auth.go 1.4 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768
  1. package middleware
  2. import (
  3. "errors"
  4. "strconv"
  5. "github.com/Unknwon/macaron"
  6. "github.com/macaron-contrib/session"
  7. "github.com/torkelo/grafana-pro/pkg/bus"
  8. m "github.com/torkelo/grafana-pro/pkg/models"
  9. "github.com/torkelo/grafana-pro/pkg/setting"
  10. )
  11. func authGetRequestAccountId(c *Context, sess session.Store) (int64, error) {
  12. accountId := sess.Get("accountId")
  13. urlQuery := c.Req.URL.Query()
  14. // TODO: check that this is a localhost request
  15. if len(urlQuery["render"]) > 0 {
  16. accId, _ := strconv.ParseInt(urlQuery["accountId"][0], 10, 64)
  17. sess.Set("accountId", accId)
  18. accountId = accId
  19. }
  20. if accountId == nil {
  21. if setting.Anonymous {
  22. return setting.AnonymousAccountId, nil
  23. }
  24. return -1, errors.New("Auth: session account id not found")
  25. }
  26. return accountId.(int64), nil
  27. }
  28. func authDenied(c *Context) {
  29. c.Redirect(setting.AppSubUrl + "/login")
  30. }
  31. func Auth() macaron.Handler {
  32. return func(c *Context, sess session.Store) {
  33. accountId, err := authGetRequestAccountId(c, sess)
  34. if err != nil && c.Req.URL.Path != "/login" {
  35. authDenied(c)
  36. return
  37. }
  38. userQuery := m.GetAccountByIdQuery{Id: accountId}
  39. err = bus.Dispatch(&userQuery)
  40. if err != nil {
  41. authDenied(c)
  42. return
  43. }
  44. usingQuery := m.GetAccountByIdQuery{Id: userQuery.Result.UsingAccountId}
  45. err = bus.Dispatch(&usingQuery)
  46. if err != nil {
  47. authDenied(c)
  48. return
  49. }
  50. c.UserAccount = userQuery.Result
  51. c.Account = usingQuery.Result
  52. }
  53. }