-
-
Notifications
You must be signed in to change notification settings - Fork 0
/
claims.go
64 lines (53 loc) · 1.44 KB
/
claims.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
package claims
import (
"context"
"errors"
)
// These are the expected values for Claims.Roles.
const (
RoleAdmin = "ADMIN"
RoleUser = "USER"
)
// Claims represents the authorization claims stored in the session.
type Claims struct {
UserID string
Role string
}
// ctxKey represents the type of value for the context key.
type ctxKey int
// claimsKey is used to store/retrieve a Claims value from a context.Context.
const claimsKey ctxKey = 1
// Set stores the claims in the context.
func Set(ctx context.Context, claims Claims) context.Context {
return context.WithValue(ctx, claimsKey, claims)
}
// Get returns the claims from the context.
func Get(ctx context.Context) (Claims, error) {
v, ok := ctx.Value(claimsKey).(Claims)
if !ok {
return Claims{}, errors.New("claim value missing from context")
}
return v, nil
}
// IsAdmin checks if the session contained in the context,
// if any, belongs to an administrator.
// Returns false if no session is found or if the user is not
// an administrator.
func IsAdmin(ctx context.Context) bool {
c, err := Get(ctx)
if err != nil {
return false
}
return c.Role == RoleAdmin
}
// IsAdmin checks if the session contained in the context,
// if any, belongs to the passed user id.
// Returns false if no session is found or if the user is not
// equal to the same passed.
func IsUser(ctx context.Context, id string) bool {
c, err := Get(ctx)
if err != nil {
return false
}
return c.UserID == id
}