LockMiddleware.ts 1.6 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152
  1. import { Username } from '@standardnotes/domain-core'
  2. import { NextFunction, Request, Response } from 'express'
  3. import { inject, injectable } from 'inversify'
  4. import { BaseMiddleware } from 'inversify-express-utils'
  5. import TYPES from '../Bootstrap/Types'
  6. import { LockRepositoryInterface } from '../Domain/User/LockRepositoryInterface'
  7. import { UserRepositoryInterface } from '../Domain/User/UserRepositoryInterface'
  8. @injectable()
  9. export class LockMiddleware extends BaseMiddleware {
  10. constructor(
  11. @inject(TYPES.Auth_UserRepository) private userRepository: UserRepositoryInterface,
  12. @inject(TYPES.Auth_LockRepository) private lockRepository: LockRepositoryInterface,
  13. ) {
  14. super()
  15. }
  16. async handler(request: Request, response: Response, next: NextFunction): Promise<void> {
  17. try {
  18. let identifier = request.body.email ?? request.body.username
  19. const usernameOrError = Username.create(identifier)
  20. if (usernameOrError.isFailed()) {
  21. response.status(400).send({
  22. error: {
  23. message: usernameOrError.getError(),
  24. },
  25. })
  26. }
  27. const username = usernameOrError.getValue()
  28. const user = await this.userRepository.findOneByUsernameOrEmail(username)
  29. if (user !== null) {
  30. identifier = user.uuid
  31. }
  32. if (await this.lockRepository.isUserLocked(identifier)) {
  33. response.status(423).send({
  34. error: {
  35. message: 'Too many successive login requests. Please try your request again later.',
  36. },
  37. })
  38. return
  39. }
  40. return next()
  41. } catch (error) {
  42. return next(error)
  43. }
  44. }
  45. }