working leantime delete user

This commit is contained in:
Alma 2025-04-12 11:52:35 +02:00
parent 4ae88009de
commit 5c94f9adc0
2 changed files with 153 additions and 69 deletions

View File

@ -1,45 +1,11 @@
import { getServerSession } from "next-auth"; import { getServerSession } from "next-auth/next";
import { authOptions } from "@/app/api/auth/[...nextauth]/route"; import { authOptions } from "@/app/api/auth/[...nextauth]/route";
import { NextResponse } from "next/server"; import { NextResponse } from "next/server";
// Helper function to delete user from Leantime // Helper function to delete user from Leantime
async function deleteLeantimeUser(email: string): Promise<{ success: boolean; error?: string }> { async function deleteLeantimeUser(userId: string): Promise<{ success: boolean; error?: string }> {
try { try {
// First, get all users from Leantime const response = await fetch('https://agilite.slm-lab.net/api/jsonrpc', {
const getUsersResponse = await fetch('https://agilite.slm-lab.net/api/jsonrpc', {
method: 'POST',
headers: {
'Content-Type': 'application/json',
'X-API-Key': process.env.LEANTIME_TOKEN || '',
},
body: JSON.stringify({
method: 'leantime.rpc.Users.Users.getAll',
jsonrpc: '2.0',
id: 1,
params: {}
})
});
const getUsersData = await getUsersResponse.json();
console.log('Leantime get users response:', getUsersData);
if (!getUsersResponse.ok || !getUsersData.result) {
console.error('Failed to get Leantime users:', getUsersData);
return {
success: false,
error: getUsersData.error?.message || 'Failed to get users in Leantime'
};
}
// Find the user with matching email
const user = getUsersData.result.find((u: any) => u.username === email);
if (!user) {
console.log('User not found in Leantime, might have been already deleted');
return { success: true }; // Consider it a success if user doesn't exist
}
// Now delete the user using their Leantime ID
const deleteResponse = await fetch('https://agilite.slm-lab.net/api/jsonrpc', {
method: 'POST', method: 'POST',
headers: { headers: {
'Content-Type': 'application/json', 'Content-Type': 'application/json',
@ -50,19 +16,19 @@ async function deleteLeantimeUser(email: string): Promise<{ success: boolean; er
jsonrpc: '2.0', jsonrpc: '2.0',
id: 1, id: 1,
params: { params: {
id: user.id id: userId
} }
}) })
}); });
const deleteData = await deleteResponse.json(); const data = await response.json();
console.log('Leantime delete response:', deleteData); console.log('Leantime delete response:', data);
if (!deleteResponse.ok || !deleteData.result) { if (!response.ok || !data.result) {
console.error('Leantime user deletion failed:', deleteData); console.error('Leantime user deletion failed:', data);
return { return {
success: false, success: false,
error: deleteData.error?.message || 'Failed to delete user in Leantime' error: data.error?.message || 'Failed to delete user in Leantime'
}; };
} }
@ -76,7 +42,6 @@ async function deleteLeantimeUser(email: string): Promise<{ success: boolean; er
} }
} }
//TODO: Ajouter la suppression automatique du compte Nextcloud
export async function DELETE( export async function DELETE(
req: Request, req: Request,
{ params }: { params: { userId: string } } { params }: { params: { userId: string } }
@ -88,7 +53,7 @@ export async function DELETE(
} }
try { try {
// First get an admin token using client credentials // Get admin token
const tokenResponse = await fetch( const tokenResponse = await fetch(
`${process.env.KEYCLOAK_BASE_URL}/realms/${process.env.KEYCLOAK_REALM}/protocol/openid-connect/token`, `${process.env.KEYCLOAK_BASE_URL}/realms/${process.env.KEYCLOAK_REALM}/protocol/openid-connect/token`,
{ {
@ -105,16 +70,12 @@ export async function DELETE(
); );
const tokenData = await tokenResponse.json(); const tokenData = await tokenResponse.json();
if (!tokenResponse.ok || !tokenData.access_token) {
if (!tokenResponse.ok) {
console.error("Failed to get admin token:", tokenData); console.error("Failed to get admin token:", tokenData);
return NextResponse.json( return NextResponse.json({ error: "Erreur d'authentification" }, { status: 401 });
{ error: "Erreur d'authentification" },
{ status: 401 }
);
} }
// Get user details before deletion to get their email // Get user details before deletion
const userResponse = await fetch( const userResponse = await fetch(
`${process.env.KEYCLOAK_BASE_URL}/admin/realms/${process.env.KEYCLOAK_REALM}/users/${params.userId}`, `${process.env.KEYCLOAK_BASE_URL}/admin/realms/${process.env.KEYCLOAK_REALM}/users/${params.userId}`,
{ {
@ -145,22 +106,17 @@ export async function DELETE(
} }
); );
console.log("Keycloak delete response:", {
status: deleteResponse.status,
ok: deleteResponse.ok
});
if (!deleteResponse.ok) { if (!deleteResponse.ok) {
const errorText = await deleteResponse.text(); const errorData = await deleteResponse.json();
console.error("Delete error:", errorText); console.error("Keycloak delete error:", errorData);
return NextResponse.json( return NextResponse.json(
{ error: "Erreur lors de la suppression", details: errorText }, { error: "Erreur lors de la suppression de l'utilisateur", details: errorData },
{ status: deleteResponse.status } { status: deleteResponse.status }
); );
} }
// Delete user from Leantime // Delete user from Leantime
const leantimeResult = await deleteLeantimeUser(userDetails.email); const leantimeResult = await deleteLeantimeUser(params.userId);
if (!leantimeResult.success) { if (!leantimeResult.success) {
console.error("Leantime user deletion failed:", leantimeResult.error); console.error("Leantime user deletion failed:", leantimeResult.error);
@ -169,6 +125,7 @@ export async function DELETE(
} }
return NextResponse.json({ success: true }); return NextResponse.json({ success: true });
} catch (error) { } catch (error) {
console.error("Error deleting user:", error); console.error("Error deleting user:", error);
return NextResponse.json( return NextResponse.json(

