Jiri Simsa | d7616c9 | 2015-03-24 23:44:30 -0700 | [diff] [blame] | 1 | // Copyright 2015 The Vanadium Authors. All rights reserved. |
| 2 | // Use of this source code is governed by a BSD-style |
| 3 | // license that can be found in the LICENSE file. |
| 4 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 5 | // Package pathperms provides a library to assist servers implementing |
Benjamin Prosnitz | b60efb9 | 2015-03-11 17:47:43 -0700 | [diff] [blame] | 6 | // GetPermissions/SetPermissions functions and authorizers where there are |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 7 | // path-specific Permissions stored individually in files. |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 8 | // TODO(rjkroege): Add unit tests. |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 9 | package pathperms |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 10 | |
| 11 | import ( |
| 12 | "io/ioutil" |
| 13 | "os" |
Robert Kroeger | 8d7a0ef | 2015-01-14 17:38:40 -0800 | [diff] [blame] | 14 | "path/filepath" |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 15 | "sync" |
| 16 | |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 17 | "v.io/v23" |
Todd Wang | 54feabe | 2015-04-15 23:38:26 -0700 | [diff] [blame] | 18 | "v.io/v23/context" |
Jiri Simsa | 6ac9522 | 2015-02-23 16:11:49 -0800 | [diff] [blame] | 19 | "v.io/v23/security" |
Todd Wang | 387d8a4 | 2015-03-30 17:09:05 -0700 | [diff] [blame] | 20 | "v.io/v23/security/access" |
Jiri Simsa | 6ac9522 | 2015-02-23 16:11:49 -0800 | [diff] [blame] | 21 | "v.io/v23/verror" |
Todd Wang | b351149 | 2015-04-07 23:32:34 -0700 | [diff] [blame] | 22 | "v.io/x/ref/lib/security/serialization" |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 23 | ) |
| 24 | |
| 25 | const ( |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 26 | pkgPath = "v.io/x/ref/services/internal/pathperms" |
| 27 | sigName = "signature" |
| 28 | permsName = "data" |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 29 | ) |
| 30 | |
| 31 | var ( |
| 32 | ErrOperationFailed = verror.Register(pkgPath+".OperationFailed", verror.NoRetry, "{1:}{2:} operation failed{:_}") |
| 33 | ) |
| 34 | |
Robert Kroeger | fbaafa4 | 2015-06-10 16:50:22 -0700 | [diff] [blame] | 35 | type pathEntry struct { |
| 36 | lk sync.Mutex |
| 37 | c int |
| 38 | } |
| 39 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 40 | // PathStore manages storage of a set of Permissions in the filesystem where each |
| 41 | // path identifies a specific Permissions in the set. PathStore synchronizes |
| 42 | // access to its member Permissions. |
Robert Kroeger | aa23aba | 2015-02-27 12:55:05 -0800 | [diff] [blame] | 43 | type PathStore struct { |
Robert Kroeger | fbaafa4 | 2015-06-10 16:50:22 -0700 | [diff] [blame] | 44 | pthlks map[string]*pathEntry |
Robert Kroeger | a5c0ec5 | 2015-02-25 16:00:01 -0800 | [diff] [blame] | 45 | lk sync.Mutex |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 46 | ctx *context.T |
Robert Kroeger | a5c0ec5 | 2015-02-25 16:00:01 -0800 | [diff] [blame] | 47 | principal security.Principal |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 48 | } |
| 49 | |
Robert Kroeger | aa23aba | 2015-02-27 12:55:05 -0800 | [diff] [blame] | 50 | // NewPathStore creates a new instance of the lock map that uses |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 51 | // principal to sign stored Permissions files. |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 52 | func NewPathStore(ctx *context.T) *PathStore { |
| 53 | return &PathStore{pthlks: make(map[string]*pathEntry), ctx: ctx, principal: v23.GetPrincipal(ctx)} |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 54 | } |
| 55 | |
Benjamin Prosnitz | b60efb9 | 2015-03-11 17:47:43 -0700 | [diff] [blame] | 56 | // Get returns the Permissions from the data file in dir. |
Asim Shankar | bf9f0af | 2015-05-08 13:45:40 -0700 | [diff] [blame] | 57 | func (store *PathStore) Get(dir string) (access.Permissions, string, error) { |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 58 | permspath := filepath.Join(dir, permsName) |
Robert Kroeger | 8d7a0ef | 2015-01-14 17:38:40 -0800 | [diff] [blame] | 59 | sigpath := filepath.Join(dir, sigName) |
Robert Kroeger | aa23aba | 2015-02-27 12:55:05 -0800 | [diff] [blame] | 60 | defer store.lockPath(dir)() |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 61 | return getCore(store.ctx, permspath, sigpath) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 62 | } |
| 63 | |
| 64 | // TODO(rjkroege): Improve lock handling. |
