Skip to content

Commit 038e767

Browse files
authored
Merge pull request #140 from rafiss/pw
Test connecting tenants via password over TLS through proxy
2 parents 5aad6f4 + 427e379 commit 038e767

File tree

16 files changed

+320
-1128
lines changed

16 files changed

+320
-1128
lines changed

go.mod

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ module github.com/cockroachdb/examples-orms
33
go 1.13
44

55
require (
6-
github.com/cockroachdb/cockroach-go/v2 v2.2.1
6+
github.com/cockroachdb/cockroach-go/v2 v2.2.3
77
github.com/go-pg/pg/v10 v10.9.0
88
github.com/julienschmidt/httprouter v1.1.0
99
github.com/lib/pq v1.10.0

go.sum

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,8 +4,8 @@ github.com/census-instrumentation/opencensus-proto v0.2.1/go.mod h1:f6KPmirojxKA
44
github.com/client9/misspell v0.3.4/go.mod h1:qj6jICC3Q7zFZvVWo7KLAzC3yx5G7kyvSDkc90ppPyw=
55
github.com/cockroachdb/apd v1.1.0 h1:3LFP3629v+1aKXU5Q37mxmRxX/pIu1nijXydLShEq5I=
66
github.com/cockroachdb/apd v1.1.0/go.mod h1:8Sl8LxpKi29FqWXR16WEFZRNSz3SoPzUzeMeY4+DwBQ=
7-
github.com/cockroachdb/cockroach-go/v2 v2.2.1 h1:nZte1DDdL9iu8IV0YPmX8l9Lg2+HRJ3CMvkT3iG52rc=
8-
github.com/cockroachdb/cockroach-go/v2 v2.2.1/go.mod h1:u3MiKYGupPPjkn3ozknpMUpxPaNLTFWAya419/zv6eI=
7+
github.com/cockroachdb/cockroach-go/v2 v2.2.3 h1:2881elKwTMrAWuSP2N/4PtU6XyqoyI55Fv3TSTD+Efo=
8+
github.com/cockroachdb/cockroach-go/v2 v2.2.3/go.mod h1:u3MiKYGupPPjkn3ozknpMUpxPaNLTFWAya419/zv6eI=
99
github.com/coreos/go-systemd v0.0.0-20190321100706-95778dfbb74e/go.mod h1:F5haX7vjVVG0kc13fIWeqUViNPyEJxv/OmvnBo0Yme4=
1010
github.com/coreos/go-systemd v0.0.0-20190719114852-fd7a80b32e1f/go.mod h1:F5haX7vjVVG0kc13fIWeqUViNPyEJxv/OmvnBo0Yme4=
1111
github.com/creack/pty v1.1.7/go.mod h1:lj5s0c3V2DBrqTV7llrYr5NG6My20zk30Fl46Y7DoTY=

java/hibernate/build.gradle

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -12,16 +12,16 @@ repositories {
1212

1313
dependencies {
1414
// Necessary for Hibernate.
15-
compile 'org.hibernate:hibernate-core:5.4.30.Final'
16-
compile 'org.postgresql:postgresql:42.2.19'
15+
implementation 'org.hibernate:hibernate-core:5.5.8.Final'
16+
implementation 'org.postgresql:postgresql:42.2.19'
1717

1818
// Necessary for web application.
19-
compile 'org.glassfish.jersey.core:jersey-server:2.25'
20-
compile 'org.glassfish.jersey.containers:jersey-container-netty-http:2.25'
21-
compile 'com.fasterxml.jackson.core:jackson-databind:2.8.5'
22-
compile 'com.beust:jcommander:1.7'
19+
implementation 'org.glassfish.jersey.core:jersey-server:2.25'
20+
implementation 'org.glassfish.jersey.containers:jersey-container-netty-http:2.25'
21+
implementation 'com.fasterxml.jackson.core:jackson-databind:2.8.5'
22+
implementation 'com.beust:jcommander:1.7'
2323

24-
testCompile group: 'junit', name: 'junit', version: '4.11'
24+
testImplementation group: 'junit', name: 'junit', version: '4.11'
2525
}
2626

2727
run {
3.82 KB
Binary file not shown.
Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
distributionBase=GRADLE_USER_HOME
22
distributionPath=wrapper/dists
3+
distributionUrl=https\://services.gradle.org/distributions/gradle-7.1.1-bin.zip
34
zipStoreBase=GRADLE_USER_HOME
45
zipStorePath=wrapper/dists
5-
distributionUrl=https\://services.gradle.org/distributions/gradle-4.4.1-bin.zip

java/hibernate/gradlew

Lines changed: 34 additions & 21 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,21 @@
11
#!/usr/bin/env sh
22

