admin_users.go 2.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100
  1. package api
  2. import (
  3. "github.com/grafana/grafana/pkg/api/dtos"
  4. "github.com/grafana/grafana/pkg/bus"
  5. "github.com/grafana/grafana/pkg/metrics"
  6. "github.com/grafana/grafana/pkg/middleware"
  7. m "github.com/grafana/grafana/pkg/models"
  8. "github.com/grafana/grafana/pkg/util"
  9. )
  10. func AdminCreateUser(c *middleware.Context, form dtos.AdminCreateUserForm) {
  11. cmd := m.CreateUserCommand{
  12. Login: form.Login,
  13. Email: form.Email,
  14. Password: form.Password,
  15. Name: form.Name,
  16. }
  17. if len(cmd.Login) == 0 {
  18. cmd.Login = cmd.Email
  19. if len(cmd.Login) == 0 {
  20. c.JsonApiErr(400, "Validation error, need specify either username or email", nil)
  21. return
  22. }
  23. }
  24. if len(cmd.Password) < 4 {
  25. c.JsonApiErr(400, "Password is missing or too short", nil)
  26. return
  27. }
  28. if err := bus.Dispatch(&cmd); err != nil {
  29. c.JsonApiErr(500, "failed to create user", err)
  30. return
  31. }
  32. metrics.M_Api_Admin_User_Create.Inc(1)
  33. c.JsonOK("User created")
  34. }
  35. func AdminUpdateUserPassword(c *middleware.Context, form dtos.AdminUpdateUserPasswordForm) {
  36. userId := c.ParamsInt64(":id")
  37. if len(form.Password) < 4 {
  38. c.JsonApiErr(400, "New password too short", nil)
  39. return
  40. }
  41. userQuery := m.GetUserByIdQuery{Id: userId}
  42. if err := bus.Dispatch(&userQuery); err != nil {
  43. c.JsonApiErr(500, "Could not read user from database", err)
  44. return
  45. }
  46. passwordHashed := util.EncodePassword(form.Password, userQuery.Result.Salt)
  47. cmd := m.ChangeUserPasswordCommand{
  48. UserId: userId,
  49. NewPassword: passwordHashed,
  50. }
  51. if err := bus.Dispatch(&cmd); err != nil {
  52. c.JsonApiErr(500, "Failed to update user password", err)
  53. return
  54. }
  55. c.JsonOK("User password updated")
  56. }
  57. func AdminUpdateUserPermissions(c *middleware.Context, form dtos.AdminUpdateUserPermissionsForm) {
  58. userId := c.ParamsInt64(":id")
  59. cmd := m.UpdateUserPermissionsCommand{
  60. UserId: userId,
  61. IsGrafanaAdmin: form.IsGrafanaAdmin,
  62. }
  63. if err := bus.Dispatch(&cmd); err != nil {
  64. c.JsonApiErr(500, "Failed to update user permissions", err)
  65. return
  66. }
  67. c.JsonOK("User permissions updated")
  68. }
  69. func AdminDeleteUser(c *middleware.Context) {
  70. userId := c.ParamsInt64(":id")
  71. cmd := m.DeleteUserCommand{UserId: userId}
  72. if err := bus.Dispatch(&cmd); err != nil {
  73. c.JsonApiErr(500, "Failed to delete user", err)
  74. return
  75. }
  76. c.JsonOK("User deleted")
  77. }