nopaque/app/admin/views.py

67 lines
2.3 KiB
Python
Raw Normal View History

from app import db
from app.decorators import admin_required
from app.models import Role, User
2019-11-14 13:40:05 +01:00
from app.profile.background_functions import delete_user_
2019-09-23 16:25:26 +02:00
from flask import current_app, flash, redirect, render_template, url_for
from flask_login import login_required
2019-11-15 11:45:04 +01:00
from threading import Thread
from . import admin
2019-11-15 14:01:36 +01:00
from .forms import EditUserForm
2019-11-15 12:57:01 +01:00
from .tables import AdminUserItem, AdminUserTable
2019-11-15 12:51:53 +01:00
@admin.route('/')
@login_required
@admin_required
2019-11-15 12:51:53 +01:00
def index():
2019-11-15 11:45:04 +01:00
users = User.query.all()
2019-09-23 16:25:26 +02:00
items = [AdminUserItem(u.username, u.email, u.role_id, u.confirmed, u.id)
for u in users]
# Convert table object to html string
table = AdminUserTable(items).__html__()
# Add class "list" to tbody element. Needed for "List.js"
table = table.replace('tbody', 'tbody class="list"', 1)
2019-11-15 12:51:53 +01:00
return render_template('admin/index.html.j2', table=table,
title='Administration tools')
2019-11-15 11:45:04 +01:00
@admin.route('/user/<int:user_id>')
@login_required
@admin_required
2019-11-15 11:45:04 +01:00
def user(user_id):
user = User.query.get_or_404(user_id)
2019-11-15 12:51:53 +01:00
return render_template('admin/user.html.j2', title='Administration: User',
2019-11-15 11:45:04 +01:00
user=user)
2019-11-15 11:45:04 +01:00
@admin.route('/user/<int:user_id>/delete')
@login_required
@admin_required
2019-11-15 11:45:04 +01:00
def delete_user(user_id):
user = User.query.get_or_404(user_id)
thread = Thread(target=delete_user_,
args=(current_app._get_current_object(), user.id))
thread.start()
flash('User has been deleted!')
2019-11-15 12:51:53 +01:00
return redirect(url_for('admin.index'))
2019-11-15 11:45:04 +01:00
@admin.route('/user/<int:user_id>/edit', methods=['GET', 'POST'])
@login_required
@admin_required
2019-11-15 11:45:04 +01:00
def edit_user(user_id):
user = User.query.get_or_404(user_id)
2019-11-15 14:01:36 +01:00
edit_user_form = EditUserForm(user=user)
if edit_user_form.validate_on_submit():
user.email = edit_user_form.email.data
user.username = edit_user_form.username.data
user.confirmed = edit_user_form.confirmed.data
user.role = Role.query.get(edit_user_form.role.data)
db.session.add(user)
db.session.commit()
flash('The profile has been updated.')
2019-11-15 11:45:04 +01:00
return redirect(url_for('admin.edit_user', user_id=user.id))
2019-11-15 14:01:36 +01:00
return render_template('admin/edit_user.html.j2',
edit_user_form=edit_user_form,
2019-11-15 12:51:53 +01:00
title='Administration: Edit user', user=user)