org.go 25 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "errors"
  7. "fmt"
  8. "os"
  9. "strings"
  10. "github.com/go-xorm/xorm"
  11. )
  12. var (
  13. ErrOrgNotExist = errors.New("Organization does not exist")
  14. ErrTeamAlreadyExist = errors.New("Team already exist")
  15. ErrTeamNotExist = errors.New("Team does not exist")
  16. ErrTeamNameIllegal = errors.New("Team name contains illegal characters")
  17. )
  18. // IsOwnedBy returns true if given user is in the owner team.
  19. func (org *User) IsOwnedBy(uid int64) bool {
  20. return IsOrganizationOwner(org.Id, uid)
  21. }
  22. // IsOrgMember returns true if given user is member of organization.
  23. func (org *User) IsOrgMember(uid int64) bool {
  24. return org.IsOrganization() && IsOrganizationMember(org.Id, uid)
  25. }
  26. func (org *User) getTeam(e Engine, name string) (*Team, error) {
  27. return getTeam(e, org.Id, name)
  28. }
  29. // GetTeam returns named team of organization.
  30. func (org *User) GetTeam(name string) (*Team, error) {
  31. return org.getTeam(x, name)
  32. }
  33. func (org *User) getOwnerTeam(e Engine) (*Team, error) {
  34. return org.getTeam(e, OWNER_TEAM)
  35. }
  36. // GetOwnerTeam returns owner team of organization.
  37. func (org *User) GetOwnerTeam() (*Team, error) {
  38. return org.getOwnerTeam(x)
  39. }
  40. func (org *User) getTeams(e Engine) error {
  41. return e.Where("org_id=?", org.Id).Find(&org.Teams)
  42. }
  43. // GetTeams returns all teams that belong to organization.
  44. func (org *User) GetTeams() error {
  45. return org.getTeams(x)
  46. }
  47. // GetMembers returns all members of organization.
  48. func (org *User) GetMembers() error {
  49. ous, err := GetOrgUsersByOrgId(org.Id)
  50. if err != nil {
  51. return err
  52. }
  53. org.Members = make([]*User, len(ous))
  54. for i, ou := range ous {
  55. org.Members[i], err = GetUserByID(ou.Uid)
  56. if err != nil {
  57. return err
  58. }
  59. }
  60. return nil
  61. }
  62. // AddMember adds new member to organization.
  63. func (org *User) AddMember(uid int64) error {
  64. return AddOrgUser(org.Id, uid)
  65. }
  66. // RemoveMember removes member from organization.
  67. func (org *User) RemoveMember(uid int64) error {
  68. return RemoveOrgUser(org.Id, uid)
  69. }
  70. func (org *User) removeOrgRepo(e Engine, repoID int64) error {
  71. return removeOrgRepo(e, org.Id, repoID)
  72. }
  73. // RemoveOrgRepo removes all team-repository relations of organization.
  74. func (org *User) RemoveOrgRepo(repoID int64) error {
  75. return org.removeOrgRepo(x, repoID)
  76. }
  77. // CreateOrganization creates record of a new organization.
  78. func CreateOrganization(org, owner *User) (err error) {
  79. if err = IsUsableName(org.Name); err != nil {
  80. return err
  81. }
  82. isExist, err := IsUserExist(0, org.Name)
  83. if err != nil {
  84. return err
  85. } else if isExist {
  86. return ErrUserAlreadyExist{org.Name}
  87. }
  88. org.LowerName = strings.ToLower(org.Name)
  89. org.FullName = org.Name
  90. org.Rands = GetUserSalt()
  91. org.Salt = GetUserSalt()
  92. org.UseCustomAvatar = true
  93. org.MaxRepoCreation = -1
  94. org.NumTeams = 1
  95. org.NumMembers = 1
  96. sess := x.NewSession()
  97. defer sessionRelease(sess)
  98. if err = sess.Begin(); err != nil {
  99. return err
  100. }
  101. if _, err = sess.Insert(org); err != nil {
  102. return fmt.Errorf("insert organization: %v", err)
  103. }
  104. org.GenerateRandomAvatar()
  105. // Add initial creator to organization and owner team.
  106. if _, err = sess.Insert(&OrgUser{
  107. Uid: owner.Id,
  108. OrgID: org.Id,
  109. IsOwner: true,
  110. NumTeams: 1,
  111. }); err != nil {
  112. return fmt.Errorf("insert org-user relation: %v", err)
  113. }
  114. // Create default owner team.
