Files
Oxicloud/src/interfaces/api/handlers/share_handler.rs
T

274 lines
8.6 KiB
Rust
Raw Normal View History

2025-03-28 12:38:48 +01:00
use std::sync::Arc;
use uuid::Uuid;
2025-03-28 12:38:48 +01:00
use axum::{
2026-02-14 01:29:34 +01:00
Json,
2025-03-28 12:38:48 +01:00
extract::{Path, Query, State},
http::StatusCode,
response::IntoResponse,
};
use serde::Deserialize;
use serde_json::json;
use utoipa::ToSchema;
2025-03-28 12:38:48 +01:00
use crate::application::services::share_service::ShareService;
2025-03-28 12:38:48 +01:00
use crate::{
application::{
2026-02-14 01:29:34 +01:00
dtos::share_dto::{CreateShareDto, UpdateShareDto},
ports::share_ports::ShareUseCase,
2025-03-28 12:38:48 +01:00
},
common::errors::ErrorKind,
domain::entities::share::ShareItemType,
interfaces::errors::AppError,
interfaces::middleware::auth::AuthUser,
2025-03-28 12:38:48 +01:00
};
#[derive(Debug, Deserialize)]
pub struct GetSharesQuery {
pub page: Option<usize>,
pub per_page: Option<usize>,
pub item_id: Option<String>,
pub item_type: Option<String>,
2025-03-28 12:38:48 +01:00
}
#[derive(Debug, Deserialize, ToSchema)]
2025-03-28 12:38:48 +01:00
pub struct VerifyPasswordRequest {
pub password: String,
}
/// Create a new shared link
#[utoipa::path(
post,
path = "/api/shares",
request_body = CreateShareDto,
responses(
(status = 201, description = "Share created", body = crate::application::dtos::share_dto::ShareDto),
(status = 400, description = "Bad request")
),
tag = "shares"
)]
2025-03-28 12:38:48 +01:00
pub async fn create_shared_link(
State(share_use_case): State<Arc<ShareService>>,
auth_user: AuthUser,
2025-03-28 12:38:48 +01:00
Json(dto): Json<CreateShareDto>,
) -> impl IntoResponse {
match share_use_case.create_shared_link(auth_user.id, dto).await {
2025-03-28 12:38:48 +01:00
Ok(share) => (StatusCode::CREATED, Json(share)).into_response(),
2026-03-05 21:28:51 +01:00
Err(err) => AppError::from(err).into_response(),
2025-03-28 12:38:48 +01:00
}
}
/// Get information about a specific shared link by ID
#[utoipa::path(
get,
path = "/api/shares/{id}",
params(("id" = String, Path, description = "Share ID")),
responses(
(status = 200, description = "Share details", body = crate::application::dtos::share_dto::ShareDto),
(status = 404, description = "Share not found")
),
tag = "shares"
)]
2025-03-28 12:38:48 +01:00
pub async fn get_shared_link(
State(share_use_case): State<Arc<ShareService>>,
auth_user: AuthUser,
2025-03-28 12:38:48 +01:00
Path(id): Path<String>,
) -> impl IntoResponse {
let id = match Uuid::parse_str(&id) {
Ok(id) => id,
Err(_) => return AppError::bad_request("Invalid UUID").into_response(),
};
match share_use_case.get_shared_link(id, auth_user.id).await {
2025-03-28 12:38:48 +01:00
Ok(share) => (StatusCode::OK, Json(share)).into_response(),
2026-03-05 21:28:51 +01:00
Err(err) => AppError::from(err).into_response(),
2025-03-28 12:38:48 +01:00
}
}
/// Get all shared links created by the current user.
/// Supports optional filtering by item_id + item_type query params.
#[utoipa::path(
get,
path = "/api/shares",
responses(
(status = 200, description = "List of shares", body = Vec<crate::application::dtos::share_dto::ShareDto>)
),
tag = "shares"
)]
2025-03-28 12:38:48 +01:00
pub async fn get_user_shares(
State(share_use_case): State<Arc<ShareService>>,
auth_user: AuthUser,
2025-03-28 12:38:48 +01:00
Query(query): Query<GetSharesQuery>,
) -> impl IntoResponse {
let user_id = auth_user.id;
// If both item_id and item_type are provided, return shares for that specific item
if let (Some(item_id), Some(item_type_str)) = (&query.item_id, &query.item_type) {
let item_type = match ShareItemType::try_from(item_type_str.as_str()) {
Ok(t) => t,
Err(_) => {
return (
StatusCode::BAD_REQUEST,
Json(json!({ "error": format!("Invalid item_type: {}", item_type_str) })),
)
.into_response();
}
};
return match share_use_case
.get_shared_links_for_item(item_id, &item_type, user_id)
.await
{
Ok(shares) => (StatusCode::OK, Json(shares)).into_response(),
Err(err) => AppError::from(err).into_response(),
};
}
// Default: paginated list of all user shares
2025-03-28 12:38:48 +01:00
let page = query.page.unwrap_or(1);
let per_page = query.per_page.unwrap_or(20);
2026-02-14 01:29:34 +01:00
match share_use_case
.get_user_shared_links(user_id, page, per_page)
2026-02-14 01:29:34 +01:00
.await
{
2025-03-28 12:38:48 +01:00
Ok(shares) => (StatusCode::OK, Json(shares)).into_response(),
Err(err) => AppError::from(err).into_response(),
2025-03-28 12:38:48 +01:00
}
}
/// Update a shared link's properties
#[utoipa::path(
put,
path = "/api/shares/{id}",
params(("id" = String, Path, description = "Share ID")),
request_body = UpdateShareDto,
responses(
(status = 200, description = "Share updated", body = crate::application::dtos::share_dto::ShareDto),
(status = 404, description = "Share not found")
),
tag = "shares"
)]
2025-03-28 12:38:48 +01:00
pub async fn update_shared_link(
State(share_use_case): State<Arc<ShareService>>,
auth_user: AuthUser,
2025-03-28 12:38:48 +01:00
Path(id): Path<String>,
Json(dto): Json<UpdateShareDto>,
) -> impl IntoResponse {
let id = match Uuid::parse_str(&id) {
Ok(id) => id,
Err(_) => return AppError::bad_request("Invalid UUID").into_response(),
};
match share_use_case
.update_shared_link(id, auth_user.id, dto)
.await
{
2025-03-28 12:38:48 +01:00
Ok(share) => (StatusCode::OK, Json(share)).into_response(),
2026-03-05 21:28:51 +01:00
Err(err) => AppError::from(err).into_response(),
2025-03-28 12:38:48 +01:00
}
}
/// Delete a shared link
#[utoipa::path(
delete,
path = "/api/shares/{id}",
params(("id" = String, Path, description = "Share ID")),
responses(
(status = 204, description = "Share deleted"),
(status = 404, description = "Share not found")
),
tag = "shares"
)]
2025-03-28 12:38:48 +01:00
pub async fn delete_shared_link(
State(share_use_case): State<Arc<ShareService>>,
auth_user: AuthUser,
2025-03-28 12:38:48 +01:00
Path(id): Path<String>,
) -> impl IntoResponse {
let id = match Uuid::parse_str(&id) {
Ok(id) => id,
Err(_) => return AppError::bad_request("Invalid UUID").into_response(),
};
match share_use_case.delete_shared_link(id, auth_user.id).await {
2025-03-28 12:38:48 +01:00
Ok(_) => StatusCode::NO_CONTENT.into_response(),
2026-03-05 21:28:51 +01:00
Err(err) => AppError::from(err).into_response(),
2025-03-28 12:38:48 +01:00
}
}
/// Access a shared item via its token
#[utoipa::path(
get,
path = "/api/s/{token}",
params(("token" = String, Path, description = "Share token")),
responses(
(status = 200, description = "Shared item details"),
(status = 401, description = "Password required"),
(status = 410, description = "Share expired")
),
tag = "shares"
)]
2025-03-28 12:38:48 +01:00
pub async fn access_shared_item(
State(share_use_case): State<Arc<ShareService>>,
2025-03-28 12:38:48 +01:00
Path(token): Path<String>,
) -> impl IntoResponse {
// Register the access
let _ = share_use_case.register_shared_link_access(&token).await;
2026-02-14 01:29:34 +01:00
2025-03-28 12:38:48 +01:00
// Get the shared link
match share_use_case.get_shared_link_by_token(&token).await {
Ok(item) => (StatusCode::OK, Json(item)).into_response(),
Err(err) => {
// Special handling for share access errors
if err.kind == ErrorKind::AccessDenied {
if err.message.contains("password") {
return (
StatusCode::UNAUTHORIZED,
Json(json!({
"error": "Password required",
"requiresPassword": true
})),
)
.into_response();
2026-02-14 01:29:34 +01:00
}
if err.message.contains("expired") {
2026-03-05 21:28:51 +01:00
return AppError::new(StatusCode::GONE, err.message, "Expired").into_response();
}
}
AppError::from(err).into_response()
2025-03-28 12:38:48 +01:00
}
}
}
/// Verify password for a password-protected shared item
#[utoipa::path(
post,
path = "/api/s/{token}/verify",
params(("token" = String, Path, description = "Share token")),
responses(
(status = 200, description = "Password verified, item details returned"),
(status = 401, description = "Invalid password"),
(status = 410, description = "Share expired")
),
tag = "shares"
)]
2025-03-28 12:38:48 +01:00
pub async fn verify_shared_item_password(
State(share_use_case): State<Arc<ShareService>>,
2025-03-28 12:38:48 +01:00
Path(token): Path<String>,
Json(req): Json<VerifyPasswordRequest>,
) -> impl IntoResponse {
2026-02-14 01:29:34 +01:00
match share_use_case
.verify_shared_link_password(&token, &req.password)
.await
{
2025-03-28 12:38:48 +01:00
Ok(item) => (StatusCode::OK, Json(item)).into_response(),
Err(err) => {
if err.kind == ErrorKind::AccessDenied {
if err.message.contains("expired") {
2026-03-05 21:28:51 +01:00
return AppError::new(StatusCode::GONE, err.message, "Expired").into_response();
2026-02-14 01:29:34 +01:00
}
if err.message.contains("password") {
return AppError::unauthorized("Invalid password").into_response();
}
}
AppError::from(err).into_response()
2025-03-28 12:38:48 +01:00
}
}
2026-02-14 01:29:34 +01:00
}