mirror of
				https://github.com/Alfresco/alfresco-community-repo.git
				synced 2025-10-22 15:12:38 +00:00 
			
		
		
		
	33116: Allow multiple deferred requests per oplock break, next level of fix for ALF-11935.
   33136: Fix for ALF-12200: "Content type is not recognized on creating document from source"
   33137: Activities feed generator: change info log messages to debug log messages
   33139: ALF-12262	View in Source Repository works incorrect if the folder was created on target side at first
   33141: Fix for ALF-12178 "Bulk import - status page shows broken link (Initiate another in-place import)"
   33144: Fixes ALF-11119: The 2 tranformations didn't work - Segmentation fault in ffmpeg - it looks like a bug with ffmpeg and it was decided that compile/bug fixing ffmpeg is not a priority at the moment.  The 2 entries have been commented out.  If they are required, the user should consult the ffmpeg documentation for the correct version & o/s at the time.
   33146: ALF-11345 Patch from Pavel Yurkevich to fix another VTI/SPP problem with site names that start with Alfresco
   33147: FTP implemented set modification date/time command (MFMT). ALF-12105.
   33148: ALF-12063 Pull some of the VTI list type definitions out to a common base class
   33150: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33076: ALF-12285: Allow dumping of schema to XML via JMX
   33151: Fix problems with FTP and UTF-8. JLAN-81.
   When using the Java6 Normalizer use the NFC form.
   33158: Fix NFS server swallows exceptions. ALF-11667.
   Startup exception details are now saved.
   33160: Improve the Vti/SPP exception message for the case of the Vti port being already in use
   33161: ALF-12063 Additional SPP/Vti list info required for Mac Office 2011 support
   33162: Fixes: ALF-10322: Edit Dialogue gets out of sync if event moved using FullCalendar (extends FullCalendar to provide a callback after an event changes, which enables us to keep our event object up to date).
   33163: Fixes: ALF-10248: Grey Placeholder image for unauthorised channels has now been replaced with yellow one.
   33164: Fixes: ALF-11562; Refactors My Calendar dashlet to use timezone aware ISO8601 dates from updated Calendar API & removes obsolete properties from userevents calendar API
   33165: Fixes: ALF-10645; i18n label doesn't appear in property bundle.
   33167: Fix for ALF-11970
   33168: Fix for ALF-10565 "Category manager in admin console needs query not search"
     - i18n'd the strings
   33178: Publishing: Fixes: ALF-11552; Inline edit icon alignment issue fixed
   33183: Minor fix to exception string in extendBuffer().
   33194: ALF-10545: NodeServicePolicies#onUpdateNodePolicy not adequate for NodeService#setType
      * Added beforeSetNodeType and onSetNodeType policies
      * Both callbacks have old and new types as parameters
   33204: Fixes: ALF-11230, publishing tracking link opens in repository, not Doc Lib. Also fixes a couple of other minor bugs:
      - balloon pop up didn't appear when published from Doc Details page
      - tracking link appears black (on black) when hovered over.
      - adds defensive code to prevent an error if the expected element for the notification balloon isn't there.
   33212: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33211: ALF-12384: Failed schema dump can cause failure of repository start up
   33217: Merged V3.4-BUG-FIX to V4.0-BUG-FIX
      31840: Fix for ALF-10282 - Web Browser freezes with large xml files Web form transformation
      31987: Proper fix for ALF-11489: 'patch.sitesSpacePermissions' failed on upgrade 2.2.8 -> 3.4.6
         - Just handle missing defined ACLs   
      32341: Fix for ALF-9883 - WCM Forms: Changing 'abstract' type carries previously-added elements
      32911: Add a (currently disabled) unit test for ALF-10466 - The HTML to Text transformer (not Tika based) should take account of the content encoding
      32912: Merged BRANCHES/DEV/BELARUS/V3.4-BUG-FIX-2011_10_13 to BRANCHES/DEV/V3.4-BUG-FIX with changes + unit testing:
         31742: ALF-10466 - The HTML to Text converter needs to take account of the Encoding set on the Content Property, to be able to correctly index MBCS text in wiki pages (and others)   
      32946: ALF-12161: Merged PATCHES/V3.4.5 to V3.4-BUG-FIX
         32921: Merged DEV/TEMPORARY to PATCHES/V3.4.5
            32913: ALF-11440: Content Manager unable to edit content from another user sandbox
               In order to allow a Content Manager to edit a locked document in other user's sandbox, it is needed to modify the AVMLockingAwareService.grabLock().
               The 'lockState' variable could be set to 'LOCK_OWNER', if a user is ContentManager to bypass the check.   
      32964: Fixes ALF-11054: Sharepoint - Wrong sorting by date
        - incorporated patch from investigation team
      32967: Merged BRANCHES/DEV/BELARUS/V3.4-BUG-FIX-2011_10_13 to BRANCHES/DEV/V3.4-BUG-FIX:
         31828: Fixes ALF-10720: Webform performance improvement
               Minimize database usage by adding new variable to FormWrapper that holds a form's name.   
      32969: Fixes ALF-10471: Cannot correctly remove users from email notification rule list
      32980: Merged DEV/TEMPORARY to V3.4-BUG-FIX
         32961: ALF-12132: Set "common-placeholder-configurer" as parent for "lotusWSPlaceholderConfigurer" bean.    
      32996: ALF-12184: SchemaBootstrap must use same assumptions as PatchServiceImpl when deciding whether an alternative patch succeeded
      - Fixes regression introduced by r31972 / ALF-11489
      33068: Added suggested fix to commit any current transactions in the NFS file expiry thread. ALF-11827.
      33077: ALF-10142: Allow TinyMCE to accept <meta> element when editing HTML files inline in Share.
      33094: Fix for ACT #15024-37148 (no JIRA yet)
       - issue where in a load balanced Share environment (multiple web-tiers behind a reverse proxy) the modification to the template layout selection for a site or user dashboard would not be reflected in all servers.
      33118: ALF-12278: Prevent the copying over of headers specific to a POST request on to the touch GET request   
      33138: Upgraded SpringSurf to 1.0.0 rev 968
      33140: Added missing json-simple jar to 3rd party eclipse classpath, which bizarrely is used to generate the JUnit cmd line unit test classpath, no really.
      33145: Fix for native FTP timestamps returned in GMT timezone format. ALF-11986.
      33175: ALF-12366: Cope with read committed DB behaviour in AbstractReindexComponent.reindexTransaction()
      33179: ALF-12344 CLONE - Copyright notice shows Alfresco Software, Inc. © 2005-2011 All rights reserved.... should now be to 2012 as that is when we will release 3.4.7
          - Being done in 3.4.8 not 3.4.7
      33190: Latest SpringSurf libs:
       - much improved handling of multiple connections and connection reuse in RemoteClient
       - improves connection reuse generally, but also much more stable under load balancing condition with multiple Share web-tiers behind a reverse proxy
      33193: ALF-12344 CLONE - Copyright notice shows Alfresco Software, Inc. © 2005-2011 All rights reserved.... should now be to 2012 as that is when we will release 3.4.7
          - Found a few more having followed previous date changes and searches
      33203: Fix for HttpClient issue: Error status 500 Unbuffered entity enclosing request can not be repeated.
      33206: Fix to FormUIGet - no need to manually patch up the JSON request since rev 33138 (SpringSurf 1.0.0)
   33218: Fix for ALF-11868 "CMIS: removeAcl() function doesn't work via atompub."
   33220: Merged PATCHES/V3.4.6 to V4.0-BUG-FIX
      32405: Merged V3.4.6 (3.4.6.1) to V3.4.1 (3.4.1.24)
         32404: ALF-11727 CLONE - Pending Invite Search doesn't return anything if there's more than 1000 pending invites across all sites.
            Removed read only transaction from invites.get.desc.xml as it broke InviteServiceTest testRejectInvite
         32397: ALF-11727 CLONE - Pending Invite Search doesn't return anything if there's more than 1000 pending invites across all sites.
            Return first 200 invitations (similar to 4.0 paging)
            Transaction used by the invites.get is now read only so does not force a flush of caches.   
      32503: Merged PATCHES/V3.4.6 to PATCHES/V3.4.1
         32501: ALF-11727: Reinstated read-only transaction around invites.get and prevented it from trying to lazily create persons from rejected invites that had previously been deleted by InviteHelper.cleanUpStaleInviteeResources!   
      32650: ALF-11872: When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         Put back in cut off at 200 invites (removed in last merge) for UI, unless we know that we need all of them internally
      32775: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         Even more changes:
         - reduce number of queries required to list pending invites to a site (uses moderated and nominated caches and only looks up IDs if possible)
         - change hibernate cache and flush modes (to avoid cache and the related slow flush), for queries and cancel of workflows
         - modified js which was making a query for each person in order to work out if they were already in a pending invites list
      32838: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
      - JBPMEngine now supports batch cancelWorkflows() method for canceling multiple workflows at the same time (e.g. on deleting a site)
      - Manual flushes only used at two points in the batch to minimize dirty checking overhead and yet avoid FK errors
      - Performance implications still to be checked but at least functionally correct
      - Corrected JPDL source jar
      32857: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         - Search for Pending invites was slow on sites with > 0 pending invites (it was getting invites for all sites) 
      32861: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
      - JBPMEngine uses an abstract list to 'lazily' convert hibernate objects on demand and avoid batch loading too many objects
      32868: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
      - Rationalization of batch fetching at hibernate layer
      32881: ALF-11872: The saga goes on! Corrected empty list handling in InvitationServiceImpl.searchInvitation().
      32927: ALF-11872: Fix parameter validation in InvitationServiceImpl.getInvitationTasks()
      32936: ALF-11872: A site with 1200 pending invites can now be deleted without the UI timing out
      - Pending invitation workflows are cancelled in an asynchronous action
      - The asynchronous action completes about 3 minutes later, due to the massive number of individual delete statements being run by Hibernate
      - Creating the rows in the first place took 20 minutes!   
      32956: ALF-11872: Corrected filtering in InvitationServiceImpl.getInvitationTasks() to only include start tasks
      - plus recautionary sleep() in InviteServiceTest.tearDown() to ensure asynchronous invite deletions complete
      33169: ALF-12312 'org.hibernate.LazyInitializationException: could not initialize proxy - no Session' when clicking on a Pending Invite workflow task in JSF
         - Follow on from ALF-11872: Only use lazyloaded WorkflowTasks from JBPMEngine.getWorkflowTasks() when we are using the same session (currently
           only done from InvitationService). The fallback is to assume it is not the same session and return a normal list of Workflows.
   33221: Merged V3.4-BUG-FIX to V4.0-BUG-FIX (RECORD ONLY)
      30463: L10N Updates from Gloria (based on r30332): Fixes ALF-8211 and new string updates
      30473: Merged HEAD to V3.4-BUG-FIX
         30468: Fixed ALF-10280: Slow to report ® Duplicate entry ¯ in database.
                - DuplicateChildNodeNameException implements DoNotRetryException   
      30685: Merged HEAD to V3.4-BUG-FIX
         30679: Unit test for ALF-1017 - Non site content in the Sites Space
         30683: ALF-1017 Remove EVERYONE Contributor permissions from /Company Home/Sites/, to avoid misc nodes being created in there by mistake by users, and update the SiteService to runAsSystem when creating the Site node   
      30693: Merged HEAD to V3.4-BUG-FIX
         30692: Fix ALF-1017 specific test following ALF-1017 changes to permissions   
      30808: Fixes: ALF-10485 (minor text update)
      30873: Latest L10N update from Gloria (based on r30698):
         - Adds Web Quick Start translations (back port from 4.0)
         - Adds/updates new or previously missing strings
      31019: Merged HEAD to V3.4-BUG-FIX
         28974: added double-checks for associations when a potential failure is detected
         31018: Fixed ALF-9591: Integrity check: Association source multiplicity checking is incorrect
                - Drop checks for source multiplicity when no associations are pointing to a type/aspect instance   
      31045: Merged HEAD to V3.4-BUG-FIX
         31044: Performance improvements for PATH queries relating to Share dashboard dashlets and document library.
                - tweaks to generation of PATH queries - hugely improves performance when dealing with 1000's site memberships
      31160: Merged HEAD to V3.4-BUG-FIX
         31156: Various Share search related fixes as spotted by Andy:
                - increased resultset size that is used to retrieve raw results from query before Share specific results are filtered - this means sensible results are now shown from large repository wide and sorted queries, previously results would be "missing" if they dropped out of the resultset prefiltering
                - fix to Share Search component to correctly display if more than N results were found in the repository
                - fix to add default TYPE clause to generated Share search if no other TYPE is specified - this reduces masses of potentially matches results from repository wide searches that would otherwise need to be post-filtered
      31345: Merged HEAD to BRANCHES/DEV/V3.4-BUG-FIX:
         31330: Fixed WCM bulkImport's importDirectory
      31442: Merged HEAD to V3.4-BUG-FIX
         31441: Fixed ALF-11014: Content output stream close errors are absorbed silently
                - Found while testing XAMcontentStore
                - Pulled stream copy code into AbstractContentWriter
                - OutputStream closure (write-side) exception is rethrown to allow full rollback, etc   
      31444: Merged HEAD to BRANCHES/DEV/V3.4-BUG-FIX:
         31383: MLPropertyInterceptor performance improvements:
      31758: Merged V3.3 to V3.4-BUG-FIX
         31757: ALF-11279: Fixed RetryingTransactionInterceptor so that it actually behaves like an interceptor and doesn't throw away the rest of the interceptor chain!   
      31798: Merged V3.3 to V3.4-BUG-FIX
         31773: ALF-11279: Further RetryingTransactionInterceptor fixes - must do mark for rollback on propagating transactions   
      32051: ALF-7195: Merge HEAD (4.0) to V3.4-BUG-FIX (3.4.7)
         Merge was simply to take HEAD version to pick up changes made by Derek to DisableAuditableBehaviourInterceptor
         32047: ALF-8882 Edit Online: Modifier and Modified date are changed even no changes were applied
            - needed to turn off ASPECT_AUDITABLE on removeProperty which is called on unlock
            - added code to not enable this aspect early if nested calls were made (this is not done, but is safer this way)
      32088: Merging HEAD to 3.4-BUG-FIX:
      r32063: ALF-10947 Fixed issue where repeating JBPM timer was causing an infinite loop if an exception was thrown within the timer event.
      32475: ALF-11727 Improved performance of pending invites search.
      32512: Incremented version revision for 3.4.8
      32917: ALF-12133: Merged HEAD to V3.4-BUG-FIX
         32906: ALF-12068 - Zimbra desktop - corrected InternalDateAsString.   
      32923: ALF-12133: Merged HEAD to V3.4-BUG-FIX
         32918: ALF-12133 - Attempt 2 to get Imap internal date correct.   
      33021: ALF-9878: Merge V3.4.1 (3.4.1.25) to V3.4-BUG-FIX (3.4.8)
         32956: ALF-11872: Corrected filtering in InvitationServiceImpl.getInvitationTasks() to only include start tasks
         - plus recautionary sleep() in InviteServiceTest.tearDown() to ensure asynchronous invite deletions complete
         32936: ALF-11872: A site with 1200 pending invites can now be deleted without the UI timing out
         - Pending invitation workflows are cancelled in an asynchronous action
         - The asynchronous action completes about 3 minutes later, due to the massive number of individual delete statements being run by Hibernate
         - Creating the rows in the first place took 20 minutes!
         32927: ALF-11872: Fix parameter validation in InvitationServiceImpl.getInvitationTasks()
         32881: ALF-11872: The saga goes on! Corrected empty list handling in InvitationServiceImpl.searchInvitation().
         32868: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         - Rationalization of batch fetching at hibernate layer
         32861: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         - JBPMEngine uses an abstract list to 'lazily' convert hibernate objects on demand and avoid batch loading too many objects
         32857: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
            - Search for Pending invites was slow on sites with > 0 pending invites (it was getting invites for all sites) 
         32838: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         - JBPMEngine now supports batch cancelWorkflows() method for canceling multiple workflows at the same time (e.g. on deleting a site)
         - Manual flushes only used at two points in the batch to minimize dirty checking overhead and yet avoid FK errors
         - Performance implications still to be checked but at least functionally correct
         - Corrected JPDL source jar
         32775: ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
            Even more changes:
            - reduce number of queries required to list pending invites to a site (uses moderated and nominated caches and only looks up IDs if possible)
            - change hibernate cache and flush modes (to avoid cache and the related slow flush), for queries and cancel of workflows
            - modified js which was making a query for each person in order to work out if they were already in a pending invites list
         32650: ALF-11872: When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
            Put back in cut off at 200 invites (removed in last merge) for UI, unless we know that we need all of them internally   
      33143: Merged BRANCHES/V3.4-TEAM to BRANCHES/DEV/V3.4-BUG-FIX
         25103: ALF-6613 - SpringSurf improvements to allow easier refactoring of Document Details page
                - removed manual request level caching of remote calls responses in web-tier components - now completely automatic
         25138: Flattening of user preferences remote calls - ensures /preferences hits the RequestCachingConnector - reduces no. of remote calls by 3 for the doclib and by 4 for a site dashboard.
      33216: Merged PATCHES/V3.4.1 to V3.4-BUG-FIX (3.4.8)
         32405: Merged V3.4.6 (3.4.6.1) to V3.4.1 (3.4.1.24)
            32404: ALF-9878 / ALF-11727 CLONE - Pending Invite Search doesn't return anything if there's more than 1000 pending invites across all sites.
               Removed read only transaction from invites.get.desc.xml as it broke InviteServiceTest testRejectInvite
            32397: ALF-9878 / ALF-11727 CLONE - Pending Invite Search doesn't return anything if there's more than 1000 pending invites across all sites.
               Return first 200 invitations (similar to 4.0 paging)
               Transaction used by the invites.get is now read only so does not force a flush of caches.   
         32503: Merged PATCHES/V3.4.6 to PATCHES/V3.4.1
            32501: ALF-9878 / ALF-11727: Reinstated read-only transaction around invites.get and prevented it from trying to lazily create persons from rejected invites that had previously been deleted by InviteHelper.cleanUpStaleInviteeResources!   
         32641: ALF-12387 / ALF-11872: Merged V3.4-BUG-FIX (3.4.8) to V3.4.1 (3.4.1.25)
               32475: ALF-11727 Improved performance of pending invites search.
         	     (N Smith changes to do with only using ONE search value - faster as multiple are taken as ORs rather than ANDs)
         32650: ALF-12387 / ALF-11872: When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
            Put back in cut off at 200 invites (removed in last merge) for UI, unless we know that we need all of them internally
         32775: ALF-12387 / ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
            Even more changes:
            - reduce number of queries required to list pending invites to a site (uses moderated and nominated caches and only looks up IDs if possible)
            - change hibernate cache and flush modes (to avoid cache and the related slow flush), for queries and cancel of workflows
            - modified js which was making a query for each person in order to work out if they were already in a pending invites list
         32838: ALF-12387 / ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         - JBPMEngine now supports batch cancelWorkflows() method for canceling multiple workflows at the same time (e.g. on deleting a site)
         - Manual flushes only used at two points in the batch to minimize dirty checking overhead and yet avoid FK errors
         - Performance implications still to be checked but at least functionally correct
         - Corrected JPDL source jar
         32857: ALF-12387 / ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
            - Search for Pending invites was slow on sites with > 0 pending invites (it was getting invites for all sites) 
         32861: ALF-12387 / ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         - JBPMEngine uses an abstract list to 'lazily' convert hibernate objects on demand and avoid batch loading too many objects
         32868: ALF-12387 / ALF-11872 When there are a lot of pending invites, deletion of a site causes high and prolonged CPU activity and can take a long time to complete
         - Rationalization of batch fetching at hibernate layer
         32881: ALF-12387 / ALF-11872: The saga goes on! Corrected empty list handling in InvitationServiceImpl.searchInvitation().
         32927: ALF-12387 / ALF-11872: Fix parameter validation in InvitationServiceImpl.getInvitationTasks()
         32936: ALF-12387 / ALF-11872: A site with 1200 pending invites can now be deleted without the UI timing out
         - Pending invitation workflows are cancelled in an asynchronous action
         - The asynchronous action completes about 3 minutes later, due to the massive number of individual delete statements being run by Hibernate
         - Creating the rows in the first place took 20 minutes!   
         32956: ALF-12387 / ALF-11872: Corrected filtering in InvitationServiceImpl.getInvitationTasks() to only include start tasks
         - plus recautionary sleep() in InviteServiceTest.tearDown() to ensure asynchronous invite deletions complete
         33169: ALF-12382 / ALF-12312 'org.hibernate.LazyInitializationException: could not initialize proxy - no Session' when clicking on a Pending Invite workflow task in JSF
            - Follow on from ALF-11872: Only use lazyloaded WorkflowTasks from JBPMEngine.getWorkflowTasks() when we are using the same session (currently
              only done from InvitationService). The fallback is to assume it is not the same session and return a normal list of Workflows.   
   33224: Fix for ALF-12230 "Bootstrap re-encryption failed"
   33225: Fix for ALF-12349 Transformations need to handle failures due to server being busy.
     Change to system behaviour:
       We want to support transient failures of thumbnail creations. Primary example now is the Polymorph Transformation Server which
       can fail transformations because it is under load and wishes to decline transform requests.
       Prior to this check-in, such failures would be interpreted by Alfresco as 'real' failures and the content node would be marked
       as FailedToTransform. The transformers' state data would also be affected by the failure.
       We need to allow transformers to fail and NOT trigger any negative consequences such as above.
     Changes in code:
     New exception type ActionServiceTransientException when thrown from an ActionExecuter will NOT trigger any compensating action that has been configured.
       This allows actions to fail 'normally' or due to some transient condition with the implication that if rerun later the action may succeed.
     Additional end-state for Actions in the ActionTrackingService: ActionStatus.Declined. The ActionExecuter has declined to execute the action at this time.
     New exception type ContentServiceTransientException which means that a content operation (currently only a transformation) has failed due to a transient condition.
       CreateThumbnailActionExecuter catches this exception type and throws the ActionServiceTransientException.
     Tests at the ActionServiceImpl, ActionTrackingServiceImpl and ThumbnailServiceImpl APIs & various test config & other changes.   
   33231: ALF-10581 - MySQLIntegrityConstraintViolationException: Cannot add or update a child row: a foreign key constraint fails ... fk_alf_cass_cnode
   - unexpected non-null child node id when creating a new node (see also THOR-906)
   - for now genericise ALF-10153 (to include at least MySQL in addition to MS SQL Server)
   33237: Fixing JUnit jar's src attachment.
   33238: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33222: ALF-12351: Separate schema descriptor files for table prefixes: alf_, avm_, JBPM_, act_
      33235: ALF-12351: Separate schema descriptor files for table prefixes: alf_, avm_, JBPM_, act_
   33239: partial fix for: ALF-10446 - Upgraded FullCalendar to support ISO8601 Zulu timezone & told it not to ignore the timezone information.
   33240: Implementation of improvement ALF-12404.
     This fix has been OK'd by Andy Hind.
   33246: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33244: ALF-12352: Add JMX support to trigger a schema check manually
   33252: Merged V3.4-BUG-FIX to V4.0-BUG-FIX (RECORD ONLY)
      33245: ALF-12366: Delete a node by deleting its row and inserting a new one with the deleted flag set
         - Forces a new ID to be generated for the deleted node
         - Makes it impossible to simultaneously delete a node and add new children in two concurrent transactions
         - Can't be merged to 4.0 due to SOLR - needs something more clever!
      33250: ALF-12366: Derek code review
   33254: Merge V3.4-BUG-FIX to V4.0 BUG-FIX
     33249 - ALF-12342 Excel 2003 Patterns.
   33256: ALF-12386 Change the simpler projects to use explicit dependencies, rather than blindly importing all of 3rd-party, to make generating downstream Maven POMs easier
   33266: ALF-12163 - mail.parameters.from does not use the from address provided
   33283: ALF-12185 SPP/Vti Mac Office checkin correction for Collaborators (Patch from Pavel Yurkevich)
   33295: Fix to SMTP authentication implementation.
   33296: Merged BRANCHES/DEV/V3.4-BUG-FIX to BRANCHES/DEV/V4.0-BUG-FIX
      33285: Fix for ALF-12336 - Share loses performance if noncachableObjectTypes are defined (page & component)
             - New and improved mechanism for dealing with cache invalidation in Share load balancing and clustering based on the Hazelcast messaging system
             - See http://www.hazelcast.com/docs.jsp - and specifically http://www.hazelcast.com/docs/1.9.4/manual/single_html/#SpringIntegration
             - Sample per node cluster config provided in custom-slingshot-application-context.xml.sample
             - Tested with an Alfresco cluster plus a Share cluster both balanced via Apache server instances
             - Significantly improved Share stability with latest SpringSurf libs and individual node performance back up to non-clustered node speed
   Modified Alfresco JLan build to use newer hazelcast JAR and also modified existing build file references to use new jar location.
   33297: Merge V3.4-BUG-FIX (3.4.8) to V4.0-BUG-FIX (4.0.1) (RECORD ONLY)
      33292: ALF-12457: Merge V3.4.4 (3.4.4.8) to V3.4-BUG-FIX (3.4.8)
         33287: ALF-12400: Merged DEV/BELARUS/V3.4-BUG-FIX-2012_01_10 to V3.4.4 (3.4.4.8)
            33284: ALF-12400 CLONE - Security risk in Web View dashlet
            The check for user role was added to Web View and Site Links dashlets to disallow to configure Web View for Consumer, Contributor, and Collaborator roles and disallow to add Site Links for Consumer role.
      33286: ALF-9514 I18N: Model constraint values need localized display names
         - Applied diff file attached to JIRA issue (with a minor compiler error correction).
           It appeared to be a merge of: DEV/SWIFT r27643, r27645, r27692, r27846 and HEAD r28405, r29364
   33298: ALF-12461 If the OOXML file contains a thumbnail image, use this for the document thumbnail, plus improve the iWorks analoguous transformer
   33305: Fix for ALF-12463 Error querying database was detected during upgrade process from 3.1 to 4.0.0.
   33306: Experiment - adding an sdk-extras target for the enterprise specific bits of the SDK.
   33308: Merged V3.4-BUG-FIX (3.4.8) to V4.0-BUG-FIX (4.0.1)
      33242: ALF-5830 show_audit.ftl template doesn't work anymore
         - ISO9075 encode the node path
      33271: ALF-9659 In auditing, nodeNameValue extractor never works on a deletion event.
         - As pre call audit is not discarded on transaction rollback, we need to be able to have access to pre call values in the post call audit application.
           One such value is the nodeName for the post call of NodeService.deleteNode()
      33274: Merged DEV to V3.4-BUG-FIX
         33273: ALF-12314: Failed to create content due to error: lockOwner is a mandatory parameter
            It is necessary to pass the correct 'lockOwner' of a rendition, for example, to use 'rr.getLockOwner()' instead of 'lockOwner'
      33277: ALF-12436: Merged PATCHES/V3.4.6 to V3.4-BUG-FIX
         33275: ALF-12426: Correction to joins in select_ContentDataByNodeIds
            - inner join to alf_node_properties first
      33279: ALF-12366: Merged PATCHES/V3.4.6 to V3.4-BUG-FIX
         33278: ALF-12393: Another indexing race condition when MySQL read committed is enabled, this time in the debug diagnostics!
      33282: Merged V3.4 to V3.4-BUG-FIX
         32979: ALF-12114: Reverse merged ALF-10282 and related changes from V3.4-BUG-FIX, which have caused serious regressions
            31840: Fix for ALF-10282 - Web Browser freezes with large xml files Web form transformation
