2019-03-05 17:23:05 +01:00
|
|
|
defmodule Mobilizon.Users do
|
|
|
|
@moduledoc """
|
|
|
|
The Users context.
|
|
|
|
"""
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
import Ecto.Query
|
|
|
|
import EctoEnum
|
2019-03-05 17:23:05 +01:00
|
|
|
|
2019-09-08 01:49:56 +02:00
|
|
|
import Mobilizon.Storage.Ecto
|
2019-03-05 17:23:05 +01:00
|
|
|
|
|
|
|
alias Mobilizon.Actors.Actor
|
2019-09-07 19:54:11 +02:00
|
|
|
alias Mobilizon.Events
|
2019-09-08 01:49:56 +02:00
|
|
|
alias Mobilizon.Storage.{Page, Repo}
|
2020-02-18 08:57:00 +01:00
|
|
|
alias Mobilizon.Users.{Setting, User}
|
2019-03-05 17:23:05 +01:00
|
|
|
|
2020-01-26 21:36:50 +01:00
|
|
|
alias Mobilizon.Web.Auth
|
2020-01-23 21:59:50 +01:00
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@type tokens :: %{
|
|
|
|
required(:access_token) => String.t(),
|
|
|
|
required(:refresh_token) => String.t()
|
|
|
|
}
|
|
|
|
|
|
|
|
defenum(UserRole, :user_role, [:administrator, :moderator, :user])
|
|
|
|
|
2019-03-08 18:52:27 +01:00
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Registers an user.
|
2019-03-08 18:52:27 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec register(map) :: {:ok, User.t()} | {:error, Ecto.Changeset.t()}
|
2019-10-01 13:08:09 +02:00
|
|
|
def register(args) do
|
2019-03-08 18:52:27 +01:00
|
|
|
with {:ok, %User{} = user} <-
|
2019-08-12 16:04:16 +02:00
|
|
|
%User{}
|
|
|
|
|> User.registration_changeset(args)
|
2019-09-07 19:54:11 +02:00
|
|
|
|> Repo.insert() do
|
2020-02-13 15:48:12 +01:00
|
|
|
Events.create_feed_token(%{user_id: user.id})
|
2019-09-07 19:54:11 +02:00
|
|
|
|
2019-03-08 18:52:27 +01:00
|
|
|
{:ok, user}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2019-03-05 17:23:05 +01:00
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Gets a single user.
|
|
|
|
Raises `Ecto.NoResultsError` if the user does not exist.
|
|
|
|
"""
|
|
|
|
@spec get_user!(integer | String.t()) :: User.t()
|
|
|
|
def get_user!(id), do: Repo.get!(User, id)
|
2019-03-05 17:23:05 +01:00
|
|
|
|
2020-02-18 08:57:00 +01:00
|
|
|
@spec get_user(integer | String.t()) :: User.t() | nil
|
|
|
|
def get_user(id), do: Repo.get(User, id)
|
|
|
|
|
|
|
|
def get_user_with_settings!(id) do
|
|
|
|
User
|
|
|
|
|> Repo.get(id)
|
|
|
|
|> Repo.preload([:settings])
|
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@doc """
|
|
|
|
Gets an user by its email.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec get_user_by_email(String.t(), boolean | nil) ::
|
|
|
|
{:ok, User.t()} | {:error, :user_not_found}
|
2019-03-05 17:23:05 +01:00
|
|
|
def get_user_by_email(email, activated \\ nil) do
|
2019-09-07 19:54:11 +02:00
|
|
|
query = user_by_email_query(email, activated)
|
2019-03-05 17:23:05 +01:00
|
|
|
|
|
|
|
case Repo.one(query) do
|
2019-09-11 03:16:37 +02:00
|
|
|
nil ->
|
|
|
|
{:error, :user_not_found}
|
|
|
|
|
|
|
|
user ->
|
|
|
|
{:ok, user}
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Get an user by its activation token.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec get_user_by_activation_token(String.t()) :: Actor.t() | nil
|
2019-03-05 17:23:05 +01:00
|
|
|
def get_user_by_activation_token(token) do
|
2019-09-07 19:54:11 +02:00
|
|
|
token
|
|
|
|
|> user_by_activation_token_query()
