TDengine/source/dnode/mnode/impl/src/mndUser.c

816 lines
25 KiB
C
Raw Normal View History

2021-09-22 08:15:20 +00:00
/*
* Copyright (c) 2019 TAOS Data, Inc. <jhtao@taosdata.com>
*
* This program is free software: you can use, redistribute, and/or modify
* it under the terms of the GNU Affero General Public License, version 3
* or later ("AGPL"), as published by the Free Software Foundation.
*
* This program is distributed in the hope that it will be useful, but WITHOUT
* ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
* FITNESS FOR A PARTICULAR PURPOSE.
*
* You should have received a copy of the GNU Affero General Public License
* along with this program. If not, see <http://www.gnu.org/licenses/>.
*/
2021-10-16 07:16:05 +00:00
#define _DEFAULT_SOURCE
2021-12-03 12:52:44 +00:00
#include "mndUser.h"
2022-02-11 06:09:03 +00:00
#include "mndAuth.h"
2022-02-11 05:13:32 +00:00
#include "mndDb.h"
2021-12-03 12:52:44 +00:00
#include "mndShow.h"
2021-11-27 14:56:18 +00:00
#include "mndTrans.h"
2022-02-28 02:34:05 +00:00
#include "tbase64.h"
2021-10-17 03:42:05 +00:00
2022-04-26 09:42:57 +00:00
#define USER_VER_NUMBER 1
#define USER_RESERVE_SIZE 64
2021-10-18 06:00:35 +00:00
2021-12-03 12:52:44 +00:00
static int32_t mndCreateDefaultUsers(SMnode *pMnode);
static SSdbRow *mndUserActionDecode(SSdbRaw *pRaw);
static int32_t mndUserActionInsert(SSdb *pSdb, SUserObj *pUser);
static int32_t mndUserActionDelete(SSdb *pSdb, SUserObj *pUser);
2022-01-04 12:04:23 +00:00
static int32_t mndUserActionUpdate(SSdb *pSdb, SUserObj *pOld, SUserObj *pNew);
2022-03-15 12:53:29 +00:00
static int32_t mndCreateUser(SMnode *pMnode, char *acct, SCreateUserReq *pCreate, SNodeMsg *pReq);
static int32_t mndProcessCreateUserReq(SNodeMsg *pReq);
static int32_t mndProcessAlterUserReq(SNodeMsg *pReq);
static int32_t mndProcessDropUserReq(SNodeMsg *pReq);
static int32_t mndProcessGetUserAuthReq(SNodeMsg *pReq);
2022-04-26 09:42:57 +00:00
static int32_t mndRetrieveUsers(SNodeMsg *pReq, SShowObj *pShow, SSDataBlock *pBlock, int32_t rows);
2021-12-07 12:14:22 +00:00
static void mndCancelGetNextUser(SMnode *pMnode, void *pIter);
2021-12-03 12:52:44 +00:00
int32_t mndInitUser(SMnode *pMnode) {
2022-04-27 10:38:31 +00:00
SSdbTable table = {
.sdbType = SDB_USER,
.keyType = SDB_KEY_BINARY,
.deployFp = (SdbDeployFp)mndCreateDefaultUsers,
.encodeFp = (SdbEncodeFp)mndUserActionEncode,
.decodeFp = (SdbDecodeFp)mndUserActionDecode,
.insertFp = (SdbInsertFp)mndUserActionInsert,
.updateFp = (SdbUpdateFp)mndUserActionUpdate,
.deleteFp = (SdbDeleteFp)mndUserActionDelete,
};
2021-12-03 12:52:44 +00:00
2022-01-04 12:04:23 +00:00
mndSetMsgHandle(pMnode, TDMT_MND_CREATE_USER, mndProcessCreateUserReq);
mndSetMsgHandle(pMnode, TDMT_MND_ALTER_USER, mndProcessAlterUserReq);
mndSetMsgHandle(pMnode, TDMT_MND_DROP_USER, mndProcessDropUserReq);
2022-02-11 07:20:27 +00:00
mndSetMsgHandle(pMnode, TDMT_MND_GET_USER_AUTH, mndProcessGetUserAuthReq);
2021-12-03 12:52:44 +00:00
2021-12-07 12:14:22 +00:00
mndAddShowRetrieveHandle(pMnode, TSDB_MGMT_TABLE_USER, mndRetrieveUsers);
mndAddShowFreeIterHandle(pMnode, TSDB_MGMT_TABLE_USER, mndCancelGetNextUser);
2021-12-03 12:52:44 +00:00
return sdbSetTable(pMnode->pSdb, table);
}
void mndCleanupUser(SMnode *pMnode) {}
static int32_t mndCreateDefaultUser(SMnode *pMnode, char *acct, char *user, char *pass) {
SUserObj userObj = {0};
2022-01-23 11:50:18 +00:00
taosEncryptPass_c((uint8_t *)pass, strlen(pass), userObj.pass);
2021-12-03 12:52:44 +00:00
tstrncpy(userObj.user, user, TSDB_USER_LEN);
tstrncpy(userObj.acct, acct, TSDB_USER_LEN);
userObj.createdTime = taosGetTimestampMs();
userObj.updateTime = userObj.createdTime;
if (strcmp(user, TSDB_DEFAULT_USER) == 0) {
userObj.superUser = 1;
2021-12-03 12:52:44 +00:00
}
SSdbRaw *pRaw = mndUserActionEncode(&userObj);
if (pRaw == NULL) return -1;
sdbSetRawStatus(pRaw, SDB_STATUS_READY);
