dbinstance_privileges.go 7.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209
  1. // Copyright 2019 Yunion
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package models
  15. import (
  16. "context"
  17. "yunion.io/x/cloudmux/pkg/cloudprovider"
  18. "yunion.io/x/jsonutils"
  19. "yunion.io/x/pkg/errors"
  20. "yunion.io/x/pkg/util/compare"
  21. "yunion.io/x/sqlchemy"
  22. api "yunion.io/x/onecloud/pkg/apis/compute"
  23. "yunion.io/x/onecloud/pkg/cloudcommon/db"
  24. "yunion.io/x/onecloud/pkg/cloudcommon/db/lockman"
  25. "yunion.io/x/onecloud/pkg/cloudcommon/validators"
  26. "yunion.io/x/onecloud/pkg/httperrors"
  27. "yunion.io/x/onecloud/pkg/mcclient"
  28. )
  29. // +onecloud:swagger-gen-model-singular=dbinstanceprivilege
  30. // +onecloud:swagger-gen-model-plural=dbinstanceprivileges
  31. type SDBInstancePrivilegeManager struct {
  32. db.SResourceBaseManager
  33. db.SExternalizedResourceBaseManager
  34. }
  35. var DBInstancePrivilegeManager *SDBInstancePrivilegeManager
  36. func init() {
  37. DBInstancePrivilegeManager = &SDBInstancePrivilegeManager{
  38. SResourceBaseManager: db.NewResourceBaseManager(
  39. SDBInstancePrivilege{},
  40. "dbinstanceprivileges_tbl",
  41. "dbinstanceprivilege",
  42. "dbinstanceprivileges",
  43. ),
  44. }
  45. DBInstancePrivilegeManager.SetVirtualObject(DBInstancePrivilegeManager)
  46. }
  47. type SDBInstancePrivilege struct {
  48. db.SResourceBase
  49. db.SExternalizedResourceBase
  50. Id string `width:"128" charset:"ascii" primary:"true" list:"user"`
  51. Privilege string `width:"32" charset:"ascii" nullable:"false" list:"user" create:"required"`
  52. DBInstanceaccountId string `width:"36" charset:"ascii" name:"dbinstanceaccount_id" nullable:"false" list:"user" create:"required"`
  53. DBInstancedatabaseId string `width:"36" charset:"ascii" name:"dbinstancedatabase_id" nullable:"false" list:"user" create:"required"`
  54. }
  55. func (self *SDBInstancePrivilege) BeforeInsert() {
  56. if len(self.Id) == 0 {
  57. self.Id = db.DefaultUUIDGenerator()
  58. }
  59. }
  60. func (manager *SDBInstancePrivilegeManager) CreateByInsertOrUpdate() bool {
  61. return false
  62. }
  63. func (manager *SDBInstancePrivilegeManager) GetContextManagers() [][]db.IModelManager {
  64. return [][]db.IModelManager{
  65. {DBInstanceAccountManager, DBInstanceDatabaseManager},
  66. }
  67. }
  68. func (self *SDBInstancePrivilege) GetDBInstanceAccount() (*SDBInstanceAccount, error) {
  69. account, err := db.FetchById(DBInstanceAccountManager, self.DBInstanceaccountId)
  70. if err != nil {
  71. return nil, err
  72. }
  73. return account.(*SDBInstanceAccount), nil
  74. }
  75. func (self *SDBInstancePrivilege) GetDBInstanceDatabase() (*SDBInstanceDatabase, error) {
  76. database, err := db.FetchById(DBInstanceDatabaseManager, self.DBInstancedatabaseId)
  77. if err != nil {
  78. return nil, err
  79. }
  80. return database.(*SDBInstanceDatabase), nil
  81. }
  82. func (self *SDBInstancePrivilege) GetPrivilege() (api.DBInstancePrivilege, error) {
  83. out := api.DBInstancePrivilege{}
  84. database, err := self.GetDBInstanceDatabase()
  85. if err != nil {
  86. return out, err
  87. }
  88. out.Database = database.Name
  89. out.DBInstancedatabaseId = database.Id
  90. account, err := self.GetDBInstanceAccount()
  91. if err != nil {
  92. return out, err
  93. }
  94. out.Account = account.Name
  95. out.Privileges = self.Privilege
  96. return out, nil
  97. }
  98. func (manager *SDBInstancePrivilegeManager) ListItemFilter(
  99. ctx context.Context,
  100. q *sqlchemy.SQuery,
  101. userCred mcclient.TokenCredential,
  102. query api.DBInstancePrivilegeListInput,
  103. ) (*sqlchemy.SQuery, error) {
