mndUser.c 51.6 KB
Newer Older
H
refact  
Hongze Cheng 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
/*
 * Copyright (c) 2019 TAOS Data, Inc. <jhtao@taosdata.com>
 *
 * This program is free software: you can use, redistribute, and/or modify
 * it under the terms of the GNU Affero General Public License, version 3
 * or later ("AGPL"), as published by the Free Software Foundation.
 *
 * This program is distributed in the hope that it will be useful, but WITHOUT
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
 * FITNESS FOR A PARTICULAR PURPOSE.
 *
 * You should have received a copy of the GNU Affero General Public License
 * along with this program. If not, see <http://www.gnu.org/licenses/>.
 */

S
Shengliang Guan 已提交
16
#define _DEFAULT_SOURCE
S
Shengliang Guan 已提交
17
#include "mndUser.h"
S
Shengliang Guan 已提交
18
#include "mndDb.h"
S
Shengliang Guan 已提交
19
#include "mndPrivilege.h"
S
Shengliang Guan 已提交
20
#include "mndShow.h"
X
Xiaoyu Wang 已提交
21
#include "mndStb.h"
22
#include "mndTopic.h"
S
Shengliang Guan 已提交
23
#include "mndTrans.h"
S
tbase64  
Shengliang Guan 已提交
24
#include "tbase64.h"
S
Shengliang Guan 已提交
25

K
kailixu 已提交
26
#define USER_VER_NUMBER   4
27
#define USER_RESERVE_SIZE 64
S
Shengliang Guan 已提交
28

S
Shengliang Guan 已提交
29 30 31 32
static int32_t  mndCreateDefaultUsers(SMnode *pMnode);
static SSdbRow *mndUserActionDecode(SSdbRaw *pRaw);
static int32_t  mndUserActionInsert(SSdb *pSdb, SUserObj *pUser);
static int32_t  mndUserActionDelete(SSdb *pSdb, SUserObj *pUser);
S
Shengliang Guan 已提交
33
static int32_t  mndUserActionUpdate(SSdb *pSdb, SUserObj *pOld, SUserObj *pNew);
S
Shengliang Guan 已提交
34 35 36 37 38 39
static int32_t  mndCreateUser(SMnode *pMnode, char *acct, SCreateUserReq *pCreate, SRpcMsg *pReq);
static int32_t  mndProcessCreateUserReq(SRpcMsg *pReq);
static int32_t  mndProcessAlterUserReq(SRpcMsg *pReq);
static int32_t  mndProcessDropUserReq(SRpcMsg *pReq);
static int32_t  mndProcessGetUserAuthReq(SRpcMsg *pReq);
static int32_t  mndRetrieveUsers(SRpcMsg *pReq, SShowObj *pShow, SSDataBlock *pBlock, int32_t rows);
S
Shengliang Guan 已提交
40
static void     mndCancelGetNextUser(SMnode *pMnode, void *pIter);
41 42
static int32_t  mndRetrievePrivileges(SRpcMsg *pReq, SShowObj *pShow, SSDataBlock *pBlock, int32_t rows);
static void     mndCancelGetNextPrivileges(SMnode *pMnode, void *pIter);
S
Shengliang Guan 已提交
43 44

int32_t mndInitUser(SMnode *pMnode) {
S
Shengliang Guan 已提交
45 46 47 48 49 50 51 52 53 54
  SSdbTable table = {
      .sdbType = SDB_USER,
      .keyType = SDB_KEY_BINARY,
      .deployFp = (SdbDeployFp)mndCreateDefaultUsers,
      .encodeFp = (SdbEncodeFp)mndUserActionEncode,
      .decodeFp = (SdbDecodeFp)mndUserActionDecode,
      .insertFp = (SdbInsertFp)mndUserActionInsert,
      .updateFp = (SdbUpdateFp)mndUserActionUpdate,
      .deleteFp = (SdbDeleteFp)mndUserActionDelete,
  };
S
Shengliang Guan 已提交
55

S
Shengliang Guan 已提交
56 57 58
  mndSetMsgHandle(pMnode, TDMT_MND_CREATE_USER, mndProcessCreateUserReq);
  mndSetMsgHandle(pMnode, TDMT_MND_ALTER_USER, mndProcessAlterUserReq);
  mndSetMsgHandle(pMnode, TDMT_MND_DROP_USER, mndProcessDropUserReq);
S
Shengliang Guan 已提交
59
  mndSetMsgHandle(pMnode, TDMT_MND_GET_USER_AUTH, mndProcessGetUserAuthReq);
S
Shengliang Guan 已提交
60

S
Shengliang Guan 已提交
61 62
  mndAddShowRetrieveHandle(pMnode, TSDB_MGMT_TABLE_USER, mndRetrieveUsers);
  mndAddShowFreeIterHandle(pMnode, TSDB_MGMT_TABLE_USER, mndCancelGetNextUser);
S
Shengliang Guan 已提交
63 64
  mndAddShowRetrieveHandle(pMnode, TSDB_MGMT_TABLE_PRIVILEGES, mndRetrievePrivileges);
  mndAddShowFreeIterHandle(pMnode, TSDB_MGMT_TABLE_PRIVILEGES, mndCancelGetNextPrivileges);
S
Shengliang Guan 已提交
65 66 67 68 69 70 71
  return sdbSetTable(pMnode->pSdb, table);
}

void mndCleanupUser(SMnode *pMnode) {}

static int32_t mndCreateDefaultUser(SMnode *pMnode, char *acct, char *user, char *pass) {
  SUserObj userObj = {0};
S
Shengliang Guan 已提交
72
  taosEncryptPass_c((uint8_t *)pass, strlen(pass), userObj.pass);
S
Shengliang Guan 已提交
73 74 75 76
  tstrncpy(userObj.user, user, TSDB_USER_LEN);
  tstrncpy(userObj.acct, acct, TSDB_USER_LEN);
  userObj.createdTime = taosGetTimestampMs();
  userObj.updateTime = userObj.createdTime;
77 78
  userObj.sysInfo = 1;
  userObj.enable = 1;
S
Shengliang Guan 已提交
79 80

  if (strcmp(user, TSDB_DEFAULT_USER) == 0) {
81
    userObj.superUser = 1;
S
Shengliang Guan 已提交
82 83 84 85
  }

  SSdbRaw *pRaw = mndUserActionEncode(&userObj);
  if (pRaw == NULL) return -1;
S
Shengliang Guan 已提交
86
  (void)sdbSetRawStatus(pRaw, SDB_STATUS_READY);
S
Shengliang Guan 已提交
87

88
  mInfo("user:%s, will be created when deploying, raw:%p", userObj.user, pRaw);
89

90
  STrans *pTrans = mndTransCreate(pMnode, TRN_POLICY_RETRY, TRN_CONFLICT_NOTHING, NULL, "create-user");
91
  if (pTrans == NULL) {
S
Shengliang Guan 已提交
92
    sdbFreeRaw(pRaw);
93 94 95
    mError("user:%s, failed to create since %s", userObj.user, terrstr());
    return -1;
  }
96
  mInfo("trans:%d, used to create user:%s", pTrans->id, userObj.user);
97 98 99 100 101 102

  if (mndTransAppendCommitlog(pTrans, pRaw) != 0) {
    mError("trans:%d, failed to commit redo log since %s", pTrans->id, terrstr());
    mndTransDrop(pTrans);
    return -1;
  }
S
Shengliang Guan 已提交
103
  (void)sdbSetRawStatus(pRaw, SDB_STATUS_READY);
104 105 106 107 108 109 110 111 112

  if (mndTransPrepare(pMnode, pTrans) != 0) {
    mError("trans:%d, failed to prepare since %s", pTrans->id, terrstr());
    mndTransDrop(pTrans);
    return -1;
  }

  mndTransDrop(pTrans);
  return 0;
S
Shengliang Guan 已提交
113 114 115 116 117 118 119 120 121 122
}

static int32_t mndCreateDefaultUsers(SMnode *pMnode) {
  if (mndCreateDefaultUser(pMnode, TSDB_DEFAULT_USER, TSDB_DEFAULT_USER, TSDB_DEFAULT_PASS) != 0) {
    return -1;
  }

  return 0;
}

123
SSdbRaw *mndUserActionEncode(SUserObj *pUser) {
124 125
  terrno = TSDB_CODE_OUT_OF_MEMORY;

S
Shengliang Guan 已提交
126 127
  int32_t numOfReadDbs = taosHashGetSize(pUser->readDbs);
  int32_t numOfWriteDbs = taosHashGetSize(pUser->writeDbs);
C
cademfly 已提交
128 129
  int32_t numOfReadStbs = taosHashGetSize(pUser->readTbs);
  int32_t numOfWriteStbs = taosHashGetSize(pUser->writeTbs);
130
  int32_t numOfTopics = taosHashGetSize(pUser->topics);
X
Xiaoyu Wang 已提交
131 132 133
  int32_t numOfUseDbs = taosHashGetSize(pUser->useDbs);
  int32_t size = sizeof(SUserObj) + USER_RESERVE_SIZE +
                 (numOfReadDbs + numOfWriteDbs + numOfUseDbs) * TSDB_DB_FNAME_LEN + numOfTopics * TSDB_TOPIC_FNAME_LEN;
S
Shengliang Guan 已提交
134

C
cademfly 已提交
135
  char *stb = taosHashIterate(pUser->readTbs, NULL);
C
cademfly 已提交
136 137 138 139 140 141 142 143 144 145
  while (stb != NULL) {
    size_t keyLen = 0;
    void  *key = taosHashGetKey(stb, &keyLen);
    size += sizeof(int32_t);
    size += keyLen;

    size_t valueLen = 0;
    valueLen = strlen(stb);
    size += sizeof(int32_t);
    size += valueLen;
C
cademfly 已提交
146
    stb = taosHashIterate(pUser->readTbs, stb);
C
cademfly 已提交
147 148
  }

C
cademfly 已提交
149
  stb = taosHashIterate(pUser->writeTbs, NULL);
C
cademfly 已提交
150 151 152 153 154
  while (stb != NULL) {
    size_t keyLen = 0;
    void  *key = taosHashGetKey(stb, &keyLen);
    size += sizeof(int32_t);
    size += keyLen;
X
Xiaoyu Wang 已提交
155

C
cademfly 已提交
156 157 158
    size_t valueLen = 0;
    valueLen = strlen(stb);
    size += sizeof(int32_t);
X
Xiaoyu Wang 已提交
159
    size += valueLen;
C
cademfly 已提交
160
    stb = taosHashIterate(pUser->writeTbs, stb);
C
cademfly 已提交
161
  }
S
Shengliang Guan 已提交
162

