cmdbobject.class.inc.php 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551
  1. <?php
  2. // Copyright (C) 2010 Combodo SARL
  3. //
  4. // This program is free software; you can redistribute it and/or modify
  5. // it under the terms of the GNU General Public License as published by
  6. // the Free Software Foundation; version 3 of the License.
  7. //
  8. // This program is distributed in the hope that it will be useful,
  9. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  10. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  11. // GNU General Public License for more details.
  12. //
  13. // You should have received a copy of the GNU General Public License
  14. // along with this program; if not, write to the Free Software
  15. // Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
  16. /**
  17. * Class cmdbObject
  18. *
  19. * @author Erwan Taloc <erwan.taloc@combodo.com>
  20. * @author Romain Quetiez <romain.quetiez@combodo.com>
  21. * @author Denis Flaven <denis.flaven@combodo.com>
  22. * @license http://www.opensource.org/licenses/gpl-3.0.html LGPL
  23. */
  24. /**
  25. * cmdbObjectClass
  26. * the file to include, then the core is yours
  27. *
  28. * @package iTopORM
  29. */
  30. require_once('coreexception.class.inc.php');
  31. require_once('config.class.inc.php');
  32. require_once('log.class.inc.php');
  33. require_once('kpi.class.inc.php');
  34. require_once('dict.class.inc.php');
  35. require_once('attributedef.class.inc.php');
  36. require_once('filterdef.class.inc.php');
  37. require_once('stimulus.class.inc.php');
  38. require_once('valuesetdef.class.inc.php');
  39. require_once('MyHelpers.class.inc.php');
  40. require_once('expression.class.inc.php');
  41. require_once('cmdbsource.class.inc.php');
  42. require_once('sqlquery.class.inc.php');
  43. require_once('oql/oqlquery.class.inc.php');
  44. require_once('oql/oqlexception.class.inc.php');
  45. require_once('oql/oql-parser.php');
  46. require_once('oql/oql-lexer.php');
  47. require_once('oql/oqlinterpreter.class.inc.php');
  48. require_once('dbobject.class.php');
  49. require_once('dbobjectsearch.class.php');
  50. require_once('dbobjectset.class.php');
  51. require_once('backgroundprocess.inc.php');
  52. require_once('asynctask.class.inc.php');
  53. require_once('dbproperty.class.inc.php');
  54. // db change tracking data model
  55. require_once('cmdbchange.class.inc.php');
  56. require_once('cmdbchangeop.class.inc.php');
  57. // customization data model
  58. // Romain: temporary moved into application.inc.php (see explanations there)
  59. //require_once('trigger.class.inc.php');
  60. //require_once('action.class.inc.php');
  61. // application log
  62. // Romain: temporary moved into application.inc.php (see explanations there)
  63. //require_once('event.class.inc.php');
  64. require_once('csvparser.class.inc.php');
  65. require_once('bulkchange.class.inc.php');
  66. /**
  67. * A persistent object, which changes are accurately recorded
  68. *
  69. * @package iTopORM
  70. */
  71. abstract class CMDBObject extends DBObject
  72. {
  73. protected $m_datCreated;
  74. protected $m_datUpdated;
  75. // Note: this value is static, but that could be changed because it is sometimes a real issue (see update of interfaces / connected_to
  76. protected static $m_oCurrChange = null;
  77. private function RecordObjCreation(CMDBChange $oChange)
  78. {
  79. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpCreate");
  80. $oMyChangeOp->Set("change", $oChange->GetKey());
  81. $oMyChangeOp->Set("objclass", get_class($this));
  82. $oMyChangeOp->Set("objkey", $this->GetKey());
  83. $iId = $oMyChangeOp->DBInsertNoReload();
