You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

org.go 23KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package models
  5. import (
  6. "errors"
  7. "fmt"
  8. "os"
  9. "strings"
  10. "github.com/gogits/gogs/modules/base"
  11. )
  12. var (
  13. ErrOrgNotExist = errors.New("Organization does not exist")
  14. ErrTeamAlreadyExist = errors.New("Team already exist")
  15. ErrTeamNotExist = errors.New("Team does not exist")
  16. ErrTeamNameIllegal = errors.New("Team name contains illegal characters")
  17. ErrLastOrgOwner = errors.New("The user to remove is the last member in owner team")
  18. )
  19. // IsOwnedBy returns true if given user is in the owner team.
  20. func (org *User) IsOwnedBy(uid int64) bool {
  21. return IsOrganizationOwner(org.Id, uid)
  22. }
  23. // IsOrgMember returns true if given user is member of organization.
  24. func (org *User) IsOrgMember(uid int64) bool {
  25. return org.IsOrganization() && IsOrganizationMember(org.Id, uid)
  26. }
  27. func (org *User) getTeam(e Engine, name string) (*Team, error) {
  28. return getTeam(e, org.Id, name)
  29. }
  30. // GetTeam returns named team of organization.
  31. func (org *User) GetTeam(name string) (*Team, error) {
  32. return org.getTeam(x, name)
  33. }
  34. func (org *User) getOwnerTeam(e Engine) (*Team, error) {
  35. return org.getTeam(e, OWNER_TEAM)
  36. }
  37. // GetOwnerTeam returns owner team of organization.
  38. func (org *User) GetOwnerTeam() (*Team, error) {
  39. return org.getOwnerTeam(x)
  40. }
  41. func (org *User) getTeams(e Engine) error {
  42. return e.Where("org_id=?", org.Id).Find(&org.Teams)
  43. }
  44. // GetTeams returns all teams that belong to organization.
  45. func (org *User) GetTeams() error {
  46. return org.getTeams(x)
  47. }
  48. // GetMembers returns all members of organization.
  49. func (org *User) GetMembers() error {
  50. ous, err := GetOrgUsersByOrgId(org.Id)
  51. if err != nil {
  52. return err
  53. }
  54. org.Members = make([]*User, len(ous))
  55. for i, ou := range ous {
  56. org.Members[i], err = GetUserById(ou.Uid)
  57. if err != nil {
  58. return err
  59. }
  60. }
  61. return nil
  62. }
  63. // AddMember adds new member to organization.
  64. func (org *User) AddMember(uid int64) error {
  65. return AddOrgUser(org.Id, uid)
  66. }
  67. // RemoveMember removes member from organization.
  68. func (org *User) RemoveMember(uid int64) error {
  69. return RemoveOrgUser(org.Id, uid)
  70. }
  71. // IsOrgEmailUsed returns true if the e-mail has been used in organization account.
  72. func IsOrgEmailUsed(email string) (bool, error) {
  73. if len(email) == 0 {
  74. return false, nil
  75. }
  76. return x.Get(&User{
  77. Email: email,
  78. Type: ORGANIZATION,
  79. })
  80. }
  81. // CreateOrganization creates record of a new organization.
  82. func CreateOrganization(org, owner *User) (*User, error) {
  83. if !IsLegalName(org.Name) {
  84. return nil, ErrUserNameIllegal
  85. }
  86. isExist, err := IsUserExist(0, org.Name)
  87. if err != nil {
  88. return nil, err
  89. } else if isExist {
  90. return nil, ErrUserAlreadyExist
  91. }
  92. isExist, err = IsOrgEmailUsed(org.Email)
  93. if err != nil {
  94. return nil, err
  95. } else if isExist {
  96. return nil, ErrEmailAlreadyUsed
  97. }
  98. org.LowerName = strings.ToLower(org.Name)
  99. org.FullName = org.Name
  100. org.Avatar = base.EncodeMd5(org.Email)
  101. org.AvatarEmail = org.Email
  102. // No password for organization.
