2020-02-07 17:27:45 +01:00
|
|
|
// Vikunja is a to-do list application to facilitate your life.
|
2020-01-09 18:33:22 +01:00
|
|
|
// Copyright 2018-2020 Vikunja and contributors. All rights reserved.
|
2019-10-16 22:52:29 +02:00
|
|
|
//
|
2019-12-04 20:39:56 +01:00
|
|
|
// This program is free software: you can redistribute it and/or modify
|
2020-12-23 16:41:52 +01:00
|
|
|
// it under the terms of the GNU Affero General Public Licensee as published by
|
2019-12-04 20:39:56 +01:00
|
|
|
// the Free Software Foundation, either version 3 of the License, or
|
|
|
|
// (at your option) any later version.
|
2019-10-16 22:52:29 +02:00
|
|
|
//
|
2019-12-04 20:39:56 +01:00
|
|
|
// This program is distributed in the hope that it will be useful,
|
|
|
|
// but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
2020-12-23 16:41:52 +01:00
|
|
|
// GNU Affero General Public Licensee for more details.
|
2019-10-16 22:52:29 +02:00
|
|
|
//
|
2020-12-23 16:41:52 +01:00
|
|
|
// You should have received a copy of the GNU Affero General Public Licensee
|
2019-12-04 20:39:56 +01:00
|
|
|
// along with this program. If not, see <https://www.gnu.org/licenses/>.
|
2019-10-16 22:52:29 +02:00
|
|
|
|
|
|
|
package models
|
|
|
|
|
|
|
|
import (
|
2020-10-11 22:10:03 +02:00
|
|
|
"io"
|
|
|
|
"time"
|
|
|
|
|
2019-10-16 22:52:29 +02:00
|
|
|
"code.vikunja.io/api/pkg/files"
|
2020-01-26 18:08:06 +01:00
|
|
|
"code.vikunja.io/api/pkg/user"
|
2019-10-16 22:52:29 +02:00
|
|
|
"code.vikunja.io/web"
|
2020-12-23 16:32:28 +01:00
|
|
|
"xorm.io/xorm"
|
2019-10-16 22:52:29 +02:00
|
|
|
)
|
|
|
|
|
|
|
|
// TaskAttachment is the definition of a task attachment
|
|
|
|
type TaskAttachment struct {
|
2020-12-18 17:51:22 +01:00
|
|
|
ID int64 `xorm:"bigint autoincr not null unique pk" json:"id" param:"attachment"`
|
|
|
|
TaskID int64 `xorm:"bigint not null" json:"task_id" param:"task"`
|
|
|
|
FileID int64 `xorm:"bigint not null" json:"-"`
|
2019-10-16 22:52:29 +02:00
|
|
|
|
2020-12-18 17:51:22 +01:00
|
|
|
CreatedByID int64 `xorm:"bigint not null" json:"-"`
|
2020-01-26 18:08:06 +01:00
|
|
|
CreatedBy *user.User `xorm:"-" json:"created_by"`
|
2019-10-16 22:52:29 +02:00
|
|
|
|
|
|
|
File *files.File `xorm:"-" json:"file"`
|
|
|
|
|
2020-06-27 19:04:01 +02:00
|
|
|
Created time.Time `xorm:"created" json:"created"`
|
2019-10-16 22:52:29 +02:00
|
|
|
|
|
|
|
web.CRUDable `xorm:"-" json:"-"`
|
|
|
|
web.Rights `xorm:"-" json:"-"`
|
|
|
|
}
|
|
|
|
|
|
|
|
// TableName returns the table name for task attachments
|
|
|
|
func (TaskAttachment) TableName() string {
|
|
|
|
return "task_attachments"
|
|
|
|
}
|
|
|
|
|
|
|
|
// NewAttachment creates a new task attachment
|
|
|
|
// Note: I'm not sure if only accepting an io.ReadCloser and not an afero.File or os.File instead is a good way of doing things.
