api_contract.go 2.0 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667
  1. package authz
  2. import (
  3. "context"
  4. "fmt"
  5. "net/http"
  6. "github.com/google/uuid"
  7. "github.com/porter-dev/porter/api/server/shared/apierrors"
  8. "github.com/porter-dev/porter/api/server/shared/config"
  9. "github.com/porter-dev/porter/api/types"
  10. "github.com/porter-dev/porter/internal/models"
  11. "gorm.io/gorm"
  12. )
  13. type APIContractRevisionScopedFactory struct {
  14. config *config.Config
  15. }
  16. func NewAPIContractRevisionScopedFactory(
  17. config *config.Config,
  18. ) *APIContractRevisionScopedFactory {
  19. return &APIContractRevisionScopedFactory{config}
  20. }
  21. func (p *APIContractRevisionScopedFactory) Middleware(next http.Handler) http.Handler {
  22. return &APIContractRevisionMiddleware{next, p.config}
  23. }
  24. type APIContractRevisionMiddleware struct {
  25. next http.Handler
  26. config *config.Config
  27. }
  28. func (n *APIContractRevisionMiddleware) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  29. ctx := r.Context()
  30. reqScopes, _ := ctx.Value(types.RequestScopeCtxKey).(map[types.PermissionScope]*types.RequestAction)
  31. proj, _ := ctx.Value(types.ProjectScope).(*models.Project)
  32. apiContractRevisionID := reqScopes[types.APIContractRevisionScope].Resource.Name
  33. uid, err := uuid.Parse(apiContractRevisionID)
  34. if err != nil {
  35. apierrors.HandleAPIError(n.config.Logger, n.config.Alerter, w, r, apierrors.NewErrInternal(err), true)
  36. return
  37. }
  38. rev, err := n.config.Repo.APIContractRevisioner().Get(ctx, uid)
  39. if err != nil {
  40. if err == gorm.ErrRecordNotFound {
  41. apierrors.HandleAPIError(n.config.Logger, n.config.Alerter, w, r, apierrors.NewErrForbidden(
  42. fmt.Errorf("revision with id %s not found in project %d", apiContractRevisionID, proj.ID),
  43. ), true)
  44. return
  45. }
  46. apierrors.HandleAPIError(n.config.Logger, n.config.Alerter, w, r, apierrors.NewErrInternal(err), true)
  47. return
  48. }
  49. fmt.Println("STEFAN", rev, uid)
  50. r = r.Clone(NewAPIContractRevisionContext(ctx, rev))
  51. n.next.ServeHTTP(w, r)
  52. }
  53. func NewAPIContractRevisionContext(ctx context.Context, apiContractRevision models.APIContractRevision) context.Context {
  54. return context.WithValue(ctx, types.APIContractRevisionScope, apiContractRevision)
  55. }