user.rb 11.1 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
# == Schema Information
#
# Table name: users
#
#  id                     :integer          not null, primary key
#  email                  :string(255)      default(""), not null
#  encrypted_password     :string(255)      default(""), not null
#  reset_password_token   :string(255)
#  reset_password_sent_at :datetime
#  remember_created_at    :datetime
#  sign_in_count          :integer          default(0)
#  current_sign_in_at     :datetime
#  last_sign_in_at        :datetime
#  current_sign_in_ip     :string(255)
#  last_sign_in_ip        :string(255)
#  created_at             :datetime         not null
#  updated_at             :datetime         not null
#  name                   :string(255)
#  admin                  :boolean          default(FALSE), not null
#  projects_limit         :integer          default(10)
#  skype                  :string(255)      default(""), not null
#  linkedin               :string(255)      default(""), not null
#  twitter                :string(255)      default(""), not null
#  authentication_token   :string(255)
#  theme_id               :integer          default(1), not null
#  bio                    :string(255)
#  failed_attempts        :integer          default(0)
#  locked_at              :datetime
#  extern_uid             :string(255)
#  provider               :string(255)
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
31
#  username               :string(255)
32 33
#  can_create_group       :boolean          default(TRUE), not null
#  can_create_team        :boolean          default(TRUE), not null
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
34 35
#  state                  :string(255)
#  color_scheme_id        :integer          default(1), not null
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
36
#  notification_level     :integer          default(1), not null
37 38
#

gitlabhq's avatar
gitlabhq committed
39
class User < ActiveRecord::Base
40
  devise :database_authenticatable, :token_authenticatable, :lockable,
Marin Jankovski's avatar
Marin Jankovski committed
41
         :recoverable, :rememberable, :trackable, :validatable, :omniauthable, :registerable
gitlabhq's avatar
gitlabhq committed
42

43
  attr_accessible :email, :password, :password_confirmation, :remember_me, :bio, :name, :username,
44
                  :skype, :linkedin, :twitter, :color_scheme_id, :theme_id, :force_random_password,
45
                  :extern_uid, :provider, as: [:default, :admin]
46
  attr_accessible :projects_limit, :can_create_team, :can_create_group, as: :admin
47 48

  attr_accessor :force_random_password
gitlabhq's avatar
gitlabhq committed
49

50 51 52 53 54 55 56
  # Virtual attribute for authenticating by either username or email
  attr_accessor :login

  # Add login to attr_accessible
  attr_accessible :login


57 58 59 60
  #
  # Relations
  #

61
  # Namespace for personal projects
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
62 63 64 65
  has_one :namespace, dependent: :destroy, foreign_key: :owner_id, class_name: "Namespace", conditions: 'type IS NULL'

  # Namespaces (owned groups and own namespace)
  has_many :namespaces, foreign_key: :owner_id
66 67 68 69 70 71 72 73

  # Profile
  has_many :keys, dependent: :destroy

  # Groups
  has_many :groups, class_name: "Group", foreign_key: :owner_id

  # Teams
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
74 75 76
  has_many :own_teams,                       dependent: :destroy, class_name: "UserTeam", foreign_key: :owner_id
  has_many :user_team_user_relationships,    dependent: :destroy
  has_many :user_teams,                      through: :user_team_user_relationships
77
  has_many :user_team_project_relationships, through: :user_teams
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
78
  has_many :team_projects,                   through: :user_team_project_relationships
79

80
  # Projects
81
  has_many :snippets,                 dependent: :destroy, foreign_key: :author_id, class_name: "Snippet"
82 83 84 85 86
  has_many :users_projects,           dependent: :destroy
  has_many :issues,                   dependent: :destroy, foreign_key: :author_id
  has_many :notes,                    dependent: :destroy, foreign_key: :author_id
  has_many :merge_requests,           dependent: :destroy, foreign_key: :author_id
  has_many :events,                   dependent: :destroy, foreign_key: :author_id,   class_name: "Event"
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
87
  has_many :recent_events,                                 foreign_key: :author_id,   class_name: "Event", order: "id DESC"
88 89 90
  has_many :assigned_issues,          dependent: :destroy, foreign_key: :assignee_id, class_name: "Issue"
  has_many :assigned_merge_requests,  dependent: :destroy, foreign_key: :assignee_id, class_name: "MergeRequest"

