mirror of
https://github.com/MeowLynxSea/Proksea.git
synced 2025-07-11 03:44:39 +00:00
66 lines
4.5 KiB
JavaScript
66 lines
4.5 KiB
JavaScript
/*! @azure/msal-node v2.9.2 2024-06-10 */
|
|
'use strict';
|
|
'use strict';
|
|
|
|
var ManagedIdentityRequestParameters = require('../../config/ManagedIdentityRequestParameters.cjs');
|
|
var BaseManagedIdentitySource = require('./BaseManagedIdentitySource.cjs');
|
|
var Constants = require('../../utils/Constants.cjs');
|
|
|
|
/*
|
|
* Copyright (c) Microsoft Corporation. All rights reserved.
|
|
* Licensed under the MIT License.
|
|
*/
|
|
// MSI Constants. Docs for MSI are available here https://docs.microsoft.com/azure/app-service/overview-managed-identity
|
|
const SERVICE_FABRIC_MSI_API_VERSION = "2019-07-01-preview";
|
|
/**
|
|
* Original source of code: https://github.com/Azure/azure-sdk-for-net/blob/main/sdk/identity/Azure.Identity/src/ServiceFabricManagedIdentitySource.cs
|
|
*/
|
|
class ServiceFabric extends BaseManagedIdentitySource.BaseManagedIdentitySource {
|
|
constructor(logger, nodeStorage, networkClient, cryptoProvider, identityEndpoint, identityHeader) {
|
|
super(logger, nodeStorage, networkClient, cryptoProvider);
|
|
this.identityEndpoint = identityEndpoint;
|
|
this.identityHeader = identityHeader;
|
|
}
|
|
static getEnvironmentVariables() {
|
|
const identityEndpoint = process.env[Constants.ManagedIdentityEnvironmentVariableNames.IDENTITY_ENDPOINT];
|
|
const identityHeader = process.env[Constants.ManagedIdentityEnvironmentVariableNames.IDENTITY_HEADER];
|
|
const identityServerThumbprint = process.env[Constants.ManagedIdentityEnvironmentVariableNames
|
|
.IDENTITY_SERVER_THUMBPRINT];
|
|
return [identityEndpoint, identityHeader, identityServerThumbprint];
|
|
}
|
|
static tryCreate(logger, nodeStorage, networkClient, cryptoProvider, managedIdentityId) {
|
|
const [identityEndpoint, identityHeader, identityServerThumbprint] = ServiceFabric.getEnvironmentVariables();
|
|
/*
|
|
* if either of the identity endpoint, identity header, or identity server thumbprint
|
|
* environment variables are undefined, this MSI provider is unavailable.
|
|
*/
|
|
if (!identityEndpoint || !identityHeader || !identityServerThumbprint) {
|
|
logger.info(`[Managed Identity] ${Constants.ManagedIdentitySourceNames.SERVICE_FABRIC} managed identity is unavailable because one or all of the '${Constants.ManagedIdentityEnvironmentVariableNames.IDENTITY_HEADER}', '${Constants.ManagedIdentityEnvironmentVariableNames.IDENTITY_ENDPOINT}' or '${Constants.ManagedIdentityEnvironmentVariableNames.IDENTITY_SERVER_THUMBPRINT}' environment variables are not defined.`);
|
|
return null;
|
|
}
|
|
const validatedIdentityEndpoint = ServiceFabric.getValidatedEnvVariableUrlString(Constants.ManagedIdentityEnvironmentVariableNames.IDENTITY_ENDPOINT, identityEndpoint, Constants.ManagedIdentitySourceNames.SERVICE_FABRIC, logger);
|
|
logger.info(`[Managed Identity] Environment variables validation passed for ${Constants.ManagedIdentitySourceNames.SERVICE_FABRIC} managed identity. Endpoint URI: ${validatedIdentityEndpoint}. Creating ${Constants.ManagedIdentitySourceNames.SERVICE_FABRIC} managed identity.`);
|
|
if (managedIdentityId.idType !== Constants.ManagedIdentityIdType.SYSTEM_ASSIGNED) {
|
|
logger.warning(`[Managed Identity] ${Constants.ManagedIdentitySourceNames.SERVICE_FABRIC} user assigned managed identity is configured in the cluster, not during runtime. See also: https://learn.microsoft.com/en-us/azure/service-fabric/configure-existing-cluster-enable-managed-identity-token-service.`);
|
|
}
|
|
return new ServiceFabric(logger, nodeStorage, networkClient, cryptoProvider, identityEndpoint, identityHeader);
|
|
}
|
|
createRequest(resource, managedIdentityId) {
|
|
const request = new ManagedIdentityRequestParameters.ManagedIdentityRequestParameters(Constants.HttpMethod.GET, this.identityEndpoint);
|
|
request.headers[Constants.SERVICE_FABRIC_SECRET_HEADER_NAME] =
|
|
this.identityHeader;
|
|
request.queryParameters[Constants.API_VERSION_QUERY_PARAMETER_NAME] =
|
|
SERVICE_FABRIC_MSI_API_VERSION;
|
|
request.queryParameters[Constants.RESOURCE_BODY_OR_QUERY_PARAMETER_NAME] =
|
|
resource;
|
|
if (managedIdentityId.idType !== Constants.ManagedIdentityIdType.SYSTEM_ASSIGNED) {
|
|
request.queryParameters[this.getManagedIdentityUserAssignedIdQueryParameterKey(managedIdentityId.idType)] = managedIdentityId.id;
|
|
}
|
|
// bodyParameters calculated in BaseManagedIdentity.acquireTokenWithManagedIdentity
|
|
return request;
|
|
}
|
|
}
|
|
|
|
exports.ServiceFabric = ServiceFabric;
|
|
//# sourceMappingURL=ServiceFabric.cjs.map
|