2025-01-21 11:37:28 +01:00
|
|
|
import { DeleteResult, EntityManager, InsertResult } from "typeorm";
|
|
|
|
import { dataSource } from "../../../data-source";
|
2025-01-22 09:39:31 +01:00
|
|
|
import { webapiPermission } from "../../../entity/user/webapi_permission";
|
2025-01-21 11:37:28 +01:00
|
|
|
import InternalException from "../../../exceptions/internalException";
|
2025-01-22 09:39:31 +01:00
|
|
|
import WebapiService from "../../../service/user/webapiService";
|
2025-01-21 11:37:28 +01:00
|
|
|
import {
|
2025-01-22 09:39:31 +01:00
|
|
|
CreateWebapiPermissionCommand,
|
|
|
|
DeleteWebapiPermissionCommand,
|
|
|
|
UpdateWebapiPermissionsCommand,
|
|
|
|
} from "./webapiPermissionCommand";
|
2025-01-21 11:37:28 +01:00
|
|
|
import PermissionHelper from "../../../helpers/permissionHelper";
|
2025-01-22 09:39:31 +01:00
|
|
|
import WebapiPermissionService from "../../../service/user/webapiPermissionService";
|
2025-01-21 11:37:28 +01:00
|
|
|
import { PermissionString } from "../../../type/permissionTypes";
|
|
|
|
|
2025-01-22 09:39:31 +01:00
|
|
|
export default abstract class WebapiPermissionCommandHandler {
|
2025-01-21 11:37:28 +01:00
|
|
|
/**
|
|
|
|
* @description update api permissions
|
2025-01-22 09:39:31 +01:00
|
|
|
* @param {UpdateWebapiPermissionsCommand} updateWebapiPermissions
|
2025-01-21 11:37:28 +01:00
|
|
|
* @returns {Promise<void>}
|
|
|
|
*/
|
2025-01-22 09:39:31 +01:00
|
|
|
static async updatePermissions(updateWebapiPermissions: UpdateWebapiPermissionsCommand): Promise<void> {
|
2025-01-22 11:57:19 +01:00
|
|
|
let currentPermissions = (await WebapiPermissionService.getByApi(updateWebapiPermissions.webapiId)).map(
|
2025-01-22 09:39:31 +01:00
|
|
|
(r) => r.permission
|
|
|
|
);
|
2025-01-21 11:37:28 +01:00
|
|
|
return await dataSource.manager
|
|
|
|
.transaction(async (manager) => {
|
2025-01-22 09:39:31 +01:00
|
|
|
let newPermissions = PermissionHelper.getWhatToAdd(currentPermissions, updateWebapiPermissions.permissions);
|
|
|
|
let removePermissions = PermissionHelper.getWhatToRemove(
|
|
|
|
currentPermissions,
|
|
|
|
updateWebapiPermissions.permissions
|
|
|
|
);
|
2025-01-21 11:37:28 +01:00
|
|
|
if (newPermissions.length != 0) {
|
2025-01-22 11:57:19 +01:00
|
|
|
await this.updatePermissionsAdd(manager, updateWebapiPermissions.webapiId, newPermissions);
|
2025-01-21 11:37:28 +01:00
|
|
|
}
|
|
|
|
if (removePermissions.length != 0) {
|
2025-01-22 11:57:19 +01:00
|
|
|
await this.updatePermissionsRemove(manager, updateWebapiPermissions.webapiId, removePermissions);
|
2025-01-21 11:37:28 +01:00
|
|
|
}
|
|
|
|
})
|
|
|
|
.then(() => {})
|
|
|
|
.catch((err) => {
|
|
|
|
throw new InternalException("Failed saving api permissions", err);
|
|
|
|
});
|
|
|
|
}
|
|
|
|
|
|
|
|
private static async updatePermissionsAdd(
|
|
|
|
manager: EntityManager,
|
2025-01-22 09:39:31 +01:00
|
|
|
webapiId: number,
|
2025-01-21 11:37:28 +01:00
|
|
|
