Compare commits

...

7 Commits

Author SHA1 Message Date
436ea1cf89 replace created at in notif error 2026-01-09 14:30:07 +07:00
8e0dc4bb88 fixing token redirect 2026-01-09 11:06:05 +07:00
b680a249d5 connect mqtt ws colo 2026-01-08 15:07:47 +07:00
b1cf4ff624 optional solution error code 2026-01-08 14:32:43 +07:00
747a96ac30 fixing verify token redirect 2026-01-08 14:17:11 +07:00
026a88a9a9 remove validation at least 1 solution 2026-01-08 13:16:13 +07:00
4d2c18edfb fixing verify access 2026-01-08 12:16:16 +07:00
10 changed files with 53 additions and 40 deletions

View File

@@ -292,11 +292,11 @@ const mqttOptions = {
clientId: 'express_mqtt_client_' + Math.random().toString(16).substr(2, 8),
clean: true,
connectTimeout: 4000,
username: '', // jika ada
password: '', // jika ada
username: 'morekmorekmorek', // jika ada
password: 'morek888', // jika ada
};
const mqttUrl = 'ws://localhost:1884'; // Ganti dengan broker kamu
const mqttUrl = 'ws://117.102.231.130:7001'; // Ganti dengan broker kamu
const topic = process.env.TOPIC_COD ?? 'morek';
const mqttClient = mqtt.connect(mqttUrl, mqttOptions);

View File

@@ -104,6 +104,8 @@ class AuthController {
const bytes = CryptoJS.AES.decrypt(tokenRedirect, process.env.VITE_KEY_SESSION);
const decrypted = JSON.parse(bytes.toString(CryptoJS.enc.Utf8));
console.log("decrypted: ", decrypted);
const userPhone = decrypted?.user_phone
const userName = decrypted?.user_name
const idData = decrypted?.id

View File

@@ -95,7 +95,8 @@ const getAllNotificationDb = async (searchParams = {}) => {
],
queryParams
);
if (whereParamAnd) queryParams = whereParamAnd;
queryParams = whereParamAnd ? whereParamAnd : queryParams;
const queryText = `
SELECT
@@ -108,12 +109,12 @@ const getAllNotificationDb = async (searchParams = {}) => {
a.is_delivered,
a.is_read,
a.is_active,
a.created_at,
b.error_code,
b.error_code_name,
b.error_code_color,
b.path_icon,
b.created_at,
c.solution_name,
c.type_solution,

View File

@@ -32,11 +32,15 @@ const getNotificationErrorLogByIdDb = async (id) => {
const getNotificationErrorLogByNotificationErrorIdDb = async (notificationErrorId) => {
const queryText = `
SELECT
a.*,
b.contact_name,
b.contact_type
a.notification_error_log_description,
a.created_at,
b.contact_type,
c.user_fullname as created_by_name,
case when a.created_by is not null then c.user_fullname else b.contact_name end as contact_name,
case when a.created_by is not null then c.user_phone else a.contact_phone end as contact_phone
FROM notification_error_log a
LEFT JOIN contact b ON a.contact_phone = b.contact_phone
LEFT JOIN m_users c ON a.created_by = c.user_id
WHERE a.notification_error_id = $1 AND a.deleted_at IS NULL
ORDER BY a.created_at DESC
`;

View File

@@ -1,6 +1,10 @@
const { ErrorHandler } = require("../helpers/error");
const { getUserByIdDb } = require("../db/user.db");
function isPhoneNumberID(phone) {
return /^(?:\+62|62|0)8[1-9][0-9]{6,10}$/.test(phone);
}
const verifyAccess = (minLevel = 1, allowUnapprovedReadOnly = false) => {
return async (req, res, next) => {
try {
@@ -11,6 +15,8 @@ const verifyAccess = (minLevel = 1, allowUnapprovedReadOnly = false) => {
// Super Admin bypass semua
if (user.is_sa) return next();
if (!isPhoneNumberID(user.user_id) && user.user_id) {
const fullUser = await getUserByIdDb(user.user_id);
if (!fullUser) throw new ErrorHandler(403, "Forbidden: User not found");
@@ -27,6 +33,14 @@ const verifyAccess = (minLevel = 1, allowUnapprovedReadOnly = false) => {
if (!fullUser.role_level || fullUser.role_level < minLevel) {
throw new ErrorHandler(403, "Forbidden: Insufficient role level");
}
} else {
if (req.method !== 'GET' && req.baseUrl !== '/api/notification-log') {
if (req.baseUrl !== '/api/notification') {
throw new ErrorHandler(403, "Forbidden: Insufficient Access");
}
}
}
next();
} catch (err) {

View File

@@ -26,7 +26,7 @@ router
.get(verifyToken.verifyAccessToken, NotificationErrorController.getById)
.put(
verifyToken.verifyAccessToken,
// verifyAccess(),
verifyAccess(),
NotificationErrorController.update
);

View File

@@ -9,7 +9,7 @@ router.route("/")
.get(verifyToken.verifyAccessToken, NotificationErrorLogController.getAll)
.post(
verifyToken.verifyAccessToken,
// verifyAccess(),
verifyAccess(),
NotificationErrorLogController.create);
router.route("/:id")

View File

@@ -119,17 +119,6 @@ class ErrorCodeService {
try {
if (!data || typeof data !== "object") data = {};
if (
!data.solution ||
!Array.isArray(data.solution) ||
data.solution.length === 0
) {
throw new ErrorHandler(
400,
"Error code must have at least 1 solution"
);
}
const errorId = await createErrorCodeDb(brandId, {
error_code: data.error_code,
error_code_name: data.error_code_name,

View File

@@ -67,9 +67,9 @@ class NotifikasiWaService {
for (const dataUser of dataUsers) {
if (dataUser.is_active) {
const tokenRedirect = await generateTokenRedirect(
dataUser.userPhone,
dataUser.userName,
dataUser.idData
dataUser.contact_phone,
dataUser.contact_name,
resultNotificationError.notification_error_id
);
const encodedToken = encodeURIComponent(tokenRedirect);
@@ -105,6 +105,8 @@ class NotifikasiWaService {
param.bodyMessage
);
console.log("resultSend: ", resultSend);
await updateNotificationErrorUserDb(
resultNotificationErrorUser[0].notification_error_user_id,
{

View File

@@ -31,11 +31,12 @@ const insertErrorCodeSchema = Joi.object({
is_active: Joi.boolean().default(true),
solution: Joi.array()
.items(solutionSchema)
.min(1)
.required()
.messages({
"array.min": "Error code must have at least 1 solution",
}),
.optional(),
// .min(1)
// .required()
// .messages({
// "array.min": "Error code must have at least 1 solution",
// }),
spareparts: Joi.array()
.items(Joi.number().integer())
.optional(),