2017-05-19 11:27:03 +02:00
|
|
|
// Copyright 2017 Vector Creations Ltd
|
|
|
|
//
|
|
|
|
// Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
// you may not use this file except in compliance with the License.
|
|
|
|
// You may obtain a copy of the License at
|
|
|
|
//
|
|
|
|
// http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
//
|
|
|
|
// Unless required by applicable law or agreed to in writing, software
|
|
|
|
// distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
// See the License for the specific language governing permissions and
|
|
|
|
// limitations under the License.
|
|
|
|
|
2020-02-13 18:27:33 +01:00
|
|
|
package postgres
|
2017-05-19 11:27:03 +02:00
|
|
|
|
|
|
|
import (
|
2017-09-18 15:15:27 +02:00
|
|
|
"context"
|
2017-05-19 11:27:03 +02:00
|
|
|
"database/sql"
|
2022-11-11 17:41:37 +01:00
|
|
|
"fmt"
|
2017-05-19 11:27:03 +02:00
|
|
|
"time"
|
|
|
|
|
2018-05-31 16:21:13 +02:00
|
|
|
"github.com/matrix-org/dendrite/clientapi/userutil"
|
2020-09-24 12:10:14 +02:00
|
|
|
"github.com/matrix-org/dendrite/internal/sqlutil"
|
2020-06-17 12:22:26 +02:00
|
|
|
"github.com/matrix-org/dendrite/userapi/api"
|
2022-07-25 11:39:22 +02:00
|
|
|
"github.com/matrix-org/dendrite/userapi/storage/postgres/deltas"
|
2022-02-18 14:51:59 +01:00
|
|
|
"github.com/matrix-org/dendrite/userapi/storage/tables"
|
2023-04-19 16:50:33 +02:00
|
|
|
"github.com/matrix-org/gomatrixserverlib/spec"
|
2018-06-29 12:55:29 +02:00
|
|
|
|
|
|
|
log "github.com/sirupsen/logrus"
|
2017-05-19 11:27:03 +02:00
|
|
|
)
|
|
|
|
|
|
|
|
const accountsSchema = `
|
|
|
|
-- Stores data about accounts.
|
2022-10-18 16:59:08 +02:00
|
|
|
CREATE TABLE IF NOT EXISTS userapi_accounts (
|
2017-05-19 11:27:03 +02:00
|
|
|
-- The Matrix user ID localpart for this account
|
2022-11-11 17:41:37 +01:00
|
|
|
localpart TEXT NOT NULL,
|
|
|
|
server_name TEXT NOT NULL,
|
2017-05-19 11:27:03 +02:00
|
|
|
-- When this account was first created, as a unix timestamp (ms resolution).
|
|
|
|
created_ts BIGINT NOT NULL,
|
|
|
|
-- The password hash for this account. Can be NULL if this is a passwordless account.
|
2018-02-08 12:02:48 +01:00
|
|
|
password_hash TEXT,
|
2018-07-05 18:34:59 +02:00
|
|
|
-- Identifies which application service this account belongs to, if any.
|
2020-10-02 18:18:20 +02:00
|
|
|
appservice_id TEXT,
|
|
|
|
-- If the account is currently active
|
2022-02-16 18:55:38 +01:00
|
|
|
is_deactivated BOOLEAN DEFAULT FALSE,
|
|
|
|
-- The account_type (user = 1, guest = 2, admin = 3, appservice = 4)
|
|
|
|
account_type SMALLINT NOT NULL
|
2017-05-19 11:27:03 +02:00
|
|
|
-- TODO:
|
2022-02-16 18:55:38 +01:00
|
|
|
-- upgraded_ts, devices, any email reset stuff?
