dashboard.go 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580
  1. package sqlstore
  2. import (
  3. "strings"
  4. "time"
  5. "github.com/grafana/grafana/pkg/bus"
  6. "github.com/grafana/grafana/pkg/metrics"
  7. m "github.com/grafana/grafana/pkg/models"
  8. "github.com/grafana/grafana/pkg/services/search"
  9. "github.com/grafana/grafana/pkg/util"
  10. )
  11. func init() {
  12. bus.AddHandler("sql", SaveDashboard)
  13. bus.AddHandler("sql", GetDashboard)
  14. bus.AddHandler("sql", GetDashboards)
  15. bus.AddHandler("sql", DeleteDashboard)
  16. bus.AddHandler("sql", SearchDashboards)
  17. bus.AddHandler("sql", GetDashboardTags)
  18. bus.AddHandler("sql", GetDashboardSlugById)
  19. bus.AddHandler("sql", GetDashboardUIDById)
  20. bus.AddHandler("sql", GetDashboardsByPluginId)
  21. bus.AddHandler("sql", GetDashboardPermissionsForUser)
  22. bus.AddHandler("sql", GetDashboardsBySlug)
  23. }
  24. var generateNewUid func() string = util.GenerateShortUid
  25. func SaveDashboard(cmd *m.SaveDashboardCommand) error {
  26. return inTransaction(func(sess *DBSession) error {
  27. return saveDashboard(sess, cmd)
  28. })
  29. }
  30. func saveDashboard(sess *DBSession, cmd *m.SaveDashboardCommand) error {
  31. dash := cmd.GetDashboardModel()
  32. if err := getExistingDashboardForUpdate(sess, dash, cmd); err != nil {
  33. return err
  34. }
  35. var existingByTitleAndFolder m.Dashboard
  36. dashWithTitleAndFolderExists, err := sess.Where("org_id=? AND slug=? AND (is_folder=? OR folder_id=?)", dash.OrgId, dash.Slug, dialect.BooleanStr(true), dash.FolderId).Get(&existingByTitleAndFolder)
  37. if err != nil {
  38. return err
  39. }
  40. if dashWithTitleAndFolderExists {
  41. if dash.Id != existingByTitleAndFolder.Id {
  42. if existingByTitleAndFolder.IsFolder && !cmd.IsFolder {
  43. return m.ErrDashboardWithSameNameAsFolder
  44. }
  45. if !existingByTitleAndFolder.IsFolder && cmd.IsFolder {
  46. return m.ErrDashboardFolderWithSameNameAsDashboard
  47. }
  48. if cmd.Overwrite {
  49. dash.Id = existingByTitleAndFolder.Id
  50. dash.Version = existingByTitleAndFolder.Version
  51. if dash.Uid == "" {
  52. dash.Uid = existingByTitleAndFolder.Uid
  53. }
  54. } else {
  55. return m.ErrDashboardWithSameNameInFolderExists
  56. }
  57. }
  58. }
  59. if dash.Uid == "" {
  60. uid, err := generateNewDashboardUid(sess, dash.OrgId)
  61. if err != nil {
  62. return err
  63. }
  64. dash.Uid = uid
  65. dash.Data.Set("uid", uid)
  66. }
  67. err = setHasAcl(sess, dash)
  68. if err != nil {
  69. return err
  70. }
  71. parentVersion := dash.Version
  72. affectedRows := int64(0)
  73. if dash.Id == 0 {
  74. dash.Version = 1
  75. metrics.M_Api_Dashboard_Insert.Inc()
  76. dash.Data.Set("version", dash.Version)
  77. affectedRows, err = sess.Insert(dash)
  78. } else {
  79. dash.Version++
  80. dash.Data.Set("version", dash.Version)
  81. if !cmd.UpdatedAt.IsZero() {
  82. dash.Updated = cmd.UpdatedAt
  83. }
  84. affectedRows, err = sess.MustCols("folder_id", "has_acl").ID(dash.Id).Update(dash)
  85. }
  86. if err != nil {
  87. return err
  88. }
  89. if affectedRows == 0 {
  90. return m.ErrDashboardNotFound
  91. }
  92. dashVersion := &m.DashboardVersion{
  93. DashboardId: dash.Id,
  94. ParentVersion: parentVersion,
  95. RestoredFrom: cmd.RestoredFrom,
