ACL.php 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342
  1. <?php
  2. Lib::loadClass('Core_AclHelper');
  3. class ACL {
  4. public static $REF_TABLE_VERSION = 1;
  5. /**
  6. * Ids List of Proces Init for given tabel (skip filters)
  7. */
  8. public static function getTableProcesInitIds($idTable) {
  9. $procesInitList = self::getTableProcesInitList($idTable);
  10. return array_keys($procesInitList);
  11. }
  12. /**
  13. * List of Proces Init for given table (skip filters)
  14. */
  15. public static function getTableProcesInitList($idTable) {
  16. $tableProcesInitList = array();
  17. $sqlIdProcesListSql = <<<SQL
  18. select tpv.`ID_PROCES`
  19. from `CRM_PROCES_idx_TABLE_TO_PROCES_VIEW` tpv
  20. where tpv.`ID_TABLE`='{$idTable}'
  21. SQL;
  22. $fetchTableProcesInitListSql = <<<SQL
  23. -- time ~0.07 -- no goto and return
  24. select p.`ID`, p.`DESC`
  25. from `CRM_PROCES` p
  26. where p.`ID` in(
  27. select i.`idx_PROCES_INIT_ID`
  28. from `CRM_PROCES_idx` i
  29. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  30. )
  31. and p.`TYPE`='PROCES_INIT'
  32. order by p.`SORT_PRIO`
  33. SQL;
  34. /*
  35. SELECT p.`ID` , p.`DESC`
  36. FROM `CRM_PROCES` p
  37. WHERE p.`ID`
  38. IN (
  39. SELECT i.`idx_PROCES_INIT_ID`
  40. FROM `CRM_PROCES_idx` i
  41. WHERE i.`ID_PROCES`
  42. IN (
  43. SELECT tpv.`ID_PROCES`
  44. FROM `CRM_PROCES_idx_TABLE_TO_PROCES_VIEW` tpv
  45. WHERE tpv.`ID_TABLE` = '13051'
  46. )
  47. )
  48. AND p.`TYPE` = 'PROCES_INIT'
  49. order by p.`SORT_PRIO`
  50. */
  51. $fetchTableProcesInitListSql = <<<SQL
  52. -- time ~0.15s
  53. select p.`ID`, p.`DESC`
  54. from `CRM_PROCES` p
  55. where p.`ID` in(
  56. select i.`idx_PROCES_INIT_ID`
  57. from `CRM_PROCES_idx` i
  58. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  59. union
  60. select ig.`idx_PROCES_INIT_ID`
  61. from `CRM_PROCES_idx` i
  62. join `CRM_PROCES_idx` ig on(ig.`ID_PROCES`=i.`idx_PROCES_WITH_GROUPS_ID`)
  63. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  64. )
  65. and p.`TYPE`='PROCES_INIT'
  66. order by p.`SORT_PRIO`
  67. SQL;
  68. $fetchTableProcesInitListSql = <<<SQL
  69. -- time ~0.14
  70. select p.`ID`, p.`DESC`
  71. from `CRM_PROCES` p
  72. where p.`ID` in(
  73. select i.`idx_PROCES_INIT_ID`
  74. from `CRM_PROCES_idx` i
  75. where i.`ID_PROCES` in({$sqlIdProcesListSql})
  76. or i.`ID_PROCES` in(
  77. select ig.`idx_PROCES_WITH_GROUPS_ID`
  78. from `CRM_PROCES_idx` ig
  79. where ig.`ID_PROCES` in({$sqlIdProcesListSql})
  80. )
  81. )
  82. and p.`TYPE`='PROCES_INIT'
  83. order by p.`SORT_PRIO`
  84. SQL;
  85. //echo'<pre>$fetchTableProcesInitListSql('.$idTable.') ';print_r($fetchTableProcesInitListSql);echo'</pre>';
  86. $tableProcesInitList = array();
  87. $db = DB::getDB();
  88. $res = $db->query($fetchTableProcesInitListSql);
  89. while ($r = $db->fetch($res)) {
  90. $tableProcesInitList[$r->ID] = $r->DESC;
  91. }
  92. return $tableProcesInitList;
  93. }
  94. public static function getProcesInitMapTreeOnlyIds($ids) {
  95. $mapTree = array();
  96. $map = self::getProcesInitMapOnlyIds($ids);
  97. foreach ($map as $r) {
  98. if ('PROCES_INIT' == $r->TYPE) {
  99. $mapTree[$r->ID_PROCES] = array();
  100. }
  101. }
