dashboard.go 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603
  1. package sqlstore
  2. import (
  3. "strings"
  4. "time"
  5. "github.com/grafana/grafana/pkg/bus"
  6. "github.com/grafana/grafana/pkg/metrics"
  7. m "github.com/grafana/grafana/pkg/models"
  8. "github.com/grafana/grafana/pkg/services/search"
  9. "github.com/grafana/grafana/pkg/util"
  10. )
  11. func init() {
  12. bus.AddHandler("sql", SaveDashboard)
  13. bus.AddHandler("sql", GetDashboard)
  14. bus.AddHandler("sql", GetDashboards)
  15. bus.AddHandler("sql", DeleteDashboard)
  16. bus.AddHandler("sql", SearchDashboards)
  17. bus.AddHandler("sql", GetDashboardTags)
  18. bus.AddHandler("sql", GetDashboardSlugById)
  19. bus.AddHandler("sql", GetDashboardUIDById)
  20. bus.AddHandler("sql", GetDashboardsByPluginId)
  21. bus.AddHandler("sql", GetDashboardPermissionsForUser)
  22. bus.AddHandler("sql", GetDashboardsBySlug)
  23. bus.AddHandler("sql", ValidateDashboardBeforeSave)
  24. }
  25. var generateNewUid func() string = util.GenerateShortUid
  26. func SaveDashboard(cmd *m.SaveDashboardCommand) error {
  27. return inTransaction(func(sess *DBSession) error {
  28. return saveDashboard(sess, cmd)
  29. })
  30. }
  31. func saveDashboard(sess *DBSession, cmd *m.SaveDashboardCommand) error {
  32. dash := cmd.GetDashboardModel()
  33. if dash.Id > 0 {
  34. var existing m.Dashboard
  35. dashWithIdExists, err := sess.Where("id=? AND org_id=?", dash.Id, dash.OrgId).Get(&existing)
  36. if err != nil {
  37. return err
  38. }
  39. if !dashWithIdExists {
  40. return m.ErrDashboardNotFound
  41. }
  42. // check for is someone else has written in between
  43. if dash.Version != existing.Version {
  44. if cmd.Overwrite {
  45. dash.SetVersion(existing.Version)
  46. } else {
  47. return m.ErrDashboardVersionMismatch
  48. }
  49. }
  50. // do not allow plugin dashboard updates without overwrite flag
  51. if existing.PluginId != "" && cmd.Overwrite == false {
  52. return m.UpdatePluginDashboardError{PluginId: existing.PluginId}
  53. }
  54. } else {
  55. dash.Created = time.Now()
  56. }
  57. if dash.Uid == "" {
  58. uid, err := generateNewDashboardUid(sess, dash.OrgId)
  59. if err != nil {
  60. return err
  61. }
  62. dash.SetUid(uid)
  63. }
  64. parentVersion := dash.Version
  65. affectedRows := int64(0)
  66. var err error
  67. if dash.Id == 0 {
  68. dash.SetVersion(1)
  69. metrics.M_Api_Dashboard_Insert.Inc()
  70. affectedRows, err = sess.Insert(dash)
  71. } else {
  72. v := dash.Version
  73. v++
  74. dash.SetVersion(v)
  75. if !cmd.UpdatedAt.IsZero() {
  76. dash.Updated = cmd.UpdatedAt
  77. }
  78. affectedRows, err = sess.MustCols("folder_id").ID(dash.Id).Update(dash)
  79. }
  80. if err != nil {
  81. return err
  82. }
  83. if affectedRows == 0 {
  84. return m.ErrDashboardNotFound
  85. }
  86. dashVersion := &m.DashboardVersion{
  87. DashboardId: dash.Id,
  88. ParentVersion: parentVersion,
  89. RestoredFrom: cmd.RestoredFrom,
  90. Version: dash.Version,
  91. Created: time.Now(),
  92. CreatedBy: dash.UpdatedBy,
  93. Message: cmd.Message,
  94. Data: dash.Data,
  95. }
  96. // insert version entry
  97. if affectedRows, err = sess.Insert(dashVersion); err != nil {
  98. return err
  99. } else if affectedRows == 0 {
  100. return m.ErrDashboardNotFound
  101. }
  102. // delete existing tags
  103. _, err = sess.Exec("DELETE FROM dashboard_tag WHERE dashboard_id=?", dash.Id)
  104. if err != nil {
  105. return err
  106. }
  107. // insert new tags
  108. tags := dash.GetTags()
  109. if len(tags) > 0 {