163
  SSdbRaw *pRaw = sdbAllocRaw(SDB_USER, USER_VER_NUMBER, size);
164
  if (pRaw == NULL) goto _OVER;
S
Shengliang Guan 已提交
165 166

  int32_t dataPos = 0;
167 168 169 170 171 172
  SDB_SET_BINARY(pRaw, dataPos, pUser->user, TSDB_USER_LEN, _OVER)
  SDB_SET_BINARY(pRaw, dataPos, pUser->pass, TSDB_PASSWORD_LEN, _OVER)
  SDB_SET_BINARY(pRaw, dataPos, pUser->acct, TSDB_USER_LEN, _OVER)
  SDB_SET_INT64(pRaw, dataPos, pUser->createdTime, _OVER)
  SDB_SET_INT64(pRaw, dataPos, pUser->updateTime, _OVER)
  SDB_SET_INT8(pRaw, dataPos, pUser->superUser, _OVER)
173 174 175
  SDB_SET_INT8(pRaw, dataPos, pUser->sysInfo, _OVER)
  SDB_SET_INT8(pRaw, dataPos, pUser->enable, _OVER)
  SDB_SET_INT8(pRaw, dataPos, pUser->reserve, _OVER)
176
  SDB_SET_INT32(pRaw, dataPos, pUser->authVersion, _OVER)
K
kailixu 已提交
177
  SDB_SET_INT32(pRaw, dataPos, pUser->passVersion, _OVER)
178 179
  SDB_SET_INT32(pRaw, dataPos, numOfReadDbs, _OVER)
  SDB_SET_INT32(pRaw, dataPos, numOfWriteDbs, _OVER)
180
  SDB_SET_INT32(pRaw, dataPos, numOfTopics, _OVER)
181 182 183

  char *db = taosHashIterate(pUser->readDbs, NULL);
  while (db != NULL) {
184
    SDB_SET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER);
185 186 187 188 189
    db = taosHashIterate(pUser->readDbs, db);
  }

  db = taosHashIterate(pUser->writeDbs, NULL);
  while (db != NULL) {
190
    SDB_SET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER);
191 192 193
    db = taosHashIterate(pUser->writeDbs, db);
  }

194 195 196
  char *topic = taosHashIterate(pUser->topics, NULL);
  while (topic != NULL) {
    SDB_SET_BINARY(pRaw, dataPos, topic, TSDB_TOPIC_FNAME_LEN, _OVER);
197
    topic = taosHashIterate(pUser->topics, topic);
198 199
  }

X
Xiaoyu Wang 已提交
200 201 202 203
  SDB_SET_INT32(pRaw, dataPos, numOfReadStbs, _OVER)
  SDB_SET_INT32(pRaw, dataPos, numOfWriteStbs, _OVER)
  SDB_SET_INT32(pRaw, dataPos, numOfUseDbs, _OVER)

C
cademfly 已提交
204
  stb = taosHashIterate(pUser->readTbs, NULL);
C
table  
cademfly 已提交
205
  while (stb != NULL) {
C
cademfly 已提交
206 207 208 209 210 211
    size_t keyLen = 0;
    void  *key = taosHashGetKey(stb, &keyLen);
    SDB_SET_INT32(pRaw, dataPos, keyLen, _OVER)
    SDB_SET_BINARY(pRaw, dataPos, key, keyLen, _OVER);

    size_t valueLen = 0;
X
Xiaoyu Wang 已提交
212
    valueLen = strlen(stb) + 1;
C
cademfly 已提交
213 214
    SDB_SET_INT32(pRaw, dataPos, valueLen, _OVER)
    SDB_SET_BINARY(pRaw, dataPos, stb, valueLen, _OVER);
C
cademfly 已提交
215
    stb = taosHashIterate(pUser->readTbs, stb);
C
table  
cademfly 已提交
216 217
  }

C
cademfly 已提交
218
  stb = taosHashIterate(pUser->writeTbs, NULL);
C
table  
cademfly 已提交
219
  while (stb != NULL) {
C
cademfly 已提交
220 221 222 223
    size_t keyLen = 0;
    void  *key = taosHashGetKey(stb, &keyLen);
    SDB_SET_INT32(pRaw, dataPos, keyLen, _OVER)
    SDB_SET_BINARY(pRaw, dataPos, key, keyLen, _OVER);
X
Xiaoyu Wang 已提交
224

C
cademfly 已提交
225
    size_t valueLen = 0;
X
Xiaoyu Wang 已提交
226
    valueLen = strlen(stb) + 1;
C
cademfly 已提交
227 228
    SDB_SET_INT32(pRaw, dataPos, valueLen, _OVER)
    SDB_SET_BINARY(pRaw, dataPos, stb, valueLen, _OVER);
C
cademfly 已提交
229
    stb = taosHashIterate(pUser->writeTbs, stb);
C
table  
cademfly 已提交
230 231
  }

X
Xiaoyu Wang 已提交
232 233 234 235 236 237 238 239
  int32_t *useDb = taosHashIterate(pUser->useDbs, NULL);
  while (useDb != NULL) {
    size_t keyLen = 0;
    void  *key = taosHashGetKey(useDb, &keyLen);
    SDB_SET_INT32(pRaw, dataPos, keyLen, _OVER)
    SDB_SET_BINARY(pRaw, dataPos, key, keyLen, _OVER);

    SDB_SET_INT32(pRaw, dataPos, *useDb, _OVER)
D
dmchen 已提交
240
    useDb = taosHashIterate(pUser->useDbs, useDb);
X
Xiaoyu Wang 已提交
241 242
  }

243 244
  SDB_SET_RESERVE(pRaw, dataPos, USER_RESERVE_SIZE, _OVER)
  SDB_SET_DATALEN(pRaw, dataPos, _OVER)
245 246 247

  terrno = 0;

248
_OVER:
249 250 251 252 253
  if (terrno != 0) {
    mError("user:%s, failed to encode to raw:%p since %s", pUser->user, pRaw, terrstr());
    sdbFreeRaw(pRaw);
    return NULL;
  }
S
Shengliang Guan 已提交
254

S
Shengliang Guan 已提交
255
  mTrace("user:%s, encode to raw:%p, row:%p", pUser->user, pRaw, pUser);
S
Shengliang Guan 已提交
256
  return pRaw;
S
Shengliang Guan 已提交
257 258
}

S
Shengliang Guan 已提交
259
static SSdbRow *mndUserActionDecode(SSdbRaw *pRaw) {
260
  terrno = TSDB_CODE_OUT_OF_MEMORY;
261 262
  SSdbRow  *pRow = NULL;
  SUserObj *pUser = NULL;
263

S
Shengliang Guan 已提交
264
  int8_t sver = 0;
265
  if (sdbGetRawSoftVer(pRaw, &sver) != 0) goto _OVER;
S
Shengliang Guan 已提交
266

K
kailixu 已提交
267
  if (sver < 1 || sver > USER_VER_NUMBER) {
S
Shengliang Guan 已提交
268
    terrno = TSDB_CODE_SDB_INVALID_DATA_VER;
269
    goto _OVER;
S
Shengliang Guan 已提交
270
  }
S
Shengliang Guan 已提交
271

272
  pRow = sdbAllocRow(sizeof(SUserObj));
273
  if (pRow == NULL) goto _OVER;
274

275
  pUser = sdbGetRowObj(pRow);
276
  if (pUser == NULL) goto _OVER;
277

S
Shengliang Guan 已提交
278
  int32_t dataPos = 0;
279 280 281 282 283 284
  SDB_GET_BINARY(pRaw, dataPos, pUser->user, TSDB_USER_LEN, _OVER)
  SDB_GET_BINARY(pRaw, dataPos, pUser->pass, TSDB_PASSWORD_LEN, _OVER)
  SDB_GET_BINARY(pRaw, dataPos, pUser->acct, TSDB_USER_LEN, _OVER)
  SDB_GET_INT64(pRaw, dataPos, &pUser->createdTime, _OVER)
  SDB_GET_INT64(pRaw, dataPos, &pUser->updateTime, _OVER)
  SDB_GET_INT8(pRaw, dataPos, &pUser->superUser, _OVER)
285 286 287
  SDB_GET_INT8(pRaw, dataPos, &pUser->sysInfo, _OVER)
  SDB_GET_INT8(pRaw, dataPos, &pUser->enable, _OVER)
  SDB_GET_INT8(pRaw, dataPos, &pUser->reserve, _OVER)
288
  SDB_GET_INT32(pRaw, dataPos, &pUser->authVersion, _OVER)
K
kailixu 已提交
289
  if (sver >= 4) {
K
kailixu 已提交
290 291
    SDB_GET_INT32(pRaw, dataPos, &pUser->passVersion, _OVER)
  }
292 293 294

  int32_t numOfReadDbs = 0;
  int32_t numOfWriteDbs = 0;
295
  int32_t numOfTopics = 0;
296 297
  SDB_GET_INT32(pRaw, dataPos, &numOfReadDbs, _OVER)
  SDB_GET_INT32(pRaw, dataPos, &numOfWriteDbs, _OVER)
298 299 300 301
  if (sver >= 2) {
    SDB_GET_INT32(pRaw, dataPos, &numOfTopics, _OVER)
  }

S
Shengliang Guan 已提交
302 303 304
  pUser->readDbs = taosHashInit(numOfReadDbs, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
  pUser->writeDbs =
      taosHashInit(numOfWriteDbs, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
305 306
  pUser->topics = taosHashInit(numOfTopics, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
  if (pUser->readDbs == NULL || pUser->writeDbs == NULL || pUser->topics == NULL) goto _OVER;
307 308 309

  for (int32_t i = 0; i < numOfReadDbs; ++i) {
    char db[TSDB_DB_FNAME_LEN] = {0};
310
    SDB_GET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER)
311 312 313 314 315 316
    int32_t len = strlen(db) + 1;
    taosHashPut(pUser->readDbs, db, len, db, TSDB_DB_FNAME_LEN);
  }

  for (int32_t i = 0; i < numOfWriteDbs; ++i) {
    char db[TSDB_DB_FNAME_LEN] = {0};
317
    SDB_GET_BINARY(pRaw, dataPos, db, TSDB_DB_FNAME_LEN, _OVER)
318 319 320 321
    int32_t len = strlen(db) + 1;
    taosHashPut(pUser->writeDbs, db, len, db, TSDB_DB_FNAME_LEN);
  }

322 323 324 325 326 327 328 329 330
  if (sver >= 2) {
    for (int32_t i = 0; i < numOfTopics; ++i) {
      char topic[TSDB_TOPIC_FNAME_LEN] = {0};
      SDB_GET_BINARY(pRaw, dataPos, topic, TSDB_TOPIC_FNAME_LEN, _OVER)
      int32_t len = strlen(topic) + 1;
      taosHashPut(pUser->topics, topic, len, topic, TSDB_TOPIC_FNAME_LEN);
    }
  }

X
Xiaoyu Wang 已提交
331
  if (sver >= 3) {
X
Xiaoyu Wang 已提交
332 333 334 335 336 337 338 339 340 341 342 343 344
    int32_t numOfReadStbs = 0;
    int32_t numOfWriteStbs = 0;
    int32_t numOfUseDbs = 0;
    SDB_GET_INT32(pRaw, dataPos, &numOfReadStbs, _OVER)
    SDB_GET_INT32(pRaw, dataPos, &numOfWriteStbs, _OVER)
    SDB_GET_INT32(pRaw, dataPos, &numOfUseDbs, _OVER)

    pUser->readTbs =
        taosHashInit(numOfReadStbs, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
    pUser->writeTbs =
        taosHashInit(numOfWriteStbs, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
    pUser->useDbs = taosHashInit(numOfUseDbs, taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);

C
table  
cademfly 已提交
345
    for (int32_t i = 0; i < numOfReadStbs; ++i) {
C
cademfly 已提交
346 347 348
      int32_t keyLen = 0;
      SDB_GET_INT32(pRaw, dataPos, &keyLen, _OVER);

C
cademfly 已提交
349 350
      char *key = taosMemoryCalloc(keyLen, sizeof(char));
      memset(key, 0, keyLen);
C
cademfly 已提交
351 352 353 354
      SDB_GET_BINARY(pRaw, dataPos, key, keyLen, _OVER);

      int32_t valuelen = 0;
      SDB_GET_INT32(pRaw, dataPos, &valuelen, _OVER);
C
cademfly 已提交
355
      char *value = taosMemoryCalloc(valuelen, sizeof(char));
X
Xiaoyu Wang 已提交
356
      memset(value, 0, valuelen);
C
cademfly 已提交
357 358
      SDB_GET_BINARY(pRaw, dataPos, value, valuelen, _OVER)

