[mirotalksfu] - improve OIDC auth check
هذا الالتزام موجود في:
@@ -58,7 +58,7 @@ dev dependencies: {
|
|||||||
* @license For commercial or closed source, contact us at license.mirotalk@gmail.com or purchase directly via CodeCanyon
|
* @license For commercial or closed source, contact us at license.mirotalk@gmail.com or purchase directly via CodeCanyon
|
||||||
* @license CodeCanyon: https://codecanyon.net/item/mirotalk-sfu-webrtc-realtime-video-conferences/40769970
|
* @license CodeCanyon: https://codecanyon.net/item/mirotalk-sfu-webrtc-realtime-video-conferences/40769970
|
||||||
* @author Miroslav Pejic - miroslav.pejic.85@gmail.com
|
* @author Miroslav Pejic - miroslav.pejic.85@gmail.com
|
||||||
* @version 1.7.23
|
* @version 1.7.24
|
||||||
*
|
*
|
||||||
*/
|
*/
|
||||||
|
|
||||||
@@ -328,23 +328,33 @@ if (!announcedAddress && IPv4 === '0.0.0.0') {
|
|||||||
// Custom middleware function for OIDC authentication
|
// Custom middleware function for OIDC authentication
|
||||||
function OIDCAuth(req, res, next) {
|
function OIDCAuth(req, res, next) {
|
||||||
if (OIDC.enabled) {
|
if (OIDC.enabled) {
|
||||||
|
|
||||||
|
function handleHostProtected(req) {
|
||||||
|
if (!hostCfg.protected) return;
|
||||||
|
|
||||||
|
const ip = authHost.getIP(req);
|
||||||
|
hostCfg.authenticated = true;
|
||||||
|
authHost.setAuthorizedIP(ip, true);
|
||||||
|
// Check...
|
||||||
|
log.debug('OIDC ------> Host protected', {
|
||||||
|
authenticated: hostCfg.authenticated,
|
||||||
|
authorizedIPs: authHost.getAuthorizedIPs(),
|
||||||
|
});
|
||||||
|
}
|
||||||
|
|
||||||
|
if (req.oidc.isAuthenticated()) {
|
||||||
|
log.debug('OIDC ------> User already Authenticated');
|
||||||
|
handleHostProtected(req);
|
||||||
|
return next();
|
||||||
|
}
|
||||||
|
|
||||||
// Apply requiresAuth() middleware conditionally
|
// Apply requiresAuth() middleware conditionally
|
||||||
requiresAuth()(req, res, function () {
|
requiresAuth()(req, res, function () {
|
||||||
log.debug('[OIDC] ------> requiresAuth');
|
log.debug('OIDC ------> requiresAuth');
|
||||||
// Check if user is authenticated
|
// Check if user is authenticated
|
||||||
if (req.oidc.isAuthenticated()) {
|
if (req.oidc.isAuthenticated()) {
|
||||||
log.debug('[OIDC] ------> User isAuthenticated');
|
log.debug('[OIDC] ------> User isAuthenticated');
|
||||||
// User is authenticated
|
handleHostProtected(req);
|
||||||
if (hostCfg.protected) {
|
|
||||||
const ip = authHost.getIP(req);
|
|
||||||
hostCfg.authenticated = true;
|
|
||||||
authHost.setAuthorizedIP(ip, true);
|
|
||||||
// Check...
