create.go 2.0 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485
  1. package user
  2. import (
  3. "fmt"
  4. "net/http"
  5. "github.com/porter-dev/porter/api/server/authn"
  6. "github.com/porter-dev/porter/api/server/handlers"
  7. "github.com/porter-dev/porter/api/server/shared"
  8. "github.com/porter-dev/porter/api/server/shared/apierrors"
  9. "github.com/porter-dev/porter/api/types"
  10. "github.com/porter-dev/porter/internal/models"
  11. "github.com/porter-dev/porter/internal/repository"
  12. "golang.org/x/crypto/bcrypt"
  13. )
  14. type UserCreateHandler struct {
  15. handlers.PorterHandlerReadWriter
  16. }
  17. func NewUserCreateHandler(
  18. config *shared.Config,
  19. decoderValidator shared.RequestDecoderValidator,
  20. writer shared.ResultWriter,
  21. ) *UserCreateHandler {
  22. return &UserCreateHandler{
  23. PorterHandlerReadWriter: handlers.NewDefaultPorterHandler(config, decoderValidator, writer),
  24. }
  25. }
  26. func (u *UserCreateHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  27. request := &types.CreateUserRequest{}
  28. ok := u.DecodeAndValidate(w, r, request)
  29. if !ok {
  30. return
  31. }
  32. user := &models.User{
  33. Email: request.Email,
  34. Password: request.Password,
  35. }
  36. // check if user exists
  37. doesExist := doesUserExist(u.Repo().User(), user)
  38. if doesExist {
  39. err := fmt.Errorf("email already taken")
  40. u.HandleAPIError(w, apierrors.NewErrPassThroughToClient(err, http.StatusBadRequest))
  41. return
  42. }
  43. // hash the password using bcrypt
  44. hashedPw, err := bcrypt.GenerateFromPassword([]byte(user.Password), 8)
  45. if err != nil {
  46. u.HandleAPIError(w, apierrors.NewErrInternal(err))
  47. return
  48. }
  49. user.Password = string(hashedPw)
  50. // write the user to the db
  51. user, err = u.Repo().User().CreateUser(user)
  52. if err != nil {
  53. u.HandleAPIError(w, apierrors.NewErrInternal(err))
  54. return
  55. }
  56. // save the user as authenticated in the session
  57. if err := authn.SaveUserAuthenticated(w, r, u.Config(), user); err != nil {
  58. u.HandleAPIError(w, apierrors.NewErrInternal(err))
  59. return
  60. }
  61. u.WriteResult(w, user.ToUserType())
  62. }
  63. func doesUserExist(userRepo repository.UserRepository, user *models.User) bool {
  64. user, err := userRepo.ReadUserByEmail(user.Email)
  65. return user != nil && err == nil
  66. }