Class: JSON::JWK

Inherits:
ActiveSupport::HashWithIndifferentAccess
  • Object
show all
Defined in:
lib/json/jwk.rb,
lib/json/jwk/set.rb,
lib/json/jwk/jwkizable.rb

Defined Under Namespace

Modules: JWKizable Classes: Set, UnknownAlgorithm

Class Method Summary collapse

Instance Method Summary collapse

Constructor Details

#initialize(constructor = {}, ex_params = {}) ⇒ JWK

Returns a new instance of JWK.



5
6
7
8
9
10
11
12
13
14
15
16
# File 'lib/json/jwk.rb', line 5

def initialize(constructor = {}, ex_params = {})
  if constructor.is_a? OpenSSL::PKey::PKey
    if constructor.respond_to? :to_jwk
      super constructor.to_jwk(ex_params)
    else
      raise UnknownAlgorithm.new('Unknown Key Type')
    end
  else
    super constructor
    merge! ex_params
  end
end

Class Method Details

.decode(jwk) ⇒ Object



99
100
101
102
103
104
# File 'lib/json/jwk.rb', line 99

def decode(jwk)
  # NOTE:
  #  returning OpenSSL::PKey::RSA/EC instance for backward compatibility.
  #  use `new` if you want JSON::JWK instance.
  new(jwk).to_key
end

Instance Method Details

#content_typeObject



18
19
20
# File 'lib/json/jwk.rb', line 18

def content_type
  'application/jwk+json'
end

#thumbprint(digest = OpenSSL::Digest::SHA256.new) ⇒ Object



22
23
24
25
26
27
28
29
30
31
32
# File 'lib/json/jwk.rb', line 22

def thumbprint(digest = OpenSSL::Digest::SHA256.new)
  digest = case digest
  when OpenSSL::Digest
    digest
  when String, Symbol
    OpenSSL::Digest.new digest.to_s
  else
    raise UnknownAlgorithm.new('Unknown Digest Algorithm')
  end
  UrlSafeBase64.encode64 digest.digest(normalize.to_json)
end

#to_keyObject



34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
# File 'lib/json/jwk.rb', line 34

def to_key
  case self[:kty].try(:to_sym)
  when :RSA
    e, n, d = [:e, :n, :d].collect do |key|
      if self[key]
        OpenSSL::BN.new UrlSafeBase64.decode64(self[key]), 2
      end
    end
    key = OpenSSL::PKey::RSA.new
    key.e = e
    key.n = n
    key.d = d if d
    key
  when :EC
    if RUBY_VERSION >= '2.0.0'
      key = OpenSSL::PKey::EC.new full_curve_name
      x, y = [self[:x], self[:y]].collect do |decoded|
        OpenSSL::BN.new UrlSafeBase64.decode64(decoded), 2
      end
      key.public_key = OpenSSL::PKey::EC::Point.new(key.group).mul(x, y)
      key
    else
      raise UnknownAlgorithm.new('This feature requires Ruby 2.0+')
    end
  else
    raise UnknownAlgorithm.new('Unknown Key Type')
  end
end