4 from StringIO import StringIO
8 from sfa.trust.sfaticket import SfaTicket
9 from sfa.trust.credential import Credential
11 from sfa.util.sfalogging import logger
12 from sfa.util.xrn import Xrn, urn_to_hrn
13 from sfa.util.version import version_core
14 from sfa.util.callids import Callids
15 from sfa.util.cache import Cache
17 from sfa.server.threadmanager import ThreadManager
19 from sfa.rspecs.rspec_converter import RSpecConverter
20 from sfa.rspecs.version_manager import VersionManager
21 from sfa.rspecs.rspec import RSpec
23 from sfa.client.client_helper import sfa_to_pg_users_arg
24 from sfa.client.return_value import ReturnValue
28 # the cache instance is a class member so it survives across incoming requests
31 def __init__ (self, config):
33 if config.SFA_SM_CACHING:
34 if SliceManager.cache is None:
35 SliceManager.cache = Cache()
36 self.cache = SliceManager.cache
38 def GetVersion(self, api, options):
39 # peers explicitly in aggregates.xml
40 peers =dict ([ (peername,interface.get_url()) for (peername,interface) in api.aggregates.iteritems()
41 if peername != api.hrn])
42 version_manager = VersionManager()
43 ad_rspec_versions = []
44 request_rspec_versions = []
45 for rspec_version in version_manager.versions:
46 if rspec_version.content_type in ['*', 'ad']:
47 ad_rspec_versions.append(rspec_version.to_dict())
48 if rspec_version.content_type in ['*', 'request']:
49 request_rspec_versions.append(rspec_version.to_dict())
50 xrn=Xrn(api.hrn, 'authority+sa')
52 'interface':'slicemgr',
55 'geni_api_versions': {'2': 'http://%s:%s' % (api.config.SFA_SM_HOST, api.config.SFA_SM_PORT)},
56 'hrn' : xrn.get_hrn(),
57 'urn' : xrn.get_urn(),
59 'geni_request_rspec_versions': request_rspec_versions,
60 'geni_ad_rspec_versions': ad_rspec_versions,
62 sm_version=version_core(version_more)
63 # local aggregate if present needs to have localhost resolved
64 if api.hrn in api.aggregates:
65 local_am_url=api.aggregates[api.hrn].get_url()
66 sm_version['peers'][api.hrn]=local_am_url.replace('localhost',sm_version['hostname'])
69 def drop_slicemgr_stats(self, rspec):
71 stats_elements = rspec.xml.xpath('//statistics')
72 for node in stats_elements:
73 node.getparent().remove(node)
75 logger.warn("drop_slicemgr_stats failed: %s " % (str(e)))
77 def add_slicemgr_stat(self, rspec, callname, aggname, elapsed, status, exc_info=None):
79 stats_tags = rspec.xml.xpath('//statistics[@call="%s"]' % callname)
81 stats_tag = stats_tags[0]
83 stats_tag = rspec.xml.root.add_element("statistics", call=callname)
85 stat_tag = stats_tag.add_element("aggregate", name=str(aggname),
86 elapsed=str(elapsed), status=str(status))
89 exc_tag = stat_tag.add_element("exc_info", name=str(exc_info[1]))
91 # formats the traceback as one big text blob
92 #exc_tag.text = "\n".join(traceback.format_exception(exc_info[0], exc_info[1], exc_info[2]))
94 # formats the traceback as a set of xml elements
95 tb = traceback.extract_tb(exc_info[2])
97 exc_frame = exc_tag.add_element("tb_frame", filename=str(item[0]),
98 line=str(item[1]), func=str(item[2]), code=str(item[3]))
101 logger.warn("add_slicemgr_stat failed on %s: %s" %(aggname, str(e)))
103 def ListResources(self, api, creds, options):
104 call_id = options.get('call_id')
105 if Callids().already_handled(call_id): return ""
107 version_manager = VersionManager()
109 def _ListResources(aggregate, server, credential, options):