  103. org.NumTeams = 1
  104. org.NumMembers = 1
  105. sess := x.NewSession()
  106. defer sessionRelease(sess)
  107. if err = sess.Begin(); err != nil {
  108. return nil, err
  109. }
  110. if _, err = sess.Insert(org); err != nil {
  111. return nil, err
  112. }
  113. // Create default owner team.
  114. t := &Team{
  115. OrgID: org.Id,
  116. LowerName: strings.ToLower(OWNER_TEAM),
  117. Name: OWNER_TEAM,
  118. Authorize: ACCESS_MODE_OWNER,
  119. NumMembers: 1,
  120. }
  121. if _, err = sess.Insert(t); err != nil {
  122. return nil, err
  123. }
  124. // Add initial creator to organization and owner team.
  125. ou := &OrgUser{
  126. Uid: owner.Id,
  127. OrgID: org.Id,
  128. IsOwner: true,
  129. NumTeams: 1,
  130. }
  131. if _, err = sess.Insert(ou); err != nil {
  132. return nil, err
  133. }
  134. tu := &TeamUser{
  135. Uid: owner.Id,
  136. OrgID: org.Id,
  137. TeamID: t.ID,
  138. }
  139. if _, err = sess.Insert(tu); err != nil {
  140. return nil, err
  141. }
  142. if err = os.MkdirAll(UserPath(org.Name), os.ModePerm); err != nil {
  143. return nil, err
  144. }
  145. return org, sess.Commit()
  146. }
  147. // GetOrgByName returns organization by given name.
  148. func GetOrgByName(name string) (*User, error) {
  149. if len(name) == 0 {
  150. return nil, ErrOrgNotExist
  151. }
  152. u := &User{
  153. LowerName: strings.ToLower(name),
  154. Type: ORGANIZATION,
  155. }
  156. has, err := x.Get(u)
  157. if err != nil {
  158. return nil, err
  159. } else if !has {
  160. return nil, ErrOrgNotExist
  161. }
  162. return u, nil
  163. }
  164. // CountOrganizations returns number of organizations.
  165. func CountOrganizations() int64 {
  166. count, _ := x.Where("type=1").Count(new(User))
  167. return count
  168. }
  169. // GetOrganizations returns given number of organizations with offset.
  170. func GetOrganizations(num, offset int) ([]*User, error) {
  171. orgs := make([]*User, 0, num)
  172. err := x.Limit(num, offset).Where("type=1").Asc("id").Find(&orgs)
  173. return orgs, err
  174. }
  175. // TODO: need some kind of mechanism to record failure.
  176. // DeleteOrganization completely and permanently deletes everything of organization.
  177. func DeleteOrganization(org *User) (err error) {
  178. if err := DeleteUser(org); err != nil {
  179. return err
  180. }
  181. sess := x.NewSession()
  182. defer sess.Close()
  183. if err = sess.Begin(); err != nil {
  184. return err
  185. }
  186. if _, err = sess.Delete(&Team{OrgID: org.Id}); err != nil {
  187. sess.Rollback()
  188. return err
  189. }
  190. if _, err = sess.Delete(&OrgUser{OrgID: org.Id}); err != nil {
  191. sess.Rollback()
  192. return err
  193. }
  194. if _, err = sess.Delete(&TeamUser{OrgID: org.Id}); err != nil {
  195. sess.Rollback()
  196. return err
  197. }
  198. return sess.Commit()
  199. }
  200. // ________ ____ ___
  201. // \_____ \_______ ____ | | \______ ___________
  202. // / | \_ __ \/ ___\| | / ___// __ \_ __ \
  203. // / | \ | \/ /_/ > | /\___ \\ ___/| | \/
  204. // \_______ /__| \___ /|______//____ >\___ >__|
  205. // \/ /_____/ \/ \/
  206. // OrgUser represents an organization-user relation.
  207. type OrgUser struct {
  208. ID int64 `xorm:"pk autoincr"`
  209. Uid int64 `xorm:"INDEX UNIQUE(s)"`
  210. OrgID int64 `xorm:"INDEX UNIQUE(s)"`
  211. IsPublic bool
  212. IsOwner bool
  213. NumTeams int
  214. }
  215. // IsOrganizationOwner returns true if given user is in the owner team.
