2022-02-11 14:07:32 +01:00
|
|
|
package initialise
|
|
|
|
|
|
|
|
import (
|
2024-12-04 14:51:40 +01:00
|
|
|
"context"
|
2022-02-16 13:30:49 +01:00
|
|
|
_ "embed"
|
2022-06-01 11:41:01 +02:00
|
|
|
"fmt"
|
2022-02-11 14:07:32 +01:00
|
|
|
|
|
|
|
"github.com/spf13/cobra"
|
|
|
|
"github.com/spf13/viper"
|
2022-04-27 01:01:45 +02:00
|
|
|
"github.com/zitadel/logging"
|
2023-10-19 12:19:10 +02:00
|
|
|
|
|
|
|
"github.com/zitadel/zitadel/internal/database"
|
2022-02-11 14:07:32 +01:00
|
|
|
)
|
|
|
|
|
|
|
|
func newUser() *cobra.Command {
|
|
|
|
return &cobra.Command{
|
|
|
|
Use: "user",
|
|
|
|
Short: "initialize only the database user",
|
|
|
|
Long: `Sets up the ZITADEL database user.
|
|
|
|
|
2024-01-17 11:16:48 +01:00
|
|
|
Prerequisites:
|
|
|
|
- cockroachDB or postgreSQL
|
2022-02-11 14:07:32 +01:00
|
|
|
|
2024-01-17 11:16:48 +01:00
|
|
|
The user provided by flags needs privileges to
|
2022-02-11 14:07:32 +01:00
|
|
|
- create the database if it does not exist
|
|
|
|
- see other users and create a new one if the user does not exist
|
|
|
|
- grant all rights of the ZITADEL database to the user created if not yet set
|
|
|
|
`,
|
2022-03-28 10:05:09 +02:00
|
|
|
Run: func(cmd *cobra.Command, args []string) {
|
2022-09-07 10:35:12 +02:00
|
|
|
config := MustNewConfig(viper.GetViper())
|
2022-03-28 10:05:09 +02:00
|
|
|
|
2024-12-04 14:51:40 +01:00
|
|
|
err := initialise(cmd.Context(), config.Database, VerifyUser(config.Database.Username(), config.Database.Password()))
|
2022-03-28 10:05:09 +02:00
|
|
|
logging.OnError(err).Fatal("unable to init user")
|
2022-02-11 14:07:32 +01:00
|
|
|
},
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2024-12-04 14:51:40 +01:00
|
|
|
func VerifyUser(username, password string) func(context.Context, *database.DB) error {
|
|
|
|
return func(ctx context.Context, db *database.DB) error {
|
2022-03-15 07:19:02 +01:00
|
|
|
logging.WithFields("username", username).Info("verify user")
|
2022-08-31 09:52:43 +02:00
|
|
|
|
|
|
|
if password != "" {
|
|
|
|
createUserStmt += " WITH PASSWORD '" + password + "'"
|
|
|
|
}
|
|
|
|
|
2024-12-04 14:51:40 +01:00
|
|
|
return exec(ctx, db, fmt.Sprintf(createUserStmt, username), []string{roleAlreadyExistsCode})
|
2022-02-11 14:07:32 +01:00
|
|
|
}
|
|
|
|
}
|