API
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

RegisterController.cs 5.1KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168
  1. using System;
  2. using System.Collections.Generic;
  3. using System.IdentityModel.Tokens.Jwt;
  4. using System.Linq;
  5. using System.Security.Claims;
  6. using System.Text;
  7. using System.Threading.Tasks;
  8. using AutoMapper;
  9. using Microsoft.AspNetCore.Authorization;
  10. using Microsoft.AspNetCore.Mvc;
  11. using Microsoft.Extensions.Options;
  12. using Microsoft.IdentityModel.Tokens;
  13. using UnivateProperties_API.Containers.Users;
  14. using UnivateProperties_API.Helpers;
  15. using UnivateProperties_API.Model.Users;
  16. using UnivateProperties_API.Repository;
  17. using UnivateProperties_API.Repository.Users;
  18. namespace UnivateProperties_API.Controllers.Users
  19. {
  20. [Route("api/[controller]")]
  21. [ApiController]
  22. public class RegisterController : ControllerBase
  23. {
  24. private readonly IRegisterRepository _Repo;
  25. private IMapper _mapper;
  26. private readonly AppSettings _appSettings;
  27. public RegisterController(IRegisterRepository repo, IMapper mapper, IOptions<AppSettings> appSettings)
  28. {
  29. _Repo = repo;
  30. _mapper = mapper;
  31. _appSettings = appSettings.Value;
  32. }
  33. //Works
  34. [AllowAnonymous]
  35. [HttpPost("authenticate")]
  36. public IActionResult Authenticate([FromBody]UserDto userDto)
  37. {
  38. var user = _Repo.Authenticate(userDto.Username, userDto.Password);
  39. if (user == null)
  40. return BadRequest(new { message = "Username or password is incorrect" });
  41. var tokenHandler = new JwtSecurityTokenHandler();
  42. var key = Encoding.ASCII.GetBytes(_appSettings.Secret);
  43. var tokenDescriptor = new SecurityTokenDescriptor
  44. {
  45. Subject = new ClaimsIdentity(new Claim[]
  46. {
  47. new Claim(ClaimTypes.Name, user.Id.ToString()),
  48. new Claim(ClaimTypes.Role, user.Role)
  49. }),
  50. Expires = DateTime.UtcNow.AddMinutes(15),
  51. SigningCredentials = new SigningCredentials(new SymmetricSecurityKey(key), SecurityAlgorithms.HmacSha256Signature)
  52. };
  53. var token = tokenHandler.CreateToken(tokenDescriptor);
  54. var tokenString = tokenHandler.WriteToken(token);
  55. // return basic user info (without password) and token to store client side
  56. return Ok(new
  57. {
  58. user.Id,
  59. user.Username,
  60. user.Name,
  61. user.Surname,
  62. Token = tokenString
  63. });
  64. }
  65. //Writes to DB
  66. [AllowAnonymous]
  67. [HttpPost("register")]
  68. public IActionResult Register([FromBody]UserDto individual)
  69. {
  70. _mapper.Map<Individual>(individual);
  71. try
  72. {
  73. _Repo.CreatePerson(individual, PersonType.Individual, true, null);
  74. return Ok();
  75. }
  76. catch (AppException ex)
  77. {
  78. return BadRequest(new { messge = ex.Message });
  79. }
  80. }
  81. //Writes to DB
  82. [AllowAnonymous]
  83. [HttpPost("registeragency")]
  84. public IActionResult RegisterAgency([FromBody]AgencyDto agency)
  85. {
  86. // map dto to entity
  87. _mapper.Map<Agency>(agency);
  88. try
  89. {
  90. // save
  91. _Repo.CreateAgency(agency);
  92. return Ok();
  93. }
  94. catch (AppException ex)
  95. {
  96. // return error message if there was an exception
  97. return BadRequest(new { message = ex.Message });
  98. }
  99. }
  100. //[HttpGet("{id}")]
  101. //public IActionResult GetById(int id)
  102. //{
  103. // var user = _Repo.GetById(id);
  104. // var userDto = _mapper.Map<UserDto>(user);
  105. // if (user == null)
  106. // {
  107. // return NotFound();
  108. // }
  109. // // Only allow SuperAdmins to access other user records
  110. // var currentUserId = int.Parse(User.Identity.Name);
  111. // if (id != currentUserId && !User.IsInRole(Role.SuperAdmin))
  112. // {
  113. // return Forbid();
  114. // }
  115. // return Ok(userDto);
  116. //}
  117. //[HttpGet("{id}")]
  118. //public IActionResult GetByAgencyId(int id)
  119. //{
  120. // var agency = _Repo.GetByAgencyId(id);
  121. // var agencyDto = _mapper.Map<AgencyDto>(agency);
  122. // if (agency == null)
  123. // {
  124. // return NotFound();
  125. // }
  126. // var currentAgencyId = int.Parse(User.Identity.Name);
  127. // if (id != currentAgencyId && !User.IsInRole(Role.Agency))
  128. // {
  129. // return Forbid();
  130. // }
  131. // return Ok(agencyDto);
  132. //}
  133. //[Authorize(Roles = Role.SuperAdmin)]
  134. //[HttpDelete("{id}")]
  135. //public IActionResult Delete(User user)
  136. //{
  137. // _Repo.Delete(user.Id);
  138. // return Ok();
  139. //}
  140. //[Authorize(Roles = Role.SuperAdmin)]
  141. //[HttpDelete("{id}")]
  142. //public IActionResult DeleteAgency(Agency agency)
  143. //{
  144. // _Repo.DeleteAgency(agency.Id);
  145. // return Ok();
  146. //}
  147. }
  148. }