forked from github-starred/komodo
* attach env_file to compose build and compose pull stages * fmt and bump rust version * bump dependencies * ignored for Sqlite message * fix Build secret args info * improve secret arguments info * improve environment, ports, volumes deserializers * rename `mongo` to `database` in config * support _FILE in secret env vars * improve setup - simpler compose * remove aws ecr container registry support, alpine dockerfiles * log periphery config * ssl_enabled mode * log http vs https * periphery client accept untrust ssl certs * fix nav issue from links * configurable ssl * KOMODO_ENSURE_SERVER -> KOMODO_FIRST_SERVER * mount proc and ssl volume * managed sync * validate files on host resource path * remove sync repo not configured guards * disable confirm dialog * fix sync hash / message Option * try dev dockerfile * refresh sync resources after commit * socket invalidate handling * delete dev dockerfile * Commit Changes * Add Info tab to syncs * fix new Info parsing issue with serde default * refresh stack cache on create / update * managed syncs can't sync themselves * managed syncs seems to work * bump thiserror * use alpine as main dockerfile * apt add --no-cache * disable user write perms, super admin perms to manage admins * manage admin user UI * implement disable non admin create frontend * disable create non admin * Copy button shown based on permission * warning message on managed sync * implement monaco editor * impl simple match tags config * resource sync support match tags * more match tag filtering * improve config with better saving diffs * export button use monaco * deser Conversions with wrapping strings * envs editing * don't delete variables / user groups if match tags defined * env from_str improve * improve dashboards * remove core ca stuff for now * move periphery ssl gen to dedicated file * default server address periphery:8120 * clean up ssl configs * server dashboard * nice test compose * add discord alerter * discord alerter * stack hideInfo logic * compose setup * alert table * improve config hover card style * update min editor height and stack config * Feat: Styling Updates (#94) * sidebar takes full screen height * add bg accent to navbar * add aschild prop to topbar alerts trigger * stylize resource rows * internally scrollable data tables * better hover color for outlined button * always show scrollbar to prevent layout shift * better hover color for navbar * rearrange buttons * fix table and resource row styles * cleanup scrollbar css * use page for dashboard instead of section * fix padding * resource sync refactor and env keep comments * frontend build * improve configs * config nice * Feat/UI (#95) * stylize resource rows * internally scrollable data tables * fix table and resource row styles * use page for dashboard instead of section * fix padding * add `ResourcePageHeader` to required components * add generic resource page header component * add resource page headers for all components * add resource notificaitons component * add `TextUpdateMenu2` for use in resource page * cleanup resource notificaitons * update resource page layout * ui edits * sync kind of work * clean up unused import * syncs seem to work * new sync pending * monaco diff hide unchanged regions * update styling all in config resource select links * confirm update default strings * move procedure Add Stage to left * update colors / styles * frontend build * backend for write file contents to host * compose reference ports comment out * server config * ensure parent directory created * fix frontend build * remove default stack run_directory * fix periphery compose deploy response set * update compose files * move server stats under tabs * fix deployment list item getting correct image when not deployed * stack updates cache after file write * edit files on host * clean up unused imports * top level config update assignment must be spread * update deps, move alert module * move stack module * move sync module * move to sync db_client usage after init * support generic OIDC provider * init builders / server templates specifying https * special cases for server / deployment state * improve alert details * add builder template `use_https` config * try downgrade aws sdk ec2 for x86 build * update debian dockerfiles to rm lists/* * optionally configure seperate KOMODO_OIDC_REDIRECT * add defaults to compose.env * keep tags / search right aligned when view only * clean up configs * remove unused migrator deps * update roadmap support generic OIDC * initialize sync use confirm button * key_value syntax highlighting * smaller debian dockerfiles * clean up deps.sh * debian dockerifle * New config layout (#96) * new config layout * fix image config layout and components config * fix dom