API
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

RegisterController.cs 5.2KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172
  1. using System;
  2. using System.Collections.Generic;
  3. using System.IdentityModel.Tokens.Jwt;
  4. using System.Linq;
  5. using System.Security.Claims;
  6. using System.Text;
  7. using System.Threading.Tasks;
  8. using AutoMapper;
  9. using Microsoft.AspNetCore.Authorization;
  10. using Microsoft.AspNetCore.Mvc;
  11. using Microsoft.Extensions.Options;
  12. using Microsoft.IdentityModel.Tokens;
  13. using UnivateProperties_API.Containers.Users;
  14. using UnivateProperties_API.Helpers;
  15. using UnivateProperties_API.Model.Users;
  16. using UnivateProperties_API.Repository;
  17. using UnivateProperties_API.Repository.Users;
  18. using System.Net.Http;
  19. using System.Net;
  20. using System.Web.Http;
  21. namespace UnivateProperties_API.Controllers.Users
  22. {
  23. [Route("api/[controller]")]
  24. [ApiController]
  25. public class RegisterController : ControllerBase
  26. {
  27. private readonly IRegisterRepository _Repo;
  28. private IMapper _mapper;
  29. private readonly AppSettings _appSettings;
  30. public RegisterController(IRegisterRepository repo, IMapper mapper, IOptions<AppSettings> appSettings)
  31. {
  32. _Repo = repo;
  33. _mapper = mapper;
  34. _appSettings = appSettings.Value;
  35. }
  36. //Works
  37. [AllowAnonymous]
  38. [HttpPost("authenticate")]
  39. public IActionResult Authenticate([FromBody]UserDto userDto)
  40. {
  41. var user = _Repo.Authenticate(userDto.Username, userDto.Password);
  42. if (user == null)
  43. return BadRequest(new { message = "Username or password is incorrect" });
  44. var name = _Repo.UserDetails(user.Id);
  45. var tokenHandler = new JwtSecurityTokenHandler();
  46. var key = Encoding.ASCII.GetBytes(_appSettings.Secret);
  47. var tokenDescriptor = new SecurityTokenDescriptor
  48. {
  49. Subject = new ClaimsIdentity(new Claim[]
  50. {
  51. new Claim(ClaimTypes.Name, user.Id.ToString()),
  52. new Claim(ClaimTypes.Role, user.Role)
  53. }),
  54. Expires = DateTime.UtcNow.AddMinutes(15),
  55. SigningCredentials = new SigningCredentials(new SymmetricSecurityKey(key), SecurityAlgorithms.HmacSha256Signature)
  56. };
  57. var token = tokenHandler.CreateToken(tokenDescriptor);
  58. var tokenString = tokenHandler.WriteToken(token);
  59. // return basic user info (without password) and token to store client side
  60. return Ok(new
  61. {
  62. user.Id,
  63. user.Username,
  64. Token = tokenString,
  65. name
  66. });
  67. }
  68. //Writes to DB
  69. [AllowAnonymous]
  70. [HttpPost("register")]
  71. public IActionResult Register([FromBody]UserDto individual)
  72. {
  73. _mapper.Map<Individual>(individual);
  74. try
  75. {
  76. _Repo.CreatePerson(individual, PersonType.Individual, true, null);
  77. return Ok();
  78. }
  79. catch (AppException ex)
  80. {
  81. return BadRequest(new { messge = ex.Message });
  82. }
  83. }
  84. //Writes to DB
  85. [AllowAnonymous]
  86. [HttpPost("registeragency")]
  87. public IActionResult RegisterAgency([FromBody]AgencyDto agency)
  88. {
  89. // map dto to entity
  90. _mapper.Map<Agency>(agency);
  91. try
  92. {
  93. // save
  94. _Repo.CreateAgency(agency);
  95. return Ok();
  96. }
  97. catch (AppException ex)
  98. {
  99. // return error message if there was an exception
  100. return BadRequest(new { message = ex.Message });
  101. }
  102. }
  103. //[HttpGet("{id}")]
  104. //public IActionResult GetById(int id)
  105. //{
  106. // var user = _Repo.GetById(id);
  107. // var userDto = _mapper.Map<UserDto>(user);
  108. // if (user == null)
  109. // {
  110. // return NotFound();
  111. // }
  112. // // Only allow SuperAdmins to access other user records
  113. // var currentUserId = int.Parse(User.Identity.Name);
  114. // if (id != currentUserId && !User.IsInRole(Role.SuperAdmin))
  115. // {
  116. // return Forbid();
  117. // }
  118. // return Ok(userDto);
  119. //}
  120. //[HttpGet("{id}")]
  121. //public IActionResult GetByAgencyId(int id)
  122. //{
  123. // var agency = _Repo.GetByAgencyId(id);
  124. // var agencyDto = _mapper.Map<AgencyDto>(agency);
  125. // if (agency == null)
  126. // {
  127. // return NotFound();
  128. // }
  129. // var currentAgencyId = int.Parse(User.Identity.Name);
  130. // if (id != currentAgencyId && !User.IsInRole(Role.Agency))
  131. // {
  132. // return Forbid();
  133. // }
  134. // return Ok(agencyDto);
  135. //}
  136. //[Authorize(Roles = Role.SuperAdmin)]
  137. //[HttpDelete("{id}")]
  138. //public IActionResult Delete(User user)
  139. //{
  140. // _Repo.Delete(user.Id);
  141. // return Ok();
  142. //}
  143. //[Authorize(Roles = Role.SuperAdmin)]
  144. //[HttpDelete("{id}")]
  145. //public IActionResult DeleteAgency(Agency agency)
  146. //{
  147. // _Repo.DeleteAgency(agency.Id);
  148. // return Ok();
  149. //}
  150. }
  151. }