4 from StringIO import StringIO
8 from sfa.trust.sfaticket import SfaTicket
9 from sfa.trust.credential import Credential
11 from sfa.util.sfalogging import logger
12 from sfa.util.xrn import Xrn, urn_to_hrn
13 from sfa.util.version import version_core
14 from sfa.util.callids import Callids
15 from sfa.util.cache import Cache
17 from sfa.server.threadmanager import ThreadManager
19 from sfa.rspecs.rspec_converter import RSpecConverter
20 from sfa.rspecs.version_manager import VersionManager
21 from sfa.rspecs.rspec import RSpec
23 from sfa.client.client_helper import sfa_to_pg_users_arg
24 from sfa.client.return_value import ReturnValue
28 # the cache instance is a class member so it survives across incoming requests
31 def __init__ (self, config):
33 if config.SFA_SM_CACHING:
34 if SliceManager.cache is None:
35 SliceManager.cache = Cache()
36 self.cache = SliceManager.cache
38 def GetVersion(self, api, options):
39 # peers explicitly in aggregates.xml
40 peers =dict ([ (peername,interface.get_url()) for (peername,interface) in api.aggregates.iteritems()
41 if peername != api.hrn])
42 version_manager = VersionManager()
43 ad_rspec_versions = []
44 request_rspec_versions = []
45 for rspec_version in version_manager.versions:
46 if rspec_version.content_type in ['*', 'ad']:
47 ad_rspec_versions.append(rspec_version.to_dict())
48 if rspec_version.content_type in ['*', 'request']:
49 request_rspec_versions.append(rspec_version.to_dict())
50 xrn=Xrn(api.hrn, 'authority+sa')
52 'interface':'slicemgr',
55 'geni_api_versions': {'2': 'http://%s:%s' % (api.config.SFA_SM_HOST, api.config.SFA_SM_PORT)},
56 'hrn' : xrn.get_hrn(),
57 'urn' : xrn.get_urn(),
59 'geni_request_rspec_versions': request_rspec_versions,
60 'geni_ad_rspec_versions': ad_rspec_versions,
62 sm_version=version_core(version_more)
63 # local aggregate if present needs to have localhost resolved
64 if api.hrn in api.aggregates:
65 local_am_url=api.aggregates[api.hrn].get_url()
66 sm_version['peers'][api.hrn]=local_am_url.replace('localhost',sm_version['hostname'])
69 def drop_slicemgr_stats(self, rspec):
71 stats_elements = rspec.xml.xpath('//statistics')
72 for node in stats_elements:
73 node.getparent().remove(node)
75 logger.warn("drop_slicemgr_stats failed: %s " % (str(e)))
77 def add_slicemgr_stat(self, rspec, callname, aggname, elapsed, status, exc_info=None):
79 stats_tags = rspec.xml.xpath('//statistics[@call="%s"]' % callname)
81 stats_tag = stats_tags[0]
83 stats_tag = rspec.xml.root.add_element("statistics", call=callname)
85 stat_tag = stats_tag.add_element("aggregate", name=str(aggname),
86 elapsed=str(elapsed), status=str(status))
89 exc_tag = stat_tag.add_element("exc_info", name=str(exc_info[1]))
91 # formats the traceback as one big text blob
92 #exc_tag.text = "\n".join(traceback.format_exception(exc_info[0], exc_info[1], exc_info[2]))
94 # formats the traceback as a set of xml elements
95 tb = traceback.extract_tb(exc_info[2])
97 exc_frame = exc_tag.add_element("tb_frame", filename=str(item[0]),
98 line=str(item[1]), func=str(item[2]), code=str(item[3]))
101 logger.warn("add_slicemgr_stat failed on %s: %s" %(aggname, str(e)))
103 def ListResources(self, api, creds, options):
104 call_id = options.get('call_id')
105 if Callids().already_handled(call_id): return ""
107 version_manager = VersionManager()
109 def _ListResources(aggregate, server, credential, options):
