org.go 26 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "errors"
  7. "fmt"
  8. "os"
  9. "strings"
  10. "github.com/go-xorm/xorm"
  11. )
  12. var (
  13. ErrOrgNotExist = errors.New("Organization does not exist")
  14. ErrTeamNotExist = errors.New("Team does not exist")
  15. )
  16. // IsOwnedBy returns true if given user is in the owner team.
  17. func (org *User) IsOwnedBy(uid int64) bool {
  18. return IsOrganizationOwner(org.Id, uid)
  19. }
  20. // IsOrgMember returns true if given user is member of organization.
  21. func (org *User) IsOrgMember(uid int64) bool {
  22. return org.IsOrganization() && IsOrganizationMember(org.Id, uid)
  23. }
  24. func (org *User) getTeam(e Engine, name string) (*Team, error) {
  25. return getTeam(e, org.Id, name)
  26. }
  27. // GetTeam returns named team of organization.
  28. func (org *User) GetTeam(name string) (*Team, error) {
  29. return org.getTeam(x, name)
  30. }
  31. func (org *User) getOwnerTeam(e Engine) (*Team, error) {
  32. return org.getTeam(e, OWNER_TEAM)
  33. }
  34. // GetOwnerTeam returns owner team of organization.
  35. func (org *User) GetOwnerTeam() (*Team, error) {
  36. return org.getOwnerTeam(x)
  37. }
  38. func (org *User) getTeams(e Engine) error {
  39. return e.Where("org_id=?", org.Id).Find(&org.Teams)
  40. }
  41. // GetTeams returns all teams that belong to organization.
  42. func (org *User) GetTeams() error {
  43. return org.getTeams(x)
  44. }
  45. // GetMembers returns all members of organization.
  46. func (org *User) GetMembers() error {
  47. ous, err := GetOrgUsersByOrgId(org.Id)
  48. if err != nil {
  49. return err
  50. }
  51. org.Members = make([]*User, len(ous))
  52. for i, ou := range ous {
  53. org.Members[i], err = GetUserByID(ou.Uid)
  54. if err != nil {
  55. return err
  56. }
  57. }
  58. return nil
  59. }
  60. // AddMember adds new member to organization.
  61. func (org *User) AddMember(uid int64) error {
  62. return AddOrgUser(org.Id, uid)
  63. }
  64. // RemoveMember removes member from organization.
  65. func (org *User) RemoveMember(uid int64) error {
  66. return RemoveOrgUser(org.Id, uid)
  67. }
  68. func (org *User) removeOrgRepo(e Engine, repoID int64) error {
  69. return removeOrgRepo(e, org.Id, repoID)
  70. }
  71. // RemoveOrgRepo removes all team-repository relations of organization.
  72. func (org *User) RemoveOrgRepo(repoID int64) error {
  73. return org.removeOrgRepo(x, repoID)
  74. }
  75. // CreateOrganization creates record of a new organization.
  76. func CreateOrganization(org, owner *User) (err error) {
  77. if err = IsUsableName(org.Name); err != nil {
  78. return err
  79. }
  80. isExist, err := IsUserExist(0, org.Name)
  81. if err != nil {
  82. return err
  83. } else if isExist {
  84. return ErrUserAlreadyExist{org.Name}
  85. }
  86. org.LowerName = strings.ToLower(org.Name)
  87. org.FullName = org.Name
  88. org.Rands = GetUserSalt()
  89. org.Salt = GetUserSalt()
  90. org.UseCustomAvatar = true
  91. org.MaxRepoCreation = -1
  92. org.NumTeams = 1
  93. org.NumMembers = 1
  94. sess := x.NewSession()
  95. defer sessionRelease(sess)
  96. if err = sess.Begin(); err != nil {
  97. return err
  98. }
  99. if _, err = sess.Insert(org); err != nil {
  100. return fmt.Errorf("insert organization: %v", err)
  101. }
  102. org.GenerateRandomAvatar()
  103. // Add initial creator to organization and owner team.
  104. if _, err = sess.Insert(&OrgUser{
  105. Uid: owner.Id,
  106. OrgID: org.Id,
  107. IsOwner: true,
  108. NumTeams: 1,
  109. }); err != nil {
  110. return fmt.Errorf("insert org-user relation: %v", err)
  111. }
  112. // Create default owner team.