  84. }
  85. private function RecordObjDeletion(CMDBChange $oChange, $objkey)
  86. {
  87. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpDelete");
  88. $oMyChangeOp->Set("change", $oChange->GetKey());
  89. $oMyChangeOp->Set("objclass", get_class($this));
  90. $oMyChangeOp->Set("objkey", $objkey);
  91. $iId = $oMyChangeOp->DBInsertNoReload();
  92. }
  93. private function RecordAttChanges(CMDBChange $oChange, array $aValues, array $aOrigValues)
  94. {
  95. // $aValues is an array of $sAttCode => $value
  96. //
  97. foreach ($aValues as $sAttCode=> $value)
  98. {
  99. $oAttDef = MetaModel::GetAttributeDef(get_class($this), $sAttCode);
  100. if ($oAttDef->IsLinkSet()) continue; // #@# temporary
  101. if ($oAttDef instanceOf AttributeOneWayPassword)
  102. {
  103. // One Way encrypted passwords' history is stored -one way- encrypted
  104. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpSetAttributeOneWayPassword");
  105. $oMyChangeOp->Set("change", $oChange->GetKey());
  106. $oMyChangeOp->Set("objclass", get_class($this));
  107. $oMyChangeOp->Set("objkey", $this->GetKey());
  108. $oMyChangeOp->Set("attcode", $sAttCode);
  109. if (array_key_exists($sAttCode, $aOrigValues))
  110. {
  111. $original = $aOrigValues[$sAttCode];
  112. }
  113. else
  114. {
  115. $original = '';
  116. }
  117. $oMyChangeOp->Set("prev_pwd", $original);
  118. $iId = $oMyChangeOp->DBInsertNoReload();
  119. }
  120. elseif ($oAttDef instanceOf AttributeEncryptedString)
  121. {
  122. // Encrypted string history is stored encrypted
  123. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpSetAttributeEncrypted");
  124. $oMyChangeOp->Set("change", $oChange->GetKey());
  125. $oMyChangeOp->Set("objclass", get_class($this));
  126. $oMyChangeOp->Set("objkey", $this->GetKey());
  127. $oMyChangeOp->Set("attcode", $sAttCode);
  128. if (array_key_exists($sAttCode, $aOrigValues))
  129. {
  130. $original = $aOrigValues[$sAttCode];
  131. }
  132. else
  133. {
  134. $original = '';
  135. }
  136. $oMyChangeOp->Set("prevstring", $original);
  137. $iId = $oMyChangeOp->DBInsertNoReload();
  138. }
  139. elseif ($oAttDef instanceOf AttributeBlob)
  140. {
  141. // Data blobs
  142. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpSetAttributeBlob");
  143. $oMyChangeOp->Set("change", $oChange->GetKey());
  144. $oMyChangeOp->Set("objclass", get_class($this));
  145. $oMyChangeOp->Set("objkey", $this->GetKey());
  146. $oMyChangeOp->Set("attcode", $sAttCode);
  147. if (array_key_exists($sAttCode, $aOrigValues))
  148. {
  149. $original = $aOrigValues[$sAttCode];
  150. }
  151. else
  152. {
  153. $original = new ormDocument();
  154. }
  155. $oMyChangeOp->Set("prevdata", $original);
  156. $iId = $oMyChangeOp->DBInsertNoReload();
  157. }
  158. elseif ($oAttDef instanceOf AttributeCaseLog)
  159. {
  160. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpSetAttributeScalar");
  161. $oMyChangeOp->Set("change", $oChange->GetKey());
  162. $oMyChangeOp->Set("objclass", get_class($this));
  163. $oMyChangeOp->Set("objkey", $this->GetKey());
  164. $oMyChangeOp->Set("attcode", $sAttCode);
  165. $oMyChangeOp->Set("oldvalue", '');
  166. $oMyChangeOp->Set("newvalue", $value->GetLatestEntry());
  167. $iId = $oMyChangeOp->DBInsertNoReload();
  168. }
  169. elseif ($oAttDef instanceOf AttributeText)
  170. {
  171. // Data blobs
  172. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpSetAttributeText");
  173. $oMyChangeOp->Set("change", $oChange->GetKey());
  174. $oMyChangeOp->Set("objclass", get_class($this));
  175. $oMyChangeOp->Set("objkey", $this->GetKey());
  176. $oMyChangeOp->Set("attcode", $sAttCode);
