| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 1 | from django.db import models |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 2 | from core.models import PlCoreBase,SingletonModel,PlCoreBaseManager |
| Tony Mack | d84b1ff | 2015-03-09 13:03:56 -0400 | [diff] [blame] | 3 | from core.models.plcorebase import StrippedCharField |
| Scott Baker | d921e1c | 2015-04-20 14:24:29 -0700 | [diff] [blame] | 4 | from xos.exceptions import * |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 5 | from operator import attrgetter |
| Scott Baker | f57e559 | 2015-04-14 17:18:51 -0700 | [diff] [blame] | 6 | import json |
| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 7 | |
| Scott Baker | 2461bec | 2015-08-14 09:10:11 -0700 | [diff] [blame] | 8 | COARSE_KIND="coarse" |
| 9 | |
| Scott Baker | 82498c5 | 2015-07-13 13:07:27 -0700 | [diff] [blame] | 10 | class AttributeMixin(object): |
| 11 | # helper for extracting things from a json-encoded service_specific_attribute |
| 12 | def get_attribute(self, name, default=None): |
| 13 | if self.service_specific_attribute: |
| 14 | attributes = json.loads(self.service_specific_attribute) |
| 15 | else: |
| 16 | attributes = {} |
| 17 | return attributes.get(name, default) |
| 18 | |
| 19 | def set_attribute(self, name, value): |
| 20 | if self.service_specific_attribute: |
| 21 | attributes = json.loads(self.service_specific_attribute) |
| 22 | else: |
| 23 | attributes = {} |
| 24 | attributes[name]=value |
| 25 | self.service_specific_attribute = json.dumps(attributes) |
| 26 | |
| 27 | def get_initial_attribute(self, name, default=None): |
| 28 | if self._initial["service_specific_attribute"]: |
| 29 | attributes = json.loads(self._initial["service_specific_attribute"]) |
| 30 | else: |
| 31 | attributes = {} |
| 32 | return attributes.get(name, default) |
| 33 | |
| Scott Baker | 74404fe | 2015-07-13 13:54:06 -0700 | [diff] [blame] | 34 | @classmethod |
| 35 | def setup_simple_attributes(cls): |
| 36 | for (attrname, default) in cls.simple_attributes: |
| Scott Baker | 096dce8 | 2015-07-13 14:27:51 -0700 | [diff] [blame] | 37 | setattr(cls, attrname, property(lambda self, attrname=attrname, default=default: self.get_attribute(attrname, default), |
| 38 | lambda self, value, attrname=attrname: self.set_attribute(attrname, value), |
| 39 | None, |
| 40 | attrname)) |
| Scott Baker | 74404fe | 2015-07-13 13:54:06 -0700 | [diff] [blame] | 41 | |
| Scott Baker | 82498c5 | 2015-07-13 13:07:27 -0700 | [diff] [blame] | 42 | class Service(PlCoreBase, AttributeMixin): |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 43 | # when subclassing a service, redefine KIND to describe the new service |
| 44 | KIND = "generic" |
| 45 | |
| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 46 | description = models.TextField(max_length=254,null=True, blank=True,help_text="Description of Service") |
| 47 | enabled = models.BooleanField(default=True) |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 48 | kind = StrippedCharField(max_length=30, help_text="Kind of service", default=KIND) |
| Tony Mack | d84b1ff | 2015-03-09 13:03:56 -0400 | [diff] [blame] | 49 | name = StrippedCharField(max_length=30, help_text="Service Name") |
| 50 | versionNumber = StrippedCharField(max_length=30, help_text="Version of Service Definition") |
| Siobhan Tully | cf04fb6 | 2014-01-11 11:25:57 -0500 | [diff] [blame] | 51 | published = models.BooleanField(default=True) |
| Tony Mack | d84b1ff | 2015-03-09 13:03:56 -0400 | [diff] [blame] | 52 | view_url = StrippedCharField(blank=True, null=True, max_length=1024) |
| 53 | icon_url = StrippedCharField(blank=True, null=True, max_length=1024) |