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
91 92
  has_many :personal_projects,        through: :namespace, source: :projects
  has_many :projects,                 through: :users_projects
93 94
  has_many :master_projects,          through: :users_projects, source: :project,
                                      conditions: { users_projects: { project_access: UsersProject::MASTER } }
95
  has_many :own_projects,             foreign_key: :creator_id, class_name: 'Project'
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
96
  has_many :owned_projects,           through: :namespaces, source: :projects
97

98 99 100
  #
  # Validations
  #
Cyril's avatar
Cyril committed
101
  validates :name, presence: true
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
102
  validates :email, presence: true, format: { with: /\A([^@\s]+)@((?:[-a-z0-9]+\.)+[a-z]{2,})\Z/ }
103
  validates :bio, length: { within: 0..255 }
104
  validates :extern_uid, allow_blank: true, uniqueness: {scope: :provider}
Nihad Abbasov's avatar
Nihad Abbasov committed
105
  validates :projects_limit, presence: true, numericality: {greater_than_or_equal_to: 0}
106 107 108 109
  validates :username, presence: true, uniqueness: true,
            format: { with: Gitlab::Regex.username_regex,
                      message: "only letters, digits & '_' '-' '.' allowed. Letter should be first" }

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
110
  validates :notification_level, inclusion: { in: Notification.notification_levels }, presence: true
111

112 113
  validate :namespace_uniq, if: ->(user) { user.username_changed? }

114
  before_validation :generate_password, on: :create
Nihad Abbasov's avatar
Nihad Abbasov committed
115 116
  before_save :ensure_authentication_token
  alias_attribute :private_token, :authentication_token
117

118
  delegate :path, to: :namespace, allow_nil: true, prefix: true
119

120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136
  state_machine :state, initial: :active do
    after_transition any => :blocked do |user, transition|
      # Remove user from all projects and
      user.users_projects.find_each do |membership|
        return false unless membership.destroy
      end
    end

    event :block do
      transition active: :blocked
    end

    event :activate do
      transition blocked: :active
    end
  end

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
137
  # Scopes
Andrew8xx8's avatar
Andrew8xx8 committed
138
  scope :admins, -> { where(admin:  true) }
139 140
  scope :blocked, -> { with_state(:blocked) }
  scope :active, -> { with_state(:active) }
Andrew8xx8's avatar
Andrew8xx8 committed
141
  scope :alphabetically, -> { order('name ASC') }
142 143
  scope :in_team, ->(team){ where(id: team.member_ids) }
  scope :not_in_team, ->(team){ where('users.id NOT IN (:ids)', ids: team.member_ids) }
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
144 145 146
  scope :not_in_project, ->(project) { project.users.present? ? where("id not in (:ids)", ids: project.users.map(&:id) ) : scoped }
  scope :without_projects, -> { where('id NOT IN (SELECT DISTINCT(user_id) FROM users_projects)') }

147
  scope :potential_team_members, ->(team) { team.members.any? ? active.not_in_team(team) : active  }
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
148

149 150 151
  #
  # Class methods
  #
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
152
  class << self
153 154 155 156 157 158 159 160 161 162
    # Devise method overriden to allow sing in with email or username
    def find_for_database_authentication(warden_conditions)
      conditions = warden_conditions.dup
      if login = conditions.delete(:login)
        where(conditions).where(["lower(username) = :value OR lower(email) = :value", { value: login.downcase }]).first
      else
        where(conditions).first
      end
    end

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
163 164 165 166 167 168 169 170
    def filter filter_name
      case filter_name
      when "admins"; self.admins
      when "blocked"; self.blocked
      when "wop"; self.without_projects
      else
        self.active
      end
171 172
    end

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
173 174 175
    def create_from_omniauth(auth, ldap = false)
      gitlab_auth.create_from_omniauth(auth, ldap)
    end
gitlabhq's avatar
gitlabhq committed
176

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
177 178 179
    def find_or_new_for_omniauth(auth)
      gitlab_auth.find_or_new_for_omniauth(auth)
    end
Florian Unglaub's avatar
Florian Unglaub committed
180

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
181 182 183
    def find_for_ldap_auth(auth, signed_in_resource = nil)
      gitlab_auth.find_for_ldap_auth(auth, signed_in_resource)
    end
184

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
185 186 187
    def gitlab_auth
      Gitlab::Auth.new
    end
188

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
189
    def search query
190
      where("name LIKE :query OR email LIKE :query OR username LIKE :query", query: "%#{query}%")
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
191
    end
vsizov's avatar
vsizov committed
192
  end
randx's avatar
randx committed
193