Asim Shankar | bf9f0af | 2015-05-08 13:45:40 -0700 | [diff] [blame] | 65 | func (store *PathStore) lockPath(dir string) func() { |
Robert Kroeger | aa23aba | 2015-02-27 12:55:05 -0800 | [diff] [blame] | 66 | store.lk.Lock() |
Robert Kroeger | fbaafa4 | 2015-06-10 16:50:22 -0700 | [diff] [blame] | 67 | pe, contains := store.pthlks[dir] |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 68 | if !contains { |
Robert Kroeger | fbaafa4 | 2015-06-10 16:50:22 -0700 | [diff] [blame] | 69 | pe = &pathEntry{} |
| 70 | store.pthlks[dir] = pe |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 71 | } |
Robert Kroeger | fbaafa4 | 2015-06-10 16:50:22 -0700 | [diff] [blame] | 72 | pe.c++ |
Robert Kroeger | aa23aba | 2015-02-27 12:55:05 -0800 | [diff] [blame] | 73 | store.lk.Unlock() |
Robert Kroeger | fbaafa4 | 2015-06-10 16:50:22 -0700 | [diff] [blame] | 74 | pe.lk.Lock() |
| 75 | |
| 76 | return func() { |
| 77 | pe.lk.Unlock() |
| 78 | store.lk.Lock() |
| 79 | pe.c-- |
| 80 | if pe.c == 0 { |
| 81 | delete(store.pthlks, dir) |
| 82 | } |
| 83 | store.lk.Unlock() |
| 84 | } |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 85 | } |
| 86 | |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 87 | func getCore(ctx *context.T, permspath, sigpath string) (access.Permissions, string, error) { |
| 88 | principal := v23.GetPrincipal(ctx) |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 89 | f, err := os.Open(permspath) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 90 | if err != nil { |
| 91 | // This path is rarely a fatal error so log informationally only. |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 92 | ctx.VI(2).Infof("os.Open(%s) failed: %v", permspath, err) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 93 | return nil, "", err |
| 94 | } |
| 95 | defer f.Close() |
| 96 | |
| 97 | s, err := os.Open(sigpath) |
| 98 | if err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 99 | ctx.Errorf("Signatures for Permissions are required: %s unavailable: %v", permspath, err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 100 | return nil, "", verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 101 | } |
| 102 | defer s.Close() |
| 103 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 104 | // read and verify the signature of the perms file |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 105 | vf, err := serialization.NewVerifyingReader(f, s, principal.PublicKey()) |
| 106 | if err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 107 | ctx.Errorf("NewVerifyingReader() failed: %v (perms=%s, sig=%s)", err, permspath, sigpath) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 108 | return nil, "", verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 109 | } |
| 110 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 111 | perms, err := access.ReadPermissions(vf) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 112 | if err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 113 | ctx.Errorf("ReadPermissions(%s) failed: %v", permspath, err) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 114 | return nil, "", err |
| 115 | } |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 116 | version, err := ComputeVersion(perms) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 117 | if err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 118 | ctx.Errorf("pathperms.ComputeVersion failed: %v", err) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 119 | return nil, "", err |
| 120 | } |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 121 | return perms, version, nil |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 122 | } |
| 123 | |
Adam Sadovsky | b1f9e3c | 2015-04-08 11:03:49 -0700 | [diff] [blame] | 124 | // Set writes the specified Permissions to the provided directory with |
| 125 | // enforcement of version synchronization mechanism and locking. |
Asim Shankar | bf9f0af | 2015-05-08 13:45:40 -0700 | [diff] [blame] | 126 | func (store *PathStore) Set(dir string, perms access.Permissions, version string) error { |
Robert Kroeger | 7783406 | 2015-04-21 20:45:44 -0700 | [diff] [blame] | 127 | return store.SetShareable(dir, perms, version, false) |
| 128 | } |
| 129 | |
| 130 | // SetShareable writes the specified Permissions to the provided |
| 131 | // directory with enforcement of version synchronization mechanism and |
| 132 | // locking with file modes that will give the application read-only |
| 133 | // access to the permissions file. |
Asim Shankar | bf9f0af | 2015-05-08 13:45:40 -0700 | [diff] [blame] | 134 | func (store *PathStore) SetShareable(dir string, perms access.Permissions, version string, shareable bool) error { |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 135 | permspath := filepath.Join(dir, permsName) |