| Scott Baker | 6894474 | 2015-04-30 14:30:56 -0700 | [diff] [blame] | 54 | public_key = models.TextField(null=True, blank=True, max_length=1024, help_text="Public key string") |
| Scott Baker | f60c010 | 2015-11-12 16:22:52 -0800 | [diff] [blame] | 55 | private_key_fn = StrippedCharField(blank=True, null=True, max_length=1024) |
| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 56 | |
| Scott Baker | 2f0828e | 2015-07-13 12:33:28 -0700 | [diff] [blame] | 57 | # Service_specific_attribute and service_specific_id are opaque to XOS |
| 58 | service_specific_id = StrippedCharField(max_length=30, blank=True, null=True) |
| 59 | service_specific_attribute = models.TextField(blank=True, null=True) |
| 60 | |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 61 | def __init__(self, *args, **kwargs): |
| 62 | # for subclasses, set the default kind appropriately |
| 63 | self._meta.get_field("kind").default = self.KIND |
| 64 | super(Service, self).__init__(*args, **kwargs) |
| 65 | |
| 66 | @classmethod |
| 67 | def get_service_objects(cls): |
| 68 | return cls.objects.filter(kind = cls.KIND) |
| 69 | |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 70 | @classmethod |
| Scott Baker | 542cd6f | 2015-10-19 21:18:53 -0700 | [diff] [blame] | 71 | def get_deleted_service_objects(cls): |
| 72 | return cls.deleted_objects.filter(kind = cls.KIND) |
| 73 | |
| 74 | @classmethod |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 75 | def get_service_objects_by_user(cls, user): |
| 76 | return cls.select_by_user(user).filter(kind = cls.KIND) |
| 77 | |
| 78 | @classmethod |
| 79 | def select_by_user(cls, user): |
| 80 | if user.is_admin: |
| 81 | return cls.objects.all() |
| 82 | else: |
| 83 | service_ids = [sp.slice.id for sp in ServicePrivilege.objects.filter(user=user)] |
| 84 | return cls.objects.filter(id__in=service_ids) |
| 85 | |
| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 86 | def __unicode__(self): return u'%s' % (self.name) |
| 87 | |
| Tony Mack | 9d2ea09 | 2015-04-29 12:23:10 -0400 | [diff] [blame] | 88 | def can_update(self, user): |
| 89 | return user.can_update_service(self, allow=['admin']) |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 90 | |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 91 | def get_scalable_nodes(self, slice, max_per_node=None, exclusive_slices=[]): |
| 92 | """ |
| 93 | Get a list of nodes that can be used to scale up a slice. |
| 94 | |
| 95 | slice - slice to scale up |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 96 | max_per_node - maximum numbers of instances that 'slice' can have on a single node |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 97 | exclusive_slices - list of slices that must have no nodes in common with 'slice'. |
| 98 | """ |
| 99 | |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 100 | from core.models import Node, Instance # late import to get around order-of-imports constraint in __init__.py |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 101 | |
| 102 | nodes = list(Node.objects.all()) |
| 103 | |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 104 | conflicting_instances = Instance.objects.filter(slice__in = exclusive_slices) |
| 105 | conflicting_nodes = Node.objects.filter(instances__in = conflicting_instances) |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 106 | |
| 107 | nodes = [x for x in nodes if x not in conflicting_nodes] |
| 108 | |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 109 | # If max_per_node is set, then limit the number of instances this slice |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 110 | # can have on a single node. |
| 111 | if max_per_node: |
| 112 | acceptable_nodes = [] |
