🧑💻 Address PR comments
This commit is contained in:
@@ -2,26 +2,31 @@ import Consola from 'consola';
|
|||||||
import { NextApiRequest, NextApiResponse } from 'next';
|
import { NextApiRequest, NextApiResponse } from 'next';
|
||||||
|
|
||||||
function Post(req: NextApiRequest, res: NextApiResponse) {
|
function Post(req: NextApiRequest, res: NextApiResponse) {
|
||||||
const { tried } = req.body;
|
const { tried, type = 'password' } = req.body;
|
||||||
// Try to match the password with the PASSWORD env variable
|
// If the type of password is "edit", we run this branch to check the edit password
|
||||||
if (tried === process.env.PASSWORD) {
|
if (type === 'edit') {
|
||||||
|
if (tried === process.env.EDIT_MODE_PASSWORD) {
|
||||||
|
process.env.DISABLE_EDIT_MODE = process.env.DISABLE_EDIT_MODE === 'true' ? 'false' : 'true';
|
||||||
|
return res.status(200).json({
|
||||||
|
success: true,
|
||||||
|
});
|
||||||
|
}
|
||||||
|
} else if (tried === process.env.PASSWORD) {
|
||||||
return res.status(200).json({
|
return res.status(200).json({
|
||||||
success: true,
|
success: true,
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
// Warn that there was a wrong password attempt (date : wrong password, person's IP)
|
|
||||||
Consola.warn(
|
Consola.warn(
|
||||||
`${new Date().toLocaleString()} : Wrong password attempt, from ${
|
`${new Date().toLocaleString()} : Wrong password attempt, from ${
|
||||||
req.headers['x-forwarded-for']
|
req.headers['x-forwarded-for']
|
||||||
}`
|
}`
|
||||||
);
|
);
|
||||||
return res.status(200).json({
|
return res.status(401).json({
|
||||||
success: false,
|
success: false,
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
|
|
||||||
export default async (req: NextApiRequest, res: NextApiResponse) => {
|
export default async (req: NextApiRequest, res: NextApiResponse) => {
|
||||||
// Filter out if the request is a POST or a GET
|
|
||||||
if (req.method === 'POST') {
|
if (req.method === 'POST') {
|
||||||
return Post(req, res);
|
return Post(req, res);
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user