| Ed Tanous | 40e9b92 | 2024-09-10 13:50:16 -0700 | [diff] [blame] | 1 | // SPDX-License-Identifier: Apache-2.0 | 
|  | 2 | // SPDX-FileCopyrightText: Copyright OpenBMC Authors | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 3 | #pragma once | 
|  | 4 |  | 
|  | 5 | #include "async_resp.hpp" | 
|  | 6 | #include "http_request.hpp" | 
|  | 7 | #include "privileges.hpp" | 
|  | 8 | #include "verb.hpp" | 
|  | 9 |  | 
| Ed Tanous | 003301a | 2024-04-16 09:59:19 -0700 | [diff] [blame] | 10 | #include <boost/asio/ip/tcp.hpp> | 
|  | 11 | #include <boost/asio/ssl/stream.hpp> | 
| Ed Tanous | d785720 | 2025-01-28 15:32:26 -0800 | [diff] [blame] | 12 | #include <boost/beast/http/status.hpp> | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 13 |  | 
| Ed Tanous | d785720 | 2025-01-28 15:32:26 -0800 | [diff] [blame] | 14 | #include <cstddef> | 
|  | 15 | #include <limits> | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 16 | #include <memory> | 
|  | 17 | #include <string> | 
| rohitpai | c1a75eb | 2025-01-03 19:13:36 +0530 | [diff] [blame] | 18 | #include <string_view> | 
| Ed Tanous | d785720 | 2025-01-28 15:32:26 -0800 | [diff] [blame] | 19 | #include <utility> | 
|  | 20 | #include <vector> | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 21 |  | 
|  | 22 | namespace crow | 
|  | 23 | { | 
|  | 24 | class BaseRule | 
|  | 25 | { | 
|  | 26 | public: | 
| rohitpai | c1a75eb | 2025-01-03 19:13:36 +0530 | [diff] [blame] | 27 | explicit BaseRule(std::string_view thisRule) : rule(thisRule) {} | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 28 |  | 
|  | 29 | virtual ~BaseRule() = default; | 
|  | 30 |  | 
|  | 31 | BaseRule(const BaseRule&) = delete; | 
|  | 32 | BaseRule(BaseRule&&) = delete; | 
|  | 33 | BaseRule& operator=(const BaseRule&) = delete; | 
|  | 34 | BaseRule& operator=(const BaseRule&&) = delete; | 
|  | 35 |  | 
|  | 36 | virtual void validate() = 0; | 
|  | 37 | std::unique_ptr<BaseRule> upgrade() | 
|  | 38 | { | 
|  | 39 | if (ruleToUpgrade) | 
|  | 40 | { | 
|  | 41 | return std::move(ruleToUpgrade); | 
|  | 42 | } | 
|  | 43 | return {}; | 
|  | 44 | } | 
|  | 45 |  | 
|  | 46 | virtual void handle(const Request& /*req*/, | 
|  | 47 | const std::shared_ptr<bmcweb::AsyncResp>&, | 
|  | 48 | const std::vector<std::string>&) = 0; | 
| Patrick Williams | 504af5a | 2025-02-03 14:29:03 -0500 | [diff] [blame] | 49 | virtual void handleUpgrade( | 
|  | 50 | const Request& /*req*/, | 
|  | 51 | const std::shared_ptr<bmcweb::AsyncResp>& asyncResp, | 
|  | 52 | boost::asio::ip::tcp::socket&& /*adaptor*/) | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 53 | { | 
|  | 54 | asyncResp->res.result(boost::beast::http::status::not_found); | 
|  | 55 | } | 
| Ed Tanous | 8db8374 | 2024-04-13 09:11:15 -0700 | [diff] [blame] | 56 |  | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 57 | virtual void handleUpgrade( | 
|  | 58 | const Request& /*req*/, | 
|  | 59 | const std::shared_ptr<bmcweb::AsyncResp>& asyncResp, | 
| Ed Tanous | 003301a | 2024-04-16 09:59:19 -0700 | [diff] [blame] | 60 | boost::asio::ssl::stream<boost::asio::ip::tcp::socket>&& /*adaptor*/) | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 61 | { | 
|  | 62 | asyncResp->res.result(boost::beast::http::status::not_found); | 
|  | 63 | } | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 64 |  | 
|  | 65 | size_t getMethods() const | 
|  | 66 | { | 
|  | 67 | return methodsBitfield; | 
|  | 68 | } | 
|  | 69 |  | 
|  | 70 | bool checkPrivileges(const redfish::Privileges& userPrivileges) | 
|  | 71 | { | 
|  | 72 | // If there are no privileges assigned, assume no privileges | 
|  | 73 | // required | 
|  | 74 | if (privilegesSet.empty()) | 
|  | 75 | { | 
|  | 76 | return true; | 
|  | 77 | } | 
|  | 78 |  | 
|  | 79 | for (const redfish::Privileges& requiredPrivileges : privilegesSet) | 
|  | 80 | { | 
|  | 81 | if (userPrivileges.isSupersetOf(requiredPrivileges)) | 
|  | 82 | { | 
|  | 83 | return true; | 
|  | 84 | } | 
|  | 85 | } | 
|  | 86 | return false; | 
|  | 87 | } | 
|  | 88 |  | 
|  | 89 | size_t methodsBitfield{1 << static_cast<size_t>(HttpVerb::Get)}; | 
|  | 90 | static_assert(std::numeric_limits<decltype(methodsBitfield)>::digits > | 
| Ed Tanous | a3b9eb9 | 2024-06-03 08:39:37 -0700 | [diff] [blame] | 91 | static_cast<int>(HttpVerb::Max), | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 92 | "Not enough bits to store bitfield"); | 
|  | 93 |  | 
| Ed Tanous | a3b9eb9 | 2024-06-03 08:39:37 -0700 | [diff] [blame] | 94 | bool isNotFound = false; | 
|  | 95 | bool isMethodNotAllowed = false; | 
|  | 96 | bool isUpgrade = false; | 
|  | 97 |  | 
| Ed Tanous | 08bbe11 | 2023-04-06 13:10:02 -0700 | [diff] [blame] | 98 | std::vector<redfish::Privileges> privilegesSet; | 
|  | 99 |  | 
|  | 100 | std::string rule; | 
|  | 101 |  | 
|  | 102 | std::unique_ptr<BaseRule> ruleToUpgrade; | 
|  | 103 |  | 
|  | 104 | friend class Router; | 
|  | 105 | template <typename T> | 
|  | 106 | friend struct RuleParameterTraits; | 
|  | 107 | }; | 
|  | 108 |  | 
|  | 109 | } // namespace crow |