  113. t := &Team{
  114. OrgID: org.Id,
  115. LowerName: strings.ToLower(OWNER_TEAM),
  116. Name: OWNER_TEAM,
  117. Authorize: ACCESS_MODE_OWNER,
  118. NumMembers: 1,
  119. }
  120. if _, err = sess.Insert(t); err != nil {
  121. return fmt.Errorf("insert owner team: %v", err)
  122. }
  123. if _, err = sess.Insert(&TeamUser{
  124. Uid: owner.Id,
  125. OrgID: org.Id,
  126. TeamID: t.ID,
  127. }); err != nil {
  128. return fmt.Errorf("insert team-user relation: %v", err)
  129. }
  130. if err = os.MkdirAll(UserPath(org.Name), os.ModePerm); err != nil {
  131. return fmt.Errorf("create directory: %v", err)
  132. }
  133. return sess.Commit()
  134. }
  135. // GetOrgByName returns organization by given name.
  136. func GetOrgByName(name string) (*User, error) {
  137. if len(name) == 0 {
  138. return nil, ErrOrgNotExist
  139. }
  140. u := &User{
  141. LowerName: strings.ToLower(name),
  142. Type: ORGANIZATION,
  143. }
  144. has, err := x.Get(u)
  145. if err != nil {
  146. return nil, err
  147. } else if !has {
  148. return nil, ErrOrgNotExist
  149. }
  150. return u, nil
  151. }
  152. // CountOrganizations returns number of organizations.
  153. func CountOrganizations() int64 {
  154. count, _ := x.Where("type=1").Count(new(User))
  155. return count
  156. }
  157. // Organizations returns number of organizations in given page.
  158. func Organizations(page, pageSize int) ([]*User, error) {
  159. orgs := make([]*User, 0, pageSize)
  160. return orgs, x.Limit(pageSize, (page-1)*pageSize).Where("type=1").Asc("id").Find(&orgs)
  161. }
  162. // DeleteOrganization completely and permanently deletes everything of organization.
  163. func DeleteOrganization(org *User) (err error) {
  164. if err := DeleteUser(org); err != nil {
  165. return err
  166. }
  167. sess := x.NewSession()
  168. defer sessionRelease(sess)
  169. if err = sess.Begin(); err != nil {
  170. return err
  171. }
  172. if err = deleteBeans(sess,
  173. &Team{OrgID: org.Id},
  174. &OrgUser{OrgID: org.Id},
  175. &TeamUser{OrgID: org.Id},
  176. ); err != nil {
  177. return fmt.Errorf("deleteBeans: %v", err)
  178. }
  179. if err = deleteUser(sess, org); err != nil {
  180. return fmt.Errorf("deleteUser: %v", err)
  181. }
  182. return sess.Commit()
  183. }
  184. // ________ ____ ___
  185. // \_____ \_______ ____ | | \______ ___________
  186. // / | \_ __ \/ ___\| | / ___// __ \_ __ \
  187. // / | \ | \/ /_/ > | /\___ \\ ___/| | \/
  188. // \_______ /__| \___ /|______//____ >\___ >__|
  189. // \/ /_____/ \/ \/
  190. // OrgUser represents an organization-user relation.
  191. type OrgUser struct {
  192. ID int64 `xorm:"pk autoincr"`
  193. Uid int64 `xorm:"INDEX UNIQUE(s)"`
  194. OrgID int64 `xorm:"INDEX UNIQUE(s)"`
  195. IsPublic bool
  196. IsOwner bool
  197. NumTeams int
  198. }
  199. // IsOrganizationOwner returns true if given user is in the owner team.
  200. func IsOrganizationOwner(orgId, uid int64) bool {
  201. has, _ := x.Where("is_owner=?", true).And("uid=?", uid).And("org_id=?", orgId).Get(new(OrgUser))
  202. return has
  203. }
  204. // IsOrganizationMember returns true if given user is member of organization.
  205. func IsOrganizationMember(orgId, uid int64) bool {
  206. has, _ := x.Where("uid=?", uid).And("org_id=?", orgId).Get(new(OrgUser))
  207. return has
  208. }
  209. // IsPublicMembership returns true if given user public his/her membership.
  210. func IsPublicMembership(orgId, uid int64) bool {
  211. has, _ := x.Where("uid=?", uid).And("org_id=?", orgId).And("is_public=?", true).Get(new(OrgUser))
  212. return has
  213. }
  214. func getPublicOrgsByUserID(sess *xorm.Session, userID int64) ([]*User, error) {
  215. orgs := make([]*User, 0, 10)
  216. return orgs, sess.Where("`org_user`.uid=?", userID).And("`org_user`.is_public=?", true).