C
cademfly 已提交
359
      taosHashPut(pUser->readTbs, key, keyLen, value, valuelen);
C
cademfly 已提交
360 361 362

      taosMemoryFree(key);
      taosMemoryFree(value);
C
table  
cademfly 已提交
363 364 365
    }

    for (int32_t i = 0; i < numOfWriteStbs; ++i) {
C
cademfly 已提交
366 367 368
      int32_t keyLen = 0;
      SDB_GET_INT32(pRaw, dataPos, &keyLen, _OVER);

C
cademfly 已提交
369 370
      char *key = taosMemoryCalloc(keyLen, sizeof(char));
      memset(key, 0, keyLen);
C
cademfly 已提交
371 372 373 374
      SDB_GET_BINARY(pRaw, dataPos, key, keyLen, _OVER);

      int32_t valuelen = 0;
      SDB_GET_INT32(pRaw, dataPos, &valuelen, _OVER);
C
cademfly 已提交
375
      char *value = taosMemoryCalloc(valuelen, sizeof(char));
X
Xiaoyu Wang 已提交
376
      memset(value, 0, valuelen);
C
cademfly 已提交
377 378
      SDB_GET_BINARY(pRaw, dataPos, value, valuelen, _OVER)

C
cademfly 已提交
379
      taosHashPut(pUser->writeTbs, key, keyLen, value, valuelen);
C
cademfly 已提交
380 381 382

      taosMemoryFree(key);
      taosMemoryFree(value);
C
table  
cademfly 已提交
383
    }
X
Xiaoyu Wang 已提交
384 385 386 387 388 389 390 391 392 393 394 395 396

    for (int32_t i = 0; i < numOfUseDbs; ++i) {
      int32_t keyLen = 0;
      SDB_GET_INT32(pRaw, dataPos, &keyLen, _OVER);

      char *key = taosMemoryCalloc(keyLen, sizeof(char));
      memset(key, 0, keyLen);
      SDB_GET_BINARY(pRaw, dataPos, key, keyLen, _OVER);

      int32_t ref = 0;
      SDB_GET_INT32(pRaw, dataPos, &ref, _OVER);

      taosHashPut(pUser->useDbs, key, keyLen, &ref, sizeof(ref));
X
Xiaoyu Wang 已提交
397
      taosMemoryFree(key);
X
Xiaoyu Wang 已提交
398
    }
C
table  
cademfly 已提交
399 400
  }

401
  SDB_GET_RESERVE(pRaw, dataPos, USER_RESERVE_SIZE, _OVER)
S
Shengliang Guan 已提交
402
  taosInitRWLatch(&pUser->lock);
403 404 405

  terrno = 0;

406
_OVER:
407
  if (terrno != 0) {
408 409 410 411 412
    mError("user:%s, failed to decode from raw:%p since %s", pUser == NULL ? "null" : pUser->user, pRaw, terrstr());
    if (pUser != NULL) {
      taosHashCleanup(pUser->readDbs);
      taosHashCleanup(pUser->writeDbs);
      taosHashCleanup(pUser->topics);
C
cademfly 已提交
413 414
      taosHashCleanup(pUser->readTbs);
      taosHashCleanup(pUser->writeTbs);
X
Xiaoyu Wang 已提交
415
      taosHashCleanup(pUser->useDbs);
416
    }
wafwerar's avatar
wafwerar 已提交
417
    taosMemoryFreeClear(pRow);
418 419
    return NULL;
  }
S
Shengliang Guan 已提交
420

S
Shengliang Guan 已提交
421
  mTrace("user:%s, decode from raw:%p, row:%p", pUser->user, pRaw, pUser);
S
Shengliang Guan 已提交
422
  return pRow;
S
Shengliang Guan 已提交
423
}
S
Shengliang Guan 已提交
424

S
Shengliang Guan 已提交
425
static int32_t mndUserActionInsert(SSdb *pSdb, SUserObj *pUser) {
S
Shengliang Guan 已提交
426
  mTrace("user:%s, perform insert action, row:%p", pUser->user, pUser);
S
Shengliang Guan 已提交
427

S
Shengliang Guan 已提交
428 429
  SAcctObj *pAcct = sdbAcquire(pSdb, SDB_ACCT, pUser->acct);
  if (pAcct == NULL) {
S
Shengliang Guan 已提交
430
    terrno = TSDB_CODE_MND_ACCT_NOT_EXIST;
S
Shengliang Guan 已提交
431
    mError("user:%s, failed to perform insert action since %s", pUser->user, terrstr());
S
Shengliang Guan 已提交
432
    return -1;
S
Shengliang Guan 已提交
433
  }
S
Shengliang Guan 已提交
434 435
  pUser->acctId = pAcct->acctId;
  sdbRelease(pSdb, pAcct);
S
Shengliang Guan 已提交
436

S
Shengliang Guan 已提交
437 438
  return 0;
}
S
Shengliang Guan 已提交
439

C
cademfly 已提交
440 441 442 443 444 445 446 447 448 449 450
SHashObj *mndDupTableHash(SHashObj *pOld) {
  SHashObj *pNew =
      taosHashInit(taosHashGetSize(pOld), taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
  if (pNew == NULL) {
    terrno = TSDB_CODE_OUT_OF_MEMORY;
    return NULL;
  }

  char *tb = taosHashIterate(pOld, NULL);
  while (tb != NULL) {
    size_t keyLen = 0;
X
Xiaoyu Wang 已提交
451
    char  *key = taosHashGetKey(tb, &keyLen);
C
cademfly 已提交
452 453 454 455 456 457 458 459 460 461 462 463 464 465

    int32_t valueLen = strlen(tb) + 1;
    if (taosHashPut(pNew, key, keyLen, tb, valueLen) != 0) {
      taosHashCancelIterate(pOld, tb);
      taosHashCleanup(pNew);
      terrno = TSDB_CODE_OUT_OF_MEMORY;
      return NULL;
    }
    tb = taosHashIterate(pOld, tb);
  }

  return pNew;
}

X
Xiaoyu Wang 已提交
466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490
SHashObj *mndDupUseDbHash(SHashObj *pOld) {
  SHashObj *pNew =
      taosHashInit(taosHashGetSize(pOld), taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
  if (pNew == NULL) {
    terrno = TSDB_CODE_OUT_OF_MEMORY;
    return NULL;
  }

  int32_t *db = taosHashIterate(pOld, NULL);
  while (db != NULL) {
    size_t keyLen = 0;
    char  *key = taosHashGetKey(db, &keyLen);

    if (taosHashPut(pNew, key, keyLen, db, sizeof(*db)) != 0) {
      taosHashCancelIterate(pOld, db);
      taosHashCleanup(pNew);
      terrno = TSDB_CODE_OUT_OF_MEMORY;
      return NULL;
    }
    db = taosHashIterate(pOld, db);
  }

  return pNew;
}

491 492 493 494 495 496 497 498
static int32_t mndUserDupObj(SUserObj *pUser, SUserObj *pNew) {
  memcpy(pNew, pUser, sizeof(SUserObj));
  pNew->authVersion++;
  pNew->updateTime = taosGetTimestampMs();

  taosRLockLatch(&pUser->lock);
  pNew->readDbs = mndDupDbHash(pUser->readDbs);
  pNew->writeDbs = mndDupDbHash(pUser->writeDbs);
C
cademfly 已提交
499 500
  pNew->readTbs = mndDupTableHash(pUser->readTbs);
  pNew->writeTbs = mndDupTableHash(pUser->writeTbs);
501
  pNew->topics = mndDupTopicHash(pUser->topics);
X
Xiaoyu Wang 已提交
502
  pNew->useDbs = mndDupUseDbHash(pUser->useDbs);
503 504 505 506 507 508 509 510 511
  taosRUnLockLatch(&pUser->lock);

  if (pNew->readDbs == NULL || pNew->writeDbs == NULL || pNew->topics == NULL) {
    return -1;
  }
  return 0;
}

static void mndUserFreeObj(SUserObj *pUser) {
512 513
  taosHashCleanup(pUser->readDbs);
  taosHashCleanup(pUser->writeDbs);
514
  taosHashCleanup(pUser->topics);
C
cademfly 已提交
515 516
  taosHashCleanup(pUser->readTbs);
  taosHashCleanup(pUser->writeTbs);
X
Xiaoyu Wang 已提交
517
  taosHashCleanup(pUser->useDbs);
518 519
  pUser->readDbs = NULL;
  pUser->writeDbs = NULL;
520
  pUser->topics = NULL;
C
cademfly 已提交
521 522
  pUser->readTbs = NULL;
  pUser->writeTbs = NULL;
X
Xiaoyu Wang 已提交
523
  pUser->useDbs = NULL;
524 525 526 527 528
}

static int32_t mndUserActionDelete(SSdb *pSdb, SUserObj *pUser) {
  mTrace("user:%s, perform delete action, row:%p", pUser->user, pUser);
  mndUserFreeObj(pUser);
S
Shengliang Guan 已提交
529 530 531
  return 0;
}

S
Shengliang Guan 已提交
532
static int32_t mndUserActionUpdate(SSdb *pSdb, SUserObj *pOld, SUserObj *pNew) {
S
Shengliang Guan 已提交
533
  mTrace("user:%s, perform update action, old row:%p new row:%p", pOld->user, pOld, pNew);
S
Shengliang Guan 已提交
534
  taosWLockLatch(&pOld->lock);
S
Shengliang Guan 已提交
535
  pOld->updateTime = pNew->updateTime;
D
dapan1121 已提交
536
  pOld->authVersion = pNew->authVersion;
K
kailixu 已提交
537
  pOld->passVersion = pNew->passVersion;
538 539
  pOld->sysInfo = pNew->sysInfo;
  pOld->enable = pNew->enable;
S
Shengliang Guan 已提交
540
  memcpy(pOld->pass, pNew->pass, TSDB_PASSWORD_LEN);
wafwerar's avatar
wafwerar 已提交
541 542
  TSWAP(pOld->readDbs, pNew->readDbs);
  TSWAP(pOld->writeDbs, pNew->writeDbs);
543
  TSWAP(pOld->topics, pNew->topics);
C
cademfly 已提交
544 545
  TSWAP(pOld->readTbs, pNew->readTbs);
  TSWAP(pOld->writeTbs, pNew->writeTbs);
X
Xiaoyu Wang 已提交
546
  TSWAP(pOld->useDbs, pNew->useDbs);
S
Shengliang Guan 已提交
547
  taosWUnLockLatch(&pOld->lock);
548

S
Shengliang Guan 已提交
549 550 551
  return 0;
}

552
SUserObj *mndAcquireUser(SMnode *pMnode, const char *userName) {
S
Shengliang Guan 已提交
553 554 555
  SSdb     *pSdb = pMnode->pSdb;
  SUserObj *pUser = sdbAcquire(pSdb, SDB_USER, userName);
  if (pUser == NULL) {
dengyihao's avatar
dengyihao 已提交
556 557 558 559 560
    if (terrno == TSDB_CODE_SDB_OBJ_NOT_THERE) {
      terrno = TSDB_CODE_MND_USER_NOT_EXIST;
    } else {
      terrno = TSDB_CODE_MND_USER_NOT_AVAILABLE;
    }
S
Shengliang Guan 已提交
561 562
  }
  return pUser;
S
Shengliang Guan 已提交
563
}
S
Shengliang Guan 已提交
564

