mirror of
https://github.com/Alfresco/alfresco-community-repo.git
synced 2025-10-22 15:12:38 +00:00
27125: Subtasks of ALF-7072: RSOLR 013: Remote API to get ACLs and readers
- ALF-8334: RSOLR 013: Modify ACL schema to record change times
- ALF-8336: RSOLR 013: DB upgrade scripts for ACL changes
- TODO: Query APIs
27128: Added TooManyResultsException as a concurrency detection trigger
- Usually too many results indicates that the DB table key is not as specific as it should be,
but it's AVM that showed this up.
27132: Clean up: javadocs; non-javadocs; uncommented fields; @since tags; etc.
27134: Removed empty directory
27135: Fix for ALF-8333: CMIS query: JOIN on an aspect results in CmisInvalidArgumentException
- incorrect scope used when building orderings
27139: Fixed SORL transaction tracking queries
- Queries were using incompatible boolean comparisons
- Added SOLRDAO to test suite
- Cleaned up code and reformatted code
27141: Minor additions to CannedQuery interface
- get parameter bean
- construct sort details from a list
- ALF-7167: Canned queries
27146: RINF 09 / RINF 10: DB-based paged query for get children (DocLib & CMIS)
- milestone check-in for sprint demo & review (WIP)
- added new FileFolderService (paged) list query (public API is subject to change)
- moved temp JavaScript sorting to Java
- example usage by DocLib (via ScriptNode) and CMIS (via AlfrescoCmisService)
- implemented as demo "canned query" including embedded use of "list" permission interceptor
- ALF-7402 / ALF-7168
27150: RINF 09 / RINF 10: DB-based paged query for get children (DocLib & CMIS)
- missed file (follow-on to r27146)
27158: ALF-7070, ALF-7072: SOLR tracking (node and changeset)
- Pulled non-DAO code into SOLRTrackingComponent
- DAO code and related tests just test basic CRUD
- SOLRTrackingComponent does complex cross-schema manipulation
27159: Fixed line ending and removed svn:eol-style
27160: ALF-8334: RSOLR 013: Fixed SQL Server syntax
27165: RINF 09 / RINF 10: DB-based paged query for get children (DocLib & CMIS)
- fix listDeepFolders (causing Imap*Test to fail)
- all private methods now order files followed by folders
(consistent with existing public APIs such as FileFolderService.search & ScriptNode.childFileFolders*)
- follow-on to r27146
28271: Consolidate diagnostic logging for max perm checks (ALF-8388 + ALF-8419)
- note: this should be a trivial merge to HEAD
git-svn-id: https://svn.alfresco.com/repos/alfresco-enterprise/alfresco/HEAD/root@28292 c4b6b30b-aa2e-2d43-bbcb-ca4b014f7261
119 lines
4.7 KiB
Java
119 lines
4.7 KiB
Java
/*
|
|
* Copyright (C) 2005-2010 Alfresco Software Limited.
|
|
*
|
|
* This file is part of Alfresco
|
|
*
|
|
* Alfresco is free software: you can redistribute it and/or modify
|
|
* it under the terms of the GNU Lesser General Public License as published by
|
|
* the Free Software Foundation, either version 3 of the License, or
|
|
* (at your option) any later version.
|
|
*
|
|
* Alfresco is distributed in the hope that it will be useful,
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
* GNU Lesser General Public License for more details.
|
|
*
|
|
* You should have received a copy of the GNU Lesser General Public License
|
|
* along with Alfresco. If not, see <http://www.gnu.org/licenses/>.
|
|
*/
|
|
package org.alfresco.repo.domain.permissions;
|
|
|
|
import java.util.List;
|
|
import java.util.Map;
|
|
|
|
import org.alfresco.repo.security.permissions.ACEType;
|
|
import org.alfresco.repo.security.permissions.PermissionReference;
|
|
import org.alfresco.service.cmr.security.AccessStatus;
|
|
import org.alfresco.service.namespace.QName;
|
|
import org.alfresco.util.Pair;
|
|
|
|
/**
|
|
* This provides basic services such as caching, but defers to the underlying implementation
|
|
* for CRUD operations.
