ACL.php 34 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837
  1. <?php
  2. Lib::loadClass('Core_AclHelper');
  3. Lib::loadClass('AntAclBase');
  4. class ACL {
  5. public static $REF_TABLE_VERSION = 2;
  6. /**
  7. * Ids List of Proces Init for given tabel (skip filters)
  8. */
  9. public static function getTableProcesInitIds($idTable) {
  10. $procesInitList = self::getTableProcesInitList($idTable);
  11. return array_keys($procesInitList);
  12. }
  13. /**
  14. * List of Proces Init for given table (skip filters)
  15. */
  16. public static function getTableProcesInitList($idTable) {
  17. $tableProcesInitList = array();
  18. $sqlIdProcesListSql = "
  19. select tpv.`ID_PROCES`
  20. from `CRM_PROCES_idx_TABLE_TO_PROCES_VIEW` tpv
  21. where tpv.`ID_TABLE`='{$idTable}'
  22. ";
  23. $fetchTableProcesInitListSql = "
  24. -- time ~0.07 -- no goto and return
  25. select p.`ID`, p.`DESC`
  26. from `CRM_PROCES` p
  27. where p.`ID` in(
  28. select i.`idx_PROCES_INIT_ID`
  29. from `CRM_PROCES_idx` i
  30. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  31. )
  32. and p.`TYPE`='PROCES_INIT'
  33. order by p.`SORT_PRIO`
  34. ";
  35. /*
  36. SELECT p.`ID` , p.`DESC`
  37. FROM `CRM_PROCES` p
  38. WHERE p.`ID`
  39. IN (
  40. SELECT i.`idx_PROCES_INIT_ID`
  41. FROM `CRM_PROCES_idx` i
  42. WHERE i.`ID_PROCES`
  43. IN (
  44. SELECT tpv.`ID_PROCES`
  45. FROM `CRM_PROCES_idx_TABLE_TO_PROCES_VIEW` tpv
  46. WHERE tpv.`ID_TABLE` = '13051'
  47. )
  48. )
  49. AND p.`TYPE` = 'PROCES_INIT'
  50. order by p.`SORT_PRIO`
  51. */
  52. $fetchTableProcesInitListSql = "
  53. -- time ~0.15s
  54. select p.`ID`, p.`DESC`
  55. from `CRM_PROCES` p
  56. where p.`ID` in(
  57. select i.`idx_PROCES_INIT_ID`
  58. from `CRM_PROCES_idx` i
  59. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  60. union
  61. select ig.`idx_PROCES_INIT_ID`
  62. from `CRM_PROCES_idx` i
  63. join `CRM_PROCES_idx` ig on(ig.`ID_PROCES`=i.`idx_PROCES_WITH_GROUPS_ID`)
  64. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  65. )
  66. and p.`TYPE`='PROCES_INIT'
  67. order by p.`SORT_PRIO`
  68. ";
  69. $fetchTableProcesInitListSql = "
  70. -- time ~0.14
  71. select p.`ID`, p.`DESC`
  72. from `CRM_PROCES` p
  73. where p.`ID` in(
  74. select i.`idx_PROCES_INIT_ID`
  75. from `CRM_PROCES_idx` i
  76. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  77. or i.`ID_PROCES` in(
  78. select ig.`idx_PROCES_WITH_GROUPS_ID`
  79. from `CRM_PROCES_idx` ig
  80. where ig.`ID_PROCES` in({$sqlIdProcesListSql})
  81. )
  82. )
  83. and p.`TYPE`='PROCES_INIT'
  84. order by p.`SORT_PRIO`
  85. ";
  86. return array_map(function ($row) {
  87. return $row['DESC'];
  88. }, DB::getPDO()->fetchAllByKey($fetchTableProcesInitListSql, 'ID'));
  89. }
  90. public static function getProcesInitMapTreeOnlyIds($ids) {
  91. $mapTree = array();
  92. $map = self::getProcesInitMapOnlyIds($ids);
  93. foreach ($map as $row) {
  94. if ('PROCES_INIT' == $row['TYPE']) {
  95. $mapTree[ $row['ID_PROCES'] ] = array();
  96. }
  97. }
  98. foreach ($map as $row) {
  99. if ('GOTO_AND_RETURN' == $row['TYPE']) {
  100. $mapTree[ $row['idx_MAIN_PROCES_INIT_ID'] ][ $row['ID_PROCES'] ] = array();
  101. }
  102. }
  103. foreach ($map as $row) {
  104. if ('GOTO_AND_RETURN_LVL2' == $row['TYPE']) {
  105. $mapTree[ $row['idx_MAIN_PROCES_INIT_ID'] ][ $row['idx_GOTO_LVL2_INIT_ID'] ][ $row['ID_PROCES'] ] = true;
  106. }
  107. }
  108. return $mapTree;
  109. }
  110. public static function getProcesInitMapOnlyIds($ids) {
  111. $map = array();
  112. $sqlIds = V::filter($ids, array('V', 'filterPositiveInteger'));
  113. $sqlIds = implode(',', $sqlIds);
  114. if (empty($sqlIds)) return $map;
  115. $sql = "
  116. select i.`ID_PROCES`
  117. , i.`PARENT_ID`
  118. , i.`TYPE`
  119. , i.`idx_PROCES_INIT_ID`
  120. , i.`idx_MAIN_PROCES_INIT_ID`
  121. , i.`idx_PROCES_WITH_GROUPS_ID`
  122. , IF(i.`TYPE`='GOTO_AND_RETURN_LVL2'
  123. , (select ig.`idx_PROCES_INIT_ID`
  124. from `CRM_PROCES_idx` ig
  125. where ig.`ID_PROCES`=i.`PARENT_ID`
  126. limit 1)
  127. , 0
  128. ) as idx_GOTO_LVL2_INIT_ID
  129. from `CRM_PROCES_idx` i
  130. where i.`ID_PROCES` in({$sqlIds})
  131. and i.`idx_MAIN_PROCES_INIT_ID` in({$sqlIds})
  132. ";
  133. return DB::getPDO()->fetchAll($sql);
  134. }
  135. public static function canGroupViewProces($idGroup, $idProcesInit) {
  136. $isAllowed = false;
  137. $idProcesInit = (int)$idProcesInit;
  138. if (!$idProcesInit) return false;
  139. $checkProcesAccessSql = "
  140. select count(*) as cnt
  141. from `CRM_PROCES_idx_GROUP_to_INIT_VIEW` giv
  142. where giv.`ID_GROUP` = '{$idGroup}'
  143. and giv.`ID_PROCES_INIT` = '{$idProcesInit}'
  144. ";
