prompt-5
This commit is contained in:
62
internal/http/middleware/auth.go
Normal file
62
internal/http/middleware/auth.go
Normal file
@@ -0,0 +1,62 @@
|
||||
package middleware
|
||||
|
||||
import (
|
||||
"errors"
|
||||
|
||||
"trustcontact/internal/models"
|
||||
|
||||
"github.com/gofiber/fiber/v2"
|
||||
"github.com/gofiber/fiber/v2/middleware/session"
|
||||
)
|
||||
|
||||
func RequireAuth() fiber.Handler {
|
||||
return func(c *fiber.Ctx) error {
|
||||
if _, ok := CurrentUserFromContext(c); !ok {
|
||||
return c.Redirect("/login")
|
||||
}
|
||||
return c.Next()
|
||||
}
|
||||
}
|
||||
|
||||
func RequireAdmin() fiber.Handler {
|
||||
return func(c *fiber.Ctx) error {
|
||||
user, ok := CurrentUserFromContext(c)
|
||||
if !ok {
|
||||
return c.Redirect("/login")
|
||||
}
|
||||
if user.Role != models.RoleAdmin {
|
||||
return c.Status(fiber.StatusForbidden).SendString("forbidden")
|
||||
}
|
||||
return c.Next()
|
||||
}
|
||||
}
|
||||
|
||||
func SetSessionUserID(c *fiber.Ctx, userID uint) error {
|
||||
store, ok := c.Locals(contextStoreKey).(*session.Store)
|
||||
if !ok || store == nil {
|
||||
return errors.New("session store not available")
|
||||
}
|
||||
|
||||
sess, err := store.Get(c)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
|
||||
sess.Set(sessionUserIDKey, userID)
|
||||
return sess.Save()
|
||||
}
|
||||
|
||||
func ClearSessionUser(c *fiber.Ctx) error {
|
||||
store, ok := c.Locals(contextStoreKey).(*session.Store)
|
||||
if !ok || store == nil {
|
||||
return errors.New("session store not available")
|
||||
}
|
||||
|
||||
sess, err := store.Get(c)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
|
||||
sess.Delete(sessionUserIDKey)
|
||||
return sess.Save()
|
||||
}
|
||||
132
internal/http/middleware/current_user.go
Normal file
132
internal/http/middleware/current_user.go
Normal file
@@ -0,0 +1,132 @@
|
||||
package middleware
|
||||
|
||||
import (
|
||||
"fmt"
|
||||
"strconv"
|
||||
|
||||
"trustcontact/internal/models"
|
||||
"trustcontact/internal/repo"
|
||||
|
||||
"github.com/gofiber/fiber/v2"
|
||||
"github.com/gofiber/fiber/v2/middleware/session"
|
||||
"gorm.io/gorm"
|
||||
)
|
||||
|
||||
const (
|
||||
sessionUserIDKey = "user_id"
|
||||
contextUserKey = "current_user"
|
||||
contextStoreKey = "session_store"
|
||||
contextTemplateKey = "template_data"
|
||||
)
|
||||
|
||||
func SessionStoreMiddleware(store *session.Store) fiber.Handler {
|
||||
return func(c *fiber.Ctx) error {
|
||||
c.Locals(contextStoreKey, store)
|
||||
return c.Next()
|
||||
}
|
||||
}
|
||||
|
||||
func CurrentUserMiddleware(store *session.Store, database *gorm.DB) fiber.Handler {
|
||||
userRepo := repo.NewUserRepo(database)
|
||||
|
||||
return func(c *fiber.Ctx) error {
|
||||
user, err := CurrentUser(c, store, userRepo)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
|
||||
c.Locals(contextUserKey, user)
|
||||
setTemplateData(c, "CurrentUser", user)
|
||||
return c.Next()
|
||||
}
|
||||
}
|
||||
|
||||