            32341: Fix for ALF-9883 - WCM Forms: Changing 'abstract' type carries previously-added elements   
         32998: (RECORD ONLY) Merged V3.4-BUG-FIX to V3.4
            32996: ALF-12184: SchemaBootstrap must use same assumptions as PatchServiceImpl when deciding whether an alternative patch succeeded
               - Fixes regression introduced by r31972 / ALF-11489
         33084: Merged BRANCHES/DEV/BELARUS/V3.4-BUG-FIX-2011_12_06 to V3.4 (3.4.7)
            33069: ALF-12266 NPE creating content using the web form
            Locale language can be passed not only as lang_country but as only country code as well.
         33257: ALF-10340: patch.db-V2.2-CleanNodeStatuses must now have patch.db-V2.2-Upgrade-From-2.2SP1 as an alternative to allow upgrade from 2.2.8
         - That's because patch.db-V2.2-Upgrade-From-2.2SP1 exists in 2.2.8 and once run it's too late to run patch.db-V2.2-CleanNodeStatuses
         33260: Set failonany=true on distribute-installers parallel task so that the build actually fails if an installer fails to build
      33301: ALF-12464: Merged PATCHES/V3.4.5 to V3.4-BUG-FIX
         33299: ALF-12281: Memory leak in ReferenceCountingReadOnlyIndexReaderFactory
            - The diagnostic code I added to track memory leaks was actually causing some!
            - For some reason I was recording a new reference when the index reader was dereferenced rather than clearing it
            - Would affect scenarios where the main index is long-lived and there are no writes to it and lots of searches
            - Spotted by Pavel
            - Too much late night coding!
      33303: ALF-12464: Merged PATCHES/V3.4.5 to V3.4-BUG-FIX
         33302: ALF-12281: Correction to previous checkin - deal with the initial reference created by the constructor and cleared by closeIfRequired()
   33315: ALF-11214 - IMAP subsystem is not successfully restarted after incorrect modification of IMAP properties via Admin Console
   33321: Remove /hazelcast lib dir include which is no longer required as libs are now at lib root folder
   33322: ALF-2550 - Enterprise SDK files do not contain enterprise repository project.
   33323: SDK - Added Enterprise third party libs.
   33327: Merged BRANCHES/DEV/THOR1_SPRINTS to BRANCHES/DEV/V4.0-BUG-FIX:
      33324: Fix for THOR-941. Some MIME types appear as Unknown in metadata form.
   The inconsistencies in the edit mimetype form were slightly different on V4.0.1 so I tidied them up.
   33330: ALF-12487 In Mimetype Detection, if Tika detects a generic type of text/plain or XML, defer to the Alfresco filename based type (as we already do for octet stream)
   33335: Quick build fix - comment out SDK enterprise docs while I work out what's wrong.
   33353: Added more projects to Enterprise Generate Docs.
   33357: When installing a module the tool reads the war's version.properties file and will not install if the war version is outside the repoVersionMin or repoVersionMax
   33361: Merged DEV/GETHIN/FINDBUGS to V4.0-BUG-FIX
      32962: Findbugs fix: Suspicious comparison of Integer references
      32963: Findbugs fix: Call to equals() compares different types
      32968: hashcode should be hashCode
      32970: Findbugs fix: Suspicious comparison of Integer references
      32972: Findbugs fix: Suspicious comparison of Integer or Long references
      32976: Findbugs fix: .remove() incompatible with expected argument type String 
      32977: Findbugs fix:  String is incompatible with expected argument type 
      32978: Findbugs fix: Call to equals() compares different types
      I prefer this fix to the previous one I did
      32982: Findbugs fix: Call to equals() compares different types
      classDefinition.getName().equals instead of classDefinition.equals 
      32983: Findbugs fix:  String is incompatible with expected argument type java.util.Locale
      32984: Findbugs fix: An apparent infinite loop
      32985: Findbugs fix: bad month value of 12 passed to new java.util.GregorianCalendar
      This code passes a constant month value outside the expected range of 0..11 to a method.
      32986: Findbugs fix: authenticationComponent masks field from superclass
      32987: Findbugs fix: Invocation of toString on Array
      Now uses Arrays.toString()
      32988: Findbugs fix: Incorrect lazy initialization of static field
      Now uses static initialization block
      32989: Findbugs fix: Dead code: A null pointer would have been thrown before these lines
      32990: Findbugs fix: possible null pointer dereference
      Just made the code a little clearer
      32991: Findbugs fix: class defines a clone() method but the class doesn't implement Cloneable.
      32992: Findbugs fix: All equals() methods should return false if passed a null value.
      32993: Findbugs fix: Invocation of toString on Array
      Now uses Arrays.toString()
      32994: Findbugs fix: If the multiplication is done using long arithmetic, you can avoid the possibility that the result will overflow.
      33006: Findbugs fix: possible null
      Just made the code a little clearer
      33007: Findbugs fix: Invocation of toString on Array
      Now uses Arrays.toString()
      33008: Findbugs fix:  Call to String.equals(Character)
      Explicitly using String
      33009: Findbugs fix:  int converted to long and passed as absolute time to new java.util.Date(long)
      Now works after the year 2037!
      33014: Findbugs fix: Invocation of toString on Array
      Now uses Arrays.toString()
      33023: Findbugs fix: There is an apparent infinite recursive loop
      No longer
      33025: Findbugs fix: possible null
      Just made the code a little clearer
      33026: Findbugs fix: impossible null check
      Changed && to ||
      33029: Findbugs fix: Minor change to Integer.valueOf
      33126: Findbugs fix: Comparison of String objects using ==
      now used .equals
      33127: Findbugs fix: Unwritten field.  All reads of it will return the default value. 
      Now sets values in the constructor
      33128: Findbugs fix: Removed try/catch
      33129: Findbugs fix: Added an assertTrue to the unit test
      33130: Findbugs fix: Passes null for nonnull parameter
      Mocked the serviceReg and now the tests work!
      33131: Findbugs fix: Call to a collection method contains an argument with an incompatible class from that of the collection's parameter   
      33133: Findbugs fix: Deadly embrace between inner class and thread local - not eligible for garbage collection.
      Made inner class static
      33182: Findbugs fix: possible null
      Now intialises documentPaths correctly
      33184: Findbugs fix: possible null pointer (no more)
      33185: Findbugs fix: Comparison of itself
      Changed variable name to fixedValue
      33186: Findbugs fix: Possible null pointer dereference of nodePair
      Now continues
      33187: Findbugs fix: This code seems to be using non-short-circuit logic
      33188: Findbugs fix: Possible null pointer dereference of entry
      Discussed with Andy. If there's no entry then throw the exception, we can't continue
      33189: Findbugs fix: Call to a collection method contains an argument with an incompatible class from that of the collection's parameter
      It must want to remove the user
      33199: Modified the end of line character
      33209: Changed tabs for spaces
      33210: I removed the "if" because it was never called, however Brian suggested moving it to a place where it would be called!
   33363: Fix for ALF-12374 - Share sample 'share-config-custom.xml' is missing an endpoint 'activiti-admin'
   33364: Merge V3.4-BUG-FIX to V4.0-BUG-FIX
     33362 : ALF-12448 - Missing jars in enterprise SDK
   33376: Merged (RECORD ONLY) V3.4-BUG-FIX (3.4.8) to V4.0-BUG-FIX (4.0.1)
      33375: ALF-12154: Merged HEAD to V3.4-BUG-FIX (3.4.8)
         Requested to RECORD ONLY this change when merging back to HEAD/V4.0-BUG-FIX etc.
         - Removed duplicate 'List constraint display labels' values from bpm-messages*.properties and dictionarydaotest_model.properties.
           May have been introduced by ALF-9514 changes in the same area, which was also RECORD ONLY
         - Manual merge of JSON propertyLabels that exist in HEAD back into 3.4.8
         32724: OPEN : ALF-11176: Untranslated strings in Group Review and Approve Task form
         Activiti has one default transition "Next".  If there is no transition then the model builder was not finding a translation for the task outcome (and just using the english word, e.g. "Approve").  Now it looks up the translation workflowtask.outcome.[wf:outcome property]
         32943: FIXED : ALF-11176: Untranslated stings in Group Review and Approve Task form
         I've changed the way task descriptions are retrieved. You can now enter translations for them.
   33377: ALF-12509: ibooks Format
   Added quick.ibooks file
   33378: ALF-12207	IMAP: Empty file is not opened/downloaded (using IMAP Content Links) if it was uploaded to Share via fileserver
   33379: Add the TIFF mimetype
   33380: Improve the stream to Tika conversion code, following review for THOR-952
   33385: Upgrade to the latest Tika and POI, for recent bug fixes
   33387: ALF-12492 - Email with empty subject sent to Alfresco by SMTP cause Null pointer Exception
   33396: ALF-12497 - Opening and closing (not save) MS Exel 2003 file via CIFS adds new version
   33397: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33259: ALF-12354: DB2 reference files.
      33261: ALF-12354: MySQL reference files.
      33268: ALF-12354: Oracle reference files
      33310: ALF-12354: Create schema reference files for MySQL, PostgreSQL, Oracle, DB2
      33349: ALF-12354: Create schema reference files for MySQL, PostgreSQL, Oracle, DB2
      33366: ALF-12412: Schema reference files should contain schema version number
      33367: ALF-12412: Schema reference files should contain schema version number
      33373: ALF-12354: Added comment to DB2 file regarding intermittent comparison failures.
      33389: ALF-12516: Produce XML schema definition file (XSD) for schemacomp reference files.
      33390: ALF-12516: added missing file (the actual XSD!)
      33392: ALF-7260 RINF 03: Automate DB schema validation
   33401: FindFindbugs fix: Maybe Derek expected null after all
   33406: Latest SpringSurf libs - fixed use of java.util.UUID which blocks
   33407: Merged BRANCHES\DEV\V3.4-BUG-FIX to BRANCHES\DEV\V4.0-BUG-FIX
       33399: Fix for ALF-11962 Lucene queries searching on metadata (not on cm:content) with stopwords returns wrong results
   33414: ALF-11746 Webscript to expose the repository mimetypes, along with their user facing display names and their extensions
   33415: ALF-11746 Mimetype information can be available to all
   33442: Merged BRANCHES/DEV/V3.4-BUG-FIX to BRANCHES/DEV/V4.0-BUG-FIX
      33441: Latest SpringSurf libs - performance and thread safety improvements.
   33447: Fix to email test - query error exposed by recent change.
   33451: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33446: ALF-12354: fixed DB2 intermittent unique index creation problems.
      33448: ALF-7260: removed redundant code.
   33454: Merged (RECORD ONLY) V3.4-BUG-FIX (3.4.8) to V4.0-BUG-FIX (4.0.1)
      33388: Removed L10N that no longer have a default. 
      33437: ALF-9514 I18N: Model constraint values need localized display names
          - Undo changes to webclient_ja.properties that were made by r33286 for this issue.
            There were no changes in webclient.properties that did not already exist in webclient_ja.properties
            This should simplify translations.
      33453: ALF-9514 I18N: Model constraint values need localized display names
         - Tidy up mess to do with the initial r33286 revision for this issue. Lots of L10N property changes.
           I think some of my trial merges from 4.0 did not get reverted before I applied the diff file.
           Reverse merged r33437 and r33286. Note r33388 and r33375 (for ALF-12154) already included changes to try and fix the initial revision.
   33456: Merged BRANCHES/DEV/V3.4-BUG-FIX to BRANCHES/DEV/V4.0-BUG-FIX:
      33455: ALF-12410: JMX Dumps taking very long to finish
   33457: SDK build fix
   33463: Add in Enterprise Docs to SDK (again)
   33464: Merged V3.4-BUG-FIX to V4.0-BUG-FIX
      33312: ALF-12448: Merged HEAD to V3.4-BUG-FIX (3.4.8)
         33304: ALF-7542 SDK is missing spring-test.jar
            - ant script modified to copy org.springframework.test*.jar files into root\build\assemble\sdk\lib\server\dependencies   
      33382: ALF-10239 Form validation bug when content becomes invalid after XSD change
         - override isValidForSubmit function in alfresco.xforms.TextField as alfresco.xforms.Widget version does not check the max length
      33383: Fix for ALF-11791 - Multiple search on category in Share Advanced Search return no result
         Merged HEAD to BRANCHES/DEV/V3.4-BUG-FIX
            29710: SVC15: Contribution: Alfresco Share Adv Search Enhancement: Allow advanced search on category to include sub-categories in query by checking a checkbox as in Alfresco Explorer (ALF-7157)
                   A new "showSubCategoriesOption" has been added to the "category.ftl" form control, that when set to true (as shown in the example config snippet below) will display a checkbox allowing the user to request all sub categories be searched as well as the selected ones.
                     <field id="cm:categories">
                        <control>
                           <control-param name="compactMode">true</control-param>
                           <control-param name="showSubCategoriesOption">true</control-param>
                        </control>
                     </field>
            30572: Fix for ALF-7008 - Double category in Share Advanced Search return no result
      33384: Fix for ALF-12469 - Change method BaseAssociationEditor.generateFormSubmit to protected
      33400: ALF-12366: Merged PATCHES/V3.4.6 to V3.4-BUG-FIX
         33354: ALF-12393: Parent assocs must be cached with a txn ID, even when a node has no parents
            - Use left outer join in parent assocs query
         33355: ALF-12393: Fixed typo in SQL + allowed assocIndex to be null
      33413: ALF-12219: Fix CommandServlet to not mess up Document List and My Spaces List dashlets on Websphere
      33416: ALF-12411: Merged DEV to V3.4-BUG-FIX (with corrections)
         33404: Fix that introduces full Unicode character support into jBPM 3.3.1:
            - new patch that alters columns of the jBPM 3.3.1 tables to change 'TEXT' datatype to 'NVARCHAR(MAX)' (SQL Server and Generic dialects);
            - 'jbpm-upgrade.sql' patch modified to alter as in the new patch;
            - 'AlfrescoSQLServerDialect' fixed to allow create tables with 'CLOB' columns as 'NVARCHAR(MAX)' columns
            - devious chain of alternatives (suggested by Derek) introduced to make sure the right patch executes under the right circumstances
      33418: ALF-9507: Fixed possible LDAP security hole
         Now we force RFC 2254 escaping of the user DN resolution query using argument substitution, as described here   
      http://docs.oracle.com/javase/jndi/tutorial/ldap/search/search.html
      33419: ALF-9658: Corrected AFTER_INACTIVITY cache update behaviour in InMemoryTicketComponentImpl
      - Now the key is preserved on entry update and not accidentally regenerated
      33421: Merged DEV to V3.4-BUG-FIX
