Merge "Fix audit log to contain ending timestamp"
[policy/engine.git] / POLICY-SDK-APP / src / main / java / org / onap / policy / controller / CreateFirewallController.java
1 /*-
2  * ============LICENSE_START=======================================================
3  * ONAP Policy Engine
4  * ================================================================================
5  * Copyright (C) 2017 AT&T Intellectual Property. All rights reserved.
6  * ================================================================================
7  * Licensed under the Apache License, Version 2.0 (the "License");
8  * you may not use this file except in compliance with the License.
9  * You may obtain a copy of the License at
10  * 
11  *      http://www.apache.org/licenses/LICENSE-2.0
12  * 
13  * Unless required by applicable law or agreed to in writing, software
14  * distributed under the License is distributed on an "AS IS" BASIS,
15  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
16  * See the License for the specific language governing permissions and
17  * limitations under the License.
18  * ============LICENSE_END=========================================================
19  */
20
21 package org.onap.policy.controller;
22 import java.io.PrintWriter;
23 import java.util.ArrayList;
24 import java.util.HashMap;
25 import java.util.HashSet;
26 import java.util.Iterator;
27 import java.util.LinkedHashMap;
28 import java.util.List;
29 import java.util.Map;
30 import java.util.Set;
31
32 import javax.servlet.http.HttpServletRequest;
33 import javax.servlet.http.HttpServletResponse;
34
35 import org.hibernate.SessionFactory;
36 import org.json.JSONObject;
37 import org.onap.policy.common.logging.flexlogger.FlexLogger;
38 import org.onap.policy.common.logging.flexlogger.Logger;
39 import org.onap.policy.rest.adapter.AddressGroupJson;
40 import org.onap.policy.rest.adapter.AddressJson;
41 import org.onap.policy.rest.adapter.AddressMembers;
42 import org.onap.policy.rest.adapter.AddressMembersJson;
43 import org.onap.policy.rest.adapter.DeployNowJson;
44 import org.onap.policy.rest.adapter.IdMap;
45 import org.onap.policy.rest.adapter.PolicyRestAdapter;
46 import org.onap.policy.rest.adapter.PrefixIPList;
47 import org.onap.policy.rest.adapter.ServiceGroupJson;
48 import org.onap.policy.rest.adapter.ServiceListJson;
49 import org.onap.policy.rest.adapter.ServiceMembers;
50 import org.onap.policy.rest.adapter.ServicesJson;
51 import org.onap.policy.rest.adapter.TagDefines;
52 import org.onap.policy.rest.adapter.Tags;
53 import org.onap.policy.rest.adapter.Term;
54 import org.onap.policy.rest.adapter.TermCollector;
55 import org.onap.policy.rest.adapter.VendorSpecificData;
56 import org.onap.policy.rest.dao.CommonClassDao;
57 import org.onap.policy.rest.jpa.AddressGroup;
58 import org.onap.policy.rest.jpa.FWTagPicker;
59 import org.onap.policy.rest.jpa.GroupServiceList;
60 import org.onap.policy.rest.jpa.PolicyEntity;
61 import org.onap.policy.rest.jpa.PrefixList;
62 import org.onap.policy.rest.jpa.SecurityZone;
63 import org.onap.policy.rest.jpa.ServiceList;
64 import org.onap.policy.rest.jpa.TermList;
65 import org.onap.policy.xacml.api.XACMLErrorConstants;
66 import org.onap.portalsdk.core.controller.RestrictedBaseController;
67 import org.springframework.beans.factory.annotation.Autowired;
68 import org.springframework.stereotype.Controller;
69 import org.springframework.web.bind.annotation.RequestMapping;
70 import org.springframework.web.servlet.ModelAndView;
71
72 import com.fasterxml.jackson.core.JsonGenerationException;
73 import com.fasterxml.jackson.databind.DeserializationFeature;
74 import com.fasterxml.jackson.databind.JsonMappingException;
75 import com.fasterxml.jackson.databind.JsonNode;
76 import com.fasterxml.jackson.databind.ObjectMapper;
77 import com.fasterxml.jackson.databind.ObjectWriter;
78
79 import oasis.names.tc.xacml._3_0.core.schema.wd_17.AllOfType;
80 import oasis.names.tc.xacml._3_0.core.schema.wd_17.AnyOfType;
81 import oasis.names.tc.xacml._3_0.core.schema.wd_17.AttributeDesignatorType;
82 import oasis.names.tc.xacml._3_0.core.schema.wd_17.AttributeValueType;
83 import oasis.names.tc.xacml._3_0.core.schema.wd_17.MatchType;
84 import oasis.names.tc.xacml._3_0.core.schema.wd_17.PolicyType;
85 import oasis.names.tc.xacml._3_0.core.schema.wd_17.TargetType;
86
87 @Controller
88 @RequestMapping("/")
89 public class CreateFirewallController extends RestrictedBaseController {
90         private static Logger policyLogger      = FlexLogger.getLogger(CreateFirewallController.class);
91         private static final String ANY="ANY";
92         private static final String GROUP="Group_";
93
94         @Autowired
95         SessionFactory sessionFactory;
96         
97         private static CommonClassDao commonClassDao;
98
99         public static CommonClassDao getCommonClassDao() {
100                 return commonClassDao;
101         }
102
103         public static void setCommonClassDao(CommonClassDao commonClassDao) {
104                 CreateFirewallController.commonClassDao = commonClassDao;
105         }
106         
107         private List<String> tagCollectorList;
108         
109         List<String> expandablePrefixIPList = new ArrayList<>();
110         List<String> expandableServicesList= new ArrayList<>();
111         @Autowired
112         private CreateFirewallController(CommonClassDao commonClassDao){
113                 CreateFirewallController.commonClassDao = commonClassDao;
114         }
115
116         public CreateFirewallController(){}
117         private List<String> termCollectorList;
118         
119
120
121         public PolicyRestAdapter setDataToPolicyRestAdapter(PolicyRestAdapter policyData){
122                 String jsonBody="";
123                 termCollectorList = new ArrayList <>();
124                 tagCollectorList = new ArrayList <>();
