-
Notifications
You must be signed in to change notification settings - Fork 245
/
caveat.go
137 lines (119 loc) · 3.96 KB
/
caveat.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
package spanner
import (
"context"
"fmt"
"time"
"cloud.google.com/go/spanner"
"google.golang.org/grpc/codes"
"github.com/authzed/spicedb/internal/datastore/common"
"github.com/authzed/spicedb/pkg/datastore"
core "github.com/authzed/spicedb/pkg/proto/core/v1"
)
func (sr spannerReader) ReadCaveatByName(ctx context.Context, name string) (*core.CaveatDefinition, datastore.Revision, error) {
caveatKey := spanner.Key{name}
row, err := sr.txSource().ReadRow(ctx, tableCaveat, caveatKey, []string{colCaveatDefinition, colCaveatTS})
if err != nil {
if spanner.ErrCode(err) == codes.NotFound {
return nil, datastore.NoRevision, datastore.NewCaveatNameNotFoundErr(name)
}
return nil, datastore.NoRevision, fmt.Errorf(errUnableToReadCaveat, err)
}
var serialized []byte
var updated time.Time
if err := row.Columns(&serialized, &updated); err != nil {
return nil, datastore.NoRevision, fmt.Errorf(errUnableToReadCaveat, err)
}
loaded := &core.CaveatDefinition{}
if err := loaded.UnmarshalVT(serialized); err != nil {
return nil, datastore.NoRevision, err
}
return loaded, revisionFromTimestamp(updated), nil
}
func (sr spannerReader) ListAllCaveats(ctx context.Context) ([]datastore.RevisionedCaveat, error) {
return sr.listCaveats(ctx, nil)
}
func (sr spannerReader) LookupCaveatsWithNames(ctx context.Context, caveatNames []string) ([]datastore.RevisionedCaveat, error) {
if len(caveatNames) == 0 {
return nil, nil
}
return sr.listCaveats(ctx, caveatNames)
}
func (sr spannerReader) listCaveats(ctx context.Context, caveatNames []string) ([]datastore.RevisionedCaveat, error) {
keyset := spanner.AllKeys()
if len(caveatNames) > 0 {
keys := make([]spanner.Key, 0, len(caveatNames))
for _, n := range caveatNames {
keys = append(keys, spanner.Key{n})
}
keyset = spanner.KeySetFromKeys(keys...)
}
iter := sr.txSource().Read(
ctx,
tableCaveat,
keyset,
[]string{colCaveatDefinition, colCaveatTS},
)
var caveats []datastore.RevisionedCaveat
if err := iter.Do(func(row *spanner.Row) error {
var serialized []byte
var updated time.Time
if err := row.Columns(&serialized, &updated); err != nil {
return err
}
loaded := &core.CaveatDefinition{}
if err := loaded.UnmarshalVT(serialized); err != nil {
return err
}
caveats = append(caveats, datastore.RevisionedCaveat{
Definition: loaded,
LastWrittenRevision: revisionFromTimestamp(updated),
})
return nil
}); err != nil {
return nil, fmt.Errorf(errUnableToListCaveats, err)
}
return caveats, nil
}
func (rwt spannerReadWriteTXN) WriteCaveats(ctx context.Context, caveats []*core.CaveatDefinition) error {
names := map[string]struct{}{}
mutations := make([]*spanner.Mutation, 0, len(caveats))
for _, caveat := range caveats {
if _, ok := names[caveat.Name]; ok {
return fmt.Errorf(errUnableToWriteCaveat, fmt.Errorf("duplicate caveats in input: %s", caveat.Name))
}
names[caveat.Name] = struct{}{}
serialized, err := caveat.MarshalVT()
if err != nil {
return fmt.Errorf(errUnableToWriteCaveat, err)
}
mutations = append(mutations, spanner.InsertOrUpdate(
tableCaveat,
[]string{colName, colCaveatDefinition, colCaveatTS},
[]interface{}{caveat.Name, serialized, spanner.CommitTimestamp},
))
}
return rwt.spannerRWT.BufferWrite(mutations)
}
func (rwt spannerReadWriteTXN) DeleteCaveats(ctx context.Context, names []string) error {
keys := make([]spanner.Key, 0, len(names))
for _, n := range names {
keys = append(keys, spanner.Key{n})
}
err := rwt.spannerRWT.BufferWrite([]*spanner.Mutation{
spanner.Delete(tableCaveat, spanner.KeySetFromKeys(keys...)),
})
if err != nil {
return fmt.Errorf(errUnableToDeleteCaveat, err)
}
return err
}
func ContextualizedCaveatFrom(name spanner.NullString, context spanner.NullJSON) (*core.ContextualizedCaveat, error) {
if name.Valid {
var cctx map[string]any
if context.Valid {
cctx = context.Value.(map[string]any)
}
return common.ContextualizedCaveatFrom(name.StringVal, cctx)
}
return nil, nil
}