Update
This commit is contained in:
parent
4138c22051
commit
e17adfcfa5
11 changed files with 193 additions and 83 deletions
|
|
@ -11,7 +11,7 @@ exports.create = (req, res) => {
|
|||
}
|
||||
};
|
||||
|
||||
// Retrieve all Playlists
|
||||
// Retrieve all Playlists + ads
|
||||
exports.findAll = (req, res) => {
|
||||
const token = checkLogin(req, res);
|
||||
if(token){
|
||||
|
|
|
|||
|
|
@ -1,6 +1,7 @@
|
|||
const db = require("../models/mongodb.model");
|
||||
const {sendError, sendMessage} = require ("../config/response.config");
|
||||
const {checkLogin, setSessionCookie} = require("../config/sessionJWT.config");
|
||||
const {checkLogin, setSessionCookie, getSession, getToken} = require("../config/sessionJWT.config");
|
||||
const ObjectId = require('mongoose').Types.ObjectId;
|
||||
const roles = require("../config/role.config");
|
||||
const User = db.users;
|
||||
|
||||
|
|
@ -8,7 +9,7 @@ const User = db.users;
|
|||
exports.auth = (req, res) => {
|
||||
// Validate request
|
||||
if (!req.body.login || !req.body.hashPass) {
|
||||
sendError(res, 400,-1,"Content can not be empty ! (login and hashPass needed)");
|
||||
sendError(res, 400,-1,"Content can not be empty . (login and hashPass needed)");
|
||||
} else{
|
||||
// Check User in the database
|
||||
User
|
||||
|
|
@ -16,7 +17,7 @@ exports.auth = (req, res) => {
|
|||
.then(data => {
|
||||
if (data !== null){
|
||||
setSessionCookie(req, res, {id: data._id, login: req.body.login, role: data.role});
|
||||
return sendMessage(res, 1, true);
|
||||
return sendMessage(res, 1, {id: data._id, login: req.body.login, role: data.role});
|
||||
} else {
|
||||
setSessionCookie(req, res, {id: -1, login: -1, role: -1 });
|
||||
return sendError(res, 500, -1, "Invalid login or password.");
|
||||
|
|
@ -29,10 +30,9 @@ exports.auth = (req, res) => {
|
|||
};
|
||||
|
||||
// Logout a User
|
||||
exports.disconnect = (req, res) => {
|
||||
exports.logout = (req, res) => {
|
||||
const token = checkLogin(req, res);
|
||||
if(token){
|
||||
console.log(token);
|
||||
setSessionCookie(req, res, {id: -1, login: -1, role: -1});
|
||||
return sendMessage(res, 1, {message: "User disconnected"}, token);
|
||||
}
|
||||
|
|
@ -42,7 +42,7 @@ exports.disconnect = (req, res) => {
|
|||
exports.create = (req, res) => {
|
||||
// Validate request
|
||||
if (!req.body.login || !req.body.hashPass || !req.body.mail) {
|
||||
sendError(res, 400,-1,"Content can not be empty ! (login, hashPass and mail needed");
|
||||
sendError(res, 400,-1,"Content can not be empty . (login, hashPass and mail needed");
|
||||
}
|
||||
else{
|
||||
User.exists({login: req.body.login}, function (err, docs){
|
||||
|
|
@ -50,13 +50,38 @@ exports.create = (req, res) => {
|
|||
sendError(res, 500,-1,err.message || "Some error occurred while checking if the User already exists.");
|
||||
} else{
|
||||
if(docs === null) {
|
||||
const user = new User({
|
||||
login: req.body.login,
|
||||
hashPass: req.body.hashPass,
|
||||
mail: req.body.mail,
|
||||
role: req.body.role
|
||||
});
|
||||
|
||||
let user;
|
||||
const session = getSession(req.cookies.SESSIONID);
|
||||
const token = getToken(session);
|
||||
if(token.login === 'undefined' || token.login === -1){
|
||||
if(req.body.role === 'undefined'){
|
||||
sendError(res, 500, -1, "Must be connected to set role of a User.");
|
||||
} else{
|
||||
user = new User({
|
||||
login: req.body.login,
|
||||
hashPass: req.body.hashPass,
|
||||
mail: req.body.mail
|
||||
});
|
||||