View File

@ -213,7 +213,6 @@ async function createLeantimeUser(userData: {
method: 'POST', method: 'POST',
headers: { headers: {
'Content-Type': 'application/json', 'Content-Type': 'application/json',
'Authorization': `Bearer ${process.env.LEANTIME_TOKEN}`,
'X-API-Key': process.env.LEANTIME_TOKEN || '', 'X-API-Key': process.env.LEANTIME_TOKEN || '',
}, },
body: JSON.stringify({ body: JSON.stringify({
@ -222,14 +221,38 @@ async function createLeantimeUser(userData: {
id: 1, id: 1,
params: { params: {
values: { values: {
firstname: userData.firstName, // First name goes in firstname field '0': 0, // This will be set by Leantime
lastname: userData.lastName, // Last name goes in lastname field '1': userData.lastName,
username: userData.email, // Use email as username '2': userData.firstName,
email: userData.email, '3': '20', // Default role
password: userData.password, '4': '', // profileId
'5': 'a', // status
'6': userData.email,
'7': 0, // twoFAEnabled
'8': 0, // clientId
'9': null, // clientName
'10': '', // jobTitle
'11': '', // jobLevel
'12': '', // department
'13': new Date().toISOString(), // modified
lastname: userData.lastName,
firstname: userData.firstName,
role: '20', // Default role
profileId: '',
status: 'a', status: 'a',
role: '10', // Use '10' as role username: userData.email,
source: 'keycloak' password: userData.password,
twoFAEnabled: 0,
clientId: 0,
clientName: null,
jobTitle: '',
jobLevel: '',
department: '',
modified: new Date().toISOString(),
createdOn: new Date().toISOString(),
source: 'keycloak',
notifications: 1,
settings: '{}'
} }
} }
}) })
@ -443,3 +466,107 @@ export async function POST(req: Request) {
); );
} }
} }
// Helper function to delete user from Leantime
async function deleteLeantimeUser(email: string): Promise<{ success: boolean; error?: string }> {
try {
const response = await fetch('https://agilite.slm-lab.net/api/jsonrpc', {
method: 'POST',
headers: {
'Content-Type': 'application/json',
'X-API-Key': process.env.LEANTIME_TOKEN || '',
},
body: JSON.stringify({
method: 'leantime.rpc.Users.Users.deleteUser',
jsonrpc: '2.0',
id: 1,
params: {
email: email
}
})
});
const data = await response.json();
console.log('Leantime delete response:', data);
if (!response.ok || !data.result) {
console.error('Leantime user deletion failed:', data);
return {
success: false,
error: data.error?.message || 'Failed to delete user in Leantime'
};
}
return { success: true };
} catch (error) {
console.error('Error deleting Leantime user:', error);
return {
success: false,
error: 'Error deleting user in Leantime'
};
}
}
export async function DELETE(req: Request) {
const session = await getServerSession(authOptions);
if (!session) {
return NextResponse.json({ error: "Non autorisé" }, { status: 401 });
}
try {
const { searchParams } = new URL(req.url);
const userId = searchParams.get('id');
const email = searchParams.get('email');
if (!userId || !email) {
return NextResponse.json(
{ error: "ID utilisateur et email requis" },
{ status: 400 }
);
}
const token = await getAdminToken();
if (!token) {
return NextResponse.json({ error: "Erreur d'authentification" }, { status: 401 });
}
// Delete user from Keycloak
const deleteResponse = await fetch(
`${process.env.KEYCLOAK_BASE_URL}/admin/realms/${process.env.KEYCLOAK_REALM}/users/${userId}`,
{
method: "DELETE",
headers: {
Authorization: `Bearer ${token}`,
},
}
);
if (!deleteResponse.ok) {
const errorData = await deleteResponse.json();
console.error("Keycloak delete error:", errorData);
return NextResponse.json(
{ error: "Erreur lors de la suppression de l'utilisateur", details: errorData },
{ status: deleteResponse.status }
);
}
// Delete user from Leantime
const leantimeResult = await deleteLeantimeUser(email);
if (!leantimeResult.success) {
console.error("Leantime user deletion failed:", leantimeResult.error);
// We don't return an error here since Keycloak user was deleted successfully
// We just log the error and continue
}
return NextResponse.json({ success: true });
} catch (error) {
console.error("Error deleting user:", error);
return NextResponse.json(
{ error: "Erreur serveur", details: error },
{ status: 500 }
);
}
}