
org.cloudfoundry.identity.uaa.scim.jdbc.JdbcScimGroupProvisioning Maven / Gradle / Ivy
Go to download
Show more of this group Show more artifacts with this name
Show all versions of cloudfoundry-identity-scim Show documentation
Show all versions of cloudfoundry-identity-scim Show documentation
Cloud Foundry User Account and Authentication
/*******************************************************************************
* Cloud Foundry
* Copyright (c) [2009-2014] Pivotal Software, Inc. All Rights Reserved.
*
* This product is licensed to you under the Apache License, Version 2.0 (the "License").
* You may not use this product except in compliance with the License.
*
* This product includes a number of subcomponents with
* separate copyright notices and license terms. Your use of these
* subcomponents is subject to the terms and conditions of the
* subcomponent's license, as noted in the LICENSE file.
*******************************************************************************/
package org.cloudfoundry.identity.uaa.scim.jdbc;
import org.apache.commons.logging.Log;
import org.apache.commons.logging.LogFactory;
import org.cloudfoundry.identity.uaa.rest.jdbc.AbstractQueryable;
import org.cloudfoundry.identity.uaa.rest.jdbc.JdbcPagingListFactory;
import org.cloudfoundry.identity.uaa.rest.jdbc.SearchQueryConverter;
import org.cloudfoundry.identity.uaa.scim.ScimGroup;
import org.cloudfoundry.identity.uaa.scim.ScimGroupProvisioning;
import org.cloudfoundry.identity.uaa.scim.ScimMeta;
import org.cloudfoundry.identity.uaa.scim.exception.InvalidScimResourceException;
import org.cloudfoundry.identity.uaa.scim.exception.ScimResourceAlreadyExistsException;
import org.cloudfoundry.identity.uaa.scim.exception.ScimResourceConstraintFailedException;
import org.cloudfoundry.identity.uaa.scim.exception.ScimResourceNotFoundException;
import org.cloudfoundry.identity.uaa.zone.IdentityZoneHolder;
import org.springframework.dao.DuplicateKeyException;
import org.springframework.dao.EmptyResultDataAccessException;
import org.springframework.dao.IncorrectResultSizeDataAccessException;
import org.springframework.jdbc.core.JdbcTemplate;
import org.springframework.jdbc.core.PreparedStatementSetter;
import org.springframework.jdbc.core.RowMapper;
import org.springframework.util.Assert;
import org.springframework.util.StringUtils;
import java.sql.PreparedStatement;
import java.sql.ResultSet;
import java.sql.SQLException;
import java.sql.Timestamp;
import java.util.Date;
import java.util.List;
import java.util.UUID;
public class JdbcScimGroupProvisioning extends AbstractQueryable implements ScimGroupProvisioning {
private JdbcTemplate jdbcTemplate;
private final Log logger = LogFactory.getLog(getClass());
public static final String GROUP_FIELDS = "id,displayName,created,lastModified,version,identity_zone_id";
public static final String GROUP_TABLE = "groups";
public static final String ADD_GROUP_SQL = String.format("insert into %s ( %s ) values (?,?,?,?,?,?)", GROUP_TABLE,
GROUP_FIELDS);
public static final String UPDATE_GROUP_SQL = String.format(
"update %s set version=?, displayName=?, lastModified=? where id=? and version=? and identity_zone_id=?", GROUP_TABLE);
public static final String GET_GROUPS_SQL = "select %s from %s where identity_zone_id='%s'";
public static final String GET_GROUP_SQL = String.format("select %s from %s where id=? and identity_zone_id=?", GROUP_FIELDS, GROUP_TABLE);
public static final String DELETE_GROUP_SQL = String.format("delete from %s where id=? and identity_zone_id=?", GROUP_TABLE);
private final RowMapper rowMapper = new ScimGroupRowMapper();
public JdbcScimGroupProvisioning(JdbcTemplate jdbcTemplate, JdbcPagingListFactory pagingListFactory) {
super(jdbcTemplate, pagingListFactory, new ScimGroupRowMapper());
Assert.notNull(jdbcTemplate);
this.jdbcTemplate = jdbcTemplate;
setQueryConverter(new ScimSearchQueryConverter());
}
@Override
protected String getBaseSqlQuery() {
return String.format(GET_GROUPS_SQL, GROUP_FIELDS, GROUP_TABLE, IdentityZoneHolder.get().getId());
}
@Override
protected String getQuerySQL(String filter, SearchQueryConverter.ProcessedFilter where) {
boolean containsWhereClause = getBaseSqlQuery().contains(" where ");
return filter == null || filter.trim().length() == 0 ?
