-m workaround for instance public ip bug
[sfa.git] / sfa / openstack / osaggregate.py
1
2 import os
3 import socket
4 import base64
5 import string
6 import random    
7 from collections import defaultdict
8 from nova.exception import ImageNotFound
9 from nova.api.ec2.cloud import CloudController
10 from sfa.util.faults import SfaAPIError
11 from sfa.rspecs.rspec import RSpec
12 from sfa.rspecs.elements.hardware_type import HardwareType
13 from sfa.rspecs.elements.node import Node
14 from sfa.rspecs.elements.sliver import Sliver
15 from sfa.rspecs.elements.login import Login
16 from sfa.rspecs.elements.disk_image import DiskImage
17 from sfa.rspecs.elements.services import Services
18 from sfa.rspecs.elements.interface import Interface
19 from sfa.util.xrn import Xrn
20 from sfa.planetlab.plxrn import PlXrn 
21 from sfa.openstack.osxrn import OSXrn, hrn_to_os_slicename
22 from sfa.rspecs.version_manager import VersionManager
23 from sfa.openstack.security_group import SecurityGroup
24 from sfa.util.sfalogging import logger
25
26 def pubkeys_to_user_data(pubkeys):
27     user_data = "#!/bin/bash\n\n"
28     for pubkey in pubkeys:
29         pubkey = pubkey.replace('\n', '')
30         user_data += "echo %s >> /root/.ssh/authorized_keys" % pubkey
31         user_data += "\n"
32         user_data += "echo >> /root/.ssh/authorized_keys"
33         user_data += "\n"
34     return user_data
35
36 def instance_to_sliver(instance, slice_xrn=None):
37     sliver_id = None
38     if slice_xrn:
39         xrn = Xrn(slice_xrn, 'slice')
40         sliver_id = xrn.get_sliver_id(instance.project_id, instance.hostname, instance.id)
41
42     sliver = Sliver({'slice_id': sliver_id,
43                      'name': instance.name,
44                      'type': instance.name,
45                      'cpus': str(instance.vcpus),
46                      'memory': str(instance.ram),
47                      'storage':  str(instance.disk)})
48     return sliver
49
50 def image_to_rspec_disk_image(image):
51     img = DiskImage()
52     img['name'] = image['name']
53     img['description'] = image['name']
54     img['os'] = image['name']
55     img['version'] = image['name']    
56     return img
57     
58 class OSAggregate:
59
60     def __init__(self, driver):
61         self.driver = driver
62
63     def get_rspec(self, slice_xrn=None, version=None, options={}):
64         version_manager = VersionManager()
65         version = version_manager.get_version(version)
66         if not slice_xrn:
67             rspec_version = version_manager._get_version(version.type, version.version, 'ad')
68             nodes = self.get_aggregate_nodes()
69         else:
70             rspec_version = version_manager._get_version(version.type, version.version, 'manifest')
71             nodes = self.get_slice_nodes(slice_xrn)
72         rspec = RSpec(version=rspec_version, user_options=options)
73         rspec.version.add_nodes(nodes)
74         return rspec.toxml()
75
76     def get_availability_zones(self):
77         # essex release
78         zones = self.driver.shell.nova_manager.dns_domains.domains()
79
80         if not zones:
81             zones = ['cloud']
82         else:
83             zones = [zone.name for zone in zones]
84         return zones
85
86     def get_slice_nodes(self, slice_xrn):
87         # update nova connection
88         tenant_name = OSXrn(xrn=slice_xrn, type='slice').get_tenant_name()
89         self.driver.shell.nova_manager.connect(tenant=tenant_name)    
90         
91         zones = self.get_availability_zones()
92         name = hrn_to_os_slicename(slice_xrn)
93         instances = self.driver.shell.nova_manager.servers.findall(name=name)
94         rspec_nodes = []
95         for instance in instances:
96             rspec_node = Node()
97             
98             #TODO: find a way to look up an instances availability zone in essex
99             #if instance.availability_zone:
100             #    node_xrn = OSXrn(instance.availability_zone, 'node')
101             #else:
102             #    node_xrn = OSXrn('cloud', 'node')
103             node_xrn = instance.metadata.get('component_id')
104             node_xrn
105             if not node_xrn:
106                 node_xrn = OSXrn('cloud', type='node')
107             else:
108                 node_xrn = OSXrn(xrn=node_xrn, type='node') 
109
110             rspec_node['component_id'] = node_xrn.urn
111             rspec_node['component_name'] = node_xrn.name
112             rspec_node['component_manager_id'] = Xrn(self.driver.hrn, 'authority+cm').get_urn()
113             flavor = self.driver.shell.nova_manager.flavors.find(id=instance.flavor['id'])
114             sliver = instance_to_sliver(flavor)
115             rspec_node['slivers'] = [sliver]
116             image = self.driver.shell.image_manager.get_images(id=instance.image['id'])
117             if isinstance(image, list) and len(image) > 0:
118                 image = image[0]
119             disk_image = image_to_rspec_disk_image(image)
120             sliver['disk_image'] = [disk_image]
121
122             # build interfaces            
123             rspec_node['services'] = []
124             rspec_node['interfaces'] = []
125             addresses = instance.addresses
126             # HACK: public ips are stored in the list of private, but 
127             # this seems wrong. Assume pub ip is the last in the list of 
128             # private ips until openstack bug is fixed.      
