team.go 6.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285
  1. package sqlstore
  2. import (
  3. "bytes"
  4. "fmt"
  5. "time"
  6. "github.com/grafana/grafana/pkg/bus"
  7. m "github.com/grafana/grafana/pkg/models"
  8. )
  9. func init() {
  10. bus.AddHandler("sql", CreateTeam)
  11. bus.AddHandler("sql", UpdateTeam)
  12. bus.AddHandler("sql", DeleteTeam)
  13. bus.AddHandler("sql", SearchTeams)
  14. bus.AddHandler("sql", GetTeamById)
  15. bus.AddHandler("sql", GetTeamsByUser)
  16. bus.AddHandler("sql", AddTeamMember)
  17. bus.AddHandler("sql", RemoveTeamMember)
  18. bus.AddHandler("sql", GetTeamMembers)
  19. }
  20. func CreateTeam(cmd *m.CreateTeamCommand) error {
  21. return inTransaction(func(sess *DBSession) error {
  22. if isNameTaken, err := isTeamNameTaken(cmd.OrgId, cmd.Name, 0, sess); err != nil {
  23. return err
  24. } else if isNameTaken {
  25. return m.ErrTeamNameTaken
  26. }
  27. team := m.Team{
  28. Name: cmd.Name,
  29. Email: cmd.Email,
  30. OrgId: cmd.OrgId,
  31. Created: time.Now(),
  32. Updated: time.Now(),
  33. }
  34. _, err := sess.Insert(&team)
  35. cmd.Result = team
  36. return err
  37. })
  38. }
  39. func UpdateTeam(cmd *m.UpdateTeamCommand) error {
  40. return inTransaction(func(sess *DBSession) error {
  41. if isNameTaken, err := isTeamNameTaken(cmd.OrgId, cmd.Name, cmd.Id, sess); err != nil {
  42. return err
  43. } else if isNameTaken {
  44. return m.ErrTeamNameTaken
  45. }
  46. team := m.Team{
  47. Name: cmd.Name,
  48. Email: cmd.Email,
  49. Updated: time.Now(),
  50. }
  51. sess.MustCols("email")
  52. affectedRows, err := sess.Id(cmd.Id).Update(&team)
  53. if err != nil {
  54. return err
  55. }
  56. if affectedRows == 0 {
  57. return m.ErrTeamNotFound
  58. }
  59. return nil
  60. })
  61. }
  62. // DeleteTeam will delete a team, its member and any permissions connected to the team
  63. func DeleteTeam(cmd *m.DeleteTeamCommand) error {
  64. return inTransaction(func(sess *DBSession) error {
  65. if teamExists, err := teamExists(cmd.OrgId, cmd.Id, sess); err != nil {
  66. return err
  67. } else if !teamExists {
  68. return m.ErrTeamNotFound
  69. }
  70. deletes := []string{
  71. "DELETE FROM team_member WHERE org_id=? and team_id = ?",
  72. "DELETE FROM team WHERE org_id=? and id = ?",
  73. "DELETE FROM dashboard_acl WHERE org_id=? and team_id = ?",
  74. }
  75. for _, sql := range deletes {
  76. _, err := sess.Exec(sql, cmd.OrgId, cmd.Id)
  77. if err != nil {
  78. return err
  79. }
  80. }
  81. return nil
  82. })
  83. }
  84. func teamExists(orgId int64, teamId int64, sess *DBSession) (bool, error) {
  85. if res, err := sess.Query("SELECT 1 from team WHERE org_id=? and id=?", orgId, teamId); err != nil {
  86. return false, err
  87. } else if len(res) != 1 {
  88. return false, nil
  89. }
  90. return true, nil
  91. }
  92. func isTeamNameTaken(orgId int64, name string, existingId int64, sess *DBSession) (bool, error) {
  93. var team m.Team
  94. exists, err := sess.Where("org_id=? and name=?", orgId, name).Get(&team)
  95. if err != nil {
  96. return false, nil
  97. }
  98. if exists && existingId != team.Id {
  99. return true, nil
  100. }
  101. return false, nil
  102. }
  103. func SearchTeams(query *m.SearchTeamsQuery) error {
  104. query.Result = m.SearchTeamQueryResult{
  105. Teams: make([]*m.SearchTeamDto, 0),
  106. }
  107. queryWithWildcards := "%" + query.Query + "%"
  108. var sql bytes.Buffer
  109. params := make([]interface{}, 0)
  110. sql.WriteString(`select
  111. team.id as id,
  112. team.org_id,
  113. team.name as name,
  114. team.email as email,
  115. (select count(*) from team_member where team_member.team_id = team.id) as member_count
  116. from team as team
  117. where team.org_id = ?`)
  118. params = append(params, query.OrgId)
  119. if query.Query != "" {
  120. sql.WriteString(` and team.name ` + dialect.LikeStr() + ` ?`)
  121. params = append(params, queryWithWildcards)
