const express = require('express'); const { auth } = require('express-openid-connect'); const cors = require('cors'); require('dotenv').config(); const app = express(); app.use(cors({ origin: 'http://localhost:3000', credentials: true, methods: ['GET', 'POST', 'OPTIONS'], allowedHeaders: ['Content-Type', 'Authorization'] })); const config = { authRequired: false, auth0Logout: true, secret: process.env.AUTH0_SECRET, baseURL: 'http://localhost:3001', clientID: process.env.AUTH0_CLIENT_ID, issuerBaseURL: 'https://dev-a3o2jif0.us.auth0.com', clientSecret: process.env.AUTH0_CLIENT_SECRET, routes: { callback: '/callback' }, authorizationParams: { response_type: 'code', scope: 'openid profile email' } }; app.use(auth(config)); // Auth endpoints app.post('/api/auth/login', (req, res) => { try { const returnToUrl = 'http://localhost:3000'; const loginUrl = `${config.issuerBaseURL}/authorize?` + `client_id=${config.clientID}&` + `redirect_uri=${encodeURIComponent(config.baseURL + '/callback')}&` + `response_type=code&` + `scope=${encodeURIComponent(config.authorizationParams.scope)}&` + `state=${encodeURIComponent(JSON.stringify({ returnTo: returnToUrl }))}`; res.json({ loginUrl }); } catch (error) { console.error('Login error:', error); res.status(500).json({ error: 'Login failed' }); } }); // Callback handler app.get('/callback', (req, res) => { const returnTo = req.oidc.state?.returnTo || 'http://localhost:3000'; res.redirect(returnTo); }); app.get('/api/auth/user', (req, res) => { try { if (req.oidc.isAuthenticated()) { res.json(req.oidc.user); } else { res.json(null); } } catch (error) { console.error('User fetch error:', error); res.status(500).json({ error: 'Failed to get user' }); } }); app.post('/api/auth/logout', (req, res) => { try { const returnToUrl = 'http://localhost:3000'; res.oidc.logout({ returnTo: returnToUrl }); } catch (error) { console.error('Logout error:', error); res.status(500).json({ error: 'Logout failed' }); } }); // Error handling middleware app.use((err, req, res, next) => { console.error('Server error:', err); res.status(500).json({ error: 'Internal server error' }); }); const port = process.env.PORT || 3001; app.listen(port, () => { console.log(`Server running on port ${port}`); });