You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

org.go 15KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "errors"
  7. "fmt"
  8. "os"
  9. "strings"
  10. "github.com/go-xorm/builder"
  11. "github.com/go-xorm/xorm"
  12. )
  13. var (
  14. // ErrOrgNotExist organization does not exist
  15. ErrOrgNotExist = errors.New("Organization does not exist")
  16. // ErrTeamNotExist team does not exist
  17. ErrTeamNotExist = errors.New("Team does not exist")
  18. )
  19. // IsOwnedBy returns true if given user is in the owner team.
  20. func (org *User) IsOwnedBy(uid int64) bool {
  21. return IsOrganizationOwner(org.ID, uid)
  22. }
  23. // IsOrgMember returns true if given user is member of organization.
  24. func (org *User) IsOrgMember(uid int64) bool {
  25. return org.IsOrganization() && IsOrganizationMember(org.ID, uid)
  26. }
  27. func (org *User) getTeam(e Engine, name string) (*Team, error) {
  28. return getTeam(e, org.ID, name)
  29. }
  30. // GetTeam returns named team of organization.
  31. func (org *User) GetTeam(name string) (*Team, error) {
  32. return org.getTeam(x, name)
  33. }
  34. func (org *User) getOwnerTeam(e Engine) (*Team, error) {
  35. return org.getTeam(e, ownerTeamName)
  36. }
  37. // GetOwnerTeam returns owner team of organization.
  38. func (org *User) GetOwnerTeam() (*Team, error) {
  39. return org.getOwnerTeam(x)
  40. }
  41. func (org *User) getTeams(e Engine) error {
  42. return e.
  43. Where("org_id=?", org.ID).
  44. OrderBy("CASE WHEN name LIKE '" + ownerTeamName + "' THEN '' ELSE name END").
  45. Find(&org.Teams)
  46. }
  47. // GetTeams returns all teams that belong to organization.
  48. func (org *User) GetTeams() error {
  49. return org.getTeams(x)
  50. }
  51. // GetMembers returns all members of organization.
  52. func (org *User) GetMembers() error {
  53. ous, err := GetOrgUsersByOrgID(org.ID)
  54. if err != nil {
  55. return err
  56. }
  57. var ids = make([]int64, len(ous))
  58. for i, ou := range ous {
  59. ids[i] = ou.UID
  60. }
  61. org.Members, err = GetUsersByIDs(ids)
  62. return err
  63. }
  64. // AddMember adds new member to organization.
  65. func (org *User) AddMember(uid int64) error {
  66. return AddOrgUser(org.ID, uid)
  67. }
  68. // RemoveMember removes member from organization.
  69. func (org *User) RemoveMember(uid int64) error {
  70. return RemoveOrgUser(org.ID, uid)
  71. }
  72. func (org *User) removeOrgRepo(e Engine, repoID int64) error {
  73. return removeOrgRepo(e, org.ID, repoID)
  74. }
  75. // RemoveOrgRepo removes all team-repository relations of organization.
  76. func (org *User) RemoveOrgRepo(repoID int64) error {
  77. return org.removeOrgRepo(x, repoID)
  78. }
  79. // CreateOrganization creates record of a new organization.
  80. func CreateOrganization(org, owner *User) (err error) {
  81. if err = IsUsableUsername(org.Name); err != nil {
  82. return err
  83. }
  84. isExist, err := IsUserExist(0, org.Name)
  85. if err != nil {
  86. return err
  87. } else if isExist {
  88. return ErrUserAlreadyExist{org.Name}
  89. }
  90. org.LowerName = strings.ToLower(org.Name)
  91. if org.Rands, err = GetUserSalt(); err != nil {
  92. return err
  93. }
  94. if org.Salt, err = GetUserSalt(); err != nil {
  95. return err
  96. }
  97. org.UseCustomAvatar = true
  98. org.MaxRepoCreation = -1
  99. org.NumTeams = 1
  100. org.NumMembers = 1
  101. sess := x.NewSession()
  102. defer sessionRelease(sess)
  103. if err = sess.Begin(); err != nil {
  104. return err
  105. }
  106. if _, err = sess.Insert(org); err != nil {
  107. return fmt.Errorf("insert organization: %v", err)
  108. }
  109. org.GenerateRandomAvatar()
  110. // Add initial creator to organization and owner team.