| 113 | for node in nodes: |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 114 | existing_count = node.instances.filter(slice=slice).count() |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 115 | if existing_count < max_per_node: |
| 116 | acceptable_nodes.append(node) |
| 117 | nodes = acceptable_nodes |
| 118 | |
| 119 | return nodes |
| 120 | |
| 121 | def pick_node(self, slice, max_per_node=None, exclusive_slices=[]): |
| 122 | # Pick the best node to scale up a slice. |
| 123 | |
| 124 | nodes = self.get_scalable_nodes(slice, max_per_node, exclusive_slices) |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 125 | nodes = sorted(nodes, key=lambda node: node.instances.all().count()) |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 126 | if not nodes: |
| 127 | return None |
| 128 | return nodes[0] |
| 129 | |
| 130 | def adjust_scale(self, slice_hint, scale, max_per_node=None, exclusive_slices=[]): |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 131 | from core.models import Instance # late import to get around order-of-imports constraint in __init__.py |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 132 | |
| 133 | slices = [x for x in self.slices.all() if slice_hint in x.name] |
| 134 | for slice in slices: |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 135 | while slice.instances.all().count() > scale: |
| 136 | s = slice.instances.all()[0] |
| 137 | # print "drop instance", s |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 138 | s.delete() |
| 139 | |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 140 | while slice.instances.all().count() < scale: |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 141 | node = self.pick_node(slice, max_per_node, exclusive_slices) |
| 142 | if not node: |
| 143 | # no more available nodes |
| 144 | break |
| 145 | |
| 146 | image = slice.default_image |
| 147 | if not image: |
| 148 | raise XOSConfigurationError("No default_image for slice %s" % slice.name) |
| 149 | |
| 150 | flavor = slice.default_flavor |
| 151 | if not flavor: |
| 152 | raise XOSConfigurationError("No default_flavor for slice %s" % slice.name) |
| 153 | |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 154 | s = Instance(slice=slice, |
| Scott Baker | 9843673 | 2015-05-11 16:36:41 -0700 | [diff] [blame] | 155 | node=node, |
| 156 | creator=slice.creator, |
| 157 | image=image, |
| 158 | flavor=flavor, |
| 159 | deployment=node.site_deployment.deployment) |
| 160 | s.save() |
| 161 | |
| Tony Mack | 3de59e3 | 2015-08-19 11:58:18 -0400 | [diff] [blame] | 162 | # print "add instance", s |
| Tony Mack | 9d2ea09 | 2015-04-29 12:23:10 -0400 | [diff] [blame] | 163 | |
| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 164 | class ServiceAttribute(PlCoreBase): |
| 165 | name = models.SlugField(help_text="Attribute Name", max_length=128) |
| Tony Mack | d84b1ff | 2015-03-09 13:03:56 -0400 | [diff] [blame] | 166 | value = StrippedCharField(help_text="Attribute Value", max_length=1024) |
| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 167 | service = models.ForeignKey(Service, related_name='serviceattributes', help_text="The Service this attribute is associated with") |
| 168 | |
| Tony Mack | 9d2ea09 | 2015-04-29 12:23:10 -0400 | [diff] [blame] | 169 | class ServiceRole(PlCoreBase): |
| 170 | ROLE_CHOICES = (('admin','Admin'),) |
| 171 | role = StrippedCharField(choices=ROLE_CHOICES, unique=True, max_length=30) |
| 172 | |
| 173 | def __unicode__(self): return u'%s' % (self.role) |
| 174 | |
| 175 | class ServicePrivilege(PlCoreBase): |
| 176 | user = models.ForeignKey('User', related_name='serviceprivileges') |
| 177 | service = models.ForeignKey('Service', related_name='serviceprivileges') |
