Merge branch 'master' into eucalyptus-devel
[sfa.git] / sfa / managers / slice_manager_pl.py
1
2 import sys
3 import time,datetime
4 from StringIO import StringIO
5 from types import StringTypes
6 from copy import deepcopy
7 from copy import copy
8 from lxml import etree
9
10 from sfa.util.sfalogging import logger
11 from sfa.util.rspecHelper import merge_rspecs
12 from sfa.util.xrn import Xrn, urn_to_hrn, hrn_to_urn
13 from sfa.util.plxrn import hrn_to_pl_slicename
14 from sfa.util.rspec import *
15 from sfa.util.specdict import *
16 from sfa.util.faults import *
17 from sfa.util.record import SfaRecord
18 from sfa.rspecs.pg_rspec import PGRSpec
19 from sfa.rspecs.sfa_rspec import SfaRSpec
20 from sfa.rspecs.rspec_converter import RSpecConverter
21 from sfa.rspecs.rspec_parser import parse_rspec    
22 from sfa.rspecs.rspec_version import RSpecVersion
23 from sfa.rspecs.sfa_rspec import sfa_rspec_version
24 from sfa.rspecs.pg_rspec import pg_rspec_ad_version, pg_rspec_request_version   
25 from sfa.util.policy import Policy
26 from sfa.util.prefixTree import prefixTree
27 from sfa.util.sfaticket import *
28 from sfa.trust.credential import Credential
29 from sfa.util.threadmanager import ThreadManager
30 import sfa.util.xmlrpcprotocol as xmlrpcprotocol     
31 import sfa.plc.peers as peers
32 from sfa.util.version import version_core
33 from sfa.util.callids import Callids
34
35
36 def _call_id_supported(api, server):
37     """
38     Returns true if server support the optional call_id arg, false otherwise.
39     """
40     server_version = api.get_cached_server_version(server)
41
42     if 'sfa' in server_version:
43         code_tag = server_version['code_tag']
44         code_tag_parts = code_tag.split("-")
45
46         version_parts = code_tag_parts[0].split(".")
47         major, minor = version_parts[0], version_parts[1]
48         rev = code_tag_parts[1]
49         if int(major) > 1:
50             if int(minor) > 0 or int(rev) > 20:
51                 return True
52     return False
53
54 # we have specialized xmlrpclib.ServerProxy to remember the input url
55 # OTOH it's not clear if we're only dealing with XMLRPCServerProxy instances
56 def get_serverproxy_url (server):
57     try:
58         return server.url
59     except:
60         logger.warning("GetVersion, falling back to xmlrpclib.ServerProxy internals")
61         return server._ServerProxy__host + server._ServerProxy__handler 
62
63 def GetVersion(api):
64     # peers explicitly in aggregates.xml
65     peers =dict ([ (peername,get_serverproxy_url(v)) for (peername,v) in api.aggregates.iteritems() 
66                    if peername != api.hrn])
67     xrn=Xrn (api.hrn)
68     request_rspec_versions = [dict(pg_rspec_request_version), dict(sfa_rspec_version)]
69     ad_rspec_versions = [dict(pg_rspec_ad_version), dict(sfa_rspec_version)]
70     version_more = {'interface':'slicemgr',
71                     'hrn' : xrn.get_hrn(),
72                     'urn' : xrn.get_urn(),
73                     'peers': peers,
74                     'request_rspec_versions': request_rspec_versions,
75                     'ad_rspec_versions': ad_rspec_versions,
76                     'default_ad_rspec': dict(sfa_rspec_version)
77                     }
78     sm_version=version_core(version_more)
