-
Notifications
You must be signed in to change notification settings - Fork 0
/
auth.js
40 lines (37 loc) · 1.16 KB
/
auth.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
const jwtSecret = "my_secret"; //must be the same key used in JWTStrategy
const jwt = require("jsonwebtoken"),
passport = require("passport");
require("./passport");
/**
* Function to generate authentication token with expiration and algorithm settings
* @param {string} user
*/
let generateJWTToken = (user) => {
return jwt.sign(user, jwtSecret, {
subject: user.Username, //jtw encodes username
expiresIn: "7d", //token will expire in 7 days
algorithm: "HS256", //the algorithm used to "sign" or encode the values of the JWT
});
};
/**
* API call to login endpoint, authenticates user after entering login credentials
*/
module.exports = (router) => {
router.post("/login", (req, res) => {
passport.authenticate("local", { session: false }, (error, user) => {
if (error || !user) {
return res.status(400).json({
message: "Something is not right",
user: user,
});
}
req.login(user, { session: false }, (error) => {
if (error) {
res.send(error);
}
let token = generateJWTToken(user.toJSON());
return res.json({ user, token });
});
})(req, res);
});
};