admin_users.go 2.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107
  1. package api
  2. import (
  3. "github.com/grafana/grafana/pkg/api/dtos"
  4. "github.com/grafana/grafana/pkg/bus"
  5. "github.com/grafana/grafana/pkg/metrics"
  6. "github.com/grafana/grafana/pkg/middleware"
  7. m "github.com/grafana/grafana/pkg/models"
  8. "github.com/grafana/grafana/pkg/util"
  9. )
  10. func AdminCreateUser(c *middleware.Context, form dtos.AdminCreateUserForm) {
  11. cmd := m.CreateUserCommand{
  12. Login: form.Login,
  13. Email: form.Email,
  14. Password: form.Password,
  15. Name: form.Name,
  16. }
  17. if len(cmd.Login) == 0 {
  18. cmd.Login = cmd.Email
  19. if len(cmd.Login) == 0 {
  20. c.JsonApiErr(400, "Validation error, need specify either username or email", nil)
  21. return
  22. }
  23. }
  24. if len(cmd.Password) < 4 {
  25. c.JsonApiErr(400, "Password is missing or too short", nil)
  26. return
  27. }
  28. if err := bus.Dispatch(&cmd); err != nil {
  29. c.JsonApiErr(500, "failed to create user", err)
  30. return
  31. }
  32. metrics.M_Api_Admin_User_Create.Inc(1)
  33. user := cmd.Result
  34. result := m.UserIdDTO{
  35. Message: "User created",
  36. Id: user.Id,
  37. }
  38. c.JSON(200, result)
  39. }
  40. func AdminUpdateUserPassword(c *middleware.Context, form dtos.AdminUpdateUserPasswordForm) {
  41. userId := c.ParamsInt64(":id")
  42. if len(form.Password) < 4 {
  43. c.JsonApiErr(400, "New password too short", nil)
  44. return
  45. }
  46. userQuery := m.GetUserByIdQuery{Id: userId}
  47. if err := bus.Dispatch(&userQuery); err != nil {
  48. c.JsonApiErr(500, "Could not read user from database", err)
  49. return
  50. }
  51. passwordHashed := util.EncodePassword(form.Password, userQuery.Result.Salt)
  52. cmd := m.ChangeUserPasswordCommand{
  53. UserId: userId,
  54. NewPassword: passwordHashed,
  55. }
  56. if err := bus.Dispatch(&cmd); err != nil {
  57. c.JsonApiErr(500, "Failed to update user password", err)
  58. return
  59. }
  60. c.JsonOK("User password updated")
  61. }
  62. func AdminUpdateUserPermissions(c *middleware.Context, form dtos.AdminUpdateUserPermissionsForm) {
  63. userId := c.ParamsInt64(":id")
  64. cmd := m.UpdateUserPermissionsCommand{
  65. UserId: userId,
  66. IsGrafanaAdmin: form.IsGrafanaAdmin,
  67. }
  68. if err := bus.Dispatch(&cmd); err != nil {
  69. c.JsonApiErr(500, "Failed to update user permissions", err)
  70. return
  71. }
  72. c.JsonOK("User permissions updated")
  73. }
  74. func AdminDeleteUser(c *middleware.Context) {
  75. userId := c.ParamsInt64(":id")
  76. cmd := m.DeleteUserCommand{UserId: userId}
  77. if err := bus.Dispatch(&cmd); err != nil {
  78. c.JsonApiErr(500, "Failed to delete user", err)
  79. return
  80. }
  81. c.JsonOK("User deleted")
  82. }