diff options
author | Erik Johnston <erik@matrix.org> | 2014-09-29 14:59:52 +0100 |
---|---|---|
committer | Erik Johnston <erik@matrix.org> | 2014-09-29 14:59:52 +0100 |
commit | 3ccb17ce592d7e75e0bd0237c347d64f63d5eb10 (patch) | |
tree | c5931cd53ad04a32430a51afcb8b7a06ea88920d /synapse/rest/admin.py | |
parent | Add auth check to test if a user is an admin or not. (diff) | |
download | synapse-3ccb17ce592d7e75e0bd0237c347d64f63d5eb10.tar.xz |
SYN-48: Implement WHOIS rest servlet
Diffstat (limited to '')
-rw-r--r-- | synapse/rest/admin.py | 47 |
1 files changed, 47 insertions, 0 deletions
diff --git a/synapse/rest/admin.py b/synapse/rest/admin.py new file mode 100644 index 0000000000..97eb1954e0 --- /dev/null +++ b/synapse/rest/admin.py @@ -0,0 +1,47 @@ +# -*- coding: utf-8 -*- +# Copyright 2014 OpenMarket Ltd +# +# Licensed under the Apache License, Version 2.0 (the "License"); +# you may not use this file except in compliance with the License. +# You may obtain a copy of the License at +# +# http://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, software +# distributed under the License is distributed on an "AS IS" BASIS, +# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. +# See the License for the specific language governing permissions and +# limitations under the License. + +from twisted.internet import defer + +from synapse.api.errors import AuthError, SynapseError +from base import RestServlet, client_path_pattern + +import logging + +logger = logging.getLogger(__name__) + + +class WhoisRestServlet(RestServlet): + PATTERN = client_path_pattern("/admin/whois/(?P<user_id>[^/]*)") + + @defer.inlineCallbacks + def on_GET(self, request, user_id): + target_user = self.hs.parse_userid(user_id) + auth_user = yield self.auth.get_user_by_req(request) + is_admin = yield self.auth.is_server_admin(auth_user) + + if not is_admin and target_user != auth_user: + raise AuthError(403, "You are not a server admin") + + if not target_user.is_mine: + raise SynapseError(400, "Can only whois a local user") + + ret = yield self.handlers.admin_handler.get_whois(auth_user) + + defer.returnValue((200, ret)) + + +def register_servlets(hs, http_server): + WhoisRestServlet(hs).register(http_server) |