  216. func IsOrganizationOwner(orgId, uid int64) bool {
  217. has, _ := x.Where("is_owner=?", true).And("uid=?", uid).And("org_id=?", orgId).Get(new(OrgUser))
  218. return has
  219. }
  220. // IsOrganizationMember returns true if given user is member of organization.
  221. func IsOrganizationMember(orgId, uid int64) bool {
  222. has, _ := x.Where("uid=?", uid).And("org_id=?", orgId).Get(new(OrgUser))
  223. return has
  224. }
  225. // IsPublicMembership returns true if given user public his/her membership.
  226. func IsPublicMembership(orgId, uid int64) bool {
  227. has, _ := x.Where("uid=?", uid).And("org_id=?", orgId).And("is_public=?", true).Get(new(OrgUser))
  228. return has
  229. }
  230. // GetOrgUsersByUserId returns all organization-user relations by user ID.
  231. func GetOrgUsersByUserId(uid int64) ([]*OrgUser, error) {
  232. ous := make([]*OrgUser, 0, 10)
  233. err := x.Where("uid=?", uid).Find(&ous)
  234. return ous, err
  235. }
  236. // GetOrgUsersByOrgId returns all organization-user relations by organization ID.
  237. func GetOrgUsersByOrgId(orgId int64) ([]*OrgUser, error) {
  238. ous := make([]*OrgUser, 0, 10)
  239. err := x.Where("org_id=?", orgId).Find(&ous)
  240. return ous, err
  241. }
  242. // ChangeOrgUserStatus changes public or private membership status.
  243. func ChangeOrgUserStatus(orgId, uid int64, public bool) error {
  244. ou := new(OrgUser)
  245. has, err := x.Where("uid=?", uid).And("org_id=?", orgId).Get(ou)
  246. if err != nil {
  247. return err
  248. } else if !has {
  249. return nil
  250. }
  251. ou.IsPublic = public
  252. _, err = x.Id(ou.ID).AllCols().Update(ou)
  253. return err
  254. }
  255. // AddOrgUser adds new user to given organization.
  256. func AddOrgUser(orgId, uid int64) error {
  257. if IsOrganizationMember(orgId, uid) {
  258. return nil
  259. }
  260. sess := x.NewSession()
  261. defer sess.Close()
  262. if err := sess.Begin(); err != nil {
  263. return err
  264. }
  265. ou := &OrgUser{
  266. Uid: uid,
  267. OrgID: orgId,
  268. }
  269. if _, err := sess.Insert(ou); err != nil {
  270. sess.Rollback()
  271. return err
  272. } else if _, err = sess.Exec("UPDATE `user` SET num_members = num_members + 1 WHERE id = ?", orgId); err != nil {
  273. sess.Rollback()
  274. return err
  275. }
  276. return sess.Commit()
  277. }
  278. // RemoveOrgUser removes user from given organization.
  279. func RemoveOrgUser(orgId, uid int64) error {
  280. ou := new(OrgUser)
  281. has, err := x.Where("uid=?", uid).And("org_id=?", orgId).Get(ou)
  282. if err != nil {
  283. return err
  284. } else if !has {
  285. return nil
  286. }
  287. u, err := GetUserById(uid)
  288. if err != nil {
  289. return err
  290. }
  291. org, err := GetUserById(orgId)
  292. if err != nil {
  293. return err
  294. }
  295. // Check if the user to delete is the last member in owner team.
  296. if IsOrganizationOwner(orgId, uid) {
  297. t, err := org.GetOwnerTeam()
  298. if err != nil {
  299. return err
  300. }
  301. if t.NumMembers == 1 {
  302. return ErrLastOrgOwner
  303. }
  304. }
  305. sess := x.NewSession()
  306. defer sess.Close()
  307. if err := sess.Begin(); err != nil {
  308. return err
  309. }
  310. if _, err := sess.Id(ou.ID).Delete(ou); err != nil {
  311. sess.Rollback()
  312. return err
  313. } else if _, err = sess.Exec("UPDATE `user` SET num_members = num_members - 1 WHERE id = ?", orgId); err != nil {
  314. sess.Rollback()
  315. return err
  316. }
  317. // Delete all repository accesses.
