]> Untitled Git - lemmy.git/blob - crates/api_crud/src/site/update.rs
Dont return error in case optional auth is invalid (#2879)
[lemmy.git] / crates / api_crud / src / site / update.rs
1 use crate::{site::check_application_question, PerformCrud};
2 use actix_web::web::Data;
3 use lemmy_api_common::{
4   context::LemmyContext,
5   site::{EditSite, SiteResponse},
6   utils::{
7     is_admin,
8     local_site_rate_limit_to_rate_limit_config,
9     local_site_to_slur_regex,
10     local_user_view_from_jwt,
11     site_description_length_check,
12   },
13   websocket::UserOperationCrud,
14 };
15 use lemmy_db_schema::{
16   source::{
17     actor_language::SiteLanguage,
18     federation_allowlist::FederationAllowList,
19     federation_blocklist::FederationBlockList,
20     local_site::{LocalSite, LocalSiteUpdateForm},
21     local_site_rate_limit::{LocalSiteRateLimit, LocalSiteRateLimitUpdateForm},
22     local_user::LocalUser,
23     site::{Site, SiteUpdateForm},
24     tagline::Tagline,
25   },
26   traits::Crud,
27   utils::{diesel_option_overwrite, diesel_option_overwrite_to_url, naive_now},
28   ListingType,
29   RegistrationMode,
30 };
31 use lemmy_db_views::structs::SiteView;
32 use lemmy_utils::{
33   error::LemmyError,
34   utils::{slurs::check_slurs_opt, validation::is_valid_body_field},
35   ConnectionId,
36 };
37
38 #[async_trait::async_trait(?Send)]
39 impl PerformCrud for EditSite {
40   type Response = SiteResponse;
41
42   #[tracing::instrument(skip(context, websocket_id))]
43   async fn perform(
44     &self,
45     context: &Data<LemmyContext>,
46     websocket_id: Option<ConnectionId>,
47   ) -> Result<SiteResponse, LemmyError> {
48     let data: &EditSite = self;
49     let local_user_view = local_user_view_from_jwt(&data.auth, context).await?;
50     let site_view = SiteView::read_local(context.pool()).await?;
51     let local_site = site_view.local_site;
52     let site = site_view.site;
53
54     // Make sure user is an admin
55     is_admin(&local_user_view)?;
56
57     let slur_regex = local_site_to_slur_regex(&local_site);
58
59     check_slurs_opt(&data.name, &slur_regex)?;
60     check_slurs_opt(&data.description, &slur_regex)?;
61
62     if let Some(desc) = &data.description {
63       site_description_length_check(desc)?;
64     }
65
66     is_valid_body_field(&data.sidebar)?;
67
68     let application_question = diesel_option_overwrite(&data.application_question);
69     check_application_question(
70       &application_question,
71       data
72         .registration_mode
73         .unwrap_or(local_site.registration_mode),
74     )?;
75
76     if let Some(listing_type) = &data.default_post_listing_type {
77       // only allow all or local as default listing types
78       if listing_type != &ListingType::All && listing_type != &ListingType::Local {
79         return Err(LemmyError::from_message(
80           "invalid_default_post_listing_type",
81         ));
82       }
83     }
84
85     if let Some(discussion_languages) = data.discussion_languages.clone() {
86       SiteLanguage::update(context.pool(), discussion_languages.clone(), &site).await?;
87     }
88
89     let name = data.name.clone();
90     let site_form = SiteUpdateForm::builder()
91       .name(name)
92       .sidebar(diesel_option_overwrite(&data.sidebar))
93       .description(diesel_option_overwrite(&data.description))
94       .icon(diesel_option_overwrite_to_url(&data.icon)?)
95       .banner(diesel_option_overwrite_to_url(&data.banner)?)
