UserApiServiceImpl.java

/*
 * Copyright 2025 Global Crop Diversity Trust
 *
 * Licensed under the Apache License, Version 2.0 (the "License");
 * you may not use this file except in compliance with the License.
 * You may obtain a copy of the License at
 *
 *   http://www.apache.org/licenses/LICENSE-2.0
 *
 * Unless required by applicable law or agreed to in writing, software
 * distributed under the License is distributed on an "AS IS" BASIS,
 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
 * See the License for the specific language governing permissions and
 * limitations under the License.
 */

package org.genesys.server.api.v2.facade.impl;

import lombok.extern.slf4j.Slf4j;
import org.apache.commons.collections4.CollectionUtils;
import org.genesys.blocks.security.NoUserFoundException;
import org.genesys.blocks.security.UserException;
import org.genesys.blocks.security.model.BasicUser;
import org.genesys.blocks.security.service.PasswordPolicy;
import org.genesys.server.api.v2.facade.UserApiService;
import org.genesys.server.api.v2.mapper.MapstructMapper;
import org.genesys.server.api.v2.model.impl.UserDTO;
import org.genesys.server.exception.NotFoundElement;
import org.genesys.server.model.impl.QUser;
import org.genesys.server.model.impl.User;
import org.genesys.server.persistence.UserRepository;
import org.genesys.server.service.EMailVerificationService;
import org.genesys.server.service.UserService;
import org.genesys.server.service.filter.UserFilter;
import org.genesys.util.RandomPasswordUtil;
import org.springframework.beans.factory.annotation.Autowired;
import org.springframework.data.domain.Page;
import org.springframework.data.domain.Pageable;
import org.springframework.stereotype.Service;
import org.springframework.transaction.annotation.Transactional;

import java.util.ArrayList;
import java.util.List;
import java.util.Random;
import java.util.Set;
import java.util.UUID;
import java.util.stream.Collectors;

@Service
@Transactional(readOnly = true)
@Slf4j
public class UserApiServiceImpl implements UserApiService {

	@Autowired
	private UserService userService;

	@Autowired
	private EMailVerificationService emailVerificationService;

	@Autowired
	private UserRepository userRepository;

	@Autowired
	private MapstructMapper mapper;

	@Override
	public UserDTO getUser(UUID uuid) {
		return mapper.map(userService.getUser(uuid));
	}

	@Override
	@Transactional
	public UserDTO unlockAccount(UUID uuid) throws NoUserFoundException {
		User user = userService.getUser(uuid);
		userService.setAccountLock(user.getId(), false);
		return mapper.map(userService.getUser(uuid));
	}

	@Override
	@Transactional
	public UserDTO lockAccount(UUID uuid) throws NoUserFoundException {
		User user = userService.getUser(uuid);
		userService.setAccountLock(user.getId(), true);
		return mapper.map(userService.getUser(uuid));
	}

	@Override
	@Transactional
	public UserDTO extendAccount(UUID uuid) {
		User user = userService.getUser(uuid);
		if (user == null) {
			throw new NotFoundElement("No such user");
		}
		return mapper.map(userService.extendAccount(user));
	}

	@Override
	@Transactional
	public UserDTO enableAccount(UUID uuid) throws UserException {
		userService.setAccountActive(uuid, true);
		return mapper.map(userService.getUser(uuid));
	}

	@Override
	@Transactional
	public UserDTO disableAccount(UUID uuid) throws UserException {
		userService.setAccountActive(uuid, false);
		return mapper.map(userService.getUser(uuid));
	}

	@Override
	public UserDTO archiveAccount(UUID uuid) throws UserException {
		User user = userService.getUser(uuid);
		user = userService.archiveUser(user);
		log.info("Archived user " + user.getEmail());
		return mapper.map(user);
	}

	@Override
	@Transactional
	public List<UserDTO> archiveAccounts(Set<UUID> uuids) {
		var userUuids = uuids.stream().map(UUID::toString).collect(Collectors.toSet());
		var users = userRepository.findAll(QUser.user.uuid.in(userUuids));

		List<User> archived = new ArrayList<>();
		for (User user : users) {
			try {
				archived.add(userService.archiveUser(user));
			} catch (UserException e) {
				log.warn("User archiving exception", e);
			}
		}
		return mapper.map(archived, mapper::map);
	}

	@Override
	@Transactional
	public String generateFtpPassword(UUID uuid) throws PasswordPolicy.PasswordPolicyException {
		User user = userService.getUser(uuid);
		String generatedPassword = RandomPasswordUtil.generatePassword(new Random(), 15);
		userService.setFtpPassword(user, generatedPassword);
		log.info("Generated new FTP password for user " + user.getEmail());
		return generatedPassword;
	}

	@Override
	public void sendEmail(UUID uuid) {
		final User user = userService.getUser(uuid);
		emailVerificationService.sendVerificationEmail(user);
	}

	@Override
	@Transactional
	public UserDTO updateUser(UserDTO dto) throws UserException {
		var user = mapper.map(dto);
		User updated = userService.updateUser(user, user.getEmail(), user.getFullName());
		if (CollectionUtils.isNotEmpty(user.getRoles())) {
			updated = userService.setRoles(updated, user.getRoles());
		}
		return mapper.map(updated);
	}

	@Override
	public Page<UserDTO> list(UserFilter filter, Pageable email) {
		return mapper.map(userService.list(filter, email), mapper::map);
	}

	@Override
	@Transactional
	public UserDTO registerUser(String email, String password, String fullName) throws UserException {
		final User newUser = userService.createUser(email, fullName, password, BasicUser.AccountType.LOCAL);
		emailVerificationService.sendVerificationEmail(newUser);
		return mapper.map(newUser);
	}
}