2018-10-12 05:26:58 +01:00
|
|
|
defmodule Pleroma.Web.AdminAPI.AdminAPIController do
|
2018-10-02 17:38:16 +01:00
|
|
|
use Pleroma.Web, :controller
|
2018-10-02 18:03:05 +01:00
|
|
|
alias Pleroma.{User, Repo}
|
|
|
|
alias Pleroma.Web.ActivityPub.Relay
|
2018-10-02 17:38:16 +01:00
|
|
|
|
2018-12-06 17:06:50 +00:00
|
|
|
import Pleroma.Web.ControllerHelper, only: [json_response: 3]
|
|
|
|
|
2018-10-02 17:38:16 +01:00
|
|
|
require Logger
|
|
|
|
|
|
|
|
action_fallback(:errors)
|
|
|
|
|
2018-10-12 05:43:08 +01:00
|
|
|
def user_delete(conn, %{"nickname" => nickname}) do
|
2018-10-02 18:03:05 +01:00
|
|
|
user = User.get_by_nickname(nickname)
|
|
|
|
|
2018-11-17 21:10:23 +00:00
|
|
|
if user.local == true do
|
2018-10-02 18:03:05 +01:00
|
|
|
User.delete(user)
|
|
|
|
else
|
|
|
|
User.delete(user)
|
|
|
|
end
|
|
|
|
|
|
|
|
conn
|
2018-11-02 07:15:09 +00:00
|
|
|
|> json(nickname)
|
2018-10-02 17:38:16 +01:00
|
|
|
end
|
|
|
|
|
2018-11-17 21:10:23 +00:00
|
|
|
def user_create(
|
|
|
|
conn,
|
|
|
|
%{"nickname" => nickname, "email" => email, "password" => password}
|
|
|
|
) do
|
|
|
|
new_user = %{
|
2018-10-02 18:03:05 +01:00
|
|
|
nickname: nickname,
|
2018-11-17 21:10:23 +00:00
|
|
|
name: nickname,
|
2018-10-02 18:03:05 +01:00
|
|
|
email: email,
|
|
|
|
password: password,
|
|
|
|
password_confirmation: password,
|
2018-11-17 21:10:23 +00:00
|
|
|
bio: "."
|
2018-10-02 18:03:05 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
User.register_changeset(%User{}, new_user)
|
2018-11-17 21:10:23 +00:00
|
|
|
|> Repo.insert!()
|
2018-10-02 18:03:05 +01:00
|
|
|
|
|
|
|
conn
|
2018-11-02 07:15:09 +00:00
|
|
|
|> json(new_user.nickname)
|
|
|
|
end
|
|
|
|
|
2018-12-06 17:06:50 +00:00
|
|
|
def tag_users(conn, %{"nicknames" => nicknames, "tags" => tags}) do
|
|
|
|
with {:ok, _} <- User.tag(nicknames, tags),
|
|
|
|
do: json_response(conn, :no_content, "")
|
|
|
|
end
|
|
|
|
|
|
|
|
def untag_users(conn, %{"nicknames" => nicknames, "tags" => tags}) do
|
|
|
|
with {:ok, _} <- User.untag(nicknames, tags),
|
|
|
|
do: json_response(conn, :no_content, "")
|
|
|
|
end
|
|
|
|
|
2018-11-10 14:16:19 +00:00
|
|
|
def right_add(conn, %{"permission_group" => permission_group, "nickname" => nickname})
|
|
|
|
when permission_group in ["moderator", "admin"] do
|
2018-11-02 07:15:09 +00:00
|
|
|
user = User.get_by_nickname(nickname)
|
|
|
|
|
|
|
|
info =
|
2018-12-01 08:03:16 +00:00
|
|
|
%{}
|
2018-11-10 14:16:19 +00:00
|
|
|
|> Map.put("is_" <> permission_group, true)
|
2018-11-02 07:15:09 +00:00
|
|
|
|
2018-12-01 08:03:16 +00:00
|
|
|
info_cng = User.Info.admin_api_update(user.info, info)
|
|
|
|
|
|
|
|
cng =
|
|
|
|
Ecto.Changeset.change(user)
|
|
|
|
|> Ecto.Changeset.put_embed(:info, info_cng)
|
|
|
|
|
2018-12-09 09:12:48 +00:00
|
|
|
{:ok, _user} = User.update_and_set_cache(cng)
|
2018-11-02 07:15:09 +00:00
|
|
|
|
2018-12-09 09:12:48 +00:00
|
|
|
json(conn, info)
|
|
|
|
end
|
|
|
|
|
|
|
|
def right_add(conn, _) do
|
2018-11-02 07:15:09 +00:00
|
|
|
conn
|
2018-12-09 09:12:48 +00:00
|
|
|
|> put_status(404)
|
|
|
|
|> json(%{error: "No such permission_group"})
|
2018-11-02 07:15:09 +00:00
|
|
|
end
|
|
|
|
|
2018-11-02 07:19:56 +00:00
|
|
|
def right_get(conn, %{"nickname" => nickname}) do
|
|
|
|
user = User.get_by_nickname(nickname)
|
|
|
|
|
|
|
|
conn
|
2018-12-01 08:03:16 +00:00
|
|
|
|> json(%{
|
|
|
|
is_moderator: user.info.is_moderator,
|
|
|
|
is_admin: user.info.is_admin
|
|
|
|
})
|
2018-11-02 07:19:56 +00:00
|
|
|
end
|
|
|
|
|
2018-11-10 13:42:34 +00:00
|
|
|