125                 if(policyData.getAttributes().size() > 0){
126                         for(Object attribute : policyData.getAttributes()){
127                                 if(attribute instanceof LinkedHashMap<?, ?>){
128                                         String key = ((LinkedHashMap<?, ?>) attribute).get("key").toString();
129                                         termCollectorList.add(key);
130                                         
131                                         String tag = ((LinkedHashMap<?, ?>) attribute).get("value").toString();
132                                         tagCollectorList.add(tag);
133                                 }
134                         }
135                 }
136                 jsonBody = constructJson(policyData);   
137                 if (jsonBody != null && !jsonBody.equalsIgnoreCase("")) {
138                         policyData.setJsonBody(jsonBody);
139                 } else {
140                         policyData.setJsonBody("{}");
141                 }
142                 policyData.setJsonBody(jsonBody);
143                 
144                 return policyData;
145         }
146
147         private List<String> mapping(String expandableList) {
148                 String value = null;
149                 String desc = null;
150                 List <String> valueDesc= new ArrayList<>();
151                 List<Object> prefixListData = commonClassDao.getData(PrefixList.class);
152                 for (int i = 0; i< prefixListData.size(); i++) {
153                         PrefixList prefixList = (PrefixList) prefixListData.get(i);
154                         if (prefixList.getPrefixListName().equals(expandableList)) {
155                                 value = prefixList.getPrefixListValue();
156                                 valueDesc.add(value);
157                                 desc= prefixList.getDescription();
158                                 valueDesc.add(desc);
159                                 break;
160                         }
161                 }
162                 return valueDesc;
163         }
164
165         private ServiceList mappingServiceList(String expandableList) { 
166                 ServiceList serviceList=null;
167                 List<Object> serviceListData = commonClassDao.getData(ServiceList.class);
168                 for (int i = 0; i< serviceListData.size(); i++) {
169                         serviceList = (ServiceList) serviceListData.get(i);
170                         if (serviceList.getServiceName().equals(expandableList)) {
171                                 break;
172                         }
173                 }
174                 return serviceList;
175         }
176
177         private GroupServiceList mappingServiceGroup(String expandableList) {
178
179                 GroupServiceList serviceGroup=null;
180                 List<Object> serviceGroupData = commonClassDao.getData(GroupServiceList.class);
181                 for (int i = 0; i< serviceGroupData.size(); i++) {
182                         serviceGroup = (GroupServiceList) serviceGroupData.get(i);
183                         if (serviceGroup.getGroupName().equals(expandableList)) {
184                                 break;
185                         }
186                 }
187                 return serviceGroup;
188         }
189
190         private AddressGroup mappingAddressGroup(String expandableList) {
191
192                 AddressGroup addressGroup=null;
193                 List<Object> addressGroupData = commonClassDao.getData(AddressGroup.class);
194                 for (int i = 0; i< addressGroupData.size(); i++) {
195                         addressGroup = (AddressGroup) addressGroupData.get(i);
196                         if (addressGroup.getGroupName().equals(expandableList)) {
197                                 break;
198                         }
199                 }
200                 return addressGroup;
201         }
202
203         public void prePopulateFWPolicyData(PolicyRestAdapter policyAdapter, PolicyEntity entity) {
204                 ArrayList<Object> attributeList;
205                 attributeList = new ArrayList<>();
206                 if (policyAdapter.getPolicyData() instanceof PolicyType) {
207                         Object policyData = policyAdapter.getPolicyData();
208                         PolicyType policy = (PolicyType) policyData;
209                         // policy name value is the policy name without any prefix and Extensions.
210                         policyAdapter.setOldPolicyFileName(policyAdapter.getPolicyName());
211                         String policyNameValue = policyAdapter.getPolicyName().substring(policyAdapter.getPolicyName().indexOf("FW_") +3);
212                         if (policyLogger.isDebugEnabled()) {
213                                 policyLogger.debug("Prepopulating form data for Config Policy selected:"+ policyAdapter.getPolicyName());
214                         }
215                         policyAdapter.setPolicyName(policyNameValue);
216                         String description = "";
217                         try{
218                                 description = policy.getDescription().substring(0, policy.getDescription().indexOf("@CreatedBy:"));
219                         }catch(Exception e){
220                                 policyLogger.info("General error", e);
221                                 description = policy.getDescription();
222                         }
223                         policyAdapter.setPolicyDescription(description);
224
225                         ObjectMapper mapper = new ObjectMapper();
226
227                         TermCollector tc1=null;
228                         try {
229                                 //Json conversion. 
