You can not select more than 25 topics Topics must start with a chinese character,a letter or number, can include dashes ('-') and can be up to 35 characters long.

user.go 13 kB

11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
11 years ago
123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "crypto/sha256"
  7. "encoding/hex"
  8. "errors"
  9. "fmt"
  10. "os"
  11. "path/filepath"
  12. "strings"
  13. "time"
  14. "github.com/gogits/git"
  15. "github.com/gogits/gogs/modules/base"
  16. "github.com/gogits/gogs/modules/log"
  17. )
  18. // User types.
  19. const (
  20. UT_INDIVIDUAL = iota + 1
  21. UT_ORGANIZATION
  22. )
  23. // Login types.
  24. const (
  25. LT_PLAIN = iota + 1
  26. LT_LDAP
  27. )
  28. var (
  29. ErrUserOwnRepos = errors.New("User still have ownership of repositories")
  30. ErrUserAlreadyExist = errors.New("User already exist")
  31. ErrUserNotExist = errors.New("User does not exist")
  32. ErrEmailAlreadyUsed = errors.New("E-mail already used")
  33. ErrUserNameIllegal = errors.New("User name contains illegal characters")
  34. ErrKeyNotExist = errors.New("Public key does not exist")
  35. )
  36. // User represents the object of individual and member of organization.
  37. type User struct {
  38. Id int64
  39. LowerName string `xorm:"unique not null"`
  40. Name string `xorm:"unique not null"`
  41. FullName string
  42. Email string `xorm:"unique not null"`
  43. Passwd string `xorm:"not null"`
  44. LoginType int
  45. Type int
  46. NumFollowers int
  47. NumFollowings int
  48. NumStars int
  49. NumRepos int
  50. Avatar string `xorm:"varchar(2048) not null"`
  51. AvatarEmail string `xorm:"not null"`
  52. Location string
  53. Website string
  54. IsActive bool
  55. IsAdmin bool
  56. Rands string `xorm:"VARCHAR(10)"`
  57. Salt string `xorm:"VARCHAR(10)"`
  58. Created time.Time `xorm:"created"`
  59. Updated time.Time `xorm:"updated"`
  60. }
  61. // HomeLink returns the user home page link.
  62. func (user *User) HomeLink() string {
  63. return "/user/" + user.Name
  64. }
  65. // AvatarLink returns the user gravatar link.
  66. func (user *User) AvatarLink() string {
  67. if base.Service.EnableCacheAvatar {
  68. return "/avatar/" + user.Avatar
  69. }
  70. return "//1.gravatar.com/avatar/" + user.Avatar
  71. }
  72. // NewGitSig generates and returns the signature of given user.
  73. func (user *User) NewGitSig() *git.Signature {
  74. return &git.Signature{
  75. Name: user.Name,
  76. Email: user.Email,
  77. When: time.Now(),
  78. }
  79. }
  80. // EncodePasswd encodes password to safe format.
  81. func (user *User) EncodePasswd() {
  82. newPasswd := base.PBKDF2([]byte(user.Passwd), []byte(user.Salt), 10000, 50, sha256.New)
  83. user.Passwd = fmt.Sprintf("%x", newPasswd)
  84. }
  85. // Member represents user is member of organization.
  86. type Member struct {
  87. Id int64
  88. OrgId int64 `xorm:"unique(member) index"`
  89. UserId int64 `xorm:"unique(member)"`
  90. }
  91. // IsUserExist checks if given user name exist,
  92. // the user name should be noncased unique.
  93. func IsUserExist(name string) (bool, error) {
  94. if len(name) == 0 {
  95. return false, nil
  96. }
  97. return orm.Get(&User{LowerName: strings.ToLower(name)})
  98. }
  99. // IsEmailUsed returns true if the e-mail has been used.
  100. func IsEmailUsed(email string) (bool, error) {
  101. if len(email) == 0 {
  102. return false, nil
  103. }
  104. return orm.Get(&User{Email: email})
  105. }
  106. // return a user salt token
  107. func GetUserSalt() string {
  108. return base.GetRandomString(10)
  109. }
  110. // RegisterUser creates record of a new user.
