user_remove.go 985 B

12345678910111213141516171819202122232425262728293031323334353637383940414243444546
  1. // Copyright 2018 Frédéric Guillot. All rights reserved.
  2. // Use of this source code is governed by the Apache 2.0
  3. // license that can be found in the LICENSE file.
  4. package ui // import "miniflux.app/ui"
  5. import (
  6. "net/http"
  7. "miniflux.app/http/request"
  8. "miniflux.app/http/response/html"
  9. "miniflux.app/http/route"
  10. )
  11. // RemoveUser deletes a user from the database.
  12. func (c *Controller) RemoveUser(w http.ResponseWriter, r *http.Request) {
  13. user, err := c.store.UserByID(request.UserID(r))
  14. if err != nil {
  15. html.ServerError(w, r, err)
  16. return
  17. }
  18. if !user.IsAdmin {
  19. html.Forbidden(w, r)
  20. return
  21. }
  22. userID := request.RouteInt64Param(r, "userID")
  23. selectedUser, err := c.store.UserByID(userID)
  24. if err != nil {
  25. html.ServerError(w, r, err)
  26. return
  27. }
  28. if selectedUser == nil {
  29. html.NotFound(w, r)
  30. return
  31. }
  32. if err := c.store.RemoveUser(selectedUser.ID); err != nil {
  33. html.ServerError(w, r, err)
  34. return
  35. }
  36. html.Redirect(w, r, route.Path(c.router, "users"))
  37. }