* fix: rate limit auth * fix: replace lru-cache w memory-cache * remove comments * fix: yarn.lock * fix: remove changes yarn lock * fix: add missing EOL empty liune * fix: move rate limiter so it kicks the last, limit to 10 tries per minute * fix: move limiter w rest of code * test: trying fix onboardong * fix: undo changes in globalSetup.ts * test: fix disable login for onboarding * fix: use username instead of email for token check * fix: tests * fix: don't run on test * fix: add missing comma * fix: remove uniqueTokenPerInterval * fix: add errorcode to packages lib auth * Update packages/lib/rateLimit.ts fix: improve readability Co-authored-by: Omar López <zomars@me.com> * Update packages/lib/rateLimit.ts fix: no unnecessary any Co-authored-by: Omar López <zomars@me.com> * Update packages/lib/rateLimit.ts fix: improve readability Co-authored-by: Omar López <zomars@me.com> * fix: rename interval -> intervalInMs * fix: check user.email not username which could be empty * fix: rateLimit update all naming Co-authored-by: Agusti Fernandez Pardo <git@agusti.me> Co-authored-by: Omar López <zomars@me.com> Co-authored-by: kodiakhq[bot] <49736102+kodiakhq[bot]@users.noreply.github.com> Co-authored-by: Peer Richelsen <peeroke@gmail.com>
44 lines
1.6 KiB
TypeScript
44 lines
1.6 KiB
TypeScript
import { IdentityProvider } from "@prisma/client";
|
|
import { compare, hash } from "bcryptjs";
|
|
import { Session } from "next-auth";
|
|
import { getSession as getSessionInner, GetSessionParams } from "next-auth/react";
|
|
|
|
export async function hashPassword(password: string) {
|
|
const hashedPassword = await hash(password, 12);
|
|
return hashedPassword;
|
|
}
|
|
|
|
export async function verifyPassword(password: string, hashedPassword: string) {
|
|
const isValid = await compare(password, hashedPassword);
|
|
return isValid;
|
|
}
|
|
|
|
export async function getSession(options: GetSessionParams): Promise<Session | null> {
|
|
const session = await getSessionInner(options);
|
|
|
|
// that these are equal are ensured in `[...nextauth]`'s callback
|
|
return session as Session | null;
|
|
}
|
|
|
|
export enum ErrorCode {
|
|
UserNotFound = "user-not-found",
|
|
IncorrectPassword = "incorrect-password",
|
|
UserMissingPassword = "missing-password",
|
|
TwoFactorDisabled = "two-factor-disabled",
|
|
TwoFactorAlreadyEnabled = "two-factor-already-enabled",
|
|
TwoFactorSetupRequired = "two-factor-setup-required",
|
|
SecondFactorRequired = "second-factor-required",
|
|
IncorrectTwoFactorCode = "incorrect-two-factor-code",
|
|
InternalServerError = "internal-server-error",
|
|
NewPasswordMatchesOld = "new-password-matches-old",
|
|
ThirdPartyIdentityProviderEnabled = "third-party-identity-provider-enabled",
|
|
RateLimitExceeded = "rate-limit-exceeded",
|
|
InvalidPassword = "invalid-password",
|
|
}
|
|
|
|
export const identityProviderNameMap: { [key in IdentityProvider]: string } = {
|
|
[IdentityProvider.CAL]: "Cal",
|
|
[IdentityProvider.GOOGLE]: "Google",
|
|
[IdentityProvider.SAML]: "SAML",
|
|
};
|