api_login.go 1.6 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768
  1. package api
  2. import "github.com/gin-gonic/gin"
  3. func init() {
  4. addRoutes(func(self *HttpServer) {
  5. self.router.GET("/login/*_", self.index)
  6. self.router.POST("/login", self.loginPost)
  7. self.router.POST("/logout", self.logoutPost)
  8. })
  9. }
  10. type loginJsonModel struct {
  11. Email string `json:"email" binding:"required"`
  12. Password string `json:"password" binding:"required"`
  13. Remember bool `json:"remember"`
  14. }
  15. func (self *HttpServer) loginPost(c *gin.Context) {
  16. var loginModel loginJsonModel
  17. if !c.EnsureBody(&loginModel) {
  18. c.JSON(400, gin.H{"status": "bad request"})
  19. return
  20. }
  21. account, err := self.store.GetUserAccountLogin(loginModel.Email)
  22. if err != nil {
  23. c.JSON(400, gin.H{"status": "some error"})
  24. }
  25. if loginModel.Password != account.Password {
  26. c.JSON(401, gin.H{"status": "unauthorized"})
  27. return
  28. }
  29. session, _ := sessionStore.Get(c.Request, "grafana-session")
  30. session.Values["login"] = true
  31. session.Values["accountId"] = account.DatabaseId
  32. session.Save(c.Request, c.Writer)
  33. c.JSON(200, gin.H{"status": "you are logged in"})
  34. }
  35. func (self *HttpServer) logoutPost(c *gin.Context) {
  36. session, _ := sessionStore.Get(c.Request, "grafana-session")
  37. session.Values["login"] = nil
  38. session.Save(c.Request, c.Writer)
  39. c.JSON(200, gin.H{"status": "logged out"})
  40. }
  41. func (self *HttpServer) auth() gin.HandlerFunc {
  42. return func(c *gin.Context) {
  43. session, _ := sessionStore.Get(c.Request, "grafana-session")
  44. if c.Request.URL.Path != "/login" && session.Values["login"] == nil {
  45. c.Writer.Header().Set("Location", "/login")
  46. c.Abort(302)
  47. return
  48. }
  49. c.Set("accountId", session.Values["accountId"])
  50. session.Save(c.Request, c.Writer)
  51. }
  52. }