-
Notifications
You must be signed in to change notification settings - Fork 57
/
dlp.js
111 lines (100 loc) · 3.8 KB
/
dlp.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
/**
* Copyright 2019 Google Inc.
*
* Licensed under the Apache License, Version 2.0 (the "License");
* you may not use this file except in compliance with the License.
* You may obtain a copy of the License at
*
* http://www.apache.org/licenses/LICENSE-2.0
*
* Unless required by applicable law or agreed to in writing, software
* distributed under the License is distributed on an "AS IS" BASIS,
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
* See the License for the specific language governing permissions and
* limitations under the License.
*
* This node provides DLP processing. We will assume that msg.payload
* contains the original data that may contain sensistive data.
*
* The configuration for the node includes:
*
* projectId - The project against which the DLP processing should be billed.
* inspectTemplateName - The name of a template defined in GCP console.
*
*/
/* jshint esversion: 8 */
module.exports = function(RED) {
"use strict";
const NODE_TYPE = "google-cloud-dlp";
const DLP = require('@google-cloud/dlp');
let dlpServiceClient;
function DLPNode(config) {
RED.nodes.createNode(this, config);
const node = this;
const inspectTemplateName = config.inspectTemplateName; // The name of the inspection template to use.
const projectId = config.projectId;
let credentials = null;
if (config.account) {
credentials = GetCredentials(config.account);
}
const keyFilename = config.keyFilename;
/**
* Extract JSON service account key from "google-cloud-credentials" config node.
*/
function GetCredentials(node) {
return JSON.parse(RED.nodes.getCredentials(node).account);
}
// Called when a message arrives at the node.
async function Input(msg) {
const item = {
value: msg.payload
};
const request = {
"parent": dlpServiceClient.projectPath(projectId),
"inspectTemplateName": dlpServiceClient.projectInspectTemplatePath(projectId, inspectTemplateName),
"deidentifyConfig": {
"infoTypeTransformations": {
transformations: [
{
infoTypes: [],
primitiveTransformation: {
replaceWithInfoTypeConfig: {
}
}
}
]
}
},
"item": item
};
// Invoke the DLP API to perform the processing.
try {
const dlpResponseArray = await dlpServiceClient.deidentifyContent(request);
msg.payload = dlpResponseArray[0];
node.send(msg);
}
catch(e) {
if (e.details) {
node.error(e.details);
} else {
console.log(e);
}
}
} // Input
// We must have EITHER credentials or a keyFilename. If neither are supplied, that
// is an error. If both are supplied, then credentials will be used.
if (credentials) {
dlpServiceClient = new DLP.DlpServiceClient({
"credentials": credentials
});
} else if (keyFilename) {
dlpServiceClient = new DLP.DlpServiceClient({
"keyFilename": keyFilename
});
} else {
dlpServiceClient = new DLP.DlpServiceClient({});
}
node.on("input", Input);
} // DLPNode
RED.nodes.registerType(NODE_TYPE, DLPNode);
};