c378ac90b72a07169bb134f2d6a2b3b4f9970ce4
[NeonServV5.git] / cmd_neonserv_setaccess.c
1
2 /*
3 * argv[0] - nick / *auth
4 * argv[1] - global access
5 */
6 static AUTHLOOKUP_CALLBACK(neonserv_cmd_setaccess_auth_lookup);
7 static USERAUTH_CALLBACK(neonserv_cmd_setaccess_nick_lookup);
8 static void neonserv_cmd_setaccess_async1(struct ClientSocket *client, struct ClientSocket *textclient, struct UserNode *user, struct Event *event, char *nick, char *auth, int access);
9
10 struct neonserv_cmd_setaccess_cache {
11     struct ClientSocket *client, *textclient;
12     struct UserNode *user;
13     struct Event *event;
14     int access;
15     char *nick;
16 };
17
18 static CMD_BIND(neonserv_cmd_setaccess) {
19     int caccess;
20     MYSQL_RES *res;
21     MYSQL_ROW row;
22     caccess = atoi(argv[1]);
23     if(caccess < 0 || caccess > 1000) {
24         reply(getTextBot(), user, "NS_INVALID_ACCESS", caccess);
25         return;
26     }
27     printf_mysql_query("SELECT `user_access` FROM `users` WHERE `user_user` = '%s'", escape_string(user->auth));
28     res = mysql_use();
29     if ((row = mysql_fetch_row(res)) == NULL || atoi(row[0]) < caccess) {
30         reply(getTextBot(), user, "NS_ACCESS_OUTRANKED");
31         return;
32     }
33     if(argv[0][0] == '*') {
34         //we've got an auth
35         argv[0]++;
36         printf_mysql_query("SELECT `user_user` FROM `users` WHERE `user_user` = '%s'", escape_string(argv[0]));
37         res = mysql_use();
38         if ((row = mysql_fetch_row(res)) != NULL) {
39             neonserv_cmd_setaccess_async1(client, getTextBot(), user, event, argv[0], row[0], caccess);
40         } else {
41             //we need to create a new user...
42             //but first lookup the auth to check if it really exists
43             struct neonserv_cmd_setaccess_cache *cache = malloc(sizeof(*cache));
44             if (!cache) {
45                 perror("malloc() failed");
46                 return;
47             }
48             cache->client = client;
49             cache->textclient = getTextBot();
50             cache->user = user;
51             cache->event = event;
52             cache->access = caccess;
53             cache->nick = strdup(argv[0]);
54             lookup_authname(argv[0], neonserv_cmd_setaccess_auth_lookup, cache);
55         }
56     } else {
57         struct UserNode *cuser = getUserByNick(argv[0]);
58         if(!cuser) {
59             cuser = createTempUser(argv[0]);
60             cuser->flags |= USERFLAG_ISTMPUSER;
61         }
62         if(cuser->flags & USERFLAG_ISAUTHED) {
63             neonserv_cmd_setaccess_async1(client, getTextBot(), user, event, argv[0], cuser->auth, caccess);
64         } else {
65             struct neonserv_cmd_setaccess_cache *cache = malloc(sizeof(*cache));
66             if (!cache) {
67                 perror("malloc() failed");
68                 return;
69             }
70             cache->client = client;
71             cache->textclient = getTextBot();
72             cache->user = user;
73             cache->event = event;
74             cache->access = caccess;
75             cache->nick = strdup(argv[0]);
76             get_userauth(cuser, neonserv_cmd_setaccess_nick_lookup, cache);
77         }
78     }
79 }
80
81 static AUTHLOOKUP_CALLBACK(neonserv_cmd_setaccess_auth_lookup) {
82     struct neonserv_cmd_setaccess_cache *cache = data;
83     if(!exists) {
84         //AUTH_DOES_NOT_EXIST
85         reply(cache->textclient, cache->user, "NS_AUTH_UNKNOWN", cache->nick);
86     } else
87         neonserv_cmd_setaccess_async1(cache->client, cache->textclient, cache->user, cache->event, cache->nick, auth, cache->access);
88     free(cache->nick);
89     free(cache);
90 }
91
92 static USERAUTH_CALLBACK(neonserv_cmd_setaccess_nick_lookup) {
93     struct neonserv_cmd_setaccess_cache *cache = data;
94     if(!user) {
95         //USER_DOES_NOT_EXIST
96         reply(cache->textclient, cache->user, "NS_USER_UNKNOWN", cache->nick);
97     }
98     else if(!(user->flags & USERFLAG_ISAUTHED)) {
99         //USER_NOT_AUTHED
100         reply(cache->textclient, cache->user, "NS_USER_NEED_AUTH", cache->nick);
101     }
102     else
103         neonserv_cmd_setaccess_async1(cache->client, cache->textclient, cache->user, cache->event, user->nick, user->auth, cache->access);
104     free(cache->nick);
105     free(cache);
106 }
107
108 static void neonserv_cmd_setaccess_async1(struct ClientSocket *client, struct ClientSocket *textclient, struct UserNode *user, struct Event *event, char *nick, char *auth, int caccess) {
109     //we've got a valid auth now...
110     MYSQL_RES *res;
111     MYSQL_ROW row;
112     printf_mysql_query("SELECT `user_id`, `user_access` FROM `users` WHERE `user_user` = '%s'", escape_string(auth));
113     res = mysql_use();
114     if ((row = mysql_fetch_row(res)) != NULL) {
115         if(atoi(row[1]) != caccess)
116             printf_mysql_query("UPDATE `users` SET `user_access` = '%d' WHERE `user_id` = '%s'", caccess, row[0]);
117     } else {
118         printf_mysql_query("INSERT INTO `users` (`user_user`, `user_access`) VALUES ('%s', '%d')", escape_string(auth), caccess);
119     }
120     reply(textclient, user, "NS_SETACCESS_DONE", auth, caccess);
121     logEvent(event);
122 }