create.go 2.1 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586
  1. package user
  2. import (
  3. "fmt"
  4. "net/http"
  5. "github.com/porter-dev/porter/api/server/authn"
  6. "github.com/porter-dev/porter/api/server/handlers"
  7. "github.com/porter-dev/porter/api/server/shared"
  8. "github.com/porter-dev/porter/api/server/shared/apierrors"
  9. "github.com/porter-dev/porter/api/server/shared/config"
  10. "github.com/porter-dev/porter/api/types"
  11. "github.com/porter-dev/porter/internal/models"
  12. "github.com/porter-dev/porter/internal/repository"
  13. "golang.org/x/crypto/bcrypt"
  14. )
  15. type UserCreateHandler struct {
  16. handlers.PorterHandlerReadWriter
  17. }
  18. func NewUserCreateHandler(
  19. config *config.Config,
  20. decoderValidator shared.RequestDecoderValidator,
  21. writer shared.ResultWriter,
  22. ) *UserCreateHandler {
  23. return &UserCreateHandler{
  24. PorterHandlerReadWriter: handlers.NewDefaultPorterHandler(config, decoderValidator, writer),
  25. }
  26. }
  27. func (u *UserCreateHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  28. request := &types.CreateUserRequest{}
  29. ok := u.DecodeAndValidate(w, r, request)
  30. if !ok {
  31. return
  32. }
  33. user := &models.User{
  34. Email: request.Email,
  35. Password: request.Password,
  36. }
  37. // check if user exists
  38. doesExist := doesUserExist(u.Repo().User(), user)
  39. if doesExist {
  40. err := fmt.Errorf("email already taken")
  41. u.HandleAPIError(w, r, apierrors.NewErrPassThroughToClient(err, http.StatusBadRequest))
  42. return
  43. }
  44. // hash the password using bcrypt
  45. hashedPw, err := bcrypt.GenerateFromPassword([]byte(user.Password), 8)
  46. if err != nil {
  47. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  48. return
  49. }
  50. user.Password = string(hashedPw)
  51. // write the user to the db
  52. user, err = u.Repo().User().CreateUser(user)
  53. if err != nil {
  54. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  55. return
  56. }
  57. // save the user as authenticated in the session
  58. if err := authn.SaveUserAuthenticated(w, r, u.Config(), user); err != nil {
  59. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  60. return
  61. }
  62. u.WriteResult(w, r, user.ToUserType())
  63. }
  64. func doesUserExist(userRepo repository.UserRepository, user *models.User) bool {
  65. user, err := userRepo.ReadUserByEmail(user.Email)
  66. return user != nil && err == nil
  67. }