functions/datamasking/New-PSDCMaskingConfiguration.ps1
function New-PSDCMaskingConfiguration { <# .SYNOPSIS PSDCMaskingConfiguration creates a new table configuration file .DESCRIPTION PSDCMaskingConfiguration is able to generate the table configuration file This file is important to apply any data masking to the data in a database .PARAMETER SqlInstance SQL Server name or SMO object representing the SQL Server to connect to. This will be where the database is currently located .PARAMETER SqlCredential Allows you to login to servers using SQL Logins as opposed to Windows Auth/Integrated/Trusted. To use: $scred = Get-Credential, then pass $scred object to the -SqlCredential parameter. Windows Authentication will be used if SqlCredential is not specified. SQL Server does not accept Windows credentials being passed as credentials. To connect as a different Windows user, run PowerShell as that user. .PARAMETER Credential Allows you to login to servers or folders To use: $scred = Get-Credential, then pass $scred object to the -Credential parameter. .PARAMETER Database Databases to process through .PARAMETER Table Tables to process. By default all the tables will be processed .PARAMETER Column Columns to process. By default all the columns will be processed .PARAMETER Destination Destination where to save the generated JSON files. Th naming conventio will be "databasename.tables.json" .PARAMETER Locale Set the local to enable certain settings in the masking .PARAMETER Force Forcefully execute commands when needed .PARAMETER EnableException By default, when something goes wrong we try to catch it, interpret it and give you a friendly warning message. This avoids overwhelming you with "sea of red" exceptions, but is inconvenient because it basically disables advanced scripting. Using this switch turns this "nice by default" feature off and enables you to catch exceptions with your own try/catch. .PARAMETER WhatIf If this switch is enabled, no actions are performed but informational messages will be displayed that explain what would happen if the command were to run. .PARAMETER Confirm If this switch is enabled, you will be prompted for confirmation before executing any operations that change state. .NOTES Author: Sander Stad (@sqlstad, sqlstad.nl) Website: https://psdatabaseclone.org Copyright: (C) Sander Stad, sander@sqlstad.nl License: MIT https://opensource.org/licenses/MIT .LINK https://psdatabaseclone.org/ .EXAMPLE New-PSDCMaskingConfiguration -SqlInstance SQLDB1 -Database DB1 -Destination C:\Temp\clone\ Process all tables and columns for database DB1 on instance SQLDB1 .EXAMPLE New-PSDCMaskingConfiguration -SqlInstance SQLDB1 -Database DB1 -Table Customer -Destination C:\Temp\clone\ Process only table Customer with all the columns .EXAMPLE New-PSDCMaskingConfiguration -SqlInstance SQLDB1 -Database DB1 -Table Customer -Column City -Destination C:\Temp\clone\ Process only table Customer and only the column named "City" #> [CmdLetBinding(SupportsShouldProcess = $true)] [OutputType('System.String')] param( [parameter(Mandatory = $true)] [ValidateNotNullOrEmpty()] [object]$SqlInstance, [System.Management.Automation.PSCredential] $SqlCredential, [System.Management.Automation.PSCredential] $Credential, [parameter(Mandatory = $true)] [object[]]$Database, [object[]]$Table, [object[]]$Column, [parameter(Mandatory = $true)] [string]$Destination, [string]$Locale = 'en', [switch]$Force ) begin { # Try connecting to the instance Write-PSFMessage -Message "Attempting to connect to Sql Server $SqlInstance.." -Level Verbose try { $server = Connect-DbaInstance -SqlInstance $SqlInstance -SqlCredential $SqlCredential } catch { Stop-PSFFunction -Message "Could not connect to Sql Server instance $SqlInstance" -ErrorRecord $_ -Target $SqlInstance } # Get all the different column types try { $columnTypes = Get-Content -Path "$($MyInvocation.MyCommand.Module.ModuleBase)\internal\resources\datamasking\columntypes.json" | ConvertFrom-Json } catch { Stop-PSFFunction -Message "Something went wrong importing the column types" -Continue } # Check if the destination is accessible if (-not (Test-Path -Path $Destination)) { try { $null = New-Item -Path $Destination -ItemType Directory -Credential $Credential -Force:$Force } catch { Stop-PSFFunction -Message "Could not create destination directory" -ErrorRecord $_ -Target $Destination } } # Get the databases [array]$DatabaseCollection = $server.Databases | Where-Object Name -in $Database } process { if (Test-PSFFunctionInterrupt) { return } #Create the result array $results = @() # Loop through the databases foreach ($db in $DatabaseCollection) { $tables = @() # Get the tables if ($Table) { [array]$TableCollection = $db.Tables | Where-Object Name -in $Table } else { [array]$TableCollection = $db.Tables } if ($TableCollection.Count -lt 1) { Stop-PSFFunction -Message "The database does not contain any tables" -Target $db -Continue } # Loop through the tables foreach ($tbl in $TableCollection) { Write-PSFMessage -Message "Processing table $($tbl.Name)" -Level Verbose $columns = @() # Get the columns if ($Column) { [array]$ColumnCollection = $tbl.Columns | Where-Object Name -in $Column } else { [array]$ColumnCollection = $tbl.Columns } # Loop through each of the columns foreach ($cln in $ColumnCollection) { # Skip identity columns if ((-not $cln.Identity) -and (-not $cln.IsForeignKey)) { $maskingType = $null $columnLength = $cln.DataType.MaximumLength $columnType = $cln.DataType.Name.ToLower() if ($cln.DataType.IsStringType -or ($cln.DataType.Name.ToString() -in 'datetime', 'datetime2', 'date')) { $isStringType = 1 } else { $isStringType = 0 } # Get the masking type with the synonims $maskingType = $columnTypes | Where-Object {$cln.Name -in $_.Synonim} if ($maskingType) { # Make it easier to get the type name $maskingType = $maskingType | Select-Object TypeName -ExpandProperty TypeName # Check the maskingtype switch ($maskingType.ToLower()) { "firstname" { $type = "Name" $subType = "Firstname" $maxLength = $columnLength } "lastname" { $type = "Name" $subType = "Lastname" $maxLength = $columnLength } "creditcard" { $type = "Finance" $subType = "CreditcardNumber" $maxLength = $columnLength } "address" { $type = "Address" $subType = "StreetAddress" $maxLength = $columnLength } "city" { $type = "Address" $subType = "City" $maxLength = $columnLength } "zipcode" { $type = "Address" $subType = "Zipcode" $maxLength = $columnLength } } } else { $type = "Random" switch ($columnType) { "bigint" { $subType = "Number" $maxLength = 9223372036854775807 } "int" { $subType = "Number" $maxLength = 2147483647 } "date" { $subType = "Date" $maxLength = $null } "datetime" { $subType = "Date" $maxLength = $null } "datetime2" { $subType = "Date" $maxLength = $null } "float" { $subType = "Float" $maxLength = $null } "smallint" { $subType = "Number" $maxLength = 32767 } "smalldatetime" { $subType = "Date" $maxLength = $null } "tinyint" { $subType = "Number" $maxLength = 255 } {$_ -in 'varchar', 'char'} { $subType = "String" $maxLength = $columnLength } } # End switch } # End if masking type $columns += [PSCustomObject]@{ Name = $cln.Name ColumnType = $columnType MaxLength = $maxLength MaskingType = $type SubType = $subType IsStringType = $isStringType } } # End if identity } # End for each columns # Check if something needs to be generated if ($columns.Count -ge 1) { $tables += [PSCustomObject]@{ Name = $tbl.Name Schema = $tbl.Schema Columns = $columns } } else { Write-PSFMessage -Message "No columns match for masking in table $($tbl.Name)" -Level Verbose } } # End for each table # Check if something needs to be generated if ($tables.Count -ge 1) { $results += [PSCustomObject]@{ Name = $db.Name Tables = $tables } } else { Write-PSFMessage -Message "No columns match for masking in table $($tbl.Name)" -Level Verbose } } # End for each database # Write the data to the destination if ($results.Count -ge 1) { try { Set-Content -Path "$Destination\$($db.Name).tables.json" -Credential $Credential -Value ($results | ConvertTo-Json -Depth 5) } catch { Stop-PSFFunction -Message "Something went wrong writing the results to the destination" -Target $Destination -Continue } } else { Write-PSFMessage -Message "No tables to save for database $($db.Name)" -Level Verbose } } # End process } |