mirror of
https://github.com/zitadel/zitadel.git
synced 2025-06-02 18:58:22 +00:00

* commander * commander * selber! * move to packages * fix(errors): implement Is interface * test: command * test: commands * add init steps * setup tenant * add default step yaml * possibility to set password * merge v2 into v2-commander * fix: rename iam command side to instance * fix: rename iam command side to instance * fix: rename iam command side to instance * fix: rename iam command side to instance * fix: search query builder can filter events in memory * fix: filters for add member * fix(setup): add `ExternalSecure` to config * chore: name iam to instance * fix: matching * remove unsued func * base url * base url * test(command): filter funcs * test: commands * fix: rename orgiampolicy to domain policy * start from init * commands * config * fix indexes and add constraints * fixes * fix: merge conflicts * fix: protos * fix: md files * setup * add deprecated org iam policy again * typo * fix search query * fix filter * Apply suggestions from code review * remove custom org from org setup * add todos for verification * change apps creation * simplify package structure * fix error * move preparation helper for tests * fix unique constraints * fix config mapping in setup * fix error handling in encryption_keys.go * fix projection config * fix query from old views to projection * fix setup of mgmt api * set iam project and fix instance projection * imports Co-authored-by: Livio Amstutz <livio.a@gmail.com> Co-authored-by: fabi <fabienne.gerschwiler@gmail.com>
208 lines
7.3 KiB
Go
208 lines
7.3 KiB
Go
package projection
|
|
|
|
import (
|
|
"context"
|
|
|
|
"github.com/caos/zitadel/internal/domain"
|
|
"github.com/caos/zitadel/internal/errors"
|
|
"github.com/caos/zitadel/internal/eventstore"
|
|
"github.com/caos/zitadel/internal/eventstore/handler"
|
|
"github.com/caos/zitadel/internal/eventstore/handler/crdb"
|
|
"github.com/caos/zitadel/internal/repository/instance"
|
|
"github.com/caos/zitadel/internal/repository/org"
|
|
"github.com/caos/zitadel/internal/repository/policy"
|
|
)
|
|
|
|
const (
|
|
IDPLoginPolicyLinkTable = "projections.idp_login_policy_links"
|
|
|
|
IDPLoginPolicyLinkIDPIDCol = "idp_id"
|
|
IDPLoginPolicyLinkAggregateIDCol = "aggregate_id"
|
|
IDPLoginPolicyLinkCreationDateCol = "creation_date"
|
|
IDPLoginPolicyLinkChangeDateCol = "change_date"
|
|
IDPLoginPolicyLinkSequenceCol = "sequence"
|
|
IDPLoginPolicyLinkResourceOwnerCol = "resource_owner"
|
|
IDPLoginPolicyLinkInstanceIDCol = "instance_id"
|
|
IDPLoginPolicyLinkProviderTypeCol = "provider_type"
|
|
)
|
|
|
|
type IDPLoginPolicyLinkProjection struct {
|
|
crdb.StatementHandler
|
|
}
|
|
|
|
func NewIDPLoginPolicyLinkProjection(ctx context.Context, config crdb.StatementHandlerConfig) *IDPLoginPolicyLinkProjection {
|
|
p := new(IDPLoginPolicyLinkProjection)
|
|
config.ProjectionName = IDPLoginPolicyLinkTable
|
|
config.Reducers = p.reducers()
|
|
config.InitCheck = crdb.NewTableCheck(
|
|
crdb.NewTable([]*crdb.Column{
|
|
crdb.NewColumn(IDPLoginPolicyLinkIDPIDCol, crdb.ColumnTypeText),
|
|
crdb.NewColumn(IDPLoginPolicyLinkAggregateIDCol, crdb.ColumnTypeText),
|
|
crdb.NewColumn(IDPLoginPolicyLinkCreationDateCol, crdb.ColumnTypeTimestamp),
|
|
crdb.NewColumn(IDPLoginPolicyLinkChangeDateCol, crdb.ColumnTypeTimestamp),
|
|
crdb.NewColumn(IDPLoginPolicyLinkSequenceCol, crdb.ColumnTypeInt64),
|
|
crdb.NewColumn(IDPLoginPolicyLinkResourceOwnerCol, crdb.ColumnTypeText),
|
|
crdb.NewColumn(IDPLoginPolicyLinkInstanceIDCol, crdb.ColumnTypeText),
|
|
},
|
|
crdb.NewPrimaryKey(IDPLoginPolicyLinkInstanceIDCol, IDPLoginPolicyLinkAggregateIDCol, IDPLoginPolicyLinkIDPIDCol),
|
|
crdb.WithIndex(crdb.NewIndex("ro_idx", []string{IDPLoginPolicyLinkResourceOwnerCol})),
|
|
),
|
|
)
|
|
p.StatementHandler = crdb.NewStatementHandler(ctx, config)
|
|
return p
|
|
}
|
|
|
|
func (p *IDPLoginPolicyLinkProjection) reducers() []handler.AggregateReducer {
|
|
return []handler.AggregateReducer{
|
|
{
|
|
Aggregate: org.AggregateType,
|
|
EventRedusers: []handler.EventReducer{
|
|
{
|
|
Event: org.LoginPolicyIDPProviderAddedEventType,
|
|
Reduce: p.reduceAdded,
|
|
},
|
|
{
|
|
Event: org.LoginPolicyIDPProviderCascadeRemovedEventType,
|
|
Reduce: p.reduceCascadeRemoved,
|
|
},
|
|
{
|
|
Event: org.LoginPolicyIDPProviderRemovedEventType,
|
|
Reduce: p.reduceRemoved,
|
|
},
|
|
{
|
|
Event: org.OrgRemovedEventType,
|
|
Reduce: p.reduceOrgRemoved,
|
|
},
|
|
{
|
|
Event: org.IDPConfigRemovedEventType,
|
|
Reduce: p.reduceIDPConfigRemoved,
|
|
},
|
|
},
|
|
},
|
|
{
|
|
Aggregate: instance.AggregateType,
|
|
EventRedusers: []handler.EventReducer{
|
|
{
|
|
Event: instance.LoginPolicyIDPProviderAddedEventType,
|
|
Reduce: p.reduceAdded,
|
|
},
|
|
{
|
|
Event: instance.LoginPolicyIDPProviderCascadeRemovedEventType,
|
|
Reduce: p.reduceCascadeRemoved,
|
|
},
|
|
{
|
|
Event: instance.LoginPolicyIDPProviderRemovedEventType,
|
|
Reduce: p.reduceRemoved,
|
|
},
|
|
{
|
|
Event: instance.IDPConfigRemovedEventType,
|
|
Reduce: p.reduceIDPConfigRemoved,
|
|
},
|
|
},
|
|
},
|
|
}
|
|
}
|
|
|
|
func (p *IDPLoginPolicyLinkProjection) reduceAdded(event eventstore.Event) (*handler.Statement, error) {
|
|
var (
|
|
idp policy.IdentityProviderAddedEvent
|
|
providerType domain.IdentityProviderType
|
|
)
|
|
|
|
switch e := event.(type) {
|
|
case *org.IdentityProviderAddedEvent:
|
|
idp = e.IdentityProviderAddedEvent
|
|
providerType = domain.IdentityProviderTypeOrg
|
|
case *instance.IdentityProviderAddedEvent:
|
|
idp = e.IdentityProviderAddedEvent
|
|
providerType = domain.IdentityProviderTypeSystem
|
|
default:
|
|
return nil, errors.ThrowInvalidArgumentf(nil, "HANDL-Nlp55", "reduce.wrong.event.type %v", []eventstore.EventType{org.LoginPolicyIDPProviderAddedEventType, instance.LoginPolicyIDPProviderAddedEventType})
|
|
}
|
|
|
|
return crdb.NewCreateStatement(&idp,
|
|
[]handler.Column{
|
|
handler.NewCol(IDPLoginPolicyLinkIDPIDCol, idp.IDPConfigID),
|
|
handler.NewCol(IDPLoginPolicyLinkAggregateIDCol, idp.Aggregate().ID),
|
|
handler.NewCol(IDPLoginPolicyLinkCreationDateCol, idp.CreationDate()),
|
|
handler.NewCol(IDPLoginPolicyLinkChangeDateCol, idp.CreationDate()),
|
|
handler.NewCol(IDPLoginPolicyLinkSequenceCol, idp.Sequence()),
|
|
handler.NewCol(IDPLoginPolicyLinkResourceOwnerCol, idp.Aggregate().ResourceOwner),
