aboutsummaryrefslogtreecommitdiff
path: root/src/Web/DevHive.Web/Controllers/CommentController.cs
blob: 8fa3577a3b787b01edb03590703477efde5a579b (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
using System.Threading.Tasks;
using Microsoft.AspNetCore.Mvc;
using AutoMapper;
using System;
using DevHive.Web.Models.Comment;
using DevHive.Services.Models.Comment;
using Microsoft.AspNetCore.Authorization;
using DevHive.Services.Interfaces;
using DevHive.Common.Jwt.Interfaces;

namespace DevHive.Web.Controllers
{
	/// <summary>
	/// All endpoints for interacting with the comments layer
	/// </summary>
	[ApiController]
	[Route("/api/[controller]")]
	[Authorize(Roles = "User,Admin")]
	public class CommentController
	{
		private readonly ICommentService _commentService;
		private readonly IMapper _commentMapper;
		private readonly IJwtService _jwtService;

		public CommentController(ICommentService commentService, IMapper commentMapper, IJwtService jwtService)
		{
			this._commentService = commentService;
			this._commentMapper = commentMapper;
			this._jwtService = jwtService;
		}

		/// <summary>
		/// Create a comment and attach it to a post
		/// </summary>
		/// <param name="userId">The useer's Id</param>
		/// <param name="createCommentWebModel">The new comment's parametars</param>
		/// <param name="authorization">JWT Bearer token</param>
		/// <returns>The comment's Id</returns>
		[HttpPost]
		public async Task<IActionResult> AddComment(Guid userId, [FromBody] CreateCommentWebModel createCommentWebModel, [FromHeader] string authorization)
		{
			if (!this._jwtService.ValidateToken(userId, authorization))
				return new UnauthorizedResult();

			if (!await this._commentService.ValidateJwtForCreating(userId, authorization))
				return new UnauthorizedResult();

			CreateCommentServiceModel createCommentServiceModel =
				this._commentMapper.Map<CreateCommentServiceModel>(createCommentWebModel);
			createCommentServiceModel.CreatorId = userId;

			Guid id = await this._commentService.AddComment(createCommentServiceModel);

			return id == Guid.Empty ?
				new BadRequestObjectResult("Could not create comment!") :
				new OkObjectResult(new { Id = id });
		}

		/// <summary>
		/// Query comment's data by it's Id
		/// </summary>
		/// <param name="commentId">The comment's Id</param>
		/// <returns>Full data model of the comment</returns>
		[HttpGet]
		[AllowAnonymous]
		public async Task<IActionResult> GetCommentById(Guid commentId)
		{
			ReadCommentServiceModel readCommentServiceModel = await this._commentService.GetCommentById(commentId);
			ReadCommentWebModel readCommentWebModel = this._commentMapper.Map<ReadCommentWebModel>(readCommentServiceModel);

			return new OkObjectResult(readCommentWebModel);
		}

		/// <summary>
		/// Update comment's parametars. Comment creator only!
		/// </summary>
		/// <param name="userId">The comment creator's Id</param>
		/// <param name="updateCommentWebModel">New comment's parametars</param>
		/// <param name="authorization">JWT Bearer token</param>
		/// <returns>Ok result</returns>
		[HttpPut]
		public async Task<IActionResult> UpdateComment(Guid userId, [FromBody] UpdateCommentWebModel updateCommentWebModel, [FromHeader] string authorization)
		{
			if (!this._jwtService.ValidateToken(userId, authorization))
				return new UnauthorizedResult();

			UpdateCommentServiceModel updateCommentServiceModel =
				this._commentMapper.Map<UpdateCommentServiceModel>(updateCommentWebModel);
			updateCommentServiceModel.CreatorId = userId;

			Guid id = await this._commentService.UpdateComment(updateCommentServiceModel);

			return id == Guid.Empty ?
				new BadRequestObjectResult("Unable to update comment!") :
				new OkObjectResult(new { Id = id });
		}

		/// <summary>
		/// Delete a comment. Comment creator only!
		/// </summary>
		/// <param name="commentId">Comment's Id</param>
		/// <param name="authorization">JWT Bearer token</param>
		/// <returns>Ok result</returns>
		[HttpDelete]
		public async Task<IActionResult> DeleteComment(Guid commentId, [FromHeader] string authorization)
		{
			if (!await this._commentService.ValidateJwtForComment(commentId, authorization))
				return new UnauthorizedResult();

			return await this._commentService.DeleteComment(commentId) ?
				new OkResult() :
				new BadRequestObjectResult("Could not delete Comment");
		}
	}
}