Robert Kroeger | 8d7a0ef | 2015-01-14 17:38:40 -0800 | [diff] [blame] | 136 | sigpath := filepath.Join(dir, sigName) |
Robert Kroeger | aa23aba | 2015-02-27 12:55:05 -0800 | [diff] [blame] | 137 | defer store.lockPath(dir)() |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 138 | _, oversion, err := getCore(store.ctx, permspath, sigpath) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 139 | if err != nil && !os.IsNotExist(err) { |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 140 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 141 | } |
Adam Sadovsky | b1f9e3c | 2015-04-08 11:03:49 -0700 | [diff] [blame] | 142 | if len(version) > 0 && version != oversion { |
| 143 | return verror.NewErrBadVersion(nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 144 | } |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 145 | return write(store.ctx, permspath, sigpath, dir, perms, shareable) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 146 | } |
| 147 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 148 | // write writes the specified Permissions to the permsFile with a |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 149 | // signature in sigFile. |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 150 | func write(ctx *context.T, permsFile, sigFile, dir string, perms access.Permissions, shareable bool) error { |
| 151 | principal := v23.GetPrincipal(ctx) |
Robert Kroeger | 7783406 | 2015-04-21 20:45:44 -0700 | [diff] [blame] | 152 | filemode := os.FileMode(0600) |
| 153 | dirmode := os.FileMode(0700) |
| 154 | if shareable { |
| 155 | filemode = os.FileMode(0644) |
| 156 | dirmode = os.FileMode(0711) |
| 157 | } |
| 158 | |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 159 | // Create dir directory if it does not exist |
Robert Kroeger | 7783406 | 2015-04-21 20:45:44 -0700 | [diff] [blame] | 160 | os.MkdirAll(dir, dirmode) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 161 | // Save the object to temporary data and signature files, and then move |
| 162 | // those files to the actual data and signature file. |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 163 | data, err := ioutil.TempFile(dir, permsName) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 164 | if err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 165 | ctx.Errorf("Failed to open tmpfile data:%v", err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 166 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 167 | } |
| 168 | defer os.Remove(data.Name()) |
| 169 | sig, err := ioutil.TempFile(dir, sigName) |
| 170 | if err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 171 | ctx.Errorf("Failed to open tmpfile sig:%v", err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 172 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 173 | } |
| 174 | defer os.Remove(sig.Name()) |
| 175 | writer, err := serialization.NewSigningWriteCloser(data, sig, principal, nil) |
| 176 | if err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 177 | ctx.Errorf("Failed to create NewSigningWriteCloser:%v", err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 178 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 179 | } |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 180 | if err = perms.WriteTo(writer); err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 181 | ctx.Errorf("Failed to SavePermissions:%v", err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 182 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 183 | } |
| 184 | if err = writer.Close(); err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 185 | ctx.Errorf("Failed to Close() SigningWriteCloser:%v", err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 186 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 187 | } |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 188 | if err := os.Rename(data.Name(), permsFile); err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 189 | ctx.Errorf("os.Rename() failed:%v", err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 190 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 191 | } |
Robert Kroeger | 7783406 | 2015-04-21 20:45:44 -0700 | [diff] [blame] | 192 | if err := os.Chmod(permsFile, filemode); err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 193 | ctx.Errorf("os.Chmod() failed:%v", err) |
Robert Kroeger | 7783406 | 2015-04-21 20:45:44 -0700 | [diff] [blame] | 194 | return verror.New(ErrOperationFailed, nil) |