}
|
||||
} else {
|
||||
if(token.role !== 'undefined' &&
|
||||
req.body.role !== 'undefined' &&
|
||||
req.body.role.permission !== 'undefined' &&
|
||||
token.role.permission >= req.body.role.permission){
|
||||
user = new User({
|
||||
login: req.body.login,
|
||||
hashPass: req.body.hashPass,
|
||||
mail: req.body.mail,
|
||||
role: req.body.role
|
||||
});
|
||||
} else {
|
||||
user = new User({
|
||||
login: req.body.login,
|
||||
hashPass: req.body.hashPass,
|
||||
mail: req.body.mail
|
||||
});
|
||||
}
|
||||
}
|
||||
// Save User in the database
|
||||
user
|
||||
.save(user)
|
||||
|
|
@ -68,7 +93,7 @@ exports.create = (req, res) => {
|
|||
sendError(res, 500,-1,err.message || "Some error occurred while creating the User.");
|
||||
});
|
||||
} else{
|
||||
sendError(res, 500, -1, err || "User already exists.");
|
||||
sendError(res, 500, -1, err || `User ${req.body.login} already exists.`);
|
||||
}
|
||||
}
|
||||
});
|
||||
|
|
@ -77,12 +102,10 @@ exports.create = (req, res) => {
|
|||
|
||||
// Retrieve all Users from the database if admin.
|
||||
exports.findAll = (req, res) => {
|
||||
const token = checkLogin(req, res, [roles.Admin]);
|
||||
const token = checkLogin(req, res, roles.Admin);
|
||||
if(token){
|
||||
console.log(token);
|
||||
const login = req.query.login;
|
||||
let condition = login ? { login: { $regex: new RegExp(login), $options: "i" } } : {};
|
||||
|
||||
User.find(condition, {hashPass: false})
|
||||
.then(data => {
|
||||
sendMessage(res, 1, data, token)
|
||||
|
|
@ -93,63 +116,69 @@ exports.findAll = (req, res) => {
|
|||
}
|
||||
};
|
||||
|
||||
// Find a single User with login if admin or login from cookie session
|
||||
// Find a single User by session id or by id if admin
|
||||
exports.findOne = (req, res) => {
|
||||
const token = checkLogin(req, res);
|
||||
if(token){
|
||||
let login;
|
||||
if(token.role === [roles.Admin]){
|
||||
login = req.params.login;
|
||||
|
||||
let id;
|
||||
if([roles.Admin, roles.SuperAdmin].includes(token.role)){
|
||||
if(typeof req.params.id === 'undefined'){
|
||||
id = token.id;
|
||||
} else{
|
||||
id = req.params.id;
|
||||
}
|
||||
} else{
|
||||
login = token.login;
|
||||
id = token.id;
|
||||
}
|
||||
console.log(token.role, login);
|
||||
User.find({login: login}, {hashPass: false})
|
||||
User.findById(new ObjectId(id), {hashPass: false})
|
||||
.then(data => {
|
||||
if (data){
|
||||
sendMessage(res, 1, data);
|
||||
if(data){
|
||||
sendMessage(res, 1, data, token);
|
||||
} else {
|
||||
sendError(res,404,-1,"Not found User with login " + login );
|
||||
sendError(res,404,-1,"User not found with id " + id, token);
|
||||
}
|
||||
})
|
||||
.catch(err => {
|
||||
sendError(res,500,-1,err.message || "Error retrieving User with login=" + login );
|
||||
sendError(res,500,-1,err.message || "Error retrieving User with id=" + id, token);
|
||||
});
|
||||
}
|
||||
};
|
||||
|
||||
// Update a User by the id in the request
|
||||
exports.update = (req, res) => {
|
||||
if (!req.body) {
|
||||
sendError(res,400,-1,"Data to update can not be empty!");
|
||||
} else{
|
||||
const id = req.params.id;
|
||||
|
||||
User.findByIdAndUpdate(id, req.body, { useFindAndModify: false })
|
||||
const token = checkLogin(req, res);
|
||||
if(req.body && token) {
|
||||
let id;
|
||||
if ([roles.Admin, roles.SuperAdmin].includes(token.role)) {
|
||||
id = req.params.id;
|
||||
} else {
|
||||
id = token.id;
|
||||
}
|
||||
User.findByIdAndUpdate(id, req.body, {useFindAndModify: false})