  110. for _, tag := range tags {
  111. if _, err := sess.Insert(&DashboardTag{DashboardId: dash.Id, Term: tag}); err != nil {
  112. return err
  113. }
  114. }
  115. }
  116. cmd.Result = dash
  117. return err
  118. }
  119. func generateNewDashboardUid(sess *DBSession, orgId int64) (string, error) {
  120. for i := 0; i < 3; i++ {
  121. uid := generateNewUid()
  122. exists, err := sess.Where("org_id=? AND uid=?", orgId, uid).Get(&m.Dashboard{})
  123. if err != nil {
  124. return "", err
  125. }
  126. if !exists {
  127. return uid, nil
  128. }
  129. }
  130. return "", m.ErrDashboardFailedGenerateUniqueUid
  131. }
  132. func GetDashboard(query *m.GetDashboardQuery) error {
  133. dashboard := m.Dashboard{Slug: query.Slug, OrgId: query.OrgId, Id: query.Id, Uid: query.Uid}
  134. has, err := x.Get(&dashboard)
  135. if err != nil {
  136. return err
  137. } else if has == false {
  138. return m.ErrDashboardNotFound
  139. }
  140. dashboard.SetId(dashboard.Id)
  141. dashboard.SetUid(dashboard.Uid)
  142. query.Result = &dashboard
  143. return nil
  144. }
  145. type DashboardSearchProjection struct {
  146. Id int64
  147. Uid string
  148. Title string
  149. Slug string
  150. Term string
  151. IsFolder bool
  152. FolderId int64
  153. FolderUid string
  154. FolderSlug string
  155. FolderTitle string
  156. }
  157. func findDashboards(query *search.FindPersistedDashboardsQuery) ([]DashboardSearchProjection, error) {
  158. limit := query.Limit
  159. if limit == 0 {
  160. limit = 1000
  161. }
  162. sb := NewSearchBuilder(query.SignedInUser, limit, query.Permission).
  163. WithTags(query.Tags).
  164. WithDashboardIdsIn(query.DashboardIds)
  165. if query.IsStarred {
  166. sb.IsStarred()
  167. }
  168. if len(query.Title) > 0 {
  169. sb.WithTitle(query.Title)
  170. }
  171. if len(query.Type) > 0 {
  172. sb.WithType(query.Type)
  173. }
  174. if len(query.FolderIds) > 0 {
  175. sb.WithFolderIds(query.FolderIds)
  176. }
  177. var res []DashboardSearchProjection
  178. sql, params := sb.ToSql()
  179. err := x.Sql(sql, params...).Find(&res)
  180. if err != nil {
  181. return nil, err
  182. }
  183. return res, nil
  184. }
  185. func SearchDashboards(query *search.FindPersistedDashboardsQuery) error {
  186. res, err := findDashboards(query)
  187. if err != nil {
  188. return err
  189. }
  190. makeQueryResult(query, res)
  191. return nil
  192. }
  193. func getHitType(item DashboardSearchProjection) search.HitType {
  194. var hitType search.HitType
  195. if item.IsFolder {
  196. hitType = search.DashHitFolder
  197. } else {
  198. hitType = search.DashHitDB
  199. }
  200. return hitType
  201. }
  202. func makeQueryResult(query *search.FindPersistedDashboardsQuery, res []DashboardSearchProjection) {
  203. query.Result = make([]*search.Hit, 0)
  204. hits := make(map[int64]*search.Hit)
  205. for _, item := range res {
  206. hit, exists := hits[item.Id]
  207. if !exists {
  208. hit = &search.Hit{
  209. Id: item.Id,
  210. Uid: item.Uid,
  211. Title: item.Title,
  212. Uri: "db/" + item.Slug,
  213. Url: m.GetDashboardFolderUrl(item.IsFolder, item.Uid, item.Slug),
  214. Type: getHitType(item),
  215. FolderId: item.FolderId,
  216. FolderUid: item.FolderUid,
  217. FolderTitle: item.FolderTitle,
  218. Tags: []string{},
  219. }
  220. if item.FolderId > 0 {
  221. hit.FolderUrl = m.GetFolderUrl(item.FolderUid, item.FolderSlug)
  222. }
  223. query.Result = append(query.Result, hit)
  224. hits[item.Id] = hit
  225. }
  226. if len(item.Term) > 0 {
  227. hit.Tags = append(hit.Tags, item.Term)