|
2020-12-23 16:32:28 +01:00
|
|
|
func (ta *TaskAttachment) NewAttachment(s *xorm.Session, f io.ReadCloser, realname string, realsize uint64, a web.Auth) error {
|
2019-10-16 22:52:29 +02:00
|
|
|
|
|
|
|
// Store the file
|
|
|
|
file, err := files.Create(f, realname, realsize, a)
|
|
|
|
if err != nil {
|
|
|
|
if files.IsErrFileIsTooLarge(err) {
|
|
|
|
return ErrTaskAttachmentIsTooLarge{Size: realsize}
|
|
|
|
}
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
ta.File = file
|
|
|
|
|
|
|
|
// Add an entry to the db
|
|
|
|
ta.FileID = file.ID
|
|
|
|
ta.CreatedByID = a.GetID()
|
2020-12-23 16:32:28 +01:00
|
|
|
_, err = s.Insert(ta)
|
2019-10-16 22:52:29 +02:00
|
|
|
if err != nil {
|
|
|
|
// remove the uploaded file if adding it to the db fails
|
|
|
|
if err2 := file.Delete(); err2 != nil {
|
|
|
|
return err2
|
|
|
|
}
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
2021-01-15 22:50:55 +01:00
|
|
|
ta.CreatedBy, _ = user.GetFromAuth(a) // Ignoring cases where the auth is not a user
|
|
|
|
|
2019-10-16 22:52:29 +02:00
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
|
|
|
// ReadOne returns a task attachment
|
2020-12-23 16:32:28 +01:00
|
|
|
func (ta *TaskAttachment) ReadOne(s *xorm.Session) (err error) {
|
|
|
|
exists, err := s.Where("id = ?", ta.ID).Get(ta)
|
2019-10-16 22:52:29 +02:00
|
|
|
if err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
if !exists {
|
|
|
|
return ErrTaskAttachmentDoesNotExist{
|
|
|
|
TaskID: ta.TaskID,
|
|
|
|
AttachmentID: ta.ID,
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
// Get the file
|
|
|
|
ta.File = &files.File{ID: ta.FileID}
|
|
|
|
err = ta.File.LoadFileMetaByID()
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
// ReadAll returns a list with all attachments
|
|
|
|
// @Summary Get all attachments for one task.
|
|
|
|
// @Description Get all task attachments for one task.
|
|
|
|
// @tags task
|
|
|
|
// @Accept json
|
|
|
|
// @Produce json
|
|
|
|
// @Param id path int true "Task ID"
|
2019-10-23 23:11:40 +02:00
|
|
|
// @Param page query int false "The page number. Used for pagination. If not provided, the first page of results is returned."
|
|
|
|
// @Param per_page query int false "The maximum number of items per page. Note this parameter is limited by the configured maximum of items per page."
|
2019-10-16 22:52:29 +02:00
|
|
|
// @Security JWTKeyAuth
|
|
|
|
// @Success 200 {array} models.TaskAttachment "All attachments for this task"
|
|
|
|
// @Failure 403 {object} models.Message "No access to this task."
|
|
|
|
// @Failure 404 {object} models.Message "The task does not exist."
|
|
|
|
// @Failure 500 {object} models.Message "Internal error"
|
|
|
|
// @Router /tasks/{id}/attachments [get]
|
2020-12-23 16:32:28 +01:00
|
|
|
func (ta *TaskAttachment) ReadAll(s *xorm.Session, a web.Auth, search string, page int, perPage int) (result interface{}, resultCount int, numberOfTotalItems int64, err error) {
|
2019-10-16 22:52:29 +02:00
|
|
|
attachments := []*TaskAttachment{}
|
|
|
|
|
2020-04-12 19:29:24 +02:00
|
|
|
limit, start := getLimitFromPageIndex(page, perPage)
|
|
|
|
|
2020-12-23 16:32:28 +01:00
|
|
|
query := s.
|
2020-04-12 19:29:24 +02:00
|
|
|
Where("task_id = ?", ta.TaskID)
|
|
|
|
if limit > 0 {
|
|
|
|
query = query.Limit(limit, start)
|
|
|
|
}
|
|
|
|
err = query.Find(&attachments)
|
2019-10-16 22:52:29 +02:00
|
|
|
if err != nil {
|
2019-10-23 23:11:40 +02:00
|
|
|
return nil, 0, 0, err
|
2019-10-16 22:52:29 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
fileIDs := make([]int64, 0, len(attachments))
|
|
|
|
userIDs := make([]int64, 0, len(attachments))
|
|
|
|
for _, r := range attachments {
|
|
|
|
fileIDs = append(fileIDs, r.FileID)
|
|
|
|
userIDs = append(userIDs, r.CreatedByID)
|
|
|
|
}
|
|
|
|
|
|
|
|
fs := make(map[int64]*files.File)
|
2020-12-23 16:32:28 +01:00
|
|
|
err = s.In("id", fileIDs).Find(&fs)
|
2019-10-16 22:52:29 +02:00
|
|
|
if err != nil {
|
2019-10-23 23:11:40 +02:00
|
|
|
return nil, 0, 0, err
|
2019-10-16 22:52:29 +02:00
|
|
|
}
|
|
|
|
|
2020-01-26 18:08:06 +01:00
|
|
|
us := make(map[int64]*user.User)
|
2020-12-23 16:32:28 +01:00
|
|
|
err = s.In("id", userIDs).Find(&us)
|
2019-10-16 22:52:29 +02:00
|
|
|
if err != nil {
|
2019-10-23 23:11:40 +02:00
|
|
|
return nil, 0, 0, err
|
2019-10-16 22:52:29 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
for _, r := range attachments {
|
|
|
|
// If the actual file does not exist, don't try to load it as that would fail with nil panic
|
|
|
|
if _, exists := fs[r.FileID]; !exists {
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
r.File = fs[r.FileID]
|
|
|
|
r.CreatedBy = us[r.CreatedByID]
|
|
|
|
}
|
|
|
|
|
2020-12-23 16:32:28 +01:00
|
|
|
numberOfTotalItems, err = s.
