API
Du kan inte välja fler än 25 ämnen Ämnen måste starta med en bokstav eller siffra, kan innehålla bindestreck ('-') och vara max 35 tecken långa.

RegisterController.cs 5.1KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169
  1. using System;
  2. using System.Collections.Generic;
  3. using System.IdentityModel.Tokens.Jwt;
  4. using System.Linq;
  5. using System.Security.Claims;
  6. using System.Text;
  7. using System.Threading.Tasks;
  8. using AutoMapper;
  9. using Microsoft.AspNetCore.Authorization;
  10. using Microsoft.AspNetCore.Mvc;
  11. using Microsoft.Extensions.Options;
  12. using Microsoft.IdentityModel.Tokens;
  13. using UnivateProperties_API.Containers.Users;
  14. using UnivateProperties_API.Helpers;
  15. using UnivateProperties_API.Model.Users;
  16. using UnivateProperties_API.Repository;
  17. using UnivateProperties_API.Repository.Users;
  18. using System.Net.Http;
  19. using System.Net;
  20. using System.Web.Http;
  21. namespace UnivateProperties_API.Controllers.Users
  22. {
  23. [Route("api/[controller]")]
  24. [ApiController]
  25. public class RegisterController : ControllerBase
  26. {
  27. private readonly IRegisterRepository _Repo;
  28. private IMapper _mapper;
  29. private readonly AppSettings _appSettings;
  30. public RegisterController(IRegisterRepository repo, IMapper mapper, IOptions<AppSettings> appSettings)
  31. {
  32. _Repo = repo;
  33. _mapper = mapper;
  34. _appSettings = appSettings.Value;
  35. }
  36. //Works
  37. [AllowAnonymous]
  38. [HttpPost("authenticate")]
  39. public IActionResult Authenticate([FromBody]UserDto userDto)
  40. {
  41. var user = _Repo.Authenticate(userDto.Username, userDto.Password);
  42. if (user == null)
  43. return BadRequest(new { message = "Username or password is incorrect" });
  44. var tokenHandler = new JwtSecurityTokenHandler();
  45. var key = Encoding.ASCII.GetBytes(_appSettings.Secret);
  46. var tokenDescriptor = new SecurityTokenDescriptor
  47. {
  48. Subject = new ClaimsIdentity(new Claim[]
  49. {
  50. new Claim(ClaimTypes.Name, user.Id.ToString()),
  51. new Claim(ClaimTypes.Role, user.Role)
  52. }),
  53. Expires = DateTime.UtcNow.AddMinutes(15),
  54. SigningCredentials = new SigningCredentials(new SymmetricSecurityKey(key), SecurityAlgorithms.HmacSha256Signature)
  55. };
  56. var token = tokenHandler.CreateToken(tokenDescriptor);
  57. var tokenString = tokenHandler.WriteToken(token);
  58. // return basic user info (without password) and token to store client side
  59. return Ok(new
  60. {
  61. user.Id,
  62. user.Username,
  63. Token = tokenString
  64. });
  65. }
  66. //Writes to DB
  67. [AllowAnonymous]
  68. [HttpPost("register")]
  69. public IActionResult Register([FromBody]UserDto individual)
  70. {
  71. _mapper.Map<Individual>(individual);
  72. try
  73. {
  74. _Repo.CreatePerson(individual, PersonType.Individual, true, null);
  75. return Ok();
  76. }
  77. catch (AppException ex)
  78. {
  79. return BadRequest(new { messge = ex.Message });
  80. }
  81. }
  82. //Writes to DB
  83. [AllowAnonymous]
  84. [HttpPost("registeragency")]
  85. public IActionResult RegisterAgency([FromBody]AgencyDto agency)
  86. {
  87. // map dto to entity
  88. _mapper.Map<Agency>(agency);
  89. try
  90. {
  91. // save
  92. _Repo.CreateAgency(agency);
  93. return Ok();
  94. }
  95. catch (AppException ex)
  96. {
  97. // return error message if there was an exception
  98. return BadRequest(new { message = ex.Message });
  99. }
  100. }
  101. //[HttpGet("{id}")]
  102. //public IActionResult GetById(int id)
  103. //{
  104. // var user = _Repo.GetById(id);
  105. // var userDto = _mapper.Map<UserDto>(user);
  106. // if (user == null)
  107. // {
  108. // return NotFound();
  109. // }
  110. // // Only allow SuperAdmins to access other user records
  111. // var currentUserId = int.Parse(User.Identity.Name);
  112. // if (id != currentUserId && !User.IsInRole(Role.SuperAdmin))
  113. // {
  114. // return Forbid();
  115. // }
  116. // return Ok(userDto);
  117. //}
  118. //[HttpGet("{id}")]
  119. //public IActionResult GetByAgencyId(int id)
  120. //{
  121. // var agency = _Repo.GetByAgencyId(id);
  122. // var agencyDto = _mapper.Map<AgencyDto>(agency);
  123. // if (agency == null)
  124. // {
  125. // return NotFound();
  126. // }
  127. // var currentAgencyId = int.Parse(User.Identity.Name);
  128. // if (id != currentAgencyId && !User.IsInRole(Role.Agency))
  129. // {
  130. // return Forbid();
  131. // }
  132. // return Ok(agencyDto);
  133. //}
  134. //[Authorize(Roles = Role.SuperAdmin)]
  135. //[HttpDelete("{id}")]
  136. //public IActionResult Delete(User user)
  137. //{
  138. // _Repo.Delete(user.Id);
  139. // return Ok();
  140. //}
  141. //[Authorize(Roles = Role.SuperAdmin)]
  142. //[HttpDelete("{id}")]
  143. //public IActionResult DeleteAgency(Agency agency)
  144. //{
  145. // _Repo.DeleteAgency(agency.Id);
  146. // return Ok();
  147. //}
  148. }
  149. }