mirror of
https://github.com/JKorf/CryptoExchange.Net.git
synced 2026-08-12 17:03:10 +00:00
690f2a63e5
commit 90f285d7f6bcd926ce9ca3d5832b1d70a5eae6ab Author: JKorf <jankorf91@gmail.com> Date: Sun Jun 25 19:51:12 2023 +0200 Docs commit 72187035c703d1402b37bd2f4c3e066706f28d67 Author: JKorf <jankorf91@gmail.com> Date: Sat Jun 24 16:02:53 2023 +0200 docs commit 8411977292f1fb0b6e0705b1ad675b79a5311d90 Author: JKorf <jankorf91@gmail.com> Date: Fri Jun 23 18:25:15 2023 +0200 wip commit cb7d33aad5d2751104c8b8a6c6eadbf0d36b672c Author: JKorf <jankorf91@gmail.com> Date: Fri Jun 2 19:26:26 2023 +0200 wip commit 4359a2d05ea1141cff516dab18f364a6ca854e18 Author: JKorf <jankorf91@gmail.com> Date: Wed May 31 20:51:36 2023 +0200 wip commit c6adb1b2f728d143f6bd667139c619581122a3c9 Author: JKorf <jankorf91@gmail.com> Date: Mon May 1 21:13:47 2023 +0200 wip commit 7fee733f82fa6ff574030452f0955c9e817647dd Author: JKorf <jankorf91@gmail.com> Date: Thu Apr 27 13:02:56 2023 +0200 wip commit f8057313ffc9b0c31effcda71d35d105ea390971 Author: JKorf <jankorf91@gmail.com> Date: Mon Apr 17 21:37:51 2023 +0200 wip
303 lines
12 KiB
C#
303 lines
12 KiB
C#
using CryptoExchange.Net.Converters;
|
|
using CryptoExchange.Net.Objects;
|
|
using System;
|
|
using System.Collections.Generic;
|
|
using System.Globalization;
|
|
using System.Net.Http;
|
|
using System.Security.Cryptography;
|
|
using System.Text;
|
|
|
|
namespace CryptoExchange.Net.Authentication
|
|
{
|
|
/// <summary>
|
|
/// Base class for authentication providers
|
|
/// </summary>
|
|
public abstract class AuthenticationProvider : IDisposable
|
|
{
|
|
/// <summary>
|
|
/// Provided credentials
|
|
/// </summary>
|
|
protected readonly ApiCredentials _credentials;
|
|
|
|
/// <summary>
|
|
/// Byte representation of the secret
|
|
/// </summary>
|
|
protected byte[] _sBytes;
|
|
|
|
/// <summary>
|
|
/// ctor
|
|
/// </summary>
|
|
/// <param name="credentials"></param>
|
|
protected AuthenticationProvider(ApiCredentials credentials)
|
|
{
|
|
if (credentials.Secret == null)
|
|
throw new ArgumentException("ApiKey/Secret needed");
|
|
|
|
_credentials = credentials;
|
|
_sBytes = Encoding.UTF8.GetBytes(credentials.Secret.GetString());
|
|
}
|
|
|
|
/// <summary>
|
|
/// Authenticate a request. Output parameters should include the providedParameters input
|
|
/// </summary>
|
|
/// <param name="apiClient">The Api client sending the request</param>
|
|
/// <param name="uri">The uri for the request</param>
|
|
/// <param name="method">The method of the request</param>
|
|
/// <param name="providedParameters">The request parameters</param>
|
|
/// <param name="auth">If the requests should be authenticated</param>
|
|
/// <param name="arraySerialization">Array serialization type</param>
|
|
/// <param name="parameterPosition">The position where the providedParameters should go</param>
|
|
/// <param name="uriParameters">Parameters that need to be in the Uri of the request. Should include the provided parameters if they should go in the uri</param>
|
|
/// <param name="bodyParameters">Parameters that need to be in the body of the request. Should include the provided parameters if they should go in the body</param>
|
|
/// <param name="headers">The headers that should be send with the request</param>
|
|
public abstract void AuthenticateRequest(
|
|
RestApiClient apiClient,
|
|
Uri uri,
|
|
HttpMethod method,
|
|
Dictionary<string, object> providedParameters,
|
|
bool auth,
|
|
ArrayParametersSerialization arraySerialization,
|
|
HttpMethodParameterPosition parameterPosition,
|
|
