2011-01-14 11:16:25 -06:00
|
|
|
/*jsl:import ipa.js */
|
|
|
|
|
2010-10-27 22:32:30 -05:00
|
|
|
/* Authors:
|
|
|
|
* Endi Sukma Dewata <edewata@redhat.com>
|
removing setters setup and init
change widget and widget unit tests to hold on to entity, not entity name.
Replacing entity_name with entity.name in most places.
The one exception is columns for table_widget.
Widgets that refer to other entities have to have late resolution of the entity object, due to circular dependencies.
cleanup entity assignment.
removed template and layout,
merged setup into create
adder dialogs adjust height for external
removed init from widget, isection, association, facet, host and service
Make unit tests use factory.
fix functional tests to click find link correctly.
tweak to activation test, but still broken.
moved initialization code to the end
use --all for hbacrule find, so the type shows up now
fixed dns exception code and exception handling for get_entity
replace metadata look up with value from entity.
fixed author lines
removed duplicate columns in managed by facets.
tweak to nav fix in order to initialize tab.
more defensive code
update metadata for true false
one line init for entity_name in widget
move init code to end of constructor functions
moved constants to start of function for adder_dialog
external fields for dialogs initialized at dialog creation
sudo sections: move add fields and columns to widget definition.
The parameter validation in IPA.column ...This is precondition checking. Note that it merely throws an exception if the entity_name is not set. I want this stuff at the top of the function so that it is obvious to people looking to use them what is required. I added a comment to make this clear, but I'd like to keep precondition checking at the top of the function.
decreased the scope of the pkey_name and moved the initiailzation fof columns into the setup_column function for association_tables
return false at the end of click handler
removed blank labels in sudo command section
fix radio buttons for sudo category
fixed table side for adder dialogs with external fields
comments for future direction with add_columns
https://fedorahosted.org/freeipa/ticket/1451
https://fedorahosted.org/freeipa/ticket/1462
https://fedorahosted.org/freeipa/ticket/1493
https://fedorahosted.org/freeipa/ticket/1497
https://fedorahosted.org/freeipa/ticket/1532
https://fedorahosted.org/freeipa/ticket/1534
2011-07-25 11:15:14 -05:00
|
|
|
* Adam Young <ayoung@redhat.com>
|
2010-10-27 22:32:30 -05:00
|
|
|
*
|
|
|
|
* Copyright (C) 2010 Red Hat
|
|
|
|
* see file 'COPYING' for use and warranty information
|
|
|
|
*
|
2010-12-09 06:59:11 -06:00
|
|
|
* This program is free software; you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License as published by
|
|
|
|
* the Free Software Foundation, either version 3 of the License, or
|
|
|
|
* (at your option) any later version.
|
2010-10-27 22:32:30 -05:00
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU General Public License
|
2010-12-09 06:59:11 -06:00
|
|
|
* along with this program. If not, see <http://www.gnu.org/licenses/>.
|
2010-10-27 22:32:30 -05:00
|
|
|
*/
|
|
|
|
|
2011-11-02 12:21:39 -05:00
|
|
|
/* REQUIRES: ipa.js, details.js, search.js, add.js, facet.js, entity.js */
|
2010-10-27 22:32:30 -05:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
IPA.hbac = {
|
|
|
|
//priority of commands in details facet
|
2012-04-30 08:55:12 -05:00
|
|
|
remove_method_priority: IPA.config.default_priority - 1
|
2011-11-29 06:36:07 -06:00
|
|
|
};
|
2011-11-02 14:07:07 -05:00
|
|
|
|
|
|
|
IPA.hbac.rule_entity = function(spec) {
|
|
|
|
|
|
|
|
var that = IPA.entity(spec);
|
|
|
|
|
2011-11-16 21:07:20 -06:00
|
|
|
that.init = function() {
|
|
|
|
that.entity_init();
|
2011-11-02 14:07:07 -05:00
|
|
|
|
2011-11-16 21:07:20 -06:00
|
|
|
that.builder.search_facet({
|
2012-01-18 17:58:55 -06:00
|
|
|
row_enabled_attribute: 'ipaenabledflag',
|
2012-01-17 15:50:49 -06:00
|
|
|
search_all_attributes: true,
|
2011-09-16 10:32:28 -05:00
|
|
|
columns: [
|
|
|
|
'cn',
|
2011-12-05 09:23:38 -06:00
|
|
|
{
|
|
|
|
name: 'ipaenabledflag',
|
2012-01-18 21:54:41 -06:00
|
|
|
label: IPA.messages.status.label,
|
2012-01-31 09:57:33 -06:00
|
|
|
formatter: IPA.boolean_status_formatter()
|
2011-12-05 09:23:38 -06:00
|
|
|
},
|
2011-09-16 10:32:28 -05:00
|
|
|
'description'
|
2012-04-30 08:55:12 -05:00
|
|
|
],
|
2012-05-21 08:23:06 -05:00
|
|
|
actions: [
|
2012-08-27 03:57:47 -05:00
|
|
|
IPA.batch_disable_action,
|
|
|
|
IPA.batch_enable_action
|
2012-05-21 08:23:06 -05:00
|
|
|
],
|
|
|
|
control_buttons: [
|
|
|
|
{
|
|
|
|
name: 'disable',
|
|
|
|
label: IPA.messages.buttons.disable,
|
|
|
|
icon: 'disabled-icon'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
name: 'enable',
|
|
|
|
label: IPA.messages.buttons.enable,
|
|
|
|
icon: 'enabled-icon'
|
|
|
|
}
|
|
|
|
]
|
2011-04-18 10:59:50 -05:00
|
|
|
}).