  104. q, err := manager.SResourceBaseManager.ListItemFilter(ctx, q, userCred, query.ResourceBaseListInput)
  105. if err != nil {
  106. return nil, errors.Wrap(err, "SResourceBaseManager.ListItemFilter")
  107. }
  108. q, err = manager.SExternalizedResourceBaseManager.ListItemFilter(ctx, q, userCred, query.ExternalizedResourceBaseListInput)
  109. if err != nil {
  110. return nil, errors.Wrap(err, "SExternalizedResourceBaseManager.ListItemFilter")
  111. }
  112. if len(query.Privilege) > 0 {
  113. q = q.In("privilege", query.Privilege)
  114. }
  115. data := jsonutils.Marshal(query).(*jsonutils.JSONDict)
  116. return validators.ApplyModelFilters(ctx, q, data, []*validators.ModelFilterOptions{
  117. {Key: "dbinstanceaccount", ModelKeyword: "dbinstanceaccount", OwnerId: userCred},
  118. {Key: "dbinstancedatabase", ModelKeyword: "dbinstancedatabase", OwnerId: userCred},
  119. })
  120. }
  121. func (manager *SDBInstancePrivilegeManager) ValidateCreateData(ctx context.Context, userCred mcclient.TokenCredential, ownerId mcclient.IIdentityProvider, query jsonutils.JSONObject, data *jsonutils.JSONDict) (*jsonutils.JSONDict, error) {
  122. return nil, httperrors.NewNotImplementedError("Not Implemented")
  123. }
  124. func (manager *SDBInstancePrivilegeManager) SyncDBInstanceAccountPrivileges(ctx context.Context, userCred mcclient.TokenCredential, account *SDBInstanceAccount, cloudPrivileges []cloudprovider.ICloudDBInstanceAccountPrivilege) compare.SyncResult {
  125. lockman.LockRawObject(ctx, "dbinstance-privileges", account.Id)
  126. defer lockman.ReleaseRawObject(ctx, "dbinstance-privileges", account.Id)
  127. result := compare.SyncResult{}
  128. dbPrivileges, err := account.GetDBInstancePrivileges()
  129. if err != nil {
  130. result.Error(err)
  131. return result
  132. }
  133. removed := make([]SDBInstancePrivilege, 0)
  134. commondb := make([]SDBInstancePrivilege, 0)
  135. commonext := make([]cloudprovider.ICloudDBInstanceAccountPrivilege, 0)
  136. added := make([]cloudprovider.ICloudDBInstanceAccountPrivilege, 0)
  137. if err := compare.CompareSets(dbPrivileges, cloudPrivileges, &removed, &commondb, &commonext, &added); err != nil {
  138. result.Error(err)
  139. return result
  140. }
  141. for i := 0; i < len(removed); i++ {
  142. err := removed[i].Delete(ctx, userCred)
  143. if err != nil {
  144. result.DeleteError(err)
  145. } else {
  146. result.Delete()
  147. }
  148. }
  149. for i := 0; i < len(added); i++ {
  150. err = manager.newFromCloudPrivileges(ctx, userCred, account, added[i])
  151. if err != nil {
  152. result.AddError(err)
  153. } else {
  154. result.Add()
  155. }
  156. }
  157. return result
  158. }
  159. func (manager *SDBInstancePrivilegeManager) newFromCloudPrivileges(ctx context.Context, userCred mcclient.TokenCredential, account *SDBInstanceAccount, ext cloudprovider.ICloudDBInstanceAccountPrivilege) error {
  160. lockman.LockClass(ctx, manager, db.GetLockClassKey(manager, userCred))
  161. defer lockman.ReleaseClass(ctx, manager, db.GetLockClassKey(manager, userCred))
  162. privilege := SDBInstancePrivilege{}
  163. privilege.SetModelManager(manager, &privilege)
  164. privilege.DBInstanceaccountId = account.Id
  165. privilege.ExternalId = ext.GetGlobalId()
  166. privilege.Privilege = ext.GetPrivilege()
  167. dbName := ext.GetDBName()
  168. database, err := account.GetDBInstanceDatabaseByName(dbName)
  169. if err != nil {
  170. return errors.Wrapf(err, "account.GetDBInstanceDatabaseByName(%s)", dbName)
  171. }
  172. privilege.DBInstancedatabaseId = database.Id
  173. err = manager.TableSpec().Insert(ctx, &privilege)
  174. if err != nil {
  175. return errors.Wrapf(err, "newFromCloudDBInstanceDatabase.Insert")
  176. }
  177. return nil
  178. }