out SortedDictionary<string, object> uriParameters,
|
|
out SortedDictionary<string, object> bodyParameters,
|
|
out Dictionary<string, string> headers
|
|
);
|
|
|
|
/// <summary>
|
|
/// SHA256 sign the data and return the bytes
|
|
/// </summary>
|
|
/// <param name="data"></param>
|
|
/// <returns></returns>
|
|
protected static byte[] SignSHA256Bytes(string data)
|
|
{
|
|
using var encryptor = SHA256.Create();
|
|
return encryptor.ComputeHash(Encoding.UTF8.GetBytes(data));
|
|
}
|
|
|
|
/// <summary>
|
|
/// SHA256 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected static string SignSHA256(string data, SignOutputType? outputType = null)
|
|
{
|
|
using var encryptor = SHA256.Create();
|
|
var resultBytes = encryptor.ComputeHash(Encoding.UTF8.GetBytes(data));
|
|
return outputType == SignOutputType.Base64 ? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// SHA384 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected static string SignSHA384(string data, SignOutputType? outputType = null)
|
|
{
|
|
using var encryptor = SHA384.Create();
|
|
var resultBytes = encryptor.ComputeHash(Encoding.UTF8.GetBytes(data));
|
|
return outputType == SignOutputType.Base64 ? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// SHA512 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected static string SignSHA512(string data, SignOutputType? outputType = null)
|
|
{
|
|
using var encryptor = SHA512.Create();
|
|
var resultBytes = encryptor.ComputeHash(Encoding.UTF8.GetBytes(data));
|
|
return outputType == SignOutputType.Base64 ? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// MD5 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected static string SignMD5(string data, SignOutputType? outputType = null)
|
|
{
|
|
using var encryptor = MD5.Create();
|
|
var resultBytes = encryptor.ComputeHash(Encoding.UTF8.GetBytes(data));
|
|
return outputType == SignOutputType.Base64 ? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// HMACSHA256 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected string SignHMACSHA256(string data, SignOutputType? outputType = null)
|
|
{
|
|
using var encryptor = new HMACSHA256(_sBytes);
|
|
var resultBytes = encryptor.ComputeHash(Encoding.UTF8.GetBytes(data));
|
|
return outputType == SignOutputType.Base64 ? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// HMACSHA384 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected string SignHMACSHA384(string data, SignOutputType? outputType = null)
|
|
{
|
|
using var encryptor = new HMACSHA384(_sBytes);
|
|
var resultBytes = encryptor.ComputeHash(Encoding.UTF8.GetBytes(data));
|
|
return outputType == SignOutputType.Base64 ? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// HMACSHA512 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected string SignHMACSHA512(string data, SignOutputType? outputType = null)
|
|
=> SignHMACSHA512(Encoding.UTF8.GetBytes(data), outputType);
|
|
|
|
/// <summary>
|
|
/// HMACSHA512 sign the data and return the hash
|
|
/// </summary>
|
|
/// <param name="data">Data to sign</param>
|
|
/// <param name="outputType">String type</param>
|
|
/// <returns></returns>
|
|
protected string SignHMACSHA512(byte[] data, SignOutputType? outputType = null)
|
|
{
|
|
using var encryptor = new HMACSHA512(_sBytes);
|
|
var resultBytes = encryptor.ComputeHash(data);
|
|
return outputType == SignOutputType.Base64 ? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// SHA256 sign the data
|
|
/// </summary>
|
|
/// <param name="data"></param>
|
|
/// <param name="outputType"></param>
|
|
/// <returns></returns>
