- added for Pacients: POST: /register POST: /login POST: /reset_password PUT: /profile DELETE: /profile - added for Doctors: POST: /register POST: /login POST: /reset_password PUT: /profile DELETE: /profile - added for MedicalHistories: POST: /:id (only by pacient) - done GET: /:id (only by pacient) - done PUT: /:id (only by doctor) - done PUT /grand_access - TODO
38 lines
1.5 KiB
C#
38 lines
1.5 KiB
C#
using Application.Services.Database;
|
|
using FluentValidation;
|
|
|
|
namespace Application.Endpoints.Pacients.Login;
|
|
|
|
public class PacientResetPasswordValidation : AbstractValidator<PacientLoginDTO>
|
|
{
|
|
private readonly IPacientRepository _pacientRepository;
|
|
|
|
public PacientResetPasswordValidation(IPacientRepository pacientRepository)
|
|
{
|
|
_pacientRepository = pacientRepository;
|
|
|
|
RuleFor(x => x.Email)
|
|
.NotEmpty().WithMessage("Email is required.")
|
|
.EmailAddress().WithMessage("Invalid email format.")
|
|
.MustAsync(BeExistingPacient).WithMessage("Pacient with this email does not exist.");
|
|
|
|
RuleFor(x => x.Password)
|
|
.NotEmpty().WithMessage("Password is required.")
|
|
.MinimumLength(8).WithMessage("Password must be at least 8 characters long.")
|
|
.MustAsync((dto, password, context, cancellationToken) => BeDifferentFromOldPassword(dto.Email, password, cancellationToken))
|
|
.WithMessage("New password cannot be the same as old password.");
|
|
}
|
|
|
|
private async Task<bool> BeExistingPacient(string email, CancellationToken cancellationToken)
|
|
{
|
|
var pacient = await _pacientRepository.FindByEmailAsync(email);
|
|
return pacient != null;
|
|
}
|
|
|
|
private async Task<bool> BeDifferentFromOldPassword(string email, string newPassword, CancellationToken cancellationToken)
|
|
{
|
|
var currentPacient = await _pacientRepository.FindByEmailAsync(email);
|
|
return !newPassword.Equals(currentPacient?.Password, StringComparison.Ordinal);
|
|
}
|
|
}
|