3+
#
4+
# Copyright 2015 the original author or authors.
5+
#
6+
# Licensed under the Apache License, Version 2.0 (the "License");
7+
# you may not use this file except in compliance with the License.
8+
# You may obtain a copy of the License at
9+
#
10+
# https://www.apache.org/licenses/LICENSE-2.0
11+
#
12+
# Unless required by applicable law or agreed to in writing, software
13+
# distributed under the License is distributed on an "AS IS" BASIS,
14+
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
15+
# See the License for the specific language governing permissions and
16+
# limitations under the License.
17+
#
18+
319
##############################################################################
420
##
521
## Gradle start up script for UN*X
@@ -28,7 +44,7 @@ APP_NAME="Gradle"
2844
APP_BASE_NAME=`basename "$0"`
2945

3046
# Add default JVM options here. You can also use JAVA_OPTS and GRADLE_OPTS to pass JVM options to this script.
31-
DEFAULT_JVM_OPTS=""
47+
DEFAULT_JVM_OPTS='"-Xmx64m" "-Xms64m"'
3248

3349
# Use the maximum available, or set MAX_FD != -1 to use that value.
3450
MAX_FD="maximum"
@@ -56,7 +72,7 @@ case "`uname`" in
5672
Darwin* )
5773
darwin=true
5874
;;
59-
MINGW* )
75+
MSYS* | MINGW* )
6076
msys=true
6177
;;
6278
NONSTOP* )
@@ -66,6 +82,7 @@ esac
6682

6783
CLASSPATH=$APP_HOME/gradle/wrapper/gradle-wrapper.jar
6884

85+
6986
# Determine the Java command to use to start the JVM.
7087
if [ -n "$JAVA_HOME" ] ; then
7188
if [ -x "$JAVA_HOME/jre/sh/java" ] ; then
@@ -109,10 +126,11 @@ if $darwin; then
109126
GRADLE_OPTS="$GRADLE_OPTS \"-Xdock:name=$APP_NAME\" \"-Xdock:icon=$APP_HOME/media/gradle.icns\""
110127
fi
111128

112-
# For Cygwin, switch paths to Windows format before running java
113-
if $cygwin ; then
129+
# For Cygwin or MSYS, switch paths to Windows format before running java
130+
if [ "$cygwin" = "true" -o "$msys" = "true" ] ; then
114131
APP_HOME=`cygpath --path --mixed "$APP_HOME"`
115132
CLASSPATH=`cygpath --path --mixed "$CLASSPATH"`
133+
116134
JAVACMD=`cygpath --unix "$JAVACMD"`
117135

118136
# We build the pattern for arguments to be converted via cygpath
@@ -138,19 +156,19 @@ if $cygwin ; then
138156
else
139157
eval `echo args$i`="\"$arg\""
140158
fi
141-
i=$((i+1))
159+
i=`expr $i + 1`
142160
done
143161
case $i in
144-
(0) set -- ;;
145-
(1) set -- "$args0" ;;
146-
(2) set -- "$args0" "$args1" ;;
147-
(3) set -- "$args0" "$args1" "$args2" ;;
148-
(4) set -- "$args0" "$args1" "$args2" "$args3" ;;
149-
(5) set -- "$args0" "$args1" "$args2" "$args3" "$args4" ;;
150-
(6) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" ;;
151-
(7) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" "$args6" ;;
152-
(8) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" "$args6" "$args7" ;;
153-
(9) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" "$args6" "$args7" "$args8" ;;
162+
0) set -- ;;
163+
1) set -- "$args0" ;;
164+
2) set -- "$args0" "$args1" ;;
165+
3) set -- "$args0" "$args1" "$args2" ;;
166+
4) set -- "$args0" "$args1" "$args2" "$args3" ;;
167+
5) set -- "$args0" "$args1" "$args2" "$args3" "$args4" ;;
168+
6) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" ;;
169+
7) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" "$args6" ;;
170+
8) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" "$args6" "$args7" ;;
171+
9) set -- "$args0" "$args1" "$args2" "$args3" "$args4" "$args5" "$args6" "$args7" "$args8" ;;
154172
esac
155173
fi
156174

@@ -159,14 +177,9 @@ save () {
159177
for i do printf %s\\n "$i" | sed "s/'/'\\\\''/g;1s/^/'/;\$s/\$/' \\\\/" ; done
160178
echo " "
161179
}
162-
APP_ARGS=$(save "$@")
180+
APP_ARGS=`save "$@"`
163181

