From 24660d8f8532a537fca37c8d7fbb08db118b53c5 Mon Sep 17 00:00:00 2001 From: Jonathan Christison Date: Tue, 27 Jun 2023 22:33:11 +0100 Subject: [PATCH] Start adding validation and some primative endpoints --- pom.xml | 139 +++++++++ src/main/docker/Dockerfile.jvm | 95 ++++++ src/main/docker/Dockerfile.legacy-jar | 91 ++++++ src/main/docker/Dockerfile.native | 27 ++ src/main/docker/Dockerfile.native-micro | 30 ++ .../com/redhat/pctsec/GreetingResource.java | 16 + .../redhat/pctsec/model/ScanCollection.java | 4 + .../java/com/redhat/pctsec/model/build.java | 30 ++ .../java/com/redhat/pctsec/model/git.java | 26 ++ .../java/com/redhat/pctsec/model/pssaas.java | 85 ++++++ .../com/redhat/pctsec/model/scanchain.java | 4 + .../redhat/pctsec/rest/v1alpha1/Kerberos.java | 25 ++ .../com/redhat/pctsec/rest/v1alpha1/Scan.java | 45 +++ .../resources/META-INF/resources/index.html | 288 ++++++++++++++++++ src/main/resources/application.properties | 2 +- .../com/redhat/pctsec/GreetingResourceIT.java | 8 + .../redhat/pctsec/GreetingResourceTest.java | 21 ++ 17 files changed, 935 insertions(+), 1 deletion(-) create mode 100644 pom.xml create mode 100644 src/main/docker/Dockerfile.jvm create mode 100644 src/main/docker/Dockerfile.legacy-jar create mode 100644 src/main/docker/Dockerfile.native create mode 100644 src/main/docker/Dockerfile.native-micro create mode 100644 src/main/java/com/redhat/pctsec/GreetingResource.java create mode 100644 src/main/java/com/redhat/pctsec/model/ScanCollection.java create mode 100644 src/main/java/com/redhat/pctsec/model/build.java create mode 100644 src/main/java/com/redhat/pctsec/model/git.java create mode 100644 src/main/java/com/redhat/pctsec/model/pssaas.java create mode 100644 src/main/java/com/redhat/pctsec/model/scanchain.java create mode 100644 src/main/java/com/redhat/pctsec/rest/v1alpha1/Kerberos.java create mode 100644 src/main/java/com/redhat/pctsec/rest/v1alpha1/Scan.java create mode 100644 src/main/resources/META-INF/resources/index.html create mode 100644 src/test/java/com/redhat/pctsec/GreetingResourceIT.java create mode 100644 src/test/java/com/redhat/pctsec/GreetingResourceTest.java diff --git a/pom.xml b/pom.xml new file mode 100644 index 0000000..1b37601 --- /dev/null +++ b/pom.xml @@ -0,0 +1,139 @@ + + + 4.0.0 + com.redhat.pctsec + osh-wrapper-service + 1.0.0-SNAPSHOT + + 3.11.0 + 17 + UTF-8 + UTF-8 + quarkus-bom + io.quarkus.platform + 3.1.2.Final + true + 3.0.0 + + + + + ${quarkus.platform.group-id} + ${quarkus.platform.artifact-id} + ${quarkus.platform.version} + pom + import + + + + + + io.quarkiverse.kerberos + quarkus-kerberos + 2.1.0 + + + io.quarkus + quarkus-resteasy-reactive + + + io.quarkus + quarkus-openshift + + + io.quarkiverse.tektonclient + quarkus-tekton-client + 1.0.1 + + + io.quarkus + quarkus-arc + + + io.quarkus + quarkus-hibernate-validator + + + io.quarkus + quarkus-junit5 + test + + + io.rest-assured + rest-assured + test + + + + + + ${quarkus.platform.group-id} + quarkus-maven-plugin + ${quarkus.platform.version} + true + + + + build + generate-code + generate-code-tests + + + + + + maven-compiler-plugin + ${compiler-plugin.version} + + + -parameters + + + + + maven-surefire-plugin + ${surefire-plugin.version} + + + org.jboss.logmanager.LogManager + ${maven.home} + + + + + maven-failsafe-plugin + ${surefire-plugin.version} + + + + integration-test + verify + + + + ${project.build.directory}/${project.build.finalName}-runner + org.jboss.logmanager.LogManager + ${maven.home} + + + + + + + + + + native + + + native + + + + false + native + + + + diff --git a/src/main/docker/Dockerfile.jvm b/src/main/docker/Dockerfile.jvm new file mode 100644 index 0000000..05a83fd --- /dev/null +++ b/src/main/docker/Dockerfile.jvm @@ -0,0 +1,95 @@ +#### +# This Dockerfile is used in order to build a container that runs the Quarkus application in JVM mode +# +# Before building the container image run: +# +# ./mvnw package +# +# Then, build the image with: +# +# docker build -f src/main/docker/Dockerfile.jvm -t quarkus/osh-wrapper-service-jvm . +# +# Then run the container using: +# +# docker run -i --rm -p 8080:8080 quarkus/osh-wrapper-service-jvm +# +# If you want to include the debug port into your docker image +# you will have to expose the debug port (default 5005 being the default) like this : EXPOSE 8080 5005. +# Additionally you will have to set -e JAVA_DEBUG=true and -e JAVA_DEBUG_PORT=*:5005 +# when running the container +# +# Then run the container using : +# +# docker run -i --rm -p 8080:8080 quarkus/osh-wrapper-service-jvm +# +# This image uses the `run-java.sh` script to run the application. +# This scripts computes the command line to execute your Java application, and +# includes memory/GC tuning. +# You can configure the behavior using the following environment properties: +# - JAVA_OPTS: JVM options passed to the `java` command (example: "-verbose:class") +# - JAVA_OPTS_APPEND: User specified Java options to be appended to generated options +# in JAVA_OPTS (example: "-Dsome.property=foo") +# - JAVA_MAX_MEM_RATIO: Is used when no `-Xmx` option is given in JAVA_OPTS. This is +# used to calculate a default maximal heap memory based on a containers restriction. +# If used in a container without any memory constraints for the container then this +# option has no effect. If there is a memory constraint then `-Xmx` is set to a ratio +# of the container available memory as set here. The default is `50` which means 50% +# of the available memory is used as an upper boundary. You can skip this mechanism by +# setting this value to `0` in which case no `-Xmx` option is added. +# - JAVA_INITIAL_MEM_RATIO: Is used when no `-Xms` option is given in JAVA_OPTS. This +# is used to calculate a default initial heap memory based on the maximum heap memory. +# If used in a container without any memory constraints for the container then this +# option has no effect. If there is a memory constraint then `-Xms` is set to a ratio +# of the `-Xmx` memory as set here. The default is `25` which means 25% of the `-Xmx` +# is used as the initial heap size. You can skip this mechanism by setting this value +# to `0` in which case no `-Xms` option is added (example: "25") +# - JAVA_MAX_INITIAL_MEM: Is used when no `-Xms` option is given in JAVA_OPTS. +# This is used to calculate the maximum value of the initial heap memory. If used in +# a container without any memory constraints for the container then this option has +# no effect. If there is a memory constraint then `-Xms` is limited to the value set +# here. The default is 4096MB which means the calculated value of `-Xms` never will +# be greater than 4096MB. The value of this variable is expressed in MB (example: "4096") +# - JAVA_DIAGNOSTICS: Set this to get some diagnostics information to standard output +# when things are happening. This option, if set to true, will set +# `-XX:+UnlockDiagnosticVMOptions`. Disabled by default (example: "true"). +# - JAVA_DEBUG: If set remote debugging will be switched on. Disabled by default (example: +# true"). +# - JAVA_DEBUG_PORT: Port used for remote debugging. Defaults to 5005 (example: "8787"). +# - CONTAINER_CORE_LIMIT: A calculated core limit as described in +# https://www.kernel.org/doc/Documentation/scheduler/sched-bwc.txt. (example: "2") +# - CONTAINER_MAX_MEMORY: Memory limit given to the container (example: "1024"). +# - GC_MIN_HEAP_FREE_RATIO: Minimum percentage of heap free after GC to avoid expansion. +# (example: "20") +# - GC_MAX_HEAP_FREE_RATIO: Maximum percentage of heap free after GC to avoid shrinking. +# (example: "40") +# - GC_TIME_RATIO: Specifies the ratio of the time spent outside the garbage collection. +# (example: "4") +# - GC_ADAPTIVE_SIZE_POLICY_WEIGHT: The weighting given to the current GC time versus +# previous GC times. (example: "90") +# - GC_METASPACE_SIZE: The initial metaspace size. (example: "20") +# - GC_MAX_METASPACE_SIZE: The maximum metaspace size. (example: "100") +# - GC_CONTAINER_OPTIONS: Specify Java GC to use. The value of this variable should +# contain the necessary JRE command-line options to specify the required GC, which +# will override the default of `-XX:+UseParallelGC` (example: -XX:+UseG1GC). +# - HTTPS_PROXY: The location of the https proxy. (example: "myuser@127.0.0.1:8080") +# - HTTP_PROXY: The location of the http proxy. (example: "myuser@127.0.0.1:8080") +# - NO_PROXY: A comma separated lists of hosts, IP addresses or domains that can be +# accessed directly. (example: "foo.example.com,bar.example.com") +# +### +FROM registry.access.redhat.com/ubi8/openjdk-17:1.15 + +ENV LANGUAGE='en_US:en' + + +# We make four distinct layers so if there are application changes the library layers can be re-used +COPY --chown=185 target/quarkus-app/lib/ /deployments/lib/ +COPY --chown=185 target/quarkus-app/*.jar /deployments/ +COPY --chown=185 target/quarkus-app/app/ /deployments/app/ +COPY --chown=185 target/quarkus-app/quarkus/ /deployments/quarkus/ + +EXPOSE 8080 +USER 185 +ENV JAVA_OPTS="-Dquarkus.http.host=0.0.0.0 -Djava.util.logging.manager=org.jboss.logmanager.LogManager" +ENV JAVA_APP_JAR="/deployments/quarkus-run.jar" + diff --git a/src/main/docker/Dockerfile.legacy-jar b/src/main/docker/Dockerfile.legacy-jar new file mode 100644 index 0000000..7a8bbfd --- /dev/null +++ b/src/main/docker/Dockerfile.legacy-jar @@ -0,0 +1,91 @@ +#### +# This Dockerfile is used in order to build a container that runs the Quarkus application in JVM mode +# +# Before building the container image run: +# +# ./mvnw package -Dquarkus.package.type=legacy-jar +# +# Then, build the image with: +# +# docker build -f src/main/docker/Dockerfile.legacy-jar -t quarkus/osh-wrapper-service-legacy-jar . +# +# Then run the container using: +# +# docker run -i --rm -p 8080:8080 quarkus/osh-wrapper-service-legacy-jar +# +# If you want to include the debug port into your docker image +# you will have to expose the debug port (default 5005 being the default) like this : EXPOSE 8080 5005. +# Additionally you will have to set -e JAVA_DEBUG=true and -e JAVA_DEBUG_PORT=*:5005 +# when running the container +# +# Then run the container using : +# +# docker run -i --rm -p 8080:8080 quarkus/osh-wrapper-service-legacy-jar +# +# This image uses the `run-java.sh` script to run the application. +# This scripts computes the command line to execute your Java application, and +# includes memory/GC tuning. +# You can configure the behavior using the following environment properties: +# - JAVA_OPTS: JVM options passed to the `java` command (example: "-verbose:class") +# - JAVA_OPTS_APPEND: User specified Java options to be appended to generated options +# in JAVA_OPTS (example: "-Dsome.property=foo") +# - JAVA_MAX_MEM_RATIO: Is used when no `-Xmx` option is given in JAVA_OPTS. This is +# used to calculate a default maximal heap memory based on a containers restriction. +# If used in a container without any memory constraints for the container then this +# option has no effect. If there is a memory constraint then `-Xmx` is set to a ratio +# of the container available memory as set here. The default is `50` which means 50% +# of the available memory is used as an upper boundary. You can skip this mechanism by +# setting this value to `0` in which case no `-Xmx` option is added. +# - JAVA_INITIAL_MEM_RATIO: Is used when no `-Xms` option is given in JAVA_OPTS. This +# is used to calculate a default initial heap memory based on the maximum heap memory. +# If used in a container without any memory constraints for the container then this +# option has no effect. If there is a memory constraint then `-Xms` is set to a ratio +# of the `-Xmx` memory as set here. The default is `25` which means 25% of the `-Xmx` +# is used as the initial heap size. You can skip this mechanism by setting this value +# to `0` in which case no `-Xms` option is added (example: "25") +# - JAVA_MAX_INITIAL_MEM: Is used when no `-Xms` option is given in JAVA_OPTS. +# This is used to calculate the maximum value of the initial heap memory. If used in +# a container without any memory constraints for the container then this option has +# no effect. If there is a memory constraint then `-Xms` is limited to the value set +# here. The default is 4096MB which means the calculated value of `-Xms` never will +# be greater than 4096MB. The value of this variable is expressed in MB (example: "4096") +# - JAVA_DIAGNOSTICS: Set this to get some diagnostics information to standard output +# when things are happening. This option, if set to true, will set +# `-XX:+UnlockDiagnosticVMOptions`. Disabled by default (example: "true"). +# - JAVA_DEBUG: If set remote debugging will be switched on. Disabled by default (example: +# true"). +# - JAVA_DEBUG_PORT: Port used for remote debugging. Defaults to 5005 (example: "8787"). +# - CONTAINER_CORE_LIMIT: A calculated core limit as described in +# https://www.kernel.org/doc/Documentation/scheduler/sched-bwc.txt. (example: "2") +# - CONTAINER_MAX_MEMORY: Memory limit given to the container (example: "1024"). +# - GC_MIN_HEAP_FREE_RATIO: Minimum percentage of heap free after GC to avoid expansion. +# (example: "20") +# - GC_MAX_HEAP_FREE_RATIO: Maximum percentage of heap free after GC to avoid shrinking. +# (example: "40") +# - GC_TIME_RATIO: Specifies the ratio of the time spent outside the garbage collection. +# (example: "4") +# - GC_ADAPTIVE_SIZE_POLICY_WEIGHT: The weighting given to the current GC time versus +# previous GC times. (example: "90") +# - GC_METASPACE_SIZE: The initial metaspace size. (example: "20") +# - GC_MAX_METASPACE_SIZE: The maximum metaspace size. (example: "100") +# - GC_CONTAINER_OPTIONS: Specify Java GC to use. The value of this variable should +# contain the necessary JRE command-line options to specify the required GC, which +# will override the default of `-XX:+UseParallelGC` (example: -XX:+UseG1GC). +# - HTTPS_PROXY: The location of the https proxy. (example: "myuser@127.0.0.1:8080") +# - HTTP_PROXY: The location of the http proxy. (example: "myuser@127.0.0.1:8080") +# - NO_PROXY: A comma separated lists of hosts, IP addresses or domains that can be +# accessed directly. (example: "foo.example.com,bar.example.com") +# +### +FROM registry.access.redhat.com/ubi8/openjdk-17:1.15 + +ENV LANGUAGE='en_US:en' + + +COPY target/lib/* /deployments/lib/ +COPY target/*-runner.jar /deployments/quarkus-run.jar + +EXPOSE 8080 +USER 185 +ENV JAVA_OPTS="-Dquarkus.http.host=0.0.0.0 -Djava.util.logging.manager=org.jboss.logmanager.LogManager" +ENV JAVA_APP_JAR="/deployments/quarkus-run.jar" diff --git a/src/main/docker/Dockerfile.native b/src/main/docker/Dockerfile.native new file mode 100644 index 0000000..abab985 --- /dev/null +++ b/src/main/docker/Dockerfile.native @@ -0,0 +1,27 @@ +#### +# This Dockerfile is used in order to build a container that runs the Quarkus application in native (no JVM) mode. +# +# Before building the container image run: +# +# ./mvnw package -Pnative +# +# Then, build the image with: +# +# docker build -f src/main/docker/Dockerfile.native -t quarkus/osh-wrapper-service . +# +# Then run the container using: +# +# docker run -i --rm -p 8080:8080 quarkus/osh-wrapper-service +# +### +FROM registry.access.redhat.com/ubi8/ubi-minimal:8.6 +WORKDIR /work/ +RUN chown 1001 /work \ + && chmod "g+rwX" /work \ + && chown 1001:root /work +COPY --chown=1001:root target/*-runner /work/application + +EXPOSE 8080 +USER 1001 + +CMD ["./application", "-Dquarkus.http.host=0.0.0.0"] diff --git a/src/main/docker/Dockerfile.native-micro b/src/main/docker/Dockerfile.native-micro new file mode 100644 index 0000000..504e8c5 --- /dev/null +++ b/src/main/docker/Dockerfile.native-micro @@ -0,0 +1,30 @@ +#### +# This Dockerfile is used in order to build a container that runs the Quarkus application in native (no JVM) mode. +# It uses a micro base image, tuned for Quarkus native executables. +# It reduces the size of the resulting container image. +# Check https://quarkus.io/guides/quarkus-runtime-base-image for further information about this image. +# +# Before building the container image run: +# +# ./mvnw package -Pnative +# +# Then, build the image with: +# +# docker build -f src/main/docker/Dockerfile.native-micro -t quarkus/osh-wrapper-service . +# +# Then run the container using: +# +# docker run -i --rm -p 8080:8080 quarkus/osh-wrapper-service +# +### +FROM quay.io/quarkus/quarkus-micro-image:2.0 +WORKDIR /work/ +RUN chown 1001 /work \ + && chmod "g+rwX" /work \ + && chown 1001:root /work +COPY --chown=1001:root target/*-runner /work/application + +EXPOSE 8080 +USER 1001 + +CMD ["./application", "-Dquarkus.http.host=0.0.0.0"] diff --git a/src/main/java/com/redhat/pctsec/GreetingResource.java b/src/main/java/com/redhat/pctsec/GreetingResource.java new file mode 100644 index 0000000..0aee1ea --- /dev/null +++ b/src/main/java/com/redhat/pctsec/GreetingResource.java @@ -0,0 +1,16 @@ +package com.redhat.pctsec; + +import jakarta.ws.rs.GET; +import jakarta.ws.rs.Path; +import jakarta.ws.rs.Produces; +import jakarta.ws.rs.core.MediaType; + +@Path("/hello") +public class GreetingResource { + + @GET + @Produces(MediaType.TEXT_PLAIN) + public String hello() { + return "Hello from RESTEasy Reactive"; + } +} diff --git a/src/main/java/com/redhat/pctsec/model/ScanCollection.java b/src/main/java/com/redhat/pctsec/model/ScanCollection.java new file mode 100644 index 0000000..a6bc80a --- /dev/null +++ b/src/main/java/com/redhat/pctsec/model/ScanCollection.java @@ -0,0 +1,4 @@ +package com.redhat.pctsec.model; + +public class ScanCollection { +} diff --git a/src/main/java/com/redhat/pctsec/model/build.java b/src/main/java/com/redhat/pctsec/model/build.java new file mode 100644 index 0000000..e5a0960 --- /dev/null +++ b/src/main/java/com/redhat/pctsec/model/build.java @@ -0,0 +1,30 @@ +package com.redhat.pctsec.model; +import java.util.LinkedHashMap; +import java.util.Map; +import java.util.Set; +import com.fasterxml.jackson.annotation.JsonAnyGetter; +import com.fasterxml.jackson.annotation.JsonAnySetter; +import com.fasterxml.jackson.annotation.JsonIgnore; +import com.fasterxml.jackson.annotation.JsonInclude; +import com.fasterxml.jackson.annotation.JsonProperty; +import com.fasterxml.jackson.annotation.JsonPropertyDescription; +import com.fasterxml.jackson.annotation.JsonPropertyOrder; +import com.fasterxml.jackson.databind.annotation.JsonDeserialize; +import jakarta.validation.Valid; +import jakarta.validation.constraints.NotNull; +import jakarta.validation.constraints.Size; + +@JsonInclude(JsonInclude.Include.NON_NULL) +@JsonPropertyOrder({ + "type", + "build-id" +}) +public class build { + @NotNull + @JsonProperty("type") + public String type; + + @NotNull + @JsonProperty("build-id") + public String buildId; +} diff --git a/src/main/java/com/redhat/pctsec/model/git.java b/src/main/java/com/redhat/pctsec/model/git.java new file mode 100644 index 0000000..7718913 --- /dev/null +++ b/src/main/java/com/redhat/pctsec/model/git.java @@ -0,0 +1,26 @@ +package com.redhat.pctsec.model; + +import com.fasterxml.jackson.annotation.JsonInclude; +import com.fasterxml.jackson.annotation.JsonProperty; +import com.fasterxml.jackson.annotation.JsonPropertyOrder; +import jakarta.validation.constraints.NotNull; + +@JsonInclude(JsonInclude.Include.NON_NULL) +@JsonPropertyOrder({ + "type", + "repo", + "ref" +}) +public class git { + @NotNull + @JsonProperty("type") + public String type; + + @NotNull + @JsonProperty("repo") + public String repo; + + @NotNull + @JsonProperty("ref") + public String ref; +} diff --git a/src/main/java/com/redhat/pctsec/model/pssaas.java b/src/main/java/com/redhat/pctsec/model/pssaas.java new file mode 100644 index 0000000..5153847 --- /dev/null +++ b/src/main/java/com/redhat/pctsec/model/pssaas.java @@ -0,0 +1,85 @@ +package com.redhat.pctsec.model; +import java.util.LinkedHashMap; +import java.util.Map; +import java.util.Set; +import com.fasterxml.jackson.annotation.JsonAnyGetter; +import com.fasterxml.jackson.annotation.JsonAnySetter; +import com.fasterxml.jackson.annotation.JsonIgnore; +import com.fasterxml.jackson.annotation.JsonInclude; +import com.fasterxml.jackson.annotation.JsonProperty; +import com.fasterxml.jackson.annotation.JsonPropertyDescription; +import com.fasterxml.jackson.annotation.JsonPropertyOrder; +import com.fasterxml.jackson.databind.annotation.JsonDeserialize; +import jakarta.validation.Valid; +import jakarta.validation.constraints.NotNull; +import jakarta.validation.constraints.Size; + +public class pssaas { + /** + * The product ID associated with the scan. + * (Required) + * + */ + @JsonProperty("product-id") + @JsonPropertyDescription("The product ID associated with the scan.") + @NotNull + public String productId; + /** + * The submission event ID associated with the scan. + * + */ + @JsonProperty("event-id") + @JsonPropertyDescription("The submission event ID associated with the scan.") + public String eventId; + /** + * Indicates whether or not the product is a managed service. + * (Required) + * + */ + @JsonProperty("is-managed-service") + @JsonPropertyDescription("Indicates whether or not the product is a managed service.") + @NotNull + public Boolean isManagedService; + /** + * The version of CPaaS that submitted the scan. + * + */ + @JsonProperty("cpaas-version") + @JsonPropertyDescription("The version of CPaaS that submitted the