project.go 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348
  1. package models
  2. import (
  3. "fmt"
  4. "gorm.io/gorm"
  5. "github.com/launchdarkly/go-sdk-common/v3/ldcontext"
  6. "github.com/porter-dev/porter/api/types"
  7. "github.com/porter-dev/porter/internal/features"
  8. ints "github.com/porter-dev/porter/internal/models/integrations"
  9. )
  10. // FeatureFlagLabel strongly types project feature flags
  11. type FeatureFlagLabel string
  12. const (
  13. // APITokensEnabled allows users to create Bearer tokens for use with the Porter API
  14. // #nosec G101 - Not actually an api token
  15. APITokensEnabled FeatureFlagLabel = "api_tokens_enabled"
  16. // AzureEnabled enables Azure Provisioning
  17. AzureEnabled FeatureFlagLabel = "azure_enabled"
  18. // CapiProvisionerEnabled enables the CAPI Provisioning flow
  19. CapiProvisionerEnabled FeatureFlagLabel = "capi_provisioner_enabled"
  20. // DBEnabled enables the "Databases" tab
  21. DBEnabled FeatureFlagLabel = "db_enabled"
  22. // EFSEnabled enables the "EFS" checkbox in App Settings
  23. EFSEnabled FeatureFlagLabel = "efs_enabled"
  24. // EnableReprovision enables the provisioning button after initial creation of the cluster
  25. EnableReprovision FeatureFlagLabel = "enable_reprovision"
  26. // FullAddOns shows all addons, not just curated
  27. FullAddOns FeatureFlagLabel = "full_add_ons"
  28. // GPUEnabled enables the "GPU for users"
  29. GPUEnabled FeatureFlagLabel = "gpu_enabled"
  30. // HelmValuesEnabled shows the helm values tab for porter apps (when simplified_view_enabled=true)
  31. HelmValuesEnabled FeatureFlagLabel = "helm_values_enabled"
  32. // ManagedInfraEnabled uses terraform provisioning instead of capi
  33. ManagedInfraEnabled FeatureFlagLabel = "managed_infra_enabled"
  34. // MultiCluster allows multiple clusters in simplified view (simplified_view_enabled=true)
  35. MultiCluster FeatureFlagLabel = "multi_cluster"
  36. // PreviewEnvsEnabled allows legacy user the ability to see preview environments in sidebar (simplified_view_enabled=false)
  37. PreviewEnvsEnabled FeatureFlagLabel = "preview_envs_enabled"
  38. // RDSDatabasesEnabled allows for users to provision RDS instances within their cluster vpc
  39. RDSDatabasesEnabled FeatureFlagLabel = "rds_databases_enabled"
  40. // QuotaIncrease enables whether we allow for auto increase of quota_increase
  41. QuotaIncrease FeatureFlagLabel = "quota_increase"
  42. // SimplifiedViewEnabled shows the new UI dashboard or not
  43. SimplifiedViewEnabled FeatureFlagLabel = "simplified_view_enabled"
  44. // SOC2ControlsEnabled decides on whether the SOC2 Compliance UI is shown on the infrastructure tab
  45. SOC2ControlsEnabled FeatureFlagLabel = "soc2_controls_enabled"
  46. // StacksEnabled uses stack view for legacy (simplified_view_enabled=false)
  47. StacksEnabled FeatureFlagLabel = "stacks_enabled"
  48. // ValidateApplyV2 controls whether apps deploys use a porter app revision contract vs helm
  49. ValidateApplyV2 FeatureFlagLabel = "validate_apply_v2"
  50. // BetaFeaturesEnabled controls whether a project uses beta features
  51. BetaFeaturesEnabled FeatureFlagLabel = "beta_features_enabled"
  52. // AWSACKAuthEnabled controls whether a project's AWS access is governed through AWS ACK
  53. AWSACKAuthEnabled FeatureFlagLabel = "aws_ack_auth_enabled"
  54. // ManagedDeploymentTargetsEnabled controls whether a project can use managed deployment targets