getBaseSqlQuery() :
getBaseSqlQuery() + (containsWhereClause ? " and " : " where ") + where.getSql();
}
@Override
public List query(String filter, String sortBy, boolean ascending) {
//validate syntax
getQueryConverter().convert(filter, sortBy, ascending);
if (StringUtils.hasText(filter)) {
filter = "("+ filter+ ") and";
}
filter += " identity_zone_id eq \""+IdentityZoneHolder.get().getId()+"\"";
return super.query(filter, sortBy, ascending);
}
@Override
protected String getTableName() {
return GROUP_TABLE;
}
@Override
public List retrieveAll() {
return query("id pr", "created", true);
}
@Override
public ScimGroup retrieve(String id) throws ScimResourceNotFoundException {
try {
ScimGroup group = jdbcTemplate.queryForObject(GET_GROUP_SQL, rowMapper, id, IdentityZoneHolder.get().getId());
return group;
} catch (EmptyResultDataAccessException e) {
throw new ScimResourceNotFoundException("Group " + id + " does not exist");
}
}
@Override
public ScimGroup create(final ScimGroup group) throws InvalidScimResourceException {
final String id = UUID.randomUUID().toString();
logger.debug("creating new group with id: " + id);
try {
validateGroup(group);
final String zoneId = IdentityZoneHolder.get().getId();
jdbcTemplate.update(ADD_GROUP_SQL, new PreparedStatementSetter() {
@Override
public void setValues(PreparedStatement ps) throws SQLException {
int pos = 1;
ps.setString(pos++, id);
ps.setString(pos++, group.getDisplayName());
ps.setTimestamp(pos++, new Timestamp(new Date().getTime()));
ps.setTimestamp(pos++, new Timestamp(new Date().getTime()));
ps.setInt(pos++, group.getVersion());
ps.setString(pos++, zoneId);
}
});
} catch (DuplicateKeyException ex) {
throw new ScimResourceAlreadyExistsException("A group with displayName: " + group.getDisplayName()
+ " already exists.");
}
return retrieve(id);
}
@Override
public ScimGroup update(final String id, final ScimGroup group) throws InvalidScimResourceException,
ScimResourceNotFoundException {
try {
validateGroup(group);
final String zoneId = IdentityZoneHolder.get().getId();
int updated = jdbcTemplate.update(UPDATE_GROUP_SQL, new PreparedStatementSetter() {
@Override
public void setValues(PreparedStatement ps) throws SQLException {
int pos = 1;
ps.setInt(pos++, group.getVersion() + 1);
ps.setString(pos++, group.getDisplayName());
ps.setTimestamp(pos++, new Timestamp(new Date().getTime()));
ps.setString(pos++, id);
ps.setInt(pos++, group.getVersion());
ps.setString(pos++, zoneId);
}
});
if (updated != 1) {
throw new IncorrectResultSizeDataAccessException(1, updated);
}
return retrieve(id);
} catch (DuplicateKeyException ex) {
throw new InvalidScimResourceException("A group with displayName: " + group.getDisplayName()
+ " already exists");
}
}
@Override
public ScimGroup delete(String id, int version) throws ScimResourceNotFoundException {
ScimGroup group = retrieve(id);
int deleted;
if (version > 0) {
deleted = jdbcTemplate.update(DELETE_GROUP_SQL + " and version=?;", id, IdentityZoneHolder.get().getId(),version);
} else {
deleted = jdbcTemplate.update(DELETE_GROUP_SQL, id, IdentityZoneHolder.get().getId());
}
if (deleted != 1) {
throw new IncorrectResultSizeDataAccessException(1, deleted);
}
return group;
}
protected void validateGroup(ScimGroup group) throws ScimResourceConstraintFailedException {
if (!StringUtils.hasText(group.getZoneId())) {
throw new ScimResourceConstraintFailedException("zoneId is a required field");
}
}
private static final class ScimGroupRowMapper implements RowMapper {
@Override
public ScimGroup mapRow(ResultSet rs, int rowNum) throws SQLException {
String id = rs.getString(1);
String name = rs.getString(2);
Date created = rs.getTimestamp(3);
Date modified = rs.getTimestamp(4);
int version = rs.getInt(5);
String zoneId = rs.getString(6);
ScimGroup group = new ScimGroup(id, name, zoneId);
ScimMeta meta = new ScimMeta(created, modified, version);
group.setMeta(meta);
return group;
}
}
}
© 2015 - 2025 Weber Informatics LLC | Privacy Policy