  111. func RegisterUser(user *User) (*User, error) {
  112. if !IsLegalName(user.Name) {
  113. return nil, ErrUserNameIllegal
  114. }
  115. isExist, err := IsUserExist(user.Name)
  116. if err != nil {
  117. return nil, err
  118. } else if isExist {
  119. return nil, ErrUserAlreadyExist
  120. }
  121. isExist, err = IsEmailUsed(user.Email)
  122. if err != nil {
  123. return nil, err
  124. } else if isExist {
  125. return nil, ErrEmailAlreadyUsed
  126. }
  127. user.LowerName = strings.ToLower(user.Name)
  128. user.Avatar = base.EncodeMd5(user.Email)
  129. user.AvatarEmail = user.Email
  130. user.Rands = GetUserSalt()
  131. user.Salt = GetUserSalt()
  132. user.EncodePasswd()
  133. if _, err = orm.Insert(user); err != nil {
  134. return nil, err
  135. } else if err = os.MkdirAll(UserPath(user.Name), os.ModePerm); err != nil {
  136. if _, err := orm.Id(user.Id).Delete(&User{}); err != nil {
  137. return nil, errors.New(fmt.Sprintf(
  138. "both create userpath %s and delete table record faild: %v", user.Name, err))
  139. }
  140. return nil, err
  141. }
  142. if user.Id == 1 {
  143. user.IsAdmin = true
  144. user.IsActive = true
  145. _, err = orm.Id(user.Id).UseBool().Update(user)
  146. }
  147. return user, err
  148. }
  149. // GetUsers returns given number of user objects with offset.
  150. func GetUsers(num, offset int) ([]User, error) {
  151. users := make([]User, 0, num)
  152. err := orm.Limit(num, offset).Asc("id").Find(&users)
  153. return users, err
  154. }
  155. // get user by erify code
  156. func getVerifyUser(code string) (user *User) {
  157. if len(code) <= base.TimeLimitCodeLength {
  158. return nil
  159. }
  160. // use tail hex username query user
  161. hexStr := code[base.TimeLimitCodeLength:]
  162. if b, err := hex.DecodeString(hexStr); err == nil {
  163. if user, err = GetUserByName(string(b)); user != nil {
  164. return user
  165. }
  166. log.Error("user.getVerifyUser: %v", err)
  167. }
  168. return nil
  169. }
  170. // verify active code when active account
  171. func VerifyUserActiveCode(code string) (user *User) {
  172. minutes := base.Service.ActiveCodeLives
  173. if user = getVerifyUser(code); user != nil {
  174. // time limit code
  175. prefix := code[:base.TimeLimitCodeLength]
  176. data := base.ToStr(user.Id) + user.Email + user.LowerName + user.Passwd + user.Rands
  177. if base.VerifyTimeLimitCode(data, minutes, prefix) {
  178. return user
  179. }
  180. }
  181. return nil
  182. }
  183. // ChangeUserName changes all corresponding setting from old user name to new one.
  184. func ChangeUserName(user *User, newUserName string) (err error) {
  185. newUserName = strings.ToLower(newUserName)
  186. // Update accesses of user.
  187. accesses := make([]Access, 0, 10)
  188. if err = orm.Find(&accesses, &Access{UserName: user.LowerName}); err != nil {
  189. return err
  190. }
  191. sess := orm.NewSession()
  192. defer sess.Close()
  193. if err = sess.Begin(); err != nil {
  194. return err
  195. }
  196. for i := range accesses {
  197. accesses[i].UserName = newUserName
  198. if strings.HasPrefix(accesses[i].RepoName, user.LowerName+"/") {
  199. accesses[i].RepoName = strings.Replace(accesses[i].RepoName, user.LowerName, newUserName, 1)
  200. }
  201. if err = UpdateAccessWithSession(sess, &accesses[i]); err != nil {
  202. return err
  203. }
  204. }
  205. repos, err := GetRepositories(user, true)
  206. if err != nil {
  207. return err
  208. }
  209. for i := range repos {
  210. accesses = make([]Access, 0, 10)
  211. // Update accesses of user repository.
