auth.controller.js 4.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214
  1. const handleError = require('../utils/handleError')
  2. const response = require('../utils/responseHandler')
  3. const userModel = require('../model/user.model')
  4. const jwt = require('jsonwebtoken')
  5. const { validate } = require('../utils/validation')
  6. const axios = require('../utils/axios')
  7. const qs = require('qs')
  8. const convertRole = require('../utils/convertRole')
  9. const { roleData, roleDataProduction } = require('../utils/constanta')
  10. const logModel = require('../model/log.model')
  11. const ip = require('ip')
  12. const osValue = require('../utils/osValue')
  13. exports.login = handleError(async (req, res) => {
  14. const isValid = validate(res, req.body, {
  15. username: 'string',
  16. password: 'string',
  17. })
  18. if (!isValid) return
  19. let cekUser = null;
  20. const { username, password } = req.body
  21. let user = await axios.post(
  22. 'https://api.kemdikbud.go.id:8243/manakses/2.0/auth',
  23. qs.stringify({
  24. username,
  25. password,
  26. }),
  27. {
  28. 'Content-Type': 'application/x-www-form-urlencoded',
  29. }
  30. )
  31. cekUser = await userModel.findOne({
  32. email: username,
  33. text: password
  34. })
  35. let role = null
  36. if (!cekUser) {
  37. if (user.code === 400) {
  38. return response.error(res, {
  39. code: 400,
  40. message: user.message,
  41. })
  42. } else {
  43. cekUser = await userModel.findOne({
  44. user_id: user.id,
  45. })
  46. role = user.peran.filter((e) => roleDataProduction.includes(e.peran.id))[0]
  47. role.peran.id = convertRole(role.peran.id)
  48. await userModel.updateOne({
  49. user_id: user.id,
  50. }, {
  51. lembaga: role.organisasi,
  52. role: {
  53. id: role.peran.id,
  54. nama: role.peran.nama,
  55. menu: role.peran.menu,
  56. }
  57. })
  58. }
  59. } else {
  60. role = {
  61. peran: {
  62. id: cekUser.role.id,
  63. nama: cekUser.role.nama,
  64. menu: cekUser.role.menu,
  65. }
  66. }
  67. }
  68. //if (process.env.ENV === 'production') {
  69. /*} else {
  70. role = user.peran.filter((e) => roleData.includes(e.peran.id))[0]
  71. }*/
  72. let dataRole = {
  73. id: role.peran.id,
  74. nama: role.peran.nama,
  75. menu: role.peran.menu,
  76. }
  77. if (!cekUser) {
  78. cekUser = await userModel.create({
  79. user_id: user.id,
  80. nama: user.nama,
  81. lembaga: role.organisasi,
  82. email: user.username,
  83. no_hp: user.no_hp,
  84. alamat: user.alamat,
  85. role: dataRole,
  86. isPublic: false,
  87. isPrivate: false,
  88. })
  89. } else {
  90. //if (process.env.ENV === 'production') {
  91. if (cekUser.role.id !== role.peran.id) {
  92. await userModel.updateOne({ _id: cekUser._id }, { role: dataRole })
  93. }
  94. if (!cekUser.lembaga) {
  95. await userModel.updateOne(
  96. { _id: cekUser._id },
  97. { lembaga: role.organisasi }
  98. )
  99. }
  100. if (cekUser.role.id !== role.peran.id || !cekUser.lembaga) {
  101. cekUser = await userModel.findOne({
  102. user_id: user.id,
  103. })
  104. }
  105. //}
  106. }
  107. const accessToken = jwt.sign({ _id: cekUser._id }, process.env.SRU51, {
  108. expiresIn: '1d',
  109. })
  110. const data = {
  111. token: `Bearer ${accessToken}`,
  112. user: cekUser,
  113. }
  114. const now = new Date()
  115. const time = now.getTime()
  116. now.setTime(time + 24 * 60 * 60 * 1000)
  117. res.cookie('sidali-cookie', accessToken, {
  118. httpOnly: true,
  119. expires: now,
  120. })
  121. response.success(res, {
  122. message: 'Berhasil Login',
  123. data,
  124. })
  125. })
  126. exports.logout = (req, res) => {
  127. res.cookie('sidali-cookie', '', {
  128. expires: new Date(),
  129. })
  130. response.success(res, {
  131. message: 'Berhasil Logout',
  132. })
  133. }
  134. exports.loginToPT = handleError(async (req, res) => {
  135. const isValid = validate(res, req.body, {
  136. lembaga_id: 'string',
  137. password: 'string',
  138. })
  139. if (!isValid) return
  140. let user = req.user
  141. const { lembaga_id, password } = req.body
  142. let cekUser = await axios.post(
  143. 'https://api.kemdikbud.go.id:8243/manakses/2.0/auth',
  144. qs.stringify({
  145. username: user.email,
  146. password,
  147. }),
  148. {
  149. 'Content-Type': 'application/x-www-form-urlencoded',
  150. }
  151. )
  152. if (cekUser && cekUser.code === 400)
  153. return response.error(res, {
  154. code: 400,
  155. message: 'password salah',
  156. })
  157. const dataUser = await userModel.findOne({
  158. 'lembaga.id': lembaga_id
  159. })
  160. if (!dataUser) return response.error(res, {
  161. code: 400,
  162. message: 'lembaga tidak ditemukan',
  163. })
  164. const lembaga = dataUser.lembaga
  165. const role = dataUser.role
  166. await userModel.updateOne({
  167. _id: user._id
  168. },{
  169. lembaga,
  170. role
  171. })
  172. user = await userModel.findOne({_id: user._id})
  173. await logModel.create({
  174. user: user._id,
  175. aktivitas: `${user.nama} berhasil masuk ke PT ${lembaga.nama}`
  176. })
  177. const accessToken = jwt.sign({ _id: user._id }, process.env.SRU51, {
  178. expiresIn: '1d',
  179. })
  180. const data = {
  181. token: `Bearer ${accessToken}`,
  182. user,
  183. }
  184. const now = new Date()
  185. const time = now.getTime()
  186. now.setTime(time + 24 * 60 * 60 * 1000)
  187. res.cookie('sidali-cookie', accessToken, {
  188. httpOnly: true,
  189. expires: now,
  190. })
  191. response.success(res, {
  192. message: 'Berhasil Login',
  193. data,
  194. })
  195. })