core/resolvers/auth.py

64 lines
2.1 KiB
Python
Raw Normal View History

from graphql import GraphQLResolveInfo
from auth.authenticate import login_required
from auth.authorize import Authorize
from auth.identity import Identity
from auth.password import Password
from auth.validations import CreateUser
from orm import User
from orm.base import global_session
from resolvers.base import mutation, query
from settings import JWT_AUTH_HEADER
@mutation.field("registerUser")
2021-07-30 06:36:18 +00:00
async def register(*_, email: str, password: str) -> User:
2021-07-30 07:12:48 +00:00
inp = { "email": email, "password": password}
2021-07-30 07:09:39 +00:00
create_user = CreateUser(**inp)
2021-07-13 09:15:15 +00:00
create_user.password = Password.encode(create_user.password)
2021-07-30 07:18:04 +00:00
create_user.username = email.split('@')[0]
2021-07-30 07:09:39 +00:00
user = User.create(**create_user.dict())
2021-07-30 07:05:34 +00:00
# if not password: # TODO: send confirmation email
2021-07-30 06:31:03 +00:00
token = await Authorize.authorize(user)
return {"status": True, "user": user, "token": token }
@query.field("signIn")
2021-07-14 14:45:31 +00:00
async def sign_in(_, info: GraphQLResolveInfo, email: str, password: str):
orm_user = global_session.query(User).filter(User.email == email).first()
if orm_user is None:
return {"status" : False, "error" : "invalid email"}
2021-07-13 09:15:15 +00:00
try:
device = info.context["request"].headers['device']
except KeyError:
device = "pc"
2021-07-30 06:59:42 +00:00
auto_delete = False if device == "mobile" else True # why autodelete with mobile?
2021-07-14 14:45:31 +00:00
user = Identity.identity(user_id=orm_user.id, password=password)
2021-07-13 09:15:15 +00:00
token = await Authorize.authorize(user, device=device, auto_delete=auto_delete)
2021-07-30 05:58:38 +00:00
return {"status" : True, "token" : token, "user": user}
@query.field("signOut")
@login_required
async def sign_out(_, info: GraphQLResolveInfo):
2021-07-13 09:15:15 +00:00
token = info.context["request"].headers[JWT_AUTH_HEADER]
status = await Authorize.revoke(token)
return {"status" : status}
2021-07-14 14:45:31 +00:00
@query.field("getCurrentUser")
@login_required
async def get_user(_, info):
auth = info.context["request"].auth
user_id = auth.user_id
2021-07-30 05:58:38 +00:00
user = global_session.query(User).filter(User.id == user_id).first()
return { "status": True, "user": user }
2021-07-14 14:45:31 +00:00
@query.field("isEmailFree")
async def is_email_free(_, info, email):
user = global_session.query(User).filter(User.email == email).first()
2021-07-30 05:58:38 +00:00
return { "status": user is None }