RuleController.php 8.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304
  1. <?php
  2. namespace App\Http\Controllers\Admin;
  3. use App\Http\Controllers\Controller;
  4. use App\Models\Rule;
  5. use App\Models\RuleGroup;
  6. use App\Models\RuleGroupNode;
  7. use App\Models\RuleLog;
  8. use App\Models\SsNode;
  9. use Exception;
  10. use Illuminate\Http\Request;
  11. use Redirect;
  12. use Response;
  13. use Validator;
  14. class RuleController extends Controller {
  15. // 审计规则列表
  16. public function ruleList(Request $request) {
  17. $type = $request->input('type');
  18. $query = Rule::query();
  19. if($type){
  20. $query->whereType($type);
  21. }
  22. $view['rules'] = $query->paginate(15)->appends($request->except('page'));
  23. return Response::view('admin.rule.ruleList', $view);
  24. }
  25. // 添加审计规则
  26. public function addRule(Request $request) {
  27. $validator = Validator::make($request->all(), [
  28. 'type' => 'required|between:1,4',
  29. 'name' => 'required',
  30. 'pattern' => 'required',
  31. ]);
  32. if($validator->fails()){
  33. return Response::json(['status' => 'fail', 'message' => $validator->errors()->all()]);
  34. }
  35. $obj = new Rule();
  36. $obj->type = $request->input('type');
  37. $obj->name = $request->input('name');
  38. $obj->pattern = $request->input('pattern');
  39. $obj->save();
  40. if($obj->id){
  41. return Response::json(['status' => 'success', 'data' => '', 'message' => '提交成功']);
  42. }else{
  43. return Response::json(['status' => 'fail', 'data' => '', 'message' => '操作失败']);
  44. }
  45. }
  46. // 编辑审计规则
  47. public function editRule(Request $request) {
  48. $validator = Validator::make($request->all(), [
  49. 'id' => 'required|exists:rule,id',
  50. 'rule_name' => 'required',
  51. 'rule_pattern' => 'required',
  52. ]);
  53. if($validator->fails()){
  54. return Response::json(['status' => 'fail', 'message' => $validator->errors()->all()]);
  55. }
  56. $ret = Rule::query()->whereId($request->input('id'))->update([
  57. 'name' => $request->input('rule_name'),
  58. 'pattern' => $request->input('rule_pattern')
  59. ]);
  60. if($ret){
  61. return Response::json(['status' => 'success', 'message' => '操作成功']);
  62. }else{
  63. return Response::json(['status' => 'fail', 'message' => '操作失败']);
  64. }
  65. }
  66. // 删除审计规则
  67. public function delRule(Request $request) {
  68. $id = $request->input('id');
  69. try{
  70. Rule::query()->whereId($id)->delete();
  71. $RuleGroupList = RuleGroup::query()->get();
  72. foreach($RuleGroupList as $RuleGroup){
  73. $rules = explode(',', $RuleGroup->rules);
  74. if(in_array($id, $rules)){
  75. $rules = implode(',', array_diff($rules, (array) $id));
  76. RuleGroup::query()->whereId($RuleGroup->id)->update(['rules' => $rules]);
  77. }
  78. }
  79. }catch(Exception $e){
  80. return Response::json(['status' => 'fail', 'message' => '操作失败, '.$e->getMessage()]);
  81. }
  82. return Response::json(['status' => 'success', 'message' => '操作成功']);
  83. }
  84. // 审计规则分组列表
  85. public function ruleGroupList(Request $request) {
  86. $view['ruleGroupList'] = RuleGroup::query()->paginate(15)->appends($request->except('page'));
  87. return Response::view('admin.rule.ruleGroupList', $view);
  88. }
  89. // 添加审计规则分组
  90. public function addRuleGroup(Request $request) {
  91. if($request->isMethod('POST')){
  92. $validator = Validator::make($request->all(), [
  93. 'name' => 'required',
  94. 'type' => 'required|boolean',
  95. 'rules' => 'required',
  96. ]);
  97. if($validator->fails()){
  98. return Redirect::back()->withInput()->withErrors($validator->errors());
  99. }
  100. $obj = new RuleGroup();
  101. $obj->name = $request->input('name');
  102. $obj->type = intval($request->input('type'));
  103. $obj->rules = implode(',', $request->input('rules'));
  104. $obj->save();
  105. if($obj->id){
  106. return Redirect::back()->with('successMsg', '操作成功');
  107. }else{
  108. return Redirect::back()->withInput()->withErrors('操作失败');
  109. }
  110. }else{
  111. $view['ruleList'] = Rule::query()->get();
  112. return Response::view('admin.rule.ruleGroupInfo', $view);
  113. }
  114. }
  115. // 编辑审计规则分组
  116. public function editRuleGroup(Request $request) {
  117. $id = $request->input('id');
  118. if($request->isMethod('POST')){
  119. $validator = Validator::make($request->all(), [
  120. 'id' => 'required',
  121. 'name' => 'required',
  122. 'type' => 'required|boolean'
  123. ]);
  124. if($validator->fails()){
  125. return Redirect::back()->withInput()->withErrors($validator->errors());
  126. }
  127. $name = $request->input('name');
  128. $type = intval($request->input('type'));
  129. $rules = $request->input('rules');