110 forward_options = copy(options)
113 version = api.get_cached_server_version(server)
114 # force ProtoGENI aggregates to give us a v2 RSpec
115 if 'sfa' in version.keys():
116 forward_options['rspec_version'] = version_manager.get_version('SFA 1').to_dict()
118 forward_options['rspec_version'] = version_manager.get_version('ProtoGENI 2').to_dict()
119 forward_options['geni_rspec_version'] = {'type': 'geni', 'version': '3.0'}
120 rspec = server.ListResources(credential, forward_options)
121 return {"aggregate": aggregate, "rspec": rspec, "elapsed": time.time()-tStart, "status": "success"}
123 api.logger.log_exc("ListResources failed at %s" %(server.url))
124 return {"aggregate": aggregate, "elapsed": time.time()-tStart, "status": "exception", "exc_info": sys.exc_info()}
126 # get slice's hrn from options
127 xrn = options.get('geni_slice_urn', '')
128 (hrn, type) = urn_to_hrn(xrn)
129 if 'geni_compressed' in options:
130 del(options['geni_compressed'])
132 # get the rspec's return format from options
133 rspec_version = version_manager.get_version(options.get('geni_rspec_version'))
134 version_string = "rspec_%s" % (rspec_version)
136 # look in cache first
137 cached_requested = options.get('cached', True)
138 if not xrn and self.cache and cached_requested:
139 rspec = self.cache.get(version_string)
141 api.logger.debug("SliceManager.ListResources returns cached advertisement")
144 # get the callers hrn
145 valid_cred = api.auth.checkCredentials(creds, 'listnodes', hrn)[0]
146 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
148 # attempt to use delegated credential first
149 cred = api.getDelegatedCredential(creds)
151 cred = api.getCredential()
152 threads = ThreadManager()
153 for aggregate in api.aggregates:
154 # prevent infinite loop. Dont send request back to caller
155 # unless the caller is the aggregate's SM
156 if caller_hrn == aggregate and aggregate != api.hrn:
159 # get the rspec from the aggregate
160 interface = api.aggregates[aggregate]
161 server = api.server_proxy(interface, cred)
162 threads.run(_ListResources, aggregate, server, [cred], options)
165 results = threads.get_results()
166 rspec_version = version_manager.get_version(options.get('geni_rspec_version'))
168 result_version = version_manager._get_version(rspec_version.type, rspec_version.version, 'manifest')
170 result_version = version_manager._get_version(rspec_version.type, rspec_version.version, 'ad')
171 rspec = RSpec(version=result_version)
172 for result in results:
173 self.add_slicemgr_stat(rspec, "ListResources", result["aggregate"], result["elapsed"],
174 result["status"], result.get("exc_info",None))
175 if result["status"]=="success":
177 rspec.version.merge(ReturnValue.get_value(result["rspec"]))
179 api.logger.log_exc("SM.ListResources: Failed to merge aggregate rspec")
182 if self.cache and not xrn:
183 api.logger.debug("SliceManager.ListResources caches advertisement")
184 self.cache.add(version_string, rspec.toxml())
189 def CreateSliver(self, api, xrn, creds, rspec_str, users, options):
190 call_id = options.get('call_id')
191 if Callids().already_handled(call_id): return ""
193 version_manager = VersionManager()
194 def _CreateSliver(aggregate, server, xrn, credential, rspec, users, options):
197 # Need to call GetVersion at an aggregate to determine the supported
198 # rspec type/format beofre calling CreateSliver at an Aggregate.
