-
Notifications
You must be signed in to change notification settings - Fork 2
/
Copy pathpull_and_redact_files.py
125 lines (93 loc) · 4.2 KB
/
pull_and_redact_files.py
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
import os
import json
import logging
import yaml
from netfile_client.NetFileClient import NetFileClient
LOG_LEVEL = os.getenv('LOG_LEVEL', 'INFO')
logger = logging.getLogger(__name__)
logger.addHandler(logging.StreamHandler())
logger.setLevel(LOG_LEVEL)
class DataRetriever:
''' Used to retrieve and redact files
It accesses the NetFile API to get files, redacts the contents
and saves it to a local directory. If no credentials are provided for NetFile,
it will simply copy files from netfile_samples to simulate data
retrieved from NetFile.
Environment variables used:
NETFILE_API_KEY: the api key for accessing NetFile API
NETFILE_API_SECRET: the api secret for accessing NetFile API
'''
def __init__(self, config, dest_dirpath='.local/netfile_redacted'):
''' Initialize with redaction configuration, destination directory and NetFile client '''
self.redaction_fields = config['redaction_fields']
self.endpoint_spec = config['endpoints']
self.dest_dirpath = dest_dirpath
NETFILE_API_KEY = os.getenv('NETFILE_API_KEY','')
NETFILE_API_SECRET = os.getenv('NETFILE_API_SECRET','')
if ((NETFILE_API_KEY != '') and (NETFILE_API_SECRET != '')) or os.path.exists('.env'):
logger.info('Making NetFile API calls')
self.nf = NetFileClient()
else:
logger.info('Simulating NetFile response since no credentials provided')
self.nf = None
os.makedirs(self.dest_dirpath, exist_ok=True)
def fetch_and_redact_all(self):
''' Get names of content to fetch from NetFile, redact and save '''
for name, extra_params in self.endpoint_spec.items():
logger.info('Get %s', name)
data = self.fetch(name, extra_params)
logger.info('Got %s of %s rows', name, len(data))
if name in self.redaction_fields:
logger.info('Redact %s', name)
self.redact(data, name)
with open(outpath := f'{self.dest_dirpath}/{name}.json','w', encoding='utf8') as f:
logger.info('Save %s to %s', name, outpath)
json.dump(data,f,sort_keys=True,indent=1)
def fetch(self,name, extra_params):
''' Fetch a specific named content, which may be simulated if NetFile client not initialized '''
if self.nf is None:
filepath = f'netfile_samples/{name}.json'
if os.path.exists(filepath):
with open(filepath,'r', encoding='utf8') as f:
data = json.load(f)
else:
data = []
else:
logger.debug('Pass extra_params %s to self.nf.fetch', extra_params)
data = self.nf.fetch(name, params=extra_params)
return data
def redact_path(self, data, path):
''' Redact a specific entry in the JSON data located through a provided path
Parameters:
data: the JSON data
path: the path to the entry to redact
'''
parts = path.split('.',1)
if len(parts) == 1:
if isinstance(data, dict) and (path in data):
data[path] = '***'
elif parts[0] == '[]':
if isinstance(data, list):
for i,v in enumerate(data):
self.redact_path(v, parts[1])
else:
if isinstance(data, dict) and (parts[0] in data):
self.redact_path(data[parts[0]], parts[1])
def redact(self, data, data_key):
''' Apply all configured redactions for a provided content
Parameters:
data: the content
data_key: the name of the content
'''
fields_to_redact = self.redaction_fields[data_key]
for item in data:
for field_path in fields_to_redact:
self.redact_path(item, field_path)
def main():
''' Pull and redact data based what specified in on config.yaml '''
with open('config.yaml', 'r', encoding='utf8') as f:
config = yaml.safe_load(f)
retriever = DataRetriever(config)
retriever.fetch_and_redact_all()
if __name__ == '__main__':
main()