2021-12-30 15:40:05 +00:00
mDebug("user:%s, will be created while deploy sdb, raw:%p", userObj.user, pRaw);
2021-12-03 12:52:44 +00:00
return sdbWrite(pMnode->pSdb, pRaw);
}
static int32_t mndCreateDefaultUsers(SMnode *pMnode) {
if (mndCreateDefaultUser(pMnode, TSDB_DEFAULT_USER, TSDB_DEFAULT_USER, TSDB_DEFAULT_PASS) != 0) {
return -1;
}
return 0;
}
2022-05-03 04:57:55 +00:00
SSdbRaw *mndUserActionEncode(SUserObj *pUser) {
2021-12-31 06:22:50 +00:00
terrno = TSDB_CODE_OUT_OF_MEMORY;
2022-02-11 06:09:03 +00:00
int32_t numOfReadDbs = taosHashGetSize(pUser->readDbs);
int32_t numOfWriteDbs = taosHashGetSize(pUser->writeDbs);
2022-04-26 09:42:57 +00:00
int32_t size = sizeof(SUserObj) + USER_RESERVE_SIZE + (numOfReadDbs + numOfWriteDbs) * TSDB_DB_FNAME_LEN;
2022-02-11 06:09:03 +00:00
2022-04-26 09:42:57 +00:00
SSdbRaw *pRaw = sdbAllocRaw(SDB_USER, USER_VER_NUMBER, size);
if (pRaw == NULL) goto _OVER;
2021-11-12 07:06:58 +00:00
int32_t dataPos = 0;
SDB_SET_BINARY(pRaw, dataPos, pUser->user, TSDB_USER_LEN, _OVER)
SDB_SET_BINARY(pRaw, dataPos, pUser->pass, TSDB_PASSWORD_LEN, _OVER)
SDB_SET_BINARY(pRaw, dataPos, pUser->acct, TSDB_USER_LEN, _OVER)
SDB_SET_INT64(pRaw, dataPos, pUser->createdTime, _OVER)
SDB_SET_INT64(pRaw, dataPos, pUser->updateTime, _OVER)
SDB_SET_INT8(pRaw, dataPos, pUser->superUser, _OVER)
SDB_SET_INT32(pRaw, dataPos, pUser->authVersion, _OVER)
SDB_SET_INT32(pRaw, dataPos, numOfReadDbs, _OVER)
SDB_SET_INT32(pRaw, dataPos, numOfWriteDbs, _OVER)
2022-02-10 14:49:53 +00:00
char *db = taosHashIterate(pUser->readDbs, NULL);
while (db != NULL) {
SDB_SET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER);
2022-02-10 14:49:53 +00:00
db = taosHashIterate(pUser->readDbs, db);
}
db = taosHashIterate(pUser->writeDbs, NULL);
while (db != NULL) {
SDB_SET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER);
2022-02-10 14:49:53 +00:00
db = taosHashIterate(pUser->writeDbs, db);
}
SDB_SET_RESERVE(pRaw, dataPos, USER_RESERVE_SIZE, _OVER)
SDB_SET_DATALEN(pRaw, dataPos, _OVER)
2021-12-31 06:22:50 +00:00
terrno = 0;
_OVER:
2021-12-31 06:22:50 +00:00
if (terrno != 0) {
mError("user:%s, failed to encode to raw:%p since %s", pUser->user, pRaw, terrstr());
sdbFreeRaw(pRaw);
return NULL;
}
2021-11-09 03:37:58 +00:00
2021-12-30 15:40:05 +00:00
mTrace("user:%s, encode to raw:%p, row:%p", pUser->user, pRaw, pUser);
2021-11-09 03:37:58 +00:00
return pRaw;
2021-10-18 06:00:35 +00:00
}
2021-11-29 05:19:00 +00:00
static SSdbRow *mndUserActionDecode(SSdbRaw *pRaw) {
2021-12-31 06:22:50 +00:00
terrno = TSDB_CODE_OUT_OF_MEMORY;
2021-11-12 07:06:58 +00:00
int8_t sver = 0;
if (sdbGetRawSoftVer(pRaw, &sver) != 0) goto _OVER;
2021-10-18 06:00:35 +00:00
2022-04-26 09:42:57 +00:00
if (sver != USER_VER_NUMBER) {
2021-11-12 07:06:58 +00:00
terrno = TSDB_CODE_SDB_INVALID_DATA_VER;
goto _OVER;
2021-11-09 03:37:58 +00:00
}
2021-10-18 06:00:35 +00:00
2021-12-31 06:22:50 +00:00
SSdbRow *pRow = sdbAllocRow(sizeof(SUserObj));
if (pRow == NULL) goto _OVER;
2021-12-31 06:22:50 +00:00
2021-11-12 07:06:58 +00:00
SUserObj *pUser = sdbGetRowObj(pRow);
if (pUser == NULL) goto _OVER;
2022-02-10 14:49:53 +00:00
2021-11-12 07:06:58 +00:00
int32_t dataPos = 0;
SDB_GET_BINARY(pRaw, dataPos, pUser->user, TSDB_USER_LEN, _OVER)
SDB_GET_BINARY(pRaw, dataPos, pUser->pass, TSDB_PASSWORD_LEN, _OVER)
SDB_GET_BINARY(pRaw, dataPos, pUser->acct, TSDB_USER_LEN, _OVER)
SDB_GET_INT64(pRaw, dataPos, &pUser->createdTime, _OVER)
SDB_GET_INT64(pRaw, dataPos, &pUser->updateTime, _OVER)
SDB_GET_INT8(pRaw, dataPos, &pUser->superUser, _OVER)
SDB_GET_INT32(pRaw, dataPos, &pUser->authVersion, _OVER)
2022-02-10 14:49:53 +00:00
int32_t numOfReadDbs = 0;
int32_t numOfWriteDbs = 0;
SDB_GET_INT32(pRaw, dataPos, &numOfReadDbs, _OVER)
SDB_GET_INT32(pRaw, dataPos, &numOfWriteDbs, _OVER)
2022-04-27 07:08:51 +00:00
pUser->readDbs = taosHashInit(numOfReadDbs, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
