Rules.php 4.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136
  1. <?php
  2. /**
  3. * Copyright © Magento, Inc. All rights reserved.
  4. * See COPYING.txt for license details.
  5. */
  6. namespace Magento\Authorization\Model\ResourceModel;
  7. use Magento\Framework\App\ObjectManager;
  8. /**
  9. * Admin rule resource model
  10. */
  11. class Rules extends \Magento\Framework\Model\ResourceModel\Db\AbstractDb
  12. {
  13. /**
  14. * Root ACL resource
  15. *
  16. * @var \Magento\Framework\Acl\RootResource
  17. */
  18. protected $_rootResource;
  19. /**
  20. * @var \Magento\Framework\Acl\Builder
  21. */
  22. protected $_aclBuilder;
  23. /**
  24. * @var \Psr\Log\LoggerInterface
  25. */
  26. protected $_logger;
  27. /**
  28. * @var \Magento\Framework\Acl\Data\CacheInterface
  29. */
  30. private $aclDataCache;
  31. /**
  32. * @param \Magento\Framework\Model\ResourceModel\Db\Context $context
  33. * @param \Magento\Framework\Acl\Builder $aclBuilder
  34. * @param \Psr\Log\LoggerInterface $logger
  35. * @param \Magento\Framework\Acl\RootResource $rootResource
  36. * @param string $connectionName
  37. * @param \Magento\Framework\Acl\Data\CacheInterface $aclDataCache
  38. */
  39. public function __construct(
  40. \Magento\Framework\Model\ResourceModel\Db\Context $context,
  41. \Magento\Framework\Acl\Builder $aclBuilder,
  42. \Psr\Log\LoggerInterface $logger,
  43. \Magento\Framework\Acl\RootResource $rootResource,
  44. $connectionName = null,
  45. \Magento\Framework\Acl\Data\CacheInterface $aclDataCache = null
  46. ) {
  47. $this->_aclBuilder = $aclBuilder;
  48. parent::__construct($context, $connectionName);
  49. $this->_rootResource = $rootResource;
  50. $this->_logger = $logger;
  51. $this->aclDataCache = $aclDataCache ?: ObjectManager::getInstance()->get(
  52. \Magento\Framework\Acl\Data\CacheInterface::class
  53. );
  54. }
  55. /**
  56. * Define main table
  57. *
  58. * @return void
  59. */
  60. protected function _construct()
  61. {
  62. $this->_init('authorization_rule', 'rule_id');
  63. }
  64. /**
  65. * Save ACL resources
  66. *
  67. * @param \Magento\Authorization\Model\Rules $rule
  68. * @return void
  69. * @throws \Magento\Framework\Exception\LocalizedException
  70. */
  71. public function saveRel(\Magento\Authorization\Model\Rules $rule)
  72. {
  73. $connection = $this->getConnection();
  74. try {
  75. $connection->beginTransaction();
  76. $roleId = $rule->getRoleId();
  77. $condition = ['role_id = ?' => (int)$roleId];
  78. $connection->delete($this->getMainTable(), $condition);
  79. $postedResources = $rule->getResources();
  80. if ($postedResources) {
  81. $row = [
  82. 'resource_id' => $this->_rootResource->getId(),
  83. 'privileges' => '', // not used yet
  84. 'role_id' => $roleId,
  85. 'permission' => 'allow',
  86. ];
  87. // If all was selected save it only and nothing else.
  88. if ($postedResources === [$this->_rootResource->getId()]) {
  89. $insertData = $this->_prepareDataForTable(
  90. new \Magento\Framework\DataObject($row),
  91. $this->getMainTable()
  92. );
  93. $connection->insert($this->getMainTable(), $insertData);
  94. } else {
  95. /** Give basic admin permissions to any admin */
  96. $postedResources[] = \Magento\Backend\App\AbstractAction::ADMIN_RESOURCE;
  97. $acl = $this->_aclBuilder->getAcl();
  98. /** @var $resource \Magento\Framework\Acl\AclResource */
  99. foreach ($acl->getResources() as $resourceId) {
  100. $row['permission'] = in_array($resourceId, $postedResources) ? 'allow' : 'deny';
  101. $row['resource_id'] = $resourceId;
  102. $insertData = $this->_prepareDataForTable(
  103. new \Magento\Framework\DataObject($row),
  104. $this->getMainTable()
  105. );
  106. $connection->insert($this->getMainTable(), $insertData);
  107. }
  108. }
  109. }
  110. $connection->commit();
  111. $this->aclDataCache->clean();
  112. } catch (\Magento\Framework\Exception\LocalizedException $e) {
  113. $connection->rollBack();
  114. throw $e;
  115. } catch (\Exception $e) {
  116. $connection->rollBack();
  117. $this->_logger->critical($e);
  118. }
  119. }
  120. }