Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 1 | # Copyright 2013 IBM Corp. |
| 2 | # |
| 3 | # Licensed under the Apache License, Version 2.0 (the "License"); you may |
| 4 | # not use this file except in compliance with the License. You may obtain |
| 5 | # a copy of the License at |
| 6 | # |
| 7 | # http://www.apache.org/licenses/LICENSE-2.0 |
| 8 | # |
| 9 | # Unless required by applicable law or agreed to in writing, software |
| 10 | # distributed under the License is distributed on an "AS IS" BASIS, WITHOUT |
| 11 | # WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the |
| 12 | # License for the specific language governing permissions and limitations |
| 13 | # under the License. |
| 14 | |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 15 | import netaddr |
| 16 | |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 17 | from tempest import auth |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 18 | from tempest import clients |
Marc Koderer | d2690fe | 2014-07-16 14:17:47 +0200 | [diff] [blame] | 19 | from tempest.common import cred_provider |
Masayuki Igawa | 259c113 | 2013-10-31 17:48:44 +0900 | [diff] [blame] | 20 | from tempest.common.utils import data_utils |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 21 | from tempest import config |
| 22 | from tempest import exceptions |
| 23 | from tempest.openstack.common import log as logging |
| 24 | |
Sean Dague | 86bd842 | 2013-12-20 09:56:44 -0500 | [diff] [blame] | 25 | CONF = config.CONF |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 26 | LOG = logging.getLogger(__name__) |
| 27 | |
| 28 | |
Marc Koderer | d2690fe | 2014-07-16 14:17:47 +0200 | [diff] [blame] | 29 | class IsolatedCreds(cred_provider.CredentialProvider): |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 30 | |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 31 | def __init__(self, name, interface='json', password='pass', |
| 32 | network_resources=None): |
| 33 | super(IsolatedCreds, self).__init__(name, interface, password, |
| 34 | network_resources) |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 35 | self.network_resources = network_resources |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 36 | self.isolated_creds = {} |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 37 | self.isolated_net_resources = {} |
| 38 | self.ports = [] |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 39 | self.interface = interface |
| 40 | self.password = password |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 41 | self.identity_admin_client, self.network_admin_client = ( |
| 42 | self._get_admin_clients()) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 43 | |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 44 | def _get_admin_clients(self): |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 45 | """ |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 46 | Returns a tuple with instances of the following admin clients (in this |
| 47 | order): |
| 48 | identity |
| 49 | network |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 50 | """ |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 51 | os = clients.AdminManager(interface=self.interface) |
Andrea Frittoli | 422fbdf | 2014-03-20 10:05:18 +0000 | [diff] [blame] | 52 | return os.identity_client, os.network_client |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 53 | |
| 54 | def _create_tenant(self, name, description): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 55 | _, tenant = self.identity_admin_client.create_tenant( |
| 56 | name=name, description=description) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 57 | return tenant |
| 58 | |
| 59 | def _get_tenant_by_name(self, name): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 60 | _, tenant = self.identity_admin_client.get_tenant_by_name(name) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 61 | return tenant |
| 62 | |
| 63 | def _create_user(self, username, password, tenant, email): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 64 | _, user = self.identity_admin_client.create_user( |
| 65 | username, password, tenant['id'], email) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 66 | return user |
| 67 | |
| 68 | def _get_user(self, tenant, username): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 69 | _, user = self.identity_admin_client.get_user_by_username( |
| 70 | tenant['id'], username) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 71 | return user |