pUser->writeDbs =
taosHashInit(numOfWriteDbs, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
if (pUser->readDbs == NULL || pUser->writeDbs == NULL) goto _OVER;
2022-02-10 14:49:53 +00:00
for (int32_t i = 0; i < numOfReadDbs; ++i) {
char db[TSDB_DB_FNAME_LEN] = {0};
SDB_GET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER)
2022-02-10 14:49:53 +00:00
int32_t len = strlen(db) + 1;
taosHashPut(pUser->readDbs, db, len, db, TSDB_DB_FNAME_LEN);
}
for (int32_t i = 0; i < numOfWriteDbs; ++i) {
char db[TSDB_DB_FNAME_LEN] = {0};
SDB_GET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER)
2022-02-10 14:49:53 +00:00
int32_t len = strlen(db) + 1;
taosHashPut(pUser->writeDbs, db, len, db, TSDB_DB_FNAME_LEN);
}
SDB_GET_RESERVE(pRaw, dataPos, USER_RESERVE_SIZE, _OVER)
2022-05-05 13:52:18 +00:00
taosInitRWLatch(&pUser->lock);
2021-12-31 06:22:50 +00:00
terrno = 0;
_OVER:
2021-12-31 06:22:50 +00:00
if (terrno != 0) {
mError("user:%s, failed to decode from raw:%p since %s", pUser->user, pRaw, terrstr());
2022-02-10 14:49:53 +00:00
taosHashCleanup(pUser->readDbs);
taosHashCleanup(pUser->writeDbs);
2022-03-25 16:29:53 +00:00
taosMemoryFreeClear(pRow);
2021-12-31 06:22:50 +00:00
return NULL;
}
2021-10-18 06:00:35 +00:00
2021-12-30 15:40:05 +00:00
mTrace("user:%s, decode from raw:%p, row:%p", pUser->user, pRaw, pUser);
2021-11-12 07:06:58 +00:00
return pRow;
2021-11-09 03:37:58 +00:00
}
2021-10-18 06:00:35 +00:00
2021-11-29 07:53:02 +00:00
static int32_t mndUserActionInsert(SSdb *pSdb, SUserObj *pUser) {
2021-12-30 15:40:05 +00:00
mTrace("user:%s, perform insert action, row:%p", pUser->user, pUser);
2022-02-11 05:13:32 +00:00
2021-12-03 06:36:41 +00:00
SAcctObj *pAcct = sdbAcquire(pSdb, SDB_ACCT, pUser->acct);
if (pAcct == NULL) {
2021-11-11 03:11:14 +00:00
terrno = TSDB_CODE_MND_ACCT_NOT_EXIST;
2021-12-01 09:27:31 +00:00
mError("user:%s, failed to perform insert action since %s", pUser->user, terrstr());
2021-11-11 03:11:14 +00:00
return -1;
2021-10-18 06:00:35 +00:00
}
2021-12-03 06:36:41 +00:00
pUser->acctId = pAcct->acctId;
sdbRelease(pSdb, pAcct);
2021-10-18 06:00:35 +00:00
2021-11-09 03:37:58 +00:00
return 0;
}
2021-10-18 06:00:35 +00:00
2021-11-29 07:53:02 +00:00
static int32_t mndUserActionDelete(SSdb *pSdb, SUserObj *pUser) {
2021-12-30 15:40:05 +00:00
mTrace("user:%s, perform delete action, row:%p", pUser->user, pUser);
2022-02-10 14:49:53 +00:00
taosHashCleanup(pUser->readDbs);
taosHashCleanup(pUser->writeDbs);
pUser->readDbs = NULL;
pUser->writeDbs = NULL;
2021-11-09 03:37:58 +00:00
return 0;
}
2022-01-04 12:04:23 +00:00
static int32_t mndUserActionUpdate(SSdb *pSdb, SUserObj *pOld, SUserObj *pNew) {
2022-01-10 08:24:23 +00:00
mTrace("user:%s, perform update action, old row:%p new row:%p", pOld->user, pOld, pNew);
2022-05-05 13:52:18 +00:00
taosWLockLatch(&pOld->lock);
2022-01-04 12:04:23 +00:00
pOld->updateTime = pNew->updateTime;
2022-05-05 13:52:18 +00:00
memcpy(pOld->pass, pNew->pass, TSDB_PASSWORD_LEN);
2022-04-27 09:39:54 +00:00
TSWAP(pOld->readDbs, pNew->readDbs);
TSWAP(pOld->writeDbs, pNew->writeDbs);
2022-05-05 13:52:18 +00:00
taosWUnLockLatch(&pOld->lock);
2022-02-10 14:49:53 +00:00
2021-11-09 03:37:58 +00:00
return 0;
}
2022-05-03 04:57:55 +00:00
SUserObj *mndAcquireUser(SMnode *pMnode, const char *userName) {
2021-12-20 12:30:55 +00:00
SSdb *pSdb = pMnode->pSdb;
SUserObj *pUser = sdbAcquire(pSdb, SDB_USER, userName);
if (pUser == NULL) {
2022-01-23 11:50:18 +00:00
terrno = TSDB_CODE_MND_USER_NOT_EXIST;
2021-12-20 12:30:55 +00:00
}
return pUser;
2021-11-09 03:37:58 +00:00
}
2021-10-18 06:00:35 +00:00
2021-12-03 12:52:44 +00:00
void mndReleaseUser(SMnode *pMnode, SUserObj *pUser) {
SSdb *pSdb = pMnode->pSdb;
sdbRelease(pSdb, pUser);
2021-10-18 06:00:35 +00:00
}
2022-03-15 12:53:29 +00:00
static int32_t mndCreateUser(SMnode *pMnode, char *acct, SCreateUserReq *pCreate, SNodeMsg *pReq) {