194 195 196
  #
  # Instance methods
  #
197 198 199 200 201

  def to_param
    username
  end

202 203 204 205 206 207 208 209
  def with_defaults
    tap do |u|
      u.projects_limit = Gitlab.config.gitlab.default_projects_limit
      u.can_create_group = Gitlab.config.gitlab.default_can_create_group
      u.can_create_team = Gitlab.config.gitlab.default_can_create_team
    end
  end

Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
210 211 212 213
  def notification
    @notification ||= Notification.new(self)
  end

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
214 215 216 217
  def generate_password
    if self.force_random_password
      self.password = self.password_confirmation = Devise.friendly_token.first(8)
    end
randx's avatar
randx committed
218
  end
219

220 221 222 223 224 225
  def namespace_uniq
    namespace_name = self.username
    if Namespace.find_by_path(namespace_name)
      self.errors.add :username, "already exist"
    end
  end
226 227 228 229 230 231

  # Groups where user is an owner
  def owned_groups
    groups
  end

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
232 233 234 235
  def owned_teams
    own_teams
  end

236 237
  # Groups user has access to
  def authorized_groups
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
238 239
    @group_ids ||= (groups.pluck(:id) + authorized_projects.pluck(:namespace_id))
    Group.where(id: @group_ids)
240 241 242 243 244
  end


  # Projects user has access to
  def authorized_projects
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
245 246
    @project_ids ||= (owned_projects.pluck(:id) + projects.pluck(:id)).uniq
    Project.where(id: @project_ids)
247 248
  end

Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
249 250 251
  def authorized_teams
    @team_ids ||= (user_teams.pluck(:id) + own_teams.pluck(:id)).uniq
    UserTeam.where(id: @team_ids)
252
  end
253

254 255
  # Team membership in authorized projects
  def tm_in_authorized_projects
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
256
    UsersProject.where(project_id: authorized_projects.map(&:id), user_id: self.id)
257
  end
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
258 259 260 261 262 263 264 265 266

  def is_admin?
    admin
  end

  def require_ssh_key?
    keys.count == 0
  end

267 268 269 270
  def can_change_username?
    Gitlab.config.gitlab.username_changing_enabled
  end

Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
271
  def can_create_project?
272
    projects_limit > owned_projects.count
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
273 274 275
  end

  def can_create_group?
276
    can?(:create_group, nil)
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
277 278 279 280 281 282 283 284 285 286
  end

  def abilities
    @abilities ||= begin
                     abilities = Six.new
                     abilities << Ability
                     abilities
                   end
  end

287 288 289 290
  def can_select_namespace?
    several_namespaces? || admin
  end

Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
291 292 293 294 295 296 297 298 299
  def can? action, subject
    abilities.allowed?(self, action, subject)
  end

  def first_name
    name.split.first unless name.blank?
  end

  def cared_merge_requests
300
    MergeRequest.cared(self)
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
301 302
  end

303 304 305 306
  def projects_limit_left
    projects_limit - owned_projects.count
  end

Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
307 308
  def projects_limit_percent
    return 100 if projects_limit.zero?
309
    (owned_projects.count.to_f / projects_limit) * 100
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325
  end

  def recent_push project_id = nil
    # Get push events not earlier than 2 hours ago
    events = recent_events.code_push.where("created_at > ?", Time.now - 2.hours)
    events = events.where(project_id: project_id) if project_id

    # Take only latest one
    events = events.recent.limit(1).first
  end

  def projects_sorted_by_activity
    authorized_projects.sorted_by_activity
  end

  def several_namespaces?
Andrey Kumanyaev's avatar
Andrey Kumanyaev committed
326
    namespaces.many?
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
327 328 329 330 331
  end

  def namespace_id
    namespace.try :id
  end
332

333 334 335
  def name_with_username
    "#{name} (#{username})"
  end
Dmitriy Zaporozhets's avatar
Dmitriy Zaporozhets committed
336 337 338 339

  def tm_of(project)
    project.team_member_by_id(self.id)
  end
340 341 342 343 344 345 346 347 348 349 350 351 352 353

  def already_forked? project
    !!fork_of(project)
  end

  def fork_of project
    links = ForkedProjectLink.where(forked_from_project_id: project, forked_to_project_id: personal_projects)

    if links.any?
      links.first.forked_to_project
    else
      nil
    end
  end
354 355 356 357

  def ldap_user?
    extern_uid && provider == 'ldap'
  end
358

359 360
  def accessible_deploy_keys
    DeployKey.in_projects(self.master_projects).uniq
361
  end
gitlabhq's avatar
gitlabhq committed
362
end