|
||||
.then(data => {
|
||||
if (data) {
|
||||
sendMessage(res, 1, { message: "User was updated successfully." });
|
||||
sendMessage(res, 1, {message: "User was updated successfully."});
|
||||
} else {
|
||||
sendError(res,404,-1,`Cannot update User with id=${id}. Maybe User was not found!`);
|
||||
sendError(res, 404, -1, `Cannot update User with id=${id}. Maybe User was not found.`);
|
||||
}
|
||||
})
|
||||
.catch(err => {
|
||||
sendError(res,500,-1,err.message || "Error updating User with id=" + id);
|
||||
sendError(res, 500, -1, err.message || "Error updating User with id=" + id);
|
||||
});
|
||||
} else {
|
||||
sendError(res, 400, -1, "Data to update can not be empty.");
|
||||
}
|
||||
};
|
||||
|
||||
// Delete a User with the specified id in the request
|
||||
exports.delete = (req, res) => {
|
||||
const id = req.params.id;
|
||||
|
||||
User.findByIdAndRemove(id)
|
||||
.then(data => {
|
||||
if (data) {
|
||||
sendMessage(res, 1, { message: "User was deleted successfully!" });
|
||||
sendMessage(res, 1, { message: "User was deleted successfully." });
|
||||
} else {
|
||||
sendError(res,404,-1,`Cannot delete User with id=${id}. Maybe User was not found!`);
|
||||
sendError(res,404,-1,`Cannot delete User with id=${id}. Maybe User was not found.`);
|
||||
}
|
||||
})
|
||||
.catch(err => {
|
||||
|
|
@ -159,13 +188,12 @@ exports.delete = (req, res) => {
|
|||
|
||||
// Delete all Users from the database.
|
||||
exports.deleteAll = (req, res) => {
|
||||
const token = checkLogin(req, res, [roles.Admin]);
|
||||
const token = checkLogin(req, res, roles.SuperAdmin);
|
||||
if(token) {
|
||||
console.log(token);
|
||||
User.deleteMany({})
|
||||
.then(data => {
|
||||
sendMessage(res, 1, {
|
||||
message: `${data.deletedCount} Users were deleted successfully!`
|
||||
message: `${data.deletedCount} Users were deleted successfully.`
|
||||
});
|
||||
})
|
||||
.catch(err => {
|
||||
|
|
@ -173,3 +201,21 @@ exports.deleteAll = (req, res) => {
|
|||
});
|
||||
}
|
||||
};
|
||||
|
||||
// Get all Roles depending on the role of the User
|
||||
exports.roles = (req, res) => {
|
||||
const token = checkLogin(req, res);
|
||||
if(token){
|
||||
let rolesP = [];
|
||||
for(const [roleName, role] of Object.entries(roles)){
|
||||
if(role.permission < token.role.permission){
|
||||
rolesP.push(role);
|
||||
}
|
||||
}
|
||||
if(Object.entries(rolesP).length === 0){
|
||||
sendError(res, 500, -1, "User do not have permission to see & create user with roles.", token);
|
||||
} else{
|
||||
sendMessage(res, 1, rolesP);
|
||||
}
|
||||
}
|
||||
};
|
||||
|
|
|
|||
|
|
@ -3,7 +3,15 @@ const {sendError, sendMessage} = require ("../config/response.config");
|
|||
const {checkLogin} = require("../config/sessionJWT.config");
|
||||
const Video = db.video;
|
||||
|
||||
// Search Video
|
||||
// Search Video + ads
|
||||
exports.search = (req, res) => {
|
||||
const token = checkLogin(req, res);
|
||||
if(token){
|
||||
return sendError(res, 501, -1, "Video.search not Implemented", token);
|
||||
}
|
||||
};
|
||||
|
||||
// History
|
||||
exports.search = (req, res) => {
|
||||
const token = checkLogin(req, res);
|
||||
if(token){
|
||||
|
|
@ -19,7 +27,7 @@ exports.create = (req, res) => {
|
|||
}
|
||||
};
|
||||
|
||||
// Retrieve all Videos
|
||||
// Retrieve all Videos + ads
|
||||
exports.findAll = (req, res) => {
|
||||
const token = checkLogin(req, res);
|
||||
if(token){
|
||||
|
|
|
|||
Reference in a new issue