  115. t := &Team{
  116. OrgID: org.Id,
  117. LowerName: strings.ToLower(OWNER_TEAM),
  118. Name: OWNER_TEAM,
  119. Authorize: ACCESS_MODE_OWNER,
  120. NumMembers: 1,
  121. }
  122. if _, err = sess.Insert(t); err != nil {
  123. return fmt.Errorf("insert owner team: %v", err)
  124. }
  125. if _, err = sess.Insert(&TeamUser{
  126. Uid: owner.Id,
  127. OrgID: org.Id,
  128. TeamID: t.ID,
  129. }); err != nil {
  130. return fmt.Errorf("insert team-user relation: %v", err)
  131. }
  132. if err = os.MkdirAll(UserPath(org.Name), os.ModePerm); err != nil {
  133. return fmt.Errorf("create directory: %v", err)
  134. }
  135. return sess.Commit()
  136. }
  137. // GetOrgByName returns organization by given name.
  138. func GetOrgByName(name string) (*User, error) {
  139. if len(name) == 0 {
  140. return nil, ErrOrgNotExist
  141. }
  142. u := &User{
  143. LowerName: strings.ToLower(name),
  144. Type: ORGANIZATION,
  145. }
  146. has, err := x.Get(u)
  147. if err != nil {
  148. return nil, err
  149. } else if !has {
  150. return nil, ErrOrgNotExist
  151. }
  152. return u, nil
  153. }
  154. // CountOrganizations returns number of organizations.
  155. func CountOrganizations() int64 {
  156. count, _ := x.Where("type=1").Count(new(User))
  157. return count
  158. }
  159. // Organizations returns number of organizations in given page.
  160. func Organizations(page, pageSize int) ([]*User, error) {
  161. orgs := make([]*User, 0, pageSize)
  162. return orgs, x.Limit(pageSize, (page-1)*pageSize).Where("type=1").Asc("id").Find(&orgs)
  163. }
  164. // DeleteOrganization completely and permanently deletes everything of organization.
  165. func DeleteOrganization(org *User) (err error) {
  166. if err := DeleteUser(org); err != nil {
  167. return err
  168. }
  169. sess := x.NewSession()
  170. defer sessionRelease(sess)
  171. if err = sess.Begin(); err != nil {
  172. return err
  173. }
  174. if err = deleteBeans(sess,
  175. &Team{OrgID: org.Id},
  176. &OrgUser{OrgID: org.Id},
  177. &TeamUser{OrgID: org.Id},
  178. ); err != nil {
  179. return fmt.Errorf("deleteBeans: %v", err)
  180. }
  181. if err = deleteUser(sess, org); err != nil {
  182. return fmt.Errorf("deleteUser: %v", err)
  183. }
  184. return sess.Commit()
  185. }
  186. // ________ ____ ___
  187. // \_____ \_______ ____ | | \______ ___________
  188. // / | \_ __ \/ ___\| | / ___// __ \_ __ \
  189. // / | \ | \/ /_/ > | /\___ \\ ___/| | \/
  190. // \_______ /__| \___ /|______//____ >\___ >__|
  191. // \/ /_____/ \/ \/
  192. // OrgUser represents an organization-user relation.
  193. type OrgUser struct {
  194. ID int64 `xorm:"pk autoincr"`
  195. Uid int64 `xorm:"INDEX UNIQUE(s)"`
  196. OrgID int64 `xorm:"INDEX UNIQUE(s)"`
  197. IsPublic bool
  198. IsOwner bool
  199. NumTeams int
  200. }
  201. // IsOrganizationOwner returns true if given user is in the owner team.
  202. func IsOrganizationOwner(orgId, uid int64) bool {
  203. has, _ := x.Where("is_owner=?", true).And("uid=?", uid).And("org_id=?", orgId).Get(new(OrgUser))
  204. return has
  205. }
  206. // IsOrganizationMember returns true if given user is member of organization.
  207. func IsOrganizationMember(orgId, uid int64) bool {
  208. has, _ := x.Where("uid=?", uid).And("org_id=?", orgId).Get(new(OrgUser))
  209. return has
  210. }
  211. // IsPublicMembership returns true if given user public his/her membership.
