import { NextResponse } from 'next/server'; import { getServerSession } from 'next-auth'; import { authOptions } from '@/app/api/auth/[...nextauth]/route'; import { DOMParser } from '@xmldom/xmldom'; import { Buffer } from 'buffer'; async function sleep(ms: number) { return new Promise(resolve => setTimeout(resolve, ms)); } async function parseXMLResponse(response: Response): Promise { const text = await response.text(); console.log('XML Response:', text); // Debug log const parser = new DOMParser(); const xmlDoc = parser.parseFromString(text, 'text/xml'); // Check for parsing errors const parserError = xmlDoc.getElementsByTagName('parsererror'); if (parserError.length > 0) { console.error('XML Parsing Error:', parserError[0].textContent); throw new Error('Failed to parse XML response'); } const result: any = {}; const root = xmlDoc.documentElement; if (root && root.nodeName === 'ocs') { const data = root.getElementsByTagName('data')[0]; if (data) { const children = data.childNodes; for (let i = 0; i < children.length; i++) { const child = children[i]; if (child.nodeType === 1) { // Element node result[child.nodeName] = child.textContent; } } } } return result; } async function getWebDAVCredentials(nextcloudUrl: string, username: string, adminUsername: string, adminPassword: string) { try { // First, try to get the user's WebDAV password const userInfoResponse = await fetch(`${nextcloudUrl}/ocs/v1.php/cloud/users/${encodeURIComponent(username)}`, { headers: { 'Authorization': `Basic ${Buffer.from(`${adminUsername}:${adminPassword}`).toString('base64')}`, 'OCS-APIRequest': 'true', }, }); if (!userInfoResponse.ok) { console.error('Failed to get user info:', await userInfoResponse.text()); throw new Error(`Failed to get user info: ${userInfoResponse.status} ${userInfoResponse.statusText}`); } const userInfo = await parseXMLResponse(userInfoResponse); console.log('User Info:', userInfo); // Generate a new password const newPassword = Math.random().toString(36).slice(-12); console.log('Setting new password for user'); // Set the user's password directly const setPasswordResponse = await fetch(`${nextcloudUrl}/ocs/v1.php/cloud/users/${encodeURIComponent(username)}`, { method: 'PUT', headers: { 'Authorization': `Basic ${Buffer.from(`${adminUsername}:${adminPassword}`).toString('base64')}`, 'OCS-APIRequest': 'true', 'Content-Type': 'application/x-www-form-urlencoded', }, body: new URLSearchParams({ key: 'password', value: newPassword, }).toString(), }); if (!setPasswordResponse.ok) { console.error('Failed to set password:', await setPasswordResponse.text()); throw new Error(`Failed to set password: ${setPasswordResponse.status} ${setPasswordResponse.statusText}`); } // Verify the password was set by trying to authenticate const verifyResponse = await fetch(`${nextcloudUrl}/remote.php/dav/files/${encodeURIComponent(username)}/`, { headers: { 'Authorization': `Basic ${Buffer.from(`${username}:${newPassword}`).toString('base64')}`, }, }); if (!verifyResponse.ok) { console.error('Failed to verify password:', await verifyResponse.text()); throw new Error('Password verification failed'); } return newPassword; } catch (error) { console.error('Error in getWebDAVCredentials:', error); throw error; } } export async function GET() { try { const session = await getServerSession(authOptions); if (!session?.user?.email || !session?.user?.id || !session?.accessToken) { return NextResponse.json( { error: 'Unauthorized' }, { status: 401 } ); } const nextcloudUrl = process.env.NEXTCLOUD_URL; const adminUsername = process.env.NEXTCLOUD_ADMIN_USERNAME; const adminPassword = process.env.NEXTCLOUD_ADMIN_PASSWORD; if (!nextcloudUrl || !adminUsername || !adminPassword) { console.error('Missing Nextcloud configuration'); return NextResponse.json( { error: 'Nextcloud configuration is missing' }, { status: 500 } ); } // Test Nextcloud connectivity const testResponse = await fetch(`${nextcloudUrl}/status.php`); if (!testResponse.ok) { console.error('Nextcloud is not accessible:', await testResponse.text()); return NextResponse.json( { error: "Nextcloud n'est pas accessible" }, { status: 503 } ); } try { // Use the Keycloak ID as the Nextcloud username const nextcloudUsername = `cube-${session.user.id}`; console.log('Using Nextcloud username:', nextcloudUsername); // Get or create WebDAV credentials const webdavPassword = await getWebDAVCredentials( nextcloudUrl, nextcloudUsername, adminUsername, adminPassword ); if (!webdavPassword) { throw new Error('Failed to get WebDAV credentials'); } // Get user's folders using WebDAV with Basic authentication const webdavUrl = `${nextcloudUrl}/remote.php/dav/files/${encodeURIComponent(nextcloudUsername)}/`; console.log('Requesting WebDAV URL:', webdavUrl); const foldersResponse = await fetch(webdavUrl, { headers: { 'Authorization': `Basic ${Buffer.from(`${nextcloudUsername}:${webdavPassword}`).toString('base64')}`, 'Depth': '1', 'Content-Type': 'application/xml', }, }); if (foldersResponse.status === 429) { // Rate limited, wait and retry const retryAfter = foldersResponse.headers.get('Retry-After'); await sleep((retryAfter ? parseInt(retryAfter) : 5) * 1000); return GET(); // Retry the entire request } if (!foldersResponse.ok) { const errorText = await foldersResponse.text(); console.error('Failed to fetch folders. Status:', foldersResponse.status); console.error('Response:', errorText); console.error('Response headers:', Object.fromEntries(foldersResponse.headers.entries())); throw new Error(`Failed to fetch folders: ${errorText}`); } const folderData = await foldersResponse.text(); console.log('Folder data:', folderData); // Parse the XML response to get folder names and filter only directories const parser = new DOMParser(); const xmlDoc = parser.parseFromString(folderData, 'text/xml'); const responses = Array.from(xmlDoc.getElementsByTagName('d:response')); const folders: string[] = []; for (const response of responses) { const resourceType = response.getElementsByTagName('d:resourcetype')[0]; const isCollection = resourceType?.getElementsByTagName('d:collection').length > 0; if (isCollection) { const displayName = response.getElementsByTagName('d:displayname')[0]?.textContent; if (displayName && displayName !== nextcloudUsername) { folders.push(displayName); } } } console.log('Parsed folders:', folders); return NextResponse.json({ isConnected: true, folders }); } catch (error: any) { console.error('Error accessing Nextcloud WebDAV:', error); return NextResponse.json( { error: "Erreur d'accès aux dossiers Nextcloud", details: error?.message || String(error) }, { status: 503 } ); } } catch (error: any) { console.error('Error checking Nextcloud status:', error); return NextResponse.json( { error: 'Failed to check Nextcloud status', details: error?.message || String(error) }, { status: 500 } ); } }