|
2017-05-19 11:27:03 +02:00
|
|
|
);
|
2022-11-11 17:41:37 +01:00
|
|
|
|
|
|
|
CREATE UNIQUE INDEX IF NOT EXISTS userapi_accounts_idx ON userapi_accounts(localpart, server_name);
|
2017-05-19 11:27:03 +02:00
|
|
|
`
|
|
|
|
|
|
|
|
const insertAccountSQL = "" +
|
2022-11-11 17:41:37 +01:00
|
|
|
"INSERT INTO userapi_accounts(localpart, server_name, created_ts, password_hash, appservice_id, account_type) VALUES ($1, $2, $3, $4, $5, $6)"
|
2017-05-19 11:27:03 +02:00
|
|
|
|
2020-09-04 16:16:13 +02:00
|
|
|
const updatePasswordSQL = "" +
|
2022-11-11 17:41:37 +01:00
|
|
|
"UPDATE userapi_accounts SET password_hash = $1 WHERE localpart = $2 AND server_name = $3"
|
2020-09-04 16:16:13 +02:00
|
|
|
|
2020-10-02 18:18:20 +02:00
|
|
|
const deactivateAccountSQL = "" +
|
2022-11-11 17:41:37 +01:00
|
|
|
"UPDATE userapi_accounts SET is_deactivated = TRUE WHERE localpart = $1 AND server_name = $2"
|
2020-10-02 18:18:20 +02:00
|
|
|
|
2017-05-19 11:27:03 +02:00
|
|
|
const selectAccountByLocalpartSQL = "" +
|
2022-11-11 17:41:37 +01:00
|
|
|
"SELECT localpart, server_name, appservice_id, account_type FROM userapi_accounts WHERE localpart = $1 AND server_name = $2"
|
2017-05-19 11:27:03 +02:00
|
|
|
|
|
|
|
const selectPasswordHashSQL = "" +
|
2022-11-11 17:41:37 +01:00
|
|
|
"SELECT password_hash FROM userapi_accounts WHERE localpart = $1 AND server_name = $2 AND is_deactivated = FALSE"
|
2017-05-19 11:27:03 +02:00
|
|
|
|
2018-05-31 16:36:15 +02:00
|
|
|
const selectNewNumericLocalpartSQL = "" +
|
2022-11-11 17:41:37 +01:00
|
|
|
"SELECT COALESCE(MAX(localpart::bigint), 0) FROM userapi_accounts WHERE localpart ~ '^[0-9]{1,}$' AND server_name = $1"
|
2018-05-31 16:36:15 +02:00
|
|
|
|
2017-05-19 11:27:03 +02:00
|
|
|
type accountsStatements struct {
|
2018-05-31 16:36:15 +02:00
|
|
|
insertAccountStmt *sql.Stmt
|
2020-09-04 16:16:13 +02:00
|
|
|
updatePasswordStmt *sql.Stmt
|
2020-10-02 18:18:20 +02:00
|
|
|
deactivateAccountStmt *sql.Stmt
|
2018-05-31 16:36:15 +02:00
|
|
|
selectAccountByLocalpartStmt *sql.Stmt
|
|
|
|
selectPasswordHashStmt *sql.Stmt
|
|
|
|
selectNewNumericLocalpartStmt *sql.Stmt
|
2023-04-19 16:50:33 +02:00
|
|
|
serverName spec.ServerName
|
2017-05-19 11:27:03 +02:00
|
|
|
}
|
|
|
|
|
2023-04-19 16:50:33 +02:00
|
|
|
func NewPostgresAccountsTable(db *sql.DB, serverName spec.ServerName) (tables.AccountsTable, error) {
|
2022-02-18 14:51:59 +01:00
|
|
|
s := &accountsStatements{
|
|
|
|
serverName: serverName,
|
|
|
|
}
|
2020-10-15 19:09:41 +02:00
|
|
|
_, err := db.Exec(accountsSchema)
|
2022-02-18 14:51:59 +01:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
2022-07-25 11:39:22 +02:00
|
|
|
m := sqlutil.NewMigrator(db)
|
|
|
|
m.AddMigrations([]sqlutil.Migration{
|
|
|
|
{
|
|
|
|
Version: "userapi: add is active",
|
|
|
|
Up: deltas.UpIsActive,
|
|
|
|
Down: deltas.DownIsActive,
|
|
|
|
},
|
|
|
|
{
|
|
|
|
Version: "userapi: add account type",
|
|
|
|
Up: deltas.UpAddAccountType,
|
|
|
|
Down: deltas.DownAddAccountType,
|
|
|
|
},
|
|
|
|
}...)