scan.") + public String cpaasVersion; + /** + * URL of Jenkins job that submitted the scan. + * + */ + @JsonProperty("job-url") + @JsonPropertyDescription("URL of Jenkins job that submitted the scan.") + public String jobUrl; + /** + * List of components to be scanned. + * (Required) + * + */ + @JsonProperty("component-list") + @JsonDeserialize(as = java.util.LinkedHashSet.class) + @JsonPropertyDescription("List of components to be scanned.") + @Size(min = 1) + @Valid + @NotNull + public Set componentList; + @JsonIgnore + @Valid + private Map additionalProperties = new LinkedHashMap(); + + /* + @JsonAnyGetter + public Map getAdditionalProperties() { + return this.additionalProperties; + } + + @JsonAnySetter + public void setAdditionalProperty(String name, Object value) { + this.additionalProperties.put(name, value); + } + */ + +} diff --git a/src/main/java/com/redhat/pctsec/model/scanchain.java b/src/main/java/com/redhat/pctsec/model/scanchain.java new file mode 100644 index 0000000..9c4dcde --- /dev/null +++ b/src/main/java/com/redhat/pctsec/model/scanchain.java @@ -0,0 +1,4 @@ +package com.redhat.pctsec.model; + +public class scanchain { +} diff --git a/src/main/java/com/redhat/pctsec/rest/v1alpha1/Kerberos.java b/src/main/java/com/redhat/pctsec/rest/v1alpha1/Kerberos.java new file mode 100644 index 0000000..ea27f19 --- /dev/null +++ b/src/main/java/com/redhat/pctsec/rest/v1alpha1/Kerberos.java @@ -0,0 +1,25 @@ +package com.redhat.pctsec.rest.v1alpha1; + +import io.quarkiverse.kerberos.KerberosPrincipal; +import io.quarkus.security.Authenticated; +import io.quarkus.security.identity.SecurityIdentity; +import jakarta.inject.Inject; +import jakarta.ws.rs.GET; +import jakarta.ws.rs.Path; +import jakarta.ws.rs.Produces; + +@Path("/Kerberos") +@Authenticated +public class Kerberos { + @Inject + SecurityIdentity identity; + @Inject + KerberosPrincipal kerberosPrincipal; + + @GET + @Path("/me") + @Produces("text/plain") + public String me() { + return identity.getPrincipal().getName(); + } +} diff --git a/src/main/java/com/redhat/pctsec/rest/v1alpha1/Scan.java b/src/main/java/com/redhat/pctsec/rest/v1alpha1/Scan.java new file mode 100644 index 0000000..e369267 --- /dev/null +++ b/src/main/java/com/redhat/pctsec/rest/v1alpha1/Scan.java @@ -0,0 +1,45 @@ +package com.redhat.pctsec.rest.v1alpha1; + +import com.redhat.pctsec.model.ScanCollection; +import com.redhat.pctsec.model.pssaas; +import jakarta.validation.Valid; +import jakarta.ws.rs.*; +import org.jboss.resteasy.reactive.RestQuery; + + +@Path("/Scan") +public class Scan { + + @POST + @Path("PSSaaS") + @Consumes({ "application/json" }) + public Integer createScans(@Valid pssaas scanRequest) + { + //Validate JSON + + //CreateScanCollection + //Return ScanCollectionID + return 1; + } + + @GET + @Path("{id}") + public ScanCollection scanRequest(String id){ + ScanCollection sr = new ScanCollection(); + return sr; + } + + @GET + @Path("single/git") + public String singleGit(@RestQuery String repo, @RestQuery String ref) + { + return "restult"; + } + + @GET + @Path("single/brew") + public String singleGit(@RestQuery String brewId) + { + return "result"; + } +} diff --git a/src/main/resources/META-INF/resources/index.html b/src/main/resources/META-INF/resources/index.html new file mode 100644 index 0000000..bb7a80f --- /dev/null +++ b/src/main/resources/META-INF/resources/index.html @@ -0,0 +1,288 @@ + + + + + osh-wrapper-service - 1.0.0-SNAPSHOT + + + +
+
+
+ + + + + quarkus_logo_horizontal_rgb_1280px_reverse + + + + + + + + + + + + + + + + + + +
+
+
+ +
+
+
+

