create.py 3.2 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798
  1. from rest_framework import status
  2. from rest_framework.response import Response
  3. from django.contrib.auth import authenticate, get_user_model, login
  4. from django.core.exceptions import PermissionDenied, ValidationError
  5. from django.db import IntegrityError
  6. from django.utils.translation import ugettext as _
  7. from django.views.decorators.csrf import csrf_protect
  8. from misago.conf import settings
  9. from misago.core.mail import mail_user
  10. from misago.users import captcha
  11. from misago.users.forms.register import RegisterForm
  12. from misago.users.tokens import make_activation_token
  13. UserModel = get_user_model()
  14. @csrf_protect
  15. def create_endpoint(request):
  16. if settings.account_activation == 'closed':
  17. raise PermissionDenied(_("New users registrations are currently closed."))
  18. form = RegisterForm(request.data, request=request)
  19. try:
  20. if form.is_valid():
  21. captcha.test_request(request)
  22. except ValidationError as e:
  23. form.add_error('captcha', e)
  24. if not form.is_valid():
  25. return Response(form.errors, status=status.HTTP_400_BAD_REQUEST)
  26. activation_kwargs = {}
  27. if settings.account_activation == 'user':
  28. activation_kwargs = {'requires_activation': UserModel.ACTIVATION_USER}
  29. elif settings.account_activation == 'admin':
  30. activation_kwargs = {'requires_activation': UserModel.ACTIVATION_ADMIN}
  31. try:
  32. new_user = UserModel.objects.create_user(
  33. form.cleaned_data['username'],
  34. form.cleaned_data['email'],
  35. form.cleaned_data['password'],
  36. joined_from_ip=request.user_ip,
  37. set_default_avatar=True,
  38. **activation_kwargs
  39. )
  40. except IntegrityError:
  41. return Response(
  42. {
  43. '__all__': _("Please try resubmitting the form.")
  44. },
  45. status=status.HTTP_400_BAD_REQUEST,
  46. )
  47. mail_subject = _("Welcome on %(forum_name)s forums!")
  48. mail_subject = mail_subject % {'forum_name': settings.forum_name}
  49. if settings.account_activation == 'none':
  50. authenticated_user = authenticate(
  51. username=new_user.email, password=form.cleaned_data['password']
  52. )
  53. login(request, authenticated_user)
  54. mail_user(request, new_user, mail_subject, 'misago/emails/register/complete')
  55. return Response({
  56. 'activation': 'active',
  57. 'username': new_user.username,
  58. 'email': new_user.email
  59. })
  60. else:
  61. activation_token = make_activation_token(new_user)
  62. activation_by_admin = new_user.requires_activation_by_admin
  63. activation_by_user = new_user.requires_activation_by_user
  64. mail_user(
  65. request, new_user, mail_subject, 'misago/emails/register/inactive', {
  66. 'activation_token': activation_token,
  67. 'activation_by_admin': activation_by_admin,
  68. 'activation_by_user': activation_by_user,
  69. }
  70. )
  71. if activation_by_admin:
  72. activation_method = 'admin'
  73. else:
  74. activation_method = 'user'
  75. return Response({
  76. 'activation': activation_method,
  77. 'username': new_user.username,
  78. 'email': new_user.email
  79. })