user_save.go 1.7 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465
  1. // Copyright 2018 Frédéric Guillot. All rights reserved.
  2. // Use of this source code is governed by the Apache 2.0
  3. // license that can be found in the LICENSE file.
  4. package ui
  5. import (
  6. "net/http"
  7. "github.com/miniflux/miniflux/http/context"
  8. "github.com/miniflux/miniflux/http/response"
  9. "github.com/miniflux/miniflux/http/response/html"
  10. "github.com/miniflux/miniflux/http/route"
  11. "github.com/miniflux/miniflux/logger"
  12. "github.com/miniflux/miniflux/ui/form"
  13. "github.com/miniflux/miniflux/ui/session"
  14. "github.com/miniflux/miniflux/ui/view"
  15. )
  16. // SaveUser validate and save the new user into the database.
  17. func (c *Controller) SaveUser(w http.ResponseWriter, r *http.Request) {
  18. ctx := context.New(r)
  19. user, err := c.store.UserByID(ctx.UserID())
  20. if err != nil {
  21. html.ServerError(w, err)
  22. return
  23. }
  24. if !user.IsAdmin {
  25. html.Forbidden(w)
  26. return
  27. }
  28. userForm := form.NewUserForm(r)
  29. sess := session.New(c.store, ctx)
  30. view := view.New(c.tpl, ctx, sess)
  31. view.Set("menu", "settings")
  32. view.Set("user", user)
  33. view.Set("countUnread", c.store.CountUnreadEntries(user.ID))
  34. view.Set("form", userForm)
  35. if err := userForm.ValidateCreation(); err != nil {
  36. view.Set("errorMessage", err.Error())
  37. html.OK(w, r, view.Render("create_user"))
  38. return
  39. }
  40. if c.store.UserExists(userForm.Username) {
  41. view.Set("errorMessage", "This user already exists.")
  42. html.OK(w, r, view.Render("create_user"))
  43. return
  44. }
  45. newUser := userForm.ToUser()
  46. if err := c.store.CreateUser(newUser); err != nil {
  47. logger.Error("[Controller:SaveUser] %v", err)
  48. view.Set("errorMessage", "Unable to create this user.")
  49. html.OK(w, r, view.Render("create_user"))
  50. return
  51. }
  52. response.Redirect(w, r, route.Path(c.router, "users"))
  53. }