Move AppState, AppStateConfig, and from_database() out of server.rs into state.rs so server.rs only contains startup and shutdown logic.
140 lines
4.1 KiB
Rust
140 lines
4.1 KiB
Rust
use std::net::SocketAddr;
|
|
use std::sync::Arc;
|
|
|
|
use anyhow::Context;
|
|
use chrono::{Duration, Utc};
|
|
use tokio::net::TcpListener;
|
|
use tokio::signal;
|
|
use tracing::info;
|
|
use webauthn_rs::prelude::*;
|
|
|
|
use crate::application::routes::app_router;
|
|
use crate::application::state::{AppState, AppStateConfig};
|
|
use crate::domain::registration_tokens::NewRegistrationToken;
|
|
use crate::domain::repositories::{RegistrationTokenRepository, UserRepository};
|
|
use crate::infrastructure::auth::{generate_session_token, hash_token};
|
|
use crate::infrastructure::database::Database;
|
|
|
|
pub struct ServerConfig {
|
|
pub bind_address: SocketAddr,
|
|
pub database_url: String,
|
|
pub rp_id: String,
|
|
pub rp_origin: String,
|
|
pub openrouter_api_key: String,
|
|
pub openrouter_model: String,
|
|
pub foursquare_api_key: String,
|
|
}
|
|
|
|
pub async fn serve(config: ServerConfig) -> anyhow::Result<()> {
|
|
let database = Database::connect(&config.database_url)
|
|
.await
|
|
.context("failed to connect to database")?;
|
|
|
|
let rp_origin = url::Url::parse(&config.rp_origin).context("invalid BREWLOG_RP_ORIGIN URL")?;
|
|
let webauthn = Arc::new(
|
|
WebauthnBuilder::new(&config.rp_id, &rp_origin)
|
|
.context("failed to build WebAuthn instance")?
|
|
.rp_name("Brewlog")
|
|
.build()
|
|
.context("failed to build WebAuthn instance")?,
|
|
);
|
|
|
|
let state = AppState::from_database(
|
|
&database,
|
|
AppStateConfig {
|
|
webauthn,
|
|
foursquare_url: crate::infrastructure::foursquare::FOURSQUARE_SEARCH_URL.to_string(),
|
|
foursquare_api_key: config.foursquare_api_key,
|
|
openrouter_url: crate::infrastructure::ai::OPENROUTER_URL.to_string(),
|
|
openrouter_api_key: config.openrouter_api_key,
|
|
openrouter_model: config.openrouter_model,
|
|
},
|
|
);
|
|
|
|
// Bootstrap: if no users exist, generate a one-time registration token
|
|
bootstrap_registration(
|
|
&state.registration_token_repo,
|
|
&state.user_repo,
|
|
&config.rp_origin,
|
|
)
|
|
.await?;
|
|
|
|
let listener = TcpListener::bind(config.bind_address)
|
|
.await
|
|
.with_context(|| format!("failed to bind to {}", config.bind_address))?;
|
|
|
|
let app = app_router(state);
|
|
|
|
info!(
|
|
address = %config.bind_address,
|
|
database = %config.database_url,
|
|
"starting HTTP server"
|
|
);
|
|
|
|
axum::serve(listener, app)
|
|
.with_graceful_shutdown(shutdown_signal())
|
|
.await
|
|
.context("server terminated unexpectedly")?;
|
|
|
|
info!("server shutdown complete");
|
|
|
|
Ok(())
|
|
}
|
|
|
|
async fn bootstrap_registration(
|
|
registration_token_repo: &Arc<dyn RegistrationTokenRepository>,
|
|
user_repo: &Arc<dyn UserRepository>,
|
|
rp_origin: &str,
|
|
) -> anyhow::Result<()> {
|
|
let users_exist = user_repo
|
|
.exists()
|
|
.await
|
|
.context("failed to check if users exist")?;
|
|
|
|
if users_exist {
|
|
return Ok(());
|
|
}
|
|
|
|
// Generate one-time registration token
|
|
let token = generate_session_token();
|
|
let token_hash = hash_token(&token);
|
|
let now = Utc::now();
|
|
#[allow(clippy::expect_used)]
|
|
let expires_at = now
|
|
.checked_add_signed(Duration::hours(1))
|
|
.expect("timestamp overflow adding 1 hour");
|
|
|
|
let new_token = NewRegistrationToken::new(token_hash, now, expires_at);
|
|
|
|
registration_token_repo
|
|
.insert(new_token)
|
|
.await
|
|
.context("failed to create registration token")?;
|
|
|
|
info!("No users found. Register the first user at:");
|
|
info!(" {}/register/{}", rp_origin, token);
|
|
info!("This link expires in 1 hour.");
|
|
|
|
Ok(())
|
|
}
|
|
|
|
#[allow(clippy::expect_used)] // Startup: panicking is appropriate if signal handlers fail
|
|
async fn shutdown_signal() {
|
|
let ctrl_c = async {
|
|
signal::ctrl_c()
|
|
.await
|
|
.expect("failed to install Ctrl+C handler");
|
|
};
|
|
|
|
let terminate = async {
|
|
signal::unix::signal(signal::unix::SignalKind::terminate())
|
|
.expect("failed to install SIGTERM handler")
|
|
.recv()
|
|
.await;
|
|
};
|
|
|
|
tokio::select! {
|
|
() = ctrl_c => {},
|
|
() = terminate => {},
|
|
}
|
|
}
|