opensupports/server/controllers/system/delete-all-users.php

50 lines
1.2 KiB
PHP
Raw Normal View History

<?php
use RedBeanPHP\Facade as RedBean;
2017-04-18 02:09:16 +02:00
/**
* @api {post} /system/delete-all-users Delete all users in database.
*
* @apiName Delete all users
*
* @apiGroup system
*
* @apiDescription This path delete all users in database.
*
* @apiPermission Staff level 3
*
* @apiParam {string} password The password of the current staff.
*
* @apiSuccess {Object} data
*
*/
class DeleteAllUsersController extends Controller {
const PATH = '/delete-all-users';
const METHOD = 'POST';
public function validations() {
return [
'permission' => 'staff_3',
'requestData' => []
];
}
public function handler() {
$password = Controller::request('password');
if(!Hashing::verifyPassword($password, Controller::getLoggedUser()->password)) {
Response::respondError(ERRORS::INVALID_PASSWORD);
return;
}
Redbean::exec('SET FOREIGN_KEY_CHECKS = 0;');
RedBean::wipe(SessionCookie::TABLE);
RedBean::wipe(User::TABLE);
RedBean::wipe(Ticket::TABLE);
RedBean::wipe(Ticketevent::TABLE);
RedBean::wipe('ticket_user');
Redbean::exec('SET FOREIGN_KEY_CHECKS = 1;');
Response::respondSuccess();
}
}