create.go 2.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990
  1. package user
  2. import (
  3. "fmt"
  4. "net/http"
  5. "github.com/porter-dev/porter/api/server/authn"
  6. "github.com/porter-dev/porter/api/server/shared"
  7. "github.com/porter-dev/porter/api/server/shared/apierrors"
  8. "github.com/porter-dev/porter/api/types"
  9. "github.com/porter-dev/porter/internal/models"
  10. "github.com/porter-dev/porter/internal/repository"
  11. "golang.org/x/crypto/bcrypt"
  12. )
  13. type UserCreateHandler struct {
  14. config *shared.Config
  15. decoderValidator shared.RequestDecoderValidator
  16. writer shared.ResultWriter
  17. }
  18. func NewUserCreateHandler(
  19. config *shared.Config,
  20. decoderValidator shared.RequestDecoderValidator,
  21. writer shared.ResultWriter,
  22. ) *UserCreateHandler {
  23. return &UserCreateHandler{config, decoderValidator, writer}
  24. }
  25. func (u *UserCreateHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  26. request := &types.CreateUserRequest{}
  27. ok := u.decoderValidator.DecodeAndValidate(w, r, request)
  28. if !ok {
  29. return
  30. }
  31. user := &models.User{
  32. Email: request.Email,
  33. Password: request.Password,
  34. }
  35. // check if user exists
  36. doesExist := doesUserExist(u.config.Repo, user)
  37. if doesExist {
  38. apierrors.HandleAPIError(
  39. w,
  40. u.config.Logger,
  41. apierrors.NewErrPassThroughToClient(
  42. fmt.Errorf("email already taken"),
  43. http.StatusBadRequest,
  44. ),
  45. )
  46. return
  47. }
  48. // hash the password using bcrypt
  49. hashedPw, err := bcrypt.GenerateFromPassword([]byte(user.Password), 8)
  50. if err != nil {
  51. apierrors.HandleAPIError(w, u.config.Logger, apierrors.NewErrInternal(err))
  52. return
  53. }
  54. user.Password = string(hashedPw)
  55. // write the user to the db
  56. user, err = u.config.Repo.User().CreateUser(user)
  57. if err != nil {
  58. apierrors.HandleAPIError(w, u.config.Logger, apierrors.NewErrInternal(err))
  59. return
  60. }
  61. // save the user as authenticated in the session
  62. if err := authn.SaveUserAuthenticated(w, r, u.config, user); err != nil {
  63. apierrors.HandleAPIError(w, u.config.Logger, apierrors.NewErrInternal(err))
  64. return
  65. }
  66. u.writer.WriteResult(w, user.ToUserType())
  67. }
  68. func doesUserExist(repo repository.Repository, user *models.User) bool {
  69. user, err := repo.User().ReadUserByEmail(user.Email)
  70. return user != nil && err == nil
  71. }