-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathindex.js
120 lines (102 loc) · 3.09 KB
/
index.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
import express from 'express';
import bodyParser from 'body-parser';
import { graphqlExpress, graphiqlExpress } from 'apollo-server-express';
import { makeExecutableSchema } from 'graphql-tools';
import path from 'path';
import { fileLoader, mergeTypes, mergeResolvers } from 'merge-graphql-schemas';
import cors from 'cors';
import jwt from 'jsonwebtoken';
import { createServer } from 'http';
import { execute, subscribe } from 'graphql';
import { SubscriptionServer } from 'subscriptions-transport-ws';
import models from './models';
import { refreshTokens } from './auth';
const SECRET = 'asiodfhoi1hoi23jnl1kejd';
const SECRET2 = 'asiodfhoi1hoi23jnl1kejasdjlkfasdd';
const typeDefs = mergeTypes(fileLoader(path.join(__dirname, './schema')));
const resolvers = mergeResolvers(fileLoader(path.join(__dirname, './resolvers')));
const schema = makeExecutableSchema({
typeDefs,
resolvers,
});
const app = express();
app.use(cors('*'));
const addUser = async (req, res, next) => {
const token = req.headers['x-token'];
if (token) {
try {
const { user } = jwt.verify(token, SECRET);
req.user = user;
} catch (err) {
const refreshToken = req.headers['x-refresh-token'];
const newTokens = await refreshTokens(token, refreshToken, models, SECRET, SECRET2);
if (newTokens.token && newTokens.refreshToken) {
res.set('Access-Control-Expose-Headers', 'x-token, x-refresh-token');
res.set('x-token', newTokens.token);
res.set('x-refresh-token', newTokens.refreshToken);
}
req.user = newTokens.user;
}
}
next();
};
app.use(addUser);
const graphqlEndpoint = '/graphql';
app.use(
graphqlEndpoint,
bodyParser.json(),
graphqlExpress(req => ({
schema,
context: {
models,
user: req.user,
SECRET,
SECRET2,
},
})),
);
app.use(
'/graphiql',
graphiqlExpress({
endpointURL: graphqlEndpoint,
subscriptionsEndpoint: 'ws://localhost:8081/subscriptions',
}),
);
const server = createServer(app);
models.sequelize.sync({}).then(() => {
server.listen(8081, () => {
// eslint-disable-next-line no-new
new SubscriptionServer(
{
execute,
subscribe,
schema,
onConnect: async ({ token, refreshToken }, webSocket) => {
if (token && refreshToken) {
let user = null;
try {
const payload = jwt.verify(token, SECRET);
user = payload.user;
} catch (err) {
const newTokens = await refreshTokens(token, refreshToken, models, SECRET, SECRET2);
user = newTokens.user;
}
if (!user) {
throw new Error('Invalid auth tokens');
}
// const member = await models.Member.findOne({ where: { teamId: 1, userId: user.id } });
// if (!member) {
// throw new Error('Autorizacion no establecida!');
// }
return true;
}
throw new Error('Autorizacion no establecida!');
},
},
{
server,
path: '/subscriptions',
},
);
});
});