| 178 | role = models.ForeignKey('ServiceRole',related_name='serviceprivileges') |
| 179 | |
| 180 | class Meta: |
| Tony Mack | 9ec754e | 2015-05-13 12:21:28 -0400 | [diff] [blame] | 181 | unique_together = ('user', 'service', 'role') |
| Tony Mack | 9d2ea09 | 2015-04-29 12:23:10 -0400 | [diff] [blame] | 182 | |
| 183 | def __unicode__(self): return u'%s %s %s' % (self.service, self.user, self.role) |
| 184 | |
| 185 | def can_update(self, user): |
| 186 | if not self.service.enabled: |
| 187 | raise PermissionDenied, "Cannot modify permission(s) of a disabled service" |
| 188 | return self.service.can_update(user) |
| 189 | |
| 190 | def save(self, *args, **kwds): |
| 191 | if not self.service.enabled: |
| 192 | raise PermissionDenied, "Cannot modify permission(s) of a disabled service" |
| 193 | super(ServicePrivilege, self).save(*args, **kwds) |
| 194 | |
| 195 | def delete(self, *args, **kwds): |
| 196 | if not self.service.enabled: |
| 197 | raise PermissionDenied, "Cannot modify permission(s) of a disabled service" |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 198 | super(ServicePrivilege, self).delete(*args, **kwds) |
| 199 | |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 200 | @classmethod |
| 201 | def select_by_user(cls, user): |
| Tony Mack | 9d2ea09 | 2015-04-29 12:23:10 -0400 | [diff] [blame] | 202 | if user.is_admin: |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 203 | qs = cls.objects.all() |
| Tony Mack | 9d2ea09 | 2015-04-29 12:23:10 -0400 | [diff] [blame] | 204 | else: |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 205 | qs = cls.objects.filter(user=user) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 206 | return qs |
| 207 | |
| Scott Baker | 82498c5 | 2015-07-13 13:07:27 -0700 | [diff] [blame] | 208 | class TenantRoot(PlCoreBase, AttributeMixin): |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 209 | """ A tenantRoot is one of the things that can sit at the root of a chain |
| 210 | of tenancy. This object represents a node. |
| 211 | """ |
| 212 | |
| 213 | KIND= "generic" |
| 214 | kind = StrippedCharField(max_length=30, default=KIND) |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 215 | name = StrippedCharField(max_length=255, help_text="name", blank=True, null=True) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 216 | |
| Scott Baker | efcec63 | 2015-07-07 12:12:42 -0700 | [diff] [blame] | 217 | service_specific_attribute = models.TextField(blank=True, null=True) |
| 218 | service_specific_id = StrippedCharField(max_length=30, blank=True, null=True) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 219 | |
| Scott Baker | db66fd3 | 2015-07-07 17:59:44 -0700 | [diff] [blame] | 220 | def __init__(self, *args, **kwargs): |
| 221 | # for subclasses, set the default kind appropriately |
| 222 | self._meta.get_field("kind").default = self.KIND |
| 223 | super(TenantRoot, self).__init__(*args, **kwargs) |
| 224 | |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 225 | def __unicode__(self): |
| 226 | if not self.name: |
| 227 | return u"%s-tenant_root-#%s" % (str(self.kind), str(self.id)) |
| 228 | else: |
| 229 | return self.name |
| 230 | |
| 231 | def can_update(self, user): |
| 232 | return user.can_update_tenant_root(self, allow=['admin']) |
| 233 | |
| Scott Baker | efcec63 | 2015-07-07 12:12:42 -0700 | [diff] [blame] | 234 | def get_subscribed_tenants(self, tenant_class): |
| 235 | ids = self.subscribed_tenants.filter(kind=tenant_class.KIND) |
| 236 | return tenant_class.objects.filter(id__in = ids) |
| 237 | |
| 238 | def get_newest_subscribed_tenant(self, kind): |
| 239 | st = list(self.get_subscribed_tenants(kind)) |