  55. ManagedDeploymentTargetsEnabled FeatureFlagLabel = "managed_deployment_targets_enabled"
  56. // AdvancedInfraEnabled controls whether a project can use advanced infrastructure settings
  57. AdvancedInfraEnabled FeatureFlagLabel = "advanced_infra_enabled"
  58. )
  59. // ProjectFeatureFlags keeps track of all project-related feature flags
  60. var ProjectFeatureFlags = map[FeatureFlagLabel]bool{
  61. APITokensEnabled: false,
  62. AWSACKAuthEnabled: false,
  63. AzureEnabled: false,
  64. BetaFeaturesEnabled: false,
  65. CapiProvisionerEnabled: true,
  66. DBEnabled: false,
  67. EFSEnabled: false,
  68. EnableReprovision: false,
  69. FullAddOns: false,
  70. GPUEnabled: false,
  71. HelmValuesEnabled: false,
  72. ManagedInfraEnabled: false,
  73. MultiCluster: false,
  74. PreviewEnvsEnabled: false,
  75. QuotaIncrease: false,
  76. RDSDatabasesEnabled: false,
  77. SimplifiedViewEnabled: true,
  78. SOC2ControlsEnabled: false,
  79. StacksEnabled: false,
  80. ValidateApplyV2: true,
  81. ManagedDeploymentTargetsEnabled: false,
  82. AdvancedInfraEnabled: false,
  83. }
  84. type ProjectPlan string
  85. const (
  86. ProjectPlanBasic ProjectPlan = "basic"
  87. ProjectPlanTeam ProjectPlan = "team"
  88. ProjectPlanGrowth ProjectPlan = "growth"
  89. ProjectPlanEnterprise ProjectPlan = "enterprise"
  90. )
  91. // Project type that extends gorm.Model
  92. type Project struct {
  93. gorm.Model `gorm:"embedded"`
  94. Name string `json:"name"`
  95. Roles []Role `json:"roles"`
  96. ProjectUsageID uint
  97. ProjectUsageCacheID uint
  98. // linked repos
  99. GitRepos []GitRepo `json:"git_repos,omitempty"`
  100. // linked registries
  101. Registries []Registry `json:"registries,omitempty"`
  102. // linked clusters
  103. Clusters []Cluster `json:"clusters"`
  104. ClusterCandidates []ClusterCandidate `json:"cluster_candidates"`
  105. // linked databases
  106. Databases []Database `json:"databases"`
  107. // linked helm repos
  108. HelmRepos []HelmRepo `json:"helm_repos"`
  109. // invitations to the project
  110. Invites []Invite `json:"invites"`
  111. // provisioned aws infra
  112. Infras []Infra `json:"infras"`
  113. // auth mechanisms
  114. KubeIntegrations []ints.KubeIntegration `json:"kube_integrations"`
  115. BasicIntegrations []ints.BasicIntegration `json:"basic_integrations"`
  116. OIDCIntegrations []ints.OIDCIntegration `json:"oidc_integrations"`
  117. OAuthIntegrations []ints.OAuthIntegration `json:"oauth_integrations"`
  118. AWSIntegrations []ints.AWSIntegration `json:"aws_integrations"`
  119. GCPIntegrations []ints.GCPIntegration `json:"gcp_integrations"`
  120. AzureIntegrations []ints.AzureIntegration `json:"azure_integrations"`
  121. GitlabIntegrations []ints.GitlabIntegration `json:"gitlab_integrations"`
  122. // Deprecated: use p.GetFeatureFlag(PreviewEnvsEnabled, *features.Client) instead
  123. PreviewEnvsEnabled bool
  124. // Deprecated: use p.GetFeatureFlag(RDSDatabasesEnabled, *features.Client) instead
  125. RDSDatabasesEnabled bool
  126. // Deprecated: use p.GetFeatureFlag(ManagedInfraEnabled, *features.Client) instead
  127. ManagedInfraEnabled bool
  128. // Deprecated: use p.GetFeatureFlag(StacksEnabled, *features.Client) instead
  129. StacksEnabled bool
  130. // Deprecated: use p.GetFeatureFlag(APITokensEnabled, *features.Client) instead
  131. APITokensEnabled bool
  132. // Deprecated: use p.GetFeatureFlag(CapiProvisionerEnabled, *features.Client) instead
