mirror of
https://github.com/ubicloud/ubicloud.git
synced 2023-08-22 09:38:31 +03:00
There are several ways to show SVG in HTML. One of the recommended way is showing SVG inline. We are doing it. But long SVG paths make hard to maintain HTML files. Also some of the icons used multiple times. I created an icon component and show icon depending on its name. So all of the our SVG icons go to "icon.erb" file. I excluded this file from erb_formatter because it couldn't format `when` cases correctly.
174 lines
5.0 KiB
Ruby
174 lines
5.0 KiB
Ruby
# frozen_string_literal: true
|
|
|
|
# Migrate
|
|
|
|
migrate = lambda do |env, version|
|
|
ENV["RACK_ENV"] = env
|
|
require "bundler/setup"
|
|
Bundler.setup
|
|
require "logger"
|
|
require "sequel"
|
|
require_relative "db"
|
|
Sequel.extension :migration
|
|
DB.extension :pg_enum
|
|
|
|
DB.loggers << Logger.new($stdout) if DB.loggers.empty?
|
|
Sequel::Migrator.apply(DB, "migrate", version)
|
|
|
|
# Check if the alternate-user password hash user needs to run
|
|
# migrations. It's desirable to avoid always connecting to run
|
|
# migrations, since, almost always, there will be nothing to do and
|
|
# it gluts output.
|
|
case DB[<<SQL].get
|
|
SELECT count(*)
|
|
FROM pg_class
|
|
WHERE relnamespace = 'public'::regnamespace AND relname = 'account_password_hashes'
|
|
SQL
|
|
when 0
|
|
user = DB.get(Sequel.lit("current_user"))
|
|
ph_user = "#{user}_password"
|
|
|
|
# NB: this grant/revoke cannot be transaction-isolated, so, in
|
|
# sensitive settings, it would be good to check role access.
|
|
DB["GRANT CREATE ON SCHEMA public TO ?", ph_user.to_sym].get
|
|
Sequel.postgres(**DB.opts.merge(user: ph_user)) do |db|
|
|
db.loggers << Logger.new($stdout) if db.loggers.empty?
|
|
Sequel::Migrator.run(db, "migrate/ph", table: "schema_migrations_password")
|
|
|
|
if Config.test?
|
|
# User doesn't have permission to run TRUNCATE on password hash tables, so DatabaseCleaner
|
|
# can't clean Rodauth tables between test runs. While running migrations for test database,
|
|
# we allow it, so cleaner can clean them.
|
|
db["GRANT TRUNCATE ON account_password_hashes TO ?", user.to_sym].get
|
|
db["GRANT TRUNCATE ON account_previous_password_hashes TO ?", user.to_sym].get
|
|
end
|
|
end
|
|
DB["REVOKE ALL ON SCHEMA public FROM ?", ph_user.to_sym].get
|
|
when 1
|
|
# Already ran the "ph" migration as the alternate user. This
|
|
# branch is taken nearly all the time in a production situation.
|
|
else
|
|
fail "BUG: account_password_hashes table probing query should return 0 or 1"
|
|
end
|
|
end
|
|
|
|
desc "Migrate test database to latest version"
|
|
task :test_up do
|
|
migrate.call("test", nil)
|
|
end
|
|
|
|
desc "Migrate test database down. If VERSION isn't given, migrates to all the way down."
|
|
task :test_down do
|
|
version = ENV["VERSION"].to_i || 0
|
|
migrate.call("test", version)
|
|
end
|
|
|
|
desc "Migrate test database all the way down and then back up"
|
|
task :test_bounce do
|
|
migrate.call("test", 0)
|
|
Sequel::Migrator.apply(DB, "migrate")
|
|
end
|
|
|
|
desc "Migrate development database to latest version"
|
|
task :dev_up do
|
|
migrate.call("development", nil)
|
|
end
|
|
|
|
desc "Migrate development database down. If VERSION isn't given, migrates to all the way down."
