mirror of https://github.com/Squidex/squidex.git
You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
33 lines
1.1 KiB
33 lines
1.1 KiB
// ==========================================================================
|
|
// Squidex Headless CMS
|
|
// ==========================================================================
|
|
// Copyright (c) Squidex UG (haftungsbeschraenkt)
|
|
// All rights reserved. Licensed under the MIT license.
|
|
// ==========================================================================
|
|
|
|
using System.Linq;
|
|
using System.Security.Claims;
|
|
using System.Threading.Tasks;
|
|
using Microsoft.AspNetCore.Authentication;
|
|
using Squidex.Shared;
|
|
using Squidex.Shared.Identity;
|
|
|
|
namespace Squidex.Pipeline
|
|
{
|
|
public sealed class ApiPermissionUnifier : IClaimsTransformation
|
|
{
|
|
private const string AdministratorRole = "ADMINISTRATOR";
|
|
|
|
public Task<ClaimsPrincipal> TransformAsync(ClaimsPrincipal principal)
|
|
{
|
|
var identity = principal.Identities.First();
|
|
|
|
if (string.Equals(identity.FindFirst(identity.RoleClaimType)?.Value, AdministratorRole))
|
|
{
|
|
identity.AddClaim(new Claim(SquidexClaimTypes.Permissions, Permissions.Admin));
|
|
}
|
|
|
|
return Task.FromResult(principal);
|
|
}
|
|
}
|
|
}
|
|
|