|
2011-05-16 14:40:09 -05:00
|
|
|
details_facet({
|
2011-11-29 06:36:07 -06:00
|
|
|
factory: IPA.hbacrule_details_facet,
|
|
|
|
entity: that,
|
2012-04-30 08:55:12 -05:00
|
|
|
command_mode: 'info',
|
2012-05-21 08:23:06 -05:00
|
|
|
actions: [
|
|
|
|
IPA.select_action,
|
|
|
|
IPA.enable_action,
|
|
|
|
IPA.disable_action,
|
|
|
|
IPA.delete_action
|
|
|
|
],
|
|
|
|
header_actions: ['select_action', 'enable', 'disable', 'delete'],
|
|
|
|
state: {
|
|
|
|
evaluators: [
|
|
|
|
{
|
|
|
|
factory: IPA.enable_state_evaluator,
|
|
|
|
field: 'ipaenabledflag'
|
|
|
|
}
|
|
|
|
],
|
|
|
|
summary_conditions: [
|
|
|
|
IPA.enabled_summary_cond(),
|
|
|
|
IPA.disabled_summary_cond()
|
2012-04-30 08:55:12 -05:00
|
|
|
]
|
|
|
|
}
|
2011-04-18 10:59:50 -05:00
|
|
|
}).
|
|
|
|
adder_dialog({
|
2011-09-16 10:32:28 -05:00
|
|
|
fields: [ 'cn' ]
|
2011-11-02 14:07:07 -05:00
|
|
|
});
|
|
|
|
};
|
|
|
|
|
|
|
|
return that;
|
2011-01-14 11:16:25 -06:00
|
|
|
};
|
|
|
|
|
2011-11-02 14:07:07 -05:00
|
|
|
IPA.hbac.service_entity = function(spec) {
|
|
|
|
|
|
|
|
var that = IPA.entity(spec);
|
|
|
|
|
2011-11-16 21:07:20 -06:00
|
|
|
that.init = function() {
|
|
|
|
that.entity_init();
|
2011-11-02 14:07:07 -05:00
|
|
|
|
2011-11-16 21:07:20 -06:00
|
|
|
that.builder.search_facet({
|
2011-09-16 18:21:41 -05:00
|
|
|
columns: [
|
|
|
|
'cn',
|
|
|
|
'description'
|
|
|
|
]
|
|
|
|
}).
|
|
|
|
details_facet({
|
|
|
|
sections: [
|
|
|
|
{
|
|
|
|
name: 'general',
|
|
|
|
label: IPA.messages.details.general,
|
|
|
|
fields: [
|
|
|
|
'cn',
|
|
|
|
{
|
2011-11-29 06:36:07 -06:00
|
|
|
type: 'textarea',
|
2011-09-16 18:21:41 -05:00
|
|
|
name: 'description'
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}).
|
2011-07-28 17:23:41 -05:00
|
|
|
association_facet({
|
|
|
|
name: 'memberof_hbacsvcgroup',
|
|
|
|
associator: IPA.serial_associator,
|
|
|
|
columns:[
|
2011-11-18 19:47:39 -06:00
|
|
|
'cn',
|
|
|
|
'description'
|
2011-07-28 17:23:41 -05:00
|
|
|
],
|
|
|
|
adder_columns: [
|
|
|
|
{
|
|
|
|
name: 'cn',
|
|
|
|
primary_key: true,
|
|
|
|
width: '100px'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
name: 'description',
|
|
|
|
width: '100px'
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}).
|
|
|
|
standard_association_facets().
