import type ClientPolicyRepresentation from "@keycloak/keycloak-admin-client/lib/defs/clientPolicyRepresentation"; import type ClientProfileRepresentation from "@keycloak/keycloak-admin-client/lib/defs/clientProfileRepresentation"; import { ActionGroup, AlertVariant, Button, ButtonVariant, DataList, DataListCell, DataListItem, DataListItemCells, DataListItemRow, Divider, DropdownItem, Flex, FlexItem, FormGroup, PageSection, Text, TextVariants, ValidatedOptions, } from "@patternfly/react-core"; import { PlusCircleIcon, TrashIcon } from "@patternfly/react-icons"; import { useState } from "react"; import { Controller, useForm } from "react-hook-form"; import { useTranslation } from "react-i18next"; import { Link, useNavigate } from "react-router-dom"; import { useAlerts } from "../components/alert/Alerts"; import { useConfirmDialog } from "../components/confirm-dialog/ConfirmDialog"; import { FormAccess } from "../components/form-access/FormAccess"; import { HelpItem } from "ui-shared"; import { KeycloakSpinner } from "../components/keycloak-spinner/KeycloakSpinner"; import { KeycloakTextArea } from "../components/keycloak-text-area/KeycloakTextArea"; import { KeycloakTextInput } from "../components/keycloak-text-input/KeycloakTextInput"; import { ViewHeader } from "../components/view-header/ViewHeader"; import { useAdminClient, useFetch } from "../context/auth/AdminClient"; import { useRealm } from "../context/realm-context/RealmContext"; import { useServerInfo } from "../context/server-info/ServerInfoProvider"; import { useParams } from "../utils/useParams"; import { AddClientProfileModal } from "./AddClientProfileModal"; import { toNewClientPolicyCondition } from "./routes/AddCondition"; import { toClientPolicies } from "./routes/ClientPolicies"; import { toClientProfile } from "./routes/ClientProfile"; import { EditClientPolicyParams, toEditClientPolicy, } from "./routes/EditClientPolicy"; import { toEditClientPolicyCondition } from "./routes/EditCondition"; import "./realm-settings-section.css"; type NewClientPolicyForm = Required; const defaultValues: NewClientPolicyForm = { name: "", description: "", conditions: [], enabled: true, profiles: [], }; type PolicyDetailAttributes = { idx: number; name: string; }; export default function NewClientPolicyForm() { const { t } = useTranslation("realm-settings"); const { realm } = useRealm(); const { addAlert, addError } = useAlerts(); const { adminClient } = useAdminClient(); const [policies, setPolicies] = useState(); const [clientProfiles, setClientProfiles] = useState< ClientProfileRepresentation[] >([]); const [currentPolicy, setCurrentPolicy] = useState(); const [ showAddConditionsAndProfilesForm, setShowAddConditionsAndProfilesForm, ] = useState(false); const [conditionToDelete, setConditionToDelete] = useState(); const [profilesModalOpen, setProfilesModalOpen] = useState(false); const [profileToDelete, setProfileToDelete] = useState(); const { policyName } = useParams(); const navigate = useNavigate(); const form = useForm({ mode: "onChange", defaultValues, }); const { handleSubmit } = form; const formValues = form.getValues(); type ClientPoliciesHeaderProps = { onChange: (value: boolean) => void; value: boolean; save: () => void; realmName: string; }; const ClientPoliciesHeader = ({ save, onChange, value, }: ClientPoliciesHeaderProps) => { const { t } = useTranslation("realm-settings"); const [toggleDisableDialog, DisableConfirm] = useConfirmDialog({ titleKey: "realm-settings:disablePolicyConfirmTitle", messageKey: "realm-settings:disablePolicyConfirm", continueButtonLabel: "common:disable", onConfirm: () => { onChange(!value); save(); }, }); if (!policies) { return ; } return ( <> { toggleDeleteDialog(); }} data-testid="deleteClientPolicyDropdown" > {t("deleteClientPolicy")} , ] : undefined } isEnabled={value} onToggle={(value) => { if (!value) { toggleDisableDialog(); } else { onChange(value); save(); } }} /> ); }; useFetch( async () => { const [policies, profiles] = await Promise.all([ adminClient.clientPolicies.listPolicies(), adminClient.clientPolicies.listProfiles({ includeGlobalProfiles: true, }), ]); return { policies, profiles }; }, ({ policies, profiles }) => { const currentPolicy = policies.policies?.find( (item) => item.name === policyName ); const allClientProfiles = [ ...(profiles.globalProfiles ?? []), ...(profiles.profiles ?? []), ]; setPolicies(policies.policies ?? []); if (currentPolicy) { setupForm(currentPolicy); setClientProfiles(allClientProfiles); setCurrentPolicy(currentPolicy); setShowAddConditionsAndProfilesForm(true); } }, [] ); const setupForm = (policy: ClientPolicyRepresentation) => { form.reset(policy); }; const policy = (policies || []).filter( (policy) => policy.name === policyName ); const policyConditions = policy[0]?.conditions || []; const policyProfiles = policy[0]?.profiles || []; const serverInfo = useServerInfo(); const conditionTypes = serverInfo.componentTypes?.[ "org.keycloak.services.clientpolicy.condition.ClientPolicyConditionProvider" ]; const save = async () => { const createdForm = form.getValues(); const createdPolicy = { ...createdForm, profiles: [], conditions: [], }; const getAllPolicies = () => { const policyNameExists = policies?.some( (policy) => policy.name === createdPolicy.name ); if (policyNameExists) { return policies?.map((policy) => policy.name === createdPolicy.name ? createdPolicy : policy ); } else if (createdForm.name !== policyName) { return policies ?.filter((item) => item.name !== policyName) .concat(createdForm); } return policies?.concat(createdForm); }; try { await adminClient.clientPolicies.updatePolicy({ policies: getAllPolicies(), }); addAlert( policyName ? t("realm-settings:updateClientPolicySuccess") : t("realm-settings:createClientPolicySuccess"), AlertVariant.success ); navigate(toEditClientPolicy({ realm, policyName: createdForm.name! })); setShowAddConditionsAndProfilesForm(true); } catch (error) { addError("realm-settings:createClientPolicyError", error); } }; const [toggleDeleteDialog, DeleteConfirm] = useConfirmDialog({ titleKey: t("deleteClientPolicyConfirmTitle"), messageKey: t("deleteClientPolicyConfirm", { policyName: policyName, }), continueButtonLabel: t("delete"), continueButtonVariant: ButtonVariant.danger, onConfirm: async () => { const updatedPolicies = policies?.filter( (policy) => policy.name !== policyName ); try { await adminClient.clientPolicies.updatePolicy({ policies: updatedPolicies, }); addAlert(t("deleteClientPolicySuccess"), AlertVariant.success); navigate( toClientPolicies({ realm, tab: "policies", }) ); } catch (error) { addError(t("deleteClientPolicyError"), error); } }, }); const [toggleDeleteConditionDialog, DeleteConditionConfirm] = useConfirmDialog({ titleKey: t("deleteClientPolicyConditionConfirmTitle"), messageKey: t("deleteClientPolicyConditionConfirm", { condition: conditionToDelete?.name, }), continueButtonLabel: t("delete"), continueButtonVariant: ButtonVariant.danger, onConfirm: async () => { if (conditionToDelete?.name) { currentPolicy?.conditions?.splice(conditionToDelete.idx!, 1); try { await adminClient.clientPolicies.updatePolicy({ policies: policies, }); addAlert(t("deleteConditionSuccess"), AlertVariant.success); navigate( toEditClientPolicy({ realm, policyName: formValues.name! }) ); } catch (error) { addError(t("deleteConditionError"), error); } } else { const updatedPolicies = policies?.filter( (policy) => policy.name !