001// --------------------------------------------------------------------------------
002// Copyright 2002-2025 Echo Three, LLC
003//
004// Licensed under the Apache License, Version 2.0 (the "License");
005// you may not use this file except in compliance with the License.
006// You may obtain a copy of the License at
007//
008//     http://www.apache.org/licenses/LICENSE-2.0
009//
010// Unless required by applicable law or agreed to in writing, software
011// distributed under the License is distributed on an "AS IS" BASIS,
012// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
013// See the License for the specific language governing permissions and
014// limitations under the License.
015// --------------------------------------------------------------------------------
016
017package com.echothree.control.user.security.server.command;
018
019import com.echothree.control.user.security.common.form.CreatePartySecurityRoleTemplateRoleForm;
020import com.echothree.model.control.party.common.PartyTypes;
021import com.echothree.model.control.security.common.SecurityRoleGroups;
022import com.echothree.model.control.security.common.SecurityRoles;
023import com.echothree.model.control.security.server.control.SecurityControl;
024import com.echothree.model.control.security.server.logic.PartySecurityRoleTemplateLogic;
025import com.echothree.model.data.user.common.pk.UserVisitPK;
026import com.echothree.util.common.message.ExecutionErrors;
027import com.echothree.util.common.validation.FieldDefinition;
028import com.echothree.util.common.validation.FieldType;
029import com.echothree.util.common.command.BaseResult;
030import com.echothree.util.server.control.BaseSimpleCommand;
031import com.echothree.util.server.control.CommandSecurityDefinition;
032import com.echothree.util.server.control.PartyTypeDefinition;
033import com.echothree.util.server.control.SecurityRoleDefinition;
034import com.echothree.util.server.persistence.Session;
035import java.util.Arrays;
036import java.util.Collections;
037import java.util.List;
038import javax.enterprise.context.RequestScoped;
039
040@RequestScoped
041public class CreatePartySecurityRoleTemplateRoleCommand
042        extends BaseSimpleCommand<CreatePartySecurityRoleTemplateRoleForm> {
043    
044    private final static CommandSecurityDefinition COMMAND_SECURITY_DEFINITION;
045    private final static List<FieldDefinition> FORM_FIELD_DEFINITIONS;
046    
047    static {
048        COMMAND_SECURITY_DEFINITION = new CommandSecurityDefinition(Collections.unmodifiableList(Arrays.asList(
049                new PartyTypeDefinition(PartyTypes.UTILITY.name(), null),
050                new PartyTypeDefinition(PartyTypes.EMPLOYEE.name(), Collections.unmodifiableList(Arrays.asList(
051                        new SecurityRoleDefinition(SecurityRoleGroups.PartySecurityRoleTemplateRole.name(), SecurityRoles.Create.name())
052                        )))
053                )));
054        
055        FORM_FIELD_DEFINITIONS = Collections.unmodifiableList(Arrays.asList(
056                new FieldDefinition("PartySecurityRoleTemplateName", FieldType.ENTITY_NAME, true, null, null),
057                new FieldDefinition("SecurityRoleGroupName", FieldType.ENTITY_NAME, true, null, null),
058                new FieldDefinition("SecurityRoleName", FieldType.ENTITY_NAME, false, null, null)
059                ));
060    }
061    
062    /** Creates a new instance of CreatePartySecurityRoleTemplateRoleCommand */
063    public CreatePartySecurityRoleTemplateRoleCommand() {
064        super(COMMAND_SECURITY_DEFINITION, FORM_FIELD_DEFINITIONS, false);
065    }
066    
067    @Override
068    protected BaseResult execute() {
069        var securityControl = Session.getModelController(SecurityControl.class);
070        var partySecurityRoleTemplateName = form.getPartySecurityRoleTemplateName();
071        var partySecurityRoleTemplate = securityControl.getPartySecurityRoleTemplateByName(partySecurityRoleTemplateName);
072        
073        if(partySecurityRoleTemplate != null) {
074            var securityRoleGroupName = form.getSecurityRoleGroupName();
075            var securityRoleGroup = securityControl.getSecurityRoleGroupByName(securityRoleGroupName);
076            
077            if(securityRoleGroup != null) {
078                var securityRoleName = form.getSecurityRoleName();
079
080                if(securityRoleName == null) {
081                    var securityRoles = securityControl.getSecurityRoles(securityRoleGroup);
082
083                    // Pass 1: Check for duplicates.
084                    for(var securityRole : securityRoles) {
085                        var partySecurityRoleTemplateRole = securityControl.getPartySecurityRoleTemplateRole(partySecurityRoleTemplate,
086                                securityRole);
087
088                        if(partySecurityRoleTemplateRole != null) {
089                            addExecutionError(ExecutionErrors.DuplicatePartySecurityRoleTemplateRole.name(), partySecurityRoleTemplateName, securityRoleGroupName,
090                                    securityRole.getLastDetail().getSecurityRoleName());
091                            break;
092                        }
093                    }
094
095                    // Pass 2: Add Security Roles if there were no errors.
096                    if(!hasExecutionErrors()) {
097                        securityRoles.forEach((securityRole) -> {
098                            PartySecurityRoleTemplateLogic.getInstance().createPartySecurityRoleTemplateRole(partySecurityRoleTemplate, securityRole, getPartyPK());
099                        });
100                    }
101                } else {
102                    var securityRole = securityControl.getSecurityRoleByName(securityRoleGroup, securityRoleName);
103
104                    if(securityRole != null) {
105                        var partySecurityRoleTemplateRole = securityControl.getPartySecurityRoleTemplateRole(partySecurityRoleTemplate,
106                                securityRole);
107
108                        if(partySecurityRoleTemplateRole == null) {
109                            PartySecurityRoleTemplateLogic.getInstance().createPartySecurityRoleTemplateRole(partySecurityRoleTemplate, securityRole, getPartyPK());
110                        } else {
111                            addExecutionError(ExecutionErrors.DuplicatePartySecurityRoleTemplateRole.name(), partySecurityRoleTemplateName, securityRoleGroupName,
112                                    securityRoleName);
113                        }
114                    } else {
115                        addExecutionError(ExecutionErrors.UnknownSecurityRoleName.name(), securityRoleGroupName, securityRoleName);
116                    }
117                }
118            } else {
119                addExecutionError(ExecutionErrors.UnknownSecurityRoleGroupName.name(), securityRoleGroupName);
120            }
121        } else {
122            addExecutionError(ExecutionErrors.UnknownPartySecurityRoleTemplateName.name(), partySecurityRoleTemplateName);
123        }
124        
125        return null;
126    }
127    
128}