| 195 | } |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 196 | if err := os.Rename(sig.Name(), sigFile); err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 197 | ctx.Errorf("os.Rename() failed:%v", err) |
Todd Wang | ff73e1f | 2015-02-10 21:45:52 -0800 | [diff] [blame] | 198 | return verror.New(ErrOperationFailed, nil) |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 199 | } |
Robert Kroeger | 7783406 | 2015-04-21 20:45:44 -0700 | [diff] [blame] | 200 | if err := os.Chmod(sigFile, filemode); err != nil { |
Cosmos Nicolaou | 7a4221f | 2015-06-21 08:02:23 -0700 | [diff] [blame] | 201 | ctx.Errorf("os.Chmod() failed:%v", err) |
Robert Kroeger | 7783406 | 2015-04-21 20:45:44 -0700 | [diff] [blame] | 202 | return verror.New(ErrOperationFailed, nil) |
| 203 | } |
Robert Kroeger | e95ed6d | 2015-01-14 17:41:04 -0800 | [diff] [blame] | 204 | return nil |
| 205 | } |
Robert Kroeger | 7e36897 | 2015-02-25 15:49:10 -0800 | [diff] [blame] | 206 | |
Cosmos Nicolaou | 1c33b7d | 2015-06-24 15:15:54 -0700 | [diff] [blame] | 207 | func (store *PathStore) PermsForPath(ctx *context.T, path string) (access.Permissions, bool, error) { |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 208 | perms, _, err := store.Get(path) |
Robert Kroeger | 7e36897 | 2015-02-25 15:49:10 -0800 | [diff] [blame] | 209 | if os.IsNotExist(err) { |
| 210 | return nil, true, nil |
| 211 | } else if err != nil { |
| 212 | return nil, false, err |
| 213 | } |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 214 | return perms, false, nil |
Robert Kroeger | 7e36897 | 2015-02-25 15:49:10 -0800 | [diff] [blame] | 215 | } |
Robert Kroeger | 03f0cc7 | 2015-04-02 10:18:01 -0700 | [diff] [blame] | 216 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 217 | // PrefixPatterns creates a pattern containing all of the prefix patterns of the |
| 218 | // provided blessings. |
Robert Kroeger | 03f0cc7 | 2015-04-02 10:18:01 -0700 | [diff] [blame] | 219 | func PrefixPatterns(blessings []string) []security.BlessingPattern { |
| 220 | var patterns []security.BlessingPattern |
| 221 | for _, b := range blessings { |
| 222 | patterns = append(patterns, security.BlessingPattern(b).PrefixPatterns()...) |
| 223 | } |
| 224 | return patterns |
| 225 | } |
| 226 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 227 | // PermissionsForBlessings creates the Permissions list that should be used with |
| 228 | // a newly created object. |
Robert Kroeger | 03f0cc7 | 2015-04-02 10:18:01 -0700 | [diff] [blame] | 229 | func PermissionsForBlessings(blessings []string) access.Permissions { |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 230 | perms := make(access.Permissions) |
Robert Kroeger | 03f0cc7 | 2015-04-02 10:18:01 -0700 | [diff] [blame] | 231 | |
| 232 | // Add the invoker's blessings and all its prefixes. |
| 233 | for _, p := range PrefixPatterns(blessings) { |
| 234 | for _, tag := range access.AllTypicalTags() { |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 235 | perms.Add(p, string(tag)) |
Robert Kroeger | 03f0cc7 | 2015-04-02 10:18:01 -0700 | [diff] [blame] | 236 | } |
| 237 | } |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 238 | return perms |
Robert Kroeger | 03f0cc7 | 2015-04-02 10:18:01 -0700 | [diff] [blame] | 239 | } |
Robert Kroeger | f9536ac | 2015-04-03 16:30:44 -0700 | [diff] [blame] | 240 | |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 241 | // NilAuthPermissions creates Permissions that mimics the default authorization |
| 242 | // policy (i.e., Permissions is matched by all blessings that are either |
| 243 | // extensions of one of the local blessings or can be extended to form one of |
| 244 | // the local blessings.) |
Todd Wang | 4264e4b | 2015-04-16 22:43:40 -0700 | [diff] [blame] | 245 | func NilAuthPermissions(ctx *context.T, call security.Call) access.Permissions { |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 246 | perms := make(access.Permissions) |
Todd Wang | 4264e4b | 2015-04-16 22:43:40 -0700 | [diff] [blame] | 247 | lb := security.LocalBlessingNames(ctx, call) |
Robert Kroeger | f9536ac | 2015-04-03 16:30:44 -0700 | [diff] [blame] | 248 | for _, p := range PrefixPatterns(lb) { |
| 249 | for _, tag := range access.AllTypicalTags() { |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 250 | perms.Add(p, string(tag)) |
Robert Kroeger | f9536ac | 2015-04-03 16:30:44 -0700 | [diff] [blame] | 251 | } |
| 252 | } |
Adam Sadovsky | a4d4a69 | 2015-04-20 11:36:49 -0700 | [diff] [blame] | 253 | return perms |
Robert Kroeger | f9536ac | 2015-04-03 16:30:44 -0700 | [diff] [blame] | 254 | } |