auth.controller.js 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110
  1. const handleError = require('../utils/handleError')
  2. const response = require('../utils/responseHandler')
  3. const userModel = require('../model/user.model')
  4. const jwt = require('jsonwebtoken')
  5. const { validate } = require('../utils/validation')
  6. const axios = require('../utils/axios')
  7. const qs = require('qs')
  8. const convertRole = require('../utils/convertRole')
  9. const { roleData, roleDataProduction } = require('../utils/constanta')
  10. const logModel = require('../model/log.model')
  11. const ip = require('ip')
  12. const osValue = require('../utils/osValue')
  13. exports.login = handleError(async (req, res) => {
  14. const isValid = validate(res, req.body, {
  15. username: 'string',
  16. password: 'string',
  17. })
  18. if (!isValid) return
  19. const { username, password } = req.body
  20. const user = await axios.post(
  21. 'https://api.kemdikbud.go.id:8243/manakses/2.0/auth',
  22. qs.stringify({
  23. username,
  24. password,
  25. }),
  26. {
  27. 'Content-Type': 'application/x-www-form-urlencoded',
  28. }
  29. )
  30. if (user.code === 400) {
  31. return response.error(res, {
  32. code: 400,
  33. message: user.message,
  34. })
  35. }
  36. let cekUser = await userModel.findOne({
  37. user_id: user.id,
  38. })
  39. let role = null
  40. if (process.env.ENV === 'production') {
  41. role = user.peran.filter((e) => roleDataProduction.includes(e.peran.id))[0]
  42. role.peran.id = convertRole(role.peran.id)
  43. } else {
  44. role = user.peran.filter((e) => roleDataProduction.includes(e.peran.id))[0]
  45. }
  46. let dataRole = {
  47. id: role.peran.id,
  48. nama: role.peran.nama,
  49. menu: role.peran.menu,
  50. }
  51. if (!cekUser) {
  52. cekUser = await userModel.create({
  53. user_id: user.id,
  54. nama: user.nama,
  55. lembaga: role.organisasi,
  56. email: user.username,
  57. no_hp: user.no_hp,
  58. alamat: user.alamat,
  59. role: dataRole,
  60. isPublic: false,
  61. isPrivate: false,
  62. })
  63. } else {
  64. if (process.env.ENV === 'production') {
  65. if (cekUser.role.id !== role.peran.id) {
  66. await userModel.updateOne({ _id: cekUser._id }, { role: dataRole })
  67. }
  68. if (!cekUser.lembaga) {
  69. await userModel.updateOne(
  70. { _id: cekUser._id },
  71. { lembaga: role.organisasi }
  72. )
  73. }
  74. if (cekUser.role.id !== role.peran.id || !cekUser.lembaga) {
  75. cekUser = await userModel.findOne({
  76. user_id: user.id,
  77. })
  78. }
  79. }
  80. }
  81. const accessToken = jwt.sign({ _id: cekUser._id }, process.env.SECRET, {
  82. expiresIn: '1d',
  83. })
  84. const data = {
  85. token: `Bearer ${accessToken}`,
  86. user: cekUser,
  87. }
  88. const now = new Date()
  89. const time = now.getTime()
  90. now.setTime(time + 24 * 60 * 60 * 1000)
  91. res.cookie('sidali-cookie', accessToken, { httpOnly: true, expires: now })
  92. response.success(res, {
  93. message: 'Berhasil Login',
  94. data,
  95. })
  96. })
  97. exports.logout = (req, res) => {
  98. res.cookie('sidali-cookie', '', { expires: new Date() })
  99. response.success(res, {
  100. message: 'Berhasil Logout',
  101. })
  102. }