230                                 String data=null;
231                                 SecurityZone jpaSecurityZone;
232                                 data = entity.getConfigurationData().getConfigBody();
233                                 tc1 = mapper.readValue(data, TermCollector.class);
234                                 List<Object> securityZoneData = commonClassDao.getData(SecurityZone.class);
235                                 for (int i = 0; i < securityZoneData.size() ; i++) {
236                                         jpaSecurityZone = (SecurityZone) securityZoneData.get(i);
237                                         if (jpaSecurityZone.getZoneValue().equals(tc1.getSecurityZoneId())){
238                                                 policyAdapter.setSecurityZone(jpaSecurityZone.getZoneName());
239                                                 break;
240                                         }
241                                 }
242                         }
243                         catch(Exception e) {
244                                 policyLogger.error("Exception Caused while Retriving the JSON body data" +e);
245                         }
246                         
247                         Map<String, String> termTagMap=null;
248                         if(tc1 != null){
249                                 for(int i=0;i<tc1.getFirewallRuleList().size();i++){
250                                         termTagMap = new HashMap <>();
251                                         String ruleName= tc1.getFirewallRuleList().get(i).getRuleName();
252                                         String tagPickerName=tc1.getRuleToTag().get(i).getTagPickerName();
253                                         termTagMap.put("key", ruleName);
254                                         termTagMap.put("value", tagPickerName);
255                                         attributeList.add(termTagMap);
256                                 }
257                         }
258                         policyAdapter.setAttributes(attributeList);
259                         // Get the target data under policy.
260                         TargetType target = policy.getTarget();
261                         if (target != null) {
262                                 // Under target we have AnyOFType
263                                 List<AnyOfType> anyOfList = target.getAnyOf();
264                                 if (anyOfList != null) {
265                                         Iterator<AnyOfType> iterAnyOf = anyOfList.iterator();
266                                         while (iterAnyOf.hasNext()) {
267                                                 AnyOfType anyOf = iterAnyOf.next();
268                                                 // Under AnyOFType we have AllOFType
269                                                 List<AllOfType> allOfList = anyOf.getAllOf();
270                                                 if (allOfList != null) {
271                                                         Iterator<AllOfType> iterAllOf = allOfList.iterator();
272                                                         while (iterAllOf.hasNext()) {
273                                                                 AllOfType allOf = iterAllOf.next();
274                                                                 // Under AllOFType we have Match
275                                                                 List<MatchType> matchList = allOf.getMatch();
276                                                                 if (matchList != null) {
277                                                                         
278                                                                         Iterator<MatchType> iterMatch = matchList.iterator();
279                                                                         while (iterMatch.hasNext()) {
280                                                                                 MatchType match = iterMatch.next();
281                                                                                 //
282                                                                                 // Under the match we have attribute value and
283                                                                                 // attributeDesignator. So,finally down to the actual attribute.
284                                                                                 //
285                                                                                 AttributeValueType attributeValue = match.getAttributeValue();
286                                                                                 String value = (String) attributeValue.getContent().get(0);
287                                                                                 AttributeDesignatorType designator = match.getAttributeDesignator();
288                                                                                 String attributeId = designator.getAttributeId();
289                                                                                 if (("ConfigName").equals(attributeId)) {
290                                                                                         policyAdapter.setConfigName(value);
291                                                                                 }
292                                                                                 if (("RiskType").equals(attributeId)){
293                                                                                         policyAdapter.setRiskType(value);
294                                                                                 }
295                                                                                 if (("RiskLevel").equals(attributeId)){
296                                                                                         policyAdapter.setRiskLevel(value);
297                                                                                 }
298                                                                                 if (("guard").equals(attributeId)){
299                                                                                         policyAdapter.setGuard(value);
300                                                                                 }
301                                                                                 if (attributeId.equals("TTLDate") && !value.contains("NA")){
302                                                                                         PolicyController controller = new PolicyController();
303                                                                                         String newDate = controller.convertDate(value);
304                                                                                         policyAdapter.setTtlDate(newDate);
305                                                                                 }
306                                                                         }
307                                                                 }
308                                                         }
309                                                 }
310                                         }
311                                 }
312                         }
313                 }
314         }
315         
316         @RequestMapping(value={"/policyController/ViewFWPolicyRule.htm"}, method={org.springframework.web.bind.annotation.RequestMethod.POST})
317         public ModelAndView setFWViewRule(HttpServletRequest request, HttpServletResponse response){
318                 try {
319                         termCollectorList = new ArrayList<>();
320                         ObjectMapper mapper = new ObjectMapper();
321                         mapper.configure(DeserializationFeature.FAIL_ON_UNKNOWN_PROPERTIES, false);
322                         JsonNode root = mapper.readTree(request.getReader());
323                         PolicyRestAdapter policyData = mapper.readValue(root.get("policyData").toString(), PolicyRestAdapter.class);
324                         if(policyData.getAttributes().size() > 0){
325                                 for(Object attribute : policyData.getAttributes()){
326                                         if(attribute instanceof LinkedHashMap<?, ?>){