S
Shengliang Guan 已提交
565 566 567
void mndReleaseUser(SMnode *pMnode, SUserObj *pUser) {
  SSdb *pSdb = pMnode->pSdb;
  sdbRelease(pSdb, pUser);
S
Shengliang Guan 已提交
568 569
}

S
Shengliang Guan 已提交
570
static int32_t mndCreateUser(SMnode *pMnode, char *acct, SCreateUserReq *pCreate, SRpcMsg *pReq) {
S
Shengliang Guan 已提交
571
  SUserObj userObj = {0};
S
Shengliang Guan 已提交
572 573
  taosEncryptPass_c((uint8_t *)pCreate->pass, strlen(pCreate->pass), userObj.pass);
  tstrncpy(userObj.user, pCreate->user, TSDB_USER_LEN);
S
Shengliang Guan 已提交
574 575 576
  tstrncpy(userObj.acct, acct, TSDB_USER_LEN);
  userObj.createdTime = taosGetTimestampMs();
  userObj.updateTime = userObj.createdTime;
577
  userObj.superUser = 0;  // pCreate->superUser;
578 579
  userObj.sysInfo = pCreate->sysInfo;
  userObj.enable = pCreate->enable;
S
Shengliang Guan 已提交
580

581
  STrans *pTrans = mndTransCreate(pMnode, TRN_POLICY_ROLLBACK, TRN_CONFLICT_NOTHING, pReq, "create-user");
S
Shengliang Guan 已提交
582
  if (pTrans == NULL) {
S
Shengliang Guan 已提交
583
    mError("user:%s, failed to create since %s", pCreate->user, terrstr());
S
Shengliang Guan 已提交
584 585
    return -1;
  }
586
  mInfo("trans:%d, used to create user:%s", pTrans->id, pCreate->user);
S
Shengliang Guan 已提交
587

588 589 590
  SSdbRaw *pCommitRaw = mndUserActionEncode(&userObj);
  if (pCommitRaw == NULL || mndTransAppendCommitlog(pTrans, pCommitRaw) != 0) {
    mError("trans:%d, failed to commit redo log since %s", pTrans->id, terrstr());
S
Shengliang Guan 已提交
591
    mndTransDrop(pTrans);
S
Shengliang Guan 已提交
592
    return -1;
S
Shengliang Guan 已提交
593
  }
S
Shengliang Guan 已提交
594
  (void)sdbSetRawStatus(pCommitRaw, SDB_STATUS_READY);
S
Shengliang Guan 已提交
595

S
Shengliang Guan 已提交
596
  if (mndTransPrepare(pMnode, pTrans) != 0) {
S
Shengliang Guan 已提交
597
    mError("trans:%d, failed to prepare since %s", pTrans->id, terrstr());
S
Shengliang Guan 已提交
598
    mndTransDrop(pTrans);
S
Shengliang Guan 已提交
599
    return -1;
S
Shengliang Guan 已提交
600 601
  }

S
Shengliang Guan 已提交
602
  mndTransDrop(pTrans);
S
Shengliang Guan 已提交
603
  return 0;
S
Shengliang Guan 已提交
604 605
}

S
Shengliang Guan 已提交
606 607
static int32_t mndProcessCreateUserReq(SRpcMsg *pReq) {
  SMnode        *pMnode = pReq->info.node;
S
Shengliang Guan 已提交
608 609 610 611 612
  int32_t        code = -1;
  SUserObj      *pUser = NULL;
  SUserObj      *pOperUser = NULL;
  SCreateUserReq createReq = {0};

S
Shengliang Guan 已提交
613
  if (tDeserializeSCreateUserReq(pReq->pCont, pReq->contLen, &createReq) != 0) {
S
Shengliang Guan 已提交
614
    terrno = TSDB_CODE_INVALID_MSG;
615
    goto _OVER;
S
Shengliang Guan 已提交
616
  }
S
Shengliang Guan 已提交
617

618
  mInfo("user:%s, start to create", createReq.user);
619 620 621
  if (mndCheckOperPrivilege(pMnode, pReq->info.conn.user, MND_OPER_CREATE_USER) != 0) {
    goto _OVER;
  }
S
Shengliang Guan 已提交
622

S
Shengliang Guan 已提交
623
  if (createReq.user[0] == 0) {
S
Shengliang Guan 已提交
624
    terrno = TSDB_CODE_MND_INVALID_USER_FORMAT;
625
    goto _OVER;
S
Shengliang Guan 已提交
626 627
  }

S
Shengliang Guan 已提交
628
  if (createReq.pass[0] == 0) {
S
Shengliang Guan 已提交
629
    terrno = TSDB_CODE_MND_INVALID_PASS_FORMAT;
630
    goto _OVER;
S
Shengliang Guan 已提交
631 632
  }

S
Shengliang Guan 已提交
633
  pUser = mndAcquireUser(pMnode, createReq.user);
S
Shengliang Guan 已提交
634
  if (pUser != NULL) {
S
Shengliang Guan 已提交
635
    terrno = TSDB_CODE_MND_USER_ALREADY_EXIST;
636
    goto _OVER;
S
Shengliang Guan 已提交
637 638
  }

639
  pOperUser = mndAcquireUser(pMnode, pReq->info.conn.user);
S
Shengliang Guan 已提交
640
  if (pOperUser == NULL) {
S
Shengliang Guan 已提交
641
    terrno = TSDB_CODE_MND_NO_USER_FROM_CONN;
642
    goto _OVER;
S
Shengliang Guan 已提交
643 644
  }

C
Cary Xu 已提交
645 646 647 648
  if ((terrno = grantCheck(TSDB_GRANT_USER)) != 0) {
    code = terrno;
    goto _OVER;
  }
649

S
Shengliang Guan 已提交
650
  code = mndCreateUser(pMnode, pOperUser->acct, &createReq, pReq);
S
Shengliang Guan 已提交
651
  if (code == 0) code = TSDB_CODE_ACTION_IN_PROGRESS;
S
Shengliang Guan 已提交
652

653
_OVER:
S
Shengliang Guan 已提交
654
  if (code != 0 && code != TSDB_CODE_ACTION_IN_PROGRESS) {
S
Shengliang Guan 已提交
655
    mError("user:%s, failed to create since %s", createReq.user, terrstr());
S
Shengliang Guan 已提交
656 657
  }

S
Shengliang Guan 已提交
658 659 660 661
  mndReleaseUser(pMnode, pUser);
  mndReleaseUser(pMnode, pOperUser);

  return code;
S
Shengliang Guan 已提交
662 663
}

S
Shengliang Guan 已提交
664
static int32_t mndAlterUser(SMnode *pMnode, SUserObj *pOld, SUserObj *pNew, SRpcMsg *pReq) {
665
  STrans *pTrans = mndTransCreate(pMnode, TRN_POLICY_ROLLBACK, TRN_CONFLICT_NOTHING, pReq, "alter-user");
S
Shengliang Guan 已提交
666
  if (pTrans == NULL) {
S
Shengliang Guan 已提交
667
    mError("user:%s, failed to alter since %s", pOld->user, terrstr());
S
Shengliang Guan 已提交
668 669
    return -1;
  }
670
  mInfo("trans:%d, used to alter user:%s", pTrans->id, pOld->user);
S
Shengliang Guan 已提交
671

672 673 674
  SSdbRaw *pCommitRaw = mndUserActionEncode(pNew);
  if (pCommitRaw == NULL || mndTransAppendCommitlog(pTrans, pCommitRaw) != 0) {
    mError("trans:%d, failed to append commit log since %s", pTrans->id, terrstr());
S
Shengliang Guan 已提交
675 676 677
    mndTransDrop(pTrans);
    return -1;
  }
S
Shengliang Guan 已提交
678
  (void)sdbSetRawStatus(pCommitRaw, SDB_STATUS_READY);
S
Shengliang Guan 已提交
679 680 681 682 683 684 685 686 687 688 689

  if (mndTransPrepare(pMnode, pTrans) != 0) {
    mError("trans:%d, failed to prepare since %s", pTrans->id, terrstr());
    mndTransDrop(pTrans);
    return -1;
  }

  mndTransDrop(pTrans);
  return 0;
}

690
SHashObj *mndDupObjHash(SHashObj *pOld, int32_t dataLen) {
S
Shengliang Guan 已提交
691 692
  SHashObj *pNew =
      taosHashInit(taosHashGetSize(pOld), taosGetDefaultHashFunction(TSDB_DATA_TYPE_BINARY), true, HASH_ENTRY_LOCK);
S
Shengliang Guan 已提交
693 694 695 696 697 698 699 700
  if (pNew == NULL) {
    terrno = TSDB_CODE_OUT_OF_MEMORY;
    return NULL;
  }

  char *db = taosHashIterate(pOld, NULL);
  while (db != NULL) {
    int32_t len = strlen(db) + 1;
701
    if (taosHashPut(pNew, db, len, db, dataLen) != 0) {
S
Shengliang Guan 已提交
702 703
      taosHashCancelIterate(pOld, db);
      taosHashCleanup(pNew);
S
Shengliang Guan 已提交
704
      terrno = TSDB_CODE_OUT_OF_MEMORY;
S
Shengliang Guan 已提交
705 706 707 708 709 710 711 712
      return NULL;
    }
    db = taosHashIterate(pOld, db);
  }

  return pNew;
}

713 714 715 716
SHashObj *mndDupDbHash(SHashObj *pOld) { return mndDupObjHash(pOld, TSDB_DB_FNAME_LEN); }

SHashObj *mndDupTopicHash(SHashObj *pOld) { return mndDupObjHash(pOld, TSDB_TOPIC_FNAME_LEN); }

X
Xiaoyu Wang 已提交
717 718
static int32_t mndTablePriviledge(SMnode *pMnode, SHashObj *hash, SHashObj *useDbHash, SAlterUserReq *alterReq,
                                  SSdb *pSdb) {
X
Xiaoyu Wang 已提交
719 720
  void *pIter = NULL;
  char  tbFName[TSDB_TABLE_FNAME_LEN] = {0};
C
cademfly 已提交
721

C
cademfly 已提交
722 723
  snprintf(tbFName, sizeof(tbFName), "%s.%s", alterReq->objname, alterReq->tabName);
  int32_t len = strlen(tbFName) + 1;
C
cademfly 已提交
724

X
Xiaoyu Wang 已提交
725
  if (alterReq->tagCond != NULL && alterReq->tagCondLen != 0) {
726
    char *value = taosHashGet(hash, tbFName, len);
X
Xiaoyu Wang 已提交
727
    if (value != NULL) {
728 729 730 731
      terrno = TSDB_CODE_MND_PRIVILEDGE_EXIST;
      return -1;
    }

X
Xiaoyu Wang 已提交
732
    int32_t condLen = alterReq->tagCondLen;
733 734 735
    if (taosHashPut(hash, tbFName, len, alterReq->tagCond, condLen) != 0) {
      return -1;
    }
X
Xiaoyu Wang 已提交
736
  } else {
737 738 739
    if (taosHashPut(hash, tbFName, len, "t", 2) != 0) {
      return -1;
    }
C
cademfly 已提交
740
  }
C
cademfly 已提交
741

X
Xiaoyu Wang 已提交
742 743 744 745 746 747 748 749 750 751
  int32_t  dbKeyLen = strlen(alterReq->objname) + 1;
  int32_t  ref = 1;
  int32_t *currRef = taosHashGet(useDbHash, alterReq->objname, dbKeyLen);
  if (NULL != currRef) {
    ref = (*currRef) + 1;
  }
  if (taosHashPut(useDbHash, alterReq->objname, dbKeyLen, &ref, sizeof(ref)) != 0) {
    return -1;
  }

C
cademfly 已提交
752 753 754
  return 0;
}

X
Xiaoyu Wang 已提交
755 756
static int32_t mndRemoveTablePriviledge(SMnode *pMnode, SHashObj *hash, SHashObj *useDbHash, SAlterUserReq *alterReq,
                                        SSdb *pSdb) {
X
Xiaoyu Wang 已提交
757 758
  void *pIter = NULL;
  char  tbFName[TSDB_TABLE_FNAME_LEN] = {0};
C
cademfly 已提交
759 760
  snprintf(tbFName, sizeof(tbFName), "%s.%s", alterReq->objname, alterReq->tabName);
  int32_t len = strlen(tbFName) + 1;
C
cademfly 已提交
761

C
cademfly 已提交
762 763 764
  if (taosHashRemove(hash, tbFName, len) != 0) {
    return -1;
  }
C
cademfly 已提交
765

X
Xiaoyu Wang 已提交
766 767 768 769 770 771 772 773 774 775 776 777 778
  int32_t  dbKeyLen = strlen(alterReq->objname) + 1;
  int32_t *currRef = taosHashGet(useDbHash, alterReq->objname, dbKeyLen);
  if (NULL == currRef || 1 == *currRef) {
    if (taosHashRemove(useDbHash, alterReq->objname, dbKeyLen) != 0) {
      return -1;
    }
    return 0;
  }
  int32_t ref = (*currRef) - 1;
  if (taosHashPut(useDbHash, alterReq->objname, dbKeyLen, &ref, sizeof(ref)) != 0) {
    return -1;
  }

C
cademfly 已提交
779 780 781
  return 0;
}

S
Shengliang Guan 已提交
782 783
static int32_t mndProcessAlterUserReq(SRpcMsg *pReq) {
  SMnode       *pMnode = pReq->info.node;
S
Shengliang Guan 已提交
784 785
  SSdb         *pSdb = pMnode->pSdb;
  void         *pIter = NULL;
S
Shengliang Guan 已提交
786 787 788
  int32_t       code = -1;
  SUserObj     *pUser = NULL;
  SUserObj     *pOperUser = NULL;
S
Shengliang Guan 已提交
789
  SUserObj      newUser = {0};
S
Shengliang Guan 已提交
790 791
  SAlterUserReq alterReq = {0};

S
Shengliang Guan 已提交
792
  if (tDeserializeSAlterUserReq(pReq->pCont, pReq->contLen, &alterReq) != 0) {
S
Shengliang Guan 已提交
793
    terrno = TSDB_CODE_INVALID_MSG;
794
    goto _OVER;
S
Shengliang Guan 已提交
795
  }
S
Shengliang Guan 已提交
796

797
  mInfo("user:%s, start to alter", alterReq.user);
S
Shengliang Guan 已提交
798

S
Shengliang Guan 已提交
799
  if (alterReq.user[0] == 0) {
S
Shengliang Guan 已提交
800
    terrno = TSDB_CODE_MND_INVALID_USER_FORMAT;
801 802 803 804 805
    goto _OVER;
  }

  if (TSDB_ALTER_USER_PASSWD == alterReq.alterType && alterReq.pass[0] == 0) {
    terrno = TSDB_CODE_MND_INVALID_PASS_FORMAT;
806
    goto _OVER;
S
Shengliang Guan 已提交
807 808
  }

S
Shengliang Guan 已提交
809
  pUser = mndAcquireUser(pMnode, alterReq.user);
S
Shengliang Guan 已提交
810 811
  if (pUser == NULL) {
    terrno = TSDB_CODE_MND_USER_NOT_EXIST;
812
    goto _OVER;
S
Shengliang Guan 已提交
813 814
  }

815
  pOperUser = mndAcquireUser(pMnode, pReq->info.conn.user);
S
Shengliang Guan 已提交
816 817
  if (pOperUser == NULL) {
    terrno = TSDB_CODE_MND_NO_USER_FROM_CONN;
818
    goto _OVER;
S
Shengliang Guan 已提交
819 820
  }

821
  if (mndCheckAlterUserPrivilege(pOperUser, pUser, &alterReq) != 0) {
S
Shengliang Guan 已提交
822 823 824
    goto _OVER;
  }

825
  if (mndUserDupObj(pUser, &newUser) != 0) goto _OVER;
S
Shengliang Guan 已提交
826

K
kailixu 已提交
827
  newUser.passVersion = pUser->passVersion;
S
Shengliang Guan 已提交
828 829 830
  if (alterReq.alterType == TSDB_ALTER_USER_PASSWD) {
    char pass[TSDB_PASSWORD_LEN + 1] = {0};
    taosEncryptPass_c((uint8_t *)alterReq.pass, strlen(alterReq.pass), pass);
831
    memcpy(newUser.pass, pass, TSDB_PASSWORD_LEN);
K
kailixu 已提交
832 833 834
    if (0 != strncmp(pUser->pass, pass, TSDB_PASSWORD_LEN)) {
      ++newUser.passVersion;
    }
S
Shengliang Guan 已提交
835 836 837
  }

  if (alterReq.alterType == TSDB_ALTER_USER_SUPERUSER) {
S
Shengliang Guan 已提交
838
    newUser.superUser = alterReq.superUser;
S
Shengliang Guan 已提交
839 840
  }

841 842 843 844 845 846 847 848
  if (alterReq.alterType == TSDB_ALTER_USER_ENABLE) {
    newUser.enable = alterReq.enable;
  }

  if (alterReq.alterType == TSDB_ALTER_USER_SYSINFO) {
    newUser.sysInfo = alterReq.sysInfo;
  }

S
Shengliang Guan 已提交
849
  if (alterReq.alterType == TSDB_ALTER_USER_ADD_READ_DB || alterReq.alterType == TSDB_ALTER_USER_ADD_ALL_DB) {
850 851 852
    if (strcmp(alterReq.objname, "1.*") != 0) {
      int32_t len = strlen(alterReq.objname) + 1;
      SDbObj *pDb = mndAcquireDb(pMnode, alterReq.objname);
S
Shengliang Guan 已提交
853 854 855 856
      if (pDb == NULL) {
        mndReleaseDb(pMnode, pDb);
        goto _OVER;
      }
857
      if (taosHashPut(newUser.readDbs, alterReq.objname, len, alterReq.objname, TSDB_DB_FNAME_LEN) != 0) {
S
Shengliang Guan 已提交
858 859 860 861 862 863 864 865 866 867 868 869
        mndReleaseDb(pMnode, pDb);
        goto _OVER;
      }
    } else {
      while (1) {
        SDbObj *pDb = NULL;
        pIter = sdbFetch(pSdb, SDB_DB, pIter, (void **)&pDb);
        if (pIter == NULL) break;
        int32_t len = strlen(pDb->name) + 1;
        taosHashPut(newUser.readDbs, pDb->name, len, pDb->name, TSDB_DB_FNAME_LEN);
        sdbRelease(pSdb, pDb);
      }
S
Shengliang Guan 已提交
870
    }
S
Shengliang Guan 已提交
871 872 873
  }

  if (alterReq.alterType == TSDB_ALTER_USER_ADD_WRITE_DB || alterReq.alterType == TSDB_ALTER_USER_ADD_ALL_DB) {
874 875 876
    if (strcmp(alterReq.objname, "1.*") != 0) {
      int32_t len = strlen(alterReq.objname) + 1;
      SDbObj *pDb = mndAcquireDb(pMnode, alterReq.objname);
S
Shengliang Guan 已提交
877 878 879 880
      if (pDb == NULL) {
        mndReleaseDb(pMnode, pDb);
        goto _OVER;
      }
881
      if (taosHashPut(newUser.writeDbs, alterReq.objname, len, alterReq.objname, TSDB_DB_FNAME_LEN) != 0) {
S
Shengliang Guan 已提交
882 883 884 885 886 887 888 889 890 891 892 893
        mndReleaseDb(pMnode, pDb);
        goto _OVER;
      }
    } else {
      while (1) {
        SDbObj *pDb = NULL;
        pIter = sdbFetch(pSdb, SDB_DB, pIter, (void **)&pDb);
        if (pIter == NULL) break;
        int32_t len = strlen(pDb->name) + 1;
        taosHashPut(newUser.writeDbs, pDb->name, len, pDb->name, TSDB_DB_FNAME_LEN);
        sdbRelease(pSdb, pDb);
      }
S
Shengliang Guan 已提交
894 895 896
    }
  }

S
Shengliang Guan 已提交
897
  if (alterReq.alterType == TSDB_ALTER_USER_REMOVE_READ_DB || alterReq.alterType == TSDB_ALTER_USER_REMOVE_ALL_DB) {
898 899 900
    if (strcmp(alterReq.objname, "1.*") != 0) {
      int32_t len = strlen(alterReq.objname) + 1;
      SDbObj *pDb = mndAcquireDb(pMnode, alterReq.objname);
S
Shengliang Guan 已提交
901 902 903 904
      if (pDb == NULL) {
        mndReleaseDb(pMnode, pDb);
        goto _OVER;
      }
905
      taosHashRemove(newUser.readDbs, alterReq.objname, len);
S
Shengliang Guan 已提交
906 907 908 909
    } else {
      taosHashClear(newUser.readDbs);
    }
  }
S
Shengliang Guan 已提交
910

S
Shengliang Guan 已提交
911
  if (alterReq.alterType == TSDB_ALTER_USER_REMOVE_WRITE_DB || alterReq.alterType == TSDB_ALTER_USER_REMOVE_ALL_DB) {
912 913 914
    if (strcmp(alterReq.objname, "1.*") != 0) {
      int32_t len = strlen(alterReq.objname) + 1;
      SDbObj *pDb = mndAcquireDb(pMnode, alterReq.objname);
S
Shengliang Guan 已提交
915 916 917 918
      if (pDb == NULL) {
        mndReleaseDb(pMnode, pDb);
        goto _OVER;
      }
919
      taosHashRemove(newUser.writeDbs, alterReq.objname, len);
S
Shengliang Guan 已提交
920 921 922
    } else {
      taosHashClear(newUser.writeDbs);
    }
S
Shengliang Guan 已提交
923 924
  }

C
cademfly 已提交
925
  if (alterReq.alterType == TSDB_ALTER_USER_ADD_READ_TABLE) {
X
Xiaoyu Wang 已提交
926
    if (mndTablePriviledge(pMnode, newUser.readTbs, newUser.useDbs, &alterReq, pSdb) != 0) goto _OVER;
C
table  
cademfly 已提交
927 928
  }

C
cademfly 已提交
929
  if (alterReq.alterType == TSDB_ALTER_USER_ADD_WRITE_TABLE) {
X
Xiaoyu Wang 已提交
930
    if (mndTablePriviledge(pMnode, newUser.writeTbs, newUser.useDbs, &alterReq, pSdb) != 0) goto _OVER;
C
table  
cademfly 已提交
931 932
  }

X
Xiaoyu Wang 已提交
933 934
  if (alterReq.alterType == TSDB_ALTER_USER_REMOVE_READ_TABLE) {
    if (mndRemoveTablePriviledge(pMnode, newUser.readTbs, newUser.useDbs, &alterReq, pSdb) != 0) goto _OVER;
C
cademfly 已提交
935 936
  }

