group.go 5.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249
  1. // Copyright 2019 Yunion
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package ksyun
  15. import (
  16. "time"
  17. api "yunion.io/x/cloudmux/pkg/apis/cloudid"
  18. "yunion.io/x/cloudmux/pkg/cloudprovider"
  19. )
  20. type SGroup struct {
  21. client *SKsyunClient
  22. Description string
  23. UserGroupId string
  24. GroupName string
  25. CreateDate time.Time
  26. Krn string
  27. UserCount int
  28. PolicyCount int
  29. }
  30. func (group *SGroup) GetName() string {
  31. return group.GroupName
  32. }
  33. func (group *SGroup) GetGlobalId() string {
  34. return group.GroupName
  35. }
  36. func (group *SGroup) GetDescription() string {
  37. return group.Description
  38. }
  39. func (group *SGroup) GetICloudusers() ([]cloudprovider.IClouduser, error) {
  40. return nil, cloudprovider.ErrNotSupported
  41. }
  42. func (group *SGroup) GetICloudpolicies() ([]cloudprovider.ICloudpolicy, error) {
  43. policies, err := group.client.ListGroupPolicies(group.GroupName)
  44. if err != nil {
  45. return nil, err
  46. }
  47. ret := []cloudprovider.ICloudpolicy{}
  48. for i := range policies {
  49. policies[i].client = group.client
  50. ret = append(ret, &policies[i])
  51. }
  52. return ret, nil
  53. }
  54. func (group *SGroup) AddUser(name string) error {
  55. return group.client.AddUserToGroup(name, group.GroupName)
  56. }
  57. func (group *SGroup) RemoveUser(name string) error {
  58. return group.client.RemoveUserFromGroup(name, group.GroupName)
  59. }
  60. func (group *SGroup) AttachPolicy(policyName string, policyType api.TPolicyType) error {
  61. return group.client.AttachGroupPolicy(group.GroupName, policyName)
  62. }
  63. func (group *SGroup) DetachPolicy(policyName string, policyType api.TPolicyType) error {
  64. return group.client.DetachGroupPolicy(group.GroupName, policyName)
  65. }
  66. func (group *SGroup) Delete() error {
  67. return group.client.DeleteGroup(group.GroupName)
  68. }
  69. func (client *SKsyunClient) CreateICloudgroup(name string, desc string) (cloudprovider.ICloudgroup, error) {
  70. group, err := client.CreateGroup(name, desc)
  71. if err != nil {
  72. return nil, err
  73. }
  74. return group, nil
  75. }
  76. func (client *SKsyunClient) GetICloudgroups() ([]cloudprovider.ICloudgroup, error) {
  77. groups, err := client.ListGroups()
  78. if err != nil {
  79. return nil, err
  80. }
  81. ret := []cloudprovider.ICloudgroup{}
  82. for i := range groups {
  83. groups[i].client = client
  84. ret = append(ret, &groups[i])
  85. }
  86. return ret, nil
  87. }
  88. func (client *SKsyunClient) ListGroups() ([]SGroup, error) {
  89. params := map[string]interface{}{
  90. "MaxItems": "100",
  91. }
  92. ret := []SGroup{}
  93. for {
  94. resp, err := client.iamRequest("", "ListGroups", params)
  95. if err != nil {
  96. return nil, err
  97. }
  98. part := struct {
  99. Groups struct {
  100. Member []SGroup
  101. }
  102. Marker string
  103. }{}
  104. err = resp.Unmarshal(&part)
  105. if err != nil {
  106. return nil, err
  107. }
  108. ret = append(ret, part.Groups.Member...)
  109. if len(part.Marker) == 0 || len(part.Groups.Member) == 0 {
  110. break
  111. }
  112. params["Marker"] = part.Marker
  113. }
  114. return ret, nil
  115. }
  116. func (client *SKsyunClient) ListGroupPolicies(name string) ([]SPolicy, error) {
  117. params := map[string]interface{}{
  118. "GroupName": name,
  119. "MaxItems": "100",
  120. }
  121. ret := []SPolicy{}
  122. for {
  123. resp, err := client.iamRequest("", "ListGroupPolicies", params)
  124. if err != nil {
  125. return nil, err
  126. }
  127. part := struct {
  128. AttachedPolicies struct {
  129. Member []SPolicy
  130. }
  131. Marker string
  132. }{}
  133. err = resp.Unmarshal(&part)
  134. if err != nil {
  135. return nil, err
  136. }
  137. ret = append(ret, part.AttachedPolicies.Member...)
  138. if len(part.Marker) == 0 || len(part.AttachedPolicies.Member) == 0 {
  139. break
  140. }
  141. params["Marker"] = part.Marker
  142. }
  143. return ret, nil
  144. }
  145. func (client *SKsyunClient) AttachGroupPolicy(name, policy string) error {
  146. params := map[string]interface{}{
  147. "GroupName": name,
  148. "PolicyKrn": policy,
  149. }
  150. _, err := client.iamRequest("", "AttachGroupPolicy", params)
  151. return err
  152. }
  153. func (client *SKsyunClient) DetachGroupPolicy(name, policy string) error {
  154. params := map[string]interface{}{
  155. "GroupName": name,
  156. "PolicyKrn": policy,
  157. }
  158. _, err := client.iamRequest("", "DetachGroupPolicy", params)
  159. return err
  160. }
  161. func (client *SKsyunClient) DeleteGroup(name string) error {
  162. params := map[string]interface{}{
  163. "GroupName": name,
  164. }
  165. _, err := client.iamRequest("", "DeleteGroup", params)
  166. return err
  167. }
  168. func (client *SKsyunClient) AddUserToGroup(user, group string) error {
  169. params := map[string]interface{}{
  170. "GroupName": group,
  171. "UserName": user,
  172. }
  173. _, err := client.iamRequest("", "AddUserToGroup", params)
  174. return err
  175. }
  176. func (client *SKsyunClient) RemoveUserFromGroup(user, group string) error {
  177. params := map[string]interface{}{
  178. "GroupName": group,
  179. "UserName": user,
  180. }
  181. _, err := client.iamRequest("", "RemoveUserFromGroup", params)
  182. return err
  183. }
  184. func (client *SKsyunClient) CreateGroup(name, desc string) (*SGroup, error) {
  185. params := map[string]interface{}{
  186. "GroupName": name,
  187. "Description": desc,
  188. }
  189. resp, err := client.iamRequest("", "CreateGroup", params)
  190. if err != nil {
  191. return nil, err
  192. }
  193. ret := &SGroup{client: client}
  194. err = resp.Unmarshal(ret, "Group")
  195. if err != nil {
  196. return nil, err
  197. }
  198. return ret, nil
  199. }
  200. func (client *SKsyunClient) GetICloudgroupByName(name string) (cloudprovider.ICloudgroup, error) {
  201. group, err := client.GetGroup(name)
  202. if err != nil {
  203. return nil, err
  204. }
  205. return group, nil
  206. }
  207. func (client *SKsyunClient) GetGroup(name string) (*SGroup, error) {
  208. params := map[string]interface{}{
  209. "GroupName": name,
  210. }
  211. resp, err := client.iamRequest("", "GetGroup", params)
  212. if err != nil {
  213. return nil, err
  214. }
  215. ret := &SGroup{client: client}
  216. err = resp.Unmarshal(ret, "UserGroup")
  217. if err != nil {
  218. return nil, err
  219. }
  220. return ret, nil
  221. }