  145. return ( DB::getPDO()->fetchValue($checkProcesAccessSql) > 0 );
  146. }
  147. public static function getStorageByNamespace($namespace, $forceTblAclInit = false) {
  148. Lib::loadClass('Core_AclHelper');
  149. Lib::loadClass('SchemaFactory');
  150. $ns = Core_AclHelper::parseNamespaceUrl($namespace);
  151. DBG::log($ns, 'array', "parseNamespaceUrl({$namespace})");
  152. if ('default_db' == $ns['prefix']) {
  153. $acl = User::getAcl()->getObjectAcl($ns['prefix'], $ns['name']);
  154. } else if ('objects' == $ns['prefix']) {
  155. $acl = SchemaFactory::loadDefaultObject($ns['name']);
  156. } else if ('default_objects' == $ns['prefix']) {
  157. $acl = SchemaFactory::loadDefaultObject($ns['name']);
  158. } else if ('default_db__x3A__' == substr($ns['prefix'], 0, 17)) {
  159. $rootTableName = strtolower(substr($ns['prefix'], 17));
  160. $acl = SchemaFactory::loadTableObject($rootTableName, $ns['name']);
  161. } else {
  162. throw new HttpException("Not Implemented", 501);
  163. }
  164. $acl->init($forceTblAclInit);
  165. return $acl;
  166. }
  167. public static function getBaseNamespace($namespace) {
  168. // map SystemObjects__x3A__{parent}/{name} to default_objects/{name}
  169. if ('SystemObjects/' === substr($namespace, 0, strlen('SystemObjects/'))) {
  170. $exNs = explode('/', $namespace);
  171. if (3 === count($exNs)) {
  172. return "default_objects/{$exNs[2]}";
  173. }
  174. }
  175. return $namespace;
  176. }
  177. public static function getAclByNamespace($namespace, $forceTblAclInit = false) {
  178. $namespace = ACL::getBaseNamespace($namespace);
  179. return Core_AclHelper::getAclByNamespace($namespace, $forceTblAclInit);
  180. }
  181. public static function getAclByTypeName($typeName, $forceTblAclInit = false) {
  182. return Core_AclHelper::getAclByNamespace(str_replace(':', '/', $typeName), $forceTblAclInit);
  183. }
  184. public static function getNamespaceFromId($idZasob) {
  185. $sqlIdZasob = DB::getPDO()->quote($idZasob, PDO::PARAM_INT);
  186. $zasob = DB::getPDO()->fetchFirst("
  187. select z.ID, z.DESC, z.PARENT_ID
  188. from CRM_LISTA_ZASOBOW z
  189. where z.ID = {$sqlIdZasob}
  190. and z.`TYPE` = 'TABELA'
  191. and z.A_STATUS != 'DELETED'
  192. ");
  193. if (!$zasob) throw new Exception("Object not exists '{$idZasob}'");
  194. if ($zasob['PARENT_ID'] != DB::getPDO()->getZasobId()) {
  195. throw new Exception("TODO: getNamespaceFromId for remote database");
  196. }
  197. return ('default_db/' === substr($zasob['DESC'], 0, strlen('default_db/')))
  198. ? $zasob['DESC']
  199. : "default_db/{$zasob['DESC']}"
  200. ;
  201. }
  202. public static function parseNamespaceUrl($namespace) {// returns assoc array: [ 'name', 'url', 'prefix', 'sourceName' ]
  203. return Core_AclHelper::parseNamespaceUrl($namespace);
  204. }
  205. public static function getRefTable($rootObjectNamespace, $childName) { // CRM_REF_CONFIG
  206. static $cacheRefTables = array();
  207. DBG::log("DBG get ref table ({$rootObjectNamespace}, {$childName}) ...");
  208. $rootObjectNamespace = ACL::getBaseNamespace($rootObjectNamespace);
  209. $cacheKey = "{$rootObjectNamespace}/{$childName}";
  210. if (array_key_exists($cacheKey, $cacheRefTables)) return $cacheRefTables[$cacheKey];
  211. $rootAcl = self::getAclByNamespace($rootObjectNamespace);
  212. $childXsdType = $rootAcl->getXsdFieldType($childName);
  213. list($typePrefix, $childNamespace) = explode(':', $childXsdType, 2);
  214. DBG::log(['$childXsdType' => $childXsdType, '$typePrefix' => $typePrefix, '$childNamespace' => $childNamespace], 'array', "DBG get ref table ...");
  215. switch ($typePrefix) {
  216. case 'ref_uri': $childAcl = self::getAclByNamespace($childNamespace); break;
  217. case 'ref': $childAcl = self::getAclByTypeName($childNamespace); break;
  218. default: throw new Exception("Expected ref type for field '{$childName}' in object '{$rootObjectNamespace}'");
  219. }
  220. $refInfo = self::getRefConfig($rootObjectNamespace, $childName, $childNamespace);
  221. if ('view' === $refInfo['SOURCE']) {
  222. $refTableName = "CRM__#REF_TABLE__{$refInfo['ID']}_VIEW"; // view created by ACL::generateRefSelectSqlByFlatRelationCache
  223. } else if ('backRef' === $refInfo['SOURCE']) {
  224. $refTableName = "CRM__#REF_TABLE__{$refInfo['ID']}_VIEW"; // view created by ACL::generateRefSelectSqlByFlatRelationCache
  225. } else if ('table' === $refInfo['SOURCE']) {
  226. $refTableName = "CRM__#REF_TABLE__{$refInfo['ID']}";
  227. if ('WAITING' == $refInfo['A_STATUS']) {
  228. DB::getPDO()->execSql("
  229. CREATE TABLE IF NOT EXISTS `{$refTableName}` (
  230. `PRIMARY_KEY` int(11) NOT NULL
  231. , `REMOTE_PRIMARY_KEY` int(11) NOT NULL