  212. if err = orm.Find(&accesses, &Access{RepoName: user.LowerName + "/" + repos[i].LowerName}); err != nil {
  213. return err
  214. }
  215. for j := range accesses {
  216. accesses[j].UserName = newUserName
  217. accesses[j].RepoName = newUserName + "/" + repos[i].LowerName
  218. if err = UpdateAccessWithSession(sess, &accesses[j]); err != nil {
  219. return err
  220. }
  221. }
  222. }
  223. // Change user directory name.
  224. if err = os.Rename(UserPath(user.LowerName), UserPath(newUserName)); err != nil {
  225. sess.Rollback()
  226. return err
  227. }
  228. return sess.Commit()
  229. }
  230. // UpdateUser updates user's information.
  231. func UpdateUser(user *User) (err error) {
  232. user.LowerName = strings.ToLower(user.Name)
  233. if len(user.Location) > 255 {
  234. user.Location = user.Location[:255]
  235. }
  236. if len(user.Website) > 255 {
  237. user.Website = user.Website[:255]
  238. }
  239. _, err = orm.Id(user.Id).AllCols().Update(user)
  240. return err
  241. }
  242. // DeleteUser completely deletes everything of the user.
  243. func DeleteUser(user *User) error {
  244. // Check ownership of repository.
  245. count, err := GetRepositoryCount(user)
  246. if err != nil {
  247. return errors.New("modesl.GetRepositories: " + err.Error())
  248. } else if count > 0 {
  249. return ErrUserOwnRepos
  250. }
  251. // TODO: check issues, other repos' commits
  252. // Delete all followers.
  253. if _, err = orm.Delete(&Follow{FollowId: user.Id}); err != nil {
  254. return err
  255. }
  256. // Delete oauth2.
  257. if _, err = orm.Delete(&Oauth2{Uid: user.Id}); err != nil {
  258. return err
  259. }
  260. // Delete all feeds.
  261. if _, err = orm.Delete(&Action{UserId: user.Id}); err != nil {
  262. return err
  263. }
  264. // Delete all watches.
  265. if _, err = orm.Delete(&Watch{UserId: user.Id}); err != nil {
  266. return err
  267. }
  268. // Delete all accesses.
  269. if _, err = orm.Delete(&Access{UserName: user.LowerName}); err != nil {
  270. return err
  271. }
  272. // Delete all SSH keys.
  273. keys := make([]PublicKey, 0, 10)
  274. if err = orm.Find(&keys, &PublicKey{OwnerId: user.Id}); err != nil {
  275. return err
  276. }
  277. for _, key := range keys {
  278. if err = DeletePublicKey(&key); err != nil {
  279. return err
  280. }
  281. }
  282. // Delete user directory.
  283. if err = os.RemoveAll(UserPath(user.Name)); err != nil {
  284. return err
  285. }
  286. _, err = orm.Delete(user)
  287. return err
  288. }
  289. // UserPath returns the path absolute path of user repositories.
  290. func UserPath(userName string) string {
  291. return filepath.Join(base.RepoRootPath, strings.ToLower(userName))
  292. }
  293. func GetUserByKeyId(keyId int64) (*User, error) {
  294. user := new(User)
  295. rawSql := "SELECT a.* FROM `user` AS a, public_key AS b WHERE a.id = b.owner_id AND b.id=?"
  296. has, err := orm.Sql(rawSql, keyId).Get(user)
  297. if err != nil {
  298. return nil, err
  299. } else if !has {
  300. err = errors.New("not exist key owner")
  301. return nil, err
  302. }
  303. return user, nil
  304. }
  305. // GetUserById returns the user object by given id if exists.
  306. func GetUserById(id int64) (*User, error) {
  307. user := new(User)
  308. has, err := orm.Id(id).Get(user)
  309. if err != nil {
  310. return nil, err
  311. }
  312. if !has {
  313. return nil, ErrUserNotExist
  314. }
  315. return user, nil
  316. }
  317. // GetUserByName returns the user object by given name if exists.
  318. func GetUserByName(name string) (*User, error) {
  319. if len(name) == 0 {
  320. return nil, ErrUserNotExist
  321. }
  322. user := &User{LowerName: strings.ToLower(name)}
  323. has, err := orm.Get(user)
  324. if err != nil {
  325. return nil, err
  326. } else if !has {
  327. return nil, ErrUserNotExist
  328. }
  329. return user, nil
  330. }
  331. // GetUserEmailsByNames returns a slice of e-mails corresponds to names.
