From ab565b1862e3945595d954207d32ef25360a3aa9 Mon Sep 17 00:00:00 2001 From: Alex Vanin Date: Mon, 21 Sep 2020 12:51:15 +0300 Subject: [PATCH] [#32] Add basis of basic ACL check service Signed-off-by: Alex Vanin --- go.sum | Bin 58361 -> 58606 bytes pkg/services/object/acl/acl.go | 129 +++++++++++++++++++++++++++++++++ 2 files changed, 129 insertions(+) create mode 100644 pkg/services/object/acl/acl.go diff --git a/go.sum b/go.sum index e3e2f46525bb88ab77555bf8e487a6df76f74cfa..7a59fb51c984c4e35b5438c4e973771d0e87b022 100644 GIT binary patch delta 121 zcmex)ocY~J<_*u&Tnx<(4NOdp%ylhI6H^Tm%}gxK3@j8f46TYnjD4NTe2q&@T`UUp z!z^-=N(@560?bYGA_9Y*^&_3j3;ctM%FF^?9VZ`5m707mO;QxAVUsg5f+yQ%NN#?W H#$O8ndjKa& delta 14 WcmaENlKJOx<_*u&Hs47Xss#W*`3L|2 diff --git a/pkg/services/object/acl/acl.go b/pkg/services/object/acl/acl.go new file mode 100644 index 000000000..d88a4a0d4 --- /dev/null +++ b/pkg/services/object/acl/acl.go @@ -0,0 +1,129 @@ +package acl + +import ( + "context" + + "github.com/nspcc-dev/neofs-api-go/v2/object" +) + +type ( + // ContainerGetter accesses NeoFS container storage. + ContainerGetter interface{} + + // BasicChecker checks basic ACL rules. + BasicChecker struct { + containers ContainerGetter + next object.Service + } + + putStreamBasicChecker struct { + containers ContainerGetter + next object.PutObjectStreamer + } + + getStreamBasicChecker struct { + containers ContainerGetter + next object.GetObjectStreamer + } + + searchStreamBasicChecker struct { + containers ContainerGetter + next object.SearchObjectStreamer + } + + getRangeStreamBasicChecker struct { + containers ContainerGetter + next object.GetRangeObjectStreamer + } +) + +// NewBasicChecker is a constructor for basic ACL checker of object requests. +func NewBasicChecker(cnr ContainerGetter, next object.Service) BasicChecker { + return BasicChecker{ + containers: cnr, + next: next, + } +} + +func (b BasicChecker) Get( + ctx context.Context, + request *object.GetRequest) (object.GetObjectStreamer, error) { + + stream, err := b.next.Get(ctx, request) + return getStreamBasicChecker{ + containers: b.containers, + next: stream, + }, err +} + +func (b BasicChecker) Put(ctx context.Context) (object.PutObjectStreamer, error) { + streamer, err := b.next.Put(ctx) + + return putStreamBasicChecker{ + containers: b.containers, + next: streamer, + }, err +} + +func (b BasicChecker) Head( + ctx context.Context, + request *object.HeadRequest) (*object.HeadResponse, error) { + + return b.next.Head(ctx, request) +} + +func (b BasicChecker) Search( + ctx context.Context, + request *object.SearchRequest) (object.SearchObjectStreamer, error) { + + stream, err := b.next.Search(ctx, request) + return searchStreamBasicChecker{ + containers: b.containers, + next: stream, + }, err +} + +func (b BasicChecker) Delete( + ctx context.Context, + request *object.DeleteRequest) (*object.DeleteResponse, error) { + + return b.next.Delete(ctx, request) +} + +func (b BasicChecker) GetRange( + ctx context.Context, + request *object.GetRangeRequest) (object.GetRangeObjectStreamer, error) { + + stream, err := b.next.GetRange(ctx, request) + return getRangeStreamBasicChecker{ + containers: b.containers, + next: stream, + }, err +} + +func (b BasicChecker) GetRangeHash( + ctx context.Context, + request *object.GetRangeHashRequest) (*object.GetRangeHashResponse, error) { + + return b.next.GetRangeHash(ctx, request) +} + +func (p putStreamBasicChecker) Send(request *object.PutRequest) error { + return p.next.Send(request) +} + +func (p putStreamBasicChecker) CloseAndRecv() (*object.PutResponse, error) { + return p.next.CloseAndRecv() +} + +func (g getStreamBasicChecker) Recv() (*object.GetResponse, error) { + return g.next.Recv() +} + +func (s searchStreamBasicChecker) Recv() (*object.SearchResponse, error) { + return s.next.Recv() +} + +func (g getRangeStreamBasicChecker) Recv() (*object.GetRangeResponse, error) { + return g.next.Recv() +}