  217. Join("INNER", "`org_user`", "`org_user`.org_id=`user`.id").Find(&orgs)
  218. }
  219. // GetPublicOrgsByUserID returns a list of organizations that the given user ID
  220. // has joined publicly.
  221. func GetPublicOrgsByUserID(userID int64) ([]*User, error) {
  222. sess := x.NewSession()
  223. return getPublicOrgsByUserID(sess, userID)
  224. }
  225. // GetPublicOrgsByUserID returns a list of organizations that the given user ID
  226. // has joined publicly, ordered descending by the given condition.
  227. func GetPublicOrgsByUserIDDesc(userID int64, desc string) ([]*User, error) {
  228. sess := x.NewSession()
  229. return getPublicOrgsByUserID(sess.Desc(desc), userID)
  230. }
  231. func getOwnedOrgsByUserID(sess *xorm.Session, userID int64) ([]*User, error) {
  232. orgs := make([]*User, 0, 10)
  233. return orgs, sess.Where("`org_user`.uid=?", userID).And("`org_user`.is_owner=?", true).
  234. Join("INNER", "`org_user`", "`org_user`.org_id=`user`.id").Find(&orgs)
  235. }
  236. // GetOwnedOrgsByUserID returns a list of organizations are owned by given user ID.
  237. func GetOwnedOrgsByUserID(userID int64) ([]*User, error) {
  238. sess := x.NewSession()
  239. return getOwnedOrgsByUserID(sess, userID)
  240. }
  241. // GetOwnedOrganizationsByUserIDDesc returns a list of organizations are owned by
  242. // given user ID, ordered descending by the given condition.
  243. func GetOwnedOrgsByUserIDDesc(userID int64, desc string) ([]*User, error) {
  244. sess := x.NewSession()
  245. return getOwnedOrgsByUserID(sess.Desc(desc), userID)
  246. }
  247. // GetOrgUsersByUserID returns all organization-user relations by user ID.
  248. func GetOrgUsersByUserID(uid int64, all bool) ([]*OrgUser, error) {
  249. ous := make([]*OrgUser, 0, 10)
  250. sess := x.Where("uid=?", uid)
  251. if !all {
  252. // Only show public organizations
  253. sess.And("is_public=?", true)
  254. }
  255. err := sess.Find(&ous)
  256. return ous, err
  257. }
  258. // GetOrgUsersByOrgId returns all organization-user relations by organization ID.
  259. func GetOrgUsersByOrgId(orgId int64) ([]*OrgUser, error) {
  260. ous := make([]*OrgUser, 0, 10)
  261. err := x.Where("org_id=?", orgId).Find(&ous)
  262. return ous, err
  263. }
  264. // ChangeOrgUserStatus changes public or private membership status.
  265. func ChangeOrgUserStatus(orgId, uid int64, public bool) error {
  266. ou := new(OrgUser)
  267. has, err := x.Where("uid=?", uid).And("org_id=?", orgId).Get(ou)
  268. if err != nil {
  269. return err
  270. } else if !has {
  271. return nil
  272. }
  273. ou.IsPublic = public
  274. _, err = x.Id(ou.ID).AllCols().Update(ou)
  275. return err
  276. }
  277. // AddOrgUser adds new user to given organization.
  278. func AddOrgUser(orgId, uid int64) error {
  279. if IsOrganizationMember(orgId, uid) {
  280. return nil
  281. }
  282. sess := x.NewSession()
  283. defer sess.Close()
  284. if err := sess.Begin(); err != nil {
  285. return err
  286. }
  287. ou := &OrgUser{
  288. Uid: uid,
  289. OrgID: orgId,
  290. }
  291. if _, err := sess.Insert(ou); err != nil {
  292. sess.Rollback()
  293. return err
  294. } else if _, err = sess.Exec("UPDATE `user` SET num_members = num_members + 1 WHERE id = ?", orgId); err != nil {
  295. sess.Rollback()
  296. return err
  297. }
  298. return sess.Commit()
  299. }
  300. // RemoveOrgUser removes user from given organization.
  301. func RemoveOrgUser(orgId, uid int64) error {
  302. ou := new(OrgUser)
  303. has, err := x.Where("uid=?", uid).And("org_id=?", orgId).Get(ou)
  304. if err != nil {
  305. return fmt.Errorf("get org-user: %v", err)
  306. } else if !has {
  307. return nil
  308. }
  309. u, err := GetUserByID(uid)
  310. if err != nil {
  311. return fmt.Errorf("GetUserById: %v", err)
  312. }
  313. org, err := GetUserByID(orgId)
  314. if err != nil {
  315. return fmt.Errorf("get organization: %v", err)
  316. } else if err = org.GetRepositories(); err != nil {
  317. return fmt.Errorf("GetRepositories: %v", err)
  318. }
  319. // Check if the user to delete is the last member in owner team.