  318. if err = org.GetRepositories(); err != nil {
  319. sess.Rollback()
  320. return err
  321. }
  322. access := &Access{
  323. UserID: u.Id,
  324. }
  325. for _, repo := range org.Repos {
  326. access.RepoID = repo.Id
  327. if _, err = sess.Delete(access); err != nil {
  328. sess.Rollback()
  329. return err
  330. } else if err = WatchRepo(u.Id, repo.Id, false); err != nil {
  331. sess.Rollback()
  332. return err
  333. }
  334. }
  335. // Delete member in his/her teams.
  336. ts, err := GetUserTeams(org.Id, u.Id)
  337. if err != nil {
  338. return err
  339. }
  340. for _, t := range ts {
  341. if err = removeTeamMember(sess, org.Id, t.ID, u.Id); err != nil {
  342. return err
  343. }
  344. }
  345. return sess.Commit()
  346. }
  347. // ___________
  348. // \__ ___/___ _____ _____
  349. // | |_/ __ \\__ \ / \
  350. // | |\ ___/ / __ \| Y Y \
  351. // |____| \___ >____ /__|_| /
  352. // \/ \/ \/
  353. const OWNER_TEAM = "Owners"
  354. // Team represents a organization team.
  355. type Team struct {
  356. ID int64 `xorm:"pk autoincr"`
  357. OrgID int64 `xorm:"INDEX"`
  358. LowerName string
  359. Name string
  360. Description string
  361. Authorize AccessMode
  362. Repos []*Repository `xorm:"-"`
  363. Members []*User `xorm:"-"`
  364. NumRepos int
  365. NumMembers int
  366. }
  367. // IsOwnerTeam returns true if team is owner team.
  368. func (t *Team) IsOwnerTeam() bool {
  369. return t.Name == OWNER_TEAM
  370. }
  371. // IsTeamMember returns true if given user is a member of team.
  372. func (t *Team) IsMember(uid int64) bool {
  373. return IsTeamMember(t.OrgID, t.ID, uid)
  374. }
  375. func (t *Team) getRepositories(e Engine) (err error) {
  376. teamRepos := make([]*TeamRepo, 0, t.NumRepos)
  377. if err = x.Where("team_id=?", t.ID).Find(&teamRepos); err != nil {
  378. return fmt.Errorf("get team-repos: %v", err)
  379. }
  380. t.Repos = make([]*Repository, 0, len(teamRepos))
  381. for i := range teamRepos {
  382. repo, err := getRepositoryById(e, teamRepos[i].RepoID)
  383. if err != nil {
  384. return fmt.Errorf("getRepositoryById(%d): %v", teamRepos[i].RepoID, err)
  385. }
  386. t.Repos = append(t.Repos, repo)
  387. }
  388. return nil
  389. }
  390. // GetRepositories returns all repositories in team of organization.
  391. func (t *Team) GetRepositories() error {
  392. return t.getRepositories(x)
  393. }
  394. func (t *Team) getMembers(e Engine) (err error) {
  395. t.Members, err = getTeamMembers(e, t.ID)
  396. return err
  397. }
  398. // GetMembers returns all members in team of organization.
  399. func (t *Team) GetMembers() (err error) {
  400. return t.getMembers(x)
  401. }
  402. // AddMember adds new member to team of organization.
  403. func (t *Team) AddMember(uid int64) error {
  404. return AddTeamMember(t.OrgID, t.ID, uid)
  405. }
  406. // RemoveMember removes member from team of organization.
  407. func (t *Team) RemoveMember(uid int64) error {
  408. return RemoveTeamMember(t.OrgID, t.ID, uid)
  409. }
  410. func (t *Team) hasRepository(e Engine, repoID int64) bool {
  411. return hasTeamRepo(e, t.OrgID, t.ID, repoID)
  412. }
  413. // HasRepository returns true if given repository belong to team.
