user.go 9.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "encoding/hex"
  7. "errors"
  8. "fmt"
  9. "os"
  10. "path/filepath"
  11. "strings"
  12. "time"
  13. "github.com/dchest/scrypt"
  14. "github.com/gogits/git"
  15. "github.com/gogits/gogs/modules/base"
  16. "github.com/gogits/gogs/modules/log"
  17. )
  18. // User types.
  19. const (
  20. UT_INDIVIDUAL = iota + 1
  21. UT_ORGANIZATION
  22. )
  23. // Login types.
  24. const (
  25. LT_PLAIN = iota + 1
  26. LT_LDAP
  27. )
  28. // User represents the object of individual and member of organization.
  29. type User struct {
  30. Id int64
  31. LowerName string `xorm:"unique not null"`
  32. Name string `xorm:"unique not null"`
  33. Email string `xorm:"unique not null"`
  34. Passwd string `xorm:"not null"`
  35. LoginType int
  36. Type int
  37. NumFollowers int
  38. NumFollowings int
  39. NumStars int
  40. NumRepos int
  41. Avatar string `xorm:"varchar(2048) not null"`
  42. AvatarEmail string `xorm:"not null"`
  43. Location string
  44. Website string
  45. IsActive bool
  46. IsAdmin bool
  47. Rands string `xorm:"VARCHAR(10)"`
  48. Created time.Time `xorm:"created"`
  49. Updated time.Time `xorm:"updated"`
  50. }
  51. // HomeLink returns the user home page link.
  52. func (user *User) HomeLink() string {
  53. return "/user/" + user.LowerName
  54. }
  55. // AvatarLink returns the user gravatar link.
  56. func (user *User) AvatarLink() string {
  57. return "http://1.gravatar.com/avatar/" + user.Avatar
  58. }
  59. type Follow struct {
  60. Id int64
  61. UserId int64 `xorm:"unique(s)"`
  62. FollowId int64 `xorm:"unique(s)"`
  63. Created time.Time `xorm:"created"`
  64. }
  65. var (
  66. ErrUserOwnRepos = errors.New("User still have ownership of repositories")
  67. ErrUserAlreadyExist = errors.New("User already exist")
  68. ErrUserNotExist = errors.New("User does not exist")
  69. ErrEmailAlreadyUsed = errors.New("E-mail already used")
  70. )
  71. // IsUserExist checks if given user name exist,
  72. // the user name should be noncased unique.
  73. func IsUserExist(name string) (bool, error) {
  74. return orm.Get(&User{LowerName: strings.ToLower(name)})
  75. }
  76. // IsEmailUsed returns true if the e-mail has been used.
  77. func IsEmailUsed(email string) (bool, error) {
  78. return orm.Get(&User{Email: email})
  79. }
  80. // NewGitSig generates and returns the signature of given user.
  81. func (user *User) NewGitSig() *git.Signature {
  82. return &git.Signature{
  83. Name: user.Name,
  84. Email: user.Email,
  85. When: time.Now(),
  86. }
  87. }
  88. // return a user salt token
  89. func GetUserSalt() string {
  90. return base.GetRandomString(10)
  91. }
  92. // RegisterUser creates record of a new user.