  232. , `REMOTE_TYPENAME` varchar(255) NOT NULL DEFAULT ''
  233. , `A_STATUS` enum('WAITING', 'NORMAL', 'DELETED') NOT NULL DEFAULT 'WAITING'
  234. , `TRANSACTION_ID` int(11) NOT NULL
  235. , `A_LAST_ACTION_DATE` timestamp NOT NULL DEFAULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP
  236. , KEY `PRIMARY_KEY` (`PRIMARY_KEY`)
  237. , KEY `REMOTE_PRIMARY_KEY` (`REMOTE_PRIMARY_KEY`)
  238. , KEY `TRANSACTION_ID` (`TRANSACTION_ID`)
  239. ) ENGINE=MyISAM DEFAULT CHARSET=latin2 COMMENT='{$rootObjectNamespace} #REF $childName ({$childNamespace})';
  240. ");
  241. $refInfo['A_STATUS'] = "NORMAL";
  242. $refInfo['VERSION'] = self::$REF_TABLE_VERSION;
  243. $affected = DB::getPDO()->update("CRM_REF_CONFIG", 'ID', $refInfo['ID'], [
  244. 'A_STATUS' => $refInfo['A_STATUS'],
  245. 'VERSION' => $refInfo['VERSION']
  246. ]);
  247. }
  248. } else {
  249. throw new Exception("Not Implemented ref SOURCE = '{$refInfo['SOURCE']}'");
  250. }
  251. if ($refInfo['VERSION'] < self::$REF_TABLE_VERSION) {
  252. if (1 == $refInfo['VERSION']) $refInfo = self::upgradeRefConfigFrom1to2($refInfo);
  253. }
  254. if ($refInfo['VERSION'] < self::$REF_TABLE_VERSION) throw new Exception("TODO: ref table {$refInfo['ID']} require upgrade - field '{$childName}' in object '{$rootObjectNamespace}'");
  255. $cacheRefTables[$cacheKey] = $refTableName;
  256. return $refTableName;
  257. }
  258. public static function getRefSource($rootObjectNamespace, $childName) { // CRM_REF_CONFIG
  259. $rootObjectNamespace = ACL::getBaseNamespace($rootObjectNamespace);
  260. $refInfo = self::getRefConfig($rootObjectNamespace, $childName);
  261. return V::get('SOURCE', 'table', $refInfo);
  262. }
  263. public static function decodeAppInfoJson($appInfoJsonString) {
  264. $appInfo = @json_decode($appInfoJsonString, $assoc = true);
  265. if (null == $appInfo && 0 !== json_last_error()) throw new Exception("Parsing Json failed: " . json_last_error());
  266. return $appInfo;
  267. }
  268. public static function generateRefSelectSqlByBackRef($rootObjectNamespace, $childName) { // TODO: mv to generateRefSelectSqlByFlatRelationCache
  269. // TODO: generate view which is select from {replaced(pk, remote pk) on ref table from backRef}
  270. // {
  271. // DBG::nicePrint($refInfo, "\$refInfo");
  272. // DBG::nicePrint($rootObjectNamespace, "\$rootObjectNamespace");
  273. // DBG::nicePrint($childName, "\$childName");
  274. // DBG::nicePrint($childNamespace, "\$childNamespace");
  275. // $replacedObjNs = Api_WfsNs::namespaceFromTypeName($childName);
  276. // $replacedChildName = Api_WfsNs::typeName($rootObjectNamespace);
  277. // DBG::nicePrint($replacedObjNs, "\$replacedObjNs");
  278. // DBG::nicePrint($replacedChildName, "\$replacedChildName");
  279. // return ACL::getRefTable($replacedObjNs, $replacedChildName, 1);
  280. // throw new Exception("Not Implemented ref SOURCE = '{$refInfo['SOURCE']}'");
  281. // }
  282. $childNs = Api_WfsNs::namespaceFromTypeName($childName);
  283. $rootTypeName = Api_WfsNs::typeName($rootObjectNamespace);
  284. $backRefTable = ACL::getRefTable($childNs, $rootTypeName);
  285. DBG::nicePrint($backRefTable, "ACL::getRefTable({$childNs}, {$rootTypeName})");
  286. // TODO: check if ref_config is not backRef to avoid loop // $refInfo = self::getRefConfig($fieldNs, $item['typeName'], $item['typeName']);
  287. $lastActionDateField = "NULL"; // , IF(l.A_RECORD_UPDATE_DATE > r.A_RECORD_UPDATE_DATE, l.A_RECORD_UPDATE_DATE, r.A_RECORD_UPDATE_DATE) as A_LAST_ACTION_DATE
  288. $sql = "
  289. select backRef.REMOTE_PRIMARY_KEY as PRIMARY_KEY
  290. , backRef.PRIMARY_KEY as REMOTE_PRIMARY_KEY
  291. , backRef.REMOTE_TYPENAME as REMOTE_TYPENAME
  292. , backRef.A_STATUS as A_STATUS
  293. , 0 as TRANSACTION_ID
  294. , {$lastActionDateField} as A_LAST_ACTION_DATE
  295. from `{$backRefTable}` backRef
  296. ";
  297. DBG::log($sql, 'sql', "generateRefSelectSqlByBackRef");
  298. return $sql;
  299. }
  300. public static function generateRefSelectSqlByFlatRelationCache($rootObjectNamespace, $childName) { // CRM_REF_CONFIG
  301. $appInfo = DB::getPDO()->fetchValue("
  302. select f.appInfo
  303. from `CRM_#CACHE_ACL_OBJECT_FIELD` f
  304. where f.objectNamespace = '{$rootObjectNamespace}'
  305. and f.fieldNamespace = '{$childName}'
  306. ");
  307. if (!$appInfo) throw new Exception("Missing app:info for field '{$rootObjectNamespace}/{$childName}'");
  308. $appInfo = ACL::decodeAppInfoJson($appInfo);
  309. if (empty($appInfo)) throw new Exception("Empty app:info for field '{$rootObjectNamespace}/{$childName}'");
  310. DBG::log(['$appInfo'=>$appInfo, '$rootObjectNamespace'=>$rootObjectNamespace, '$childName'=>$childName], 'array', "\$appInfo");
  311. $rootAcl = self::getAclByNamespace($rootObjectNamespace);