79     # local aggregate if present needs to have localhost resolved
80     if api.hrn in api.aggregates:
81         local_am_url=get_serverproxy_url(api.aggregates[api.hrn])
82         sm_version['peers'][api.hrn]=local_am_url.replace('localhost',sm_version['hostname'])
83     return sm_version
84
85
86 def ListResources(api, creds, options, call_id):
87     def _ListResources(server, credential, my_opts, call_id):
88         args = [credential, my_opts]
89         if _call_id_supported(api, server):
90             args.append(call_id)
91         try:
92             return server.ListResources(*args)
93         except Exception, e:
94             api.logger.warn("ListResources failed at %s: %s" %(server.url, str(e)))
95
96     if Callids().already_handled(call_id): return ""
97
98     # get slice's hrn from options
99     xrn = options.get('geni_slice_urn', '')
100     (hrn, type) = urn_to_hrn(xrn)
101     my_opts = copy(options)
102     my_opts['geni_compressed'] = False
103     if 'rspec_version' in my_opts:
104         del my_opts['rspec_version']
105
106     # get the rspec's return format from options
107     rspec_version = RSpecVersion(options.get('rspec_version'))
108     version_string = "rspec_%s" % (rspec_version.get_version_name())
109
110     # look in cache first
111     if caching and api.cache and not xrn:
112         rspec =  api.cache.get(version_string)
113         if rspec:
114             return rspec
115
116     # get the callers hrn
117     valid_cred = api.auth.checkCredentials(creds, 'listnodes', hrn)[0]
118     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
119
120     # attempt to use delegated credential first
121     credential = api.getDelegatedCredential(creds)
122     if not credential:
123         credential = api.getCredential()
124     credentials = [credential]
125     threads = ThreadManager()
126     for aggregate in api.aggregates:
127         # prevent infinite loop. Dont send request back to caller
128         # unless the caller is the aggregate's SM
129         if caller_hrn == aggregate and aggregate != api.hrn:
130             continue
131         # get the rspec from the aggregate
132         server = api.aggregates[aggregate]
133         #threads.run(server.ListResources, credentials, my_opts, call_id)
134         threads.run(_ListResources, server, credentials, my_opts, call_id)
135
136     results = threads.get_results()
137     rspec_version = RSpecVersion(my_opts.get('rspec_version'))
138     if rspec_version['type'] == pg_rspec_ad_version['type']:
139         rspec = PGRSpec()
140     else:
141         rspec = SfaRSpec()
142     for result in results:
143         try:
144             rspec.merge(result)
145         except:
146             api.logger.info("SM.ListResources: Failed to merge aggregate rspec")
147
148     # cache the result
149     if caching and api.cache and not xrn:
150         api.cache.add(version_string, rspec.toxml())
151
152     return rspec.toxml()
153
154
155 def CreateSliver(api, xrn, creds, rspec_str, users, call_id):
156
157     def _CreateSliver(server, xrn, credential, rspec, users, call_id):
158         try:
159             # Need to call GetVersion at an aggregate to determine the supported 
160             # rspec type/format beofre calling CreateSliver at an Aggregate. 