327                                                 String key = ((LinkedHashMap<?, ?>) attribute).get("key").toString();
328                                                 termCollectorList.add(key);
329                                         }
330                                 }
331                         }
332                         TermList jpaTermList;
333                         String ruleSrcList=null;
334                         String ruleDestList=null;
335                         String ruleSrcPort=null;
336                         String ruleDestPort=null;
337                         String ruleAction=null;
338                         List <String> valueDesc= new ArrayList<>();
339                         StringBuffer displayString = new StringBuffer();
340                         for (String id : termCollectorList) {
341                                 List<Object> tmList = commonClassDao.getDataById(TermList.class, "termName", id);
342                                 jpaTermList = (TermList) tmList.get(0);
343                                 if (jpaTermList != null){                               
344                                         ruleSrcList= jpaTermList.getSrcIPList();        
345                                         if ((ruleSrcList!= null) && (!ruleSrcList.isEmpty()) && !ruleSrcList.equals("null")){
346                                                 displayString.append("Source IP List: " + jpaTermList.getSrcIPList());
347                                                 displayString.append(" ; \t\n");
348                                                 for(String srcList:ruleSrcList.split(",")){     
349                                                         if(srcList.startsWith(GROUP)){
350                                                                 AddressGroup ag;
351                                                                 ag= mappingAddressGroup(srcList);
352                                                                 displayString.append("\n\t"+"Group has  :"+ag.getPrefixList()+"\n");
353                                                                 for(String groupItems:ag.getPrefixList().split(",")){
354                                                                         valueDesc=mapping(groupItems);
355                                                                         displayString.append("\n\t"+"Name: "+groupItems);
356                                                                         if(!valueDesc.isEmpty()){
357                                                                                 displayString.append("\n\t"+"Description: "+valueDesc.get(1));
358                                                                                 displayString.append("\n\t"+"Value: "+valueDesc.get(0));
359                                                                         }
360                                                                         displayString.append("\n");
361                                                                 }
362                                                         }else{
363                                                                 if(!srcList.equals(ANY)){
364                                                                         valueDesc=mapping(srcList);
365                                                                         displayString.append("\n\t"+"Name: "+srcList);
366                                                                         displayString.append("\n\t"+"Description: "+valueDesc.get(1));
367                                                                         displayString.append("\n\t"+"Value: "+valueDesc.get(0));
368                                                                         displayString.append("\n");
369                                                                 }
370                                                         }
371                                                 }
372                                                 displayString.append("\n");
373                                         } 
374                                         ruleDestList= jpaTermList.getDestIPList();
375                                         if ( ruleDestList!= null && (!ruleDestList.isEmpty())&& !ruleDestList.equals("null")){
376                                                 displayString.append("Destination IP List: " + jpaTermList.getDestIPList());
377                                                 displayString.append(" ; \t\n");
378                                                 for(String destList:ruleDestList.split(",")){   
379                                                         if(destList.startsWith(GROUP)){
380                                                                 AddressGroup ag;
381                                                                 ag= mappingAddressGroup(destList);
382                                                                 displayString.append("\n\t"+"Group has  :"+ag.getPrefixList()+"\n");
383                                                                 for(String groupItems:ag.getPrefixList().split(",")){
384                                                                         valueDesc=mapping(groupItems);
385                                                                         displayString.append("\n\t"+"Name: "+groupItems);
386                                                                         displayString.append("\n\t"+"Description: "+valueDesc.get(1));
387                                                                         displayString.append("\n\t"+"Value: "+valueDesc.get(0));
388                                                                         displayString.append("\n\t");
389                                                                 }
390                                                         }else{
391                                                                 if(!destList.equals(ANY)){
392                                                                         valueDesc=mapping(destList);
393                                                                         displayString.append("\n\t"+"Name: "+destList);
394                                                                         displayString.append("\n\t"+"Description: "+valueDesc.get(1));
395                                                                         displayString.append("\n\t"+"Value: "+valueDesc.get(0));
396                                                                         displayString.append("\n\t");
397                                                                 }
398                                                         }
399                                                 }
400                                                 displayString.append("\n");
401                                         } 
402
403                                         ruleSrcPort=jpaTermList.getSrcPortList();
404                                         if ( ruleSrcPort!= null && (!ruleSrcPort.isEmpty())&& !ruleSrcPort.equals("null")) {
405                                                 displayString.append("\n"+"Source Port List:"
406                                                                 + ruleSrcPort);
407                                                 displayString.append(" ; \t\n");
408                                         } 
409
410                                         ruleDestPort= jpaTermList.getDestPortList();
411                                         if (ruleDestPort != null && (!ruleDestPort.isEmpty())&& !ruleDestPort.equals("null")) {
412                                                 displayString.append("\n"+"Destination Port List:"
413                                                                 + ruleDestPort);
414                                                 displayString.append(" ; \t\n");
415                                                 for(String destServices:ruleDestPort.split(",")){       
416                                                         if(destServices.startsWith(GROUP)){
417                                                                 GroupServiceList sg;
418                                                                 sg= mappingServiceGroup(destServices);
419                                                                 displayString.append("\n\t"+"Service Group has  :"+sg.getServiceList()+"\n");