  312. $childXsdType = $rootAcl->getXsdFieldType($childName);
  313. list($typePrefix, $childNamespace) = explode(':', $childXsdType, 2);
  314. switch ($typePrefix) {
  315. case 'ref_uri': $childAcl = self::getAclByNamespace($childNamespace); break;
  316. case 'ref': $childAcl = self::getAclByTypeName($childNamespace); break;
  317. default: throw new Exception("Expected ref type for field '{$childName}' in object '{$rootObjectNamespace}'");
  318. }
  319. $lastActionDateField = "NULL"; // , IF(l.A_RECORD_UPDATE_DATE > r.A_RECORD_UPDATE_DATE, l.A_RECORD_UPDATE_DATE, r.A_RECORD_UPDATE_DATE) as A_LAST_ACTION_DATE
  320. $rootPrimaryKeyField = $rootAcl->getPrimaryKeyField();
  321. $childPrimaryKeyField = $childAcl->getPrimaryKeyField();
  322. $rootTableName = $rootAcl->getRootTableName();
  323. $childTableName = $childAcl->getRootTableName();
  324. // '$appInfo' => [
  325. // 'flat_relation_cache' => [
  326. // 'source' => [
  327. // '@name' => 'ID',
  328. // '@xpath' => 'default_db__x3A__CRM_WSKAZNIK:CRM_WSKAZNIK/ID_PROCES',
  329. // ),
  330. // ),
  331. // ),
  332. // '$rootObjectNamespace' => 'default_db/CRM_PROCES/PROCES',
  333. // '$childName' => 'default_db__x3A__CRM_WSKAZNIK:CRM_WSKAZNIK',
  334. // '$appInfo' => [
  335. // 'flat_relation_cache' => [
  336. // 'source' => [
  337. // '@name' => 'ID',
  338. // '@xpath' => 'default_db__x3A__CRM_PROCES:PROCES/PARENT_ID',
  339. // ),
  340. // ),
  341. // ),
  342. // '$rootObjectNamespace' => 'default_db/CRM_PROCES/PROCES',
  343. // '$childName' => 'default_db__x3A__CRM_PROCES:PROCES',
  344. $appInfoRootFieldName = null;
  345. $appInfoChildFieldName = null;
  346. {
  347. if (empty($appInfo['flat_relation_cache']['source']['@name'])) throw new Exception("Missing flat_relation_cache/source/@name");
  348. if (empty($appInfo['flat_relation_cache']['source']['@xpath'])) throw new Exception("Missing flat_relation_cache/source/@xpath");
  349. $appInfoName = $appInfo['flat_relation_cache']['source']['@name'];
  350. $appInfoXpath = $appInfo['flat_relation_cache']['source']['@xpath'];
  351. // $rootNs = $rootAcl->getNamespace()
  352. if ("{$childName}/" === substr($appInfoXpath, 0, strlen("{$childName}/"))) {
  353. $appInfoRootFieldName = substr($appInfoXpath, strlen("{$childName}/"));
  354. $appInfoChildFieldName = $appInfoName;
  355. } else {
  356. throw new Exception("TODO parse flat_relation_cache");
  357. }
  358. }
  359. if (!$appInfoRootFieldName || !$appInfoChildFieldName) throw new Exception("Error Processing flat_relation_cache");
  360. $sqlWhereFromRestrictions = [];
  361. DBG::log(['root'=>$rootAcl->getFields(), 'child'=>$childAcl->getFields()], 'array', "rootAcl and childAcl fields - xsdRestrictions");
  362. if ($rootAcl instanceof AntAclBase && $childAcl instanceof AntAclBase) {
  363. $rootLocalFieldsWithRestrictions = array_filter($rootAcl->getFields(), function ($field) {
  364. if (!$field['isLocal']) return false;
  365. if (empty($field['xsdRestrictions'])) return false;
  366. if ('[]' == $field['xsdRestrictions']) return false;
  367. return true;
  368. });
  369. $childLocalFieldsWithRestrictions = array_filter($childAcl->getFields(), function ($field) {
  370. if (!$field['isLocal']) return false;
  371. if (empty($field['xsdRestrictions'])) return false;
  372. if ('[]' == $field['xsdRestrictions']) return false;
  373. return true;
  374. });
  375. DBG::log(['root'=>$rootLocalFieldsWithRestrictions, 'child'=>$childLocalFieldsWithRestrictions], 'array', "root and child fields with xsdRestrictions");
  376. if (!empty($rootLocalFieldsWithRestrictions)) {
  377. $sqlTablePrefix = 'root';
  378. $sqlWhereFromRestrictions = array_reduce(
  379. array_map(function ($field) use ($sqlTablePrefix) {
  380. $sqlRestrictions = [];
  381. // 'xsdRestrictions' => '{"enumeration":{"PROCES":"PROCES"}}',
  382. $restrictions = @json_decode($field['xsdRestrictions'], $assoc = true);
  383. if (!empty($restrictions)) {
  384. if (!empty($restrictions['enumeration'])) {
  385. $sqlRestrictions[] = "{$sqlTablePrefix}.`{$field['fieldNamespace']}` in (" . implode(",", array_map([DB::getPDO(), 'quote'], array_keys($restrictions['enumeration']))) . ")";
  386. }
  387. }
  388. return $sqlRestrictions;
  389. }, $rootLocalFieldsWithRestrictions),
  390. function ($ret, $cur) {
  391. return array_merge($ret, array_filter($cur, ['V', 'filterNotEmpty']));
  392. },
  393. $sqlWhereFromRestrictions
  394. );
  395. }
  396. if (!empty($childLocalFieldsWithRestrictions)) {
  397. $sqlTablePrefix = 'child';
  398. $sqlWhereFromRestrictions = array_reduce(
  399. array_map(function ($field) use ($sqlTablePrefix) {
  400. $sqlRestrictions = [];