permissions: Array<PermissionString>
|
|
|
|
): Promise<InsertResult> {
|
|
|
|
return await manager
|
|
|
|
.createQueryBuilder()
|
|
|
|
.insert()
|
2025-01-22 09:39:31 +01:00
|
|
|
.into(webapiPermission)
|
2025-01-21 11:37:28 +01:00
|
|
|
.values(
|
|
|
|
permissions.map((p) => ({
|
|
|
|
permission: p,
|
2025-01-22 11:57:19 +01:00
|
|
|
webapiId: webapiId,
|
2025-01-21 11:37:28 +01:00
|
|
|
}))
|
|
|
|
)
|
|
|
|
.orIgnore()
|
|
|
|
.execute();
|
|
|
|
}
|
|
|
|
|
|
|
|
private static async updatePermissionsRemove(
|
|
|
|
manager: EntityManager,
|
2025-01-22 09:39:31 +01:00
|
|
|
webapiId: number,
|
2025-01-21 11:37:28 +01:00
|
|
|
permissions: Array<PermissionString>
|
|
|
|
): Promise<DeleteResult> {
|
|
|
|
return await manager
|
|
|
|
.createQueryBuilder()
|
|
|
|
.delete()
|
2025-01-22 09:39:31 +01:00
|
|
|
.from(webapiPermission)
|
|
|
|
.where("webapiId = :id", { id: webapiId })
|
2025-01-21 11:37:28 +01:00
|
|
|
.andWhere("permission IN (:...permission)", { permission: permissions })
|
|
|
|
.execute();
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* @description grant permission to user
|
2025-01-22 09:39:31 +01:00
|
|
|
* @param {CreateWebapiPermissionCommand} createPermission
|
2025-01-21 11:37:28 +01:00
|
|
|
* @returns {Promise<number>}
|
|
|
|
*/
|
2025-01-22 09:39:31 +01:00
|
|
|
static async create(createPermission: CreateWebapiPermissionCommand): Promise<number> {
|
2025-01-21 11:37:28 +01:00
|
|
|
return await dataSource
|
|
|
|
.createQueryBuilder()
|
|
|
|
.insert()
|
2025-01-22 09:39:31 +01:00
|
|
|
.into(webapiPermission)
|
2025-01-21 11:37:28 +01:00
|
|
|
.values({
|
|
|
|
permission: createPermission.permission,
|
2025-01-22 11:57:19 +01:00
|
|
|
webapiId: createPermission.webapiId,
|
2025-01-21 11:37:28 +01:00
|
|
|
})
|
|
|
|
.execute()
|
|
|
|
.then((result) => {
|
|
|
|
return result.identifiers[0].id;
|
|
|
|
})
|
|
|
|
.catch((err) => {
|
|
|
|
throw new InternalException("Failed saving api permission", err);
|
|
|
|
});
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* @description remove permission from api
|
2025-01-22 09:39:31 +01:00
|
|
|
* @param {DeleteWebapiPermissionCommand} deletePermission
|
2025-01-21 11:37:28 +01:00
|
|
|
* @returns {Promise<any>}
|
|
|
|
*/
|
2025-01-22 09:39:31 +01:00
|
|
|
static async delete(deletePermission: DeleteWebapiPermissionCommand): Promise<any> {
|
2025-01-21 11:37:28 +01:00
|
|
|
return await dataSource
|
|
|
|
.createQueryBuilder()
|
|
|
|
.delete()
|
2025-01-22 09:39:31 +01:00
|
|
|
.from(webapiPermission)
|
2025-01-22 11:57:19 +01:00
|
|
|
.where("webapiId = :id", { id: deletePermission.webapiId })
|
2025-01-21 11:37:28 +01:00
|
|
|
.andWhere("permission = :permission", { permission: deletePermission.permission })
|
|
|
|
.execute()
|
|
|
|
.then(() => {})
|
|
|
|
.catch((err) => {
|
|
|
|
throw new InternalException("failed api permission removal", err);
|
|
|
|
});
|
|
|
|
}
|
|
|
|
}
|