  133. CapiProvisionerEnabled bool
  134. // Deprecated: use p.GetFeatureFlag(SimplifiedViewEnabled, *features.Client) instead
  135. SimplifiedViewEnabled bool
  136. // Deprecated: use p.GetFeatureFlag(AzureEnabled, *features.Client) instead
  137. AzureEnabled bool
  138. // Deprecated: use p.GetFeatureFlag(HelmValuesEnabled, *features.Client) instead
  139. HelmValuesEnabled bool
  140. // Deprecated: use p.GetFeatureFlag(MultiCluster, *features.Client) instead
  141. MultiCluster bool `gorm:"default:false"`
  142. // Deprecated: use p.GetFeatureFlag(FullAddOns, *features.Client) instead
  143. FullAddOns bool `gorm:"default:false"`
  144. // Deprecated: use p.GetFeatureFlag(ValidateApplyV2, *features.Client) instead
  145. ValidateApplyV2 bool `gorm:"default:false"`
  146. // Deprecated: use p.GetFeatureFlag(EnableReprovision, *features.Client) instead
  147. EnableSandbox bool `gorm:"default:false"`
  148. EnableReprovision bool `gorm:"default:false"`
  149. AdvancedInfraEnabled bool `gorm:"default:false"`
  150. }
  151. // GetFeatureFlag calls launchdarkly for the specified flag
  152. // and returns the configured value
  153. func (p *Project) GetFeatureFlag(flagName FeatureFlagLabel, launchDarklyClient *features.Client) bool {
  154. if launchDarklyClient.UseDatabase() {
  155. // case switch things
  156. switch flagName {
  157. case "api_tokens_enabled":
  158. return p.APITokensEnabled
  159. case "azure_enabled":
  160. return p.AzureEnabled
  161. case "capi_provisioner_enabled":
  162. return p.CapiProvisionerEnabled
  163. case "db_enabled":
  164. return false
  165. case "enable_reprovision":
  166. return p.EnableReprovision
  167. case "full_add_ons":
  168. return p.FullAddOns
  169. case "gpu_enabled":
  170. return false
  171. case "helm_values_enabled":
  172. return p.HelmValuesEnabled
  173. case "managed_infra_enabled":
  174. return p.ManagedInfraEnabled
  175. case "multi_cluster":
  176. return p.MultiCluster
  177. case "preview_envs_enabled":
  178. return p.PreviewEnvsEnabled
  179. case "quota_increase":
  180. return false
  181. case "rds_databases_enabled":
  182. return p.RDSDatabasesEnabled
  183. case "simplified_view_enabled":
  184. return p.SimplifiedViewEnabled
  185. case "soc2_controls_enabled":
  186. return false
  187. case "stacks_enabled":
  188. return p.StacksEnabled
  189. case "validate_apply_v2":
  190. return p.ValidateApplyV2
  191. case "efs_enabled":
  192. return false
  193. case "aws_ack_auth_enabled":
  194. return false
  195. case "advanced_infra_enabled":
  196. return false
  197. }
  198. }
  199. projectID := p.ID
  200. projectName := p.Name
  201. ldContext := getProjectContext(projectID, projectName)
  202. defaultValue := ProjectFeatureFlags[flagName]
  203. value, _ := launchDarklyClient.BoolVariation(string(flagName), ldContext, defaultValue)
  204. return value
  205. }
  206. // ToProjectType generates an external types.Project to be shared over REST
  207. func (p *Project) ToProjectType(launchDarklyClient *features.Client) types.Project {
  208. roles := make([]*types.Role, 0)
  209. for _, role := range p.Roles {
  210. roles = append(roles, role.ToRoleType())
  211. }
  212. projectID := p.ID
  213. projectName := p.Name
  214. return types.Project{
  215. ID: projectID,
  216. Name: projectName,
  217. Roles: roles,
  218. APITokensEnabled: p.GetFeatureFlag(APITokensEnabled, launchDarklyClient),
  219. AWSACKAuthEnabled: p.GetFeatureFlag(AWSACKAuthEnabled, launchDarklyClient),
