2017-03-17 14:16:08 +00:00
|
|
|
// Copyright 2017 The Gitea Authors. All rights reserved.
|
|
|
|
// Use of this source code is governed by a MIT-style
|
|
|
|
// license that can be found in the LICENSE file.
|
|
|
|
|
|
|
|
package models
|
|
|
|
|
|
|
|
import (
|
|
|
|
"errors"
|
|
|
|
|
|
|
|
"code.gitea.io/gitea/modules/auth/openid"
|
|
|
|
"code.gitea.io/gitea/modules/log"
|
|
|
|
)
|
|
|
|
|
2021-03-14 18:52:12 +00:00
|
|
|
// ErrOpenIDNotExist openid is not known
|
|
|
|
var ErrOpenIDNotExist = errors.New("OpenID is unknown")
|
2017-03-17 14:16:08 +00:00
|
|
|
|
|
|
|
// UserOpenID is the list of all OpenID identities of a user.
|
|
|
|
type UserOpenID struct {
|
2017-03-21 00:55:00 +00:00
|
|
|
ID int64 `xorm:"pk autoincr"`
|
|
|
|
UID int64 `xorm:"INDEX NOT NULL"`
|
|
|
|
URI string `xorm:"UNIQUE NOT NULL"`
|
|
|
|
Show bool `xorm:"DEFAULT false"`
|
2017-03-17 14:16:08 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
// GetUserOpenIDs returns all openid addresses that belongs to given user.
|
|
|
|
func GetUserOpenIDs(uid int64) ([]*UserOpenID, error) {
|
|
|
|
openids := make([]*UserOpenID, 0, 5)
|
|
|
|
if err := x.
|
|
|
|
Where("uid=?", uid).
|
2017-03-20 08:31:08 +00:00
|
|
|
Asc("id").
|
2017-03-17 14:16:08 +00:00
|
|
|
Find(&openids); err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
|
|
|
|
return openids, nil
|
|
|
|
}
|
|
|
|
|
2021-04-09 07:40:34 +00:00
|
|
|
// isOpenIDUsed returns true if the openid has been used.
|
2017-03-17 14:16:08 +00:00
|
|
|
func isOpenIDUsed(e Engine, uri string) (bool, error) {
|
|
|
|
if len(uri) == 0 {
|
|
|
|
return true, nil
|
|
|
|
}
|
|
|
|
|
|
|
|
return e.Get(&UserOpenID{URI: uri})
|
|
|
|
}
|
|
|
|
|
|
|
|
// NOTE: make sure openid.URI is normalized already
|
|
|
|
func addUserOpenID(e Engine, openid *UserOpenID) error {
|
|
|
|
used, err := isOpenIDUsed(e, openid.URI)
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
} else if used {
|
|
|
|
return ErrOpenIDAlreadyUsed{openid.URI}
|
|
|
|
}
|
|
|
|
|
|
|
|
_, err = e.Insert(openid)
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
// AddUserOpenID adds an pre-verified/normalized OpenID URI to given user.
|
|
|
|
func AddUserOpenID(openid *UserOpenID) error {
|
|
|
|
return addUserOpenID(x, openid)
|
|
|
|
}
|
|
|
|
|
|
|
|
// DeleteUserOpenID deletes an openid address of given user.
|
|
|
|
func DeleteUserOpenID(openid *UserOpenID) (err error) {
|
|
|
|
var deleted int64
|
|
|
|
// ask to check UID
|
2021-03-14 18:52:12 +00:00
|
|
|
address := UserOpenID{
|
2017-03-17 14:16:08 +00:00
|
|
|
UID: openid.UID,
|
|
|
|
}
|
|
|
|
if openid.ID > 0 {
|
2017-10-05 04:43:04 +00:00
|
|
|
deleted, err = x.ID(openid.ID).Delete(&address)
|
2017-03-17 14:16:08 +00:00
|
|
|
} else {
|
|
|
|
deleted, err = x.
|
|
|
|
Where("openid=?", openid.URI).
|
|
|
|
Delete(&address)
|
|
|
|
}
|
|
|
|
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
} else if deleted != 1 {
|
|
|
|
return ErrOpenIDNotExist
|
|
|
|
}
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2017-03-20 08:31:08 +00:00
|
|
|
// ToggleUserOpenIDVisibility toggles visibility of an openid address of given user.
|
|
|
|
func ToggleUserOpenIDVisibility(id int64) (err error) {
|
2018-10-20 22:19:21 +00:00
|
|
|
_, err = x.Exec("update `user_open_id` set `show` = not `show` where `id` = ?", id)
|
2017-03-20 08:31:08 +00:00
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
2017-03-17 14:16:08 +00:00
|
|
|
// GetUserByOpenID returns the user object by given OpenID if exists.
|
|
|
|
func GetUserByOpenID(uri string) (*User, error) {
|
|
|
|
if len(uri) == 0 {
|
|
|
|
return nil, ErrUserNotExist{0, uri, 0}
|
|
|
|
}
|
|
|
|
|
|
|
|
uri, err := openid.Normalize(uri)
|
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
|
|
|
|
log.Trace("Normalized OpenID URI: " + uri)
|
|
|
|
|
|
|
|
// Otherwise, check in openid table
|
2020-06-17 17:50:11 +00:00
|
|
|
oid := &UserOpenID{}
|
|
|
|
has, err := x.Where("uri=?", uri).Get(oid)
|
2017-03-17 14:16:08 +00:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
if has {
|
|
|
|
return GetUserByID(oid.UID)
|
|
|
|
}
|
|
|
|
|
|
|
|
return nil, ErrUserNotExist{0, uri, 0}
|
|
|
|
}
|