1
0

users.go 6.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248
  1. package admin
  2. import (
  3. "strconv"
  4. "strings"
  5. log "unknwon.dev/clog/v2"
  6. "gogs.io/gogs/internal/conf"
  7. "gogs.io/gogs/internal/context"
  8. "gogs.io/gogs/internal/database"
  9. "gogs.io/gogs/internal/email"
  10. "gogs.io/gogs/internal/form"
  11. "gogs.io/gogs/internal/route"
  12. )
  13. const (
  14. tmplAdminUserList = "admin/user/list"
  15. tmplAdminUserNew = "admin/user/new"
  16. tmplAdminUserEdit = "admin/user/edit"
  17. )
  18. func Users(c *context.Context) {
  19. c.Data["Title"] = c.Tr("admin.users")
  20. c.Data["PageIsAdmin"] = true
  21. c.Data["PageIsAdminUsers"] = true
  22. route.RenderUserSearch(c, &route.UserSearchOptions{
  23. Type: database.UserTypeIndividual,
  24. Counter: database.Handle.Users().Count,
  25. Ranger: database.Handle.Users().List,
  26. PageSize: conf.UI.Admin.UserPagingNum,
  27. OrderBy: "id ASC",
  28. TplName: tmplAdminUserList,
  29. })
  30. }
  31. func NewUser(c *context.Context) {
  32. c.Data["Title"] = c.Tr("admin.users.new_account")
  33. c.Data["PageIsAdmin"] = true
  34. c.Data["PageIsAdminUsers"] = true
  35. c.Data["login_type"] = "0-0"
  36. sources, err := database.Handle.LoginSources().List(c.Req.Context(), database.ListLoginSourceOptions{})
  37. if err != nil {
  38. c.Error(err, "list login sources")
  39. return
  40. }
  41. c.Data["Sources"] = sources
  42. c.Data["CanSendEmail"] = conf.Email.Enabled
  43. c.Success(tmplAdminUserNew)
  44. }
  45. func NewUserPost(c *context.Context, f form.AdminCrateUser) {
  46. c.Data["Title"] = c.Tr("admin.users.new_account")
  47. c.Data["PageIsAdmin"] = true
  48. c.Data["PageIsAdminUsers"] = true
  49. sources, err := database.Handle.LoginSources().List(c.Req.Context(), database.ListLoginSourceOptions{})
  50. if err != nil {
  51. c.Error(err, "list login sources")
  52. return
  53. }
  54. c.Data["Sources"] = sources
  55. c.Data["CanSendEmail"] = conf.Email.Enabled
  56. if c.HasError() {
  57. c.Success(tmplAdminUserNew)
  58. return
  59. }
  60. createUserOpts := database.CreateUserOptions{
  61. Password: f.Password,
  62. Activated: true,
  63. }
  64. if len(f.LoginType) > 0 {
  65. fields := strings.Split(f.LoginType, "-")
  66. if len(fields) == 2 {
  67. createUserOpts.LoginSource, _ = strconv.ParseInt(fields[1], 10, 64)
  68. createUserOpts.LoginName = f.LoginName
  69. }
  70. }
  71. user, err := database.Handle.Users().Create(c.Req.Context(), f.UserName, f.Email, createUserOpts)
  72. if err != nil {
  73. switch {
  74. case database.IsErrUserAlreadyExist(err):
  75. c.Data["Err_UserName"] = true
  76. c.RenderWithErr(c.Tr("form.username_been_taken"), tmplAdminUserNew, &f)
  77. case database.IsErrEmailAlreadyUsed(err):
  78. c.Data["Err_Email"] = true
  79. c.RenderWithErr(c.Tr("form.email_been_used"), tmplAdminUserNew, &f)
  80. case database.IsErrNameNotAllowed(err):
  81. c.Data["Err_UserName"] = true
  82. c.RenderWithErr(c.Tr("user.form.name_not_allowed", err.(database.ErrNameNotAllowed).Value()), tmplAdminUserNew, &f)
  83. default:
  84. c.Error(err, "create user")
  85. }
  86. return
  87. }
  88. log.Trace("Account %q created by admin %q", user.Name, c.User.Name)
  89. // Send email notification.