  177. if (array_key_exists($sAttCode, $aOrigValues))
  178. {
  179. $original = $aOrigValues[$sAttCode];
  180. if ($original instanceof ormCaseLog)
  181. {
  182. $original = $original->GetText();
  183. }
  184. }
  185. else
  186. {
  187. $original = null;
  188. }
  189. $oMyChangeOp->Set("prevdata", $original);
  190. $iId = $oMyChangeOp->DBInsertNoReload();
  191. }
  192. else
  193. {
  194. // Scalars
  195. //
  196. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpSetAttributeScalar");
  197. $oMyChangeOp->Set("change", $oChange->GetKey());
  198. $oMyChangeOp->Set("objclass", get_class($this));
  199. $oMyChangeOp->Set("objkey", $this->GetKey());
  200. $oMyChangeOp->Set("attcode", $sAttCode);
  201. if (array_key_exists($sAttCode, $aOrigValues))
  202. {
  203. $sOriginalValue = $aOrigValues[$sAttCode];
  204. }
  205. else
  206. {
  207. $sOriginalValue = 'undefined';
  208. }
  209. $oMyChangeOp->Set("oldvalue", $sOriginalValue);
  210. $oMyChangeOp->Set("newvalue", $value);
  211. $iId = $oMyChangeOp->DBInsertNoReload();
  212. }
  213. }
  214. }
  215. /**
  216. * Helper to ultimately check user rights before writing (Insert, Update or Delete)
  217. * The check should never fail, because the UI should prevent from such a usage
  218. * Anyhow, if the user has found a workaround... the security gets enforced here
  219. */
  220. protected function CheckUserRights($bSkipStrongSecurity, $iActionCode)
  221. {
  222. if (is_null($bSkipStrongSecurity))
  223. {
  224. // This is temporary
  225. // We have implemented this safety net right before releasing iTop 1.0
  226. // and we decided that it was too risky to activate it
  227. // Anyhow, users willing to have a very strong security could set
  228. // skip_strong_security = 0, in the config file
  229. $bSkipStrongSecurity = MetaModel::GetConfig()->Get('skip_strong_security');
  230. }
  231. if (!$bSkipStrongSecurity)
  232. {
  233. $sClass = get_class($this);
  234. $oSet = DBObjectSet::FromObject($this);
  235. if (!UserRights::IsActionAllowed($sClass, $iActionCode, $oSet))
  236. {
  237. // Intrusion detected
  238. throw new SecurityException('You are not allowed to modify objects of class: '.$sClass);
  239. }
  240. }
  241. }
  242. public function DBInsert()
  243. {
  244. if(!is_object(self::$m_oCurrChange))
  245. {
  246. throw new CoreException("DBInsert() could not be used here, please use DBInsertTracked() instead");
  247. }
  248. return $this->DBInsertTracked_Internal();
  249. }
  250. public function DBInsertTracked(CMDBChange $oChange, $bSkipStrongSecurity = null)
  251. {
  252. $this->CheckUserRights($bSkipStrongSecurity, UR_ACTION_MODIFY);
  253. self::$m_oCurrChange = $oChange;
  254. $ret = $this->DBInsertTracked_Internal();
  255. self::$m_oCurrChange = null;
  256. return $ret;
  257. }
  258. public function DBInsertTrackedNoReload(CMDBChange $oChange, $bSkipStrongSecurity = null)
  259. {
  260. $this->CheckUserRights($bSkipStrongSecurity, UR_ACTION_MODIFY);
  261. self::$m_oCurrChange = $oChange;
  262. $ret = $this->DBInsertTracked_Internal(true);
  263. self::$m_oCurrChange = null;
  264. return $ret;
  265. }
  266. protected function DBInsertTracked_Internal($bDoNotReload = false)
  267. {
  268. if ($bDoNotReload)
  269. {
  270. $ret = parent::DBInsertNoReload();
  271. }
  272. else
  273. {
  274. $ret = parent::DBInsert();
  275. }
  276. $this->RecordObjCreation(self::$m_oCurrChange);
  277. return $ret;
  278. }
  279. public function DBClone($newKey = null)
  280. {
  281. if(!self::$m_oCurrChange)
  282. {
  283. throw new CoreException("DBClone() could not be used here, please use DBCloneTracked() instead");