|
|
protected string SignRSASHA256(byte[] data, SignOutputType? outputType = null)
|
|
{
|
|
using var rsa = RSA.Create();
|
|
if (_credentials.CredentialType == ApiCredentialsType.RsaPem)
|
|
{
|
|
#if NETSTANDARD2_1_OR_GREATER
|
|
// Read from pem private key
|
|
var key = _credentials.Secret!.GetString()
|
|
.Replace("\n", "")
|
|
.Replace("-----BEGIN PRIVATE KEY-----", "")
|
|
.Replace("-----END PRIVATE KEY-----", "")
|
|
.Trim();
|
|
rsa.ImportPkcs8PrivateKey(Convert.FromBase64String(
|
|
key)
|
|
, out _);
|
|
#else
|
|
throw new Exception("Pem format not supported when running from .NetStandard2.0. Convert the private key to xml format.");
|
|
#endif
|
|
}
|
|
else if (_credentials.CredentialType == ApiCredentialsType.RsaXml)
|
|
{
|
|
// Read from xml private key format
|
|
rsa.FromXmlString(_credentials.Secret!.GetString());
|
|
}
|
|
else
|
|
{
|
|
throw new Exception("Invalid credentials type");
|
|
}
|
|
|
|
using var sha256 = SHA256.Create();
|
|
var hash = sha256.ComputeHash(data);
|
|
var resultBytes = rsa.SignHash(hash, HashAlgorithmName.SHA256, RSASignaturePadding.Pkcs1);
|
|
return outputType == SignOutputType.Base64? BytesToBase64String(resultBytes) : BytesToHexString(resultBytes);
|
|
}
|
|
|
|
/// <summary>
|
|
/// Sign a string
|
|
/// </summary>
|
|
/// <param name="toSign"></param>
|
|
/// <returns></returns>
|
|
public virtual string Sign(string toSign)
|
|
{
|
|
return toSign;
|
|
}
|
|
|
|
/// <summary>
|
|
/// Sign a byte array
|
|
/// </summary>
|
|
/// <param name="toSign"></param>
|
|
/// <returns></returns>
|
|
public virtual byte[] Sign(byte[] toSign)
|
|
{
|
|
return toSign;
|
|
}
|
|
|
|
/// <summary>
|
|
/// Convert byte array to hex string
|
|
/// </summary>
|
|
/// <param name="buff"></param>
|
|
/// <returns></returns>
|
|
protected static string BytesToHexString(byte[] buff)
|
|
{
|
|
var result = string.Empty;
|
|
foreach (var t in buff)
|
|
result += t.ToString("X2");
|
|
return result;
|
|
}
|
|
|
|
/// <summary>
|
|
/// Convert byte array to base64 string
|
|
/// </summary>
|
|
/// <param name="buff"></param>
|
|
/// <returns></returns>
|
|
protected static string BytesToBase64String(byte[] buff)
|
|
{
|
|
return Convert.ToBase64String(buff);
|
|
}
|
|
|
|
/// <summary>
|
|
/// Get current timestamp including the time sync offset from the api client
|
|
/// </summary>
|
|
/// <param name="apiClient"></param>
|
|
/// <returns></returns>
|
|
protected static DateTime GetTimestamp(RestApiClient apiClient)
|
|
{
|
|
return DateTime.UtcNow.Add(apiClient.GetTimeOffset() ?? TimeSpan.Zero)!;
|
|
}
|
|
|
|
/// <summary>
|
|
/// Get millisecond timestamp as a string including the time sync offset from the api client
|
|
/// </summary>
|
|
/// <param name="apiClient"></param>
|
|
/// <returns></returns>
|
|
protected static string GetMillisecondTimestamp(RestApiClient apiClient)
|
|
{
|
|
return DateTimeConverter.ConvertToMilliseconds(GetTimestamp(apiClient)).Value.ToString(CultureInfo.InvariantCulture);
|
|
}
|
|
|
|
/// <inheritdoc />
|
|
public void Dispose()
|
|
{
|
|
_credentials?.Dispose();
|
|
}
|
|
}
|
|
|
|
/// <inheritdoc />
|
|
public abstract class AuthenticationProvider<TApiCredentials> : AuthenticationProvider where TApiCredentials : ApiCredentials
|
|
{
|
|
/// <inheritdoc />
|
|
protected new TApiCredentials _credentials => (TApiCredentials)base._credentials;
|
|
|
|
/// <summary>
|
|
/// ctor
|
|
/// </summary>
|
|
/// <param name="credentials"></param>
|
|
protected AuthenticationProvider(TApiCredentials credentials) : base(credentials)
|
|
{
|
|
}
|
|
}
|
|
}
|