Merge "Avoid deadlocks in User::incEditCount"
[lhc/web/wiklou.git] / includes / api / ApiBlock.php
1 <?php
2 /**
3 *
4 *
5 * Created on Sep 4, 2007
6 *
7 * Copyright © 2007 Roan Kattouw "<Firstname>.<Lastname>@gmail.com"
8 *
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License as published by
11 * the Free Software Foundation; either version 2 of the License, or
12 * (at your option) any later version.
13 *
14 * This program is distributed in the hope that it will be useful,
15 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 * GNU General Public License for more details.
18 *
19 * You should have received a copy of the GNU General Public License along
20 * with this program; if not, write to the Free Software Foundation, Inc.,
21 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
22 * http://www.gnu.org/copyleft/gpl.html
23 *
24 * @file
25 */
26
27 /**
28 * API module that facilitates the blocking of users. Requires API write mode
29 * to be enabled.
30 *
31 * @ingroup API
32 */
33 class ApiBlock extends ApiBase {
34
35 /**
36 * Blocks the user specified in the parameters for the given expiry, with the
37 * given reason, and with all other settings provided in the params. If the block
38 * succeeds, produces a result containing the details of the block and notice
39 * of success. If it fails, the result will specify the nature of the error.
40 */
41 public function execute() {
42 global $wgContLang;
43
44 $user = $this->getUser();
45 $params = $this->extractRequestParams();
46
47 if ( !$user->isAllowed( 'block' ) ) {
48 $this->dieUsageMsg( 'cantblock' );
49 }
50
51 # bug 15810: blocked admins should have limited access here
52 if ( $user->isBlocked() ) {
53 $status = SpecialBlock::checkUnblockSelf( $params['user'], $user );
54 if ( $status !== true ) {
55 $this->dieUsageMsg( array( $status ) );
56 }
57 }
58
59 $target = User::newFromName( $params['user'] );
60 // Bug 38633 - if the target is a user (not an IP address), but it
61 // doesn't exist or is unusable, error.
62 if ( $target instanceof User &&
63 ( $target->isAnon() /* doesn't exist */ || !User::isUsableName( $target->getName() ) )
64 ) {
65 $this->dieUsageMsg( array( 'nosuchuser', $params['user'] ) );
66 }
67
68 if ( $params['hidename'] && !$user->isAllowed( 'hideuser' ) ) {
69 $this->dieUsageMsg( 'canthide' );
70 }
71 if ( $params['noemail'] && !SpecialBlock::canBlockEmail( $user ) ) {
72 $this->dieUsageMsg( 'cantblock-email' );
73 }
74
75 $data = array(
76 'PreviousTarget' => $params['user'],
77 'Target' => $params['user'],
78 'Reason' => array(
79 $params['reason'],
80 'other',
81 $params['reason']
82 ),
83 'Expiry' => $params['expiry'],
84 'HardBlock' => !$params['anononly'],
85 'CreateAccount' => $params['nocreate'],
86 'AutoBlock' => $params['autoblock'],
87 'DisableEmail' => $params['noemail'],
88 'HideUser' => $params['hidename'],
89 'DisableUTEdit' => !$params['allowusertalk'],
90 'Reblock' => $params['reblock'],
91 'Watch' => $params['watchuser'],
92 'Confirm' => true,
93 );
94
95 $retval = SpecialBlock::processForm( $data, $this->getContext() );
96 if ( $retval !== true ) {
97 // We don't care about multiple errors, just report one of them
98 $this->dieUsageMsg( $retval );
99 }
100
101 list( $target, /*...*/ ) = SpecialBlock::getTargetAndType( $params['user'] );
102 $res['user'] = $params['user'];
103 $res['userID'] = $target instanceof User ? $target->getId() : 0;
104
105 $block = Block::newFromTarget( $target, null, true );
106 if ( $block instanceof Block ) {
107 $res['expiry'] = $wgContLang->formatExpiry( $block->mExpiry, TS_ISO_8601, 'infinite' );
108 $res['id'] = $block->getId();
109 } else {
110 # should be unreachable
111 $res['expiry'] = '';
112 $res['id'] = '';
113 }
114
115 $res['reason'] = $params['reason'];
116 if ( $params['anononly'] ) {
117 $res['anononly'] = '';
118 }
119 if ( $params['nocreate'] ) {
120 $res['nocreate'] = '';
121 }
122 if ( $params['autoblock'] ) {
123 $res['autoblock'] = '';
124 }
125 if ( $params['noemail'] ) {
126 $res['noemail'] = '';
127 }
128 if ( $params['hidename'] ) {
129 $res['hidename'] = '';
130 }
131 if ( $params['allowusertalk'] ) {
132 $res['allowusertalk'] = '';
133 }
134 if ( $params['watchuser'] ) {
135 $res['watchuser'] = '';
136 }
137
138 $this->getResult()->addValue( null, $this->getModuleName(), $res );
139 }
140
141 public function mustBePosted() {
142 return true;
143 }
144
145 public function isWriteMode() {
146 return true;
147 }
148
149 public function getAllowedParams() {
150 return array(
151 'user' => array(
152 ApiBase::PARAM_TYPE => 'string',
153 ApiBase::PARAM_REQUIRED => true
154 ),
155 'expiry' => 'never',
156 'reason' => '',
157 'anononly' => false,
158 'nocreate' => false,
159 'autoblock' => false,
160 'noemail' => false,
161 'hidename' => false,
162 'allowusertalk' => false,
163 'reblock' => false,
164 'watchuser' => false,
165 );
166 }
167
168 public function needsToken() {
169 return 'csrf';
170 }
171
172 protected function getExamplesMessages() {
173 return array(
174 'action=block&user=192.0.2.5&expiry=3%20days&reason=First%20strike&token=123ABC'
175 => 'apihelp-block-example-ip-simple',
176 'action=block&user=Vandal&expiry=never&reason=Vandalism&nocreate=&autoblock=&noemail=&token=123ABC'
177 => 'apihelp-block-example-user-complex',
178 );
179 }
180
181 public function getHelpUrls() {
182 return 'https://www.mediawiki.org/wiki/API:Block';
183 }
184 }