team.go 7.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301
  1. package sqlstore
  2. import (
  3. "bytes"
  4. "fmt"
  5. "time"
  6. "github.com/grafana/grafana/pkg/bus"
  7. m "github.com/grafana/grafana/pkg/models"
  8. )
  9. func init() {
  10. bus.AddHandler("sql", CreateTeam)
  11. bus.AddHandler("sql", UpdateTeam)
  12. bus.AddHandler("sql", DeleteTeam)
  13. bus.AddHandler("sql", SearchTeams)
  14. bus.AddHandler("sql", GetTeamById)
  15. bus.AddHandler("sql", GetTeamsByUser)
  16. bus.AddHandler("sql", AddTeamMember)
  17. bus.AddHandler("sql", RemoveTeamMember)
  18. bus.AddHandler("sql", GetTeamMembers)
  19. }
  20. func getTeamSelectSqlBase() string {
  21. return `SELECT
  22. team.id as id,
  23. team.org_id,
  24. team.name as name,
  25. team.email as email,
  26. (SELECT COUNT(*) from team_member where team_member.team_id = team.id) as member_count
  27. FROM team as team `
  28. }
  29. func CreateTeam(cmd *m.CreateTeamCommand) error {
  30. return inTransaction(func(sess *DBSession) error {
  31. if isNameTaken, err := isTeamNameTaken(cmd.OrgId, cmd.Name, 0, sess); err != nil {
  32. return err
  33. } else if isNameTaken {
  34. return m.ErrTeamNameTaken
  35. }
  36. team := m.Team{
  37. Name: cmd.Name,
  38. Email: cmd.Email,
  39. OrgId: cmd.OrgId,
  40. Created: time.Now(),
  41. Updated: time.Now(),
  42. }
  43. _, err := sess.Insert(&team)
  44. cmd.Result = team
  45. return err
  46. })
  47. }
  48. func UpdateTeam(cmd *m.UpdateTeamCommand) error {
  49. return inTransaction(func(sess *DBSession) error {
  50. if isNameTaken, err := isTeamNameTaken(cmd.OrgId, cmd.Name, cmd.Id, sess); err != nil {
  51. return err
  52. } else if isNameTaken {
  53. return m.ErrTeamNameTaken
  54. }
  55. team := m.Team{
  56. Name: cmd.Name,
  57. Email: cmd.Email,
  58. Updated: time.Now(),
  59. }
  60. sess.MustCols("email")
  61. affectedRows, err := sess.ID(cmd.Id).Update(&team)
  62. if err != nil {
  63. return err
  64. }
  65. if affectedRows == 0 {
  66. return m.ErrTeamNotFound
  67. }
  68. return nil
  69. })
  70. }
  71. // DeleteTeam will delete a team, its member and any permissions connected to the team
  72. func DeleteTeam(cmd *m.DeleteTeamCommand) error {
  73. return inTransaction(func(sess *DBSession) error {
  74. if teamExists, err := teamExists(cmd.OrgId, cmd.Id, sess); err != nil {
  75. return err
  76. } else if !teamExists {
  77. return m.ErrTeamNotFound
  78. }
  79. deletes := []string{
  80. "DELETE FROM team_member WHERE org_id=? and team_id = ?",
  81. "DELETE FROM team WHERE org_id=? and id = ?",
  82. "DELETE FROM dashboard_acl WHERE org_id=? and team_id = ?",
  83. }
  84. for _, sql := range deletes {
  85. _, err := sess.Exec(sql, cmd.OrgId, cmd.Id)
  86. if err != nil {
  87. return err
  88. }
  89. }
  90. return nil
  91. })
  92. }
  93. func teamExists(orgId int64, teamId int64, sess *DBSession) (bool, error) {
  94. if res, err := sess.Query("SELECT 1 from team WHERE org_id=? and id=?", orgId, teamId); err != nil {
  95. return false, err
  96. } else if len(res) != 1 {
  97. return false, nil
  98. }
  99. return true, nil
  100. }
  101. func isTeamNameTaken(orgId int64, name string, existingId int64, sess *DBSession) (bool, error) {
  102. var team m.Team
  103. exists, err := sess.Where("org_id=? and name=?", orgId, name).Get(&team)
  104. if err != nil {
  105. return false, nil
  106. }
  107. if exists && existingId != team.Id {
  108. return true, nil
  109. }
  110. return false, nil
  111. }
  112. func SearchTeams(query *m.SearchTeamsQuery) error {
  113. query.Result = m.SearchTeamQueryResult{
  114. Teams: make([]*m.TeamDTO, 0),
  115. }
  116. queryWithWildcards := "%" + query.Query + "%"
  117. var sql bytes.Buffer
  118. params := make([]interface{}, 0)
  119. sql.WriteString(getTeamSelectSqlBase())
  120. sql.WriteString(` WHERE team.org_id = ?`)
  121. params = append(params, query.OrgId)
  122. if query.Query != "" {
  123. sql.WriteString(` and team.name ` + dialect.LikeStr() + ` ?`)
  124. params = append(params, queryWithWildcards)
  125. }
  126. if query.Name != "" {
  127. sql.WriteString(` and team.name = ?`)
  128. params = append(params, query.Name)
  129. }
