datasquirel/package-shared/functions/web-app/mariadb-user/handle-mariadb-user-grants-for-databases-recreate-grants.ts
Benjamin Toby 7e8bb37c09 Updates
2025-07-05 14:59:30 +01:00

106 lines
3.2 KiB
TypeScript

import { DSQL_DATASQUIREL_MARIADB_USERS } from "../../../types/dsql";
import {
DatabaseScopedAccessObject,
UserSQLPermissions,
UserType,
} from "../../../types";
import grabDbFullName from "../../../utils/grab-db-full-name";
import dbHandler from "../../backend/dbHandler";
import normalizeText from "../../../utils/normalize-text";
type Params = {
currentAccessedDatabase: DatabaseScopedAccessObject;
user: UserType;
updatedRecord: DSQL_DATASQUIREL_MARIADB_USERS;
};
type Return = {
msg?: string;
success?: boolean;
};
export default async function handleMariadbUserGrantsForDatabasesRecreateGrants({
currentAccessedDatabase,
user,
updatedRecord,
}: Params): Promise<Return> {
const { accessedDatabase, dbSlug, allGrants, allTables, grants, tables } =
currentAccessedDatabase;
const dbFullName = grabDbFullName({
user,
dbName: dbSlug,
});
if (allGrants && allTables) {
const grantAllPrivileges = await dbHandler({
query: normalizeText(`
GRANT ALL PRIVILEGES ON \`${dbFullName}\`.* TO \
'${updatedRecord.username}'@'${updatedRecord.host}'
`),
});
return { success: true };
}
if (allGrants && tables?.[0]) {
for (let t = 0; t < tables.length; t++) {
const table = tables[t];
// queries.push(
// normalizeText(`
// GRANT ALL PRIVILEGES ON \`${dbFullName}\`.\`${table.tableSlug}\` \
// TO '${updatedRecord.username}'@'${updatedRecord.host}'
// `)
// );
const grantAllPrivilegesToTables = await dbHandler({
query: normalizeText(`
GRANT ALL PRIVILEGES ON \`${dbFullName}\`.\`${table.tableSlug}\` \
TO '${updatedRecord.username}'@'${updatedRecord.host}'
`),
});
}
return { success: true };
}
if (grants?.[0]) {
const isGrantsInalid = grants.find(
(g) => !UserSQLPermissions.includes(g)
);
if (isGrantsInalid) {
return { msg: `grants is/are invalid!` };
}
if (tables?.[0]) {
for (let t = 0; t < tables.length; t++) {
const table = tables[t];
const grantSpecificPrivilegesToTables = await dbHandler({
query: normalizeText(`
GRANT ${grants.join(",")} ON \
\`${dbFullName}\`.\`${table.tableSlug}\` TO \
'${updatedRecord.username}'@'${updatedRecord.host}'
`),
});
}
return { success: true };
} else {
const grantSecificPrivilegesToAllTables = await dbHandler({
query: normalizeText(`
GRANT ${grants.join(",")} ON \
\`${dbFullName}\`.* TO \
'${updatedRecord.username}'@'${updatedRecord.host}'
`),
});
return { success: true };
}
}
return { success: true };
}