create.go 4.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167
  1. package user
  2. import (
  3. "fmt"
  4. "net/http"
  5. "github.com/porter-dev/porter/api/server/authn"
  6. "github.com/porter-dev/porter/api/server/handlers"
  7. "github.com/porter-dev/porter/api/server/shared"
  8. "github.com/porter-dev/porter/api/server/shared/apierrors"
  9. "github.com/porter-dev/porter/api/server/shared/config"
  10. "github.com/porter-dev/porter/api/types"
  11. "github.com/porter-dev/porter/internal/analytics"
  12. "github.com/porter-dev/porter/internal/models"
  13. "github.com/porter-dev/porter/internal/repository"
  14. "golang.org/x/crypto/bcrypt"
  15. )
  16. type UserCreateHandler struct {
  17. handlers.PorterHandlerReadWriter
  18. }
  19. func NewUserCreateHandler(
  20. config *config.Config,
  21. decoderValidator shared.RequestDecoderValidator,
  22. writer shared.ResultWriter,
  23. ) *UserCreateHandler {
  24. return &UserCreateHandler{
  25. PorterHandlerReadWriter: handlers.NewDefaultPorterHandler(config, decoderValidator, writer),
  26. }
  27. }
  28. func (u *UserCreateHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  29. request := &types.CreateUserRequest{}
  30. ok := u.DecodeAndValidate(w, r, request)
  31. if !ok {
  32. return
  33. }
  34. user := &models.User{
  35. Email: request.Email,
  36. Password: request.Password,
  37. FirstName: request.FirstName,
  38. LastName: request.LastName,
  39. CompanyName: request.CompanyName,
  40. }
  41. // check if user exists
  42. doesExist := doesUserExist(u.Repo().User(), user)
  43. if doesExist {
  44. err := fmt.Errorf("email already taken")
  45. u.HandleAPIError(w, r, apierrors.NewErrPassThroughToClient(err, http.StatusBadRequest))
  46. return
  47. }
  48. if err := checkUserRestrictions(u.Config().ServerConf, request.Email); err != nil {
  49. u.HandleAPIError(w, r, apierrors.NewErrPassThroughToClient(err, http.StatusBadRequest))
  50. return
  51. }
  52. // hash the password using bcrypt
  53. hashedPw, err := bcrypt.GenerateFromPassword([]byte(user.Password), 8)
  54. if err != nil {
  55. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  56. return
  57. }
  58. user.Password = string(hashedPw)
  59. // write the user to the db
  60. user, err = u.Repo().User().CreateUser(user)
  61. if err != nil {
  62. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  63. return
  64. }
  65. err = addUserToDefaultProject(u.Config(), user)
  66. if err != nil {
  67. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  68. return
  69. }
  70. // save the user as authenticated in the session
  71. redirect, err := authn.SaveUserAuthenticated(w, r, u.Config(), user)
  72. if err != nil {
  73. u.HandleAPIError(w, r, apierrors.NewErrInternal(err))
  74. return
  75. }
  76. // non-fatal send email verification
  77. if !user.EmailVerified {
  78. err = startEmailVerification(u.Config(), w, r, user)
  79. if err != nil {
  80. u.HandleAPIErrorNoWrite(w, r, apierrors.NewErrInternal(err))
  81. }
  82. }
  83. // create referral if referred by another user
  84. if request.ReferredBy != "" {
  85. referral := &models.Referral{
  86. Code: request.ReferredBy,
  87. ReferredUserID: user.ID,
  88. Status: models.ReferralStatusSignedUp,
  89. }
  90. _, err = u.Repo().Referral().CreateReferral(referral)
  91. if err != nil {
  92. u.HandleAPIErrorNoWrite(w, r, apierrors.NewErrInternal(err))
  93. }
  94. }
  95. u.Config().AnalyticsClient.Identify(analytics.CreateSegmentIdentifyUser(user))
  96. u.Config().AnalyticsClient.Track(analytics.UserCreateTrack(&analytics.UserCreateTrackOpts{
  97. UserScopedTrackOpts: analytics.GetUserScopedTrackOpts(user.ID),
  98. Email: user.Email,
  99. FirstName: user.FirstName,
  100. LastName: user.LastName,
  101. CompanyName: user.CompanyName,
  102. ReferralMethod: request.ReferralMethod,
  103. }))
  104. if redirect != "" {
  105. http.Redirect(w, r, redirect, http.StatusFound)
  106. return
  107. }
  108. u.WriteResult(w, r, user.ToUserType())
  109. }
  110. func doesUserExist(userRepo repository.UserRepository, user *models.User) bool {
  111. user, err := userRepo.ReadUserByEmail(user.Email)
  112. return user != nil && err == nil
  113. }
  114. // addUserToDefaultProject adds the created user to any default projects if required by
  115. // config variables.
  116. func addUserToDefaultProject(config *config.Config, user *models.User) error {
  117. if config.ServerConf.InitInCluster {
  118. // if this is the first user, add the user to the default project
  119. if user.ID == 1 {
  120. // read the default project
  121. project, err := config.Repo.Project().ReadProject(1)
  122. if err != nil {
  123. return err
  124. }
  125. // create a new Role with the user as the admin
  126. _, err = config.Repo.Project().CreateProjectRole(project, &models.Role{
  127. Role: types.Role{
  128. UserID: user.ID,
  129. ProjectID: project.ID,
  130. Kind: types.RoleAdmin,
  131. },
  132. })
  133. if err != nil {
  134. return err
  135. }
  136. }
  137. }
  138. return nil
  139. }