-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Showing
23 changed files
with
4,369 additions
and
140 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,105 +1,5 @@ | ||
# Logs | ||
logs | ||
*.log | ||
npm-debug.log* | ||
yarn-debug.log* | ||
yarn-error.log* | ||
lerna-debug.log* | ||
|
||
# Diagnostic reports (https://nodejs.org/api/report.html) | ||
report.[0-9]*.[0-9]*.[0-9]*.[0-9]*.json | ||
|
||
# Runtime data | ||
pids | ||
*.pid | ||
*.seed | ||
*.pid.lock | ||
|
||
# Directory for instrumented libs generated by jscoverage/JSCover | ||
lib-cov | ||
|
||
# Coverage directory used by tools like istanbul | ||
coverage | ||
*.lcov | ||
|
||
# nyc test coverage | ||
.nyc_output | ||
|
||
# Grunt intermediate storage (https://gruntjs.com/creating-plugins#storing-task-files) | ||
.grunt | ||
|
||
# Bower dependency directory (https://bower.io/) | ||
bower_components | ||
|
||
# node-waf configuration | ||
.lock-wscript | ||
|
||
# Compiled binary addons (https://nodejs.org/api/addons.html) | ||
build/Release | ||
|
||
# Dependency directories | ||
node_modules/ | ||
jspm_packages/ | ||
|
||
# TypeScript v1 declaration files | ||
typings/ | ||
|
||
# TypeScript cache | ||
*.tsbuildinfo | ||
|
||
# Optional npm cache directory | ||
.npm | ||
|
||
# Optional eslint cache | ||
.eslintcache | ||
|
||
# Microbundle cache | ||
.rpt2_cache/ | ||
.rts2_cache_cjs/ | ||
.rts2_cache_es/ | ||
.rts2_cache_umd/ | ||
|
||
# Optional REPL history | ||
.node_repl_history | ||
|
||
# Output of 'npm pack' | ||
*.tgz | ||
|
||
# Yarn Integrity file | ||
.yarn-integrity | ||
|
||
# dotenv environment variables file | ||
# .env | ||
# .env.test | ||
|
||
# parcel-bundler cache (https://parceljs.org/) | ||
.cache | ||
|
||
# Next.js build output | ||
.next | ||
|
||
# Nuxt.js build / generate output | ||
.nuxt | ||
dist | ||
|
||
# Gatsby files | ||
.cache/ | ||
# Comment in the public line in if your project uses Gatsby and *not* Next.js | ||
# https://nextjs.org/blog/next-9-1#public-directory-support | ||
# public | ||
|
||
# vuepress build output | ||
.vuepress/dist | ||
|
||
# Serverless directories | ||
.serverless/ | ||
|
||
# FuseBox cache | ||
.fusebox/ | ||
|
||
# DynamoDB Local files | ||
.dynamodb/ | ||
|
||
# TernJS port file | ||
.tern-port | ||
log/* | ||
db/* | ||
modules/userManagement/src/prisma/client | ||
.DS_Store | ||
node_modules |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,91 @@ | ||
const jwt = require('jsonwebtoken'); | ||
|
||
// Middleware para verificar el token JWT | ||
exports.authenticateSession = async (req, res, next) => { | ||
const { id, ip, uri, method } = trx(req); | ||
|
||
try { | ||
// Obtener el token Bearer del encabezado de autorización | ||
const authHeader = req.header('Authorization'); | ||
|
||
if (!authHeader) { | ||
return res.status(401).json({ mensaje: 'Acceso no autorizado. El token no se proporcionó.' }); | ||
} | ||
|
||
// Verificar si el encabezado de autorización comienza con "Bearer " | ||
const token = authHeader.split(' ')[1]; | ||
|
||
if (!token) { | ||
return res.status(401).json({ mensaje: 'Acceso no autorizado. El token Bearer no se proporcionó.' }); | ||
} | ||
|
||
// Verificar el token JWT | ||
const user = await new Promise((resolve, reject) => { | ||
jwt.verify(token, process.env.SYSTEMUSER_SESSIONKEY, async (err, user) => { | ||
if (err) { | ||
reject(err); | ||
} else { | ||
const client = modules['userManagement'].Client(); | ||
const usuario = await client.usuario.findUnique({ | ||
where: { | ||
token: user.token, | ||
}, | ||
}); | ||
resolve({ user: user, usuario: usuario }); | ||
} | ||
}); | ||
}); | ||
|
||
if (!user.usuario) { | ||
res.status(401).json({ msg: "Existe alguin inconveniente con su session" }); | ||
} | ||
|
||
req.user = user.user; // Almacenar la información del usuario en la solicitud (opcional) | ||
|
||
next(); // Continuar con la siguiente función de middleware | ||
} catch (error) { | ||
log("error", `Existe un inconveniente - ${id} :: ${ip} :: ${uri} :: ${method} :: ${error}`, "userManagement"); | ||
res.status(500).json({ msg: "Existe un inconveniente en la solicitud", id }); | ||
} | ||
} | ||
|
||
// Middleware para verificar el token JWT | ||
exports.authenticateToken = async (req, res, next) => { | ||
const { id, ip, uri, method } = trx(req); | ||
|
||
try { | ||
// Obtener el token Bearer del encabezado de autorización | ||
const authHeader = req.header('Authorization'); | ||
|
||
if (!authHeader) { | ||
return res.status(401).json({ mensaje: 'Acceso no autorizado. El token no se proporcionó.' }); | ||
} | ||
|
||
// Verificar si el encabezado de autorización comienza con "Bearer " | ||
const token = authHeader.split(' ')[1]; | ||
|
||
if (!token) { | ||
return res.status(401).json({ mensaje: 'Acceso no autorizado. El token Bearer no se proporcionó.' }); | ||
} | ||
|
||
const client = modules['userManagement'].Client(); | ||
const bearer = await client.token.findUnique({ | ||
where: { | ||
bearer: token, | ||
}, | ||
}); | ||
|
||
|
||
if (!bearer) { | ||
res.status(401).json({ msg: "Existe alguin inconveniente con su session" }); | ||
} | ||
|
||
req.bearer = {userid:bearer.userid, tokenid: bearer.tokenid, token: bearer.bearer, permissions: JSON.parse(bearer.permissions)}; // Almacenar la información del usuario en la solicitud (opcional) | ||
|
||
|
||
next(); // Continuar con la siguiente función de middleware | ||
} catch (error) { | ||
log("error", `Existe un inconveniente - ${id} :: ${ip} :: ${uri} :: ${method} :: ${error}`, "userManagement"); | ||
res.status(500).json({ msg: "Existe un inconveniente en la solicitud", id }); | ||
} | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.