- Introduced helpers.LoadTemplateFiles() for consistent layout + topbar rendering - Replaced repeated template.ParseFiles() calls across handlers - Created generic RenderError(w, r, statusCode) helper - Replaced old Render403 with flexible RenderError - Updated AdminOnly middleware to render 403 errors with context - Added 500.html template for graceful panic fallback - Prepared structure for future error codes (404, 429, etc.)
93 lines
2.4 KiB
Go
93 lines
2.4 KiB
Go
package handlers
|
|
|
|
import (
|
|
"database/sql"
|
|
"log"
|
|
"net/http"
|
|
"synlotto-website/helpers"
|
|
"synlotto-website/middleware"
|
|
"synlotto-website/models"
|
|
)
|
|
|
|
type AdminLogEntry struct {
|
|
AccessedAt string
|
|
UserID int
|
|
Path string
|
|
IP string
|
|
UserAgent string
|
|
}
|
|
|
|
func AdminAccessLogHandler(db *sql.DB) http.HandlerFunc {
|
|
return middleware.Auth(true)(func(w http.ResponseWriter, r *http.Request) {
|
|
context := helpers.TemplateContext(w, r, models.TemplateData{})
|
|
|
|
rows, err := db.Query(`
|
|
SELECT accessed_at, user_id, path, ip, user_agent
|
|
FROM admin_access_log
|
|
ORDER BY accessed_at DESC
|
|
LIMIT 100
|
|
`)
|
|
if err != nil {
|
|
log.Println("⚠️ Failed to load admin access logs:", err)
|
|
http.Error(w, "Error loading logs", http.StatusInternalServerError)
|
|
return
|
|
}
|
|
defer rows.Close()
|
|
|
|
var logs []AdminLogEntry
|
|
for rows.Next() {
|
|
var entry AdminLogEntry
|
|
if err := rows.Scan(&entry.AccessedAt, &entry.UserID, &entry.Path, &entry.IP, &entry.UserAgent); err != nil {
|
|
log.Println("⚠️ Scan failed:", err)
|
|
continue
|
|
}
|
|
logs = append(logs, entry)
|
|
}
|
|
context["AuditLogs"] = logs
|
|
|
|
tmpl := helpers.LoadTemplateFiles("access_log.html", "templates/admin/logs/access_log.html")
|
|
|
|
_ = tmpl.ExecuteTemplate(w, "layout", context)
|
|
})
|
|
}
|
|
|
|
func AuditLogHandler(db *sql.DB) http.HandlerFunc {
|
|
return middleware.Auth(true)(func(w http.ResponseWriter, r *http.Request) {
|
|
context := helpers.TemplateContext(w, r, models.TemplateData{})
|
|
|
|
rows, err := db.Query(`
|
|
SELECT timestamp, user_id, action, ip, user_agent
|
|
FROM audit_log
|
|
ORDER BY timestamp DESC
|
|
LIMIT 100
|
|
`)
|
|
if err != nil {
|
|
log.Println("❌ Failed to load audit log:", err)
|
|
http.Error(w, "Could not load audit log", http.StatusInternalServerError)
|
|
return
|
|
}
|
|
defer rows.Close()
|
|
|
|
var logs []models.AuditEntry
|
|
for rows.Next() {
|
|
var entry models.AuditEntry
|
|
err := rows.Scan(&entry.Timestamp, &entry.UserID, &entry.Action, &entry.IP, &entry.UserAgent)
|
|
if err != nil {
|
|
log.Println("⚠️ Failed to scan row:", err)
|
|
continue
|
|
}
|
|
logs = append(logs, entry)
|
|
}
|
|
|
|
context["AuditLogs"] = logs
|
|
|
|
tmpl := helpers.LoadTemplateFiles("audit.html", "templates/admin/logs/audit.html")
|
|
|
|
err = tmpl.ExecuteTemplate(w, "layout", context)
|
|
if err != nil {
|
|
log.Println("❌ Failed to render audit page:", err)
|
|
http.Error(w, "Template error", http.StatusInternalServerError)
|
|
}
|
|
})
|
|
}
|