110 forward_options = copy(options)
113 version = api.get_cached_server_version(server)
114 # force ProtoGENI aggregates to give us a v2 RSpec
115 if 'sfa' in version.keys():
116 forward_options['rspec_version'] = version_manager.get_version('SFA 1').to_dict()
118 forward_options['rspec_version'] = version_manager.get_version('ProtoGENI 2').to_dict()
119 forward_options['geni_rspec_version'] = {'type': 'geni', 'version': '3.0'}
120 rspec = server.ListResources(credential, forward_options)
121 return {"aggregate": aggregate, "rspec": rspec, "elapsed": time.time()-tStart, "status": "success"}
123 api.logger.log_exc("ListResources failed at %s" %(server.url))
124 return {"aggregate": aggregate, "elapsed": time.time()-tStart, "status": "exception", "exc_info": sys.exc_info()}
126 # get slice's hrn from options
127 xrn = options.get('geni_slice_urn', '')
128 (hrn, type) = urn_to_hrn(xrn)
129 if 'geni_compressed' in options:
130 del(options['geni_compressed'])
132 # get the rspec's return format from options
133 rspec_version = version_manager.get_version(options.get('geni_rspec_version'))
134 version_string = "rspec_%s" % (rspec_version)
136 # look in cache first
137 cached_requested = options.get('cached', True)
138 if not xrn and self.cache and cached_requested:
139 rspec = self.cache.get(version_string)
141 api.logger.debug("SliceManager.ListResources returns cached advertisement")
144 # get the callers hrn
145 valid_cred = api.auth.checkCredentials(creds, 'listnodes', hrn)[0]
146 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
148 # attempt to use delegated credential first
149 cred = api.getDelegatedCredential(creds)
151 cred = api.getCredential()
152 threads = ThreadManager()
153 for aggregate in api.aggregates:
154 # prevent infinite loop. Dont send request back to caller
155 # unless the caller is the aggregate's SM
156 if caller_hrn == aggregate and aggregate != api.hrn:
159 # get the rspec from the aggregate
160 interface = api.aggregates[aggregate]
161 server = api.server_proxy(interface, cred)
162 threads.run(_ListResources, aggregate, server, [cred], options)
165 results = threads.get_results()
166 rspec_version = version_manager.get_version(options.get('geni_rspec_version'))
168 result_version = version_manager._get_version(rspec_version.type, rspec_version.version, 'manifest')
170 result_version = version_manager._get_version(rspec_version.type, rspec_version.version, 'ad')
171 rspec = RSpec(version=result_version)
172 for result in results:
173 self.add_slicemgr_stat(rspec, "ListResources", result["aggregate"], result["elapsed"],
174 result["status"], result.get("exc_info",None))
175 if result["status"]=="success":
177 rspec.version.merge(ReturnValue.get_value(result["rspec"]))
179 api.logger.log_exc("SM.ListResources: Failed to merge aggregate rspec")
182 if self.cache and not xrn:
183 api.logger.debug("SliceManager.ListResources caches advertisement")
184 self.cache.add(version_string, rspec.toxml())
189 def CreateSliver(self, api, xrn, creds, rspec_str, users, options):
190 call_id = options.get('call_id')
191 if Callids().already_handled(call_id): return ""
193 version_manager = VersionManager()
194 def _CreateSliver(aggregate, server, xrn, credential, rspec, users, options):
197 # Need to call GetVersion at an aggregate to determine the supported
198 # rspec type/format beofre calling CreateSliver at an Aggregate.
