Sean Dague | 556add5 | 2013-07-19 14:28:44 -0400 | [diff] [blame] | 1 | # Licensed under the Apache License, Version 2.0 (the "License"); you may |
| 2 | # not use this file except in compliance with the License. You may obtain |
| 3 | # a copy of the License at |
| 4 | # |
| 5 | # http://www.apache.org/licenses/LICENSE-2.0 |
| 6 | # |
| 7 | # Unless required by applicable law or agreed to in writing, software |
| 8 | # distributed under the License is distributed on an "AS IS" BASIS, WITHOUT |
| 9 | # WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the |
| 10 | # License for the specific language governing permissions and limitations |
| 11 | # under the License. |
| 12 | |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 13 | import json |
| 14 | |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 15 | from tempest.common import rest_client |
Matthew Treinish | 684d899 | 2014-01-30 16:27:40 +0000 | [diff] [blame] | 16 | from tempest import config |
Matthew Treinish | a83a16e | 2012-12-07 13:44:02 -0500 | [diff] [blame] | 17 | from tempest import exceptions |
| 18 | |
Matthew Treinish | 684d899 | 2014-01-30 16:27:40 +0000 | [diff] [blame] | 19 | CONF = config.CONF |
| 20 | |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 21 | |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 22 | class IdentityClientJSON(rest_client.RestClient): |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 23 | |
Andrea Frittoli | 8bbdb16 | 2014-01-06 11:06:13 +0000 | [diff] [blame] | 24 | def __init__(self, auth_provider): |
| 25 | super(IdentityClientJSON, self).__init__(auth_provider) |
Matthew Treinish | 684d899 | 2014-01-30 16:27:40 +0000 | [diff] [blame] | 26 | self.service = CONF.identity.catalog_type |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 27 | self.endpoint_url = 'adminURL' |
| 28 | |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 29 | # Needed for xml service client |
Abhijeet.Jain | 3f49b84 | 2014-05-20 12:06:20 +0530 | [diff] [blame] | 30 | self.list_tags = ["roles", "tenants", "users", "services", |
| 31 | "extensions"] |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 32 | |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 33 | def has_admin_extensions(self): |
| 34 | """ |
| 35 | Returns True if the KSADM Admin Extensions are supported |
| 36 | False otherwise |
| 37 | """ |
| 38 | if hasattr(self, '_has_admin_extensions'): |
| 39 | return self._has_admin_extensions |
| 40 | resp, body = self.list_roles() |
| 41 | self._has_admin_extensions = ('status' in resp and resp.status != 503) |
| 42 | return self._has_admin_extensions |
| 43 | |
| 44 | def create_role(self, name): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 45 | """Create a role.""" |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 46 | post_body = { |
| 47 | 'name': name, |
| 48 | } |
| 49 | post_body = json.dumps({'role': post_body}) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 50 | resp, body = self.post('OS-KSADM/roles', post_body) |
| 51 | return resp, self._parse_resp(body) |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 52 | |
Gong Zhang | cb6b886 | 2014-02-20 15:14:05 +0800 | [diff] [blame] | 53 | def get_role(self, role_id): |
| 54 | """Get a role by its id.""" |
| 55 | resp, body = self.get('OS-KSADM/roles/%s' % role_id) |
| 56 | body = json.loads(body) |
| 57 | return resp, body['role'] |
| 58 | |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 59 | def create_tenant(self, name, **kwargs): |
| 60 | """ |
| 61 | Create a tenant |
| 62 | name (required): New tenant name |
| 63 | description: Description of new tenant (default is none) |
| 64 | enabled <true|false>: Initial tenant status (default is true) |
| 65 | """ |
| 66 | post_body = { |
| 67 | 'name': name, |
| 68 | 'description': kwargs.get('description', ''), |
Gordon Chung | ad87360 | 2013-02-18 19:26:27 -0500 | [diff] [blame] | 69 | 'enabled': kwargs.get('enabled', True), |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 70 | } |
| 71 | post_body = json.dumps({'tenant': post_body}) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 72 | resp, body = self.post('tenants', post_body) |
