org_invite.go 6.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230
  1. package api
  2. import (
  3. "fmt"
  4. "github.com/grafana/grafana/pkg/api/dtos"
  5. "github.com/grafana/grafana/pkg/bus"
  6. "github.com/grafana/grafana/pkg/events"
  7. "github.com/grafana/grafana/pkg/infra/metrics"
  8. m "github.com/grafana/grafana/pkg/models"
  9. "github.com/grafana/grafana/pkg/setting"
  10. "github.com/grafana/grafana/pkg/util"
  11. )
  12. func GetPendingOrgInvites(c *m.ReqContext) Response {
  13. query := m.GetTempUsersQuery{OrgId: c.OrgId, Status: m.TmpUserInvitePending}
  14. if err := bus.Dispatch(&query); err != nil {
  15. return Error(500, "Failed to get invites from db", err)
  16. }
  17. for _, invite := range query.Result {
  18. invite.Url = setting.ToAbsUrl("invite/" + invite.Code)
  19. }
  20. return JSON(200, query.Result)
  21. }
  22. func AddOrgInvite(c *m.ReqContext, inviteDto dtos.AddInviteForm) Response {
  23. if !inviteDto.Role.IsValid() {
  24. return Error(400, "Invalid role specified", nil)
  25. }
  26. // first try get existing user
  27. userQuery := m.GetUserByLoginQuery{LoginOrEmail: inviteDto.LoginOrEmail}
  28. if err := bus.Dispatch(&userQuery); err != nil {
  29. if err != m.ErrUserNotFound {
  30. return Error(500, "Failed to query db for existing user check", err)
  31. }
  32. } else {
  33. return inviteExistingUserToOrg(c, userQuery.Result, &inviteDto)
  34. }
  35. if setting.DisableLoginForm {
  36. return Error(400, "Cannot invite when login is disabled.", nil)
  37. }
  38. cmd := m.CreateTempUserCommand{}
  39. cmd.OrgId = c.OrgId
  40. cmd.Email = inviteDto.LoginOrEmail
  41. cmd.Name = inviteDto.Name
  42. cmd.Status = m.TmpUserInvitePending
  43. cmd.InvitedByUserId = c.UserId
  44. cmd.Code = util.GetRandomString(30)
  45. cmd.Role = inviteDto.Role
  46. cmd.RemoteAddr = c.Req.RemoteAddr
  47. if err := bus.Dispatch(&cmd); err != nil {
  48. return Error(500, "Failed to save invite to database", err)
  49. }
  50. // send invite email
  51. if inviteDto.SendEmail && util.IsEmail(inviteDto.LoginOrEmail) {
  52. emailCmd := m.SendEmailCommand{
  53. To: []string{inviteDto.LoginOrEmail},
  54. Template: "new_user_invite.html",
  55. Data: map[string]interface{}{
  56. "Name": util.StringsFallback2(cmd.Name, cmd.Email),
  57. "OrgName": c.OrgName,
  58. "Email": c.Email,
  59. "LinkUrl": setting.ToAbsUrl("invite/" + cmd.Code),
  60. "MEHomePage": setting.MEHomePage, // FHUEZO: se agrega variable para poder leerla en la vista (template del email)
  61. "InvitedBy": util.StringsFallback3(c.Name, c.Email, c.Login),
  62. },
  63. }
  64. if err := bus.Dispatch(&emailCmd); err != nil {
  65. if err == m.ErrSmtpNotEnabled {
  66. return Error(412, err.Error(), err)
  67. }
  68. return Error(500, "Failed to send email invite", err)
  69. }
  70. emailSentCmd := m.UpdateTempUserWithEmailSentCommand{Code: cmd.Result.Code}
  71. if err := bus.Dispatch(&emailSentCmd); err != nil {
  72. return Error(500, "Failed to update invite with email sent info", err)
  73. }
  74. return Success(fmt.Sprintf("Sent invite to %s", inviteDto.LoginOrEmail))
  75. }
  76. return Success(fmt.Sprintf("Created invite for %s", inviteDto.LoginOrEmail))
  77. }
  78. func inviteExistingUserToOrg(c *m.ReqContext, user *m.User, inviteDto *dtos.AddInviteForm) Response {
  79. // user exists, add org role
  80. createOrgUserCmd := m.AddOrgUserCommand{OrgId: c.OrgId, UserId: user.Id, Role: inviteDto.Role}
  81. if err := bus.Dispatch(&createOrgUserCmd); err != nil {
  82. if err == m.ErrOrgUserAlreadyAdded {
  83. return Error(412, fmt.Sprintf("User %s is already added to organization", inviteDto.LoginOrEmail), err)
  84. }
  85. return Error(500, "Error while trying to create org user", err)
  86. }
  87. if inviteDto.SendEmail && util.IsEmail(user.Email) {
  88. emailCmd := m.SendEmailCommand{
  89. To: []string{user.Email},
