Index: openacs-4/packages/acs-core-docs/www/objects.html =================================================================== RCS file: /usr/local/cvsroot/openacs-4/packages/acs-core-docs/www/objects.html,v diff -u -r1.2 -r1.3 --- openacs-4/packages/acs-core-docs/www/objects.html 17 Oct 2001 20:39:25 -0000 1.2 +++ openacs-4/packages/acs-core-docs/www/objects.html 2 Feb 2002 03:47:32 -0000 1.3 @@ -1,13 +1,44 @@ -
-Table of Contents
By Pete Su
-Developing data models in ACS 4 is much like developing data models -for ACS 3, save for the implementation. As usual, you need to examine + + +
+ ++Developing data models in OpenACS 4 is much like developing data models +for OpenACS 3, save for the implementation. As usual, you need to examine how to model the information that the application must store and manipulate, and define a suitable set of SQL tables. In our Notes application, we have to be able to keep track of who entered a particular note, when they did it, and the actual text of the notes that users have entered. A simple data model might look like this: -
+ +create table notes ( note_id integer primary key, owner_id integer references users(user_id), @@ -17,51 +48,73 @@ title varchar(255) not null, body varchar(1024) ) -
+ +
We've omitted constraint names for the purpose of clarity. -
+
+Thinking further ahead, we can imagine doing any of the following things with Notes as well: -
-In ACS 4, the key to enabling these types of services on your +
+Define access control policies on notes.
Attach user comments on notes.
Allows users to define custom fields to store on their notes.
Automatically generate input forms or output displays for notes.
Allow other applications to use notes in ways we don't know of yet.
+In OpenACS 4, the key to enabling these types of services on your application data is to take advantage of the Object System. The first -question anyone asks is usually "Just what are objects, and what do -you use them for anyway?". The short answer: objects are anything +question anyone asks is usually "Just what are objects, and what do +you use them for anyway?". The short answer: objects are anything represented in the application's data model that will need to be -managed by any central service in ACS 4, or that may be reusable in +managed by any central service in OpenACS 4, or that may be reusable in the context of future applications. Every object in the system is represented using a row in the acs_objects table. This table defines all the standard attributes that are stored on every object, including its system-wide unique ID, object type, and some generic auditing columns. -
+
+To make use of the object system, you as the application developer have to write your data model in a way that is slightly more complex than before. What you get for this extra work includes: -
The Permissions System lets you +
The Permissions System lets you track who is allowed to do what to the rows in an application table, and gives you an easy way to enforce - this from Tcl.
Every object has an attribute called context_id + this from Tcl.
Every object has an attribute called context_id that provides a way to trivially specify both the default - permissions for an object, and the intended "scope" of an + permissions for an object, and the intended "scope" of an object. Just set the context_id to the controlling - object and forget about it.
And most importantly, any future object-level service - from + object and forget about it.
And most importantly, any future object-level service - from a general-comments replacement to personalized ranking - will - become available to your application "for free."
Using ACS objects is straightforward: all that's required are a few extra steps in the design of your application data model. -
+
+For our example Notes application, to hook into the object system we make some calls to use our notes table as the basis for a -new object type. Object types are analogous to classes in +new object type. Object types are analogous to classes in programming languages such as C++ and Java. For example, in Java a class defines a set of attributes that store data and a set of methods -that run code. In ACS 4, we use one or more Oracle tables to store the +that run code. In OpenACS 4, we use one or more Oracle tables to store the data attributes, and we define a PL/SQL package to hold procedures to define the programming interface to the data model. -
+
+The object type itself is described using data in the acs_object_types and acs_attributes tables, which plays a role similar to the data dictionary in Oracle. As in @@ -71,13 +124,19 @@ bookkeeping code to keep everything consistent. Given all of this, below you'll find the code needed to describe a new object type called notes in your system. -
+
+Fire up your text editor and open the ROOT/packages/notes/sql/notes-create.sql file created -during the earlier created the package. Then, do the following: -
+during the earlier created the package. Then, do the following: +
+First, add an entry to the acs_object_types table with the following PL/SQL call: -
+ +begin acs_object_type.create_type ( supertype => 'acs_object', @@ -90,7 +149,8 @@ end; / show errors; -
+ +
This PL/SQL call tells the system that we would like to use the table NOTES as the basis for a new object type called note. This type is a subtype of the @@ -99,13 +159,15 @@ some work on our part to make this happen, since Oracle can't do it automatically. In general, most basic applications will define types that are simple subtypes of acs_object. -
+
+Now add entries to the acs_attributes table to describe the data attributes of the new type. This data can eventually be used to do things like automatically generate user interfaces to manipulate the notes table, though that functionality isn't yet available. -
+ +declare attr_id acs_attributes.attribute_id%TYPE; begin @@ -127,28 +189,36 @@ end; / show errors; -
-We can stop here and not bother to register the usual ACS 3.x + +
+We can stop here and not bother to register the usual OpenACS 3.x attributes of creation_user, creation_date and last_modified, since the object type acs_object already defines these attributes. Again, because the new type note is a subtype of acs_object, it will inherit these attributes, so there is no need for us to define them. -
The next thing we do is make a small modification to the data model to reflect the fact that each row in the notes table represents something that is not only an object of type note, but also an acs_object. The new table definition looks like this: -
+ +create table notes ( note_id integer references acs_objects(object_id) primary key, owner_id integer references users(user_id), title varchar(255) not null, body varchar(1024) ) -
+ +