  228. }
  229. }
  230. }
  231. func GetDashboardTags(query *m.GetDashboardTagsQuery) error {
  232. sql := `SELECT
  233. COUNT(*) as count,
  234. term
  235. FROM dashboard
  236. INNER JOIN dashboard_tag on dashboard_tag.dashboard_id = dashboard.id
  237. WHERE dashboard.org_id=?
  238. GROUP BY term`
  239. query.Result = make([]*m.DashboardTagCloudItem, 0)
  240. sess := x.Sql(sql, query.OrgId)
  241. err := sess.Find(&query.Result)
  242. return err
  243. }
  244. func DeleteDashboard(cmd *m.DeleteDashboardCommand) error {
  245. return inTransaction(func(sess *DBSession) error {
  246. dashboard := m.Dashboard{Id: cmd.Id, OrgId: cmd.OrgId}
  247. has, err := sess.Get(&dashboard)
  248. if err != nil {
  249. return err
  250. } else if has == false {
  251. return m.ErrDashboardNotFound
  252. }
  253. deletes := []string{
  254. "DELETE FROM dashboard_tag WHERE dashboard_id = ? ",
  255. "DELETE FROM star WHERE dashboard_id = ? ",
  256. "DELETE FROM dashboard WHERE id = ?",
  257. "DELETE FROM playlist_item WHERE type = 'dashboard_by_id' AND value = ?",
  258. "DELETE FROM dashboard_version WHERE dashboard_id = ?",
  259. "DELETE FROM dashboard WHERE folder_id = ?",
  260. "DELETE FROM annotation WHERE dashboard_id = ?",
  261. "DELETE FROM dashboard_provisioning WHERE dashboard_id = ?",
  262. }
  263. for _, sql := range deletes {
  264. _, err := sess.Exec(sql, dashboard.Id)
  265. if err != nil {
  266. return err
  267. }
  268. }
  269. if err := DeleteAlertDefinition(dashboard.Id, sess); err != nil {
  270. return nil
  271. }
  272. return nil
  273. })
  274. }
  275. func GetDashboards(query *m.GetDashboardsQuery) error {
  276. if len(query.DashboardIds) == 0 {
  277. return m.ErrCommandValidationFailed
  278. }
  279. var dashboards = make([]*m.Dashboard, 0)
  280. err := x.In("id", query.DashboardIds).Find(&dashboards)
  281. query.Result = dashboards
  282. if err != nil {
  283. return err
  284. }
  285. return nil
  286. }
  287. // GetDashboardPermissionsForUser returns the maximum permission the specified user has for a dashboard(s)
  288. // The function takes in a list of dashboard ids and the user id and role
  289. func GetDashboardPermissionsForUser(query *m.GetDashboardPermissionsForUserQuery) error {
  290. if len(query.DashboardIds) == 0 {
  291. return m.ErrCommandValidationFailed
  292. }
  293. if query.OrgRole == m.ROLE_ADMIN {
  294. var permissions = make([]*m.DashboardPermissionForUser, 0)
  295. for _, d := range query.DashboardIds {
  296. permissions = append(permissions, &m.DashboardPermissionForUser{
  297. DashboardId: d,
  298. Permission: m.PERMISSION_ADMIN,
  299. PermissionName: m.PERMISSION_ADMIN.String(),
  300. })
  301. }
  302. query.Result = permissions
  303. return nil
  304. }
  305. params := make([]interface{}, 0)
  306. // check dashboards that have ACLs via user id, team id or role
  307. sql := `SELECT d.id AS dashboard_id, MAX(COALESCE(da.permission, pt.permission)) AS permission