129             if addresses.get('private'):
130                 login = Login({'authentication': 'ssh-keys',
131                                'hostname': addresses.get('private')[-1]['addr'],
132                                'port':'22', 'username': 'root'})
133                 service = Services({'login': login})
134                 rspec_node['services'].append(service)    
135             
136             for private_ip in addresses.get('private', []):
137                 if_xrn = PlXrn(auth=self.driver.hrn, 
138                                interface='node%s:eth0' % (instance.hostId)) 
139                 interface = Interface({'component_id': if_xrn.urn})
140                 interface['ips'] =  [{'address': private_ip['addr'],
141                                      #'netmask': private_ip['network'],
142                                      'type': private_ip['version']}]
143                 rspec_node['interfaces'].append(interface) 
144             
145             # slivers always provide the ssh service
146             for public_ip in addresses.get('public', []):
147                 login = Login({'authentication': 'ssh-keys', 
148                                'hostname': public_ip['addr'], 
149                                'port':'22', 'username': 'root'})
150                 service = Services({'login': login})
151                 rspec_node['services'].append(service)
152             rspec_nodes.append(rspec_node)
153         return rspec_nodes
154
155     def get_aggregate_nodes(self):
156         zones = self.get_availability_zones()
157         # available sliver/instance/vm types
158         instances = self.driver.shell.nova_manager.flavors.list()
159         if isinstance(instances, dict):
160             instances = instances.values()
161         # available images
162         images = self.driver.shell.image_manager.get_images_detailed()
163         disk_images  = [image_to_rspec_disk_image(img) for img in images if img['container_format'] in ['ami', 'ovf']]
164         rspec_nodes = []
165         for zone in zones:
166             rspec_node = Node()
167             xrn = OSXrn(zone, type='node')
168             rspec_node['component_id'] = xrn.urn
169             rspec_node['component_name'] = xrn.name
170             rspec_node['component_manager_id'] = Xrn(self.driver.hrn, 'authority+cm').get_urn()
171             rspec_node['exclusive'] = 'false'
172             rspec_node['hardware_types'] = [HardwareType({'name': 'plos-pc'}),
173                                                 HardwareType({'name': 'pc'})]
174             slivers = []
175             for instance in instances:
176                 sliver = instance_to_sliver(instance)
177                 sliver['disk_image'] = disk_images
178                 slivers.append(sliver)
179         
180             rspec_node['slivers'] = slivers
181             rspec_nodes.append(rspec_node) 
182
183         return rspec_nodes 
184
185
186     def create_tenant(self, tenant_name):
187         tenants = self.driver.shell.auth_manager.tenants.findall(name=tenant_name)
188         if not tenants:
189             self.driver.shell.auth_manager.tenants.create(tenant_name, tenant_name)
190             tenant = self.driver.shell.auth_manager.tenants.find(name=tenant_name)
191         else:
192             tenant = tenants[0]
193         return tenant
194             
195
196     def create_instance_key(self, slice_hrn, user):
197         slice_name = Xrn(slice_hrn).leaf
198         user_name = Xrn(user['urn']).leaf
199         key_name = "%s_%s" % (slice_name, user_name)
200         pubkey = user['keys'][0]
201         key_found = False
202         existing_keys = self.driver.shell.nova_manager.keypairs.findall(name=key_name)
203         for existing_key in existing_keys:
204             if existing_key.public_key != pubkey:
205                 self.driver.shell.nova_manager.keypairs.delete(existing_key)
206             elif existing_key.public_key == pubkey:
207                 key_found = True
208
209         if not key_found:
210             self.driver.shell.nova_manager.keypairs.create(key_name, pubkey)
211         return key_name       
212         
213
214     def create_security_group(self, slicename, fw_rules=[]):
215         # use default group by default
216         group_name = 'default' 
217         if isinstance(fw_rules, list) and fw_rules:
218             # Each sliver get's its own security group.
