You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

SearchTemplatesAction.java 11KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241
  1. /*
  2. * SonarQube
  3. * Copyright (C) 2009-2024 SonarSource SA
  4. * mailto:info AT sonarsource DOT com
  5. *
  6. * This program is free software; you can redistribute it and/or
  7. * modify it under the terms of the GNU Lesser General Public
  8. * License as published by the Free Software Foundation; either
  9. * version 3 of the License, or (at your option) any later version.
  10. *
  11. * This program is distributed in the hope that it will be useful,
  12. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
  14. * Lesser General Public License for more details.
  15. *
  16. * You should have received a copy of the GNU Lesser General Public License
  17. * along with this program; if not, write to the Free Software Foundation,
  18. * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
  19. */
  20. package org.sonar.server.permission.ws.template;
  21. import com.google.common.collect.Table;
  22. import com.google.common.collect.TreeBasedTable;
  23. import java.util.List;
  24. import java.util.Locale;
  25. import javax.annotation.CheckForNull;
  26. import javax.annotation.Nullable;
  27. import org.sonar.api.resources.Qualifiers;
  28. import org.sonar.api.server.ws.Request;
  29. import org.sonar.api.server.ws.Response;
  30. import org.sonar.api.server.ws.WebService;
  31. import org.sonar.api.server.ws.WebService.Param;
  32. import org.sonar.core.i18n.I18n;
  33. import org.sonar.db.DbClient;
  34. import org.sonar.db.DbSession;
  35. import org.sonar.db.permission.template.CountByTemplateAndPermissionDto;
  36. import org.sonar.db.permission.template.PermissionTemplateCharacteristicDto;
  37. import org.sonar.db.permission.template.PermissionTemplateDto;
  38. import org.sonar.server.common.permission.DefaultTemplatesResolver;
  39. import org.sonar.server.common.permission.DefaultTemplatesResolver.ResolvedDefaultTemplates;
  40. import org.sonar.server.permission.PermissionService;
  41. import org.sonar.server.permission.ws.PermissionsWsAction;
  42. import org.sonar.server.user.UserSession;
  43. import org.sonarqube.ws.Permissions;
  44. import org.sonarqube.ws.Permissions.Permission;
  45. import org.sonarqube.ws.Permissions.PermissionTemplate;
  46. import org.sonarqube.ws.Permissions.SearchTemplatesWsResponse;
  47. import org.sonarqube.ws.Permissions.SearchTemplatesWsResponse.TemplateIdQualifier;
  48. import static java.util.Optional.ofNullable;
  49. import static org.sonar.api.utils.DateUtils.formatDateTime;
  50. import static org.sonar.server.permission.PermissionPrivilegeChecker.checkGlobalAdmin;
  51. import static org.sonar.server.permission.ws.template.SearchTemplatesData.builder;
  52. import static org.sonar.server.ws.WsUtils.writeProtobuf;
  53. public class SearchTemplatesAction implements PermissionsWsAction {
  54. private static final String PROPERTY_PREFIX = "projects_role.";
  55. private static final String DESCRIPTION_SUFFIX = ".desc";
  56. private final DbClient dbClient;
  57. private final UserSession userSession;
  58. private final I18n i18n;
  59. private final DefaultTemplatesResolver defaultTemplatesResolver;
  60. private final PermissionService permissionService;
  61. public SearchTemplatesAction(DbClient dbClient, UserSession userSession, I18n i18n, DefaultTemplatesResolver defaultTemplatesResolver,
  62. PermissionService permissionService) {
  63. this.dbClient = dbClient;
  64. this.userSession = userSession;
  65. this.i18n = i18n;
  66. this.defaultTemplatesResolver = defaultTemplatesResolver;
  67. this.permissionService = permissionService;
  68. }
  69. @Override
  70. public void define(WebService.NewController context) {
  71. context.createAction("search_templates")
  72. .setDescription("List permission templates.<br />" +
  73. "Requires the following permission: 'Administer System'.")
