2022-01-26 10:16:33 +01:00
|
|
|
package query
|
|
|
|
|
|
|
|
import (
|
|
|
|
"context"
|
|
|
|
"strings"
|
|
|
|
|
2022-04-27 01:01:45 +02:00
|
|
|
"github.com/zitadel/zitadel/internal/api/authz"
|
|
|
|
"github.com/zitadel/zitadel/internal/domain"
|
2022-01-26 10:16:33 +01:00
|
|
|
)
|
|
|
|
|
|
|
|
func (q *Queries) GetIAMMemberRoles() []string {
|
|
|
|
roles := make([]string, 0)
|
|
|
|
for _, roleMap := range q.zitadelRoles {
|
|
|
|
if strings.HasPrefix(roleMap.Role, "IAM") {
|
|
|
|
roles = append(roles, roleMap.Role)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return roles
|
|
|
|
}
|
|
|
|
|
|
|
|
func (q *Queries) GetOrgMemberRoles(isGlobal bool) []string {
|
|
|
|
roles := make([]string, 0)
|
|
|
|
for _, roleMap := range q.zitadelRoles {
|
|
|
|
if strings.HasPrefix(roleMap.Role, "ORG") {
|
|
|
|
roles = append(roles, roleMap.Role)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
if isGlobal {
|
|
|
|
roles = append(roles, domain.RoleSelfManagementGlobal)
|
|
|
|
}
|
|
|
|
return roles
|
|
|
|
}
|
|
|
|
|
|
|
|
func (q *Queries) GetProjectMemberRoles(ctx context.Context) ([]string, error) {
|
2022-03-24 17:21:34 +01:00
|
|
|
iam, err := q.Instance(ctx)
|
2022-01-26 10:16:33 +01:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
roles := make([]string, 0)
|
|
|
|
global := authz.GetCtxData(ctx).OrgID == iam.GlobalOrgID
|
|
|
|
for _, roleMap := range q.zitadelRoles {
|
|
|
|
if strings.HasPrefix(roleMap.Role, "PROJECT") && !strings.HasPrefix(roleMap.Role, "PROJECT_GRANT") {
|
|
|
|
if global && !strings.HasSuffix(roleMap.Role, "GLOBAL") {
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
roles = append(roles, roleMap.Role)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return roles, nil
|
|
|
|
}
|
|
|
|
|
|
|
|
func (q *Queries) GetProjectGrantMemberRoles() []string {
|
|
|
|
roles := make([]string, 0)
|
|
|
|
for _, roleMap := range q.zitadelRoles {
|
|
|
|
if strings.HasPrefix(roleMap.Role, "PROJECT_GRANT") {
|
|
|
|
roles = append(roles, roleMap.Role)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return roles
|
|
|
|
}
|