420                                                                 for(String groupItems:sg.getServiceList().split(",")){
421                                                                         ServiceList sl;
422                                                                         sl= mappingServiceList(groupItems);
423                                                                         displayString.append("\n\t"+"Name:  "+
424                                                                                         sl.getServiceName());
425                                                                         displayString.append("\n\t"+"Description:  "+
426                                                                                         sl.getServiceDescription());    
427                                                                         displayString.append("\n\t"+"Transport-Protocol:  "+
428                                                                                         sl.getServiceTransProtocol());
429                                                                         displayString.append("\n\t"+"Ports:  "+
430                                                                                         sl.getServicePorts());
431                                                                         displayString.append("\n");
432                                                                 }
433                                                         }
434                                                         else{
435                                                                 if(!destServices.equals(ANY)){
436                                                                         ServiceList sl;
437                                                                         sl= mappingServiceList(destServices);
438                                                                         displayString.append("\n\t"+"Name:  "+
439                                                                                         sl.getServiceName());
440                                                                         displayString.append("\n\t"+"Description:  "+
441                                                                                         sl.getServiceDescription());    
442                                                                         displayString.append("\n\t"+"Transport-Protocol:  "+
443                                                                                         sl.getServiceTransProtocol());
444                                                                         displayString.append("\n\t"+"Ports:  "+
445                                                                                         sl.getServicePorts());
446                                                                         displayString.append("\n");
447                                                                 }
448                                                         }
449                                                 }
450                                                 displayString.append("\n");
451                                         }
452
453                                         ruleAction=(jpaTermList).getAction();
454                                         if ( ruleAction!= null && (!ruleAction.isEmpty())) {
455                                                 displayString.append("\n"+"Action List:"
456                                                                 + ruleAction);
457                                                 displayString.append(" ; \t\n");
458                                         } 
459                                 }
460                         }
461                         response.setCharacterEncoding("UTF-8");
462                         response.setContentType("application / json");
463                         request.setCharacterEncoding("UTF-8");
464
465                         PrintWriter out = response.getWriter();
466                         String responseString = mapper.writeValueAsString(displayString);
467                         JSONObject j = new JSONObject("{policyData: " + responseString + "}");
468                         out.write(j.toString());
469                         return null;
470                 } catch (Exception e) {
471                         policyLogger.error(XACMLErrorConstants.ERROR_PROCESS_FLOW + e);
472                 }
473                 return null;    
474         }
475
476         private String constructJson(PolicyRestAdapter policyData) {
477                 int ruleCount=1;
478                 //Maps to assosciate the values read from the TermList dictionary
479                 Map<Integer, String> srcIP_map =null;
480                 Map<Integer, String> destIP_map=null;
481                 Map<Integer, String> srcPort_map =null;
482                 Map<Integer, String> destPort_map =null;
483                 Map<Integer, String> action_map=null;
484                 Map<Integer, String> fromZone_map=null;
485                 Map<Integer, String> toZone_map=null;
486
487                 String ruleDesc=null;
488                 String ruleFromZone=null;
489                 String ruleToZone=null;
490                 String ruleSrcPrefixList=null;
491                 String ruleDestPrefixList=null;
492                 String ruleSrcPort=null;
493                 String ruleDestPort=null;
494                 String ruleAction=null;
495
496                 String json = null;
497
498
499                 List<String> expandableList = new ArrayList<>();
500                 TermList jpaTermList;
501                 TermCollector tc = new TermCollector();
502                 SecurityZone jpaSecurityZone;
503                 List<Term> termList = new ArrayList<>();
504                 
505                 Tags tags=null;
506                 List<Tags>tagsList= new ArrayList<>();
507                 
508                 TagDefines tagDefine= new TagDefines();
509                 List<TagDefines> tagList=null;
510                 ServiceListJson targetSl=null;
511                 AddressMembers addressMembersJson=null;
512                 int i=0;
513                 try{
514                         String networkRole="";
515                         for(String tag:tagCollectorList){
516                                 tags= new Tags();
517                                 List<Object> tagListData = commonClassDao.getData(FWTagPicker.class);
518                                 for(int tagCounter=0; tagCounter<tagListData.size(); tagCounter++){
519                                         FWTagPicker jpaTagPickerList=(FWTagPicker) tagListData.get(tagCounter);
520                                         if (jpaTagPickerList.getTagPickerName().equals(tag) ){
521                                                 String tagValues=jpaTagPickerList.getTagValues();
522                                                 tagList= new ArrayList<>();
523                                                 for(String val:tagValues.split("#")) {
524                                                         int index=val.indexOf(':');
525                                                         String keyToStore=val.substring(0,index);
526                                                         String valueToStore=val.substring(index+1,val.length());
527                                                         
528                                                         tagDefine= new TagDefines();
529                                                         tagDefine.setKey(keyToStore);
530                                                         tagDefine.setValue(valueToStore);
531                                                         //Add to the collection.
532                                                         tagList.add(tagDefine);
533                                                         
534                                                 }
535                                                 networkRole=jpaTagPickerList.getNetworkRole();
536                                                 break;
537                                         }
538                                 }       
539                                 tags.setTags(tagList);
540                                 tags.setTagPickerName(tag);
541                                 tags.setRuleName(termCollectorList.get(i));