|
|
|
|
|> Repo.one()
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Get an user by its reset password token.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
|
|
|
@spec get_user_by_reset_password_token(String.t()) :: Actor.t()
|
|
|
|
def get_user_by_reset_password_token(token) do
|
2019-09-07 19:54:11 +02:00
|
|
|
token
|
|
|
|
|> user_by_reset_password_token_query()
|
|
|
|
|> Repo.one()
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Updates an user.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec update_user(User.t(), map) :: {:ok, User.t()} | {:error, Ecto.Changeset.t()}
|
2019-03-05 17:23:05 +01:00
|
|
|
def update_user(%User{} = user, attrs) do
|
|
|
|
with {:ok, %User{} = user} <-
|
|
|
|
user
|
|
|
|
|> User.changeset(attrs)
|
|
|
|
|> Repo.update() do
|
|
|
|
{:ok, Repo.preload(user, [:default_actor])}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Deletes an user.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec delete_user(User.t()) :: {:ok, User.t()} | {:error, Ecto.Changeset.t()}
|
2019-09-09 00:52:49 +02:00
|
|
|
def delete_user(%User{} = user), do: Repo.delete(user)
|
2019-03-05 17:23:05 +01:00
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Get an user with its actors
|
|
|
|
Raises `Ecto.NoResultsError` if the user does not exist.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec get_user_with_actors!(integer | String.t()) :: User.t()
|
2019-03-05 17:23:05 +01:00
|
|
|
def get_user_with_actors!(id) do
|
2019-09-07 19:54:11 +02:00
|
|
|
id
|
|
|
|
|> get_user!()
|
|
|
|
|> Repo.preload([:actors, :default_actor])
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Get user with its actors.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec get_user_with_actors(integer()) :: {:ok, User.t()} | {:error, String.t()}
|
2019-03-05 17:23:05 +01:00
|
|
|
def get_user_with_actors(id) do
|
|
|
|
case Repo.get(User, id) do
|
|
|
|
nil ->
|
|
|
|
{:error, "User with ID #{id} not found"}
|
|
|
|
|
|
|
|
user ->
|
|
|
|
user =
|
|
|
|
user
|
|
|
|
|> Repo.preload([:actors, :default_actor])
|
|
|
|
|> Map.put(:actors, get_actors_for_user(user))
|
|
|
|
|
|
|
|
{:ok, user}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Gets the associated actor for an user, either the default set one or the first
|
|
|
|
found.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec get_actor_for_user(User.t()) :: Actor.t() | nil
|
|
|
|
def get_actor_for_user(%User{} = user) do
|
|
|
|
actor =
|
|
|
|
user
|
|
|
|
|> actor_for_user_query()
|
|
|
|
|> Repo.one()
|
|
|
|
|
|
|
|
case actor do
|
2019-03-05 17:23:05 +01:00
|
|
|
nil ->
|
2019-09-07 19:54:11 +02:00
|
|
|
case get_actors_for_user(user) do
|
2019-09-11 03:16:37 +02:00
|
|
|
[] ->
|
|
|
|
nil
|
|
|
|
|
|
|
|
actors ->
|
|
|
|
hd(actors)
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
|
|
|
|
actor ->
|
|
|
|
actor
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@doc """
|
|
|
|
Gets actors for an user.
|
|
|
|
"""
|
|
|
|
@spec get_actors_for_user(User.t()) :: [Actor.t()]
|
|
|
|
def get_actors_for_user(%User{} = user) do
|
|
|
|
user
|
|
|
|
|> actors_for_user_query()
|
|
|
|
|> Repo.all()
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Updates user's default actor.
