nopaque/web/app/admin/views.py

65 lines
2.1 KiB
Python
Raw Normal View History

from flask import flash, redirect, render_template, url_for
2019-09-23 16:25:26 +02:00
from flask_login import login_required
from . import admin
2019-11-15 14:01:36 +01:00
from .forms import EditUserForm
2020-03-27 12:06:11 +01:00
from .. import db
from ..decorators import admin_required
from ..models import Role, User
from ..profile import tasks as profile_tasks
2020-10-23 10:17:14 +02:00
@admin.route('/users')
@login_required
@admin_required
2020-10-23 10:17:14 +02:00
def users():
2019-11-15 11:45:04 +01:00
users = User.query.all()
2020-07-07 16:06:09 +02:00
users = [dict(username=u.username,
email=u.email,
role_id=u.role_id,
confirmed=u.confirmed,
id=u.id)
2019-09-23 16:25:26 +02:00
for u in users]
2020-10-23 10:17:14 +02:00
return render_template('admin/users.html.j2', title='Users', users=users)
2020-10-23 10:17:14 +02:00
@admin.route('/users/<int:user_id>')
@login_required
@admin_required
2019-11-15 11:45:04 +01:00
def user(user_id):
user = User.query.get_or_404(user_id)
2020-10-23 10:17:14 +02:00
return render_template('admin/user.html.j2', title='Edit user', user=user)
2020-10-23 10:17:14 +02:00
@admin.route('/users/<int:user_id>/delete')
@login_required
@admin_required
2019-11-15 11:45:04 +01:00
def delete_user(user_id):
profile_tasks.delete_user(user_id)
2019-11-15 11:45:04 +01:00
flash('User has been deleted!')
2019-11-15 12:51:53 +01:00
return redirect(url_for('admin.index'))
2020-10-23 10:17:14 +02:00
@admin.route('/users/<int:user_id>/edit', methods=['GET', 'POST'])
@login_required
@admin_required
2019-11-15 11:45:04 +01:00
def edit_user(user_id):
user = User.query.get_or_404(user_id)
2019-11-15 14:01:36 +01:00
edit_user_form = EditUserForm(user=user)
if edit_user_form.validate_on_submit():
user.email = edit_user_form.email.data
user.username = edit_user_form.username.data
user.confirmed = edit_user_form.confirmed.data
user.role = Role.query.get(edit_user_form.role.data)
db.session.add(user)
db.session.commit()
flash('The profile has been updated.')
2019-11-15 11:45:04 +01:00
return redirect(url_for('admin.edit_user', user_id=user.id))
2020-02-18 15:22:48 +01:00
edit_user_form.email.data = user.email
edit_user_form.username.data = user.username
edit_user_form.confirmed.data = user.confirmed
edit_user_form.role.data = user.role_id
2019-11-15 14:01:36 +01:00
return render_template('admin/edit_user.html.j2',
edit_user_form=edit_user_form,
2020-10-23 10:17:14 +02:00
title='Edit user',
user=user)