func CurrentUser(c *fiber.Ctx, store *session.Store, userRepo *repo.UserRepo) (*models.User, error) {
|
||||
sess, err := store.Get(c)
|
||||
if err != nil {
|
||||
return nil, fmt.Errorf("get session: %w", err)
|
||||
}
|
||||
|
||||
uidRaw := sess.Get(sessionUserIDKey)
|
||||
uid, ok := normalizeUserID(uidRaw)
|
||||
if !ok || uid == 0 {
|
||||
return nil, nil
|
||||
}
|
||||
|
||||
user, err := userRepo.FindByID(uid)
|
||||
if err != nil {
|
||||
return nil, fmt.Errorf("load current user: %w", err)
|
||||
}
|
||||
|
||||
if user == nil {
|
||||
sess.Delete(sessionUserIDKey)
|
||||
if err := sess.Save(); err != nil {
|
||||
return nil, fmt.Errorf("save session: %w", err)
|
||||
}
|
||||
return nil, nil
|
||||
}
|
||||
|
||||
return user, nil
|
||||
}
|
||||
|
||||
func CurrentUserFromContext(c *fiber.Ctx) (*models.User, bool) {
|
||||
user, ok := c.Locals(contextUserKey).(*models.User)
|
||||
if !ok || user == nil {
|
||||
return nil, false
|
||||
}
|
||||
return user, true
|
||||
}
|
||||
|
||||
func normalizeUserID(v any) (uint, bool) {
|
||||
switch value := v.(type) {
|
||||
case uint:
|
||||
return value, true
|
||||
case uint64:
|
||||
return uint(value), true
|
||||
case uint32:
|
||||
return uint(value), true
|
||||
case int:
|
||||
if value <= 0 {
|
||||
return 0, false
|
||||
}
|
||||
return uint(value), true
|
||||
case int64:
|
||||
if value <= 0 {
|
||||
return 0, false
|
||||
}
|
||||
return uint(value), true
|
||||
case int32:
|
||||
if value <= 0 {
|
||||
return 0, false
|
||||
}
|
||||
return uint(value), true
|
||||
case string:
|
||||
parsed, err := strconv.ParseUint(value, 10, 64)
|
||||
if err != nil || parsed == 0 {
|
||||
return 0, false
|
||||
}
|
||||
return uint(parsed), true
|
||||
default:
|
||||
return 0, false
|
||||
}
|
||||
}
|
||||
|
||||
func setTemplateData(c *fiber.Ctx, key string, value any) {
|
||||
data := templateData(c)
|
||||
data[key] = value
|
||||
c.Locals(contextTemplateKey, data)
|
||||
}
|
||||
|
||||
func SetTemplateData(c *fiber.Ctx, key string, value any) {
|
||||
setTemplateData(c, key, value)
|
||||
}
|
||||
|
||||
func templateData(c *fiber.Ctx) map[string]any {
|
||||
existing, ok := c.Locals(contextTemplateKey).(map[string]any)
|
||||
if ok && existing != nil {
|
||||
return existing
|
||||
}
|
||||
fresh := make(map[string]any)
|
||||
c.Locals(contextTemplateKey, fresh)
|
||||
return fresh
|
||||
}
|
||||
70
internal/http/middleware/flash.go
Normal file
70
internal/http/middleware/flash.go
Normal file
@@ -0,0 +1,70 @@
|
||||
package middleware
|
||||
|
||||
import (
|
||||
"errors"
|
||||
|
||||
"github.com/gofiber/fiber/v2"
|
||||
"github.com/gofiber/fiber/v2/middleware/session"
|
||||
)
|
||||
|
||||
const (
|
||||
flashSuccessKey = "flash_success"
|
||||
flashErrorKey = "flash_error"
|
||||
)
|
||||
|
||||
func SetFlashSuccess(c *fiber.Ctx, message string) error {
|
||||
return setFlash(c, flashSuccessKey, message)
|
||||
}
|
||||
|
||||
func SetFlashError(c *fiber.Ctx, message string) error {
|
||||
return setFlash(c, flashErrorKey, message)
|
||||
}
|
||||
|
||||