  90. Template: "invited_to_org.html",
  91. Data: map[string]interface{}{
  92. "Name": user.NameOrFallback(),
  93. "OrgName": c.OrgName,
  94. "InvitedBy": util.StringsFallback3(c.Name, c.Email, c.Login),
  95. },
  96. }
  97. if err := bus.Dispatch(&emailCmd); err != nil {
  98. return Error(500, "Failed to send email invited_to_org", err)
  99. }
  100. }
  101. return Success(fmt.Sprintf("Existing Grafana user %s added to org %s", user.NameOrFallback(), c.OrgName))
  102. }
  103. func RevokeInvite(c *m.ReqContext) Response {
  104. if ok, rsp := updateTempUserStatus(c.Params(":code"), m.TmpUserRevoked); !ok {
  105. return rsp
  106. }
  107. return Success("Invite revoked")
  108. }
  109. func GetInviteInfoByCode(c *m.ReqContext) Response {
  110. query := m.GetTempUserByCodeQuery{Code: c.Params(":code")}
  111. if err := bus.Dispatch(&query); err != nil {
  112. if err == m.ErrTempUserNotFound {
  113. return Error(404, "Invite not found", nil)
  114. }
  115. return Error(500, "Failed to get invite", err)
  116. }
  117. invite := query.Result
  118. return JSON(200, dtos.InviteInfo{
  119. Email: invite.Email,
  120. Name: invite.Name,
  121. Username: invite.Email,
  122. InvitedBy: util.StringsFallback3(invite.InvitedByName, invite.InvitedByLogin, invite.InvitedByEmail),
  123. })
  124. }
  125. func (hs *HTTPServer) CompleteInvite(c *m.ReqContext, completeInvite dtos.CompleteInviteForm) Response {
  126. query := m.GetTempUserByCodeQuery{Code: completeInvite.InviteCode}
  127. if err := bus.Dispatch(&query); err != nil {
  128. if err == m.ErrTempUserNotFound {
  129. return Error(404, "Invite not found", nil)
  130. }
  131. return Error(500, "Failed to get invite", err)
  132. }
  133. invite := query.Result
  134. if invite.Status != m.TmpUserInvitePending {
  135. return Error(412, fmt.Sprintf("Invite cannot be used in status %s", invite.Status), nil)
  136. }
  137. cmd := m.CreateUserCommand{
  138. Email: completeInvite.Email,
  139. Name: completeInvite.Name,
  140. Login: completeInvite.Username,
  141. Password: completeInvite.Password,
  142. SkipOrgSetup: true,
  143. }
  144. if err := bus.Dispatch(&cmd); err != nil {
  145. return Error(500, "failed to create user", err)
  146. }
  147. user := &cmd.Result
  148. bus.Publish(&events.SignUpCompleted{
  149. Name: user.NameOrFallback(),
  150. Email: user.Email,
  151. })
  152. if ok, rsp := applyUserInvite(user, invite, true); !ok {
  153. return rsp
  154. }
  155. hs.loginUserWithUser(user, c)
  156. metrics.MApiUserSignUpCompleted.Inc()
  157. metrics.MApiUserSignUpInvite.Inc()
  158. return Success("User created and logged in")
  159. }
  160. func updateTempUserStatus(code string, status m.TempUserStatus) (bool, Response) {
  161. // update temp user status
  162. updateTmpUserCmd := m.UpdateTempUserStatusCommand{Code: code, Status: status}
  163. if err := bus.Dispatch(&updateTmpUserCmd); err != nil {
  164. return false, Error(500, "Failed to update invite status", err)
  165. }
  166. return true, nil
  167. }
  168. func applyUserInvite(user *m.User, invite *m.TempUserDTO, setActive bool) (bool, Response) {
  169. // add to org
  170. addOrgUserCmd := m.AddOrgUserCommand{OrgId: invite.OrgId, UserId: user.Id, Role: invite.Role}
  171. if err := bus.Dispatch(&addOrgUserCmd); err != nil {
  172. if err != m.ErrOrgUserAlreadyAdded {
  173. return false, Error(500, "Error while trying to create org user", err)
  174. }
  175. }
  176. // update temp user status
  177. if ok, rsp := updateTempUserStatus(invite.Code, m.TmpUserCompleted); !ok {
  178. return false, rsp
  179. }
  180. if setActive {
  181. // set org to active
  182. if err := bus.Dispatch(&m.SetUsingOrgCommand{OrgId: invite.OrgId, UserId: user.Id}); err != nil {
  183. return false, Error(500, "Failed to set org as active", err)
  184. }
  185. }
  186. return true, nil
  187. }