nesting and cleanup components * fix label, make switches flex row * ensure smooth scroll on hash navigations * width 180 on config sidebar * slight edits to config * log whether https builder * DISABLED <switch> ENABLED * fix some more config * smaller checked component * server config looking good * auto initialize compose files when files on host * stack files on host good * stack config nice * remove old config * deployments looking good * build looking good * Repo good * nice config for builders * alerter good * server template config * syncs good * tweak stack config * use status badge for update tables * unified update page using router params * replace /updates with unified updates page * redirect all resource updates to unified update page * fix reset handling * unmount legacy page * try periphery rustls * rm unused import * fix broken deps * add unified alerts apge * mount new alerts, remove old alerts page * reroute resource alerts to unified alerts page * back to periphery openssl * ssl_enabled defaults to false for backward compat * reqwest need json feature * back to og yaml monaco * Uncomment config fields for clearer config * clean up compose env * implement pull or clone, avoid deleting repo directory * refactor mongo configuration params * all configs respect empty string null * add back status to header * build toml don't have version if not auto incrementing * fix comile * fix repo pull cd to correct dir * fix core pull_or_clone directory * improve statuses * remove ' ' from kv list parser * longer CSRF valid for, to give time to login / accept * don't compute diff / execute if there are any file_errors * PartialBuilderConfig enum user inner option * move errors to top * fix toml init serializer * server template and bulder manually add config.params line * better way to check builder / template params empty * improve build configs * merge links into network area deployment * default periphery config * improve SystemCommand editor * better Repo server / builder Info * improve Alerts / Updates with ResourceSelector * fix unused frontend * update ResourceSync description * toml use [resource.config] syntax * update toml syntax * update Build.image_registry schema * fix repo / stack resource link alias * reorder image registry * align toml / yaml parser style * some config updates --------- Co-authored-by: Karamvir Singh <67458484+karamvirsingh98@users.noreply.github.com> Co-authored-by: kv <karamvir.singh98@gmail.com>
212 lines
5.5 KiB
Rust
212 lines
5.5 KiB
Rust
use std::{collections::VecDeque, time::Instant};
|
|
|
|
use anyhow::{anyhow, Context};
|
|
use axum::{middleware, routing::post, Extension, Json, Router};
|
|
use axum_extra::{headers::ContentType, TypedHeader};
|
|
use komodo_client::{
|
|
api::user::{
|
|
CreateApiKey, CreateApiKeyResponse, DeleteApiKey,
|
|
DeleteApiKeyResponse, PushRecentlyViewed,
|
|
PushRecentlyViewedResponse, SetLastSeenUpdate,
|
|
SetLastSeenUpdateResponse,
|
|
},
|
|
entities::{api_key::ApiKey, komodo_timestamp, user::User},
|
|
};
|
|
use mongo_indexed::doc;
|
|
use mungos::{by_id::update_one_by_id, mongodb::bson::to_bson};
|
|
use resolver_api::{derive::Resolver, Resolve, Resolver};
|
|
use serde::{Deserialize, Serialize};
|
|
use typeshare::typeshare;
|
|
use uuid::Uuid;
|
|
|
|
use crate::{
|
|
auth::auth_request,
|
|
helpers::{query::get_user, random_string},
|
|
state::{db_client, State},
|
|
};
|
|
|
|
#[typeshare]
|
|
#[derive(Serialize, Deserialize, Debug, Clone, Resolver)]
|
|
#[resolver_target(State)]
|
|
#[resolver_args(User)]
|
|
#[serde(tag = "type", content = "params")]
|
|
enum UserRequest {
|
|
PushRecentlyViewed(PushRecentlyViewed),
|
|
SetLastSeenUpdate(SetLastSeenUpdate),
|
|
CreateApiKey(CreateApiKey),
|
|
DeleteApiKey(DeleteApiKey),
|
|
}
|
|
|
|
pub fn router() -> Router {
|
|
Router::new()
|
|
.route("/", post(handler))
|
|
.layer(middleware::from_fn(auth_request))
|
|
}
|
|
|
|
#[instrument(name = "UserHandler", level = "debug", skip(user))]
|
|
async fn handler(
|
|
Extension(user): Extension<User>,
|
|
Json(request): Json<UserRequest>,
|
|
) -> serror::Result<(TypedHeader<ContentType>, String)> {
|
|
let timer = Instant::now();
|
|
let req_id = Uuid::new_v4();
|
|
debug!(
|
|
"/user request {req_id} | user: {} ({})",
|
|
user.username, user.id
|
|
);
|
|
let res =
|
|
State
|
|
.resolve_request(request, user)
|
|
.await
|
|
.map_err(|e| match e {
|
|
resolver_api::Error::Serialization(e) => {
|
|
anyhow!("{e:?}").context("response serialization error")
|
|
}
|
|
resolver_api::Error::Inner(e) => e,
|
|
});
|
|
if let Err(e) = &res {
|
|
warn!("/user request {req_id} error: {e:#}");
|
|
}
|
|
let elapsed = timer.elapsed();
|
|
debug!("/user request {req_id} | resolve time: {elapsed:?}");
|
|
Ok((TypedHeader(ContentType::json()), res?))