| 73 | return resp, self._parse_resp(body) |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 74 | |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 75 | def delete_role(self, role_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 76 | """Delete a role.""" |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 77 | return self.delete('OS-KSADM/roles/%s' % str(role_id)) |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 78 | |
rajalakshmi-ganesan | 8ba945e | 2012-08-01 15:43:19 +0530 | [diff] [blame] | 79 | def list_user_roles(self, tenant_id, user_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 80 | """Returns a list of roles assigned to a user for a tenant.""" |
rajalakshmi-ganesan | 8ba945e | 2012-08-01 15:43:19 +0530 | [diff] [blame] | 81 | url = '/tenants/%s/users/%s/roles' % (tenant_id, user_id) |
| 82 | resp, body = self.get(url) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 83 | return resp, self._parse_resp(body) |
Rohit Karajgi | 69e80a0 | 2012-05-15 03:54:04 -0700 | [diff] [blame] | 84 | |
rajalakshmi-ganesan | 8ba945e | 2012-08-01 15:43:19 +0530 | [diff] [blame] | 85 | def assign_user_role(self, tenant_id, user_id, role_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 86 | """Add roles to a user on a tenant.""" |
Zhongyue Luo | e0884a3 | 2012-09-25 17:24:17 +0800 | [diff] [blame] | 87 | resp, body = self.put('/tenants/%s/users/%s/roles/OS-KSADM/%s' % |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 88 | (tenant_id, user_id, role_id), "") |
| 89 | return resp, self._parse_resp(body) |
Rohit Karajgi | 69e80a0 | 2012-05-15 03:54:04 -0700 | [diff] [blame] | 90 | |
rajalakshmi-ganesan | 8ba945e | 2012-08-01 15:43:19 +0530 | [diff] [blame] | 91 | def remove_user_role(self, tenant_id, user_id, role_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 92 | """Removes a role assignment for a user on a tenant.""" |
Zhongyue Luo | 79d8d36 | 2012-09-25 13:49:27 +0800 | [diff] [blame] | 93 | return self.delete('/tenants/%s/users/%s/roles/OS-KSADM/%s' % |
| 94 | (tenant_id, user_id, role_id)) |
Rohit Karajgi | 69e80a0 | 2012-05-15 03:54:04 -0700 | [diff] [blame] | 95 | |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 96 | def delete_tenant(self, tenant_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 97 | """Delete a tenant.""" |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 98 | return self.delete('tenants/%s' % str(tenant_id)) |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 99 | |
| 100 | def get_tenant(self, tenant_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 101 | """Get tenant details.""" |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 102 | resp, body = self.get('tenants/%s' % str(tenant_id)) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 103 | return resp, self._parse_resp(body) |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 104 | |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 105 | def list_roles(self): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 106 | """Returns roles.""" |
chris fattarsi | 8ed39ac | 2012-04-30 14:11:27 -0700 | [diff] [blame] | 107 | resp, body = self.get('OS-KSADM/roles') |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 108 | return resp, self._parse_resp(body) |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 109 | |
| 110 | def list_tenants(self): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 111 | """Returns tenants.""" |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 112 | resp, body = self.get('tenants') |
| 113 | body = json.loads(body) |
| 114 | return resp, body['tenants'] |
| 115 | |
Dan Smith | d6ff6b7 | 2012-08-23 10:29:41 -0700 | [diff] [blame] | 116 | def get_tenant_by_name(self, tenant_name): |
| 117 | resp, tenants = self.list_tenants() |
| 118 | for tenant in tenants: |
| 119 | if tenant['name'] == tenant_name: |
| 120 | return tenant |
| 121 | raise exceptions.NotFound('No such tenant') |
| 122 | |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 123 | def update_tenant(self, tenant_id, **kwargs): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 124 | """Updates a tenant.""" |
chris fattarsi | 9ba7b0e | 2012-05-07 13:55:51 -0700 | [diff] [blame] | 125 | resp, body = self.get_tenant(tenant_id) |
| 126 | name = kwargs.get('name', body['name']) |
| 127 | desc = kwargs.get('description', body['description']) |
