Viewer: - Toolbar: Ctrl+Alt+Del, clipboard paste, monitor picker, file transfer, chat, WoL buttons - Multi-monitor: agent sends monitor_list on connect, viewer can switch via dropdown - Clipboard sync: agent polls local clipboard → sends to viewer; viewer paste → agent sets remote clipboard - File transfer panel: drag-drop upload to agent, directory browser, download files from remote - Chat panel: bidirectional text chat forwarded through relay Agent: - Multi-monitor capture with set_monitor/set_quality message handlers - exec_key_combo for Ctrl+Alt+Del and arbitrary combos - Clipboard polling via pyperclip (both directions) - File upload/download/list_files with base64 chunked protocol - Attended mode (--attended): zenity/kdialog/PowerShell consent dialog before accepting stream - Auto-update: heartbeat checks version, downloads new binary and exec-replaces self (Linux) - Reports MAC address on registration (for WoL) Relay: - Forwards monitor_list, clipboard_content, file_chunk, file_list, chat_message agent→viewer - Session recording: when RECORDING_DIR env set, saves JPEG frames as .remrec files - ALLOWED_ORIGINS CORS now set from NEXT_PUBLIC_APP_URL in docker-compose Database: - groups table (id, name, description, created_by) - machines: group_id, mac_address, notes, tags text[] - Migration 0003 applied Dashboard: - Machines page: search, tag filter, group filter, inline notes/tags/rename editing - MachineCard: inline tag management, group picker, notes textarea - Admin page: new Groups tab (create/list/delete groups) - API: PATCH /api/machines/[id] (name, notes, tags, groupId) - API: GET/POST/DELETE /api/groups - API: POST /api/machines/wol (broadcast magic packet) Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
65 lines
1.7 KiB
TypeScript
65 lines
1.7 KiB
TypeScript
import NextAuth from 'next-auth'
|
|
import Credentials from 'next-auth/providers/credentials'
|
|
import { db } from '@/lib/db'
|
|
import { users } from '@/lib/db/schema'
|
|
import { eq } from 'drizzle-orm'
|
|
import bcrypt from 'bcryptjs'
|
|
|
|
export const { handlers, signIn, signOut, auth } = NextAuth({
|
|
providers: [
|
|
Credentials({
|
|
credentials: {
|
|
email: { label: 'Email', type: 'email' },
|
|
password: { label: 'Password', type: 'password' },
|
|
},
|
|
authorize: async (credentials) => {
|
|
const email = credentials?.email as string
|
|
const password = credentials?.password as string
|
|
|
|
if (!email || !password) return null
|
|
|
|
const result = await db
|
|
.select()
|
|
.from(users)
|
|
.where(eq(users.email, email.toLowerCase().trim()))
|
|
.limit(1)
|
|
|
|
const user = result[0]
|
|
if (!user) return null
|
|
|
|
const valid = await bcrypt.compare(password, user.passwordHash)
|
|
if (!valid) return null
|
|
|
|
return {
|
|
id: user.id,
|
|
email: user.email,
|
|
name: user.fullName ?? user.email.split('@')[0],
|
|
role: user.role,
|
|
}
|
|
},
|
|
}),
|
|
],
|
|
callbacks: {
|
|
jwt({ token, user }) {
|
|
if (user) {
|
|
token.id = user.id ?? ''
|
|
token.role = (user as { role: string }).role
|
|
}
|
|
return token
|
|
},
|
|
session({ session, token }) {
|
|
if (session.user) {
|
|
session.user.id = token.id as string
|
|
;(session.user as { role: string }).role = token.role as string
|
|
}
|
|
return session
|
|
},
|
|
},
|
|
pages: {
|
|
signIn: '/auth/login',
|
|
error: '/auth/error',
|
|
},
|
|
session: { strategy: 'jwt' },
|
|
trustHost: true,
|
|
})
|