164182
# Collect all arguments for the java command, following the shell quoting and substitution rules
165183
eval set -- $DEFAULT_JVM_OPTS $JAVA_OPTS $GRADLE_OPTS "\"-Dorg.gradle.appname=$APP_BASE_NAME\"" -classpath "\"$CLASSPATH\"" org.gradle.wrapper.GradleWrapperMain "$APP_ARGS"
166184

167-
# by default we should be in the correct project dir, but when run from Finder on Mac, the cwd is wrong
168-
if [ "$(uname)" = "Darwin" ] && [ "$HOME" = "$PWD" ]; then
169-
cd "$(dirname "$0")"
170-
fi
171-
172185
exec "$JAVACMD" "$@"

java/hibernate/gradlew.bat

Lines changed: 24 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,19 @@
1+
@rem
2+
@rem Copyright 2015 the original author or authors.
3+
@rem
4+
@rem Licensed under the Apache License, Version 2.0 (the "License");
5+
@rem you may not use this file except in compliance with the License.
6+
@rem You may obtain a copy of the License at
7+
@rem
8+
@rem https://www.apache.org/licenses/LICENSE-2.0
9+
@rem
10+
@rem Unless required by applicable law or agreed to in writing, software
11+
@rem distributed under the License is distributed on an "AS IS" BASIS,
12+
@rem WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13+
@rem See the License for the specific language governing permissions and
14+
@rem limitations under the License.
15+
@rem
16+
117
@if "%DEBUG%" == "" @echo off
218
@rem ##########################################################################
319
@rem
@@ -13,15 +29,18 @@ if "%DIRNAME%" == "" set DIRNAME=.
1329
set APP_BASE_NAME=%~n0
1430
set APP_HOME=%DIRNAME%
1531

32+
@rem Resolve any "." and ".." in APP_HOME to make it shorter.
33+
for %%i in ("%APP_HOME%") do set APP_HOME=%%~fi
34+
1635
@rem Add default JVM options here. You can also use JAVA_OPTS and GRADLE_OPTS to pass JVM options to this script.
17-
set DEFAULT_JVM_OPTS=
36+
set DEFAULT_JVM_OPTS="-Xmx64m" "-Xms64m"
1837

1938
@rem Find java.exe
2039
if defined JAVA_HOME goto findJavaFromJavaHome
2140

2241
set JAVA_EXE=java.exe
2342
%JAVA_EXE% -version >NUL 2>&1
24-
if "%ERRORLEVEL%" == "0" goto init
43+
if "%ERRORLEVEL%" == "0" goto execute
2544

2645
echo.
2746
echo ERROR: JAVA_HOME is not set and no 'java' command could be found in your PATH.
@@ -35,7 +54,7 @@ goto fail
3554
set JAVA_HOME=%JAVA_HOME:"=%
3655
set JAVA_EXE=%JAVA_HOME%/bin/java.exe
3756

38-
if exist "%JAVA_EXE%" goto init
57+
if exist "%JAVA_EXE%" goto execute
3958

4059
echo.
4160
echo ERROR: JAVA_HOME is set to an invalid directory: %JAVA_HOME%
@@ -45,28 +64,14 @@ echo location of your Java installation.
4564

4665
goto fail
4766

48-
:init
49-
@rem Get command-line arguments, handling Windows variants
50-
51-
if not "%OS%" == "Windows_NT" goto win9xME_args
52-
53-
:win9xME_args
54-
@rem Slurp the command line arguments.
55-
set CMD_LINE_ARGS=
56-
set _SKIP=2
57-
58-
:win9xME_args_slurp
59-
if "x%~1" == "x" goto execute
60-
61-
set CMD_LINE_ARGS=%*
62-
6367
:execute
6468
@rem Setup the command line
6569

6670
set CLASSPATH=%APP_HOME%\gradle\wrapper\gradle-wrapper.jar
6771

72+
6873
@rem Execute Gradle
69-
"%JAVA_EXE%" %DEFAULT_JVM_OPTS% %JAVA_OPTS% %GRADLE_OPTS% "-Dorg.gradle.appname=%APP_BASE_NAME%" -classpath "%CLASSPATH%" org.gradle.wrapper.GradleWrapperMain %CMD_LINE_ARGS%
74+
"%JAVA_EXE%" %DEFAULT_JVM_OPTS% %JAVA_OPTS% %GRADLE_OPTS% "-Dorg.gradle.appname=%APP_BASE_NAME%" -classpath "%CLASSPATH%" org.gradle.wrapper.GradleWrapperMain %*
7075

