-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathproxy.ts
More file actions
53 lines (45 loc) · 1.35 KB
/
proxy.ts
File metadata and controls
53 lines (45 loc) · 1.35 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
import { NextRequest, NextResponse } from "next/server";
import { getIronSession } from "iron-session";
import { SessionData, sessionOptions, getSessionVersion } from "@/src/lib/auth";
export async function proxy(request: NextRequest) {
const { pathname } = request.nextUrl;
const isPublicRedirect = pathname === "/" || pathname === "/login";
if (isPublicRedirect && !request.cookies.has(sessionOptions.cookieName)) {
return NextResponse.next();
}
const response = NextResponse.next();
const session = await getIronSession<SessionData>(
request,
response,
sessionOptions,
);
const versionValid =
(session.sessionVersion ?? 1) === getSessionVersion();
if (isPublicRedirect) {
if (session.isLoggedIn && versionValid) {
return NextResponse.redirect(new URL("/admin", request.url));
}
return response;
}
if (!session.isLoggedIn || !versionValid) {
if (!versionValid) session.destroy();
if (pathname.startsWith("/api/")) {
return NextResponse.json({ error: "Unauthorized" }, { status: 401 });
}
return NextResponse.redirect(new URL("/login", request.url));
}
return response;
}
export const config = {
matcher: [
"/",
"/login",
"/admin/:path*",
"/api/photos",
"/api/photos/:path*",
"/api/links",
"/api/links/:path*",
"/api/analytics",
"/api/settings",
],
};