  212. func IsPublicMembership(orgId, uid int64) bool {
  213. has, _ := x.Where("uid=?", uid).And("org_id=?", orgId).And("is_public=?", true).Get(new(OrgUser))
  214. return has
  215. }
  216. func getOwnedOrgsByUserID(sess *xorm.Session, userID int64) ([]*User, error) {
  217. orgs := make([]*User, 0, 10)
  218. return orgs, sess.Where("`org_user`.uid=?", userID).And("`org_user`.is_owner=?", true).
  219. Join("INNER", "`org_user`", "`org_user`.org_id=`user`.id").Find(&orgs)
  220. }
  221. // GetOwnedOrgsByUserID returns a list of organizations are owned by given user ID.
  222. func GetOwnedOrgsByUserID(userID int64) ([]*User, error) {
  223. sess := x.NewSession()
  224. return getOwnedOrgsByUserID(sess, userID)
  225. }
  226. // GetOwnedOrganizationsByUserIDDesc returns a list of organizations are owned by
  227. // given user ID and descring order by given condition.
  228. func GetOwnedOrgsByUserIDDesc(userID int64, desc string) ([]*User, error) {
  229. sess := x.NewSession()
  230. return getOwnedOrgsByUserID(sess.Desc(desc), userID)
  231. }
  232. // GetOrgUsersByUserId returns all organization-user relations by user ID.
  233. func GetOrgUsersByUserId(uid int64) ([]*OrgUser, error) {
  234. ous := make([]*OrgUser, 0, 10)
  235. err := x.Where("uid=?", uid).Find(&ous)
  236. return ous, err
  237. }
  238. // GetOrgUsersByOrgId returns all organization-user relations by organization ID.
  239. func GetOrgUsersByOrgId(orgId int64) ([]*OrgUser, error) {
  240. ous := make([]*OrgUser, 0, 10)
  241. err := x.Where("org_id=?", orgId).Find(&ous)
  242. return ous, err
  243. }
  244. // ChangeOrgUserStatus changes public or private membership status.
  245. func ChangeOrgUserStatus(orgId, uid int64, public bool) error {
  246. ou := new(OrgUser)
  247. has, err := x.Where("uid=?", uid).And("org_id=?", orgId).Get(ou)
  248. if err != nil {
  249. return err
  250. } else if !has {
  251. return nil
  252. }
  253. ou.IsPublic = public
  254. _, err = x.Id(ou.ID).AllCols().Update(ou)
  255. return err
  256. }
  257. // AddOrgUser adds new user to given organization.
  258. func AddOrgUser(orgId, uid int64) error {
  259. if IsOrganizationMember(orgId, uid) {
  260. return nil
  261. }
  262. sess := x.NewSession()
  263. defer sess.Close()
  264. if err := sess.Begin(); err != nil {
  265. return err
  266. }
  267. ou := &OrgUser{
  268. Uid: uid,
  269. OrgID: orgId,
  270. }
  271. if _, err := sess.Insert(ou); err != nil {
  272. sess.Rollback()
  273. return err
  274. } else if _, err = sess.Exec("UPDATE `user` SET num_members = num_members + 1 WHERE id = ?", orgId); err != nil {
  275. sess.Rollback()
  276. return err
  277. }
  278. return sess.Commit()
  279. }
  280. // RemoveOrgUser removes user from given organization.
  281. func RemoveOrgUser(orgId, uid int64) error {
  282. ou := new(OrgUser)
  283. has, err := x.Where("uid=?", uid).And("org_id=?", orgId).Get(ou)
  284. if err != nil {
  285. return fmt.Errorf("get org-user: %v", err)
  286. } else if !has {
  287. return nil
  288. }
  289. u, err := GetUserByID(uid)
  290. if err != nil {
  291. return fmt.Errorf("GetUserById: %v", err)
  292. }
  293. org, err := GetUserByID(orgId)
  294. if err != nil {
  295. return fmt.Errorf("get organization: %v", err)
  296. } else if err = org.GetRepositories(); err != nil {
  297. return fmt.Errorf("GetRepositories: %v", err)
  298. }
  299. // Check if the user to delete is the last member in owner team.
