aboutsummaryrefslogtreecommitdiffstats
path: root/code/api/Endpoints/Account/LoginEndpoint.cs
blob: 6cda119f3228ecd25086d011f6fb1c10f45300a8 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
namespace Quality.Storage.Api.Endpoints.Account;

public class LoginEndpoint(UserService userService, AppDatabase database, IStringLocalizer<SharedResources> localizer) : EndpointBase
{
	public new class Request
	{
		public string Username { get; set; }
		public string Password { get; set; }
	}

	[AllowAnonymous]
	[HttpPost("~/account/login")]
	public async Task<ActionResult> Handle([FromBody] Request request) {
		var user = database.Users.FirstOrDefault(c => c.Username == request.Username);
		if (user == default) {
			return KnownProblem(localizer["Invalid username or password"]);
		}

		if (!PasswordHelper.Verify(request.Password, user.Password)) {
			return KnownProblem(localizer["Invalid username or password"]);
		}

		await userService.LogInUserAsync(HttpContext, user.DefaultClaims());
		return Ok();
	}
}