161             server_version = api.get_cached_server_version(server)    
162             if 'sfa' not in aggregate_version and 'geni_api' in aggregate_version:
163                 # sfa aggregtes support both sfa and pg rspecs, no need to convert
164                 # if aggregate supports sfa rspecs. otherwise convert to pg rspec
165                 rspec = RSpecConverter.to_pg_rspec(rspec)
166             args = [xrn, credential, rspec, users]
167             if _call_id_supported(api, server):
168                 args.append(call_id)
169             try:
170                 return server.CreateSliver(*args)
171             except Exception, e:
172                 api.logger.warn("CreateSliver failed at %s: %s" %(server.url, str(e)))
173         except: 
174             logger.log_exc('Something wrong in _CreateSliver')
175
176     if Callids().already_handled(call_id): return ""
177     # Validate the RSpec against PlanetLab's schema --disabled for now
178     # The schema used here needs to aggregate the PL and VINI schemas
179     # schema = "/var/www/html/schemas/pl.rng"
180     rspec = parse_rspec(rspec_str)
181     schema = None
182     if schema:
183         rspec.validate(schema)
184
185     # attempt to use delegated credential first
186     credential = api.getDelegatedCredential(creds)
187     if not credential:
188         credential = api.getCredential()
189
190     # get the callers hrn
191     hrn, type = urn_to_hrn(xrn)
192     valid_cred = api.auth.checkCredentials(creds, 'createsliver', hrn)[0]
193     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
194     threads = ThreadManager()
195     for aggregate in api.aggregates:
196         # prevent infinite loop. Dont send request back to caller
197         # unless the caller is the aggregate's SM 
198         if caller_hrn == aggregate and aggregate != api.hrn:
199             continue
200         server = api.aggregates[aggregate]
201         # Just send entire RSpec to each aggregate
202         threads.run(_CreateSliver, server, xrn, credential, rspec.toxml(), users, call_id)
203             
204     results = threads.get_results()
205     rspec = SfaRSpec()
206     for result in results:
207         rspec.merge(result)     
208     return rspec.toxml()
209
210 def RenewSliver(api, xrn, creds, expiration_time, call_id):
211     def _RenewSliver(server, xrn, creds, expiration_time, call_id):
212         server_version = _get_server_version(api, server)
213         args =  [xrn, creds, expiration_time, call_id]
214         if _call_id_supported(api, server):
215             args.append(call_id)
216         return server.RenewSliver(*args)
217
218     if Callids().already_handled(call_id): return True
219
220     (hrn, type) = urn_to_hrn(xrn)
221     # get the callers hrn
222     valid_cred = api.auth.checkCredentials(creds, 'renewsliver', hrn)[0]
223     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
224
225     # attempt to use delegated credential first
226     credential = api.getDelegatedCredential(creds)
227     if not credential:
228         credential = api.getCredential()
229     threads = ThreadManager()
230     for aggregate in api.aggregates:
231         # prevent infinite loop. Dont send request back to caller
232         # unless the caller is the aggregate's SM
233         if caller_hrn == aggregate and aggregate != api.hrn:
234             continue
235         server = api.aggregates[aggregate]
236         threads.run(_RenewSliver, server, xrn, [credential], expiration_time, call_id)
237     # 'and' the results
238     return reduce (lambda x,y: x and y, threads.get_results() , True)
239
240 def DeleteSliver(api, xrn, creds, call_id):
241     def _DeleteSliver(server, xrn, creds, call_id):
242         server_version = _get_server_version(api, server)
243         args =  [xrn, creds]
244         if _call_id_supported(api, server):
245             args.append(call_id)
246         return server.DeleteSliver(*args)
247
248     if Callids().already_handled(call_id): return ""
249     (hrn, type) = urn_to_hrn(xrn)
250     # get the callers hrn
251     valid_cred = api.auth.checkCredentials(creds, 'deletesliver', hrn)[0]
252     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
253
254     # attempt to use delegated credential first
255     credential = api.getDelegatedCredential(creds)
256     if not credential:
257         credential = api.getCredential()
258     threads = ThreadManager()
259     for aggregate in api.aggregates:
260         # prevent infinite loop. Dont send request back to caller
261         # unless the caller is the aggregate's SM