|
|
|
|
Raises `Ecto.NoResultsError` if the user does not exist.
|
|
|
|
"""
|
|
|
|
@spec update_user_default_actor(integer | String.t(), integer | String.t()) :: User.t()
|
|
|
|
def update_user_default_actor(user_id, actor_id) do
|
|
|
|
with _ <-
|
|
|
|
user_id
|
|
|
|
|> update_user_default_actor_query(actor_id)
|
|
|
|
|> Repo.update_all([]) do
|
|
|
|
user_id
|
|
|
|
|> get_user!()
|
|
|
|
|> Repo.preload([:default_actor])
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Returns the list of users.
|
|
|
|
"""
|
|
|
|
@spec list_users(integer | nil, integer | nil, atom | nil, atom | nil) :: [User.t()]
|
|
|
|
def list_users(page \\ nil, limit \\ nil, sort \\ nil, direction \\ nil) do
|
|
|
|
User
|
|
|
|
|> Page.paginate(page, limit)
|
|
|
|
|> sort(sort, direction)
|
|
|
|
|> Repo.all()
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Returns the list of administrators.
|
|
|
|
"""
|
|
|
|
@spec list_admins :: [User.t()]
|
|
|
|
def list_admins do
|
|
|
|
User
|
|
|
|
|> where([u], u.role == ^:administrator)
|
|
|
|
|> Repo.all()
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Returns the list of moderators.
|
|
|
|
"""
|
|
|
|
@spec list_moderators :: [User.t()]
|
|
|
|
def list_moderators do
|
|
|
|
User
|
|
|
|
|> where([u], u.role in ^[:administrator, :moderator])
|
|
|
|
|> Repo.all()
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Counts users.
|
2019-03-05 17:23:05 +01:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec count_users :: integer
|
2019-09-09 00:52:49 +02:00
|
|
|
def count_users, do: Repo.one(from(u in User, select: count(u.id)))
|
2019-09-07 19:54:11 +02:00
|
|
|
|
|
|
|
@doc """
|
|
|
|
Authenticate an user.
|
|
|
|
"""
|
|
|
|
@spec authenticate(User.t()) :: {:ok, tokens} | {:error, :unauthorized}
|
|
|
|
def authenticate(%{user: %User{password_hash: password_hash} = user, password: password}) do
|
2019-03-05 17:23:05 +01:00
|
|
|
# Does password match the one stored in the database?
|
2019-09-07 19:54:11 +02:00
|
|
|
if Argon2.verify_pass(password, password_hash) do
|
|
|
|
{:ok, _tokens} = generate_tokens(user)
|
2019-08-13 08:43:37 +02:00
|
|
|
else
|
2019-09-07 19:54:11 +02:00
|
|
|
{:error, :unauthorized}
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2019-08-12 16:04:16 +02:00
|
|
|
@doc """
|
2019-09-07 19:54:11 +02:00
|
|
|
Generates access token and refresh token for an user.
|
2019-08-12 16:04:16 +02:00
|
|
|
"""
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec generate_tokens(User.t()) :: {:ok, tokens}
|
2019-08-12 16:04:16 +02:00
|
|
|
def generate_tokens(user) do
|
|
|
|
with {:ok, access_token} <- generate_access_token(user),
|
|
|
|
{:ok, refresh_token} <- generate_refresh_token(user) do
|
|
|
|
{:ok, %{access_token: access_token, refresh_token: refresh_token}}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@doc """
|
|
|
|
Generates access token for an user.
|
|
|
|
"""
|
|
|
|
@spec generate_access_token(User.t()) :: {:ok, String.t()}
|
|
|
|
def generate_access_token(user) do
|
2019-08-12 17:41:41 +02:00
|
|
|
with {:ok, access_token, _claims} <-
|
2020-01-23 21:59:50 +01:00
|
|
|
Auth.Guardian.encode_and_sign(user, %{}, token_type: "access") do
|
2019-08-12 16:04:16 +02:00
|
|
|
{:ok, access_token}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@doc """
|
|
|
|
Generates refresh token for an user.