== policyName ); try { await adminClient.clientPolicies.updatePolicy({ policies: updatedPolicies, }); addAlert(t("deleteClientSuccess"), AlertVariant.success); navigate( toClientPolicies({ realm, tab: "policies", }) ); } catch (error) { addError(t("deleteClientError"), error); } } }, }); const [toggleDeleteProfileDialog, DeleteProfileConfirm] = useConfirmDialog({ titleKey: t("deleteClientPolicyProfileConfirmTitle"), messageKey: t("deleteClientPolicyProfileConfirm", { profileName: profileToDelete?.name, policyName, }), continueButtonLabel: t("delete"), continueButtonVariant: ButtonVariant.danger, onConfirm: async () => { if (profileToDelete?.name) { currentPolicy?.profiles?.splice(profileToDelete.idx!, 1); try { await adminClient.clientPolicies.updatePolicy({ policies: policies, }); addAlert(t("deleteClientPolicyProfileSuccess"), AlertVariant.success); navigate(toEditClientPolicy({ realm, policyName: formValues.name! })); } catch (error) { addError(t("deleteClientPolicyProfileError"), error); } } else { const updatedPolicies = policies?.filter( (policy) => policy.name !== policyName ); try { await adminClient.clientPolicies.updatePolicy({ policies: updatedPolicies, }); addAlert(t("deleteClientSuccess"), AlertVariant.success); navigate( toClientPolicies({ realm, tab: "policies", }) ); } catch (error) { addError(t("deleteClientError"), error); } } }, }); const reset = () => { if (currentPolicy?.name !== undefined) { form.setValue("name", currentPolicy.name); } if (currentPolicy?.description !== undefined) { form.setValue("description", currentPolicy.description); } }; const toggleModal = () => { setProfilesModalOpen(!profilesModalOpen); }; const addProfiles = async (profiles: string[]) => { const createdPolicy = { ...currentPolicy, profiles: policyProfiles.concat(profiles), conditions: currentPolicy?.conditions, }; const index = policies?.findIndex( (policy) => createdPolicy.name === policy.name ); if (index === undefined || index === -1) { return; } const newPolicies = [ ...(policies || []).slice(0, index), createdPolicy, ...(policies || []).slice(index + 1), ]; try { await adminClient.clientPolicies.updatePolicy({ policies: newPolicies, }); setPolicies(newPolicies); navigate(toEditClientPolicy({ realm, policyName: formValues.name! })); addAlert( t("realm-settings:addClientProfileSuccess"), AlertVariant.success ); } catch (error) { addError("realm-settings:addClientProfileError", error); } }; return ( <> { addProfiles(profiles.map((item) => item.name!)); }} allProfiles={policyProfiles} open={profilesModalOpen} toggleDialog={toggleModal} /> ( )} /> policies?.some((policy) => policy.name === value) ? t("createClientProfileNameHelperText").toString() : true, })} /> {(showAddConditionsAndProfilesForm || form.formState.isSubmitted) && ( <> {t("conditions")} {policyConditions.length > 0 ? ( {policyConditions.map((condition, idx) => ( {Object.keys(condition.configuration!).length !== 0 ? ( {condition.condition} ) : ( condition.condition )} {conditionTypes?.map( (type) => type.id === condition.condition && ( <> ) )} , ]} /> ))} ) : ( <> {t("realm-settings:emptyConditions")} )} )} {(showAddConditionsAndProfilesForm || form.formState.isSubmitted) && ( <> {t("clientProfiles")} {policyProfiles.length > 0 ? ( {policyProfiles.map((profile, idx) => ( {profile && ( {profile} )} {policyProfiles .filter((type) => type === profile) .map((type) => ( <> type === profile.name )?.description } fieldLabelId={profile} /> ))} , ]} /> ))} ) : ( <> {t("realm-settings:emptyProfiles")} )} )} ); }