Files
fleet/frontend/interfaces/user.ts
T
Lucas Manuel Rodriguez 59786c8c0e Add new Technician role (#39564)
Resolves #38621, #38627, and #38623.

- [X] Changes file added for user-visible changes in `changes/`,
`orbit/changes/` or `ee/fleetd-chrome/changes`.

## Testing

- [x] Added/updated automated tests
- [X] QA'd all new/changed functionality manually

<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->

## Summary by CodeRabbit

## Release Notes

* **New Features**
* Added a new premium-tier Technician role with read/write permissions
across teams, hosts, policies, queries, and configurations.
* License validation now prevents assigning premium roles on Fleet Free
editions.

* **Bug Fixes**
* Updated role-based access controls across team management pages to
properly restrict technician access.

<!-- end of auto-generated comment: release notes by coderabbit.ai -->
2026-02-11 15:00:10 -03:00

127 lines
2.6 KiB
TypeScript

import PropTypes from "prop-types";
import teamInterface, { ITeam } from "./team";
import { IUserSettings } from "./config";
export default PropTypes.shape({
created_at: PropTypes.string,
updated_at: PropTypes.string,
id: PropTypes.number,
name: PropTypes.string,
email: PropTypes.string,
role: PropTypes.string,
force_password_reset: PropTypes.bool,
gravatar_url: PropTypes.string,
sso_enabled: PropTypes.bool,
mfa_enabled: PropTypes.bool,
global_role: PropTypes.string,
api_only: PropTypes.bool,
teams: PropTypes.arrayOf(teamInterface),
});
export const USERS_ROLES = [
"admin",
"maintainer",
"observer",
"observer_plus",
"technician",
] as const;
export type IUserRole = typeof USERS_ROLES[number];
export type UserRole =
| "admin"
| "maintainer"
| "observer"
| "observer_plus"
| "technician"
| "gitops"
| "Admin"
| "Maintainer"
| "Observer"
| "Observer+"
| "Technician"
| "GitOps"
| "Unassigned"
| ""
| "Various";
export interface IUser {
created_at?: string;
updated_at?: string;
id: number;
name: string;
email: string;
role: UserRole;
force_password_reset: boolean;
gravatar_url?: string;
gravatar_url_dark?: string;
sso_enabled: boolean;
mfa_enabled?: boolean;
global_role: UserRole | null;
api_only: boolean;
teams: ITeam[];
}
/**
* The shape of the request body when updating a user.
*/
export interface IUserUpdateBody {
global_role?: UserRole | null;
teams?: ITeam[];
name: string;
email?: string;
sso_enabled?: boolean;
mfa_enabled?: boolean;
role?: UserRole;
id: number;
}
export interface IUserFormErrors {
email?: string | null;
name?: string | null;
password?: string | null;
sso_enabled?: boolean | null;
}
export interface IResetPasswordFormErrors {
new_password?: string | null;
new_password_confirmation?: string | null;
}
export interface IResetPasswordForm {
new_password: string;
new_password_confirmation: string;
}
export interface ILoginUserData {
email: string;
password: string;
}
export interface ICreateUserFormData {
email: string;
global_role: UserRole | null;
name: string;
password?: string | null;
sso_enabled?: boolean;
mfa_enabled?: boolean;
teams: ITeam[];
}
export interface IUpdateUserFormData {
currentUserId?: number;
email?: string;
global_role?: UserRole | null;
name?: string;
password?: string | null;
sso_enabled?: boolean;
mfa_enabled?: boolean;
teams?: ITeam[];
settings?: IUserSettings;
}
export interface ICreateUserWithInvitationFormData {
email: string;
invite_token: string;
name: string;
password: string;
password_confirmation: string;
}