  96. Version: dash.Version,
  97. Created: time.Now(),
  98. CreatedBy: dash.UpdatedBy,
  99. Message: cmd.Message,
  100. Data: dash.Data,
  101. }
  102. // insert version entry
  103. if affectedRows, err = sess.Insert(dashVersion); err != nil {
  104. return err
  105. } else if affectedRows == 0 {
  106. return m.ErrDashboardNotFound
  107. }
  108. // delete existing tags
  109. _, err = sess.Exec("DELETE FROM dashboard_tag WHERE dashboard_id=?", dash.Id)
  110. if err != nil {
  111. return err
  112. }
  113. // insert new tags
  114. tags := dash.GetTags()
  115. if len(tags) > 0 {
  116. for _, tag := range tags {
  117. if _, err := sess.Insert(&DashboardTag{DashboardId: dash.Id, Term: tag}); err != nil {
  118. return err
  119. }
  120. }
  121. }
  122. cmd.Result = dash
  123. return err
  124. }
  125. func getExistingDashboardForUpdate(sess *DBSession, dash *m.Dashboard, cmd *m.SaveDashboardCommand) (err error) {
  126. dashWithIdExists := false
  127. var existingById m.Dashboard
  128. if dash.Id > 0 {
  129. dashWithIdExists, err = sess.Where("id=? AND org_id=?", dash.Id, dash.OrgId).Get(&existingById)
  130. if err != nil {
  131. return err
  132. }
  133. if !dashWithIdExists {
  134. return m.ErrDashboardNotFound
  135. }
  136. if dash.Uid == "" {
  137. dash.Uid = existingById.Uid
  138. }
  139. }
  140. dashWithUidExists := false
  141. var existingByUid m.Dashboard
  142. if dash.Uid != "" {
  143. dashWithUidExists, err = sess.Where("org_id=? AND uid=?", dash.OrgId, dash.Uid).Get(&existingByUid)
  144. if err != nil {
  145. return err
  146. }
  147. }
  148. if !dashWithIdExists && !dashWithUidExists {
  149. return nil
  150. }
  151. if dashWithIdExists && dashWithUidExists && existingById.Id != existingByUid.Id {
  152. return m.ErrDashboardWithSameUIDExists
  153. }
  154. existing := existingById
  155. if !dashWithIdExists && dashWithUidExists {
  156. dash.Id = existingByUid.Id
  157. existing = existingByUid
  158. }
  159. if (existing.IsFolder && !cmd.IsFolder) ||
  160. (!existing.IsFolder && cmd.IsFolder) {
  161. return m.ErrDashboardTypeMismatch
  162. }
  163. // check for is someone else has written in between
  164. if dash.Version != existing.Version {
  165. if cmd.Overwrite {
  166. dash.Version = existing.Version
  167. } else {
  168. return m.ErrDashboardVersionMismatch
  169. }
  170. }
  171. // do not allow plugin dashboard updates without overwrite flag
  172. if existing.PluginId != "" && cmd.Overwrite == false {
  173. return m.UpdatePluginDashboardError{PluginId: existing.PluginId}
  174. }
  175. return nil
  176. }
  177. func generateNewDashboardUid(sess *DBSession, orgId int64) (string, error) {
  178. for i := 0; i < 3; i++ {
  179. uid := generateNewUid()
  180. exists, err := sess.Where("org_id=? AND uid=?", orgId, uid).Get(&m.Dashboard{})
  181. if err != nil {
  182. return "", err
  183. }
  184. if !exists {
  185. return uid, nil
  186. }
  187. }
  188. return "", m.ErrDashboardFailedGenerateUniqueUid
  189. }
  190. func setHasAcl(sess *DBSession, dash *m.Dashboard) error {
  191. // check if parent has acl
  192. if dash.FolderId > 0 {
  193. var parent m.Dashboard
  194. if hasParent, err := sess.Where("folder_id=?", dash.FolderId).Get(&parent); err != nil {
  195. return err
  196. } else if hasParent && parent.HasAcl {
