user_mgmt.go 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100
  1. package logic
  2. import (
  3. "encoding/json"
  4. "github.com/gravitl/netmaker/database"
  5. "github.com/gravitl/netmaker/models"
  6. )
  7. // Pre-Define Permission Templates for default Roles
  8. var SuperAdminPermissionTemplate = models.UserRolePermissionTemplate{
  9. ID: models.SuperAdminRole,
  10. Default: true,
  11. FullAccess: true,
  12. }
  13. var AdminPermissionTemplate = models.UserRolePermissionTemplate{
  14. ID: models.AdminRole,
  15. Default: true,
  16. FullAccess: true,
  17. }
  18. var GetFilteredNodesByUserAccess = func(user models.User, nodes []models.Node) (filteredNodes []models.Node) {
  19. return
  20. }
  21. var IsUserAllowedAccessToNetwork = func(user models.User, networkID models.NetworkID) bool {
  22. return false
  23. }
  24. var CreateRole = func(r models.UserRolePermissionTemplate) error {
  25. return nil
  26. }
  27. var DeleteRole = func(r models.UserRoleID, force bool) error {
  28. return nil
  29. }
  30. var FilterNetworksByRole = func(allnetworks []models.Network, user models.User) []models.Network {
  31. return allnetworks
  32. }
  33. var IsGroupsValid = func(groups map[models.UserGroupID]struct{}) error {
  34. return nil
  35. }
  36. var IsNetworkRolesValid = func(networkRoles map[models.NetworkID]map[models.UserRoleID]struct{}) error {
  37. return nil
  38. }
  39. var UpdateUserGwAccess = func(currentUser, changeUser models.User) {}
  40. var UpdateRole = func(r models.UserRolePermissionTemplate) error { return nil }
  41. var InitialiseRoles = userRolesInit
  42. var DeleteNetworkRoles = func(netID string) {}
  43. var CreateDefaultNetworkRolesAndGroups = func(netID models.NetworkID) {}
  44. // GetRole - fetches role template by id
  45. func GetRole(roleID models.UserRoleID) (models.UserRolePermissionTemplate, error) {
  46. // check if role already exists
  47. data, err := database.FetchRecord(database.USER_PERMISSIONS_TABLE_NAME, roleID.String())
  48. if err != nil {
  49. return models.UserRolePermissionTemplate{}, err
  50. }
  51. ur := models.UserRolePermissionTemplate{}
  52. err = json.Unmarshal([]byte(data), &ur)
  53. if err != nil {
  54. return ur, err
  55. }
  56. return ur, nil
  57. }
  58. // ListPlatformRoles - lists user platform roles permission templates
  59. func ListPlatformRoles() ([]models.UserRolePermissionTemplate, error) {
  60. data, err := database.FetchRecords(database.USER_PERMISSIONS_TABLE_NAME)
  61. if err != nil && !database.IsEmptyRecord(err) {
  62. return []models.UserRolePermissionTemplate{}, err
  63. }
  64. userRoles := []models.UserRolePermissionTemplate{}
  65. for _, dataI := range data {
  66. userRole := models.UserRolePermissionTemplate{}
  67. err := json.Unmarshal([]byte(dataI), &userRole)
  68. if err != nil {
  69. continue
  70. }
  71. if userRole.NetworkID != "" {
  72. continue
  73. }
  74. userRoles = append(userRoles, userRole)
  75. }
  76. return userRoles, nil
  77. }
  78. func userRolesInit() {
  79. d, _ := json.Marshal(SuperAdminPermissionTemplate)
  80. database.Insert(SuperAdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  81. d, _ = json.Marshal(AdminPermissionTemplate)
  82. database.Insert(AdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  83. }