4 from collections import defaultdict
5 from django.db.models import F, Q
6 from planetstack.config import Config
7 from observer.openstacksyncstep import OpenStackSyncStep
8 from core.models.site import SiteDeployments, Deployment
9 from core.models.user import User
10 from core.models.userdeployments import UserDeployments
11 from util.logger import Logger, logging
13 logger = Logger(level=logging.INFO)
15 class SyncUserDeployments(OpenStackSyncStep):
16 provides=[UserDeployments, User]
19 def fetch_pending(self, deleted):
22 return UserDeployments.deleted_objects.all()
24 return UserDeployments.objects.filter(Q(enacted__lt=F('updated')) | Q(enacted=None))
26 def sync_record(self, user_deployment):
27 logger.info("sync'ing user %s at deployment %s" % (user_deployment.user, user_deployment.deployment.name))
29 if not user_deployment.deployment.admin_user:
30 logger.info("deployment %r has no admin_user, skipping" % user_deployment.deployment)
33 name = user_deployment.user.email[:user_deployment.user.email.find('@')]
34 user_fields = {'name': user_deployment.user.email,
35 'email': user_deployment.user.email,
36 'password': hashlib.md5(user_deployment.user.password).hexdigest()[:6],
38 driver = self.driver.admin_driver(deployment=user_deployment.deployment.name)
39 if not user_deployment.kuser_id:
40 keystone_user = driver.create_user(**user_fields)
41 user_deployment.kuser_id = keystone_user.id
43 driver.update_user(user_deployment.kuser_id, user_fields)
45 # setup user deployment home site roles
46 if user_deployment.user.site:
47 site_deployments = SiteDeployments.objects.filter(site=user_deployment.user.site,
48 deployment=user_deployment.deployment)
50 # need the correct tenant id for site at the deployment
51 tenant_id = site_deployments[0].tenant_id
52 driver.add_user_role(user_deployment.kuser_id,
54 if user_deployment.user.is_admin:
55 driver.add_user_role(user_deployment.kuser_id, tenant_id, 'admin')
57 # may have admin role so attempt to remove it
58 driver.delete_user_role(user_deployment.kuser_id, tenant_id, 'admin')
60 #if user_deployment.user.public_key:
61 # if not user_deployment.user.keyname:
62 # keyname = user_deployment.user.email.lower().replace('@', 'AT').replace('.', '')
63 # user_deployment.user.keyname = keyname
64 # user_deployment.user.save()
66 # user_driver = driver.client_driver(caller=user_deployment.user,
67 # tenant=user_deployment.user.site.login_base,
68 # deployment=user_deployment.deployment.name)
69 # key_fields = {'name': user_deployment.user.keyname,
70 # 'public_key': user_deployment.user.public_key}
71 # user_driver.create_keypair(**key_fields)
73 user_deployment.save()
75 def delete_record(self, user_deployment):
76 if user_deployment.user.kuser_id:
77 driver = self.driver.admin_driver(deployment=user_deployment.deployment.name)
78 driver.delete_user(user_deployment.user.kuser_id)