"use strict"; var __createBinding = (this && this.__createBinding) || (Object.create ? (function(o, m, k, k2) { if (k2 === undefined) k2 = k; var desc = Object.getOwnPropertyDescriptor(m, k); if (!desc || ("get" in desc ? !m.__esModule : desc.writable || desc.configurable)) { desc = { enumerable: true, get: function() { return m[k]; } }; } Object.defineProperty(o, k2, desc); }) : (function(o, m, k, k2) { if (k2 === undefined) k2 = k; o[k2] = m[k]; })); var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (function(o, v) { Object.defineProperty(o, "default", { enumerable: true, value: v }); }) : function(o, v) { o["default"] = v; }); var __importStar = (this && this.__importStar) || function (mod) { if (mod && mod.__esModule) return mod; var result = {}; if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k); __setModuleDefault(result, mod); return result; }; var __importDefault = (this && this.__importDefault) || function (mod) { return (mod && mod.__esModule) ? mod : { "default": mod }; }; Object.defineProperty(exports, "__esModule", { value: true }); exports.uninstall = void 0; exports.certificateFor = certificateFor; exports.hasCertificateFor = hasCertificateFor; exports.configuredDomains = configuredDomains; exports.removeDomain = removeDomain; const fs_1 = require("fs"); const debug_1 = __importDefault(require("debug")); const constants_1 = require("./constants"); const platforms_1 = __importDefault(require("./platforms")); const utils_1 = require("./utils"); const certificate_authority_1 = __importStar(require("./certificate-authority")); Object.defineProperty(exports, "uninstall", { enumerable: true, get: function () { return certificate_authority_1.uninstall; } }); const certificates_1 = __importDefault(require("./certificates")); const user_interface_1 = __importDefault(require("./user-interface")); const debug = (0, debug_1.default)('devcert'); /** * Request an SSL certificate for the given app name signed by the devcert root * certificate authority. If devcert has previously generated a certificate for * that app name on this machine, it will reuse that certificate. * * If this is the first time devcert is being run on this machine, it will * generate and attempt to install a root certificate authority. * * Returns a promise that resolves with { key, cert }, where `key` and `cert` * are Buffers with the contents of the certificate private key and certificate * file, respectively * * If `options.getCaBuffer` is true, return value will include the ca certificate data * as { ca: Buffer } * * If `options.getCaPath` is true, return value will include the ca certificate path * as { caPath: string } */ async function certificateFor(domain, options = {}) { if (constants_1.VALID_IP.test(domain)) { throw new Error('IP addresses are not supported currently'); } if (!constants_1.VALID_DOMAIN.test(domain)) { throw new Error(`"${domain}" is not a valid domain name.`); } debug(`Certificate requested for ${domain}. Skipping certutil install: ${Boolean(options.skipCertutilInstall)}. Skipping hosts file: ${Boolean(options.skipHostsFile)}`); if (options.ui) { Object.assign(user_interface_1.default, options.ui); } if (!constants_1.isMac && !constants_1.isLinux && !constants_1.isWindows) { throw new Error(`Platform not supported: "${process.platform}"`); } if (!