  102. foreach ($map as $r) {
  103. if ('GOTO_AND_RETURN' == $r->TYPE) {
  104. $mapTree[$r->idx_MAIN_PROCES_INIT_ID][$r->ID_PROCES] = array();
  105. }
  106. }
  107. foreach ($map as $r) {
  108. if ('GOTO_AND_RETURN_LVL2' == $r->TYPE) {
  109. $mapTree[$r->idx_MAIN_PROCES_INIT_ID][$r->idx_GOTO_LVL2_INIT_ID][$r->ID_PROCES] = true;
  110. }
  111. }
  112. return $mapTree;
  113. }
  114. public static function getProcesInitMapOnlyIds($ids) {
  115. $map = array();
  116. $sqlIds = V::filter($ids, array('V', 'filterPositiveInteger'));
  117. $sqlIds = implode(',', $sqlIds);
  118. if (empty($sqlIds)) return $map;
  119. $sql = <<<SQL
  120. select i.`ID_PROCES`
  121. , i.`PARENT_ID`
  122. , i.`TYPE`
  123. , i.`idx_PROCES_INIT_ID`
  124. , i.`idx_MAIN_PROCES_INIT_ID`
  125. , i.`idx_PROCES_WITH_GROUPS_ID`
  126. , IF(i.`TYPE`='GOTO_AND_RETURN_LVL2'
  127. , (select ig.`idx_PROCES_INIT_ID`
  128. from `CRM_PROCES_idx` ig
  129. where ig.`ID_PROCES`=i.`PARENT_ID`
  130. limit 1)
  131. , 0
  132. ) as idx_GOTO_LVL2_INIT_ID
  133. from `CRM_PROCES_idx` i
  134. where i.`ID_PROCES` in({$sqlIds})
  135. and i.`idx_MAIN_PROCES_INIT_ID` in({$sqlIds})
  136. SQL;
  137. DBG::_('DBG_MAP', '1', "MAP SQL", $sql, __CLASS__, __FUNCTION__, __LINE__);
  138. $db = DB::getDB();
  139. $res = $db->query($sql);
  140. while ($r = $db->fetch($res)) {
  141. $map[] = $r;
  142. }
  143. //DBG::table("MAP", $map, __CLASS__, __FUNCTION__, __LINE__);
  144. return $map;
  145. }
  146. public static function canGroupViewProces($idGroup, $idProcesInit) {
  147. $isAllowed = false;
  148. $idProcesInit = (int)$idProcesInit;
  149. if (!$idProcesInit) return false;
  150. $checkProcesAccessSql = <<<SQL
  151. select count(*) as cnt
  152. from `CRM_PROCES_idx_GROUP_to_INIT_VIEW` giv
  153. where giv.`ID_GROUP` = '{$idGroup}'
  154. and giv.`ID_PROCES_INIT` = '{$idProcesInit}'
  155. SQL;
  156. $db = DB::getDB();
  157. $res = $db->query($checkProcesAccessSql);
  158. if ($r = $db->fetch($res)) {
  159. if ($r->cnt > 0) {
  160. $isAllowed = true;
  161. }
  162. }
  163. return $isAllowed;
  164. }
  165. public static function getAclByNamespace($namespace, $forceTblAclInit = false) {
  166. return Core_AclHelper::getAclByNamespace($namespace, $forceTblAclInit);
  167. }
  168. public static function parseNamespaceUrl($namespace) {// returns assoc array: [ 'name', 'url', 'prefix', 'sourceName' ]
  169. return Core_AclHelper::parseNamespaceUrl($namespace);
  170. }
  171. public static function getRefTable($rootObjectNamespace, $childName) { // CRM_REF_CONFIG
  172. static $cacheRefTables = array();
  173. $cacheKey = "{$rootObjectNamespace}/{$childName}";
  174. if (array_key_exists($cacheKey, $cacheRefTables)) return $cacheRefTables[$cacheKey];
  175. $rootAcl = self::getAclByNamespace($rootObjectNamespace);
  176. $childXsdType = $rootAcl->getXsdFieldType($childName);
  177. if ('ref_uri:' !== substr($childXsdType, 0, 8)) throw new Exception("Expected ref type for field '{$childName}' in object '{$rootObjectNamespace}'");
  178. $childNamespace = substr($childXsdType, 8);
  179. $childAcl = self::getAclByNamespace($childNamespace);
  180. $refInfo = [];// define $refInfo = [ ID, A_STATUS, VERSION ]
  181. try {// check that ref config table exists
