handlers.go 4.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173
  1. package api
  2. import (
  3. "fmt"
  4. "io/ioutil"
  5. "log"
  6. "net/http"
  7. "path/filepath"
  8. "runtime/debug"
  9. jwtmiddleware "github.com/auth0/go-jwt-middleware"
  10. jwt "github.com/dgrijalva/jwt-go"
  11. "github.com/gorilla/mux"
  12. "github.com/gorilla/sessions"
  13. )
  14. var (
  15. signingKey = []byte("secret")
  16. store = sessions.NewCookieStore([]byte("something-very-secret"))
  17. jwtMiddleware = jwtmiddleware.New(jwtmiddleware.Options{
  18. ValidationKeyGetter: func(token *jwt.Token) (interface{}, error) {
  19. return signingKey, nil
  20. },
  21. SigningMethod: jwt.SigningMethodHS256,
  22. Extractor: fromCookie,
  23. ErrorHandler: onError,
  24. })
  25. crud []string = []string{"add", "show", "update", "delete"}
  26. )
  27. type User struct {
  28. Name string
  29. Admin bool
  30. }
  31. // Generate CRUD handlers
  32. func generateHandler(r *mux.Router, base string) {
  33. r.Handle(fmt.Sprintf("/%s", base), jwtMiddleware.Handler(recoverHandler(generalHandler(base, fmt.Sprintf("/%s", base))))).Methods("GET")
  34. r.Handle(fmt.Sprintf("/%s/{id}", base), jwtMiddleware.Handler(recoverHandler(generalHandler(base, fmt.Sprintf("/%s/{id}", base))))).Methods("GET")
  35. r.Handle(fmt.Sprintf("/%s/add/", base), jwtMiddleware.Handler(recoverHandler(generalHandler(base, fmt.Sprintf("/%s/add/", base))))).Methods("GET", "POST")
  36. r.Handle(fmt.Sprintf("/%s/{id}/update", base), jwtMiddleware.Handler(recoverHandler(generalHandler(base, fmt.Sprintf("/%s/{id}/update", base))))).Methods("GET", "POST")
  37. r.Handle(fmt.Sprintf("/%s/{id}/delete", base), jwtMiddleware.Handler(recoverHandler(generalHandler(base, fmt.Sprintf("/%s/{id}/delete", base))))).Methods("POST")
  38. }
  39. func Handlers() *mux.Router {
  40. r := mux.NewRouter()
  41. // Authentication
  42. r.Handle("/login", loginHandler())
  43. r.Handle("/logout", logoutHandler())
  44. // Dashboard
  45. r.Handle("/", jwtMiddleware.Handler(recoverHandler(dashboardHandler())))
  46. // School
  47. r.Handle("/school/{id}", jwtMiddleware.Handler(recoverHandler(schoolShowHandler())))
  48. r.Handle("/school/{id}/update", jwtMiddleware.Handler(recoverHandler(schoolUpdateHandler()))).Methods("GET", "POST")
  49. // Generate handlers
  50. for _, model := range []string{"teachers", "activities"} {
  51. generateHandler(r, model)
  52. }
  53. // Static file server
  54. r.PathPrefix("/").Handler(http.FileServer(http.Dir("./dist/")))
  55. return r
  56. }
  57. func onError(w http.ResponseWriter, r *http.Request, err string) {
  58. http.Redirect(w, r, "/login", http.StatusTemporaryRedirect)
  59. }
  60. func respondWithStaticFile(w http.ResponseWriter, filename string) error {
  61. f, err := ioutil.ReadFile(filepath.Join("public/html", filename))
  62. if err != nil {
  63. return err
  64. }
  65. w.Write(f)
  66. return nil
  67. }
  68. func fromCookie(r *http.Request) (string, error) {
  69. session, err := store.Get(r, "login-session")
  70. if err != nil {
  71. return "", nil
  72. }
  73. if session.Values["token"] == nil {
  74. return "", nil
  75. }
  76. token := session.Values["token"].([]uint8)
  77. return string(token), nil
  78. }
  79. func recoverHandler(next http.Handler) http.Handler {
  80. fn := func(w http.ResponseWriter, r *http.Request) {
  81. defer func() {
  82. if err := recover(); err != nil {
  83. panicMsg := fmt.Sprintf("PANIC: %v\n\n== STACKTRACE ==\n%s", err, debug.Stack())
  84. log.Print(panicMsg)
  85. http.Error(w, panicMsg, http.StatusInternalServerError)
  86. }
  87. }()
  88. next.ServeHTTP(w, r)
  89. }
  90. return http.HandlerFunc(fn)
  91. }
  92. func generalHandler(base, path string) http.Handler {
  93. fn := func(w http.ResponseWriter, r *http.Request) {
  94. var (
  95. ok bool
  96. getFn orm.GetFn
  97. postFn orm.PostFn
  98. )
  99. if r.Method == "GET" {
  100. getFn, ok = orm.Get[path]
  101. } else {
  102. postFn, ok = orm.Post[path]
  103. }
  104. if !ok {
  105. renderer.Render[r.URL.Query()["format"][0]](w, r, fmt.Errorf("Can't find ORM function for path %s!", path))
  106. } else {
  107. if r.Method == "GET" {
  108. data, err := getFn(mux.Vars(r))
  109. if err != nil {
  110. renderer.Render[r.URL.Query()["format"][0]](w, r, err)
  111. } else {
  112. renderer.Render[r.URL.Query()["format"][0]](w, r, data, r.URL.Query())
  113. }
  114. } else {
  115. data, err := postFn(mux.Vars(r), r)
  116. if err != nil {
  117. renderer.Render["html"](w, r, err)
  118. } else {
  119. if mux.Vars(r)["id"] != "" {
  120. http.Redirect(w, r,
  121. fmt.Sprintf(
  122. "/%s/%s?format=html&tpl_layout=base&tpl_content=%s_show",
  123. base,
  124. mux.Vars(r)["id"],
  125. base,
  126. ),
  127. http.StatusSeeOther,
  128. )
  129. } else {
  130. http.Redirect(w, r,
  131. fmt.Sprintf(
  132. "/%s/%d?format=html&tpl_layout=base&tpl_content=%s_show",
  133. base,
  134. data.GetID(),
  135. base,
  136. ),
  137. http.StatusSeeOther,
  138. )
  139. }
  140. }
  141. }
  142. }
  143. }
  144. return http.HandlerFunc(fn)
  145. }