summaryrefslogtreecommitdiffstats
path: root/authz-gui/src/main/java/com/att/authz/gui/pages/PermGrantAction.java
blob: 3fa6508eb5bfeb38f10785fd15398ce29de7b1d3 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
/*******************************************************************************
 * Copyright (c) 2016 AT&T Intellectual Property. All rights reserved.
 *******************************************************************************/
package com.att.authz.gui.pages;

import java.io.IOException;
import java.net.ConnectException;

import com.att.authz.env.AuthzTrans;
import com.att.authz.gui.AuthGUI;
import com.att.authz.gui.BreadCrumbs;
import com.att.authz.gui.NamedCode;
import com.att.authz.gui.Page;
import org.onap.aaf.cadi.CadiException;
import org.onap.aaf.cadi.client.Future;
import org.onap.aaf.cadi.client.Rcli;
import org.onap.aaf.cadi.client.Retryable;
import org.onap.aaf.inno.env.APIException;
import org.onap.aaf.inno.env.Env;
import org.onap.aaf.inno.env.Slot;
import org.onap.aaf.inno.env.TimeTaken;
import com.att.xgen.Cache;
import com.att.xgen.DynamicCode;
import com.att.xgen.html.HTMLGen;

import aaf.v2_0.Pkey;
import aaf.v2_0.RolePermRequest;

public class PermGrantAction extends Page {
	
	
	public PermGrantAction(final AuthGUI gui, final Page ... breadcrumbs) throws APIException, IOException {
		super(gui.env,PermGrantForm.NAME, PermGrantForm.HREF, PermGrantForm.fields,
			new BreadCrumbs(breadcrumbs),
			new NamedCode(true,"content") {
				final Slot sType = gui.env.slot(PermGrantForm.NAME+'.'+PermGrantForm.fields[0]);
				final Slot sInstance = gui.env.slot(PermGrantForm.NAME+'.'+PermGrantForm.fields[1]);
				final Slot sAction = gui.env.slot(PermGrantForm.NAME+'.'+PermGrantForm.fields[2]);
				final Slot sRole = gui.env.slot(PermGrantForm.NAME+'.'+PermGrantForm.fields[3]);
				
				@Override
				public void code(Cache<HTMLGen> cache, HTMLGen hgen) throws APIException, IOException {
					cache.dynamic(hgen, new DynamicCode<HTMLGen,AuthGUI, AuthzTrans>() {
						@Override
						public void code(final AuthGUI gui, final AuthzTrans trans,Cache<HTMLGen> cache, HTMLGen hgen) throws APIException, IOException {

							String type = trans.get(sType,null);
							String instance = trans.get(sInstance,null);
							String action = trans.get(sAction,null);
							String role = trans.get(sRole,null);
							
							String lastPage = PermGrantForm.HREF 
									+ "?type=" + type + "&instance=" + instance + "&action=" + action;
							
							// Run Validations
							boolean fail = true;
						
							TimeTaken tt = trans.start("AAF Grant Permission to Role",Env.REMOTE);
							try {
								
								final RolePermRequest grantReq = new RolePermRequest();
								Pkey pkey = new Pkey();
								pkey.setType(type);
								pkey.setInstance(instance);
								pkey.setAction(action);
								grantReq.setPerm(pkey);
								grantReq.setRole(role);
								
								fail = gui.clientAsUser(trans.getUserPrincipal(), new Retryable<Boolean>() {
									@Override
									public Boolean code(Rcli<?> client) throws CadiException, ConnectException, APIException {
										boolean fail = true;
										Future<RolePermRequest> fgrant = client.create(
												"/authz/role/perm",
												gui.rolePermReqDF,
												grantReq
												);

										if(fgrant.get(5000)) {
											hgen.p("Permission has been granted to role.");
											fail = false;
										} else {
											if (202==fgrant.code()) {
												hgen.p("Permission Grant Request sent, but must be Approved before actualizing");
												fail = false;
											} else {
												gui.writeError(trans, fgrant, hgen);
											}
										}
										return fail;
									}
								});
							} catch (Exception e) {
								hgen.p("Unknown Error");
								e.printStackTrace();
							} finally {
								tt.done();
							}
								
							hgen.br();
							hgen.incr("a",true,"href="+lastPage);
							if (fail) {
								hgen.text("Try again");
							} else {
								hgen.text("Grant this Permission to Another Role");
							}
							hgen.end();
							hgen.js()
								.text("alterLink('permgrant', '"+lastPage + "');")							
								.done();

						}
					});
				}
			});
	}
}