securitygroup.go 5.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198
  1. // Copyright 2019 Yunion
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package ctyun
  15. import (
  16. "time"
  17. "yunion.io/x/jsonutils"
  18. "yunion.io/x/pkg/errors"
  19. "yunion.io/x/pkg/utils"
  20. api "yunion.io/x/cloudmux/pkg/apis/compute"
  21. "yunion.io/x/cloudmux/pkg/cloudprovider"
  22. "yunion.io/x/cloudmux/pkg/multicloud"
  23. )
  24. type SSecurityGroup struct {
  25. multicloud.SSecurityGroup
  26. CtyunTags
  27. region *SRegion
  28. SecurityGroupName string
  29. Id string
  30. VMNum int
  31. Origin string
  32. //VpcName string
  33. //VpcId string
  34. CreationTime time.Time
  35. Description string
  36. ProjectId string
  37. SecurityGroupRuleList []SSecurityGroupRule
  38. }
  39. func (self *SSecurityGroup) Delete() error {
  40. return self.region.DeleteSecurityGroup(self.GetId())
  41. }
  42. func (self *SSecurityGroup) GetId() string {
  43. return self.Id
  44. }
  45. func (self *SSecurityGroup) GetName() string {
  46. return self.SecurityGroupName
  47. }
  48. func (self *SSecurityGroup) GetGlobalId() string {
  49. return self.GetId()
  50. }
  51. func (self *SSecurityGroup) GetStatus() string {
  52. return api.SECGROUP_STATUS_READY
  53. }
  54. func (self *SSecurityGroup) Refresh() error {
  55. sec, err := self.region.GetSecurityGroup(self.GetId())
  56. if err != nil {
  57. return err
  58. }
  59. self.SecurityGroupRuleList = nil
  60. return jsonutils.Update(self, sec)
  61. }
  62. func (self *SSecurityGroup) GetDescription() string {
  63. return self.Description
  64. }
  65. func (self *SSecurityGroup) GetTags() (map[string]string, error) {
  66. return nil, errors.Wrapf(cloudprovider.ErrNotSupported, "GetTags")
  67. }
  68. func (self *SSecurityGroup) GetRules() ([]cloudprovider.ISecurityGroupRule, error) {
  69. rules := make([]cloudprovider.ISecurityGroupRule, 0)
  70. for i := range self.SecurityGroupRuleList {
  71. self.SecurityGroupRuleList[i].secgroup = self
  72. rules = append(rules, &self.SecurityGroupRuleList[i])
  73. }
  74. return rules, nil
  75. }
  76. func (self *SSecurityGroup) GetVpcId() string {
  77. return ""
  78. }
  79. func (self *SRegion) GetSecurityGroup(id string) (*SSecurityGroup, error) {
  80. params := map[string]interface{}{
  81. "securityGroupID": id,
  82. }
  83. resp, err := self.list(SERVICE_VPC, "/v4/vpc/describe-security-group-attribute", params)
  84. if err != nil {
  85. return nil, err
  86. }
  87. ret := &SSecurityGroup{region: self}
  88. return ret, resp.Unmarshal(ret, "returnObj")
  89. }
  90. func (self *SRegion) GetSecurityGroups() ([]SSecurityGroup, error) {
  91. pageNo := 1
  92. params := map[string]interface{}{
  93. "pageNo": pageNo,
  94. "pageSize": 50,
  95. }
  96. ret := []SSecurityGroup{}
  97. for {
  98. resp, err := self.list(SERVICE_VPC, "/v4/vpc/query-security-groups", params)
  99. if err != nil {
  100. return nil, err
  101. }
  102. part := struct {
  103. ReturnObj []SSecurityGroup
  104. TotalCount int
  105. }{}
  106. err = resp.Unmarshal(&part)
  107. if err != nil {
  108. return nil, err
  109. }
  110. ret = append(ret, part.ReturnObj...)
  111. if len(ret) >= part.TotalCount || len(part.ReturnObj) == 0 {
  112. break
  113. }
  114. pageNo++
  115. params["pageNo"] = pageNo
  116. }
  117. return ret, nil
  118. }
  119. func (self *SSecurityGroup) CreateRule(opts *cloudprovider.SecurityGroupRuleCreateOptions) (cloudprovider.ISecurityGroupRule, error) {
  120. ruleIds := []string{}
  121. for _, rule := range self.SecurityGroupRuleList {
  122. if !utils.IsInStringArray(rule.Id, ruleIds) {
  123. ruleIds = append(ruleIds, rule.Id)
  124. }
  125. }
  126. err := self.region.CreateSecurityGroupRule(self.Id, opts)
  127. if err != nil {
  128. return nil, errors.Wrapf(err, "CreateSecurityGroupRule")
  129. }
  130. for i := 0; i < 3; i++ {
  131. err := self.Refresh()
  132. if err != nil {
  133. return nil, errors.Wrapf(err, "Refresh")
  134. }
  135. for i := range self.SecurityGroupRuleList {
  136. if !utils.IsInStringArray(self.SecurityGroupRuleList[i].Id, ruleIds) {
  137. if self.SecurityGroupRuleList[i].GetDirection() == opts.Direction &&
  138. self.SecurityGroupRuleList[i].GetProtocol() == opts.Protocol &&
  139. self.SecurityGroupRuleList[i].GetPriority() == opts.Priority &&
  140. self.SecurityGroupRuleList[i].GetPorts() == opts.Ports &&
  141. self.SecurityGroupRuleList[i].DestCidrIP == opts.CIDR &&
  142. self.SecurityGroupRuleList[i].GetAction() == opts.Action {
  143. self.SecurityGroupRuleList[i].secgroup = self
  144. return &self.SecurityGroupRuleList[i], nil
  145. }
  146. }
  147. }
  148. time.Sleep(time.Second * 3)
  149. }
  150. return nil, errors.Wrapf(cloudprovider.ErrNotFound, "after created")
  151. }
  152. func (self *SRegion) CreateSecurityGroup(opts *cloudprovider.SecurityGroupCreateInput) (*SSecurityGroup, error) {
  153. params := map[string]interface{}{
  154. "clientToken": utils.GenRequestId(20),
  155. "vpcID": opts.VpcId,
  156. "name": opts.Name,
  157. "description": opts.Desc,
  158. }
  159. resp, err := self.post(SERVICE_VPC, "/v4/vpc/create-security-group", params)
  160. if err != nil {
  161. return nil, err
  162. }
  163. id, err := resp.GetString("returnObj", "securityGroupID")
  164. if err != nil {
  165. return nil, errors.Wrapf(err, "get secgroup id")
  166. }
  167. return self.GetSecurityGroup(id)
  168. }
  169. func (self *SRegion) DeleteSecurityGroup(id string) error {
  170. params := map[string]interface{}{
  171. "clientToken": utils.GenRequestId(20),
  172. "securityGroupID": id,
  173. }
  174. _, err := self.post(SERVICE_VPC, "/v4/vpc/delete-security-group", params)
  175. return err
  176. }