| 240 | if not st: |
| 241 | return None |
| 242 | return sorted(st, key=attrgetter('id'))[0] |
| 243 | |
| 244 | @classmethod |
| 245 | def get_tenant_objects(cls): |
| 246 | return cls.objects.filter(kind = cls.KIND) |
| 247 | |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 248 | @classmethod |
| 249 | def get_tenant_objects_by_user(cls, user): |
| 250 | return cls.select_by_user(user).filter(kind = cls.KIND) |
| 251 | |
| 252 | @classmethod |
| 253 | def select_by_user(cls, user): |
| 254 | if user.is_admin: |
| 255 | return cls.objects.all() |
| 256 | else: |
| 257 | tr_ids = [trp.tenant_root.id for trp in TenantRootPrivilege.objects.filter(user=user)] |
| 258 | return cls.objects.filter(id__in=tr_ids) |
| 259 | |
| Scott Baker | 82498c5 | 2015-07-13 13:07:27 -0700 | [diff] [blame] | 260 | class Tenant(PlCoreBase, AttributeMixin): |
| Scott Baker | 8103d0f | 2015-04-10 16:42:26 -0700 | [diff] [blame] | 261 | """ A tenant is a relationship between two entities, a subscriber and a |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 262 | provider. This object represents an edge. |
| Scott Baker | 8103d0f | 2015-04-10 16:42:26 -0700 | [diff] [blame] | 263 | |
| 264 | The subscriber can be a User, a Service, or a Tenant. |
| 265 | |
| 266 | The provider is always a Service. |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 267 | |
| 268 | TODO: rename "Tenant" to "Tenancy" |
| Scott Baker | 8103d0f | 2015-04-10 16:42:26 -0700 | [diff] [blame] | 269 | """ |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 270 | |
| Scott Baker | 925a8fa | 2015-04-26 20:30:40 -0700 | [diff] [blame] | 271 | CONNECTIVITY_CHOICES = (('public', 'Public'), ('private', 'Private'), ('na', 'Not Applicable')) |
| 272 | |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 273 | # when subclassing a service, redefine KIND to describe the new service |
| 274 | KIND = "generic" |
| 275 | |
| 276 | kind = StrippedCharField(max_length=30, default=KIND) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 277 | provider_service = models.ForeignKey(Service, related_name='provided_tenants') |
| 278 | |
| 279 | # The next four things are the various type of objects that can be subscribers of this Tenancy |
| 280 | # relationship. One and only one can be used at a time. |
| 281 | subscriber_service = models.ForeignKey(Service, related_name='subscribed_tenants', blank=True, null=True) |
| 282 | subscriber_tenant = models.ForeignKey("Tenant", related_name='subscribed_tenants', blank=True, null=True) |
| 283 | subscriber_user = models.ForeignKey("User", related_name='subscribed_tenants', blank=True, null=True) |
| 284 | subscriber_root = models.ForeignKey("TenantRoot", related_name="subscribed_tenants", blank=True, null=True) |
| 285 | |
| 286 | # Service_specific_attribute and service_specific_id are opaque to XOS |
| Scott Baker | 76934d8 | 2015-05-06 19:49:31 -0700 | [diff] [blame] | 287 | service_specific_id = StrippedCharField(max_length=30, blank=True, null=True) |
| 288 | service_specific_attribute = models.TextField(blank=True, null=True) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 289 | |
| 290 | # Connect_method is only used by Coarse tenants |
| Scott Baker | 925a8fa | 2015-04-26 20:30:40 -0700 | [diff] [blame] | 291 | connect_method = models.CharField(null=False, blank=False, max_length=30, choices=CONNECTIVITY_CHOICES, default="na") |
| Scott Baker | 8103d0f | 2015-04-10 16:42:26 -0700 | [diff] [blame] | 292 | |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 293 | def __init__(self, *args, **kwargs): |
| 294 | # for subclasses, set the default kind appropriately |
| 295 | self._meta.get_field("kind").default = self.KIND |