| 72 | |
| 73 | def _list_roles(self): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 74 | _, roles = self.identity_admin_client.list_roles() |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 75 | return roles |
| 76 | |
Andrey Pavlov | af1fb70 | 2014-05-29 17:08:10 +0400 | [diff] [blame] | 77 | def _assign_user_role(self, tenant, user, role_name): |
| 78 | role = None |
| 79 | try: |
| 80 | roles = self._list_roles() |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 81 | role = next(r for r in roles if r['name'] == role_name) |
Andrey Pavlov | af1fb70 | 2014-05-29 17:08:10 +0400 | [diff] [blame] | 82 | except StopIteration: |
| 83 | msg = 'No "%s" role found' % role_name |
| 84 | raise exceptions.NotFound(msg) |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 85 | self.identity_admin_client.assign_user_role(tenant['id'], user['id'], |
| 86 | role['id']) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 87 | |
| 88 | def _delete_user(self, user): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 89 | self.identity_admin_client.delete_user(user) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 90 | |
| 91 | def _delete_tenant(self, tenant): |
Ala Rezmerita | 846eb7c | 2014-03-10 09:06:03 +0100 | [diff] [blame] | 92 | if CONF.service_available.neutron: |
| 93 | self._cleanup_default_secgroup(tenant) |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 94 | self.identity_admin_client.delete_tenant(tenant) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 95 | |
Sean Dague | 6969b90 | 2014-01-28 06:48:37 -0500 | [diff] [blame] | 96 | def _create_creds(self, suffix="", admin=False): |
| 97 | """Create random credentials under the following schema. |
| 98 | |
| 99 | If the name contains a '.' is the full class path of something, and |
| 100 | we don't really care. If it isn't, it's probably a meaningful name, |
| 101 | so use it. |
| 102 | |
| 103 | For logging purposes, -user and -tenant are long and redundant, |
| 104 | don't use them. The user# will be sufficient to figure it out. |
| 105 | """ |
| 106 | if '.' in self.name: |
| 107 | root = "" |
| 108 | else: |
| 109 | root = self.name |
| 110 | |
| 111 | tenant_name = data_utils.rand_name(root) + suffix |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 112 | tenant_desc = tenant_name + "-desc" |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 113 | tenant = self._create_tenant(name=tenant_name, |
| 114 | description=tenant_desc) |
Sean Dague | 6969b90 | 2014-01-28 06:48:37 -0500 | [diff] [blame] | 115 | |
| 116 | username = data_utils.rand_name(root) + suffix |
| 117 | email = data_utils.rand_name(root) + suffix + "@example.com" |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 118 | user = self._create_user(username, self.password, |
| 119 | tenant, email) |
Sergey Shnaidman | 3709961 | 2014-07-10 09:43:41 +0400 | [diff] [blame] | 120 | if CONF.service_available.swift: |
| 121 | # NOTE(andrey-mp): user needs this role to create containers |
| 122 | # in swift |
| 123 | swift_operator_role = CONF.object_storage.operator_role |
| 124 | self._assign_user_role(tenant, user, swift_operator_role) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 125 | if admin: |
Andrey Pavlov | af1fb70 | 2014-05-29 17:08:10 +0400 | [diff] [blame] | 126 | self._assign_user_role(tenant, user, CONF.identity.admin_role) |
Andrea Frittoli | 9612e81 | 2014-03-13 10:57:26 +0000 | [diff] [blame] | 127 | return self._get_credentials(user, tenant) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 128 | |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 129 | def _get_credentials(self, user, tenant): |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 130 | return auth.get_credentials( |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 131 | username=user['name'], user_id=user['id'], |
| 132 | tenant_name=tenant['name'], tenant_id=tenant['id'], |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 133 | password=self.password) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 134 | |
| 135 | def _create_network_resources(self, tenant_id): |
| 136 | network = None |
| 137 | subnet = None |
| 138 | router = None |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 139 | # Make sure settings |
| 140 | if self.network_resources: |
| 141 | if self.network_resources['router']: |
| 142 | if (not self.network_resources['subnet'] or |
| 143 | not self.network_resources['network']): |
