aboutsummaryrefslogtreecommitdiffstats
path: root/code/api/src/Endpoints/Internal/Account/LoginRoute.cs
blob: 696c3c226512b674118d258f0d11f4628e084832 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
namespace IOL.GreatOffice.Api.Endpoints.Internal.Account;

public class LoginRoute : RouteBaseAsync.WithRequest<LoginPayload>.WithActionResult
{
    private readonly MainAppDatabase _database;
    private readonly UserService _userService;

    public LoginRoute(MainAppDatabase database, UserService userService) {
        _database = database;
        _userService = userService;
    }

    /// <summary>
    /// Login a user.
    /// </summary>
    /// <param name="request"></param>
    /// <param name="cancellationToken"></param>
    /// <returns></returns>
    [AllowAnonymous]
    [HttpPost("~/_/account/login")]
    public override async Task<ActionResult> HandleAsync(LoginPayload request, CancellationToken cancellationToken = default) {
        if (!ModelState.IsValid) {
            return BadRequest(ModelState);
        }

        var user = _database.Users.SingleOrDefault(u => u.Username == request.Username);
        if (user == default || !user.VerifyPassword(request.Password)) {
            return BadRequest(new KnownProblemModel("Invalid username or password"));
        }

        await _userService.LogInUser(HttpContext, user, request.Persist);
        return Ok();
    }
}