| 296 | super(Tenant, self).__init__(*args, **kwargs) |
| 297 | |
| Scott Baker | 8103d0f | 2015-04-10 16:42:26 -0700 | [diff] [blame] | 298 | def __unicode__(self): |
| Scott Baker | f996b76 | 2015-05-20 20:42:04 -0700 | [diff] [blame] | 299 | return u"%s-tenant-%s" % (str(self.kind), str(self.id)) |
| Scott Baker | 8103d0f | 2015-04-10 16:42:26 -0700 | [diff] [blame] | 300 | |
| Scott Baker | 008a996 | 2015-04-15 20:58:20 -0700 | [diff] [blame] | 301 | @classmethod |
| 302 | def get_tenant_objects(cls): |
| 303 | return cls.objects.filter(kind = cls.KIND) |
| 304 | |
| Scott Baker | e7fc9f5 | 2015-05-05 17:52:03 -0700 | [diff] [blame] | 305 | @classmethod |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 306 | def get_tenant_objects_by_user(cls, user): |
| 307 | return cls.select_by_user(user).filter(kind = cls.KIND) |
| 308 | |
| 309 | @classmethod |
| Scott Baker | e7fc9f5 | 2015-05-05 17:52:03 -0700 | [diff] [blame] | 310 | def get_deleted_tenant_objects(cls): |
| 311 | return cls.deleted_objects.filter(kind = cls.KIND) |
| 312 | |
| Scott Baker | d921e1c | 2015-04-20 14:24:29 -0700 | [diff] [blame] | 313 | # helper function to be used in subclasses that want to ensure service_specific_id is unique |
| 314 | def validate_unique_service_specific_id(self): |
| 315 | if self.pk is None: |
| 316 | if self.service_specific_id is None: |
| 317 | raise XOSMissingField("subscriber_specific_id is None, and it's a required field", fields={"service_specific_id": "cannot be none"}) |
| 318 | |
| 319 | conflicts = self.get_tenant_objects().filter(service_specific_id=self.service_specific_id) |
| 320 | if conflicts: |
| 321 | raise XOSDuplicateKey("service_specific_id %s already exists" % self.service_specific_id, fields={"service_specific_id": "duplicate key"}) |
| 322 | |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 323 | def save(self, *args, **kwargs): |
| 324 | subCount = sum( [1 for e in [self.subscriber_service, self.subscriber_tenant, self.subscriber_user, self.subscriber_root] if e is not None]) |
| 325 | if (subCount > 1): |
| 326 | raise XOSConflictingField("Only one of subscriber_service, subscriber_tenant, subscriber_user, subscriber_root should be set") |
| 327 | |
| 328 | super(Tenant, self).save(*args, **kwargs) |
| 329 | |
| 330 | def get_subscribed_tenants(self, tenant_class): |
| 331 | ids = self.subscribed_tenants.filter(kind=tenant_class.KIND) |
| 332 | return tenant_class.objects.filter(id__in = ids) |
| 333 | |
| 334 | def get_newest_subscribed_tenant(self, kind): |
| 335 | st = list(self.get_subscribed_tenants(kind)) |
| 336 | if not st: |
| 337 | return None |
| 338 | return sorted(st, key=attrgetter('id'))[0] |
| 339 | |
| Scott Baker | 534dd2a | 2015-11-18 20:58:08 -0800 | [diff] [blame] | 340 | class Scheduler(object): |
| 341 | # XOS Scheduler Abstract Base Class |
| 342 | # Used to implement schedulers that pick which node to put instances on |
| 343 | |
| 344 | def __init__(self, slice): |
| 345 | self.slice = slice |
| 346 | |
| 347 | def pick(self): |
| 348 | # this method should return a tuple (node, parent) |
| 349 | # node is the node to instantiate on |
| 350 | # parent is for container_vm instances only, and is the VM that will |
| 351 | # hold the container |
| 352 | |
| 353 | raise Exception("Abstract Base") |
| 354 | |
| 355 | class LeastLoadedNodeScheduler(Scheduler): |
| 356 | # This scheduler always return the node with the fewest number of instances. |
| 357 | |
| 358 | def __init__(self, slice): |
| 359 | super(LeastLoadedNodeScheduler, self).__init__(slice) |
| 360 | |
| 361 | def pick(self): |
| 362 | from core.models import Node |
| 363 | nodes = list(Node.objects.all()) |