         32042: ALF-11448: ArrayIndexOutOfBoundsException caused by unsynchronized call in org.alfresco.repo.webdav.WebDAV.formatModifiedDate
            Creation of SimpleDateFormatter was moved to a method.
      33422: ALF-12302: /api/tags API returns badly-formed JSON
      - Resolved as suggested by MH
      33423: ALF-10312: Parameter Based Redirection
      - Now we validate that the Explorer login page redirect URL is within the context path of the application (/alfresco)
      33424: Merged DEV to V3.4-BUG-FIX
         33358: ALF-11719: Webscript fails due to colon in password
            Split basic authentication header by first colon. Remaining part is user's password.
      33425: Merged DEV to V3.4-BUG-FIX
         33359: ALF-12071: Windows 7 cannot open files stored on Alfresco mounted as a webdav network drive if the filename contains + (plus) character
            For Windows 7 we SHOULD decode the file name gotten from GET request taking into account that "+" is not encoded as "%2B" for GET request.
      33426: Merged DEV to V3.4-BUG-FIX (with corrections)
         33374: ALF-10713: Remaining dependencies repo.remote.url from outboundSMTP-context.xml and activities-feed-context.xml was removed and SysAdminParams bean was injected instead. 
            - MailActionExecuter.URLHelper returns url to alfresco using SysAdminParams.
      33427: ALF-10713: repo.remote.url no longer used in 3.4.8 so removed altogether
      33429: Merged HEAD to BRANCHES\DEV\V3.4-BUG-FIX
          31191: First fix for ALF-10741 TAG field does not support wildcard, prefix, fuzzy queries etc -> wildcard searches entered by users will fail (for ALF-12162)
      33433: ALF-12411: Fixed postUpdateScriptPatches declaration
      33435: ALF-11719: Fix Authorization and AuthorizationTest
      33436: ALF-12411: Fixed patch script paths
      33445: Fixes: ALF-12389; internationalises the tool tip strings for changing the data list sort order.
      33449: ALF-12411: Fixes from Dmitry
      - Corrected ID of patch.db-V3.4-Upgrade-JBPM
      - dependsOn property has no effect on a SchemaUpgradeScriptPatch - order controlled by schemaBootstrap.postUpdateScriptPatches   
      33459: ALF-9811: SSOAuthenticationFilter now supports basic auth as well.
   33471: ALF-12297	Emailing to document via inbound SMTP causes integrity violation
   33473: Reference schema files moved on from 5025 to 5026
   33478: Fix for ALF-12515
   33479: Fix for ALF-11116
   33481: Fix for ALF-12099
   33487: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33485: ALF-12598: Incorrect column order on indexes and primary keys must be reported to user
   33496: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33494: ALF-12412: Schema reference files should contain schema version number
   33508: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33507: ALF-12412: Added missing files
   33515: Merge (Record Only) V3.4-BUG-FIX to V4.0-BUG-FIX
     33495 : SDK Build fix - do not merge to V4.0
   33517: V4.0 version of the fix for ALF-12393
    - The node caching structure in 4.0 is version-based and there was already a check to
      ensure that in-memory vs database versions matched for all calls to get parent associations.
    - Added an additional version check for cases where the node returns no parent associations
    - Removed right outer joins associated with the 3.4 fixes (minor complexity that is no longer required)
   33555: Merged (RECORD ONLY) V3.4-BUG-FIX (3.4.8) to V4.0-BUG-FIX (4.0.1)
      33554: Merged V3.4 (3.4.8) to V3.4-BUG-FIX (3.4.9)
         33512: GERMAN: L10N Updates, fixes: ALF-12154, ALF-9514, ALF-12389
         33513: SPANISH: L10N Updates, fixes: ALF-12154, ALF-9514, ALF-12389
         33514: FRENCH: L10N Updates, fixes: ALF-12154, ALF-9514, ALF-12389
         33516: ITALIAN: L10N Updates, fixes: ALF-12154, ALF-9514, ALF-12389
         33526: JAPANESE: L10N Updates, fixes: ALF-12154, ALF-9514, ALF-12389
         33544: SPANISH: Fixes additional Spanish translation bugs
         33552: JAPANESE: Adds previously missing workflow related translations
   33560: Fix the line endings to be consistent
   33561: DOC-335 Provide a commented out example of SPP/Vti SSL Configuration in the Module
   33563: Merge (Record Only) V3.4-Bug-FIX to V4.0-BUG-FIX
     33328 : ALF-12098 Issue ALF-4010 not fully resolved. ftp transfer of a previously moved file copies it to the destination folder of the previous move
   33566: fixed a comment.
   33567: Small change to debug logging
   33568: Removed deleteConfirm flag.   Not neccessary as events are fired postCommit.
   33570: Merged V3.4-BUG-FIX to V4.0-BUG-FIX
      33550: Fixed ALF-10895 "Links, documents and folders: Unable to delete comments"
         - Made sure no "content" is sent when using HTTP DELETE to avoid proxy issues
   33574: Merged (RECORD ONLY) V3.4-BUG-FIX (3.4.8) to V4.0-BUG-FIX (4.0.1)
      33573: Merged V3.4 (3.4.8) to V3.4-BUG-FIX (3.4.9)
         33557: JAPANESE: Removes redundant string
   33576: ALF-12634 When building the edit online link to SPP/Vti, don't assume that the protocol (http/https) is the same as Share, but instead make that a module property (similar to how the port and hostname are set)
   33577: Remove un-used imports
   33584: ALF-12363: Protect against attempt to reference undefined rawPerms variable in folder-permissions WebScript controller
   33586: ALF-12405: Always show delete site icon on My Sites dashlet when viewed on IE7
   33605: Fixes: ALF-12408: Script Error when hovering on a row.
   33616: Merged BRANCHES\DEV\V3.4-BUG-FIX to BRANCHES\DEV\V4.0-BUG-FIX
       33500: Fix for ALF-12162 Searching for words with german umlaut does not show expected results
   33624: ALF-12488 - CIFS error occurs if Hazelcast Config is enabled.
   33637: ALF-11594: Disable comment field on upload dialog after version update
   33643: ALF-12243: Fixed create HTML content via HTML editor
   33649: Minor: tabs
   33650: ALF-12657: We need to set maxSavePostSize for tomcat connectors to support SSL (e.g. ModelsGet from SOLR will truncate JSON to 4096 characters)
   33662: Fix for ALF-12460
   33663: Fix for ALF-12460 (part 2)
   33664: Fix for ALF-12460 (part 2)
   33665: Fix for ALF-12443
   33672: Merged V3.4-BUG-FIX to V4.0-BUG-FIX
      33468: Merged BRANCHES/V3.4 to BRANCHES/DEV/V3.4-BUG-FIX
         33467: Enterprise overlay update for MessagesWebScript
      33470: Merged BRANCHES/V3.4 to BRANCHES/DEV/V3.4-BUG-FIX
         33469: Revert rev 33467 - not required
      33482: Fixed ALF-12373 "IE7 Specific: incorrect displaying of "Link to Rule Set" window in Alfresco Share"
      - also fixed for ie6 removed javascript error thrown on click
      33580: Minor formatting for easier debug stepping
      33581: Fixed ALF-12638: No username in an audit context after an error
      33589: ALF-12650: Merged V3.4.1 to V3.4-BUG-FIX (3.4.9)
         33588: ALF-12620 Regression. Since 3.4.1.25 / 3.4.6.7 a user can be invited to a site multiple times
            - correction to js contains function. Bug introduced in r32775
      33597: Merge DEV to V3.4-BUG-FIX
        33465 : ALF-11193 - Consumer role cannot Unscribe/subscribe the IMAP folders.
      33602: Merged BRANCHES/DEV/BELARUS/V3.4-BUG-FIX-2011_12_06 to BRANCHES/DEV/V3.4-BUG-FIX:
         32551: ALF-10133: "Doc folder" for calendar events does not clear/reset itself
      33630: Merge Dev to V3.4-BUG-FIX
         33626 : ALF-4896 - Lock icon displayed for documents with expired lock
      33633: Merge V3.4.7 (3.4.7.1) to V3.4-BUG-FIX (3.4.9)
         33609: ALF-12589 CLONE - Content Manager unable to edit content from another user sandbox - Hot Fix for 3.4.7 needed
            Changed the permissions on the user's 'preview' store so that the group of ContentManagers was granted the ContentManager permission.
            It had been granting the permission to all current users in the group individually. As a result new ContentManagers could not FLATTEN or WRITE to the preview store.
            This had already been done for the main user store a few years back.
            As the managers parameter was no longer needed the was removed.
      33647: Merged DEV to V3.4-BUG-FIX
         33629: ALF-12585: Manage System Users shows "Change Password" icon for LDAP users in search results
            Sets "isMutable" property using addPropertyResolver in UsersDialog.   
      33648: Merged DEV to V3.4-BUG-FIX
         33623: ALF-10586: CMIS: Trying to delete a multilingual document w/o translations via webscript
            There is no need to delete associations in CMISServicesImpl.deleteObject().    
      33659: Merged V3.4 to V3.4-BUG-FIX
         33594: Merged BRANCHES/DEV/BELARUS/V3.4-BUG-FIX-2011_12_06 to BRANCHES/V3.4:
            32551: ALF-10133: "Doc folder" for calendar events does not clear/reset itself
         33595: Reverse merge of the following. Should have been committed to V3.4-BUG-FIX
            33594: Merged BRANCHES/DEV/BELARUS/V3.4-BUG-FIX-2011_12_06 to BRANCHES/V3.4:
               32551: ALF-10133: "Doc folder" for calendar events does not clear/reset itself   
         33604: ALF-12597: WCMQS doesn't work out of the box
         33654: Merged DEV to V3.4
            33622: ALF-12655: Configure link isn't presented in Web View dashlet(My Dashboard page)   
               User userIsSiteManager is true by default in webview.get.js. This allows to configure Web View dashlet on user's dashbord.
            33651: ALF-12655: Configure link isn't presented in Web View dashlet(My Dashboard page)   
               Sets userIsSiteManager=false before remote call, so if remote call fails it won't give site manager role to the user.
         33655: ALF-12366: Merged PATCHES/V3.4.6 to V3.4
            33548: ALF-12393: More changes to cope with read committed DB behaviour in AbstractReindexComponent
               - Reverted r33278, 33354, 33355 and introduced more generic solution
               - NodeRefs resolving to deleted nodes in the cache cause cache cleaning and transaction retry if they resolve OK in the database
               - Cached parent assocs are thrown away for non-deleted nodes if they are empty
               - Removes the need for the outer join and special case exception handling all over the place   
            33562: ALF-12393: Further improvments
               - Lookup of NodeRef to a deleted node must always result in cache clearing and transaction retrying (due to possible read committed behaviour half way through transaction)
               - Detection and correction of stale cached negative results (VALUE_NOT_FOUND) in node cache   
            33583: ALF-12393: Rework to getNodePair(NodeRef) to have less impact on existing code but still cope with read committed
               - Look ups of deleted nodes still cause InvalidNodeRefExceptions but these have a retryable cause so that both handlers can handle and retrying transactions can recover
               - Corrections to cached negative results (because the nodesCache remembers negative results) are written straight through and the transaction does not need to be retried
      33660: Merged V3.4 to V3.4-BUG-FIX (RECORD ONLY)
         33634: ALF-12161: Merge V3.4-BUG-FIX (3.4.9) to V3.4 (3.4.8)
            33633: Merge V3.4.7 (3.4.7.1) to V3.4-BUG-FIX (3.4.9)
               33609: ALF-12589 CLONE - Content Manager unable to edit content from another user sandbox - Hot Fix for 3.4.7 needed
                  Changed the permissions on the user's 'preview' store so that the group of ContentManagers was granted the ContentManager permission.
                  It had been granting the permission to all current users in the group individually. As a result new ContentManagers could not FLATTEN or WRITE to the preview store.
                  This had already been done for the main user store a few years back.
                  As the managers parameter was no longer needed the was removed.   
         33657: ALF-12650: Merged PATCHES/V3.4.6 to V3.4
            33590: ALF-12620: Merged V3.4-BUG-FIX (3.4.9) to V3.4.6 (3.4.6.10)
               33589: ALF-12650: Merged V3.4.1 to V3.4-BUG-FIX (3.4.9)
                  33588: ALF-12620 Regression. Since 3.4.1.25 / 3.4.6.7 a user can be invited to a site multiple times
                     - correction to js contains function. Bug introduced in r32775
   33673: Fixed compilation error
   33678: Merged V3.4-BUG-FIX to V4.0-BUG-FIX
      33677: Merged V3.4 to V3.4-BUG-FIX
         33676: ALF-12436: Increase content data cache sizes to match node properties cache sizes to allow bulk loading without overflowing
   33679: Merged V3.4-BUG-FIX to V4.0-BUG-FIX (RECORD ONLY)
      33486: Merge V4.0-BUG-FIX to V3.4-BUG-FIX
        33306 - experiment to add sdk-extras
      33489: Merged V4.0-BUG-FIX to V3.4-BUG-FIX
        33322 : Enterprise SDK
        33323
        33335
        33353
        33457
        33463
      33495: SDK Build fix - do not merge to V4.0.
   33680: Merged DEV to V4.0-BUG-FIX
      33675: ALF-12379: WebLogic: alfresco fails to start: java.lang.NoSuchMethodError: org.apache.commons.lang.mutable.MutableInt.increment()V
         org.apache.commons.* package should be used as application's preferrable for WebLogic.
   33683: Merged V3.4-BUG-FIX to V4.0-BUG-FIX
      33682: Merged V3.4 to V3.4-BUG-FIX
         33681: ALF-12132: Fix Bitrock's copy of the custom lotus context. Yuck!
   33689: Fix for ALF-12437 Switching from Lucene to Solr caused subsystems to be in inconsistent state and repository to hang
   - filter out changes to read only properties when set in bulk - ie they are ignored
   33691: Fix for ALF-12667
   33693: Fix for ALF-12695 SOLR should not appear to work with AVM - it should not silently fail.
   - AVM search and indexing will raise exceptions when used with SOLR
   - removed the AVM site bootstrap associated with Share in older versions of the product.
   33701: Merged DEV to V4.0-BUG-FIX
      33697: ALF-12691: Alfresco Explorer doesn't work: java.lang.NoClassDefFoundError: org/apache/commons/lang/builder/HashCodeBuilder
         Shared library for WAS was fixed. commons-lang-2.6.jar is used.
   33704: ALF-12299 - NFS subsystem enable/disable needs a different attribute name
   33714: ALF-10229: DOS Voodoo to set ALF_HOME to the parent parent directory of the apply_amps script
   - for /D %%D IN (%~dp0..\) do set ALF_HOME=%%~dpD
   - Yuck!
   33721: Merged BRANCHES/DEV/mward/schemacomp to BRANCHES/DEV/V4.0-BUG-FIX:
      33720: Merged BRANCHES/DEV/BELARUS/V4.0-BUG-FIX-2012_01_20 to BRANCHES/DEV/mward/schemacomp:
           33631: LF-12355 : Create schema reference files for SQL Server
   33727: Test fix - fallout from removing the bootstrap for the "sitestore" AVM store
   33729: Fixes: ALF-12575 - missing i18n strings. (translations pending)
   33738: SPANISH: Translation updates based on EN r33523
   33739: Merged DEV to V4.0-BUG-FIX
      33723: ALF-10229: apply_amps.bat doesn't work properly from alfresco-enterprise-4.0.0a.zip
         Fix for apply_amps.sh to set ALF_HOME to the parent parent directory of the apply_amps script
   33746: ALF-10656 SOLR: Patches execute search during bootstrap causing deadlock 
   - Part 1: 
     - SOLR query use during bootstrap will throw an exception
     - tidy up some patch beans
     - ignore unused AVM "sitestore" in WCMPostPermissionSnapshotPatch
   33753: Remove upgrade installers from build targets
git-svn-id: https://svn.alfresco.com/repos/alfresco-enterprise/alfresco/HEAD/root@33758 c4b6b30b-aa2e-2d43-bbcb-ca4b014f7261
		