  300. if IsOrganizationOwner(orgId, uid) {
  301. t, err := org.GetOwnerTeam()
  302. if err != nil {
  303. return err
  304. }
  305. if t.NumMembers == 1 {
  306. return ErrLastOrgOwner{UID: uid}
  307. }
  308. }
  309. sess := x.NewSession()
  310. defer sessionRelease(sess)
  311. if err := sess.Begin(); err != nil {
  312. return err
  313. }
  314. if _, err := sess.Id(ou.ID).Delete(ou); err != nil {
  315. return err
  316. } else if _, err = sess.Exec("UPDATE `user` SET num_members=num_members-1 WHERE id=?", orgId); err != nil {
  317. return err
  318. }
  319. // Delete all repository accesses.
  320. access := &Access{UserID: u.Id}
  321. for _, repo := range org.Repos {
  322. access.RepoID = repo.ID
  323. if _, err = sess.Delete(access); err != nil {
  324. return err
  325. } else if err = watchRepo(sess, u.Id, repo.ID, false); err != nil {
  326. return err
  327. }
  328. }
  329. // Delete member in his/her teams.
  330. teams, err := getUserTeams(sess, org.Id, u.Id)
  331. if err != nil {
  332. return err
  333. }
  334. for _, t := range teams {
  335. if err = removeTeamMember(sess, org.Id, t.ID, u.Id); err != nil {
  336. return err
  337. }
  338. }
  339. return sess.Commit()
  340. }
  341. // ___________
  342. // \__ ___/___ _____ _____
  343. // | |_/ __ \\__ \ / \
  344. // | |\ ___/ / __ \| Y Y \
  345. // |____| \___ >____ /__|_| /
  346. // \/ \/ \/
  347. const OWNER_TEAM = "Owners"
  348. // Team represents a organization team.
  349. type Team struct {
  350. ID int64 `xorm:"pk autoincr"`
  351. OrgID int64 `xorm:"INDEX"`
  352. LowerName string
  353. Name string
  354. Description string
  355. Authorize AccessMode
  356. Repos []*Repository `xorm:"-"`
  357. Members []*User `xorm:"-"`
  358. NumRepos int
  359. NumMembers int
  360. }
  361. // IsOwnerTeam returns true if team is owner team.
  362. func (t *Team) IsOwnerTeam() bool {
  363. return t.Name == OWNER_TEAM
  364. }
  365. // IsTeamMember returns true if given user is a member of team.
  366. func (t *Team) IsMember(uid int64) bool {
  367. return IsTeamMember(t.OrgID, t.ID, uid)
  368. }
  369. func (t *Team) getRepositories(e Engine) (err error) {
  370. teamRepos := make([]*TeamRepo, 0, t.NumRepos)
  371. if err = x.Where("team_id=?", t.ID).Find(&teamRepos); err != nil {
  372. return fmt.Errorf("get team-repos: %v", err)
  373. }
  374. t.Repos = make([]*Repository, 0, len(teamRepos))
  375. for i := range teamRepos {
  376. repo, err := getRepositoryByID(e, teamRepos[i].RepoID)
  377. if err != nil {
  378. return fmt.Errorf("getRepositoryById(%d): %v", teamRepos[i].RepoID, err)
  379. }
  380. t.Repos = append(t.Repos, repo)
  381. }
  382. return nil
  383. }
  384. // GetRepositories returns all repositories in team of organization.
  385. func (t *Team) GetRepositories() error {
  386. return t.getRepositories(x)
  387. }
  388. func (t *Team) getMembers(e Engine) (err error) {
  389. t.Members, err = getTeamMembers(e, t.ID)
  390. return err
  391. }
  392. // GetMembers returns all members in team of organization.
  393. func (t *Team) GetMembers() (err error) {
  394. return t.getMembers(x)
  395. }
  396. // AddMember adds new member to team of organization.
  397. func (t *Team) AddMember(uid int64) error {
  398. return AddTeamMember(t.OrgID, t.ID, uid)
  399. }
  400. // RemoveMember removes member from team of organization.
  401. func (t *Team) RemoveMember(uid int64) error {
  402. return RemoveTeamMember(t.OrgID, t.ID, uid)
  403. }
  404. func (t *Team) hasRepository(e Engine, repoID int64) bool {
  405. return hasTeamRepo(e, t.OrgID, t.ID, repoID)
  406. }
  407. // HasRepository returns true if given repository belong to team.