(0, utils_1.commandExists)('openssl')) { throw new Error('OpenSSL not found: OpenSSL is required to generate SSL certificates - make sure it is installed and available in your PATH'); } let domainKeyPath = (0, constants_1.pathForDomain)(domain, `private-key.key`); let domainCertPath = (0, constants_1.pathForDomain)(domain, `certificate.crt`); if (!(0, fs_1.existsSync)(constants_1.rootCAKeyPath)) { debug('Root CA is not installed yet, so it must be our first run. Installing root CA ...'); await (0, certificate_authority_1.default)(options); } else if (options.getCaBuffer || options.getCaPath) { debug('Root CA is not readable, but it probably is because an earlier version of devcert locked it. Trying to fix...'); await (0, certificate_authority_1.ensureCACertReadable)(options); } if (!(0, fs_1.existsSync)((0, constants_1.pathForDomain)(domain, `certificate.crt`))) { debug(`Can't find certificate file for ${domain}, so it must be the first request for ${domain}. Generating and caching ...`); await (0, certificates_1.default)(domain); } if (!options.skipHostsFile) { await platforms_1.default.addDomainToHostFileIfMissing(domain); } debug(`Returning domain certificate`); const ret = { key: (0, fs_1.readFileSync)(domainKeyPath), cert: (0, fs_1.readFileSync)(domainCertPath) }; if (options.getCaBuffer) ret.ca = (0, fs_1.readFileSync)(constants_1.rootCACertPath); if (options.getCaPath) ret.caPath = constants_1.rootCACertPath; return ret; } function hasCertificateFor(domain) { return (0, fs_1.existsSync)((0, constants_1.pathForDomain)(domain, `certificate.crt`)); } function configuredDomains() { return (0, fs_1.readdirSync)(constants_1.domainsDir); } function removeDomain(domain) { return (0, fs_1.rmSync)((0, constants_1.pathForDomain)(domain), { force: true, recursive: true }); } //# sourceMappingURL=data:application/json;base64,{"version":3,"file":"index.js","sourceRoot":"./","sources":["index.ts"],"names":[],"mappings":";;;;;;;;;;;;;;;;;;;;;;;;;;;;;AAmEA,wCAmDC;AAED,8CAEC;AAED,8CAEC;AAED,oCAEC;AAlID,2BAA0G;AAC1G,kDAAgC;AAChC,2CAUqB;AACrB,4DAA0C;AAC1C,mCAAwC;AACxC,iFAAuG;AAG9F,0FAHmD,iCAAS,OAGnD;AAFlB,kEAAuD;AACvD,sEAAqD;AAGrD,MAAM,KAAK,GAAG,IAAA,eAAW,EAAC,SAAS,CAAC,CAAC;AA6BrC;;;;;;;;;;;;;;;;;GAiBG;AACI,KAAK,UAAU,cAAc,CAAoB,MAAc,EAAE,UAAa,EAAO;IAC1F,IAAI,oBAAQ,CAAC,IAAI,CAAC,MAAM,CAAC,EAAE,CAAC;QAC1B,MAAM,IAAI,KAAK,CAAC,0CAA0C,CAAC,CAAC;IAC9D,CAAC;IACD,IAAI,CAAC,wBAAY,CAAC,IAAI,CAAC,MAAM,CAAC,EAAE,CAAC;QAC/B,MAAM,IAAI,KAAK,CAAC,IAAI,MAAM,+BAA+B,CAAC,CAAC;IAC7D,CAAC;IACD,KAAK,CAAC,6BAA8B,MAAO,gCAAiC,OAAO,CAAC,OAAO,CAAC,mBAAmB,CAAE,0BAA2B,OAAO,CAAC,OAAO,CAAC,aAAa,CAAE,EAAE,CAAC,CAAC;IAE/K,IAAI,OAAO,CAAC,EAAE,EAAE,CAAC;QACf,MAAM,CAAC,MAAM,CAAC,wBAAE,EAAE,OAAO,CAAC,EAAE,CAAC,CAAC;IAChC,CAAC;IAED,IAAI,CAAC,iBAAK,IAAI,CAAC,mBAAO,IAAI,CAAC,qBAAS,EAAE,CAAC;QACrC,MAAM,IAAI,KAAK,CAAC,4BAA6B,OAAO,CAAC,QAAS,GAAG,CAAC,CAAC;IACrE,CAAC;IAED,IAAI,CAAC,IAAA,qBAAa,EAAC,SAAS,CAAC,EAAE,CAAC;QAC9B,MAAM,IAAI,KAAK,CAAC,4HAA4H,CAAC,CAAC;