| 144 | raise exceptions.InvalidConfiguration( |
| 145 | 'A router requires a subnet and network') |
| 146 | elif self.network_resources['subnet']: |
| 147 | if not self.network_resources['network']: |
| 148 | raise exceptions.InvalidConfiguration( |
| 149 | 'A subnet requires a network') |
| 150 | elif self.network_resources['dhcp']: |
| 151 | raise exceptions.InvalidConfiguration('DHCP requires a subnet') |
| 152 | |
Masayuki Igawa | 259c113 | 2013-10-31 17:48:44 +0900 | [diff] [blame] | 153 | data_utils.rand_name_root = data_utils.rand_name(self.name) |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 154 | if not self.network_resources or self.network_resources['network']: |
| 155 | network_name = data_utils.rand_name_root + "-network" |
| 156 | network = self._create_network(network_name, tenant_id) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 157 | try: |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 158 | if not self.network_resources or self.network_resources['subnet']: |
| 159 | subnet_name = data_utils.rand_name_root + "-subnet" |
| 160 | subnet = self._create_subnet(subnet_name, tenant_id, |
| 161 | network['id']) |
| 162 | if not self.network_resources or self.network_resources['router']: |
| 163 | router_name = data_utils.rand_name_root + "-router" |
| 164 | router = self._create_router(router_name, tenant_id) |
| 165 | self._add_router_interface(router['id'], subnet['id']) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 166 | except Exception: |
| 167 | if router: |
| 168 | self._clear_isolated_router(router['id'], router['name']) |
| 169 | if subnet: |
| 170 | self._clear_isolated_subnet(subnet['id'], subnet['name']) |
| 171 | if network: |
| 172 | self._clear_isolated_network(network['id'], network['name']) |
| 173 | raise |
| 174 | return network, subnet, router |
| 175 | |
| 176 | def _create_network(self, name, tenant_id): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 177 | _, resp_body = self.network_admin_client.create_network( |
| 178 | name=name, tenant_id=tenant_id) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 179 | return resp_body['network'] |
| 180 | |
| 181 | def _create_subnet(self, subnet_name, tenant_id, network_id): |
Sean Dague | 86bd842 | 2013-12-20 09:56:44 -0500 | [diff] [blame] | 182 | base_cidr = netaddr.IPNetwork(CONF.network.tenant_network_cidr) |
| 183 | mask_bits = CONF.network.tenant_network_mask_bits |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 184 | for subnet_cidr in base_cidr.subnet(mask_bits): |
| 185 | try: |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 186 | if self.network_resources: |
| 187 | _, resp_body = self.network_admin_client.\ |
| 188 | create_subnet( |
| 189 | network_id=network_id, cidr=str(subnet_cidr), |
| 190 | name=subnet_name, |
| 191 | tenant_id=tenant_id, |
| 192 | enable_dhcp=self.network_resources['dhcp'], |
| 193 | ip_version=4) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 194 | else: |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 195 | _, resp_body = self.network_admin_client.\ |
| 196 | create_subnet(network_id=network_id, |
| 197 | cidr=str(subnet_cidr), |
| 198 | name=subnet_name, |
| 199 | tenant_id=tenant_id, |
| 200 | ip_version=4) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 201 | break |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 202 | except exceptions.BadRequest as e: |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 203 | if 'overlaps with another subnet' not in str(e): |
| 204 | raise |
| 205 | else: |
David Kranz | d421041 | 2014-11-21 08:37:45 -0500 | [diff] [blame] | 206 | message = 'Available CIDR for subnet creation could not be found' |
| 207 | raise Exception(message) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 208 | return resp_body['subnet'] |
| 209 | |
| 210 | def _create_router(self, router_name, tenant_id): |
| 211 | external_net_id = dict( |
Sean Dague | 86bd842 | 2013-12-20 09:56:44 -0500 | [diff] [blame] | 212 | network_id=CONF.network.public_network_id) |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 213 | _, resp_body = self.network_admin_client.create_router( |
| 214 | router_name, |
| 215 | external_gateway_info=external_net_id, |
| 216 | tenant_id=tenant_id) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 217 | return resp_body['router'] |
| 218 | |
| 219 | def _add_router_interface(self, router_id, subnet_id): |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 220 | self.network_admin_client.add_router_interface_with_subnet_id( |