  320. if IsOrganizationOwner(orgId, uid) {
  321. t, err := org.GetOwnerTeam()
  322. if err != nil {
  323. return err
  324. }
  325. if t.NumMembers == 1 {
  326. return ErrLastOrgOwner{UID: uid}
  327. }
  328. }
  329. sess := x.NewSession()
  330. defer sessionRelease(sess)
  331. if err := sess.Begin(); err != nil {
  332. return err
  333. }
  334. if _, err := sess.Id(ou.ID).Delete(ou); err != nil {
  335. return err
  336. } else if _, err = sess.Exec("UPDATE `user` SET num_members=num_members-1 WHERE id=?", orgId); err != nil {
  337. return err
  338. }
  339. // Delete all repository accesses.
  340. access := &Access{UserID: u.Id}
  341. for _, repo := range org.Repos {
  342. access.RepoID = repo.ID
  343. if _, err = sess.Delete(access); err != nil {
  344. return err
  345. } else if err = watchRepo(sess, u.Id, repo.ID, false); err != nil {
  346. return err
  347. }
  348. }
  349. // Delete member in his/her teams.
  350. teams, err := getUserTeams(sess, org.Id, u.Id)
  351. if err != nil {
  352. return err
  353. }
  354. for _, t := range teams {
  355. if err = removeTeamMember(sess, org.Id, t.ID, u.Id); err != nil {
  356. return err
  357. }
  358. }
  359. return sess.Commit()
  360. }
  361. // ___________
  362. // \__ ___/___ _____ _____
  363. // | |_/ __ \\__ \ / \
  364. // | |\ ___/ / __ \| Y Y \
  365. // |____| \___ >____ /__|_| /
  366. // \/ \/ \/
  367. const OWNER_TEAM = "Owners"
  368. // Team represents a organization team.
  369. type Team struct {
  370. ID int64 `xorm:"pk autoincr"`
  371. OrgID int64 `xorm:"INDEX"`
  372. LowerName string
  373. Name string
  374. Description string
  375. Authorize AccessMode
  376. Repos []*Repository `xorm:"-"`
  377. Members []*User `xorm:"-"`
  378. NumRepos int
  379. NumMembers int
  380. }
  381. // IsOwnerTeam returns true if team is owner team.
  382. func (t *Team) IsOwnerTeam() bool {
  383. return t.Name == OWNER_TEAM
  384. }
  385. // IsTeamMember returns true if given user is a member of team.
  386. func (t *Team) IsMember(uid int64) bool {
  387. return IsTeamMember(t.OrgID, t.ID, uid)
  388. }
  389. func (t *Team) getRepositories(e Engine) (err error) {
  390. teamRepos := make([]*TeamRepo, 0, t.NumRepos)
  391. if err = x.Where("team_id=?", t.ID).Find(&teamRepos); err != nil {
  392. return fmt.Errorf("get team-repos: %v", err)
  393. }
  394. t.Repos = make([]*Repository, 0, len(teamRepos))
  395. for i := range teamRepos {
  396. repo, err := getRepositoryByID(e, teamRepos[i].RepoID)
  397. if err != nil {
  398. return fmt.Errorf("getRepositoryById(%d): %v", teamRepos[i].RepoID, err)
  399. }
  400. t.Repos = append(t.Repos, repo)
  401. }
  402. return nil
  403. }
  404. // GetRepositories returns all repositories in team of organization.
  405. func (t *Team) GetRepositories() error {
  406. return t.getRepositories(x)
  407. }
  408. func (t *Team) getMembers(e Engine) (err error) {
  409. t.Members, err = getTeamMembers(e, t.ID)
  410. return err
  411. }
  412. // GetMembers returns all members in team of organization.
  413. func (t *Team) GetMembers() (err error) {
  414. return t.getMembers(x)
  415. }
  416. // AddMember adds new member to team of organization.
  417. func (t *Team) AddMember(uid int64) error {
  418. return AddTeamMember(t.OrgID, t.ID, uid)
  419. }
  420. // RemoveMember removes member from team of organization.
  421. func (t *Team) RemoveMember(uid int64) error {
  422. return RemoveTeamMember(t.OrgID, t.ID, uid)
  423. }
  424. func (t *Team) hasRepository(e Engine, repoID int64) bool {
  425. return hasTeamRepo(e, t.OrgID, t.ID, repoID)
  426. }
  427. // HasRepository returns true if given repository belong to team.