2021-11-09 06:27:17 +00:00
SUserObj userObj = {0};
2022-02-11 06:09:03 +00:00
taosEncryptPass_c((uint8_t *)pCreate->pass, strlen(pCreate->pass), userObj.pass);
tstrncpy(userObj.user, pCreate->user, TSDB_USER_LEN);
2021-11-09 06:27:17 +00:00
tstrncpy(userObj.acct, acct, TSDB_USER_LEN);
userObj.createdTime = taosGetTimestampMs();
userObj.updateTime = userObj.createdTime;
2022-02-11 06:09:03 +00:00
userObj.superUser = pCreate->superUser;
2021-11-09 06:27:17 +00:00
2022-03-28 02:09:00 +00:00
STrans *pTrans = mndTransCreate(pMnode, TRN_POLICY_ROLLBACK, TRN_TYPE_CREATE_USER, &pReq->rpcMsg);
2021-12-07 12:14:22 +00:00
if (pTrans == NULL) {
2022-02-11 06:09:03 +00:00
mError("user:%s, failed to create since %s", pCreate->user, terrstr());
2021-12-07 12:14:22 +00:00
return -1;
}
2022-02-11 06:09:03 +00:00
mDebug("trans:%d, used to create user:%s", pTrans->id, pCreate->user);
2021-11-11 03:11:14 +00:00
2021-11-29 05:19:00 +00:00
SSdbRaw *pRedoRaw = mndUserActionEncode(&userObj);
2021-11-29 08:02:37 +00:00
if (pRedoRaw == NULL || mndTransAppendRedolog(pTrans, pRedoRaw) != 0) {
2021-12-07 12:14:22 +00:00
mError("trans:%d, failed to append redo log since %s", pTrans->id, terrstr());
2021-11-29 08:02:37 +00:00
mndTransDrop(pTrans);
2021-11-11 03:11:14 +00:00
return -1;
2021-11-09 06:27:17 +00:00
}
2021-12-07 13:10:36 +00:00
sdbSetRawStatus(pRedoRaw, SDB_STATUS_READY);
2021-12-14 09:13:18 +00:00
if (mndTransPrepare(pMnode, pTrans) != 0) {
2021-12-07 13:10:36 +00:00
mError("trans:%d, failed to prepare since %s", pTrans->id, terrstr());
2021-11-29 08:02:37 +00:00
mndTransDrop(pTrans);
2021-11-11 03:11:14 +00:00
return -1;
2021-11-09 06:27:17 +00:00
}
2021-11-29 08:02:37 +00:00
mndTransDrop(pTrans);
2021-11-11 03:11:14 +00:00
return 0;
2021-11-09 06:27:17 +00:00
}
2022-03-15 12:53:29 +00:00
static int32_t mndProcessCreateUserReq(SNodeMsg *pReq) {
SMnode *pMnode = pReq->pNode;
2022-02-11 05:13:32 +00:00
int32_t code = -1;
SUserObj *pUser = NULL;
SUserObj *pOperUser = NULL;
SCreateUserReq createReq = {0};
2022-02-15 07:24:27 +00:00
if (tDeserializeSCreateUserReq(pReq->rpcMsg.pCont, pReq->rpcMsg.contLen, &createReq) != 0) {
terrno = TSDB_CODE_INVALID_MSG;
goto _OVER;
2022-02-15 07:24:27 +00:00
}
2021-11-09 06:27:17 +00:00
2022-02-11 05:13:32 +00:00
mDebug("user:%s, start to create", createReq.user);
2021-12-07 12:14:22 +00:00
2022-02-11 05:13:32 +00:00
if (createReq.user[0] == 0) {
2021-11-11 03:11:14 +00:00
terrno = TSDB_CODE_MND_INVALID_USER_FORMAT;
goto _OVER;
2021-11-09 06:27:17 +00:00
}
2022-02-11 05:13:32 +00:00
if (createReq.pass[0] == 0) {
2021-11-11 03:11:14 +00:00
terrno = TSDB_CODE_MND_INVALID_PASS_FORMAT;
goto _OVER;
2021-11-09 06:27:17 +00:00
}
2022-02-11 05:13:32 +00:00
pUser = mndAcquireUser(pMnode, createReq.user);
2021-11-09 06:27:17 +00:00
if (pUser != NULL) {
2021-11-11 03:11:14 +00:00
terrno = TSDB_CODE_MND_USER_ALREADY_EXIST;
goto _OVER;
2021-11-09 06:27:17 +00:00
}
2022-02-11 05:13:32 +00:00
pOperUser = mndAcquireUser(pMnode, pReq->user);
2021-11-09 06:27:17 +00:00
if (pOperUser == NULL) {
2021-11-11 03:11:14 +00:00
terrno = TSDB_CODE_MND_NO_USER_FROM_CONN;
goto _OVER;
2021-11-09 06:27:17 +00:00
}
2022-02-11 06:09:03 +00:00
if (mndCheckCreateUserAuth(pOperUser) != 0) {
goto _OVER;
2022-02-11 06:09:03 +00:00
}
code = mndCreateUser(pMnode, pOperUser->acct, &createReq, pReq);
2022-02-11 05:13:32 +00:00
if (code == 0) code = TSDB_CODE_MND_ACTION_IN_PROGRESS;
2021-11-09 06:27:17 +00:00
_OVER:
2022-02-11 05:13:32 +00:00
if (code != 0 && code != TSDB_CODE_MND_ACTION_IN_PROGRESS) {
mError("user:%s, failed to create since %s", createReq.user, terrstr());
2021-11-09 06:27:17 +00:00
}
2022-02-11 05:13:32 +00:00
mndReleaseUser(pMnode, pUser);
mndReleaseUser(pMnode, pOperUser);
return code;
2021-11-09 06:27:17 +00:00
}
2022-04-27 07:08:51 +00:00
