Merge branch 'master' of git.curoverse.com:arvados into 2612-workbench-displays-user...
[arvados.git] / apps / workbench / app / controllers / users_controller.rb
1 class UsersController < ApplicationController
2   skip_before_filter :find_object_by_uuid, :only => [:welcome, :activity, :storage]
3   skip_around_filter :thread_with_mandatory_api_token, :only => :welcome
4   before_filter :ensure_current_user_is_admin, only: [:sudo, :unsetup, :setup]
5
6   def welcome
7     if current_user
8       params[:action] = 'home'
9       home
10     end
11   end
12
13   def activity
14     @breadcrumb_page_name = nil
15     @users = User.limit(params[:limit] || 1000).all
16     @user_activity = {}
17     @activity = {
18       logins: {},
19       jobs: {},
20       pipeline_instances: {}
21     }
22     @total_activity = {}
23     @spans = [['This week', Time.now.beginning_of_week, Time.now],
24               ['Last week',
25                Time.now.beginning_of_week.advance(weeks:-1),
26                Time.now.beginning_of_week],
27               ['This month', Time.now.beginning_of_month, Time.now],
28               ['Last month',
29                1.month.ago.beginning_of_month,
30                Time.now.beginning_of_month]]
31     @spans.each do |span, threshold_start, threshold_end|
32       @activity[:logins][span] = Log.
33         filter([[:event_type, '=', 'login'],
34                 [:object_kind, '=', 'arvados#user'],
35                 [:created_at, '>=', threshold_start],
36                 [:created_at, '<', threshold_end]])
37       @activity[:jobs][span] = Job.
38         filter([[:created_at, '>=', threshold_start],
39                 [:created_at, '<', threshold_end]])
40       @activity[:pipeline_instances][span] = PipelineInstance.
41         filter([[:created_at, '>=', threshold_start],
42                 [:created_at, '<', threshold_end]])
43       @activity.each do |type, act|
44         records = act[span]
45         @users.each do |u|
46           @user_activity[u.uuid] ||= {}
47           @user_activity[u.uuid][span + ' ' + type.to_s] ||= 0
48         end
49         records.each do |record|
50           @user_activity[record.modified_by_user_uuid] ||= {}
51           @user_activity[record.modified_by_user_uuid][span + ' ' + type.to_s] ||= 0
52           @user_activity[record.modified_by_user_uuid][span + ' ' + type.to_s] += 1
53           @total_activity[span + ' ' + type.to_s] ||= 0
54           @total_activity[span + ' ' + type.to_s] += 1
55         end
56       end
57     end
58     @users = @users.sort_by do |a|
59       [-@user_activity[a.uuid].values.inject(:+), a.full_name]
60     end
61     # Prepend a "Total" pseudo-user to the sorted list
62     @user_activity[nil] = @total_activity
63     @users = [OpenStruct.new(uuid: nil)] + @users
64   end
65
66   def storage
67     @breadcrumb_page_name = nil
68     @users = User.limit(params[:limit] || 1000).all
69     @user_storage = {}
70     @log_date = {}
71     @users.each do |u|
72       @user_storage[u.uuid] ||= {}
73       storage_log = Log.
74         filter([[:object_uuid, '=', u.uuid],
75                 [:event_type, '=', 'user-storage-report']]).
76         order(:created_at => :desc).
77         limit(1)
78       storage_log.each do |log_entry|
79         @user_storage[u.uuid] = log_entry['properties']
80         @log_date[u.uuid] = log_entry['event_at']
81       end
82     end
83     @users = @users.sort_by { |u|
84       [-@user_storage[u.uuid].values.push(0).inject(:+), u.full_name]}
85   end
86
87   def show_pane_list
88     if current_user.andand.is_admin
89       super | %w(Admin)
90     else
91       super
92     end
93   end
94
95   def index_pane_list
96     if current_user.andand.is_admin
97       super | %w(Activity)
98     else
99       super
100     end
101   end
102
103   def sudo
104     resp = $arvados_api_client.api(ApiClientAuthorization, '', {
105                                      api_client_authorization: {
106                                        owner_uuid: @object.uuid
107                                      }
108                                    })
109     redirect_to root_url(api_token: resp[:api_token])
110   end
111
112   def home
113     @showallalerts = false
114     @my_ssh_keys = AuthorizedKey.where(authorized_user_uuid: current_user.uuid)
115     @my_tag_links = {}
116
117     @my_jobs = Job.
118       limit(10).
119       order('created_at desc').
120       where(created_by: current_user.uuid)
121
122     @my_collections = Collection.
123       limit(10).
124       order('created_at desc').
125       where(created_by: current_user.uuid)
126
127     Link.limit(1000).where(head_uuid: @my_collections.collect(&:uuid),
128                            link_class: 'tag').each do |link|
129       (@my_tag_links[link.head_uuid] ||= []) << link
130     end
131
132     @my_pipelines = PipelineInstance.
133       limit(10).
134       order('created_at desc').
135       where(created_by: current_user.uuid)
136
137
138     # A Tutorial is a Link which has link_class "resources" and name
139     # "wants", and is owned by the Tutorials Group (i.e., named
140     # "Arvados Tutorials" and owned by the system user).
141     @tutorial_group = Group.where(owner_uuid: User.system.uuid,
142                                   name: 'Arvados Tutorials').first
143     if @tutorial_group
144       @tutorial_links = Link.where(tail_uuid: @tutorial_group.uuid,
145                                    link_class: 'resources',
146                                    name: 'wants')
147     else
148       @tutorial_links = []
149     end
150     @tutorial_complete = {
151       'Run a job' => @my_last_job
152     }
153     respond_to do |f|
154       f.js { render template: 'users/home.js' }
155       f.html { render template: 'users/home' }
156     end
157   end
158
159   def unsetup
160     if current_user.andand.is_admin
161       @object.unsetup
162     end
163     show
164   end
165
166   def setup
167     respond_to do |format|
168       if current_user.andand.is_admin
169         setup_params = {}
170         setup_params[:send_notification_email] = "#{Rails.configuration.send_user_setup_notification_email}"
171         if params['user_uuid'] && params['user_uuid'].size>0
172           setup_params[:uuid] = params['user_uuid']
173         end
174         if params['email'] && params['email'].size>0
175           user = {email: params['email']}
176           setup_params[:user] = user
177         end
178         if params['openid_prefix'] && params['openid_prefix'].size>0
179           setup_params[:openid_prefix] = params['openid_prefix']
180         end
181         if params['repo_name'] && params['repo_name'].size>0
182           setup_params[:repo_name] = params['repo_name']
183         end
184         if params['vm_uuid'] && params['vm_uuid'].size>0
185           setup_params[:vm_uuid] = params['vm_uuid']
186         end
187
188         if User.setup setup_params
189           format.js
190         else
191           self.render_error status: 422
192         end
193       else
194         self.render_error status: 422
195       end
196     end
197   end
198
199   def setup_popup
200     @vms = VirtualMachine.all.results
201
202     @current_selections = find_current_links @object
203
204     respond_to do |format|
205       format.html
206       format.js
207     end
208   end
209
210   protected
211
212   def find_current_links user
213     current_selections = {}
214
215     if !user
216       return current_selections
217     end
218
219     # oid login perm
220     oid_login_perms = Link.where(tail_uuid: user.email,
221                                    head_kind: 'arvados#user',
222                                    link_class: 'permission',
223                                    name: 'can_login')
224
225     if oid_login_perms.any?
226       prefix_properties = oid_login_perms.first.properties
227       current_selections[:identity_url_prefix] = prefix_properties[:identity_url_prefix]
228     end
229
230     # repo perm
231     repo_perms = Link.where(tail_uuid: user.uuid,
232                             head_kind: 'arvados#repository',
233                             link_class: 'permission',
234                             name: 'can_write')
235     if repo_perms.any?
236       repo_uuid = repo_perms.first.head_uuid
237       repos = Repository.where(head_uuid: repo_uuid)
238       if repos.any?
239         repo_name = repos.first.name
240         current_selections[:repo_name] = repo_name
241       end
242     end
243
244     # vm login perm
245     vm_login_perms = Link.where(tail_uuid: user.uuid,
246                               head_kind: 'arvados#virtualMachine',
247                               link_class: 'permission',
248                               name: 'can_login')
249     if vm_login_perms.any?
250       vm_uuid = vm_login_perms.first.head_uuid
251       current_selections[:vm_uuid] = vm_uuid
252     end
253
254     return current_selections
255   end
256
257 end