Add base project files including environment example, license, README, .gitignore, error classes, ESLint config, database modules, texture assets, repositories, routes, schemas, services, and server entry point. This establishes the foundational structure for a Yggdrasil-compatible REST API with modular error handling, database setup, and route organization.
41 lines
1.3 KiB
JavaScript
41 lines
1.3 KiB
JavaScript
const express = require("express")
|
|
const router = express.Router()
|
|
const { YggdrasilError } = require("../../errors/errors")
|
|
const rateLimit = require("express-rate-limit")
|
|
const authService = require("../../services/authService")
|
|
const logger = require("../../modules/logger")
|
|
|
|
const limiter = rateLimit({
|
|
windowMs: 15 * 60 * 1000,
|
|
max: 20,
|
|
standardHeaders: true,
|
|
legacyHeaders: false,
|
|
handler: (req, res) => {
|
|
return res.status(429).json({
|
|
error: "TooManyRequestsException",
|
|
errorMessage: "Too many login attempts, please try again later."
|
|
})
|
|
}
|
|
})
|
|
|
|
router.post("/", limiter, async (req, res) => {
|
|
const { username, password, clientToken, requestUser } = req.body
|
|
try {
|
|
const result = await authService.authenticate({
|
|
identifier: username,
|
|
password,
|
|
clientToken,
|
|
requireUser: requestUser || false
|
|
})
|
|
|
|
logger.log(`User authenticated: ${username}`, ["AUTH", "green"])
|
|
return res.status(200).json(result.response)
|
|
} catch (err) {
|
|
if (err instanceof DefaultError) {
|
|
throw new YggdrasilError( err.code, err.error || "ForbiddenOperationException", err.message, "Invalid credentials")
|
|
}
|
|
throw err
|
|
}
|
|
})
|
|
|
|
module.exports = router |