mfa.go 2.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899
  1. // Copyright 2019 Yunion
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package aliyun
  15. import "time"
  16. type MFADevice struct {
  17. SerialNumber string
  18. QRCodePNG string
  19. Base32StringSeed string
  20. ActivateDate time.Time
  21. User struct {
  22. DisplayName string
  23. UserId string
  24. UserPrincipalName string
  25. }
  26. }
  27. func (self *SAliyunClient) ListVirtualMFADevices() ([]MFADevice, error) {
  28. ret := []MFADevice{}
  29. params := map[string]string{}
  30. for {
  31. resp, err := self.imsRequest("ListVirtualMFADevices", params)
  32. if err != nil {
  33. return nil, err
  34. }
  35. part := struct {
  36. VirtualMFADevices struct {
  37. VirtualMFADevice []MFADevice
  38. }
  39. Marker string
  40. }{}
  41. err = resp.Unmarshal(&part)
  42. if err != nil {
  43. return nil, err
  44. }
  45. ret = append(ret, part.VirtualMFADevices.VirtualMFADevice...)
  46. if len(part.Marker) == 0 {
  47. break
  48. }
  49. params["Marker"] = part.Marker
  50. }
  51. return ret, nil
  52. }
  53. func (self *SAliyunClient) UnbindMFADevice(userName string) error {
  54. params := map[string]string{
  55. "UserPrincipalName": userName,
  56. }
  57. _, err := self.imsRequest("UnbindMFADevice", params)
  58. return err
  59. }
  60. func (self *SAliyunClient) CreateVirtualMFADevice(name string) (*MFADevice, error) {
  61. params := map[string]string{
  62. "VirtualMFADeviceName": name,
  63. }
  64. resp, err := self.imsRequest("CreateVirtualMFADevice", params)
  65. if err != nil {
  66. return nil, err
  67. }
  68. ret := &MFADevice{}
  69. err = resp.Unmarshal(ret, "VirtualMFADevice")
  70. if err != nil {
  71. return nil, err
  72. }
  73. return ret, nil
  74. }
  75. func (self *SAliyunClient) DisableVirtualMFA(user string) error {
  76. params := map[string]string{
  77. "UserPrincipalName": user,
  78. }
  79. _, err := self.imsRequest("DisableVirtualMFA", params)
  80. return err
  81. }
  82. func (self *SAliyunClient) BindMFADevice(user string, seriaNum string, code1, code2 string) error {
  83. params := map[string]string{
  84. "UserPrincipalName": user,
  85. "SerialNumber": seriaNum,
  86. "AuthenticationCode1": code1,
  87. "AuthenticationCode2": code2,
  88. }
  89. _, err := self.imsRequest("BindMFADevice", params)
  90. return err
  91. }