  93. func RegisterUser(user *User) (*User, error) {
  94. isExist, err := IsUserExist(user.Name)
  95. if err != nil {
  96. return nil, err
  97. } else if isExist {
  98. return nil, ErrUserAlreadyExist
  99. }
  100. isExist, err = IsEmailUsed(user.Email)
  101. if err != nil {
  102. return nil, err
  103. } else if isExist {
  104. return nil, ErrEmailAlreadyUsed
  105. }
  106. user.LowerName = strings.ToLower(user.Name)
  107. user.Avatar = base.EncodeMd5(user.Email)
  108. user.AvatarEmail = user.Email
  109. user.Rands = GetUserSalt()
  110. if err = user.EncodePasswd(); err != nil {
  111. return nil, err
  112. } else if _, err = orm.Insert(user); err != nil {
  113. return nil, err
  114. } else if err = os.MkdirAll(UserPath(user.Name), os.ModePerm); err != nil {
  115. if _, err := orm.Id(user.Id).Delete(&User{}); err != nil {
  116. return nil, errors.New(fmt.Sprintf(
  117. "both create userpath %s and delete table record faild: %v", user.Name, err))
  118. }
  119. return nil, err
  120. }
  121. return user, nil
  122. }
  123. // get user by erify code
  124. func getVerifyUser(code string) (user *User) {
  125. if len(code) <= base.TimeLimitCodeLength {
  126. return nil
  127. }
  128. // use tail hex username query user
  129. hexStr := code[base.TimeLimitCodeLength:]
  130. if b, err := hex.DecodeString(hexStr); err == nil {
  131. if user, err = GetUserByName(string(b)); user != nil {
  132. return user
  133. }
  134. log.Error("user.getVerifyUser: %v", err)
  135. }
  136. return nil
  137. }
  138. // verify active code when active account
  139. func VerifyUserActiveCode(code string) (user *User) {
  140. minutes := base.Service.ActiveCodeLives
  141. if user = getVerifyUser(code); user != nil {
  142. // time limit code
  143. prefix := code[:base.TimeLimitCodeLength]
  144. data := base.ToStr(user.Id) + user.Email + user.LowerName + user.Passwd + user.Rands
  145. if base.VerifyTimeLimitCode(data, minutes, prefix) {
  146. return user
  147. }
  148. }
  149. return nil
  150. }
  151. // UpdateUser updates user's information.
  152. func UpdateUser(user *User) (err error) {
  153. _, err = orm.Id(user.Id).UseBool().Update(user)
  154. return err
  155. }
  156. // DeleteUser completely deletes everything of the user.
  157. func DeleteUser(user *User) error {
  158. // Check ownership of repository.
  159. count, err := GetRepositoryCount(user)
  160. if err != nil {
  161. return errors.New("modesl.GetRepositories: " + err.Error())
  162. } else if count > 0 {
  163. return ErrUserOwnRepos
  164. }
  165. // TODO: check issues, other repos' commits
  166. // Delete all feeds.
  167. if _, err = orm.Delete(&Action{UserId: user.Id}); err != nil {
  168. return err
  169. }
  170. // Delete all SSH keys.
  171. keys := make([]PublicKey, 0, 10)
  172. if err = orm.Find(&keys, &PublicKey{OwnerId: user.Id}); err != nil {
  173. return err
  174. }
  175. for _, key := range keys {
  176. if err = DeletePublicKey(&key); err != nil {
  177. return err
  178. }
  179. }
  180. // Delete user directory.
  181. if err = os.RemoveAll(UserPath(user.Name)); err != nil {
  182. return err
  183. }
  184. _, err = orm.Delete(user)
  185. // TODO: delete and update follower information.
  186. return err
  187. }
  188. // EncodePasswd encodes password to safe format.
  189. func (user *User) EncodePasswd() error {
  190. newPasswd, err := scrypt.Key([]byte(user.Passwd), []byte(base.SecretKey), 16384, 8, 1, 64)
  191. user.Passwd = fmt.Sprintf("%x", newPasswd)
  192. return err
  193. }
  194. // UserPath returns the path absolute path of user repositories.
  195. func UserPath(userName string) string {
  196. return filepath.Join(RepoRootPath, strings.ToLower(userName))
  197. }
  198. func GetUserByKeyId(keyId int64) (*User, error) {
  199. user := new(User)
  200. rawSql := "SELECT a.* FROM user AS a, public_key AS b WHERE a.id = b.owner_id AND b.id=?"
  201. if base.Cfg.MustValue("database", "DB_TYPE") == "postgres" {
  202. rawSql = "SELECT a.* FROM \"user\" AS a, public_key AS b WHERE a.id = b.owner_id AND b.id=?"
  203. }
  204. has, err := orm.Sql(rawSql, keyId).Get(user)
  205. if err != nil {
  206. return nil, err
  207. } else if !has {
  208. err = errors.New("not exist key owner")
  209. return nil, err
  210. }
  211. return user, nil
  212. }
  213. // GetUserById returns the user object by given id if exists.
