QuickConnectController.cs 4.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129
  1. using System;
  2. using System.ComponentModel.DataAnnotations;
  3. using System.Threading.Tasks;
  4. using Jellyfin.Api.Helpers;
  5. using MediaBrowser.Common.Extensions;
  6. using MediaBrowser.Controller.Authentication;
  7. using MediaBrowser.Controller.Net;
  8. using MediaBrowser.Controller.QuickConnect;
  9. using MediaBrowser.Model.QuickConnect;
  10. using Microsoft.AspNetCore.Authorization;
  11. using Microsoft.AspNetCore.Http;
  12. using Microsoft.AspNetCore.Mvc;
  13. namespace Jellyfin.Api.Controllers;
  14. /// <summary>
  15. /// Quick connect controller.
  16. /// </summary>
  17. public class QuickConnectController : BaseJellyfinApiController
  18. {
  19. private readonly IQuickConnect _quickConnect;
  20. private readonly IAuthorizationContext _authContext;
  21. /// <summary>
  22. /// Initializes a new instance of the <see cref="QuickConnectController"/> class.
  23. /// </summary>
  24. /// <param name="quickConnect">Instance of the <see cref="IQuickConnect"/> interface.</param>
  25. /// <param name="authContext">Instance of the <see cref="IAuthorizationContext"/> interface.</param>
  26. public QuickConnectController(IQuickConnect quickConnect, IAuthorizationContext authContext)
  27. {
  28. _quickConnect = quickConnect;
  29. _authContext = authContext;
  30. }
  31. /// <summary>
  32. /// Gets the current quick connect state.
  33. /// </summary>
  34. /// <response code="200">Quick connect state returned.</response>
  35. /// <returns>Whether Quick Connect is enabled on the server or not.</returns>
  36. [HttpGet("Enabled")]
  37. [ProducesResponseType(StatusCodes.Status200OK)]
  38. public ActionResult<bool> GetQuickConnectEnabled()
  39. {
  40. return _quickConnect.IsEnabled;
  41. }
  42. /// <summary>
  43. /// Initiate a new quick connect request.
  44. /// </summary>
  45. /// <response code="200">Quick connect request successfully created.</response>
  46. /// <response code="401">Quick connect is not active on this server.</response>
  47. /// <returns>A <see cref="QuickConnectResult"/> with a secret and code for future use or an error message.</returns>
  48. [HttpPost("Initiate")]
  49. [ProducesResponseType(StatusCodes.Status200OK)]
  50. public async Task<ActionResult<QuickConnectResult>> InitiateQuickConnect()
  51. {
  52. try
  53. {
  54. var auth = await _authContext.GetAuthorizationInfo(Request).ConfigureAwait(false);
  55. return _quickConnect.TryConnect(auth);
  56. }
  57. catch (AuthenticationException)
  58. {
  59. return Unauthorized("Quick connect is disabled");
  60. }
  61. }
  62. /// <summary>
  63. /// Old version of <see cref="InitiateQuickConnect" /> using a GET method.
  64. /// Still available to avoid breaking compatibility.
  65. /// </summary>
  66. /// <returns>The result of <see cref="InitiateQuickConnect" />.</returns>
  67. [Obsolete("Use POST request instead")]
  68. [HttpGet("Initiate")]
  69. [ApiExplorerSettings(IgnoreApi = true)]
  70. public Task<ActionResult<QuickConnectResult>> InitiateQuickConnectLegacy() => InitiateQuickConnect();
  71. /// <summary>
  72. /// Attempts to retrieve authentication information.
  73. /// </summary>
  74. /// <param name="secret">Secret previously returned from the Initiate endpoint.</param>
  75. /// <response code="200">Quick connect result returned.</response>
  76. /// <response code="404">Unknown quick connect secret.</response>
  77. /// <returns>An updated <see cref="QuickConnectResult"/>.</returns>
  78. [HttpGet("Connect")]
  79. [ProducesResponseType(StatusCodes.Status200OK)]
  80. [ProducesResponseType(StatusCodes.Status404NotFound)]
  81. public ActionResult<QuickConnectResult> GetQuickConnectState([FromQuery, Required] string secret)
  82. {
  83. try
  84. {
  85. return _quickConnect.CheckRequestStatus(secret);
  86. }
  87. catch (ResourceNotFoundException)
  88. {
  89. return NotFound("Unknown secret");
  90. }
  91. catch (AuthenticationException)
  92. {
  93. return Unauthorized("Quick connect is disabled");
  94. }
  95. }
  96. /// <summary>
  97. /// Authorizes a pending quick connect request.
  98. /// </summary>
  99. /// <param name="code">Quick connect code to authorize.</param>
  100. /// <param name="userId">The user the authorize. Access to the requested user is required.</param>
  101. /// <response code="200">Quick connect result authorized successfully.</response>
  102. /// <response code="403">Unknown user id.</response>
  103. /// <returns>Boolean indicating if the authorization was successful.</returns>
  104. [HttpPost("Authorize")]
  105. [Authorize]
  106. [ProducesResponseType(StatusCodes.Status200OK)]
  107. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  108. public async Task<ActionResult<bool>> AuthorizeQuickConnect([FromQuery, Required] string code, [FromQuery] Guid? userId = null)
  109. {
  110. userId = RequestHelpers.GetUserId(User, userId);
  111. try
  112. {
  113. return await _quickConnect.AuthorizeRequest(userId.Value, code).ConfigureAwait(false);
  114. }
  115. catch (AuthenticationException)
  116. {
  117. return Unauthorized("Quick connect is disabled");
  118. }
  119. }
  120. }