|
|
}
|
|
|
|
const RECENTLY_VIEWED_MAX: usize = 10;
|
|
|
|
impl Resolve<PushRecentlyViewed, User> for State {
|
|
#[instrument(
|
|
name = "PushRecentlyViewed",
|
|
level = "debug",
|
|
skip(self, user)
|
|
)]
|
|
async fn resolve(
|
|
&self,
|
|
PushRecentlyViewed { resource }: PushRecentlyViewed,
|
|
user: User,
|
|
) -> anyhow::Result<PushRecentlyViewedResponse> {
|
|
let user = get_user(&user.id).await?;
|
|
|
|
let (resource_type, id) = resource.extract_variant_id();
|
|
let update = match user.recents.get(&resource_type) {
|
|
Some(recents) => {
|
|
let mut recents = recents
|
|
.iter()
|
|
.filter(|_id| !id.eq(*_id))
|
|
.take(RECENTLY_VIEWED_MAX - 1)
|
|
.collect::<VecDeque<_>>();
|
|
recents.push_front(id);
|
|
doc! { format!("recents.{resource_type}"): to_bson(&recents)? }
|
|
}
|
|
None => {
|
|
doc! { format!("recents.{resource_type}"): [id] }
|
|
}
|
|
};
|
|
update_one_by_id(
|
|
&db_client().users,
|
|
&user.id,
|
|
mungos::update::Update::Set(update),
|
|
None,
|
|
)
|
|
.await
|
|
.with_context(|| {
|
|
format!("failed to update recents.{resource_type}")
|
|
})?;
|
|
|
|
Ok(PushRecentlyViewedResponse {})
|
|
}
|
|
}
|
|
|
|
impl Resolve<SetLastSeenUpdate, User> for State {
|
|
#[instrument(
|
|
name = "SetLastSeenUpdate",
|
|
level = "debug",
|
|
skip(self, user)
|
|
)]
|
|
async fn resolve(
|
|
&self,
|
|
SetLastSeenUpdate {}: SetLastSeenUpdate,
|
|
user: User,
|
|
) -> anyhow::Result<SetLastSeenUpdateResponse> {
|
|
update_one_by_id(
|
|
&db_client().users,
|
|
&user.id,
|
|
mungos::update::Update::Set(doc! {
|
|
"last_update_view": komodo_timestamp()
|
|
}),
|
|
None,
|
|
)
|
|
.await
|
|
.context("failed to update user last_update_view")?;
|
|
Ok(SetLastSeenUpdateResponse {})
|
|
}
|
|
}
|
|
|
|
const SECRET_LENGTH: usize = 40;
|
|
const BCRYPT_COST: u32 = 10;
|
|
|
|
impl Resolve<CreateApiKey, User> for State {
|
|
#[instrument(
|
|
name = "CreateApiKey",
|
|
level = "debug",
|
|
skip(self, user)
|
|
)]
|
|
async fn resolve(
|
|
&self,
|
|
CreateApiKey { name, expires }: CreateApiKey,
|
|
user: User,
|
|
) -> anyhow::Result<CreateApiKeyResponse> {
|
|
let user = get_user(&user.id).await?;
|
|
|
|
let key = format!("K-{}", random_string(SECRET_LENGTH));
|
|
let secret = format!("S-{}", random_string(SECRET_LENGTH));
|
|
let secret_hash = bcrypt::hash(&secret, BCRYPT_COST)
|
|
.context("failed at hashing secret string")?;
|
|
|
|
let api_key = ApiKey {
|
|
name,
|
|
key: key.clone(),
|
|
secret: secret_hash,
|
|
user_id: user.id.clone(),
|
|
created_at: komodo_timestamp(),
|
|
expires,
|
|
};
|
|
db_client()
|
|
.api_keys
|
|
.insert_one(api_key)
|
|
.await
|
|
.context("failed to create api key on db")?;
|
|
Ok(CreateApiKeyResponse { key, secret })
|
|
}
|
|
}
|
|
|
|
impl Resolve<DeleteApiKey, User> for State {
|
|
#[instrument(
|
|
name = "DeleteApiKey",
|
|
level = "debug",
|
|
skip(self, user)
|
|
)]
|
|
async fn resolve(
|
|
&self,
|
|
DeleteApiKey { key }: DeleteApiKey,
|
|
user: User,
|
|
) -> anyhow::Result<DeleteApiKeyResponse> {
|
|
let client = db_client();
|
|
let key = client
|
|
.api_keys
|
|
.find_one(doc! { "key": &key })
|
|
.await
|
|
.context("failed at db query")?
|
|
.context("no api key with key found")?;
|
|
if user.id != key.user_id {
|
|
return Err(anyhow!("api key does not belong to user"));
|
|
}
|
|
client
|
|
.api_keys
|
|
.delete_one(doc! { "key": key.key })
|
|
.await
|
|
.context("failed to delete api key from db")?;
|
|
Ok(DeleteApiKeyResponse {})
|
|
}
|
|
}
|