------------------------------------------------
71 function certsExist (callback
) {
72 fs
.exists(constants
.CONFIG
.STORAGE
.CERT_DIR
+ 'peertube.key.pem', function (exists
) {
73 return callback(exists
)
77 function createCerts (callback
) {
78 certsExist(function (exist
) {
80 const string
= 'Certs already exist.'
81 logger
.warning(string
)
82 return callback(new Error(string
))
85 logger
.info('Generating a RSA key...')
88 'out': constants
.CONFIG
.STORAGE
.CERT_DIR
+ 'peertube.key.pem',
91 openssl
.exec('genrsa', options
, function (err
) {
93 logger
.error('Cannot create private key on this pod.')
96 logger
.info('RSA key generated.')
99 'in': constants
.CONFIG
.STORAGE
.CERT_DIR
+ 'peertube.key.pem',
101 'out': constants
.CONFIG
.STORAGE
.CERT_DIR
+ 'peertube.pub'
103 logger
.info('Manage public key...')
104 openssl
.exec('rsa', options
, function (err
) {
106 logger
.error('Cannot create public key on this pod.')
110 logger
.info('Public key managed.')
111 return callback(null)
117 function generatePassword (callback
) {
118 crypto
.randomBytes(32, function (err
, buf
) {
119 if (err
) return callback(err
)
121 callback(null, buf
.toString('utf8'))