UserService.cs 9.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308
  1. using MediaBrowser.Common.Extensions;
  2. using MediaBrowser.Controller.Library;
  3. using MediaBrowser.Model.Dto;
  4. using MediaBrowser.Model.Serialization;
  5. using ServiceStack.ServiceHost;
  6. using ServiceStack.Text.Controller;
  7. using System;
  8. using System.Collections.Generic;
  9. using System.Linq;
  10. using System.Threading.Tasks;
  11. namespace MediaBrowser.Api
  12. {
  13. /// <summary>
  14. /// Class GetUsers
  15. /// </summary>
  16. [Route("/Users", "GET")]
  17. [Api(Description = "Gets a list of users")]
  18. public class GetUsers : IReturn<List<UserDto>>
  19. {
  20. }
  21. /// <summary>
  22. /// Class GetUser
  23. /// </summary>
  24. [Route("/Users/{Id}", "GET")]
  25. [Api(Description = "Gets a user by Id")]
  26. public class GetUser : IReturn<UserDto>
  27. {
  28. /// <summary>
  29. /// Gets or sets the id.
  30. /// </summary>
  31. /// <value>The id.</value>
  32. [ApiMember(Name = "User Id", IsRequired = true, DataType = "string", ParameterType = "path", Verb = "GET")]
  33. public Guid Id { get; set; }
  34. }
  35. /// <summary>
  36. /// Class DeleteUser
  37. /// </summary>
  38. [Route("/Users/{Id}", "DELETE")]
  39. [Api(Description = "Deletes a user")]
  40. public class DeleteUser : IReturnVoid
  41. {
  42. /// <summary>
  43. /// Gets or sets the id.
  44. /// </summary>
  45. /// <value>The id.</value>
  46. [ApiMember(Name = "User Id", IsRequired = true, DataType = "string", ParameterType = "path", Verb = "DELETE")]
  47. public Guid Id { get; set; }
  48. }
  49. /// <summary>
  50. /// Class AuthenticateUser
  51. /// </summary>
  52. [Route("/Users/{Id}/Authenticate", "POST")]
  53. [Api(Description = "Authenticates a user")]
  54. public class AuthenticateUser : IReturnVoid
  55. {
  56. /// <summary>
  57. /// Gets or sets the id.
  58. /// </summary>
  59. /// <value>The id.</value>
  60. [ApiMember(Name = "User Id", IsRequired = true, DataType = "string", ParameterType = "path", Verb = "POST")]
  61. public Guid Id { get; set; }
  62. /// <summary>
  63. /// Gets or sets the password.
  64. /// </summary>
  65. /// <value>The password.</value>
  66. [ApiMember(Name = "Password", IsRequired = true, DataType = "string", ParameterType = "body", Verb = "POST")]
  67. public string Password { get; set; }
  68. }
  69. /// <summary>
  70. /// Class UpdateUserPassword
  71. /// </summary>
  72. [Route("/Users/{Id}/Password", "POST")]
  73. [Api(Description = "Updates a user's password")]
  74. public class UpdateUserPassword : IReturnVoid
  75. {
  76. /// <summary>
  77. /// Gets or sets the id.
  78. /// </summary>
  79. /// <value>The id.</value>
  80. public Guid Id { get; set; }
  81. /// <summary>
  82. /// Gets or sets the password.
  83. /// </summary>
  84. /// <value>The password.</value>
  85. public string CurrentPassword { get; set; }
  86. /// <summary>
  87. /// Gets or sets the new password.
  88. /// </summary>
  89. /// <value>The new password.</value>
  90. public string NewPassword { get; set; }
  91. /// <summary>
  92. /// Gets or sets a value indicating whether [reset password].
  93. /// </summary>
  94. /// <value><c>true</c> if [reset password]; otherwise, <c>false</c>.</value>
  95. public bool ResetPassword { get; set; }
  96. }
  97. /// <summary>
  98. /// Class UpdateUser
  99. /// </summary>
  100. [Route("/Users/{Id}", "POST")]
  101. [Api(Description = "Updates a user")]
  102. public class UpdateUser : UserDto, IReturnVoid
  103. {
  104. }
  105. /// <summary>
  106. /// Class CreateUser
  107. /// </summary>
  108. [Route("/Users", "POST")]
  109. [Api(Description = "Creates a user")]
  110. public class CreateUser : UserDto, IReturn<UserDto>
  111. {
  112. }
  113. /// <summary>
  114. /// Class UsersService
  115. /// </summary>
  116. public class UserService : BaseApiService
  117. {
  118. /// <summary>
  119. /// The _XML serializer
  120. /// </summary>
  121. private readonly IXmlSerializer _xmlSerializer;
  122. /// <summary>
  123. /// The _user manager
  124. /// </summary>
  125. private readonly IUserManager _userManager;
  126. private readonly ILibraryManager _libraryManager;
  127. /// <summary>
  128. /// Initializes a new instance of the <see cref="UserService" /> class.
