org_invite.go 6.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204
  1. package api
  2. import (
  3. "fmt"
  4. "github.com/grafana/grafana/pkg/api/dtos"
  5. "github.com/grafana/grafana/pkg/bus"
  6. "github.com/grafana/grafana/pkg/events"
  7. "github.com/grafana/grafana/pkg/metrics"
  8. "github.com/grafana/grafana/pkg/middleware"
  9. m "github.com/grafana/grafana/pkg/models"
  10. "github.com/grafana/grafana/pkg/setting"
  11. "github.com/grafana/grafana/pkg/util"
  12. )
  13. func GetPendingOrgInvites(c *middleware.Context) Response {
  14. query := m.GetTempUsersQuery{OrgId: c.OrgId, Status: m.TmpUserInvitePending}
  15. if err := bus.Dispatch(&query); err != nil {
  16. return ApiError(500, "Failed to get invites from db", err)
  17. }
  18. for _, invite := range query.Result {
  19. invite.Url = setting.ToAbsUrl("invite/" + invite.Code)
  20. }
  21. return Json(200, query.Result)
  22. }
  23. func AddOrgInvite(c *middleware.Context, inviteDto dtos.AddInviteForm) Response {
  24. if !inviteDto.Role.IsValid() {
  25. return ApiError(400, "Invalid role specified", nil)
  26. }
  27. // first try get existing user
  28. userQuery := m.GetUserByLoginQuery{LoginOrEmail: inviteDto.LoginOrEmail}
  29. if err := bus.Dispatch(&userQuery); err != nil {
  30. if err != m.ErrUserNotFound {
  31. return ApiError(500, "Failed to query db for existing user check", err)
  32. }
  33. } else {
  34. return inviteExistingUserToOrg(c, userQuery.Result, &inviteDto)
  35. }
  36. cmd := m.CreateTempUserCommand{}
  37. cmd.OrgId = c.OrgId
  38. cmd.Email = inviteDto.LoginOrEmail
  39. cmd.Name = inviteDto.Name
  40. cmd.Status = m.TmpUserInvitePending
  41. cmd.InvitedByUserId = c.UserId
  42. cmd.Code = util.GetRandomString(30)
  43. cmd.Role = inviteDto.Role
  44. cmd.RemoteAddr = c.Req.RemoteAddr
  45. if err := bus.Dispatch(&cmd); err != nil {
  46. return ApiError(500, "Failed to save invite to database", err)
  47. }
  48. // send invite email
  49. if !inviteDto.SkipEmails && util.IsEmail(inviteDto.LoginOrEmail) {
  50. emailCmd := m.SendEmailCommand{
  51. To: []string{inviteDto.LoginOrEmail},
  52. Template: "new_user_invite.html",
  53. Data: map[string]interface{}{
  54. "Name": util.StringsFallback2(cmd.Name, cmd.Email),
  55. "OrgName": c.OrgName,
  56. "Email": c.Email,
  57. "LinkUrl": setting.ToAbsUrl("invite/" + cmd.Code),
  58. "InvitedBy": util.StringsFallback3(c.Name, c.Email, c.Login),
  59. },
  60. }
  61. if err := bus.Dispatch(&emailCmd); err != nil {
  62. return ApiError(500, "Failed to send email invite", err)
  63. }
  64. return ApiSuccess(fmt.Sprintf("Sent invite to %s", inviteDto.LoginOrEmail))
  65. }
  66. return ApiSuccess(fmt.Sprintf("Created invite for %s", inviteDto.LoginOrEmail))
  67. }
  68. func inviteExistingUserToOrg(c *middleware.Context, user *m.User, inviteDto *dtos.AddInviteForm) Response {
  69. // user exists, add org role
  70. createOrgUserCmd := m.AddOrgUserCommand{OrgId: c.OrgId, UserId: user.Id, Role: inviteDto.Role}
  71. if err := bus.Dispatch(&createOrgUserCmd); err != nil {
  72. if err == m.ErrOrgUserAlreadyAdded {
  73. return ApiError(412, fmt.Sprintf("User %s is already added to organization", inviteDto.LoginOrEmail), err)
  74. }
  75. return ApiError(500, "Error while trying to create org user", err)
  76. } else {
  77. if !inviteDto.SkipEmails && util.IsEmail(user.Email) {
  78. emailCmd := m.SendEmailCommand{
  79. To: []string{user.Email},
  80. Template: "invited_to_org.html",