| 128 | en = kwargs.get('enabled', body['enabled']) |
| 129 | post_body = { |
| 130 | 'id': tenant_id, |
| 131 | 'name': name, |
| 132 | 'description': desc, |
| 133 | 'enabled': en, |
| 134 | } |
| 135 | post_body = json.dumps({'tenant': post_body}) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 136 | resp, body = self.post('tenants/%s' % tenant_id, post_body) |
| 137 | return resp, self._parse_resp(body) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 138 | |
huangtianhua | fc8db4f | 2013-10-08 12:05:58 +0800 | [diff] [blame] | 139 | def create_user(self, name, password, tenant_id, email, **kwargs): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 140 | """Create a user.""" |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 141 | post_body = { |
| 142 | 'name': name, |
| 143 | 'password': password, |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 144 | 'email': email |
| 145 | } |
Brant Knudson | a4cfe0c | 2014-03-15 09:36:45 -0500 | [diff] [blame] | 146 | if tenant_id is not None: |
| 147 | post_body['tenantId'] = tenant_id |
huangtianhua | fc8db4f | 2013-10-08 12:05:58 +0800 | [diff] [blame] | 148 | if kwargs.get('enabled') is not None: |
| 149 | post_body['enabled'] = kwargs.get('enabled') |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 150 | post_body = json.dumps({'user': post_body}) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 151 | resp, body = self.post('users', post_body) |
| 152 | return resp, self._parse_resp(body) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 153 | |
Chang Bo Guo | b36b2f1 | 2013-09-13 04:52:00 -0700 | [diff] [blame] | 154 | def update_user(self, user_id, **kwargs): |
| 155 | """Updates a user.""" |
| 156 | put_body = json.dumps({'user': kwargs}) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 157 | resp, body = self.put('users/%s' % user_id, put_body) |
| 158 | return resp, self._parse_resp(body) |
Chang Bo Guo | b36b2f1 | 2013-09-13 04:52:00 -0700 | [diff] [blame] | 159 | |
rajalakshmi-ganesan | 7312bb5 | 2013-01-29 20:03:42 +0530 | [diff] [blame] | 160 | def get_user(self, user_id): |
| 161 | """GET a user.""" |
| 162 | resp, body = self.get("users/%s" % user_id) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 163 | return resp, self._parse_resp(body) |
rajalakshmi-ganesan | 7312bb5 | 2013-01-29 20:03:42 +0530 | [diff] [blame] | 164 | |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 165 | def delete_user(self, user_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 166 | """Delete a user.""" |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 167 | return self.delete("users/%s" % user_id) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 168 | |
| 169 | def get_users(self): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 170 | """Get the list of users.""" |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 171 | resp, body = self.get("users") |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 172 | return resp, self._parse_resp(body) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 173 | |
| 174 | def enable_disable_user(self, user_id, enabled): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 175 | """Enables or disables a user.""" |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 176 | put_body = { |
Sean Dague | 14c6818 | 2013-04-14 15:34:30 -0400 | [diff] [blame] | 177 | 'enabled': enabled |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 178 | } |
| 179 | put_body = json.dumps({'user': put_body}) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 180 | resp, body = self.put('users/%s/enabled' % user_id, put_body) |
| 181 | return resp, self._parse_resp(body) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 182 | |
Zhi Kun Liu | 30caeae | 2014-02-26 15:30:24 +0800 | [diff] [blame] | 183 | def get_token(self, token_id): |
| 184 | """Get token details.""" |
| 185 | resp, body = self.get("tokens/%s" % token_id) |
| 186 | return resp, self._parse_resp(body) |