  401. // 'xsdRestrictions' => '{"enumeration":{"PROCES":"PROCES"}}',
  402. $restrictions = @json_decode($field['xsdRestrictions'], $assoc = true);
  403. if (!empty($restrictions)) {
  404. if (!empty($restrictions['enumeration'])) {
  405. $sqlRestrictions[] = "{$sqlTablePrefix}.`{$field['fieldNamespace']}` in (" . implode(",", array_map([DB::getPDO(), 'quote'], array_keys($restrictions['enumeration']))) . ")";
  406. }
  407. }
  408. return $sqlRestrictions;
  409. }, $childLocalFieldsWithRestrictions),
  410. function ($ret, $cur) {
  411. return array_merge($ret, array_filter($cur, ['V', 'filterNotEmpty']));
  412. },
  413. $sqlWhereFromRestrictions
  414. );
  415. }
  416. }
  417. $sqlWhereFromRestrictions = (!empty($sqlWhereFromRestrictions)) ? implode(" and ", $sqlWhereFromRestrictions) : "1=1";
  418. $sqlChildFieldName = $childAcl->getSqlFieldName($appInfoRootFieldName);
  419. $sql = "
  420. select root.{$rootPrimaryKeyField} as PRIMARY_KEY
  421. , child.{$childPrimaryKeyField} as REMOTE_PRIMARY_KEY
  422. , '' as REMOTE_TYPENAME
  423. , 'WAITING' as A_STATUS
  424. , 0 as TRANSACTION_ID
  425. , {$lastActionDateField} as A_LAST_ACTION_DATE
  426. from `{$rootTableName}` root
  427. join `{$childTableName}` child on(child.{$sqlChildFieldName} = root.{$appInfoChildFieldName})
  428. where {$sqlWhereFromRestrictions}
  429. ";
  430. DBG::log($sql, 'sql', "generateRefSelectSqlByFlatRelationCache");
  431. return $sql;
  432. }
  433. public static function setRefSource($rootObjectNamespace, $childName, $source, $viewSelectSql = null) { // CRM_REF_CONFIG
  434. if (!in_array($source, ['view', 'table', 'backRef'])) throw new Exception("Wrong param source - expected 'table', 'view' or 'backRef'");
  435. if ('view' === $source && !$viewSelectSql) throw new Exception("Missing create view sql");
  436. $refInfo = self::getRefConfig($rootObjectNamespace, $childName);
  437. if (true) { // if ($source != $refInfo['SOURCE']) {
  438. if ('view' === $source) {
  439. $refTableName = "CRM__#REF_TABLE__{$refInfo['ID']}_VIEW";
  440. DB::getPDO()->execSql(" CREATE OR REPLACE DEFINER=`root`@`localhost` SQL SECURITY DEFINER VIEW `{$refTableName}` AS {$viewSelectSql} ");
  441. }
  442. if ('backRef' === $source) {
  443. $refTableName = "CRM__#REF_TABLE__{$refInfo['ID']}_VIEW";
  444. DB::getPDO()->execSql(" CREATE OR REPLACE DEFINER=`root`@`localhost` SQL SECURITY DEFINER VIEW `{$refTableName}` AS {$viewSelectSql} ");
  445. }
  446. $affected = DB::getPDO()->update("CRM_REF_CONFIG", 'ID', $refInfo['ID'], [
  447. 'SOURCE' => $source,
  448. ]);
  449. }
  450. }
  451. public static function getRefConfig($rootObjectNamespace, $childName, $childNamespace = null) { // CRM_REF_CONFIG
  452. $rootObjectNamespace = ACL::getBaseNamespace($rootObjectNamespace);
  453. if (!$childNamespace) {
  454. $rootAcl = self::getAclByNamespace($rootObjectNamespace);
  455. $childXsdType = $rootAcl->getXsdFieldType($childName);
  456. list($typePrefix, $childNamespace) = explode(':', $childXsdType, 2);
  457. DBG::log(['$childXsdType' => $childXsdType, '$typePrefix' => $typePrefix, '$childNamespace' => $childNamespace], 'array', "DBG get ref table ...");
  458. switch ($typePrefix) {
  459. case 'ref_uri': $childAcl = self::getAclByNamespace($childNamespace); break;
  460. case 'ref': $childAcl = self::getAclByTypeName($childNamespace); break;
  461. default: throw new Exception("Expected ref type for field '{$childName}' in object '{$rootObjectNamespace}'");
  462. }
  463. }
  464. $refInfo = [];// define $refInfo = [ ID, A_STATUS, VERSION ]
  465. try {// check that ref config table exists
  466. $sqlRootTableNs = DB::getPDO()->quote($rootObjectNamespace, PDO::PARAM_STR);
  467. $sqlChildName = DB::getPDO()->quote($childName, PDO::PARAM_STR);
  468. $sqlChildNamespace = DB::getPDO()->quote($childNamespace, PDO::PARAM_STR);
  469. $refInfo = DB::getPDO()->fetchFirst("
  470. select c.ID, c.A_STATUS, c.VERSION, c.SOURCE
  471. from `CRM_REF_CONFIG` c
  472. where c.ROOT_OBJECT_NS = {$sqlRootTableNs}
  473. and c.CHILD_NAME = {$sqlChildName}
  474. and c.CHILD_NS = {$sqlChildNamespace}
  475. ");
  476. } catch (Exception $e) {
  477. DB::getPDO()->execSql("
  478. CREATE TABLE IF NOT EXISTS `CRM_REF_CONFIG` (
  479. `ID` INT NOT NULL AUTO_INCREMENT
  480. , `ROOT_OBJECT_NS` VARCHAR(255) NOT NULL
  481. , `CHILD_NAME` VARCHAR(255) NOT NULL
  482. , `CHILD_NS` VARCHAR(255) NOT NULL
  483. , `A_STATUS` enum('WAITING', 'NORMAL', 'DELETED') NOT NULL DEFAULT 'WAITING'
  484. , `VERSION` int(11) NOT NULL DEFAULT 0
  485. , `A_LAST_ACTION_DATE` timestamp NOT NULL DEFAULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP
  486. , PRIMARY KEY (`ID`)
  487. ) ENGINE = MyISAM DEFAULT CHARSET=latin2;
