auth.go 1.2 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364
  1. package user
  2. import (
  3. "github.com/0xJacky/Nginx-UI/api"
  4. "github.com/0xJacky/Nginx-UI/model"
  5. "net/http"
  6. "github.com/gin-gonic/gin"
  7. "golang.org/x/crypto/bcrypt"
  8. )
  9. type LoginUser struct {
  10. Name string `json:"name" binding:"required,max=255"`
  11. Password string `json:"password" binding:"required,max=255"`
  12. }
  13. type LoginResponse struct {
  14. Message string `json:"message"`
  15. Token string `json:"token"`
  16. }
  17. func Login(c *gin.Context) {
  18. var user LoginUser
  19. ok := api.BindAndValid(c, &user)
  20. if !ok {
  21. return
  22. }
  23. u, _ := model.GetUser(user.Name)
  24. if err := bcrypt.CompareHashAndPassword([]byte(u.Password), []byte(user.Password)); err != nil {
  25. c.JSON(http.StatusForbidden, gin.H{
  26. "message": "The username or password is incorrect",
  27. })
  28. return
  29. }
  30. token, err := model.GenerateJWT(u.Name)
  31. if err != nil {
  32. c.JSON(http.StatusInternalServerError, gin.H{
  33. "message": err.Error(),
  34. })
  35. return
  36. }
  37. c.JSON(http.StatusOK, LoginResponse{
  38. Message: "ok",
  39. Token: token,
  40. })
  41. }
  42. func Logout(c *gin.Context) {
  43. token := c.GetHeader("Authorization")
  44. if token != "" {
  45. err := model.DeleteToken(token)
  46. if err != nil {
  47. c.JSON(http.StatusInternalServerError, gin.H{
  48. "message": err.Error(),
  49. })
  50. return
  51. }
  52. }
  53. c.JSON(http.StatusNoContent, nil)
  54. }