	
		
			
				
	
	
		
			1365 lines
		
	
	
		
			57 KiB
		
	
	
	
		
			Java
		
	
	
	
	
	
			
		
		
	
	
			1365 lines
		
	
	
		
			57 KiB
		
	
	
	
		
			Java
		
	
	
	
	
	
| /*
 | |
|  * Copyright (C) 2005-2010 Alfresco Software Limited.
 | |
|  *
 | |
|  * This file is part of Alfresco
 | |
|  *
 | |
|  * Alfresco is free software: you can redistribute it and/or modify
 | |
|  * it under the terms of the GNU Lesser General Public License as published by
 | |
|  * the Free Software Foundation, either version 3 of the License, or
 | |
|  * (at your option) any later version.
 | |
|  *
 | |
|  * Alfresco is distributed in the hope that it will be useful,
 | |
|  * but WITHOUT ANY WARRANTY; without even the implied warranty of
 | |
|  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 | |
|  * GNU Lesser General Public License for more details.
 | |
|  *
 | |
|  * You should have received a copy of the GNU Lesser General Public License
 | |
|  * along with Alfresco. If not, see <http://www.gnu.org/licenses/>.
 | |
|  */
 | |
| package org.alfresco.wcm.sandbox;
 | |
| 
 | |
| import java.util.ArrayList;
 | |
| import java.util.Collections;
 | |
| import java.util.Date;
 | |
| import java.util.HashMap;
 | |
| import java.util.HashSet;
 | |
| import java.util.List;
 | |
| import java.util.Map;
 | |
| import java.util.Set;
 | |
| 
 | |
| import org.alfresco.config.JNDIConstants;
 | |
| import org.alfresco.error.AlfrescoRuntimeException;
 | |
| import org.alfresco.mbeans.VirtServerRegistry;
 | |
| import org.alfresco.repo.avm.AVMNodeConverter;
 | |
| import org.alfresco.repo.avm.actions.AVMDeployWebsiteAction;
 | |
| import org.alfresco.repo.domain.PropertyValue;
 | |
| import org.alfresco.repo.security.authentication.AuthenticationUtil;
 | |
| import org.alfresco.repo.security.authentication.AuthenticationUtil.RunAsWork;
 | |
| import org.alfresco.service.cmr.avm.AVMService;
 | |
| import org.alfresco.service.cmr.avm.AVMStoreDescriptor;
 | |
| import org.alfresco.service.cmr.avm.locking.AVMLockingService;
 | |
| import org.alfresco.service.cmr.dictionary.DataTypeDefinition;
 | |
| import org.alfresco.service.cmr.repository.NodeRef;
 | |
| import org.alfresco.service.cmr.repository.NodeService;
 | |
| import org.alfresco.service.cmr.repository.StoreRef;
 | |
| import org.alfresco.service.cmr.security.AccessPermission;
 | |
| import org.alfresco.service.cmr.security.AuthorityService;
 | |
| import org.alfresco.service.cmr.security.AuthorityType;
 | |
| import org.alfresco.service.cmr.security.PermissionService;
 | |
| import org.alfresco.service.namespace.QName;
 | |
| import org.alfresco.util.DNSNameMangler;
 | |
| import org.alfresco.util.GUID;
 | |
| import org.alfresco.wcm.util.WCMUtil;
 | |
| import org.apache.commons.logging.Log;
 | |
| import org.apache.commons.logging.LogFactory;
 | |
| 
 | |
| /**
 | |
|  * Helper factory to create WCM sandbox structures
 | |
|  * 
 | |
|  * @author Kevin Roast
 | |
|  * @author janv
 | |
|  */
 | |
| public final class SandboxFactory extends WCMUtil
 | |
| {
 | |
|    private static final Set<String> ZONES; 
 | |
|     
 | |
|    public static final String[] PERMISSIONS = new String[] {
 | |
|         PermissionService.WCM_CONTENT_MANAGER, 
 | |
|         PermissionService.WCM_CONTENT_PUBLISHER,
 | |
|         PermissionService.WCM_CONTENT_CONTRIBUTOR, 
 | |
|         PermissionService.WCM_CONTENT_REVIEWER };
 | |
|     
 | |
|    private static Log logger = LogFactory.getLog(SandboxFactory.class);
 | |
|    
 | |
|    /** Services */
 | |
|    private NodeService nodeService;
 | |
|    private PermissionService permissionService;
 | |
|    private AVMService avmService;
 | |
|    private VirtServerRegistry virtServerRegistry;
 | |
|    private AuthorityService authorityService;
 | |
|    private AVMLockingService avmLockingService;
 | |
|    
 | |
|    static
 | |
|    {
 | |
|        HashSet<String> zones = new HashSet<String>(2, 1.0f);
 | |
|        zones.add(AuthorityService.ZONE_APP_WCM);
 | |
|        zones.add(AuthorityService.ZONE_AUTH_ALFRESCO);
 | |
|        ZONES = Collections.unmodifiableSet(zones);
 | |
|    }
 | |
|    
 | |
|    private final static QName PROP_SANDBOX_LOCALHOST_DEPLOYED = QName.createQName(null, ".sandbox.localhost."+AVMDeployWebsiteAction.LIVE_SUFFIX);
 | |
|    
 | |
|    public void setNodeService(NodeService nodeService)
 | |
|    {
 | |
|        this.nodeService = nodeService;
 | |
|    }
 | |
|    
 | |
|    public void setPermissionService(PermissionService permissionService)
 | |
|    {
 | |
|        this.permissionService = permissionService;
 | |
|    }
 | |
|    
 | |
|    public void setAvmService(AVMService avmService)
 | |
|    {
 | |
|        this.avmService = avmService;
 | |
|    }
 | |
|    
 | |
|    public void setVirtServerRegistry(VirtServerRegistry virtServerRegistry)
 | |
|    {
 | |
|        this.virtServerRegistry = virtServerRegistry;
 | |
|    }
 | |
|    
 | |
|    public void setAuthorityService(AuthorityService authorityService)
 | |
|    {
 | |
|        this.authorityService = authorityService;
 | |
|    }
 | |
|    
 | |
|    public void setAvmLockingService(AVMLockingService avmLockingService)
 | |
|    {
 | |
|        this.avmLockingService = avmLockingService;
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Private constructor
 | |
|     */
 | |
|    private SandboxFactory()
 | |
|    {
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Create the staging sandbox for the named store.
 | |
|     * 
 | |
|     * A staging sandbox is comprised of two stores, the first named 'storename-staging' with a
 | |
|     * preview store named 'storename-preview' layered over the staging store.
 | |
|     * 
 | |
|     * Various store meta-data properties are set including:
 | |
|     * Identifier for store-types: .sandbox.staging.main and .sandbox.staging.preview
 | |
|     * Store-id: .sandbox-id.<guid> (unique across all stores in the sandbox)
 | |
|     * DNS: .dns.<store> = <path-to-webapps-root>
 | |
|     * Website Name: .website.name = website name
 | |
|     * 
 | |
|     * @param storeId             The store name to create the sandbox for.
 | |
|     * @param webProjectNodeRef   The noderef for the webproject.
 | |
|     * @param branchStoreId       The ID of the store to branch this staging store from.
 | |
|     */
 | |
|    public SandboxInfo createStagingSandbox(String storeId, 
 | |
|                                            NodeRef webProjectNodeRef,
 | |
|                                            String branchStoreId)
 | |
|    {
 | |
|       long start = System.currentTimeMillis();
 | |
|       
 | |
|       // create the 'staging' store for the website
 | |
|       String stagingStoreName = WCMUtil.buildStagingStoreName(storeId);
 | |
|       
 | |
|       // tag store with properties
 | |
|       Map<QName, PropertyValue> props = new HashMap<QName, PropertyValue>(3);
 | |
|       // tag the store with the store type
 | |
|       props.put(SandboxConstants.PROP_SANDBOX_STAGING_MAIN, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       props.put(SandboxConstants.PROP_WEB_PROJECT_NODE_REF, new PropertyValue(DataTypeDefinition.NODE_REF, webProjectNodeRef));
 | |
|       // tag the store with the DNS name property
 | |
|       addStoreDNSPath(stagingStoreName, props, storeId);
 | |
|       
 | |
|       avmService.createStore(stagingStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("Created staging sandbox: " + stagingStoreName);
 | |
|       }
 | |
|       
 | |
|       // we can either branch from an existing staging store or create a new structure
 | |
|       if (branchStoreId != null)
 | |
|       {
 | |
|          String branchStorePath = WCMUtil.buildStagingStoreName(branchStoreId) + ":/" +
 | |
|                                   JNDIConstants.DIR_DEFAULT_WWW;
 | |
|          avmService.createBranch(-1, branchStorePath,
 | |
|                                  stagingStoreName + ":/", JNDIConstants.DIR_DEFAULT_WWW);
 | |
|       }
 | |
|       else
 | |
|       {
 | |
|          // create the system directories 'www' and 'avm_webapps'
 | |
|          avmService.createDirectory(stagingStoreName + ":/", JNDIConstants.DIR_DEFAULT_WWW);
 | |
|          avmService.createDirectory(WCMUtil.buildStoreRootPath(stagingStoreName), 
 | |
|                                     JNDIConstants.DIR_DEFAULT_APPBASE);
 | |
|       }
 | |
|       
 | |
|       
 | |
|       // set staging area permissions
 | |
|       setStagingPermissions(storeId, webProjectNodeRef);
 | |
|       
 | |
|       // Add permissions for layers
 | |
|       
 | |
|       // snapshot the store
 | |
|       avmService.createSnapshot(stagingStoreName, null, null);
 | |
|       
 | |
|       
 | |
|       // create the 'preview' store for the website
 | |
|       String previewStoreName = WCMUtil.buildStagingPreviewStoreName(storeId);
 | |
|       
 | |
|       // tag store with properties - store type, web project DM nodeRef, DNS name
 | |
|       props = new HashMap<QName, PropertyValue>(3);
 | |
|       // tag the store with the store type
 | |
|       props.put(SandboxConstants.PROP_SANDBOX_STAGING_PREVIEW, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       // tag the store with the DNS name property
 | |
|       addStoreDNSPath(previewStoreName, props, storeId, "preview");
 | |
|       // The preview store depends on the main staging store (dist=1)
 | |
|       addStoreBackgroundLayer(props, stagingStoreName, 1);
 | |
|       
 | |
|       avmService.createStore(previewStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("Created staging preview sandbox store: " + previewStoreName +
 | |
|                       " above " + stagingStoreName);
 | |
|       }
 | |
|       
 | |
|       // create a layered directory pointing to 'www' in the staging area
 | |
|       avmService.createLayeredDirectory(WCMUtil.buildStoreRootPath(stagingStoreName), 
 | |
|                                         previewStoreName + ":/", 
 | |
|                                         JNDIConstants.DIR_DEFAULT_WWW);
 | |
|       
 | |
|       
 | |
|       // apply READ permissions for all users
 | |
|       //dirRef = AVMNodeConverter.ToNodeRef(-1, WCMUtil.buildStoreRootPath(previewStoreName));
 | |
|       //permissionService.setPermission(dirRef, PermissionService.ALL_AUTHORITIES, PermissionService.READ, true);
 | |
|       
 | |
|       // snapshot the store
 | |
|       avmService.createSnapshot(previewStoreName, null, null);
 | |
|       
 | |
|       
 | |
|       // tag all related stores to indicate that they are part of a single sandbox
 | |
|       final String sandboxGuid = GUID.generate();
 | |
|       
 | |
|       props = new HashMap<QName, PropertyValue>(2);
 | |
|       addSandboxGuid(sandboxGuid, props);
 | |
|       
 | |
|       avmService.setStoreProperties(stagingStoreName, props);
 | |
|       avmService.setStoreProperties(previewStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          dumpStoreProperties(avmService, stagingStoreName);
 | |
|          dumpStoreProperties(avmService, previewStoreName);
 | |
|       }
 | |
|       
 | |
|       SandboxInfo sbInfo =  getSandbox(stagingStoreName);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("createStagingSandbox: " + sbInfo.getSandboxId() + " in "+(System.currentTimeMillis()-start)+" ms");
 | |
|       }
 | |
|       
 | |
|       return sbInfo;
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Get sandbox info for given sandbox store id
 | |
|     * 
 | |
|     * @param sandboxId
 | |
|     * @return SandboxInfo returns sandbox info or null if sandbox does not exist or is not visible
 | |
|     */
 | |
|    /* package */ SandboxInfo getSandbox(String sandboxId)
 | |
|    {
 | |
|        String wpStoreId = WCMUtil.getWebProjectStoreId(sandboxId);
 | |
|        
 | |
|        return getSandbox(wpStoreId, sandboxId, true);
 | |
|    }
 | |
|    
 | |
|    private SandboxInfo getSandbox(String wpStoreId, String sandboxId, boolean withPreview)
 | |
|    {
 | |
|        AVMStoreDescriptor storeDesc = avmService.getStore(sandboxId);
 | |
|        if (storeDesc == null)
 | |
|        {
 | |
|            return null;
 | |
|        }
 | |
|        
 | |
|        String[] storeNames = null;
 | |
|        
 | |
|        // Check sandbox type
 | |
|        Map<QName, PropertyValue> props = avmService.getStoreProperties(sandboxId);
 | |
|        QName sandboxType = null;
 | |
|        
 | |
|        // derive name for now
 | |
|        String name = null;
 | |
|        
 | |
|        String previewSandboxId = null;
 | |
|        if (withPreview && (! WCMUtil.isPreviewStore(sandboxId)))
 | |
|        {
 | |
|            previewSandboxId = WCMUtil.getCorrespondingPreviewStoreName(sandboxId);
 | |
|        }
 | |
|        
 | |
|        if (props.containsKey(SandboxConstants.PROP_SANDBOX_STAGING_MAIN))
 | |
|        {
 | |
|            sandboxType = SandboxConstants.PROP_SANDBOX_STAGING_MAIN;
 | |
|            name = sandboxId;
 | |
|            storeNames = new String[] {sandboxId, previewSandboxId};
 | |
|        }
 | |
|        else if ( props.containsKey( SandboxConstants.PROP_SANDBOX_STAGING_PREVIEW))
 | |
|        {
 | |
|            sandboxType = SandboxConstants.PROP_SANDBOX_STAGING_PREVIEW;
 | |
|            storeNames = new String[] {WCMUtil.getCorrespondingMainStoreName(sandboxId), sandboxId};
 | |
|        }
 | |
|        else if (props.containsKey(SandboxConstants.PROP_SANDBOX_AUTHOR_MAIN))
 | |
|        {
 | |
|            sandboxType = SandboxConstants.PROP_SANDBOX_AUTHOR_MAIN;
 | |
|            name = WCMUtil.getUserName(sandboxId);
 | |
|            storeNames = new String[] {sandboxId, previewSandboxId};
 | |
|        } 
 | |
|        else if (props.containsKey(SandboxConstants.PROP_SANDBOX_AUTHOR_PREVIEW))
 | |
|        {
 | |
|            sandboxType = SandboxConstants.PROP_SANDBOX_AUTHOR_PREVIEW;
 | |
|            name = WCMUtil.getUserName(sandboxId);
 | |
|            storeNames = new String[] {WCMUtil.getCorrespondingMainStoreName(sandboxId), sandboxId};
 | |
|        }
 | |
|        else if (props.containsKey(SandboxConstants.PROP_SANDBOX_WORKFLOW_MAIN))
 | |
|        {
 | |
|            sandboxType = SandboxConstants.PROP_SANDBOX_WORKFLOW_MAIN;
 | |
|            name = WCMUtil.getWorkflowId(sandboxId);
 | |
|            storeNames = new String[] {sandboxId, previewSandboxId};
 | |
|        }
 | |
|        else if (props.containsKey(SandboxConstants.PROP_SANDBOX_WORKFLOW_PREVIEW))
 | |
|        {
 | |
|            sandboxType = SandboxConstants.PROP_SANDBOX_WORKFLOW_PREVIEW;
 | |
|            name = WCMUtil.getWorkflowId(sandboxId);
 | |
|            storeNames = new String[] {WCMUtil.getCorrespondingMainStoreName(sandboxId), sandboxId};
 | |
|        }
 | |
|        else if (props.containsKey(SandboxConstants.PROP_SANDBOX_AUTHOR_WORKFLOW_MAIN))
 | |
|        {
 | |
|           sandboxType = SandboxConstants.PROP_SANDBOX_AUTHOR_WORKFLOW_MAIN;
 | |
|           name = WCMUtil.getWorkflowId(sandboxId);
 | |
|           storeNames = new String[] {sandboxId, previewSandboxId};
 | |
|        }
 | |
|        else if (props.containsKey(SandboxConstants.PROP_SANDBOX_AUTHOR_WORKFLOW_PREVIEW))
 | |
|        {
 | |
|           sandboxType = SandboxConstants.PROP_SANDBOX_AUTHOR_WORKFLOW_PREVIEW;
 | |
|           name = WCMUtil.getWorkflowId(sandboxId);
 | |
|        }
 | |
|        else if (WCMUtil.isLocalhostDeployedStore(wpStoreId, sandboxId))
 | |
|        {
 | |
|            // TODO refactor - pending explicit WCM services support for deployment config
 | |
|            sandboxType = PROP_SANDBOX_LOCALHOST_DEPLOYED;
 | |
|            name = sandboxId;
 | |
|            storeNames = new String[] {sandboxId};
 | |
|        }
 | |
|        
 | |
|        if ((storeNames == null) || (storeNames.length == 0))
 | |
|        {
 | |
|            throw new AlfrescoRuntimeException("Must have at least one store");
 | |
|        }
 | |
|        
 | |
|        if ((storeNames.length == 1) && 
 | |
|            ((! sandboxType.equals(SandboxConstants.PROP_SANDBOX_STAGING_MAIN)) && (! sandboxType.equals(PROP_SANDBOX_LOCALHOST_DEPLOYED))))
 | |
|        {
 | |
|            throw new AlfrescoRuntimeException("Main store must be of type: " + SandboxConstants.PROP_SANDBOX_STAGING_MAIN);
 | |
|        }
 | |
| 
 | |
|        return new SandboxInfoImpl(wpStoreId, sandboxId, sandboxType, name, storeNames, new Date(storeDesc.getCreateDate()), storeDesc.getCreator());
 | |
|    }
 | |
| 
 | |
|    private void setStagingPermissions(String storeId, NodeRef wpNodeRef)
 | |
|    {
 | |
|        String storeName = WCMUtil.buildStagingStoreName(storeId);
 | |
