planetwars.dev/planetwars-server/src/routes/users.rs

96 lines
2.4 KiB
Rust
Raw Normal View History

2021-12-29 15:11:27 +00:00
use crate::db::users::{Credentials, User};
use crate::db::{sessions, users};
2021-12-29 15:11:27 +00:00
use crate::DatabaseConnection;
use axum::extract::{FromRequest, RequestParts, TypedHeader};
use axum::headers::authorization::Bearer;
use axum::headers::Authorization;
use axum::http::StatusCode;
use axum::{async_trait, Json};
use serde::{Deserialize, Serialize};
2021-12-29 15:11:27 +00:00
type AuthorizationHeader = TypedHeader<Authorization<Bearer>>;
2021-12-29 15:11:27 +00:00
#[async_trait]
impl<B> FromRequest<B> for User
where
B: Send,
{
type Rejection = (StatusCode, String);
2021-12-29 15:11:27 +00:00
async fn from_request(req: &mut RequestParts<B>) -> Result<Self, Self::Rejection> {
let conn = DatabaseConnection::from_request(req).await?;
2021-12-30 22:40:37 +00:00
2021-12-29 15:11:27 +00:00
let TypedHeader(Authorization(bearer)) = AuthorizationHeader::from_request(req)
.await
.map_err(|_| (StatusCode::UNAUTHORIZED, "".to_string()))?;
2021-12-29 15:11:27 +00:00
let (_session, user) = sessions::find_user_by_session(bearer.token(), &conn)
.map_err(|_| (StatusCode::UNAUTHORIZED, "".to_string()))?;
2021-12-29 15:11:27 +00:00
Ok(user)
}
}
#[derive(Serialize, Deserialize)]
pub struct UserData {
pub user_id: i32,
pub username: String,
}
impl From<User> for UserData {
fn from(user: User) -> Self {
UserData {
2021-12-18 23:16:46 +00:00
user_id: user.id,
username: user.username,
}
}
}
#[derive(Deserialize)]
pub struct RegistrationParams {
pub username: String,
pub password: String,
}
2021-12-29 15:11:27 +00:00
pub async fn register(
conn: DatabaseConnection,
params: Json<RegistrationParams>,
) -> Json<UserData> {
let credentials = Credentials {
username: &params.username,
password: &params.password,
};
let user = users::create_user(&credentials, &conn).unwrap();
Json(user.into())
}
#[derive(Deserialize)]
pub struct LoginParams {
pub username: String,
pub password: String,
}
pub async fn login(
2021-12-29 15:11:27 +00:00
conn: DatabaseConnection,
params: Json<LoginParams>,
2021-12-29 15:11:27 +00:00
) -> Result<String, StatusCode> {
let credentials = Credentials {
username: &params.username,
password: &params.password,
};
// TODO: handle failures
let authenticated = users::authenticate_user(&credentials, &conn);
2021-12-29 15:11:27 +00:00
match authenticated {
None => Err(StatusCode::FORBIDDEN),
Some(user) => {
let session = sessions::create_session(&user, &conn);
Ok(session.token)
}
}
}
pub async fn current_user(user: User) -> Json<UserData> {
Json(user.into())
}