waf_rule_update_task.go 2.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687
  1. // Copyright 2019 Yunion
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package waf
  15. import (
  16. "context"
  17. "yunion.io/x/cloudmux/pkg/cloudprovider"
  18. "yunion.io/x/jsonutils"
  19. "yunion.io/x/pkg/errors"
  20. api "yunion.io/x/onecloud/pkg/apis/compute"
  21. "yunion.io/x/onecloud/pkg/cloudcommon/db"
  22. "yunion.io/x/onecloud/pkg/cloudcommon/db/taskman"
  23. "yunion.io/x/onecloud/pkg/compute/models"
  24. "yunion.io/x/onecloud/pkg/util/logclient"
  25. )
  26. type WafRuleUpdateTask struct {
  27. taskman.STask
  28. }
  29. func init() {
  30. taskman.RegisterTask(WafRuleUpdateTask{})
  31. }
  32. func (self *WafRuleUpdateTask) taskFailed(ctx context.Context, rule *models.SWafRule, err error) {
  33. rule.SetStatus(ctx, self.UserCred, api.WAF_RULE_STATUS_UPDATE_FAILED, err.Error())
  34. logclient.AddActionLogWithStartable(self, rule, logclient.ACT_UPDATE, err, self.UserCred, false)
  35. self.SetStageFailed(ctx, jsonutils.NewString(err.Error()))
  36. }
  37. func (self *WafRuleUpdateTask) OnInit(ctx context.Context, obj db.IStandaloneModel, body jsonutils.JSONObject) {
  38. rule := obj.(*models.SWafRule)
  39. iRule, err := rule.GetICloudWafRule(ctx)
  40. if err != nil {
  41. self.taskFailed(ctx, rule, errors.Wrapf(err, "GetICloudWafRule"))
  42. return
  43. }
  44. opts := cloudprovider.SWafRule{
  45. Name: rule.Name,
  46. Desc: rule.Description,
  47. Action: rule.Action,
  48. Priority: rule.Priority,
  49. Expression: rule.Expression,
  50. Config: rule.Config,
  51. Enable: rule.Enabled.Bool(),
  52. Statements: []cloudprovider.SWafStatement{},
  53. }
  54. opts.StatementCondition = rule.StatementConditon
  55. statements, err := rule.GetRuleStatements()
  56. if err != nil {
  57. self.taskFailed(ctx, rule, errors.Wrapf(err, "GetRuleStatements"))
  58. return
  59. }
  60. for i := range statements {
  61. opts.Statements = append(opts.Statements, statements[i].SWafStatement)
  62. }
  63. err = iRule.Update(&opts)
  64. if err != nil {
  65. self.taskFailed(ctx, rule, errors.Wrapf(err, "iRule.Update"))
  66. return
  67. }
  68. self.taskComplete(ctx, rule)
  69. }
  70. func (self *WafRuleUpdateTask) taskComplete(ctx context.Context, rule *models.SWafRule) {
  71. rule.SetStatus(ctx, self.UserCred, api.WAF_RULE_STATUS_AVAILABLE, "")
  72. self.SetStageComplete(ctx, nil)
  73. }