@mercury-labs/nest-auth
Version:
Mercury framework auth library. It supports local auth, jwt with both bearer token and cookie, basic auth.
79 lines • 3.77 kB
JavaScript
var __decorate = (this && this.__decorate) || function (decorators, target, key, desc) {
var c = arguments.length, r = c < 3 ? target : desc === null ? desc = Object.getOwnPropertyDescriptor(target, key) : desc, d;
if (typeof Reflect === "object" && typeof Reflect.decorate === "function") r = Reflect.decorate(decorators, target, key, desc);
else for (var i = decorators.length - 1; i >= 0; i--) if (d = decorators[i]) r = (c < 3 ? d(r) : c > 3 ? d(target, key, r) : d(target, key)) || r;
return c > 3 && r && Object.defineProperty(target, key, r), r;
};
var __metadata = (this && this.__metadata) || function (k, v) {
if (typeof Reflect === "object" && typeof Reflect.metadata === "function") return Reflect.metadata(k, v);
};
var __param = (this && this.__param) || function (paramIndex, decorator) {
return function (target, key) { decorator(target, key, paramIndex); }
};
Object.defineProperty(exports, "__esModule", { value: true });
exports.LogoutAction = void 0;
const common_1 = require("@nestjs/common");
const cqrs_1 = require("@nestjs/cqrs");
const graphql_1 = require("@nestjs/graphql");
const rxjs_1 = require("rxjs");
const decorators_1 = require("../decorators");
const events_1 = require("../events");
const helpers_1 = require("../helpers");
let LogoutAction = exports.LogoutAction = class LogoutAction {
constructor(definitions, eventBus) {
this.definitions = definitions;
this.eventBus = eventBus;
}
handle({ context }) {
const res = (0, helpers_1.getResponseFromContext)(context);
res.httpAdaptorType = this.definitions.httpAdaptorType;
const request = (0, helpers_1.getRequestFromContext)(context);
const user = getUserFromContext(context);
let currentToken = (0, helpers_1.getRequestCookie)(request, 'Authorization');
if (!currentToken) {
currentToken = (0, helpers_1.getRequestHeader)(request, 'authorization');
}
const accessToken = (0, helpers_1.removeBearerFromToken)(currentToken);
this.eventBus.publish(new events_1.UserLoggedOutEvent(accessToken, user));
this.clearAuthCookies(res);
return (0, rxjs_1.of)(undefined);
}
clearAuthCookies(res) {
if ((res.httpAdaptorType === 'fastify' && !res.cookie) ||
(res.httpAdaptorType === 'express' && !res.cookie)) {
return;
}
const cookieOptions = {
path: '/',
httpOnly: true,
sameSite: 'none',
secure: process.env.NODE_ENV !== 'local',
...this.definitions.cookieOptions,
expires: new Date(),
};
if (res.httpAdaptorType === 'fastify' && res.cookie) {
res.cookie('Authorization', '', cookieOptions);
res.cookie('Refresh-Token', '', cookieOptions);
}
if (res.httpAdaptorType === 'express' && res.cookie) {
res.cookie('Authorization', '', cookieOptions);
res.cookie('Refresh-Token', '', cookieOptions);
}
}
};
exports.LogoutAction = LogoutAction = __decorate([
(0, common_1.Injectable)(),
__param(0, (0, decorators_1.InjectAuthDefinitions)()),
__metadata("design:paramtypes", [Object, cqrs_1.EventBus])
], LogoutAction);
function getUserFromContext(context) {
var _a, _b;
if (`${context.getType()}` === 'graphql') {
const gqlExecutionContext = graphql_1.GqlExecutionContext.create(context);
return (_a = gqlExecutionContext.getContext().req.user) === null || _a === void 0 ? void 0 : _a.userData;
}
const request = context.switchToHttp().getRequest();
return (_b = request.user) === null || _b === void 0 ? void 0 : _b.userData;
}
//# sourceMappingURL=logout.action.js.map
;