From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from firstgate.proxmox.com (firstgate.proxmox.com [212.224.123.68]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by lists.proxmox.com (Postfix) with ESMTPS id B35AEDFE8 for ; Mon, 17 Jul 2023 17:09:31 +0200 (CEST) Received: from firstgate.proxmox.com (localhost [127.0.0.1]) by firstgate.proxmox.com (Proxmox) with ESMTP id D064D10D18 for ; Mon, 17 Jul 2023 17:09:29 +0200 (CEST) Received: from proxmox-new.maurer-it.com (proxmox-new.maurer-it.com [94.136.29.106]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by firstgate.proxmox.com (Proxmox) with ESMTPS for ; Mon, 17 Jul 2023 17:09:25 +0200 (CEST) Received: from proxmox-new.maurer-it.com (localhost.localdomain [127.0.0.1]) by proxmox-new.maurer-it.com (Proxmox) with ESMTP id 98E6A42B3B for ; Mon, 17 Jul 2023 17:01:19 +0200 (CEST) From: Lukas Wagner To: pve-devel@lists.proxmox.com Date: Mon, 17 Jul 2023 17:00:05 +0200 Message-Id: <20230717150051.710464-21-l.wagner@proxmox.com> X-Mailer: git-send-email 2.39.2 In-Reply-To: <20230717150051.710464-1-l.wagner@proxmox.com> References: <20230717150051.710464-1-l.wagner@proxmox.com> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit X-SPAM-LEVEL: Spam detection results: 0 AWL -0.106 Adjusted score from AWL reputation of From: address BAYES_00 -1.9 Bayes spam probability is 0 to 1% DMARC_MISSING 0.1 Missing DMARC policy KAM_DMARC_STATUS 0.01 Test Rule for DKIM or SPF Failure with Strict Alignment SPF_HELO_NONE 0.001 SPF: HELO does not publish an SPF Record SPF_PASS -0.001 SPF: sender matches SPF record T_SCC_BODY_TEXT_LINE -0.01 - Subject: [pve-devel] [PATCH v3 proxmox 20/66] notify: on deletion, check if a filter/endp. is still used by anything X-BeenThere: pve-devel@lists.proxmox.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Proxmox VE development discussion List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 17 Jul 2023 15:09:31 -0000 Signed-off-by: Lukas Wagner --- proxmox-notify/src/api/filter.rs | 1 + proxmox-notify/src/api/gotify.rs | 1 + proxmox-notify/src/api/mod.rs | 113 ++++++++++++++++++++++++++--- proxmox-notify/src/api/sendmail.rs | 1 + 4 files changed, 106 insertions(+), 10 deletions(-) diff --git a/proxmox-notify/src/api/filter.rs b/proxmox-notify/src/api/filter.rs index 3fcff6b9..824f802d 100644 --- a/proxmox-notify/src/api/filter.rs +++ b/proxmox-notify/src/api/filter.rs @@ -115,6 +115,7 @@ pub fn update_filter( pub fn delete_filter(config: &mut Config, name: &str) -> Result<(), ApiError> { // Check if the filter exists let _ = get_filter(config, name)?; + super::ensure_unused(config, name)?; config.config.sections.remove(name); diff --git a/proxmox-notify/src/api/gotify.rs b/proxmox-notify/src/api/gotify.rs index d6f33064..5c4db4be 100644 --- a/proxmox-notify/src/api/gotify.rs +++ b/proxmox-notify/src/api/gotify.rs @@ -145,6 +145,7 @@ pub fn update_endpoint( pub fn delete_gotify_endpoint(config: &mut Config, name: &str) -> Result<(), ApiError> { // Check if the endpoint exists let _ = get_endpoint(config, name)?; + super::ensure_unused(config, name)?; remove_private_config_entry(config, name)?; config.config.sections.remove(name); diff --git a/proxmox-notify/src/api/mod.rs b/proxmox-notify/src/api/mod.rs index d8a44bf2..81c182c7 100644 --- a/proxmox-notify/src/api/mod.rs +++ b/proxmox-notify/src/api/mod.rs @@ -102,6 +102,59 @@ fn endpoint_exists(config: &Config, name: &str) -> bool { exists } +fn get_referrers(config: &Config, entity: &str) -> Result, ApiError> { + let mut referrers = HashSet::new(); + + for group in group::get_groups(config)? { + for endpoint in group.endpoint { + if endpoint == entity { + referrers.insert(group.name.clone()); + } + } + + if let Some(filter) = group.filter { + if filter == entity { + referrers.insert(group.name); + } + } + } + + #[cfg(feature = "sendmail")] + for endpoint in sendmail::get_endpoints(config)? { + if let Some(filter) = endpoint.filter { + if filter == entity { + referrers.insert(endpoint.name); + } + } + } + + #[cfg(feature = "gotify")] + for endpoint in gotify::get_endpoints(config)? { + if let Some(filter) = endpoint.filter { + if filter == entity { + referrers.insert(endpoint.name); + } + } + } + + Ok(referrers) +} + +fn ensure_unused(config: &Config, entity: &str) -> Result<(), ApiError> { + let referrers = get_referrers(config, entity)?; + + if !referrers.is_empty() { + let used_by = referrers.into_iter().collect::>().join(", "); + + return Err(ApiError::bad_request( + format!("cannot delete '{entity}', referenced by: {used_by}"), + None, + )); + } + + Ok(()) +} + fn get_referenced_entities(config: &Config, entity: &str) -> HashSet { let mut to_expand = HashSet::new(); let mut expanded = HashSet::new(); @@ -161,8 +214,7 @@ mod tests { use crate::filter::FilterConfig; use crate::group::GroupConfig; - #[test] - fn test_get_referenced_entities() { + fn prepare_config() -> Result { let mut config = super::test_helpers::empty_config(); filter::add_filter( @@ -171,8 +223,7 @@ mod tests { name: "filter".to_string(), ..Default::default() }, - ) - .unwrap(); + )?; sendmail::add_endpoint( &mut config, @@ -182,8 +233,7 @@ mod tests { filter: Some("filter".to_string()), ..Default::default() }, - ) - .unwrap(); + )?; gotify::add_endpoint( &mut config, @@ -197,8 +247,7 @@ mod tests { name: "gotify".to_string(), token: "foo".to_string(), }, - ) - .unwrap(); + )?; group::add_group( &mut config, @@ -208,8 +257,14 @@ mod tests { filter: Some("filter".to_string()), ..Default::default() }, - ) - .unwrap(); + )?; + + Ok(config) + } + + #[test] + fn test_get_referenced_entities() { + let config = prepare_config().unwrap(); assert_eq!( get_referenced_entities(&config, "filter"), @@ -233,4 +288,42 @@ mod tests { ]) ); } + + #[test] + fn test_get_referrers_for_entity() -> Result<(), ApiError> { + let config = prepare_config().unwrap(); + + assert_eq!( + get_referrers(&config, "filter")?, + HashSet::from([ + "gotify".to_string(), + "sendmail".to_string(), + "group".to_string() + ]) + ); + + assert_eq!( + get_referrers(&config, "sendmail")?, + HashSet::from(["group".to_string()]) + ); + + assert_eq!( + get_referrers(&config, "gotify")?, + HashSet::from(["group".to_string()]) + ); + + assert!(get_referrers(&config, "group")?.is_empty(),); + + Ok(()) + } + + #[test] + fn test_ensure_unused() { + let config = prepare_config().unwrap(); + + assert!(ensure_unused(&config, "filter").is_err()); + assert!(ensure_unused(&config, "gotify").is_err()); + assert!(ensure_unused(&config, "sendmail").is_err()); + assert!(ensure_unused(&config, "group").is_ok()); + } } diff --git a/proxmox-notify/src/api/sendmail.rs b/proxmox-notify/src/api/sendmail.rs index 070ed6e7..bf225f29 100644 --- a/proxmox-notify/src/api/sendmail.rs +++ b/proxmox-notify/src/api/sendmail.rs @@ -147,6 +147,7 @@ pub fn update_endpoint( pub fn delete_endpoint(config: &mut Config, name: &str) -> Result<(), ApiError> { // Check if the endpoint exists let _ = get_endpoint(config, name)?; + super::ensure_unused(config, name)?; config.config.sections.remove(name); -- 2.39.2