yamori

有給休暇計算を主目的とした簡易勤怠管理システム

  1. 1
  2. 2
  3. 3
  4. 4
  5. 5
  6. 6
  7. 7
  8. 8
  9. 9
  10. 10
  11. 11
  12. 12
  13. 13
  14. 14
  15. 15
  16. 16
  17. 17
  18. 18
  19. 19
  20. 20
  21. 21
  22. 22
  23. 23
  24. 24
  25. 25
  26. 26
  27. 27
  28. 28
  29. 29
  30. 30
  31. 31
  32. 32
  33. 33
  34. 34
  35. 35
  36. 36
  37. 37
  38. 38
  39. 39
  40. 40
  41. 41
  42. 42
  43. 43
  44. 44
  45. 45
  46. 46
  47. 47
  48. 48
  49. 49
= 管理者向け概要

////
SPDX-License-Identifier: AGPL-3.0-only
Copyright 2026 Shota FUJI

This program is free software: you can redistribute it and/or modify it under the terms
of the GNU Affero General Public License as published by the Free Software Foundation,
either version 3 of the License, or (at your option) any later version.

This program is distributed in the hope that it will be useful, but WITHOUT ANY
WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A
PARTICULAR PURPOSE.  See the GNU Affero General Public License for more details.

You should have received a copy of the GNU Affero General Public License along
with this program.  If not, see <http://www.gnu.org/licenses/>.
////

== 全体構成

Yamori はブラウザ上で動作する SPA 、 SPA 向けの静的ファイルと HTTP API を提供するサーバから成り立ちます。
サーバは SQLite3 データベースにアプリケーションデータを読み書きします。
HTTP/1.1 で配信されるため**必ず前段に HTTP/2 or HTTP/3 のプロキシを置いてください**。

== アクセス制御

アクセス制御は全て https://webassembly.org/:[WebAssembly] プログラムとしてサーバに登録されます。

HTTP リクエストが来るとサーバは対応する WebAssembly ファイル・関数を実行して返り値を基にアクセスの許可・拒否を行います。
関数は https://flatbuffers.dev/:[FlatBuffers] のバイト文字列を受け取ります。
FlatBuffers のメッセージにはログインユーザとリクエスト、サーバの状態を含むコンテキストオブジェクトが含まれています。

[source,zig]
----
// users-api-acl-wasm.zig

export fn allowV1GetUsers(buffer_ptr: [*]const u8, buffer_len: u32) bool {
	const buffer = buffer_ptr[0..buffer_len];
	const root = flatbuffers.decodeRoot(
		yamori_users_acl.V1GetUsers, buffer,
	) catch return false;

	if (getAttribute(root.user.attributes, "role")) |attr| {
		return std.mem.eql(u8, attr, "admin");
	}

	return false;
}
----