user_mgmt.go 3.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127
  1. package logic
  2. import (
  3. "encoding/json"
  4. "github.com/gravitl/netmaker/database"
  5. "github.com/gravitl/netmaker/models"
  6. )
  7. // Pre-Define Permission Templates for default Roles
  8. var SuperAdminPermissionTemplate = models.UserRolePermissionTemplate{
  9. ID: models.SuperAdminRole,
  10. Default: true,
  11. FullAccess: true,
  12. }
  13. var AdminPermissionTemplate = models.UserRolePermissionTemplate{
  14. ID: models.AdminRole,
  15. Default: true,
  16. FullAccess: true,
  17. }
  18. var GetFilteredNodesByUserAccess = func(user models.User, nodes []models.Node) (filteredNodes []models.Node) {
  19. return
  20. }
  21. var CreateRole = func(r models.UserRolePermissionTemplate) error {
  22. return nil
  23. }
  24. var DeleteRole = func(r models.UserRoleID, force bool) error {
  25. return nil
  26. }
  27. var FilterNetworksByRole = func(allnetworks []models.Network, user models.User) []models.Network {
  28. return allnetworks
  29. }
  30. var IsGroupsValid = func(groups map[models.UserGroupID]struct{}) error {
  31. return nil
  32. }
  33. var IsGroupValid = func(groupID models.UserGroupID) error {
  34. return nil
  35. }
  36. var IsNetworkRolesValid = func(networkRoles map[models.NetworkID]map[models.UserRoleID]struct{}) error {
  37. return nil
  38. }
  39. var MigrateUserRoleAndGroups = func(u models.User) {
  40. }
  41. var UpdateUserGwAccess = func(currentUser, changeUser models.User) {}
  42. var UpdateRole = func(r models.UserRolePermissionTemplate) error { return nil }
  43. var InitialiseRoles = userRolesInit
  44. var IntialiseGroups = func() {}
  45. var DeleteNetworkRoles = func(netID string) {}
  46. var CreateDefaultNetworkRolesAndGroups = func(netID models.NetworkID) {}
  47. var CreateDefaultUserPolicies = func(netID models.NetworkID) {}
  48. var GetUserGroupsInNetwork = func(netID models.NetworkID) (networkGrps map[models.UserGroupID]models.UserGroup) { return }
  49. var GetUserGroup = func(groupId models.UserGroupID) (userGrps models.UserGroup, err error) { return }
  50. var AddGlobalNetRolesToAdmins = func(u models.User) {}
  51. // GetRole - fetches role template by id
  52. func GetRole(roleID models.UserRoleID) (models.UserRolePermissionTemplate, error) {
  53. // check if role already exists
  54. data, err := database.FetchRecord(database.USER_PERMISSIONS_TABLE_NAME, roleID.String())
  55. if err != nil {
  56. return models.UserRolePermissionTemplate{}, err
  57. }
  58. ur := models.UserRolePermissionTemplate{}
  59. err = json.Unmarshal([]byte(data), &ur)
  60. if err != nil {
  61. return ur, err
  62. }
  63. return ur, nil
  64. }
  65. // ListPlatformRoles - lists user platform roles permission templates
  66. func ListPlatformRoles() ([]models.UserRolePermissionTemplate, error) {
  67. data, err := database.FetchRecords(database.USER_PERMISSIONS_TABLE_NAME)
  68. if err != nil && !database.IsEmptyRecord(err) {
  69. return []models.UserRolePermissionTemplate{}, err
  70. }
  71. userRoles := []models.UserRolePermissionTemplate{}
  72. for _, dataI := range data {
  73. userRole := models.UserRolePermissionTemplate{}
  74. err := json.Unmarshal([]byte(dataI), &userRole)
  75. if err != nil {
  76. continue
  77. }
  78. if userRole.NetworkID != "" {
  79. continue
  80. }
  81. userRoles = append(userRoles, userRole)
  82. }
  83. return userRoles, nil
  84. }
  85. func GetUserGrpMap() map[models.UserGroupID]map[string]struct{} {
  86. grpUsersMap := make(map[models.UserGroupID]map[string]struct{})
  87. users, _ := GetUsersDB()
  88. for _, user := range users {
  89. for gID := range user.UserGroups {
  90. if grpUsers, ok := grpUsersMap[gID]; ok {
  91. grpUsers[user.UserName] = struct{}{}
  92. grpUsersMap[gID] = grpUsers
  93. } else {
  94. grpUsersMap[gID] = make(map[string]struct{})
  95. grpUsersMap[gID][user.UserName] = struct{}{}
  96. }
  97. }
  98. }
  99. return grpUsersMap
  100. }
  101. func userRolesInit() {
  102. d, _ := json.Marshal(SuperAdminPermissionTemplate)
  103. database.Insert(SuperAdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  104. d, _ = json.Marshal(AdminPermissionTemplate)
  105. database.Insert(AdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  106. }