verifyToken.js 855 B

12345678910111213141516171819202122232425262728293031323334
  1. const jwt = require('jsonwebtoken')
  2. const userModel = require('../model/user.model')
  3. const response = require('../utils/responseHandler')
  4. module.exports = (req, res, next) => {
  5. const authHeader = req.headers.authorization
  6. const token =
  7. (req.params.token && req.params.token.split(' ')[1]) ||
  8. (authHeader && authHeader.split(' ')[1])
  9. if (!token)
  10. return response.error(res, {
  11. code: 401,
  12. message: 'Token tidak ada',
  13. })
  14. jwt.verify(token, process.env.SECRET, async (err, data) => {
  15. if (err)
  16. return response.error(res, {
  17. code: 401,
  18. message: 'Unauthorized',
  19. })
  20. try {
  21. const user = await userModel.findById(data._id)
  22. req.user = user
  23. next()
  24. } catch (error) {
  25. return response.error(res, {
  26. code: 401,
  27. message: 'Unauthorized',
  28. })
  29. }
  30. })
  31. }