|
|
|
|
err = m.Up(context.Background())
|
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
2022-02-18 14:51:59 +01:00
|
|
|
return s, sqlutil.StatementList{
|
2021-07-28 19:30:04 +02:00
|
|
|
{&s.insertAccountStmt, insertAccountSQL},
|
|
|
|
{&s.updatePasswordStmt, updatePasswordSQL},
|
|
|
|
{&s.deactivateAccountStmt, deactivateAccountSQL},
|
|
|
|
{&s.selectAccountByLocalpartStmt, selectAccountByLocalpartSQL},
|
|
|
|
{&s.selectPasswordHashStmt, selectPasswordHashSQL},
|
|
|
|
{&s.selectNewNumericLocalpartStmt, selectNewNumericLocalpartSQL},
|
|
|
|
}.Prepare(db)
|
2017-05-19 11:27:03 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
// insertAccount creates a new account. 'hash' should be the password hash for this account. If it is missing,
|
|
|
|
// this account will be passwordless. Returns an error if this account already exists. Returns the account
|
|
|
|
// on success.
|
2022-02-18 14:51:59 +01:00
|
|
|
func (s *accountsStatements) InsertAccount(
|
2022-11-11 17:41:37 +01:00
|
|
|
ctx context.Context, txn *sql.Tx,
|
2023-04-19 16:50:33 +02:00
|
|
|
localpart string, serverName spec.ServerName,
|
2022-11-11 17:41:37 +01:00
|
|
|
hash, appserviceID string, accountType api.AccountType,
|
2020-06-17 12:22:26 +02:00
|
|
|
) (*api.Account, error) {
|
2017-05-19 11:27:03 +02:00
|
|
|
createdTimeMS := time.Now().UnixNano() / 1000000
|
2020-09-24 12:10:14 +02:00
|
|
|
stmt := sqlutil.TxStmt(txn, s.insertAccountStmt)
|
2018-02-08 12:02:48 +01:00
|
|
|
|
|
|
|
var err error
|
2022-02-16 18:55:38 +01:00
|
|
|
if accountType != api.AccountTypeAppService {
|
2022-11-11 17:41:37 +01:00
|
|
|
_, err = stmt.ExecContext(ctx, localpart, serverName, createdTimeMS, hash, nil, accountType)
|
2018-02-08 12:02:48 +01:00
|
|
|
} else {
|
2022-11-11 17:41:37 +01:00
|
|
|
_, err = stmt.ExecContext(ctx, localpart, serverName, createdTimeMS, hash, appserviceID, accountType)
|
2018-02-08 12:02:48 +01:00
|
|
|
}
|
|
|
|
if err != nil {
|
2022-11-11 17:41:37 +01:00
|
|
|
return nil, fmt.Errorf("insertAccountStmt: %w", err)
|
2017-05-19 11:27:03 +02:00
|
|
|
}
|
2018-02-08 12:02:48 +01:00
|
|
|
|
2020-06-17 12:22:26 +02:00
|
|
|
return &api.Account{
|
2018-02-08 12:02:48 +01:00
|
|
|
Localpart: localpart,
|
2022-11-11 17:41:37 +01:00
|
|
|
UserID: userutil.MakeUserID(localpart, serverName),
|
|
|
|
ServerName: serverName,
|
2018-02-08 12:02:48 +01:00
|
|
|
AppServiceID: appserviceID,
|
2022-02-16 18:55:38 +01:00
|
|
|
AccountType: accountType,
|
2017-09-18 15:15:27 +02:00
|
|
|
}, nil
|
2017-05-19 11:27:03 +02:00
|
|
|
}
|
|
|
|
|
2022-02-18 14:51:59 +01:00
|
|
|
func (s *accountsStatements) UpdatePassword(
|
2023-04-19 16:50:33 +02:00
|
|
|
ctx context.Context, localpart string, serverName spec.ServerName,
|
2022-11-11 17:41:37 +01:00
|
|
|
passwordHash string,
|
2020-09-04 16:16:13 +02:00
|
|
|
) (err error) {
|
2022-11-11 17:41:37 +01:00
|
|
|