|
2011-04-18 10:59:50 -05:00
|
|
|
adder_dialog({
|
2011-09-16 18:21:41 -05:00
|
|
|
fields: [
|
|
|
|
'cn',
|
|
|
|
{
|
2011-11-29 06:36:07 -06:00
|
|
|
type: 'textarea',
|
2011-09-16 18:21:41 -05:00
|
|
|
name: 'description'
|
|
|
|
}
|
|
|
|
]
|
2011-11-02 14:07:07 -05:00
|
|
|
});
|
|
|
|
};
|
|
|
|
|
|
|
|
return that;
|
2011-03-18 15:43:54 -05:00
|
|
|
};
|
2010-10-27 22:32:30 -05:00
|
|
|
|
2011-11-02 14:07:07 -05:00
|
|
|
IPA.hbac.service_group_entity = function(spec) {
|
|
|
|
|
|
|
|
var that = IPA.entity(spec);
|
|
|
|
|
2011-11-16 21:07:20 -06:00
|
|
|
that.init = function() {
|
|
|
|
that.entity_init();
|
2010-10-27 22:32:30 -05:00
|
|
|
|
2011-11-16 21:07:20 -06:00
|
|
|
that.builder.search_facet({
|
2011-09-16 18:21:41 -05:00
|
|
|
columns: [
|
|
|
|
'cn',
|
|
|
|
'description'
|
|
|
|
]
|
|
|
|
}).
|
|
|
|
details_facet({
|
|
|
|
sections: [
|
|
|
|
{
|
|
|
|
name: 'general',
|
|
|
|
label: IPA.messages.details.general,
|
|
|
|
fields: [
|
|
|
|
'cn',
|
|
|
|
{
|
2011-11-29 06:36:07 -06:00
|
|
|
type: 'textarea',
|
2011-09-16 18:21:41 -05:00
|
|
|
name: 'description'
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}).
|
2011-07-28 17:23:41 -05:00
|
|
|
association_facet({
|
|
|
|
name: 'member_hbacsvc',
|
|
|
|
columns:[
|
2011-11-18 19:47:39 -06:00
|
|
|
'cn',
|
|
|
|
'description'
|
2011-07-28 17:23:41 -05:00
|
|
|
],
|
|
|
|
adder_columns: [
|
|
|
|
{
|
|
|
|
name: 'cn',
|
|
|
|
primary_key: true,
|
|
|
|
width: '100px'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
name: 'description',
|
|
|
|
width: '100px'
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}).
|
|
|
|
standard_association_facets().
|
2011-04-18 10:59:50 -05:00
|
|
|
adder_dialog({
|
2011-09-16 18:21:41 -05:00
|
|
|
fields: [
|
|
|
|
'cn',
|
|
|
|
{
|
2011-11-29 06:36:07 -06:00
|
|
|
type: 'textarea',
|
2011-09-16 18:21:41 -05:00
|
|
|
name: 'description'
|
|
|
|
}
|
|
|
|
]
|
2011-11-02 14:07:07 -05:00
|
|
|
});
|
|
|
|
};
|
|
|
|
|
|
|
|
return that;
|
2011-01-14 11:16:25 -06:00
|
|
|
};
|
|
|
|
|
2011-07-07 14:42:57 -05:00
|
|
|
IPA.hbacrule_details_facet = function(spec) {
|
2010-10-27 22:32:30 -05:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
var entity_name = spec.entity.name;
|
|
|
|
|
|
|
|
//
|
|
|
|
// General
|
|
|
|
//
|
|
|
|
|
|
|
|
spec.fields = [
|
|
|
|
{
|
|
|
|
name: 'cn',
|
|
|
|
read_only: true,
|
|
|
|
widget: 'general.cn'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'textarea',
|
|
|
|
name: 'description',
|
|
|
|
widget: 'general.description'
|
|
|
|
}
|
|
|
|
];
|
2010-10-27 22:32:30 -05:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
spec.widgets = [
|
|
|
|
{
|
|
|
|
type: 'details_table_section',
|
removing setters setup and init
change widget and widget unit tests to hold on to entity, not entity name.
Replacing entity_name with entity.name in most places.
The one exception is columns for table_widget.
Widgets that refer to other entities have to have late resolution of the entity object, due to circular dependencies.
cleanup entity assignment.
removed template and layout,
merged setup into create
adder dialogs adjust height for external
removed init from widget, isection, association, facet, host and service
Make unit tests use factory.
fix functional tests to click find link correctly.
tweak to activation test, but still broken.
moved initialization code to the end
use --all for hbacrule find, so the type shows up now
fixed dns exception code and exception handling for get_entity
replace metadata look up with value from entity.
fixed author lines
removed duplicate columns in managed by facets.
tweak to nav fix in order to initialize tab.
more defensive code
update metadata for true false
one line init for entity_name in widget
move init code to end of constructor functions
moved constants to start of function for adder_dialog
external fields for dialogs initialized at dialog creation
sudo sections: move add fields and columns to widget definition.
