api_login.go 1.9 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879
  1. package api
  2. import "github.com/gin-gonic/gin"
  3. func init() {
  4. addRoutes(func(self *HttpServer) {
  5. self.router.GET("/login/*_", self.index)
  6. self.router.POST("/login", self.loginPost)
  7. self.router.POST("/logout", self.logoutPost)
  8. })
  9. }
  10. type loginJsonModel struct {
  11. Email string `json:"email" binding:"required"`
  12. Password string `json:"password" binding:"required"`
  13. Remember bool `json:"remember"`
  14. }
  15. func (self *HttpServer) loginPost(c *gin.Context) {
  16. var loginModel loginJsonModel
  17. if !c.EnsureBody(&loginModel) {
  18. c.JSON(400, gin.H{"status": "bad request"})
  19. return
  20. }
  21. account, err := self.store.GetUserAccountLogin(loginModel.Email)
  22. if err != nil {
  23. c.JSON(400, gin.H{"status": "some error"})
  24. }
  25. if loginModel.Password != account.Password {
  26. c.JSON(401, gin.H{"status": "unauthorized"})
  27. return
  28. }
  29. session, _ := sessionStore.Get(c.Request, "grafana-session")
  30. session.Values["login"] = true
  31. session.Values["accountId"] = account.DatabaseId
  32. session.Save(c.Request, c.Writer)
  33. c.JSON(200, gin.H{"status": "you are logged in"})
  34. }
  35. func (self *HttpServer) logoutPost(c *gin.Context) {
  36. session, _ := sessionStore.Get(c.Request, "grafana-session")
  37. session.Values["login"] = nil
  38. session.Save(c.Request, c.Writer)
  39. c.JSON(200, gin.H{"status": "logged out"})
  40. }
  41. type GrafanaReqContext struct {
  42. }
  43. type authenticatedAuthRouteFunc func(c *gin.Context, grc GrafanaReqContext)
  44. func (self *HttpServer) addAuthRoute(route string, handler authenticatedAuthRouteFunc) {
  45. self.router.GET(route, self.auth(), func(c *gin.Context) {
  46. })
  47. }
  48. func (self *HttpServer) auth() gin.HandlerFunc {
  49. return func(c *gin.Context) {
  50. session, _ := sessionStore.Get(c.Request, "grafana-session")
  51. if c.Request.URL.Path != "/login" && session.Values["login"] == nil {
  52. c.Writer.Header().Set("Location", "/login")
  53. c.Abort(302)
  54. return
  55. }
  56. c.Set("accountId", session.Values["accountId"])
  57. session.Save(c.Request, c.Writer)
  58. }
  59. }