  428. func (t *Team) HasRepository(repoID int64) bool {
  429. return t.hasRepository(x, repoID)
  430. }
  431. func (t *Team) addRepository(e Engine, repo *Repository) (err error) {
  432. if err = addTeamRepo(e, t.OrgID, t.ID, repo.ID); err != nil {
  433. return err
  434. }
  435. t.NumRepos++
  436. if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  437. return fmt.Errorf("update team: %v", err)
  438. }
  439. if err = repo.recalculateTeamAccesses(e, 0); err != nil {
  440. return fmt.Errorf("recalculateAccesses: %v", err)
  441. }
  442. if err = t.getMembers(e); err != nil {
  443. return fmt.Errorf("getMembers: %v", err)
  444. }
  445. for _, u := range t.Members {
  446. if err = watchRepo(e, u.Id, repo.ID, true); err != nil {
  447. return fmt.Errorf("watchRepo: %v", err)
  448. }
  449. }
  450. return nil
  451. }
  452. // AddRepository adds new repository to team of organization.
  453. func (t *Team) AddRepository(repo *Repository) (err error) {
  454. if repo.OwnerID != t.OrgID {
  455. return errors.New("Repository does not belong to organization")
  456. } else if t.HasRepository(repo.ID) {
  457. return nil
  458. }
  459. sess := x.NewSession()
  460. defer sessionRelease(sess)
  461. if err = sess.Begin(); err != nil {
  462. return err
  463. }
  464. if err = t.addRepository(sess, repo); err != nil {
  465. return err
  466. }
  467. return sess.Commit()
  468. }
  469. func (t *Team) removeRepository(e Engine, repo *Repository, recalculate bool) (err error) {
  470. if err = removeTeamRepo(e, t.ID, repo.ID); err != nil {
  471. return err
  472. }
  473. t.NumRepos--
  474. if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  475. return err
  476. }
  477. // Don't need to recalculate when delete a repository from organization.
  478. if recalculate {
  479. if err = repo.recalculateTeamAccesses(e, t.ID); err != nil {
  480. return err
  481. }
  482. }
  483. if err = t.getMembers(e); err != nil {
  484. return fmt.Errorf("get team members: %v", err)
  485. }
  486. for _, u := range t.Members {
  487. has, err := hasAccess(e, u, repo, ACCESS_MODE_READ)
  488. if err != nil {
  489. return err
  490. } else if has {
  491. continue
  492. }
  493. if err = watchRepo(e, u.Id, repo.ID, false); err != nil {
  494. return err
  495. }
  496. }
  497. return nil
  498. }
  499. // RemoveRepository removes repository from team of organization.
  500. func (t *Team) RemoveRepository(repoID int64) error {
  501. if !t.HasRepository(repoID) {
  502. return nil
  503. }
  504. repo, err := GetRepositoryByID(repoID)
  505. if err != nil {
  506. return err
  507. }
  508. sess := x.NewSession()
  509. defer sessionRelease(sess)
  510. if err = sess.Begin(); err != nil {
  511. return err
  512. }
  513. if err = t.removeRepository(sess, repo, true); err != nil {
  514. return err
  515. }
  516. return sess.Commit()
  517. }
  518. // NewTeam creates a record of new team.
  519. // It's caller's responsibility to assign organization ID.
  520. func NewTeam(t *Team) error {
  521. if len(t.Name) == 0 {
  522. return errors.New("empty team name")
  523. }
  524. has, err := x.Id(t.OrgID).Get(new(User))
  525. if err != nil {
  526. return err
  527. } else if !has {
  528. return ErrOrgNotExist
  529. }
  530. t.LowerName = strings.ToLower(t.Name)
  531. has, err = x.Where("org_id=?", t.OrgID).And("lower_name=?", t.LowerName).Get(new(Team))
  532. if err != nil {
  533. return err
  534. } else if has {
  535. return ErrTeamAlreadyExist{t.OrgID, t.LowerName}
  536. }
  537. sess := x.NewSession()
  538. defer sess.Close()
  539. if err = sess.Begin(); err != nil {
  540. return err
  541. }
  542. if _, err = sess.Insert(t); err != nil {
  543. sess.Rollback()
  544. return err
  545. }
  546. // Update organization number of teams.
