user_mgmt.go 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100
  1. package logic
  2. import (
  3. "encoding/json"
  4. "github.com/gravitl/netmaker/database"
  5. "github.com/gravitl/netmaker/models"
  6. )
  7. // Pre-Define Permission Templates for default Roles
  8. var SuperAdminPermissionTemplate = models.UserRolePermissionTemplate{
  9. ID: models.SuperAdminRole,
  10. Default: true,
  11. FullAccess: true,
  12. }
  13. var AdminPermissionTemplate = models.UserRolePermissionTemplate{
  14. ID: models.AdminRole,
  15. Default: true,
  16. FullAccess: true,
  17. }
  18. var GetFilteredNodesByUserAccess = func(user models.User, nodes []models.Node) (filteredNodes []models.Node) {
  19. return
  20. }
  21. var CreateRole = func(r models.UserRolePermissionTemplate) error {
  22. return nil
  23. }
  24. var DeleteRole = func(r models.UserRoleID, force bool) error {
  25. return nil
  26. }
  27. var FilterNetworksByRole = func(allnetworks []models.Network, user models.User) []models.Network {
  28. return allnetworks
  29. }
  30. var IsGroupsValid = func(groups map[models.UserGroupID]struct{}) error {
  31. return nil
  32. }
  33. var IsGroupValid = func(groupID models.UserGroupID) error {
  34. return nil
  35. }
  36. var IsNetworkRolesValid = func(networkRoles map[models.NetworkID]map[models.UserRoleID]struct{}) error {
  37. return nil
  38. }
  39. var UpdateUserGwAccess = func(currentUser, changeUser models.User) {}
  40. var UpdateRole = func(r models.UserRolePermissionTemplate) error { return nil }
  41. var InitialiseRoles = userRolesInit
  42. var DeleteNetworkRoles = func(netID string) {}
  43. var CreateDefaultNetworkRolesAndGroups = func(netID models.NetworkID) {}
  44. var CreateDefaultUserPolicies = func(netID models.NetworkID) {}
  45. // GetRole - fetches role template by id
  46. func GetRole(roleID models.UserRoleID) (models.UserRolePermissionTemplate, error) {
  47. // check if role already exists
  48. data, err := database.FetchRecord(database.USER_PERMISSIONS_TABLE_NAME, roleID.String())
  49. if err != nil {
  50. return models.UserRolePermissionTemplate{}, err
  51. }
  52. ur := models.UserRolePermissionTemplate{}
  53. err = json.Unmarshal([]byte(data), &ur)
  54. if err != nil {
  55. return ur, err
  56. }
  57. return ur, nil
  58. }
  59. // ListPlatformRoles - lists user platform roles permission templates
  60. func ListPlatformRoles() ([]models.UserRolePermissionTemplate, error) {
  61. data, err := database.FetchRecords(database.USER_PERMISSIONS_TABLE_NAME)
  62. if err != nil && !database.IsEmptyRecord(err) {
  63. return []models.UserRolePermissionTemplate{}, err
  64. }
  65. userRoles := []models.UserRolePermissionTemplate{}
  66. for _, dataI := range data {
  67. userRole := models.UserRolePermissionTemplate{}
  68. err := json.Unmarshal([]byte(dataI), &userRole)
  69. if err != nil {
  70. continue
  71. }
  72. if userRole.NetworkID != "" {
  73. continue
  74. }
  75. userRoles = append(userRoles, userRole)
  76. }
  77. return userRoles, nil
  78. }
  79. func userRolesInit() {
  80. d, _ := json.Marshal(SuperAdminPermissionTemplate)
  81. database.Insert(SuperAdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  82. d, _ = json.Marshal(AdminPermissionTemplate)
  83. database.Insert(AdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  84. }