blob: e7fa6ffd865f587e8654e38f61fed0fc2dd41d9d (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
|
#!/usr/bin/env ruby
require 'openssl'
require 'securerandom'
require 'sinatra'
set :port, 4568
Service = "Mail"
ServicePassword = "{FvM<kgG}VpHxKJO;6Zo"
def decrypt(ticket)
ticket = [ticket].pack("H*").unpack("C*").pack("c*")
cipher = OpenSSL::Cipher::AES.new(256, :CBC).decrypt
cipher.key = Digest::SHA2.digest(ServicePassword)
p = cipher.update(ticket) + cipher.final
p.split(?\0)
end
post '/login' do
request.body.rewind
data = JSON.parse(request.body.read)
next "Invalid request\n" unless data.keys.sort == %w(ticket username)
un, ws, sn = decrypt(data["ticket"])
next "Invalid ticket\n" unless sn == Service
next "Invalid ticket\n" unless un == data["username"]
next "Invalid ticket\n" unless ws == request.ip
"Login okay! You have no mail.\n"
end
|