|
10 | 10 |
|
11 | 11 |
|
12 | 12 | def get_tld(validation_domain): |
13 | | - tld_pattern = r'\.([^.]+\.[^.]+)$' |
| 13 | + parts = validation_domain.split(".") |
| 14 | + if len(parts) <= 2: |
| 15 | + return validation_domain |
| 16 | + tld_pattern = r"\.([^.]+\.[^.]+)$" |
14 | 17 | match = re.search(tld_pattern, validation_domain) |
15 | 18 | if match: |
16 | | - tld = match.group(1) |
17 | | - return tld |
18 | | - else: |
19 | | - return None |
| 19 | + return match.group(1) |
| 20 | + return None |
20 | 21 |
|
21 | 22 |
|
22 | 23 | def get_validation_subdomain(validation_domain, domain): |
23 | | - return validation_domain.replace('.' + domain, '') |
| 24 | + return validation_domain.replace("." + domain, "") |
24 | 25 |
|
25 | 26 |
|
26 | 27 | def authorize(): |
27 | 28 | payload = { |
28 | | - 'login': os.environ.get('BW_USER_LOGIN'), |
29 | | - 'secret': os.environ.get('BW_USER_SECRET') |
| 29 | + "login": os.environ.get("BW_USER_LOGIN"), |
| 30 | + "secret": os.environ.get("BW_USER_SECRET"), |
30 | 31 | } |
31 | 32 |
|
32 | | - response = requests.post(os.environ.get( |
33 | | - 'BW_BASE_URL') + '/api/auth/token', json=payload) |
| 33 | + response = requests.post( |
| 34 | + os.environ.get("BW_BASE_URL") + "/api/auth/token", json=payload |
| 35 | + ) |
34 | 36 |
|
35 | 37 | if response.status_code == 200: |
36 | | - return response.json()['token'] |
| 38 | + return response.json()["token"] |
37 | 39 |
|
38 | | - print('Error authorizing. Response code: ' + str(response.status_code)) |
39 | | - raise Exception('Authorization error') |
| 40 | + print("Error authorizing. Response code: " + str(response.status_code)) |
| 41 | + raise Exception("Authorization error") |
40 | 42 |
|
41 | 43 |
|
42 | 44 | def perform_dns_challenge(validation_domain, validation_token): |
43 | 45 | domain = get_tld(validation_domain) |
44 | 46 |
|
45 | 47 | headers = { |
46 | | - 'Authorization': 'Bearer ' + authorize(), |
47 | | - 'Content-Type': 'application/json' |
| 48 | + "Authorization": "Bearer " + authorize(), |
| 49 | + "Content-Type": "application/json", |
48 | 50 | } |
49 | 51 |
|
50 | | - payload = json.dumps({ |
51 | | - 'autocommit': True, |
52 | | - 'data': validation_token, |
53 | | - 'subdomain': '_acme-challenge.' + get_validation_subdomain(validation_domain, domain), |
54 | | - 'ttl': 300, |
55 | | - 'type': 'TXT' |
56 | | - }) |
57 | | - |
58 | | - response = requests.post(os.environ.get( |
59 | | - 'BW_BASE_URL') + '/api/v1/domain/' + domain + '/record', data=payload, headers=headers) |
| 52 | + payload = json.dumps( |
| 53 | + { |
| 54 | + "autocommit": True, |
| 55 | + "data": validation_token, |
| 56 | + "subdomain": "_acme-challenge." |
| 57 | + + get_validation_subdomain(validation_domain, domain), |
| 58 | + "ttl": 300, |
| 59 | + "type": "TXT", |
| 60 | + } |
| 61 | + ) |
| 62 | + |
| 63 | + response = requests.post( |
| 64 | + os.environ.get("BW_BASE_URL") + "/api/v1/domain/" + domain + "/record", |
| 65 | + data=payload, |
| 66 | + headers=headers, |
| 67 | + ) |
60 | 68 |
|
61 | 69 | if response.status_code == 201: |
62 | 70 | sleep(600) |
63 | | - print('DNS challenge completed successfully.') |
| 71 | + print("DNS challenge completed successfully.") |
64 | 72 | else: |
65 | | - print('Error performing DNS challenge.') |
66 | | - raise Exception('DNS challenge failed.') |
| 73 | + print("Error performing DNS challenge.") |
| 74 | + raise Exception("DNS challenge failed.") |
67 | 75 |
|
68 | 76 |
|
69 | 77 | def cleanup_dns_challenge(validation_domain, validation_token): |
70 | 78 | domain = get_tld(validation_domain) |
71 | 79 |
|
72 | 80 | headers = { |
73 | | - 'Authorization': 'Bearer ' + authorize(), |
74 | | - 'Content-Type': 'application/json' |
| 81 | + "Authorization": "Bearer " + authorize(), |
| 82 | + "Content-Type": "application/json", |
75 | 83 | } |
76 | 84 |
|
77 | | - payload = json.dumps({ |
78 | | - 'autocommit': True, |
79 | | - 'data': validation_token, |
80 | | - 'subdomain': '_acme-challenge.' + get_validation_subdomain(validation_domain, domain), |
81 | | - 'ttl': 300, |
82 | | - 'type': 'TXT' |
83 | | - }) |
84 | | - |
85 | | - response = requests.delete(os.environ.get('BW_BASE_URL') + '/api/v1/domain/' + domain |
86 | | - + '/record/', data=payload, headers=headers) |
| 85 | + payload = json.dumps( |
| 86 | + { |
| 87 | + "autocommit": True, |
| 88 | + "data": validation_token, |
| 89 | + "subdomain": "_acme-challenge." |
| 90 | + + get_validation_subdomain(validation_domain, domain), |
| 91 | + "ttl": 300, |
| 92 | + "type": "TXT", |
| 93 | + } |
| 94 | + ) |
| 95 | + |
| 96 | + response = requests.delete( |
| 97 | + os.environ.get("BW_BASE_URL") + "/api/v1/domain/" + domain + "/record/", |
| 98 | + data=payload, |
| 99 | + headers=headers, |
| 100 | + ) |
87 | 101 |
|
88 | 102 | if response.status_code == 200: |
89 | | - print('DNS challenge cleanup completed successfully.') |
| 103 | + print("DNS challenge cleanup completed successfully.") |
90 | 104 | else: |
91 | | - print('Error performing DNS challenge cleanup.') |
92 | | - print('Response: ' + response.text) |
93 | | - raise Exception('DNS challenge cleanup failed.') |
| 105 | + print("Error performing DNS challenge cleanup.") |
| 106 | + print("Response: " + response.text) |
| 107 | + raise Exception("DNS challenge cleanup failed.") |
94 | 108 |
|
95 | 109 |
|
96 | | -if __name__ == '__main__': |
| 110 | +if __name__ == "__main__": |
97 | 111 | load_dotenv() |
98 | 112 |
|
99 | 113 | hook_action = sys.argv[1] |
100 | | - domain = os.environ.get('CERTBOT_DOMAIN') |
101 | | - token = os.environ.get('CERTBOT_VALIDATION') |
| 114 | + domain = os.environ.get("CERTBOT_DOMAIN") |
| 115 | + token = os.environ.get("CERTBOT_VALIDATION") |
102 | 116 |
|
103 | | - if hook_action == 'deploy_challenge': |
| 117 | + if hook_action == "deploy_challenge": |
104 | 118 | perform_dns_challenge(domain, token) |
105 | | - elif hook_action == 'clean_challenge': |
| 119 | + elif hook_action == "clean_challenge": |
106 | 120 | cleanup_dns_challenge(domain, token) |
0 commit comments