262         if caller_hrn == aggregate and aggregate != api.hrn:
263             continue
264         server = api.aggregates[aggregate]
265         threads.run(_DeleteSliver, server, xrn, credential, call_id)
266     threads.get_results()
267     return 1
268
269
270 # first draft at a merging SliverStatus
271 def SliverStatus(api, slice_xrn, creds, call_id):
272     def _SliverStatus(server, xrn, creds, call_id):
273         server_version = _get_server_version(api, server)
274         args =  [xrn, creds]
275         if _call_id_supported(api, server):
276             args.append(call_id)
277         return server.SliverStatus(*args)
278     
279     if Callids().already_handled(call_id): return {}
280     # attempt to use delegated credential first
281     credential = api.getDelegatedCredential(creds)
282     if not credential:
283         credential = api.getCredential()
284     threads = ThreadManager()
285     for aggregate in api.aggregates:
286         server = api.aggregates[aggregate]
287         threads.run (_SliverStatus, server, slice_xrn, credential, call_id)
288     results = threads.get_results()
289
290     # get rid of any void result - e.g. when call_id was hit where by convention we return {}
291     results = [ result for result in results if result and result['geni_resources']]
292
293     # do not try to combine if there's no result
294     if not results : return {}
295
296     # otherwise let's merge stuff
297     overall = {}
298
299     # mmh, it is expected that all results carry the same urn
300     overall['geni_urn'] = results[0]['geni_urn']
301     overall['pl_login'] = results[0]['pl_login']
302     # append all geni_resources
303     overall['geni_resources'] = \
304         reduce (lambda x,y: x+y, [ result['geni_resources'] for result in results] , [])
305     overall['status'] = 'unknown'
306     if overall['geni_resources']:
307         overall['status'] = 'ready'
308
309     return overall
310
311 caching=True
312 #caching=False
313 def ListSlices(api, creds, call_id):
314     def _ListSlices(server, creds, call_id):
315         server_version = _get_server_version(api, server)
316         args =  [creds]
317         if _call_id_supported(api, server):
318             args.append(call_id)
319         return server.ListSlices(*args)
320
321     if Callids().already_handled(call_id): return []
322
323     # look in cache first
324     if caching and api.cache:
325         slices = api.cache.get('slices')
326         if slices:
327             return slices
328
329     # get the callers hrn
330     valid_cred = api.auth.checkCredentials(creds, 'listslices', None)[0]
331     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
332
333     # attempt to use delegated credential first
334     credential = api.getDelegatedCredential(creds)
335     if not credential:
336         credential = api.getCredential()
337     threads = ThreadManager()
338     # fetch from aggregates
339     for aggregate in api.aggregates:
340         # prevent infinite loop. Dont send request back to caller
341         # unless the caller is the aggregate's SM
342         if caller_hrn == aggregate and aggregate != api.hrn:
343             continue
344         server = api.aggregates[aggregate]
345         threads.run(_ListSlices, server, credential, call_id)
346
347     # combime results
348     results = threads.get_results()
349     slices = []
350     for result in results:
351         slices.extend(result)
352
353     # cache the result
354     if caching and api.cache:
355         api.cache.add('slices', slices)
356
357     return slices
358
359
360 def get_ticket(api, xrn, creds, rspec, users):
361     slice_hrn, type = urn_to_hrn(xrn)
362     # get the netspecs contained within the clients rspec
363     aggregate_rspecs = {}
364     tree= etree.parse(StringIO(rspec))
365     elements = tree.findall('./network')
366     for element in elements:
367         aggregate_hrn = element.values()[0]
368         aggregate_rspecs[aggregate_hrn] = rspec 
369
370     # get the callers hrn
371     valid_cred = api.auth.checkCredentials(creds, 'getticket', slice_hrn)[0]
372     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
373
374     # attempt to use delegated credential first
375     credential = api.getDelegatedCredential(creds)
376     if not credential:
377         credential = api.getCredential() 
378     threads = ThreadManager()
379     for (aggregate, aggregate_rspec) in aggregate_rspecs.iteritems():
380         # prevent infinite loop. Dont send request back to caller
381         # unless the caller is the aggregate's SM
382         if caller_hrn == aggregate and aggregate != api.hrn:
383             continue
384         server = None
385         if aggregate in api.aggregates:
386             server = api.aggregates[aggregate]
387         else:
388             net_urn = hrn_to_urn(aggregate, 'authority')     
389             # we may have a peer that knows about this aggregate
390             for agg in api.aggregates:
391                 target_aggs = api.aggregates[agg].get_aggregates(credential, net_urn)
392                 if not target_aggs or not 'hrn' in target_aggs[0]:
393                     continue
394                 # send the request to this address 
395                 url = target_aggs[0]['url']
396                 server = xmlrpcprotocol.get_server(url, api.key_file, api.cert_file)
397                 # aggregate found, no need to keep looping
398                 break   
399         if server is None:
400             continue 
401         threads.run(server.GetTicket, xrn, credential, aggregate_rspec, users)
402
403     results = threads.get_results()
404     
405     # gather information from each ticket 
406     rspecs = []
407     initscripts = []
408     slivers = [] 
409     object_gid = None  
410     for result in results:
411         agg_ticket = SfaTicket(string=result)
412         attrs = agg_ticket.get_attributes()
413         if not object_gid:
414             object_gid = agg_ticket.get_gid_object()
415         rspecs.append(agg_ticket.get_rspec())
416         initscripts.extend(attrs.get('initscripts', [])) 
417         slivers.extend(attrs.get('slivers', [])) 
418     
419     # merge info
420     attributes = {'initscripts': initscripts,
421                  'slivers': slivers}
422     merged_rspec = merge_rspecs(rspecs) 
423
424     # create a new ticket
425     ticket = SfaTicket(subject = slice_hrn)
426     ticket.set_gid_caller(api.auth.client_gid)
427     ticket.set_issuer(key=api.key, subject=api.hrn)
428     ticket.set_gid_object(object_gid)
429     ticket.set_pubkey(object_gid.get_pubkey())
430     #new_ticket.set_parent(api.auth.hierarchy.get_auth_ticket(auth_hrn))
431     ticket.set_attributes(attributes)
432     ticket.set_rspec(merged_rspec)
433     ticket.encode()
434     ticket.sign()          
435     return ticket.save_to_string(save_parents=True)
436
437 def start_slice(api, xrn, creds):
438     hrn, type = urn_to_hrn(xrn)
439
440     # get the callers hrn
441     valid_cred = api.auth.checkCredentials(creds, 'startslice', hrn)[0]
442     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
443
444     # attempt to use delegated credential first
445     credential = api.getDelegatedCredential(creds)
446     if not credential:
447         credential = api.getCredential()
448     threads = ThreadManager()
449     for aggregate in api.aggregates:
450         # prevent infinite loop. Dont send request back to caller
451         # unless the caller is the aggregate's SM
452         if caller_hrn == aggregate and aggregate != api.hrn:
453             continue
454         server = api.aggregates[aggregate]
455         threads.run(server.Start, xrn, credential)
456     threads.get_results()    
457     return 1
458  
459 def stop_slice(api, xrn, creds):
460     hrn, type = urn_to_hrn(xrn)
461
462     # get the callers hrn
463     valid_cred = api.auth.checkCredentials(creds, 'stopslice', hrn)[0]
464     caller_hrn = Credential(string=valid_cred).get_gid_caller().get_hrn()
465
466     # attempt to use delegated credential first
467     credential = api.getDelegatedCredential(creds)
468     if not credential:
469         credential = api.getCredential()
470     threads = ThreadManager()
471     for aggregate in api.aggregates:
472         # prevent infinite loop. Dont send request back to caller
473         # unless the caller is the aggregate's SM
474         if caller_hrn == aggregate and aggregate != api.hrn:
475             continue
476         server = api.aggregates[aggregate]
477         threads.run(server.Stop, xrn, credential)
478     threads.get_results()    
479     return 1
480
481 def reset_slice(api, xrn):
482     """
483     Not implemented
484     """
485     return 1
486
487 def shutdown(api, xrn, creds):
488     """
489     Not implemented   
490     """
491     return 1
492
493 def status(api, xrn, creds):
494     """
495     Not implemented 
496     """
497     return 1
498
499 def main():
500     r = RSpec()
501     r.parseFile(sys.argv[1])
502     rspec = r.toDict()
503     CreateSliver(None,'plc.princeton.tmacktestslice',rspec,'create-slice-tmacktestslice')
504
505 if __name__ == "__main__":
506     main()
507