saasitone/middleware/auth.go

61 lines
1.4 KiB
Go
Raw Normal View History

2021-12-12 14:04:11 -08:00
package middleware
import (
"net/http"
"goweb/auth"
"goweb/context"
"goweb/ent"
"goweb/ent/user"
"github.com/labstack/echo/v4"
)
func LoadAuthenticatedUser(orm *ent.Client) echo.MiddlewareFunc {
return func(next echo.HandlerFunc) echo.HandlerFunc {
return func(c echo.Context) error {
2021-12-12 16:02:25 -08:00
if userID, err := auth.GetUserID(c); err == nil {
2021-12-12 14:04:11 -08:00
u, err := orm.User.Query().
Where(user.ID(userID)).
First(c.Request().Context())
2021-12-12 16:02:25 -08:00
switch err.(type) {
case *ent.NotFoundError:
c.Logger().Debug("auth user not found: %d", userID)
case nil:
2021-12-12 14:04:11 -08:00
c.Set(context.AuthenticatedUserKey, u)
c.Logger().Info("auth user loaded in to context: %d", userID)
2021-12-12 16:02:25 -08:00
default:
c.Logger().Errorf("error querying for authenticated user: %v", err)
2021-12-12 14:04:11 -08:00
}
}
return next(c)
}
}
}
func RequireAuthentication() echo.MiddlewareFunc {
return func(next echo.HandlerFunc) echo.HandlerFunc {
return func(c echo.Context) error {
if u := c.Get(context.AuthenticatedUserKey); u == nil {
return echo.NewHTTPError(http.StatusUnauthorized, "Unauthorized")
}
return next(c)
}
}
}
func RequireNoAuthentication() echo.MiddlewareFunc {
return func(next echo.HandlerFunc) echo.HandlerFunc {
return func(c echo.Context) error {
if u := c.Get(context.AuthenticatedUserKey); u != nil {
return echo.NewHTTPError(http.StatusForbidden, "Forbidden")
}
return next(c)
}
}
}