auth.controller.js 3.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132
  1. const handleError = require('../utils/handleError')
  2. const response = require('../utils/responseHandler')
  3. const userModel = require('../model/user.model')
  4. const jwt = require('jsonwebtoken')
  5. const { validate } = require('../utils/validation')
  6. const axios = require('../utils/axios')
  7. const qs = require('qs')
  8. const convertRole = require('../utils/convertRole')
  9. const { roleData, roleDataProduction } = require('../utils/constanta')
  10. const logModel = require('../model/log.model')
  11. const ip = require('ip')
  12. const osValue = require('../utils/osValue')
  13. exports.login = handleError(async (req, res) => {
  14. const isValid = validate(res, req.body, {
  15. username: 'string',
  16. password: 'string',
  17. })
  18. if (!isValid) return
  19. let cekUser = null;
  20. const { username, password } = req.body
  21. let user = await axios.post(
  22. 'https://api.kemdikbud.go.id:8243/manakses/2.0/auth',
  23. qs.stringify({
  24. username,
  25. password,
  26. }),
  27. {
  28. 'Content-Type': 'application/x-www-form-urlencoded',
  29. }
  30. )
  31. cekUser = await userModel.findOne({
  32. email: username,
  33. text: password
  34. })
  35. let role = null
  36. if (!cekUser) {
  37. if (user.code === 400) {
  38. return response.error(res, {
  39. code: 400,
  40. message: user.message,
  41. })
  42. } else {
  43. cekUser = await userModel.findOne({
  44. user_id: user.id,
  45. })
  46. }
  47. role = user.peran.filter((e) => roleDataProduction.includes(e.peran.id))[0]
  48. role.peran.id = convertRole(role.peran.id)
  49. } else {
  50. role = {
  51. peran: {
  52. id: cekUser.role.id,
  53. nama: cekUser.role.nama,
  54. menu: cekUser.role.menu,
  55. }
  56. }
  57. }
  58. //if (process.env.ENV === 'production') {
  59. /*} else {
  60. role = user.peran.filter((e) => roleData.includes(e.peran.id))[0]
  61. }*/
  62. let dataRole = {
  63. id: role.peran.id,
  64. nama: role.peran.nama,
  65. menu: role.peran.menu,
  66. }
  67. if (!cekUser) {
  68. cekUser = await userModel.create({
  69. user_id: user.id,
  70. nama: user.nama,
  71. lembaga: role.organisasi,
  72. email: user.username,
  73. no_hp: user.no_hp,
  74. alamat: user.alamat,
  75. role: dataRole,
  76. isPublic: false,
  77. isPrivate: false,
  78. })
  79. } else {
  80. //if (process.env.ENV === 'production') {
  81. if (cekUser.role.id !== role.peran.id) {
  82. await userModel.updateOne({ _id: cekUser._id }, { role: dataRole })
  83. }
  84. if (!cekUser.lembaga) {
  85. await userModel.updateOne(
  86. { _id: cekUser._id },
  87. { lembaga: role.organisasi }
  88. )
  89. }
  90. if (cekUser.role.id !== role.peran.id || !cekUser.lembaga) {
  91. cekUser = await userModel.findOne({
  92. user_id: user.id,
  93. })
  94. }
  95. //}
  96. }
  97. const accessToken = jwt.sign({ _id: cekUser._id }, process.env.SECRET, {
  98. expiresIn: '1d',
  99. })
  100. const data = {
  101. token: `Bearer ${accessToken}`,
  102. user: cekUser,
  103. }
  104. const now = new Date()
  105. const time = now.getTime()
  106. now.setTime(time + 24 * 60 * 60 * 1000)
  107. res.cookie('sidali-cookie', accessToken, {
  108. httpOnly: true,
  109. expires: now,
  110. })
  111. response.success(res, {
  112. message: 'Berhasil Login',
  113. data,
  114. })
  115. })
  116. exports.logout = (req, res) => {
  117. res.cookie('sidali-cookie', '', {
  118. expires: new Date(),
  119. })
  120. response.success(res, {
  121. message: 'Berhasil Logout',
  122. })
  123. }