{-# LANGUAGE OverloadedStrings #-}
module Yesod.Auth.OAuth2.Auth0
( oauth2Auth0HostScopes
, oauth2Auth0Host
, defaultAuth0Scopes
) where
import Data.Aeson as Aeson
import qualified Data.Text as T
import Prelude
import Yesod.Auth.OAuth2.Prelude
newtype User = User T.Text
instance FromJSON User where
parseJSON :: Value -> Parser User
parseJSON = forall a. String -> (Object -> Parser a) -> Value -> Parser a
withObject String
"User" forall a b. (a -> b) -> a -> b
$ \Object
o -> Text -> User
User forall (f :: * -> *) a b. Functor f => (a -> b) -> f a -> f b
<$> Object
o forall a. FromJSON a => Object -> Key -> Parser a
.: Key
"sub"
defaultAuth0Scopes :: [Text]
defaultAuth0Scopes :: [Text]
defaultAuth0Scopes = [Text
"openid"]
pluginName :: Text
pluginName :: Text
pluginName = Text
"auth0"
oauth2Auth0Host :: YesodAuth m => URI -> Text -> Text -> AuthPlugin m
oauth2Auth0Host :: forall m. YesodAuth m => URI -> Text -> Text -> AuthPlugin m
oauth2Auth0Host URI
host = forall m.
YesodAuth m =>
URI -> [Text] -> Text -> Text -> AuthPlugin m
oauth2Auth0HostScopes URI
host [Text]
defaultAuth0Scopes
oauth2Auth0HostScopes
:: YesodAuth m => URI -> [Text] -> Text -> Text -> AuthPlugin m
oauth2Auth0HostScopes :: forall m.
YesodAuth m =>
URI -> [Text] -> Text -> Text -> AuthPlugin m
oauth2Auth0HostScopes URI
host [Text]
scopes Text
clientId Text
clientSecret =
forall m.
YesodAuth m =>
Text -> OAuth2 -> FetchCreds m -> AuthPlugin m
authOAuth2 Text
pluginName OAuth2
oauth2 forall a b. (a -> b) -> a -> b
$ \Manager
manager OAuth2Token
token -> do
(User Text
uid, ByteString
userResponse) <- forall a.
FromJSON a =>
Text -> Manager -> OAuth2Token -> URI -> IO (a, ByteString)
authGetProfile Text
pluginName
Manager
manager
OAuth2Token
token
(URI
host forall a. URIRef a -> ByteString -> URIRef a
`withPath` ByteString
"/userinfo")
forall (f :: * -> *) a. Applicative f => a -> f a
pure Creds { credsPlugin :: Text
credsPlugin = Text
pluginName
, credsIdent :: Text
credsIdent = Text
uid
, credsExtra :: [(Text, Text)]
credsExtra = OAuth2Token -> ByteString -> [(Text, Text)]
setExtra OAuth2Token
token ByteString
userResponse
}
where
oauth2 :: OAuth2
oauth2 = OAuth2
{ oauth2ClientId :: Text
oauth2ClientId = Text
clientId
, oauth2ClientSecret :: Maybe Text
oauth2ClientSecret = forall a. a -> Maybe a
Just Text
clientSecret
, oauth2AuthorizeEndpoint :: URI
oauth2AuthorizeEndpoint = URI
host
forall a. URIRef a -> ByteString -> URIRef a
`withPath` ByteString
"/authorize"
forall a. URIRef a -> [(ByteString, ByteString)] -> URIRef a
`withQuery` [Text -> [Text] -> (ByteString, ByteString)
scopeParam Text
" " [Text]
scopes]
, oauth2TokenEndpoint :: URI
oauth2TokenEndpoint = URI
host forall a. URIRef a -> ByteString -> URIRef a
`withPath` ByteString
"/oauth/token"
, oauth2RedirectUri :: Maybe URI
oauth2RedirectUri = forall a. Maybe a
Nothing
}