  220. AzureEnabled: p.GetFeatureFlag(AzureEnabled, launchDarklyClient),
  221. BetaFeaturesEnabled: p.GetFeatureFlag(BetaFeaturesEnabled, launchDarklyClient),
  222. CapiProvisionerEnabled: p.GetFeatureFlag(CapiProvisionerEnabled, launchDarklyClient),
  223. DBEnabled: p.GetFeatureFlag(DBEnabled, launchDarklyClient),
  224. EFSEnabled: p.GetFeatureFlag(EFSEnabled, launchDarklyClient),
  225. EnableReprovision: p.GetFeatureFlag(EnableReprovision, launchDarklyClient),
  226. FullAddOns: p.GetFeatureFlag(FullAddOns, launchDarklyClient),
  227. GPUEnabled: p.GetFeatureFlag(GPUEnabled, launchDarklyClient),
  228. HelmValuesEnabled: p.GetFeatureFlag(HelmValuesEnabled, launchDarklyClient),
  229. ManagedInfraEnabled: p.GetFeatureFlag(ManagedInfraEnabled, launchDarklyClient),
  230. MultiCluster: p.GetFeatureFlag(MultiCluster, launchDarklyClient),
  231. PreviewEnvsEnabled: p.GetFeatureFlag(PreviewEnvsEnabled, launchDarklyClient),
  232. QuotaIncrease: p.GetFeatureFlag(QuotaIncrease, launchDarklyClient),
  233. RDSDatabasesEnabled: p.GetFeatureFlag(RDSDatabasesEnabled, launchDarklyClient),
  234. SimplifiedViewEnabled: p.GetFeatureFlag(SimplifiedViewEnabled, launchDarklyClient),
  235. SOC2ControlsEnabled: p.GetFeatureFlag(SOC2ControlsEnabled, launchDarklyClient),
  236. StacksEnabled: p.GetFeatureFlag(StacksEnabled, launchDarklyClient),
  237. ValidateApplyV2: p.GetFeatureFlag(ValidateApplyV2, launchDarklyClient),
  238. ManagedDeploymentTargetsEnabled: p.GetFeatureFlag(ManagedDeploymentTargetsEnabled, launchDarklyClient),
  239. AdvancedInfraEnabled: p.GetFeatureFlag(AdvancedInfraEnabled, launchDarklyClient),
  240. SandboxEnabled: p.EnableSandbox,
  241. }
  242. }
  243. // ToProjectListType returns a "minified" version of a Project
  244. // suitable for api responses to GET /projects
  245. // TODO: update this in the future to use default values for all
  246. // the feature flags instead of trying to retrieve them from the database
  247. func (p *Project) ToProjectListType() *types.ProjectList {
  248. var roles []types.Role
  249. for _, role := range p.Roles {
  250. roles = append(roles, *role.ToRoleType())
  251. }
  252. return &types.ProjectList{
  253. ID: p.ID,
  254. Name: p.Name,
  255. // note: all of these fields should be considered deprecated
  256. // in an api response
  257. Roles: roles,
  258. PreviewEnvsEnabled: p.PreviewEnvsEnabled,
  259. RDSDatabasesEnabled: p.RDSDatabasesEnabled,
  260. ManagedInfraEnabled: p.ManagedInfraEnabled,
  261. StacksEnabled: p.StacksEnabled,
  262. APITokensEnabled: p.APITokensEnabled,
  263. DBEnabled: false,
  264. CapiProvisionerEnabled: p.CapiProvisionerEnabled,
  265. SimplifiedViewEnabled: p.SimplifiedViewEnabled,
  266. AzureEnabled: p.AzureEnabled,
  267. HelmValuesEnabled: p.HelmValuesEnabled,
  268. MultiCluster: p.MultiCluster,
  269. EnableReprovision: p.EnableReprovision,
  270. ValidateApplyV2: p.ValidateApplyV2,
  271. FullAddOns: p.FullAddOns,
  272. AdvancedInfraEnabled: p.AdvancedInfraEnabled,
  273. }
  274. }
  275. func getProjectContext(projectID uint, projectName string) ldcontext.Context {
  276. projectIdentifier := fmt.Sprintf("project-%d", projectID)
  277. launchDarklyName := fmt.Sprintf("%s: %s", projectIdentifier, projectName)
  278. return ldcontext.NewBuilder(projectIdentifier).
  279. Kind("project").
  280. Name(launchDarklyName).
  281. SetInt("project_id", int(projectID)).
  282. Build()
  283. }