-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathserver.js
More file actions
98 lines (86 loc) · 2.97 KB
/
server.js
File metadata and controls
98 lines (86 loc) · 2.97 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
const express = require('express');
const mysql = require('mysql');
const bodyParser = require('body-parser');
const cors = require('cors');
const bcrypt = require('bcrypt');
const session = require('express-session');
const app = express();
app.use(cors());
app.use(bodyParser.urlencoded({ extended: true }));
app.use(bodyParser.json());
// Configure session middleware
app.use(session({
secret: 'your_secret_key',
resave: false,
saveUninitialized: true,
cookie: { secure: false } // Set to true if using HTTPS
}));
// Database connection
const db = mysql.createConnection({
host: 'localhost',
user: 'root',
password: 'Mittuanish@123',
database: 'evotin'
});
db.connect((err) => {
if (err) throw err;
console.log('Connected to database');
});
// Hashing password before storing
async function hashPassword(password) {
const saltRounds = 10;
const hashedPassword = await bcrypt.hash(password, saltRounds);
return hashedPassword;
}
// Signup endpoint
app.post('/signup', async (req, res) => {
const { username, email, password, voter_id, state } = req.body;
try {
const hashedPassword = await hashPassword(password);
const sql = 'INSERT INTO users (username, email, password_hash, voter_id, state) VALUES (?, ?, ?, ?, ?)';
db.query(sql, [username, email, hashedPassword, voter_id, state], (err, result) => {
if (err) {
console.error('Error inserting user:', err);
res.status(500).send('Failed to register user.');
} else {
res.send('Sign up successful!');
}
});
} catch (error) {
console.error('Unexpected error:', error);
res.status(500).send('Server Error');
}
});
// Login endpoint
app.post('/login', async (req, res) => {
const { email, password } = req.body;
try {
const sql = 'SELECT * FROM users WHERE email = ?';
db.query(sql, [email], async (err, results) => {
if (err) {
console.error('Error fetching user:', err);
res.status(500).send('Server Error');
} else if (results.length > 0) {
const user = results[0];
const passwordMatch = await bcrypt.compare(password, user.password_hash);
if (passwordMatch) {
req.session.username = user.username;
req.session.state = user.state;
req.session.voter_id = user.voter_id;
console.log('User data:', { name: user.username, state: user.state,voter_id: user.voter_id });
res.json({ success: true, name: user.username, state: user.state, voter_id: user.voter_id });
} else {
res.json({ success: false, message: 'Invalid email or password.' });
}
} else {
res.json({ success: false, message: 'Invalid email or password.' });
}
});
} catch (error) {
console.error('Unexpected error:', error);
res.status(500).send('Server Error');
}
});
app.listen(3000, () => {
console.log('Server running on port 3000');
});