542                                 tags.setNetworkRole(networkRole);
543                                 tagsList.add(tags);
544                                 i++;
545                         }
546                         tc.setRuleToTag(tagsList);
547
548                         for (int tl = 0 ; tl< termCollectorList.size(); tl++) {
549                                 expandableList.add(termCollectorList.get(tl));
550                                 Term targetTerm = new Term();
551                                 //targetSl= new ServiceListJson();
552                                 targetTerm.setRuleName(termCollectorList.get(tl));
553                                 List<Object> termListData = commonClassDao.getData(TermList.class);
554                                 for (int j =0; j < termListData.size(); j++) {
555                                         jpaTermList = (TermList) termListData.get(j);
556                                         if (jpaTermList.getTermName().equals(termCollectorList.get(tl))){
557                                                 ruleDesc=jpaTermList.getTermDescription();
558                                                 if ((ruleDesc!=null)&& (!ruleDesc.isEmpty())){
559                                                         targetTerm.setDescription(ruleDesc);
560                                                 }       
561                                                 ruleFromZone=jpaTermList.getFromZone(); 
562
563                                                 if ((ruleFromZone != null) && (!ruleFromZone.isEmpty())){
564                                                         fromZone_map = new HashMap<>();
565                                                         fromZone_map.put(tl, ruleFromZone);
566                                                 }       
567                                                 ruleToZone=jpaTermList.getToZone();
568
569                                                 if ((ruleToZone != null) && (!ruleToZone.isEmpty())){
570                                                         toZone_map = new HashMap<>();
571                                                         toZone_map.put(tl, ruleToZone);
572                                                 } 
573                                                 ruleSrcPrefixList=jpaTermList.getSrcIPList();
574
575                                                 if ((ruleSrcPrefixList != null) && (!ruleSrcPrefixList.isEmpty())){
576                                                         srcIP_map = new HashMap<>();
577                                                         srcIP_map.put(tl, ruleSrcPrefixList);
578                                                 } 
579
580                                                 ruleDestPrefixList= jpaTermList.getDestIPList();
581                                                 if ((ruleDestPrefixList != null) && (!ruleDestPrefixList.isEmpty())){
582                                                         destIP_map = new HashMap<>();
583                                                         destIP_map.put(tl, ruleDestPrefixList);
584                                                 } 
585
586                                                 ruleSrcPort=jpaTermList.getSrcPortList();
587
588                                                 if (ruleSrcPort != null && (!ruleSrcPort.isEmpty())){
589                                                         srcPort_map = new HashMap<>();
590                                                         srcPort_map.put(tl, ruleSrcPort);
591                                                 } 
592
593                                                 ruleDestPort= jpaTermList.getDestPortList();
594
595                                                 if (ruleDestPort!= null && (!jpaTermList.getDestPortList().isEmpty())){
596                                                         destPort_map = new HashMap<>();
597                                                         destPort_map.put(tl, ruleDestPort);
598                                                 } 
599
600                                                 ruleAction=jpaTermList.getAction();
601
602                                                 if (( ruleAction!= null) && (!ruleAction.isEmpty())){
603                                                         action_map = new HashMap<>();
604                                                         action_map.put(tl, ruleAction);
605                                                 } 
606                                         }
607                                 }
608                                 targetTerm.setEnabled(true);
609                                 targetTerm.setLog(true);
610                                 targetTerm.setNegateSource(false);
611                                 targetTerm.setNegateDestination(false);
612
613                                 if(action_map!=null){
614                                         targetTerm.setAction(action_map.get(tl));
615                                 }
616
617                                 //FromZone arrays
618                                 if(fromZone_map!=null){
619                                         List<String> fromZone= new ArrayList<>();
620                                         for(String fromZoneStr:fromZone_map.get(tl).split(",") ){
621                                                 fromZone.add(fromZoneStr);
622                                         }
623                                         targetTerm.setFromZones(fromZone);
624                                 }
625
626                                 //ToZone arrays
627                                 if(toZone_map!=null){
628                                         List<String> toZone= new ArrayList<>();
629                                         for(String toZoneStr:toZone_map.get(tl).split(",") ){
630                                                 toZone.add(toZoneStr);
631                                         }
632                                         targetTerm.setToZones(toZone);
633                                 }
634
635                                 //Destination Services.
636                                 if(destPort_map!=null){
637                                         Set<ServicesJson> destServicesJsonList= new HashSet<>();
638                                         for(String destServices:destPort_map.get(tl).split(",") ){
639                                                 ServicesJson destServicesJson= new ServicesJson();
640                                                 destServicesJson.setType("REFERENCE");
641                                                 if(destServices.equals(ANY)){
642                                                         destServicesJson.setName("any");
643                                                         destServicesJsonList.add(destServicesJson);
644                                                         break;
645                                                 }else{
646                                                         if(destServices.startsWith(GROUP)){
647                                                                 destServicesJson.setName(destServices.substring(6,destServices.length()));
648                                                         } else{
649                                                                 destServicesJson.setName(destServices);
650                                                         }
651                                                         destServicesJsonList.add(destServicesJson);
652                                                 }
653                                         }                       
654                                         targetTerm.setDestServices(destServicesJsonList);
655                                 }
656                                 //ExpandableServicesList
657                                 if((srcPort_map!=null) && (destPort_map!=null)){
658                                         String servicesCollateString = (srcPort_map.get(tl) + "," + destPort_map.get(tl));
659                                         expandableServicesList.add(servicesCollateString);
660                                 }else if (srcPort_map!=null){
661                                         expandableServicesList.add(srcPort_map.get(tl));
662                                 }else if (destPort_map!=null){
