UsersController.java
- package edu.ucsb.cs156.example.controllers;
- import com.fasterxml.jackson.core.JsonProcessingException;
- import com.fasterxml.jackson.databind.ObjectMapper;
- import org.springframework.beans.factory.annotation.Autowired;
- import org.springframework.http.ResponseEntity;
- import org.springframework.security.access.prepost.PreAuthorize;
- import org.springframework.web.bind.annotation.GetMapping;
- import org.springframework.web.bind.annotation.RequestMapping;
- import org.springframework.web.bind.annotation.RestController;
- import edu.ucsb.cs156.example.entities.User;
- import edu.ucsb.cs156.example.repositories.UserRepository;
- import io.swagger.v3.oas.annotations.Operation;
- import io.swagger.v3.oas.annotations.tags.Tag;
- /**
- * This is a REST controller for getting information about the users.
- *
- * These endpoints are only accessible to users with the role "ROLE_ADMIN".
- */
- @Tag(name="User information (admin only)")
- @RequestMapping("/api/admin/users")
- @RestController
- public class UsersController extends ApiController {
- @Autowired
- UserRepository userRepository;
- @Autowired
- ObjectMapper mapper;
- /**
- * This method returns a list of all users. Accessible only to users with the role "ROLE_ADMIN".
- * @return a list of all users
- * @throws JsonProcessingException if there is an error processing the JSON
- */
- @Operation(summary= "Get a list of all users")
- @PreAuthorize("hasRole('ROLE_ADMIN')")
- @GetMapping("")
- public ResponseEntity<String> users()
- throws JsonProcessingException {
- Iterable<User> users = userRepository.findAll();
- String body = mapper.writeValueAsString(users);
- return ResponseEntity.ok().body(body);
- }
- }