new file: CHANGELOG.md

modified:   README.md
	modified:   support-provisioning-portal/assets/portal.css
	modified:   support-provisioning-portal/assets/portal.js
	modified:   support-provisioning-portal/includes/class-spp-activator.php
	modified:   support-provisioning-portal/includes/class-spp-admin-page.php
	modified:   support-provisioning-portal/includes/class-spp-http-proxmox-client.php
	modified:   support-provisioning-portal/includes/class-spp-mock-proxmox-client.php
	new file:   support-provisioning-portal/includes/class-spp-permissions.php
	modified:   support-provisioning-portal/includes/class-spp-plugin.php
	modified:   support-provisioning-portal/includes/class-spp-repository.php
	modified:   support-provisioning-portal/includes/class-spp-rest-controller.php
	modified:   support-provisioning-portal/includes/class-spp-shortcode.php
	modified:   support-provisioning-portal/includes/interface-spp-proxmox-client.php
	modified:   support-provisioning-portal/support-provisioning-portal.php
This commit is contained in:
Sven Steinert
2026-04-24 15:13:42 +02:00
parent aee79ddbfa
commit 2c1949bf1e
15 changed files with 1900 additions and 170 deletions

View File

@@ -4,6 +4,8 @@
roots.forEach((root) => {
const api = root.dataset.restUrl;
const nonce = root.dataset.nonce;
const permissions = new Set(JSON.parse(root.dataset.permissions || "[]"));
const can = (permission) => permissions.has(permission);
let state = {
view: "deployments",
deployments: [],
@@ -102,8 +104,58 @@
render();
};
const shareDeployment = async (event, id) => {
event.preventDefault();
const form = new FormData(event.currentTarget);
try {
await request(`/deployments/${id}/shares`, {
method: "POST",
body: JSON.stringify({
user: String(form.get("user"))
})
});
state.selectedDeployment = await request(`/deployments/${id}`);
state.error = null;
} catch (error) {
state = { ...state, error: error.message };
}
render();
};
const removeShare = async (id, userId) => {
try {
await request(`/deployments/${id}/shares/${userId}`, { method: "DELETE" });
state.selectedDeployment = await request(`/deployments/${id}`);
state.error = null;
} catch (error) {
state = { ...state, error: error.message };
}
render();
};
const statusBadge = (status) => `<span class="spp-badge ${status}">${status.replace("_", " ")}</span>`;
const accessLabel = (deployment) => {
if (deployment.accessType === "shared") {
return '<span class="spp-badge SHARED">SHARED</span>';
}
if (deployment.accessType === "admin") {
return '<span class="spp-badge ADMIN">ADMIN</span>';
}
return '<span class="spp-badge OWNER">OWNER</span>';
};
const actionButton = (permission, action, label, id, className = "", disabled = false) => {
if (!can(permission)) {
return "";
}
return `<button class="spp-button ${className}" data-action="${action}" data-id="${id}" ${disabled ? "disabled" : ""} type="button">${label}</button>`;
};
const ipList = (ips) => {
if (!Array.isArray(ips) || ips.length === 0) {
return "Pending";
@@ -149,7 +201,7 @@
<div class="spp-tabs">
<button class="spp-button" data-view="deployments" type="button">Deployments</button>
<button class="spp-button" data-view="templates" type="button">Templates</button>
<button class="spp-button spp-button-primary" data-view="create" type="button">Create</button>
${can("create_deployments") ? '<button class="spp-button spp-button-primary" data-view="create" type="button">Create</button>' : ""}
</div>
</div>
`;
@@ -163,13 +215,14 @@
<div class="spp-panel">
<table class="spp-table">
<thead>
<tr><th>Name</th><th>Status</th><th>Template</th><th>IP addresses</th><th>Expires</th><th></th></tr>
<tr><th>Name</th><th>Status</th><th>Access</th><th>Template</th><th>IP addresses</th><th>Expires</th><th></th></tr>
</thead>
<tbody>
${state.deployments.map((deployment) => `
<tr>
<td><strong>${escapeHtml(deployment.name)}</strong></td>
<td>${statusBadge(deployment.status)}</td>
<td>${accessLabel(deployment)}</td>
<td>${escapeHtml(deployment.templateName)}</td>
<td>${ipList(deployment.ipAddresses)}</td>
<td>${dateTime(deployment.expiresAt)}</td>
@@ -200,28 +253,34 @@
</div>
`;
const createView = () => `
<div class="spp-panel" style="padding:16px;">
<form class="spp-form" id="spp-create-form">
<label>Template
<select class="spp-select" name="templateId" required>
${state.templates.map((template) => `<option value="${template.id}">${escapeHtml(template.name)}</option>`).join("")}
</select>
</label>
<label>Deployment name
<input class="spp-input" name="name" minlength="3" maxlength="160" required placeholder="pbx-repro-case-1842">
</label>
<label>TTL hours
<input class="spp-input" name="ttlHours" type="number" min="1" max="720" placeholder="Use template default">
</label>
<label class="spp-check">
<input name="neverExpire" type="checkbox" value="1">
<span>Never expire</span>
</label>
<button class="spp-button spp-button-primary" type="submit">Create Deployment</button>
</form>
</div>
`;
const createView = () => {
if (!can("create_deployments")) {
return '<div class="spp-panel"><p style="padding:16px;margin:0;">You do not have permission to create deployments.</p></div>';
}
return `
<div class="spp-panel" style="padding:16px;">
<form class="spp-form" id="spp-create-form">
<label>Template
<select class="spp-select" name="templateId" required>
${state.templates.map((template) => `<option value="${template.id}">${escapeHtml(template.name)}</option>`).join("")}