|
|
||||||
log.debug('[OIDC] ------> Host protected', {
|
|
||||||
authenticated: hostCfg.authenticated,
|
|
||||||
authorizedIPs: authHost.getAuthorizedIPs(),
|
|
||||||
});
|
|
||||||
}
|
|
||||||
next();
|
next();
|
||||||
} else {
|
} else {
|
||||||
// User is not authenticated
|
// User is not authenticated
|
||||||
|
|||||||
@@ -1,6 +1,6 @@
|
|||||||
{
|
{
|
||||||
"name": "mirotalksfu",
|
"name": "mirotalksfu",
|
||||||
"version": "1.7.23",
|
"version": "1.7.24",
|
||||||
"description": "WebRTC SFU browser-based video calls",
|
"description": "WebRTC SFU browser-based video calls",
|
||||||
"main": "Server.js",
|
"main": "Server.js",
|
||||||
"scripts": {
|
"scripts": {
|
||||||
|
|||||||
@@ -64,7 +64,7 @@ let BRAND = {
|
|||||||
},
|
},
|
||||||
about: {
|
about: {
|
||||||
imageUrl: '../images/mirotalk-logo.gif',
|
imageUrl: '../images/mirotalk-logo.gif',
|
||||||
title: '<strong>WebRTC SFU v1.7.23</strong>',
|
title: '<strong>WebRTC SFU v1.7.24</strong>',
|
||||||
html: `
|
html: `
|
||||||
<button
|
<button
|
||||||
id="support-button"
|
id="support-button"
|
||||||
|
|||||||
@@ -11,7 +11,7 @@ if (location.href.substr(0, 5) !== 'https') location.href = 'https' + location.h
|
|||||||
* @license For commercial or closed source, contact us at license.mirotalk@gmail.com or purchase directly via CodeCanyon
|
* @license For commercial or closed source, contact us at license.mirotalk@gmail.com or purchase directly via CodeCanyon
|
||||||
* @license CodeCanyon: https://codecanyon.net/item/mirotalk-sfu-webrtc-realtime-video-conferences/40769970
|
* @license CodeCanyon: https://codecanyon.net/item/mirotalk-sfu-webrtc-realtime-video-conferences/40769970
|
||||||
* @author Miroslav Pejic - miroslav.pejic.85@gmail.com
|
* @author Miroslav Pejic - miroslav.pejic.85@gmail.com
|
||||||
* @version 1.7.23
|
* @version 1.7.24
|
||||||
*
|
*
|
||||||
*/
|
*/
|
||||||
|
|
||||||
@@ -4905,7 +4905,7 @@ function showAbout() {
|
|||||||
position: 'center',
|
position: 'center',
|
||||||
imageUrl: BRAND.about?.imageUrl && BRAND.about.imageUrl.trim() !== '' ? BRAND.about.imageUrl : image.about,
|
imageUrl: BRAND.about?.imageUrl && BRAND.about.imageUrl.trim() !== '' ? BRAND.about.imageUrl : image.about,
|
||||||
customClass: { image: 'img-about' },
|
customClass: { image: 'img-about' },
|
||||||
title: BRAND.about?.title && BRAND.about.title.trim() !== '' ? BRAND.about.title : 'WebRTC SFU v1.7.23',
|
title: BRAND.about?.title && BRAND.about.title.trim() !== '' ? BRAND.about.title : 'WebRTC SFU v1.7.24',
|
||||||
html: `
|
html: `
|
||||||
<br />
|
<br />
|
||||||
<div id="about">
|
<div id="about">
|
||||||
|
|||||||
@@ -9,7 +9,7 @@
|
|||||||
* @license For commercial or closed source, contact us at license.mirotalk@gmail.com or purchase directly via CodeCanyon
|
* @license For commercial or closed source, contact us at license.mirotalk@gmail.com or purchase directly via CodeCanyon
|
||||||
* @license CodeCanyon: https://codecanyon.net/item/mirotalk-sfu-webrtc-realtime-video-conferences/40769970
|
* @license CodeCanyon: https://codecanyon.net/item/mirotalk-sfu-webrtc-realtime-video-conferences/40769970
|
||||||
* @author Miroslav Pejic - miroslav.pejic.85@gmail.com
|
* @author Miroslav Pejic - miroslav.pejic.85@gmail.com
|
||||||
* @version 1.7.23
|
* @version 1.7.24
|
||||||
*
|
*
|
||||||
*/
|
*/
|
||||||
|
|
||||||
|
|||||||
المرجع في مشكلة جديدة
حظر مستخدم