The parameter validation in IPA.column ...This is precondition checking. Note that it merely throws an exception if the entity_name is not set. I want this stuff at the top of the function so that it is obvious to people looking to use them what is required. I added a comment to make this clear, but I'd like to keep precondition checking at the top of the function.
decreased the scope of the pkey_name and moved the initiailzation fof columns into the setup_column function for association_tables
return false at the end of click handler
removed blank labels in sudo command section
fix radio buttons for sudo category
fixed table side for adder dialogs with external fields
comments for future direction with add_columns
https://fedorahosted.org/freeipa/ticket/1451
https://fedorahosted.org/freeipa/ticket/1462
https://fedorahosted.org/freeipa/ticket/1493
https://fedorahosted.org/freeipa/ticket/1497
https://fedorahosted.org/freeipa/ticket/1532
https://fedorahosted.org/freeipa/ticket/1534
2011-07-25 11:15:14 -05:00
|
|
|
name: 'general',
|
2011-11-29 06:36:07 -06:00
|
|
|
label: IPA.messages.details.general,
|
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
name: 'cn'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'textarea',
|
|
|
|
name: 'description'
|
|
|
|
}
|
removing setters setup and init
change widget and widget unit tests to hold on to entity, not entity name.
Replacing entity_name with entity.name in most places.
The one exception is columns for table_widget.
Widgets that refer to other entities have to have late resolution of the entity object, due to circular dependencies.
cleanup entity assignment.
removed template and layout,
merged setup into create
adder dialogs adjust height for external
removed init from widget, isection, association, facet, host and service
Make unit tests use factory.
fix functional tests to click find link correctly.
tweak to activation test, but still broken.
moved initialization code to the end
use --all for hbacrule find, so the type shows up now
fixed dns exception code and exception handling for get_entity
replace metadata look up with value from entity.
fixed author lines
removed duplicate columns in managed by facets.
tweak to nav fix in order to initialize tab.
more defensive code
update metadata for true false
one line init for entity_name in widget
move init code to end of constructor functions
moved constants to start of function for adder_dialog
external fields for dialogs initialized at dialog creation
sudo sections: move add fields and columns to widget definition.
The parameter validation in IPA.column ...This is precondition checking. Note that it merely throws an exception if the entity_name is not set. I want this stuff at the top of the function so that it is obvious to people looking to use them what is required. I added a comment to make this clear, but I'd like to keep precondition checking at the top of the function.
decreased the scope of the pkey_name and moved the initiailzation fof columns into the setup_column function for association_tables
return false at the end of click handler
removed blank labels in sudo command section
fix radio buttons for sudo category
fixed table side for adder dialogs with external fields
comments for future direction with add_columns
https://fedorahosted.org/freeipa/ticket/1451
https://fedorahosted.org/freeipa/ticket/1462
https://fedorahosted.org/freeipa/ticket/1493
https://fedorahosted.org/freeipa/ticket/1497
https://fedorahosted.org/freeipa/ticket/1532
https://fedorahosted.org/freeipa/ticket/1534
2011-07-25 11:15:14 -05:00
|
|
|
]
|
2011-11-29 06:36:07 -06:00
|
|
|
}
|
|
|
|
];
|
|
|
|
|
|
|
|
//
|
|
|
|
// Users
|
|
|
|
//
|
|
|
|
|
|
|
|
spec.fields.push(
|
|
|
|
{
|
|
|
|
type: 'radio',
|
|
|
|
name: 'usercategory',
|
|
|
|
widget: 'user.rule.usercategory'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
name: 'memberuser_user',
|
|
|
|
widget: 'user.rule.memberuser_user',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
name: 'memberuser_group',
|
|
|
|
widget: 'user.rule.memberuser_group',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
|
|
|
}
|
|
|
|
);
|
removing setters setup and init
change widget and widget unit tests to hold on to entity, not entity name.
Replacing entity_name with entity.name in most places.
The one exception is columns for table_widget.
Widgets that refer to other entities have to have late resolution of the entity object, due to circular dependencies.
cleanup entity assignment.
removed template and layout,
merged setup into create
adder dialogs adjust height for external
removed init from widget, isection, association, facet, host and service
Make unit tests use factory.
fix functional tests to click find link correctly.
tweak to activation test, but still broken.
moved initialization code to the end
use --all for hbacrule find, so the type shows up now
fixed dns exception code and exception handling for get_entity
replace metadata look up with value from entity.
fixed author lines
removed duplicate columns in managed by facets.
tweak to nav fix in order to initialize tab.
more defensive code
update metadata for true false
one line init for entity_name in widget
move init code to end of constructor functions
moved constants to start of function for adder_dialog
external fields for dialogs initialized at dialog creation
sudo sections: move add fields and columns to widget definition.