| 221 | router_id, subnet_id) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 222 | |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 223 | def get_primary_network(self): |
| 224 | return self.isolated_net_resources.get('primary')[0] |
| 225 | |
| 226 | def get_primary_subnet(self): |
| 227 | return self.isolated_net_resources.get('primary')[1] |
| 228 | |
| 229 | def get_primary_router(self): |
| 230 | return self.isolated_net_resources.get('primary')[2] |
| 231 | |
| 232 | def get_admin_network(self): |
| 233 | return self.isolated_net_resources.get('admin')[0] |
| 234 | |
| 235 | def get_admin_subnet(self): |
| 236 | return self.isolated_net_resources.get('admin')[1] |
| 237 | |
| 238 | def get_admin_router(self): |
| 239 | return self.isolated_net_resources.get('admin')[2] |
| 240 | |
| 241 | def get_alt_network(self): |
| 242 | return self.isolated_net_resources.get('alt')[0] |
| 243 | |
| 244 | def get_alt_subnet(self): |
| 245 | return self.isolated_net_resources.get('alt')[1] |
| 246 | |
| 247 | def get_alt_router(self): |
| 248 | return self.isolated_net_resources.get('alt')[2] |
| 249 | |
Andrea Frittoli | 9612e81 | 2014-03-13 10:57:26 +0000 | [diff] [blame] | 250 | def get_credentials(self, credential_type): |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 251 | if self.isolated_creds.get(credential_type): |
| 252 | credentials = self.isolated_creds[credential_type] |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 253 | else: |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 254 | is_admin = (credential_type == 'admin') |
Andrea Frittoli | 9612e81 | 2014-03-13 10:57:26 +0000 | [diff] [blame] | 255 | credentials = self._create_creds(admin=is_admin) |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 256 | self.isolated_creds[credential_type] = credentials |
| 257 | # Maintained until tests are ported |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 258 | LOG.info("Acquired isolated creds:\n credentials: %s" |
| 259 | % credentials) |
Adam Gandelman | 85395e7 | 2014-07-29 18:34:33 -0700 | [diff] [blame] | 260 | if (CONF.service_available.neutron and |
| 261 | not CONF.baremetal.driver_enabled): |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 262 | network, subnet, router = self._create_network_resources( |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 263 | credentials.tenant_id) |
| 264 | self.isolated_net_resources[credential_type] = ( |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 265 | network, subnet, router,) |
| 266 | LOG.info("Created isolated network resources for : \n" |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 267 | + " credentials: %s" % credentials) |
Andrea Frittoli | 9612e81 | 2014-03-13 10:57:26 +0000 | [diff] [blame] | 268 | return credentials |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 269 | |
Andrea Frittoli | 9612e81 | 2014-03-13 10:57:26 +0000 | [diff] [blame] | 270 | def get_primary_creds(self): |
| 271 | return self.get_credentials('primary') |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 272 | |
Andrea Frittoli | 9612e81 | 2014-03-13 10:57:26 +0000 | [diff] [blame] | 273 | def get_admin_creds(self): |
| 274 | return self.get_credentials('admin') |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 275 | |
Andrea Frittoli | 9612e81 | 2014-03-13 10:57:26 +0000 | [diff] [blame] | 276 | def get_alt_creds(self): |
| 277 | return self.get_credentials('alt') |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 278 | |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 279 | def _clear_isolated_router(self, router_id, router_name): |
| 280 | net_client = self.network_admin_client |
| 281 | try: |
| 282 | net_client.delete_router(router_id) |
| 283 | except exceptions.NotFound: |
| 284 | LOG.warn('router with name: %s not found for delete' % |
| 285 | router_name) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 286 | |
| 287 | def _clear_isolated_subnet(self, subnet_id, subnet_name): |
| 288 | net_client = self.network_admin_client |
| 289 | try: |
| 290 | net_client.delete_subnet(subnet_id) |
| 291 | except exceptions.NotFound: |
| 292 | LOG.warn('subnet with name: %s not found for delete' % |
| 293 | subnet_name) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 294 | |
| 295 | def _clear_isolated_network(self, network_id, network_name): |
| 296 | net_client = self.network_admin_client |
| 297 | try: |