|        NodeRef dirRef = AVMNodeConverter.ToNodeRef(-1, WCMUtil.buildStoreRootPath(storeName));
 | |
| 
 | |
|        makeGroupsIfRequired(storeName, dirRef);
 | |
|        // Apply specific user permissions as set on the web project
 | |
|        // All these will be masked out
 | |
|       
 | |
|        Map<String, String> userRoles = WCMUtil.listWebUsers(nodeService, wpNodeRef);
 | |
| 
 | |
|        for (Map.Entry<String, String> userRole : userRoles.entrySet())
 | |
|        {
 | |
|            String username = userRole.getKey();
 | |
|            String userrole = userRole.getValue();
 | |
|       
 | |
|            // permissionService.setPermission(dirRef, username, userrole, true);
 | |
|            addToGroupIfRequired(storeName, username, userrole);
 | |
|        }
 | |
| 
 | |
|        // Add group permissions
 | |
|        for (String permission : PERMISSIONS)
 | |
|        {
 | |
|            String cms = authorityService.getName(AuthorityType.GROUP, storeName + "-" + permission);
 | |
|            permissionService.setPermission(dirRef, cms, permission, true);
 | |
|        }
 | |
| 
 | |
|        // TODO: does everyone get read writes?
 | |
|        permissionService.setPermission(dirRef, PermissionService.ALL_AUTHORITIES, PermissionService.READ, true);
 | |
|    }
 | |
|    
 | |
|    private void makeGroupsIfRequired(final String stagingStoreName, final NodeRef dirRef)
 | |
|    {
 | |
|        AuthenticationUtil.runAs(new RunAsWork<Object>(){
 | |
| 
 | |
|            public Object doWork() throws Exception
 | |
|            {
 | |
|                for (String permission : PERMISSIONS)
 | |
|                {
 | |
|                    String shortName = stagingStoreName + "-" + permission;
 | |
|                    String group = authorityService.getName(AuthorityType.GROUP, shortName);
 | |
|                    if (!authorityService.authorityExists(group))
 | |
|                    {
 | |
|                        authorityService.createAuthority(AuthorityType.GROUP, shortName, shortName, ZONES);
 | |
|                    }
 | |
|                    if (!isPermissionSet(dirRef, group, permission))
 | |
|                    {
 | |
|                        permissionService.setPermission(dirRef, group, permission, true);
 | |
|                    }
 | |
|                }
 | |
|                return null;
 | |
|            }}, AuthenticationUtil.getSystemUserName());
 | |
|    }
 | |
| 
 | |
|    private boolean isPermissionSet(NodeRef nodeRef, String authority, String permission)
 | |
|    {
 | |
|        Set<AccessPermission> set = permissionService.getAllSetPermissions(nodeRef);
 | |
|        for (AccessPermission ap : set)
 | |
|        {
 | |
|            if (ap.getAuthority().equals(authority) && ap.isSetDirectly() && ap.getPermission().equals(permission))
 | |
|            {
 | |
|                return true;
 | |
|            }
 | |
|        }
 | |
|        return false;
 | |
|    }
 | |
| 
 | |
|    private void addToGroupIfRequired(final String stagingStoreName, final String user, final String permission)
 | |
|    {
 | |
|        AuthenticationUtil.runAs(new RunAsWork<Object>(){
 | |
| 
 | |
|            public Object doWork() throws Exception
 | |
|            {
 | |
|                String shortName = stagingStoreName + "-" + permission;
 | |
|                String group = authorityService.getName(AuthorityType.GROUP, shortName);
 | |
|                if (!authorityService.authorityExists(group))
 | |
|                {
 | |
|                    authorityService.createAuthority(AuthorityType.GROUP, shortName, shortName, ZONES);
 | |
|                }
 | |
|                Set<String> members = authorityService.getContainedAuthorities(AuthorityType.USER, group, true);
 | |
|                if (!members.contains(user))
 | |
|                {
 | |
|                    authorityService.addAuthority(group, user);
 | |
|                }
 | |
|                return null;
 | |
|            }}, AuthenticationUtil.getSystemUserName());
 | |
|        
 | |
|    }
 | |
| 
 | |
|    private void removeFromGroupIfRequired(final String stagingStoreName, final String user, final String permission)
 | |
|    {
 | |
|        AuthenticationUtil.runAs(new RunAsWork<Object>(){
 | |
| 
 | |
|            public Object doWork() throws Exception
 | |
|            {
 | |
|                String shortName = stagingStoreName + "-" + permission;
 | |
|                String group = authorityService.getName(AuthorityType.GROUP, shortName);
 | |
|                if (authorityService.authorityExists(group))
 | |
|                {
 | |
|                    Set<String> members = authorityService.getContainedAuthorities(AuthorityType.USER, group, true);
 | |
|                    if (members.contains(user))
 | |
|                    {
 | |
|                        authorityService.removeAuthority(group, user);
 | |
|                    }
 | |
|                }
 | |
|                return null;
 | |
|            }}, AuthenticationUtil.getSystemUserName());
 | |
|    }
 | |
| 
 | |
|    private boolean isMaskSet(StoreRef storeRef, String authority, String permission)
 | |
|    {
 | |
|        Set<AccessPermission> set = permissionService.getAllSetPermissions(storeRef);
 | |
|        for (AccessPermission ap : set)
 | |
|        {
 | |
|            if (ap.getAuthority().equals(authority) && ap.isSetDirectly() && ap.getPermission().equals(permission))
 | |
|            {
 | |
|                return true;
 | |
|            }
 | |
|        }
 | |
|        return false;
 | |
|    }
 | |
|    
 | |
|    public void setStagingPermissionMasks(String storeId)
 | |
|    {
 | |
|       String storeName = WCMUtil.buildStagingStoreName(storeId);
 | |
|       NodeRef dirRef = AVMNodeConverter.ToNodeRef(-1, WCMUtil.buildStoreRootPath(storeName));
 | |
|       
 | |
|       // Set store permission masks
 | |
|       String currentUser = AuthenticationUtil.getFullyAuthenticatedUser();
 | |
|       addToGroupIfRequired(storeName, currentUser, PermissionService.WCM_CONTENT_MANAGER);
 | |
| 
 | |
|       String cms = authorityService.getName(AuthorityType.GROUP, storeName + "-" + PermissionService.WCM_CONTENT_MANAGER);
 | |
|        
 | |
|       // read early or the mask prevents access...
 | |
|       boolean setReadPermissions = !isMaskSet(dirRef.getStoreRef(), cms, PermissionService.READ_PERMISSIONS);
 | |
|        
 | |
|       if (!isMaskSet(dirRef.getStoreRef(), cms, PermissionService.CHANGE_PERMISSIONS))
 | |
|       {
 | |
|           permissionService.setPermission(dirRef.getStoreRef(), cms, PermissionService.CHANGE_PERMISSIONS, true);
 | |
|       }
 | |
| 
 | |
|       if (setReadPermissions)
 | |
|       {
 | |
|           permissionService.setPermission(dirRef.getStoreRef(), cms, PermissionService.READ_PERMISSIONS, true);
 | |
|       }
 | |
| 
 | |
|       if (!isMaskSet(dirRef.getStoreRef(), PermissionService.ALL_AUTHORITIES, PermissionService.READ))
 | |
|       {
 | |
|           permissionService.setPermission(dirRef.getStoreRef(), PermissionService.ALL_AUTHORITIES, PermissionService.READ, true);
 | |
|       }
 | |
|    }
 | |
| 
 | |
|    /*
 | |
|    private Set<String> getGroupMembers(String stagingStoreName, String permission)
 | |
|    {
 | |
|        String shortName = stagingStoreName + "-" + permission;
 | |
|        String group = authorityService.getName(AuthorityType.GROUP, shortName);
 | |
|        Set<String> members = authorityService.getContainedAuthorities(AuthorityType.USER, group, true);
 | |
|        return members;
 | |
| 
 | |
|    }
 | |
|    */
 | |
|    
 | |
|    private void updateStagingAreaManagers(String storeId, final List<String> managers)
 | |
|    {
 | |
|        // The stores have the mask set in updateSandboxManagers
 | |
|        String storeName = WCMUtil.buildStagingStoreName(storeId);
 | |
| 
 | |
|        // Set<String> existingMembers = getGroupMembers(storeName, PermissionService.WCM_CONTENT_MANAGER);
 | |
|        
 | |
|        String shortName = storeName + "-" + PermissionService.WCM_CONTENT_MANAGER;
 | |
|        String group = authorityService.getName(AuthorityType.GROUP, shortName);
 | |
|        Set<String> members = authorityService.getContainedAuthorities(AuthorityType.USER, group, true);
 | |
|        Set<String> toRemove = new HashSet<String>(members);
 | |
| 
 | |
|        for (String manager : managers)
 | |
|        {
 | |
|            addToGroupIfRequired(storeName, manager, PermissionService.WCM_CONTENT_MANAGER);
 | |
|            toRemove.remove(manager);
 | |
|        }
 | |
| 
 | |
|        for (String remove : toRemove)
 | |
|        {
 | |
|            removeFromGroupIfRequired(storeName, remove, PermissionService.WCM_CONTENT_MANAGER);
 | |
|        }
 | |
|    }
 | |
|    
 | |
|    public void addStagingAreaUser(String storeId, String authority, String role)
 | |
|    {
 | |
|        // The stores have the mask set in updateSandboxManagers
 | |
|        
 | |
|        //String storeName = WCMUtil.buildStagingStoreName(storeId);
 | |
|        //NodeRef dirRef = AVMNodeConverter.ToNodeRef(-1, WCMUtil.buildStoreRootPath(storeName));
 | |
| 
 | |
|        addToGroupIfRequired(storeId, authority, role);
 | |
|        // permissionService.setPermission(dirRef, authority, role, true);
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Create a user sandbox for the named store.
 | |
|     * 
 | |
|     * A user sandbox is comprised of two stores, the first 
 | |
|     * named 'storename--username' layered over the staging store with a preview store 
 | |
|     * named 'storename--username--preview' layered over the main store.
 | |
|     * 
 | |
|     * Various store meta-data properties are set including:
 | |
|     * Identifier for store-types: .sandbox.author.main and .sandbox.author.preview
 | |
|     * Store-id: .sandbox-id.<guid> (unique across all stores in the sandbox)
 | |
|     * DNS: .dns.<store> = <path-to-webapps-root>
 | |
|     * Website Name: .website.name = website name
 | |
|     * 
 | |
|     * @param storeId    The store id to create the sandbox for
 | |
|     * @param username   Username of the user to create the sandbox for
 | |
|     * @param role       Role permission for the user
 | |
|     * @return           Summary information regarding the sandbox
 | |
|     */
 | |
|    public SandboxInfo createUserSandbox(String storeId, 
 | |
|                                         String username, 
 | |
|                                         String role)
 | |
|    {
 | |
|       long start = System.currentTimeMillis();
 | |
|       
 | |
|       // create the user 'main' store
 | |
|       String userStoreName    = WCMUtil.buildUserMainStoreName(storeId, username);
 | |
|       String previewStoreName = WCMUtil.buildUserPreviewStoreName(storeId, username);
 | |
|       
 | |
|       SandboxInfo userSandboxInfo = getSandbox(userStoreName);
 | |
|       if (userSandboxInfo != null)
 | |
|       {
 | |
|           if (logger.isTraceEnabled())
 | |
|           {
 | |
|              logger.trace("Not creating author sandbox as it already exists: " + userStoreName);
 | |
|           }
 | |
|           return userSandboxInfo;
 | |
|       }
 | |
|       
 | |
|       final String sandboxGuid = GUID.generate();
 | |
|       
 | |
|       String stagingStoreName = WCMUtil.buildStagingStoreName(storeId);
 | |
|       
 | |
|       // tag store with properties
 | |
|       Map<QName, PropertyValue> props = new HashMap<QName, PropertyValue>(6);
 | |
|       // tag the store with the store type
 | |
|       props.put(SandboxConstants.PROP_SANDBOX_AUTHOR_MAIN, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       // tag the store with the base name of the website so that corresponding staging areas can be found.
 | |
|       props.put(SandboxConstants.PROP_WEBSITE_NAME, new PropertyValue(DataTypeDefinition.TEXT, storeId));
 | |
|       
 | |
|       // tag the store, oddly enough, with its own store name for querying.
 | |
|       addSandboxPrefix(userStoreName, props);
 | |
|       // tag all related stores to indicate that they are part of a single sandbox
 | |
|       addSandboxGuid(sandboxGuid, props);
 | |
|       // tag the store with the DNS name property
 | |
|       addStoreDNSPath(userStoreName, props, storeId, WCMUtil.escapeStoreNameComponent(username));
 | |
|       // The user store depends on the main staging store (dist=1)
 | |
|       addStoreBackgroundLayer(props, stagingStoreName, 1);
 | |
|       
 | |
|       avmService.createStore(userStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("Created user sandbox: " + userStoreName + " above staging store " + stagingStoreName);
 | |
|       }
 | |
|       
 | |
|       // create a layered directory pointing to 'www' in the staging area
 | |
|       avmService.createLayeredDirectory(WCMUtil.buildStoreRootPath(stagingStoreName), 
 | |
|                                         userStoreName + ":/", 
 | |
|                                         JNDIConstants.DIR_DEFAULT_WWW);
 | |
|       NodeRef dirRef = AVMNodeConverter.ToNodeRef(-1, WCMUtil.buildStoreRootPath(userStoreName));
 | |
|       
 | |
|       // Apply access mask to the store (ACls are applie to the staging area)
 | |
|       
 | |
|       // apply the user role permissions to the sandbox
 | |
|       String currentUser = AuthenticationUtil.getFullyAuthenticatedUser();
 | |
|       // permissionService.setPermission(dirRef.getStoreRef(), currentUser, AVMUtil.ROLE_CONTENT_MANAGER, true);
 | |
|       addToGroupIfRequired(stagingStoreName, currentUser, PermissionService.WCM_CONTENT_MANAGER);
 | |
|       String cms = authorityService.getName(AuthorityType.GROUP, stagingStoreName + "-" + PermissionService.WCM_CONTENT_MANAGER);
 | |
|       permissionService.setPermission(dirRef.getStoreRef(), cms, PermissionService.WCM_CONTENT_MANAGER, true);
 | |
|       
 | |
|       permissionService.setPermission(dirRef.getStoreRef(), username, PermissionService.ALL_PERMISSIONS, true);
 | |
|       permissionService.setPermission(dirRef.getStoreRef(), PermissionService.ALL_AUTHORITIES, PermissionService.READ, true);
 | |
|       
 | |
|       // snapshot the store
 | |
|       avmService.createSnapshot(userStoreName, null, null);
 | |
|       
 | |
|       // tag store with properties
 | |
|       props = new HashMap<QName, PropertyValue>(6);
 | |
|       // tag the store with the store type
 | |
|       props.put(SandboxConstants.PROP_SANDBOX_AUTHOR_PREVIEW, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       // tag the store with its own store name for querying.
 | |
|       props.put(QName.createQName(null, SandboxConstants.PROP_SANDBOX_STORE_PREFIX + previewStoreName), new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       
 | |
|       // tag all related stores to indicate that they are part of a single sandbox
 | |
|       addSandboxGuid(sandboxGuid, props);
 | |
|       // tag the store with the DNS name property
 | |
|       addStoreDNSPath(previewStoreName, props, storeId, username, "preview");
 | |
|       // The preview user store depends on the main user store (dist=1)
 | |
|       addStoreBackgroundLayer(props, userStoreName, 1);
 | |
|       // The preview user store depends on the main staging store (dist=2)
 | |
|       addStoreBackgroundLayer(props, stagingStoreName, 2);
 | |
|       
 | |
|       // create the user 'preview' store
 | |
|       avmService.createStore(previewStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("Created user preview sandbox store: " + previewStoreName +
 | |
|                       " above " + userStoreName);
 | |
|       }
 | |
|       
 | |
|       // create a layered directory pointing to 'www' in the user 'main' store
 | |
|       avmService.createLayeredDirectory(WCMUtil.buildStoreRootPath(userStoreName), 
 | |
|                                         previewStoreName + ":/", 
 | |
|                                         JNDIConstants.DIR_DEFAULT_WWW);
 | |
|       dirRef = AVMNodeConverter.ToNodeRef(-1, WCMUtil.buildStoreRootPath(previewStoreName));
 | |
|       
 | |
|       // Apply access mask to the store (ACls are applied to the staging area)
 | |
|       
 | |
|       // apply the user role permissions to the sandbox
 | |
|       permissionService.setPermission(dirRef.getStoreRef(), cms, PermissionService.WCM_CONTENT_MANAGER, true);
 | |
|       permissionService.setPermission(dirRef.getStoreRef(), username, PermissionService.ALL_PERMISSIONS, true);
 | |
|       permissionService.setPermission(dirRef.getStoreRef(), PermissionService.ALL_AUTHORITIES, PermissionService.READ, true);
 | |
|       
 | |
|       // snapshot the store
 | |