The parameter validation in IPA.column ...This is precondition checking. Note that it merely throws an exception if the entity_name is not set. I want this stuff at the top of the function so that it is obvious to people looking to use them what is required. I added a comment to make this clear, but I'd like to keep precondition checking at the top of the function.
decreased the scope of the pkey_name and moved the initiailzation fof columns into the setup_column function for association_tables
return false at the end of click handler
removed blank labels in sudo command section
fix radio buttons for sudo category
fixed table side for adder dialogs with external fields
comments for future direction with add_columns
https://fedorahosted.org/freeipa/ticket/1451
https://fedorahosted.org/freeipa/ticket/1462
https://fedorahosted.org/freeipa/ticket/1493
https://fedorahosted.org/freeipa/ticket/1497
https://fedorahosted.org/freeipa/ticket/1532
https://fedorahosted.org/freeipa/ticket/1534
2011-07-25 11:15:14 -05:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
spec.widgets.push(
|
|
|
|
{
|
|
|
|
factory: IPA.collapsible_section,
|
removing setters setup and init
change widget and widget unit tests to hold on to entity, not entity name.
Replacing entity_name with entity.name in most places.
The one exception is columns for table_widget.
Widgets that refer to other entities have to have late resolution of the entity object, due to circular dependencies.
cleanup entity assignment.
removed template and layout,
merged setup into create
adder dialogs adjust height for external
removed init from widget, isection, association, facet, host and service
Make unit tests use factory.
fix functional tests to click find link correctly.
tweak to activation test, but still broken.
moved initialization code to the end
use --all for hbacrule find, so the type shows up now
fixed dns exception code and exception handling for get_entity
replace metadata look up with value from entity.
fixed author lines
removed duplicate columns in managed by facets.
tweak to nav fix in order to initialize tab.
more defensive code
update metadata for true false
one line init for entity_name in widget
move init code to end of constructor functions
moved constants to start of function for adder_dialog
external fields for dialogs initialized at dialog creation
sudo sections: move add fields and columns to widget definition.
The parameter validation in IPA.column ...This is precondition checking. Note that it merely throws an exception if the entity_name is not set. I want this stuff at the top of the function so that it is obvious to people looking to use them what is required. I added a comment to make this clear, but I'd like to keep precondition checking at the top of the function.
decreased the scope of the pkey_name and moved the initiailzation fof columns into the setup_column function for association_tables
return false at the end of click handler
removed blank labels in sudo command section
fix radio buttons for sudo category
fixed table side for adder dialogs with external fields
comments for future direction with add_columns
https://fedorahosted.org/freeipa/ticket/1451
https://fedorahosted.org/freeipa/ticket/1462
https://fedorahosted.org/freeipa/ticket/1493
https://fedorahosted.org/freeipa/ticket/1497
https://fedorahosted.org/freeipa/ticket/1532
https://fedorahosted.org/freeipa/ticket/1534
2011-07-25 11:15:14 -05:00
|
|
|
name: 'user',
|
|
|
|
label: IPA.messages.objects.hbacrule.user,
|
2011-11-29 06:36:07 -06:00
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
factory: IPA.rule_details_widget,
|
|
|
|
name: 'rule',
|
|
|
|
radio_name: 'usercategory',
|
|
|
|
options: [
|
|
|
|
{ value: 'all',
|
|
|
|
label: IPA.messages.objects.hbacrule.anyone },
|
|
|
|
{ value: '',
|
|
|
|
label: IPA.messages.objects.hbacrule.specified_users }
|
|
|
|
],
|
|
|
|
tables: [
|
|
|
|
{ name: 'memberuser_user' },
|
|
|
|
{ name: 'memberuser_group' }
|
|
|
|
],
|
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_user',
|
|
|
|
name: 'memberuser_user',
|
|
|
|
add_method: 'add_user',
|
|
|
|
remove_method: 'remove_user',
|
|
|
|
add_title: IPA.messages.association.add.member,
|
|
|
|
remove_title: IPA.messages.association.remove.member
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_group',
|
|
|
|
name: 'memberuser_group',
|
|
|
|
add_method: 'add_user',
|
|
|
|
remove_method: 'remove_user',
|
|
|
|
add_title: IPA.messages.association.add.member,
|
|
|
|
remove_title: IPA.messages.association.remove.member
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
2011-07-21 02:54:07 -05:00
|
|
|
]
|
2011-11-29 06:36:07 -06:00
|
|
|
}
|
|
|
|
);
|
|
|
|
|
|
|
|
//
|
|
|
|
// Hosts
|
|
|
|
//
|
|
|
|
|
|
|
|
spec.fields.push(
|
|
|
|
{
|
|
|
|
type: 'radio',
|
|
|
|
name: 'hostcategory',
|
|
|
|
widget: 'host.rule.hostcategory'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
name: 'memberhost_host',
|
|
|
|
widget: 'host.rule.memberhost_host',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
name: 'memberhost_hostgroup',
|
|
|
|
widget: 'host.rule.memberhost_hostgroup',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
|
|
|
}
|
|
|
|
);
|
2010-11-09 14:22:31 -06:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
spec.widgets.push(
|
|
|
|
{
|
|
|
|
factory: IPA.collapsible_section,
|
removing setters setup and init
change widget and widget unit tests to hold on to entity, not entity name.