  122. }
  123. if query.Name != "" {
  124. sql.WriteString(` and team.name = ?`)
  125. params = append(params, query.Name)
  126. }
  127. sql.WriteString(` order by team.name asc`)
  128. if query.Limit != 0 {
  129. offset := query.Limit * (query.Page - 1)
  130. sql.WriteString(dialect.LimitOffset(int64(query.Limit), int64(offset)))
  131. }
  132. if err := x.Sql(sql.String(), params...).Find(&query.Result.Teams); err != nil {
  133. return err
  134. }
  135. team := m.Team{}
  136. countSess := x.Table("team")
  137. if query.Query != "" {
  138. countSess.Where(`name `+dialect.LikeStr()+` ?`, queryWithWildcards)
  139. }
  140. if query.Name != "" {
  141. countSess.Where("name=?", query.Name)
  142. }
  143. count, err := countSess.Count(&team)
  144. query.Result.TotalCount = count
  145. return err
  146. }
  147. func GetTeamById(query *m.GetTeamByIdQuery) error {
  148. var team m.Team
  149. exists, err := x.Where("org_id=? and id=?", query.OrgId, query.Id).Get(&team)
  150. if err != nil {
  151. return err
  152. }
  153. if !exists {
  154. return m.ErrTeamNotFound
  155. }
  156. query.Result = &team
  157. return nil
  158. }
  159. // GetTeamsByUser is used by the Guardian when checking a users' permissions
  160. func GetTeamsByUser(query *m.GetTeamsByUserQuery) error {
  161. query.Result = make([]*m.Team, 0)
  162. sess := x.Table("team")
  163. sess.Join("INNER", "team_member", "team.id=team_member.team_id")
  164. sess.Where("team.org_id=? and team_member.user_id=?", query.OrgId, query.UserId)
  165. err := sess.Find(&query.Result)
  166. return err
  167. }
  168. // AddTeamMember adds a user to a team
  169. func AddTeamMember(cmd *m.AddTeamMemberCommand) error {
  170. return inTransaction(func(sess *DBSession) error {
  171. if res, err := sess.Query("SELECT 1 from team_member WHERE org_id=? and team_id=? and user_id=?", cmd.OrgId, cmd.TeamId, cmd.UserId); err != nil {
  172. return err
  173. } else if len(res) == 1 {
  174. return m.ErrTeamMemberAlreadyAdded
  175. }
  176. if teamExists, err := teamExists(cmd.OrgId, cmd.TeamId, sess); err != nil {
  177. return err
  178. } else if !teamExists {
  179. return m.ErrTeamNotFound
  180. }
  181. entity := m.TeamMember{
  182. OrgId: cmd.OrgId,
  183. TeamId: cmd.TeamId,
  184. UserId: cmd.UserId,
  185. Created: time.Now(),
  186. Updated: time.Now(),
  187. }
  188. _, err := sess.Insert(&entity)
  189. return err
  190. })
  191. }
  192. // RemoveTeamMember removes a member from a team
  193. func RemoveTeamMember(cmd *m.RemoveTeamMemberCommand) error {
  194. return inTransaction(func(sess *DBSession) error {
  195. if teamExists, err := teamExists(cmd.OrgId, cmd.TeamId, sess); err != nil {
  196. return err
  197. } else if !teamExists {
  198. return m.ErrTeamNotFound
  199. }
  200. var rawSql = "DELETE FROM team_member WHERE org_id=? and team_id=? and user_id=?"
  201. res, err := sess.Exec(rawSql, cmd.OrgId, cmd.TeamId, cmd.UserId)
  202. if err != nil {
  203. return err
  204. }
  205. rows, err := res.RowsAffected()
  206. if rows == 0 {
  207. return m.ErrTeamMemberNotFound
  208. }
  209. return err
  210. })
  211. }
  212. // GetTeamMembers return a list of members for the specified team
  213. func GetTeamMembers(query *m.GetTeamMembersQuery) error {
  214. query.Result = make([]*m.TeamMemberDTO, 0)
  215. sess := x.Table("team_member")
  216. sess.Join("INNER", "user", fmt.Sprintf("team_member.user_id=%s.id", x.Dialect().Quote("user")))
  217. if query.OrgId != 0 {
  218. sess.Where("team_member.org_id=?", query.OrgId)
  219. }
  220. if query.TeamId != 0 {
  221. sess.Where("team_member.team_id=?", query.TeamId)
  222. }
  223. if query.UserId != 0 {
  224. sess.Where("team_member.user_id=?", query.UserId)
  225. }
  226. sess.Cols("user.org_id", "team_member.team_id", "team_member.user_id", "user.email", "user.login")
  227. sess.Asc("user.login", "user.email")
  228. err := sess.Find(&query.Result)
  229. return err
  230. }