func ConsumeFlash() fiber.Handler {
|
||||
return func(c *fiber.Ctx) error {
|
||||
store, ok := c.Locals(contextStoreKey).(*session.Store)
|
||||
if !ok || store == nil {
|
||||
return errors.New("session store not available")
|
||||
}
|
||||
|
||||
sess, err := store.Get(c)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
|
||||
success, _ := sess.Get(flashSuccessKey).(string)
|
||||
errMsg, _ := sess.Get(flashErrorKey).(string)
|
||||
|
||||
sess.Delete(flashSuccessKey)
|
||||
sess.Delete(flashErrorKey)
|
||||
if err := sess.Save(); err != nil {
|
||||
return err
|
||||
}
|
||||
|
||||
if success != "" {
|
||||
setTemplateData(c, "FlashSuccess", success)
|
||||
}
|
||||
if errMsg != "" {
|
||||
setTemplateData(c, "FlashError", errMsg)
|
||||
}
|
||||
|
||||
c.Locals("flash_success", success)
|
||||
c.Locals("flash_error", errMsg)
|
||||
return c.Next()
|
||||
}
|
||||
}
|
||||
|
||||
func setFlash(c *fiber.Ctx, key, message string) error {
|
||||
store, ok := c.Locals(contextStoreKey).(*session.Store)
|
||||
if !ok || store == nil {
|
||||
return errors.New("session store not available")
|
||||
}
|
||||
|
||||
sess, err := store.Get(c)
|
||||
if err != nil {
|
||||
return err
|
||||
}
|
||||
|
||||
sess.Set(key, message)
|
||||
return sess.Save()
|
||||
}
|
||||
@@ -2,14 +2,45 @@ package http
|
||||
|
||||
import (
|
||||
"trustcontact/internal/config"
|
||||
httpmw "trustcontact/internal/http/middleware"
|
||||
|
||||
"github.com/gofiber/fiber/v2"
|
||||
"github.com/gofiber/fiber/v2/middleware/session"
|
||||
"gorm.io/gorm"
|
||||
)
|
||||
|
||||
func RegisterRoutes(app *fiber.App, _ *session.Store, _ *gorm.DB, _ *config.Config) {
|
||||
func RegisterRoutes(app *fiber.App, store *session.Store, database *gorm.DB, _ *config.Config) {
|
||||
app.Use(httpmw.SessionStoreMiddleware(store))
|
||||
app.Use(httpmw.CurrentUserMiddleware(store, database))
|
||||
app.Use(httpmw.ConsumeFlash())
|
||||
|
||||
app.Get("/healthz", func(c *fiber.Ctx) error {
|
||||
return c.SendStatus(fiber.StatusOK)
|
||||
})
|
||||
|
||||
app.Get("/", func(c *fiber.Ctx) error {
|
||||
c.Locals("nav_section", "public")
|
||||
httpmw.SetTemplateData(c, "NavSection", "public")
|
||||
return c.SendString("public area")
|
||||
})
|
||||
|
||||
app.Get("/login", func(c *fiber.Ctx) error {
|
||||
c.Locals("nav_section", "public")
|
||||
httpmw.SetTemplateData(c, "NavSection", "public")
|
||||
return c.SendString("login page")
|
||||
})
|
||||
|
||||
private := app.Group("/private", httpmw.RequireAuth())
|
||||
private.Get("/", func(c *fiber.Ctx) error {
|
||||
c.Locals("nav_section", "private")
|
||||
httpmw.SetTemplateData(c, "NavSection", "private")
|
||||
return c.SendString("private area")
|
||||
})
|
||||
|
||||
admin := app.Group("/admin", httpmw.RequireAuth(), httpmw.RequireAdmin())
|
||||
admin.Get("/", func(c *fiber.Ctx) error {
|
||||
c.Locals("nav_section", "admin")
|
||||
httpmw.SetTemplateData(c, "NavSection", "admin")
|
||||
return c.SendString("admin area")
|
||||
})
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user