tokens.js 1.5 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556
  1. import express from "express";
  2. import internalToken from "../internal/token.js";
  3. import jwtdecode from "../lib/express/jwt-decode.js";
  4. import apiValidator from "../lib/validator/api.js";
  5. import { express as logger } from "../logger.js";
  6. import { getValidationSchema } from "../schema/index.js";
  7. const router = express.Router({
  8. caseSensitive: true,
  9. strict: true,
  10. mergeParams: true,
  11. });
  12. router
  13. .route("/")
  14. .options((_, res) => {
  15. res.sendStatus(204);
  16. })
  17. /**
  18. * GET /tokens
  19. *
  20. * Get a new Token, given they already have a token they want to refresh
  21. * We also piggy back on to this method, allowing admins to get tokens
  22. * for services like Job board and Worker.
  23. */
  24. .get(jwtdecode(), async (req, res, next) => {
  25. try {
  26. const data = await internalToken.getFreshToken(res.locals.access, {
  27. expiry: typeof req.query.expiry !== "undefined" ? req.query.expiry : null,
  28. scope: typeof req.query.scope !== "undefined" ? req.query.scope : null,
  29. });
  30. res.status(200).send(data);
  31. } catch (err) {
  32. logger.debug(`${req.method.toUpperCase()} ${req.path}: ${err}`);
  33. next(err);
  34. }
  35. })
  36. /**
  37. * POST /tokens
  38. *
  39. * Create a new Token
  40. */
  41. .post(async (req, res, next) => {
  42. try {
  43. const data = await apiValidator(getValidationSchema("/tokens", "post"), req.body);
  44. const result = await internalToken.getTokenFromEmail(data);
  45. res.status(200).send(result);
  46. } catch (err) {
  47. logger.debug(`${req.method.toUpperCase()} ${req.path}: ${err}`);
  48. next(err);
  49. }
  50. });
  51. export default router;