  74. .setResponseExample(getClass().getResource("search_templates-example-without-views.json"))
  75. .setSince("5.2")
  76. .addSearchQuery("defau", "permission template names")
  77. .setHandler(this);
  78. }
  79. @Override
  80. public void handle(Request wsRequest, Response wsResponse) throws Exception {
  81. try (DbSession dbSession = dbClient.openSession(false)) {
  82. SearchTemplatesRequest request = new SearchTemplatesRequest().setQuery(wsRequest.param(Param.TEXT_QUERY));
  83. checkGlobalAdmin(userSession);
  84. SearchTemplatesWsResponse searchTemplatesWsResponse = buildResponse(load(dbSession, request));
  85. writeProtobuf(searchTemplatesWsResponse, wsRequest, wsResponse);
  86. }
  87. }
  88. private static void buildDefaultTemplatesResponse(SearchTemplatesWsResponse.Builder response, SearchTemplatesData data) {
  89. TemplateIdQualifier.Builder templateUuidQualifierBuilder = TemplateIdQualifier.newBuilder();
  90. ResolvedDefaultTemplates resolvedDefaultTemplates = data.defaultTemplates();
  91. response.addDefaultTemplates(templateUuidQualifierBuilder
  92. .setQualifier(Qualifiers.PROJECT)
  93. .setTemplateId(resolvedDefaultTemplates.getProject()));
  94. resolvedDefaultTemplates.getApplication()
  95. .ifPresent(viewDefaultTemplate -> response.addDefaultTemplates(
  96. templateUuidQualifierBuilder
  97. .clear()
  98. .setQualifier(Qualifiers.APP)
  99. .setTemplateId(viewDefaultTemplate)));
  100. resolvedDefaultTemplates.getPortfolio()
  101. .ifPresent(viewDefaultTemplate -> response.addDefaultTemplates(
  102. templateUuidQualifierBuilder
  103. .clear()
  104. .setQualifier(Qualifiers.VIEW)
  105. .setTemplateId(viewDefaultTemplate)));
  106. }
  107. private void buildTemplatesResponse(Permissions.SearchTemplatesWsResponse.Builder response, SearchTemplatesData data) {
  108. Permission.Builder permissionResponse = Permission.newBuilder();
  109. PermissionTemplate.Builder templateBuilder = PermissionTemplate.newBuilder();
  110. for (PermissionTemplateDto templateDto : data.templates()) {
  111. templateBuilder
  112. .clear()
  113. .setId(templateDto.getUuid())
  114. .setName(templateDto.getName())
  115. .setCreatedAt(formatDateTime(templateDto.getCreatedAt()))
  116. .setUpdatedAt(formatDateTime(templateDto.getUpdatedAt()));
  117. ofNullable(templateDto.getKeyPattern()).ifPresent(templateBuilder::setProjectKeyPattern);
  118. ofNullable(templateDto.getDescription()).ifPresent(templateBuilder::setDescription);
  119. for (String permission : permissionService.getAllProjectPermissions()) {
  120. templateBuilder.addPermissions(
  121. permissionResponse
  122. .clear()
  123. .setKey(permission)
  124. .setUsersCount(data.userCount(templateDto.getUuid(), permission))
  125. .setGroupsCount(data.groupCount(templateDto.getUuid(), permission))
  126. .setWithProjectCreator(data.withProjectCreator(templateDto.getUuid(), permission)));
  127. }
  128. response.addPermissionTemplates(templateBuilder);
  129. }
  130. }
  131. private Permissions.SearchTemplatesWsResponse buildResponse(SearchTemplatesData data) {
  132. SearchTemplatesWsResponse.Builder response = SearchTemplatesWsResponse.newBuilder();
  133. buildTemplatesResponse(response, data);
  134. buildDefaultTemplatesResponse(response, data);
  135. buildPermissionsResponse(response);
  136. return response.build();
  137. }
  138. private void buildPermissionsResponse(SearchTemplatesWsResponse.Builder response) {
  139. Permission.Builder permissionResponse = Permission.newBuilder();
  140. for (String permissionKey : permissionService.getAllProjectPermissions()) {
  141. response.addPermissions(
  142. permissionResponse
  143. .clear()
  144. .setKey(permissionKey)
  145. .setName(i18nName(permissionKey))
