create.py 3.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596
  1. from django.contrib.auth import authenticate, get_user_model, login
  2. from django.core.exceptions import PermissionDenied, ValidationError
  3. from django.utils.translation import ugettext as _
  4. from django.views.decorators.csrf import csrf_protect
  5. from rest_framework import status
  6. from rest_framework.response import Response
  7. from misago.conf import settings
  8. from misago.core.mail import mail_user
  9. from ... import captcha
  10. from ...forms.register import RegisterForm
  11. from ...serializers import AuthenticatedUserSerializer
  12. from ...tokens import make_activation_token
  13. UserModel = get_user_model()
  14. @csrf_protect
  15. def create_endpoint(request):
  16. if settings.account_activation == 'closed':
  17. raise PermissionDenied(_("New users registrations are currently closed."))
  18. form = RegisterForm(request.data, request=request)
  19. try:
  20. captcha.test_request(request)
  21. except ValidationError as e:
  22. form.add_error('captcha', e)
  23. if not form.is_valid():
  24. return Response(form.errors, status=status.HTTP_400_BAD_REQUEST)
  25. activation_kwargs = {}
  26. if settings.account_activation == 'user':
  27. activation_kwargs = {
  28. 'requires_activation': UserModel.ACTIVATION_REQUIRED_USER
  29. }
  30. elif settings.account_activation == 'admin':
  31. activation_kwargs = {
  32. 'requires_activation': UserModel.ACTIVATION_REQUIRED_ADMIN
  33. }
  34. new_user = UserModel.objects.create_user(
  35. form.cleaned_data['username'],
  36. form.cleaned_data['email'],
  37. form.cleaned_data['password'],
  38. joined_from_ip=request.user_ip,
  39. set_default_avatar=True,
  40. **activation_kwargs
  41. )
  42. mail_subject = _("Welcome on %(forum_name)s forums!")
  43. mail_subject = mail_subject % {'forum_name': settings.forum_name}
  44. if settings.account_activation == 'none':
  45. authenticated_user = authenticate(
  46. username=new_user.email,
  47. password=form.cleaned_data['password'])
  48. login(request, authenticated_user)
  49. mail_user(request, new_user, mail_subject,
  50. 'misago/emails/register/complete')
  51. return Response({
  52. 'activation': 'active',
  53. 'username': new_user.username,
  54. 'email': new_user.email
  55. })
  56. else:
  57. activation_token = make_activation_token(new_user)
  58. activation_by_admin = new_user.requires_activation_by_admin
  59. activation_by_user = new_user.requires_activation_by_user
  60. mail_user(
  61. request, new_user, mail_subject,
  62. 'misago/emails/register/inactive',
  63. {
  64. 'activation_token': activation_token,
  65. 'activation_by_admin': activation_by_admin,
  66. 'activation_by_user': activation_by_user,
  67. })
  68. if activation_by_admin:
  69. activation_method = 'admin'
  70. else:
  71. activation_method = 'user'
  72. return Response({
  73. 'activation': activation_method,
  74. 'username': new_user.username,
  75. 'email': new_user.email
  76. })