Again, the usual creation_date and modified_date columns are absent since they already exist in acs_objects. Also, note the constraint we have added @@ -160,11 +230,17 @@ use the acs_objects table to find objects will transparently find any objects that are instances of any subtype of acs_objects. -
The next step is to define a PL/SQL package for your new type, and write some basic procedures to create and delete objects. Here is a package definition for our new type: -
+ +create or replace package note as function new ( @@ -187,36 +263,44 @@ end note; / show errors -
+ +
You might be wondering what all the extra parameters are to these calls, since we haven't mentioned them before. These parameters are needed to fill out information that will be stored about the object -that's not stored directly in the table you defined. The ACS 4 Object +that's not stored directly in the table you defined. The OpenACS 4 Object System defines these attributes on the type acs_object since all objects should have these attributes. Internally, there are tables that store this information for you. Most of the data is pretty self-explanatory and reflects attributes that existed in the earlier -ACS 3.x data models, with the exception of the context_id +OpenACS 3.x data models, with the exception of the context_id attribute. -
+
+The context_id attribute stores the ID of an object that represents the default security domain to which the object belongs. It -is used by the permissions system in +is used by the permissions system in this way: if no permissions are explicitly attached to the object, then the object inherits its permissions from the context. For -example, if I had told you how to use the permissions system to specify that an -object OBJ was "read only", then any other object that used OBJ as its -context would also be "read only" by default. We'll talk about this more +example, if I had told you how to use the permissions system to specify that an +object OBJ was "read only", then any other object that used OBJ as its +context would also be "read only" by default. We'll talk about this more later. -
The PL/SQL package body contains the implementations of the procedures defined above. The only subtle thing going on here is that we must use acs_object.new to insert a row into acs_objects, before inserting a row into the notes. Similarly, when we delete a row from note, we have to be sure to delete the corresponding acs_object row. -
+ +create or replace package body note as @@ -267,17 +351,20 @@ end note; / show errors; -
+ +
That's pretty much it! As long as you use the note.new function to create notes, and the note.delete function to delete them, you'll be assured that the relationship each note has with its corresponding acs_object is preserved. -
+
+The last thing to do is to make a file ROOT/packages/notes/sql/notes-drop.sql so it's easy to drop the data model when, say, you're testing: -
+ +begin acs_object_type.drop_type ('note'); end; @@ -286,74 +373,96 @@ drop package note; drop table notes; -
While it is generally hard to give general design advice without knowing anything about a particular application, you should follow the following rule of thumb when deciding when to hook part of your data model to the object system: -
-Anything in your data model that needs to be available to general ACS +
++Anything in your data model that needs to be available to general OpenACS services such as user comments, permissions, and so on should be a subtype of acs_object. In addition, if you want your data model to take advantage of attributes that exist in some object type that is a subtype of acs_object, then you should use the object system. -
+
+For example, for most applications, you will want to use objects to represent the data in your application that is user visible and thus requires access control. But other internal tables, views, mapping tables and so on probably don't need to be objects. As before, this kind of design decision is mostly made on an application-by-application basis, but this is a good baseline from which to start. -
In this section we cover some overall guidelines for designing data -models that are meant to be integrated with the ACS object +models that are meant to be integrated with the OpenACS object system. -
-There are two basic rules you should follow when designing ACS 4 data +
++There are two basic rules you should follow when designing OpenACS 4 data models: -
+
Never utilize fields in the acs_objects table in application specific ways. That is, never assign any application-specific semantics to this data. In the notes application, we use the creation_date and last_modified fields, but this is OK since we do not assign any application-specific meaning to these fields. -
+
In particular, never assign any application specific semantics to the context_id attribute of an object. This field is used for a very specific purpose by the permissions system, and using this -field in any other way whatsoever is guaranteed to make your +field in any other way whatsoever is guaranteed to make your application act strangely. -
+
+As we'll see later, the Notes example will point each note object's context_id to the package instance in which the note was created. The idea will be that in a real site, the administrator would create one package instance for every separate set of Notes (say, one -per user). The instance would "own" all of the notes that it created, +per user). The instance would "own" all of the notes that it created, and the administrator would be able to use the package instance as the basis for access control, which is convenient. -
+
+Another less important reason for these two rules is to not introduce any joins against the acs_objects table in SQL queries in your application that you do not absolutely need. -
+
+In the Notes example, the result of applying these rules is that we are careful to define our own attribute for owner_id rather than overloading creation_user from the objects @@ -365,29 +474,69 @@ when to use inherited attributes is fairly straightforward, but requires a good amount of thought at design time even for simple applications. -
+Hooking into the OpenACS 4 object system brings the application developer numerous benefits, and doing it involves only four easy steps: -
+
Describe the a new object type to the system. Most new application types will be subtypes of the built-in type acs_object. -
+
Define a table to store application object data. -
+
Define a PL/SQL package to store procedures related to the new type. You have to define at least a function called new to create new application objects and a procedure called delete to delete them. -
+
Define a package body that contains the implementations of the PL/SQL procedures defined above. -
+
Try not to write queries in your application that join against acs_objects. This means you should never use the fields in acs_objects for application-specific purposes. This is especially true for the context_id field. -