  146. .setDescription(i18nDescriptionMessage(permissionKey)));
  147. }
  148. }
  149. private String i18nDescriptionMessage(String permissionKey) {
  150. return i18n.message(Locale.ENGLISH, PROPERTY_PREFIX + permissionKey + DESCRIPTION_SUFFIX, "");
  151. }
  152. private String i18nName(String permissionKey) {
  153. return i18n.message(Locale.ENGLISH, PROPERTY_PREFIX + permissionKey, permissionKey);
  154. }
  155. private SearchTemplatesData load(DbSession dbSession, SearchTemplatesRequest request) {
  156. SearchTemplatesData.Builder data = builder();
  157. List<PermissionTemplateDto> templates = searchTemplates(dbSession, request);
  158. List<String> templateUuids = templates.stream().map(PermissionTemplateDto::getUuid).toList();
  159. ResolvedDefaultTemplates resolvedDefaultTemplates = defaultTemplatesResolver.resolve(dbSession);
  160. data.templates(templates)
  161. .defaultTemplates(resolvedDefaultTemplates)
  162. .userCountByTemplateUuidAndPermission(userCountByTemplateUuidAndPermission(dbSession, templateUuids))
  163. .groupCountByTemplateUuidAndPermission(groupCountByTemplateUuidAndPermission(dbSession, templateUuids))
  164. .withProjectCreatorByTemplateUuidAndPermission(withProjectCreatorsByTemplateUuidAndPermission(dbSession, templateUuids));
  165. return data.build();
  166. }
  167. private List<PermissionTemplateDto> searchTemplates(DbSession dbSession, SearchTemplatesRequest request) {
  168. return dbClient.permissionTemplateDao().selectAll(dbSession, request.getQuery());
  169. }
  170. private Table<String, String, Integer> userCountByTemplateUuidAndPermission(DbSession dbSession, List<String> templateUuids) {
  171. final Table<String, String, Integer> userCountByTemplateUuidAndPermission = TreeBasedTable.create();
  172. dbClient.permissionTemplateDao().usersCountByTemplateUuidAndPermission(dbSession, templateUuids, context -> {
  173. CountByTemplateAndPermissionDto row = context.getResultObject();
  174. userCountByTemplateUuidAndPermission.put(row.getTemplateUuid(), row.getPermission(), row.getCount());
  175. });
  176. return userCountByTemplateUuidAndPermission;
  177. }
  178. private Table<String, String, Integer> groupCountByTemplateUuidAndPermission(DbSession dbSession, List<String> templateUuids) {
  179. final Table<String, String, Integer> userCountByTemplateUuidAndPermission = TreeBasedTable.create();
  180. dbClient.permissionTemplateDao().groupsCountByTemplateUuidAndPermission(dbSession, templateUuids, context -> {
  181. CountByTemplateAndPermissionDto row = context.getResultObject();
  182. userCountByTemplateUuidAndPermission.put(row.getTemplateUuid(), row.getPermission(), row.getCount());
  183. });
  184. return userCountByTemplateUuidAndPermission;
  185. }
  186. private Table<String, String, Boolean> withProjectCreatorsByTemplateUuidAndPermission(DbSession dbSession, List<String> templateUuids) {
  187. final Table<String, String, Boolean> templatePermissionsByTemplateUuidAndPermission = TreeBasedTable.create();
  188. List<PermissionTemplateCharacteristicDto> templatePermissions = dbClient.permissionTemplateCharacteristicDao().selectByTemplateUuids(dbSession, templateUuids);
  189. templatePermissions.stream()
  190. .forEach(templatePermission -> templatePermissionsByTemplateUuidAndPermission.put(templatePermission.getTemplateUuid(), templatePermission.getPermission(),
  191. templatePermission.getWithProjectCreator()));
  192. return templatePermissionsByTemplateUuidAndPermission;
  193. }
  194. private static class SearchTemplatesRequest {
  195. private String query;
  196. @CheckForNull
  197. public String getQuery() {
  198. return query;
  199. }
  200. public SearchTemplatesRequest setQuery(@Nullable String query) {
  201. this.query = query;
  202. return this;
  203. }
  204. }
  205. }