RuleController.php 8.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297
  1. <?php
  2. namespace App\Http\Controllers\Admin;
  3. use App\Http\Controllers\Controller;
  4. use App\Models\Node;
  5. use App\Models\Rule;
  6. use App\Models\RuleGroup;
  7. use App\Models\RuleGroupNode;
  8. use App\Models\RuleLog;
  9. use Exception;
  10. use Illuminate\Http\JsonResponse;
  11. use Illuminate\Http\Request;
  12. use Redirect;
  13. use Response;
  14. use Validator;
  15. class RuleController extends Controller {
  16. // 审计规则列表
  17. public function ruleList(Request $request): \Illuminate\Http\Response {
  18. $type = $request->input('type');
  19. $query = Rule::query();
  20. if($type){
  21. $query->whereType($type);
  22. }
  23. $view['rules'] = $query->paginate(15)->appends($request->except('page'));
  24. return Response::view('admin.rule.ruleList', $view);
  25. }
  26. // 添加审计规则
  27. public function addRule(Request $request): ?JsonResponse {
  28. $validator = Validator::make($request->all(), [
  29. 'type' => 'required|between:1,4',
  30. 'name' => 'required',
  31. 'pattern' => 'required',
  32. ]);
  33. if($validator->fails()){
  34. return Response::json(['status' => 'fail', 'message' => $validator->errors()->all()]);
  35. }
  36. $obj = new Rule();
  37. $obj->type = $request->input('type');
  38. $obj->name = $request->input('name');
  39. $obj->pattern = $request->input('pattern');
  40. $obj->save();
  41. if($obj->id){
  42. return Response::json(['status' => 'success', 'message' => '提交成功']);
  43. }
  44. return Response::json(['status' => 'fail', 'message' => '操作失败']);
  45. }
  46. // 编辑审计规则
  47. public function editRule(Request $request): ?JsonResponse {
  48. $validator = Validator::make($request->all(), [
  49. 'id' => 'required|exists:rule,id',
  50. 'rule_name' => 'required',
  51. 'rule_pattern' => 'required',
  52. ]);
  53. if($validator->fails()){
  54. return Response::json(['status' => 'fail', 'message' => $validator->errors()->all()]);
  55. }
  56. $ret = Rule::query()->whereId($request->input('id'))->update([
  57. 'name' => $request->input('rule_name'),
  58. 'pattern' => $request->input('rule_pattern')
  59. ]);
  60. if($ret){
  61. return Response::json(['status' => 'success', 'message' => '操作成功']);
  62. }
  63. return Response::json(['status' => 'fail', 'message' => '操作失败']);
  64. }
  65. // 删除审计规则
  66. public function delRule(Request $request): JsonResponse {
  67. $id = $request->input('id');
  68. try{
  69. Rule::query()->whereId($id)->delete();
  70. foreach(RuleGroup::all() as $RuleGroup){
  71. $rules = explode(',', $RuleGroup->rules);
  72. if(in_array($id, $rules, true)){
  73. $rules = implode(',', array_diff($rules, [$id]));
  74. RuleGroup::query()->whereId($RuleGroup->id)->update(['rules' => $rules]);
  75. }
  76. }
  77. }catch(Exception $e){
  78. return Response::json(['status' => 'fail', 'message' => '操作失败, '.$e->getMessage()]);
  79. }
  80. return Response::json(['status' => 'success', 'message' => '操作成功']);
  81. }
  82. // 审计规则分组列表
  83. public function ruleGroupList(Request $request): \Illuminate\Http\Response {
  84. $view['ruleGroupList'] = RuleGroup::query()->paginate(15)->appends($request->except('page'));
  85. return Response::view('admin.rule.ruleGroupList', $view);
  86. }
  87. // 添加审计规则分组
  88. public function addRuleGroup(Request $request) {
  89. if($request->isMethod('POST')){
  90. $validator = Validator::make($request->all(), [
  91. 'name' => 'required',
  92. 'type' => 'required|boolean',
  93. 'rules' => 'required',
  94. ]);
  95. if($validator->fails()){
  96. return Redirect::back()->withInput()->withErrors($validator->errors());
  97. }
  98. $obj = new RuleGroup();
  99. $obj->name = $request->input('name');
  100. $obj->type = (int) $request->input('type');
  101. $obj->rules = implode(',', $request->input('rules'));
  102. $obj->save();
  103. if($obj->id){
  104. return Redirect::back()->with('successMsg', '操作成功');
  105. }
  106. return Redirect::back()->withInput()->withErrors('操作失败');
  107. }
  108. $view['ruleList'] = Rule::all();
  109. return Response::view('admin.rule.ruleGroupInfo', $view);
  110. }
  111. // 编辑审计规则分组
  112. public function editRuleGroup(Request $request) {
  113. $id = $request->input('id');
  114. if($request->isMethod('POST')){
  115. $validator = Validator::make($request->all(), [
  116. 'id' => 'required',
  117. 'name' => 'required',
  118. 'type' => 'required|boolean'
  119. ]);
  120. if($validator->fails()){
  121. return Redirect::back()->withInput()->withErrors($validator->errors());
  122. }
  123. $name = $request->input('name');
  124. $type = (int) $request->input('type');
  125. $rules = $request->input('rules');
