1: <?php
2: /**
3: * Magento
4: *
5: * NOTICE OF LICENSE
6: *
7: * This source file is subject to the Open Software License (OSL 3.0)
8: * that is bundled with this package in the file LICENSE.txt.
9: * It is also available through the world-wide-web at this URL:
10: * http://opensource.org/licenses/osl-3.0.php
11: * If you did not receive a copy of the license and are unable to
12: * obtain it through the world-wide-web, please send an email
13: * to license@magentocommerce.com so we can send you a copy immediately.
14: *
15: * DISCLAIMER
16: *
17: * Do not edit or add to this file if you wish to upgrade Magento to newer
18: * versions in the future. If you wish to customize Magento for your
19: * needs please refer to http://www.magentocommerce.com for more information.
20: *
21: * @category Mage
22: * @package Mage_Api
23: * @copyright Copyright (c) 2012 Magento Inc. (http://www.magentocommerce.com)
24: * @license http://opensource.org/licenses/osl-3.0.php Open Software License (OSL 3.0)
25: */
26:
27:
28: /**
29: * Rules resource model
30: *
31: * @category Mage
32: * @package Mage_Api
33: * @author Magento Core Team <core@magentocommerce.com>
34: */
35: class Mage_Api_Model_Resource_Rules extends Mage_Core_Model_Resource_Db_Abstract
36: {
37: /**
38: * Resource initialization
39: *
40: */
41: protected function _construct()
42: {
43: $this->_init('api/rule', 'rule_id');
44: }
45:
46: /**
47: * Save rule
48: *
49: * @param Mage_Api_Model_Rules $rule
50: */
51: public function saveRel(Mage_Api_Model_Rules $rule)
52: {
53: $adapter = $this->_getWriteAdapter();
54: $adapter->beginTransaction();
55:
56: try {
57: $roleId = $rule->getRoleId();
58: $adapter->delete($this->getMainTable(), array('role_id = ?' => $roleId));
59: $masterResources = Mage::getModel('api/roles')->getResourcesList2D();
60: $masterAdmin = false;
61: if ($postedResources = $rule->getResources()) {
62: foreach ($masterResources as $index => $resName) {
63: if (!$masterAdmin) {
64: $permission = (in_array($resName, $postedResources))? 'allow' : 'deny';
65: $adapter->insert($this->getMainTable(), array(
66: 'role_type' => 'G',
67: 'resource_id' => trim($resName, '/'),
68: 'api_privileges' => null,
69: 'assert_id' => 0,
70: 'role_id' => $roleId,
71: 'api_permission' => $permission
72: ));
73: }
74: if ($resName == 'all' && $permission == 'allow') {
75: $masterAdmin = true;
76: }
77: }
78: }
79:
80: $adapter->commit();
81: } catch (Mage_Core_Exception $e) {
82: throw $e;
83: } catch (Exception $e) {
84: $adapter->rollBack();
85: }
86: }
87: }
88: