You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

org.go 17KB


  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "errors"
  7. "fmt"
  8. "os"
  9. "strings"
  10. "github.com/Unknwon/com"
  11. "github.com/go-xorm/builder"
  12. "github.com/go-xorm/xorm"
  13. )
  14. var (
  15. // ErrOrgNotExist organization does not exist
  16. ErrOrgNotExist = errors.New("Organization does not exist")
  17. // ErrTeamNotExist team does not exist
  18. ErrTeamNotExist = errors.New("Team does not exist")
  19. )
  20. // IsOwnedBy returns true if given user is in the owner team.
  21. func (org *User) IsOwnedBy(uid int64) bool {
  22. return IsOrganizationOwner(org.ID, uid)
  23. }
  24. // IsOrgMember returns true if given user is member of organization.
  25. func (org *User) IsOrgMember(uid int64) bool {
  26. return org.IsOrganization() && IsOrganizationMember(org.ID, uid)
  27. }
  28. func (org *User) getTeam(e Engine, name string) (*Team, error) {
  29. return getTeam(e, org.ID, name)
  30. }
  31. // GetTeam returns named team of organization.
  32. func (org *User) GetTeam(name string) (*Team, error) {
  33. return org.getTeam(x, name)
  34. }
  35. func (org *User) getOwnerTeam(e Engine) (*Team, error) {
  36. return org.getTeam(e, ownerTeamName)
  37. }
  38. // GetOwnerTeam returns owner team of organization.
  39. func (org *User) GetOwnerTeam() (*Team, error) {
  40. return org.getOwnerTeam(x)
  41. }
  42. func (org *User) getTeams(e Engine) error {
  43. return e.
  44. Where("org_id=?", org.ID).
  45. OrderBy("CASE WHEN name LIKE '" + ownerTeamName + "' THEN '' ELSE name END").
  46. Find(&org.Teams)
  47. }
  48. // GetTeams returns all teams that belong to organization.
  49. func (org *User) GetTeams() error {
  50. return org.getTeams(x)
  51. }
  52. // GetMembers returns all members of organization.
  53. func (org *User) GetMembers() error {
  54. ous, err := GetOrgUsersByOrgID(org.ID)
  55. if err != nil {
  56. return err
  57. }
  58. var ids = make([]int64, len(ous))
  59. for i, ou := range ous {
  60. ids[i] = ou.UID
  61. }
  62. org.Members, err = GetUsersByIDs(ids)
  63. return err
  64. }
  65. // AddMember adds new member to organization.
  66. func (org *User) AddMember(uid int64) error {
  67. return AddOrgUser(org.ID, uid)
  68. }
  69. // RemoveMember removes member from organization.
  70. func (org *User) RemoveMember(uid int64) error {
  71. return RemoveOrgUser(org.ID, uid)
  72. }
  73. func (org *User) removeOrgRepo(e Engine, repoID int64) error {
  74. return removeOrgRepo(e, org.ID, repoID)
  75. }
  76. // RemoveOrgRepo removes all team-repository relations of organization.
  77. func (org *User) RemoveOrgRepo(repoID int64) error {
  78. return org.removeOrgRepo(x, repoID)
  79. }
  80. // CreateOrganization creates record of a new organization.
  81. func CreateOrganization(org, owner *User) (err error) {
  82. if !owner.CanCreateOrganization() {
  83. return ErrUserNotAllowedCreateOrg{}
  84. }
  85. if err = IsUsableUsername(org.Name); err != nil {
  86. return err
  87. }
  88. isExist, err := IsUserExist(0, org.Name)
  89. if err != nil {
  90. return err
  91. } else if isExist {
  92. return ErrUserAlreadyExist{org.Name}
  93. }
  94. org.LowerName = strings.ToLower(org.Name)
  95. if org.Rands, err = GetUserSalt(); err != nil {
  96. return err
  97. }
  98. if org.Salt, err = GetUserSalt(); err != nil {
  99. return err
  100. }
  101. org.UseCustomAvatar = true
  102. org.MaxRepoCreation = -1
  103. org.NumTeams = 1
  104. org.NumMembers = 1
  105. org.Type = UserTypeOrganization
  106. sess := x.NewSession()
  107. defer sessionRelease(sess)
  108. if err = sess.Begin(); err != nil {
  109. return err
  110. }
  111. if _, err = sess.Insert(org); err != nil {
  112. return fmt.Errorf("insert organization: %v", err)
  113. }
  114. if err = org.generateRandomAvatar(sess); err != nil {
  115. return fmt.Errorf("generate random avatar: %v", err)
  116. }
  117. // Add initial creator to organization and owner team.
  118. if _, err = sess.Insert(&OrgUser{
  119. UID: owner.ID,
  120. OrgID: org.ID,
  121. IsOwner: true,
  122. NumTeams: 1,
  123. }); err != nil {
  124. return fmt.Errorf("insert org-user relation: %v", err)
  125. }
  126. // Create default owner team.
  127. t := &Team{
  128. OrgID: org.ID,
  129. LowerName: strings.ToLower(ownerTeamName),
  130. Name: ownerTeamName,
  131. Authorize: AccessModeOwner,
  132. NumMembers: 1,
  133. }
  134. if _, err = sess.Insert(t); err != nil {
  135. return fmt.Errorf("insert owner team: %v", err)
  136. }
  137. if _, err = sess.Insert(&TeamUser{
  138. UID: owner.ID,
  139. OrgID: org.ID,
  140. TeamID: t.ID,
  141. }); err != nil {
  142. return fmt.Errorf("insert team-user relation: %v", err)
  143. }
  144. if err = os.MkdirAll(UserPath(org.Name), os.ModePerm); err != nil {
  145. return fmt.Errorf("create directory: %v", err)
  146. }
  147. return sess.Commit()
  148. }
  149. // GetOrgByName returns organization by given name.
  150. func GetOrgByName(name string) (*User, error) {
  151. if len(name) == 0 {
  152. return nil, ErrOrgNotExist
  153. }
  154. u := &User{
  155. LowerName: strings.ToLower(name),
  156. Type: UserTypeOrganization,
  157. }
  158. has, err := x.Get(u)
  159. if err != nil {
  160. return nil, err
  161. } else if !has {
  162. return nil, ErrOrgNotExist
  163. }
  164. return u, nil
  165. }
  166. // CountOrganizations returns number of organizations.
  167. func CountOrganizations() int64 {
  168. count, _ := x.
  169. Where("type=1").
  170. Count(new(User))
  171. return count
  172. }
  173. // Organizations returns number of organizations in given page.
  174. func Organizations(opts *SearchUserOptions) ([]*User, error) {
  175. orgs := make([]*User, 0, opts.PageSize)
  176. if len(opts.OrderBy) == 0 {
  177. opts.OrderBy = "name ASC"
  178. }
  179. sess := x.
  180. Limit(opts.PageSize, (opts.Page-1)*opts.PageSize).
  181. Where("type=1")
  182. return orgs, sess.
  183. OrderBy(opts.OrderBy).
  184. Find(&orgs)
  185. }
  186. // DeleteOrganization completely and permanently deletes everything of organization.
  187. func DeleteOrganization(org *User) (err error) {
  188. sess := x.NewSession()
  189. defer sess.Close()
  190. if err = sess.Begin(); err != nil {
  191. return err
  192. }
  193. if err = deleteOrg(sess, org); err != nil {
  194. if IsErrUserOwnRepos(err) {
  195. return err
  196. } else if err != nil {
  197. return fmt.Errorf("deleteOrg: %v", err)
  198. }
  199. }
  200. if err = sess.Commit(); err != nil {
  201. return err
  202. }
  203. return nil
  204. }
  205. func deleteOrg(e *xorm.Session, u *User) error {
  206. if !u.IsOrganization() {
  207. return fmt.Errorf("You can't delete none organization user: %s", u.Name)
  208. }
  209. // Check ownership of repository.
  210. count, err := getRepositoryCount(e, u)
  211. if err != nil {
  212. return fmt.Errorf("GetRepositoryCount: %v", err)
  213. } else if count > 0 {
  214. return ErrUserOwnRepos{UID: u.ID}
  215. }
  216. if err := deleteBeans(e,
  217. &Team{OrgID: u.ID},
  218. &OrgUser{OrgID: u.ID},
  219. &TeamUser{OrgID: u.ID},
  220. ); err != nil {
  221. return fmt.Errorf("deleteBeans: %v", err)
  222. }
  223. if _, err = e.Id(u.ID).Delete(new(User)); err != nil {
  224. return fmt.Errorf("Delete: %v", err)
  225. }
  226. // FIXME: system notice
  227. // Note: There are something just cannot be roll back,
  228. // so just keep error logs of those operations.
  229. path := UserPath(u.Name)
  230. if err := os.RemoveAll(path); err != nil {
  231. return fmt.Errorf("Failed to RemoveAll %s: %v", path, err)
  232. }
  233. if len(u.Avatar) > 0 {
  234. avatarPath := u.CustomAvatarPath()
  235. if com.IsExist(avatarPath) {
  236. if err := os.Remove(avatarPath); err != nil {
  237. return fmt.Errorf("Failed to remove %s: %v", avatarPath, err)
  238. }
  239. }
  240. }
  241. return nil
  242. }
  243. // ________ ____ ___
  244. // \_____ \_______ ____ | | \______ ___________
  245. // / | \_ __ \/ ___\| | / ___// __ \_ __ \
  246. // / | \ | \/ /_/ > | /\___ \\ ___/| | \/
  247. // \_______ /__| \___ /|______//____ >\___ >__|
  248. // \/ /_____/ \/ \/
  249. // OrgUser represents an organization-user relation.
  250. type OrgUser struct {
  251. ID int64 `xorm:"pk autoincr"`
  252. UID int64 `xorm:"INDEX UNIQUE(s)"`
  253. OrgID int64 `xorm:"INDEX UNIQUE(s)"`
  254. IsPublic bool `xorm:"INDEX"`
  255. IsOwner bool
  256. NumTeams int
  257. }
  258. // IsOrganizationOwner returns true if given user is in the owner team.
  259. func IsOrganizationOwner(orgID, uid int64) bool {
  260. has, _ := x.
  261. Where("is_owner=?", true).
  262. And("uid=?", uid).
  263. And("org_id=?", orgID).
  264. Get(new(OrgUser))
  265. return has
  266. }
  267. // IsOrganizationMember returns true if given user is member of organization.
  268. func IsOrganizationMember(orgID, uid int64) bool {
  269. has, _ := x.
  270. Where("uid=?", uid).
  271. And("org_id=?", orgID).
  272. Get(new(OrgUser))
  273. return has
  274. }
  275. // IsPublicMembership returns true if given user public his/her membership.
  276. func IsPublicMembership(orgID, uid int64) bool {
  277. has, _ := x.
  278. Where("uid=?", uid).
  279. And("org_id=?", orgID).
  280. And("is_public=?", true).
  281. Get(new(OrgUser))
  282. return has
  283. }
  284. func getOrgsByUserID(sess *xorm.Session, userID int64, showAll bool) ([]*User, error) {
  285. orgs := make([]*User, 0, 10)
  286. if !showAll {
  287. sess.And("`org_user`.is_public=?", true)
  288. }
  289. return orgs, sess.
  290. And("`org_user`.uid=?", userID).
  291. Join("INNER", "`org_user`", "`org_user`.org_id=`user`.id").
  292. Asc("`user`.name").
  293. Find(&orgs)
  294. }
  295. // GetOrgsByUserID returns a list of organizations that the given user ID
  296. // has joined.
  297. func GetOrgsByUserID(userID int64, showAll bool) ([]*User, error) {
  298. sess := x.NewSession()
  299. defer sess.Close()
  300. return getOrgsByUserID(sess, userID, showAll)
  301. }
  302. func getOwnedOrgsByUserID(sess *xorm.Session, userID int64) ([]*User, error) {
  303. orgs := make([]*User, 0, 10)
  304. return orgs, sess.
  305. Where("`org_user`.uid=?", userID).
  306. And("`org_user`.is_owner=?", true).
  307. Join("INNER", "`org_user`", "`org_user`.org_id=`user`.id").
  308. Asc("`user`.name").
  309. Find(&orgs)
  310. }
  311. // GetOwnedOrgsByUserID returns a list of organizations are owned by given user ID.
  312. func GetOwnedOrgsByUserID(userID int64) ([]*User, error) {
  313. sess := x.NewSession()
  314. defer sess.Close()
  315. return getOwnedOrgsByUserID(sess, userID)
  316. }
  317. // GetOwnedOrgsByUserIDDesc returns a list of organizations are owned by
  318. // given user ID, ordered descending by the given condition.
  319. func GetOwnedOrgsByUserIDDesc(userID int64, desc string) ([]*User, error) {
  320. return getOwnedOrgsByUserID(x.Desc(desc), userID)
  321. }
  322. // GetOrgUsersByUserID returns all organization-user relations by user ID.
  323. func GetOrgUsersByUserID(uid int64, all bool) ([]*OrgUser, error) {
  324. ous := make([]*OrgUser, 0, 10)
  325. sess := x.
  326. Join("LEFT", "user", "`org_user`.org_id=`user`.id").
  327. Where("`org_user`.uid=?", uid)
  328. if !all {
  329. // Only show public organizations
  330. sess.And("is_public=?", true)
  331. }
  332. err := sess.
  333. Asc("`user`.name").
  334. Find(&ous)
  335. return ous, err
  336. }
  337. // GetOrgUsersByOrgID returns all organization-user relations by organization ID.
  338. func GetOrgUsersByOrgID(orgID int64) ([]*OrgUser, error) {
  339. ous := make([]*OrgUser, 0, 10)
  340. err := x.
  341. Where("org_id=?", orgID).
  342. Find(&ous)
  343. return ous, err
  344. }
  345. // ChangeOrgUserStatus changes public or private membership status.
  346. func ChangeOrgUserStatus(orgID, uid int64, public bool) error {
  347. ou := new(OrgUser)
  348. has, err := x.
  349. Where("uid=?", uid).
  350. And("org_id=?", orgID).
  351. Get(ou)
  352. if err != nil {
  353. return err
  354. } else if !has {
  355. return nil
  356. }
  357. ou.IsPublic = public
  358. _, err = x.Id(ou.ID).AllCols().Update(ou)
  359. return err
  360. }
  361. // AddOrgUser adds new user to given organization.
  362. func AddOrgUser(orgID, uid int64) error {
  363. if IsOrganizationMember(orgID, uid) {
  364. return nil
  365. }
  366. sess := x.NewSession()
  367. defer sess.Close()
  368. if err := sess.Begin(); err != nil {
  369. return err
  370. }
  371. ou := &OrgUser{
  372. UID: uid,
  373. OrgID: orgID,
  374. }
  375. if _, err := sess.Insert(ou); err != nil {
  376. sess.Rollback()
  377. return err
  378. } else if _, err = sess.Exec("UPDATE `user` SET num_members = num_members + 1 WHERE id = ?", orgID); err != nil {
  379. sess.Rollback()
  380. return err
  381. }
  382. return sess.Commit()
  383. }
  384. // RemoveOrgUser removes user from given organization.
  385. func RemoveOrgUser(orgID, userID int64) error {
  386. ou := new(OrgUser)
  387. has, err := x.
  388. Where("uid=?", userID).
  389. And("org_id=?", orgID).
  390. Get(ou)
  391. if err != nil {
  392. return fmt.Errorf("get org-user: %v", err)
  393. } else if !has {
  394. return nil
  395. }
  396. org, err := GetUserByID(orgID)
  397. if err != nil {
  398. return fmt.Errorf("GetUserByID [%d]: %v", orgID, err)
  399. }
  400. // Check if the user to delete is the last member in owner team.