199 server_version = api.get_cached_server_version(server)
200 requested_users = users
201 if 'sfa' not in server_version and 'geni_api' in server_version:
202 # sfa aggregtes support both sfa and pg rspecs, no need to convert
203 # if aggregate supports sfa rspecs. otherwise convert to pg rspec
204 rspec = RSpec(RSpecConverter.to_pg_rspec(rspec, 'request'))
205 filter = {'component_manager_id': server_version['urn']}
207 rspec = rspec.toxml()
208 requested_users = sfa_to_pg_users_arg(users)
209 rspec = server.CreateSliver(xrn, credential, rspec, requested_users, options)
210 return {"aggregate": aggregate, "rspec": rspec, "elapsed": time.time()-tStart, "status": "success"}
212 logger.log_exc('Something wrong in _CreateSliver with URL %s'%server.url)
213 return {"aggregate": aggregate, "elapsed": time.time()-tStart, "status": "exception", "exc_info": sys.exc_info()}
215 # Validate the RSpec against PlanetLab's schema --disabled for now
216 # The schema used here needs to aggregate the PL and VINI schemas
217 # schema = "/var/www/html/schemas/pl.rng"
218 rspec = RSpec(rspec_str)
221 # rspec.validate(schema)
223 # if there is a <statistics> section, the aggregates don't care about it,
225 self.drop_slicemgr_stats(rspec)
227 # attempt to use delegated credential first
228 cred = api.getDelegatedCredential(creds)
230 cred = api.getCredential()
232 # get the callers hrn
233 hrn, type = urn_to_hrn(xrn)
234 valid_cred = api.auth.checkCredentials(creds, 'createsliver', hrn)[0]
235 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
236 threads = ThreadManager()
237 for aggregate in api.aggregates:
238 # prevent infinite loop. Dont send request back to caller
239 # unless the caller is the aggregate's SM
240 if caller_hrn == aggregate and aggregate != api.hrn:
242 interface = api.aggregates[aggregate]
243 server = api.server_proxy(interface, cred)
244 # Just send entire RSpec to each aggregate
245 threads.run(_CreateSliver, aggregate, server, xrn, [cred], rspec.toxml(), users, options)
247 results = threads.get_results()
248 manifest_version = version_manager._get_version(rspec.version.type, rspec.version.version, 'manifest')
249 result_rspec = RSpec(version=manifest_version)
250 for result in results:
251 self.add_slicemgr_stat(result_rspec, "CreateSliver", result["aggregate"], result["elapsed"],
252 result["status"], result.get("exc_info",None))
253 if result["status"]=="success":
255 result_rspec.version.merge(ReturnValue.get_value(result["rspec"]))
257 api.logger.log_exc("SM.CreateSliver: Failed to merge aggregate rspec")
258 return result_rspec.toxml()
260 def RenewSliver(self, api, xrn, creds, expiration_time, options):
261 call_id = options.get('call_id')
262 if Callids().already_handled(call_id): return True
264 def _RenewSliver(aggregate, server, xrn, creds, expiration_time, options):
266 result=server.RenewSliver(xrn, creds, expiration_time, options)
267 if type(result)!=dict:
268 result = {"code": {"geni_code": 0}, value: result}
269 result["aggregate"] = aggregate
272 logger.log_exc('Something wrong in _RenewSliver with URL %s'%server.url)
273 return {"aggregate": aggregate, "exc_info": traceback.format_exc(), "code": {"geni_code": -1}, "value": False, "output": ""}
275 (hrn, urn_type) = urn_to_hrn(xrn)
276 # get the callers hrn
277 valid_cred = api.auth.checkCredentials(creds, 'renewsliver', hrn)[0]
278 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
280 # attempt to use delegated credential first
281 cred = api.getDelegatedCredential(creds)
283 cred = api.getCredential(minimumExpiration=31*86400)