  214. func GetUserById(id int64) (*User, error) {
  215. user := new(User)
  216. has, err := orm.Id(id).Get(user)
  217. if err != nil {
  218. return nil, err
  219. }
  220. if !has {
  221. return nil, ErrUserNotExist
  222. }
  223. return user, nil
  224. }
  225. // GetUserByName returns the user object by given name if exists.
  226. func GetUserByName(name string) (*User, error) {
  227. if len(name) == 0 {
  228. return nil, ErrUserNotExist
  229. }
  230. user := &User{
  231. LowerName: strings.ToLower(name),
  232. }
  233. has, err := orm.Get(user)
  234. if err != nil {
  235. return nil, err
  236. } else if !has {
  237. return nil, ErrUserNotExist
  238. }
  239. return user, nil
  240. }
  241. // LoginUserPlain validates user by raw user name and password.
  242. func LoginUserPlain(name, passwd string) (*User, error) {
  243. user := User{LowerName: strings.ToLower(name), Passwd: passwd}
  244. if err := user.EncodePasswd(); err != nil {
  245. return nil, err
  246. }
  247. has, err := orm.Get(&user)
  248. if err != nil {
  249. return nil, err
  250. } else if !has {
  251. err = ErrUserNotExist
  252. }
  253. return &user, err
  254. }
  255. // FollowUser marks someone be another's follower.
  256. func FollowUser(userId int64, followId int64) (err error) {
  257. session := orm.NewSession()
  258. defer session.Close()
  259. session.Begin()
  260. if _, err = session.Insert(&Follow{UserId: userId, FollowId: followId}); err != nil {
  261. session.Rollback()
  262. return err
  263. }
  264. rawSql := "UPDATE user SET num_followers = num_followers + 1 WHERE id = ?"
  265. if base.Cfg.MustValue("database", "DB_TYPE") == "postgres" {
  266. rawSql = "UPDATE \"user\" SET num_followers = num_followers + 1 WHERE id = ?"
  267. }
  268. if _, err = session.Exec(rawSql, followId); err != nil {
  269. session.Rollback()
  270. return err
  271. }
  272. rawSql = "UPDATE user SET num_followings = num_followings + 1 WHERE id = ?"
  273. if base.Cfg.MustValue("database", "DB_TYPE") == "postgres" {
  274. rawSql = "UPDATE \"user\" SET num_followings = num_followings + 1 WHERE id = ?"
  275. }
  276. if _, err = session.Exec(rawSql, userId); err != nil {
  277. session.Rollback()
  278. return err
  279. }
  280. return session.Commit()
  281. }
  282. // UnFollowUser unmarks someone be another's follower.
  283. func UnFollowUser(userId int64, unFollowId int64) (err error) {
  284. session := orm.NewSession()
  285. defer session.Close()
  286. session.Begin()
  287. if _, err = session.Delete(&Follow{UserId: userId, FollowId: unFollowId}); err != nil {
  288. session.Rollback()
  289. return err
  290. }
  291. rawSql := "UPDATE user SET num_followers = num_followers - 1 WHERE id = ?"
  292. if base.Cfg.MustValue("database", "DB_TYPE") == "postgres" {
  293. rawSql = "UPDATE \"user\" SET num_followers = num_followers - 1 WHERE id = ?"
  294. }
  295. if _, err = session.Exec(rawSql, unFollowId); err != nil {
  296. session.Rollback()
  297. return err
  298. }
  299. rawSql = "UPDATE user SET num_followings = num_followings - 1 WHERE id = ?"
  300. if base.Cfg.MustValue("database", "DB_TYPE") == "postgres" {
  301. rawSql = "UPDATE \"user\" SET num_followings = num_followings - 1 WHERE id = ?"
  302. }
  303. if _, err = session.Exec(rawSql, userId); err != nil {
  304. session.Rollback()
  305. return err
  306. }
  307. return session.Commit()
  308. }