</select>
</label>
<label>Deployment name
<input class="spp-input" name="name" minlength="3" maxlength="160" required placeholder="pbx-repro-case-1842">
</label>
<label>TTL hours
<input class="spp-input" name="ttlHours" type="number" min="1" max="720" placeholder="Use template default">
</label>
<label class="spp-check">
<input name="neverExpire" type="checkbox" value="1">
<span>Never expire</span>
</label>
<button class="spp-button spp-button-primary" type="submit">Create Deployment</button>
</form>
</div>
`;
};
const detailView = () => {
const deployment = state.selectedDeployment;
@@ -229,6 +288,8 @@
return deploymentsView();
}
const shares = Array.isArray(deployment.shares) ? deployment.shares : [];
return `
<div class="spp-panel" style="padding:16px;">
${deployment.status === "EXPIRED" ? `
@@ -244,15 +305,16 @@
${statusBadge(deployment.status)}
</div>
<div class="spp-actions">
<button class="spp-button spp-button-primary" data-action="start" data-id="${deployment.id}" ${deployment.status === "RUNNING" || deployment.status === "EXPIRED" ? "disabled" : ""} type="button">Start</button>
<button class="spp-button" data-action="stop" data-id="${deployment.id}" ${deployment.status === "STOPPED" || deployment.status === "EXPIRED" ? "disabled" : ""} type="button">Stop</button>
<button class="spp-button" data-action="refresh-ips" data-id="${deployment.id}" ${deployment.status === "DELETED" ? "disabled" : ""} type="button">Refresh IPs</button>
<button class="spp-button spp-button-danger" data-action="delete" data-id="${deployment.id}" ${deployment.status === "DELETED" ? "disabled" : ""} type="button">Delete</button>
${actionButton("start_deployments", "start", "Start", deployment.id, "spp-button-primary", deployment.status === "RUNNING" || deployment.status === "EXPIRED")}
${actionButton("stop_deployments", "stop", "Stop", deployment.id, "", deployment.status === "STOPPED" || deployment.status === "EXPIRED")}
${actionButton("refresh_deployment_ips", "refresh-ips", "Refresh IPs", deployment.id, "", deployment.status === "DELETED")}
${deployment.canDelete ? actionButton("delete_deployments", "delete", "Delete", deployment.id, "spp-button-danger", deployment.status === "DELETED") : ""}
</div>
</div>
<div class="spp-meta">
<span>Template<strong>${escapeHtml(deployment.templateName)}</strong></span>
<span>Requested by<strong>${escapeHtml(deployment.requestedByName)}</strong></span>
<span>Access<strong>${deployment.accessType ? escapeHtml(deployment.accessType) : "Owner"}</strong></span>
<span>Proxmox VM ID<strong>${deployment.proxmoxVmId || "Pending"}</strong></span>
<span>IP addresses<strong>${ipList(deployment.ipAddresses)}</strong></span>
<span>CPU<strong>${deployment.cpuCores} cores</strong></span>
@@ -261,17 +323,41 @@
<span>Created<strong>${dateTime(deployment.createdAt)}</strong></span>
<span>Expires<strong>${dateTime(deployment.expiresAt)}</strong></span>
</div>
<form class="spp-prolong-form" data-prolong-form="${deployment.id}">
<h3>Prolong TTL</h3>
<label>TTL hours
<input class="spp-input" name="ttlHours" type="number" min="1" max="720" placeholder="Hours from now">
</label>
<label class="spp-check">
<input name="neverExpire" type="checkbox" value="1">
<span>Never expire</span>
</label>
<button class="spp-button spp-button-primary" type="submit">Prolong</button>
</form>
${can("prolong_deployments") ? `
<form class="spp-prolong-form" data-prolong-form="${deployment.id}">
<h3>Prolong TTL</h3>
<label>TTL hours
<input class="spp-input" name="ttlHours" type="number" min="1" max="720" placeholder="Hours from now">
</label>
<label class="spp-check">
<input name="neverExpire" type="checkbox" value="1">
<span>Never expire</span>
</label>
<button class="spp-button spp-button-primary" type="submit">Prolong</button>
</form>
` : ""}
${deployment.canShare ? `
<div class="spp-share-panel">
<h3>Shared Access</h3>
<div class="spp-share-list">
${shares.length === 0 ? '<p>No users have shared access.</p>' : shares.map((share) => `
<div class="spp-share-row">
<span>
<strong>${escapeHtml(share.displayName || share.userLogin)}</strong>
<small>${escapeHtml(share.userLogin)}${share.userEmail ? ` - ${escapeHtml(share.userEmail)}` : ""}</small>
</span>
<button class="spp-button" data-remove-share="${share.id}" data-id="${deployment.id}" type="button">Remove</button>
</div>
`).join("")}
</div>
<form class="spp-share-form" data-share-form="${deployment.id}">
<label>Share with user login or email
<input class="spp-input" name="user" required>
</label>
<button class="spp-button spp-button-primary" type="submit">Share</button>
</form>
</div>
` : ""}
</div>
`;
};
@@ -310,6 +396,10 @@
button.addEventListener("click", () => lifecycle(Number(button.dataset.id), button.dataset.action));
});
root.querySelectorAll("[data-remove-share]").forEach((button) => {
button.addEventListener("click", () => removeShare(Number(button.dataset.id), Number(button.dataset.removeShare)));
});
const form = root.querySelector("#spp-create-form");
if (form) {
form.addEventListener("submit", createDeployment);
@@ -338,6 +428,10 @@
});
}
});
root.querySelectorAll("[data-share-form]").forEach((form) => {
form.addEventListener("submit", (event) => shareDeployment(event, Number(form.dataset.shareForm)));
});
};
const escapeHtml = (value) => String(value).replace(/[&<>"']/g, (character) => ({