  308. FROM dashboard AS d
  309. LEFT JOIN dashboard_acl as da on d.folder_id = da.dashboard_id or d.id = da.dashboard_id
  310. LEFT JOIN team_member as ugm on ugm.team_id = da.team_id
  311. LEFT JOIN org_user ou ON ou.role = da.role AND ou.user_id = ?
  312. `
  313. params = append(params, query.UserId)
  314. //check the user's role for dashboards that do not have hasAcl set
  315. sql += `LEFT JOIN org_user ouRole ON ouRole.user_id = ? AND ouRole.org_id = ?`
  316. params = append(params, query.UserId)
  317. params = append(params, query.OrgId)
  318. sql += `
  319. LEFT JOIN (SELECT 1 AS permission, 'Viewer' AS role
  320. UNION SELECT 2 AS permission, 'Editor' AS role
  321. UNION SELECT 4 AS permission, 'Admin' AS role) pt ON ouRole.role = pt.role
  322. WHERE
  323. d.Id IN (?` + strings.Repeat(",?", len(query.DashboardIds)-1) + `) `
  324. for _, id := range query.DashboardIds {
  325. params = append(params, id)
  326. }
  327. sql += ` AND
  328. d.org_id = ? AND
  329. (
  330. (d.has_acl = ? AND (da.user_id = ? OR ugm.user_id = ? OR ou.id IS NOT NULL))
  331. OR (d.has_acl = ? AND ouRole.id IS NOT NULL)
  332. )
  333. group by d.id
  334. order by d.id asc`
  335. params = append(params, query.OrgId)
  336. params = append(params, dialect.BooleanStr(true))
  337. params = append(params, query.UserId)
  338. params = append(params, query.UserId)
  339. params = append(params, dialect.BooleanStr(false))
  340. err := x.Sql(sql, params...).Find(&query.Result)
  341. for _, p := range query.Result {
  342. p.PermissionName = p.Permission.String()
  343. }
  344. return err
  345. }
  346. func GetDashboardsByPluginId(query *m.GetDashboardsByPluginIdQuery) error {
  347. var dashboards = make([]*m.Dashboard, 0)
  348. whereExpr := "org_id=? AND plugin_id=? AND is_folder=" + dialect.BooleanStr(false)
  349. err := x.Where(whereExpr, query.OrgId, query.PluginId).Find(&dashboards)
  350. query.Result = dashboards
  351. if err != nil {
  352. return err
  353. }
  354. return nil
  355. }
  356. type DashboardSlugDTO struct {
  357. Slug string
  358. }
  359. func GetDashboardSlugById(query *m.GetDashboardSlugByIdQuery) error {
  360. var rawSql = `SELECT slug from dashboard WHERE Id=?`
  361. var slug = DashboardSlugDTO{}
  362. exists, err := x.SQL(rawSql, query.Id).Get(&slug)
  363. if err != nil {
  364. return err
  365. } else if exists == false {
  366. return m.ErrDashboardNotFound
  367. }
  368. query.Result = slug.Slug
  369. return nil
  370. }
  371. func GetDashboardsBySlug(query *m.GetDashboardsBySlugQuery) error {
  372. var dashboards []*m.Dashboard
  373. if err := x.Where("org_id=? AND slug=?", query.OrgId, query.Slug).Find(&dashboards); err != nil {
  374. return err
  375. }
  376. query.Result = dashboards
  377. return nil
  378. }
  379. func GetDashboardUIDById(query *m.GetDashboardRefByIdQuery) error {
  380. var rawSql = `SELECT uid, slug from dashboard WHERE Id=?`
  381. us := &m.DashboardRef{}
  382. exists, err := x.SQL(rawSql, query.Id).Get(us)
  383. if err != nil {
  384. return err
  385. } else if exists == false {
  386. return m.ErrDashboardNotFound
  387. }
  388. query.Result = us
  389. return nil
  390. }
  391. func getExistingDashboardByIdOrUidForUpdate(sess *DBSession, cmd *m.ValidateDashboardBeforeSaveCommand) (err error) {
  392. dash := cmd.Dashboard
  393. dashWithIdExists := false
