* fix: Use get request instead of cookie to transfer token between domains * Add domain to database Add redirects to team domain when present * 30s -> 1m * fix: Avoid redirect loop if subdomain and domain set * fix: Create a transfer specific token to prevent replay requests * refactor: Move isCustomDomain out of shared as it won't work on the client
49 lines
1.3 KiB
JavaScript
49 lines
1.3 KiB
JavaScript
// @flow
|
|
import { observer, inject } from "mobx-react";
|
|
import * as React from "react";
|
|
import { Redirect } from "react-router-dom";
|
|
import { isCustomSubdomain } from "shared/utils/domains";
|
|
import AuthStore from "stores/AuthStore";
|
|
import LoadingIndicator from "components/LoadingIndicator";
|
|
import env from "env";
|
|
|
|
type Props = {
|
|
auth: AuthStore,
|
|
children?: React.Node,
|
|
};
|
|
|
|
const Authenticated = observer(({ auth, children }: Props) => {
|
|
if (auth.authenticated) {
|
|
const { user, team } = auth;
|
|
const { hostname } = window.location;
|
|
|
|
if (!team || !user) {
|
|
return <LoadingIndicator />;
|
|
}
|
|
|
|
// If we're authenticated but viewing a domain that doesn't match the
|
|
// current team then kick the user to the teams correct domain.
|
|
if (team.domain) {
|
|
if (team.domain !== hostname) {
|
|
window.location.href = `${team.url}${window.location.pathname}`;
|
|
return <LoadingIndicator />;
|
|
}
|
|
} else if (
|
|
env.SUBDOMAINS_ENABLED &&
|
|
team.subdomain &&
|
|
isCustomSubdomain(hostname) &&
|
|
!hostname.startsWith(`${team.subdomain}.`)
|
|
) {
|
|
window.location.href = `${team.url}${window.location.pathname}`;
|
|
return <LoadingIndicator />;
|
|
}
|
|
|
|
return children;
|
|
}
|
|
|
|
auth.logout(true);
|
|
return <Redirect to="/" />;
|
|
});
|
|
|
|
export default inject("auth")(Authenticated);
|