user_remove.go 1.0 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152
  1. // Copyright 2018 Frédéric Guillot. All rights reserved.
  2. // Use of this source code is governed by the Apache 2.0
  3. // license that can be found in the LICENSE file.
  4. package ui // import "miniflux.app/ui"
  5. import (
  6. "net/http"
  7. "miniflux.app/http/request"
  8. "miniflux.app/http/response"
  9. "miniflux.app/http/response/html"
  10. "miniflux.app/http/route"
  11. )
  12. // RemoveUser deletes a user from the database.
  13. func (c *Controller) RemoveUser(w http.ResponseWriter, r *http.Request) {
  14. user, err := c.store.UserByID(request.UserID(r))
  15. if err != nil {
  16. html.ServerError(w, err)
  17. return
  18. }
  19. if !user.IsAdmin {
  20. html.Forbidden(w)
  21. return
  22. }
  23. userID, err := request.IntParam(r, "userID")
  24. if err != nil {
  25. html.BadRequest(w, err)
  26. return
  27. }
  28. selectedUser, err := c.store.UserByID(userID)
  29. if err != nil {
  30. html.ServerError(w, err)
  31. return
  32. }
  33. if selectedUser == nil {
  34. html.NotFound(w)
  35. return
  36. }
  37. if err := c.store.RemoveUser(selectedUser.ID); err != nil {
  38. html.ServerError(w, err)
  39. return
  40. }
  41. response.Redirect(w, r, route.Path(c.router, "users"))
  42. }