  408. func (t *Team) HasRepository(repoID int64) bool {
  409. return t.hasRepository(x, repoID)
  410. }
  411. func (t *Team) addRepository(e Engine, repo *Repository) (err error) {
  412. if err = addTeamRepo(e, t.OrgID, t.ID, repo.ID); err != nil {
  413. return err
  414. }
  415. t.NumRepos++
  416. if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  417. return fmt.Errorf("update team: %v", err)
  418. }
  419. if err = repo.recalculateTeamAccesses(e, 0); err != nil {
  420. return fmt.Errorf("recalculateAccesses: %v", err)
  421. }
  422. if err = t.getMembers(e); err != nil {
  423. return fmt.Errorf("getMembers: %v", err)
  424. }
  425. for _, u := range t.Members {
  426. if err = watchRepo(e, u.Id, repo.ID, true); err != nil {
  427. return fmt.Errorf("watchRepo: %v", err)
  428. }
  429. }
  430. return nil
  431. }
  432. // AddRepository adds new repository to team of organization.
  433. func (t *Team) AddRepository(repo *Repository) (err error) {
  434. if repo.OwnerID != t.OrgID {
  435. return errors.New("Repository does not belong to organization")
  436. } else if t.HasRepository(repo.ID) {
  437. return nil
  438. }
  439. sess := x.NewSession()
  440. defer sessionRelease(sess)
  441. if err = sess.Begin(); err != nil {
  442. return err
  443. }
  444. if err = t.addRepository(sess, repo); err != nil {
  445. return err
  446. }
  447. return sess.Commit()
  448. }
  449. func (t *Team) removeRepository(e Engine, repo *Repository, recalculate bool) (err error) {
  450. if err = removeTeamRepo(e, t.ID, repo.ID); err != nil {
  451. return err
  452. }
  453. t.NumRepos--
  454. if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  455. return err
  456. }
  457. // Don't need to recalculate when delete a repository from organization.
  458. if recalculate {
  459. if err = repo.recalculateTeamAccesses(e, t.ID); err != nil {
  460. return err
  461. }
  462. }
  463. if err = t.getMembers(e); err != nil {
  464. return fmt.Errorf("get team members: %v", err)
  465. }
  466. for _, u := range t.Members {
  467. has, err := hasAccess(e, u, repo, ACCESS_MODE_READ)
  468. if err != nil {
  469. return err
  470. } else if has {
  471. continue
  472. }
  473. if err = watchRepo(e, u.Id, repo.ID, false); err != nil {
  474. return err
  475. }
  476. }
  477. return nil
  478. }
  479. // RemoveRepository removes repository from team of organization.
  480. func (t *Team) RemoveRepository(repoID int64) error {
  481. if !t.HasRepository(repoID) {
  482. return nil
  483. }
  484. repo, err := GetRepositoryByID(repoID)
  485. if err != nil {
  486. return err
  487. }
  488. sess := x.NewSession()
  489. defer sessionRelease(sess)
  490. if err = sess.Begin(); err != nil {
  491. return err
  492. }
  493. if err = t.removeRepository(sess, repo, true); err != nil {
  494. return err
  495. }
  496. return sess.Commit()
  497. }
  498. // NewTeam creates a record of new team.
  499. // It's caller's responsibility to assign organization ID.
  500. func NewTeam(t *Team) (err error) {
  501. if err = IsUsableName(t.Name); err != nil {
  502. return err
  503. }
  504. has, err := x.Id(t.OrgID).Get(new(User))
  505. if err != nil {
  506. return err
  507. } else if !has {
  508. return ErrOrgNotExist
  509. }
  510. t.LowerName = strings.ToLower(t.Name)
  511. has, err = x.Where("org_id=?", t.OrgID).And("lower_name=?", t.LowerName).Get(new(Team))
  512. if err != nil {
  513. return err
  514. } else if has {
  515. return ErrTeamAlreadyExist
  516. }
  517. sess := x.NewSession()
  518. defer sess.Close()
  519. if err = sess.Begin(); err != nil {
  520. return err
  521. }
  522. if _, err = sess.Insert(t); err != nil {
  523. sess.Rollback()
  524. return err
  525. }
  526. // Update organization number of teams.
  527. if _, err = sess.Exec("UPDATE `user` SET num_teams=num_teams+1 WHERE id = ?", t.OrgID); err != nil {
  528. sess.Rollback()
  529. return err
  530. }
  531. return sess.Commit()
  532. }
  533. func getTeam(e Engine, orgId int64, name string) (*Team, error) {
  534. t := &Team{
  535. OrgID: orgId,
  536. LowerName: strings.ToLower(name),
  537. }
  538. has, err := e.Get(t)
  539. if err != nil {
  540. return nil, err
  541. } else if !has {
  542. return nil, ErrTeamNotExist
  543. }
  544. return t, nil
  545. }
  546. // GetTeam returns team by given team name and organization.