Replacing entity_name with entity.name in most places.
The one exception is columns for table_widget.
Widgets that refer to other entities have to have late resolution of the entity object, due to circular dependencies.
cleanup entity assignment.
removed template and layout,
merged setup into create
adder dialogs adjust height for external
removed init from widget, isection, association, facet, host and service
Make unit tests use factory.
fix functional tests to click find link correctly.
tweak to activation test, but still broken.
moved initialization code to the end
use --all for hbacrule find, so the type shows up now
fixed dns exception code and exception handling for get_entity
replace metadata look up with value from entity.
fixed author lines
removed duplicate columns in managed by facets.
tweak to nav fix in order to initialize tab.
more defensive code
update metadata for true false
one line init for entity_name in widget
move init code to end of constructor functions
moved constants to start of function for adder_dialog
external fields for dialogs initialized at dialog creation
sudo sections: move add fields and columns to widget definition.
The parameter validation in IPA.column ...This is precondition checking. Note that it merely throws an exception if the entity_name is not set. I want this stuff at the top of the function so that it is obvious to people looking to use them what is required. I added a comment to make this clear, but I'd like to keep precondition checking at the top of the function.
decreased the scope of the pkey_name and moved the initiailzation fof columns into the setup_column function for association_tables
return false at the end of click handler
removed blank labels in sudo command section
fix radio buttons for sudo category
fixed table side for adder dialogs with external fields
comments for future direction with add_columns
https://fedorahosted.org/freeipa/ticket/1451
https://fedorahosted.org/freeipa/ticket/1462
https://fedorahosted.org/freeipa/ticket/1493
https://fedorahosted.org/freeipa/ticket/1497
https://fedorahosted.org/freeipa/ticket/1532
https://fedorahosted.org/freeipa/ticket/1534
2011-07-25 11:15:14 -05:00
|
|
|
name: 'host',
|
|
|
|
label: IPA.messages.objects.hbacrule.host,
|
2011-11-29 06:36:07 -06:00
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
factory: IPA.rule_details_widget,
|
|
|
|
name: 'rule',
|
|
|
|
radio_name: 'hostcategory',
|
|
|
|
options: [
|
|
|
|
{
|
|
|
|
'value': 'all',
|
|
|
|
'label': IPA.messages.objects.hbacrule.any_host
|
|
|
|
},
|
|
|
|
{
|
|
|
|
'value': '',
|
|
|
|
'label': IPA.messages.objects.hbacrule.specified_hosts
|
|
|
|
}
|
|
|
|
],
|
|
|
|
tables: [
|
|
|
|
{ 'name': 'memberhost_host' },
|
|
|
|
{ 'name': 'memberhost_hostgroup' }
|
|
|
|
],
|
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_user',
|
|
|
|
name: 'memberhost_host',
|
|
|
|
add_method: 'add_host',
|
|
|
|
remove_method: 'remove_host',
|
|
|
|
add_title: IPA.messages.association.add.member,
|
|
|
|
remove_title: IPA.messages.association.remove.member
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_group',
|
|
|
|
name: 'memberhost_hostgroup',
|
|
|
|
add_method: 'add_host',
|
|
|
|
remove_method: 'remove_host',
|
|
|
|
add_title: IPA.messages.association.add.member,
|
|
|
|
remove_title: IPA.messages.association.remove.member
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
2011-07-21 02:54:07 -05:00
|
|
|
]
|
2011-11-29 06:36:07 -06:00
|
|
|
}
|
|
|
|
);
|
|
|
|
|
|
|
|
//
|
|
|
|
// Service
|
|
|
|
//
|
|
|
|
|
|
|
|
spec.fields.push(
|
|
|
|
{
|
|
|
|
type: 'radio',
|
|
|
|
name: 'servicecategory',
|
|
|
|
widget: 'service.rule.servicecategory'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
2011-08-19 10:20:40 -05:00
|
|
|
name: 'memberservice_hbacsvc',
|
2011-11-29 06:36:07 -06:00
|
|
|
widget: 'service.rule.memberservice_hbacsvc',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
2011-08-19 10:20:40 -05:00
|
|
|
name: 'memberservice_hbacsvcgroup',
|
2011-11-29 06:36:07 -06:00
|
|
|