  547. if _, err = sess.Exec("UPDATE `user` SET num_teams=num_teams+1 WHERE id = ?", t.OrgID); err != nil {
  548. sess.Rollback()
  549. return err
  550. }
  551. return sess.Commit()
  552. }
  553. func getTeam(e Engine, orgId int64, name string) (*Team, error) {
  554. t := &Team{
  555. OrgID: orgId,
  556. LowerName: strings.ToLower(name),
  557. }
  558. has, err := e.Get(t)
  559. if err != nil {
  560. return nil, err
  561. } else if !has {
  562. return nil, ErrTeamNotExist
  563. }
  564. return t, nil
  565. }
  566. // GetTeam returns team by given team name and organization.
  567. func GetTeam(orgId int64, name string) (*Team, error) {
  568. return getTeam(x, orgId, name)
  569. }
  570. func getTeamById(e Engine, teamId int64) (*Team, error) {
  571. t := new(Team)
  572. has, err := e.Id(teamId).Get(t)
  573. if err != nil {
  574. return nil, err
  575. } else if !has {
  576. return nil, ErrTeamNotExist
  577. }
  578. return t, nil
  579. }
  580. // GetTeamById returns team by given ID.
  581. func GetTeamById(teamId int64) (*Team, error) {
  582. return getTeamById(x, teamId)
  583. }
  584. // UpdateTeam updates information of team.
  585. func UpdateTeam(t *Team, authChanged bool) (err error) {
  586. if len(t.Name) == 0 {
  587. return errors.New("empty team name")
  588. }
  589. if len(t.Description) > 255 {
  590. t.Description = t.Description[:255]
  591. }
  592. sess := x.NewSession()
  593. defer sessionRelease(sess)
  594. if err = sess.Begin(); err != nil {
  595. return err
  596. }
  597. t.LowerName = strings.ToLower(t.Name)
  598. has, err := x.Where("org_id=?", t.OrgID).And("lower_name=?", t.LowerName).And("id!=?", t.ID).Get(new(Team))
  599. if err != nil {
  600. return err
  601. } else if has {
  602. return ErrTeamAlreadyExist{t.OrgID, t.LowerName}
  603. }
  604. if _, err = sess.Id(t.ID).AllCols().Update(t); err != nil {
  605. return fmt.Errorf("update: %v", err)
  606. }
  607. // Update access for team members if needed.
  608. if authChanged {
  609. if err = t.getRepositories(sess); err != nil {
  610. return fmt.Errorf("getRepositories:%v", err)
  611. }
  612. for _, repo := range t.Repos {
  613. if err = repo.recalculateTeamAccesses(sess, 0); err != nil {
  614. return fmt.Errorf("recalculateTeamAccesses: %v", err)
  615. }
  616. }
  617. }
  618. return sess.Commit()
  619. }
  620. // DeleteTeam deletes given team.
  621. // It's caller's responsibility to assign organization ID.
  622. func DeleteTeam(t *Team) error {
  623. if err := t.GetRepositories(); err != nil {
  624. return err
  625. }
  626. // Get organization.
  627. org, err := GetUserByID(t.OrgID)
  628. if err != nil {
  629. return err
  630. }
  631. sess := x.NewSession()
  632. defer sessionRelease(sess)
  633. if err = sess.Begin(); err != nil {
  634. return err
  635. }
  636. // Delete all accesses.
  637. for _, repo := range t.Repos {
  638. if err = repo.recalculateTeamAccesses(sess, t.ID); err != nil {
  639. return err
  640. }
  641. }
  642. // Delete team-user.
  643. if _, err = sess.Where("org_id=?", org.Id).Where("team_id=?", t.ID).Delete(new(TeamUser)); err != nil {
  644. return err
  645. }
  646. // Delete team.
  647. if _, err = sess.Id(t.ID).Delete(new(Team)); err != nil {
  648. return err
  649. }
  650. // Update organization number of teams.
  651. if _, err = sess.Exec("UPDATE `user` SET num_teams=num_teams-1 WHERE id=?", t.OrgID); err != nil {
  652. return err
  653. }
  654. return sess.Commit()
  655. }
  656. // ___________ ____ ___
  657. // \__ ___/___ _____ _____ | | \______ ___________
  658. // | |_/ __ \\__ \ / \| | / ___// __ \_ __ \
  659. // | |\ ___/ / __ \| Y Y \ | /\___ \\ ___/| | \/
  660. // |____| \___ >____ /__|_| /______//____ >\___ >__|
  661. // \/ \/ \/ \/ \/
  662. // TeamUser represents an team-user relation.