96       .updated(Some(Some(naive_now())))
97       .build();
98
99     Site::update(context.pool(), site.id, &site_form)
100       .await
101       // Ignore errors for all these, so as to not throw errors if no update occurs
102       // Diesel will throw an error for empty update forms
103       .ok();
104
105     let local_site_form = LocalSiteUpdateForm::builder()
106       .enable_downvotes(data.enable_downvotes)
107       .registration_mode(data.registration_mode)
108       .enable_nsfw(data.enable_nsfw)
109       .community_creation_admin_only(data.community_creation_admin_only)
110       .require_email_verification(data.require_email_verification)
111       .application_question(application_question)
112       .private_instance(data.private_instance)
113       .default_theme(data.default_theme.clone())
114       .default_post_listing_type(data.default_post_listing_type)
115       .legal_information(diesel_option_overwrite(&data.legal_information))
116       .application_email_admins(data.application_email_admins)
117       .hide_modlog_mod_names(data.hide_modlog_mod_names)
118       .updated(Some(Some(naive_now())))
119       .slur_filter_regex(diesel_option_overwrite(&data.slur_filter_regex))
120       .actor_name_max_length(data.actor_name_max_length)
121       .federation_enabled(data.federation_enabled)
122       .federation_debug(data.federation_debug)
123       .federation_worker_count(data.federation_worker_count)
124       .captcha_enabled(data.captcha_enabled)
125       .captcha_difficulty(data.captcha_difficulty.clone())
126       .reports_email_admins(data.reports_email_admins)
127       .build();
128
129     let update_local_site = LocalSite::update(context.pool(), &local_site_form)
130       .await
131       .ok();
132
133     let local_site_rate_limit_form = LocalSiteRateLimitUpdateForm::builder()
134       .message(data.rate_limit_message)
135       .message_per_second(data.rate_limit_message_per_second)
136       .post(data.rate_limit_post)
137       .post_per_second(data.rate_limit_post_per_second)
138       .register(data.rate_limit_register)
139       .register_per_second(data.rate_limit_register_per_second)
140       .image(data.rate_limit_image)
141       .image_per_second(data.rate_limit_image_per_second)
142       .comment(data.rate_limit_comment)
143       .comment_per_second(data.rate_limit_comment_per_second)
144       .search(data.rate_limit_search)
145       .search_per_second(data.rate_limit_search_per_second)
146       .build();
147
148     LocalSiteRateLimit::update(context.pool(), &local_site_rate_limit_form)
149       .await
150       .ok();
151
152     // Replace the blocked and allowed instances
153     let allowed = data.allowed_instances.clone();
154     FederationAllowList::replace(context.pool(), allowed).await?;
155     let blocked = data.blocked_instances.clone();
156     FederationBlockList::replace(context.pool(), blocked).await?;
157
158     // TODO can't think of a better way to do this.
159     // If the server suddenly requires email verification, or required applications, no old users
160     // will be able to log in. It really only wants this to be a requirement for NEW signups.
161     // So if it was set from false, to true, you need to update all current users columns to be verified.
162
163     let old_require_application =
164       local_site.registration_mode == RegistrationMode::RequireApplication;
165     let new_require_application = update_local_site
166       .as_ref()
167       .map(|ols| ols.registration_mode == RegistrationMode::RequireApplication)
168       .unwrap_or(false);
169     if !old_require_application && new_require_application {
170       LocalUser::set_all_users_registration_applications_accepted(context.pool())
171         .await
172         .map_err(|e| LemmyError::from_error_message(e, "couldnt_set_all_registrations_accepted"))?;
173     }
174
175     let new_require_email_verification = update_local_site
176       .as_ref()
177       .map(|ols| ols.require_email_verification)
178       .unwrap_or(false);
179     if !local_site.require_email_verification && new_require_email_verification {
180       LocalUser::set_all_users_email_verified(context.pool())
181         .await
182         .map_err(|e| LemmyError::from_error_message(e, "couldnt_set_all_email_verified"))?;
183     }
184
185     let taglines = data.taglines.clone();
186     Tagline::replace(context.pool(), local_site.id, taglines).await?;
187
188     let site_view = SiteView::read_local(context.pool()).await?;
189
190     let rate_limit_config =
191       local_site_rate_limit_to_rate_limit_config(&site_view.local_site_rate_limit);
192     context
193       .settings_updated_channel()
194       .send(rate_limit_config)
195       .await?;
196
197     let res = SiteResponse { site_view };
198
199     context.send_all_ws_message(&UserOperationCrud::EditSite, &res, websocket_id)?;
200
201     Ok(res)
202   }
203 }