  197. dash.HasAcl = true
  198. }
  199. }
  200. // check if dash has its own acl
  201. if dash.Id > 0 {
  202. if res, err := sess.Query("SELECT 1 from dashboard_acl WHERE dashboard_id =?", dash.Id); err != nil {
  203. return err
  204. } else {
  205. if len(res) > 0 {
  206. dash.HasAcl = true
  207. }
  208. }
  209. }
  210. return nil
  211. }
  212. func GetDashboard(query *m.GetDashboardQuery) error {
  213. dashboard := m.Dashboard{Slug: query.Slug, OrgId: query.OrgId, Id: query.Id, Uid: query.Uid}
  214. has, err := x.Get(&dashboard)
  215. if err != nil {
  216. return err
  217. } else if has == false {
  218. return m.ErrDashboardNotFound
  219. }
  220. dashboard.Data.Set("id", dashboard.Id)
  221. dashboard.Data.Set("uid", dashboard.Uid)
  222. query.Result = &dashboard
  223. return nil
  224. }
  225. type DashboardSearchProjection struct {
  226. Id int64
  227. Uid string
  228. Title string
  229. Slug string
  230. Term string
  231. IsFolder bool
  232. FolderId int64
  233. FolderUid string
  234. FolderSlug string
  235. FolderTitle string
  236. }
  237. func findDashboards(query *search.FindPersistedDashboardsQuery) ([]DashboardSearchProjection, error) {
  238. limit := query.Limit
  239. if limit == 0 {
  240. limit = 1000
  241. }
  242. sb := NewSearchBuilder(query.SignedInUser, limit, query.Permission).
  243. WithTags(query.Tags).
  244. WithDashboardIdsIn(query.DashboardIds)
  245. if query.IsStarred {
  246. sb.IsStarred()
  247. }
  248. if len(query.Title) > 0 {
  249. sb.WithTitle(query.Title)
  250. }
  251. if len(query.Type) > 0 {
  252. sb.WithType(query.Type)
  253. }
  254. if len(query.FolderIds) > 0 {
  255. sb.WithFolderIds(query.FolderIds)
  256. }
  257. var res []DashboardSearchProjection
  258. sql, params := sb.ToSql()
  259. err := x.Sql(sql, params...).Find(&res)
  260. if err != nil {
  261. return nil, err
  262. }
  263. return res, nil
  264. }
  265. func SearchDashboards(query *search.FindPersistedDashboardsQuery) error {
  266. res, err := findDashboards(query)
  267. if err != nil {
  268. return err
  269. }
  270. makeQueryResult(query, res)
  271. return nil
  272. }
  273. func getHitType(item DashboardSearchProjection) search.HitType {
  274. var hitType search.HitType
  275. if item.IsFolder {
  276. hitType = search.DashHitFolder
  277. } else {
  278. hitType = search.DashHitDB
  279. }
  280. return hitType
  281. }
  282. func makeQueryResult(query *search.FindPersistedDashboardsQuery, res []DashboardSearchProjection) {
  283. query.Result = make([]*search.Hit, 0)
  284. hits := make(map[int64]*search.Hit)
  285. for _, item := range res {
  286. hit, exists := hits[item.Id]
  287. if !exists {
  288. hit = &search.Hit{
  289. Id: item.Id,
  290. Uid: item.Uid,
  291. Title: item.Title,
  292. Uri: "db/" + item.Slug,
  293. Url: m.GetDashboardFolderUrl(item.IsFolder, item.Uid, item.Slug),
  294. Type: getHitType(item),
  295. FolderId: item.FolderId,
  296. FolderUid: item.FolderUid,
  297. FolderTitle: item.FolderTitle,
  298. Tags: []string{},
  299. }
  300. if item.FolderId > 0 {
  301. hit.FolderUrl = m.GetFolderUrl(item.FolderUid, item.FolderSlug)
  302. }
  303. query.Result = append(query.Result, hit)
  304. hits[item.Id] = hit
  305. }
  306. if len(item.Term) > 0 {
  307. hit.Tags = append(hit.Tags, item.Term)
