search_builder.go 5.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228
  1. package sqlstore
  2. import (
  3. "bytes"
  4. "strings"
  5. m "github.com/grafana/grafana/pkg/models"
  6. )
  7. // SearchBuilder is a builder/object mother that builds a dashboard search query
  8. type SearchBuilder struct {
  9. tags []string
  10. isStarred bool
  11. limit int
  12. signedInUser *m.SignedInUser
  13. whereDashboardIdsIn []int64
  14. whereTitle string
  15. whereTypeFolder bool
  16. whereTypeDash bool
  17. whereFolderId int64
  18. expandedFolders []int64
  19. sql bytes.Buffer
  20. params []interface{}
  21. }
  22. func NewSearchBuilder(signedInUser *m.SignedInUser, limit int) *SearchBuilder {
  23. searchBuilder := &SearchBuilder{
  24. signedInUser: signedInUser,
  25. limit: limit,
  26. }
  27. return searchBuilder
  28. }
  29. func (sb *SearchBuilder) WithTags(tags []string) *SearchBuilder {
  30. if len(tags) > 0 {
  31. sb.tags = tags
  32. }
  33. return sb
  34. }
  35. func (sb *SearchBuilder) IsStarred() *SearchBuilder {
  36. sb.isStarred = true
  37. return sb
  38. }
  39. func (sb *SearchBuilder) WithDashboardIdsIn(ids []int64) *SearchBuilder {
  40. if len(ids) > 0 {
  41. sb.whereDashboardIdsIn = ids
  42. }
  43. return sb
  44. }
  45. func (sb *SearchBuilder) WithTitle(title string) *SearchBuilder {
  46. sb.whereTitle = title
  47. return sb
  48. }
  49. func (sb *SearchBuilder) WithType(queryType string) *SearchBuilder {
  50. if len(queryType) > 0 && queryType == "dash-folder" {
  51. sb.whereTypeFolder = true
  52. }
  53. if len(queryType) > 0 && queryType == "dash-db" {
  54. sb.whereTypeDash = true
  55. }
  56. return sb
  57. }
  58. func (sb *SearchBuilder) WithFolderId(folderId int64) *SearchBuilder {
  59. sb.whereFolderId = folderId
  60. return sb
  61. }
  62. func (sb *SearchBuilder) WithExpandedFolders(expandedFolders []int64) *SearchBuilder {
  63. sb.expandedFolders = expandedFolders
  64. return sb
  65. }
  66. // ToSql builds the sql and returns it as a string, together with the params.
  67. func (sb *SearchBuilder) ToSql() (string, []interface{}) {
  68. sb.params = make([]interface{}, 0)
  69. sb.buildSelect()
  70. if len(sb.tags) > 0 {
  71. sb.buildTagQuery()
  72. } else {
  73. sb.buildMainQuery()
  74. }
  75. sb.sql.WriteString(`
  76. LEFT OUTER JOIN dashboard folder on folder.id = dashboard.folder_id
  77. LEFT OUTER JOIN dashboard_tag on dashboard.id = dashboard_tag.dashboard_id`)
  78. sb.sql.WriteString(" ORDER BY dashboard.title ASC LIMIT 5000")
  79. return sb.sql.String(), sb.params
  80. }
  81. func (sb *SearchBuilder) buildSelect() {
  82. sb.sql.WriteString(
  83. `SELECT
  84. dashboard.id,
  85. dashboard.title,
  86. dashboard.slug,
  87. dashboard_tag.term,
  88. dashboard.is_folder,
  89. dashboard.folder_id,
  90. folder.slug as folder_slug,
  91. folder.title as folder_title
  92. FROM `)
  93. }
  94. func (sb *SearchBuilder) buildTagQuery() {
  95. sb.sql.WriteString(
  96. `(
  97. SELECT
  98. dashboard.id FROM dashboard
  99. LEFT OUTER JOIN dashboard_tag ON dashboard_tag.dashboard_id = dashboard.id
  100. `)
  101. if sb.isStarred {
  102. sb.sql.WriteString(" INNER JOIN star on star.dashboard_id = dashboard.id")
  103. }
  104. sb.sql.WriteString(` WHERE dashboard_tag.term IN (?` + strings.Repeat(",?", len(sb.tags)-1) + `) AND `)
  105. for _, tag := range sb.tags {
  106. sb.params = append(sb.params, tag)
  107. }
  108. sb.buildSearchWhereClause()
  109. // this ends the inner select (tag filtered part)
