-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathauth.ts
50 lines (44 loc) · 1.79 KB
/
auth.ts
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
import NextAuth from "next-auth";
import { authConfig } from "./auth.config";
import Credentials from "next-auth/providers/credentials";
import { z } from "zod";
import { sql } from "@vercel/postgres";
import type { User } from "@/app/lib/definitions";
import bcrypt from "bcrypt";
/**
* 导出一个解构导出一个定制化的NextAuth对象,在其他地方引用,结构出来的函数在具体的功能页面发挥作用,
* eg: signIn 函数在登陆页面、signOut 函数在推出页面
*/
//{...authConfig} 在 TypeScript 或 JavaScript 中,{ ...authConfig }
//使用了 对象展开语法(spread syntax),它的作用是将一个对象的属性展开(复制)到另一个对象中
export const { auth, signIn, signOut } = NextAuth({
...authConfig,
providers: [
Credentials({
async authorize(credentials) {
const parsedCredentials = z
.object({ email: z.string().email(), password: z.string().min(6) })
.safeParse(credentials);
if (parsedCredentials.success) {
const { email, password } = parsedCredentials.data;
const user = await getUser(email);
if (!user) return null;
const passwordsMatch = await bcrypt.compare(password, user.password);
if (passwordsMatch) return user;
}
console.log("Invalid credentials");
//返回null的话错误信息会抛出到页面,所以调用登陆的地方需要try catch 处理错误信息
return null;
},
}),
],
});
async function getUser(email: string): Promise<User | undefined> {
try {
const user = await sql<User>`SELECT * FROM users WHERE email=${email}`;
return user.rows[0];
} catch (error) {
console.error("Failed to fetch user:", error);
throw new Error("Failed to fetch user.");
}
}