2
0

auth.middleware.ts 1.6 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849
  1. import { Context, Next } from 'hono';
  2. import { AuthService } from '../modules/auth/auth.service';
  3. import { UserService } from '../modules/users/user.service';
  4. import { AppDataSource } from '../data-source';
  5. import { AuthContext } from '../types/context';
  6. import { DisabledStatus, DeleteStatus } from '@/share/types';
  7. import { immediateTraineeExpiryMiddleware } from './trainee-expiry.middleware';
  8. export async function authMiddleware(c: Context<AuthContext>, next: Next) {
  9. try {
  10. const authHeader = c.req.header('Authorization');
  11. if (!authHeader) {
  12. return c.json({ message: 'Authorization header missing' }, 401);
  13. }
  14. const token = authHeader.split(' ')[1];
  15. if (!token) {
  16. return c.json({ message: 'Token missing' }, 401);
  17. }
  18. const userService = new UserService(AppDataSource);
  19. const authService = new AuthService(userService);
  20. const decoded = authService.verifyToken(token);
  21. const user = await userService.getUserById(decoded.id);
  22. if (!user) {
  23. return c.json({ message: 'User not found' }, 401);
  24. }
  25. // 检查用户状态
  26. if (user.isDisabled === DisabledStatus.DISABLED) {
  27. return c.json({ message: 'User is disabled' }, 403);
  28. }
  29. if (user.isDeleted === DeleteStatus.DELETED) {
  30. return c.json({ message: 'User not found' }, 401);
  31. }
  32. c.set('user', user);
  33. c.set('token', token);
  34. // 在认证成功后立即检查学员过期状态
  35. await immediateTraineeExpiryMiddleware(c, next);
  36. } catch (error) {
  37. console.error('Authentication error:', error);
  38. return c.json({ message: 'Invalid token' }, 401);
  39. }
  40. }