|
|
|
|
"""
|
|
|
|
@spec generate_refresh_token(User.t()) :: {:ok, String.t()}
|
2019-08-12 16:04:16 +02:00
|
|
|
def generate_refresh_token(user) do
|
2019-08-12 17:41:41 +02:00
|
|
|
with {:ok, refresh_token, _claims} <-
|
2020-01-23 21:59:50 +01:00
|
|
|
Auth.Guardian.encode_and_sign(user, %{}, token_type: "refresh") do
|
2019-08-12 16:04:16 +02:00
|
|
|
{:ok, refresh_token}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2020-02-18 08:57:00 +01:00
|
|
|
@doc """
|
|
|
|
Gets a settings for an user.
|
|
|
|
|
|
|
|
Raises `Ecto.NoResultsError` if the Setting does not exist.
|
|
|
|
|
|
|
|
## Examples
|
|
|
|
|
|
|
|
iex> get_setting!(123)
|
|
|
|
%Setting{}
|
|
|
|
|
|
|
|
iex> get_setting!(456)
|
|
|
|
** (Ecto.NoResultsError)
|
|
|
|
|
|
|
|
"""
|
|
|
|
def get_setting!(user_id), do: Repo.get!(Setting, user_id)
|
|
|
|
|
|
|
|
@spec get_setting(User.t()) :: Setting.t()
|
|
|
|
def get_setting(%User{id: user_id}), do: get_setting(user_id)
|
|
|
|
|
|
|
|
@spec get_setting(String.t() | integer()) :: Setting.t()
|
|
|
|
def get_setting(user_id), do: Repo.get(Setting, user_id)
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Creates a setting.
|
|
|
|
|
|
|
|
## Examples
|
|
|
|
|
|
|
|
iex> create_setting(%{field: value})
|
|
|
|
{:ok, %Setting{}}
|
|
|
|
|
|
|
|
iex> create_setting(%{field: bad_value})
|
|
|
|
{:error, %Ecto.Changeset{}}
|
|
|
|
|
|
|
|
"""
|
|
|
|
def create_setting(attrs \\ %{}) do
|
|
|
|
%Setting{}
|
|
|
|
|> Setting.changeset(attrs)
|
|
|
|
|> Repo.insert(
|
|
|
|
on_conflict: {:replace_all_except, [:user_id, :inserted_at]},
|
|
|
|
conflict_target: :user_id
|
|
|
|
)
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Updates a setting.
|
|
|
|
|
|
|
|
## Examples
|
|
|
|
|
|
|
|
iex> update_setting(setting, %{field: new_value})
|
|
|
|
{:ok, %Setting{}}
|
|
|
|
|
|
|
|
iex> update_setting(setting, %{field: bad_value})
|
|
|
|
{:error, %Ecto.Changeset{}}
|
|
|
|
|
|
|
|
"""
|
|
|
|
def update_setting(%Setting{} = setting, attrs) do
|
|
|
|
setting
|
|
|
|
|> Setting.changeset(attrs)
|
|
|
|
|> Repo.update()
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Deletes a setting.
|
|
|
|
|
|
|
|
## Examples
|
|
|
|
|
|
|
|
iex> delete_setting(setting)
|
|
|
|
{:ok, %Setting{}}
|
|
|
|
|
|
|
|
iex> delete_setting(setting)
|
|
|
|
{:error, %Ecto.Changeset{}}
|
|
|
|
|
|
|
|
"""
|
|
|
|
def delete_setting(%Setting{} = setting) do
|
|
|
|
Repo.delete(setting)
|
|
|
|
end
|
|
|
|
|
|
|
|
@doc """
|
|
|
|
Returns an `%Ecto.Changeset{}` for tracking setting changes.
