Skip to content

Commit

Permalink
feat: check for various request status types (#14)
Browse files Browse the repository at this point in the history
  • Loading branch information
netr0m authored May 22, 2024
1 parent 26703f1 commit 57e4472
Show file tree
Hide file tree
Showing 3 changed files with 62 additions and 2 deletions.
11 changes: 9 additions & 2 deletions pkg/pim/client.go
Original file line number Diff line number Diff line change
Expand Up @@ -148,13 +148,20 @@ func ValidateRoleAssignmentRequest(scope string, roleAssignmentRequest RoleAssig
Payload: roleAssignmentValidationRequest,
}, validationResponse)

if validationResponse.Properties.Status != "Granted" {
if IsRoleAssignmentRequestFailed(validationResponse) {
log.Printf("ERROR: The role assignment validation failed with status '%s'", validationResponse.Properties.Status)
log.Fatalln(validationResponse)
return false
}
if IsRoleAssignmentRequestOK(validationResponse) {
return true
}
if IsRoleAssignmentRequestPending(validationResponse) {
log.Printf("WARNING: The role assignment request is pending with status '%s'", validationResponse.Properties.Status)
return true
}

return true
return false
}

func RequestRoleAssignment(subjectId string, roleAssignment *RoleAssignment, duration int, reason string, token string) *RoleAssignmentRequestResponse {
Expand Down
25 changes: 25 additions & 0 deletions pkg/pim/models.go
Original file line number Diff line number Diff line change
Expand Up @@ -81,6 +81,31 @@ type ScheduleInfo struct {
EndDateTime interface{} `json:"endDateTime"`
}

const (
StatusAccepted string = "Accepted"
StatusAdminApproved string = "AdminApproved"
StatusAdminDenied string = "AdminDenied"
StatusCanceled string = "Canceled"
StatusDenied string = "Denied"
StatusFailed string = "Failed"
StatusFailedAsResourceIsLocked string = "FailedAsResourceIsLocked"
StatusGranted string = "Granted"
StatusInvalid string = "Invalid"
StatusPendingAdminDecision string = "PendingAdminDecision"
StatusPendingApproval string = "PendingApproval"
StatusPendingApprovalProvisioning string = "PendingApprovalProvisioning"
StatusPendingEvaluation string = "PendingEvaluation"
StatusPendingExternalProvisioning string = "PendingExternalProvisioning"
StatusPendingProvisioning string = "PendingProvisioning"
StatusPendingRevocation string = "PendingRevocation"
StatusPendingScheduleCreation string = "PendingScheduleCreation"
StatusProvisioned string = "Provisioned"
StatusProvisioningStarted string = "ProvisioningStarted"
StatusRevoked string = "Revoked"
StatusScheduleCreated string = "ScheduleCreated"
StatusTimedOut string = "TimedOut"
)

type RoleAssignmentValidationProperties struct {
LinkedRoleEligibilityScheduleId string `json:"linkedRoleEligibilityScheduleId"`
TargetRoleAssignmentScheduleId string `json:"targetRoleAssignmentScheduleId"`
Expand Down
28 changes: 28 additions & 0 deletions pkg/pim/utils.go
Original file line number Diff line number Diff line change
@@ -0,0 +1,28 @@
/*
Copyright © 2024 netr0m <netr0m@pm.me>
*/
package pim

func IsRoleAssignmentRequestFailed(requestResponse *RoleAssignmentRequestResponse) bool {
switch requestResponse.Properties.Status {
case StatusAdminDenied, StatusCanceled, StatusDenied, StatusFailed, StatusFailedAsResourceIsLocked, StatusInvalid, StatusRevoked, StatusTimedOut:
return true
}
return false
}

func IsRoleAssignmentRequestPending(requestResponse *RoleAssignmentRequestResponse) bool {
switch requestResponse.Properties.Status {
case StatusPendingAdminDecision, StatusPendingApproval, StatusPendingApprovalProvisioning, StatusPendingEvaluation, StatusPendingExternalProvisioning, StatusPendingProvisioning, StatusPendingRevocation, StatusPendingScheduleCreation:
return true
}
return false
}

func IsRoleAssignmentRequestOK(requestResponse *RoleAssignmentRequestResponse) bool {
switch requestResponse.Properties.Status {
case StatusAccepted, StatusAdminApproved, StatusGranted, StatusProvisioned, StatusProvisioningStarted, StatusScheduleCreated:
return true
}
return false
}

0 comments on commit 57e4472

Please sign in to comment.