|
|
handler.NewCol(IDPLoginPolicyLinkInstanceIDCol, idp.Aggregate().InstanceID),
|
|
handler.NewCol(IDPLoginPolicyLinkProviderTypeCol, providerType),
|
|
},
|
|
), nil
|
|
}
|
|
|
|
func (p *IDPLoginPolicyLinkProjection) reduceRemoved(event eventstore.Event) (*handler.Statement, error) {
|
|
var idp policy.IdentityProviderRemovedEvent
|
|
|
|
switch e := event.(type) {
|
|
case *org.IdentityProviderRemovedEvent:
|
|
idp = e.IdentityProviderRemovedEvent
|
|
case *instance.IdentityProviderRemovedEvent:
|
|
idp = e.IdentityProviderRemovedEvent
|
|
default:
|
|
return nil, errors.ThrowInvalidArgumentf(nil, "HANDL-tUMYY", "reduce.wrong.event.type %v", []eventstore.EventType{org.LoginPolicyIDPProviderRemovedEventType, instance.LoginPolicyIDPProviderRemovedEventType})
|
|
}
|
|
|
|
return crdb.NewDeleteStatement(&idp,
|
|
[]handler.Condition{
|
|
handler.NewCond(IDPLoginPolicyLinkIDPIDCol, idp.IDPConfigID),
|
|
handler.NewCond(IDPLoginPolicyLinkAggregateIDCol, idp.Aggregate().ID),
|
|
},
|
|
), nil
|
|
}
|
|
|
|
func (p *IDPLoginPolicyLinkProjection) reduceCascadeRemoved(event eventstore.Event) (*handler.Statement, error) {
|
|
var idp policy.IdentityProviderCascadeRemovedEvent
|
|
|
|
switch e := event.(type) {
|
|
case *org.IdentityProviderCascadeRemovedEvent:
|
|
idp = e.IdentityProviderCascadeRemovedEvent
|
|
case *instance.IdentityProviderCascadeRemovedEvent:
|
|
idp = e.IdentityProviderCascadeRemovedEvent
|
|
default:
|
|
return nil, errors.ThrowInvalidArgumentf(nil, "HANDL-iCKSj", "reduce.wrong.event.type %v", []eventstore.EventType{org.LoginPolicyIDPProviderCascadeRemovedEventType, instance.LoginPolicyIDPProviderCascadeRemovedEventType})
|
|
}
|
|
|
|
return crdb.NewDeleteStatement(&idp,
|
|
[]handler.Condition{
|
|
handler.NewCond(IDPLoginPolicyLinkIDPIDCol, idp.IDPConfigID),
|
|
handler.NewCond(IDPLoginPolicyLinkAggregateIDCol, idp.Aggregate().ID),
|
|
},
|
|
), nil
|
|
}
|
|
|
|
func (p *IDPLoginPolicyLinkProjection) reduceIDPConfigRemoved(event eventstore.Event) (*handler.Statement, error) {
|
|
var idpID string
|
|
|
|
switch e := event.(type) {
|
|
case *org.IDPConfigRemovedEvent:
|
|
idpID = e.ConfigID
|
|
case *instance.IDPConfigRemovedEvent:
|
|
idpID = e.ConfigID
|
|
default:
|
|
return nil, errors.ThrowInvalidArgumentf(nil, "HANDL-u6tze", "reduce.wrong.event.type %v", []eventstore.EventType{org.IDPConfigRemovedEventType, instance.IDPConfigRemovedEventType})
|
|
}
|
|
|
|
return crdb.NewDeleteStatement(event,
|
|
[]handler.Condition{
|
|
handler.NewCond(IDPLoginPolicyLinkIDPIDCol, idpID),
|
|
handler.NewCond(IDPLoginPolicyLinkResourceOwnerCol, event.Aggregate().ResourceOwner),
|
|
},
|
|
), nil
|
|
}
|
|
|
|
func (p *IDPLoginPolicyLinkProjection) reduceOrgRemoved(event eventstore.Event) (*handler.Statement, error) {
|
|
e, ok := event.(*org.OrgRemovedEvent)
|
|
if !ok {
|
|
return nil, errors.ThrowInvalidArgumentf(nil, "HANDL-QSoSe", "reduce.wrong.event.type %s", org.OrgRemovedEventType)
|
|
}
|
|
return crdb.NewDeleteStatement(e,
|
|
[]handler.Condition{
|
|
handler.NewCond(IDPLoginPolicyLinkResourceOwnerCol, e.Aggregate().ID),
|
|
},
|
|
), nil
|
|
}
|