  130. sql.WriteString(` order by team.name asc`)
  131. if query.Limit != 0 {
  132. offset := query.Limit * (query.Page - 1)
  133. sql.WriteString(dialect.LimitOffset(int64(query.Limit), int64(offset)))
  134. }
  135. if err := x.SQL(sql.String(), params...).Find(&query.Result.Teams); err != nil {
  136. return err
  137. }
  138. team := m.Team{}
  139. countSess := x.Table("team")
  140. if query.Query != "" {
  141. countSess.Where(`name `+dialect.LikeStr()+` ?`, queryWithWildcards)
  142. }
  143. if query.Name != "" {
  144. countSess.Where("name=?", query.Name)
  145. }
  146. count, err := countSess.Count(&team)
  147. query.Result.TotalCount = count
  148. return err
  149. }
  150. func GetTeamById(query *m.GetTeamByIdQuery) error {
  151. var sql bytes.Buffer
  152. sql.WriteString(getTeamSelectSqlBase())
  153. sql.WriteString(` WHERE team.org_id = ? and team.id = ?`)
  154. var team m.TeamDTO
  155. exists, err := x.SQL(sql.String(), query.OrgId, query.Id).Get(&team)
  156. if err != nil {
  157. return err
  158. }
  159. if !exists {
  160. return m.ErrTeamNotFound
  161. }
  162. query.Result = &team
  163. return nil
  164. }
  165. // GetTeamsByUser is used by the Guardian when checking a users' permissions
  166. func GetTeamsByUser(query *m.GetTeamsByUserQuery) error {
  167. query.Result = make([]*m.TeamDTO, 0)
  168. var sql bytes.Buffer
  169. sql.WriteString(getTeamSelectSqlBase())
  170. sql.WriteString(` INNER JOIN team_member on team.id = team_member.team_id`)
  171. sql.WriteString(` WHERE team.org_id = ? and team_member.user_id = ?`)
  172. err := x.SQL(sql.String(), query.OrgId, query.UserId).Find(&query.Result)
  173. return err
  174. }
  175. // AddTeamMember adds a user to a team
  176. func AddTeamMember(cmd *m.AddTeamMemberCommand) error {
  177. return inTransaction(func(sess *DBSession) error {
  178. if res, err := sess.Query("SELECT 1 from team_member WHERE org_id=? and team_id=? and user_id=?", cmd.OrgId, cmd.TeamId, cmd.UserId); err != nil {
  179. return err
  180. } else if len(res) == 1 {
  181. return m.ErrTeamMemberAlreadyAdded
  182. }
  183. if teamExists, err := teamExists(cmd.OrgId, cmd.TeamId, sess); err != nil {
  184. return err
  185. } else if !teamExists {
  186. return m.ErrTeamNotFound
  187. }
  188. entity := m.TeamMember{
  189. OrgId: cmd.OrgId,
  190. TeamId: cmd.TeamId,
  191. UserId: cmd.UserId,
  192. External: cmd.External,
  193. Created: time.Now(),
  194. Updated: time.Now(),
  195. }
  196. _, err := sess.Insert(&entity)
  197. return err
  198. })
  199. }
  200. // RemoveTeamMember removes a member from a team
  201. func RemoveTeamMember(cmd *m.RemoveTeamMemberCommand) error {
  202. return inTransaction(func(sess *DBSession) error {
  203. if teamExists, err := teamExists(cmd.OrgId, cmd.TeamId, sess); err != nil {
  204. return err
  205. } else if !teamExists {
  206. return m.ErrTeamNotFound
  207. }
  208. var rawSql = "DELETE FROM team_member WHERE org_id=? and team_id=? and user_id=?"
  209. res, err := sess.Exec(rawSql, cmd.OrgId, cmd.TeamId, cmd.UserId)
  210. if err != nil {
  211. return err
  212. }
  213. rows, err := res.RowsAffected()
  214. if rows == 0 {
  215. return m.ErrTeamMemberNotFound
  216. }
  217. return err
  218. })
  219. }
  220. // GetTeamMembers return a list of members for the specified team
  221. func GetTeamMembers(query *m.GetTeamMembersQuery) error {
  222. query.Result = make([]*m.TeamMemberDTO, 0)
  223. sess := x.Table("team_member")
  224. sess.Join("INNER", "user", fmt.Sprintf("team_member.user_id=%s.id", x.Dialect().Quote("user")))
  225. if query.OrgId != 0 {
  226. sess.Where("team_member.org_id=?", query.OrgId)
  227. }
  228. if query.TeamId != 0 {
  229. sess.Where("team_member.team_id=?", query.TeamId)
  230. }
  231. if query.UserId != 0 {
  232. sess.Where("team_member.user_id=?", query.UserId)
  233. }
  234. if query.External {
  235. sess.Where("team_member.external=?", dialect.BooleanStr(true))
  236. }
  237. sess.Cols("team_member.org_id", "team_member.team_id", "team_member.user_id", "user.email", "user.login", "team_member.external")
  238. sess.Asc("user.login", "user.email")
  239. err := sess.Find(&query.Result)
  240. return err
  241. }