|
|
|
|
|
|
|
|
## Examples
|
|
|
|
|
|
|
|
iex> change_setting(setting)
|
|
|
|
%Ecto.Changeset{source: %Setting{}}
|
|
|
|
|
|
|
|
"""
|
|
|
|
def change_setting(%Setting{} = setting) do
|
|
|
|
Setting.changeset(setting, %{})
|
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec user_by_email_query(String.t(), boolean | nil) :: Ecto.Query.t()
|
|
|
|
defp user_by_email_query(email, nil) do
|
2020-02-13 15:48:12 +01:00
|
|
|
from(u in User,
|
|
|
|
where: u.email == ^email or u.unconfirmed_email == ^email,
|
|
|
|
preload: :default_actor
|
|
|
|
)
|
2019-03-05 17:23:05 +01:00
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
defp user_by_email_query(email, true) do
|
|
|
|
from(
|
|
|
|
u in User,
|
|
|
|
where: u.email == ^email and not is_nil(u.confirmed_at),
|
|
|
|
preload: :default_actor
|
2019-03-05 17:23:05 +01:00
|
|
|
)
|
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
defp user_by_email_query(email, false) do
|
|
|
|
from(
|
|
|
|
u in User,
|
2020-02-13 15:48:12 +01:00
|
|
|
where: (u.email == ^email or u.unconfirmed_email == ^email) and is_nil(u.confirmed_at),
|
2019-09-07 19:54:11 +02:00
|
|
|
preload: :default_actor
|
|
|
|
)
|
2019-07-23 13:49:22 +02:00
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec user_by_activation_token_query(String.t()) :: Ecto.Query.t()
|
|
|
|
defp user_by_activation_token_query(token) do
|
|
|
|
from(
|
|
|
|
u in User,
|
|
|
|
where: u.confirmation_token == ^token,
|
|
|
|
preload: [:default_actor]
|
|
|
|
)
|
|
|
|
end
|
2019-07-23 13:49:22 +02:00
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec user_by_reset_password_token_query(String.t()) :: Ecto.Query.t()
|
|
|
|
defp user_by_reset_password_token_query(token) do
|
|
|
|
from(
|
|
|
|
u in User,
|
|
|
|
where: u.reset_password_token == ^token,
|
|
|
|
preload: [:default_actor]
|
|
|
|
)
|
|
|
|
end
|
2019-07-23 13:49:22 +02:00
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec actor_for_user_query(User.t()) :: Ecto.Query.t()
|
|
|
|
defp actor_for_user_query(%User{id: user_id}) do
|
|
|
|
from(
|
|
|
|
a in Actor,
|
|
|
|
join: u in User,
|
|
|
|
on: u.default_actor_id == a.id,
|
|
|
|
where: u.id == ^user_id
|
|
|
|
)
|
|
|
|
end
|
2019-07-23 13:49:22 +02:00
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec actors_for_user_query(User.t()) :: Ecto.Query.t()
|
|
|
|
defp actors_for_user_query(%User{id: user_id}) do
|
|
|
|
from(a in Actor, where: a.user_id == ^user_id)
|
2019-07-23 13:49:22 +02:00
|
|
|
end
|
|
|
|
|
2019-09-07 19:54:11 +02:00
|
|
|
@spec update_user_default_actor_query(integer | String.t(), integer | String.t()) ::
|
|
|
|
Ecto.Query.t()
|
|
|
|
defp update_user_default_actor_query(user_id, actor_id) do
|
|
|
|
from(
|
|
|
|
u in User,
|
|
|
|
where: u.id == ^user_id,
|
|
|
|
update: [set: [default_actor_id: ^actor_id]]
|
2019-03-05 17:23:05 +01:00
|
|
|
)
|
|
|
|
end
|
|
|
|
end
|