IAChJ,CAAC;IAED,IAAI,aAAa,GAAG,IAAA,yBAAa,EAAC,MAAM,EAAE,iBAAiB,CAAC,CAAC;IAC7D,IAAI,cAAc,GAAG,IAAA,yBAAa,EAAC,MAAM,EAAE,iBAAiB,CAAC,CAAC;IAE9D,IAAI,CAAC,IAAA,eAAM,EAAC,yBAAa,CAAC,EAAE,CAAC;QAC3B,KAAK,CAAC,mFAAmF,CAAC,CAAC;QAC3F,MAAM,IAAA,+BAA2B,EAAC,OAAO,CAAC,CAAC;IAC7C,CAAC;SAAM,IAAI,OAAO,CAAC,WAAW,IAAI,OAAO,CAAC,SAAS,EAAE,CAAC;QACpD,KAAK,CAAC,+GAA+G,CAAC,CAAC;QACvH,MAAM,IAAA,4CAAoB,EAAC,OAAO,CAAC,CAAC;IACtC,CAAC;IAED,IAAI,CAAC,IAAA,eAAM,EAAC,IAAA,yBAAa,EAAC,MAAM,EAAE,iBAAiB,CAAC,CAAC,EAAE,CAAC;QACtD,KAAK,CAAC,mCAAoC,MAAO,yCAA0C,MAAO,8BAA8B,CAAC,CAAC;QAClI,MAAM,IAAA,sBAAyB,EAAC,MAAM,CAAC,CAAC;IAC1C,CAAC;IAED,IAAI,CAAC,OAAO,CAAC,aAAa,EAAE,CAAC;QAC3B,MAAM,mBAAe,CAAC,4BAA4B,CAAC,MAAM,CAAC,CAAC;IAC7D,CAAC;IAED,KAAK,CAAC,8BAA8B,CAAC,CAAC;IAEtC,MAAM,GAAG,GAAG;QACV,GAAG,EAAE,IAAA,iBAAQ,EAAC,aAAa,CAAC;QAC5B,IAAI,EAAE,IAAA,iBAAQ,EAAC,cAAc,CAAC;KACb,CAAC;IACpB,IAAI,OAAO,CAAC,WAAW;QAAG,GAAiB,CAAC,EAAE,GAAG,IAAA,iBAAQ,EAAC,0BAAc,CAAC,CAAC;IAC1E,IAAI,OAAO,CAAC,SAAS;QAAG,GAAe,CAAC,MAAM,GAAG,0BAAc,CAAC;IAEhE,OAAO,GAAG,CAAC;AACb,CAAC;AAED,SAAgB,iBAAiB,CAAC,MAAc;IAC9C,OAAO,IAAA,eAAM,EAAC,IAAA,yBAAa,EAAC,MAAM,EAAE,iBAAiB,CAAC,CAAC,CAAC;AAC1D,CAAC;AAED,SAAgB,iBAAiB;IAC/B,OAAO,IAAA,gBAAO,EAAC,sBAAU,CAAC,CAAC;AAC7B,CAAC;AAED,SAAgB,YAAY,CAAC,MAAc;IACzC,OAAO,IAAA,WAAE,EAAC,IAAA,yBAAa,EAAC,MAAM,CAAC,EAAE,EAAE,KAAK,EAAE,IAAI,EAAE,SAAS,EAAE,IAAI,EAAE,CAAC,CAAC;AACrE,CAAC","sourcesContent":["import { rmSync as rm, readFileSync as readFile, readdirSync as readdir, existsSync as exists } from 'fs';\nimport createDebug from 'debug';\nimport {\n  isMac,\n  isLinux,\n  isWindows,\n  pathForDomain,\n  domainsDir,\n  rootCAKeyPath,\n  rootCACertPath,\n  VALID_DOMAIN,\n  VALID_IP\n} from './constants';\nimport currentPlatform from './platforms';\nimport { commandExists } from './utils';\nimport installCertificateAuthority, { ensureCACertReadable, uninstall } from './certificate-authority';\nimport generateDomainCertificate from './certificates';\nimport UI, { UserInterface } from './user-interface';\nexport { uninstall };\n\nconst debug = createDebug('devcert');\n\nexport interface Options /* extends Partial<ICaBufferOpts & ICaPathOpts>  */{\n  /** Return the CA certificate data? */\n  getCaBuffer?: boolean;\n  /** Return the path to the CA certificate? */\n  getCaPath?: boolean;\n  /** If `certutil` is not installed already (for updating nss databases; e.g. firefox), do not attempt to install it */\n  skipCertutilInstall?: boolean,\n  /** Do not update your systems host file with the domain name of the certificate */\n  skipHostsFile?: boolean,\n  /** User interface hooks */\n  ui?: UserInterface\n}\n\ninterface ICaBuffer {\n  ca: Buffer;\n}\ninterface ICaPath {\n  caPath: string;\n}\ninterface IDomainData {\n  key: Buffer;\n  cert: Buffer;\n}\ntype IReturnCa<O extends Options> = O['getCaBuffer'] extends true ? ICaBuffer : false;\ntype IReturnCaPath<O extends Options> = O['getCaPath'] extends true ? ICaPath : false;\ntype IReturnData<O extends Options = {}> = (IDomainData) & (IReturnCa<O>) & (IReturnCaPath<O>);\n\n/**\n * Request an SSL certificate for the given app name signed by the devcert root\n * certificate authority. If devcert has previously generated a certificate for\n * that app name on this machine, it will reuse that certificate.