Browse Source

requested changes to mongoose_im_controller.ex

pleroma-fe-2020-05-01-c67e9daf
fence 4 years ago
parent
commit
cc1e2e8d0f
1 changed files with 11 additions and 30 deletions
  1. +11
    -30
      lib/pleroma/web/mongooseim/mongoose_im_controller.ex

+ 11
- 30
lib/pleroma/web/mongooseim/mongoose_im_controller.ex View File

@@ -14,7 +14,7 @@ defmodule Pleroma.Web.MongooseIM.MongooseIMController do
plug(RateLimiter, [name: :authentication, params: ["user"]] when action == :check_password)

def user_exists(conn, %{"user" => username}) do
with %User{} <- Repo.get_by(User, nickname: username, local: true) do
with %User{} <- Repo.get_by(User, nickname: username, local: true, deactivated: false) do
conn
|> json(true)
else
@@ -26,41 +26,22 @@ defmodule Pleroma.Web.MongooseIM.MongooseIMController do
end

def check_password(conn, %{"user" => username, "pass" => password}) do
user = Repo.get_by(User, nickname: username, local: true)
state = case user do
nil -> nil
_ -> User.account_status(user)
end

case state do
:deactivated ->
with %User{password_hash: password_hash, deactivated: false} <-
Repo.get_by(User, nickname: username, local: true),
true <- Pbkdf2.checkpw(password, password_hash) do
conn
|> json(true)
else
false ->
conn
|> put_status(:not_found)
|> put_status(:forbidden)
|> json(false)

:confirmation_pending ->
_ ->
conn
|> put_status(:not_found)
|> json(false)

_ ->
with %User{password_hash: password_hash} <-
user,
true <- Pbkdf2.checkpw(password, password_hash) do
conn
|> json(true)
else
false ->
conn
|> put_status(:forbidden)
|> json(false)

_ ->
conn
|> put_status(:not_found)
|> json(false)
end
end
end
end


Loading…
Cancel
Save