|
|
task :dev_down do
|
|
version = ENV["VERSION"].to_i || 0
|
|
migrate.call("development", version)
|
|
end
|
|
|
|
desc "Migrate development database all the way down and then back up"
|
|
task :dev_bounce do
|
|
migrate.call("development", 0)
|
|
Sequel::Migrator.apply(DB, "migrate")
|
|
end
|
|
|
|
desc "Migrate production database to latest version"
|
|
task :prod_up do
|
|
migrate.call("production", nil)
|
|
end
|
|
|
|
desc "Generate a new .env.rb"
|
|
task :overwrite_envrb do
|
|
require "securerandom"
|
|
|
|
File.write(".env.rb", <<ENVRB)
|
|
# frozen_string_literal: true
|
|
|
|
case ENV["RACK_ENV"] ||= "development"
|
|
when "test"
|
|
ENV["CLOVER_SESSION_SECRET"] ||= "#{SecureRandom.base64(64)}"
|
|
ENV["CLOVER_DATABASE_URL"] ||= 'postgres:///clover_test?user=clover'
|
|
ENV["CLOVER_COLUMN_ENCRYPTION_KEY"] ||= "#{SecureRandom.base64(32)}"
|
|
else
|
|
ENV["CLOVER_SESSION_SECRET"] ||= "#{SecureRandom.base64(64)}"
|
|
ENV["CLOVER_DATABASE_URL"] ||= "postgres:///clover_development?user=clover"
|
|
ENV["CLOVER_COLUMN_ENCRYPTION_KEY"] ||= "#{SecureRandom.base64(32)}"
|
|
end
|
|
ENVRB
|
|
end
|
|
|
|
# Specs
|
|
begin
|
|
require "rspec/core/rake_task"
|
|
ENV["RACK_ENV"] = "test"
|
|
RSpec::Core::RakeTask.new(:spec)
|
|
task default: :spec
|
|
rescue LoadError
|
|
end
|
|
|
|
# Other
|
|
|
|
desc "Annotate Sequel models"
|
|
task "annotate" do
|
|
ENV["RACK_ENV"] = "development"
|
|
require_relative "loader"
|
|
require_relative "model"
|
|
DB.loggers.clear
|
|
require "sequel/annotate"
|
|
Sequel::Annotate.annotate(Dir["model/**/*.rb"])
|
|
end
|
|
|
|
desc "Emit assets before deploying"
|
|
task "assets:precompile" do
|
|
`npm install`
|
|
fail unless $?.success?
|
|
`npm run prod`
|
|
fail unless $?.success?
|
|
end
|
|
|
|
begin
|
|
namespace :linter do
|
|
# "fdr/erb-formatter" can't be required without bundler setup because of custom repository.
|
|
require "bundler/setup"
|
|
Bundler.setup
|
|
|
|
require "rubocop/rake_task"
|
|
desc "Run Rubocop"
|
|
RuboCop::RakeTask.new
|
|
|
|
desc "Run Brakeman"
|
|
task :brakeman do
|
|
puts "Running Brakeman..."
|
|
require "brakeman"
|
|
Brakeman.run app_path: ".", quiet: true, force_scan: true, print_report: true, run_all_checks: true
|
|
end
|
|
|
|
desc "Run ERB::Formatter"
|
|
task :erb_formatter do
|
|
puts "Running ERB::Formatter..."
|
|
require "erb/formatter/command_line"
|
|
files = Dir.glob("views/**/[!icon]*.erb").entries
|
|
ERB::Formatter::CommandLine.new(files + ["--write", "--print-width", "120"]).run
|
|
end
|
|
end
|
|
|
|
desc "Run all linters"
|
|
task linter: ["rubocop", "brakeman", "erb_formatter"].map { "linter:#{_1}" }
|
|
rescue LoadError
|
|
puts "Could not load dev dependencies"
|
|
end
|