-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathutils.js
55 lines (47 loc) · 1.3 KB
/
utils.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
const jwt = require('jsonwebtoken')
const rateLimit = require("express-rate-limit");
const getToken = (user) => {
return jwt.sign({
_id:user.id,
name:user.name,
email:user.email,
isAdmin:user.isAdmin,
}, process.env.JWT_SECRET, {
expiresIn: '48h'
})
}
const isAuth = (req, res, next) => {
let token = null
if(req.cookies.auth){
token = JSON.parse(req.cookies.auth)
}
if(token){
jwt.verify(token, process.env.JWT_SECRET, (err, decode) => {
if (err) {
return res.status(401).send({ message: 'Invalid Token' });
}
req.user = decode;
next();
return;
});
}else{
return res.status(401).send({msg: 'Token is not supplied'})
}
}
const isAdmin = (req,res,next) => {
if(req.user && req.user.isAdmin){
return next()
}
return res.status(401).send({msg: 'Admin token is not valid'})
}
const loginLimiter = rateLimit({
windowMs: 1 * 60 * 1000,
max: 5,
message:'Too many requests, try again in 1 minute'
});
const courseLimiter = rateLimit({
windowMs: 1 * 60 * 1000,
max: 10,
message:'Too many requests, try again in 1 minute'
});
module.exports = { getToken, isAuth ,isAdmin, loginLimiter, courseLimiter }