iceshrimp/src/server/api/private/signup.ts

99 lines
2.1 KiB
TypeScript
Raw Normal View History

2018-04-13 06:06:18 +09:00
import * as Koa from 'koa';
2017-01-18 14:19:50 +09:00
import * as bcrypt from 'bcryptjs';
2018-03-29 01:20:40 +09:00
import { generate as generateKeypair } from '../../../crypto_key';
2017-01-03 06:03:19 +09:00
import recaptcha = require('recaptcha-promise');
2018-03-29 20:32:18 +09:00
import User, { IUser, validateUsername, validatePassword, pack } from '../../../models/user';
2017-08-28 23:47:43 +09:00
import generateUserToken from '../common/generate-native-user-token';
2018-04-02 13:15:53 +09:00
import config from '../../../config';
2016-12-29 07:49:51 +09:00
recaptcha.init({
secret_key: config.recaptcha.secret_key
2016-12-29 07:49:51 +09:00
});
2018-04-13 06:06:18 +09:00
export default async (ctx: Koa.Context) => {
2016-12-29 07:49:51 +09:00
// Verify recaptcha
2017-01-17 08:26:59 +09:00
// ただしテスト時はこの機構は障害となるため無効にする
if (process.env.NODE_ENV !== 'test') {
2018-04-13 09:44:00 +09:00
const success = await recaptcha(ctx.request.body['g-recaptcha-response']);
2016-12-29 07:49:51 +09:00
2017-01-17 08:26:59 +09:00
if (!success) {
2018-04-13 06:06:18 +09:00
ctx.throw(400, 'recaptcha-failed');
2017-01-17 08:26:59 +09:00
return;
}
2016-12-29 07:49:51 +09:00
}
2018-04-13 09:44:00 +09:00
const username = ctx.request.body['username'];
const password = ctx.request.body['password'];
2016-12-29 07:49:51 +09:00
// Validate username
if (!validateUsername(username)) {
2018-04-13 06:06:18 +09:00
ctx.status = 400;
2016-12-29 07:49:51 +09:00
return;
}
2017-01-17 11:37:11 +09:00
// Validate password
2017-02-22 19:39:34 +09:00
if (!validatePassword(password)) {
2018-04-13 06:06:18 +09:00
ctx.status = 400;
2017-01-17 11:37:11 +09:00
return;
}
2016-12-29 07:49:51 +09:00
// Fetch exist user that same username
const usernameExist = await User
.count({
2018-03-29 14:48:47 +09:00
usernameLower: username.toLowerCase(),
2018-03-27 16:51:12 +09:00
host: null
2016-12-29 07:49:51 +09:00
}, {
limit: 1
});
// Check username already used
if (usernameExist !== 0) {
2018-04-13 06:06:18 +09:00
ctx.status = 400;
2016-12-29 07:49:51 +09:00
return;
}
// Generate hash of password
2017-11-08 14:58:48 +09:00
const salt = await bcrypt.genSalt(8);
const hash = await bcrypt.hash(password, salt);
2016-12-29 07:49:51 +09:00
// Generate secret
2017-08-28 23:47:43 +09:00
const secret = generateUserToken();
2016-12-29 07:49:51 +09:00
// Create account
2017-09-16 17:31:37 +09:00
const account: IUser = await User.insert({
2018-03-29 14:48:47 +09:00
avatarId: null,
bannerId: null,
createdAt: new Date(),
2017-02-22 12:43:15 +09:00
description: null,
2018-03-29 14:48:47 +09:00
followersCount: 0,
followingCount: 0,
name: null,
2018-04-08 02:30:37 +09:00
notesCount: 0,
driveCapacity: 1024 * 1024 * 128, // 128MiB
2016-12-29 07:49:51 +09:00
username: username,
2018-03-29 14:48:47 +09:00
usernameLower: username.toLowerCase(),
2018-03-27 12:02:43 +09:00
host: null,
2018-04-08 03:58:11 +09:00
keypair: generateKeypair(),
token: secret,
email: null,
links: null,
password: hash,
profile: {
bio: null,
birthday: null,
blood: null,
gender: null,
handedness: null,
height: null,
location: null,
weight: null
},
settings: {
autoWatch: true
2017-02-22 12:43:15 +09:00
}
2016-12-29 07:49:51 +09:00
});
// Response
2018-04-13 06:06:18 +09:00
ctx.body = await pack(account);
2016-12-29 07:49:51 +09:00
};