| 364 | # TODO: logic to filter nodes by which nodes are up, and which |
| 365 | # nodes the slice can instantiate on. |
| 366 | nodes = sorted(nodes, key=lambda node: node.instances.all().count()) |
| 367 | return [nodes[0], None] |
| 368 | |
| 369 | class ContainerVmScheduler(Scheduler): |
| 370 | # This scheduler picks a VM in the slice with the fewest containers inside |
| 371 | # of it. If no VMs are suitable, then it creates a VM. |
| 372 | |
| 373 | # this is a hack and should be replaced by something smarter... |
| 374 | LOOK_FOR_IMAGES=["ubuntu-vcpe4", # ONOS demo machine -- preferred vcpe image |
| 375 | "Ubuntu 14.04 LTS", # portal |
| 376 | "Ubuntu-14.04-LTS", # ONOS demo machine |
| 377 | "trusty-server-multi-nic", # CloudLab |
| 378 | ] |
| 379 | |
| 380 | MAX_VM_PER_CONTAINER = 10 |
| 381 | |
| 382 | def __init__(self, slice): |
| 383 | super(ContainerVmScheduler, self).__init__(slice) |
| 384 | |
| 385 | @property |
| 386 | def image(self): |
| 387 | from core.models import Image |
| 388 | |
| 389 | look_for_images = self.LOOK_FOR_IMAGES |
| 390 | for image_name in look_for_images: |
| 391 | images = Image.objects.filter(name = image_name) |
| 392 | if images: |
| 393 | return images[0] |
| 394 | |
| 395 | raise XOSProgrammingError("No ContainerVM image (looked for %s)" % str(look_for_images)) |
| 396 | |
| 397 | def make_new_instance(self): |
| 398 | from core.models import Instance, Flavor |
| 399 | |
| 400 | flavors = Flavor.objects.filter(name="m1.small") |
| 401 | if not flavors: |
| 402 | raise XOSConfigurationError("No m1.small flavor") |
| 403 | |
| 404 | (node,parent) = LeastLoadedNodeScheduler(self.slice).pick() |
| 405 | |
| 406 | instance = Instance(slice = self.slice, |
| 407 | node = node, |
| 408 | image = self.image, |
| 409 | creator = self.slice.creator, |
| 410 | deployment = node.site_deployment.deployment, |
| 411 | flavor = flavors[0], |
| 412 | isolation = "vm", |
| 413 | parent = parent) |
| 414 | instance.save() |
| 415 | # We rely on a special naming convention to identify the VMs that will |
| 416 | # hole containers. |
| 417 | instance.name = "%s-outer-%s" % (instance.slice.name, instance.id) |
| 418 | instance.save() |
| 419 | return instance |
| 420 | |
| 421 | def pick(self): |
| 422 | from core.models import Instance, Flavor |
| 423 | |
| 424 | for vm in self.slice.instances.filter(isolation="vm"): |
| 425 | avail_vms = [] |
| 426 | if (vm.name.startswith("%s-outer-" % self.slice.name)): |
| 427 | container_count = Instance.objects.filter(parent=vm).count() |
| 428 | if (container_count < self.MAX_VM_PER_CONTAINER): |
| 429 | avail_vms.append( (vm, container_count) ) |
| 430 | # sort by least containers-per-vm |
| 431 | avail_vms = sorted(avail_vms, key = lambda x: x[1]) |
| 432 | print "XXX", avail_vms |
| 433 | if avail_vms: |
| 434 | instance = avail_vms[0][0] |
| 435 | return (instance.node, instance) |
| 436 | |
| 437 | instance = self.make_new_instance() |
| 438 | return (instance.node, instance) |
| 439 | |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 440 | class TenantWithContainer(Tenant): |
| 441 | """ A tenant that manages a container """ |
| 442 | |
| 443 | # this is a hack and should be replaced by something smarter... |
| Scott Baker | 7288c52 | 2015-09-09 16:43:39 -0700 | [diff] [blame] | 444 | LOOK_FOR_IMAGES=["ubuntu-vcpe4", # ONOS demo machine -- preferred vcpe image |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 445 | "Ubuntu 14.04 LTS", # portal |
| 446 | "Ubuntu-14.04-LTS", # ONOS demo machine |
| Scott Baker | 7288c52 | 2015-09-09 16:43:39 -0700 | [diff] [blame] | 447 | "trusty-server-multi-nic", # CloudLab |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 448 | ] |
