2023-06-19 23:42:47 +02:00
|
|
|
// SPDX-FileCopyrightText: Copyright The Miniflux Authors. All rights reserved.
|
|
|
|
// SPDX-License-Identifier: Apache-2.0
|
2018-04-30 01:35:04 +02:00
|
|
|
|
2023-08-11 04:46:45 +02:00
|
|
|
package ui // import "miniflux.app/v2/internal/ui"
|
2018-04-30 01:35:04 +02:00
|
|
|
|
|
|
|
import (
|
|
|
|
"net/http"
|
|
|
|
|
2023-08-11 04:46:45 +02:00
|
|
|
"miniflux.app/v2/internal/http/request"
|
|
|
|
"miniflux.app/v2/internal/http/response/html"
|
|
|
|
"miniflux.app/v2/internal/http/route"
|
2023-10-22 04:50:29 +02:00
|
|
|
"miniflux.app/v2/internal/locale"
|
2023-08-11 04:46:45 +02:00
|
|
|
"miniflux.app/v2/internal/model"
|
|
|
|
"miniflux.app/v2/internal/ui/form"
|
|
|
|
"miniflux.app/v2/internal/ui/session"
|
|
|
|
"miniflux.app/v2/internal/ui/view"
|
|
|
|
"miniflux.app/v2/internal/validator"
|
2018-04-30 01:35:04 +02:00
|
|
|
)
|
|
|
|
|
2018-11-11 20:28:29 +01:00
|
|
|
func (h *handler) saveUser(w http.ResponseWriter, r *http.Request) {
|
|
|
|
user, err := h.store.UserByID(request.UserID(r))
|
2018-04-30 01:35:04 +02:00
|
|
|
if err != nil {
|
2018-10-08 03:42:43 +02:00
|
|
|
html.ServerError(w, r, err)
|
2018-04-30 01:35:04 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
if !user.IsAdmin {
|
2018-10-08 03:42:43 +02:00
|
|
|
html.Forbidden(w, r)
|
2018-04-30 01:35:04 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
userForm := form.NewUserForm(r)
|
|
|
|
|
2018-11-11 20:28:29 +01:00
|
|
|
sess := session.New(h.store, request.SessionID(r))
|
|
|
|
view := view.New(h.tpl, r, sess)
|
2018-04-30 01:35:04 +02:00
|
|
|
view.Set("menu", "settings")
|
|
|
|
view.Set("user", user)
|
2018-11-11 20:28:29 +01:00
|
|
|
view.Set("countUnread", h.store.CountUnreadEntries(user.ID))
|
2020-09-28 01:01:06 +02:00
|
|
|
view.Set("countErrorFeeds", h.store.CountUserFeedsWithErrors(user.ID))
|
2018-04-30 01:35:04 +02:00
|
|
|
view.Set("form", userForm)
|
|
|
|
|
2023-10-22 04:50:29 +02:00
|
|
|
if validationErr := userForm.ValidateCreation(); validationErr != nil {
|
|
|
|
view.Set("errorMessage", validationErr.Translate(user.Language))
|
2018-07-07 05:39:28 +02:00
|
|
|
html.OK(w, r, view.Render("create_user"))
|
2018-04-30 01:35:04 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2018-11-11 20:28:29 +01:00
|
|
|
if h.store.UserExists(userForm.Username) {
|
2023-10-22 04:50:29 +02:00
|
|
|
view.Set("errorMessage", locale.NewLocalizedError("error.user_already_exists").Translate(user.Language))
|
2018-07-07 05:39:28 +02:00
|
|
|
html.OK(w, r, view.Render("create_user"))
|
2018-04-30 01:35:04 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2021-01-04 06:20:21 +01:00
|
|
|
userCreationRequest := &model.UserCreationRequest{
|
|
|
|
Username: userForm.Username,
|
|
|
|
Password: userForm.Password,
|
|
|
|
IsAdmin: userForm.IsAdmin,
|
|
|
|
}
|
|
|
|
|
|
|
|
if validationErr := validator.ValidateUserCreationWithPassword(h.store, userCreationRequest); validationErr != nil {
|
2023-10-22 04:50:29 +02:00
|
|
|
view.Set("errorMessage", validationErr.Translate(user.Language))
|
2021-01-04 06:20:21 +01:00
|
|
|
html.OK(w, r, view.Render("create_user"))
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
if _, err := h.store.CreateUser(userCreationRequest); err != nil {
|
2023-09-25 01:32:09 +02:00
|
|
|
html.ServerError(w, r, err)
|
2018-04-30 01:35:04 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2018-11-11 20:28:29 +01:00
|
|
|
html.Redirect(w, r, route.Path(h.router, "users"))
|
2018-04-30 01:35:04 +02:00
|
|
|
}
|