  110. sb.sql.WriteString(`
  111. GROUP BY dashboard.id HAVING COUNT(dashboard.id) >= ?
  112. LIMIT ?) as ids
  113. INNER JOIN dashboard on ids.id = dashboard.id
  114. `)
  115. sb.params = append(sb.params, len(sb.tags))
  116. sb.params = append(sb.params, sb.limit)
  117. }
  118. func (sb *SearchBuilder) buildMainQuery() {
  119. sb.sql.WriteString(`( SELECT dashboard.id FROM dashboard `)
  120. if sb.isStarred {
  121. sb.sql.WriteString(" INNER JOIN star on star.dashboard_id = dashboard.id")
  122. }
  123. sb.sql.WriteString(` WHERE `)
  124. sb.buildSearchWhereClause()
  125. sb.sql.WriteString(`
  126. LIMIT ?) as ids
  127. INNER JOIN dashboard on ids.id = dashboard.id
  128. `)
  129. sb.params = append(sb.params, sb.limit)
  130. }
  131. func (sb *SearchBuilder) buildSearchWhereClause() {
  132. sb.sql.WriteString(` dashboard.org_id=?`)
  133. sb.params = append(sb.params, sb.signedInUser.OrgId)
  134. if sb.isStarred {
  135. sb.sql.WriteString(` AND star.user_id=?`)
  136. sb.params = append(sb.params, sb.signedInUser.UserId)
  137. }
  138. if len(sb.whereDashboardIdsIn) > 0 {
  139. sb.sql.WriteString(` AND dashboard.id IN (?` + strings.Repeat(",?", len(sb.whereDashboardIdsIn)-1) + `)`)
  140. for _, dashboardId := range sb.whereDashboardIdsIn {
  141. sb.params = append(sb.params, dashboardId)
  142. }
  143. }
  144. if sb.signedInUser.OrgRole != m.ROLE_ADMIN {
  145. allowedDashboardsSubQuery := ` AND (dashboard.has_acl = 0 OR dashboard.id in (
  146. SELECT distinct d.id AS DashboardId
  147. FROM dashboard AS d
  148. LEFT JOIN dashboard_acl as da on d.folder_id = da.dashboard_id or d.id = da.dashboard_id
  149. LEFT JOIN user_group_member as ugm on ugm.user_group_id = da.user_group_id
  150. LEFT JOIN org_user ou on ou.role = da.role
  151. WHERE
  152. d.has_acl = 1 and
  153. (da.user_id = ? or ugm.user_id = ? or ou.id is not null)
  154. and d.org_id = ?
  155. )
  156. )`
  157. sb.sql.WriteString(allowedDashboardsSubQuery)
  158. sb.params = append(sb.params, sb.signedInUser.UserId, sb.signedInUser.UserId, sb.signedInUser.OrgId)
  159. }
  160. if len(sb.whereTitle) > 0 {
  161. sb.sql.WriteString(" AND dashboard.title " + dialect.LikeStr() + " ?")
  162. sb.params = append(sb.params, "%"+sb.whereTitle+"%")
  163. }
  164. if sb.whereTypeFolder {
  165. sb.sql.WriteString(" AND dashboard.is_folder = 1")
  166. }
  167. if sb.whereTypeDash {
  168. sb.sql.WriteString(" AND dashboard.is_folder = 0")
  169. }
  170. if sb.whereFolderId > 0 {
  171. sb.sql.WriteString(" AND dashboard.folder_id = ?")
  172. sb.params = append(sb.params, sb.whereFolderId)
  173. }
  174. if len(sb.expandedFolders) > 0 {
  175. sb.sql.WriteString(` AND (dashboard.folder_id IN (?` + strings.Repeat(",?", len(sb.expandedFolders)-1) + `) `)
  176. sb.sql.WriteString(` OR dashboard.folder_id IS NULL OR dashboard.folder_id = 0)`)
  177. for _, ef := range sb.expandedFolders {
  178. sb.params = append(sb.params, ef)
  179. }
  180. }
  181. }