199 server_version = api.get_cached_server_version(server)
200 requested_users = users
201 if 'sfa' not in server_version and 'geni_api' in server_version:
202 # sfa aggregtes support both sfa and pg rspecs, no need to convert
203 # if aggregate supports sfa rspecs. otherwise convert to pg rspec
204 rspec = RSpec(RSpecConverter.to_pg_rspec(rspec, 'request'))
205 filter = {'component_manager_id': server_version['urn']}
207 rspec = rspec.toxml()
208 requested_users = sfa_to_pg_users_arg(users)
209 rspec = server.CreateSliver(xrn, credential, rspec, requested_users, options)
210 return {"aggregate": aggregate, "rspec": rspec, "elapsed": time.time()-tStart, "status": "success"}
212 logger.log_exc('Something wrong in _CreateSliver with URL %s'%server.url)
213 return {"aggregate": aggregate, "elapsed": time.time()-tStart, "status": "exception", "exc_info": sys.exc_info()}
215 # Validate the RSpec against PlanetLab's schema --disabled for now
216 # The schema used here needs to aggregate the PL and VINI schemas
217 # schema = "/var/www/html/schemas/pl.rng"
218 rspec = RSpec(rspec_str)
221 # rspec.validate(schema)
223 # if there is a <statistics> section, the aggregates don't care about it,
225 self.drop_slicemgr_stats(rspec)
227 # attempt to use delegated credential first
228 cred = api.getDelegatedCredential(creds)
230 cred = api.getCredential()
232 # get the callers hrn
233 hrn, type = urn_to_hrn(xrn)
234 valid_cred = api.auth.checkCredentials(creds, 'createsliver', hrn)[0]
235 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
236 threads = ThreadManager()
237 for aggregate in api.aggregates:
238 # prevent infinite loop. Dont send request back to caller
239 # unless the caller is the aggregate's SM
240 if caller_hrn == aggregate and aggregate != api.hrn:
242 interface = api.aggregates[aggregate]
243 server = api.server_proxy(interface, cred)
244 # Just send entire RSpec to each aggregate
245 threads.run(_CreateSliver, aggregate, server, xrn, [cred], rspec.toxml(), users, options)
247 results = threads.get_results()
248 manifest_version = version_manager._get_version(rspec.version.type, rspec.version.version, 'manifest')
249 result_rspec = RSpec(version=manifest_version)
250 for result in results:
251 self.add_slicemgr_stat(result_rspec, "CreateSliver", result["aggregate"], result["elapsed"],
252 result["status"], result.get("exc_info",None))
253 if result["status"]=="success":
255 result_rspec.version.merge(ReturnValue.get_value(result["rspec"]))
257 api.logger.log_exc("SM.CreateSliver: Failed to merge aggregate rspec")
258 return result_rspec.toxml()
260 def RenewSliver(self, api, xrn, creds, expiration_time, options):
261 call_id = options.get('call_id')
262 if Callids().already_handled(call_id): return True
264 def _RenewSliver(aggregate, server, xrn, creds, expiration_time, options):
266 result=server.RenewSliver(xrn, creds, expiration_time, options)
267 if type(result)!=dict:
268 result = {'code': {'geni_code': 0}, 'value': result}
269 result['aggregate'] = aggregate
272 logger.log_exc('Something wrong in _RenewSliver with URL %s'%server.url)
273 return {'aggregate': aggregate, 'exc_info': traceback.format_exc(),
274 'code': {'geni_code': -1},
275 'value': False, 'output': ""}
277 (hrn, urn_type) = urn_to_hrn(xrn)
278 # get the callers hrn
279 valid_cred = api.auth.checkCredentials(creds, 'renewsliver', hrn)[0]
280 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
282 # attempt to use delegated credential first
283 cred = api.getDelegatedCredential(creds)
285 cred = api.getCredential(minimumExpiration=31*86400)
286 threads = ThreadManager()
287 for aggregate in api.aggregates:
288 # prevent infinite loop. Dont send request back to caller
289 # unless the caller is the aggregate's SM
290 if caller_hrn == aggregate and aggregate != api.hrn:
292 interface = api.aggregates[aggregate]
293 server = api.server_proxy(interface, cred)
294 threads.run(_RenewSliver, aggregate, server, xrn, [cred], expiration_time, options)
296 results = threads.get_results()
299 geni_output = ",".join([x.get('output',"") for x in results])
300 geni_value = reduce (lambda x,y: x and y, [result.get('value',False) for result in results], True)
301 for agg_result in results:
302 agg_geni_code = agg_result['code'].get('geni_code',0)
304 geni_code = agg_geni_code
306 results = {'aggregates': results, 'code': {'geni_code': geni_code}, 'value': geni_value, 'output': geni_output}
310 def DeleteSliver(self, api, xrn, creds, options):
311 call_id = options.get('call_id')
312 if Callids().already_handled(call_id): return ""
314 def _DeleteSliver(server, xrn, creds, options):
315 return server.DeleteSliver(xrn, creds, options)
317 (hrn, type) = urn_to_hrn(xrn)
318 # get the callers hrn
319 valid_cred = api.auth.checkCredentials(creds, 'deletesliver', hrn)[0]
320 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
322 # attempt to use delegated credential first
323 cred = api.getDelegatedCredential(creds)
325 cred = api.getCredential()
326 threads = ThreadManager()
327 for aggregate in api.aggregates:
328 # prevent infinite loop. Dont send request back to caller
329 # unless the caller is the aggregate's SM
330 if caller_hrn == aggregate and aggregate != api.hrn:
332 interface = api.aggregates[aggregate]
333 server = api.server_proxy(interface, cred)
334 threads.run(_DeleteSliver, server, xrn, [cred], options)
335 threads.get_results()
339 # first draft at a merging SliverStatus
340 def Status(self, api, slice_xrn, creds, options):
341 def _Status(server, xrn, creds, options):
342 return server.Status(xrn, creds, options)
344 call_id = options.get('call_id')
345 if Callids().already_handled(call_id): return {}
346 # attempt to use delegated credential first
347 cred = api.getDelegatedCredential(creds)
349 cred = api.getCredential()
350 threads = ThreadManager()
351 for aggregate in api.aggregates:
352 interface = api.aggregates[aggregate]
353 server = api.server_proxy(interface, cred)
354 threads.run (_Status, server, slice_xrn, [cred], options)
355 results = [ReturnValue.get_value(result) for result in threads.get_results()]
357 # get rid of any void result - e.g. when call_id was hit, where by convention we return {}
358 results = [ result for result in results if result and result['geni_resources']]
360 # do not try to combine if there's no result
361 if not results : return {}
363 # otherwise let's merge stuff
366 # mmh, it is expected that all results carry the same urn
367 overall['geni_urn'] = results[0]['geni_urn']
368 overall['pl_login'] = None
369 for result in results:
370 if result.get('pl_login'):
371 overall['pl_login'] = result['pl_login']
373 elif isinstance(result.get('value'), dict) and result['value'].get('pl_login'):
374 overall['pl_login'] = result['value']['pl_login']
376 # append all geni_resources
377 overall['geni_resources'] = \
378 reduce (lambda x,y: x+y, [ result['geni_resources'] for result in results] , [])
379 overall['status'] = 'unknown'
380 if overall['geni_resources']:
381 overall['status'] = 'ready'
385 def ListSlices(self, api, creds, options):
386 call_id = options.get('call_id')
387 if Callids().already_handled(call_id): return []
389 def _ListSlices(server, creds, options):
390 return server.ListSlices(creds, options)
392 # look in cache first
393 # xxx is this really frequent enough that it is worth being cached ?