  488. ");
  489. try {
  490. DB::getPDO()->execSql(" ALTER TABLE `CRM_REF_CONFIG` ADD `SOURCE` enum('table', 'view') not null default 'table' ");
  491. } catch (Exception $e) {
  492. DBG::log($e);
  493. }
  494. }
  495. try {
  496. DB::getPDO()->execSql(" ALTER TABLE `CRM_REF_CONFIG` CHANGE `SOURCE` `SOURCE` enum('table', 'view', 'backRef') not null default 'table' ");
  497. } catch (Exception $e) {
  498. DBG::log($e);
  499. }
  500. if (empty($refInfo)) {
  501. $refInfo = [ 'ID' => 0, 'A_STATUS' => 'WAITING', 'VERSION' => 0, 'SOURCE' => 'table' ];
  502. $refInfo['ID'] = DB::getPDO()->insert("CRM_REF_CONFIG", [
  503. 'ROOT_OBJECT_NS' => $rootObjectNamespace,
  504. 'CHILD_NAME' => $childName,
  505. 'CHILD_NS' => $childNamespace
  506. ]);
  507. }
  508. // { // TODO: fix source if ref for `SystemObjects__x3A__*` and defined flat_relation_cache - move to AclReinstall?
  509. // if ('SystemObjects__x3A__' === substr($childNamespace, 0, strlen('SystemObjects__x3A__'))) {
  510. // if ('table' === $refInfo['SOURCE']) {
  511. // $toUpdate = [
  512. // 'SOURCE' => 'view',
  513. // 'A_STATUS' => 'WAITING',
  514. // ];
  515. // DB::getPDO()->update('CRM_REF_CONFIG', 'ID', $refInfo['ID'], $toUpdate);
  516. // $refInfo = array_merge($refInfo, $toUpdate);
  517. // }
  518. // }
  519. // }
  520. if (!$refInfo['ID']) throw new Exception("Ref table not found in ref config table for field '{$childName}' in object '{$rootObjectNamespace}'");
  521. return $refInfo;
  522. }
  523. public static function upgradeRefConfigFrom1to2($refInfo) {
  524. if (1 == $refInfo['VERSION']) {
  525. if ('table' === $refInfo['SOURCE'] && 'NORMAL' == $refInfo['A_STATUS']) {
  526. $refTableName = "CRM__#REF_TABLE__{$refInfo['ID']}";
  527. try {
  528. DB::getPDO()->execSql(" CREATE INDEX `TRANSACTION_ID` ON `{$refTableName}` (`TRANSACTION_ID`) ");
  529. } catch (Exception $e) {
  530. DBG::log($e);
  531. }
  532. }
  533. $affected = DB::getPDO()->update("CRM_REF_CONFIG", 'ID', $refInfo['ID'], [
  534. 'VERSION' => 2
  535. ]);
  536. }
  537. return array_merge($refInfo, [
  538. 'VERSION' => 2
  539. ]);
  540. }
  541. public static function getBackRefList($namespace) {
  542. if (!$namespace) throw new Exception("Missing namespace");
  543. $nsParts = explode('/', $namespace);
  544. $typeName = array_pop($nsParts);
  545. $typeName = implode("__x3A__", $nsParts) . ":{$typeName}";
  546. return DB::getPDO()->fetchAll("
  547. select c.ROOT_OBJECT_NS as namespace
  548. , i.id as idInstance
  549. from CRM_REF_CONFIG c
  550. join CRM_INSTANCE_CONFIG i on ( i.namespace = c.ROOT_OBJECT_NS )
  551. where ( c.CHILD_NAME = :type_name or c.CHILD_NAME = :namespace )
  552. and c.A_STATUS = 'NORMAL'
  553. ", [
  554. ':type_name' => $typeName,
  555. ':namespace' => $namespace,
  556. ]);
  557. }
  558. public static function getChildRefFullList($namespace) {
  559. $namespace = ACL::getBaseNamespace($namespace);
  560. if (!$namespace) throw new Exception("Missing namespace");
  561. return DB::getPDO()->fetchAll("
  562. select c.CHILD_NAME as namespace
  563. , c.A_STATUS
  564. , c.ID
  565. , c.SOURCE
  566. from CRM_REF_CONFIG c
  567. where c.ROOT_OBJECT_NS = :namespace
  568. -- and c.A_STATUS = 'NORMAL'
  569. ", [
  570. ':namespace' => $namespace,
  571. ]);
  572. }
  573. public static function updateChildRefSource($id, $source) {
  574. if (!$id) throw new Exception("Missing id");
  575. if (!in_array($source, ['view', 'table', 'backRef'])) throw new Exception("Wrong source");
  576. return DB::getPDO()->update('CRM_REF_CONFIG', 'ID', $id, [
  577. 'SOURCE' => $source
  578. ]);
  579. }
  580. public static function fetchRefs($namespace, $childNamespace, $primaryKey, $params = []) { // TODO: $params: limit, total
  581. if (!$namespace) throw new Exception("Missing namespace");
  582. if (!$childNamespace) throw new Exception("Missing child namespace");
  583. if (!$primaryKey) throw new Exception("Missing primary key");
  584. throw new Exception("TODO: fetch refs from '{$namespace}' where primaryKey = '{$primaryKey}'");
  585. }
  586. public static function fetchBackRefs($namespace, $primaryKey, $parentNamespace, $params = []) { // TODO: $params: limit, total
  587. if (!$namespace) throw new Exception("Missing namespace");
  588. if (!$parentNamespace) throw new Exception("Missing parent namespace");
  589. if (!$primaryKey) throw new Exception("Missing primary key");
  590. $typeName = Api_WfsNs::typeName($namespace);
  591. $refTable = ACL::getRefTable($parentNamespace, $typeName);
  592. if (V::get('total', false, $params)) {
  593. return DB::getPDO()->fetchValue(" select count(*) as cnt from `{$refTable}` where REMOTE_PRIMARY_KEY = :primary_key and A_STATUS not in ('DELETED') ", [ ':primary_key' => $primaryKey ]);