284 threads = ThreadManager()
285 for aggregate in api.aggregates:
286 # prevent infinite loop. Dont send request back to caller
287 # unless the caller is the aggregate's SM
288 if caller_hrn == aggregate and aggregate != api.hrn:
290 interface = api.aggregates[aggregate]
291 server = api.server_proxy(interface, cred)
292 threads.run(_RenewSliver, aggregate, server, xrn, [cred], expiration_time, options)
294 results = threads.get_results()
297 geni_output = ",".join([x.get("output","") for x in results])
298 geni_value = reduce (lambda x,y: x and y, [result.get("value",False) for result in results], True)
299 for agg_result in results:
300 agg_geni_code = agg_result["code"].get("geni_code",0)
302 geni_code = agg_geni_code
304 results = {"aggregates": results, "code": {"geni_code": geni_code}, "value": geni_value, "output": geni_output}
308 def DeleteSliver(self, api, xrn, creds, options):
309 call_id = options.get('call_id')
310 if Callids().already_handled(call_id): return ""
312 def _DeleteSliver(server, xrn, creds, options):
313 return server.DeleteSliver(xrn, creds, options)
315 (hrn, type) = urn_to_hrn(xrn)
316 # get the callers hrn
317 valid_cred = api.auth.checkCredentials(creds, 'deletesliver', hrn)[0]
318 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
320 # attempt to use delegated credential first
321 cred = api.getDelegatedCredential(creds)
323 cred = api.getCredential()
324 threads = ThreadManager()
325 for aggregate in api.aggregates:
326 # prevent infinite loop. Dont send request back to caller
327 # unless the caller is the aggregate's SM
328 if caller_hrn == aggregate and aggregate != api.hrn:
330 interface = api.aggregates[aggregate]
331 server = api.server_proxy(interface, cred)
332 threads.run(_DeleteSliver, server, xrn, [cred], options)
333 threads.get_results()
337 # first draft at a merging SliverStatus
338 def SliverStatus(self, api, slice_xrn, creds, options):
339 def _SliverStatus(server, xrn, creds, options):
340 return server.SliverStatus(xrn, creds, options)
342 call_id = options.get('call_id')
343 if Callids().already_handled(call_id): return {}
344 # attempt to use delegated credential first
345 cred = api.getDelegatedCredential(creds)
347 cred = api.getCredential()
348 threads = ThreadManager()
349 for aggregate in api.aggregates:
350 interface = api.aggregates[aggregate]
351 server = api.server_proxy(interface, cred)
352 threads.run (_SliverStatus, server, slice_xrn, [cred], options)
353 results = [ReturnValue.get_value(result) for result in threads.get_results()]
355 # get rid of any void result - e.g. when call_id was hit, where by convention we return {}
356 results = [ result for result in results if result and result['geni_resources']]
358 # do not try to combine if there's no result
359 if not results : return {}
361 # otherwise let's merge stuff
364 # mmh, it is expected that all results carry the same urn
365 overall['geni_urn'] = results[0]['geni_urn']
366 overall['pl_login'] = results[0]['pl_login']
367 # append all geni_resources
368 overall['geni_resources'] = \
369 reduce (lambda x,y: x+y, [ result['geni_resources'] for result in results] , [])
370 overall['status'] = 'unknown'
371 if overall['geni_resources']:
372 overall['status'] = 'ready'
376 def ListSlices(self, api, creds, options):
377 call_id = options.get('call_id')
378 if Callids().already_handled(call_id): return []
380 def _ListSlices(server, creds, options):
381 return server.ListSlices(creds, options)
383 # look in cache first
384 # xxx is this really frequent enough that it is worth being cached ?