  414. func (t *Team) HasRepository(repoID int64) bool {
  415. return HasTeamRepo(t.OrgID, t.ID, repoID)
  416. }
  417. func (t *Team) addRepository(e Engine, repo *Repository) (err error) {
  418. if err = addTeamRepo(e, t.OrgID, t.ID, repo.Id); err != nil {
  419. return err
  420. }
  421. t.NumRepos++
  422. if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  423. return fmt.Errorf("update team: %v", err)
  424. }
  425. if err = repo.recalculateAccesses(e); err != nil {
  426. return fmt.Errorf("recalculateAccesses: %v", err)
  427. }
  428. if err = t.getMembers(e); err != nil {
  429. return fmt.Errorf("getMembers: %v", err)
  430. }
  431. for _, u := range t.Members {
  432. if err = watchRepo(e, u.Id, repo.Id, true); err != nil {
  433. return fmt.Errorf("watchRepo: %v", err)
  434. }
  435. }
  436. return nil
  437. }
  438. // AddRepository adds new repository to team of organization.
  439. func (t *Team) AddRepository(repo *Repository) (err error) {
  440. if repo.OwnerId != t.OrgID {
  441. return errors.New("Repository does not belong to organization")
  442. } else if t.HasRepository(repo.Id) {
  443. return nil
  444. }
  445. sess := x.NewSession()
  446. defer sessionRelease(sess)
  447. if err = sess.Begin(); err != nil {
  448. return err
  449. }
  450. if err = t.addRepository(sess, repo); err != nil {
  451. return err
  452. }
  453. return sess.Commit()
  454. }
  455. func (t *Team) removeRepository(e Engine, repo *Repository) (err error) {
  456. if err = removeTeamRepo(e, t.ID, repo.Id); err != nil {
  457. return err
  458. }
  459. t.NumRepos--
  460. if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  461. return err
  462. }
  463. if err = repo.recalculateAccesses(e); err != nil {
  464. return err
  465. }
  466. if err = t.getMembers(e); err != nil {
  467. return fmt.Errorf("get team members: %v", err)
  468. }
  469. for _, u := range t.Members {
  470. has, err := hasAccess(e, u, repo, ACCESS_MODE_READ)
  471. if err != nil {
  472. return err
  473. } else if has {
  474. continue
  475. }
  476. if err = watchRepo(e, u.Id, repo.Id, false); err != nil {
  477. return err
  478. }
  479. }
  480. return nil
  481. }
  482. // RemoveRepository removes repository from team of organization.
  483. func (t *Team) RemoveRepository(repoID int64) error {
  484. if !t.HasRepository(repoID) {
  485. return nil
  486. }
  487. repo, err := GetRepositoryById(repoID)
  488. if err != nil {
  489. return err
  490. }
  491. sess := x.NewSession()
  492. defer sessionRelease(sess)
  493. if err = sess.Begin(); err != nil {
  494. return err
  495. }
  496. if err = t.removeRepository(sess, repo); err != nil {
  497. return err
  498. }
  499. return sess.Commit()
  500. }
  501. // NewTeam creates a record of new team.
  502. // It's caller's responsibility to assign organization ID.
  503. func NewTeam(t *Team) error {
  504. if !IsLegalName(t.Name) {
  505. return ErrTeamNameIllegal
  506. }
  507. has, err := x.Id(t.OrgID).Get(new(User))
  508. if err != nil {
  509. return err
  510. } else if !has {
  511. return ErrOrgNotExist
  512. }
  513. t.LowerName = strings.ToLower(t.Name)
  514. has, err = x.Where("org_id=?", t.OrgID).And("lower_name=?", t.LowerName).Get(new(Team))
  515. if err != nil {
  516. return err
  517. } else if has {
  518. return ErrTeamAlreadyExist
  519. }
  520. sess := x.NewSession()
  521. defer sess.Close()
  522. if err = sess.Begin(); err != nil {
  523. return err
  524. }
  525. if _, err = sess.Insert(t); err != nil {
  526. sess.Rollback()
  527. return err
  528. }
  529. // Update organization number of teams.
  530. if _, err = sess.Exec("UPDATE `user` SET num_teams = num_teams + 1 WHERE id = ?", t.OrgID); err != nil {
  531. sess.Rollback()
  532. return err
  533. }
  534. return sess.Commit()
  535. }
  536. func getTeam(e Engine, orgId int64, name string) (*Team, error) {
  537. t := &Team{
  538. OrgID: orgId,
  539. LowerName: strings.ToLower(name),
  540. }
  541. has, err := e.Get(t)
  542. if err != nil {
  543. return nil, err
  544. } else if !has {
  545. return nil, ErrTeamNotExist
  546. }
  547. return t, nil
  548. }
  549. // GetTeam returns team by given team name and organization.