7176
:end
7277
@rem End local scope for the variables with windows NT shell

java/hibernate/src/main/java/com/cockroachlabs/util/SessionUtil.java

Lines changed: 12 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -36,22 +36,26 @@ private SessionUtil(String dbAddr) {
3636
if (dbAddr != null) {
3737
// Most drivers expect the user in a connection to be specified like:
3838
// postgresql://<user>@host:port/db
39-
// but the PGJDBC expects the user as a parameter like:
40-
// postgresql://host:port/db?user=<user>
41-
Pattern p = Pattern.compile("postgresql://((\\w+)@).*");
39+
// but the PGJDBC driver expects the user as a parameter like:
40+
// postgresql://host:port/db
41+
// with the username and password passed as separate properties.
42+
Pattern p = Pattern.compile("postgresql://((\\w+)(:(\\w+))?@).*");
4243
Matcher m = p.matcher(dbAddr);
4344
if (m.matches()) {
4445
String userPart = m.group(1);
4546
String user = m.group(2);
47+
String password = m.group(4);
4648

47-
48-
String sep = "?";
49-
if (dbAddr.contains("?")) {
50-
sep = "&";
49+
dbAddr = dbAddr.replace(userPart, "");
50+
configuration.setProperty("hibernate.connection.user", user);
51+
if (password != null && !password.equals("")) {
52+
configuration.setProperty("hibernate.connection.password", password);
5153
}
52-
dbAddr = String.format("%s%suser=%s", dbAddr.replace(userPart, ""), sep, user);
5354
}
5455

56+
// The client cert must be in PKCS8 format for Java.
57+
dbAddr = dbAddr.replace("client.root.key", "client.root.key.pk8");
58+
5559
// Add the "jdbc:" prefix to the address and replace in configuration.
5660
dbAddr = "jdbc:" + dbAddr;
5761
configuration.setProperty("hibernate.connection.url", dbAddr);

java/hibernate/src/main/resources/hibernate.cfg.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@
1616
<property name="connection.pool_size">16</property>
1717

1818
<!-- SQL dialect -->
19-
<property name="dialect">org.hibernate.dialect.PostgreSQL94Dialect</property>
19+
<property name="dialect">org.hibernate.dialect.CockroachDB201Dialect</property>
2020

2121
<!-- Echo all executed SQL to stdout -->
2222
<property name="show_sql">true</property>

node/sequelize/models/index.js

Lines changed: 41 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -2,19 +2,53 @@
22

33
var fs = require('fs');
44
var Sequelize = require('sequelize-cockroachdb');
5-
var sequelize = new Sequelize(process.env.ADDR, {
6-
dialectOptions: {cockroachdbTelemetryDisabled : true}
7-
});
5+
6+
if (process.env.ADDR === undefined) {
7+
throw new Error("ADDR (database URL) must be specified.");
8+
}
9+
10+
var url = new URL(process.env.ADDR);
11+
var opts = {
12+
dialect: "postgres",
13+
username: url.username,
14+
host: url.hostname,
15+
port: url.port,
16+
database: url.pathname.substring(1), // ignore leading '/'
17+
dialectOptions: {
18+
cockroachdbTelemetryDisabled: true,
19+
ssl: {},
20+
},
21+
logging: false,
22+
};
23+
24+
if (url.password) {
25+
opts.password = url.password
26+
}
27+
if (url.searchParams.has("options")) {
28+
var pgOpts = url.searchParams.get("options")
29+
var cluster = pgOpts.match(/cluster=([^\s]+)/)[1]
30+
opts.database = `${cluster}.${opts.database}`
31+
}
32+
if (url.searchParams.get("sslmode") === "disable") {
33+
delete opts.dialectOptions.ssl
34+
} else {
35+
if (url.searchParams.has("sslrootcert")) {
36+
opts.dialectOptions.ssl.ca = fs.readFileSync(url.searchParams.get("sslrootcert").toString())
37+
}
38+
if (url.searchParams.has("sslcert")) {
39+
opts.dialectOptions.ssl.cert = fs.readFileSync(url.searchParams.get("sslcert").toString())
40+
}
41+
if (url.searchParams.has("sslkey")) {
42+
opts.dialectOptions.ssl.key = fs.readFileSync(url.searchParams.get("sslkey").toString())
43+
}
44+
}
45+
var sequelize = new Sequelize(opts);
846
var DataTypes = Sequelize.DataTypes;
947

1048
if (!Sequelize.supportsCockroachDB) {
1149
throw new Error("CockroachDB dialect for Sequelize not installed");
1250
}
1351

14-
if (process.env.ADDR === undefined) {
15-
throw new Error("ADDR (database URL) must be specified.");
16-
}
17-
1852
module.exports.Customer = sequelize.define('customer', {
1953
name: DataTypes.STRING
2054
}, {

0 commit comments

Comments
 (0)