  90. if f.SendNotify && conf.Email.Enabled {
  91. email.SendRegisterNotifyMail(c.Context, database.NewMailerUser(user))
  92. }
  93. c.Flash.Success(c.Tr("admin.users.new_success", user.Name))
  94. c.Redirect(conf.Server.Subpath + "/admin/users/" + strconv.FormatInt(user.ID, 10))
  95. }
  96. func prepareUserInfo(c *context.Context) *database.User {
  97. u, err := database.Handle.Users().GetByID(c.Req.Context(), c.ParamsInt64(":userid"))
  98. if err != nil {
  99. c.Error(err, "get user by ID")
  100. return nil
  101. }
  102. c.Data["User"] = u
  103. if u.LoginSource > 0 {
  104. c.Data["LoginSource"], err = database.Handle.LoginSources().GetByID(c.Req.Context(), u.LoginSource)
  105. if err != nil {
  106. c.Error(err, "get login source by ID")
  107. return nil
  108. }
  109. } else {
  110. c.Data["LoginSource"] = &database.LoginSource{}
  111. }
  112. sources, err := database.Handle.LoginSources().List(c.Req.Context(), database.ListLoginSourceOptions{})
  113. if err != nil {
  114. c.Error(err, "list login sources")
  115. return nil
  116. }
  117. c.Data["Sources"] = sources
  118. return u
  119. }
  120. func EditUser(c *context.Context) {
  121. c.Data["Title"] = c.Tr("admin.users.edit_account")
  122. c.Data["PageIsAdmin"] = true
  123. c.Data["PageIsAdminUsers"] = true
  124. c.Data["EnableLocalPathMigration"] = conf.Repository.EnableLocalPathMigration
  125. prepareUserInfo(c)
  126. if c.Written() {
  127. return
  128. }
  129. c.Success(tmplAdminUserEdit)
  130. }
  131. func EditUserPost(c *context.Context, f form.AdminEditUser) {
  132. c.Data["Title"] = c.Tr("admin.users.edit_account")
  133. c.Data["PageIsAdmin"] = true
  134. c.Data["PageIsAdminUsers"] = true
  135. c.Data["EnableLocalPathMigration"] = conf.Repository.EnableLocalPathMigration
  136. u := prepareUserInfo(c)
  137. if c.Written() {
  138. return
  139. }
  140. if c.HasError() {
  141. c.Success(tmplAdminUserEdit)
  142. return
  143. }
  144. opts := database.UpdateUserOptions{
  145. LoginName: &f.LoginName,
  146. FullName: &f.FullName,
  147. Website: &f.Website,
  148. Location: &f.Location,
  149. MaxRepoCreation: &f.MaxRepoCreation,
  150. IsActivated: &f.Active,
  151. IsAdmin: &f.Admin,
  152. AllowGitHook: &f.AllowGitHook,
  153. AllowImportLocal: &f.AllowImportLocal,
  154. ProhibitLogin: &f.ProhibitLogin,
  155. }
  156. fields := strings.Split(f.LoginType, "-")
  157. if len(fields) == 2 {
  158. loginSource, _ := strconv.ParseInt(fields[1], 10, 64)
  159. if u.LoginSource != loginSource {
  160. opts.LoginSource = &loginSource
  161. }
  162. }
  163. if f.Password != "" {
  164. opts.Password = &f.Password
  165. }
  166. if u.Email != f.Email {
  167. opts.Email = &f.Email
  168. }
  169. err := database.Handle.Users().Update(c.Req.Context(), u.ID, opts)
  170. if err != nil {
  171. if database.IsErrEmailAlreadyUsed(err) {
  172. c.Data["Err_Email"] = true
  173. c.RenderWithErr(c.Tr("form.email_been_used"), tmplAdminUserEdit, &f)
  174. } else {
  175. c.Error(err, "update user")
  176. }
  177. return
  178. }
  179. log.Trace("Account updated by admin %q: %s", c.User.Name, u.Name)
  180. c.Flash.Success(c.Tr("admin.users.update_profile_success"))
  181. c.Redirect(conf.Server.Subpath + "/admin/users/" + c.Params(":userid"))
  182. }
  183. func DeleteUser(c *context.Context) {
  184. u, err := database.Handle.Users().GetByID(c.Req.Context(), c.ParamsInt64(":userid"))
  185. if err != nil {
  186. c.Error(err, "get user by ID")
  187. return
  188. }
  189. if err = database.Handle.Users().DeleteByID(c.Req.Context(), u.ID, false); err != nil {
  190. switch {
  191. case database.IsErrUserOwnRepos(err):
  192. c.Flash.Error(c.Tr("admin.users.still_own_repo"))
  193. c.JSONSuccess(map[string]any{
  194. "redirect": conf.Server.Subpath + "/admin/users/" + c.Params(":userid"),
  195. })
  196. case database.IsErrUserHasOrgs(err):
  197. c.Flash.Error(c.Tr("admin.users.still_has_org"))
  198. c.JSONSuccess(map[string]any{
  199. "redirect": conf.Server.Subpath + "/admin/users/" + c.Params(":userid"),
  200. })
  201. default:
  202. c.Error(err, "delete user")
  203. }
  204. return
  205. }
  206. log.Trace("Account deleted by admin (%s): %s", c.User.Name, u.Name)
  207. c.Flash.Success(c.Tr("admin.users.deletion_success"))
  208. c.JSONSuccess(map[string]any{
  209. "redirect": conf.Server.Subpath + "/admin/users",
  210. })
  211. }