_, err = s.updatePasswordStmt.ExecContext(ctx, passwordHash, localpart, serverName)
|
2020-09-04 16:16:13 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2022-02-18 14:51:59 +01:00
|
|
|
func (s *accountsStatements) DeactivateAccount(
|
2023-04-19 16:50:33 +02:00
|
|
|
ctx context.Context, localpart string, serverName spec.ServerName,
|
2020-10-02 18:18:20 +02:00
|
|
|
) (err error) {
|
2022-11-11 17:41:37 +01:00
|
|
|
_, err = s.deactivateAccountStmt.ExecContext(ctx, localpart, serverName)
|
2020-10-02 18:18:20 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2022-02-18 14:51:59 +01:00
|
|
|
func (s *accountsStatements) SelectPasswordHash(
|
2023-04-19 16:50:33 +02:00
|
|
|
ctx context.Context, localpart string, serverName spec.ServerName,
|
2017-09-18 15:15:27 +02:00
|
|
|
) (hash string, err error) {
|
2022-11-11 17:41:37 +01:00
|
|
|
err = s.selectPasswordHashStmt.QueryRowContext(ctx, localpart, serverName).Scan(&hash)
|
2017-05-19 11:27:03 +02:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
2022-02-18 14:51:59 +01:00
|
|
|
func (s *accountsStatements) SelectAccountByLocalpart(
|
2023-04-19 16:50:33 +02:00
|
|
|
ctx context.Context, localpart string, serverName spec.ServerName,
|
2020-06-17 12:22:26 +02:00
|
|
|
) (*api.Account, error) {
|
2018-06-29 12:55:29 +02:00
|
|
|
var appserviceIDPtr sql.NullString
|
2020-06-17 12:22:26 +02:00
|
|
|
var acc api.Account
|
2018-06-29 12:55:29 +02:00
|
|
|
|
2017-09-18 15:15:27 +02:00
|
|
|
stmt := s.selectAccountByLocalpartStmt
|
2022-11-11 17:41:37 +01:00
|
|
|
err := stmt.QueryRowContext(ctx, localpart, serverName).Scan(&acc.Localpart, &acc.ServerName, &appserviceIDPtr, &acc.AccountType)
|
2018-06-29 12:55:29 +02:00
|
|
|
if err != nil {
|
|
|
|
if err != sql.ErrNoRows {
|
|
|
|
log.WithError(err).Error("Unable to retrieve user from the db")
|
|
|
|
}
|
|
|
|
return nil, err
|
2017-05-19 11:27:03 +02:00
|
|
|
}
|
2018-06-29 12:55:29 +02:00
|
|
|
if appserviceIDPtr.Valid {
|
|
|
|
acc.AppServiceID = appserviceIDPtr.String
|
|
|
|
}
|
|
|
|
|
2022-11-11 17:41:37 +01:00
|
|
|
acc.UserID = userutil.MakeUserID(acc.Localpart, acc.ServerName)
|
2018-06-29 12:55:29 +02:00
|
|
|
return &acc, nil
|
2017-05-19 11:27:03 +02:00
|
|
|
}
|
2018-05-31 16:36:15 +02:00
|
|
|
|
2022-02-18 14:51:59 +01:00
|
|
|
func (s *accountsStatements) SelectNewNumericLocalpart(
|
2023-04-19 16:50:33 +02:00
|
|
|
ctx context.Context, txn *sql.Tx, serverName spec.ServerName,
|
2018-05-31 16:36:15 +02:00
|
|
|
) (id int64, err error) {
|
2020-03-06 19:00:07 +01:00
|
|
|
stmt := s.selectNewNumericLocalpartStmt
|
|
|
|
if txn != nil {
|
2020-09-24 12:10:14 +02:00
|
|
|
stmt = sqlutil.TxStmt(txn, stmt)
|
2020-03-06 19:00:07 +01:00
|
|
|
}
|
2022-11-11 17:41:37 +01:00
|
|
|
err = stmt.QueryRowContext(ctx, serverName).Scan(&id)
|
2022-04-27 15:05:49 +02:00
|
|
|
return id + 1, err
|
2018-05-31 16:36:15 +02:00
|
|
|
}
|