  401. if IsOrganizationOwner(orgID, userID) {
  402. t, err := org.GetOwnerTeam()
  403. if err != nil {
  404. return err
  405. }
  406. if t.NumMembers == 1 {
  407. return ErrLastOrgOwner{UID: userID}
  408. }
  409. }
  410. sess := x.NewSession()
  411. defer sessionRelease(sess)
  412. if err := sess.Begin(); err != nil {
  413. return err
  414. }
  415. if _, err := sess.Id(ou.ID).Delete(ou); err != nil {
  416. return err
  417. } else if _, err = sess.Exec("UPDATE `user` SET num_members=num_members-1 WHERE id=?", orgID); err != nil {
  418. return err
  419. }
  420. // Delete all repository accesses and unwatch them.
  421. env, err := org.AccessibleReposEnv(userID)
  422. if err != nil {
  423. return fmt.Errorf("AccessibleReposEnv: %v", err)
  424. }
  425. repoIDs, err := env.RepoIDs(1, org.NumRepos)
  426. if err != nil {
  427. return fmt.Errorf("GetUserRepositories [%d]: %v", userID, err)
  428. }
  429. for _, repoID := range repoIDs {
  430. if err = watchRepo(sess, userID, repoID, false); err != nil {
  431. return err
  432. }
  433. }
  434. if len(repoIDs) > 0 {
  435. if _, err = sess.
  436. Where("user_id = ?", userID).
  437. In("repo_id", repoIDs).
  438. Delete(new(Access)); err != nil {
  439. return err
  440. }
  441. }
  442. // Delete member in his/her teams.
  443. teams, err := getUserTeams(sess, org.ID, userID)
  444. if err != nil {
  445. return err
  446. }
  447. for _, t := range teams {
  448. if err = removeTeamMember(sess, t, userID); err != nil {
  449. return err
  450. }
  451. }
  452. return sess.Commit()
  453. }
  454. func removeOrgRepo(e Engine, orgID, repoID int64) error {
  455. teamRepos := make([]*TeamRepo, 0, 10)
  456. if err := e.Find(&teamRepos, &TeamRepo{OrgID: orgID, RepoID: repoID}); err != nil {
  457. return err
  458. }
  459. if len(teamRepos) == 0 {
  460. return nil
  461. }
  462. if _, err := e.Delete(&TeamRepo{
  463. OrgID: orgID,
  464. RepoID: repoID,
  465. }); err != nil {
  466. return err
  467. }
  468. teamIDs := make([]int64, len(teamRepos))
  469. for i, teamRepo := range teamRepos {
  470. teamIDs[i] = teamRepo.ID
  471. }
  472. _, err := x.Decr("num_repos").In("id", teamIDs).Update(new(Team))
  473. return err
  474. }
  475. func (org *User) getUserTeams(e Engine, userID int64, cols ...string) ([]*Team, error) {
  476. teams := make([]*Team, 0, org.NumTeams)
  477. return teams, e.
  478. Where("`team_user`.org_id = ?", org.ID).
  479. Join("INNER", "team_user", "`team_user`.team_id = team.id").
  480. Join("INNER", "user", "`user`.id=team_user.uid").
  481. And("`team_user`.uid = ?", userID).
  482. Asc("`user`.name").
  483. Cols(cols...).
  484. Find(&teams)
  485. }
  486. func (org *User) getUserTeamIDs(e Engine, userID int64) ([]int64, error) {
  487. teamIDs := make([]int64, 0, org.NumTeams)
  488. return teamIDs, e.
  489. Table("team").
  490. Cols("team.id").
  491. Where("`team_user`.org_id = ?", org.ID).
  492. Join("INNER", "team_user", "`team_user`.team_id = team.id").
  493. And("`team_user`.uid = ?", userID).
  494. Find(&teamIDs)
  495. }
  496. // GetUserTeamIDs returns of all team IDs of the organization that user is member of.
  497. func (org *User) GetUserTeamIDs(userID int64) ([]int64, error) {
  498. return org.getUserTeamIDs(x, userID)
  499. }
  500. // GetUserTeams returns all teams that belong to user,
  501. // and that the user has joined.