  547. func GetTeam(orgId int64, name string) (*Team, error) {
  548. return getTeam(x, orgId, name)
  549. }
  550. func getTeamById(e Engine, teamId int64) (*Team, error) {
  551. t := new(Team)
  552. has, err := e.Id(teamId).Get(t)
  553. if err != nil {
  554. return nil, err
  555. } else if !has {
  556. return nil, ErrTeamNotExist
  557. }
  558. return t, nil
  559. }
  560. // GetTeamById returns team by given ID.
  561. func GetTeamById(teamId int64) (*Team, error) {
  562. return getTeamById(x, teamId)
  563. }
  564. // UpdateTeam updates information of team.
  565. func UpdateTeam(t *Team, authChanged bool) (err error) {
  566. if err = IsUsableName(t.Name); err != nil {
  567. return err
  568. }
  569. if len(t.Description) > 255 {
  570. t.Description = t.Description[:255]
  571. }
  572. sess := x.NewSession()
  573. defer sessionRelease(sess)
  574. if err = sess.Begin(); err != nil {
  575. return err
  576. }
  577. t.LowerName = strings.ToLower(t.Name)
  578. if _, err = sess.Id(t.ID).AllCols().Update(t); err != nil {
  579. return fmt.Errorf("update: %v", err)
  580. }
  581. // Update access for team members if needed.
  582. if authChanged {
  583. if err = t.getRepositories(sess); err != nil {
  584. return fmt.Errorf("getRepositories:%v", err)
  585. }
  586. for _, repo := range t.Repos {
  587. if err = repo.recalculateTeamAccesses(sess, 0); err != nil {
  588. return fmt.Errorf("recalculateTeamAccesses: %v", err)
  589. }
  590. }
  591. }
  592. return sess.Commit()
  593. }
  594. // DeleteTeam deletes given team.
  595. // It's caller's responsibility to assign organization ID.
  596. func DeleteTeam(t *Team) error {
  597. if err := t.GetRepositories(); err != nil {
  598. return err
  599. }
  600. // Get organization.
  601. org, err := GetUserByID(t.OrgID)
  602. if err != nil {
  603. return err
  604. }
  605. sess := x.NewSession()
  606. defer sessionRelease(sess)
  607. if err = sess.Begin(); err != nil {
  608. return err
  609. }
  610. // Delete all accesses.
  611. for _, repo := range t.Repos {
  612. if err = repo.recalculateTeamAccesses(sess, t.ID); err != nil {
  613. return err
  614. }
  615. }
  616. // Delete team-user.
  617. if _, err = sess.Where("org_id=?", org.Id).Where("team_id=?", t.ID).Delete(new(TeamUser)); err != nil {
  618. return err
  619. }
  620. // Delete team.
  621. if _, err = sess.Id(t.ID).Delete(new(Team)); err != nil {
  622. return err
  623. }
  624. // Update organization number of teams.
  625. if _, err = sess.Exec("UPDATE `user` SET num_teams=num_teams-1 WHERE id=?", t.OrgID); err != nil {
  626. return err
  627. }
  628. return sess.Commit()
  629. }
  630. // ___________ ____ ___
  631. // \__ ___/___ _____ _____ | | \______ ___________
  632. // | |_/ __ \\__ \ / \| | / ___// __ \_ __ \
  633. // | |\ ___/ / __ \| Y Y \ | /\___ \\ ___/| | \/
  634. // |____| \___ >____ /__|_| /______//____ >\___ >__|
  635. // \/ \/ \/ \/ \/
  636. // TeamUser represents an team-user relation.
  637. type TeamUser struct {
  638. ID int64 `xorm:"pk autoincr"`
  639. OrgID int64 `xorm:"INDEX"`
  640. TeamID int64 `xorm:"UNIQUE(s)"`
  641. Uid int64 `xorm:"UNIQUE(s)"`
  642. }
  643. func isTeamMember(e Engine, orgID, teamID, uid int64) bool {
  644. has, _ := e.Where("org_id=?", orgID).And("team_id=?", teamID).And("uid=?", uid).Get(new(TeamUser))
  645. return has
  646. }
  647. // IsTeamMember returns true if given user is a member of team.