static int32_t mndAlterUser(SMnode *pMnode, SUserObj *pOld, SUserObj *pNew, SNodeMsg *pReq) {
2022-03-28 02:09:00 +00:00
STrans *pTrans = mndTransCreate(pMnode, TRN_POLICY_ROLLBACK, TRN_TYPE_ALTER_USER, &pReq->rpcMsg);
2021-12-14 11:29:37 +00:00
if (pTrans == NULL) {
2022-04-27 07:08:51 +00:00
mError("user:%s, failed to alter since %s", pOld->user, terrstr());
2021-12-14 11:29:37 +00:00
return -1;
}
2022-04-27 07:08:51 +00:00
mDebug("trans:%d, used to alter user:%s", pTrans->id, pOld->user);
2021-12-14 11:29:37 +00:00
2022-01-04 12:04:23 +00:00
SSdbRaw *pRedoRaw = mndUserActionEncode(pNew);
2021-12-14 11:29:37 +00:00
if (pRedoRaw == NULL || mndTransAppendRedolog(pTrans, pRedoRaw) != 0) {
mError("trans:%d, failed to append redo log since %s", pTrans->id, terrstr());
mndTransDrop(pTrans);
return -1;
}
sdbSetRawStatus(pRedoRaw, SDB_STATUS_READY);
if (mndTransPrepare(pMnode, pTrans) != 0) {
mError("trans:%d, failed to prepare since %s", pTrans->id, terrstr());
mndTransDrop(pTrans);
return -1;
}
mndTransDrop(pTrans);
return 0;
}
2022-02-11 05:13:32 +00:00
static SHashObj *mndDupDbHash(SHashObj *pOld) {
2022-04-27 07:08:51 +00:00
SHashObj *pNew =
taosHashInit(taosHashGetSize(pOld), taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
2022-02-11 05:13:32 +00:00
if (pNew == NULL) {
terrno = TSDB_CODE_OUT_OF_MEMORY;
return NULL;
}
char *db = taosHashIterate(pOld, NULL);
while (db != NULL) {
int32_t len = strlen(db) + 1;
if (taosHashPut(pNew, db, len, db, TSDB_DB_FNAME_LEN) != 0) {
taosHashCancelIterate(pOld, db);
taosHashCleanup(pNew);
2022-04-27 07:08:51 +00:00
terrno = TSDB_CODE_OUT_OF_MEMORY;
2022-02-11 05:13:32 +00:00
return NULL;
}
db = taosHashIterate(pOld, db);
}
return pNew;
}
2022-03-15 12:53:29 +00:00
static int32_t mndProcessAlterUserReq(SNodeMsg *pReq) {
SMnode *pMnode = pReq->pNode;
2022-05-09 08:03:31 +00:00
SSdb *pSdb = pMnode->pSdb;
void *pIter = NULL;
2022-02-11 05:13:32 +00:00
int32_t code = -1;
SUserObj *pUser = NULL;
SUserObj *pOperUser = NULL;
2022-02-11 06:09:03 +00:00
SUserObj newUser = {0};
2022-02-11 05:13:32 +00:00
SAlterUserReq alterReq = {0};
2022-02-15 07:24:27 +00:00
if (tDeserializeSAlterUserReq(pReq->rpcMsg.pCont, pReq->rpcMsg.contLen, &alterReq) != 0) {
terrno = TSDB_CODE_INVALID_MSG;
goto _OVER;
2022-02-15 07:24:27 +00:00
}
2021-12-07 13:10:36 +00:00
2022-02-11 05:13:32 +00:00
mDebug("user:%s, start to alter", alterReq.user);
2021-12-07 13:10:36 +00:00
2022-02-11 05:13:32 +00:00
if (alterReq.user[0] == 0) {
2021-12-07 13:10:36 +00:00
terrno = TSDB_CODE_MND_INVALID_USER_FORMAT;
goto _OVER;
}
if (TSDB_ALTER_USER_PASSWD == alterReq.alterType && alterReq.pass[0] == 0) {
terrno = TSDB_CODE_MND_INVALID_PASS_FORMAT;
goto _OVER;
2021-12-07 13:10:36 +00:00
}
2022-02-11 05:13:32 +00:00
pUser = mndAcquireUser(pMnode, alterReq.user);
2021-12-07 13:10:36 +00:00
if (pUser == NULL) {
terrno = TSDB_CODE_MND_USER_NOT_EXIST;
goto _OVER;
2021-12-07 13:10:36 +00:00
}
2022-02-11 05:13:32 +00:00
pOperUser = mndAcquireUser(pMnode, pReq->user);
2021-12-07 13:10:36 +00:00
if (pOperUser == NULL) {
terrno = TSDB_CODE_MND_NO_USER_FROM_CONN;
goto _OVER;
2021-12-07 13:10:36 +00:00
}
2022-05-09 08:03:31 +00:00
if (mndCheckAlterUserAuth(pOperUser, pUser, &alterReq) != 0) {
goto _OVER;
}
2021-12-07 13:10:36 +00:00
memcpy(&newUser, pUser, sizeof(SUserObj));
2022-05-09 08:03:31 +00:00
newUser.authVersion++;
newUser.updateTime = taosGetTimestampMs();
2022-05-05 13:52:18 +00:00
taosRLockLatch(&pUser->lock);
2022-02-11 05:13:32 +00:00
newUser.readDbs = mndDupDbHash(pUser->readDbs);
newUser.writeDbs = mndDupDbHash(pUser->writeDbs);
2022-05-05 13:52:18 +00:00
taosRUnLockLatch(&pUser->lock);
2022-02-11 05:13:32 +00:00
if (newUser.readDbs == NULL || newUser.writeDbs == NULL) {
goto _OVER;
2022-02-11 05:13:32 +00:00
}
if (alterReq.alterType == TSDB_ALTER_USER_PASSWD) {
char pass[TSDB_PASSWORD_LEN + 1] = {0};
taosEncryptPass_c((uint8_t *)alterReq.pass, strlen(alterReq.pass), pass);