widget: 'service.rule.memberservice_hbacsvcgroup',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
|
|
|
}
|
|
|
|
);
|
2010-11-09 14:22:31 -06:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
spec.widgets.push(
|
|
|
|
{
|
|
|
|
factory: IPA.collapsible_section,
|
|
|
|
name: 'service',
|
|
|
|
label: IPA.messages.objects.hbacrule.service,
|
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
factory: IPA.rule_details_widget,
|
|
|
|
name: 'rule',
|
|
|
|
radio_name: 'servicecategory',
|
|
|
|
options: [
|
2011-12-20 08:08:03 -06:00
|
|
|
{ 'value': 'all', 'label': IPA.messages.objects.hbacrule.any_service },
|
|
|
|
{ 'value': '', 'label': IPA.messages.objects.hbacrule.specified_services }
|
2011-11-29 06:36:07 -06:00
|
|
|
],
|
|
|
|
tables: [
|
|
|
|
{ 'name': 'memberservice_hbacsvc' },
|
|
|
|
{ 'name': 'memberservice_hbacsvcgroup' }
|
|
|
|
],
|
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_user',
|
|
|
|
name: 'memberservice_hbacsvc',
|
|
|
|
add_method: 'add_service',
|
|
|
|
remove_method: 'remove_service',
|
|
|
|
add_title: IPA.messages.association.add.member,
|
|
|
|
remove_title: IPA.messages.association.remove.member
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_group',
|
|
|
|
name: 'memberservice_hbacsvcgroup',
|
|
|
|
add_method: 'add_service',
|
|
|
|
remove_method: 'remove_service',
|
|
|
|
add_title: IPA.messages.association.add.member,
|
|
|
|
remove_title: IPA.messages.association.remove.member
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
);
|
|
|
|
|
|
|
|
//
|
|
|
|
// Source host
|
|
|
|
//
|
|
|
|
|
|
|
|
spec.fields.push(
|
|
|
|
{
|
|
|
|
type: 'radio',
|
|
|
|
name: 'sourcehostcategory',
|
|
|
|
widget: 'sourcehost.rule.sourcehostcategory'
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
2011-08-19 10:20:40 -05:00
|
|
|
name: 'sourcehost_host',
|
2011-11-29 06:36:07 -06:00
|
|
|
widget: 'sourcehost.rule.sourcehost_host',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
2011-08-19 10:20:40 -05:00
|
|
|
name: 'sourcehost_hostgroup',
|
2011-11-29 06:36:07 -06:00
|
|
|
widget: 'sourcehost.rule.sourcehost_hostgroup',
|
|
|
|
priority: IPA.hbac.remove_method_priority
|
2010-11-15 11:10:55 -06:00
|
|
|
}
|
2011-11-29 06:36:07 -06:00
|
|
|
);
|
2010-11-15 11:10:55 -06:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
spec.widgets.push(
|
|
|
|
{
|
|
|
|
factory: IPA.collapsible_section,
|
|
|
|
name: 'sourcehost',
|
|
|
|
label: IPA.messages.objects.hbacrule.sourcehost,
|
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
factory: IPA.rule_details_widget,
|
|
|
|
name: 'rule',
|
|
|
|
radio_name: 'sourcehostcategory',
|
|
|
|
options: [
|
|
|
|
{ 'value': 'all', 'label': IPA.messages.objects.hbacrule.any_host },
|
|
|
|
{ 'value': '', 'label': IPA.messages.objects.hbacrule.specified_hosts }
|
|
|
|
],
|
|
|
|
tables: [
|
|
|
|
{ 'name': 'sourcehost_host' },
|
|
|
|
{ 'name': 'sourcehost_hostgroup' }
|
|
|
|
],
|
|
|
|
widgets: [
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_user',
|
|
|
|
name: 'sourcehost_host',
|
|
|
|
add_method: 'add_sourcehost',
|
|
|
|
remove_method: 'remove_sourcehost',
|
|
|
|
add_title: IPA.messages.association.add.sourcehost,
|
|
|
|
remove_title: IPA.messages.association.remove.sourcehost
|
|
|
|
},
|
|
|
|
{
|
|
|
|
type: 'rule_association_table',
|
|
|
|
id: entity_name+'-memberuser_group',
|
|
|
|
name: 'sourcehost_hostgroup',
|
|
|
|
add_method: 'add_sourcehost',
|
|
|
|
remove_method: 'remove_sourcehost',
|
|
|
|
add_title: IPA.messages.association.add.sourcehost,
|
|
|
|
remove_title: IPA.messages.association.remove.sourcehost
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
]
|
2010-11-15 11:10:55 -06:00
|
|
|
}
|
2011-11-29 06:36:07 -06:00
|
|
|
);
|
2010-11-15 11:10:55 -06:00
|
|
|
|
2011-11-29 06:36:07 -06:00
|
|
|
var that = IPA.details_facet(spec);
|
removing setters setup and init
change widget and widget unit tests to hold on to entity, not entity name.
Replacing entity_name with entity.name in most places.
The one exception is columns for table_widget.
