PermissionsStore.ts 7.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267
  1. import { types, getEnv, flow } from 'mobx-state-tree';
  2. import { PermissionsStoreItem } from './PermissionsStoreItem';
  3. const duplicateError = 'This permission exists already.';
  4. export const permissionOptions = [
  5. { value: 1, label: 'View', description: 'Can view dashboards.' },
  6. { value: 2, label: 'Edit', description: 'Can add, edit and delete dashboards.' },
  7. {
  8. value: 4,
  9. label: 'Admin',
  10. description: 'Can add/remove permissions and can add, edit and delete dashboards.',
  11. },
  12. ];
  13. export const aclTypeValues = {
  14. GROUP: { value: 'Group', text: 'Team' },
  15. USER: { value: 'User', text: 'User' },
  16. VIEWER: { value: 'Viewer', text: 'Everyone With Viewer Role' },
  17. EDITOR: { value: 'Editor', text: 'Everyone With Editor Role' },
  18. };
  19. export const aclTypes = Object.keys(aclTypeValues).map(item => aclTypeValues[item]);
  20. const defaultNewType = aclTypes[0].value;
  21. export const NewPermissionsItem = types
  22. .model('NewPermissionsItem', {
  23. type: types.optional(
  24. types.enumeration(Object.keys(aclTypeValues).map(item => aclTypeValues[item].value)),
  25. defaultNewType
  26. ),
  27. userId: types.maybe(types.number),
  28. userLogin: types.maybe(types.string),
  29. teamId: types.maybe(types.number),
  30. team: types.maybe(types.string),
  31. permission: types.optional(types.number, 1),
  32. })
  33. .views(self => ({
  34. isValid: () => {
  35. switch (self.type) {
  36. case aclTypeValues.GROUP.value:
  37. return self.teamId && self.team;
  38. case aclTypeValues.USER.value:
  39. return !!self.userId && !!self.userLogin;
  40. case aclTypeValues.VIEWER.value:
  41. case aclTypeValues.EDITOR.value:
  42. return true;
  43. default:
  44. return false;
  45. }
  46. },
  47. }))
  48. .actions(self => ({
  49. setUser(userId: number, userLogin: string) {
  50. self.userId = userId;
  51. self.userLogin = userLogin;
  52. self.teamId = null;
  53. self.team = null;
  54. },
  55. setTeam(teamId: number, team: string) {
  56. self.userId = null;
  57. self.userLogin = null;
  58. self.teamId = teamId;
  59. self.team = team;
  60. },
  61. setPermission(permission: number) {
  62. self.permission = permission;
  63. },
  64. }));
  65. export const PermissionsStore = types
  66. .model('PermissionsStore', {
  67. fetching: types.boolean,
  68. isFolder: types.maybe(types.boolean),
  69. dashboardId: types.maybe(types.number),
  70. items: types.optional(types.array(PermissionsStoreItem), []),
  71. error: types.maybe(types.string),
  72. originalItems: types.optional(types.array(PermissionsStoreItem), []),
  73. newType: types.optional(types.string, defaultNewType),
  74. newItem: types.maybe(NewPermissionsItem),
  75. isAddPermissionsVisible: types.optional(types.boolean, false),
  76. isInRoot: types.maybe(types.boolean),
  77. })
  78. .views(self => ({
  79. isValid: item => {
  80. const dupe = self.items.find(it => {
  81. return isDuplicate(it, item);
  82. });
  83. if (dupe) {
  84. self.error = duplicateError;
  85. return false;
  86. }
  87. return true;
  88. },
  89. }))
  90. .actions(self => {
  91. const resetNewType = () => {
  92. self.error = null;
  93. self.newItem = NewPermissionsItem.create();
  94. };
  95. return {
  96. load: flow(function* load(dashboardId: number, isFolder: boolean, isInRoot: boolean) {
  97. const backendSrv = getEnv(self).backendSrv;
  98. self.fetching = true;
  99. self.isFolder = isFolder;
  100. self.isInRoot = isInRoot;
  101. self.dashboardId = dashboardId;
  102. const res = yield backendSrv.get(`/api/dashboards/id/${dashboardId}/acl`);
  103. const items = prepareServerResponse(res, dashboardId, isFolder, isInRoot);
  104. self.items = items;
  105. self.originalItems = items;
  106. self.fetching = false;
  107. self.error = null;
  108. }),
  109. addStoreItem: flow(function* addStoreItem() {
  110. self.error = null;
  111. let item = {
  112. type: self.newItem.type,