  648. func IsTeamMember(orgID, teamID, uid int64) bool {
  649. return isTeamMember(x, orgID, teamID, uid)
  650. }
  651. func getTeamMembers(e Engine, teamID int64) (_ []*User, err error) {
  652. teamUsers := make([]*TeamUser, 0, 10)
  653. if err = e.Where("team_id=?", teamID).Find(&teamUsers); err != nil {
  654. return nil, fmt.Errorf("get team-users: %v", err)
  655. }
  656. members := make([]*User, 0, len(teamUsers))
  657. for i := range teamUsers {
  658. member := new(User)
  659. if _, err = e.Id(teamUsers[i].Uid).Get(member); err != nil {
  660. return nil, fmt.Errorf("get user '%d': %v", teamUsers[i].Uid, err)
  661. }
  662. members = append(members, member)
  663. }
  664. return members, nil
  665. }
  666. // GetTeamMembers returns all members in given team of organization.
  667. func GetTeamMembers(teamID int64) ([]*User, error) {
  668. return getTeamMembers(x, teamID)
  669. }
  670. func getUserTeams(e Engine, orgId, uid int64) ([]*Team, error) {
  671. tus := make([]*TeamUser, 0, 5)
  672. if err := e.Where("uid=?", uid).And("org_id=?", orgId).Find(&tus); err != nil {
  673. return nil, err
  674. }
  675. ts := make([]*Team, len(tus))
  676. for i, tu := range tus {
  677. t := new(Team)
  678. has, err := e.Id(tu.TeamID).Get(t)
  679. if err != nil {
  680. return nil, err
  681. } else if !has {
  682. return nil, ErrTeamNotExist
  683. }
  684. ts[i] = t
  685. }
  686. return ts, nil
  687. }
  688. // GetUserTeams returns all teams that user belongs to in given organization.
  689. func GetUserTeams(orgId, uid int64) ([]*Team, error) {
  690. return getUserTeams(x, orgId, uid)
  691. }
  692. // AddTeamMember adds new member to given team of given organization.
  693. func AddTeamMember(orgId, teamId, uid int64) error {
  694. if IsTeamMember(orgId, teamId, uid) {
  695. return nil
  696. }
  697. if err := AddOrgUser(orgId, uid); err != nil {
  698. return err
  699. }
  700. // Get team and its repositories.
  701. t, err := GetTeamById(teamId)
  702. if err != nil {
  703. return err
  704. }
  705. t.NumMembers++
  706. if err = t.GetRepositories(); err != nil {
  707. return err
  708. }
  709. sess := x.NewSession()
  710. defer sessionRelease(sess)
  711. if err = sess.Begin(); err != nil {
  712. return err
  713. }
  714. tu := &TeamUser{
  715. Uid: uid,
  716. OrgID: orgId,
  717. TeamID: teamId,
  718. }
  719. if _, err = sess.Insert(tu); err != nil {
  720. return err
  721. } else if _, err = sess.Id(t.ID).Update(t); err != nil {
  722. return err
  723. }
  724. // Give access to team repositories.
  725. for _, repo := range t.Repos {
  726. if err = repo.recalculateTeamAccesses(sess, 0); err != nil {
  727. return err
  728. }
  729. }
  730. // We make sure it exists before.
  731. ou := new(OrgUser)
  732. if _, err = sess.Where("uid=?", uid).And("org_id=?", orgId).Get(ou); err != nil {
  733. return err
  734. }
  735. ou.NumTeams++
  736. if t.IsOwnerTeam() {
  737. ou.IsOwner = true
  738. }
  739. if _, err = sess.Id(ou.ID).AllCols().Update(ou); err != nil {
  740. return err
  741. }
  742. return sess.Commit()
  743. }
  744. func removeTeamMember(e Engine, orgId, teamId, uid int64) error {
  745. if !isTeamMember(e, orgId, teamId, uid) {
  746. return nil
  747. }
  748. // Get team and its repositories.
  749. t, err := getTeamById(e, teamId)
  750. if err != nil {
  751. return err
  752. }
  753. // Check if the user to delete is the last member in owner team.