  129. /// </summary>
  130. /// <param name="xmlSerializer">The XML serializer.</param>
  131. /// <param name="userManager">The user manager.</param>
  132. /// <param name="libraryManager">The library manager.</param>
  133. /// <exception cref="System.ArgumentNullException">xmlSerializer</exception>
  134. public UserService(IXmlSerializer xmlSerializer, IUserManager userManager, ILibraryManager libraryManager)
  135. : base()
  136. {
  137. if (xmlSerializer == null)
  138. {
  139. throw new ArgumentNullException("xmlSerializer");
  140. }
  141. _xmlSerializer = xmlSerializer;
  142. _userManager = userManager;
  143. _libraryManager = libraryManager;
  144. }
  145. /// <summary>
  146. /// Gets the specified request.
  147. /// </summary>
  148. /// <param name="request">The request.</param>
  149. /// <returns>System.Object.</returns>
  150. public object Get(GetUsers request)
  151. {
  152. var dtoBuilder = new DtoBuilder(Logger, _libraryManager, _userManager);
  153. var users = _userManager.Users.OrderBy(u => u.Name).Select(dtoBuilder.GetUserDto).ToArray();
  154. return ToOptimizedResult(users);
  155. }
  156. /// <summary>
  157. /// Gets the specified request.
  158. /// </summary>
  159. /// <param name="request">The request.</param>
  160. /// <returns>System.Object.</returns>
  161. public object Get(GetUser request)
  162. {
  163. var user = _userManager.GetUserById(request.Id);
  164. if (user == null)
  165. {
  166. throw new ResourceNotFoundException("User not found");
  167. }
  168. var result = new DtoBuilder(Logger, _libraryManager, _userManager).GetUserDto(user);
  169. return ToOptimizedResult(result);
  170. }
  171. /// <summary>
  172. /// Deletes the specified request.
  173. /// </summary>
  174. /// <param name="request">The request.</param>
  175. public void Delete(DeleteUser request)
  176. {
  177. var user = _userManager.GetUserById(request.Id);
  178. if (user == null)
  179. {
  180. throw new ResourceNotFoundException("User not found");
  181. }
  182. var task = _userManager.DeleteUser(user);
  183. Task.WaitAll(task);
  184. }
  185. /// <summary>
  186. /// Posts the specified request.
  187. /// </summary>
  188. /// <param name="request">The request.</param>
  189. public void Post(AuthenticateUser request)
  190. {
  191. var user = _userManager.GetUserById(request.Id);
  192. if (user == null)
  193. {
  194. throw new ResourceNotFoundException("User not found");
  195. }
  196. var success = _userManager.AuthenticateUser(user, request.Password).Result;
  197. if (!success)
  198. {
  199. // Unauthorized
  200. throw new UnauthorizedAccessException("Invalid user or password entered.");
  201. }
  202. }
  203. /// <summary>
  204. /// Posts the specified request.
  205. /// </summary>
  206. /// <param name="request">The request.</param>
  207. public void Post(UpdateUserPassword request)
  208. {
  209. var user = _userManager.GetUserById(request.Id);
  210. if (user == null)
  211. {
  212. throw new ResourceNotFoundException("User not found");
  213. }
  214. if (request.ResetPassword)
  215. {
  216. var task = _userManager.ResetPassword(user);
  217. Task.WaitAll(task);
  218. }
  219. else
  220. {
  221. var success = _userManager.AuthenticateUser(user, request.CurrentPassword).Result;
  222. if (!success)
  223. {
  224. throw new UnauthorizedAccessException("Invalid user or password entered.");
  225. }
  226. var task = _userManager.ChangePassword(user, request.NewPassword);
  227. Task.WaitAll(task);
  228. }
  229. }
  230. /// <summary>
  231. /// Posts the specified request.
  232. /// </summary>
  233. /// <param name="request">The request.</param>
  234. public void Post(UpdateUser request)
  235. {
  236. // We need to parse this manually because we told service stack not to with IRequiresRequestStream
  237. // https://code.google.com/p/servicestack/source/browse/trunk/Common/ServiceStack.Text/ServiceStack.Text/Controller/PathInfo.cs
  238. var pathInfo = PathInfo.Parse(RequestContext.PathInfo);
  239. var id = new Guid(pathInfo.GetArgumentValue<string>(1));
  240. var dtoUser = request;
  241. var user = _userManager.GetUserById(id);
  242. var task = user.Name.Equals(dtoUser.Name, StringComparison.Ordinal) ? _userManager.UpdateUser(user) : _userManager.RenameUser(user, dtoUser.Name);
  243. Task.WaitAll(task);
  244. user.UpdateConfiguration(dtoUser.Configuration, _xmlSerializer);
  245. }
  246. /// <summary>
  247. /// Posts the specified request.
  248. /// </summary>
  249. /// <param name="request">The request.</param>
  250. /// <returns>System.Object.</returns>
  251. public object Post(CreateUser request)
  252. {
  253. var dtoUser = request;
  254. var newUser = _userManager.CreateUser(dtoUser.Name).Result;
  255. newUser.UpdateConfiguration(dtoUser.Configuration, _xmlSerializer);
  256. var result = new DtoBuilder(Logger, _libraryManager, _userManager).GetUserDto(newUser);
  257. return ToOptimizedResult(result);
  258. }
  259. }
  260. }