2
0

api_contract.go 2.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566
  1. package authz
  2. import (
  3. "context"
  4. "fmt"
  5. "net/http"
  6. "github.com/google/uuid"
  7. "github.com/porter-dev/porter/api/server/shared/apierrors"
  8. "github.com/porter-dev/porter/api/server/shared/config"
  9. "github.com/porter-dev/porter/api/types"
  10. "github.com/porter-dev/porter/internal/models"
  11. "gorm.io/gorm"
  12. )
  13. type APIContractRevisionScopedFactory struct {
  14. config *config.Config
  15. }
  16. func NewAPIContractRevisionScopedFactory(
  17. config *config.Config,
  18. ) *APIContractRevisionScopedFactory {
  19. return &APIContractRevisionScopedFactory{config}
  20. }
  21. func (p *APIContractRevisionScopedFactory) Middleware(next http.Handler) http.Handler {
  22. return &APIContractRevisionMiddleware{next, p.config}
  23. }
  24. type APIContractRevisionMiddleware struct {
  25. next http.Handler
  26. config *config.Config
  27. }
  28. func (n *APIContractRevisionMiddleware) ServeHTTP(w http.ResponseWriter, r *http.Request) {
  29. ctx := r.Context()
  30. reqScopes, _ := ctx.Value(types.RequestScopeCtxKey).(map[types.PermissionScope]*types.RequestAction)
  31. proj, _ := ctx.Value(types.ProjectScope).(*models.Project)
  32. apiContractRevisionID := reqScopes[types.APIContractRevisionScope].Resource.Name
  33. uid, err := uuid.Parse(apiContractRevisionID)
  34. if err != nil {
  35. apierrors.HandleAPIError(n.config.Logger, n.config.Alerter, w, r, apierrors.NewErrInternal(err), true)
  36. return
  37. }
  38. rev, err := n.config.Repo.APIContractRevisioner().Get(ctx, uid)
  39. if err != nil {
  40. if err == gorm.ErrRecordNotFound {
  41. apierrors.HandleAPIError(n.config.Logger, n.config.Alerter, w, r, apierrors.NewErrForbidden(
  42. fmt.Errorf("revision with id %s not found in project %d", apiContractRevisionID, proj.ID),
  43. ), true)
  44. return
  45. }
  46. apierrors.HandleAPIError(n.config.Logger, n.config.Alerter, w, r, apierrors.NewErrInternal(err), true)
  47. return
  48. }
  49. r = r.Clone(NewAPIContractRevisionContext(ctx, rev))
  50. n.next.ServeHTTP(w, r)
  51. }
  52. func NewAPIContractRevisionContext(ctx context.Context, apiContractRevision models.APIContractRevision) context.Context {
  53. return context.WithValue(ctx, types.APIContractRevisionScope, apiContractRevision)
  54. }