Скрипт преобразования T-SQL для удаления неверных данных из таблицы моста разрешений - PullRequest
0 голосов
/ 02 декабря 2011

Моя цель - написать цикл / преобразование, которое будет проходить через каждый контейнер (таблица acucore_securitycontainer) и очищать все разрешения (таблица моста acucore_securitypermission) на основе приведенных ниже сценариев. Мне все равно, если я в конечном итоге с двумя сценариями ... это совершенно нормально. Обратите внимание на разницу между этими двумя запросами очистки: «S:» против «H:» и «Слюна:» против «Hair:».

Запрос № 1 (для защиты контекста приложения для волос):

DELETE FROM dbo.acucore_securitypermission
WHERE 
    'ENTITYID:' + cast(dbo.acucore_securitypermission.entityid as VARCHAR(64)) + '|' 
    + 'ESID:' + cast(dbo.acucore_securitypermission.esid as VARCHAR(64)) IN
(
    SELECT 
        'ENTITYID:' + cast(dbo.acucore_securitypermission.entityid as VARCHAR(64)) + '|' 
        + 'ESID:' + cast(dbo.acucore_securitypermission.esid as VARCHAR(64))
    FROM dbo.acucore_securitypermission
    JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
    JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
    WHERE containername LIKE 'H:UI.Web.AccessioningDashboard'
    AND groupname NOT IN
    (
        SELECT 
            CASE WHEN groupname IN ('Accessioning', 'Screening', 'Positive Certify', 'Negative Certify', 'Confirmation') THEN 'Hair: ' + groupname ELSE groupname END AS 'custom groupname'
        FROM dbo.acucore_securitypermission
        JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
        JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
        WHERE containername = 'UI.Web.AccessioningDashboard'
        AND permissions = 1
    )
)

Запрос № 2 (для защиты контекста приложения слюны):

DELETE FROM dbo.acucore_securitypermission
WHERE 
    'ENTITYID:' + cast(dbo.acucore_securitypermission.entityid as VARCHAR(64)) + '|' 
    + 'ESID:' + cast(dbo.acucore_securitypermission.esid as VARCHAR(64)) IN
(
    SELECT 
        'ENTITYID:' + cast(dbo.acucore_securitypermission.entityid as VARCHAR(64)) + '|' 
        + 'ESID:' + cast(dbo.acucore_securitypermission.esid as VARCHAR(64))
    FROM dbo.acucore_securitypermission
    JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
    JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
    WHERE containername LIKE 'S:UI.Web.AccessioningDashboard'
    AND groupname NOT IN
    (
        SELECT 
            CASE WHEN groupname IN ('Accessioning', 'Screening', 'Positive Certify', 'Negative Certify', 'Confirmation') THEN 'Saliva: ' + groupname ELSE groupname END
        FROM dbo.acucore_securitypermission
        JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
        JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
        WHERE containername = 'UI.Web.AccessioningDashboard'
        AND permissions = 1
    )
)

1 Ответ

0 голосов
/ 02 декабря 2011

разобрался ... Я просто переключаю 2 команды набора волос с 2 слюной ... так что я должен выполнить это дважды.

DROP TABLE #Temp
SELECT * 
INTO #Temp 
FROM dbo.acucore_securitycontainer 
WHERE containername LIKE 'UI.Web.%'

Declare @conversioncontainerid UNIQUEIDENTIFIER
Declare @conversioncontainername VARCHAR(64)

WHILE (SELECT Count(*) FROM #Temp) > 0 
BEGIN 

    SELECT TOP 1 @conversioncontainerid = containerid FROM #Temp 
    SELECT TOP 1 @conversioncontainername = containername FROM #Temp 

     ---- start processing for container ----

    DECLARE @containerprefix VARCHAR(10);
    DECLARE @groupprefix VARCHAR(10);
    DECLARE @sourcecontainername VARCHAR(64);  -- container from loop
    DECLARE @targetcontainername VARCHAR(64);
    SET @sourcecontainername = @conversioncontainername
    SET @targetcontainername = @conversioncontainername

    -- hair
    SET @containerprefix = 'H:'  -- no space at end!
    SET @groupprefix = 'Hair: '  -- space at end!

    -- saliva
    --SET @containerprefix = 'S:'  -- no space at end!
    --SET @groupprefix = 'Saliva: '  -- space at end!

    -- view exclusion groups (groups of a "good" container):

    --SELECT 
    --  CASE WHEN groupname IN ('Accessioning', 'Screening', 'Positive Certify', 'Negative Certify', 'Confirmation') THEN @groupprefix + groupname ELSE groupname END
    --FROM dbo.acucore_securitypermission
    --JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
    --JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
    --WHERE containername = @sourcecontainername
    --AND permissions = 1

    ---- rows to be deleted:

    --SELECT 
    --  groupname,
    --  containername,
    --  dbo.acucore_securitypermission.esid ,
    --  dbo.acucore_securitypermission.entityid ,
    --  dbo.acucore_securitypermission.permissions      
    --FROM dbo.acucore_securitypermission
    --JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
    --JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
    --WHERE containername LIKE @containerprefix + @targetcontainername
    --AND groupname NOT IN
    --(
    --  SELECT 
    --      CASE WHEN groupname IN ('Accessioning', 'Screening', 'Positive Certify', 'Negative Certify', 'Confirmation') THEN @groupprefix + groupname ELSE groupname END
    --  FROM dbo.acucore_securitypermission
    --  JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
    --  JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
    --  WHERE containername = @sourcecontainername
    --  AND permissions = 1
    --)

    DELETE FROM dbo.acucore_securitypermission
    WHERE 
        'ENTITYID:' + cast(dbo.acucore_securitypermission.entityid as VARCHAR(64)) + '|' 
        + 'ESID:' + cast(dbo.acucore_securitypermission.esid as VARCHAR(64)) IN
    (
        SELECT  
            'ENTITYID:' + cast(dbo.acucore_securitypermission.entityid as VARCHAR(64)) + '|' 
            + 'ESID:' + cast(dbo.acucore_securitypermission.esid as VARCHAR(64))
        FROM dbo.acucore_securitypermission
        JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
        JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
        WHERE containername LIKE @containerprefix + @targetcontainername
        AND groupname NOT IN
        (
            SELECT 
                CASE WHEN groupname IN ('Accessioning', 'Screening', 'Positive Certify', 'Negative Certify', 'Confirmation') THEN @groupprefix + groupname ELSE groupname END
            FROM dbo.acucore_securitypermission
            JOIN dbo.acucore_securitycontainer ON dbo.acucore_securitypermission.esid = dbo.acucore_securitycontainer.esid
            JOIN dbo.acucore_securitygroup ON dbo.acucore_securitypermission.entityid = dbo.acucore_securitygroup.entityid
            WHERE containername = @sourcecontainername
            AND permissions = 1
        )
    )      
    -- finish processing 
    DELETE #Temp Where containerid = @conversioncontainerid -- delete row so we don't loop over it again 
END
...