2022-04-27 07:35:10 +00:00
memcpy(newUser.pass, pass, TSDB_PASSWORD_LEN);
2022-05-09 08:03:31 +00:00
}
if (alterReq.alterType == TSDB_ALTER_USER_SUPERUSER) {
2022-02-11 05:13:32 +00:00
newUser.superUser = alterReq.superUser;
2022-05-09 08:03:31 +00:00
}
if (alterReq.alterType == TSDB_ALTER_USER_ADD_READ_DB || alterReq.alterType == TSDB_ALTER_USER_ADD_ALL_DB) {
if (strcmp(alterReq.dbname, "*") != 0) {
int32_t len = strlen(alterReq.dbname) + 1;
SDbObj *pDb = mndAcquireDb(pMnode, alterReq.dbname);
if (pDb == NULL) {
mndReleaseDb(pMnode, pDb);
goto _OVER;
}
if (taosHashPut(newUser.readDbs, alterReq.dbname, len, alterReq.dbname, TSDB_DB_FNAME_LEN) != 0) {
mndReleaseDb(pMnode, pDb);
goto _OVER;
}
} else {
while (1) {
SDbObj *pDb = NULL;
pIter = sdbFetch(pSdb, SDB_DB, pIter, (void **)&pDb);
if (pIter == NULL) break;
int32_t len = strlen(pDb->name) + 1;
taosHashPut(newUser.readDbs, pDb->name, len, pDb->name, TSDB_DB_FNAME_LEN);
sdbRelease(pSdb, pDb);
}
2022-02-11 05:13:32 +00:00
}
2022-05-09 08:03:31 +00:00
}
if (alterReq.alterType == TSDB_ALTER_USER_ADD_WRITE_DB || alterReq.alterType == TSDB_ALTER_USER_ADD_ALL_DB) {
if (strcmp(alterReq.dbname, "*") != 0) {
int32_t len = strlen(alterReq.dbname) + 1;
SDbObj *pDb = mndAcquireDb(pMnode, alterReq.dbname);
if (pDb == NULL) {
mndReleaseDb(pMnode, pDb);
goto _OVER;
}
if (taosHashPut(newUser.writeDbs, alterReq.dbname, len, alterReq.dbname, TSDB_DB_FNAME_LEN) != 0) {
mndReleaseDb(pMnode, pDb);
goto _OVER;
}
} else {
while (1) {
SDbObj *pDb = NULL;
pIter = sdbFetch(pSdb, SDB_DB, pIter, (void **)&pDb);
if (pIter == NULL) break;
int32_t len = strlen(pDb->name) + 1;
taosHashPut(newUser.writeDbs, pDb->name, len, pDb->name, TSDB_DB_FNAME_LEN);
sdbRelease(pSdb, pDb);
}
2022-02-11 05:13:32 +00:00
}
}
2022-05-09 08:03:31 +00:00
if (alterReq.alterType == TSDB_ALTER_USER_REMOVE_READ_DB || alterReq.alterType == TSDB_ALTER_USER_REMOVE_ALL_DB) {
if (strcmp(alterReq.dbname, "*") != 0) {
int32_t len = strlen(alterReq.dbname) + 1;
SDbObj *pDb = mndAcquireDb(pMnode, alterReq.dbname);
if (pDb == NULL) {
mndReleaseDb(pMnode, pDb);
goto _OVER;
}
taosHashRemove(newUser.readDbs, alterReq.dbname, len);
} else {
taosHashClear(newUser.readDbs);
}
}
2021-12-07 13:10:36 +00:00
2022-05-09 08:03:31 +00:00
if (alterReq.alterType == TSDB_ALTER_USER_REMOVE_WRITE_DB || alterReq.alterType == TSDB_ALTER_USER_REMOVE_ALL_DB) {
if (strcmp(alterReq.dbname, "*") != 0) {
int32_t len = strlen(alterReq.dbname) + 1;
SDbObj *pDb = mndAcquireDb(pMnode, alterReq.dbname);
if (pDb == NULL) {
mndReleaseDb(pMnode, pDb);
goto _OVER;
}
taosHashRemove(newUser.writeDbs, alterReq.dbname, len);
} else {
taosHashClear(newUser.writeDbs);
}
2022-02-11 06:09:03 +00:00
}
2022-04-27 07:08:51 +00:00
code = mndAlterUser(pMnode, pUser, &newUser, pReq);
2022-02-11 05:13:32 +00:00
if (code == 0) code = TSDB_CODE_MND_ACTION_IN_PROGRESS;
2021-12-07 13:10:36 +00:00
_OVER:
2022-02-11 05:13:32 +00:00
if (code != 0 && code != TSDB_CODE_MND_ACTION_IN_PROGRESS) {
mError("user:%s, failed to alter since %s", alterReq.user, terrstr());
2021-12-07 13:10:36 +00:00
}
2022-02-11 05:13:32 +00:00
mndReleaseUser(pMnode, pOperUser);
mndReleaseUser(pMnode, pUser);
2022-02-11 06:09:03 +00:00
taosHashCleanup(newUser.writeDbs);
taosHashCleanup(newUser.readDbs);
2022-02-11 05:13:32 +00:00
return code;
2021-12-01 09:27:31 +00:00
}
2022-03-15 12:53:29 +00:00
static int32_t mndDropUser(SMnode *pMnode, SNodeMsg *pReq, SUserObj *pUser) {
2022-03-28 02:09:00 +00:00
STrans *pTrans = mndTransCreate(pMnode, TRN_POLICY_ROLLBACK, TRN_TYPE_DROP_USER, &pReq->rpcMsg);
2021-12-14 11:29:37 +00:00
if (pTrans == NULL) {
mError("user:%s, failed to drop since %s", pUser->user, terrstr());
return -1;
}
mDebug("trans:%d, used to drop user:%s", pTrans->id, pUser->user);
SSdbRaw *pRedoRaw = mndUserActionEncode(pUser);
