mirror of
https://github.com/documenso/documenso.git
synced 2026-07-24 00:43:40 +10:00
9ac7b94d9a
Allow organisations to manage an SSO OIDC compliant portal. This method is intended to streamline the onboarding process and paves the way to allow organisations to manage their members in a more strict way.
55 lines
1.5 KiB
TypeScript
55 lines
1.5 KiB
TypeScript
import { sValidator } from '@hono/standard-validator';
|
|
import { Hono } from 'hono';
|
|
import { z } from 'zod';
|
|
|
|
import { GoogleAuthOptions, OidcAuthOptions } from '../config';
|
|
import { handleOAuthAuthorizeUrl } from '../lib/utils/handle-oauth-authorize-url';
|
|
import { getOrganisationAuthenticationPortalOptions } from '../lib/utils/organisation-portal';
|
|
import type { HonoAuthContext } from '../types/context';
|
|
|
|
const ZOAuthAuthorizeSchema = z.object({
|
|
redirectPath: z.string().optional(),
|
|
});
|
|
|
|
export const oauthRoute = new Hono<HonoAuthContext>()
|
|
/**
|
|
* Google authorize endpoint.
|
|
*/
|
|
.post('/authorize/google', sValidator('json', ZOAuthAuthorizeSchema), async (c) => {
|
|
const { redirectPath } = c.req.valid('json');
|
|
|
|
return handleOAuthAuthorizeUrl({
|
|
c,
|
|
clientOptions: GoogleAuthOptions,
|
|
redirectPath,
|
|
});
|
|
})
|
|
/**
|
|
* OIDC authorize endpoint.
|
|
*/
|
|
.post('/authorize/oidc', sValidator('json', ZOAuthAuthorizeSchema), async (c) => {
|
|
const { redirectPath } = c.req.valid('json');
|
|
|
|
return handleOAuthAuthorizeUrl({
|
|
c,
|
|
clientOptions: OidcAuthOptions,
|
|
redirectPath,
|
|
});
|
|
})
|
|
/**
|
|
* Organisation OIDC authorize endpoint.
|
|
*/
|
|
.post('/authorize/oidc/org/:orgUrl', async (c) => {
|
|
const orgUrl = c.req.param('orgUrl');
|
|
|
|
const { clientOptions } = await getOrganisationAuthenticationPortalOptions({
|
|
type: 'url',
|
|
organisationUrl: orgUrl,
|
|
});
|
|
|
|
return await handleOAuthAuthorizeUrl({
|
|
c,
|
|
clientOptions,
|
|
});
|
|
});
|