为每个公司的管理员创建路线登录名

时间:2019-05-22 11:37:42

标签: node.js express mongoose login mongoose-schema

我正在尝试为每个公司管理员的个人资料创建登录路由网址。

之前有单一模式时,我尝试使用相同的方法。现在,我在嵌套结构中尝试相同的方法,发现它有点困难。

现在,我希望我的路线网址是这样的:-router.post('/:compId/admin/login')

我不太了解,因为为每个文档创建路径对我来说是新的。

我的控制器:-

var admin = new Admin();
    admin.companyName = req.body.companyName;
    admin.address = req.body.address;
    admin.contactDetails  = req.body.contactDetails;
    admin.admins = {
                  email : req.body.email,
                  password: req.body.password, 
                  firstName : req.body.firstName, 
                  lastName : req.body.lastName,
                  phoneNumber : req.body.phoneNumber,
                  designation : req.body.designation,
                  role : "admin",
                  verified :"false",
                  users: []
    };

这是我在路由登录中尝试过的操作:-

router.post('/:compId/admin/login' , (req, res, next) => {

    Admin.find({'admins.email': req.body.email},{ 'admins.companyId': req.params.compId })
    .exec()
    .then(admin => {
        if(admin.admins.length < 1) {
            return res.status(401).json({
                message: "Auth failed. admin not found."
            })
        }
        bcryptt.compare(req.body.admins.password, admin.admins[0].password, (err, result) =>{
            if (err) {
                return res.json({
                message: "Auth failed. Check email and password"
                });             
            }                   
            if (result && admin.admins[0].verified === "true"){
                const adminEmaill = "rgg@xyz.com";                                                  //assaigning a user to admin 
                const role1 = admin.admins[0].email===adminEmaill? "superadmin" : "admin";                                  //check user id as admin or user
                const token = jwt.sign( 
                    {
                        email: admin.admins[0].email,
                        phoneNo: admin.admins[0].phoneNumber,
                        role1,
                        comID: admin.admins[0].companyID
                    },
                    process.env.JWT_KEY,
                    {
                        expiresIn : "1h"
                    });
                    return res.status(200).json({
                    message: "Auth Successful",
                    token : token
                    }); 
            }
            else{
                console.log("admin is not verified");   
                return res.json({
                message: "Admin is not verified"
                }); 
            }
        });
    })
    .catch(err =>{
        if (err.code == 500)
                    res.status(500).send(["Something went wrong in login"]);
            else
            return next(err);
    }); 
});

我的回复数据:-

[{
    "admins": {
        "email": "angjun.34@test-mail.info",
        "password": "$2a$10$QgCJ4IaYXZK9JZIkLv2X9O/wnFpn0LEhFQujBco0M0TF2.X7OgDmW",
        "firstName": "hdsdsds",
        "lastName": "Ghodsdsdsh",
        "phoneNumber": "4544343",
        "designation": "Software Engineer",
        "role": "admin",
        "verified": "false",
        "users": [],
        "emailResetTokenn": "247c6e6794d15a311670da0bb13a4a8bf773b0e7f7b5dde0e555f421e2aef22f",
        "emailExpires": "2019-05-22T15:05:43.974Z",
        "saltSecret": "$2a$10$QgCJ4IaYXZK9JZIkLv2X9O"
    },
    "_id": "5ce510e7aca42c4c74fd9085",
    "companyName": "TEST",
    "address": "UAE",
    "contactDetails": "54534454",
    "companyID": "1223365",
    "__v": 0
},
{
    "admins": {
        "email": "groham.224@test-mail.info",
        "password": "$2a$10$QgCJ9O/wnFpn0LEhFco0M0TF2.X7OgDmW",
        "firstName": "hdsdsds",
        "lastName": "Ghodsdsdsh",
        "phoneNumber": "4544343",
        "designation": "Software Engineer",
        "role": "admin",
        "verified": "false",
        "users": [],
        "emailResetTokenn": "247c6e6794d15a311670da0bb13a4a8bf773b0e7f7b5dde0e555f421e2aef22f",
        "emailExpires": "2019-05-22T15:05:43.974Z",
        "saltSecret": "$2a$10$QgCJ4IaYXZK9JZIkLv2X9O"
    },
    "_id": "5ce510e7aca42c4c74fd9085",
    "companyName": "RESTFUL Pvt Ltd",
    "address": "UK",
    "contactDetails": "54534454",
    "companyID": "155165",
    "__v": 0
}]

问题

  • 那么如何为每个公司管理员的login创建router.post('/:compId/admin/login'),以便登录时只有相应公司详细信息的对象可以传递 JWT ?我添加的登录路由不起作用。

示例:- 假设第二条公司路线为('/155165/admin/login')

1 个答案:

答案 0 :(得分:0)

似乎您使用的查询错误 companyID不是admins的子代

因此查询应该

Admin.find({'admins.email': req.body.email},{ 'companyID': req.params.compId })
相关问题