| 187 | |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 188 | def delete_token(self, token_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 189 | """Delete a token.""" |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 190 | return self.delete("tokens/%s" % token_id) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 191 | |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 192 | def list_users_for_tenant(self, tenant_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 193 | """List users for a Tenant.""" |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 194 | resp, body = self.get('/tenants/%s/users' % tenant_id) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 195 | return resp, self._parse_resp(body) |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 196 | |
Dan Smith | d6ff6b7 | 2012-08-23 10:29:41 -0700 | [diff] [blame] | 197 | def get_user_by_username(self, tenant_id, username): |
| 198 | resp, users = self.list_users_for_tenant(tenant_id) |
| 199 | for user in users: |
| 200 | if user['name'] == username: |
| 201 | return user |
| 202 | raise exceptions.NotFound('No such user') |
| 203 | |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 204 | def create_service(self, name, type, **kwargs): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 205 | """Create a service.""" |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 206 | post_body = { |
Zhongyue Luo | a1343de | 2013-01-04 16:21:35 +0800 | [diff] [blame] | 207 | 'name': name, |
| 208 | 'type': type, |
| 209 | 'description': kwargs.get('description') |
| 210 | } |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 211 | post_body = json.dumps({'OS-KSADM:service': post_body}) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 212 | resp, body = self.post('/OS-KSADM/services', post_body) |
| 213 | return resp, self._parse_resp(body) |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 214 | |
| 215 | def get_service(self, service_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 216 | """Get Service.""" |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 217 | url = '/OS-KSADM/services/%s' % service_id |
| 218 | resp, body = self.get(url) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 219 | return resp, self._parse_resp(body) |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 220 | |
umamohan | b51ad00 | 2013-01-24 18:13:15 +0000 | [diff] [blame] | 221 | def list_services(self): |
| 222 | """List Service - Returns Services.""" |
Tushar Kalra | a76929c | 2014-03-31 12:23:07 -0700 | [diff] [blame] | 223 | resp, body = self.get('/OS-KSADM/services') |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 224 | return resp, self._parse_resp(body) |
umamohan | b51ad00 | 2013-01-24 18:13:15 +0000 | [diff] [blame] | 225 | |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 226 | def delete_service(self, service_id): |
Sean Dague | f237ccb | 2013-01-04 15:19:14 -0500 | [diff] [blame] | 227 | """Delete Service.""" |
rajalakshmi-ganesan | efc8bd7 | 2012-05-30 17:52:11 +0530 | [diff] [blame] | 228 | url = '/OS-KSADM/services/%s' % service_id |
| 229 | return self.delete(url) |
| 230 | |
Abhijeet.Jain | ff5c354 | 2014-05-06 16:07:30 +0530 | [diff] [blame] | 231 | def update_user_password(self, user_id, new_pass): |
| 232 | """Update User Password.""" |
| 233 | put_body = { |
| 234 | 'password': new_pass, |
| 235 | 'id': user_id |
| 236 | } |
| 237 | put_body = json.dumps({'user': put_body}) |
| 238 | resp, body = self.put('users/%s/OS-KSADM/password' % user_id, put_body) |
| 239 | return resp, self._parse_resp(body) |
| 240 | |
Abhijeet.Jain | 3f49b84 | 2014-05-20 12:06:20 +0530 | [diff] [blame] | 241 | def list_extensions(self): |
| 242 | """List all the extensions.""" |
| 243 | resp, body = self.get('/extensions') |
| 244 | body = json.loads(body) |
| 245 | return resp, body['extensions']['values'] |
| 246 | |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 247 | |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 248 | class TokenClientJSON(IdentityClientJSON): |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 249 | |
Matthew Treinish | 684d899 | 2014-01-30 16:27:40 +0000 | [diff] [blame] | 250 | def __init__(self): |
Andrea Frittoli | 8bbdb16 | 2014-01-06 11:06:13 +0000 | [diff] [blame] | 251 | super(TokenClientJSON, self).__init__(None) |
Matthew Treinish | 684d899 | 2014-01-30 16:27:40 +0000 | [diff] [blame] | 252 | auth_url = CONF.identity.uri |
Jay Pipes | 7c88eb2 | 2013-01-16 21:32:43 -0500 | [diff] [blame] | 253 | |
Jay Pipes | 7c88eb2 | 2013-01-16 21:32:43 -0500 | [diff] [blame] | 254 | # Normalize URI to ensure /tokens is in it. |