  126. $ruleGroup = RuleGroup::find($id);
  127. if(!$ruleGroup){
  128. return Redirect::back()->withInput()->withErrors('未找到需要编辑的审计规则分组!');
  129. }
  130. $data = [];
  131. if($ruleGroup->name != $name){
  132. $data['name'] = $name;
  133. }
  134. if($ruleGroup->type != $type){
  135. $data['type'] = $type;
  136. }
  137. if($rules){
  138. $ruleStr = implode(',', $rules);
  139. if($ruleGroup->rules != $ruleStr){
  140. $data['rules'] = $ruleStr;
  141. }elseif($data == []){
  142. return Redirect::back()->with('successMsg', '检测为未修改,无变动!');
  143. }
  144. }elseif(isset($ruleGroup->rules)){
  145. $data['rules'] = $rules;
  146. }
  147. $ret = RuleGroup::query()->whereId($id)->update($data);
  148. if($ret){
  149. return Redirect::back()->with('successMsg', '操作成功');
  150. }
  151. return Redirect::back()->withInput()->withErrors('操作失败');
  152. }
  153. $ruleGroup = RuleGroup::find($id);
  154. if(!$ruleGroup){
  155. return Redirect::back();
  156. }
  157. $view['ruleList'] = Rule::all();
  158. return view('admin.rule.ruleGroupInfo', $view)->with(compact('ruleGroup'));
  159. }
  160. // 删除审计规则分组
  161. public function delRuleGroup(Request $request): JsonResponse {
  162. $id = $request->input('id');
  163. $ruleGroup = RuleGroup::query()->whereId($id)->get();
  164. if(!$ruleGroup){
  165. return Response::json(['status' => 'fail', 'message' => '删除失败,未找到审计规则分组']);
  166. }
  167. try{
  168. RuleGroup::query()->whereId($id)->delete();
  169. RuleGroupNode::query()->whereRuleGroupId($id)->delete();
  170. }catch(Exception $e){
  171. return Response::json(['status' => 'fail', 'message' => '删除失败,'.$e->getMessage()]);
  172. }
  173. return Response::json(['status' => 'success', 'message' => '清理成功']);
  174. }
  175. // 规则分组关联节点
  176. public function assignNode(Request $request) {
  177. $id = $request->input('id');
  178. if($request->isMethod('POST')){
  179. $nodes = $request->input('nodes');
  180. $validator = Validator::make($request->all(), [
  181. 'id' => 'required',
  182. ]);
  183. if($validator->fails()){
  184. return Redirect::back()->withInput()->withErrors($validator->errors());
  185. }
  186. $ruleGroup = RuleGroup::find($id);
  187. if(!$ruleGroup){
  188. return Redirect::back()->withInput()->withErrors('未找到审计规则分组!');
  189. }
  190. try{
  191. if($nodes){
  192. $nodeStr = implode(',', $nodes);
  193. // 无变动 不改动
  194. if($ruleGroup->nodes == $nodeStr){
  195. return Redirect::back()->with('successMsg', '检测为未修改,无变动!');
  196. }
  197. RuleGroup::query()->whereId($id)->update(['nodes' => $nodeStr]);
  198. RuleGroupNode::query()->whereRuleGroupId($id)->delete();
  199. foreach($nodes as $nodeId){
  200. $obj = new RuleGroupNode();
  201. $obj->rule_group_id = $id;
  202. $obj->node_id = $nodeId;
  203. $obj->save();
  204. }
  205. }else{
  206. RuleGroup::query()->whereId($id)->update(['nodes' => $nodes]);
  207. RuleGroupNode::query()->whereRuleGroupId($id)->delete();
  208. }
  209. }catch(Exception $e){
  210. return Redirect::back()->withInput()->withErrors($e->getMessage());
  211. }
  212. return Redirect::back()->with('successMsg', '操作成功');
  213. }
  214. $view['ruleGroup'] = RuleGroup::find($id);
  215. $view['nodeList'] = Node::all();
  216. return Response::view('admin.rule.assignNode', $view);
  217. }
  218. // 用户触发审计规则日志
  219. public function ruleLogList(Request $request): \Illuminate\Http\Response {
  220. $uid = $request->input('uid');
  221. $email = $request->input('email');
  222. $nodeId = $request->input('node_id');
  223. $ruleId = $request->input('rule_id');
  224. $query = RuleLog::query();
  225. if($uid){
  226. $query->whereUserId($uid);
  227. }
  228. if(isset($email)){
  229. $query->whereHas('user', static function($q) use ($email) {
  230. $q->where('email', 'like', '%'.$email.'%');
  231. });
  232. }
  233. if($nodeId){
  234. $query->whereNodeId($nodeId);
  235. }
  236. if($ruleId){
  237. $query->whereRuleId($ruleId);
  238. }
  239. $view['nodeList'] = Node::all();
  240. $view['ruleList'] = Rule::all();
  241. $view['ruleLogs'] = $query->latest()->paginate(15)->appends($request->except('page'));
  242. return Response::view('admin.rule.ruleLogList', $view);
  243. }
  244. // 清除所有审计触发日志
  245. public function clearLog(): ?JsonResponse {
  246. try{
  247. $ret = RuleLog::query()->delete();
  248. }catch(Exception $e){
  249. return Response::json(['status' => 'fail', 'message' => '清理失败, '.$e->getMessage()]);
  250. }
  251. $result = RuleLog::query()->doesntExist();
  252. if($ret || $result){
  253. return Response::json(['status' => 'success', 'message' => '清理成功']);
  254. }
  255. return Response::json(['status' => 'fail', 'message' => '清理失败']);
  256. }
  257. }