Add POST endpoint for /login

This commit is contained in:
Backend IM Bot 2025-03-27 16:40:06 +00:00
parent 73bf75589d
commit 9d4664109b

View File

@ -1,37 +1,28 @@
from fastapi import APIRouter, Depends, HTTPException
from pydantic import BaseModel
from datetime import timedelta
from core.database import get_db
# Entity: User
from fastapi import APIRouter, Depends, HTTPException, status
from sqlalchemy.orm import Session
from core.auth import verify_password, create_access_token
from core.database import get_db
from models.user import User
from schemas.user import UserSchema, UserLogin
from helpers.user_helpers import authenticate_user
from core.security import create_access_token
router = APIRouter()
class UserAuth(BaseModel):
username: str
password: str
@router.post("/login")
@router.post("/login", status_code=200)
async def login(
user_data: UserAuth,
login_data: UserLogin,
db: Session = Depends(get_db)
):
"""User authentication endpoint"""
user = db.query(User).filter(User.username == user_data.username).first()
"""Authenticate user and return access token"""
user = authenticate_user(db, login_data.username, login_data.password)
if not user:
raise HTTPException(
status_code=status.HTTP_401_UNAUTHORIZED,
detail="Incorrect username or password",
headers={"WWW-Authenticate": "Bearer"},
)
if not user or not verify_password(user_data.password, user.hashed_password):
raise HTTPException(status_code=400, detail="Invalid credentials")
# Generate token with expiration
access_token = create_access_token(
data={"sub": user.id},
expires_delta=timedelta(hours=1)
)
return {
"access_token": access_token,
"token_type": "bearer",
"user_id": user.id,
"username": user.username
}
access_token = create_access_token(data={"sub": user.username})
return {"access_token": access_token, "token_type": "bearer"}