  284. }
  285. return $this->DBCloneTracked_Internal();
  286. }
  287. public function DBCloneTracked(CMDBChange $oChange, $newKey = null)
  288. {
  289. self::$m_oCurrChange = $oChange;
  290. $this->DBCloneTracked_Internal($newKey);
  291. self::$m_oCurrChange = null;
  292. }
  293. protected function DBCloneTracked_Internal($newKey = null)
  294. {
  295. $newKey = parent::DBClone($newKey);
  296. $oClone = MetaModel::GetObject(get_class($this), $newKey);
  297. $oClone->RecordObjCreation(self::$m_oCurrChange);
  298. return $newKey;
  299. }
  300. public function DBUpdate()
  301. {
  302. if(!self::$m_oCurrChange)
  303. {
  304. throw new CoreException("DBUpdate() could not be used here, please use DBUpdateTracked() instead");
  305. }
  306. return $this->DBUpdateTracked_internal();
  307. }
  308. public function DBUpdateTracked(CMDBChange $oChange, $bSkipStrongSecurity = null)
  309. {
  310. $this->CheckUserRights($bSkipStrongSecurity, UR_ACTION_MODIFY);
  311. self::$m_oCurrChange = $oChange;
  312. $this->DBUpdateTracked_Internal();
  313. self::$m_oCurrChange = null;
  314. }
  315. protected function DBUpdateTracked_Internal()
  316. {
  317. // Copy the changes list before the update (the list should be reset afterwards)
  318. $aChanges = $this->ListChanges();
  319. if (count($aChanges) == 0)
  320. {
  321. //throw new CoreWarning("Attempting to update an unchanged object");
  322. return;
  323. }
  324. // Save the original values (will be reset to the new values when the object get written to the DB)
  325. $aOriginalValues = $this->m_aOrigValues;
  326. $ret = parent::DBUpdate();
  327. $this->RecordAttChanges(self::$m_oCurrChange, $aChanges, $aOriginalValues);
  328. return $ret;
  329. }
  330. public function DBDelete()
  331. {
  332. if(!self::$m_oCurrChange)
  333. {
  334. throw new CoreException("DBDelete() could not be used here, please use DBDeleteTracked() instead");
  335. }
  336. return $this->DBDeleteTracked_Internal();
  337. }
  338. public function DBDeleteTracked(CMDBChange $oChange, $bSkipStrongSecurity = null)
  339. {
  340. $this->CheckUserRights($bSkipStrongSecurity, UR_ACTION_DELETE);
  341. self::$m_oCurrChange = $oChange;
  342. $this->DBDeleteTracked_Internal();
  343. self::$m_oCurrChange = null;
  344. }
  345. protected function DBDeleteTracked_Internal()
  346. {
  347. $prevkey = $this->GetKey();
  348. $ret = parent::DBDelete();
  349. $this->RecordObjDeletion(self::$m_oCurrChange, $prevkey);
  350. return $ret;
  351. }
  352. public static function BulkDelete(DBObjectSearch $oFilter)
  353. {
  354. if(!self::$m_oCurrChange)
  355. {
  356. throw new CoreException("BulkDelete() could not be used here, please use BulkDeleteTracked() instead");
  357. }
  358. return $this->BulkDeleteTracked_Internal($oFilter);
  359. }
  360. public static function BulkDeleteTracked(CMDBChange $oChange, DBObjectSearch $oFilter)
  361. {
  362. self::$m_oCurrChange = $oChange;
  363. $this->BulkDeleteTracked_Internal($oFilter);
  364. self::$m_oCurrChange = null;
  365. }
  366. protected static function BulkDeleteTracked_Internal(DBObjectSearch $oFilter)
  367. {
  368. throw new CoreWarning("Change tracking not tested for bulk operations");
  369. // Get the list of objects to delete (and record data before deleting the DB records)
  370. $oObjSet = new CMDBObjectSet($oFilter);
  371. $aObjAndKeys = array(); // array of id=>object
  372. while ($oItem = $oObjSet->Fetch())
  373. {
  374. $aObjAndKeys[$oItem->GetKey()] = $oItem;
  375. }
  376. $oObjSet->FreeResult();
  377. // Delete in one single efficient query
  378. $ret = parent::BulkDelete($oFilter);
  379. // Record... in many queries !!!
