2016-11-01 17:27:57 +00:00
|
|
|
"use strict";
|
2016-11-11 13:17:50 +00:00
|
|
|
require("typings-global");
|
|
|
|
const q = require("q");
|
2017-01-01 17:05:26 +00:00
|
|
|
let rsaKeygen = require('rsa-keygen');
|
|
|
|
let rawacme = require('rawacme');
|
|
|
|
const smartacme_classes_helper_1 = require("./smartacme.classes.helper");
|
2016-11-11 13:17:50 +00:00
|
|
|
/**
|
|
|
|
* class SmartAcme exports methods for maintaining SSL Certificates
|
|
|
|
*/
|
2016-11-01 17:27:57 +00:00
|
|
|
class SmartAcme {
|
2016-11-07 17:41:52 +00:00
|
|
|
/**
|
2017-01-01 17:05:26 +00:00
|
|
|
* the constructor for class SmartAcme
|
2016-11-11 13:17:50 +00:00
|
|
|
*/
|
2017-01-01 17:05:26 +00:00
|
|
|
constructor(productionArg = false) {
|
|
|
|
this.productionBool = productionArg;
|
2017-01-01 20:20:12 +00:00
|
|
|
this.helper = new smartacme_classes_helper_1.SmartacmeHelper(this);
|
2017-01-01 17:05:26 +00:00
|
|
|
this.keyPair = this.helper.createKeypair();
|
|
|
|
if (this.productionBool) {
|
2017-01-01 20:20:12 +00:00
|
|
|
this.acmeUrl = rawacme.LETSENCRYPT_URL;
|
2016-11-11 13:17:50 +00:00
|
|
|
}
|
|
|
|
else {
|
2017-01-01 20:20:12 +00:00
|
|
|
this.acmeUrl = rawacme.LETSENCRYPT_STAGING_URL;
|
2016-11-11 13:17:50 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
/**
|
|
|
|
* creates an account if not currently present in module
|
2017-01-01 17:05:26 +00:00
|
|
|
* @executes ASYNC
|
2016-11-07 17:41:52 +00:00
|
|
|
*/
|
2016-11-01 19:16:43 +00:00
|
|
|
createAccount() {
|
2016-11-11 13:17:50 +00:00
|
|
|
let done = q.defer();
|
2017-01-01 17:05:26 +00:00
|
|
|
rawacme.createClient({
|
|
|
|
url: this.acmeUrl,
|
|
|
|
publicKey: this.keyPair.publicKey,
|
|
|
|
privateKey: this.keyPair.privateKey
|
|
|
|
}, (err, client) => {
|
|
|
|
if (err) {
|
|
|
|
console.error('smartacme: something went wrong:');
|
|
|
|
console.log(err);
|
|
|
|
done.reject(err);
|
|
|
|
return;
|
|
|
|
}
|
2017-01-01 20:20:12 +00:00
|
|
|
// make client available in class
|
|
|
|
this.rawacmeClient = client;
|
|
|
|
// create the registration
|
2017-01-01 17:05:26 +00:00
|
|
|
client.newReg({
|
|
|
|
contact: ['mailto:domains@lossless.org']
|
|
|
|
}, (err, res) => {
|
2016-11-11 13:17:50 +00:00
|
|
|
if (err) {
|
2017-01-01 17:05:26 +00:00
|
|
|
console.error('smartacme: something went wrong:');
|
2016-11-11 13:17:50 +00:00
|
|
|
console.log(err);
|
|
|
|
done.reject(err);
|
2017-01-01 17:05:26 +00:00
|
|
|
return;
|
2016-11-11 13:17:50 +00:00
|
|
|
}
|
2017-01-01 17:05:26 +00:00
|
|
|
this.JWK = res.body.key;
|
2017-01-01 20:20:12 +00:00
|
|
|
this.link = res.headers.link;
|
|
|
|
console.log(this.link);
|
|
|
|
this.location = res.headers.location;
|
2017-01-01 17:05:26 +00:00
|
|
|
done.resolve();
|
2016-11-17 12:32:16 +00:00
|
|
|
});
|
2016-11-11 13:17:50 +00:00
|
|
|
});
|
|
|
|
