Compare commits

...

8 Commits

8 changed files with 44 additions and 36 deletions

View File

@@ -292,11 +292,11 @@ const mqttOptions = {
clientId: 'express_mqtt_client_' + Math.random().toString(16).substr(2, 8), clientId: 'express_mqtt_client_' + Math.random().toString(16).substr(2, 8),
clean: true, clean: true,
connectTimeout: 4000, connectTimeout: 4000,
username: '', // jika ada username: 'morekmorekmorek', // jika ada
password: '', // jika ada password: 'morek888', // jika ada
}; };
const mqttUrl = 'ws://localhost:1884'; // Ganti dengan broker kamu const mqttUrl = 'ws://117.102.231.130:7001'; // Ganti dengan broker kamu
const topic = process.env.TOPIC_COD ?? 'morek'; const topic = process.env.TOPIC_COD ?? 'morek';
const mqttClient = mqtt.connect(mqttUrl, mqttOptions); const mqttClient = mqtt.connect(mqttUrl, mqttOptions);

View File

@@ -32,11 +32,15 @@ const getNotificationErrorLogByIdDb = async (id) => {
const getNotificationErrorLogByNotificationErrorIdDb = async (notificationErrorId) => { const getNotificationErrorLogByNotificationErrorIdDb = async (notificationErrorId) => {
const queryText = ` const queryText = `
SELECT SELECT
a.*, a.notification_error_log_description,
b.contact_name, a.created_at,
b.contact_type b.contact_type,
c.user_fullname as created_by_name,
case when a.created_by is not null then c.user_fullname else b.contact_name end as contact_name,
case when a.created_by is not null then c.user_phone else a.contact_phone end as contact_phone
FROM notification_error_log a FROM notification_error_log a
LEFT JOIN contact b ON a.contact_phone = b.contact_phone LEFT JOIN contact b ON a.contact_phone = b.contact_phone
LEFT JOIN m_users c ON a.created_by = c.user_id
WHERE a.notification_error_id = $1 AND a.deleted_at IS NULL WHERE a.notification_error_id = $1 AND a.deleted_at IS NULL
ORDER BY a.created_at DESC ORDER BY a.created_at DESC
`; `;

View File

@@ -1,6 +1,10 @@
const { ErrorHandler } = require("../helpers/error"); const { ErrorHandler } = require("../helpers/error");
const { getUserByIdDb } = require("../db/user.db"); const { getUserByIdDb } = require("../db/user.db");
function isPhoneNumberID(phone) {
return /^(?:\+62|62|0)8[1-9][0-9]{6,10}$/.test(phone);
}
const verifyAccess = (minLevel = 1, allowUnapprovedReadOnly = false) => { const verifyAccess = (minLevel = 1, allowUnapprovedReadOnly = false) => {
return async (req, res, next) => { return async (req, res, next) => {
try { try {
@@ -11,21 +15,31 @@ const verifyAccess = (minLevel = 1, allowUnapprovedReadOnly = false) => {
// Super Admin bypass semua // Super Admin bypass semua
if (user.is_sa) return next(); if (user.is_sa) return next();
const fullUser = await getUserByIdDb(user.user_id);
if (!fullUser) throw new ErrorHandler(403, "Forbidden: User not found");
if (!fullUser.is_approve) { if (!isPhoneNumberID(user.user_id) && user.user_id) {
if (req.method !== "GET") { const fullUser = await getUserByIdDb(user.user_id);
throw new ErrorHandler(403, "Account not approved — read-only access"); if (!fullUser) throw new ErrorHandler(403, "Forbidden: User not found");
if (!fullUser.is_approve) {
if (req.method !== "GET") {
throw new ErrorHandler(403, "Account not approved — read-only access");
}
if (allowUnapprovedReadOnly) return next();
throw new ErrorHandler(403, "Account not approved");
} }
if (allowUnapprovedReadOnly) return next(); if (!fullUser.role_level || fullUser.role_level < minLevel) {
throw new ErrorHandler(403, "Forbidden: Insufficient role level");
}
} else {
if (req.method !== 'GET' && req.baseUrl !== '/api/notification-log') {
if (req.baseUrl !== '/api/notification') {
throw new ErrorHandler(403, "Forbidden: Insufficient Access");
}
}
throw new ErrorHandler(403, "Account not approved");
}
if (!fullUser.role_level || fullUser.role_level < minLevel) {
throw new ErrorHandler(403, "Forbidden: Insufficient role level");
} }
next(); next();

View File

@@ -26,7 +26,7 @@ router
.get(verifyToken.verifyAccessToken, NotificationErrorController.getById) .get(verifyToken.verifyAccessToken, NotificationErrorController.getById)
.put( .put(
verifyToken.verifyAccessToken, verifyToken.verifyAccessToken,
// verifyAccess(), verifyAccess(),
NotificationErrorController.update NotificationErrorController.update
); );

View File

@@ -9,7 +9,7 @@ router.route("/")
.get(verifyToken.verifyAccessToken, NotificationErrorLogController.getAll) .get(verifyToken.verifyAccessToken, NotificationErrorLogController.getAll)
.post( .post(
verifyToken.verifyAccessToken, verifyToken.verifyAccessToken,
// verifyAccess(), verifyAccess(),
NotificationErrorLogController.create); NotificationErrorLogController.create);
router.route("/:id") router.route("/:id")

View File

@@ -119,17 +119,6 @@ class ErrorCodeService {
try { try {
if (!data || typeof data !== "object") data = {}; if (!data || typeof data !== "object") data = {};
if (
!data.solution ||
!Array.isArray(data.solution) ||
data.solution.length === 0
) {
throw new ErrorHandler(
400,
"Error code must have at least 1 solution"
);
}
const errorId = await createErrorCodeDb(brandId, { const errorId = await createErrorCodeDb(brandId, {
error_code: data.error_code, error_code: data.error_code,
error_code_name: data.error_code_name, error_code_name: data.error_code_name,

View File

@@ -69,7 +69,7 @@ class NotifikasiWaService {
const tokenRedirect = await generateTokenRedirect( const tokenRedirect = await generateTokenRedirect(
dataUser.userPhone, dataUser.userPhone,
dataUser.userName, dataUser.userName,
dataUser.idData resultNotificationError.notification_error_id
); );
const encodedToken = encodeURIComponent(tokenRedirect); const encodedToken = encodeURIComponent(tokenRedirect);

View File

@@ -31,11 +31,12 @@ const insertErrorCodeSchema = Joi.object({
is_active: Joi.boolean().default(true), is_active: Joi.boolean().default(true),
solution: Joi.array() solution: Joi.array()
.items(solutionSchema) .items(solutionSchema)
.min(1) .optional(),
.required() // .min(1)
.messages({ // .required()
"array.min": "Error code must have at least 1 solution", // .messages({
}), // "array.min": "Error code must have at least 1 solution",
// }),
spareparts: Joi.array() spareparts: Joi.array()
.items(Joi.number().integer()) .items(Joi.number().integer())
.optional(), .optional(),