663                                         expandableServicesList.add(destPort_map.get(tl));
664                                 }
665
666                                 if(srcIP_map!=null){
667                                         //Source List
668                                         List<AddressJson> sourceListArrayJson= new ArrayList<>();                       
669                                         for(String srcList:srcIP_map.get(tl).split(",") ){
670                                                 AddressJson srcListJson= new AddressJson();
671                                                 if(srcList.equals(ANY)){
672                                                         srcListJson.setType("any");
673                                                         sourceListArrayJson.add(srcListJson);
674                                                         break;
675                                                 }else{
676                                                         srcListJson.setType("REFERENCE");
677                                                         if(srcList.startsWith(GROUP)){
678                                                                 srcListJson.setName(srcList.substring(6,srcList.length()));
679                                                         }else{
680                                                                 srcListJson.setName(srcList);
681                                                         }
682                                                         sourceListArrayJson.add(srcListJson);
683                                                 }
684                                         }
685                                         targetTerm.setSourceList(sourceListArrayJson);
686                                 }
687                                 if(destIP_map!=null){
688                                         //Destination List
689                                         List<AddressJson> destListArrayJson= new ArrayList<>();                         
690                                         for(String destList:destIP_map.get(tl).split(",")){
691                                                 AddressJson destListJson= new AddressJson();
692                                                 if(destList.equals(ANY)){
693                                                         destListJson.setType("any");
694                                                         destListArrayJson.add(destListJson);
695                                                         break;
696                                                 }else{
697                                                         destListJson.setType("REFERENCE");
698                                                         if(destList.startsWith(GROUP)){
699                                                                 destListJson.setName(destList.substring(6,destList.length()));
700                                                         }else{
701                                                                 destListJson.setName(destList);
702                                                         }
703                                                         destListArrayJson.add(destListJson);
704                                                 }
705                                         }
706                                         targetTerm.setDestinationList(destListArrayJson);       
707                                 }
708                                 //ExpandablePrefixIPList
709                                 if ((srcIP_map!=null) && (destIP_map!=null)) 
710                                 {
711                                         String collateString = (srcIP_map.get(tl) + "," + destIP_map
712                                                         .get(tl));
713                                         expandablePrefixIPList.add(collateString);
714                                 }
715                                 else if(srcIP_map!=null){
716                                         expandablePrefixIPList.add(srcIP_map.get(tl));
717                                 }
718                                 else if(destIP_map!=null){
719                                         expandablePrefixIPList.add(destIP_map.get(tl));
720                                 }
721                                 termList.add(targetTerm);
722                                 targetTerm.setPosition(Integer.toString (ruleCount++));
723                         }
724                         
725                         List<Object> securityZoneData = commonClassDao.getData(SecurityZone.class);
726                         for (int j =0 ; j< securityZoneData.size() ; j++){
727                                 jpaSecurityZone = (SecurityZone) securityZoneData.get(j);
728                                 if (jpaSecurityZone.getZoneName().equals(policyData.getSecurityZone())){
729                                         tc.setSecurityZoneId(jpaSecurityZone.getZoneValue());
730                                         IdMap idMapInstance= new IdMap();
731                                         idMapInstance.setAstraId(jpaSecurityZone.getZoneValue());
732                                         idMapInstance.setVendorId("deviceGroup:dev");
733                                         
734                                         List<IdMap> idMap = new ArrayList <>();
735                                         idMap.add(idMapInstance);
736                                         
737                                         VendorSpecificData vendorStructure= new VendorSpecificData();
738                                         vendorStructure.setIdMap(idMap);
739                                         tc.setVendorSpecificData(vendorStructure);
740                                         break;
741                                 }
742                         }
743
744                         tc.setServiceTypeId("/v0/firewall/pan");
745                         tc.setConfigName(policyData.getConfigName());
746                         tc.setVendorServiceId("vipr");
747                         
748                         DeployNowJson deployNow= new DeployNowJson();
749                         deployNow.setDeployNow(false);
750
751                         tc.setDeploymentOption(deployNow);
752
753                         Set<ServiceListJson> servListArray = new HashSet<>();
754                         Set<ServiceGroupJson> servGroupArray= new HashSet<>();
755                         Set<AddressGroupJson> addrGroupArray= new HashSet<>();
756                         Set<AddressMembers> addrArray= new HashSet<> ();
757
758                         ServiceGroupJson targetSg= null;
759                         AddressGroupJson addressSg=null;
760                         ServiceListJson targetAny= null;
761                         ServiceListJson targetAnyTcp=null;
762                         ServiceListJson targetAnyUdp=null;
763
764                         for(String serviceList:expandableServicesList){
765                                 for(String t: serviceList.split(",")){
766                                         if((!t.startsWith(GROUP))){
767                                                 if(!t.equals(ANY)){
768                                                         ServiceList sl;
769                                                         targetSl= new ServiceListJson();
770                                                         sl= mappingServiceList(t);
771                                                         targetSl.setName(sl.getServiceName());
772                                                         targetSl.setDescription(sl.getServiceDescription());
773                                                         targetSl.setTransportProtocol(sl.getServiceTransProtocol());
774                                                         targetSl.setType(sl.getServiceType());
775                                                         targetSl.setPorts(sl.getServicePorts());
776                                                         servListArray.add(targetSl);
777                                                 }else{
778                                                         //Any for destinationServices.
779                                                         //Add names any, any-tcp, any-udp to the serviceGroup object. 
