-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathmiddleware.ts
51 lines (42 loc) · 1.43 KB
/
middleware.ts
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
import NextAuth from 'next-auth'
import {
isApiAuthRoute,
isAuthRoute,
isPrivateRoute,
} from '@/lib/utils/route-utils'
import { redirectRoutes } from '@/routes'
import authConfig from './auth.config'
const { auth } = NextAuth(authConfig)
export default auth((req) => {
const { origin, pathname } = req.nextUrl
const isLoggedIn = !!req.auth
try {
// Allow API authentication routes
if (isApiAuthRoute(pathname)) {
return undefined // Let API routes pass
}
// Handle authentication routes (e.g., login, register)
if (isAuthRoute(pathname)) {
return isLoggedIn
? Response.redirect(new URL(redirectRoutes.authenticated, origin)) // Redirect authenticated users
: undefined // Allow unauthenticated users
}
// Protect private routes
if (isPrivateRoute(pathname) && !isLoggedIn) {
return Response.redirect(new URL(redirectRoutes.login, origin)) // Redirect unauthenticated users
}
// Allow all other requests
return undefined
} catch (error) {
console.error('Middleware Error:', error)
return new Response('Internal Server Error', { status: 500 })
}
})
export const config = {
matcher: [
// Skip Next.js internals and all static files, unless found in search params
'/((?!_next|[^?]*\\.(?:html?|css|js(?!on)|jpe?g|webp|png|gif|svg|ttf|woff2?|ico|csv|docx?|xlsx?|zip|webmanifest)).*)',
// Always run for API routes
'/(api|trpc)(.*)',
],
}