Semaphore/api/projects/users.go

122 lines
3.0 KiB
Go
Raw Normal View History

2016-04-02 14:40:07 +02:00
package projects
import (
"database/sql"
2016-04-17 12:41:36 +02:00
"strconv"
2016-05-24 11:55:48 +02:00
database "github.com/ansible-semaphore/semaphore/db"
2016-04-02 14:40:07 +02:00
"github.com/ansible-semaphore/semaphore/models"
2016-04-04 01:10:12 +02:00
"github.com/ansible-semaphore/semaphore/util"
2016-04-02 14:40:07 +02:00
"github.com/gin-gonic/gin"
"github.com/masterminds/squirrel"
)
2017-02-22 23:17:36 +01:00
func UserMiddleware(w http.ResponseWriter, r *http.Request) {
project := context.Get(r, "project").(models.Project)
userID, err := util.GetIntParam("user_id", c)
if err != nil {
return
}
var user models.User
if err := database.Mysql.SelectOne(&user, "select u.* from project__user as pu join user as u on pu.user_id=u.id where pu.user_id=? and pu.project_id=?", userID, project.ID); err != nil {
if err == sql.ErrNoRows {
2017-02-22 23:17:36 +01:00
w.WriteHeader(http.StatusNotFound)
return
}
panic(err)
}
c.Set("projectUser", user)
2016-04-04 15:44:34 +02:00
c.Next()
}
2017-02-22 23:17:36 +01:00
func GetUsers(w http.ResponseWriter, r *http.Request) {
project := context.Get(r, "project").(models.Project)
var users []struct {
models.User
Admin bool `db:"admin" json:"admin"`
}
2016-04-02 14:40:07 +02:00
query, args, _ := squirrel.Select("u.*").Column("pu.admin").
2016-04-02 14:40:07 +02:00
From("project__user as pu").
Join("user as u on pu.user_id=u.id").
Where("pu.project_id=?", project.ID).
ToSql()
if _, err := database.Mysql.Select(&users, query, args...); err != nil {
panic(err)
}
c.JSON(200, users)
}
2017-02-22 23:17:36 +01:00
func AddUser(w http.ResponseWriter, r *http.Request) {
project := context.Get(r, "project").(models.Project)
2016-04-04 01:10:12 +02:00
var user struct {
UserID int `json:"user_id" binding:"required"`
Admin bool `json:"admin"`
}
if err := mulekick.Bind(w, r, &user); err != nil {
2016-04-04 01:10:12 +02:00
return
}
if _, err := database.Mysql.Exec("insert into project__user set user_id=?, project_id=?, admin=?", user.UserID, project.ID, user.Admin); err != nil {
panic(err)
}
2016-04-17 12:41:36 +02:00
objType := "user"
desc := "User ID " + strconv.Itoa(user.UserID) + " added to team"
if err := (models.Event{
ProjectID: &project.ID,
ObjectType: &objType,
ObjectID: &user.UserID,
Description: &desc,
}.Insert()); err != nil {
panic(err)
}
2017-02-22 23:17:36 +01:00
w.WriteHeader(http.StatusNoContent)
2016-04-02 14:40:07 +02:00
}
2017-02-22 23:17:36 +01:00
func RemoveUser(w http.ResponseWriter, r *http.Request) {
project := context.Get(r, "project").(models.Project)
user := context.Get(r, "projectUser").(models.User)
2016-04-04 01:10:12 +02:00
if _, err := database.Mysql.Exec("delete from project__user where user_id=? and project_id=?", user.ID, project.ID); err != nil {
2016-04-04 01:10:12 +02:00
panic(err)
}
2016-04-17 12:41:36 +02:00
objType := "user"
desc := "User ID " + strconv.Itoa(user.ID) + " removed from team"
if err := (models.Event{
ProjectID: &project.ID,
ObjectType: &objType,
ObjectID: &user.ID,
Description: &desc,
}.Insert()); err != nil {
panic(err)
}
2017-02-22 23:17:36 +01:00
w.WriteHeader(http.StatusNoContent)
2016-04-02 14:40:07 +02:00
}
2016-04-04 15:44:34 +02:00
2017-02-22 23:17:36 +01:00
func MakeUserAdmin(w http.ResponseWriter, r *http.Request) {
project := context.Get(r, "project").(models.Project)
user := context.Get(r, "projectUser").(models.User)
admin := 1
2017-02-22 23:17:36 +01:00
if r.Method == "DELETE" {
2016-04-04 15:44:34 +02:00
// strip admin
admin = 0
2016-04-04 15:44:34 +02:00
}
if _, err := database.Mysql.Exec("update project__user set admin=? where user_id=? and project_id=?", admin, user.ID, project.ID); err != nil {
panic(err)
}
2017-02-22 23:17:36 +01:00
w.WriteHeader(http.StatusNoContent)
2016-04-04 15:44:34 +02:00
}