4028f0d943
- Reordered actix-web imports to standardize import order - Reordered crate module imports to follow alphabetical ordering - Updated function calls to use multi-line formatting for better readability - Standardized blank lines around documentation comments - Applied consistent formatting to response handling methods - Normalized import organization across all repository-related API files - Improved code consistency and maintainability through standardized formatting - Applied formatting updates to all repository endpoint implementations
54 lines
1.7 KiB
Rust
54 lines
1.7 KiB
Rust
use actix_web::{HttpResponse, web};
|
|
use serde::Deserialize;
|
|
use utoipa::IntoParams;
|
|
|
|
use crate::api::response::{ApiErrorResponse, ApiResponse};
|
|
use crate::error::AppError;
|
|
use crate::service::AppService;
|
|
use crate::session::Session;
|
|
|
|
#[derive(Debug, Deserialize, IntoParams)]
|
|
pub struct PathParams {
|
|
/// Session ID (UUID)
|
|
pub session_id: uuid::Uuid,
|
|
}
|
|
|
|
/// Revoke a user session
|
|
///
|
|
/// Immediately terminates a specific session belonging to the authenticated user.
|
|
/// Requires authentication.
|
|
///
|
|
/// Effects:
|
|
/// - Session is marked as revoked
|
|
/// - Session can no longer be used for authentication
|
|
/// - Active connections using this session are disconnected
|
|
///
|
|
/// Returns success message on completion.
|
|
#[utoipa::path(
|
|
delete,
|
|
path = "/api/v1/user/security/sessions/{session_id}",
|
|
tag = "User",
|
|
operation_id = "userRevokeSession",
|
|
params(PathParams),
|
|
responses(
|
|
(status = 200, description = "Session revoked successfully.", body = ApiResponse<String>),
|
|
(status = 401, description = "Authentication required or session expired", body = ApiErrorResponse),
|
|
(status = 404, description = "Session not found or already revoked", body = ApiErrorResponse),
|
|
(status = 500, description = "Internal server error", body = ApiErrorResponse),
|
|
),
|
|
security(
|
|
("session_cookie" = [])
|
|
)
|
|
)]
|
|
pub async fn revoke_session(
|
|
service: web::Data<AppService>,
|
|
session: Session,
|
|
path: web::Path<PathParams>,
|
|
) -> Result<HttpResponse, AppError> {
|
|
service
|
|
.user
|
|
.user_revoke_session(&session, path.session_id)
|
|
.await?;
|
|
Ok(HttpResponse::Ok().json(ApiResponse::new("Session revoked successfully".to_string())))
|
|
}
|