Skip to main content

Notice: this Wiki will be going read only early in 2024 and edits will no longer be possible. Please see: https://gitlab.eclipse.org/eclipsefdn/helpdesk/-/wikis/Wiki-shutdown-plan for the plan.

Jump to: navigation, search

/Stardust/KnowledgeBase/Customization/Portal/Role Based Stardust UI Customization Using Spring Bean Post-processor

Introduction

In this article, we will see how you can customize access permission to the Stardust Portal UI components using spring bean post processor approach.

In the portal, perspectives, launch panels, and views are implemented and controlled by spring backing beans. The spring backing beans take care of UI component visibility (like launch panel links) and role based access permissions.

If you need to change the default UI access policy, you can use spring bean post processor and change access

  • permissions by changing UI component backing beans as per your need. For example, you can change the things like:
  • Make the ‘my documents’ launch panel not to be accessible to X role;

Restrict the process details view to be visible for Role Y and so on Now let us see all this in action with illustrative example;


Spring Bean Post-processor

As you know once we create a class implementing spring’s BeanPostProcessor and defines it as a bean in spring context file. The post process has two call back methods, one before bean initialization and second after bean initialization.

The spring framework will invoke your post processor for every bean in the given spring context during context initialization.

In this case, we will use the bean post processors after initialization method to access initialized Stardust Portal UI beans and change default access permissions as per our needs.

The following section shows how to customize UI access with few select use cases and code snippets.


Customizing Perspective Access

By default, Business Control Center perspective is available all roles. But you want to change this and hide BCC perspective to a role, say “RoleX”. This can be achieved using bean post process as shown in the follow code snippets; Where, SidsIssueModel is a model id and Role_2 is Role id for which we want to add restrictions.

...
                if (bean instanceof PerspectiveDefinition) {
			PerspectiveDefinition perspectiveBean = (PerspectiveDefinition) bean;			
			if (perspectiveBean.getName().equals("ippBccPerspective")) {
				perspectiveBean.setExcludeRoles(perspectiveBean
							.getExcludeRoles() + ",{SidsIssueModel}Role_2");			
			}
		}


Restricting Views

There are common views, meaning available from multiple perspective of the Stardust portal. Thus they are shared. Common views example are document view, document search view, and process instance details view.

Now, consider that we want to restrict the process instance details view and document search views to “RoleX”. The code snippets below show how.

...
                if (bean instanceof ViewDefinition) {			
			ViewDefinition view = (ViewDefinition) bean;			
			if(view.getName().equals("documentSearchView") || view.getName().equals("processInstanceDetailsView") ){
				view.setExcludeRoles(view.getExcludeRoles()+ ",{SidsIssueModel}Role_2");
			}			
		}

Note that links to these views remain active in the portal. But when you click on them, you get a custom message saying, you do not have access to the given view, and the use is restricted to the view.


Restricting Launch Panels

Now, we will see how to restrict access to launch panels for the given perspective. Consider that we want to restrict RoleX users from accessing management views launch panel of the BCC perspective. Here is the code snippet that does it.

...
               if (bean instanceof LaunchPanel) {
			LaunchPanel lp = (LaunchPanel) bean;
			if(lp.getName().equals("managementViews")){
				lp.setExcludeRoles(lp.getExcludeRoles()+ ",{SidsIssueModel}Role_2");				
			}
		}


Spring Bean Post Processor Source Code

package com.test;
 
import org.springframework.beans.BeansException;
import org.springframework.beans.factory.config.BeanPostProcessor;
 
import com.infinity.bpm.portal.common.LaunchPanel;
import com.infinity.bpm.portal.common.PerspectiveDefinition;
import com.infinity.bpm.portal.common.ViewDefinition;
 
public class PortalUIPostProcessor implements BeanPostProcessor {
 
	@Override
	public Object postProcessAfterInitialization(Object bean, String beanId)
			throws BeansException {
 
		if (bean instanceof PerspectiveDefinition) {
			PerspectiveDefinition perspectiveBean = (PerspectiveDefinition) bean;			
			if (perspectiveBean.getName().equals("ippBccPerspective")) {
				perspectiveBean.setExcludeRoles(perspectiveBean
							.getExcludeRoles() + ",{SidsIssueModel}Role_2");				
			}
		}
 
		if (bean instanceof ViewDefinition) {			
			ViewDefinition view = (ViewDefinition) bean;			
			if(view.getName().equals("documentSearchView") || view.getName().equals("processInstanceDetailsView") ){
				view.setExcludeRoles(view.getExcludeRoles()+ ",{SidsIssueModel}Role_2");
			}			
		}
 
		if (bean instanceof LaunchPanel) {
			LaunchPanel lp = (LaunchPanel) bean;
			if(lp.getName().equals("managementViews")){
				lp.setExcludeRoles(lp.getExcludeRoles()+ ",{SidsIssueModel}Role_2");				
			}
		}
 
 
		return bean;
	}
 
	@Override
	public Object postProcessBeforeInitialization(Object bean, String arg1)
			throws BeansException {
		// TODO Auto-generated method stub
		return bean;
	}
}

Back to the top