add admin check
This commit is contained in:
@@ -7,6 +7,8 @@ from jwt import InvalidTokenError
|
||||
from src.core.auth_manager import AuthManager
|
||||
from src.core.settings import settings
|
||||
from src.schemas.auth import TokenData
|
||||
from src.services.users import UserService
|
||||
from src.api.dependacies.db_dep import sessionDep
|
||||
|
||||
oauth2_scheme = OAuth2PasswordBearer(tokenUrl=f"{settings.api.v1_login_url}/login")
|
||||
|
||||
@@ -27,15 +29,21 @@ async def get_current_user(token: Annotated[str, Depends(oauth2_scheme)]):
|
||||
return user
|
||||
|
||||
|
||||
CurUsr = Annotated[TokenData, Depends(get_current_user)]
|
||||
CurrentUser = Annotated[TokenData, Depends(get_current_user)]
|
||||
|
||||
|
||||
async def get_current_active_user(
|
||||
current_user: CurUsr,
|
||||
def get_current_active_user(
|
||||
current_user: CurrentUser,
|
||||
):
|
||||
if not current_user.is_active:
|
||||
raise HTTPException(status_code=400, detail="Inactive user")
|
||||
return current_user
|
||||
|
||||
|
||||
ActiveUser = Annotated[TokenData, Depends(get_current_active_user)]
|
||||
|
||||
async def get_admin_user(db: sessionDep, current_user: ActiveUser):
|
||||
await UserService(db).validate_admin_user(current_user.sub)
|
||||
return current_user
|
||||
|
||||
|
||||
ActCurUser = Annotated[TokenData, Depends(get_current_active_user)]
|
||||
AdminUser = Annotated[TokenData, Depends(get_admin_user)]
|
||||
Reference in New Issue
Block a user