|
2019-10-23 23:11:40 +02:00
|
|
|
Where("task_id = ?", ta.TaskID).
|
|
|
|
Count(&TaskAttachment{})
|
|
|
|
return attachments, len(attachments), numberOfTotalItems, err
|
2019-10-16 22:52:29 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
// Delete removes an attachment
|
|
|
|
// @Summary Delete an attachment
|
|
|
|
// @Description Delete an attachment.
|
|
|
|
// @tags task
|
|
|
|
// @Accept json
|
|
|
|
// @Produce json
|
|
|
|
// @Param id path int true "Task ID"
|
|
|
|
// @Param attachmentID path int true "Attachment ID"
|
|
|
|
// @Security JWTKeyAuth
|
|
|
|
// @Success 200 {object} models.Message "The attachment was deleted successfully."
|
|
|
|
// @Failure 403 {object} models.Message "No access to this task."
|
|
|
|
// @Failure 404 {object} models.Message "The task does not exist."
|
|
|
|
// @Failure 500 {object} models.Message "Internal error"
|
|
|
|
// @Router /tasks/{id}/attachments/{attachmentID} [delete]
|
2020-12-23 16:32:28 +01:00
|
|
|
func (ta *TaskAttachment) Delete(s *xorm.Session) error {
|
2019-10-16 22:52:29 +02:00
|
|
|
// Load the attachment
|
2020-12-23 16:32:28 +01:00
|
|
|
err := ta.ReadOne(s)
|
2019-10-16 22:52:29 +02:00
|
|
|
if err != nil && !files.IsErrFileDoesNotExist(err) {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
// Delete it
|
2020-12-23 16:32:28 +01:00
|
|
|
_, err = s.
|
|
|
|
Where("task_id = ? AND id = ?", ta.TaskID, ta.ID).
|
|
|
|
Delete(ta)
|
2019-10-16 22:52:29 +02:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
// Delete the underlying file
|
|
|
|
err = ta.File.Delete()
|
|
|
|
// If the file does not exist, we don't want to error out
|
|
|
|
if err != nil && files.IsErrFileDoesNotExist(err) {
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
return err
|
|
|
|
}
|
2020-06-30 22:53:14 +02:00
|
|
|
|
2020-12-23 16:32:28 +01:00
|
|
|
func getTaskAttachmentsByTaskIDs(s *xorm.Session, taskIDs []int64) (attachments []*TaskAttachment, err error) {
|
2020-06-30 22:53:14 +02:00
|
|
|
attachments = []*TaskAttachment{}
|
2020-12-23 16:32:28 +01:00
|
|
|
err = s.
|
2020-06-30 22:53:14 +02:00
|
|
|
In("task_id", taskIDs).
|
|
|
|
Find(&attachments)
|
|
|
|
if err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
fileIDs := []int64{}
|
|
|
|
userIDs := []int64{}
|
|
|
|
for _, a := range attachments {
|
|
|
|
userIDs = append(userIDs, a.CreatedByID)
|
|
|
|
fileIDs = append(fileIDs, a.FileID)
|
|
|
|
}
|
|
|
|
|
|
|
|
// Get all files
|
|
|
|
fs := make(map[int64]*files.File)
|
2020-12-23 16:32:28 +01:00
|
|
|
err = s.In("id", fileIDs).Find(&fs)
|
2020-06-30 22:53:14 +02:00
|
|
|
if err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
users := make(map[int64]*user.User)
|
2020-12-23 16:32:28 +01:00
|
|
|
err = s.In("id", userIDs).Find(&users)
|
2020-06-30 22:53:14 +02:00
|
|
|
if err != nil {
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
// Obfuscate all user emails
|
|
|
|
for _, u := range users {
|
|
|
|
u.Email = ""
|
|
|
|
}
|
|
|
|
|
|
|
|
for _, a := range attachments {
|
|
|
|
a.CreatedBy = users[a.CreatedByID]
|
|
|
|
a.File = fs[a.FileID]
|
|
|
|
}
|
|
|
|
|
|
|
|
return
|
|
|
|
}
|