def right_delete(
|
|
|
|
%{assigns: %{user: %User{:nickname => admin_nickname}}} = conn,
|
|
|
|
%{
|
2018-11-10 14:16:19 +00:00
|
|
|
"permission_group" => permission_group,
|
2018-11-10 13:42:34 +00:00
|
|
|
"nickname" => nickname
|
|
|
|
}
|
|
|
|
)
|
2018-11-10 14:16:19 +00:00
|
|
|
when permission_group in ["moderator", "admin"] do
|
2018-11-10 13:42:34 +00:00
|
|
|
if admin_nickname == nickname do
|
|
|
|
conn
|
2018-11-10 13:55:49 +00:00
|
|
|
|> put_status(403)
|
2018-11-10 13:42:34 +00:00
|
|
|
|> json(%{error: "You can't revoke your own admin status."})
|
|
|
|
else
|
|
|
|
user = User.get_by_nickname(nickname)
|
2018-11-02 07:15:09 +00:00
|
|
|
|
2018-11-10 13:42:34 +00:00
|
|
|
info =
|
2018-12-01 08:03:16 +00:00
|
|
|
%{}
|
2018-11-10 14:16:19 +00:00
|
|
|
|> Map.put("is_" <> permission_group, false)
|
2018-11-02 07:15:09 +00:00
|
|
|
|
2018-12-01 08:03:16 +00:00
|
|
|
info_cng = User.Info.admin_api_update(user.info, info)
|
|
|
|
|
|
|
|
cng =
|
|
|
|
Ecto.Changeset.change(user)
|
|
|
|
|> Ecto.Changeset.put_embed(:info, info_cng)
|
|
|
|
|
2018-12-09 09:12:48 +00:00
|
|
|
{:ok, _user} = User.update_and_set_cache(cng)
|
2018-11-02 07:15:09 +00:00
|
|
|
|
2018-12-09 09:12:48 +00:00
|
|
|
json(conn, info)
|
2018-11-10 13:42:34 +00:00
|
|
|
end
|
2018-11-02 07:15:09 +00:00
|
|
|
end
|
|
|
|
|
|
|
|
def right_delete(conn, _) do
|
|
|
|
conn
|
|
|
|
|> put_status(404)
|
2018-11-10 14:16:19 +00:00
|
|
|
|> json(%{error: "No such permission_group"})
|
2018-10-02 17:38:16 +01:00
|
|
|
end
|
|
|
|
|
2018-10-12 05:43:08 +01:00
|
|
|
def relay_follow(conn, %{"relay_url" => target}) do
|
2018-12-09 09:12:48 +00:00
|
|
|
with {:ok, _message} <- Relay.follow(target) do
|
|
|
|
json(conn, target)
|
2018-11-10 13:55:49 +00:00
|
|
|
else
|
2018-12-09 09:12:48 +00:00
|
|
|
_ ->
|
|
|
|
conn
|
|
|
|
|> put_status(500)
|
|
|
|
|> json(target)
|
2018-11-10 13:55:49 +00:00
|
|
|
end
|
2018-10-02 17:38:16 +01:00
|
|
|
end
|
|
|
|
|
2018-10-12 05:43:08 +01:00
|
|
|
def relay_unfollow(conn, %{"relay_url" => target}) do
|
2018-12-09 09:12:48 +00:00
|
|
|
with {:ok, _message} <- Relay.unfollow(target) do
|
|
|
|
json(conn, target)
|
2018-11-10 13:55:49 +00:00
|
|
|
else
|
2018-12-09 09:12:48 +00:00
|
|
|
_ ->
|
|
|
|
conn
|
|
|
|
|> put_status(500)
|
|
|
|
|> json(target)
|
2018-11-10 13:55:49 +00:00
|
|
|
end
|
2018-10-02 17:38:16 +01:00
|
|
|
end
|
|
|
|
|
2018-12-09 09:12:48 +00:00
|
|
|
@doc "Get a account registeration invite token (base64 string)"
|
2018-10-02 18:03:05 +01:00
|
|
|
def get_invite_token(conn, _params) do
|
2018-11-02 07:15:09 +00:00
|
|
|
{:ok, token} = Pleroma.UserInviteToken.create_token()
|
2018-10-02 18:03:05 +01:00
|
|
|
|
|
|
|
conn
|
2018-10-12 05:37:37 +01:00
|
|
|
|> json(token.token)
|
2018-10-02 17:38:16 +01:00
|
|
|
end
|
|
|
|
|
2018-12-09 09:12:48 +00:00
|
|
|
@doc "Get a password reset token (base64 string) for given nickname"
|
2018-10-12 05:28:20 +01:00
|
|
|
def get_password_reset(conn, %{"nickname" => nickname}) do
|
2018-10-02 18:03:05 +01:00
|
|
|
(%User{local: true} = user) = User.get_by_nickname(nickname)
|
|
|
|
{:ok, token} = Pleroma.PasswordResetToken.create_token(user)
|
|
|
|
|
|
|
|
conn
|
2018-10-12 05:28:20 +01:00
|
|
|
|> json(token.token)
|
|
|
|
end
|
|
|
|
|
|
|
|
def errors(conn, {:param_cast, _}) do
|
|
|
|
conn
|
|
|
|
|> put_status(400)
|
|
|
|
|> json("Invalid parameters")
|
|
|
|
end
|
|
|
|
|
|
|
|
def errors(conn, _) do
|
|
|
|
conn
|
|
|
|
|> put_status(500)
|
|
|
|
|> json("Something went wrong")
|
2018-10-02 17:38:16 +01:00
|
|
|
end
|
|
|
|
end
|