|
|
*
|
|
* <b>alf_access_control_list</b>
|
|
* <b>alf_acl_member</b>
|
|
* <b>alf_acl_change_set</b>
|
|
* <b>alf_access_control_entry</b>
|
|
* <b>alf_ace_context</b>
|
|
* <b>alf_permission</b>
|
|
* <b>alf_authority</b>
|
|
* <b>alf_authority_alias</b>
|
|
*
|
|
* @since 3.4
|
|
* @author janv
|
|
*/
|
|
public interface AclCrudDAO
|
|
{
|
|
//
|
|
// Access Control List (ACL)
|
|
//
|
|
|
|
public Acl createAcl(AclEntity entity);
|
|
public Acl getAcl(long aclEntityId);
|
|
public AclUpdateEntity getAclForUpdate(long aclEntityId);
|
|
public List<Long> getAclsThatInheritFromAcl(long aclEntityId);
|
|
public Long getLatestAclByGuid(String aclGuid);
|
|
public void updateAcl(AclUpdateEntity entity);
|
|
public void deleteAcl(long aclEntityId);
|
|
public List<Long> getADMNodesByAcl(long aclEntityId, int maxResults);
|
|
public List<Long> getAVMNodesByAcl(long aclEntityId, int maxResults);
|
|
//
|
|
// Access Control Entry (ACE)
|
|
//
|
|
|
|
public Ace createAce(Permission permission, Authority authority, ACEType type, AccessStatus accessStatus);
|
|
public Ace getAce(Permission permission, Authority authority, ACEType type, AccessStatus accessStatus);
|
|
public Ace getAce(long aceEntityId);
|
|
public Ace getOrCreateAce(Permission permission, Authority authority, ACEType type, AccessStatus accessStatus);
|
|
public List<Ace> getAcesByAuthority(long authorityEntityId);
|
|
public List<Map<String, Object>> getAcesAndAuthoritiesByAcl(long aclEntityId);
|
|
public int deleteAces(List<Long> aceEntityIds);
|
|
|
|
//
|
|
// ACL Change Set
|
|
//
|
|
|
|
public Long createAclChangeSet();
|
|
public void updateAclChangeSet(Long aclChangeSetEntityId, long commitTimeMs);
|
|
public AclChangeSet getAclChangeSet(Long aclChangeSetEntityId);
|
|
public void deleteAclChangeSet(Long aclChangeSetEntityId);
|
|
|
|
//
|
|
// ACL Member
|
|
//
|
|
|
|
public void addAclMembersToAcl(long aclId, List<Long> aceIds, int depth);
|
|
public void addAclMembersToAcl(long aclId, List<Pair<Long, Integer>> aceIdsWithDepths);
|
|
public List<AclMember> getAclMembersByAcl(long aclEntityId);
|
|
public List<AclMemberEntity> getAclMembersByAclForUpdate(long aclEntityId);
|
|
public List<AclMember> getAclMembersByAuthority(String authorityName);
|
|
public void updateAclMember(AclMemberEntity entity);
|
|
public int deleteAclMembers(List<Long> aclMemberIds);
|
|
public int deleteAclMembersByAcl(long aclEntityId);
|
|
|
|
//
|
|
// Permission
|
|
//
|
|
|
|
public Permission createPermission(PermissionReference permissionReference);
|
|
public Permission getPermission(long permissionEntityId);
|
|
public Permission getPermission(PermissionReference permissionReference);
|
|
public Permission getOrCreatePermission(PermissionReference permissionReference);
|
|
public void renamePermission(QName oldTypeQName, String oldName, QName newTypeQName, String newName);
|
|
public void deletePermission(long permissionEntityId);
|
|
|
|
//
|
|
// Authority
|
|
//
|
|
|
|
public Authority getAuthority(long authorityEntityId);
|
|
public Authority getAuthority(String authorityName);
|
|
public Authority getOrCreateAuthority(String authorityName);
|
|
public void renameAuthority(String authorityNameBefore, String authorityAfter);
|
|
public void deleteAuthority(long authorityEntityId);
|
|
|
|
// AceContext (NOTE: currently unused - intended for possible future enhancement)
|
|
// AuthorityAlias (NOTE: currently unused - intended for possible future enhancement)
|
|
}
|