  111. if _, err = sess.Insert(&OrgUser{
  112. UID: owner.ID,
  113. OrgID: org.ID,
  114. IsOwner: true,
  115. NumTeams: 1,
  116. }); err != nil {
  117. return fmt.Errorf("insert org-user relation: %v", err)
  118. }
  119. // Create default owner team.
  120. t := &Team{
  121. OrgID: org.ID,
  122. LowerName: strings.ToLower(ownerTeamName),
  123. Name: ownerTeamName,
  124. Authorize: AccessModeOwner,
  125. NumMembers: 1,
  126. }
  127. if _, err = sess.Insert(t); err != nil {
  128. return fmt.Errorf("insert owner team: %v", err)
  129. }
  130. if _, err = sess.Insert(&TeamUser{
  131. UID: owner.ID,
  132. OrgID: org.ID,
  133. TeamID: t.ID,
  134. }); err != nil {
  135. return fmt.Errorf("insert team-user relation: %v", err)
  136. }
  137. if err = os.MkdirAll(UserPath(org.Name), os.ModePerm); err != nil {
  138. return fmt.Errorf("create directory: %v", err)
  139. }
  140. return sess.Commit()
  141. }
  142. // GetOrgByName returns organization by given name.
  143. func GetOrgByName(name string) (*User, error) {
  144. if len(name) == 0 {
  145. return nil, ErrOrgNotExist
  146. }
  147. u := &User{
  148. LowerName: strings.ToLower(name),
  149. Type: UserTypeOrganization,
  150. }
  151. has, err := x.Get(u)
  152. if err != nil {
  153. return nil, err
  154. } else if !has {
  155. return nil, ErrOrgNotExist
  156. }
  157. return u, nil
  158. }
  159. // CountOrganizations returns number of organizations.
  160. func CountOrganizations() int64 {
  161. count, _ := x.
  162. Where("type=1").
  163. Count(new(User))
  164. return count
  165. }
  166. // Organizations returns number of organizations in given page.
  167. func Organizations(page, pageSize int) ([]*User, error) {
  168. orgs := make([]*User, 0, pageSize)
  169. return orgs, x.
  170. Limit(pageSize, (page-1)*pageSize).
  171. Where("type=1").
  172. Asc("name").
  173. Find(&orgs)
  174. }
  175. // DeleteOrganization completely and permanently deletes everything of organization.
  176. func DeleteOrganization(org *User) (err error) {
  177. if err := DeleteUser(org); err != nil {
  178. return err
  179. }
  180. sess := x.NewSession()
  181. defer sessionRelease(sess)
  182. if err = sess.Begin(); err != nil {
  183. return err
  184. }
  185. if err = deleteBeans(sess,
  186. &Team{OrgID: org.ID},
  187. &OrgUser{OrgID: org.ID},
  188. &TeamUser{OrgID: org.ID},
  189. ); err != nil {
  190. return fmt.Errorf("deleteBeans: %v", err)
  191. }
  192. if err = deleteUser(sess, org); err != nil {
  193. return fmt.Errorf("deleteUser: %v", err)
  194. }
  195. return sess.Commit()
  196. }
  197. // ________ ____ ___
  198. // \_____ \_______ ____ | | \______ ___________
  199. // / | \_ __ \/ ___\| | / ___// __ \_ __ \
  200. // / | \ | \/ /_/ > | /\___ \\ ___/| | \/
  201. // \_______ /__| \___ /|______//____ >\___ >__|
  202. // \/ /_____/ \/ \/
  203. // OrgUser represents an organization-user relation.
  204. type OrgUser struct {
  205. ID int64 `xorm:"pk autoincr"`
  206. UID int64 `xorm:"INDEX UNIQUE(s)"`
  207. OrgID int64 `xorm:"INDEX UNIQUE(s)"`
  208. IsPublic bool
  209. IsOwner bool
  210. NumTeams int
  211. }
  212. // IsOrganizationOwner returns true if given user is in the owner team.
  213. func IsOrganizationOwner(orgID, uid int64) bool {
  214. has, _ := x.
  215. Where("is_owner=?", true).
  216. And("uid=?", uid).
  217. And("org_id=?", orgID).
  218. Get(new(OrgUser))
  219. return has
  220. }
  221. // IsOrganizationMember returns true if given user is member of organization.