  663. type TeamUser struct {
  664. ID int64 `xorm:"pk autoincr"`
  665. OrgID int64 `xorm:"INDEX"`
  666. TeamID int64 `xorm:"UNIQUE(s)"`
  667. Uid int64 `xorm:"UNIQUE(s)"`
  668. }
  669. func isTeamMember(e Engine, orgID, teamID, uid int64) bool {
  670. has, _ := e.Where("org_id=?", orgID).And("team_id=?", teamID).And("uid=?", uid).Get(new(TeamUser))
  671. return has
  672. }
  673. // IsTeamMember returns true if given user is a member of team.
  674. func IsTeamMember(orgID, teamID, uid int64) bool {
  675. return isTeamMember(x, orgID, teamID, uid)
  676. }
  677. func getTeamMembers(e Engine, teamID int64) (_ []*User, err error) {
  678. teamUsers := make([]*TeamUser, 0, 10)
  679. if err = e.Where("team_id=?", teamID).Find(&teamUsers); err != nil {
  680. return nil, fmt.Errorf("get team-users: %v", err)
  681. }
  682. members := make([]*User, 0, len(teamUsers))
  683. for i := range teamUsers {
  684. member := new(User)
  685. if _, err = e.Id(teamUsers[i].Uid).Get(member); err != nil {
  686. return nil, fmt.Errorf("get user '%d': %v", teamUsers[i].Uid, err)
  687. }
  688. members = append(members, member)
  689. }
  690. return members, nil
  691. }
  692. // GetTeamMembers returns all members in given team of organization.
  693. func GetTeamMembers(teamID int64) ([]*User, error) {
  694. return getTeamMembers(x, teamID)
  695. }
  696. func getUserTeams(e Engine, orgId, uid int64) ([]*Team, error) {
  697. tus := make([]*TeamUser, 0, 5)
  698. if err := e.Where("uid=?", uid).And("org_id=?", orgId).Find(&tus); err != nil {
  699. return nil, err
  700. }
  701. ts := make([]*Team, len(tus))
  702. for i, tu := range tus {
  703. t := new(Team)
  704. has, err := e.Id(tu.TeamID).Get(t)
  705. if err != nil {
  706. return nil, err
  707. } else if !has {
  708. return nil, ErrTeamNotExist
  709. }
  710. ts[i] = t
  711. }
  712. return ts, nil
  713. }
  714. // GetUserTeams returns all teams that user belongs to in given organization.
  715. func GetUserTeams(orgId, uid int64) ([]*Team, error) {
  716. return getUserTeams(x, orgId, uid)
  717. }
  718. // AddTeamMember adds new member to given team of given organization.
  719. func AddTeamMember(orgId, teamId, uid int64) error {
  720. if IsTeamMember(orgId, teamId, uid) {
  721. return nil
  722. }
  723. if err := AddOrgUser(orgId, uid); err != nil {
  724. return err
  725. }
  726. // Get team and its repositories.
  727. t, err := GetTeamById(teamId)
  728. if err != nil {
  729. return err
  730. }
  731. t.NumMembers++
  732. if err = t.GetRepositories(); err != nil {
  733. return err
  734. }
  735. sess := x.NewSession()
  736. defer sessionRelease(sess)
  737. if err = sess.Begin(); err != nil {
  738. return err
  739. }
  740. tu := &TeamUser{
  741. Uid: uid,
  742. OrgID: orgId,
  743. TeamID: teamId,
  744. }
  745. if _, err = sess.Insert(tu); err != nil {
  746. return err
  747. } else if _, err = sess.Id(t.ID).Update(t); err != nil {
  748. return err
  749. }
  750. // Give access to team repositories.
  751. for _, repo := range t.Repos {
  752. if err = repo.recalculateTeamAccesses(sess, 0); err != nil {
  753. return err
  754. }
  755. }
  756. // We make sure it exists before.
  757. ou := new(OrgUser)
  758. if _, err = sess.Where("uid=?", uid).And("org_id=?", orgId).Get(ou); err != nil {
  759. return err
  760. }
  761. ou.NumTeams++
  762. if t.IsOwnerTeam() {
  763. ou.IsOwner = true
  764. }
  765. if _, err = sess.Id(ou.ID).AllCols().Update(ou); err != nil {
  766. return err
  767. }
  768. return sess.Commit()
  769. }
  770. func removeTeamMember(e Engine, orgId, teamId, uid int64) error {
  771. if !isTeamMember(e, orgId, teamId, uid) {
  772. return nil
  773. }
  774. // Get team and its repositories.
  775. t, err := getTeamById(e, teamId)
  776. if err != nil {
  777. return err
  778. }
  779. // Check if the user to delete is the last member in owner team.