| 255 | if 'tokens' not in auth_url: |
| 256 | auth_url = auth_url.rstrip('/') + '/tokens' |
| 257 | |
| 258 | self.auth_url = auth_url |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 259 | |
Brant Knudson | a4cfe0c | 2014-03-15 09:36:45 -0500 | [diff] [blame] | 260 | def auth(self, user, password, tenant=None): |
Zhongyue Luo | 30a563f | 2012-09-30 23:43:50 +0900 | [diff] [blame] | 261 | creds = { |
| 262 | 'auth': { |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 263 | 'passwordCredentials': { |
| 264 | 'username': user, |
| 265 | 'password': password, |
| 266 | }, |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 267 | } |
| 268 | } |
Brant Knudson | a4cfe0c | 2014-03-15 09:36:45 -0500 | [diff] [blame] | 269 | |
| 270 | if tenant: |
| 271 | creds['auth']['tenantName'] = tenant |
| 272 | |
| 273 | body = json.dumps(creds) |
| 274 | resp, body = self.post(self.auth_url, body=body) |
| 275 | |
| 276 | return resp, body['access'] |
| 277 | |
| 278 | def auth_token(self, token_id, tenant=None): |
| 279 | creds = { |
| 280 | 'auth': { |
| 281 | 'token': { |
| 282 | 'id': token_id, |
| 283 | }, |
| 284 | } |
| 285 | } |
| 286 | |
| 287 | if tenant: |
| 288 | creds['auth']['tenantName'] = tenant |
| 289 | |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 290 | body = json.dumps(creds) |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 291 | resp, body = self.post(self.auth_url, body=body) |
Andrea Frittoli | 8bbdb16 | 2014-01-06 11:06:13 +0000 | [diff] [blame] | 292 | |
| 293 | return resp, body['access'] |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 294 | |
Sergey Murashov | 4fccd32 | 2014-03-22 09:58:52 +0400 | [diff] [blame] | 295 | def request(self, method, url, extra_headers=False, headers=None, |
| 296 | body=None): |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 297 | """A simple HTTP request interface.""" |
Zhongyue Luo | e471d6e | 2012-09-17 17:02:43 +0800 | [diff] [blame] | 298 | if headers is None: |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 299 | # Always accept 'json', for TokenClientXML too. |
| 300 | # Because XML response is not easily |
| 301 | # converted to the corresponding JSON one |
| 302 | headers = self.get_headers(accept_type="json") |
Sergey Murashov | 4fccd32 | 2014-03-22 09:58:52 +0400 | [diff] [blame] | 303 | elif extra_headers: |
| 304 | try: |
| 305 | headers.update(self.get_headers(accept_type="json")) |
| 306 | except (ValueError, TypeError): |
| 307 | headers = self.get_headers(accept_type="json") |
| 308 | |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 309 | resp, resp_body = self.http_obj.request(url, method, |
| 310 | headers=headers, body=body) |
Sean Dague | 89a8591 | 2014-03-19 16:37:29 -0400 | [diff] [blame] | 311 | self._log_request(method, url, resp) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 312 | |
Andrea Frittoli | 8bbdb16 | 2014-01-06 11:06:13 +0000 | [diff] [blame] | 313 | if resp.status in [401, 403]: |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 314 | resp_body = json.loads(resp_body) |
| 315 | raise exceptions.Unauthorized(resp_body['error']['message']) |
Andrea Frittoli | 8bbdb16 | 2014-01-06 11:06:13 +0000 | [diff] [blame] | 316 | elif resp.status not in [200, 201]: |
| 317 | raise exceptions.IdentityError( |
| 318 | 'Unexpected status code {0}'.format(resp.status)) |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 319 | |
vponomaryov | 67b58fe | 2014-02-06 19:05:41 +0200 | [diff] [blame] | 320 | if isinstance(resp_body, str): |
| 321 | resp_body = json.loads(resp_body) |
| 322 | return resp, resp_body |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 323 | |
Andrea Frittoli | 8bbdb16 | 2014-01-06 11:06:13 +0000 | [diff] [blame] | 324 | def get_token(self, user, password, tenant, auth_data=False): |
| 325 | """ |
| 326 | Returns (token id, token data) for supplied credentials |
| 327 | """ |
Rohit Karajgi | 6b1e154 | 2012-05-14 05:55:54 -0700 | [diff] [blame] | 328 | resp, body = self.auth(user, password, tenant) |
Andrea Frittoli | 8bbdb16 | 2014-01-06 11:06:13 +0000 | [diff] [blame] | 329 | |
| 330 | if auth_data: |
| 331 | return body['token']['id'], body |
| 332 | else: |
| 333 | return body['token']['id'] |