2022-02-11 13:07:32 +00:00
|
|
|
package initialise
|
|
|
|
|
|
|
|
import (
|
|
|
|
"database/sql"
|
2022-02-16 12:30:49 +00:00
|
|
|
_ "embed"
|
2022-02-11 13:07:32 +00:00
|
|
|
|
|
|
|
"github.com/caos/logging"
|
|
|
|
"github.com/spf13/cobra"
|
|
|
|
"github.com/spf13/viper"
|
|
|
|
)
|
|
|
|
|
2022-02-16 12:30:49 +00:00
|
|
|
var (
|
|
|
|
searchUser = "SELECT username FROM [show roles] WHERE username = $1"
|
|
|
|
//go:embed sql/01_user.sql
|
|
|
|
createUserStmt string
|
|
|
|
)
|
|
|
|
|
2022-02-11 13:07:32 +00:00
|
|
|
func newUser() *cobra.Command {
|
|
|
|
return &cobra.Command{
|
|
|
|
Use: "user",
|
|
|
|
Short: "initialize only the database user",
|
|
|
|
Long: `Sets up the ZITADEL database user.
|
|
|
|
|
|
|
|
Prereqesits:
|
|
|
|
- cockroachdb
|
|
|
|
|
|
|
|
The user provided by flags needs priviledge to
|
|
|
|
- create the database if it does not exist
|
|
|
|
- see other users and create a new one if the user does not exist
|
|
|
|
- grant all rights of the ZITADEL database to the user created if not yet set
|
|
|
|
`,
|
|
|
|
RunE: func(cmd *cobra.Command, args []string) error {
|
2022-02-16 12:30:49 +00:00
|
|
|
config := Config{}
|
|
|
|
if err := viper.Unmarshal(&config); err != nil {
|
2022-02-11 13:07:32 +00:00
|
|
|
return err
|
|
|
|
}
|
2022-03-15 06:19:02 +00:00
|
|
|
return initialise(config, VerifyUser(config.Database.User.Username, config.Database.User.Password))
|
2022-02-11 13:07:32 +00:00
|
|
|
},
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2022-03-15 06:19:02 +00:00
|
|
|
func VerifyUser(username, password string) func(*sql.DB) error {
|
2022-02-16 12:30:49 +00:00
|
|
|
return func(db *sql.DB) error {
|
2022-03-15 06:19:02 +00:00
|
|
|
logging.WithFields("username", username).Info("verify user")
|
2022-02-16 12:30:49 +00:00
|
|
|
return verify(db,
|
2022-03-15 06:19:02 +00:00
|
|
|
exists(searchUser, username),
|
|
|
|
exec(createUserStmt, username, &sql.NullString{String: password, Valid: password != ""}),
|
2022-02-16 12:30:49 +00:00
|
|
|
)
|
2022-02-11 13:07:32 +00:00
|
|
|
}
|
|
|
|
}
|