  222. func IsOrganizationMember(orgID, uid int64) bool {
  223. has, _ := x.
  224. Where("uid=?", uid).
  225. And("org_id=?", orgID).
  226. Get(new(OrgUser))
  227. return has
  228. }
  229. // IsPublicMembership returns true if given user public his/her membership.
  230. func IsPublicMembership(orgID, uid int64) bool {
  231. has, _ := x.
  232. Where("uid=?", uid).
  233. And("org_id=?", orgID).
  234. And("is_public=?", true).
  235. Get(new(OrgUser))
  236. return has
  237. }
  238. func getOrgsByUserID(sess *xorm.Session, userID int64, showAll bool) ([]*User, error) {
  239. orgs := make([]*User, 0, 10)
  240. if !showAll {
  241. sess.And("`org_user`.is_public=?", true)
  242. }
  243. return orgs, sess.
  244. And("`org_user`.uid=?", userID).
  245. Join("INNER", "`org_user`", "`org_user`.org_id=`user`.id").
  246. Asc("`user`.name").
  247. Find(&orgs)
  248. }
  249. // GetOrgsByUserID returns a list of organizations that the given user ID
  250. // has joined.
  251. func GetOrgsByUserID(userID int64, showAll bool) ([]*User, error) {
  252. return getOrgsByUserID(x.NewSession(), userID, showAll)
  253. }
  254. // GetOrgsByUserIDDesc returns a list of organizations that the given user ID
  255. // has joined, ordered descending by the given condition.
  256. func GetOrgsByUserIDDesc(userID int64, desc string, showAll bool) ([]*User, error) {
  257. return getOrgsByUserID(x.NewSession().Desc(desc), userID, showAll)
  258. }
  259. func getOwnedOrgsByUserID(sess *xorm.Session, userID int64) ([]*User, error) {
  260. orgs := make([]*User, 0, 10)
  261. return orgs, sess.
  262. Where("`org_user`.uid=?", userID).
  263. And("`org_user`.is_owner=?", true).
  264. Join("INNER", "`org_user`", "`org_user`.org_id=`user`.id").
  265. Asc("`user`.name").
  266. Find(&orgs)
  267. }
  268. // GetOwnedOrgsByUserID returns a list of organizations are owned by given user ID.
  269. func GetOwnedOrgsByUserID(userID int64) ([]*User, error) {
  270. sess := x.NewSession()
  271. return getOwnedOrgsByUserID(sess, userID)
  272. }
  273. // GetOwnedOrgsByUserIDDesc returns a list of organizations are owned by
  274. // given user ID, ordered descending by the given condition.
  275. func GetOwnedOrgsByUserIDDesc(userID int64, desc string) ([]*User, error) {
  276. sess := x.NewSession()
  277. return getOwnedOrgsByUserID(sess.Desc(desc), userID)
  278. }
  279. // GetOrgUsersByUserID returns all organization-user relations by user ID.
  280. func GetOrgUsersByUserID(uid int64, all bool) ([]*OrgUser, error) {
  281. ous := make([]*OrgUser, 0, 10)
  282. sess := x.
  283. Join("LEFT", "user", "`org_user`.org_id=`user`.id").
  284. Where("`org_user`.uid=?", uid)
  285. if !all {
  286. // Only show public organizations
  287. sess.And("is_public=?", true)
  288. }
  289. err := sess.
  290. Asc("`user`.name").
  291. Find(&ous)
  292. return ous, err
  293. }
  294. // GetOrgUsersByOrgID returns all organization-user relations by organization ID.
  295. func GetOrgUsersByOrgID(orgID int64) ([]*OrgUser, error) {
  296. ous := make([]*OrgUser, 0, 10)
  297. err := x.
  298. Where("org_id=?", orgID).
  299. Find(&ous)
  300. return ous, err
  301. }
  302. // ChangeOrgUserStatus changes public or private membership status.
  303. func ChangeOrgUserStatus(orgID, uid int64, public bool) error {
  304. ou := new(OrgUser)
  305. has, err := x.