  113. permission: self.newItem.permission,
  114. dashboardId: self.dashboardId,
  115. team: undefined,
  116. teamId: undefined,
  117. userLogin: undefined,
  118. userId: undefined,
  119. role: undefined,
  120. };
  121. switch (self.newItem.type) {
  122. case aclTypeValues.GROUP.value:
  123. item.team = self.newItem.team;
  124. item.teamId = self.newItem.teamId;
  125. break;
  126. case aclTypeValues.USER.value:
  127. item.userLogin = self.newItem.userLogin;
  128. item.userId = self.newItem.userId;
  129. break;
  130. case aclTypeValues.VIEWER.value:
  131. case aclTypeValues.EDITOR.value:
  132. item.role = self.newItem.type;
  133. break;
  134. default:
  135. throw Error('Unknown type: ' + self.newItem.type);
  136. }
  137. if (!self.isValid(item)) {
  138. return undefined;
  139. }
  140. self.items.push(prepareItem(item, self.dashboardId, self.isFolder, self.isInRoot));
  141. resetNewType();
  142. return updateItems(self);
  143. }),
  144. removeStoreItem: flow(function* removeStoreItem(idx: number) {
  145. self.error = null;
  146. self.items.splice(idx, 1);
  147. return updateItems(self);
  148. }),
  149. updatePermissionOnIndex: flow(function* updatePermissionOnIndex(
  150. idx: number,
  151. permission: number,
  152. permissionName: string
  153. ) {
  154. self.error = null;
  155. self.items[idx].updatePermission(permission, permissionName);
  156. return updateItems(self);
  157. }),
  158. setNewType(newType: string) {
  159. self.newItem = NewPermissionsItem.create({ type: newType });
  160. },
  161. resetNewType() {
  162. resetNewType();
  163. },
  164. toggleAddPermissions() {
  165. self.isAddPermissionsVisible = !self.isAddPermissionsVisible;
  166. },
  167. hideAddPermissions() {
  168. self.isAddPermissionsVisible = false;
  169. },
  170. };
  171. });
  172. const updateItems = self => {
  173. self.error = null;
  174. const backendSrv = getEnv(self).backendSrv;
  175. const updated = [];
  176. for (let item of self.items) {
  177. if (item.inherited) {
  178. continue;
  179. }
  180. updated.push({
  181. id: item.id,
  182. userId: item.userId,
  183. teamId: item.teamId,
  184. role: item.role,
  185. permission: item.permission,
  186. });
  187. }
  188. let res;
  189. try {
  190. res = backendSrv.post(`/api/dashboards/id/${self.dashboardId}/acl`, {
  191. items: updated,
  192. });
  193. } catch (error) {
  194. self.error = error;
  195. }
  196. return res;
  197. };
  198. const prepareServerResponse = (response, dashboardId: number, isFolder: boolean, isInRoot: boolean) => {
  199. return response.map(item => {
  200. return prepareItem(item, dashboardId, isFolder, isInRoot);
  201. });
  202. };
  203. const prepareItem = (item, dashboardId: number, isFolder: boolean, isInRoot: boolean) => {
  204. item.inherited = !isFolder && !isInRoot && dashboardId !== item.dashboardId;
  205. item.sortRank = 0;
  206. if (item.userId > 0) {
  207. item.icon = 'fa fa-fw fa-user';
  208. item.nameHtml = item.userLogin;
  209. item.sortName = item.userLogin;
  210. item.sortRank = 10;
  211. } else if (item.teamId > 0) {
  212. item.icon = 'fa fa-fw fa-users';
  213. item.nameHtml = item.team;
  214. item.sortName = item.team;
  215. item.sortRank = 20;
  216. } else if (item.role) {
  217. item.icon = 'fa fa-fw fa-street-view';
  218. item.nameHtml = `Everyone with <span class="query-keyword">${item.role}</span> Role`;
  219. item.sortName = item.role;
  220. item.sortRank = 30;
  221. if (item.role === 'Viewer') {
  222. item.sortRank += 1;
  223. }
  224. }
  225. if (item.inherited) {
  226. item.sortRank += 100;
  227. }
  228. return item;
  229. };
  230. const isDuplicate = (origItem, newItem) => {
  231. if (origItem.inherited) {
  232. return false;
  233. }
  234. return (
  235. (origItem.role && newItem.role && origItem.role === newItem.role) ||
  236. (origItem.userId && newItem.userId && origItem.userId === newItem.userId) ||
  237. (origItem.teamId && newItem.teamId && origItem.teamId === newItem.teamId)
  238. );
  239. };