  780. if t.IsOwnerTeam() && t.NumMembers == 1 {
  781. return ErrLastOrgOwner{UID: uid}
  782. }
  783. t.NumMembers--
  784. if err = t.getRepositories(e); err != nil {
  785. return err
  786. }
  787. // Get organization.
  788. org, err := getUserByID(e, orgId)
  789. if err != nil {
  790. return err
  791. }
  792. tu := &TeamUser{
  793. Uid: uid,
  794. OrgID: orgId,
  795. TeamID: teamId,
  796. }
  797. if _, err := e.Delete(tu); err != nil {
  798. return err
  799. } else if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  800. return err
  801. }
  802. // Delete access to team repositories.
  803. for _, repo := range t.Repos {
  804. if err = repo.recalculateTeamAccesses(e, 0); err != nil {
  805. return err
  806. }
  807. }
  808. // This must exist.
  809. ou := new(OrgUser)
  810. _, err = e.Where("uid=?", uid).And("org_id=?", org.Id).Get(ou)
  811. if err != nil {
  812. return err
  813. }
  814. ou.NumTeams--
  815. if t.IsOwnerTeam() {
  816. ou.IsOwner = false
  817. }
  818. if _, err = e.Id(ou.ID).AllCols().Update(ou); err != nil {
  819. return err
  820. }
  821. return nil
  822. }
  823. // RemoveTeamMember removes member from given team of given organization.
  824. func RemoveTeamMember(orgId, teamId, uid int64) error {
  825. sess := x.NewSession()
  826. defer sessionRelease(sess)
  827. if err := sess.Begin(); err != nil {
  828. return err
  829. }
  830. if err := removeTeamMember(sess, orgId, teamId, uid); err != nil {
  831. return err
  832. }
  833. return sess.Commit()
  834. }
  835. // ___________ __________
  836. // \__ ___/___ _____ _____\______ \ ____ ______ ____
  837. // | |_/ __ \\__ \ / \| _// __ \\____ \ / _ \
  838. // | |\ ___/ / __ \| Y Y \ | \ ___/| |_> > <_> )
  839. // |____| \___ >____ /__|_| /____|_ /\___ > __/ \____/
  840. // \/ \/ \/ \/ \/|__|
  841. // TeamRepo represents an team-repository relation.
  842. type TeamRepo struct {
  843. ID int64 `xorm:"pk autoincr"`
  844. OrgID int64 `xorm:"INDEX"`
  845. TeamID int64 `xorm:"UNIQUE(s)"`
  846. RepoID int64 `xorm:"UNIQUE(s)"`
  847. }
  848. func hasTeamRepo(e Engine, orgID, teamID, repoID int64) bool {
  849. has, _ := e.Where("org_id=?", orgID).And("team_id=?", teamID).And("repo_id=?", repoID).Get(new(TeamRepo))
  850. return has
  851. }
  852. // HasTeamRepo returns true if given repository belongs to team.
  853. func HasTeamRepo(orgID, teamID, repoID int64) bool {
  854. return hasTeamRepo(x, orgID, teamID, repoID)
  855. }
  856. func addTeamRepo(e Engine, orgID, teamID, repoID int64) error {
  857. _, err := e.InsertOne(&TeamRepo{
  858. OrgID: orgID,
  859. TeamID: teamID,
  860. RepoID: repoID,
  861. })
  862. return err
  863. }
  864. // AddTeamRepo adds new repository relation to team.
  865. func AddTeamRepo(orgID, teamID, repoID int64) error {
  866. return addTeamRepo(x, orgID, teamID, repoID)
  867. }
  868. func removeTeamRepo(e Engine, teamID, repoID int64) error {
  869. _, err := e.Delete(&TeamRepo{
  870. TeamID: teamID,
  871. RepoID: repoID,
  872. })
  873. return err
  874. }
  875. // RemoveTeamRepo deletes repository relation to team.
  876. func RemoveTeamRepo(teamID, repoID int64) error {
  877. return removeTeamRepo(x, teamID, repoID)
  878. }
  879. func removeOrgRepo(e Engine, orgID, repoID int64) error {
  880. _, err := e.Delete(&TeamRepo{
  881. OrgID: orgID,
  882. RepoID: repoID,
  883. })
  884. return err
  885. }
  886. // RemoveOrgRepo removes all team-repository relations of given organization.
  887. func RemoveOrgRepo(orgID, repoID int64) error {
  888. return removeOrgRepo(x, orgID, repoID)
  889. }