You just made a Quarkus application.

+

This page is served by Quarkus.

+ Visit the Dev UI +

This page: src/main/resources/META-INF/resources/index.html

+

App configuration: src/main/resources/application.properties

+

Static assets: src/main/resources/META-INF/resources/

+

Code: src/main/java

+

Dev UI V1: /q/dev-v1

+

Generated starter code:

+
    +
  • + RESTEasy Reactive Easily start your Reactive RESTful Web Services +
    @Path: /hello +
    Related guide +
  • + +
+
+
+

Selected extensions

+
    +
  • Kerberos
  • +
  • RESTEasy Reactive (guide)
  • +
  • OpenShift (guide)
  • +
  • Tekton Client
  • +
+
Documentation
+

Practical step-by-step guides to help you achieve a specific goal. Use them to help get your work + done.

+
Set up your IDE
+

Everyone has a favorite IDE they like to use to code. Learn how to configure yours to maximize your + Quarkus productivity.

+
+
+
+ + diff --git a/src/main/resources/application.properties b/src/main/resources/application.properties index c54769a..99f1ec9 100644 --- a/src/main/resources/application.properties +++ b/src/main/resources/application.properties @@ -22,6 +22,7 @@ #%dev.quarkus.kerberos.service-principal-name= HTTP/osh-pct-security-tooling.apps.ocp-c1.prod.psi.redhat.com@IPA.REDHAT.COM %stage.quarkus.openshift.name=osh +%stage.quarkus.openshift.service-account=osh-wrapper-client-sa %stage.quarkus.openshift.labels.env=stage %stage.quarkus.log.level=DEBUG @@ -32,7 +33,6 @@ %stage.quarkus.openshift.route.target-port=https %stage.quarkus.openshift.route.tls.insecure-edge-termination-policy=redirect - ########################################## # Kerberos Specifics # ########################################## diff --git a/src/test/java/com/redhat/pctsec/GreetingResourceIT.java b/src/test/java/com/redhat/pctsec/GreetingResourceIT.java new file mode 100644 index 0000000..5feb3d8 --- /dev/null +++ b/src/test/java/com/redhat/pctsec/GreetingResourceIT.java @@ -0,0 +1,8 @@ +package com.redhat.pctsec; + +import io.quarkus.test.junit.QuarkusIntegrationTest; + +@QuarkusIntegrationTest +public class GreetingResourceIT extends GreetingResourceTest { + // Execute the same tests but in packaged mode. +} diff --git a/src/test/java/com/redhat/pctsec/GreetingResourceTest.java b/src/test/java/com/redhat/pctsec/GreetingResourceTest.java new file mode 100644 index 0000000..affe5a5 --- /dev/null +++ b/src/test/java/com/redhat/pctsec/GreetingResourceTest.java @@ -0,0 +1,21 @@ +package com.redhat.pctsec; + +import io.quarkus.test.junit.QuarkusTest; +import org.junit.jupiter.api.Test; + +import static io.restassured.RestAssured.given; +import static org.hamcrest.CoreMatchers.is; + +@QuarkusTest +public class GreetingResourceTest { + + @Test + public void testHelloEndpoint() { + given() + .when().get("/hello") + .then() + .statusCode(200) + .body(is("Hello from RESTEasy Reactive")); + } + +} \ No newline at end of file