(* COCANWIKI - a wiki written in Objective CAML. * Written by Richard W.M. Jones . * Copyright (C) 2004 Merjis Ltd. * $Id: delete_user.ml,v 1.4 2004/10/30 10:16:10 rich Exp $ * * This program is free software; you can redistribute it and/or modify * it under the terms of the GNU General Public License as published by * the Free Software Foundation; either version 2 of the License, or * (at your option) any later version. * * This program is distributed in the hope that it will be useful, * but WITHOUT ANY WARRANTY; without even the implied warranty of * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * GNU General Public License for more details. * * You should have received a copy of the GNU General Public License * along with this program; see the file COPYING. If not, write to * the Free Software Foundation, Inc., 59 Temple Place - Suite 330, * Boston, MA 02111-1307, USA. *) open Apache open Registry open Cgi open Printf open Cocanwiki open Cocanwiki_ok let run r (q : cgi) (dbh : Dbi.connection) hostid {hostname = hostname} self = if q#param_true "cancel" then ( (* Request cancelled. *) q#redirect ("http://" ^ hostname ^ "/_users"); return () ); let userid = int_of_string (q#param "userid") in (* Check userid belongs to host. The statements below wouldn't * enforce this correctly ... *) let sth = dbh#prepare_cached "select 1 from users where id = ? and hostid = ?" in sth#execute [`Int userid; `Int hostid]; assert (sth#fetch1int () = 1); (* Can't delete self! *) let () = match self with | User (id, _, _, _) when id = userid -> error ~back_button:true ~title:"Delete own account" q "You cannot delete your own user account."; return () | _ -> () in (* Delete the user. *) let sth = dbh#prepare_cached "delete from recently_visited where userid = ? and hostid = ?" in sth#execute [`Int userid; `Int hostid]; let sth = dbh#prepare_cached "delete from pending_email_changes where userid = ?" in sth#execute [`Int userid]; let sth = dbh#prepare_cached "delete from usercookies where userid = ?" in sth#execute [`Int userid]; let sth = dbh#prepare_cached "update pages set logged_user = null where logged_user = ? and hostid = ?" in sth#execute [`Int userid; `Int hostid]; let sth = dbh#prepare_cached "delete from users where id = ? and hostid = ?" in sth#execute [`Int userid; `Int hostid]; dbh#commit (); ok ~title:"Account deleted" ~buttons:[ok_button "/_users"] q "That user account was deleted." let () = register_script ~restrict:[CanManageUsers] run