user.go 3.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157
  1. // Copyright 2015 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package admin
  5. import (
  6. "net/http"
  7. api "github.com/gogs/go-gogs-client"
  8. log "unknwon.dev/clog/v2"
  9. "gogs.io/gogs/internal/conf"
  10. "gogs.io/gogs/internal/context"
  11. "gogs.io/gogs/internal/db"
  12. "gogs.io/gogs/internal/email"
  13. "gogs.io/gogs/internal/route/api/v1/user"
  14. "gogs.io/gogs/internal/userutil"
  15. )
  16. func parseLoginSource(c *context.APIContext, sourceID int64) {
  17. if sourceID == 0 {
  18. return
  19. }
  20. _, err := db.LoginSources.GetByID(c.Req.Context(), sourceID)
  21. if err != nil {
  22. if db.IsErrLoginSourceNotExist(err) {
  23. c.ErrorStatus(http.StatusUnprocessableEntity, err)
  24. } else {
  25. c.Error(err, "get login source by ID")
  26. }
  27. return
  28. }
  29. }
  30. func CreateUser(c *context.APIContext, form api.CreateUserOption) {
  31. parseLoginSource(c, form.SourceID)
  32. if c.Written() {
  33. return
  34. }
  35. user, err := db.Users.Create(
  36. c.Req.Context(),
  37. form.Username,
  38. form.Email,
  39. db.CreateUserOptions{
  40. FullName: form.FullName,
  41. Password: form.Password,
  42. LoginSource: form.SourceID,
  43. LoginName: form.LoginName,
  44. Activated: true,
  45. },
  46. )
  47. if err != nil {
  48. if db.IsErrUserAlreadyExist(err) ||
  49. db.IsErrEmailAlreadyUsed(err) ||
  50. db.IsErrNameNotAllowed(err) {
  51. c.ErrorStatus(http.StatusUnprocessableEntity, err)
  52. } else {
  53. c.Error(err, "create user")
  54. }
  55. return
  56. }
  57. log.Trace("Account %q created by admin %q", user.Name, c.User.Name)
  58. // Send email notification.
  59. if form.SendNotify && conf.Email.Enabled {
  60. email.SendRegisterNotifyMail(c.Context.Context, db.NewMailerUser(user))
  61. }
  62. c.JSON(http.StatusCreated, user.APIFormat())
  63. }
  64. func EditUser(c *context.APIContext, form api.EditUserOption) {
  65. u := user.GetUserByParams(c)
  66. if c.Written() {
  67. return
  68. }
  69. parseLoginSource(c, form.SourceID)
  70. if c.Written() {
  71. return
  72. }
  73. if len(form.Password) > 0 {
  74. u.Password = form.Password
  75. var err error
  76. if u.Salt, err = userutil.RandomSalt(); err != nil {
  77. c.Error(err, "get user salt")
  78. return
  79. }
  80. u.Password = userutil.EncodePassword(u.Password, u.Salt)
  81. }
  82. u.LoginSource = form.SourceID
  83. u.LoginName = form.LoginName
  84. u.FullName = form.FullName
  85. u.Email = form.Email
  86. u.Website = form.Website
  87. u.Location = form.Location
  88. if form.Active != nil {
  89. u.IsActive = *form.Active
  90. }
  91. if form.Admin != nil {
  92. u.IsAdmin = *form.Admin
  93. }
  94. if form.AllowGitHook != nil {
  95. u.AllowGitHook = *form.AllowGitHook
  96. }
  97. if form.AllowImportLocal != nil {
  98. u.AllowImportLocal = *form.AllowImportLocal
  99. }
  100. if form.MaxRepoCreation != nil {
  101. u.MaxRepoCreation = *form.MaxRepoCreation
  102. }
  103. if err := db.UpdateUser(u); err != nil {
  104. if db.IsErrEmailAlreadyUsed(err) {
  105. c.ErrorStatus(http.StatusUnprocessableEntity, err)
  106. } else {
  107. c.Error(err, "update user")
  108. }
  109. return
  110. }
  111. log.Trace("Account profile updated by admin %q: %s", c.User.Name, u.Name)
  112. c.JSONSuccess(u.APIFormat())
  113. }
  114. func DeleteUser(c *context.APIContext) {
  115. u := user.GetUserByParams(c)
  116. if c.Written() {
  117. return
  118. }
  119. if err := db.DeleteUser(u); err != nil {
  120. if db.IsErrUserOwnRepos(err) ||
  121. db.IsErrUserHasOrgs(err) {
  122. c.ErrorStatus(http.StatusUnprocessableEntity, err)
  123. } else {
  124. c.Error(err, "delete user")
  125. }
  126. return
  127. }
  128. log.Trace("Account deleted by admin(%s): %s", c.User.Name, u.Name)
  129. c.NoContent()
  130. }
  131. func CreatePublicKey(c *context.APIContext, form api.CreateKeyOption) {
  132. u := user.GetUserByParams(c)
  133. if c.Written() {
  134. return
  135. }
  136. user.CreateUserPublicKey(c, form, u.ID)
  137. }