Files
speckle-server/packages/frontend-2/middleware/requireValidModel.ts
T
Kristaps Fabians Geikins 30fdc71fcd fix(fe2 & fe1): log out on invalid auth token on any GQL call (#1666)
* fix(fe2): log out on invalid auth token on any GQL call

* fix(fe1): redirecting to login page on any 403 GQL req

* WIP invalid token

* stricter toker invalidation checks in FE1

* stricter token check in FE2 as well
2023-07-03 15:04:57 +03:00

58 lines
1.6 KiB
TypeScript

import { useApolloClientFromNuxt } from '~~/lib/common/composables/graphql'
import {
convertThrowIntoFetchResult,
getFirstErrorMessage
} from '~~/lib/common/helpers/graphql'
import { projectModelCheckQuery } from '~~/lib/projects/graphql/queries'
/**
* Used in project page to validate that project ID refers to a valid project and redirects to 404 if not
*/
export default defineNuxtRouteMiddleware(async (to) => {
const projectId = to.params.id as string
const modelId = to.params.modelId as string
const client = useApolloClientFromNuxt()
const { data, errors } = await client
.query({
query: projectModelCheckQuery,
variables: { projectId, modelId }
})
.catch(convertThrowIntoFetchResult)
// If project succesfully resolved, move on
if (data?.project?.model?.id) return
const isForbidden = (errors || []).find((e) => e.extensions['code'] === 'FORBIDDEN')
const isProjectNotFound = (errors || []).find(
(e) => e.extensions['code'] === 'STREAM_NOT_FOUND'
)
const isModelNotFound = (errors || []).find(
(e) => e.extensions['code'] === 'BRANCH_NOT_FOUND'
)
if (isForbidden) {
return abortNavigation(
createError({
statusCode: 403,
message: 'You do not have access to this project'
})
)
}
if (isProjectNotFound) {
return abortNavigation(
createError({ statusCode: 404, message: 'Project not found' })
)
}
if (isModelNotFound) {
return abortNavigation(createError({ statusCode: 404, message: 'Model not found' }))
}
if (errors?.length) {
const errMsg = getFirstErrorMessage(errors)
return abortNavigation(errMsg)
}
})