  308. }
  309. }
  310. }
  311. func GetDashboardTags(query *m.GetDashboardTagsQuery) error {
  312. sql := `SELECT
  313. COUNT(*) as count,
  314. term
  315. FROM dashboard
  316. INNER JOIN dashboard_tag on dashboard_tag.dashboard_id = dashboard.id
  317. WHERE dashboard.org_id=?
  318. GROUP BY term`
  319. query.Result = make([]*m.DashboardTagCloudItem, 0)
  320. sess := x.Sql(sql, query.OrgId)
  321. err := sess.Find(&query.Result)
  322. return err
  323. }
  324. func DeleteDashboard(cmd *m.DeleteDashboardCommand) error {
  325. return inTransaction(func(sess *DBSession) error {
  326. dashboard := m.Dashboard{Id: cmd.Id, OrgId: cmd.OrgId}
  327. has, err := sess.Get(&dashboard)
  328. if err != nil {
  329. return err
  330. } else if has == false {
  331. return m.ErrDashboardNotFound
  332. }
  333. deletes := []string{
  334. "DELETE FROM dashboard_tag WHERE dashboard_id = ? ",
  335. "DELETE FROM star WHERE dashboard_id = ? ",
  336. "DELETE FROM dashboard WHERE id = ?",
  337. "DELETE FROM playlist_item WHERE type = 'dashboard_by_id' AND value = ?",
  338. "DELETE FROM dashboard_version WHERE dashboard_id = ?",
  339. "DELETE FROM dashboard WHERE folder_id = ?",
  340. "DELETE FROM annotation WHERE dashboard_id = ?",
  341. "DELETE FROM dashboard_provisioning WHERE dashboard_id = ?",
  342. }
  343. for _, sql := range deletes {
  344. _, err := sess.Exec(sql, dashboard.Id)
  345. if err != nil {
  346. return err
  347. }
  348. }
  349. if err := DeleteAlertDefinition(dashboard.Id, sess); err != nil {
  350. return nil
  351. }
  352. return nil
  353. })
  354. }
  355. func GetDashboards(query *m.GetDashboardsQuery) error {
  356. if len(query.DashboardIds) == 0 {
  357. return m.ErrCommandValidationFailed
  358. }
  359. var dashboards = make([]*m.Dashboard, 0)
  360. err := x.In("id", query.DashboardIds).Find(&dashboards)
  361. query.Result = dashboards
  362. if err != nil {
  363. return err
  364. }
  365. return nil
  366. }
  367. // GetDashboardPermissionsForUser returns the maximum permission the specified user has for a dashboard(s)
  368. // The function takes in a list of dashboard ids and the user id and role
  369. func GetDashboardPermissionsForUser(query *m.GetDashboardPermissionsForUserQuery) error {
  370. if len(query.DashboardIds) == 0 {
  371. return m.ErrCommandValidationFailed
  372. }
  373. if query.OrgRole == m.ROLE_ADMIN {
  374. var permissions = make([]*m.DashboardPermissionForUser, 0)
  375. for _, d := range query.DashboardIds {
  376. permissions = append(permissions, &m.DashboardPermissionForUser{
  377. DashboardId: d,
  378. Permission: m.PERMISSION_ADMIN,
  379. PermissionName: m.PERMISSION_ADMIN.String(),
  380. })
  381. }
  382. query.Result = permissions
  383. return nil
  384. }
  385. params := make([]interface{}, 0)
  386. // check dashboards that have ACLs via user id, team id or role
  387. sql := `SELECT d.id AS dashboard_id, MAX(COALESCE(da.permission, pt.permission)) AS permission