  130. $ruleGroup = RuleGroup::query()->find($id);
  131. if(!$ruleGroup){
  132. return Redirect::back()->withInput()->withErrors('未找到需要编辑的审计规则分组!');
  133. }
  134. $data = [];
  135. if($ruleGroup->name != $name){
  136. $data['name'] = $name;
  137. }
  138. if($ruleGroup->type != $type){
  139. $data['type'] = $type;
  140. }
  141. if($rules){
  142. $ruleStr = implode(',', $rules);
  143. if($ruleGroup->rules != $ruleStr){
  144. $data['rules'] = $ruleStr;
  145. }else{
  146. return Redirect::back()->with('successMsg', '检测为未修改,无变动!');
  147. }
  148. }elseif(isset($ruleGroup->rules)){
  149. $data['rules'] = $rules;
  150. }
  151. $ret = RuleGroup::query()->whereId($id)->update($data);
  152. if($ret){
  153. return Redirect::back()->with('successMsg', '操作成功');
  154. }
  155. return Redirect::back()->withInput()->withErrors('操作失败');
  156. }else{
  157. $ruleGroup = RuleGroup::query()->find($id);
  158. if(!$ruleGroup){
  159. return Redirect::back();
  160. }
  161. $view['ruleList'] = Rule::query()->get();
  162. return view('admin.rule.ruleGroupInfo', $view)->with(compact('ruleGroup'));
  163. }
  164. }
  165. // 删除审计规则分组
  166. public function delRuleGroup(Request $request) {
  167. $id = $request->input('id');
  168. $ruleGroup = RuleGroup::query()->whereId($id)->get();
  169. if(!$ruleGroup){
  170. return Response::json(['status' => 'fail', 'message' => '删除失败,未找到审计规则分组']);
  171. }
  172. try{
  173. RuleGroup::query()->whereId($id)->delete();
  174. RuleGroupNode::query()->whereRuleGroupId($id)->delete();
  175. }catch(Exception $e){
  176. return Response::json(['status' => 'fail', 'message' => '删除失败,'.$e->getMessage()]);
  177. }
  178. return Response::json(['status' => 'success', 'message' => '清理成功']);
  179. }
  180. // 规则分组关联节点
  181. public function assignNode(Request $request) {
  182. $id = $request->input('id');
  183. if($request->isMethod('POST')){
  184. $nodes = $request->input('nodes');
  185. $validator = Validator::make($request->all(), [
  186. 'id' => 'required',
  187. ]);
  188. if($validator->fails()){
  189. return Redirect::back()->withInput()->withErrors($validator->errors());
  190. }
  191. $ruleGroup = RuleGroup::query()->find($id);
  192. if(!$ruleGroup){
  193. return Redirect::back()->withInput()->withErrors('未找到审计规则分组!');
  194. }
  195. try{
  196. if($nodes){
  197. $nodeStr = implode(',', $nodes);
  198. // 无变动 不改动
  199. if($ruleGroup->nodes == $nodeStr){
  200. return Redirect::back()->with('successMsg', '检测为未修改,无变动!');
  201. }
  202. RuleGroup::query()->whereId($id)->update(['nodes' => $nodeStr]);
  203. RuleGroupNode::query()->whereRuleGroupId($id)->delete();
  204. foreach($nodes as $nodeId){
  205. $obj = new RuleGroupNode();
  206. $obj->rule_group_id = $id;
  207. $obj->node_id = $nodeId;
  208. $obj->save();
  209. }
  210. }else{
  211. RuleGroup::query()->whereId($id)->update(['nodes' => $nodes]);
  212. RuleGroupNode::query()->whereRuleGroupId($id)->delete();
  213. }
  214. }catch(Exception $e){
  215. return Redirect::back()->withInput()->withErrors($e->getMessage());
  216. }
  217. return Redirect::back()->with('successMsg', '操作成功');
  218. }else{
  219. $view['ruleGroup'] = RuleGroup::query()->find($id);
  220. $view['nodeList'] = SsNode::query()->get();
  221. return Response::view('admin.rule.assignNode', $view);
  222. }
  223. }
  224. // 用户触发审计规则日志
  225. public function ruleLogList(Request $request) {
  226. $uid = $request->input('uid');
  227. $email = $request->input('email');
  228. $nodeId = $request->input('node_id');
  229. $ruleId = $request->input('rule_id');
  230. $query = RuleLog::query();
  231. if($uid){
  232. $query->whereUserId($uid);
  233. }
  234. if(isset($email)){
  235. $query->whereHas('user', function($q) use ($email) {
  236. $q->where('email', 'like', '%'.$email.'%');
  237. });
  238. }
  239. if($nodeId){
  240. $query->whereNodeId($nodeId);
  241. }
  242. if($ruleId){
  243. $query->whereRuleId($ruleId);
  244. }
  245. $view['nodeList'] = SsNode::query()->get();
  246. $view['ruleList'] = Rule::query()->get();
  247. $view['ruleLogs'] = $query->paginate(15)->appends($request->except('page'));
  248. return Response::view('admin.rule.ruleLogList', $view);
  249. }
  250. // 清除所有审计触发日志
  251. public function clearLog() {
  252. try{
  253. $ret = RuleLog::query()->delete();
  254. }catch(Exception $e){
  255. return Response::json(['status' => 'fail', 'message' => '清理失败, '.$e->getMessage()]);
  256. }
  257. $result = RuleLog::query()->doesntExist();
  258. if($ret || $result){
  259. return Response::json(['status' => 'success', 'message' => '清理成功']);
  260. }else{
  261. return Response::json(['status' => 'fail', 'message' => '清理失败']);
  262. }
  263. }
  264. }