|       avmService.createSnapshot(previewStoreName, null, null);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          dumpStoreProperties(avmService, userStoreName);
 | |
|          dumpStoreProperties(avmService, previewStoreName);
 | |
|       }
 | |
|       
 | |
|       SandboxInfo sbInfo =  getSandbox(userStoreName);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("createUserSandbox: " + sbInfo.getSandboxId() + " in "+(System.currentTimeMillis()-start)+" ms");
 | |
|       }
 | |
|       
 | |
|       return sbInfo;
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Create a workflow sandbox for the named store.
 | |
|     * 
 | |
|     * Various store meta-data properties are set including:
 | |
|     * Identifier for store-types: .sandbox.workflow.main and .sandbox.workflow.preview
 | |
|     * Store-id: .sandbox-id.<guid> (unique across all stores in the sandbox)
 | |
|     * DNS: .dns.<store> = <path-to-webapps-root>
 | |
|     * Website Name: .website.name = website name
 | |
|     * 
 | |
|     * @param storeId The id of the store to create a sandbox for
 | |
|     * @return Information about the sandbox
 | |
|     */
 | |
|    public SandboxInfo createWorkflowSandbox(final String storeId)
 | |
|    {
 | |
|       long start = System.currentTimeMillis();
 | |
|       
 | |
|       String stagingStoreName = WCMUtil.buildStagingStoreName(storeId);
 | |
|       
 | |
|       // create the workflow 'main' store
 | |
|       String packageName = WCMUtil.STORE_WORKFLOW + "-" + GUID.generate();
 | |
|       String mainStoreName = WCMUtil.buildWorkflowMainStoreName(storeId, packageName);
 | |
|       
 | |
|       final String sandboxGuid = GUID.generate();
 | |
|       
 | |
|       // tag store with properties
 | |
|       Map<QName, PropertyValue> props = new HashMap<QName, PropertyValue>(6);
 | |
|       // tag the store with the store type
 | |
|       props.put(SandboxConstants.PROP_SANDBOX_WORKFLOW_MAIN, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       // tag the store with the base name of the website so that corresponding staging areas can be found.
 | |
|       props.put(SandboxConstants.PROP_WEBSITE_NAME, new PropertyValue(DataTypeDefinition.TEXT, storeId));
 | |
|       
 | |
|       // tag the store, oddly enough, with its own store name for querying.
 | |
|       addSandboxPrefix(mainStoreName, props);
 | |
|       // tag all related stores to indicate that they are part of a single sandbox
 | |
|       addSandboxGuid(sandboxGuid, props);
 | |
|       // tag the store with the DNS name property
 | |
|       addStoreDNSPath(mainStoreName, props, storeId, packageName);
 | |
|       // The main workflow store depends on the main staging store (dist=1)
 | |
|       addStoreBackgroundLayer(props, stagingStoreName, 1);
 | |
|       
 | |
|       avmService.createStore(mainStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("Created workflow sandbox store: " + mainStoreName);
 | |
|       }
 | |
|       
 | |
|       // create a layered directory pointing to 'www' in the staging area
 | |
|       avmService.createLayeredDirectory(WCMUtil.buildStoreRootPath(stagingStoreName), 
 | |
|                                         mainStoreName + ":/", 
 | |
|                                         JNDIConstants.DIR_DEFAULT_WWW);
 | |
|       
 | |
|       // snapshot the store
 | |
|       avmService.createSnapshot(mainStoreName, null, null);
 | |
|       
 | |
|       // create the workflow 'preview' store
 | |
|       final String previewStoreName = WCMUtil.buildWorkflowPreviewStoreName(storeId, packageName);
 | |
|       
 | |
|       // tag store with properties
 | |
|       props = new HashMap<QName, PropertyValue>(6);
 | |
|       // tag the store with the store type
 | |
|       props.put(SandboxConstants.PROP_SANDBOX_WORKFLOW_PREVIEW, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       // tag the store with its own store name for querying.
 | |
|       props.put(QName.createQName(null, SandboxConstants.PROP_SANDBOX_STORE_PREFIX + previewStoreName), new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       
 | |
|       // tag all related stores to indicate that they are part of a single sandbox
 | |
|       addSandboxGuid(sandboxGuid, props);
 | |
|       
 | |
|       // tag the store with the DNS name property
 | |
|       addStoreDNSPath(previewStoreName, props, storeId, packageName, "preview");
 | |
|       // The preview workflow store depends on the main workflow store (dist=1)
 | |
|       addStoreBackgroundLayer(props, mainStoreName, 1);
 | |
|       // The preview workflow store depends on the main staging store (dist=2)
 | |
|       addStoreBackgroundLayer(props, stagingStoreName, 2);
 | |
|       
 | |
|       avmService.createStore(previewStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("Created workflow sandbox preview store: " + previewStoreName);
 | |
|       }
 | |
|          
 | |
|       // create a layered directory pointing to 'www' in the workflow 'main' store
 | |
|       avmService.createLayeredDirectory(WCMUtil.buildStoreRootPath(mainStoreName), 
 | |
|                                         previewStoreName + ":/", 
 | |
|                                         JNDIConstants.DIR_DEFAULT_WWW);
 | |
|       
 | |
|       // snapshot the store
 | |
|       avmService.createSnapshot(previewStoreName, null, null);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          dumpStoreProperties(avmService, mainStoreName);
 | |
|          dumpStoreProperties(avmService, previewStoreName);
 | |
|       }
 | |
|       
 | |
|       SandboxInfo sbInfo =  getSandbox(mainStoreName);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("createWorkflowSandbox: " + sbInfo.getSandboxId() + " in "+(System.currentTimeMillis()-start)+" ms");
 | |
|       }
 | |
|       
 | |
|       return sbInfo;
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Create a read-only workflow sandbox for the named store.
 | |
|     * 
 | |
|     * Note: read-only means it's only safe to use in a workflow where the sandbox
 | |
|     *       is not expected to be updated.  The sandbox does not protected itself
 | |
|     *       from writes.
 | |
|     * 
 | |
|     * Note: this sandbox does not support the preview layer
 | |
|     * Note: a snapshot within this sandbox is NOT taken
 | |
|     * 
 | |
|     * Various store meta-data properties are set including:
 | |
|     * Identifier for store-types: .sandbox.workflow.main and .sandbox.workflow.preview
 | |
|     * Store-id: .sandbox-id.<guid> (unique across all stores in the sandbox)
 | |
|     * DNS: .dns.<store> = <path-to-webapps-root>
 | |
|     * Website Name: .website.name = website name
 | |
|     * 
 | |
|     * @param storeId The id of the store to create a sandbox for
 | |
|     * @return Information about the sandbox
 | |
|     */
 | |
|    public SandboxInfo createReadOnlyWorkflowSandbox(final String storeId)
 | |
|    {
 | |
|       long start = System.currentTimeMillis();
 | |
|        
 | |
|       String wpStoreId = WCMUtil.getWebProjectStoreId(storeId);
 | |
|       String stagingStoreName = WCMUtil.buildStagingStoreName(storeId);
 | |
|       
 | |
|       // create the workflow 'main' store
 | |
|       String packageName = WCMUtil.STORE_WORKFLOW + "-" + GUID.generate();
 | |
|       String mainStoreName = WCMUtil.buildWorkflowMainStoreName(storeId, packageName);
 | |
|       
 | |
|       final String sandboxGuid = GUID.generate();
 | |
|       
 | |
|       // tag store with properties
 | |
|       Map<QName, PropertyValue> props = new HashMap<QName, PropertyValue>(6);
 | |
|       // tag the store with the store type
 | |
|       props.put(SandboxConstants.PROP_SANDBOX_WORKFLOW_MAIN, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|       // tag the store with the base name of the website so that corresponding staging areas can be found.
 | |
|       props.put(SandboxConstants.PROP_WEBSITE_NAME, new PropertyValue(DataTypeDefinition.TEXT, storeId));
 | |
|       
 | |
|       // tag the store, oddly enough, with its own store name for querying.
 | |
|       addSandboxPrefix(mainStoreName, props);
 | |
|       // tag all related stores to indicate that they are part of a single sandbox
 | |
|       addSandboxGuid(sandboxGuid, props);
 | |
|       // tag the store with the DNS name property
 | |
|       addStoreDNSPath(mainStoreName, props, storeId, packageName);
 | |
|       // The main workflow store depends on the main staging store (dist=1)
 | |
|       addStoreBackgroundLayer(props, stagingStoreName, 1);
 | |
|       
 | |
|       avmService.createStore(mainStoreName, props);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("Created read-only workflow sandbox store: " + mainStoreName);
 | |
|       }
 | |
|       
 | |
|       // create a layered directory pointing to 'www' in the staging area
 | |
|       avmService.createLayeredDirectory(WCMUtil.buildStoreRootPath(stagingStoreName), 
 | |
|                                         mainStoreName + ":/", 
 | |
|                                         JNDIConstants.DIR_DEFAULT_WWW);
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          dumpStoreProperties(avmService, mainStoreName);
 | |
|       }
 | |
|       
 | |
|       SandboxInfo sbInfo = getSandbox(wpStoreId, mainStoreName, false); // no preview store
 | |
|       
 | |
|       if (logger.isTraceEnabled())
 | |
|       {
 | |
|          logger.trace("createReadOnlyWorkflowSandbox: " + sbInfo.getSandboxId() + " in "+(System.currentTimeMillis()-start)+" ms");
 | |
|       }
 | |
|       
 | |
|       return sbInfo;
 | |
|    }
 | |
| 
 | |
|    
 | |
|    /**
 | |
|     * Creates a workflow sandbox for the given user store. This will create a
 | |
|     * workflow sandbox layered over the user's main store.
 | |
|     * 
 | |
|     * @param stagingStore The name of the staging store the user sandbox is layered over
 | |
|     * @param userStore The name of the user store to create the workflow for
 | |
|     * @return The store name of the main store in the workflow sandbox
 | |
|     */
 | |
|    // TODO refactor AVMExpiredContentProcessor ...
 | |
|    public String createUserWorkflowSandbox(String stagingStore, String userStore)
 | |
|    {
 | |
|        long start = System.currentTimeMillis();
 | |
|        
 | |
|        // create the workflow 'main' store
 | |
|        String packageName = "workflow-" + GUID.generate();
 | |
|        String workflowStoreName = userStore + STORE_SEPARATOR + packageName;
 | |
|        
 | |
|        final String sandboxGuid = GUID.generate();
 | |
|        
 | |
|        // tag store with properties
 | |
|        Map<QName, PropertyValue> props = new HashMap<QName, PropertyValue>(7);
 | |
|        // tag the store with the store type
 | |
|        props.put(SandboxConstants.PROP_SANDBOX_AUTHOR_WORKFLOW_MAIN, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|        // tag the store with the name of the author's store this one is layered over
 | |
|        props.put(SandboxConstants.PROP_AUTHOR_NAME, new PropertyValue(DataTypeDefinition.TEXT, userStore));
 | |
|        
 | |
|        // tag the store, oddly enough, with its own store name for querying.
 | |
|        addSandboxPrefix(workflowStoreName, props);
 | |
|        // tag all related stores to indicate that they are part of a single sandbox
 | |
|        addSandboxGuid(sandboxGuid, props);
 | |
|        // tag the store with the DNS name property
 | |
|        addStoreDNSPath(workflowStoreName, props, stagingStore, packageName);
 | |
|        // the main workflow store depends on the main user store (dist=1)
 | |
|        addStoreBackgroundLayer(props, userStore, 1);
 | |
|        // The main workflow store depends on the main staging store (dist=2)
 | |
|        addStoreBackgroundLayer(props, stagingStore, 2);
 | |
|        
 | |
|        avmService.createStore(workflowStoreName, props);
 | |
|        
 | |
|        if (logger.isTraceEnabled())
 | |
|        {
 | |
|            logger.trace("Created user workflow sandbox store: " + workflowStoreName);
 | |
|        }
 | |
|         
 | |
|        // create a layered directory pointing to 'www' in the users store
 | |
|        avmService.createLayeredDirectory(
 | |
|                 userStore + ":/" + JNDIConstants.DIR_DEFAULT_WWW, 
 | |
|                 workflowStoreName + ":/", JNDIConstants.DIR_DEFAULT_WWW);
 | |
|         
 | |
|        // snapshot the store
 | |
|        avmService.createSnapshot(workflowStoreName, null, null);
 | |
|         
 | |
|        // create the workflow 'preview' store
 | |
|        String previewStoreName = workflowStoreName + STORE_SEPARATOR + "preview";
 | |
|        
 | |
|        // tag store with properties
 | |
|        props = new HashMap<QName, PropertyValue>(7);
 | |
|        // tag the store with the store type
 | |
|        props.put(SandboxConstants.PROP_SANDBOX_AUTHOR_WORKFLOW_PREVIEW, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|        // tag the store with its own store name for querying.
 | |
|        props.put(QName.createQName(null, SandboxConstants.PROP_SANDBOX_STORE_PREFIX + previewStoreName), new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|        
 | |
|        // tag all related stores to indicate that they are part of a single sandbox
 | |
|        addSandboxGuid(sandboxGuid, props);
 | |
|        // tag the store with the DNS name property
 | |
|        addStoreDNSPath(previewStoreName, props, userStore, packageName, "preview");
 | |
|        // The preview worfkflow store depends on the main workflow store (dist=1)
 | |
|        addStoreBackgroundLayer(props, workflowStoreName, 1);
 | |
|        // The preview workflow store depends on the main user store (dist=2)
 | |
|        addStoreBackgroundLayer(props, userStore, 2);
 | |
|        // The preview workflow store depends on the main staging store (dist=3)
 | |
|        addStoreBackgroundLayer(props, stagingStore, 3);
 | |
|        
 | |
|        avmService.createStore(previewStoreName, props);
 | |
|        
 | |
|        if (logger.isTraceEnabled())
 | |
|        {
 | |
|            logger.trace("Created user workflow sandbox preview store: " + previewStoreName);
 | |
|        }
 | |
|         
 | |
|        // create a layered directory pointing to 'www' in the workflow 'main' store
 | |
|        avmService.createLayeredDirectory(
 | |
|                 workflowStoreName + ":/" + JNDIConstants.DIR_DEFAULT_WWW, 
 | |
|                 previewStoreName + ":/", JNDIConstants.DIR_DEFAULT_WWW);
 | |
|        
 | |
|        // snapshot the store
 | |
|        avmService.createSnapshot(previewStoreName, null, null);
 | |
|        
 | |
|        if (logger.isTraceEnabled())
 | |
|        {
 | |
|           logger.trace("createUserWorkflowSandbox: " + workflowStoreName + " in "+(System.currentTimeMillis()-start)+" ms");
 | |
|        }
 | |
|        
 | |
|        // return the main workflow store name
 | |
|        return workflowStoreName;
 | |
|    }
 | |
|    
 | |
|    public List<SandboxInfo> listAllSandboxes(String wpStoreId)
 | |
|    {
 | |
|        return listAllSandboxes(wpStoreId, false, false);
 | |
|    }
 | |
|    
 | |
|    public List<SandboxInfo> listAllSandboxes(String wpStoreId, boolean includeWorkflowSandboxes, boolean includeLocalhostDeployed)
 | |
|    {
 | |
|        long start = System.currentTimeMillis();
 | |
|        
 | |
|        List<AVMStoreDescriptor> stores = avmService.getStores();
 | |
|        
 | |
|        List<SandboxInfo> sbInfos = new ArrayList<SandboxInfo>();
 | |
|        for (AVMStoreDescriptor store : stores)
 | |
|        {
 | |
|            String storeName = store.getName();
 | |
|            
 | |
|            // list main stores - not preview stores or workflow stores or locally deployed "live" ASR servers (LIVE or TEST)
 | |
|            if ((WCMUtil.getWebProjectStoreId(storeName).equals(wpStoreId)) &&
 | |
|                (! WCMUtil.isPreviewStore(storeName)) &&
 | |
|                ((includeLocalhostDeployed || (! WCMUtil.isLocalhostDeployedStore(wpStoreId, storeName)))) &&
 | |
|                ((includeWorkflowSandboxes || (! WCMUtil.isWorkflowStore(storeName))))
 | |
|               )
 | |
|            {
 | |
|                sbInfos.add(getSandbox(wpStoreId, storeName, true));
 | |
|            }
 | |
|        }
 | |
|        
 | |
|        if (logger.isTraceEnabled())
 | |
|        {
 | |
|           logger.trace("listAllSandboxes: " + wpStoreId + "[" + sbInfos.size() + "] in "+(System.currentTimeMillis()-start)+" ms");
 | |
|        }
 | |
|        
 | |
|        return sbInfos;
 | |
|    }
 | |
|    public void deleteSandbox(String sbStoreId)
 | |
|    {
 | |
|        deleteSandbox(sbStoreId, false);
 | |
|    }
 | |
|    
 | |
