user_mgmt.go 3.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126
  1. package logic
  2. import (
  3. "encoding/json"
  4. "github.com/gravitl/netmaker/database"
  5. "github.com/gravitl/netmaker/models"
  6. )
  7. // Pre-Define Permission Templates for default Roles
  8. var SuperAdminPermissionTemplate = models.UserRolePermissionTemplate{
  9. ID: models.SuperAdminRole,
  10. Default: true,
  11. FullAccess: true,
  12. }
  13. var AdminPermissionTemplate = models.UserRolePermissionTemplate{
  14. ID: models.AdminRole,
  15. Default: true,
  16. FullAccess: true,
  17. }
  18. var GetFilteredNodesByUserAccess = func(user models.User, nodes []models.Node) (filteredNodes []models.Node) {
  19. return
  20. }
  21. var CreateRole = func(r models.UserRolePermissionTemplate) error {
  22. return nil
  23. }
  24. var DeleteRole = func(r models.UserRoleID, force bool) error {
  25. return nil
  26. }
  27. var FilterNetworksByRole = func(allnetworks []models.Network, user models.User) []models.Network {
  28. return allnetworks
  29. }
  30. var IsGroupsValid = func(groups map[models.UserGroupID]struct{}) error {
  31. return nil
  32. }
  33. var IsGroupValid = func(groupID models.UserGroupID) error {
  34. return nil
  35. }
  36. var IsNetworkRolesValid = func(networkRoles map[models.NetworkID]map[models.UserRoleID]struct{}) error {
  37. return nil
  38. }
  39. var MigrateUserRoleAndGroups = func(u models.User) {
  40. }
  41. var UpdateUserGwAccess = func(currentUser, changeUser models.User) {}
  42. var UpdateRole = func(r models.UserRolePermissionTemplate) error { return nil }
  43. var InitialiseRoles = userRolesInit
  44. var IntialiseGroups = func() {}
  45. var DeleteNetworkRoles = func(netID string) {}
  46. var CreateDefaultNetworkRolesAndGroups = func(netID models.NetworkID) {}
  47. var CreateDefaultUserPolicies = func(netID models.NetworkID) {}
  48. var GetUserGroupsInNetwork = func(netID models.NetworkID) (networkGrps map[models.UserGroupID]models.UserGroup) { return }
  49. var AddGlobalNetRolesToAdmins = func(u models.User) {}
  50. // GetRole - fetches role template by id
  51. func GetRole(roleID models.UserRoleID) (models.UserRolePermissionTemplate, error) {
  52. // check if role already exists
  53. data, err := database.FetchRecord(database.USER_PERMISSIONS_TABLE_NAME, roleID.String())
  54. if err != nil {
  55. return models.UserRolePermissionTemplate{}, err
  56. }
  57. ur := models.UserRolePermissionTemplate{}
  58. err = json.Unmarshal([]byte(data), &ur)
  59. if err != nil {
  60. return ur, err
  61. }
  62. return ur, nil
  63. }
  64. // ListPlatformRoles - lists user platform roles permission templates
  65. func ListPlatformRoles() ([]models.UserRolePermissionTemplate, error) {
  66. data, err := database.FetchRecords(database.USER_PERMISSIONS_TABLE_NAME)
  67. if err != nil && !database.IsEmptyRecord(err) {
  68. return []models.UserRolePermissionTemplate{}, err
  69. }
  70. userRoles := []models.UserRolePermissionTemplate{}
  71. for _, dataI := range data {
  72. userRole := models.UserRolePermissionTemplate{}
  73. err := json.Unmarshal([]byte(dataI), &userRole)
  74. if err != nil {
  75. continue
  76. }
  77. if userRole.NetworkID != "" {
  78. continue
  79. }
  80. userRoles = append(userRoles, userRole)
  81. }
  82. return userRoles, nil
  83. }
  84. func GetUserGrpMap() map[models.UserGroupID]map[string]struct{} {
  85. grpUsersMap := make(map[models.UserGroupID]map[string]struct{})
  86. users, _ := GetUsersDB()
  87. for _, user := range users {
  88. for gID := range user.UserGroups {
  89. if grpUsers, ok := grpUsersMap[gID]; ok {
  90. grpUsers[user.UserName] = struct{}{}
  91. grpUsersMap[gID] = grpUsers
  92. } else {
  93. grpUsersMap[gID] = make(map[string]struct{})
  94. grpUsersMap[gID][user.UserName] = struct{}{}
  95. }
  96. }
  97. }
  98. return grpUsersMap
  99. }
  100. func userRolesInit() {
  101. d, _ := json.Marshal(SuperAdminPermissionTemplate)
  102. database.Insert(SuperAdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  103. d, _ = json.Marshal(AdminPermissionTemplate)
  104. database.Insert(AdminPermissionTemplate.ID.String(), string(d), database.USER_PERMISSIONS_TABLE_NAME)
  105. }