386 slices = self.cache.get('slices')
388 api.logger.debug("SliceManager.ListSlices returns from cache")
391 # get the callers hrn
392 valid_cred = api.auth.checkCredentials(creds, 'listslices', None)[0]
393 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
395 # attempt to use delegated credential first
396 cred= api.getDelegatedCredential(creds)
398 cred = api.getCredential()
399 threads = ThreadManager()
400 # fetch from aggregates
401 for aggregate in api.aggregates:
402 # prevent infinite loop. Dont send request back to caller
403 # unless the caller is the aggregate's SM
404 if caller_hrn == aggregate and aggregate != api.hrn:
406 interface = api.aggregates[aggregate]
407 server = api.server_proxy(interface, cred)
408 threads.run(_ListSlices, server, [cred], options)
411 results = [ReturnValue.get_value(result) for result in threads.get_results()]
413 for result in results:
414 slices.extend(result)
418 api.logger.debug("SliceManager.ListSlices caches value")
419 self.cache.add('slices', slices)
424 def GetTicket(self, api, xrn, creds, rspec, users, options):
425 slice_hrn, type = urn_to_hrn(xrn)
426 # get the netspecs contained within the clients rspec
427 aggregate_rspecs = {}
428 tree= etree.parse(StringIO(rspec))
429 elements = tree.findall('./network')
430 for element in elements:
431 aggregate_hrn = element.values()[0]
432 aggregate_rspecs[aggregate_hrn] = rspec
434 # get the callers hrn
435 valid_cred = api.auth.checkCredentials(creds, 'getticket', slice_hrn)[0]
436 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
438 # attempt to use delegated credential first
439 cred = api.getDelegatedCredential(creds)
441 cred = api.getCredential()
442 threads = ThreadManager()
443 for (aggregate, aggregate_rspec) in aggregate_rspecs.iteritems():
444 # xxx sounds like using call_id here would be safer
445 # prevent infinite loop. Dont send request back to caller
446 # unless the caller is the aggregate's SM
447 if caller_hrn == aggregate and aggregate != api.hrn:
450 interface = api.aggregates[aggregate]
451 server = api.server_proxy(interface, cred)
452 threads.run(server.GetTicket, xrn, [cred], aggregate_rspec, users, options)
454 results = threads.get_results()
456 # gather information from each ticket
461 for result in results:
462 agg_ticket = SfaTicket(string=result)
463 attrs = agg_ticket.get_attributes()
465 object_gid = agg_ticket.get_gid_object()
467 rspec = RSpec(agg_ticket.get_rspec())
469 rspec.version.merge(agg_ticket.get_rspec())
470 initscripts.extend(attrs.get('initscripts', []))
471 slivers.extend(attrs.get('slivers', []))
474 attributes = {'initscripts': initscripts,
477 # create a new ticket
478 ticket = SfaTicket(subject = slice_hrn)
479 ticket.set_gid_caller(api.auth.client_gid)
480 ticket.set_issuer(key=api.key, subject=api.hrn)
481 ticket.set_gid_object(object_gid)
482 ticket.set_pubkey(object_gid.get_pubkey())
483 #new_ticket.set_parent(api.auth.hierarchy.get_auth_ticket(auth_hrn))
484 ticket.set_attributes(attributes)
485 ticket.set_rspec(rspec.toxml())
488 return ticket.save_to_string(save_parents=True)
490 def start_slice(self, api, xrn, creds):
491 hrn, type = urn_to_hrn(xrn)
493 # get the callers hrn
494 valid_cred = api.auth.checkCredentials(creds, 'startslice', hrn)[0]
495 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
497 # attempt to use delegated credential first
498 cred = api.getDelegatedCredential(creds)
500 cred = api.getCredential()
501 threads = ThreadManager()
502 for aggregate in api.aggregates:
503 # prevent infinite loop. Dont send request back to caller
504 # unless the caller is the aggregate's SM
505 if caller_hrn == aggregate and aggregate != api.hrn:
507 interface = api.aggregates[aggregate]
508 server = api.server_proxy(interface, cred)
509 threads.run(server.Start, xrn, cred)
510 threads.get_results()
513 def stop_slice(self, api, xrn, creds):
514 hrn, type = urn_to_hrn(xrn)
516 # get the callers hrn
517 valid_cred = api.auth.checkCredentials(creds, 'stopslice', hrn)[0]
518 caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
520 # attempt to use delegated credential first
521 cred = api.getDelegatedCredential(creds)
523 cred = api.getCredential()
524 threads = ThreadManager()
525 for aggregate in api.aggregates:
526 # prevent infinite loop. Dont send request back to caller
527 # unless the caller is the aggregate's SM
528 if caller_hrn == aggregate and aggregate != api.hrn:
530 interface = api.aggregates[aggregate]
531 server = api.server_proxy(interface, cred)
532 threads.run(server.Stop, xrn, cred)
533 threads.get_results()
536 def reset_slice(self, api, xrn):
542 def shutdown(self, api, xrn, creds):
548 def status(self, api, xrn, creds):