package acme import ( "crypto" "crypto/rsa" "encoding/base64" "io" "net/mail" "strings" "github.com/square/go-jose" ) // KeySize is a default RSA key size const KeySize = 2048 // Account ... type Account struct { Contact Contacts `json:"contact"` PrivKey *rsa.PrivateKey `json:"key"` signer jose.Signer nonce chan string } // NewAccount ... func NewAccount(key *rsa.PrivateKey) (*Account, error) { signer, err := jose.NewSigner(jose.RS256, key) if err != nil { return nil, err } return &Account{PrivKey: key, signer: signer}, nil } func (a *Account) AddMail(email string) error { m, err := mail.ParseAddress(email) if err != nil { return err } a.Contact = append(a.Contact, Mail(m.Address)) return nil } func (a *Account) AddPhone(phone string) error { if ph := strings.TrimSpace(phone); ph != "" { a.Contact = append(a.Contact, Phone(ph)) } return nil } // Signer describes a signing interface type Signer interface { Sign([]byte, jose.NonceSource) (io.Reader, error) Thumb(string) (string, error) } // Sign implements Signer interface func (a *Account) Sign(msg []byte, n jose.NonceSource) (io.Reader, error) { a.signer.SetNonceSource(n) obj, err := a.signer.Sign(msg) if err != nil { return nil, err } return strings.NewReader(obj.FullSerialize()), nil } func (a *Account) Thumb(token string) (string, error) { k := &jose.JsonWebKey{Key: a.PrivKey.Public(), Algorithm: "RSA"} thumb, err := k.Thumbprint(crypto.SHA256) if err != nil { return "", err } return token + "." + base64.RawURLEncoding.EncodeToString(thumb), nil }