Add POST endpoint for /login
This commit is contained in:
parent
41b75ad09f
commit
5d41fae7b1
@ -1,37 +1,26 @@
|
|||||||
from fastapi import APIRouter, Depends, HTTPException
|
# Entity: User
|
||||||
from pydantic import BaseModel
|
|
||||||
from datetime import timedelta
|
from fastapi import APIRouter, Depends, HTTPException, status
|
||||||
from core.database import get_db
|
|
||||||
from sqlalchemy.orm import Session
|
from sqlalchemy.orm import Session
|
||||||
from core.auth import verify_password, create_access_token
|
from core.database import get_db
|
||||||
from models.user import User
|
from core.models.user import User
|
||||||
|
from core.schemas.user import UserSchema, UserLogin
|
||||||
|
from core.security import verify_password, create_access_token
|
||||||
|
|
||||||
router = APIRouter()
|
router = APIRouter()
|
||||||
|
|
||||||
class UserAuth(BaseModel):
|
@router.post("/login", status_code=200)
|
||||||
username: str
|
|
||||||
password: str
|
|
||||||
|
|
||||||
@router.post("/login")
|
|
||||||
async def login(
|
async def login(
|
||||||
user_data: UserAuth,
|
user_credentials: UserLogin,
|
||||||
db: Session = Depends(get_db)
|
db: Session = Depends(get_db)
|
||||||
):
|
):
|
||||||
"""User authentication endpoint"""
|
user = db.query(User).filter(User.email == user_credentials.email).first()
|
||||||
user = db.query(User).filter(User.username == user_data.username).first()
|
if not user or not verify_password(user_credentials.password, user.hashed_password):
|
||||||
|
raise HTTPException(
|
||||||
|
status_code=status.HTTP_401_UNAUTHORIZED,
|
||||||
|
detail="Incorrect email or password",
|
||||||
|
headers={"WWW-Authenticate": "Bearer"},
|
||||||
|
)
|
||||||
|
|
||||||
if not user or not verify_password(user_data.password, user.hashed_password):
|
access_token = create_access_token(data={"sub": user.email})
|
||||||
raise HTTPException(status_code=400, detail="Invalid credentials")
|
return {"access_token": access_token, "token_type": "bearer"}
|
||||||
|
|
||||||
# Generate token with expiration
|
|
||||||
access_token = create_access_token(
|
|
||||||
data={"sub": user.id},
|
|
||||||
expires_delta=timedelta(hours=1)
|
|
||||||
)
|
|
||||||
|
|
||||||
return {
|
|
||||||
"access_token": access_token,
|
|
||||||
"token_type": "bearer",
|
|
||||||
"user_id": user.id,
|
|
||||||
"username": user.username
|
|
||||||
}
|
|
Loading…
x
Reference in New Issue
Block a user