Widgets that refer to other entities have to have late resolution of the entity object, due to circular dependencies.
cleanup entity assignment.
removed template and layout,
merged setup into create
adder dialogs adjust height for external
removed init from widget, isection, association, facet, host and service
Make unit tests use factory.
fix functional tests to click find link correctly.
tweak to activation test, but still broken.
moved initialization code to the end
use --all for hbacrule find, so the type shows up now
fixed dns exception code and exception handling for get_entity
replace metadata look up with value from entity.
fixed author lines
removed duplicate columns in managed by facets.
tweak to nav fix in order to initialize tab.
more defensive code
update metadata for true false
one line init for entity_name in widget
move init code to end of constructor functions
moved constants to start of function for adder_dialog
external fields for dialogs initialized at dialog creation
sudo sections: move add fields and columns to widget definition.
The parameter validation in IPA.column ...This is precondition checking. Note that it merely throws an exception if the entity_name is not set. I want this stuff at the top of the function so that it is obvious to people looking to use them what is required. I added a comment to make this clear, but I'd like to keep precondition checking at the top of the function.
decreased the scope of the pkey_name and moved the initiailzation fof columns into the setup_column function for association_tables
return false at the end of click handler
removed blank labels in sudo command section
fix radio buttons for sudo category
fixed table side for adder dialogs with external fields
comments for future direction with add_columns
https://fedorahosted.org/freeipa/ticket/1451
https://fedorahosted.org/freeipa/ticket/1462
https://fedorahosted.org/freeipa/ticket/1493
https://fedorahosted.org/freeipa/ticket/1497
https://fedorahosted.org/freeipa/ticket/1532
https://fedorahosted.org/freeipa/ticket/1534
2011-07-25 11:15:14 -05:00
|
|
|
|
2011-12-19 18:31:35 -06:00
|
|
|
that.update_on_success = function(data, text_status, xhr) {
|
2011-11-29 06:36:07 -06:00
|
|
|
that.refresh();
|
2012-03-22 11:31:48 -05:00
|
|
|
that.on_update.notify();
|
2012-08-29 10:35:07 -05:00
|
|
|
that.nofify_update_success();
|
2010-11-15 11:10:55 -06:00
|
|
|
};
|
|
|
|
|
2011-12-19 18:31:35 -06:00
|
|
|
that.update_on_error = function(xhr, text_status, error_thrown) {
|
2011-11-29 06:36:07 -06:00
|
|
|
that.refresh();
|
|
|
|
};
|
HBAC Details Page
The UI framework has been extended to include a collection of widgets:
- ipa_widget: base class
- ipa_text_widget: text field
- ipa_radio_widget: radio button
- ipa_textarea_widget: textarea
- ipa_button_widget: button
- ipa_column_widget: column for table
- ipa_table_widget: table
These widgets can be used to create input controls. They can also be
extended to create custom controls.
The framework has also been enhanced to support custom layouts. This
can be used to change the look of the application without changing
the code. Initially this is only available in details section.
Layout consists of a collection of HTML templates. Each template is a
complete and valid HTML file representing a portion of a page. The
template will be loaded and initialized by the code, then filled with
the data from the server. The layouts are located in
install/static/layouts/<name> folder.
By default, if no templates are used, the fields in the details page
are rendered vertically using dd/dt/dd tags. For pages that require
different layout, a custom UI needs to be developed. There are two ways
to do that:
- write a custom widget to generate the UI dynamically
- create an HTML template and write the initialization code
For components that are quite complex or used frequently, it's might
be better to use the first method. For simple pages that are used only
in one location or need to support customization, the second method
might be preferable. Other benefits of templates:
- cleaner code and UI separation
- more flexibility in customization
- new pages can be developed quickly and require less coding
- multiple templates can be used with the same initialization code
- easier to maintain
The HBAC details page has been implemented using both methods. By
default it will use custom widgets to generate the page. To use a
custom layout, add the following parameter to the URL, then reload
the page:
&layout=<name>
Currently the only available layout is 'default' which produces the
same look as the custom widgets.
The HBAC details page is usable, but it still needs additional work.
The access time is not working yet. There is no undo button, hint,
or validation yet.
The table in the association facet has also been changed to use
ipa_association_widget which is derived from ipa_table_widget.
The Makefile has been updated to include the layouts. The unit tests
have been updated as well.
2010-11-02 20:16:55 -05:00
|
|
|
|
|
|
|
return that;
|
2011-01-14 11:16:25 -06:00
|
|
|
};
|
2011-11-02 14:07:07 -05:00
|
|
|
|
|
|
|
IPA.register('hbacrule', IPA.hbac.rule_entity);
|
|
|
|
IPA.register('hbacsvc', IPA.hbac.service_entity);
|
|
|
|
IPA.register('hbacsvcgroup', IPA.hbac.service_group_entity);
|