  550. func GetTeam(orgId int64, name string) (*Team, error) {
  551. return getTeam(x, orgId, name)
  552. }
  553. func getTeamById(e Engine, teamId int64) (*Team, error) {
  554. t := new(Team)
  555. has, err := e.Id(teamId).Get(t)
  556. if err != nil {
  557. return nil, err
  558. } else if !has {
  559. return nil, ErrTeamNotExist
  560. }
  561. return t, nil
  562. }
  563. // GetTeamById returns team by given ID.
  564. func GetTeamById(teamId int64) (*Team, error) {
  565. return getTeamById(x, teamId)
  566. }
  567. // UpdateTeam updates information of team.
  568. func UpdateTeam(t *Team, authChanged bool) (err error) {
  569. if !IsLegalName(t.Name) {
  570. return ErrTeamNameIllegal
  571. }
  572. if len(t.Description) > 255 {
  573. t.Description = t.Description[:255]
  574. }
  575. sess := x.NewSession()
  576. defer sessionRelease(sess)
  577. if err = sess.Begin(); err != nil {
  578. return err
  579. }
  580. t.LowerName = strings.ToLower(t.Name)
  581. if _, err = sess.Id(t.ID).AllCols().Update(t); err != nil {
  582. return err
  583. }
  584. // Update access for team members if needed.
  585. if authChanged {
  586. if err = t.getRepositories(sess); err != nil {
  587. return err
  588. }
  589. for _, repo := range t.Repos {
  590. if err = repo.recalculateAccesses(sess); err != nil {
  591. return err
  592. }
  593. }
  594. }
  595. return sess.Commit()
  596. }
  597. // DeleteTeam deletes given team.
  598. // It's caller's responsibility to assign organization ID.
  599. func DeleteTeam(t *Team) error {
  600. if err := t.GetRepositories(); err != nil {
  601. return err
  602. } else if err = t.GetMembers(); err != nil {
  603. return err
  604. }
  605. // Get organization.
  606. org, err := GetUserById(t.OrgID)
  607. if err != nil {
  608. return err
  609. }
  610. sess := x.NewSession()
  611. defer sessionRelease(sess)
  612. if err = sess.Begin(); err != nil {
  613. return err
  614. }
  615. // Delete all accesses.
  616. for _, repo := range t.Repos {
  617. if err = repo.recalculateAccesses(sess); err != nil {
  618. return err
  619. }
  620. }
  621. // Delete team-user.
  622. if _, err = sess.Where("org_id=?", org.Id).Where("team_id=?", t.ID).Delete(new(TeamUser)); err != nil {
  623. return err
  624. }
  625. // Delete team.
  626. if _, err = sess.Id(t.ID).Delete(new(Team)); err != nil {
  627. return err
  628. }
  629. // Update organization number of teams.
  630. if _, err = sess.Exec("UPDATE `user` SET num_teams=num_teams-1 WHERE id=?", t.OrgID); err != nil {
  631. return err
  632. }
  633. return sess.Commit()
  634. }
  635. // ___________ ____ ___
  636. // \__ ___/___ _____ _____ | | \______ ___________
  637. // | |_/ __ \\__ \ / \| | / ___// __ \_ __ \
  638. // | |\ ___/ / __ \| Y Y \ | /\___ \\ ___/| | \/
  639. // |____| \___ >____ /__|_| /______//____ >\___ >__|
  640. // \/ \/ \/ \/ \/
  641. // TeamUser represents an team-user relation.
  642. type TeamUser struct {
  643. ID int64 `xorm:"pk autoincr"`
  644. OrgID int64 `xorm:"INDEX"`
  645. TeamID int64 `xorm:"UNIQUE(s)"`
  646. Uid int64 `xorm:"UNIQUE(s)"`
  647. }
  648. func isTeamMember(e Engine, orgID, teamID, uid int64) bool {
  649. has, _ := e.Where("org_id=?", orgID).And("team_id=?", teamID).And("uid=?", uid).Get(new(TeamUser))
  650. return has
  651. }
  652. // IsTeamMember returns true if given user is a member of team.
