All Downloads are FREE. Search and download functionalities are using the official Maven repository.

base.jee.api.sql.GetGroups Maven / Gradle / Ivy

/**
 * Creative commons Attribution-NonCommercial license.
 *
 * http://creativecommons.org/licenses/by-nc/2.5/au/deed.en_GB
 *
 * NO WARRANTY IS GIVEN OR IMPLIED, USE AT YOUR OWN RISK.
 */
package base.jee.api.sql;

import java.io.IOException;
import java.sql.Connection;
import java.sql.PreparedStatement;
import java.sql.ResultSet;
import java.sql.SQLException;
import java.util.LinkedList;
import java.util.List;
import java.util.Map;
import java.util.UUID;

import javax.sql.DataSource;

import base.Query;
import base.jee.Constants;
import base.security.Group;
import base.security.PermissionException;
import base.security.User;

import static base.jee.api.sql.util.Log.log;

public class GetGroups extends Query {

	private DataSource ds;
	private User user;

	public GetGroups() {
	}

	public GetGroups(DataSource ds, User user) throws PermissionException {

		if(ds == null) {
			throw new IllegalArgumentException("Invalid parameter: ds");
		}
		if(user == null || !user.isAuthenticated()) {
			throw new PermissionException(getClass().getSimpleName(), user, "Requires authenticated user.", Constants.PERSON_MANAGE_ROLE);
		}

		this.ds = ds;
		this.user = user;
	}

	@Override
	public Query newWithParameters(Map parameters) throws PermissionException {
		return new GetGroups(
				(DataSource)parameters.get("ds"),
				(User)parameters.get("user"));
	}

	public List execute() throws IOException {
		List results = new LinkedList<>();
		Connection c = null;
		PreparedStatement q = null;
		ResultSet r = null;

		try {
			c = ds.getConnection();
			c.setAutoCommit(false);

			if(!user.hasRole(Constants.PERSON_MANAGE_ROLE) && !user.hasRole(Constants.GROUP_MANAGE_ROLE)) {
				c.rollback();
				log(c, "WARN", user, "Permission denied invoking: " + GetGroups.class.getSimpleName() + " " + getJsonParameters());
				c.commit();
				throw new PermissionException(this.getClass().getSimpleName(), user, "You do not have access global group information", Constants.PERSON_MANAGE_ROLE);
			}

			q = c.prepareStatement("select uuid, name, type from base_group order by name");
			r = q.executeQuery();
			while(r.next()) {
				Group g = new Group(UUID.fromString(r.getString(1)), r.getString(2), r.getInt(3));
				results.add(g);
			}
			r.close();
			r = null;
			q.close();
			q = null;
			c.rollback();
			c.close();
			c = null;
		} catch(SQLException e) {
			throw new IOException(e);
		} finally {
			if(r != null) { try { r.close(); } catch(Exception f){} }
			if(q != null) { try { q.close(); } catch(Exception f){} }
			if(c != null) {
				try { c.rollback(); } catch (SQLException e) {}
				try { c.close(); } catch (SQLException e) {}
			}
		}
		return results;
	}

	@Override
	public String getJsonParameters() {
		return "{" +
				"\"person\":\"" + user.getPersonUuid() + "\"" +
				"}";
	}

}




© 2015 - 2025 Weber Informatics LLC | Privacy Policy