1 class Arvados::V1::CollectionsController < ApplicationController
3 # Collections are owned by system_user. Creating a collection has
4 # two effects: The collection is added if it doesn't already
5 # exist, and a "permission" Link is added (if one doesn't already
6 # exist) giving the current user (or specified owner_uuid)
7 # permission to read it.
8 owner_uuid = resource_attrs.delete(:owner_uuid) || current_user.uuid
9 owner_kind = if owner_uuid.match(/-(\w+)-/)[1] == User.uuid_prefix
14 unless current_user.can? write: owner_uuid
15 logger.warn "User #{current_user.andand.uuid} tried to set collection owner_uuid to #{owner_uuid}"
16 raise ArvadosModel::PermissionDeniedError
19 @object = model_class.new resource_attrs.reject { |k,v| k == :owner_uuid }
22 rescue ActiveRecord::RecordNotUnique
23 logger.debug resource_attrs.inspect
24 if resource_attrs[:manifest_text] and resource_attrs[:uuid]
25 @existing_object = model_class.
26 where('uuid=? and manifest_text=?',
27 resource_attrs[:uuid],
28 resource_attrs[:manifest_text]).
30 @object = @existing_object || @object
36 owner_uuid: owner_uuid,
37 link_class: 'permission',
39 head_kind: 'arvados#collection',
40 head_uuid: @object.uuid,
41 tail_kind: owner_kind,
44 ActiveRecord::Base.transaction do
45 if Link.where(link_attrs).empty?
46 Link.create! link_attrs
54 def collection_uuid(uuid)
55 m = /([a-f0-9]{32}(\+[0-9]+)?)(\+.*)?/.match(uuid)
63 def script_param_edges(visited, sp)
64 if sp and not sp.empty?
68 script_param_edges(visited, v)
72 script_param_edges(visited, v)
75 m = collection_uuid(sp)
77 generate_provenance_edges(visited, m)
83 def generate_provenance_edges(visited, uuid)
84 m = collection_uuid(uuid)
87 if not uuid or uuid.empty? or visited[uuid]
91 logger.debug "visiting #{uuid}"
94 # uuid is a collection
95 Collection.readable_by(current_user).where(uuid: uuid).each do |c|
96 visited[uuid] = c.as_api_response
97 visited[uuid][:files] = []
99 visited[uuid][:files] << f
103 Job.readable_by(current_user).where(output: uuid).each do |job|
104 generate_provenance_edges(visited, job.uuid)
107 Job.readable_by(current_user).where(log: uuid).each do |job|
108 generate_provenance_edges(visited, job.uuid)
112 # uuid is something else
113 rsc = ArvadosModel::resource_class_for_uuid uuid
115 Job.readable_by(current_user).where(uuid: uuid).each do |job|
116 visited[uuid] = job.as_api_response
117 script_param_edges(visited, job.script_parameters)
120 rsc.where(uuid: uuid).each do |r|
121 visited[uuid] = r.as_api_response
126 Link.readable_by(current_user).
127 where(head_uuid: uuid, link_class: "provenance").
129 visited[link.uuid] = link.as_api_response
130 generate_provenance_edges(visited, link.tail_uuid)
133 #puts "finished #{uuid}"
138 generate_provenance_edges(visited, @object[:uuid])
142 def generate_used_by_edges(visited, uuid)
143 m = collection_uuid(uuid)
146 if not uuid or uuid.empty? or visited[uuid]
150 logger.debug "visiting #{uuid}"
153 # uuid is a collection
154 Collection.readable_by(current_user).where(uuid: uuid).each do |c|
155 visited[uuid] = c.as_api_response
156 visited[uuid][:files] = []
158 visited[uuid][:files] << f
162 if uuid == "d41d8cd98f00b204e9800998ecf8427e+0"
163 # special case for empty collection
167 Job.readable_by(current_user).where(["jobs.script_parameters like ?", "%#{uuid}%"]).each do |job|
168 generate_used_by_edges(visited, job.uuid)
172 # uuid is something else
173 rsc = ArvadosModel::resource_class_for_uuid uuid
175 Job.readable_by(current_user).where(uuid: uuid).each do |job|
176 visited[uuid] = job.as_api_response
177 generate_used_by_edges(visited, job.output)
180 rsc.where(uuid: uuid).each do |r|
181 visited[uuid] = r.as_api_response
186 Link.readable_by(current_user).
187 where(tail_uuid: uuid, link_class: "provenance").
189 visited[link.uuid] = link.as_api_response
190 generate_used_by_edges(visited, link.head_uuid)
193 #puts "finished #{uuid}"
198 generate_used_by_edges(visited, @object[:uuid])
203 def find_object_by_uuid
205 if !@object and !params[:uuid].match(/^[0-9a-f]+\+\d+$/)
206 # Normalize the given uuid and search again.
207 hash_part = params[:uuid].match(/^([0-9a-f]*)/)[1]
208 collection = Collection.where('uuid like ?', hash_part + '+%').first
210 # We know the collection exists, and what its real uuid is in
211 # the database. Now, throw out @objects and repeat the usual
212 # lookup procedure. (Returning the collection at this point
213 # would bypass permission checks.)
215 @where = { uuid: collection.uuid }
216 find_objects_for_index
217 @object = @objects.first