1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
|
###############################################################################
# Copyright (c) 2017 Koren Lev (Cisco Systems), Yaron Yogev (Cisco Systems) #
# and others #
# #
# All rights reserved. This program and the accompanying materials #
# are made available under the terms of the Apache License, Version 2.0 #
# which accompanies this distribution, and is available at #
# http://www.apache.org/licenses/LICENSE-2.0 #
###############################################################################
from api.validation.data_validate import DataValidate
from api.responders.responder_base import ResponderBase
from bson.objectid import ObjectId
from datetime import datetime
class Scans(ResponderBase):
def __init__(self):
super().__init__()
self.COLLECTION = "scans"
self.ID = "_id"
self.PROJECTION = {
self.ID: True,
"environment": True,
"status": True,
"scan_completed": True
}
def on_get(self, req, resp):
self.log.debug("Getting scans")
filters = self.parse_query_params(req)
scan_statuses = self.get_constants_by_name("scan_statuses")
filters_requirements = {
"env_name": self.require(str, mandatory=True),
"id": self.require(ObjectId, True),
"base_object": self.require(str),
"status": self.require(str, False, DataValidate.LIST, scan_statuses),
"page": self.require(int, True),
"page_size": self.require(int, True)
}
self.validate_query_data(filters, filters_requirements)
page, page_size = self.get_pagination(filters)
query = self.build_query(filters)
if "_id" in query:
scan = self.get_object_by_id(self.COLLECTION, query,
[ObjectId, datetime], self.ID)
self.set_successful_response(resp, scan)
else:
scans_ids = self.get_objects_list(self.COLLECTION, query,
page, page_size, self.PROJECTION)
self.set_successful_response(resp, {"scans": scans_ids})
def on_post(self, req, resp):
self.log.debug("Posting new scan")
error, scan = self.get_content_from_request(req)
if error:
self.bad_request(error)
scan_statuses = self.get_constants_by_name("scan_statuses")
log_levels = self.get_constants_by_name("log_levels")
scan_requirements = {
"status": self.require(str,
validate=DataValidate.LIST,
requirement=scan_statuses,
mandatory=True),
"log_level": self.require(str,
validate=DataValidate.LIST,
requirement=log_levels),
"clear": self.require(bool, True),
"scan_only_inventory": self.require(bool, True),
"scan_only_links": self.require(bool, True),
"scan_only_cliques": self.require(bool, True),
"environment": self.require(str, mandatory=True),
"inventory": self.require(str),
"object_id": self.require(str)
}
self.validate_query_data(scan, scan_requirements)
scan_only_keys = [k for k in scan if k.startswith("scan_only_")]
if len(scan_only_keys) > 1:
self.bad_request("multiple scan_only_* flags found: {0}. "
"only one of them can be set."
.format(", ".join(scan_only_keys)))
env_name = scan["environment"]
if not self.check_environment_name(env_name):
self.bad_request("unkown environment: " + env_name)
scan["scan_completed"] = False
scan["submit_timestamp"] = datetime.now()
self.write(scan, self.COLLECTION)
self.set_successful_response(resp,
{"message": "created a new scan for "
"environment {0}"
.format(env_name)},
"201")
def build_query(self, filters):
query = {}
filters_keys = ["status"]
self.update_query_with_filters(filters, filters_keys, query)
base_object = filters.get("base_object")
if base_object:
query['object_id'] = base_object
_id = filters.get("id")
if _id:
query['_id'] = _id
query['environment'] = filters['env_name']
return query
|