  306. Where("uid=?", uid).
  307. And("org_id=?", orgID).
  308. Get(ou)
  309. if err != nil {
  310. return err
  311. } else if !has {
  312. return nil
  313. }
  314. ou.IsPublic = public
  315. _, err = x.Id(ou.ID).AllCols().Update(ou)
  316. return err
  317. }
  318. // AddOrgUser adds new user to given organization.
  319. func AddOrgUser(orgID, uid int64) error {
  320. if IsOrganizationMember(orgID, uid) {
  321. return nil
  322. }
  323. sess := x.NewSession()
  324. defer sess.Close()
  325. if err := sess.Begin(); err != nil {
  326. return err
  327. }
  328. ou := &OrgUser{
  329. UID: uid,
  330. OrgID: orgID,
  331. }
  332. if _, err := sess.Insert(ou); err != nil {
  333. sess.Rollback()
  334. return err
  335. } else if _, err = sess.Exec("UPDATE `user` SET num_members = num_members + 1 WHERE id = ?", orgID); err != nil {
  336. sess.Rollback()
  337. return err
  338. }
  339. return sess.Commit()
  340. }
  341. // RemoveOrgUser removes user from given organization.
  342. func RemoveOrgUser(orgID, userID int64) error {
  343. ou := new(OrgUser)
  344. has, err := x.
  345. Where("uid=?", userID).
  346. And("org_id=?", orgID).
  347. Get(ou)
  348. if err != nil {
  349. return fmt.Errorf("get org-user: %v", err)
  350. } else if !has {
  351. return nil
  352. }
  353. user, err := GetUserByID(userID)
  354. if err != nil {
  355. return fmt.Errorf("GetUserByID [%d]: %v", userID, err)
  356. }
  357. org, err := GetUserByID(orgID)
  358. if err != nil {
  359. return fmt.Errorf("GetUserByID [%d]: %v", orgID, err)
  360. }
  361. // FIXME: only need to get IDs here, not all fields of repository.
  362. repos, _, err := org.GetUserRepositories(user.ID, 1, org.NumRepos)
  363. if err != nil {
  364. return fmt.Errorf("GetUserRepositories [%d]: %v", user.ID, err)
  365. }
  366. // Check if the user to delete is the last member in owner team.
  367. if IsOrganizationOwner(orgID, userID) {
  368. t, err := org.GetOwnerTeam()
  369. if err != nil {
  370. return err
  371. }
  372. if t.NumMembers == 1 {
  373. return ErrLastOrgOwner{UID: userID}
  374. }
  375. }
  376. sess := x.NewSession()
  377. defer sessionRelease(sess)
  378. if err := sess.Begin(); err != nil {
  379. return err
  380. }
  381. if _, err := sess.Id(ou.ID).Delete(ou); err != nil {
  382. return err
  383. } else if _, err = sess.Exec("UPDATE `user` SET num_members=num_members-1 WHERE id=?", orgID); err != nil {
  384. return err
  385. }
  386. // Delete all repository accesses and unwatch them.
  387. repoIDs := make([]int64, len(repos))
  388. for i := range repos {
  389. repoIDs = append(repoIDs, repos[i].ID)
  390. if err = watchRepo(sess, user.ID, repos[i].ID, false); err != nil {
  391. return err
  392. }
  393. }
  394. if len(repoIDs) > 0 {
  395. if _, err = sess.
  396. Where("user_id = ?", user.ID).
  397. In("repo_id", repoIDs).
  398. Delete(new(Access)); err != nil {
  399. return err
  400. }
  401. }
  402. // Delete member in his/her teams.
  403. teams, err := getUserTeams(sess, org.ID, user.ID)
  404. if err != nil {
  405. return err
  406. }
  407. for _, t := range teams {
  408. if err = removeTeamMember(sess, org.ID, t.ID, user.ID); err != nil {
  409. return err
  410. }
  411. }
  412. return sess.Commit()
  413. }
  414. func removeOrgRepo(e Engine, orgID, repoID int64) error {
  415. _, err := e.Delete(&TeamRepo{
  416. OrgID: orgID,
  417. RepoID: repoID,
  418. })
  419. return err
  420. }
  421. // RemoveOrgRepo removes all team-repository relations of given organization.
  422. func RemoveOrgRepo(orgID, repoID int64) error {
  423. return removeOrgRepo(x, orgID, repoID)
  424. }
  425. func (org *User) getUserTeams(e Engine, userID int64, cols ...string) ([]*Team, error) {
  426. teams := make([]*Team, 0, org.NumTeams)
  427. return teams, e.
