Security: Sync from Public / sync-from-public (push) Has been cancelled
Test: Benchmark Nightly / build (push) Has been cancelled
Test: Benchmark Nightly / Notify Cats on failure (push) Has been cancelled
CI: Python / Checks (push) Has been cancelled
Test: Evals Python / Workflow Comparison Python (push) Has been cancelled
Util: Check Docs URLs / check-docs-urls (push) Has been cancelled
Test: Visual Storybook / Cloudflare Pages (push) Has been cancelled
Test: E2E Performance / build-and-test-performance (push) Has been cancelled
Test: Workflows Nightly / Run Workflow Tests (push) Has been cancelled
Util: Cleanup CI Docker Images / Delete stale CI images (push) Has been cancelled
Test: Benchmark Destroy Env / build (push) Has been cancelled
Util: Update Node Popularity / update-popularity (push) Has been cancelled
Test: E2E Coverage Weekly / Coverage Tests (push) Has been cancelled
65 lines
1.6 KiB
TypeScript
65 lines
1.6 KiB
TypeScript
import { UserRepository } from '@n8n/db';
|
|
import { Command } from '@n8n/decorators';
|
|
import { Container } from '@n8n/di';
|
|
import { z } from 'zod';
|
|
|
|
import { BaseCommand } from '../base-command';
|
|
|
|
const flagsSchema = z.object({
|
|
email: z.string().describe('The email of the user to disable the MFA authentication'),
|
|
});
|
|
|
|
@Command({
|
|
name: 'mfa:disable',
|
|
description: 'Disable MFA authentication for a user',
|
|
examples: ['--email=johndoe@example.com'],
|
|
flagsSchema,
|
|
})
|
|
export class DisableMFACommand extends BaseCommand<z.infer<typeof flagsSchema>> {
|
|
async run(): Promise<void> {
|
|
const { flags } = this;
|
|
|
|
if (!flags.email) {
|
|
this.logger.info('An email with --email must be provided');
|
|
return;
|
|
}
|
|
|
|
const repository = Container.get(UserRepository);
|
|
const user = await repository.findOneBy({ email: flags.email });
|
|
|
|
if (!user) {
|
|
this.reportUserDoesNotExistError(flags.email);
|
|
return;
|
|
}
|
|
|
|
if (
|
|
user.mfaSecret === null &&
|
|
Array.isArray(user.mfaRecoveryCodes) &&
|
|
user.mfaRecoveryCodes.length === 0 &&
|
|
!user.mfaEnabled
|
|
) {
|
|
this.reportUserDoesNotExistError(flags.email);
|
|
return;
|
|
}
|
|
|
|
Object.assign(user, { mfaSecret: null, mfaRecoveryCodes: [], mfaEnabled: false });
|
|
|
|
await repository.save(user);
|
|
|
|
this.reportSuccess(flags.email);
|
|
}
|
|
|
|
async catch(error: Error) {
|
|
this.logger.error('An error occurred while disabling MFA in account');
|
|
this.logger.error(error.message);
|
|
}
|
|
|
|
private reportSuccess(email: string) {
|
|
this.logger.info(`Successfully disabled MFA for user with email: ${email}`);
|
|
}
|
|
|
|
private reportUserDoesNotExistError(email: string) {
|
|
this.logger.info(`User with email: ${email} does not exist`);
|
|
}
|
|
}
|