if (pRedoRaw == NULL || mndTransAppendRedolog(pTrans, pRedoRaw) != 0) {
mError("trans:%d, failed to append redo log since %s", pTrans->id, terrstr());
mndTransDrop(pTrans);
return -1;
}
sdbSetRawStatus(pRedoRaw, SDB_STATUS_DROPPED);
if (mndTransPrepare(pMnode, pTrans) != 0) {
mError("trans:%d, failed to prepare since %s", pTrans->id, terrstr());
mndTransDrop(pTrans);
return -1;
}
mndTransDrop(pTrans);
return 0;
}
2022-03-15 12:53:29 +00:00
static int32_t mndProcessDropUserReq(SNodeMsg *pReq) {
SMnode *pMnode = pReq->pNode;
2022-02-11 05:13:32 +00:00
int32_t code = -1;
SUserObj *pUser = NULL;
SUserObj *pOperUser = NULL;
SDropUserReq dropReq = {0};
2022-02-15 07:24:27 +00:00
if (tDeserializeSDropUserReq(pReq->rpcMsg.pCont, pReq->rpcMsg.contLen, &dropReq) != 0) {
terrno = TSDB_CODE_INVALID_MSG;
goto _OVER;
2022-02-15 07:24:27 +00:00
}
2021-12-07 13:10:36 +00:00
2022-02-11 05:13:32 +00:00
mDebug("user:%s, start to drop", dropReq.user);
2021-12-07 13:10:36 +00:00
2022-02-11 05:13:32 +00:00
if (dropReq.user[0] == 0) {
2021-12-07 13:10:36 +00:00
terrno = TSDB_CODE_MND_INVALID_USER_FORMAT;
goto _OVER;
2021-12-07 13:10:36 +00:00
}
2022-02-11 05:13:32 +00:00
pUser = mndAcquireUser(pMnode, dropReq.user);
2021-12-07 13:10:36 +00:00
if (pUser == NULL) {
terrno = TSDB_CODE_MND_USER_NOT_EXIST;
goto _OVER;
2021-12-07 13:10:36 +00:00
}
2022-02-11 05:13:32 +00:00
pOperUser = mndAcquireUser(pMnode, pReq->user);
2021-12-07 13:10:36 +00:00
if (pOperUser == NULL) {
terrno = TSDB_CODE_MND_NO_USER_FROM_CONN;
goto _OVER;
2021-12-07 13:10:36 +00:00
}
2022-02-11 06:09:03 +00:00
if (mndCheckDropUserAuth(pOperUser) != 0) {
goto _OVER;
2022-02-11 06:09:03 +00:00
}
2022-02-11 05:13:32 +00:00
code = mndDropUser(pMnode, pReq, pUser);
if (code == 0) code = TSDB_CODE_MND_ACTION_IN_PROGRESS;
2021-12-07 13:10:36 +00:00
_OVER:
2022-02-11 05:13:32 +00:00
if (code != 0 && code != TSDB_CODE_MND_ACTION_IN_PROGRESS) {
mError("user:%s, failed to drop since %s", dropReq.user, terrstr());
2021-12-07 13:10:36 +00:00
}
2022-02-11 05:13:32 +00:00
mndReleaseUser(pMnode, pOperUser);
mndReleaseUser(pMnode, pUser);
return code;
2021-12-07 12:14:22 +00:00
}
static int32_t mndSetUserAuthRsp(SMnode *pMnode, SUserObj *pUser, SGetUserAuthRsp *pRsp) {
2022-05-06 06:13:56 +00:00
memcpy(pRsp->user, pUser->user, TSDB_USER_LEN);
pRsp->superAuth = pUser->superUser;
pRsp->version = pUser->authVersion;
2022-05-06 07:41:45 +00:00
taosRLockLatch(&pUser->lock);
2022-05-06 06:13:56 +00:00
pRsp->readDbs = mndDupDbHash(pUser->readDbs);
pRsp->writeDbs = mndDupDbHash(pUser->writeDbs);
2022-05-06 07:41:45 +00:00
taosRUnLockLatch(&pUser->lock);
2022-05-06 06:13:56 +00:00
pRsp->createdDbs = taosHashInit(4, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_NO_LOCK);
if (NULL == pRsp->createdDbs) {
terrno = TSDB_CODE_OUT_OF_MEMORY;
return -1;
}
2022-05-06 06:13:56 +00:00
SSdb *pSdb = pMnode->pSdb;
void *pIter = NULL;
while (1) {
SDbObj *pDb = NULL;
pIter = sdbFetch(pSdb, SDB_DB, pIter, (void **)&pDb);
if (pIter == NULL) break;
if (strcmp(pDb->createUser, pUser->user) == 0) {
int32_t len = strlen(pDb->name) + 1;
taosHashPut(pRsp->createdDbs, pDb->name, len, pDb->name, len);
}
sdbRelease(pSdb, pDb);
}
return 0;
}
2022-03-15 12:53:29 +00:00
static int32_t mndProcessGetUserAuthReq(SNodeMsg *pReq) {
SMnode *pMnode = pReq->pNode;
2022-02-11 07:20:27 +00:00
int32_t code = -1;
SUserObj *pUser = NULL;
SGetUserAuthReq authReq = {0};
SGetUserAuthRsp authRsp = {0};
2022-02-15 07:24:27 +00:00
if (tDeserializeSGetUserAuthReq(pReq->rpcMsg.pCont, pReq->rpcMsg.contLen, &authReq) != 0) {
terrno = TSDB_CODE_INVALID_MSG;
goto _OVER;
2022-02-15 07:24:27 +00:00
}
2022-02-11 07:20:27 +00:00
mTrace("user:%s, start to get auth", authReq.user);
pUser = mndAcquireUser(pMnode, authReq.user);
if (pUser == NULL) {
terrno = TSDB_CODE_MND_USER_NOT_EXIST;
goto _OVER;
2022-02-11 07:20:27 +00:00
}
2022-05-06 06:13:56 +00:00
