-
Notifications
You must be signed in to change notification settings - Fork 0
/
confirm.go
101 lines (86 loc) · 2.96 KB
/
confirm.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
package password
import (
"errors"
"html/template"
"net/mail"
"path"
"reflect"
"time"
"github.com/olimgroup/auth"
"github.com/olimgroup/auth/auth_identity"
"github.com/olimgroup/auth/claims"
"github.com/qor/mailer"
"github.com/qor/qor/utils"
"github.com/qor/session"
)
var (
// ConfirmationMailSubject confirmation mail's subject
ConfirmationMailSubject = "Please confirm your account"
// ConfirmedAccountFlashMessage confirmed your account message
ConfirmedAccountFlashMessage = template.HTML("Confirmed your account!")
// ConfirmFlashMessage confirm account flash message
ConfirmFlashMessage = template.HTML("Please confirm your account")
// ErrAlreadyConfirmed account already confirmed error
ErrAlreadyConfirmed = errors.New("Your account already been confirmed")
// ErrUnconfirmed unauthorized error
ErrUnconfirmed = errors.New("You have to confirm your account before continuing")
)
// DefaultConfirmationMailer default confirm mailer
var DefaultConfirmationMailer = func(email string, context *auth.Context, claims *claims.Claims, currentUser interface{}) error {
claims.Subject = "confirm"
return context.Auth.Mailer.Send(
mailer.Email{
TO: []mail.Address{{Address: email}},
Subject: ConfirmationMailSubject,
}, mailer.Template{
Name: "auth/confirmation",
Data: context,
Request: context.Request,
Writer: context.Writer,
}.Funcs(template.FuncMap{
"current_user": func() interface{} {
return currentUser
},
"confirm_url": func() string {
confirmURL := utils.GetAbsURL(context.Request)
confirmURL.Path = path.Join(context.Auth.AuthURL("password/confirm"))
qry := confirmURL.Query()
qry.Set("token", context.SessionStorer.SignedToken(claims))
confirmURL.RawQuery = qry.Encode()
return confirmURL.String()
},
}))
}
// DefaultConfirmHandler default confirm handler
var DefaultConfirmHandler = func(context *auth.Context) error {
var (
authInfo auth_identity.Basic
provider, _ = context.Provider.(*Provider)
tx = context.Auth.GetDB(context.Request)
token = context.Request.URL.Query().Get("token")
)
claims, err := context.SessionStorer.ValidateClaims(token)
if err == nil {
if err = claims.Valid(); err == nil {
authInfo.Provider = provider.GetName()
authInfo.UID = claims.Id
authIdentity := reflect.New(utils.ModelType(context.Auth.Config.AuthIdentityModel)).Interface()
if tx.Where(authInfo).First(authIdentity).RecordNotFound() {
err = auth.ErrInvalidAccount
}
if err == nil {
if authInfo.ConfirmedAt == nil {
now := time.Now()
authInfo.ConfirmedAt = &now
if err = tx.Model(authIdentity).Update(authInfo).Error; err == nil {
context.SessionStorer.Flash(context.Writer, context.Request, session.Message{Message: ConfirmedAccountFlashMessage, Type: "success"})
context.Auth.Redirector.Redirect(context.Writer, context.Request, "confirm")
return nil
}
}
err = ErrAlreadyConfirmed
}
}
}
return err
}