219             # Keep security group names unique by appending some random
220             # characters on end.
221             random_name = "".join([random.choice(string.letters+string.digits)
222                                            for i in xrange(6)])
223             group_name = slicename + random_name 
224             security_group = SecurityGroup(self.driver)
225             security_group.create_security_group(group_name)
226             for rule in fw_rules:
227                 security_group.add_rule_to_group(group_name, 
228                                              protocol = rule.get('protocol'), 
229                                              cidr_ip = rule.get('cidr_ip'), 
230                                              port_range = rule.get('port_range'), 
231                                              icmp_type_code = rule.get('icmp_type_code'))
232         return group_name
233
234     def add_rule_to_security_group(self, group_name, **kwds):
235         security_group = SecurityGroup(self.driver)
236         security_group.add_rule_to_group(group_name=group_name, 
237                                          protocol=kwds.get('protocol'), 
238                                          cidr_ip =kwds.get('cidr_ip'), 
239                                          icmp_type_code = kwds.get('icmp_type_code'))
240
241  
242
243     def run_instances(self, instance_name, tenant_name, rspec, key_name, pubkeys):
244         #logger.debug('Reserving an instance: image: %s, flavor: ' \
245         #            '%s, key: %s, name: %s' % \
246         #            (image_id, flavor_id, key_name, slicename))
247
248         # make sure a tenant exists for this slice
249         tenant = self.create_tenant(tenant_name)  
250
251         # add the sfa admin user to this tenant and update our nova client connection
252         # to use these credentials for the rest of this session. This emsures that the instances
253         # we create will be assigned to the correct tenant.
254         sfa_admin_user = self.driver.shell.auth_manager.users.find(name=self.driver.shell.auth_manager.opts['OS_USERNAME'])
255         user_role = self.driver.shell.auth_manager.roles.find(name='user')
256         admin_role = self.driver.shell.auth_manager.roles.find(name='admin')
257         self.driver.shell.auth_manager.roles.add_user_role(sfa_admin_user, admin_role, tenant)
258         self.driver.shell.auth_manager.roles.add_user_role(sfa_admin_user, user_role, tenant)
259         self.driver.shell.nova_manager.connect(tenant=tenant.name)  
260
261         authorized_keys = "\n".join(pubkeys)
262         files = {'/root/.ssh/authorized_keys': authorized_keys}
263         rspec = RSpec(rspec)
264         requested_instances = defaultdict(list)
265         # iterate over clouds/zones/nodes
266         for node in rspec.version.get_nodes_with_slivers():
267             instances = node.get('slivers', [])
268             if not instances:
269                 continue
270             for instance in instances:
271                 try: 
272                     metadata = {}
273                     flavor_id = self.driver.shell.nova_manager.flavors.find(name=instance['name'])
274                     image = instance.get('disk_image')
275                     if image and isinstance(image, list):
276                         image = image[0]
277                     image_id = self.driver.shell.nova_manager.images.find(name=image['name'])
278                     fw_rules = instance.get('fw_rules', [])
279                     group_name = self.create_security_group(instance_name, fw_rules)
280                     metadata['security_groups'] = group_name
281                     if node.get('component_id'):
282                         metadata['component_id'] = node['component_id']
283                     self.driver.shell.nova_manager.servers.create(flavor=flavor_id,
284                                                             image=image_id,
285                                                             key_name = key_name,
286                                                             security_groups = [group_name],
287                                                             files=files,
288                                                             meta=metadata, 
289                                                             name=instance_name)
290                 except Exception, err:    
291                     logger.log_exc(err)                                
292                            
293
294
295     def delete_instances(self, instance_name, tenant_name):
296         self.driver.shell.nova_manager.connect(tenant=tenant_name)
297         instances = self.driver.shell.nova_manager.servers.findall(name=instance_name)
298         security_group_manager = SecurityGroup(self.driver)
299         for instance in instances:
300             # deleate this instance's security groups
301             security_group = instance.metadata.get('security_groups', '')
302             if security_group:
303                 # dont delete the default security group
304                 if security_group != 'default': 
305                     security_group_manager.delete_security_group(security_group)
306             # destroy instance
307             self.driver.shell.nova_manager.servers.delete(instance)
308         return 1
309
310     def stop_instances(self, instance_name, tenant_name):
311         self.driver.shell.nova_manager.connect(tenant=tenant_name)
312         instances = self.driver.shell.nova_manager.servers.findall(name=instance_name)
313         for instance in instances:
314             self.driver.shell.nova_manager.servers.pause(instance)
315         return 1
316
317     def update_instances(self, project_name):
318         pass