  81. Data: map[string]interface{}{
  82. "Name": user.NameOrFallback(),
  83. "OrgName": c.OrgName,
  84. "InvitedBy": util.StringsFallback3(c.Name, c.Email, c.Login),
  85. },
  86. }
  87. if err := bus.Dispatch(&emailCmd); err != nil {
  88. return ApiError(500, "Failed to send email invited_to_org", err)
  89. }
  90. }
  91. return ApiSuccess(fmt.Sprintf("Existing Grafana user %s added to org %s", user.NameOrFallback(), c.OrgName))
  92. }
  93. }
  94. func RevokeInvite(c *middleware.Context) Response {
  95. cmd := m.UpdateTempUserStatusCommand{
  96. Code: c.Params(":code"),
  97. Status: m.TmpUserRevoked,
  98. }
  99. if err := bus.Dispatch(&cmd); err != nil {
  100. return ApiError(500, "Failed to update invite status", err)
  101. }
  102. return ApiSuccess("Invite revoked")
  103. }
  104. func GetInviteInfoByCode(c *middleware.Context) Response {
  105. query := m.GetTempUserByCodeQuery{Code: c.Params(":code")}
  106. if err := bus.Dispatch(&query); err != nil {
  107. if err == m.ErrTempUserNotFound {
  108. return ApiError(404, "Invite not found", nil)
  109. }
  110. return ApiError(500, "Failed to get invite", err)
  111. }
  112. invite := query.Result
  113. return Json(200, dtos.InviteInfo{
  114. Email: invite.Email,
  115. Name: invite.Name,
  116. Username: invite.Email,
  117. InvitedBy: util.StringsFallback3(invite.InvitedByName, invite.InvitedByLogin, invite.InvitedByEmail),
  118. })
  119. }
  120. func CompleteInvite(c *middleware.Context, completeInvite dtos.CompleteInviteForm) Response {
  121. query := m.GetTempUserByCodeQuery{Code: completeInvite.InviteCode}
  122. if err := bus.Dispatch(&query); err != nil {
  123. if err == m.ErrTempUserNotFound {
  124. return ApiError(404, "Invite not found", nil)
  125. }
  126. return ApiError(500, "Failed to get invite", err)
  127. }
  128. invite := query.Result
  129. if invite.Status != m.TmpUserInvitePending {
  130. return ApiError(412, fmt.Sprintf("Invite cannot be used in status %s", invite.Status), nil)
  131. }
  132. cmd := m.CreateUserCommand{
  133. Email: completeInvite.Email,
  134. Name: completeInvite.Name,
  135. Login: completeInvite.Username,
  136. Password: completeInvite.Password,
  137. }
  138. if err := bus.Dispatch(&cmd); err != nil {
  139. return ApiError(500, "failed to create user", err)
  140. }
  141. user := cmd.Result
  142. bus.Publish(&events.SignUpCompleted{
  143. Name: user.NameOrFallback(),
  144. Email: user.Email,
  145. })
  146. // add to org
  147. addOrgUserCmd := m.AddOrgUserCommand{OrgId: invite.OrgId, UserId: user.Id, Role: invite.Role}
  148. if err := bus.Dispatch(&addOrgUserCmd); err != nil {
  149. if err != m.ErrOrgUserAlreadyAdded {
  150. return ApiError(500, "Error while trying to create org user", err)
  151. }
  152. }
  153. // set org to active
  154. if err := bus.Dispatch(&m.SetUsingOrgCommand{OrgId: invite.OrgId, UserId: user.Id}); err != nil {
  155. return ApiError(500, "Failed to set org as active", err)
  156. }
  157. // update temp user status
  158. updateTmpUserCmd := m.UpdateTempUserStatusCommand{Code: invite.Code, Status: m.TmpUserCompleted}
  159. if err := bus.Dispatch(&updateTmpUserCmd); err != nil {
  160. return ApiError(500, "Failed to update invite status", err)
  161. }
  162. loginUserWithUser(&user, c)
  163. metrics.M_Api_User_SignUpCompleted.Inc(1)
  164. metrics.M_Api_User_SignUpInvite.Inc(1)
  165. return ApiSuccess("User created and logged in")
  166. }