| 12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469 | 
							- package dataprovider
 
- import (
 
- 	"context"
 
- 	"crypto/x509"
 
- 	"database/sql"
 
- 	"encoding/json"
 
- 	"errors"
 
- 	"fmt"
 
- 	"strings"
 
- 	"time"
 
- 	"github.com/cockroachdb/cockroach-go/v2/crdb"
 
- 	"github.com/drakkan/sftpgo/v2/logger"
 
- 	"github.com/drakkan/sftpgo/v2/sdk"
 
- 	"github.com/drakkan/sftpgo/v2/util"
 
- 	"github.com/drakkan/sftpgo/v2/vfs"
 
- )
 
- const (
 
- 	sqlDatabaseVersion     = 12
 
- 	defaultSQLQueryTimeout = 10 * time.Second
 
- 	longSQLQueryTimeout    = 60 * time.Second
 
- )
 
- var errSQLFoldersAssosaction = errors.New("unable to associate virtual folders to user")
 
- type sqlQuerier interface {
 
- 	PrepareContext(ctx context.Context, query string) (*sql.Stmt, error)
 
- }
 
- type sqlScanner interface {
 
- 	Scan(dest ...interface{}) error
 
- }
 
- func sqlCommonGetAPIKeyByID(keyID string, dbHandle sqlQuerier) (APIKey, error) {
 
- 	var apiKey APIKey
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getAPIKeyByIDQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return apiKey, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	row := stmt.QueryRowContext(ctx, keyID)
 
- 	apiKey, err = getAPIKeyFromDbRow(row)
 
- 	if err != nil {
 
- 		return apiKey, err
 
- 	}
 
- 	return getAPIKeyWithRelatedFields(ctx, apiKey, dbHandle)
 
- }
 
- func sqlCommonAddAPIKey(apiKey *APIKey, dbHandle *sql.DB) error {
 
- 	err := apiKey.validate()
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	userID, adminID, err := sqlCommonGetAPIKeyRelatedIDs(apiKey)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getAddAPIKeyQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, apiKey.KeyID, apiKey.Name, apiKey.Key, apiKey.Scope, util.GetTimeAsMsSinceEpoch(time.Now()),
 
- 		util.GetTimeAsMsSinceEpoch(time.Now()), apiKey.LastUseAt, apiKey.ExpiresAt, apiKey.Description,
 
- 		userID, adminID)
 
- 	return err
 
- }
 
- func sqlCommonUpdateAPIKey(apiKey *APIKey, dbHandle *sql.DB) error {
 
- 	err := apiKey.validate()
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	userID, adminID, err := sqlCommonGetAPIKeyRelatedIDs(apiKey)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateAPIKeyQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, apiKey.Name, apiKey.Scope, apiKey.ExpiresAt, userID, adminID,
 
- 		apiKey.Description, util.GetTimeAsMsSinceEpoch(time.Now()), apiKey.KeyID)
 
- 	return err
 
- }
 
- func sqlCommonDeleteAPIKey(apiKey *APIKey, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDeleteAPIKeyQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, apiKey.KeyID)
 
- 	return err
 
- }
 
- func sqlCommonGetAPIKeys(limit, offset int, order string, dbHandle sqlQuerier) ([]APIKey, error) {
 
- 	apiKeys := make([]APIKey, 0, limit)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getAPIKeysQuery(order)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx, limit, offset)
 
- 	if err != nil {
 
- 		return apiKeys, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		k, err := getAPIKeyFromDbRow(rows)
 
- 		if err != nil {
 
- 			return apiKeys, err
 
- 		}
 
- 		k.HideConfidentialData()
 
- 		apiKeys = append(apiKeys, k)
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return apiKeys, err
 
- 	}
 
- 	apiKeys, err = getRelatedValuesForAPIKeys(ctx, apiKeys, dbHandle, APIKeyScopeAdmin)
 
- 	if err != nil {
 
- 		return apiKeys, err
 
- 	}
 
- 	return getRelatedValuesForAPIKeys(ctx, apiKeys, dbHandle, APIKeyScopeUser)
 
- }
 
- func sqlCommonDumpAPIKeys(dbHandle sqlQuerier) ([]APIKey, error) {
 
- 	apiKeys := make([]APIKey, 0, 30)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDumpAPIKeysQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx)
 
- 	if err != nil {
 
- 		return apiKeys, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		k, err := getAPIKeyFromDbRow(rows)
 
- 		if err != nil {
 
- 			return apiKeys, err
 
- 		}
 
- 		apiKeys = append(apiKeys, k)
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return apiKeys, err
 
- 	}
 
- 	apiKeys, err = getRelatedValuesForAPIKeys(ctx, apiKeys, dbHandle, APIKeyScopeAdmin)
 
- 	if err != nil {
 
- 		return apiKeys, err
 
- 	}
 
- 	return getRelatedValuesForAPIKeys(ctx, apiKeys, dbHandle, APIKeyScopeUser)
 
- }
 
- func sqlCommonGetAdminByUsername(username string, dbHandle sqlQuerier) (Admin, error) {
 
- 	var admin Admin
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getAdminByUsernameQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return admin, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	row := stmt.QueryRowContext(ctx, username)
 
- 	return getAdminFromDbRow(row)
 
- }
 
- func sqlCommonValidateAdminAndPass(username, password, ip string, dbHandle *sql.DB) (Admin, error) {
 
