forked from arkhipov/acl
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathacl_uuid.c
203 lines (159 loc) · 4.58 KB
/
acl_uuid.c
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
/* -------------------------------------------------------------------------
*
* acl_uuid.c
*
* Copyright (c) 2015-2016 Vladislav Arkhipov <[email protected]>
*
* -------------------------------------------------------------------------
*/
#include "postgres.h"
#include "fmgr.h"
#include "utils/builtins.h"
#include "utils/uuid.h"
#include "acl.h"
#include "util.h"
PGDLLEXPORT Datum ace_uuid_in(PG_FUNCTION_ARGS);
PGDLLEXPORT Datum ace_uuid_out(PG_FUNCTION_ARGS);
PGDLLEXPORT Datum acl_uuid_check_access_text(PG_FUNCTION_ARGS);
PGDLLEXPORT Datum acl_uuid_check_access_int4(PG_FUNCTION_ARGS);
PGDLLEXPORT Datum acl_uuid_merge(PG_FUNCTION_ARGS);
PG_FUNCTION_INFO_V1(ace_uuid_in);
PG_FUNCTION_INFO_V1(ace_uuid_out);
PG_FUNCTION_INFO_V1(acl_uuid_check_access_text);
PG_FUNCTION_INFO_V1(acl_uuid_check_access_int4);
PG_FUNCTION_INFO_V1(acl_uuid_merge);
typedef struct AclEntryUUID
{
AclEntryBase base;
char who[UUID_LEN];
} AclEntryUUID;
#define ACL_TYPE_ALIGNMENT 'i'
#define ACL_TYPE_LENGTH sizeof(AclEntryUUID)
#define DatumGetUUIDAclEntryP(x) ((AclEntryUUID *) DatumGetPointer(x))
#define PG_GETARG_UUID_ACL_ENTRY_P(x) DatumGetUUIDAclEntryP(PG_GETARG_DATUM(x))
#define PG_RETURN_UUID_ACL_ENTRY_P(x) PG_RETURN_POINTER(x)
static const char *parse_who(const char *s, void *opaque);
static void format_who(StringInfo out, intptr_t opaque);
static AclEntryBase *extract_acl_entry_base(void *entry);
static bool who_matches(void *entry, intptr_t who);
Datum
ace_uuid_in(PG_FUNCTION_ARGS)
{
const char *s = PG_GETARG_CSTRING(0);
AclEntryUUID *entry;
entry = palloc0(sizeof(AclEntryUUID));
parse_acl_entry(s, &entry->base, entry->who, parse_who);
PG_RETURN_UUID_ACL_ENTRY_P(entry);
}
Datum
ace_uuid_out(PG_FUNCTION_ARGS)
{
AclEntryUUID *entry = PG_GETARG_UUID_ACL_ENTRY_P(0);
StringInfo out;
out = makeStringInfo();
format_acl_entry(out, (intptr_t) entry->who, &entry->base, format_who);
PG_RETURN_CSTRING(out->data);
}
Datum
acl_uuid_check_access_int4(PG_FUNCTION_ARGS)
{
ArrayType *acl;
uint32 mask;
ArrayType *who;
bool implicit_allow;
uint32 result;
if (!check_access_extract_args(fcinfo, &acl, &mask, &who, &implicit_allow,
true, true))
PG_RETURN_NULL();
result = check_access(acl, ACL_TYPE_LENGTH, ACL_TYPE_ALIGNMENT,
extract_acl_entry_base, mask,
(intptr_t) who, who_matches,
implicit_allow);
PG_RETURN_UINT32(result);
}
Datum
acl_uuid_check_access_text(PG_FUNCTION_ARGS)
{
ArrayType *acl;
text *mask;
ArrayType *who;
bool implicit_allow;
text *result;
if (!check_access_text_mask_extract_args(fcinfo, &acl, &mask, &who,
&implicit_allow, true, true))
PG_RETURN_NULL();
result = check_access_text_mask(acl, ACL_TYPE_LENGTH,
ACL_TYPE_ALIGNMENT,
extract_acl_entry_base, mask,
(intptr_t) who, who_matches,
implicit_allow);
PG_RETURN_TEXT_P(result);
}
Datum
acl_uuid_merge(PG_FUNCTION_ARGS)
{
ArrayType *parent;
ArrayType *child;
bool container;
bool deny_first;
merge_acls_extract_args(fcinfo, &parent, &child, &container, &deny_first);
PG_RETURN_ARRAYTYPE_P(merge_acls(parent, child,
ACL_TYPE_LENGTH, ACL_TYPE_ALIGNMENT,
extract_acl_entry_base,
container, deny_first));
}
static const char *
parse_who(const char *s, void *opaque)
{
char str[37];
int len = 0;
pg_uuid_t *uuid;
for (; *s != '\0' && (*s == '-' || isalnum((unsigned char) *s)); ++s)
{
if (len >= 36)
ereport(ERROR,
(errcode(ERRCODE_INVALID_TEXT_REPRESENTATION),
errmsg("UUID too long"),
errdetail("UUID must be exactly 36 characters.")));
str[len++] = *s;
}
str[len] = '\0';
uuid = DatumGetUUIDP(DirectFunctionCall1(uuid_in,
CStringGetDatum(str)));
memcpy(opaque, uuid, UUID_LEN);
return s;
}
static void
format_who(StringInfo out, intptr_t opaque)
{
appendStringInfoString(out, DatumGetCString(DirectFunctionCall1(
uuid_out, UUIDPGetDatum(opaque))));
}
static AclEntryBase *
extract_acl_entry_base(void *entry)
{
return &((AclEntryUUID *) entry)->base;
}
static bool
who_matches(void *entry, intptr_t who)
{
pg_uuid_t *entry_who;
bool result = false;
int i, num;
pg_uuid_t *ptr;
entry_who = (pg_uuid_t *) ((AclEntryUUID *) entry)->who;
num = ArrayGetNItems(ARR_NDIM((ArrayType *) who),
ARR_DIMS((ArrayType *) who));
ptr = (pg_uuid_t *) ARR_DATA_PTR((ArrayType *) who);
for (i = 0; i < num; ++i)
{
pg_uuid_t *uuid = ptr;
if (memcmp(entry_who, uuid, UUID_LEN) == 0)
{
result = true;
break;
}
ptr = (pg_uuid_t *) ((char *) ptr + UUID_LEN);
}
return result;
}