  754. if t.IsOwnerTeam() && t.NumMembers == 1 {
  755. return ErrLastOrgOwner{UID: uid}
  756. }
  757. t.NumMembers--
  758. if err = t.getRepositories(e); err != nil {
  759. return err
  760. }
  761. // Get organization.
  762. org, err := getUserByID(e, orgId)
  763. if err != nil {
  764. return err
  765. }
  766. tu := &TeamUser{
  767. Uid: uid,
  768. OrgID: orgId,
  769. TeamID: teamId,
  770. }
  771. if _, err := e.Delete(tu); err != nil {
  772. return err
  773. } else if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  774. return err
  775. }
  776. // Delete access to team repositories.
  777. for _, repo := range t.Repos {
  778. if err = repo.recalculateTeamAccesses(e, 0); err != nil {
  779. return err
  780. }
  781. }
  782. // This must exist.
  783. ou := new(OrgUser)
  784. _, err = e.Where("uid=?", uid).And("org_id=?", org.Id).Get(ou)
  785. if err != nil {
  786. return err
  787. }
  788. ou.NumTeams--
  789. if t.IsOwnerTeam() {
  790. ou.IsOwner = false
  791. }
  792. if _, err = e.Id(ou.ID).AllCols().Update(ou); err != nil {
  793. return err
  794. }
  795. return nil
  796. }
  797. // RemoveTeamMember removes member from given team of given organization.
  798. func RemoveTeamMember(orgId, teamId, uid int64) error {
  799. sess := x.NewSession()
  800. defer sessionRelease(sess)
  801. if err := sess.Begin(); err != nil {
  802. return err
  803. }
  804. if err := removeTeamMember(sess, orgId, teamId, uid); err != nil {
  805. return err
  806. }
  807. return sess.Commit()
  808. }
  809. // ___________ __________
  810. // \__ ___/___ _____ _____\______ \ ____ ______ ____
  811. // | |_/ __ \\__ \ / \| _// __ \\____ \ / _ \
  812. // | |\ ___/ / __ \| Y Y \ | \ ___/| |_> > <_> )
  813. // |____| \___ >____ /__|_| /____|_ /\___ > __/ \____/
  814. // \/ \/ \/ \/ \/|__|
  815. // TeamRepo represents an team-repository relation.
  816. type TeamRepo struct {
  817. ID int64 `xorm:"pk autoincr"`
  818. OrgID int64 `xorm:"INDEX"`
  819. TeamID int64 `xorm:"UNIQUE(s)"`
  820. RepoID int64 `xorm:"UNIQUE(s)"`
  821. }
  822. func hasTeamRepo(e Engine, orgID, teamID, repoID int64) bool {
  823. has, _ := e.Where("org_id=?", orgID).And("team_id=?", teamID).And("repo_id=?", repoID).Get(new(TeamRepo))
  824. return has
  825. }
  826. // HasTeamRepo returns true if given repository belongs to team.
  827. func HasTeamRepo(orgID, teamID, repoID int64) bool {
  828. return hasTeamRepo(x, orgID, teamID, repoID)
  829. }
  830. func addTeamRepo(e Engine, orgID, teamID, repoID int64) error {
  831. _, err := e.InsertOne(&TeamRepo{
  832. OrgID: orgID,
  833. TeamID: teamID,
  834. RepoID: repoID,
  835. })
  836. return err
  837. }
  838. // AddTeamRepo adds new repository relation to team.
  839. func AddTeamRepo(orgID, teamID, repoID int64) error {
  840. return addTeamRepo(x, orgID, teamID, repoID)
  841. }
  842. func removeTeamRepo(e Engine, teamID, repoID int64) error {
  843. _, err := e.Delete(&TeamRepo{
  844. TeamID: teamID,
  845. RepoID: repoID,
  846. })
  847. return err
  848. }
  849. // RemoveTeamRepo deletes repository relation to team.
  850. func RemoveTeamRepo(teamID, repoID int64) error {
  851. return removeTeamRepo(x, teamID, repoID)
  852. }
  853. func removeOrgRepo(e Engine, orgID, repoID int64) error {
  854. _, err := e.Delete(&TeamRepo{
  855. OrgID: orgID,
  856. RepoID: repoID,
  857. })
  858. return err
  859. }
  860. // RemoveOrgRepo removes all team-repository relations of given organization.
  861. func RemoveOrgRepo(orgID, repoID int64) error {
  862. return removeOrgRepo(x, orgID, repoID)
  863. }