  380. foreach($aObjAndKeys as $prevkey=>$oItem)
  381. {
  382. $oItem->RecordObjDeletion(self::$m_oCurrChange, $prevkey);
  383. }
  384. return $ret;
  385. }
  386. public static function BulkUpdate(DBObjectSearch $oFilter, array $aValues)
  387. {
  388. if(!self::$m_oCurrChange)
  389. {
  390. throw new CoreException("BulkUpdate() could not be used here, please use BulkUpdateTracked() instead");
  391. }
  392. return $this->BulkUpdateTracked_Internal($oFilter, $aValues);
  393. }
  394. public static function BulkUpdateTracked(CMDBChange $oChange, DBObjectSearch $oFilter, array $aValues)
  395. {
  396. self::$m_oCurrChange = $oChange;
  397. $this->BulkUpdateTracked_Internal($oFilter, $aValues);
  398. self::$m_oCurrChange = null;
  399. }
  400. protected static function BulkUpdateTracked_Internal(DBObjectSearch $oFilter, array $aValues)
  401. {
  402. // $aValues is an array of $sAttCode => $value
  403. // Get the list of objects to update (and load it before doing the change)
  404. $oObjSet = new CMDBObjectSet($oFilter);
  405. $oObjSet->Load();
  406. // Keep track of the previous values (will be overwritten when the objects are synchronized with the DB)
  407. $aOriginalValues = array();
  408. $oObjSet->Rewind();
  409. while ($oItem = $oObjSet->Fetch())
  410. {
  411. $aOriginalValues[$oItem->GetKey()] = $oItem->m_aOrigValues;
  412. }
  413. // Update in one single efficient query
  414. $ret = parent::BulkUpdate($oFilter, $aValues);
  415. // Record... in many queries !!!
  416. $oObjSet->Rewind();
  417. while ($oItem = $oObjSet->Fetch())
  418. {
  419. $aChangedValues = $oItem->ListChangedValues($aValues);
  420. $oItem->RecordAttChanges(self::$m_oCurrChange, $aChangedValues, $aOriginalValues[$oItem->GetKey()]);
  421. }
  422. return $ret;
  423. }
  424. }
  425. /**
  426. * TODO: investigate how to get rid of this class that was made to workaround some language limitation... or a poor design!
  427. *
  428. * @package iTopORM
  429. */
  430. class CMDBObjectSet extends DBObjectSet
  431. {
  432. // this is the public interface (?)
  433. // I have to define those constructors here... :-(
  434. // just to get the right object class in return.
  435. // I have to think again to those things: maybe it will work fine if a have a constructor define here (?)
  436. static public function FromScratch($sClass)
  437. {
  438. $oFilter = new CMDBSearchFilter($sClass);
  439. $oRetSet = new CMDBObjectSet($oFilter); // THE ONLY DIFF IS HERE
  440. // NOTE: THIS DOES NOT WORK IF m_bLoaded is private...
  441. // BUT IT THAT CASE YOU DO NOT GET ANY ERROR !!!!!
  442. $oRetSet->m_bLoaded = true; // no DB load
  443. return $oRetSet;
  444. }
  445. static public function FromArray($sClass, $aObjects)
  446. {
  447. $oFilter = new CMDBSearchFilter($sClass);
  448. $oRetSet = new CMDBObjectSet($oFilter); // THE ONLY DIFF IS HERE
  449. // NOTE: THIS DOES NOT WORK IF m_bLoaded is private...
  450. // BUT IT THAT CASE YOU DO NOT GET ANY ERROR !!!!!
  451. $oRetSet->m_bLoaded = true; // no DB load
  452. $oRetSet->AddObjectArray($aObjects);
  453. return $oRetSet;
  454. }
  455. static public function FromArrayAssoc($aClasses, $aObjects)
  456. {
  457. // In a perfect world, we should create a complete tree of DBObjectSearch,
  458. // but as we lack most of the information related to the objects,
  459. // let's create one search definition
  460. $sClass = reset($aClasses);
  461. $sAlias = key($aClasses);
  462. $oFilter = new CMDBSearchFilter($sClass, $sAlias);
  463. $oRetSet = new CMDBObjectSet($oFilter);
  464. $oRetSet->m_bLoaded = true; // no DB load
  465. foreach($aObjects as $rowIndex => $aObjectsByClassAlias)
  466. {
  467. $oRetSet->AddObjectExtended($aObjectsByClassAlias);
  468. }
  469. return $oRetSet;
  470. }
  471. }
  472. /**
  473. * TODO: investigate how to get rid of this class that was made to workaround some language limitation... or a poor design!
  474. *
  475. * @package iTopORM
  476. */
  477. class CMDBSearchFilter extends DBObjectSearch
  478. {
  479. // this is the public interface (?)
  480. }
  481. ?>