  182. $sqlRootTableNs = DB::getPDO()->quote($rootObjectNamespace, PDO::PARAM_STR);
  183. $sqlChildName = DB::getPDO()->quote($childName, PDO::PARAM_STR);
  184. $sqlChildNamespace = DB::getPDO()->quote($childNamespace, PDO::PARAM_STR);
  185. $refInfo = DB::getPDO()->fetchFirst("
  186. select c.ID, c.A_STATUS, c.VERSION
  187. from `CRM_REF_CONFIG` c
  188. where c.ROOT_OBJECT_NS = {$sqlRootTableNs}
  189. and c.CHILD_NAME = {$sqlChildName}
  190. and c.CHILD_NS = {$sqlChildNamespace}
  191. ");
  192. } catch (Exception $e) {
  193. DB::getPDO()->exec("
  194. CREATE TABLE `CRM_REF_CONFIG` (
  195. `ID` INT NOT NULL AUTO_INCREMENT
  196. , `ROOT_OBJECT_NS` VARCHAR(255) NOT NULL
  197. , `CHILD_NAME` VARCHAR(255) NOT NULL
  198. , `CHILD_NS` VARCHAR(255) NOT NULL
  199. , `A_STATUS` enum('WAITING', 'NORMAL', 'DELETED') NOT NULL DEFAULT 'WAITING'
  200. , `VERSION` int(11) NOT NULL DEFAULT 0
  201. , `A_LAST_ACTION_DATE` timestamp NOT NULL DEFAULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP
  202. , PRIMARY KEY (`ID`)
  203. ) ENGINE = MyISAM DEFAULT CHARSET=latin2;
  204. ");
  205. }
  206. if (empty($refInfo)) {
  207. $refInfo = [ 'ID' => 0, 'A_STATUS' => 'WAITING', 'VERSION' => 0 ];
  208. $refInfo['ID'] = DB::getPDO()->insert("CRM_REF_CONFIG", [
  209. 'ROOT_OBJECT_NS' => $rootObjectNamespace,
  210. 'CHILD_NAME' => $childName,
  211. 'CHILD_NS' => $childNamespace
  212. ]);
  213. }
  214. if (!$refInfo['ID']) throw new Exception("Ref table not found in ref config table for field '{$childName}' in object '{$rootObjectNamespace}'");
  215. $refTableName = "CRM__#REF_TABLE__{$refInfo['ID']}";
  216. if ('WAITING' == $refInfo['A_STATUS']) {
  217. DB::getPDO()->exec("
  218. CREATE TABLE IF NOT EXISTS `{$refTableName}` (
  219. `PRIMARY_KEY` int(11) NOT NULL
  220. , `REMOTE_PRIMARY_KEY` int(11) NOT NULL
  221. , `REMOTE_TYPENAME` varchar(255) NOT NULL DEFAULT ''
  222. , `A_STATUS` enum('WAITING', 'NORMAL', 'DELETED') NOT NULL DEFAULT 'WAITING'
  223. , `TRANACTION_ID` int(11) NOT NULL
  224. , `A_LAST_ACTION_DATE` timestamp NOT NULL DEFAULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP
  225. , KEY `PRIMARY_KEY` (`PRIMARY_KEY`)
  226. , KEY `REMOTE_PRIMARY_KEY` (`REMOTE_PRIMARY_KEY`)
  227. ) ENGINE=MyISAM DEFAULT CHARSET=latin2 COMMENT='{$rootObjectNamespace} #REF $childName ({$childNamespace})';
  228. ");
  229. $refInfo['A_STATUS'] = "NORMAL";
  230. $refInfo['VERSION'] = self::$REF_TABLE_VERSION;
  231. $affected = DB::getPDO()->update("CRM_REF_CONFIG", 'ID', $refInfo['ID'], [
  232. 'A_STATUS' => $refInfo['A_STATUS'],
  233. 'VERSION' => $refInfo['VERSION']
  234. ]);
  235. }
  236. if ($refInfo['VERSION'] < self::$REF_TABLE_VERSION) throw new Exception("TODO: ref table {$refInfo['ID']} require upgrade - field '{$childName}' in object '{$rootObjectNamespace}'");
  237. $cacheRefTables[$cacheKey] = $refTableName;
  238. return $refTableName;
  239. }
  240. public static function getInstanceId($namespace) { // CRM_INSTANCE_CONFIG
  241. $conf = self::getInstanceConfig($namespace);
  242. return $conf['id'];
  243. }
  244. public static function getInstanceConfig($namespace) { // CRM_INSTANCE_CONFIG
  245. try {
  246. $conf = self::fetchInstanceConfig($namespace);