  502. func (org *User) GetUserTeams(userID int64) ([]*Team, error) {
  503. return org.getUserTeams(x, userID)
  504. }
  505. // AccessibleReposEnvironment operations involving the repositories that are
  506. // accessible to a particular user
  507. type AccessibleReposEnvironment interface {
  508. CountRepos() (int64, error)
  509. RepoIDs(page, pageSize int) ([]int64, error)
  510. Repos(page, pageSize int) ([]*Repository, error)
  511. MirrorRepos() ([]*Repository, error)
  512. }
  513. type accessibleReposEnv struct {
  514. org *User
  515. userID int64
  516. teamIDs []int64
  517. }
  518. // AccessibleReposEnv an AccessibleReposEnvironment for the repositories in `org`
  519. // that are accessible to the specified user.
  520. func (org *User) AccessibleReposEnv(userID int64) (AccessibleReposEnvironment, error) {
  521. teamIDs, err := org.GetUserTeamIDs(userID)
  522. if err != nil {
  523. return nil, err
  524. }
  525. return &accessibleReposEnv{org: org, userID: userID, teamIDs: teamIDs}, nil
  526. }
  527. func (env *accessibleReposEnv) cond() builder.Cond {
  528. var cond builder.Cond = builder.Eq{
  529. "`repository`.owner_id": env.org.ID,
  530. "`repository`.is_private": false,
  531. }
  532. if len(env.teamIDs) > 0 {
  533. cond = cond.Or(builder.In("team_repo.team_id", env.teamIDs))
  534. }
  535. return cond
  536. }
  537. func (env *accessibleReposEnv) CountRepos() (int64, error) {
  538. repoCount, err := x.
  539. Join("INNER", "team_repo", "`team_repo`.repo_id=`repository`.id").
  540. Where(env.cond()).
  541. Distinct("`repository`.id").
  542. Count(&Repository{})
  543. if err != nil {
  544. return 0, fmt.Errorf("count user repositories in organization: %v", err)
  545. }
  546. return repoCount, nil
  547. }
  548. func (env *accessibleReposEnv) RepoIDs(page, pageSize int) ([]int64, error) {
  549. if page <= 0 {
  550. page = 1
  551. }
  552. repoIDs := make([]int64, 0, pageSize)
  553. return repoIDs, x.
  554. Table("repository").
  555. Join("INNER", "team_repo", "`team_repo`.repo_id=`repository`.id").
  556. Where(env.cond()).
  557. GroupBy("`repository`.id,`repository`.updated_unix").
  558. OrderBy("updated_unix DESC").
  559. Limit(pageSize, (page-1)*pageSize).
  560. Cols("`repository`.id").
  561. Find(&repoIDs)
  562. }
  563. func (env *accessibleReposEnv) Repos(page, pageSize int) ([]*Repository, error) {
  564. repoIDs, err := env.RepoIDs(page, pageSize)
  565. if err != nil {
  566. return nil, fmt.Errorf("GetUserRepositoryIDs: %v", err)
  567. }
  568. repos := make([]*Repository, 0, len(repoIDs))
  569. if len(repoIDs) <= 0 {
  570. return repos, nil
  571. }
  572. return repos, x.
  573. In("`repository`.id", repoIDs).
  574. Find(&repos)
  575. }
  576. func (env *accessibleReposEnv) MirrorRepoIDs() ([]int64, error) {
  577. repoIDs := make([]int64, 0, 10)
  578. return repoIDs, x.
  579. Table("repository").
  580. Join("INNER", "team_repo", "`team_repo`.repo_id=`repository`.id AND `repository`.is_mirror=?", true).
  581. Where(env.cond()).
  582. GroupBy("`repository`.id").
  583. OrderBy("updated_unix DESC").
  584. Cols("`repository`.id").
  585. Find(&repoIDs)
  586. }
  587. func (env *accessibleReposEnv) MirrorRepos() ([]*Repository, error) {
  588. repoIDs, err := env.MirrorRepoIDs()
  589. if err != nil {
  590. return nil, fmt.Errorf("MirrorRepoIDs: %v", err)
  591. }
  592. repos := make([]*Repository, 0, len(repoIDs))
  593. if len(repoIDs) <= 0 {
  594. return repos, nil
  595. }
  596. return repos, x.
  597. In("`repository`.id", repoIDs).
  598. Find(&repos)
  599. }