  394. var existingById m.Dashboard
  395. if dash.Id > 0 {
  396. dashWithIdExists, err = sess.Where("id=? AND org_id=?", dash.Id, dash.OrgId).Get(&existingById)
  397. if err != nil {
  398. return err
  399. }
  400. if !dashWithIdExists {
  401. return m.ErrDashboardNotFound
  402. }
  403. if dash.Uid == "" {
  404. dash.SetUid(existingById.Uid)
  405. }
  406. }
  407. dashWithUidExists := false
  408. var existingByUid m.Dashboard
  409. if dash.Uid != "" {
  410. dashWithUidExists, err = sess.Where("org_id=? AND uid=?", dash.OrgId, dash.Uid).Get(&existingByUid)
  411. if err != nil {
  412. return err
  413. }
  414. }
  415. if dash.FolderId > 0 {
  416. var existingFolder m.Dashboard
  417. folderExists, folderErr := sess.Where("org_id=? AND id=? AND is_folder=?", dash.OrgId, dash.FolderId, dialect.BooleanStr(true)).Get(&existingFolder)
  418. if folderErr != nil {
  419. return folderErr
  420. }
  421. if !folderExists {
  422. return m.ErrDashboardFolderNotFound
  423. }
  424. }
  425. if !dashWithIdExists && !dashWithUidExists {
  426. return nil
  427. }
  428. if dashWithIdExists && dashWithUidExists && existingById.Id != existingByUid.Id {
  429. return m.ErrDashboardWithSameUIDExists
  430. }
  431. existing := existingById
  432. if !dashWithIdExists && dashWithUidExists {
  433. dash.SetId(existingByUid.Id)
  434. dash.SetUid(existingByUid.Uid)
  435. existing = existingByUid
  436. }
  437. if (existing.IsFolder && !dash.IsFolder) ||
  438. (!existing.IsFolder && dash.IsFolder) {
  439. return m.ErrDashboardTypeMismatch
  440. }
  441. // check for is someone else has written in between
  442. if dash.Version != existing.Version {
  443. if cmd.Overwrite {
  444. dash.SetVersion(existing.Version)
  445. } else {
  446. return m.ErrDashboardVersionMismatch
  447. }
  448. }
  449. // do not allow plugin dashboard updates without overwrite flag
  450. if existing.PluginId != "" && cmd.Overwrite == false {
  451. return m.UpdatePluginDashboardError{PluginId: existing.PluginId}
  452. }
  453. return nil
  454. }
  455. func getExistingDashboardByTitleAndFolder(sess *DBSession, cmd *m.ValidateDashboardBeforeSaveCommand) error {
  456. dash := cmd.Dashboard
  457. var existing m.Dashboard
  458. exists, err := sess.Where("org_id=? AND slug=? AND (is_folder=? OR folder_id=?)", dash.OrgId, dash.Slug, dialect.BooleanStr(true), dash.FolderId).Get(&existing)
  459. if err != nil {
  460. return err
  461. }
  462. if exists && dash.Id != existing.Id {
  463. if existing.IsFolder && !dash.IsFolder {
  464. return m.ErrDashboardWithSameNameAsFolder
  465. }
  466. if !existing.IsFolder && dash.IsFolder {
  467. return m.ErrDashboardFolderWithSameNameAsDashboard
  468. }
  469. if cmd.Overwrite {
  470. dash.SetId(existing.Id)
  471. dash.SetUid(existing.Uid)
  472. dash.SetVersion(existing.Version)
  473. } else {
  474. return m.ErrDashboardWithSameNameInFolderExists
  475. }
  476. }
  477. return nil
  478. }
  479. func ValidateDashboardBeforeSave(cmd *m.ValidateDashboardBeforeSaveCommand) (err error) {
  480. return inTransaction(func(sess *DBSession) error {
  481. if err = getExistingDashboardByIdOrUidForUpdate(sess, cmd); err != nil {
  482. return err
  483. }
  484. if err = getExistingDashboardByTitleAndFolder(sess, cmd); err != nil {
  485. return err
  486. }
  487. return nil
  488. })
  489. }