From 1b75340f74c5d2d9ed91c70d58b255741c36743b Mon Sep 17 00:00:00 2001 From: 0xboobface <0xboobface@gmail.com> Date: Sun, 7 Jun 2020 16:02:27 +0200 Subject: [PATCH] Add authentication to config servlet --- .../java/ctbrec/recorder/server/ConfigServlet.java | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/server/src/main/java/ctbrec/recorder/server/ConfigServlet.java b/server/src/main/java/ctbrec/recorder/server/ConfigServlet.java index df3facbb..11e368d5 100644 --- a/server/src/main/java/ctbrec/recorder/server/ConfigServlet.java +++ b/server/src/main/java/ctbrec/recorder/server/ConfigServlet.java @@ -36,6 +36,18 @@ public class ConfigServlet extends AbstractCtbrecServlet { @Override protected void doGet(HttpServletRequest req, HttpServletResponse resp) throws ServletException, IOException { + // try { + // boolean authenticated = checkAuthentication(req, body(req)); + // if (!authenticated) { + // resp.setStatus(SC_UNAUTHORIZED); + // String response = "{\"status\": \"error\", \"msg\": \"HMAC does not match\"}"; + // resp.getWriter().write(response); + // return; + // } + // } catch (InvalidKeyException | NoSuchAlgorithmException | IllegalStateException e) { + // throw new ServletException(e); + // } + resp.setStatus(SC_OK); resp.setContentType("application/json");