PermissionsStore.ts 7.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269
  1. import { types, getEnv, flow } from 'mobx-state-tree';
  2. import { PermissionsStoreItem } from './PermissionsStoreItem';
  3. const duplicateError = 'This permission exists already.';
  4. export const permissionOptions = [
  5. { value: 1, label: 'View', description: 'Can view dashboards.' },
  6. { value: 2, label: 'Edit', description: 'Can add, edit and delete dashboards.' },
  7. {
  8. value: 4,
  9. label: 'Admin',
  10. description: 'Can add/remove permissions and can add, edit and delete dashboards.',
  11. },
  12. ];
  13. export const aclTypeValues = {
  14. GROUP: { value: 'Group', text: 'Team' },
  15. USER: { value: 'User', text: 'User' },
  16. VIEWER: { value: 'Viewer', text: 'Everyone With Viewer Role' },
  17. EDITOR: { value: 'Editor', text: 'Everyone With Editor Role' },
  18. };
  19. export const aclTypes = Object.keys(aclTypeValues).map(item => aclTypeValues[item]);
  20. const defaultNewType = aclTypes[0].value;
  21. export const NewPermissionsItem = types
  22. .model('NewPermissionsItem', {
  23. type: types.optional(
  24. types.enumeration(Object.keys(aclTypeValues).map(item => aclTypeValues[item].value)),
  25. defaultNewType
  26. ),
  27. userId: types.maybe(types.number),
  28. userLogin: types.maybe(types.string),
  29. teamId: types.maybe(types.number),
  30. team: types.maybe(types.string),
  31. permission: types.optional(types.number, 1),
  32. })
  33. .views(self => ({
  34. isValid: () => {
  35. switch (self.type) {
  36. case aclTypeValues.GROUP.value:
  37. return self.teamId && self.team;
  38. case aclTypeValues.USER.value:
  39. return !!self.userId && !!self.userLogin;
  40. case aclTypeValues.VIEWER.value:
  41. case aclTypeValues.EDITOR.value:
  42. return true;
  43. default:
  44. return false;
  45. }
  46. },
  47. }))
  48. .actions(self => ({
  49. setUser(userId: number, userLogin: string) {
  50. self.userId = userId;
  51. self.userLogin = userLogin;
  52. self.teamId = null;
  53. self.team = null;
  54. },
  55. setTeam(teamId: number, team: string) {
  56. self.userId = null;
  57. self.userLogin = null;
  58. self.teamId = teamId;
  59. self.team = team;
  60. },
  61. setPermission(permission: number) {
  62. self.permission = permission;
  63. },
  64. }));
  65. export const PermissionsStore = types
  66. .model('PermissionsStore', {
  67. fetching: types.boolean,
  68. isFolder: types.maybe(types.boolean),
  69. dashboardId: types.maybe(types.number),
  70. items: types.optional(types.array(PermissionsStoreItem), []),
  71. error: types.maybe(types.string),
  72. originalItems: types.optional(types.array(PermissionsStoreItem), []),
  73. newType: types.optional(types.string, defaultNewType),
  74. newItem: types.maybe(NewPermissionsItem),
  75. isAddPermissionsVisible: types.optional(types.boolean, false),
  76. isInRoot: types.maybe(types.boolean),
  77. })
  78. .views(self => ({
  79. isValid: item => {
  80. const dupe = self.items.find(it => {
  81. return isDuplicate(it, item);
  82. });
  83. if (dupe) {
  84. self.error = duplicateError;
  85. return false;
  86. }
  87. return true;
  88. },
  89. }))
  90. .actions(self => {
  91. const resetNewType = () => {
  92. self.error = null;
  93. self.newItem = NewPermissionsItem.create();
  94. };
  95. return {
  96. load: flow(function* load(dashboardId: number, isFolder: boolean, isInRoot: boolean) {
  97. const backendSrv = getEnv(self).backendSrv;
  98. self.fetching = true;
  99. self.isFolder = isFolder;
  100. self.isInRoot = isInRoot;
  101. self.dashboardId = dashboardId;
  102. self.items.clear();
  103. const res = yield backendSrv.get(`/api/dashboards/id/${dashboardId}/acl`);
  104. const items = prepareServerResponse(res, dashboardId, isFolder, isInRoot);
  105. self.items = items;
  106. self.originalItems = items;
  107. self.fetching = false;
  108. self.error = null;
  109. }),
  110. addStoreItem: flow(function* addStoreItem() {
  111. self.error = null;
  112. let item = {