X
Xiaoyu Wang 已提交
937 938
  if (alterReq.alterType == TSDB_ALTER_USER_REMOVE_WRITE_TABLE) {
    if (mndRemoveTablePriviledge(pMnode, newUser.writeTbs, newUser.useDbs, &alterReq, pSdb) != 0) goto _OVER;
C
cademfly 已提交
939 940
  }

941 942 943 944 945 946 947 948 949 950 951 952 953 954 955 956 957 958 959 960
  if (alterReq.alterType == TSDB_ALTER_USER_ADD_SUBSCRIBE_TOPIC) {
    int32_t      len = strlen(alterReq.objname) + 1;
    SMqTopicObj *pTopic = mndAcquireTopic(pMnode, alterReq.objname);
    if (pTopic == NULL) {
      mndReleaseTopic(pMnode, pTopic);
      goto _OVER;
    }
    taosHashPut(newUser.topics, pTopic->name, len, pTopic->name, TSDB_TOPIC_FNAME_LEN);
  }

  if (alterReq.alterType == TSDB_ALTER_USER_REMOVE_SUBSCRIBE_TOPIC) {
    int32_t      len = strlen(alterReq.objname) + 1;
    SMqTopicObj *pTopic = mndAcquireTopic(pMnode, alterReq.objname);
    if (pTopic == NULL) {
      mndReleaseTopic(pMnode, pTopic);
      goto _OVER;
    }
    taosHashRemove(newUser.topics, alterReq.objname, len);
  }

S
Shengliang Guan 已提交
961
  code = mndAlterUser(pMnode, pUser, &newUser, pReq);
S
Shengliang Guan 已提交
962
  if (code == 0) code = TSDB_CODE_ACTION_IN_PROGRESS;
S
Shengliang Guan 已提交
963

964
_OVER:
S
Shengliang Guan 已提交
965
  if (code != 0 && code != TSDB_CODE_ACTION_IN_PROGRESS) {
S
Shengliang Guan 已提交
966
    mError("user:%s, failed to alter since %s", alterReq.user, terrstr());
S
Shengliang Guan 已提交
967 968
  }

X
Xiaoyu Wang 已提交
969
  tFreeSAlterUserReq(&alterReq);
S
Shengliang Guan 已提交
970 971
  mndReleaseUser(pMnode, pOperUser);
  mndReleaseUser(pMnode, pUser);
972
  mndUserFreeObj(&newUser);
S
Shengliang Guan 已提交
973 974

  return code;
S
Shengliang Guan 已提交
975 976
}

S
Shengliang Guan 已提交
977
static int32_t mndDropUser(SMnode *pMnode, SRpcMsg *pReq, SUserObj *pUser) {
978
  STrans *pTrans = mndTransCreate(pMnode, TRN_POLICY_ROLLBACK, TRN_CONFLICT_NOTHING, pReq, "drop-user");
S
Shengliang Guan 已提交
979 980 981 982
  if (pTrans == NULL) {
    mError("user:%s, failed to drop since %s", pUser->user, terrstr());
    return -1;
  }
983
  mInfo("trans:%d, used to drop user:%s", pTrans->id, pUser->user);
S
Shengliang Guan 已提交
984

985 986 987
  SSdbRaw *pCommitRaw = mndUserActionEncode(pUser);
  if (pCommitRaw == NULL || mndTransAppendCommitlog(pTrans, pCommitRaw) != 0) {
    mError("trans:%d, failed to append commit log since %s", pTrans->id, terrstr());
S
Shengliang Guan 已提交
988 989 990
    mndTransDrop(pTrans);
    return -1;
  }
S
Shengliang Guan 已提交
991
  (void)sdbSetRawStatus(pCommitRaw, SDB_STATUS_DROPPED);
S
Shengliang Guan 已提交
992 993 994 995 996 997 998 999 1000 1001 1002

  if (mndTransPrepare(pMnode, pTrans) != 0) {
    mError("trans:%d, failed to prepare since %s", pTrans->id, terrstr());
    mndTransDrop(pTrans);
    return -1;
  }

  mndTransDrop(pTrans);
  return 0;
}

S
Shengliang Guan 已提交
1003 1004
static int32_t mndProcessDropUserReq(SRpcMsg *pReq) {
  SMnode      *pMnode = pReq->info.node;
S
Shengliang Guan 已提交
1005 1006 1007 1008
  int32_t      code = -1;
  SUserObj    *pUser = NULL;
  SDropUserReq dropReq = {0};

S
Shengliang Guan 已提交
1009
  if (tDeserializeSDropUserReq(pReq->pCont, pReq->contLen, &dropReq) != 0) {
S
Shengliang Guan 已提交
1010
    terrno = TSDB_CODE_INVALID_MSG;
1011
    goto _OVER;
S
Shengliang Guan 已提交
1012
  }
S
Shengliang Guan 已提交
1013

1014
  mInfo("user:%s, start to drop", dropReq.user);
1015 1016 1017
  if (mndCheckOperPrivilege(pMnode, pReq->info.conn.user, MND_OPER_DROP_USER) != 0) {
    goto _OVER;
  }
S
Shengliang Guan 已提交
1018

S
Shengliang Guan 已提交
1019
  if (dropReq.user[0] == 0) {
S
Shengliang Guan 已提交
1020
    terrno = TSDB_CODE_MND_INVALID_USER_FORMAT;
1021
    goto _OVER;
S
Shengliang Guan 已提交
1022 1023
  }

S
Shengliang Guan 已提交
1024
  pUser = mndAcquireUser(pMnode, dropReq.user);
S
Shengliang Guan 已提交
1025 1026
  if (pUser == NULL) {
    terrno = TSDB_CODE_MND_USER_NOT_EXIST;
1027
    goto _OVER;
S
Shengliang Guan 已提交
1028 1029
  }

S
Shengliang Guan 已提交
1030
  code = mndDropUser(pMnode, pReq, pUser);
S
Shengliang Guan 已提交
1031
  if (code == 0) code = TSDB_CODE_ACTION_IN_PROGRESS;
S
Shengliang Guan 已提交
1032

1033
_OVER:
S
Shengliang Guan 已提交
1034
  if (code != 0 && code != TSDB_CODE_ACTION_IN_PROGRESS) {
S
Shengliang Guan 已提交
1035
    mError("user:%s, failed to drop since %s", dropReq.user, terrstr());
S
Shengliang Guan 已提交
1036 1037
  }

S
Shengliang Guan 已提交
1038 1039
  mndReleaseUser(pMnode, pUser);
  return code;
S
Shengliang Guan 已提交
1040 1041
}

S
Shengliang Guan 已提交
1042 1043
static int32_t mndProcessGetUserAuthReq(SRpcMsg *pReq) {
  SMnode         *pMnode = pReq->info.node;
S
Shengliang Guan 已提交
1044 1045 1046 1047 1048
  int32_t         code = -1;
  SUserObj       *pUser = NULL;
  SGetUserAuthReq authReq = {0};
  SGetUserAuthRsp authRsp = {0};

S
Shengliang Guan 已提交
1049
  if (tDeserializeSGetUserAuthReq(pReq->pCont, pReq->contLen, &authReq) != 0) {
S
Shengliang Guan 已提交
1050
    terrno = TSDB_CODE_INVALID_MSG;
1051
    goto _OVER;
S
Shengliang Guan 已提交
1052
  }
S
Shengliang Guan 已提交
1053 1054 1055 1056 1057 1058

  mTrace("user:%s, start to get auth", authReq.user);

  pUser = mndAcquireUser(pMnode, authReq.user);
  if (pUser == NULL) {
    terrno = TSDB_CODE_MND_USER_NOT_EXIST;
1059
    goto _OVER;
S
Shengliang Guan 已提交
1060 1061
  }

D
dapan 已提交
1062 1063 1064
  code = mndSetUserAuthRsp(pMnode, pUser, &authRsp);
  if (code) {
    goto _OVER;
S
Shengliang Guan 已提交
1065 1066
  }

S
Shengliang Guan 已提交
1067
  int32_t contLen = tSerializeSGetUserAuthRsp(NULL, 0, &authRsp);
S
Shengliang Guan 已提交
1068 1069 1070
  void   *pRsp = rpcMallocCont(contLen);
  if (pRsp == NULL) {
    terrno = TSDB_CODE_OUT_OF_MEMORY;
1071
    goto _OVER;
S
Shengliang Guan 已提交
1072 1073
  }

S
Shengliang Guan 已提交
1074
  tSerializeSGetUserAuthRsp(pRsp, contLen, &authRsp);
S
Shengliang Guan 已提交
1075

S
Shengliang Guan 已提交
1076 1077
  pReq->info.rsp = pRsp;
  pReq->info.rspLen = contLen;
S
Shengliang Guan 已提交
1078 1079
  code = 0;

1080
_OVER:
1081

S
Shengliang Guan 已提交
1082
  mndReleaseUser(pMnode, pUser);
S
Shengliang Guan 已提交
1083
  tFreeSGetUserAuthRsp(&authRsp);
S
Shengliang Guan 已提交
1084 1085 1086 1087

  return code;
}

S
Shengliang Guan 已提交
1088 1089
static int32_t mndRetrieveUsers(SRpcMsg *pReq, SShowObj *pShow, SSDataBlock *pBlock, int32_t rows) {
  SMnode   *pMnode = pReq->info.node;
S
Shengliang Guan 已提交
1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100
  SSdb     *pSdb = pMnode->pSdb;
  int32_t   numOfRows = 0;
  SUserObj *pUser = NULL;
  int32_t   cols = 0;
  char     *pWrite;

  while (numOfRows < rows) {
    pShow->pIter = sdbFetch(pSdb, SDB_USER, pShow->pIter, (void **)&pUser);
    if (pShow->pIter == NULL) break;

    cols = 0;
1101
    SColumnInfoData *pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
1102
    char             name[TSDB_USER_LEN + VARSTR_HEADER_SIZE] = {0};
1103
    STR_WITH_MAXSIZE_TO_VARSTR(name, pUser->user, pShow->pMeta->pSchemas[cols].bytes);
1104
    colDataSetVal(pColInfo, numOfRows, (const char *)name, false);
1105

wafwerar's avatar
wafwerar 已提交
1106 1107
    cols++;
    pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
1108
    colDataSetVal(pColInfo, numOfRows, (const char *)&pUser->superUser, false);
1109

1110 1111
    cols++;
    pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
1112
    colDataSetVal(pColInfo, numOfRows, (const char *)&pUser->enable, false);
1113 1114 1115

    cols++;
    pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
1116
    colDataSetVal(pColInfo, numOfRows, (const char *)&pUser->sysInfo, false);
1117

wafwerar's avatar
wafwerar 已提交
1118 1119
    cols++;
    pColInfo = taosArrayGet(pBlock->pDataBlock, cols);
1120
    colDataSetVal(pColInfo, numOfRows, (const char *)&pUser->createdTime, false);
S
Shengliang Guan 已提交
1121 1122 1123 1124 1125

    numOfRows++;
    sdbRelease(pSdb, pUser);
  }

1126
  pShow->numOfRows += numOfRows;
S
Shengliang Guan 已提交
1127 1128 1129 1130 1131 1132
  return numOfRows;
}

static void mndCancelGetNextUser(SMnode *pMnode, void *pIter) {
  SSdb *pSdb = pMnode->pSdb;
  sdbCancelFetch(pSdb, pIter);
S
Shengliang Guan 已提交
1133
}
D
dapan 已提交
1134