  388. FROM dashboard AS d
  389. LEFT JOIN dashboard_acl as da on d.folder_id = da.dashboard_id or d.id = da.dashboard_id
  390. LEFT JOIN team_member as ugm on ugm.team_id = da.team_id
  391. LEFT JOIN org_user ou ON ou.role = da.role AND ou.user_id = ?
  392. `
  393. params = append(params, query.UserId)
  394. //check the user's role for dashboards that do not have hasAcl set
  395. sql += `LEFT JOIN org_user ouRole ON ouRole.user_id = ? AND ouRole.org_id = ?`
  396. params = append(params, query.UserId)
  397. params = append(params, query.OrgId)
  398. sql += `
  399. LEFT JOIN (SELECT 1 AS permission, 'Viewer' AS role
  400. UNION SELECT 2 AS permission, 'Editor' AS role
  401. UNION SELECT 4 AS permission, 'Admin' AS role) pt ON ouRole.role = pt.role
  402. WHERE
  403. d.Id IN (?` + strings.Repeat(",?", len(query.DashboardIds)-1) + `) `
  404. for _, id := range query.DashboardIds {
  405. params = append(params, id)
  406. }
  407. sql += ` AND
  408. d.org_id = ? AND
  409. (
  410. (d.has_acl = ? AND (da.user_id = ? OR ugm.user_id = ? OR ou.id IS NOT NULL))
  411. OR (d.has_acl = ? AND ouRole.id IS NOT NULL)
  412. )
  413. group by d.id
  414. order by d.id asc`
  415. params = append(params, query.OrgId)
  416. params = append(params, dialect.BooleanStr(true))
  417. params = append(params, query.UserId)
  418. params = append(params, query.UserId)
  419. params = append(params, dialect.BooleanStr(false))
  420. err := x.Sql(sql, params...).Find(&query.Result)
  421. for _, p := range query.Result {
  422. p.PermissionName = p.Permission.String()
  423. }
  424. return err
  425. }
  426. func GetDashboardsByPluginId(query *m.GetDashboardsByPluginIdQuery) error {
  427. var dashboards = make([]*m.Dashboard, 0)
  428. whereExpr := "org_id=? AND plugin_id=? AND is_folder=" + dialect.BooleanStr(false)
  429. err := x.Where(whereExpr, query.OrgId, query.PluginId).Find(&dashboards)
  430. query.Result = dashboards
  431. if err != nil {
  432. return err
  433. }
  434. return nil
  435. }
  436. type DashboardSlugDTO struct {
  437. Slug string
  438. }
  439. func GetDashboardSlugById(query *m.GetDashboardSlugByIdQuery) error {
  440. var rawSql = `SELECT slug from dashboard WHERE Id=?`
  441. var slug = DashboardSlugDTO{}
  442. exists, err := x.SQL(rawSql, query.Id).Get(&slug)
  443. if err != nil {
  444. return err
  445. } else if exists == false {
  446. return m.ErrDashboardNotFound
  447. }
  448. query.Result = slug.Slug
  449. return nil
  450. }
  451. func GetDashboardsBySlug(query *m.GetDashboardsBySlugQuery) error {
  452. var dashboards []*m.Dashboard
  453. if err := x.Where("org_id=? AND slug=?", query.OrgId, query.Slug).Find(&dashboards); err != nil {
  454. return err
  455. }
  456. query.Result = dashboards
  457. return nil
  458. }
  459. func GetDashboardUIDById(query *m.GetDashboardRefByIdQuery) error {
  460. var rawSql = `SELECT uid, slug from dashboard WHERE Id=?`
  461. us := &m.DashboardRef{}
  462. exists, err := x.SQL(rawSql, query.Id).Get(us)
  463. if err != nil {
  464. return err
  465. } else if exists == false {
  466. return m.ErrDashboardNotFound
  467. }
  468. query.Result = us
  469. return nil
  470. }