395 slices = self.cache.get('slices')
397 api.logger.debug("SliceManager.ListSlices returns from cache")
400 # get the callers hrn
401 valid_cred = api.auth.checkCredentials(creds, 'listslices', None)[0]
402 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
404 # attempt to use delegated credential first
405 cred= api.getDelegatedCredential(creds)
407 cred = api.getCredential()
408 threads = ThreadManager()
409 # fetch from aggregates
410 for aggregate in api.aggregates:
411 # prevent infinite loop. Dont send request back to caller
412 # unless the caller is the aggregate's SM
413 if caller_hrn == aggregate and aggregate != api.hrn:
415 interface = api.aggregates[aggregate]
416 server = api.server_proxy(interface, cred)
417 threads.run(_ListSlices, server, [cred], options)
420 results = [ReturnValue.get_value(result) for result in threads.get_results()]
422 for result in results:
423 slices.extend(result)
427 api.logger.debug("SliceManager.ListSlices caches value")
428 self.cache.add('slices', slices)
433 def GetTicket(self, api, xrn, creds, rspec, users, options):
434 slice_hrn, type = urn_to_hrn(xrn)
435 # get the netspecs contained within the clients rspec
436 aggregate_rspecs = {}
437 tree= etree.parse(StringIO(rspec))
438 elements = tree.findall('./network')
439 for element in elements:
440 aggregate_hrn = element.values()[0]
441 aggregate_rspecs[aggregate_hrn] = rspec
443 # get the callers hrn
444 valid_cred = api.auth.checkCredentials(creds, 'getticket', slice_hrn)[0]
445 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
447 # attempt to use delegated credential first
448 cred = api.getDelegatedCredential(creds)
450 cred = api.getCredential()
451 threads = ThreadManager()
452 for (aggregate, aggregate_rspec) in aggregate_rspecs.iteritems():
453 # xxx sounds like using call_id here would be safer
454 # prevent infinite loop. Dont send request back to caller
455 # unless the caller is the aggregate's SM
456 if caller_hrn == aggregate and aggregate != api.hrn:
459 interface = api.aggregates[aggregate]
460 server = api.server_proxy(interface, cred)
461 threads.run(server.GetTicket, xrn, [cred], aggregate_rspec, users, options)
463 results = threads.get_results()
465 # gather information from each ticket
470 for result in results:
471 agg_ticket = SfaTicket(string=result)
472 attrs = agg_ticket.get_attributes()
474 object_gid = agg_ticket.get_gid_object()
476 rspec = RSpec(agg_ticket.get_rspec())
478 rspec.version.merge(agg_ticket.get_rspec())
479 initscripts.extend(attrs.get('initscripts', []))
480 slivers.extend(attrs.get('slivers', []))
483 attributes = {'initscripts': initscripts,
486 # create a new ticket
487 ticket = SfaTicket(subject = slice_hrn)
488 ticket.set_gid_caller(api.auth.client_gid)
489 ticket.set_issuer(key=api.key, subject=api.hrn)
490 ticket.set_gid_object(object_gid)
491 ticket.set_pubkey(object_gid.get_pubkey())
492 #new_ticket.set_parent(api.auth.hierarchy.get_auth_ticket(auth_hrn))
493 ticket.set_attributes(attributes)
494 ticket.set_rspec(rspec.toxml())
497 return ticket.save_to_string(save_parents=True)
499 def start_slice(self, api, xrn, creds):
500 hrn, type = urn_to_hrn(xrn)
502 # get the callers hrn
503 valid_cred = api.auth.checkCredentials(creds, 'startslice', hrn)[0]
504 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
506 # attempt to use delegated credential first
507 cred = api.getDelegatedCredential(creds)
509 cred = api.getCredential()
510 threads = ThreadManager()
511 for aggregate in api.aggregates:
512 # prevent infinite loop. Dont send request back to caller
513 # unless the caller is the aggregate's SM
514 if caller_hrn == aggregate and aggregate != api.hrn:
516 interface = api.aggregates[aggregate]
517 server = api.server_proxy(interface, cred)
518 threads.run(server.Start, xrn, cred)
519 threads.get_results()
522 def Shutdown(self, api, xrn, creds, options={}):
524 # get the callers hrn
525 valid_cred = api.auth.checkCredentials(creds, 'stopslice', xrn.hrn)[0]
526 caller_hrn = Credential(cred=valid_cred).get_gid_caller().get_hrn()
528 # attempt to use delegated credential first
529 cred = api.getDelegatedCredential(creds)
531 cred = api.getCredential()
532 threads = ThreadManager()
533 for aggregate in api.aggregates:
534 # prevent infinite loop. Dont send request back to caller
535 # unless the caller is the aggregate's SM
536 if caller_hrn == aggregate and aggregate != api.hrn:
538 interface = api.aggregates[aggregate]
539 server = api.server_proxy(interface, cred)
540 threads.run(server.Shutdown, xrn.urn, cred)
541 threads.get_results()