X
Xiaoyu Wang 已提交
1135 1136 1137
static void mndLoopHash(SHashObj *hash, char *priType, SSDataBlock *pBlock, int32_t *numOfRows, char *user,
                        SShowObj *pShow) {
  char   *value = taosHashIterate(hash, NULL);
C
cademfly 已提交
1138
  int32_t cols = 0;
X
Xiaoyu Wang 已提交
1139

C
cademfly 已提交
1140 1141 1142 1143 1144 1145 1146 1147 1148 1149 1150
  while (value != NULL) {
    cols = 0;
    char userName[TSDB_USER_LEN + VARSTR_HEADER_SIZE] = {0};
    STR_WITH_MAXSIZE_TO_VARSTR(userName, user, pShow->pMeta->pSchemas[cols].bytes);
    SColumnInfoData *pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
    colDataSetVal(pColInfo, *numOfRows, (const char *)userName, false);

    char privilege[20] = {0};
    STR_WITH_MAXSIZE_TO_VARSTR(privilege, priType, pShow->pMeta->pSchemas[cols].bytes);
    pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
    colDataSetVal(pColInfo, *numOfRows, (const char *)privilege, false);
X
Xiaoyu Wang 已提交
1151

C
cademfly 已提交
1152 1153
    size_t keyLen = 0;
    void  *key = taosHashGetKey(value, &keyLen);
C
cademfly 已提交
1154

X
Xiaoyu Wang 已提交
1155
    char dbName[TSDB_DB_NAME_LEN] = {0};
C
cademfly 已提交
1156
    mndExtractShortDbNameFromStbFullName(key, dbName);
X
Xiaoyu Wang 已提交
1157
    char dbNameContent[TSDB_DB_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1158 1159 1160 1161
    STR_WITH_MAXSIZE_TO_VARSTR(dbNameContent, dbName, pShow->pMeta->pSchemas[cols].bytes);
    pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
    colDataSetVal(pColInfo, *numOfRows, (const char *)dbNameContent, false);

X
Xiaoyu Wang 已提交
1162
    char tableName[TSDB_TABLE_NAME_LEN] = {0};
C
cademfly 已提交
1163
    mndExtractTbNameFromStbFullName(key, tableName, TSDB_TABLE_NAME_LEN);
X
Xiaoyu Wang 已提交
1164
    char tableNameContent[TSDB_TABLE_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1165 1166 1167
    STR_WITH_MAXSIZE_TO_VARSTR(tableNameContent, tableName, pShow->pMeta->pSchemas[cols].bytes);
    pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
    colDataSetVal(pColInfo, *numOfRows, (const char *)tableNameContent, false);
C
cademfly 已提交
1168

X
Xiaoyu Wang 已提交
1169
    if (strcmp("t", value) != 0) {
C
cademfly 已提交
1170 1171
      SNode  *pAst = NULL;
      int32_t sqlLen = 0;
X
Xiaoyu Wang 已提交
1172
      char    sql[TSDB_EXPLAIN_RESULT_ROW_SIZE] = {0};
C
cademfly 已提交
1173

X
Xiaoyu Wang 已提交
1174
      if (nodesStringToNode(value, &pAst) == 0) {
C
cademfly 已提交
1175
        nodesNodeToSQL(pAst, sql, TSDB_EXPLAIN_RESULT_ROW_SIZE, &sqlLen);
C
cademfly 已提交
1176
        nodesDestroyNode(pAst);
X
Xiaoyu Wang 已提交
1177
      } else {
C
cademfly 已提交
1178 1179 1180 1181
        sqlLen = 5;
        sprintf(sql, "error");
      }

X
Xiaoyu Wang 已提交
1182
      char obj[TSDB_PRIVILEDGE_CONDITION_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1183
      STR_WITH_MAXSIZE_TO_VARSTR(obj, sql, pShow->pMeta->pSchemas[cols].bytes);
C
cademfly 已提交
1184 1185 1186

      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, *numOfRows, (const char *)obj, false);
X
Xiaoyu Wang 已提交
1187
    } else {
1188
      char condition[TSDB_PRIVILEDGE_CONDITION_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1189 1190 1191 1192
      STR_WITH_MAXSIZE_TO_VARSTR(condition, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, *numOfRows, (const char *)condition, false);
    }
X
Xiaoyu Wang 已提交
1193

C
cademfly 已提交
1194 1195 1196 1197 1198
    (*numOfRows)++;
    value = taosHashIterate(hash, value);
  }
}

S
Shengliang Guan 已提交
1199 1200 1201 1202 1203 1204 1205 1206 1207 1208 1209 1210 1211 1212 1213
static int32_t mndRetrievePrivileges(SRpcMsg *pReq, SShowObj *pShow, SSDataBlock *pBlock, int32_t rows) {
  SMnode   *pMnode = pReq->info.node;
  SSdb     *pSdb = pMnode->pSdb;
  int32_t   numOfRows = 0;
  SUserObj *pUser = NULL;
  int32_t   cols = 0;
  char     *pWrite;

  while (numOfRows < rows) {
    pShow->pIter = sdbFetch(pSdb, SDB_USER, pShow->pIter, (void **)&pUser);
    if (pShow->pIter == NULL) break;

    int32_t numOfReadDbs = taosHashGetSize(pUser->readDbs);
    int32_t numOfWriteDbs = taosHashGetSize(pUser->writeDbs);
    int32_t numOfTopics = taosHashGetSize(pUser->topics);
C
cademfly 已提交
1214 1215 1216
    int32_t numOfReadTbs = taosHashGetSize(pUser->readTbs);
    int32_t numOfWriteTbs = taosHashGetSize(pUser->writeTbs);
    if (numOfRows + numOfReadDbs + numOfWriteDbs + numOfTopics + numOfReadTbs + numOfWriteTbs >= rows) break;
S
Shengliang Guan 已提交
1217

1218 1219
    if (pUser->superUser) {
      cols = 0;
X
Xiaoyu Wang 已提交
1220
      char userName[TSDB_USER_LEN + VARSTR_HEADER_SIZE] = {0};
1221
      STR_WITH_MAXSIZE_TO_VARSTR(userName, pUser->user, pShow->pMeta->pSchemas[cols].bytes);
X
Xiaoyu Wang 已提交
1222
      SColumnInfoData *pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1223
      colDataSetVal(pColInfo, numOfRows, (const char *)userName, false);
1224 1225 1226 1227

      char privilege[20] = {0};
      STR_WITH_MAXSIZE_TO_VARSTR(privilege, "all", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1228
      colDataSetVal(pColInfo, numOfRows, (const char *)privilege, false);
1229 1230 1231 1232

      char objName[20] = {0};
      STR_WITH_MAXSIZE_TO_VARSTR(objName, "all", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1233
      colDataSetVal(pColInfo, numOfRows, (const char *)objName, false);
1234

X
Xiaoyu Wang 已提交
1235
      char tableName[TSDB_TABLE_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1236 1237 1238 1239
      STR_WITH_MAXSIZE_TO_VARSTR(tableName, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)tableName, false);

X
Xiaoyu Wang 已提交
1240
      char condition[TSDB_PRIVILEDGE_CONDITION_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1241 1242 1243 1244
      STR_WITH_MAXSIZE_TO_VARSTR(condition, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)condition, false);

1245 1246 1247
      numOfRows++;
    }

S
Shengliang Guan 已提交
1248 1249 1250
    char *db = taosHashIterate(pUser->readDbs, NULL);
    while (db != NULL) {
      cols = 0;
X
Xiaoyu Wang 已提交
1251
      char userName[TSDB_USER_LEN + VARSTR_HEADER_SIZE] = {0};
S
Shengliang Guan 已提交
1252
      STR_WITH_MAXSIZE_TO_VARSTR(userName, pUser->user, pShow->pMeta->pSchemas[cols].bytes);
X
Xiaoyu Wang 已提交
1253
      SColumnInfoData *pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1254
      colDataSetVal(pColInfo, numOfRows, (const char *)userName, false);
S
Shengliang Guan 已提交
1255 1256 1257 1258

      char privilege[20] = {0};
      STR_WITH_MAXSIZE_TO_VARSTR(privilege, "read", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1259
      colDataSetVal(pColInfo, numOfRows, (const char *)privilege, false);
S
Shengliang Guan 已提交
1260 1261 1262 1263 1264 1265 1266

      SName name = {0};
      char  objName[TSDB_DB_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
      tNameFromString(&name, db, T_NAME_ACCT | T_NAME_DB);
      tNameGetDbName(&name, varDataVal(objName));
      varDataSetLen(objName, strlen(varDataVal(objName)));
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1267
      colDataSetVal(pColInfo, numOfRows, (const char *)objName, false);
S
Shengliang Guan 已提交
1268

1269
      char tableName[TSDB_TABLE_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1270 1271 1272 1273
      STR_WITH_MAXSIZE_TO_VARSTR(tableName, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)tableName, false);

1274
      char condition[TSDB_PRIVILEDGE_CONDITION_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1275 1276 1277 1278
      STR_WITH_MAXSIZE_TO_VARSTR(condition, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)condition, false);

S
Shengliang Guan 已提交
1279 1280 1281 1282 1283 1284 1285
      numOfRows++;
      db = taosHashIterate(pUser->readDbs, db);
    }

    db = taosHashIterate(pUser->writeDbs, NULL);
    while (db != NULL) {
      cols = 0;
1286
      char userName[TSDB_USER_LEN + VARSTR_HEADER_SIZE] = {0};
S
Shengliang Guan 已提交
1287
      STR_WITH_MAXSIZE_TO_VARSTR(userName, pUser->user, pShow->pMeta->pSchemas[cols].bytes);
1288
      SColumnInfoData *pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1289
      colDataSetVal(pColInfo, numOfRows, (const char *)userName, false);
S
Shengliang Guan 已提交
1290 1291 1292 1293

      char privilege[20] = {0};
      STR_WITH_MAXSIZE_TO_VARSTR(privilege, "write", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1294
      colDataSetVal(pColInfo, numOfRows, (const char *)privilege, false);
S
Shengliang Guan 已提交
1295 1296 1297 1298 1299 1300 1301

      SName name = {0};
      char  objName[TSDB_DB_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
      tNameFromString(&name, db, T_NAME_ACCT | T_NAME_DB);
      tNameGetDbName(&name, varDataVal(objName));
      varDataSetLen(objName, strlen(varDataVal(objName)));
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1302
      colDataSetVal(pColInfo, numOfRows, (const char *)objName, false);
S
Shengliang Guan 已提交
1303

1304
      char tableName[TSDB_TABLE_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1305 1306 1307 1308
      STR_WITH_MAXSIZE_TO_VARSTR(tableName, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)tableName, false);

1309
      char condition[TSDB_PRIVILEDGE_CONDITION_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1310 1311 1312 1313
      STR_WITH_MAXSIZE_TO_VARSTR(condition, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)condition, false);

S
Shengliang Guan 已提交
1314 1315 1316 1317
      numOfRows++;
      db = taosHashIterate(pUser->writeDbs, db);
    }

C
cademfly 已提交
1318
    mndLoopHash(pUser->readTbs, "read", pBlock, &numOfRows, pUser->user, pShow);
C
table  
cademfly 已提交
1319

C
cademfly 已提交
1320
    mndLoopHash(pUser->writeTbs, "write", pBlock, &numOfRows, pUser->user, pShow);
C
table  
cademfly 已提交
1321