  247. } catch (Exception $e) {
  248. DB::getPDO()->execSql("
  249. create table if not exists `CRM_INSTANCE_CONFIG` (
  250. `id` int(11) not null AUTO_INCREMENT,
  251. `namespace` varchar(255) NOT NULL DEFAULT '',
  252. `rootNamespace` varchar(255) NOT NULL DEFAULT '',
  253. `tableName` varchar(255) NOT NULL DEFAULT '',
  254. `_createdAt` datetime NOT NULL,
  255. UNIQUE KEY `namespace` (`namespace`),
  256. KEY `rootNamespace` (`rootNamespace`),
  257. PRIMARY KEY (`id`)
  258. ) ENGINE=MyISAM DEFAULT CHARSET=latin2
  259. ");
  260. // TODO:?: `_tableInstalled` tinyint(1) not null default 0,
  261. $conf = self::fetchInstanceConfig($namespace);
  262. }
  263. if (!$conf) {
  264. $id = DB::getPDO()->insert("CRM_INSTANCE_CONFIG", [
  265. 'namespace' => $namespace,
  266. 'rootNamespace' => self::getRootNamespace($namespace),
  267. '_createdAt' => 'NOW()',
  268. ]);
  269. $conf = self::fetchInstanceConfig($namespace);
  270. }
  271. if (!$conf) throw new Exception("Instance not found in config table '{$namespace}'");
  272. return $conf;
  273. }
  274. public static function fetchInstanceConfig($namespace) {
  275. return DB::getPDO()->fetchFirst("
  276. select c.*
  277. from `CRM_INSTANCE_CONFIG` c
  278. where c.namespace = '{$namespace}'
  279. ");
  280. }
  281. public static function getRootNamespace($namespace) { // TODO: works only for relative urls! - mv to Acl->getRootNamespace
  282. Lib::loadClass('SchemaFactory');
  283. try {
  284. $objectItem = SchemaFactory::loadDefaultObject('SystemObject')->getItem($namespace);
  285. } catch (Exception $e) {
  286. throw new Exception("Object not installed '{$namespace}'");
  287. }
  288. if (!$objectItem['isStructInstalled']) throw new Exception("Object structure not installed '{$namespace}'");
  289. if ($objectItem['idDatabase'] != DB::getPDO()->getZasobId()) throw new Exception("Only default_db supported"); // TODO: support more Sources
  290. return "default_db/{$objectItem['_rootTableName']}";
  291. }
  292. public static function getInstanceTable($namespace) {
  293. $conf = self::getInstanceConfig($namespace);
  294. if (!empty($conf['tableName'])) return $conf['tableName'];
  295. $rootNs = $conf['rootNamespace'];
  296. $rootConf = self::getInstanceConfig($rootNs);
  297. $instanceTableName = "CRM__#INSTANCE_TABLE__{$rootConf['id']}";
  298. if (!empty($rootConf['tableName'])) {
  299. $affected = DB::getPDO()->update("CRM_INSTANCE_CONFIG", 'rootNamespace', $rootNs, [
  300. 'tableName' => $instanceTableName
  301. ]);
  302. return $rootConf['tableName'];
  303. }
  304. // TODO: fetch primaryKeyType - TODO: store primaryKey and primaryKeyType in SystemObject item
  305. $pkType = 'int';
  306. DB::getPDO()->exec("
  307. CREATE TABLE IF NOT EXISTS `{$instanceTableName}` (
  308. `pk` int(11) NOT NULL COMMENT 'primary key'
  309. , `idInstance` int(11) NOT NULL
  310. , `_createdAt` datetime NOT NULL
  311. , KEY `pk` (`pk`)
  312. , KEY `idInstance` (`idInstance`)
  313. ) ENGINE=MyISAM DEFAULT CHARSET=latin2 COMMENT='{$rootNs} #INSTANCE';
  314. ");
  315. $affected = DB::getPDO()->update("CRM_INSTANCE_CONFIG", 'rootNamespace', $rootNs, [
  316. 'tableName' => $instanceTableName
  317. ]);
  318. return $instanceTableName;
  319. }
  320. }