  594. }
  595. throw new Exception("TODO: fetch back refs from '{$namespace}' where primaryKey({$primaryKey}) by refTable({$refTable})");
  596. }
  597. public static function generateIsInstanceFunctionBody($namespace, $item = null) {
  598. if (!$item) $item = SchemaFactory::loadDefaultObject('SystemObject')->getItem($namespace, [ 'propertyName' => '*,field' ]);
  599. if (!in_array( $item['_type'], [ 'AntAcl' ] )) return null;
  600. $sqlFunBody = " RETURN 1; ";
  601. $localFieldsWithRestrictions = array_filter($item['field'], function ($field) {
  602. if (!$field['isLocal']) return false;
  603. if (empty($field['xsdRestrictions'])) return false;
  604. if ('[]' == $field['xsdRestrictions']) return false;
  605. return true;
  606. });
  607. // TODO: get fields with minOccurs > 1 (may require select by ref)
  608. $sqlTablePrefix = 'root';
  609. $sqlWhereFromRestrictions = (!empty($localFieldsWithRestrictions))
  610. ? array_reduce(
  611. array_map(function ($field) use ($sqlTablePrefix) {
  612. $sqlRestrictions = [];
  613. // 'xsdRestrictions' => '{"enumeration":{"PROCES":"PROCES"}}',
  614. $restrictions = @json_decode($field['xsdRestrictions'], $assoc = true);
  615. if (!empty($restrictions)) {
  616. if (!empty($restrictions['enumeration'])) {
  617. $sqlRestrictions[] = "{$sqlTablePrefix}.`{$field['fieldNamespace']}` in (" . implode(",", array_map([DB::getPDO(), 'quote'], array_keys($restrictions['enumeration']))) . ")";
  618. }
  619. }
  620. return $sqlRestrictions;
  621. }, $localFieldsWithRestrictions),
  622. function ($ret, $cur) {
  623. return array_merge($ret, array_filter($cur, ['V', 'filterNotEmpty']));
  624. },
  625. []
  626. )
  627. : '';
  628. DBG::nicePrint($localFieldsWithRestrictions, "\$localFieldsWithRestrictions");
  629. DBG::nicePrint($sqlWhereFromRestrictions, "\$sqlWhereFromRestrictions");
  630. $sqlWhereFromRestrictions = (!empty($sqlWhereFromRestrictions)) ? implode(" and ", $sqlWhereFromRestrictions) : "1=1";
  631. $pkField = 'ID'; // TODO: primaryKeyField into SystemObject structure
  632. $rootTableName = $item['_rootTableName'];
  633. $sqlFunBody = (!empty($sqlWhereFromRestrictions))
  634. ? " RETURN IF(
  635. (select count(1) as cnt from `{$rootTableName}` root where root.`{$pkField}` = pk and {$sqlWhereFromRestrictions}) > 0
  636. , 1, 0)
  637. "
  638. : " RETURN 1; ";
  639. return $sqlFunBody;
  640. }
  641. public static function getInstanceId($namespace) {
  642. $conf = self::getInstanceConfig($namespace);
  643. return $conf['id'];
  644. }
  645. public static function getInstanceConfig($namespace) { // @returns { id, namespace, rootNamespace, idInstanceBase, _createdAt }
  646. try {
  647. $conf = self::fetchInstanceConfig($namespace);
  648. } catch (Exception $e) {
  649. DB::getPDO()->execSql("
  650. create table if not exists `CRM_INSTANCE_CONFIG` (
  651. `id` int(11) not null AUTO_INCREMENT,
  652. `namespace` varchar(255) NOT NULL DEFAULT '',
  653. `rootNamespace` varchar(255) NOT NULL DEFAULT '',
  654. `idInstanceBase` int(11) NOT NULL DEFAULT 0,
  655. `_createdAt` datetime NOT NULL,
  656. UNIQUE KEY `namespace` (`namespace`),
  657. KEY `rootNamespace` (`rootNamespace`),
  658. PRIMARY KEY (`id`)
  659. ) ENGINE=MyISAM DEFAULT CHARSET=latin2
  660. ");
  661. // TODO:?: `_tableInstalled` tinyint(1) not null default 0,
  662. $conf = self::fetchInstanceConfig($namespace);
  663. }
  664. if (!$conf) {
  665. $id = DB::getPDO()->insert("CRM_INSTANCE_CONFIG", [
  666. 'namespace' => $namespace,
  667. 'rootNamespace' => self::getRootNamespace($namespace),
  668. '_createdAt' => 'NOW()',
  669. ]);
  670. $conf = self::fetchInstanceConfig($namespace);
  671. }
  672. if (!$conf) throw new Exception("Instance not found in config table '{$namespace}'");
  673. return $conf;
  674. }
  675. public static function fetchInstanceConfig($namespace) {
  676. return DB::getPDO()->fetchFirst("
  677. select c.*
  678. from `CRM_INSTANCE_CONFIG` c
  679. where c.namespace = '{$namespace}'
  680. ");
  681. }
  682. public static function getRootNamespace($namespace) { // TODO: works only for relative urls! - mv to Acl->getRootNamespace
  683. Lib::loadClass('SchemaFactory');
  684. try {
  685. $objectItem = SchemaFactory::loadDefaultObject('SystemObject')->getItem($namespace);
  686. } catch (Exception $e) {
  687. throw new Exception("Object not installed '{$namespace}'");
  688. }
  689. if (!$objectItem['isStructInstalled']) throw new Exception("Object structure not installed '{$namespace}'");
  690. if ($objectItem['idDatabase'] != DB::getPDO()->getZasobId()) {
  691. if ('StorageAcl' === $objectItem['_type']) {