  653. func IsTeamMember(orgID, teamID, uid int64) bool {
  654. return isTeamMember(x, orgID, teamID, uid)
  655. }
  656. func getTeamMembers(e Engine, teamID int64) (_ []*User, err error) {
  657. teamUsers := make([]*TeamUser, 0, 10)
  658. if err = e.Where("team_id=?", teamID).Find(&teamUsers); err != nil {
  659. return nil, fmt.Errorf("get team-users: %v", err)
  660. }
  661. members := make([]*User, 0, len(teamUsers))
  662. for i := range teamUsers {
  663. member := new(User)
  664. if _, err = e.Id(teamUsers[i].Uid).Get(member); err != nil {
  665. return nil, fmt.Errorf("get user '%d': %v", teamUsers[i].Uid, err)
  666. }
  667. members = append(members, member)
  668. }
  669. return members, nil
  670. }
  671. // GetTeamMembers returns all members in given team of organization.
  672. func GetTeamMembers(teamID int64) ([]*User, error) {
  673. return getTeamMembers(x, teamID)
  674. }
  675. func getUserTeams(e Engine, orgId, uid int64) ([]*Team, error) {
  676. tus := make([]*TeamUser, 0, 5)
  677. if err := e.Where("uid=?", uid).And("org_id=?", orgId).Find(&tus); err != nil {
  678. return nil, err
  679. }
  680. ts := make([]*Team, len(tus))
  681. for i, tu := range tus {
  682. t := new(Team)
  683. has, err := e.Id(tu.TeamID).Get(t)
  684. if err != nil {
  685. return nil, err
  686. } else if !has {
  687. return nil, ErrTeamNotExist
  688. }
  689. ts[i] = t
  690. }
  691. return ts, nil
  692. }
  693. // GetUserTeams returns all teams that user belongs to in given organization.
  694. func GetUserTeams(orgId, uid int64) ([]*Team, error) {
  695. return getUserTeams(x, orgId, uid)
  696. }
  697. // AddTeamMember adds new member to given team of given organization.
  698. func AddTeamMember(orgId, teamId, uid int64) error {
  699. if IsTeamMember(orgId, teamId, uid) {
  700. return nil
  701. }
  702. if err := AddOrgUser(orgId, uid); err != nil {
  703. return err
  704. }
  705. // Get team and its repositories.
  706. t, err := GetTeamById(teamId)
  707. if err != nil {
  708. return err
  709. }
  710. t.NumMembers++
  711. if err = t.GetRepositories(); err != nil {
  712. return err
  713. }
  714. sess := x.NewSession()
  715. defer sessionRelease(sess)
  716. if err = sess.Begin(); err != nil {
  717. return err
  718. }
  719. tu := &TeamUser{
  720. Uid: uid,
  721. OrgID: orgId,
  722. TeamID: teamId,
  723. }
  724. if _, err = sess.Insert(tu); err != nil {
  725. return err
  726. } else if _, err = sess.Id(t.ID).Update(t); err != nil {
  727. return err
  728. }
  729. // Give access to team repositories.
  730. for _, repo := range t.Repos {
  731. if err = repo.recalculateAccesses(sess); err != nil {
  732. return err
  733. }
  734. }
  735. // We make sure it exists before.
  736. ou := new(OrgUser)
  737. if _, err = sess.Where("uid=?", uid).And("org_id=?", orgId).Get(ou); err != nil {
  738. return err
  739. }
  740. ou.NumTeams++
  741. if t.IsOwnerTeam() {
  742. ou.IsOwner = true
  743. }
  744. if _, err = sess.Id(ou.ID).AllCols().Update(ou); err != nil {
  745. return err
  746. }
  747. return sess.Commit()
  748. }
  749. func removeTeamMember(e Engine, orgId, teamId, uid int64) error {
  750. if !isTeamMember(e, orgId, teamId, uid) {
  751. return nil
  752. }
  753. // Get team and its repositories.