780                                                         targetAny= new ServiceListJson();
781                                                         targetAny.setName("any");
782                                                         targetAny.setType("SERVICE");
783                                                         targetAny.setTransportProtocol("any");
784                                                         targetAny.setPorts("any");
785
786                                                         servListArray.add(targetAny);
787
788                                                         targetAnyTcp= new ServiceListJson();
789                                                         targetAnyTcp.setName("any-tcp");
790                                                         targetAnyTcp.setType("SERVICE");
791                                                         targetAnyTcp.setTransportProtocol("tcp");
792                                                         targetAnyTcp.setPorts("any");
793
794                                                         servListArray.add(targetAnyTcp);
795
796                                                         targetAnyUdp= new ServiceListJson();
797                                                         targetAnyUdp.setName("any-udp");
798                                                         targetAnyUdp.setType("SERVICE");
799                                                         targetAnyUdp.setTransportProtocol("udp");
800                                                         targetAnyUdp.setPorts("any");
801
802                                                         servListArray.add(targetAnyUdp);
803                                                 }
804                                         }else{//This is a group
805                                                 GroupServiceList sg;
806                                                 targetSg= new ServiceGroupJson();
807                                                 sg= mappingServiceGroup(t);
808
809                                                 String name=sg.getGroupName();
810                                                 //Removing the "Group_" prepending string before packing the JSON 
811                                                 targetSg.setName(name.substring(6,name.length()));
812                                                 List<ServiceMembers> servMembersList= new ArrayList<>();
813
814                                                 for(String groupString: sg.getServiceList().split(",")){
815                                                         ServiceMembers serviceMembers= new ServiceMembers();
816                                                         serviceMembers.setType("REFERENCE");
817                                                         serviceMembers.setName(groupString);
818                                                         servMembersList.add(serviceMembers);
819                                                         //Expand the group Name
820                                                         ServiceList expandGroupSl ;
821                                                         targetSl= new ServiceListJson();
822                                                         expandGroupSl= mappingServiceList(groupString);
823
824                                                         targetSl.setName(expandGroupSl.getServiceName());
825                                                         targetSl.setDescription(expandGroupSl.getServiceDescription());
826                                                         targetSl.setTransportProtocol(expandGroupSl.getServiceTransProtocol());
827                                                         targetSl.setType(expandGroupSl.getServiceType());
828                                                         targetSl.setPorts(expandGroupSl.getServicePorts());
829                                                         servListArray.add(targetSl);
830                                                 }
831
832                                                 targetSg.setMembers(servMembersList);
833                                                 servGroupArray.add(targetSg);
834
835                                         }
836                                 }
837                         }
838
839                         Set<PrefixIPList> prefixIPList = new HashSet<>();
840                         for(String prefixList:expandablePrefixIPList){
841                                 for(String prefixIP: prefixList.split(",")){
842                                         if((!prefixIP.startsWith(GROUP))){
843                                                 if(!prefixIP.equals(ANY)){
844                                                         List<AddressMembers> addMembersList= new ArrayList<>();
845                                                         List<String> valueDesc;
846                                                         PrefixIPList targetAddressList = new PrefixIPList();
847                                                         AddressMembers addressMembers= new AddressMembers();
848                                                         targetAddressList.setName(prefixIP);
849                                                         policyLogger.error(XACMLErrorConstants.ERROR_PROCESS_FLOW + "PrefixList value:"+prefixIP);
850                                                         valueDesc = mapping(prefixIP);
851                                                         if(!valueDesc.isEmpty()){
852                                                                 policyLogger.error(XACMLErrorConstants.ERROR_PROCESS_FLOW + "PrefixList description:"+valueDesc.get(1));
853                                                                 targetAddressList.setDescription(valueDesc.get(1));
854                                                         }
855                                                         
856
857                                                         addressMembers.setType("SUBNET");
858                                                         if(!valueDesc.isEmpty()) {
859                                                                 addressMembers.setValue(valueDesc.get(0));
860                                                         }
861
862                                                         addMembersList.add(addressMembers);
863
864                                                         targetAddressList.setMembers(addMembersList);
865                                                         prefixIPList.add(targetAddressList);
866                                                 }
867                                         }
868                                         else{//This is a group
869                                                 AddressGroup ag;
870                                                 addressSg= new AddressGroupJson();
871                                                 ag= mappingAddressGroup(prefixIP);              
872
873                                                 String name=ag.getGroupName();
874                                                 //Removing the "Group_" prepending string before packing the JSON 
875                                                 addressSg.setName(name.substring(6,name.length()));
876                                                 
877                                                 List<AddressMembersJson> addrMembersList= new ArrayList<>();
878                                                 for(String groupString: ag.getPrefixList().split(",")){
879                                                         List<String> valueDesc;
880                                                         AddressMembersJson addressMembers= new AddressMembersJson();
881                                                         addressMembers.setType("REFERENCES");
882                                                         addressMembers.setName(groupString);
883                                                         addrMembersList.add(addressMembers);
884                                                         //Expand the group Name
885                                                         PrefixIPList expandGroupPrefix;
886                                                         addressMembersJson= new AddressMembers();
887                                                         valueDesc= mapping (groupString);
888                                                         
889                                                         addressMembersJson.setName(groupString);
890                                                         addressMembersJson.setType("SUBNET");
891                                                         addressMembersJson.setValue(valueDesc.get(0));
892                                                         
893                                                         addrArray.add(addressMembersJson);
894                                                         
895                                                 }
896                                                 addressSg.setMembers(addrMembersList);
897                                                 addrGroupArray.add(addressSg);
898                                         }
899
900                                 }
901                         }
902
903                         Set<Object> serviceGroup= new HashSet<>();
904
905                         for(Object obj1:servGroupArray){
906                                 serviceGroup.add(obj1);
907                         }
908
909                         for(Object obj:servListArray){
910                                 serviceGroup.add(obj);
911                         }
912
913                         Set<Object> addressGroup= new HashSet<>();
914
915                         for(Object addObj:prefixIPList){
916                                 addressGroup.add(addObj);
917                         }
918
919                         for(Object addObj1:addrGroupArray){
920                                 addressGroup.add(addObj1);
921                         }
922                         
923                         for(Object addObj2:addrArray){
924                                 addressGroup.add(addObj2);
925                         }
926                         
927
928                         tc.setServiceGroups(serviceGroup);
929                         tc.setAddressGroups(addressGroup);
930                         tc.setFirewallRuleList(termList);
931
932                         ObjectWriter om = new ObjectMapper().writer();
933                         try {
934                                 json = om.writeValueAsString(tc);
935                         } catch (JsonGenerationException e) {
936                                 policyLogger.error("JsonGenerationException Ocured",e);
937                         } catch (JsonMappingException e) {
938                                 policyLogger.error("IOException Occured",e);
939                         }       
940
941                 }catch (Exception e) {
942                         policyLogger.error("Exception Occured"+e);
943                 }
944
945                 return json;
946         }
947
948 }