  428. Where("`team_user`.org_id = ?", org.ID).
  429. Join("INNER", "team_user", "`team_user`.team_id = team.id").
  430. Join("INNER", "user", "`user`.id=team_user.uid").
  431. And("`team_user`.uid = ?", userID).
  432. Asc("`user`.name").
  433. Cols(cols...).
  434. Find(&teams)
  435. }
  436. // GetUserTeamIDs returns of all team IDs of the organization that user is member of.
  437. func (org *User) GetUserTeamIDs(userID int64) ([]int64, error) {
  438. teams, err := org.getUserTeams(x, userID, "team.id")
  439. if err != nil {
  440. return nil, fmt.Errorf("getUserTeams [%d]: %v", userID, err)
  441. }
  442. teamIDs := make([]int64, len(teams))
  443. for i := range teams {
  444. teamIDs[i] = teams[i].ID
  445. }
  446. return teamIDs, nil
  447. }
  448. // GetUserTeams returns all teams that belong to user,
  449. // and that the user has joined.
  450. func (org *User) GetUserTeams(userID int64) ([]*Team, error) {
  451. return org.getUserTeams(x, userID)
  452. }
  453. // GetUserRepositories returns a range of repositories in organization
  454. // that the user with the given userID has access to,
  455. // and total number of records based on given condition.
  456. func (org *User) GetUserRepositories(userID int64, page, pageSize int) ([]*Repository, int64, error) {
  457. teamIDs, err := org.GetUserTeamIDs(userID)
  458. if err != nil {
  459. return nil, 0, fmt.Errorf("GetUserTeamIDs: %v", err)
  460. }
  461. if len(teamIDs) == 0 {
  462. // user has no team but "IN ()" is invalid SQL
  463. teamIDs = []int64{-1} // there is no repo with id=-1
  464. }
  465. if page <= 0 {
  466. page = 1
  467. }
  468. repos := make([]*Repository, 0, pageSize)
  469. if err := x.
  470. Select("`repository`.*").
  471. Join("INNER", "team_repo", "`team_repo`.repo_id=`repository`.id").
  472. Where("(`repository`.owner_id=? AND `repository`.is_private=?)", org.ID, false).
  473. Or(builder.In("team_repo.team_id", teamIDs)).
  474. GroupBy("`repository`.id").
  475. OrderBy("updated_unix DESC").
  476. Limit(pageSize, (page-1)*pageSize).
  477. Find(&repos); err != nil {
  478. return nil, 0, fmt.Errorf("get repositories: %v", err)
  479. }
  480. repoCount, err := x.
  481. Join("INNER", "team_repo", "`team_repo`.repo_id=`repository`.id").
  482. Where("(`repository`.owner_id=? AND `repository`.is_private=?)", org.ID, false).
  483. Or(builder.In("team_repo.team_id", teamIDs)).
  484. GroupBy("`repository`.id").
  485. Count(&Repository{})
  486. if err != nil {
  487. return nil, 0, fmt.Errorf("count user repositories in organization: %v", err)
  488. }
  489. return repos, repoCount, nil
  490. }
  491. // GetUserMirrorRepositories returns mirror repositories of the user
  492. // that the user with the given userID has access to.
  493. func (org *User) GetUserMirrorRepositories(userID int64) ([]*Repository, error) {
  494. teamIDs, err := org.GetUserTeamIDs(userID)
  495. if err != nil {
  496. return nil, fmt.Errorf("GetUserTeamIDs: %v", err)
  497. }
  498. if len(teamIDs) == 0 {
  499. teamIDs = []int64{-1}
  500. }
  501. repos := make([]*Repository, 0, 10)
  502. return repos, x.
  503. Select("`repository`.*").
  504. Join("INNER", "team_repo", "`team_repo`.repo_id=`repository`.id AND `repository`.is_mirror=?", true).
  505. Where("(`repository`.owner_id=? AND `repository`.is_private=?)", org.ID, false).
  506. Or(builder.In("team_repo.team_id", teamIDs)).
  507. GroupBy("`repository`.id").
  508. OrderBy("updated_unix DESC").
  509. Find(&repos)
  510. }