  113. type: self.newItem.type,
  114. permission: self.newItem.permission,
  115. dashboardId: self.dashboardId,
  116. team: undefined,
  117. teamId: undefined,
  118. userLogin: undefined,
  119. userId: undefined,
  120. role: undefined,
  121. };
  122. switch (self.newItem.type) {
  123. case aclTypeValues.GROUP.value:
  124. item.team = self.newItem.team;
  125. item.teamId = self.newItem.teamId;
  126. break;
  127. case aclTypeValues.USER.value:
  128. item.userLogin = self.newItem.userLogin;
  129. item.userId = self.newItem.userId;
  130. break;
  131. case aclTypeValues.VIEWER.value:
  132. case aclTypeValues.EDITOR.value:
  133. item.role = self.newItem.type;
  134. break;
  135. default:
  136. throw Error('Unknown type: ' + self.newItem.type);
  137. }
  138. if (!self.isValid(item)) {
  139. return undefined;
  140. }
  141. self.items.push(prepareItem(item, self.dashboardId, self.isFolder, self.isInRoot));
  142. resetNewType();
  143. return updateItems(self);
  144. }),
  145. removeStoreItem: flow(function* removeStoreItem(idx: number) {
  146. self.error = null;
  147. self.items.splice(idx, 1);
  148. return updateItems(self);
  149. }),
  150. updatePermissionOnIndex: flow(function* updatePermissionOnIndex(
  151. idx: number,
  152. permission: number,
  153. permissionName: string
  154. ) {
  155. self.error = null;
  156. self.items[idx].updatePermission(permission, permissionName);
  157. return updateItems(self);
  158. }),
  159. setNewType(newType: string) {
  160. self.newItem = NewPermissionsItem.create({ type: newType });
  161. },
  162. resetNewType() {
  163. resetNewType();
  164. },
  165. toggleAddPermissions() {
  166. self.isAddPermissionsVisible = !self.isAddPermissionsVisible;
  167. },
  168. hideAddPermissions() {
  169. self.isAddPermissionsVisible = false;
  170. },
  171. };
  172. });
  173. const updateItems = self => {
  174. self.error = null;
  175. const backendSrv = getEnv(self).backendSrv;
  176. const updated = [];
  177. for (let item of self.items) {
  178. if (item.inherited) {
  179. continue;
  180. }
  181. updated.push({
  182. id: item.id,
  183. userId: item.userId,
  184. teamId: item.teamId,
  185. role: item.role,
  186. permission: item.permission,
  187. });
  188. }
  189. let res;
  190. try {
  191. res = backendSrv.post(`/api/dashboards/id/${self.dashboardId}/acl`, {
  192. items: updated,
  193. });
  194. } catch (error) {
  195. self.error = error;
  196. }
  197. return res;
  198. };
  199. const prepareServerResponse = (response, dashboardId: number, isFolder: boolean, isInRoot: boolean) => {
  200. return response.map(item => {
  201. return prepareItem(item, dashboardId, isFolder, isInRoot);
  202. });
  203. };
  204. const prepareItem = (item, dashboardId: number, isFolder: boolean, isInRoot: boolean) => {
  205. item.inherited = !isFolder && !isInRoot && dashboardId !== item.dashboardId;
  206. item.sortRank = 0;
  207. if (item.userId > 0) {
  208. item.icon = 'fa fa-fw fa-user';
  209. item.nameHtml = item.userLogin;
  210. item.sortName = item.userLogin;
  211. item.sortRank = 10;
  212. } else if (item.teamId > 0) {
  213. item.icon = 'fa fa-fw fa-users';
  214. item.nameHtml = item.team;
  215. item.sortName = item.team;
  216. item.sortRank = 20;
  217. } else if (item.role) {
  218. item.icon = 'fa fa-fw fa-street-view';
  219. item.nameHtml = `Everyone with <span class="query-keyword">${item.role}</span> Role`;
  220. item.sortName = item.role;
  221. item.sortRank = 30;
  222. if (item.role === 'Viewer') {
  223. item.sortRank += 1;
  224. }
  225. }
  226. if (item.inherited) {
  227. item.sortRank += 100;
  228. }
  229. return item;
  230. };
  231. const isDuplicate = (origItem, newItem) => {
  232. if (origItem.inherited) {
  233. return false;
  234. }
  235. return (
  236. (origItem.role && newItem.role && origItem.role === newItem.role) ||
  237. (origItem.userId && newItem.userId && origItem.userId === newItem.userId) ||
  238. (origItem.teamId && newItem.teamId && origItem.teamId === newItem.teamId)
  239. );
  240. };