S
Shengliang Guan 已提交
1322 1323 1324
    char *topic = taosHashIterate(pUser->topics, NULL);
    while (topic != NULL) {
      cols = 0;
1325
      char userName[TSDB_USER_LEN + VARSTR_HEADER_SIZE] = {0};
S
Shengliang Guan 已提交
1326
      STR_WITH_MAXSIZE_TO_VARSTR(userName, pUser->user, pShow->pMeta->pSchemas[cols].bytes);
1327
      SColumnInfoData *pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1328
      colDataSetVal(pColInfo, numOfRows, (const char *)userName, false);
S
Shengliang Guan 已提交
1329 1330 1331 1332

      char privilege[20] = {0};
      STR_WITH_MAXSIZE_TO_VARSTR(privilege, "subscribe", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1333
      colDataSetVal(pColInfo, numOfRows, (const char *)privilege, false);
S
Shengliang Guan 已提交
1334 1335 1336 1337 1338

      char topicName[TSDB_TOPIC_NAME_LEN + VARSTR_HEADER_SIZE + 5] = {0};
      tstrncpy(varDataVal(topicName), mndGetDbStr(topic), TSDB_TOPIC_NAME_LEN - 2);
      varDataSetLen(topicName, strlen(varDataVal(topicName)));
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
1339
      colDataSetVal(pColInfo, numOfRows, (const char *)topicName, false);
S
Shengliang Guan 已提交
1340

1341
      char tableName[TSDB_TABLE_NAME_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1342 1343 1344 1345
      STR_WITH_MAXSIZE_TO_VARSTR(tableName, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)tableName, false);

1346
      char condition[TSDB_PRIVILEDGE_CONDITION_LEN + VARSTR_HEADER_SIZE] = {0};
C
cademfly 已提交
1347 1348 1349 1350
      STR_WITH_MAXSIZE_TO_VARSTR(condition, "", pShow->pMeta->pSchemas[cols].bytes);
      pColInfo = taosArrayGet(pBlock->pDataBlock, cols++);
      colDataSetVal(pColInfo, numOfRows, (const char *)condition, false);

S
Shengliang Guan 已提交
1351
      numOfRows++;
1352
      topic = taosHashIterate(pUser->topics, topic);
S
Shengliang Guan 已提交
1353
    }
1354

S
Shengliang Guan 已提交
1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365
    sdbRelease(pSdb, pUser);
  }

  pShow->numOfRows += numOfRows;
  return numOfRows;
}

static void mndCancelGetNextPrivileges(SMnode *pMnode, void *pIter) {
  SSdb *pSdb = pMnode->pSdb;
  sdbCancelFetch(pSdb, pIter);
}
1366

1367 1368
int32_t mndValidateUserAuthInfo(SMnode *pMnode, SUserAuthVersion *pUsers, int32_t numOfUses, void **ppRsp,
                                int32_t *pRspLen) {
D
dapan 已提交
1369 1370 1371 1372 1373 1374 1375 1376 1377 1378 1379 1380 1381 1382 1383
  SUserAuthBatchRsp batchRsp = {0};
  batchRsp.pArray = taosArrayInit(numOfUses, sizeof(SGetUserAuthRsp));
  if (batchRsp.pArray == NULL) {
    terrno = TSDB_CODE_OUT_OF_MEMORY;
    return -1;
  }

  int32_t code = 0;
  for (int32_t i = 0; i < numOfUses; ++i) {
    SUserObj *pUser = mndAcquireUser(pMnode, pUsers[i].user);
    if (pUser == NULL) {
      mError("user:%s, failed to auth user since %s", pUsers[i].user, terrstr());
      continue;
    }

D
dapan1121 已提交
1384
    pUsers[i].version = ntohl(pUsers[i].version);
D
dapan 已提交
1385 1386 1387 1388
    if (pUser->authVersion <= pUsers[i].version) {
      mndReleaseUser(pMnode, pUser);
      continue;
    }
1389

D
dapan 已提交
1390 1391 1392 1393 1394 1395 1396 1397 1398 1399 1400 1401 1402 1403 1404
    SGetUserAuthRsp rsp = {0};
    code = mndSetUserAuthRsp(pMnode, pUser, &rsp);
    if (code) {
      mndReleaseUser(pMnode, pUser);
      tFreeSGetUserAuthRsp(&rsp);
      goto _OVER;
    }

    taosArrayPush(batchRsp.pArray, &rsp);
    mndReleaseUser(pMnode, pUser);
  }

  if (taosArrayGetSize(batchRsp.pArray) <= 0) {
    *ppRsp = NULL;
    *pRspLen = 0;
1405

D
dapan 已提交
1406 1407 1408 1409 1410 1411 1412 1413 1414 1415 1416 1417 1418 1419 1420 1421 1422 1423 1424 1425 1426 1427 1428
    tFreeSUserAuthBatchRsp(&batchRsp);
    return 0;
  }

  int32_t rspLen = tSerializeSUserAuthBatchRsp(NULL, 0, &batchRsp);
  void   *pRsp = taosMemoryMalloc(rspLen);
  if (pRsp == NULL) {
    terrno = TSDB_CODE_OUT_OF_MEMORY;
    tFreeSUserAuthBatchRsp(&batchRsp);
    return -1;
  }
  tSerializeSUserAuthBatchRsp(pRsp, rspLen, &batchRsp);

  *ppRsp = pRsp;
  *pRspLen = rspLen;

  tFreeSUserAuthBatchRsp(&batchRsp);
  return 0;

_OVER:

  *ppRsp = NULL;
  *pRspLen = 0;
1429

D
dapan 已提交
1430 1431 1432
  tFreeSUserAuthBatchRsp(&batchRsp);
  return code;
}
1433

K
kailixu 已提交
1434 1435 1436 1437 1438 1439 1440 1441 1442 1443 1444 1445 1446 1447
int32_t mndValidateUserPassInfo(SMnode *pMnode, SUserPassVersion *pUsers, int32_t numOfUses, void **ppRsp,
                                int32_t *pRspLen) {
  int32_t           code = 0;
  SUserPassBatchRsp batchRsp = {0};

  for (int32_t i = 0; i < numOfUses; ++i) {
    SUserObj *pUser = mndAcquireUser(pMnode, pUsers[i].user);
    if (pUser == NULL) {
      mError("user:%s, failed to validate user pass since %s", pUsers[i].user, terrstr());
      continue;
    }

    pUsers[i].version = ntohl(pUsers[i].version);
    if (pUser->passVersion <= pUsers[i].version) {
1448
      mTrace("user:%s, not update since mnd passVer %d <= client passVer %d", pUsers[i].user, pUser->passVersion,
K
kailixu 已提交
1449 1450 1451 1452 1453 1454 1455 1456 1457 1458 1459
             pUsers[i].version);
      mndReleaseUser(pMnode, pUser);
      continue;
    }

    SGetUserPassRsp rsp = {0};
    memcpy(rsp.user, pUser->user, TSDB_USER_LEN);
    rsp.version = pUser->passVersion;

    if (!batchRsp.pArray && !(batchRsp.pArray = taosArrayInit(numOfUses, sizeof(SGetUserPassRsp)))) {
      code = TSDB_CODE_OUT_OF_MEMORY;
K
kailixu 已提交
1460
      mndReleaseUser(pMnode, pUser);
K
kailixu 已提交
1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496
      goto _OVER;
    }

    taosArrayPush(batchRsp.pArray, &rsp);
    mndReleaseUser(pMnode, pUser);
  }

  if (taosArrayGetSize(batchRsp.pArray) <= 0) {
    goto _OVER;
  }

  int32_t rspLen = tSerializeSUserPassBatchRsp(NULL, 0, &batchRsp);
  if (rspLen < 0) {
    code = TSDB_CODE_OUT_OF_MEMORY;
    goto _OVER;
  }
  void   *pRsp = taosMemoryMalloc(rspLen);
  if (pRsp == NULL) {
    code = TSDB_CODE_OUT_OF_MEMORY;
    goto _OVER;
  }
  tSerializeSUserPassBatchRsp(pRsp, rspLen, &batchRsp);

  *ppRsp = pRsp;
  *pRspLen = rspLen;

_OVER:
  if (code) {
    *ppRsp = NULL;
    *pRspLen = 0;
  }

  tFreeSUserPassBatchRsp(&batchRsp);
  return code;
}

1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521 1522 1523 1524 1525 1526 1527 1528 1529 1530 1531 1532 1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543
int32_t mndUserRemoveDb(SMnode *pMnode, STrans *pTrans, char *db) {
  int32_t   code = 0;
  SSdb     *pSdb = pMnode->pSdb;
  int32_t   len = strlen(db) + 1;
  void     *pIter = NULL;
  SUserObj *pUser = NULL;
  SUserObj  newUser = {0};

  while (1) {
    pIter = sdbFetch(pSdb, SDB_USER, pIter, (void **)&pUser);
    if (pIter == NULL) break;

    code = -1;
    if (mndUserDupObj(pUser, &newUser) != 0) break;

    bool inRead = (taosHashGet(newUser.readDbs, db, len) != NULL);
    bool inWrite = (taosHashGet(newUser.writeDbs, db, len) != NULL);
    if (inRead || inWrite) {
      (void)taosHashRemove(newUser.readDbs, db, len);
      (void)taosHashRemove(newUser.writeDbs, db, len);

      SSdbRaw *pCommitRaw = mndUserActionEncode(&newUser);
      if (pCommitRaw == NULL || mndTransAppendCommitlog(pTrans, pCommitRaw) != 0) break;
      (void)sdbSetRawStatus(pCommitRaw, SDB_STATUS_READY);
    }

    mndUserFreeObj(&newUser);
    sdbRelease(pSdb, pUser);
    code = 0;
  }

  if (pUser != NULL) sdbRelease(pSdb, pUser);
  if (pIter != NULL) sdbCancelFetch(pSdb, pIter);
  mndUserFreeObj(&newUser);
  return code;
}

int32_t mndUserRemoveTopic(SMnode *pMnode, STrans *pTrans, char *topic) {
  int32_t   code = 0;
  SSdb     *pSdb = pMnode->pSdb;
  int32_t   len = strlen(topic) + 1;
  void     *pIter = NULL;
  SUserObj *pUser = NULL;
  SUserObj  newUser = {0};

  while (1) {
    pIter = sdbFetch(pSdb, SDB_USER, pIter, (void **)&pUser);
1544 1545 1546
    if (pIter == NULL) {
      break;
    }
1547 1548

    code = -1;
1549 1550 1551
    if (mndUserDupObj(pUser, &newUser) != 0) {
      break;
    }
1552 1553 1554 1555 1556 1557 1558 1559 1560 1561 1562 1563 1564 1565 1566 1567 1568 1569 1570

    bool inTopic = (taosHashGet(newUser.topics, topic, len) != NULL);
    if (inTopic) {
      (void)taosHashRemove(newUser.topics, topic, len);
      SSdbRaw *pCommitRaw = mndUserActionEncode(&newUser);
      if (pCommitRaw == NULL || mndTransAppendCommitlog(pTrans, pCommitRaw) != 0) break;
      (void)sdbSetRawStatus(pCommitRaw, SDB_STATUS_READY);
    }

    mndUserFreeObj(&newUser);
    sdbRelease(pSdb, pUser);
    code = 0;
  }

  if (pUser != NULL) sdbRelease(pSdb, pUser);
  if (pIter != NULL) sdbCancelFetch(pSdb, pIter);
  mndUserFreeObj(&newUser);
  return code;
}