  332. func GetUserEmailsByNames(names []string) []string {
  333. mails := make([]string, 0, len(names))
  334. for _, name := range names {
  335. u, err := GetUserByName(name)
  336. if err != nil {
  337. continue
  338. }
  339. mails = append(mails, u.Email)
  340. }
  341. return mails
  342. }
  343. // GetUserByEmail returns the user object by given e-mail if exists.
  344. func GetUserByEmail(email string) (*User, error) {
  345. if len(email) == 0 {
  346. return nil, ErrUserNotExist
  347. }
  348. user := &User{Email: strings.ToLower(email)}
  349. has, err := orm.Get(user)
  350. if err != nil {
  351. return nil, err
  352. } else if !has {
  353. return nil, ErrUserNotExist
  354. }
  355. return user, nil
  356. }
  357. // SearchUserByName returns given number of users whose name contains keyword.
  358. func SearchUserByName(key string, limit int) (us []*User, err error) {
  359. // Prevent SQL inject.
  360. key = strings.TrimSpace(key)
  361. if len(key) == 0 {
  362. return us, nil
  363. }
  364. key = strings.Split(key, " ")[0]
  365. if len(key) == 0 {
  366. return us, nil
  367. }
  368. key = strings.ToLower(key)
  369. us = make([]*User, 0, limit)
  370. err = orm.Limit(limit).Where("lower_name like '%" + key + "%'").Find(&us)
  371. return us, err
  372. }
  373. // LoginUserPlain validates user by raw user name and password.
  374. func LoginUserPlain(uname, passwd string) (*User, error) {
  375. var u *User
  376. if strings.Contains(uname, "@") {
  377. u = &User{Email: uname}
  378. } else {
  379. u = &User{LowerName: strings.ToLower(uname)}
  380. }
  381. has, err := orm.Get(u)
  382. if err != nil {
  383. return nil, err
  384. } else if !has {
  385. return nil, ErrUserNotExist
  386. }
  387. newUser := &User{Passwd: passwd, Salt: u.Salt}
  388. newUser.EncodePasswd()
  389. if u.Passwd != newUser.Passwd {
  390. return nil, ErrUserNotExist
  391. }
  392. return u, nil
  393. }
  394. // Follow is connection request for receiving user notifycation.
  395. type Follow struct {
  396. Id int64
  397. UserId int64 `xorm:"unique(follow)"`
  398. FollowId int64 `xorm:"unique(follow)"`
  399. }
  400. // FollowUser marks someone be another's follower.
  401. func FollowUser(userId int64, followId int64) (err error) {
  402. session := orm.NewSession()
  403. defer session.Close()
  404. session.Begin()
  405. if _, err = session.Insert(&Follow{UserId: userId, FollowId: followId}); err != nil {
  406. session.Rollback()
  407. return err
  408. }
  409. rawSql := "UPDATE `user` SET num_followers = num_followers + 1 WHERE id = ?"
  410. if _, err = session.Exec(rawSql, followId); err != nil {
  411. session.Rollback()
  412. return err
  413. }
  414. rawSql = "UPDATE `user` SET num_followings = num_followings + 1 WHERE id = ?"
  415. if _, err = session.Exec(rawSql, userId); err != nil {
  416. session.Rollback()
  417. return err
  418. }
  419. return session.Commit()
  420. }
  421. // UnFollowUser unmarks someone be another's follower.
  422. func UnFollowUser(userId int64, unFollowId int64) (err error) {
  423. session := orm.NewSession()
  424. defer session.Close()
  425. session.Begin()
  426. if _, err = session.Delete(&Follow{UserId: userId, FollowId: unFollowId}); err != nil {
  427. session.Rollback()
  428. return err
  429. }
  430. rawSql := "UPDATE `user` SET num_followers = num_followers - 1 WHERE id = ?"
  431. if _, err = session.Exec(rawSql, unFollowId); err != nil {
  432. session.Rollback()
  433. return err
  434. }
  435. rawSql = "UPDATE `user` SET num_followings = num_followings - 1 WHERE id = ?"
  436. if _, err = session.Exec(rawSql, userId); err != nil {
  437. session.Rollback()
  438. return err
  439. }
  440. return session.Commit()
  441. }