  754. t, err := getTeamById(e, teamId)
  755. if err != nil {
  756. return err
  757. }
  758. // Check if the user to delete is the last member in owner team.
  759. if t.IsOwnerTeam() && t.NumMembers == 1 {
  760. return ErrLastOrgOwner
  761. }
  762. t.NumMembers--
  763. if err = t.getRepositories(e); err != nil {
  764. return err
  765. }
  766. // Get organization.
  767. org, err := getUserById(e, orgId)
  768. if err != nil {
  769. return err
  770. }
  771. tu := &TeamUser{
  772. Uid: uid,
  773. OrgID: orgId,
  774. TeamID: teamId,
  775. }
  776. if _, err := e.Delete(tu); err != nil {
  777. return err
  778. } else if _, err = e.Id(t.ID).AllCols().Update(t); err != nil {
  779. return err
  780. }
  781. // Delete access to team repositories.
  782. for _, repo := range t.Repos {
  783. if err = repo.recalculateAccesses(e); err != nil {
  784. return err
  785. }
  786. }
  787. // This must exist.
  788. ou := new(OrgUser)
  789. _, err = e.Where("uid=?", uid).And("org_id=?", org.Id).Get(ou)
  790. if err != nil {
  791. return err
  792. }
  793. ou.NumTeams--
  794. if t.IsOwnerTeam() {
  795. ou.IsOwner = false
  796. }
  797. if _, err = e.Id(ou.ID).AllCols().Update(ou); err != nil {
  798. return err
  799. }
  800. return nil
  801. }
  802. // RemoveTeamMember removes member from given team of given organization.
  803. func RemoveTeamMember(orgId, teamId, uid int64) error {
  804. sess := x.NewSession()
  805. defer sessionRelease(sess)
  806. if err := sess.Begin(); err != nil {
  807. return err
  808. }
  809. if err := removeTeamMember(sess, orgId, teamId, uid); err != nil {
  810. return err
  811. }
  812. return sess.Commit()
  813. }
  814. // ___________ __________
  815. // \__ ___/___ _____ _____\______ \ ____ ______ ____
  816. // | |_/ __ \\__ \ / \| _// __ \\____ \ / _ \
  817. // | |\ ___/ / __ \| Y Y \ | \ ___/| |_> > <_> )
  818. // |____| \___ >____ /__|_| /____|_ /\___ > __/ \____/
  819. // \/ \/ \/ \/ \/|__|
  820. // TeamRepo represents an team-repository relation.
  821. type TeamRepo struct {
  822. ID int64 `xorm:"pk autoincr"`
  823. OrgID int64 `xorm:"INDEX"`
  824. TeamID int64 `xorm:"UNIQUE(s)"`
  825. RepoID int64 `xorm:"UNIQUE(s)"`
  826. }
  827. func hasTeamRepo(e Engine, orgID, teamID, repoID int64) bool {
  828. has, _ := e.Where("org_id=?", orgID).And("team_id=?", teamID).And("repo_id=?", repoID).Get(new(TeamRepo))
  829. return has
  830. }
  831. // HasTeamRepo returns true if given repository belongs to team.
  832. func HasTeamRepo(orgID, teamID, repoID int64) bool {
  833. return hasTeamRepo(x, orgID, teamID, repoID)
  834. }
  835. func addTeamRepo(e Engine, orgID, teamID, repoID int64) error {
  836. _, err := e.InsertOne(&TeamRepo{
  837. OrgID: orgID,
  838. TeamID: teamID,
  839. RepoID: repoID,
  840. })
  841. return err
  842. }
  843. // AddTeamRepo adds new repository relation to team.
  844. func AddTeamRepo(orgID, teamID, repoID int64) error {
  845. return addTeamRepo(x, orgID, teamID, repoID)
  846. }
  847. func removeTeamRepo(e Engine, teamID, repoID int64) error {
  848. _, err := e.Delete(&TeamRepo{
  849. TeamID: teamID,
  850. RepoID: repoID,
  851. })
  852. return err
  853. }
  854. // RemoveTeamRepo deletes repository relation to team.
  855. func RemoveTeamRepo(teamID, repoID int64) error {
  856. return removeTeamRepo(x, teamID, repoID)
  857. }