-
Notifications
You must be signed in to change notification settings - Fork 27
/
Copy pathcomposition.go
231 lines (195 loc) · 6.89 KB
/
composition.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
package composition
import (
"bytes"
"context"
"fmt"
"io"
"os"
"path/filepath"
"github.com/defenseunicorns/go-oscal/src/pkg/uuid"
"github.com/defenseunicorns/go-oscal/src/pkg/versioning"
oscalTypes "github.com/defenseunicorns/go-oscal/src/types/oscal-1-1-3"
k8syaml "k8s.io/apimachinery/pkg/util/yaml"
"github.com/defenseunicorns/lula/src/internal/template"
"github.com/defenseunicorns/lula/src/pkg/common"
"github.com/defenseunicorns/lula/src/pkg/common/network"
"github.com/defenseunicorns/lula/src/pkg/common/oscal"
"github.com/defenseunicorns/lula/src/pkg/message"
)
type RenderedContent string
type Composer struct {
modelDir string
templateRenderer *template.TemplateRenderer
renderTemplate bool
renderValidations bool
renderType template.RenderType
}
func New(opts ...Option) (*Composer, error) {
var composer Composer
for _, opt := range opts {
if err := opt(&composer); err != nil {
return nil, err
}
}
return &composer, nil
}
// ComposeFromPath composes an OSCAL model from a file path
func (c *Composer) ComposeFromPath(ctx context.Context, path string) (model *oscalTypes.OscalCompleteSchema, err error) {
path = filepath.Clean(path)
data, err := os.ReadFile(path)
if err != nil {
return nil, err
}
// Template if renderTemplate is true -> Only renders the local data (e.g., what is in the file)
if c.renderTemplate {
data, err = c.templateRenderer.Render(string(data), c.renderType)
if err != nil {
return nil, err
}
}
model, err = oscal.NewOscalModel(data)
if err != nil {
return nil, err
}
err = c.ComposeComponentDefinitions(ctx, model.ComponentDefinition, c.modelDir)
if err != nil {
return nil, err
}
return model, nil
}
// ComposeComponentDefinitions composes an OSCAL component definition by adding the remote resources to the back matter and updating with back matter links.
func (c *Composer) ComposeComponentDefinitions(ctx context.Context, compDef *oscalTypes.ComponentDefinition, baseDir string) error {
if compDef == nil {
return fmt.Errorf("component definition is nil")
}
// Compose the component validations
err := c.ComposeComponentValidations(ctx, compDef, baseDir)
if err != nil {
return err
}
// If there are no components, create an empty array
// Components aren't required by oscal but are by merge?
// TODO: fix merge to match required OSCAL fields
if compDef.Components == nil {
compDef.Components = &[]oscalTypes.DefinedComponent{}
}
// Same as above
if compDef.BackMatter == nil {
compDef.BackMatter = &oscalTypes.BackMatter{}
}
if compDef.ImportComponentDefinitions != nil {
for _, importComponentDef := range *compDef.ImportComponentDefinitions {
response, err := network.Fetch(importComponentDef.Href, network.WithBaseDir(baseDir))
if err != nil {
return err
}
// template here if renderTemplate is true
if c.renderTemplate {
response, err = c.templateRenderer.Render(string(response), c.renderType)
if err != nil {
return err
}
}
// Handle multi-docs
componentDefs, err := readComponentDefinitionsFromYaml(response)
if err != nil {
return err
}
// Unmarshal the component definition
for _, importDef := range componentDefs {
// Reconcile the base directory from the import component definition href
importDir := network.GetLocalFileDir(importComponentDef.Href, baseDir)
err = c.ComposeComponentDefinitions(ctx, importDef, importDir)
if err != nil {
return err
}
// Merge the component definitions
err = oscal.MergeComponentDefinitions(compDef, importDef)
if err != nil {
return err
}
}
}
}
compDef.Metadata.LastModified = versioning.GetTimestamp()
compDef.ImportComponentDefinitions = nil
return nil
}
// ComposeComponentValidations compiles the component validations by adding the remote resources to the back matter and updating with back matter links.
func (c *Composer) ComposeComponentValidations(ctx context.Context, compDef *oscalTypes.ComponentDefinition, baseDir string) error {
if compDef == nil {
return fmt.Errorf("component definition is nil")
}
resourceMap := NewResourceStoreFromBackMatter(c, compDef.BackMatter)
// If there are no components, there is nothing to do
if compDef.Components == nil {
return nil
}
for componentIndex, component := range *compDef.Components {
// If there are no control-implementations, skip to the next component
if component.ControlImplementations != nil {
controlImplementations := *component.ControlImplementations
for controlImplementationIndex, controlImplementation := range controlImplementations {
for implementedRequirementIndex, implementedRequirement := range controlImplementation.ImplementedRequirements {
if implementedRequirement.Links != nil {
compiledLinks := []oscalTypes.Link{}
for _, link := range *implementedRequirement.Links {
if common.IsLulaLink(link) {
ids, err := resourceMap.AddFromLink(&link, baseDir)
if err != nil {
// return err
newId := uuid.NewUUID()
message.Debugf("Error adding validation %s from link %s: %v", newId, link.Href, err)
ids = []string{newId}
}
for _, id := range ids {
link := oscalTypes.Link{
Rel: link.Rel,
Href: common.AddIdPrefix(id),
Text: link.Text,
}
compiledLinks = append(compiledLinks, link)
}
} else {
compiledLinks = append(compiledLinks, link)
}
}
(*component.ControlImplementations)[controlImplementationIndex].ImplementedRequirements[implementedRequirementIndex].Links = &compiledLinks
(*compDef.Components)[componentIndex] = component
}
}
}
}
}
allFetched := resourceMap.AllFetched()
if compDef.BackMatter != nil && compDef.BackMatter.Resources != nil {
existingResources := *compDef.BackMatter.Resources
existingResources = append(existingResources, allFetched...)
compDef.BackMatter.Resources = &existingResources
} else {
compDef.BackMatter = &oscalTypes.BackMatter{
Resources: &allFetched,
}
}
compDef.Metadata.LastModified = versioning.GetTimestamp()
return nil
}
// CreateTempDir creates a temporary directory to store the composed OSCAL models
func CreateTempDir() (string, error) {
return os.MkdirTemp("", "lula-composed-*")
}
// ReadComponentDefinitionsFromYaml reads a yaml file of validations to an array of validations
func readComponentDefinitionsFromYaml(componentDefinitionBytes []byte) (componentDefinitionsArray []*oscalTypes.ComponentDefinition, err error) {
decoder := k8syaml.NewYAMLOrJSONDecoder(bytes.NewReader(componentDefinitionBytes), 4096)
for {
oscalComplete := &oscalTypes.OscalCompleteSchema{}
if err := decoder.Decode(oscalComplete); err != nil {
if err == io.EOF {
break
}
return nil, err
}
componentDefinitionsArray = append(componentDefinitionsArray, oscalComplete.ComponentDefinition)
}
return componentDefinitionsArray, nil
}