| 298 | net_client.delete_network(network_id) |
| 299 | except exceptions.NotFound: |
| 300 | LOG.warn('network with name: %s not found for delete' % |
| 301 | network_name) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 302 | |
Ala Rezmerita | 846eb7c | 2014-03-10 09:06:03 +0100 | [diff] [blame] | 303 | def _cleanup_default_secgroup(self, tenant): |
| 304 | net_client = self.network_admin_client |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 305 | _, resp_body = net_client.list_security_groups(tenant_id=tenant, |
| 306 | name="default") |
Ala Rezmerita | 846eb7c | 2014-03-10 09:06:03 +0100 | [diff] [blame] | 307 | secgroups_to_delete = resp_body['security_groups'] |
| 308 | for secgroup in secgroups_to_delete: |
| 309 | try: |
| 310 | net_client.delete_security_group(secgroup['id']) |
| 311 | except exceptions.NotFound: |
| 312 | LOG.warn('Security group %s, id %s not found for clean-up' % |
| 313 | (secgroup['name'], secgroup['id'])) |
| 314 | |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 315 | def _clear_isolated_net_resources(self): |
| 316 | net_client = self.network_admin_client |
| 317 | for cred in self.isolated_net_resources: |
| 318 | network, subnet, router = self.isolated_net_resources.get(cred) |
Salvatore Orlando | cf996c6 | 2014-01-30 09:15:18 -0800 | [diff] [blame] | 319 | LOG.debug("Clearing network: %(network)s, " |
Matthew Treinish | fe094ea | 2014-12-09 01:19:27 +0000 | [diff] [blame^] | 320 | "subnet: %(subnet)s, router: %(router)s", |
| 321 | {'network': network, 'subnet': subnet, 'router': router}) |
Salvatore Orlando | cf996c6 | 2014-01-30 09:15:18 -0800 | [diff] [blame] | 322 | if (not self.network_resources or |
| 323 | self.network_resources.get('router')): |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 324 | try: |
Andrea Frittoli | ae9aca0 | 2014-09-25 11:43:11 +0100 | [diff] [blame] | 325 | net_client.remove_router_interface_with_subnet_id( |
| 326 | router['id'], subnet['id']) |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 327 | except exceptions.NotFound: |
| 328 | LOG.warn('router with name: %s not found for delete' % |
| 329 | router['name']) |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 330 | self._clear_isolated_router(router['id'], router['name']) |
Salvatore Orlando | cf996c6 | 2014-01-30 09:15:18 -0800 | [diff] [blame] | 331 | if (not self.network_resources or |
Salvatore Orlando | cf996c6 | 2014-01-30 09:15:18 -0800 | [diff] [blame] | 332 | self.network_resources.get('subnet')): |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 333 | self._clear_isolated_subnet(subnet['id'], subnet['name']) |
Salvatore Orlando | cf996c6 | 2014-01-30 09:15:18 -0800 | [diff] [blame] | 334 | if (not self.network_resources or |
| 335 | self.network_resources.get('network')): |
Matthew Treinish | 9f756a0 | 2014-01-15 10:26:07 -0500 | [diff] [blame] | 336 | self._clear_isolated_network(network['id'], network['name']) |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 337 | |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 338 | def clear_isolated_creds(self): |
| 339 | if not self.isolated_creds: |
| 340 | return |
Miguel Lavalle | b8fabc5 | 2013-08-23 11:19:57 -0500 | [diff] [blame] | 341 | self._clear_isolated_net_resources() |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 342 | for creds in self.isolated_creds.itervalues(): |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 343 | try: |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 344 | self._delete_user(creds.user_id) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 345 | except exceptions.NotFound: |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 346 | LOG.warn("user with name: %s not found for delete" % |
| 347 | creds.username) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 348 | try: |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 349 | self._delete_tenant(creds.tenant_id) |
Matthew Treinish | b86cda9 | 2013-07-29 11:22:23 -0400 | [diff] [blame] | 350 | except exceptions.NotFound: |
Andrea Frittoli | fc31590 | 2014-03-20 09:21:44 +0000 | [diff] [blame] | 351 | LOG.warn("tenant with name: %s not found for delete" % |
| 352 | creds.tenant_name) |
Andrea Frittoli | 8283b4e | 2014-07-17 13:28:58 +0100 | [diff] [blame] | 353 | |
| 354 | def is_multi_user(self): |
| 355 | return True |
Yair Fried | 76488d7 | 2014-10-21 10:13:19 +0300 | [diff] [blame] | 356 | |
| 357 | def is_multi_tenant(self): |
| 358 | return True |