code = mndSetUserAuthRsp(pMnode, pUser, &authRsp);
if (code) {
goto _OVER;
2022-02-11 07:20:27 +00:00
}
2022-02-11 09:48:26 +00:00
int32_t contLen = tSerializeSGetUserAuthRsp(NULL, 0, &authRsp);
2022-02-11 07:20:27 +00:00
void *pRsp = rpcMallocCont(contLen);
if (pRsp == NULL) {
terrno = TSDB_CODE_OUT_OF_MEMORY;
goto _OVER;
2022-02-11 07:20:27 +00:00
}
2022-02-11 09:48:26 +00:00
tSerializeSGetUserAuthRsp(pRsp, contLen, &authRsp);
2022-02-11 07:20:27 +00:00
2022-03-15 12:53:29 +00:00
pReq->pRsp = pRsp;
pReq->rspLen = contLen;
2022-02-11 07:20:27 +00:00
code = 0;
_OVER:
2022-02-11 07:20:27 +00:00
mndReleaseUser(pMnode, pUser);
2022-04-27 07:08:51 +00:00
tFreeSGetUserAuthRsp(&authRsp);
2022-02-11 07:20:27 +00:00
return code;
}
2022-04-26 09:42:57 +00:00
static int32_t mndRetrieveUsers(SNodeMsg *pReq, SShowObj *pShow, SSDataBlock *pBlock, int32_t rows) {
2022-03-15 12:53:29 +00:00
SMnode *pMnode = pReq->pNode;
2021-12-07 12:14:22 +00:00
SSdb *pSdb = pMnode->pSdb;
int32_t numOfRows = 0;
SUserObj *pUser = NULL;
int32_t cols = 0;
char *pWrite;
while (numOfRows < rows) {
pShow->pIter = sdbFetch(pSdb, SDB_USER, pShow->pIter, (void **)&pUser);
if (pShow->pIter == NULL) break;
cols = 0;
2022-04-26 09:42:57 +00:00
SColumnInfoData *pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
char name[TSDB_USER_LEN + VARSTR_HEADER_SIZE] = {0};
STR_WITH_MAXSIZE_TO_VARSTR(name, pUser->user, pShow->pMeta->pSchemas[cols].bytes);
2022-04-26 09:42:57 +00:00
colDataAppend(pColInfo, numOfRows, (const char *)name, false);
2022-04-14 07:11:13 +00:00
cols++;
pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
2022-04-26 09:42:57 +00:00
const char *src = pUser->superUser ? "super" : "normal";
char b[10 + VARSTR_HEADER_SIZE] = {0};
STR_WITH_SIZE_TO_VARSTR(b, src, strlen(src));
2022-04-26 09:42:57 +00:00
colDataAppend(pColInfo, numOfRows, (const char *)b, false);
2022-04-14 07:11:13 +00:00
cols++;
pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
2022-04-26 09:42:57 +00:00
colDataAppend(pColInfo, numOfRows, (const char *)&pUser->createdTime, false);
2021-12-07 12:14:22 +00:00
numOfRows++;
sdbRelease(pSdb, pUser);
}
pShow->numOfRows += numOfRows;
2021-12-07 12:14:22 +00:00
return numOfRows;
}
static void mndCancelGetNextUser(SMnode *pMnode, void *pIter) {
SSdb *pSdb = pMnode->pSdb;
sdbCancelFetch(pSdb, pIter);
2022-02-11 07:20:27 +00:00
}
2022-05-06 06:13:56 +00:00
int32_t mndValidateUserAuthInfo(SMnode *pMnode, SUserAuthVersion *pUsers, int32_t numOfUses, void **ppRsp,
int32_t *pRspLen) {
2022-05-06 06:13:56 +00:00
SUserAuthBatchRsp batchRsp = {0};
batchRsp.pArray = taosArrayInit(numOfUses, sizeof(SGetUserAuthRsp));
if (batchRsp.pArray == NULL) {
terrno = TSDB_CODE_OUT_OF_MEMORY;
return -1;
}
int32_t code = 0;
for (int32_t i = 0; i < numOfUses; ++i) {
SUserObj *pUser = mndAcquireUser(pMnode, pUsers[i].user);
if (pUser == NULL) {
mError("user:%s, failed to auth user since %s", pUsers[i].user, terrstr());
continue;
}
if (pUser->authVersion <= pUsers[i].version) {
mndReleaseUser(pMnode, pUser);
continue;
}
2022-05-06 06:13:56 +00:00
SGetUserAuthRsp rsp = {0};
code = mndSetUserAuthRsp(pMnode, pUser, &rsp);
if (code) {
mndReleaseUser(pMnode, pUser);
tFreeSGetUserAuthRsp(&rsp);
goto _OVER;
}
taosArrayPush(batchRsp.pArray, &rsp);
mndReleaseUser(pMnode, pUser);
}
if (taosArrayGetSize(batchRsp.pArray) <= 0) {
*ppRsp = NULL;
*pRspLen = 0;
2022-05-06 06:13:56 +00:00
tFreeSUserAuthBatchRsp(&batchRsp);
return 0;
}
int32_t rspLen = tSerializeSUserAuthBatchRsp(NULL, 0, &batchRsp);
void *pRsp = taosMemoryMalloc(rspLen);
if (pRsp == NULL) {
terrno = TSDB_CODE_OUT_OF_MEMORY;
tFreeSUserAuthBatchRsp(&batchRsp);
return -1;
}
tSerializeSUserAuthBatchRsp(pRsp, rspLen, &batchRsp);
*ppRsp = pRsp;
*pRspLen = rspLen;
tFreeSUserAuthBatchRsp(&batchRsp);
return 0;
_OVER:
*ppRsp = NULL;
*pRspLen = 0;
2022-05-06 06:13:56 +00:00
tFreeSUserAuthBatchRsp(&batchRsp);
return code;
}