feat: API 인증 시스템 구현 및 로그인 화면 연동

- AuthService, AuthRemoteDataSource 구현
- JWT 토큰 관리 (SecureStorage 사용)
- 로그인 화면 API 연동 및 에러 처리
- freezed 패키지로 Auth 관련 DTO 모델 생성
- 의존성 주입 설정 업데이트
This commit is contained in:
JiWoong Sul
2025-07-24 15:14:53 +09:00
parent 2b31d3af5f
commit c573096d84
26 changed files with 2063 additions and 59 deletions

View File

@@ -0,0 +1,221 @@
import 'dart:async';
import 'dart:convert';
import 'package:dartz/dartz.dart';
import 'package:flutter_secure_storage/flutter_secure_storage.dart';
import 'package:injectable/injectable.dart';
import 'package:superport/core/errors/failures.dart';
import 'package:superport/data/datasources/remote/auth_remote_datasource.dart';
import 'package:superport/data/models/auth/auth_user.dart';
import 'package:superport/data/models/auth/login_request.dart';
import 'package:superport/data/models/auth/login_response.dart';
import 'package:superport/data/models/auth/logout_request.dart';
import 'package:superport/data/models/auth/refresh_token_request.dart';
import 'package:superport/data/models/auth/token_response.dart';
abstract class AuthService {
Future<Either<Failure, LoginResponse>> login(LoginRequest request);
Future<Either<Failure, void>> logout();
Future<Either<Failure, TokenResponse>> refreshToken();
Future<bool> isLoggedIn();
Future<AuthUser?> getCurrentUser();
Future<String?> getAccessToken();
Future<String?> getRefreshToken();
Future<void> clearSession();
Stream<bool> get authStateChanges;
}
@LazySingleton(as: AuthService)
class AuthServiceImpl implements AuthService {
final AuthRemoteDataSource _authRemoteDataSource;
final FlutterSecureStorage _secureStorage;
static const String _accessTokenKey = 'access_token';
static const String _refreshTokenKey = 'refresh_token';
static const String _userKey = 'user';
static const String _tokenExpiryKey = 'token_expiry';
final _authStateController = StreamController<bool>.broadcast();
AuthServiceImpl(
this._authRemoteDataSource,
this._secureStorage,
);
@override
Future<Either<Failure, LoginResponse>> login(LoginRequest request) async {
try {
final result = await _authRemoteDataSource.login(request);
return await result.fold(
(failure) async => Left(failure),
(loginResponse) async {
// 토큰 및 사용자 정보 저장
await _saveTokens(
loginResponse.accessToken,
loginResponse.refreshToken,
loginResponse.expiresIn,
);
await _saveUser(loginResponse.user);
// 인증 상태 변경 알림
_authStateController.add(true);
return Right(loginResponse);
},
);
} catch (e) {
return Left(ServerFailure(message: '로그인 처리 중 오류가 발생했습니다.'));
}
}
@override
Future<Either<Failure, void>> logout() async {
try {
final refreshToken = await getRefreshToken();
if (refreshToken != null) {
final request = LogoutRequest(refreshToken: refreshToken);
await _authRemoteDataSource.logout(request);
}
await clearSession();
_authStateController.add(false);
return const Right(null);
} catch (e) {
// 로그아웃 API 실패 시에도 로컬 세션은 정리
await clearSession();
_authStateController.add(false);
return const Right(null);
}
}
@override
Future<Either<Failure, TokenResponse>> refreshToken() async {
try {
final refreshToken = await getRefreshToken();
if (refreshToken == null) {
return Left(AuthenticationFailure(
message: '리프레시 토큰이 없습니다. 다시 로그인해주세요.',
));
}
final request = RefreshTokenRequest(refreshToken: refreshToken);
final result = await _authRemoteDataSource.refreshToken(request);
return await result.fold(
(failure) async {
// 토큰 갱신 실패 시 세션 정리
await clearSession();
_authStateController.add(false);
return Left(failure);
},
(tokenResponse) async {
// 새 토큰 저장
await _saveTokens(
tokenResponse.accessToken,
tokenResponse.refreshToken,
tokenResponse.expiresIn,
);
return Right(tokenResponse);
},
);
} catch (e) {
return Left(ServerFailure(message: '토큰 갱신 중 오류가 발생했습니다.'));
}
}
@override
Future<bool> isLoggedIn() async {
try {
final accessToken = await getAccessToken();
if (accessToken == null) return false;
// 토큰 만료 확인
final expiryStr = await _secureStorage.read(key: _tokenExpiryKey);
if (expiryStr != null) {
final expiry = DateTime.parse(expiryStr);
if (DateTime.now().isAfter(expiry)) {
// 토큰이 만료되었으면 갱신 시도
final refreshResult = await refreshToken();
return refreshResult.isRight();
}
}
return true;
} catch (e) {
return false;
}
}
@override
Future<AuthUser?> getCurrentUser() async {
try {
final userStr = await _secureStorage.read(key: _userKey);
if (userStr == null) return null;
final userJson = jsonDecode(userStr);
return AuthUser.fromJson(userJson);
} catch (e) {
return null;
}
}
@override
Future<String?> getAccessToken() async {
try {
return await _secureStorage.read(key: _accessTokenKey);
} catch (e) {
return null;
}
}
@override
Future<String?> getRefreshToken() async {
try {
return await _secureStorage.read(key: _refreshTokenKey);
} catch (e) {
return null;
}
}
@override
Future<void> clearSession() async {
try {
await _secureStorage.delete(key: _accessTokenKey);
await _secureStorage.delete(key: _refreshTokenKey);
await _secureStorage.delete(key: _userKey);
await _secureStorage.delete(key: _tokenExpiryKey);
} catch (e) {
// 에러가 발생해도 계속 진행
}
}
@override
Stream<bool> get authStateChanges => _authStateController.stream;
Future<void> _saveTokens(
String accessToken,
String refreshToken,
int expiresIn,
) async {
await _secureStorage.write(key: _accessTokenKey, value: accessToken);
await _secureStorage.write(key: _refreshTokenKey, value: refreshToken);
// 토큰 만료 시간 저장 (현재 시간 + expiresIn 초)
final expiry = DateTime.now().add(Duration(seconds: expiresIn));
await _secureStorage.write(
key: _tokenExpiryKey,
value: expiry.toIso8601String(),
);
}
Future<void> _saveUser(AuthUser user) async {
final userJson = jsonEncode(user.toJson());
await _secureStorage.write(key: _userKey, value: userJson);
}
void dispose() {
_authStateController.close();
}
}