## Summary - Fixes periodic production crashes (undici ECONNREFUSED ::1) by bounding server cache size/lifetime and hardening server HTTP client. ### Root cause - React server cache (cache(...)) held axios responses indefinitely across many parameter combinations, causing slow memory growth until the Next.js app router worker was OOM-killed. The main server then failed IPC to the worker (ECONNREFUSED ::1:<port>). ### Changes - `app/lib/data.ts`: Replace unbounded cache(...) with unstable_cache and explicit keys; TTLs: 60s for teams/detail/favorites/user, 300s for meta (jobs/skills/accessories/raids/version). - `app/lib/api-utils.ts`: Add shared Axios instance with 15s timeout and keepAlive http/https agents; apply to GET/POST/PUT/DELETE helpers. - `pages/api/preview/[shortcode].ts`: Remove duplicate handler to dedupe route; retain the .tsx variant using `NEXT_PUBLIC_SIERO_API_URL`. ### Notes - Build currently has pre-existing app/pages route duplication errors; out of scope here but unrelated to this fix. - Ensure `NEXT_PUBLIC_SIERO_API_URL` and `NEXT_PUBLIC_SIERO_OAUTH_URL` are set on Railway. ### Risk/impact - Low risk; behavior is unchanged aside from bounded caching and resilient HTTP. - Cache TTLs can be tuned later if needed. ### Test plan - Verify saved/teams/user pages load and revalidate after TTL. - Validate API routes still proxy correctly; timeouts occur after ~15s for hung upstreams. - Monitor memory over several days; expect stable usage without steady growth.
100 lines
No EOL
2.6 KiB
TypeScript
100 lines
No EOL
2.6 KiB
TypeScript
import { NextRequest, NextResponse } from 'next/server'
|
|
import { z } from 'zod'
|
|
import { cookies } from 'next/headers'
|
|
import { login as loginHelper } from '~/app/lib/api-utils'
|
|
|
|
// Login request schema
|
|
const LoginSchema = z.object({
|
|
email: z.string().email('Invalid email format'),
|
|
password: z.string().min(8, 'Password must be at least 8 characters')
|
|
})
|
|
|
|
export async function POST(request: NextRequest) {
|
|
try {
|
|
// Parse and validate request body
|
|
const body = await request.json()
|
|
const validatedData = LoginSchema.parse(body)
|
|
|
|
// Call login helper with credentials
|
|
const response = await loginHelper(validatedData)
|
|
|
|
// Set cookies based on response
|
|
if (response.token) {
|
|
// Calculate expiration (60 days)
|
|
const expiresAt = new Date()
|
|
expiresAt.setDate(expiresAt.getDate() + 60)
|
|
|
|
// Set account cookie with auth info
|
|
const accountCookie = {
|
|
userId: response.user_id,
|
|
username: response.username,
|
|
role: response.role,
|
|
token: response.token
|
|
}
|
|
|
|
// Set user cookie with preferences/profile
|
|
const userCookie = {
|
|
avatar: {
|
|
picture: response.avatar.picture,
|
|
element: response.avatar.element
|
|
},
|
|
gender: response.gender,
|
|
language: response.language,
|
|
theme: response.theme,
|
|
bahamut: response.bahamut || false
|
|
}
|
|
|
|
// Set cookies
|
|
const cookieStore = cookies()
|
|
cookieStore.set('account', JSON.stringify(accountCookie), {
|
|
expires: expiresAt,
|
|
path: '/',
|
|
httpOnly: true,
|
|
sameSite: 'strict'
|
|
})
|
|
|
|
cookieStore.set('user', JSON.stringify(userCookie), {
|
|
expires: expiresAt,
|
|
path: '/',
|
|
httpOnly: true,
|
|
sameSite: 'strict'
|
|
})
|
|
|
|
// Return success
|
|
return NextResponse.json({
|
|
success: true,
|
|
user: {
|
|
username: response.username,
|
|
avatar: response.avatar
|
|
}
|
|
})
|
|
}
|
|
|
|
// If we get here, something went wrong
|
|
return NextResponse.json(
|
|
{ error: 'Invalid login response' },
|
|
{ status: 500 }
|
|
)
|
|
} catch (error) {
|
|
if (error instanceof z.ZodError) {
|
|
return NextResponse.json(
|
|
{ error: 'Validation error', details: error.errors },
|
|
{ status: 400 }
|
|
)
|
|
}
|
|
|
|
// For authentication errors
|
|
if (error.response?.status === 401) {
|
|
return NextResponse.json(
|
|
{ error: 'Invalid email or password' },
|
|
{ status: 401 }
|
|
)
|
|
}
|
|
|
|
console.error('Login error:', error)
|
|
return NextResponse.json(
|
|
{ error: 'Login failed' },
|
|
{ status: 500 }
|
|
)
|
|
}
|
|
} |