return done.promise;
|
2016-11-07 17:41:52 +00:00
|
|
|
}
|
2017-01-01 20:20:12 +00:00
|
|
|
agreeTos() {
|
|
|
|
let done = q.defer();
|
|
|
|
let tosPart = this.link.split(',')[1];
|
|
|
|
let tosLinkPortion = tosPart.split(';')[0];
|
|
|
|
let url = tosLinkPortion.split(';')[0].trim().replace(/[<>]/g, '');
|
|
|
|
this.rawacmeClient.post(this.location, { Agreement: url, resource: 'reg' }, (err, res) => {
|
|
|
|
if (err) {
|
|
|
|
console.log(err);
|
|
|
|
done.reject(err);
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
done.resolve();
|
|
|
|
});
|
|
|
|
return done.promise;
|
|
|
|
}
|
|
|
|
/**
|
2017-01-01 23:18:51 +00:00
|
|
|
* requests a challenge for a domain
|
|
|
|
* @param domainNameArg - the domain name to request a challenge for
|
|
|
|
* @param challengeType - the challenge type to request
|
2017-01-01 20:20:12 +00:00
|
|
|
*/
|
2017-01-01 23:18:51 +00:00
|
|
|
requestChallenge(domainNameArg, challengeTypeArg = 'dns-01') {
|
2017-01-01 20:20:12 +00:00
|
|
|
let done = q.defer();
|
|
|
|
this.rawacmeClient.newAuthz({
|
|
|
|
identifier: {
|
|
|
|
type: 'dns',
|
|
|
|
value: domainNameArg
|
|
|
|
}
|
|
|
|
}, this.keyPair, (err, res) => {
|
|
|
|
if (err) {
|
|
|
|
console.error('smartacme: something went wrong:');
|
|
|
|
console.log(err);
|
|
|
|
done.reject(err);
|
|
|
|
}
|
|
|
|
console.log(JSON.stringify(res.body));
|
2017-01-01 23:18:51 +00:00
|
|
|
let dnsChallenge = res.body.challenges.filter(x => {
|
|
|
|
return x.type === challengeTypeArg;
|
|
|
|
})[0];
|
|
|
|
this.acceptChallenge(dnsChallenge)
|
|
|
|
.then(x => {
|
|
|
|
done.resolve(x);
|
|
|
|
});
|
|
|
|
});
|
|
|
|
return done.promise;
|
|
|
|
}
|
|
|
|
/**
|
|
|
|
* getCertificate - takes care of cooldown, validation polling and certificate retrieval
|
|
|
|
*/
|
|
|
|
getCertificate() {
|
|
|
|
}
|
|
|
|
/**
|
|
|
|
* accept a challenge - for private use only
|
|
|
|
*/
|
|
|
|
acceptChallenge(challenge) {
|
|
|
|
let done = q.defer();
|
|
|
|
let authKey = rawacme.keyAuthz(challenge.token, this.keyPair.publicKey);
|
|
|
|
let dnsKeyHash = rawacme.dnsKeyAuthzHash(authKey); // needed if dns challenge is chosen
|
|
|
|
console.log(authKey);
|
|
|
|
this.rawacmeClient.post(challenge.uri, {
|
|
|
|
resource: 'challenge',
|
|
|
|
keyAuthorization: authKey
|
|
|
|
}, this.keyPair, (err, res) => {
|
|
|
|
if (err) {
|
|
|
|
console.log(err);
|
|
|
|
done.reject(err);
|
|
|
|
}
|
|
|
|
console.log('acceptChallenge:');
|
|
|
|
console.log(JSON.stringify(res.body));
|
|
|
|
done.resolve(dnsKeyHash);
|
2017-01-01 20:20:12 +00:00
|
|
|
});
|
|
|
|
return done.promise;
|
|
|
|
}
|
2016-11-01 17:27:57 +00:00
|
|
|
}
|
|
|
|
exports.SmartAcme = SmartAcme;
|
2017-01-01 23:18:51 +00:00
|
|
|
//# sourceMappingURL=data:application/json;base64,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
|