This repository has been archived on 2020-03-24. You can view files and clone it, but cannot push or open issues or pull requests.
quay/data/model/service_keys.py

55 lines
1.7 KiB
Python
Raw Normal View History

2016-03-16 19:49:25 +00:00
from datetime import datetime
from data.model import ServiceKeyDoesNotExist, db_transaction
from data.database import db_for_update, ServiceKey, ServiceKeyApproval
2016-03-16 19:49:25 +00:00
def _gc_expired(service):
ServiceKey.delete().where(ServiceKey.service == service,
ServiceKey.expiration_date <= datetime.now).execute()
def upsert_service_key(kid, service, jwk, expiration_date):
_gc_expired(service)
try:
with db_transaction():
key = db_for_update(ServiceKey.select().where(ServiceKey.kid == kid)).get()
key.service = service
key.jwk = jwk
key.expiration_date = expiration_date
key.save()
2016-03-16 19:49:25 +00:00
except ServiceKey.DoesNotExist:
ServiceKey.create(kid=kid, service=service, jwk=jwk, expiration_date=expiration_date)
def get_service_keys(service, kid=None):
_gc_expired(service)
query = ServiceKey.select().where(ServiceKey.service == service,
~(ServiceKey.approval >> None))
if kid:
query.where(ServiceKey.kid == kid)
return query
2016-03-16 19:49:25 +00:00
def delete_service_key(service, kid):
_gc_expired(service)
try:
ServiceKey.delete().where(ServiceKey.service == service,
ServiceKey.kid == kid).execute()
except ServiceKey.DoesNotExist:
raise ServiceKeyDoesNotExist()
def approve_service_key(service, kid, approver, approval_type):
try:
with db_transaction():
approval = ServiceKeyApproval.create(approver=approver, approval_type=approval_type)
key = db_for_update(ServiceKey.select().where(ServiceKey.service == service,
ServiceKey.kid == kid)).get()
key.approval = approval
key.save()
except ServiceKey.DoesNotExist:
raise ServiceKeyDoesNotExist