  692. DBG::log("getRootNamespace...");
  693. return $objectItem['namespace'];
  694. }
  695. else {
  696. throw new Exception("Only default_db supported"); // TODO: support more Sources
  697. }
  698. }
  699. return "default_db/{$objectItem['_rootTableName']}";
  700. }
  701. public static function getNamespaceSiblings($namespace) {
  702. return array_map(function ($row) {
  703. return $row['namespace'];
  704. }, DB::getPDO()->fetchAll("
  705. select s.namespace
  706. from CRM_INSTANCE_CONFIG c
  707. join CRM_INSTANCE_CONFIG s on ( s.rootNamespace = c.rootNamespace and s.namespace != c.rootNamespace )
  708. where c.namespace = :namespace
  709. ", [
  710. 'namespace' => $namespace
  711. ]));
  712. }
  713. public static function getFeatureNamespaces($namespace, $pk) {
  714. $instanceTable = self::getInstanceTable($namespace);
  715. return array_map(function ($row) {
  716. return $row['namespace'];
  717. }, DB::getPDO()->fetchAll("
  718. select c.namespace
  719. from `{$instanceTable}` i
  720. join `CRM_INSTANCE_CONFIG` c on ( c.id = i.idInstance )
  721. where i.pk = :pk
  722. ", [
  723. 'pk' => $pk,
  724. ]));
  725. }
  726. public static function getInstanceTable($namespace) { // @returns tableName with struct { pk, idInstance, _createdAt }
  727. $conf = self::getInstanceConfig($namespace);
  728. if (!empty($conf['idInstanceBase'])) return "CRM__#INSTANCE_TABLE__{$conf['idInstanceBase']}";
  729. $rootNs = $conf['rootNamespace'];
  730. $rootConf = self::getInstanceConfig($rootNs);
  731. $instanceTableName = "CRM__#INSTANCE_TABLE__{$rootConf['id']}";
  732. if (!empty($rootConf['idInstance'])) {
  733. $affected = DB::getPDO()->update("CRM_INSTANCE_CONFIG", 'rootNamespace', $rootNs, [
  734. 'idInstanceBase' => $rootConf['id']
  735. ]);
  736. return $instanceTableName;
  737. }
  738. // TODO: fetch primaryKeyType - TODO: store primaryKey and primaryKeyType in SystemObject item
  739. $pkType = 'int';
  740. DB::getPDO()->exec("
  741. CREATE TABLE IF NOT EXISTS `{$instanceTableName}` (
  742. `pk` int(11) NOT NULL COMMENT 'primary key'
  743. , `idInstance` int(11) NOT NULL
  744. , `_createdAt` datetime NOT NULL
  745. , KEY `pk` (`pk`)
  746. , KEY `idInstance` (`idInstance`)
  747. ) ENGINE=MyISAM DEFAULT CHARSET=latin2 COMMENT='{$rootNs} #INSTANCE';
  748. ");
  749. $affected = DB::getPDO()->update("CRM_INSTANCE_CONFIG", 'rootNamespace', $rootNs, [
  750. 'idInstanceBase' => $rootConf['id']
  751. ]);
  752. return $instanceTableName;
  753. }
  754. // @params $from - ( ACL | tableName | namespace | etc... - only ACL)
  755. public static function query($from, $prefix = 't') {
  756. Lib::loadClass('AclQueryBuilder');
  757. $query = new AclQueryBuilder();
  758. $query->from($from, $prefix);
  759. return $query;
  760. }
  761. /**
  762. * @param mixed $object - Core_AclBase or string - namespace
  763. * @return Core_AclFields
  764. */
  765. public static function getObjectFields($object) {
  766. // TODO: try to get structure from `CRM_#CACHE_ACL_OBJECT_FIELD`
  767. // if ($object is instance Core_AclBase) {
  768. // if ($object->isStructInstalled) then get structure from `CRM_#CACHE_ACL_OBJECT_FIELD` and put into Core_AclFields
  769. // else get from $object->getFields() and put into Core_AclFields
  770. }
  771. public static function canUserReadObject($idUser, $aclOrIdZasob) {
  772. throw new Exception("TODO: canUserReadObjec({$idUser}, {$aclOrIdZasob})");
  773. }
  774. public static function canUserCreateObject($idUser, $aclOrIdZasob) {
  775. throw new Exception("TODO: canUserCreateObjec({$idUser}, {$aclOrIdZasob})");
  776. }
  777. public static function canUserWriteObject($idUser, $aclOrIdZasob) {
  778. throw new Exception("TODO: canUserWriteObjec({$idUser}, {$aclOrIdZasob})");
  779. }
  780. public static function canUserReadObjectField($idUser, $aclOrIdZasob, $fieldNameOrXPath) {
  781. throw new Exception("TODO: canUserReadObjectFiel({$idUser}, {$aclOrIdZasob}, {$fieldNameOrXPath})");
  782. }
  783. public static function canUserCreateObjectField($idUser, $aclOrIdZasob, $fieldNameOrXPath) {
  784. throw new Exception("TODO: canUserCreateObjectFiel({$idUser}, {$aclOrIdZasob}, {$fieldNameOrXPath})");
  785. }
  786. public static function canUserWriteObjectField($idUser, $aclOrIdZasob, $fieldNameOrXPath) {
  787. throw new Exception("TODO: canUserWriteObjectFiel({$idUser}, {$aclOrIdZasob}, {$fieldNameOrXPath})");
  788. }
  789. // TODO: replace below:
  790. // AclBase->canCreateField
  791. // AclBase->canReadField
  792. // AclBase->canReadObjectField
  793. // AclBase->canWriteField
  794. // AclBase->canWriteObjectField
  795. // AclBase->canWriteRecord
  796. // AclBase->canReadRecord
  797. }