- 	admin, err := sqlCommonGetAdminByUsername(username, dbHandle)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error authenticating admin %#v: %v", username, err)
 
- 		return admin, ErrInvalidCredentials
 
- 	}
 
- 	err = admin.checkUserAndPass(password, ip)
 
- 	return admin, err
 
- }
 
- func sqlCommonAddAdmin(admin *Admin, dbHandle *sql.DB) error {
 
- 	err := admin.validate()
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getAddAdminQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	perms, err := json.Marshal(admin.Permissions)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	filters, err := json.Marshal(admin.Filters)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	_, err = stmt.ExecContext(ctx, admin.Username, admin.Password, admin.Status, admin.Email, string(perms),
 
- 		string(filters), admin.AdditionalInfo, admin.Description, util.GetTimeAsMsSinceEpoch(time.Now()),
 
- 		util.GetTimeAsMsSinceEpoch(time.Now()))
 
- 	return err
 
- }
 
- func sqlCommonUpdateAdmin(admin *Admin, dbHandle *sql.DB) error {
 
- 	err := admin.validate()
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateAdminQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	perms, err := json.Marshal(admin.Permissions)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	filters, err := json.Marshal(admin.Filters)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	_, err = stmt.ExecContext(ctx, admin.Password, admin.Status, admin.Email, string(perms), string(filters),
 
- 		admin.AdditionalInfo, admin.Description, util.GetTimeAsMsSinceEpoch(time.Now()), admin.Username)
 
- 	return err
 
- }
 
- func sqlCommonDeleteAdmin(admin *Admin, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDeleteAdminQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, admin.Username)
 
- 	return err
 
- }
 
- func sqlCommonGetAdmins(limit, offset int, order string, dbHandle sqlQuerier) ([]Admin, error) {
 
- 	admins := make([]Admin, 0, limit)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getAdminsQuery(order)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx, limit, offset)
 
- 	if err != nil {
 
- 		return admins, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		a, err := getAdminFromDbRow(rows)
 
- 		if err != nil {
 
- 			return admins, err
 
- 		}
 
- 		a.HideConfidentialData()
 
- 		admins = append(admins, a)
 
- 	}
 
- 	return admins, rows.Err()
 
- }
 
- func sqlCommonDumpAdmins(dbHandle sqlQuerier) ([]Admin, error) {
 
- 	admins := make([]Admin, 0, 30)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDumpAdminsQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx)
 
- 	if err != nil {
 
- 		return admins, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		a, err := getAdminFromDbRow(rows)
 
- 		if err != nil {
 
- 			return admins, err
 
- 		}
 
- 		admins = append(admins, a)
 
- 	}
 
- 	return admins, rows.Err()
 
- }
 
- func sqlCommonGetUserByUsername(username string, dbHandle sqlQuerier) (User, error) {
 
- 	var user User
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUserByUsernameQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return user, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	row := stmt.QueryRowContext(ctx, username)
 
- 	user, err = getUserFromDbRow(row)
 
- 	if err != nil {
 
- 		return user, err
 
- 	}
 
- 	return getUserWithVirtualFolders(ctx, user, dbHandle)
 
- }
 
- func sqlCommonValidateUserAndPass(username, password, ip, protocol string, dbHandle *sql.DB) (User, error) {
 
- 	var user User
 
- 	if password == "" {
 
- 		return user, errors.New("credentials cannot be null or empty")
 
- 	}
 
- 	user, err := sqlCommonGetUserByUsername(username, dbHandle)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error authenticating user %#v: %v", username, err)
 
- 		return user, err
 
- 	}
 
- 	return checkUserAndPass(&user, password, ip, protocol)
 
- }
 
- func sqlCommonValidateUserAndTLSCertificate(username, protocol string, tlsCert *x509.Certificate, dbHandle *sql.DB) (User, error) {
 
- 	var user User
 
- 	if tlsCert == nil {
 
- 		return user, errors.New("TLS certificate cannot be null or empty")
 
- 	}
 
- 	user, err := sqlCommonGetUserByUsername(username, dbHandle)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error authenticating user %#v: %v", username, err)
 
- 		return user, err
 
- 	}
 
- 	return checkUserAndTLSCertificate(&user, protocol, tlsCert)
 
- }
 
- func sqlCommonValidateUserAndPubKey(username string, pubKey []byte, dbHandle *sql.DB) (User, string, error) {
 
- 	var user User
 
- 	if len(pubKey) == 0 {
 
- 		return user, "", errors.New("credentials cannot be null or empty")
 
- 	}
 
- 	user, err := sqlCommonGetUserByUsername(username, dbHandle)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error authenticating user %#v: %v", username, err)
 
- 		return user, "", err
 
- 	}
 
- 	return checkUserAndPubKey(&user, pubKey)
 
- }
 
- func sqlCommonCheckAvailability(dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	return dbHandle.PingContext(ctx)
 
- }
 
- func sqlCommonUpdateQuota(username string, filesAdd int, sizeAdd int64, reset bool, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateQuotaQuery(reset)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, sizeAdd, filesAdd, util.GetTimeAsMsSinceEpoch(time.Now()), username)
 
- 	if err == nil {
 
- 		providerLog(logger.LevelDebug, "quota updated for user %#v, files increment: %v size increment: %v is reset? %v",
 
- 			username, filesAdd, sizeAdd, reset)
 
- 	} else {
 
- 		providerLog(logger.LevelWarn, "error updating quota for user %#v: %v", username, err)
 
- 	}
 
- 	return err
 
- }
 
- func sqlCommonGetUsedQuota(username string, dbHandle *sql.DB) (int, int64, error) {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getQuotaQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return 0, 0, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	var usedFiles int
 
- 	var usedSize int64
 
- 	err = stmt.QueryRowContext(ctx, username).Scan(&usedSize, &usedFiles)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error getting quota for user: %v, error: %v", username, err)
 
- 		return 0, 0, err
 
- 	}
 
- 	return usedFiles, usedSize, err
 
- }
 
- func sqlCommonUpdateAPIKeyLastUse(keyID string, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateAPIKeyLastUseQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, util.GetTimeAsMsSinceEpoch(time.Now()), keyID)
 
- 	if err == nil {
 
- 		providerLog(logger.LevelDebug, "last use updated for key %#v", keyID)
 
- 	} else {
 
- 		providerLog(logger.LevelWarn, "error updating last use for key %#v: %v", keyID, err)
 
- 	}
 
- 	return err
 
- }
 
- func sqlCommonUpdateAdminLastLogin(username string, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateAdminLastLoginQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, util.GetTimeAsMsSinceEpoch(time.Now()), username)
 
- 	if err == nil {
 
- 		providerLog(logger.LevelDebug, "last login updated for admin %#v", username)
 
- 	} else {
 
- 		providerLog(logger.LevelWarn, "error updating last login for admin %#v: %v", username, err)
 
- 	}
 
- 	return err
 
- }
 
- func sqlCommonSetUpdatedAt(username string, dbHandle *sql.DB) {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getSetUpdateAtQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, util.GetTimeAsMsSinceEpoch(time.Now()), username)
 
- 	if err == nil {
 
- 		providerLog(logger.LevelDebug, "updated_at set for user %#v", username)
 
- 	} else {
 
- 		providerLog(logger.LevelWarn, "error setting updated_at for user %#v: %v", username, err)
 
- 	}
 
- }
 
- func sqlCommonUpdateLastLogin(username string, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateLastLoginQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, util.GetTimeAsMsSinceEpoch(time.Now()), username)
 
- 	if err == nil {
 
- 		providerLog(logger.LevelDebug, "last login updated for user %#v", username)
 
- 	} else {
 
- 		providerLog(logger.LevelWarn, "error updating last login for user %#v: %v", username, err)
 
- 	}
 
- 	return err
 
- }
 
- func sqlCommonAddUser(user *User, dbHandle *sql.DB) error {
 
- 	err := ValidateUser(user)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	return sqlCommonExecuteTx(ctx, dbHandle, func(tx *sql.Tx) error {
 
- 		q := getAddUserQuery()
 
- 		stmt, err := tx.PrepareContext(ctx, q)
 
- 		if err != nil {
 
- 			providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 			return err
 
- 		}
 
- 		defer stmt.Close()
 
- 		permissions, err := user.GetPermissionsAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		publicKeys, err := user.GetPublicKeysAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		filters, err := user.GetFiltersAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		fsConfig, err := user.GetFsConfigAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		_, err = stmt.ExecContext(ctx, user.Username, user.Password, string(publicKeys), user.HomeDir, user.UID, user.GID, user.MaxSessions, user.QuotaSize,
 
- 			user.QuotaFiles, string(permissions), user.UploadBandwidth, user.DownloadBandwidth, user.Status, user.ExpirationDate, string(filters),
 
- 			string(fsConfig), user.AdditionalInfo, user.Description, util.GetTimeAsMsSinceEpoch(time.Now()),
 
- 			util.GetTimeAsMsSinceEpoch(time.Now()))
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		return generateVirtualFoldersMapping(ctx, user, tx)
 
- 	})
 
- }
 
- func sqlCommonUpdateUser(user *User, dbHandle *sql.DB) error {
 
- 	err := ValidateUser(user)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	return sqlCommonExecuteTx(ctx, dbHandle, func(tx *sql.Tx) error {
 
- 		q := getUpdateUserQuery()
 
- 		stmt, err := tx.PrepareContext(ctx, q)
 
- 		if err != nil {
 
- 			providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 			return err
 
- 		}
 
- 		defer stmt.Close()
 
- 		permissions, err := user.GetPermissionsAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		publicKeys, err := user.GetPublicKeysAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		filters, err := user.GetFiltersAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		fsConfig, err := user.GetFsConfigAsJSON()
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		_, err = stmt.ExecContext(ctx, user.Password, string(publicKeys), user.HomeDir, user.UID, user.GID, user.MaxSessions, user.QuotaSize,
 
- 			user.QuotaFiles, string(permissions), user.UploadBandwidth, user.DownloadBandwidth, user.Status, user.ExpirationDate,
 
- 			string(filters), string(fsConfig), user.AdditionalInfo, user.Description, util.GetTimeAsMsSinceEpoch(time.Now()), user.ID)
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		return generateVirtualFoldersMapping(ctx, user, tx)
 
- 	})
 
- }
 
- func sqlCommonDeleteUser(user *User, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDeleteUserQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, user.ID)
 
- 	return err
 
- }
 
- func sqlCommonDumpUsers(dbHandle sqlQuerier) ([]User, error) {
 
- 	users := make([]User, 0, 100)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), longSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDumpUsersQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx)
 
- 	if err != nil {
 
- 		return users, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		u, err := getUserFromDbRow(rows)
 
- 		if err != nil {
 
- 			return users, err
 
- 		}
 
- 		err = addCredentialsToUser(&u)
 
- 		if err != nil {
 
- 			return users, err
 
- 		}
 
- 		users = append(users, u)
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return users, err
 
- 	}
 
- 	return getUsersWithVirtualFolders(ctx, users, dbHandle)
 
- }
 
- func sqlCommonGetRecentlyUpdatedUsers(after int64, dbHandle sqlQuerier) ([]User, error) {
 
- 	users := make([]User, 0, 10)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getRecentlyUpdatedUsersQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx, after)
 
- 	if err == nil {
 
- 		defer rows.Close()
 
- 		for rows.Next() {
 
- 			u, err := getUserFromDbRow(rows)
 
- 			if err != nil {
 
- 				return users, err
 
- 			}
 
- 			users = append(users, u)
 
- 		}
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return users, err
 
- 	}
 
- 	return getUsersWithVirtualFolders(ctx, users, dbHandle)
 
- }
 
- func sqlCommonGetUsers(limit int, offset int, order string, dbHandle sqlQuerier) ([]User, error) {
 
- 	users := make([]User, 0, limit)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUsersQuery(order)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx, limit, offset)
 
- 	if err == nil {
 
- 		defer rows.Close()
 
- 		for rows.Next() {
 
- 			u, err := getUserFromDbRow(rows)
 
- 			if err != nil {
 
- 				return users, err
 
- 			}
 
- 			u.PrepareForRendering()
 
- 			users = append(users, u)
 
- 		}
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return users, err
 
- 	}
 
- 	return getUsersWithVirtualFolders(ctx, users, dbHandle)
 
- }
 
- func getAPIKeyFromDbRow(row sqlScanner) (APIKey, error) {
 
- 	var apiKey APIKey
 
- 	var userID, adminID sql.NullInt64
 
- 	var description sql.NullString
 
- 	err := row.Scan(&apiKey.KeyID, &apiKey.Name, &apiKey.Key, &apiKey.Scope, &apiKey.CreatedAt, &apiKey.UpdatedAt,
 
- 		&apiKey.LastUseAt, &apiKey.ExpiresAt, &description, &userID, &adminID)
 
- 	if err != nil {
 
- 		if err == sql.ErrNoRows {
 
- 			return apiKey, util.NewRecordNotFoundError(err.Error())
 
- 		}
 
- 		return apiKey, err
 
- 	}
 
- 	if userID.Valid {
 
- 		apiKey.userID = userID.Int64
 
- 	}
 
- 	if adminID.Valid {
 
- 		apiKey.adminID = adminID.Int64
 
- 	}
 
- 	if description.Valid {
 
- 		apiKey.Description = description.String
 
- 	}
 
- 	return apiKey, nil
 
- }
 
- func getAdminFromDbRow(row sqlScanner) (Admin, error) {
 
- 	var admin Admin
 
- 	var email, filters, additionalInfo, permissions, description sql.NullString
 
- 	err := row.Scan(&admin.ID, &admin.Username, &admin.Password, &admin.Status, &email, &permissions,
 
- 		&filters, &additionalInfo, &description, &admin.CreatedAt, &admin.UpdatedAt, &admin.LastLogin)
 
- 	if err != nil {
 
- 		if err == sql.ErrNoRows {
 
- 			return admin, util.NewRecordNotFoundError(err.Error())
 
- 		}
 
- 		return admin, err
 
- 	}
 
- 	if permissions.Valid {
 
- 		var perms []string
 
- 		err = json.Unmarshal([]byte(permissions.String), &perms)
 
- 		if err != nil {
 
- 			return admin, err
 
- 		}
 
- 		admin.Permissions = perms
 
- 	}
 
- 	if email.Valid {
 
- 		admin.Email = email.String
 
- 	}
 
- 	if filters.Valid {
 
- 		var adminFilters AdminFilters
 
- 		err = json.Unmarshal([]byte(filters.String), &adminFilters)
 
- 		if err == nil {
 
- 			admin.Filters = adminFilters
 
- 		}
 
- 	}
 
- 	if additionalInfo.Valid {
 
- 		admin.AdditionalInfo = additionalInfo.String
 
- 	}
 
- 	if description.Valid {
 
- 		admin.Description = description.String
 
- 	}
 
- 	return admin, nil
 
- }
 
- func getUserFromDbRow(row sqlScanner) (User, error) {
 
- 	var user User
 
- 	var permissions sql.NullString
 
- 	var password sql.NullString
 
- 	var publicKey sql.NullString
 
- 	var filters sql.NullString
 
- 	var fsConfig sql.NullString
 
- 	var additionalInfo, description sql.NullString
 
- 	err := row.Scan(&user.ID, &user.Username, &password, &publicKey, &user.HomeDir, &user.UID, &user.GID, &user.MaxSessions,
 
- 		&user.QuotaSize, &user.QuotaFiles, &permissions, &user.UsedQuotaSize, &user.UsedQuotaFiles, &user.LastQuotaUpdate,
 
- 		&user.UploadBandwidth, &user.DownloadBandwidth, &user.ExpirationDate, &user.LastLogin, &user.Status, &filters, &fsConfig,
 
- 		&additionalInfo, &description, &user.CreatedAt, &user.UpdatedAt)
 
- 	if err != nil {
 
- 		if err == sql.ErrNoRows {
 
- 			return user, util.NewRecordNotFoundError(err.Error())
 
- 		}
 
- 		return user, err
 
- 	}
 
- 	if password.Valid {
 
- 		user.Password = password.String
 
- 	}
 
- 	// we can have a empty string or an invalid json in null string
 
- 	// so we do a relaxed test if the field is optional, for example we
 
- 	// populate public keys only if unmarshal does not return an error
 
- 	if publicKey.Valid {
 
- 		var list []string
 
- 		err = json.Unmarshal([]byte(publicKey.String), &list)
 
- 		if err == nil {
 
- 			user.PublicKeys = list
 
- 		}
 
- 	}
 
- 	if permissions.Valid {
 
- 		perms := make(map[string][]string)
 
- 		err = json.Unmarshal([]byte(permissions.String), &perms)
 
- 		if err != nil {
 
- 			providerLog(logger.LevelWarn, "unable to deserialize permissions for user %#v: %v", user.Username, err)
 
- 			return user, fmt.Errorf("unable to deserialize permissions for user %#v: %v", user.Username, err)
 
- 		}
 
- 		user.Permissions = perms
 
- 	}
 
- 	if filters.Valid {
 
- 		var userFilters sdk.UserFilters
 
- 		err = json.Unmarshal([]byte(filters.String), &userFilters)
 
- 		if err == nil {
 
- 			user.Filters = userFilters
 
- 		}
 
- 	}
 
- 	if fsConfig.Valid {
 
- 		var fs vfs.Filesystem
 
- 		err = json.Unmarshal([]byte(fsConfig.String), &fs)
 
- 		if err == nil {
 
- 			user.FsConfig = fs
 
- 		}
 
- 	}
 
- 	if additionalInfo.Valid {
 
- 		user.AdditionalInfo = additionalInfo.String
 
- 	}
 
- 	if description.Valid {
 
- 		user.Description = description.String
 
- 	}
 
- 	user.SetEmptySecretsIfNil()
 
- 	return user, nil
 
- }
 
- func sqlCommonCheckFolderExists(ctx context.Context, name string, dbHandle sqlQuerier) error {
 
- 	var folderName string
 
- 	q := checkFolderNameQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	row := stmt.QueryRowContext(ctx, name)
 
- 	return row.Scan(&folderName)
 
- }
 
- func sqlCommonGetFolder(ctx context.Context, name string, dbHandle sqlQuerier) (vfs.BaseVirtualFolder, error) {
 
- 	var folder vfs.BaseVirtualFolder
 
- 	q := getFolderByNameQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return folder, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	row := stmt.QueryRowContext(ctx, name)
 
- 	var mappedPath, description, fsConfig sql.NullString
 
- 	err = row.Scan(&folder.ID, &mappedPath, &folder.UsedQuotaSize, &folder.UsedQuotaFiles, &folder.LastQuotaUpdate,
 
- 		&folder.Name, &description, &fsConfig)
 
- 	if err == sql.ErrNoRows {
 
- 		return folder, util.NewRecordNotFoundError(err.Error())
 
- 	}
 
- 	if mappedPath.Valid {
 
- 		folder.MappedPath = mappedPath.String
 
- 	}
 
- 	if description.Valid {
 
- 		folder.Description = description.String
 
- 	}
 
- 	if fsConfig.Valid {
 
- 		var fs vfs.Filesystem
 
- 		err = json.Unmarshal([]byte(fsConfig.String), &fs)
 
- 		if err == nil {
 
- 			folder.FsConfig = fs
 
- 		}
 
- 	}
 
- 	return folder, err
 
- }
 
- func sqlCommonGetFolderByName(ctx context.Context, name string, dbHandle sqlQuerier) (vfs.BaseVirtualFolder, error) {
 
- 	folder, err := sqlCommonGetFolder(ctx, name, dbHandle)
 
- 	if err != nil {
 
- 		return folder, err
 
- 	}
 
- 	folders, err := getVirtualFoldersWithUsers([]vfs.BaseVirtualFolder{folder}, dbHandle)
 
- 	if err != nil {
 
- 		return folder, err
 
- 	}
 
- 	if len(folders) != 1 {
 
- 		return folder, fmt.Errorf("unable to associate users with folder %#v", name)
 
- 	}
 
- 	return folders[0], nil
 
- }
 
- func sqlCommonAddOrUpdateFolder(ctx context.Context, baseFolder *vfs.BaseVirtualFolder, usedQuotaSize int64,
 
- 	usedQuotaFiles int, lastQuotaUpdate int64, dbHandle sqlQuerier) (vfs.BaseVirtualFolder, error) {
 
- 	var folder vfs.BaseVirtualFolder
 
- 	// FIXME: we could use an UPSERT here, this SELECT could be racy
 
- 	err := sqlCommonCheckFolderExists(ctx, baseFolder.Name, dbHandle)
 
- 	switch err {
 
- 	case nil:
 
- 		err = sqlCommonUpdateFolder(baseFolder, dbHandle)
 
- 		if err != nil {
 
- 			return folder, err
 
- 		}
 
- 	case sql.ErrNoRows:
 
- 		baseFolder.UsedQuotaFiles = usedQuotaFiles
 
- 		baseFolder.UsedQuotaSize = usedQuotaSize
 
- 		baseFolder.LastQuotaUpdate = lastQuotaUpdate
 
- 		err = sqlCommonAddFolder(baseFolder, dbHandle)
 
- 		if err != nil {
 
- 			return folder, err
 
- 		}
 
- 	default:
 
- 		return folder, err
 
- 	}
 
- 	return sqlCommonGetFolder(ctx, baseFolder.Name, dbHandle)
 
- }
 
- func sqlCommonAddFolder(folder *vfs.BaseVirtualFolder, dbHandle sqlQuerier) error {
 
- 	err := ValidateFolder(folder)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	fsConfig, err := json.Marshal(folder.FsConfig)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getAddFolderQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, folder.MappedPath, folder.UsedQuotaSize, folder.UsedQuotaFiles,
 
- 		folder.LastQuotaUpdate, folder.Name, folder.Description, string(fsConfig))
 
- 	return err
 
- }
 
- func sqlCommonUpdateFolder(folder *vfs.BaseVirtualFolder, dbHandle sqlQuerier) error {
 
- 	err := ValidateFolder(folder)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	fsConfig, err := json.Marshal(folder.FsConfig)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateFolderQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, folder.MappedPath, folder.Description, string(fsConfig), folder.Name)
 
- 	return err
 
- }
 
- func sqlCommonDeleteFolder(folder *vfs.BaseVirtualFolder, dbHandle sqlQuerier) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDeleteFolderQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, folder.ID)
 
- 	return err
 
- }
 
- func sqlCommonDumpFolders(dbHandle sqlQuerier) ([]vfs.BaseVirtualFolder, error) {
 
- 	folders := make([]vfs.BaseVirtualFolder, 0, 50)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), longSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDumpFoldersQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx)
 
- 	if err != nil {
 
- 		return folders, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		var folder vfs.BaseVirtualFolder
 
- 		var mappedPath, description, fsConfig sql.NullString
 
- 		err = rows.Scan(&folder.ID, &mappedPath, &folder.UsedQuotaSize, &folder.UsedQuotaFiles,
 
- 			&folder.LastQuotaUpdate, &folder.Name, &description, &fsConfig)
 
- 		if err != nil {
 
- 			return folders, err
 
- 		}
 
- 		if mappedPath.Valid {
 
- 			folder.MappedPath = mappedPath.String
 
- 		}
 
- 		if description.Valid {
 
- 			folder.Description = description.String
 
- 		}
 
- 		if fsConfig.Valid {
 
- 			var fs vfs.Filesystem
 
- 			err = json.Unmarshal([]byte(fsConfig.String), &fs)
 
- 			if err == nil {
 
- 				folder.FsConfig = fs
 
- 			}
 
- 		}
 
- 		folders = append(folders, folder)
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return folders, err
 
- 	}
 
- 	return getVirtualFoldersWithUsers(folders, dbHandle)
 
- }
 
- func sqlCommonGetFolders(limit, offset int, order string, dbHandle sqlQuerier) ([]vfs.BaseVirtualFolder, error) {
 
- 	folders := make([]vfs.BaseVirtualFolder, 0, limit)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getFoldersQuery(order)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx, limit, offset)
 
- 	if err != nil {
 
- 		return folders, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		var folder vfs.BaseVirtualFolder
 
- 		var mappedPath, description, fsConfig sql.NullString
 
- 		err = rows.Scan(&folder.ID, &mappedPath, &folder.UsedQuotaSize, &folder.UsedQuotaFiles,
 
- 			&folder.LastQuotaUpdate, &folder.Name, &description, &fsConfig)
 
- 		if err != nil {
 
- 			return folders, err
 
- 		}
 
- 		if mappedPath.Valid {
 
- 			folder.MappedPath = mappedPath.String
 
- 		}
 
- 		if description.Valid {
 
- 			folder.Description = description.String
 
- 		}
 
- 		if fsConfig.Valid {
 
- 			var fs vfs.Filesystem
 
- 			err = json.Unmarshal([]byte(fsConfig.String), &fs)
 
- 			if err == nil {
 
- 				folder.FsConfig = fs
 
- 			}
 
- 		}
 
- 		folder.PrepareForRendering()
 
- 		folders = append(folders, folder)
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return folders, err
 
- 	}
 
- 	return getVirtualFoldersWithUsers(folders, dbHandle)
 
- }
 
- func sqlCommonClearFolderMapping(ctx context.Context, user *User, dbHandle sqlQuerier) error {
 
- 	q := getClearFolderMappingQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, user.Username)
 
- 	return err
 
- }
 
- func sqlCommonAddFolderMapping(ctx context.Context, user *User, folder *vfs.VirtualFolder, dbHandle sqlQuerier) error {
 
- 	q := getAddFolderMappingQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, folder.VirtualPath, folder.QuotaSize, folder.QuotaFiles, folder.ID, user.Username)
 
- 	return err
 
- }
 
- func generateVirtualFoldersMapping(ctx context.Context, user *User, dbHandle sqlQuerier) error {
 
- 	err := sqlCommonClearFolderMapping(ctx, user, dbHandle)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	for idx := range user.VirtualFolders {
 
- 		vfolder := &user.VirtualFolders[idx]
 
- 		f, err := sqlCommonAddOrUpdateFolder(ctx, &vfolder.BaseVirtualFolder, 0, 0, 0, dbHandle)
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 		vfolder.BaseVirtualFolder = f
 
- 		err = sqlCommonAddFolderMapping(ctx, user, vfolder, dbHandle)
 
- 		if err != nil {
 
- 			return err
 
- 		}
 
- 	}
 
- 	return err
 
- }
 
- func getUserWithVirtualFolders(ctx context.Context, user User, dbHandle sqlQuerier) (User, error) {
 
- 	users, err := getUsersWithVirtualFolders(ctx, []User{user}, dbHandle)
 
- 	if err != nil {
 
- 		return user, err
 
- 	}
 
- 	if len(users) == 0 {
 
- 		return user, errSQLFoldersAssosaction
 
- 	}
 
- 	return users[0], err
 
- }
 
- func getUsersWithVirtualFolders(ctx context.Context, users []User, dbHandle sqlQuerier) ([]User, error) {
 
- 	if len(users) == 0 {
 
- 		return users, nil
 
- 	}
 
- 	var err error
 
- 	usersVirtualFolders := make(map[int64][]vfs.VirtualFolder)
 
- 	q := getRelatedFoldersForUsersQuery(users)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx)
 
- 	if err != nil {
 
- 		return nil, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		var folder vfs.VirtualFolder
 
- 		var userID int64
 
- 		var mappedPath, fsConfig, description sql.NullString
 
- 		err = rows.Scan(&folder.ID, &folder.Name, &mappedPath, &folder.UsedQuotaSize, &folder.UsedQuotaFiles,
 
- 			&folder.LastQuotaUpdate, &folder.VirtualPath, &folder.QuotaSize, &folder.QuotaFiles, &userID, &fsConfig,
 
- 			&description)
 
- 		if err != nil {
 
- 			return users, err
 
- 		}
 
- 		if mappedPath.Valid {
 
- 			folder.MappedPath = mappedPath.String
 
- 		}
 
- 		if description.Valid {
 
- 			folder.Description = description.String
 
- 		}
 
- 		if fsConfig.Valid {
 
- 			var fs vfs.Filesystem
 
- 			err = json.Unmarshal([]byte(fsConfig.String), &fs)
 
- 			if err == nil {
 
- 				folder.FsConfig = fs
 
- 			}
 
- 		}
 
- 		usersVirtualFolders[userID] = append(usersVirtualFolders[userID], folder)
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return users, err
 
- 	}
 
- 	if len(usersVirtualFolders) == 0 {
 
- 		return users, err
 
- 	}
 
- 	for idx := range users {
 
- 		ref := &users[idx]
 
- 		ref.VirtualFolders = usersVirtualFolders[ref.ID]
 
- 	}
 
- 	return users, err
 
- }
 
- func getVirtualFoldersWithUsers(folders []vfs.BaseVirtualFolder, dbHandle sqlQuerier) ([]vfs.BaseVirtualFolder, error) {
 
- 	if len(folders) == 0 {
 
- 		return folders, nil
 
- 	}
 
- 	var err error
 
- 	vFoldersUsers := make(map[int64][]string)
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getRelatedUsersForFoldersQuery(folders)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx)
 
- 	if err != nil {
 
- 		return nil, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		var username string
 
- 		var folderID int64
 
- 		err = rows.Scan(&folderID, &username)
 
- 		if err != nil {
 
- 			return folders, err
 
- 		}
 
- 		vFoldersUsers[folderID] = append(vFoldersUsers[folderID], username)
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return folders, err
 
- 	}
 
- 	if len(vFoldersUsers) == 0 {
 
- 		return folders, err
 
- 	}
 
- 	for idx := range folders {
 
- 		ref := &folders[idx]
 
- 		ref.Users = vFoldersUsers[ref.ID]
 
- 	}
 
- 	return folders, err
 
- }
 
- func sqlCommonUpdateFolderQuota(name string, filesAdd int, sizeAdd int64, reset bool, dbHandle *sql.DB) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getUpdateFolderQuotaQuery(reset)
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, sizeAdd, filesAdd, util.GetTimeAsMsSinceEpoch(time.Now()), name)
 
- 	if err == nil {
 
- 		providerLog(logger.LevelDebug, "quota updated for folder %#v, files increment: %v size increment: %v is reset? %v",
 
- 			name, filesAdd, sizeAdd, reset)
 
- 	} else {
 
- 		providerLog(logger.LevelWarn, "error updating quota for folder %#v: %v", name, err)
 
- 	}
 
- 	return err
 
- }
 
- func sqlCommonGetFolderUsedQuota(mappedPath string, dbHandle *sql.DB) (int, int64, error) {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getQuotaFolderQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return 0, 0, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	var usedFiles int
 
- 	var usedSize int64
 
- 	err = stmt.QueryRowContext(ctx, mappedPath).Scan(&usedSize, &usedFiles)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error getting quota for folder: %v, error: %v", mappedPath, err)
 
- 		return 0, 0, err
 
- 	}
 
- 	return usedFiles, usedSize, err
 
- }
 
- func getAPIKeyWithRelatedFields(ctx context.Context, apiKey APIKey, dbHandle sqlQuerier) (APIKey, error) {
 
- 	var apiKeys []APIKey
 
- 	var err error
 
- 	scope := APIKeyScopeAdmin
 
- 	if apiKey.userID > 0 {
 
- 		scope = APIKeyScopeUser
 
- 	}
 
- 	apiKeys, err = getRelatedValuesForAPIKeys(ctx, []APIKey{apiKey}, dbHandle, scope)
 
- 	if err != nil {
 
- 		return apiKey, err
 
- 	}
 
- 	if len(apiKeys) > 0 {
 
- 		apiKey = apiKeys[0]
 
- 	}
 
- 	return apiKey, nil
 
- }
 
- func getRelatedValuesForAPIKeys(ctx context.Context, apiKeys []APIKey, dbHandle sqlQuerier, scope APIKeyScope) ([]APIKey, error) {
 
- 	if len(apiKeys) == 0 {
 
- 		return apiKeys, nil
 
- 	}
 
- 	values := make(map[int64]string)
 
- 	var q string
 
- 	if scope == APIKeyScopeUser {
 
- 		q = getRelatedUsersForAPIKeysQuery(apiKeys)
 
- 	} else {
 
- 		q = getRelatedAdminsForAPIKeysQuery(apiKeys)
 
- 	}
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return nil, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	rows, err := stmt.QueryContext(ctx)
 
- 	if err != nil {
 
- 		return nil, err
 
- 	}
 
- 	defer rows.Close()
 
- 	for rows.Next() {
 
- 		var valueID int64
 
- 		var valueName string
 
- 		err = rows.Scan(&valueID, &valueName)
 
- 		if err != nil {
 
- 			return apiKeys, err
 
- 		}
 
- 		values[valueID] = valueName
 
- 	}
 
- 	err = rows.Err()
 
- 	if err != nil {
 
- 		return apiKeys, err
 
- 	}
 
- 	if len(values) == 0 {
 
- 		return apiKeys, nil
 
- 	}
 
- 	for idx := range apiKeys {
 
- 		ref := &apiKeys[idx]
 
- 		if scope == APIKeyScopeUser {
 
- 			ref.User = values[ref.userID]
 
- 		} else {
 
- 			ref.Admin = values[ref.adminID]
 
- 		}
 
- 	}
 
- 	return apiKeys, nil
 
- }
 
- func sqlCommonGetAPIKeyRelatedIDs(apiKey *APIKey) (sql.NullInt64, sql.NullInt64, error) {
 
- 	var userID, adminID sql.NullInt64
 
- 	if apiKey.User != "" {
 
- 		u, err := provider.userExists(apiKey.User)
 
- 		if err != nil {
 
- 			return userID, adminID, util.NewValidationError(fmt.Sprintf("unable to validate user %v", apiKey.User))
 
- 		}
 
- 		userID.Valid = true
 
- 		userID.Int64 = u.ID
 
- 	}
 
- 	if apiKey.Admin != "" {
 
- 		a, err := provider.adminExists(apiKey.Admin)
 
- 		if err != nil {
 
- 			return userID, adminID, util.NewValidationError(fmt.Sprintf("unable to validate admin %v", apiKey.Admin))
 
- 		}
 
- 		adminID.Valid = true
 
- 		adminID.Int64 = a.ID
 
- 	}
 
- 	return userID, adminID, nil
 
- }
 
- func sqlCommonGetDatabaseVersion(dbHandle *sql.DB, showInitWarn bool) (schemaVersion, error) {
 
- 	var result schemaVersion
 
- 	ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
 
- 	defer cancel()
 
- 	q := getDatabaseVersionQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		if showInitWarn && strings.Contains(err.Error(), sqlTableSchemaVersion) {
 
- 			logger.WarnToConsole("database query error, did you forgot to run the \"initprovider\" command?")
 
- 		}
 
- 		return result, err
 
- 	}
 
- 	defer stmt.Close()
 
- 	row := stmt.QueryRowContext(ctx)
 
- 	err = row.Scan(&result.Version)
 
- 	return result, err
 
- }
 
- func sqlCommonUpdateDatabaseVersion(ctx context.Context, dbHandle sqlQuerier, version int) error {
 
- 	q := getUpdateDBVersionQuery()
 
- 	stmt, err := dbHandle.PrepareContext(ctx, q)
 
- 	if err != nil {
 
- 		providerLog(logger.LevelWarn, "error preparing database query %#v: %v", q, err)
 
- 		return err
 
- 	}
 
- 	defer stmt.Close()
 
- 	_, err = stmt.ExecContext(ctx, version)
 
- 	return err
 
- }
 
- func sqlCommonExecSQLAndUpdateDBVersion(dbHandle *sql.DB, sqlQueries []string, newVersion int) error {
 
- 	ctx, cancel := context.WithTimeout(context.Background(), longSQLQueryTimeout)
 
- 	defer cancel()
 
- 	return sqlCommonExecuteTx(ctx, dbHandle, func(tx *sql.Tx) error {
 
- 		for _, q := range sqlQueries {
 
- 			if strings.TrimSpace(q) == "" {
 
- 				continue
 
- 			}
 
- 			_, err := tx.ExecContext(ctx, q)
 
- 			if err != nil {
 
- 				return err
 
- 			}
 
- 		}
 
- 		return sqlCommonUpdateDatabaseVersion(ctx, tx, newVersion)
 
- 	})
 
- }
 
- func sqlCommonExecuteTx(ctx context.Context, dbHandle *sql.DB, txFn func(*sql.Tx) error) error {
 
- 	if config.Driver == CockroachDataProviderName {
 
- 		return crdb.ExecuteTx(ctx, dbHandle, nil, txFn)
 
- 	}
 
- 	tx, err := dbHandle.BeginTx(ctx, nil)
 
- 	if err != nil {
 
- 		return err
 
- 	}
 
- 	err = txFn(tx)
 
- 	if err != nil {
 
- 		// we don't change the returned error
 
- 		tx.Rollback() //nolint:errcheck
 
- 		return err
 
- 	}
 
- 	return tx.Commit()
 
- }
 
 
  |