|    public void deleteSandbox(String sbStoreId, boolean isSubmitDirectWorkflowSandbox)
 | |
|    {
 | |
|        deleteSandbox(getSandbox(WCMUtil.getWebProjectStoreId(sbStoreId), sbStoreId, true), isSubmitDirectWorkflowSandbox, true);
 | |
|    }
 | |
|    
 | |
|    public void deleteSandbox(SandboxInfo sbInfo, boolean isSubmitDirectWorkflowSandbox, boolean removeLocks)
 | |
|    {
 | |
|        if (sbInfo != null)
 | |
|        {
 | |
|            long start = System.currentTimeMillis();
 | |
|            
 | |
|            String mainSandboxStore = sbInfo.getMainStoreName();
 | |
|            String wpStoreId = WCMUtil.getWebProjectStoreId(mainSandboxStore);
 | |
|            
 | |
|            // found the sandbox to remove - remove the main store (eg. user main store, staging main store, workflow main store)
 | |
|            String path = WCMUtil.buildSandboxRootPath(mainSandboxStore);
 | |
|            
 | |
|             // Notify virtualisation server about removing this sandbox.
 | |
|             //
 | |
|             // Implementation note:
 | |
|             //
 | |
|             //     Because the removal of virtual webapps in the 
 | |
|             //     virtualization server is recursive,  it only
 | |
|             //     needs to be given the name of the main store.  
 | |
|             //
 | |
|             //     This notification must occur *prior* to purging content
 | |
|             //     within the AVM because the virtualization server must list
 | |
|             //     the avm_webapps dir in each store to discover which 
 | |
|             //     virtual webapps must be unloaded.  The virtualization 
 | |
|             //     server traverses the sandbox's stores in most-to-least 
 | |
|             //     dependent order, so clients don't have to worry about
 | |
|             //     accessing a preview layer whose main layer has been torn
 | |
|             //     out from under it.
 | |
|             
 | |
|             // optimization: direct submits no longer virtualize the workflow sandbox
 | |
|             if (! isSubmitDirectWorkflowSandbox)
 | |
|             {
 | |
|                 WCMUtil.removeAllVServerWebapps(virtServerRegistry, path, true);
 | |
|             }
 | |
|             
 | |
|             // NOTE: Could use the .sandbox-id. GUID property to delete all sandboxes,
 | |
|             //       rather than assume a sandbox always had a single preview
 | |
|             //       layer attached.
 | |
|             
 | |
|             // purge stores, eg. main store followed by preview store
 | |
|             String[] avmStoreNames = sbInfo.getStoreNames();
 | |
|             
 | |
|             for (String avmStoreName : avmStoreNames)
 | |
|             {
 | |
|                 // check it exists before we try to remove it
 | |
|                 if (avmService.getStore(avmStoreName) != null)
 | |
|                 {
 | |
|                     // purge store from the system
 | |
|                     avmService.purgeStore(avmStoreName);
 | |
|                 }
 | |
|                 
 | |
|                 if (removeLocks)
 | |
|                 {
 | |
|                     Map<String, String> lockDataToMatch = Collections.singletonMap(WCMUtil.LOCK_KEY_STORE_NAME, avmStoreName);
 | |
|                     avmLockingService.removeLocks(wpStoreId, lockDataToMatch);
 | |
|                 }
 | |
|             }
 | |
|             
 | |
|             if (logger.isTraceEnabled())
 | |
|             {
 | |
|                logger.trace("deleteSandbox: " + mainSandboxStore + " in "+(System.currentTimeMillis()-start)+" ms");
 | |
|             }
 | |
|        }
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Update the permissions for the list of sandbox managers applied to a user sandbox.
 | |
|     * <p>
 | |
|     * Ensures that all managers in the list have full WRITE access to the specified user stores.
 | |
|     * 
 | |
|     * @param storeId
 | |
|     *            The store id of the sandbox to update
 | |
|     * @param managers
 | |
|     *            The list of authorities who have ContentManager role in the web project
 | |
|     */
 | |
|    public void updateSandboxManagers(final String storeId, final List<String> managers)
 | |
|    {
 | |
|        String stagingStoreName = WCMUtil.buildStagingStoreName(storeId);
 | |
| 
 | |
|        updateStagingAreaManagers(stagingStoreName, managers);
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Update the permissions for the list of sandbox managers applied to a user sandbox.
 | |
|     * <p>
 | |
|     * Ensures that all managers in the list have full WRITE access to the specified user stores.
 | |
|     * 
 | |
|     * @param storeId
 | |
|     *            The store id of the sandbox to update
 | |
|     * @param managers
 | |
|     *            The list of authorities who have ContentManager role in the web project
 | |
|     */
 | |
|    public void removeSandboxManagers(String storeId, List<String> managersToRemove)
 | |
|    {
 | |
|        removeStagingAreaManagers(storeId, managersToRemove);
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Removes the ContentManager role on staging area to ex-managers.
 | |
|     * 
 | |
|     * @param storeId            The store id of the sandbox to update
 | |
|     * @param managersToRemove   The list of authorities who have had ContentManager role in the web project
 | |
|     */
 | |
|    private void removeStagingAreaManagers(String storeId, List<String> managersToRemove)
 | |
|    {
 | |
|        String storeName = WCMUtil.buildStagingStoreName(storeId);
 | |
| 
 | |
|        for (String remove : managersToRemove)
 | |
|        {
 | |
|            removeFromGroupIfRequired(storeName, remove, PermissionService.WCM_CONTENT_MANAGER);
 | |
|        }
 | |
|    }
 | |
|    
 | |
|    public void updateSandboxRoles(final String wpStoreId, List<UserRoleWrapper> usersToUpdate, Set<String> permissionsList)
 | |
|    {
 | |
|        // walk existing user sandboxes and remove manager permissions to exclude old managers
 | |
|        List<SandboxInfo> sbInfos = listAllSandboxes(wpStoreId); // all sandboxes
 | |
|        
 | |
|        for (SandboxInfo sbInfo : sbInfos)
 | |
|        {
 | |
|            if (sbInfo.getSandboxType().equals(SandboxConstants.PROP_SANDBOX_AUTHOR_MAIN))
 | |
|            {
 | |
|                String username = sbInfo.getName();
 | |
|                updateUserSandboxRole(wpStoreId, username ,usersToUpdate, permissionsList);
 | |
|            }
 | |
|        }
 | |
|        
 | |
|        updateStagingAreaRole(wpStoreId, usersToUpdate, permissionsList);
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Updates roles on the sandbox identified by username to users from usersToUpdate list.
 | |
|     * 
 | |
|     * @param storeId            The store id of the sandbox to update
 | |
|     * @param username           Username of the user sandbox to update
 | |
|     * @param usersToUpdate      The list of users who have role changes
 | |
|     * @param permissionsList    List of permissions @see org.alfresco.web.bean.wcm.InviteWebsiteUsersWizard.getPermissionsForType(). It is not mandatory.
 | |
|     */
 | |
|    private void updateUserSandboxRole(String storeId, String username, List<UserRoleWrapper> usersToUpdate, Set<String> permissionsList)
 | |
|    {
 | |
|        final String storeName = WCMUtil.buildStagingStoreName(storeId);
 | |
| 
 | |
|        // If permissionsList is set remove all possible user permissions and set only necessary.
 | |
|        // This will fix previous wrong role changes. (paranoid)
 | |
|        // For little better performance just set permissionsList to null.
 | |
|        // But in this case it removes only previous permission.
 | |
|        if (permissionsList != null && permissionsList.size() != 0)
 | |
|        {
 | |
|            for (UserRoleWrapper user : usersToUpdate)
 | |
|            {
 | |
|                for (String permission : permissionsList)
 | |
|                {
 | |
|                    removeFromGroupIfRequired(storeName, user.getUserAuth(), permission);
 | |
|                }
 | |
| 
 | |
|                addToGroupIfRequired(storeName, user.getUserAuth(), user.getNewRole());
 | |
|            }
 | |
|        }
 | |
|        else
 | |
|        {
 | |
|            for (UserRoleWrapper user : usersToUpdate)
 | |
|            {
 | |
|                removeFromGroupIfRequired(storeName, user.getUserAuth(), user.getOldRole());
 | |
|                addToGroupIfRequired(storeName, user.getUserAuth(), user.getNewRole());
 | |
|            }
 | |
|        }
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Updates roles on staging sandbox to users from usersToUpdate list.
 | |
|     * 
 | |
|     * @param storeId            The store id of the sandbox to update
 | |
|     * @param usersToUpdate      The list of users who have role changes
 | |
|     * @param permissionsList    List of permissions @see org.alfresco.web.bean.wcm.InviteWebsiteUsersWizard.getPermissionsForType(). It is not mandatory.
 | |
|     */
 | |
|    private void updateStagingAreaRole(String storeId, List<UserRoleWrapper> usersToUpdate, Set<String> permissionsList)
 | |
|    {
 | |
|        final String storeName = WCMUtil.buildStagingStoreName(storeId);
 | |
| 
 | |
|        // If permissionsList is set remove all possible user permissions and set only necessary.
 | |
|        // This will fix previous wrong role changes. (paranoid)
 | |
|        // For little better performance just set permissionsList to null.
 | |
|        // But in this case it removes only previous permission.
 | |
|        if (permissionsList != null && permissionsList.size() != 0)
 | |
|        {
 | |
|            for (UserRoleWrapper user : usersToUpdate)
 | |
|            {
 | |
|                for (String permission : permissionsList)
 | |
|                {
 | |
|                    removeFromGroupIfRequired(storeName, user.getUserAuth(), permission);
 | |
|                }
 | |
| 
 | |
|                addToGroupIfRequired(storeName, user.getUserAuth(), user.getNewRole());
 | |
|            }
 | |
|        }
 | |
|        else
 | |
|        {
 | |
|            for (UserRoleWrapper user : usersToUpdate)
 | |
|            {
 | |
|                removeFromGroupIfRequired(storeName, user.getUserAuth(), user.getOldRole());
 | |
|                addToGroupIfRequired(storeName, user.getUserAuth(), user.getNewRole());
 | |
|            }
 | |
|        }
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     * Tag a named store with a DNS path meta-data attribute.
 | |
|     * The DNS meta-data attribute is set to the system path 'store:/www/avm_webapps'
 | |
|     * 
 | |
|     * @param store  Name of the store to tag
 | |
|     */
 | |
|    private static void addStoreDNSPath(String store, Map<QName, PropertyValue> props, String... components)
 | |
|    {
 | |
|       String path = WCMUtil.buildSandboxRootPath(store);
 | |
|       // DNS name mangle the property name - can only contain value DNS characters!
 | |
|       String dnsName = DNSNameMangler.MakeDNSName(components);
 | |
|       String dnsProp = SandboxConstants.PROP_DNS + dnsName;
 | |
|       props.put(QName.createQName(null, dnsProp), new PropertyValue(DataTypeDefinition.TEXT, path));
 | |
|    }
 | |
|    
 | |
|    /**
 | |
|     *   Tags a store with a property that indicates one of its 
 | |
|     *   backgroundStore layers, and the distance of that layer. 
 | |
|     *   This function must be called separately for each background 
 | |
|     *   store;  for example the "mysite--alice--preview" store had 
 | |
|     *   as its immediate background "mysite--alice", which itself had
 | |
|     *   as its background store "mysite", you'd make a sequence of
 | |
|     *   calls like this:
 | |
|     *
 | |
|     *   <pre>
 | |
|     *    tagStoreBackgroundLayer("mysite--alice",          "mysite",        1);
 | |
|     *    tagStoreBackgroundLayer("mysite--alice--preview", "mysite--alice", 1);
 | |
|     *    tagStoreBackgroundLayer("mysite--alice--preview", "mysite",        2);
 | |
|     *   </pre>
 | |
|     *
 | |
|     *   This make it easy for other parts of the system to determine
 | |
|     *   which stores depend on others directly or indirectly (which is
 | |
|     *   useful for reloading virtualized webapps).
 | |
|     *
 | |
|     * @param store            Name of the store to tag
 | |
|     * @param backgroundStore  Name of store's background store
 | |
|     * @param distance         Distance from store.
 | |
|     *                         The backgroundStore 'mysite' is 1 away from the store 'mysite--alice'
 | |
|     *                         but 2 away from the store 'mysite--alice--preview'.
 | |
|     */
 | |
|    private static void addStoreBackgroundLayer(Map<QName, PropertyValue> props,
 | |
|                                                String      backgroundStore, 
 | |
|                                                int         distance)
 | |
|    {
 | |
|       String prop_key = SandboxConstants.PROP_BACKGROUND_LAYER + backgroundStore;
 | |
|       props.put(QName.createQName(null, prop_key), new PropertyValue(DataTypeDefinition.INT, distance));
 | |
|    }
 | |
|    
 | |
|    private static void addSandboxGuid(String sandboxGuid, Map<QName, PropertyValue> props)
 | |
|    {
 | |
|       final QName sandboxIdProp = QName.createQName(SandboxConstants.PROP_SANDBOXID + sandboxGuid);
 | |
|       props.put(sandboxIdProp, new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|    }
 | |
|    
 | |
|    private static void addSandboxPrefix(String storeName, Map<QName, PropertyValue> props)
 | |
|    {
 | |
|       props.put(QName.createQName(null, SandboxConstants.PROP_SANDBOX_STORE_PREFIX + storeName), new PropertyValue(DataTypeDefinition.TEXT, null));
 | |
|    }
 | |
| 
 | |
| 
 | |
|    /**
 | |
|     * Debug helper method to dump the properties of a store
 | |
|     *  
 | |
|     * @param store   Store name to dump properties for
 | |
|     */
 | |
|    private static void dumpStoreProperties(AVMService avmService, String store)
 | |
|    {
 | |
|       logger.trace("Store " + store);
 | |
|       Map<QName, PropertyValue> props = avmService.getStoreProperties(store);
 | |
|       for (QName name : props.keySet())
 | |
|       {
 | |
|          logger.trace("   " + name + ": " + props.get(name));
 | |
|       }
 | |
|    }
 | |
|    
 | |
|    public class UserRoleWrapper
 | |
|    {
 | |
|        private String newRole;
 | |
|        private String oldRole;
 | |
|        private String userAuth;
 | |
| 
 | |
|        public UserRoleWrapper(String userAuth, String oldRole, String newRole)
 | |
|        {
 | |
|            this.userAuth = userAuth;
 | |
|            this.oldRole = oldRole;
 | |
|            this.newRole = newRole;
 | |
|        }
 | |
|        
 | |
|        public String getNewRole()
 | |
|        {
 | |
|            return newRole;
 | |
|        }
 | |
|        public void setNewRole(String newRole)
 | |
|        {
 | |
|            this.newRole = newRole;
 | |
|        }
 | |
|        public String getOldRole()
 | |
|        {
 | |
|            return oldRole;
 | |
|        }
 | |
|        public void setOldRole(String oldRole)
 | |
|        {
 | |
|            this.oldRole = oldRole;
 | |
|        }
 | |
|        public String getUserAuth()
 | |
|        {
 | |
|            return userAuth;
 | |
|        }
 | |
|        public void setUserAuth(String userAuth)
 | |
|        {
 | |
|            this.userAuth = userAuth;
 | |
|        }
 | |
|    }
 | |
|    
 | |
|    public void removeGroupsForStore(final String storeRoot)
 | |
|    {
 | |
|        AuthenticationUtil.runAs(new RunAsWork<Void>()
 | |
|        {
 | |
| 
 | |
|            public Void doWork() throws Exception
 | |
|            {
 | |
|                String[] permissions = new String[] { PermissionService.WCM_CONTENT_CONTRIBUTOR, PermissionService.WCM_CONTENT_MANAGER, PermissionService.WCM_CONTENT_PUBLISHER,
 | |
|                        PermissionService.WCM_CONTENT_REVIEWER };
 | |
|                for (String permission : permissions)
 | |
|                {
 | |
|                    String shortName = storeRoot + "-" + permission;
 | |
|                    String group = authorityService.getName(AuthorityType.GROUP, shortName);
 | |
|                    if (authorityService.authorityExists(group))
 | |
|                    {
 | |
|                        authorityService.deleteAuthority(group);
 | |
|                    }
 | |
|                }
 | |
|                return null;
 | |
|            }
 | |
|        }, AuthenticationUtil.getSystemUserName());
 | |
| 
 | |
|    }
 | |
| }
 |