\n *\n * If this is the first time devcert is being run on this machine, it will\n * generate and attempt to install a root certificate authority.\n *\n * Returns a promise that resolves with { key, cert }, where `key` and `cert`\n * are Buffers with the contents of the certificate private key and certificate\n * file, respectively\n * \n * If `options.getCaBuffer` is true, return value will include the ca certificate data\n * as { ca: Buffer }\n * \n * If `options.getCaPath` is true, return value will include the ca certificate path\n * as { caPath: string }\n */\nexport async function certificateFor<O extends Options>(domain: string, options: O = {} as O): Promise<IReturnData<O>> {\n  if (VALID_IP.test(domain)) {\n    throw new Error('IP addresses are not supported currently');\n  }\n  if (!VALID_DOMAIN.test(domain)) {\n    throw new Error(`\"${domain}\" is not a valid domain name.`);\n  }\n  debug(`Certificate requested for ${ domain }. Skipping certutil install: ${ Boolean(options.skipCertutilInstall) }. Skipping hosts file: ${ Boolean(options.skipHostsFile) }`);\n\n  if (options.ui) {\n    Object.assign(UI, options.ui);\n  }\n\n  if (!isMac && !isLinux && !isWindows) {\n    throw new Error(`Platform not supported: \"${ process.platform }\"`);\n  }\n\n  if (!commandExists('openssl')) {\n    throw new Error('OpenSSL not found: OpenSSL is required to generate SSL certificates - make sure it is installed and available in your PATH');\n  }\n\n  let domainKeyPath = pathForDomain(domain, `private-key.key`);\n  let domainCertPath = pathForDomain(domain, `certificate.crt`);\n\n  if (!exists(rootCAKeyPath)) {\n    debug('Root CA is not installed yet, so it must be our first run. Installing root CA ...');\n    await installCertificateAuthority(options);\n  } else if (options.getCaBuffer || options.getCaPath) {\n    debug('Root CA is not readable, but it probably is because an earlier version of devcert locked it. Trying to fix...');\n    await ensureCACertReadable(options);\n  }\n\n  if (!exists(pathForDomain(domain, `certificate.crt`))) {\n    debug(`Can't find certificate file for ${ domain }, so it must be the first request for ${ domain }. Generating and caching ...`);\n    await generateDomainCertificate(domain);\n  }\n\n  if (!options.skipHostsFile) {\n    await currentPlatform.addDomainToHostFileIfMissing(domain);\n  }\n\n  debug(`Returning domain certificate`);\n\n  const ret = {\n    key: readFile(domainKeyPath),\n    cert: readFile(domainCertPath)\n  } as IReturnData<O>;\n  if (options.getCaBuffer) (ret as ICaBuffer).ca = readFile(rootCACertPath);\n  if (options.getCaPath) (ret as ICaPath).caPath = rootCACertPath;\n\n  return ret;\n}\n\nexport function hasCertificateFor(domain: string) {\n  return exists(pathForDomain(domain, `certificate.crt`));\n}\n\nexport function configuredDomains() {\n  return readdir(domainsDir);\n}\n\nexport function removeDomain(domain: string) {\n  return rm(pathForDomain(domain), { force: true, recursive: true });\n}\n"]}