Skip to content
Projects
Groups
Snippets
Help
Loading...
Sign in
Toggle navigation
C
CTF
Project
Project
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
Grzegorz
CTF
Commits
71e7254f
Commit
71e7254f
authored
Mar 22, 2016
by
Grzegorz Pietrusza
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
return bad request on invlaid username
parent
d6585259
Show whitespace changes
Inline
Side-by-side
Showing
2 changed files
with
14 additions
and
8 deletions
+14
-8
TasksRepository.java
...phoners/krakyournet/ctf/repositories/TasksRepository.java
+7
-5
TasksResource.java
.../telephoners/krakyournet/ctf/resources/TasksResource.java
+7
-3
No files found.
service/src/main/java/com/telephoners/krakyournet/ctf/repositories/TasksRepository.java
View file @
71e7254f
...
@@ -17,7 +17,6 @@ import javax.inject.Singleton;
...
@@ -17,7 +17,6 @@ import javax.inject.Singleton;
import
java.security.MessageDigest
;
import
java.security.MessageDigest
;
import
java.util.List
;
import
java.util.List
;
import
java.util.Map
;
import
java.util.Map
;
import
java.util.Optional
;
import
java.util.stream.Collectors
;
import
java.util.stream.Collectors
;
@Singleton
@Singleton
...
@@ -27,11 +26,13 @@ public class TasksRepository extends Repository<Task>
...
@@ -27,11 +26,13 @@ public class TasksRepository extends Repository<Task>
private
Datastore
datastore
;
private
Datastore
datastore
;
private
TeamsRepository
teamsRepository
;
private
TeamsRepository
teamsRepository
;
private
SolutionsRepository
solutionsRepository
;
private
SolutionsRepository
solutionsRepository
;
private
UsersRepository
usersRepository
;
private
MessageDigest
messageDigest
;
private
MessageDigest
messageDigest
;
@Inject
@Inject
public
TasksRepository
(
ApplicationConfiguration
applicationConfiguration
,
Datastore
datastore
,
public
TasksRepository
(
ApplicationConfiguration
applicationConfiguration
,
Datastore
datastore
,
TeamsRepository
teamsRepository
,
SolutionsRepository
solutionsRepository
,
TeamsRepository
teamsRepository
,
SolutionsRepository
solutionsRepository
,
UsersRepository
usersRepository
,
final
@Named
(
"messageDigest"
)
MessageDigest
messageDigest
)
final
@Named
(
"messageDigest"
)
MessageDigest
messageDigest
)
{
{
super
(
datastore
);
super
(
datastore
);
...
@@ -39,6 +40,7 @@ public class TasksRepository extends Repository<Task>
...
@@ -39,6 +40,7 @@ public class TasksRepository extends Repository<Task>
this
.
datastore
=
datastore
;
this
.
datastore
=
datastore
;
this
.
teamsRepository
=
teamsRepository
;
this
.
teamsRepository
=
teamsRepository
;
this
.
solutionsRepository
=
solutionsRepository
;
this
.
solutionsRepository
=
solutionsRepository
;
this
.
usersRepository
=
usersRepository
;
this
.
messageDigest
=
messageDigest
;
this
.
messageDigest
=
messageDigest
;
}
}
...
@@ -62,7 +64,7 @@ public class TasksRepository extends Repository<Task>
...
@@ -62,7 +64,7 @@ public class TasksRepository extends Repository<Task>
.
collect
(
Collectors
.
toMap
(
.
collect
(
Collectors
.
toMap
(
Task:
:
getLevel
,
Task:
:
getLevel
,
task
->
task
.
getFlags
().
stream
()
task
->
task
.
getFlags
().
stream
()
.
map
(
flag
->
calculateHashValue
(
user
name
,
flag
.
getValue
()))
.
map
(
flag
->
calculateHashValue
(
user
sRepository
.
getUserByName
(
username
)
,
flag
.
getValue
()))
.
collect
(
Collectors
.
toList
())
.
collect
(
Collectors
.
toList
())
));
));
}
}
...
@@ -71,15 +73,15 @@ public class TasksRepository extends Repository<Task>
...
@@ -71,15 +73,15 @@ public class TasksRepository extends Repository<Task>
{
{
String
username
=
user
.
getName
();
String
username
=
user
.
getName
();
Flag
matchedFlag
=
getByLevel
(
taskLevel
).
getFlags
().
stream
()
Flag
matchedFlag
=
getByLevel
(
taskLevel
).
getFlags
().
stream
()
.
filter
(
flag
->
calculateHashValue
(
user
name
,
flag
.
getValue
()).
equals
(
userHash
))
.
filter
(
flag
->
calculateHashValue
(
user
,
flag
.
getValue
()).
equals
(
userHash
))
.
findFirst
()
.
findFirst
()
.
get
();
.
get
();
return
new
Pair
<>(
getByLevel
(
taskLevel
),
matchedFlag
);
return
new
Pair
<>(
getByLevel
(
taskLevel
),
matchedFlag
);
}
}
public
String
calculateHashValue
(
String
username
,
String
flagValue
)
public
String
calculateHashValue
(
User
user
,
String
flagValue
)
{
{
String
combinedStrings
=
applicationConfiguration
.
getSalt
()
+
user
name
+
flagValue
;
String
combinedStrings
=
applicationConfiguration
.
getSalt
()
+
user
.
getName
()
+
flagValue
;
return
Hex
.
encodeHexString
(
messageDigest
.
digest
(
combinedStrings
.
getBytes
()));
return
Hex
.
encodeHexString
(
messageDigest
.
digest
(
combinedStrings
.
getBytes
()));
}
}
...
...
service/src/main/java/com/telephoners/krakyournet/ctf/resources/TasksResource.java
View file @
71e7254f
...
@@ -39,9 +39,13 @@ public class TasksResource
...
@@ -39,9 +39,13 @@ public class TasksResource
public
Response
getUserFlags
(
@Auth
User
user
,
final
@PathParam
(
"username"
)
String
username
)
public
Response
getUserFlags
(
@Auth
User
user
,
final
@PathParam
(
"username"
)
String
username
)
{
{
if
(
user
.
isAdmin
())
{
if
(
user
.
isAdmin
())
{
try
{
return
Response
.
ok
()
return
Response
.
ok
()
.
entity
(
tasksRepository
.
getUserFlagsHashes
(
username
))
.
entity
(
tasksRepository
.
getUserFlagsHashes
(
username
))
.
build
();
.
build
();
}
catch
(
Exception
e
)
{
return
Response
.
status
(
Response
.
Status
.
BAD_REQUEST
).
build
();
}
}
}
return
Response
.
status
(
Response
.
Status
.
UNAUTHORIZED
).
build
();
return
Response
.
status
(
Response
.
Status
.
UNAUTHORIZED
).
build
();
}
}
...
...
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment