module ForemanOpenscap::HostExtensions::ClassMethods
def policy_assigned_directly_host_ids(condition, host_ids_from_arf)
def policy_assigned_directly_host_ids(condition, host_ids_from_arf) ForemanOpenscap::Asset.where(:assetable_type => 'Host::Base') .joins(:policies) .where(condition) .where.not(:assetable_id => host_ids_from_arf) .pluck(:assetable_id) end
def policy_assigned_using_hostgroup_host_ids(condition, host_ids_from_arf)
def policy_assigned_using_hostgroup_host_ids(condition, host_ids_from_arf) hostgroup_with_policy_ids = ForemanOpenscap::Asset.where(:assetable_type => 'Hostgroup') .joins(:policies) .where(condition) .pluck(:assetable_id) subtree_ids = ::Hostgroup.where(:id => hostgroup_with_policy_ids).flat_map(&:subtree_ids).uniq ::Host.where(:hostgroup_id => subtree_ids).where.not(:id => host_ids_from_arf).pluck(:id) end
def query_conditions(query)
def query_conditions(query) { :conditions => "hosts.id IN (#{query})" } end
def search_assigned_all(condition, not_in_host_ids, negate = false)
def search_assigned_all(condition, not_in_host_ids, negate = false) sql_not = negate ? "NOT" : "" direct_result = policy_assigned_directly_host_ids condition, not_in_host_ids hg_result = policy_assigned_using_hostgroup_host_ids condition, not_in_host_ids result = (direct_result + hg_result).uniq { :conditions => "hosts.id #{sql_not} IN (#{result.empty? ? 'NULL' : result.join(',')})" } end
def search_by_compliance(key, operator, policy_name, method)
def search_by_compliance(key, operator, policy_name, method) policy = ForemanOpenscap::Policy.find_by :name => policy_name host_ids = policy ? public_send(method, policy).pluck(:id) : [] { :conditions => ::Host::Managed.arel_table[:id].in(host_ids).to_sql } end
def search_by_comply_with(key, operator, policy_name)
def search_by_comply_with(key, operator, policy_name) search_by_compliance key, operator, policy_name, :comply_with end
def search_by_inconclusive_with(key, operator, policy_name)
def search_by_inconclusive_with(key, operator, policy_name) search_by_compliance key, operator, policy_name, :inconclusive_with end
def search_by_missing_arf(key, operator, policy_name)
def search_by_missing_arf(key, operator, policy_name) cond = sanitize_sql_for_conditions(["foreman_openscap_policies.name #{operator} ?", value_to_sql(operator, policy_name)]) host_ids_from_arf_of_policy = ForemanOpenscap::ArfReport.joins(:policy).where(cond).pluck(:host_id).uniq search_assigned_all cond, host_ids_from_arf_of_policy end
def search_by_not_comply_with(key, operator, policy_name)
def search_by_not_comply_with(key, operator, policy_name) search_by_compliance key, operator, policy_name, :not_comply_with end
def search_by_policy_id(key, operator, policy_id)
def search_by_policy_id(key, operator, policy_id) cond = sanitize_sql_for_conditions(["foreman_openscap_policies.id #{operator} ?", value_to_sql(operator, policy_id)]) search_assigned_all cond, [] end
def search_by_policy_name(key, operator, policy_name)
def search_by_policy_name(key, operator, policy_name) cond = sanitize_sql_for_conditions(["foreman_openscap_policies.name #{operator} ?", value_to_sql(operator, policy_name)]) host_group_host_ids = policy_assigned_using_hostgroup_host_ids cond, [] host_group_cond = if host_group_host_ids.any? ' OR ' + sanitize_sql_for_conditions("hosts.id IN (#{host_group_host_ids.join(',')})") else '' end { :conditions => ::Host::Managed.arel_table[:id].in(::Host::Managed.select(::Host::Managed.arel_table[:id]).joins(:policies).where(cond).pluck(:id)).to_sql + host_group_cond } end
def search_by_removed_from_policy(key, operator, policy_name)
def search_by_removed_from_policy(key, operator, policy_name) policy = ForemanOpenscap::Policy.find_by :name => policy_name host_ids = policy ? removed_from_policy(policy).pluck(:id) : [] { :conditions => ::Host::Managed.arel_table[:id].in(host_ids).to_sql } end
def search_by_rule(rule_name, rule_result)
def search_by_rule(rule_name, rule_result) query = ::Host.joins(:arf_reports) .merge(ArfReport.latest .by_rule_result(rule_name, rule_result) .unscope(:order)) .distinct .select(::Host.arel_table[:id]).to_sql query_conditions query end
def search_by_rule_failed(key, operator, rule_name)
def search_by_rule_failed(key, operator, rule_name) search_by_rule rule_name, 'fail' end
def search_by_rule_othered(key, operator, rule_name)
def search_by_rule_othered(key, operator, rule_name) search_by_rule rule_name, LogExtensions.othered_result_constants end
def search_by_rule_passed(key, operator, rule_name)
def search_by_rule_passed(key, operator, rule_name) search_by_rule rule_name, 'pass' end
def search_for_any_with_policy(key, operator, value)
def search_for_any_with_policy(key, operator, value) search_assigned_all nil, [], (value == "false") end