mirror of
https://github.com/lordmathis/lemma.git
synced 2025-11-05 15:44:21 +00:00
133 lines
3.3 KiB
Go
133 lines
3.3 KiB
Go
package db
|
|
|
|
import (
|
|
"crypto/rand"
|
|
"encoding/base64"
|
|
"fmt"
|
|
)
|
|
|
|
const (
|
|
// JWTSecretKey is the key for the JWT secret in the system settings
|
|
JWTSecretKey = "jwt_secret"
|
|
)
|
|
|
|
// UserStats represents system-wide statistics
|
|
type UserStats struct {
|
|
TotalUsers int `json:"totalUsers"`
|
|
TotalWorkspaces int `json:"totalWorkspaces"`
|
|
ActiveUsers int `json:"activeUsers"` // Users with activity in last 30 days
|
|
}
|
|
|
|
// EnsureJWTSecret makes sure a JWT signing secret exists in the database
|
|
// If no secret exists, it generates and stores a new one
|
|
func (db *database) EnsureJWTSecret() (string, error) {
|
|
log := getLogger().WithGroup("system")
|
|
|
|
// First, try to get existing secret
|
|
secret, err := db.GetSystemSetting(JWTSecretKey)
|
|
if err == nil {
|
|
return secret, nil
|
|
}
|
|
|
|
// Generate new secret if none exists
|
|
newSecret, err := generateRandomSecret(32) // 256 bits
|
|
if err != nil {
|
|
return "", fmt.Errorf("failed to generate JWT secret: %w", err)
|
|
}
|
|
|
|
// Store the new secret
|
|
err = db.SetSystemSetting(JWTSecretKey, newSecret)
|
|
if err != nil {
|
|
return "", fmt.Errorf("failed to store JWT secret: %w", err)
|
|
}
|
|
|
|
log.Info("new JWT secret generated and stored")
|
|
|
|
return newSecret, nil
|
|
}
|
|
|
|
// GetSystemSetting retrieves a system setting by key
|
|
func (db *database) GetSystemSetting(key string) (string, error) {
|
|
var value string
|
|
query := db.NewQuery().
|
|
Select("value").
|
|
From("system_settings").
|
|
Where("key = ").
|
|
Placeholder(key)
|
|
err := db.QueryRow(query.String(), query.args...).Scan(&value)
|
|
if err != nil {
|
|
return "", err
|
|
}
|
|
|
|
return value, nil
|
|
}
|
|
|
|
// SetSystemSetting stores or updates a system setting
|
|
func (db *database) SetSystemSetting(key, value string) error {
|
|
query := db.NewQuery().
|
|
Insert("system_settings", "key", "value").
|
|
Values(2).
|
|
AddArgs(key, value).
|
|
Write("ON CONFLICT(key) DO UPDATE SET value = ").
|
|
Placeholder(value)
|
|
|
|
_, err := db.Exec(query.String(), query.args...)
|
|
|
|
if err != nil {
|
|
return fmt.Errorf("failed to store system setting: %w", err)
|
|
}
|
|
|
|
return nil
|
|
}
|
|
|
|
// generateRandomSecret generates a cryptographically secure random string
|
|
func generateRandomSecret(bytes int) (string, error) {
|
|
log := getLogger().WithGroup("system")
|
|
log.Debug("generating random secret", "bytes", bytes)
|
|
|
|
b := make([]byte, bytes)
|
|
_, err := rand.Read(b)
|
|
if err != nil {
|
|
return "", fmt.Errorf("failed to generate random bytes: %w", err)
|
|
}
|
|
|
|
secret := base64.StdEncoding.EncodeToString(b)
|
|
return secret, nil
|
|
}
|
|
|
|
// GetSystemStats returns system-wide statistics
|
|
func (db *database) GetSystemStats() (*UserStats, error) {
|
|
stats := &UserStats{}
|
|
|
|
// Get total users
|
|
query := db.NewQuery().
|
|
Select("COUNT(*)").
|
|
From("users")
|
|
err := db.QueryRow(query.String()).Scan(&stats.TotalUsers)
|
|
if err != nil {
|
|
return nil, fmt.Errorf("failed to get total users count: %w", err)
|
|
}
|
|
|
|
// Get total workspaces
|
|
query = db.NewQuery().
|
|
Select("COUNT(*)").
|
|
From("workspaces")
|
|
err = db.QueryRow(query.String()).Scan(&stats.TotalWorkspaces)
|
|
if err != nil {
|
|
return nil, fmt.Errorf("failed to get total workspaces count: %w", err)
|
|
}
|
|
|
|
// Get active users (users with activity in last 30 days)
|
|
query = db.NewQuery().
|
|
Select("COUNT(DISTINCT user_id)").
|
|
From("sessions").
|
|
Where("created_at >").
|
|
TimeSince(30)
|
|
err = db.QueryRow(query.String()).
|
|
Scan(&stats.ActiveUsers)
|
|
if err != nil {
|
|
return nil, fmt.Errorf("failed to get active users count: %w", err)
|
|
}
|
|
return stats, nil
|
|
}
|