base_controller.rb 2.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869
  1. module Blazer
  2. class BaseController < ApplicationController
  3. # skip all filters
  4. skip_filter *_process_action_callbacks.map(&:filter)
  5. protect_from_forgery with: :exception
  6. if ENV["BLAZER_PASSWORD"]
  7. http_basic_authenticate_with name: ENV["BLAZER_USERNAME"], password: ENV["BLAZER_PASSWORD"]
  8. end
  9. if Blazer.before_action
  10. before_action Blazer.before_action
  11. end
  12. layout "blazer/application"
  13. before_action :ensure_database_url
  14. private
  15. def ensure_database_url
  16. render text: "BLAZER_DATABASE_URL required" if !ENV["BLAZER_DATABASE_URL"] && !Rails.env.development?
  17. end
  18. def process_vars(statement, data_source)
  19. (@bind_vars ||= []).concat(extract_vars(statement)).uniq!
  20. @bind_vars.each do |var|
  21. params[var] ||= Blazer.data_sources[data_source].variable_defaults[var]
  22. end
  23. @success = @bind_vars.all? { |v| params[v] }
  24. if @success
  25. @bind_vars.each do |var|
  26. value = params[var].presence
  27. if value
  28. if value =~ /\A\d+\z/
  29. value = value.to_i
  30. elsif value =~ /\A\d+\.\d+\z/
  31. value = value.to_f
  32. end
  33. end
  34. if var.end_with?("_at")
  35. value = Blazer.time_zone.parse(value) rescue nil
  36. end
  37. value.gsub!(" ", "+") if ["start_time", "end_time"].include?(var) # fix for Quip bug
  38. statement.gsub!("{#{var}}", ActiveRecord::Base.connection.quote(value))
  39. end
  40. end
  41. end
  42. def extract_vars(statement)
  43. # strip commented out lines
  44. # and regex {1} or {1,2}
  45. statement.gsub(/\-\-.+/, "").gsub(/\/\*.+\*\//m, "").scan(/\{.*?\}/).map { |v| v[1...-1] }.reject { |v| /\A\d+(\,\d+)?\z/.match(v) }.uniq
  46. end
  47. helper_method :extract_vars
  48. def variable_params
  49. params.except(:controller, :action, :id, :host, :query, :dashboard, :query_id, :query_ids, :table_names, :authenticity_token, :utf8, :_method, :commit, :statement, :data_source, :name, :fork_query_id).permit!
  50. end
  51. helper_method :variable_params
  52. def blazer_user
  53. send(Blazer.user_method) if Blazer.user_method && respond_to?(Blazer.user_method)
  54. end
  55. helper_method :blazer_user
  56. end
  57. end