2019-02-15 15:39:39 +05:30
|
|
|
# frozen_string_literal: true
|
|
|
|
|
2018-03-17 18:26:18 +05:30
|
|
|
module Gitlab
|
|
|
|
module Database
|
|
|
|
# Model that can be used for querying permissions of a SQL user.
|
|
|
|
class Grant < ActiveRecord::Base
|
2018-12-05 23:21:45 +05:30
|
|
|
include FromUnion
|
|
|
|
|
2019-10-12 21:52:04 +05:30
|
|
|
self.table_name = 'information_schema.role_table_grants'
|
2018-03-17 18:26:18 +05:30
|
|
|
|
|
|
|
# Returns true if the current user can create and execute triggers on the
|
|
|
|
# given table.
|
|
|
|
def self.create_and_execute_trigger?(table)
|
2019-10-12 21:52:04 +05:30
|
|
|
# We _must not_ use quote_table_name as this will produce double
|
|
|
|
# quotes on PostgreSQL and for "has_table_privilege" we need single
|
|
|
|
# quotes.
|
|
|
|
quoted_table = connection.quote(table)
|
2018-03-17 18:26:18 +05:30
|
|
|
|
2019-10-12 21:52:04 +05:30
|
|
|
begin
|
|
|
|
from(nil)
|
|
|
|
.pluck(Arel.sql("has_table_privilege(#{quoted_table}, 'TRIGGER')"))
|
|
|
|
.first
|
|
|
|
rescue ActiveRecord::StatementInvalid
|
|
|
|
# This error is raised when using a non-existing table name. In this
|
|
|
|
# case we just want to return false as a user technically can't
|
|
|
|
# create triggers for such a table.
|
|
|
|
false
|
2018-03-17 18:26:18 +05:30
|
|
|
end
|
|
|
|
end
|
|
|
|
end
|
|
|
|
end
|
|
|
|
end
|