summaryrefslogtreecommitdiff
path: root/app/models/keyring.rb
blob: 66f7bfdbaf08b379078d48200170938ebf8c52ed (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
#
# Keyring
#
# A collection of cryptographic keys.
#

class Keyring
  class Error < RuntimeError
  end

  class NotFound < Error
    def initialize(type)
      super "no such key: #{type}"
    end
  end

  def initialize(storage)
    @storage = storage
  end

  def create(type, value)
    raise Error, "key already exists" if storage.keys[type].present?
    storage.set_key type, {type: type, value: value, rev: new_rev}.to_json
    storage.save
  end

  def update(type, rev:, value:)
    check_rev type, rev
    storage.set_key type, {type: type, value: value, rev: new_rev}.to_json
    storage.save
  end

  def delete(type, rev:)
    check_rev type, rev
    storage.delete_key type
    storage.save
  end

  def key_of_type(type)
    JSON.parse(storage.keys[type]) if storage.keys[type]
  end

  protected
  attr_reader :storage

  def check_rev(type, rev)
    old = key_of_type(type)
    raise NotFound, type unless old
    raise Error, "wrong revision: #{rev}" unless old['rev'] == rev
  end

  def new_rev
    SecureRandom.urlsafe_base64(8)
  end
end