| 449 | |
| Scott Baker | cfaf0d3 | 2015-11-16 22:51:02 -0800 | [diff] [blame] | 450 | LOOK_FOR_CONTAINER_IMAGES=["andybavier/docker-vcpe"] |
| 451 | |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 452 | class Meta: |
| 453 | proxy = True |
| 454 | |
| 455 | def __init__(self, *args, **kwargs): |
| 456 | super(TenantWithContainer, self).__init__(*args, **kwargs) |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 457 | self.cached_instance=None |
| 458 | self.orig_instance_id = self.get_initial_attribute("instance_id") |
| Scott Baker | e274f6b | 2015-11-02 20:54:28 -0800 | [diff] [blame] | 459 | |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 460 | @property |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 461 | def instance(self): |
| 462 | from core.models import Instance |
| 463 | if getattr(self, "cached_instance", None): |
| 464 | return self.cached_instance |
| 465 | instance_id=self.get_attribute("instance_id") |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 466 | if not instance_id: |
| 467 | return None |
| 468 | instances=Instance.objects.filter(id=instance_id) |
| 469 | if not instances: |
| 470 | return None |
| 471 | instance=instances[0] |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 472 | instance.caller = self.creator |
| 473 | self.cached_instance = instance |
| 474 | return instance |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 475 | |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 476 | @instance.setter |
| 477 | def instance(self, value): |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 478 | if value: |
| 479 | value = value.id |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 480 | if (value != self.get_attribute("instance_id", None)): |
| 481 | self.cached_instance=None |
| 482 | self.set_attribute("instance_id", value) |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 483 | |
| Scott Baker | e274f6b | 2015-11-02 20:54:28 -0800 | [diff] [blame] | 484 | @property |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 485 | def creator(self): |
| 486 | from core.models import User |
| 487 | if getattr(self, "cached_creator", None): |
| 488 | return self.cached_creator |
| 489 | creator_id=self.get_attribute("creator_id") |
| 490 | if not creator_id: |
| 491 | return None |
| 492 | users=User.objects.filter(id=creator_id) |
| 493 | if not users: |
| 494 | return None |
| 495 | user=users[0] |
| 496 | self.cached_creator = users[0] |
| 497 | return user |
| 498 | |
| 499 | @creator.setter |
| 500 | def creator(self, value): |
| 501 | if value: |
| 502 | value = value.id |
| 503 | if (value != self.get_attribute("creator_id", None)): |
| 504 | self.cached_creator=None |
| 505 | self.set_attribute("creator_id", value) |
| 506 | |
| 507 | @property |
| 508 | def image(self): |
| 509 | from core.models import Image |
| 510 | # Implement the logic here to pick the image that should be used when |
| 511 | # instantiating the VM that will hold the container. |
| Scott Baker | cfaf0d3 | 2015-11-16 22:51:02 -0800 | [diff] [blame] | 512 | |
| 513 | slice = self.provider_service.slices.all() |
| 514 | if not slice: |
| 515 | raise XOSProgrammingError("provider service has no slice") |
| 516 | slice = slice[0] |
| 517 | |
| 518 | if slice.default_isolation in ["container", "container_vm"]: |
| 519 | look_for_images = self.LOOK_FOR_CONTAINER_IMAGES |
| 520 | else: |
| 521 | look_for_images = self.LOOK_FOR_IMAGES |
| 522 | |
| 523 | for image_name in look_for_images: |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 524 | images = Image.objects.filter(name = image_name) |
| 525 | if images: |
| 526 | return images[0] |
| 527 | |
| Scott Baker | 534dd2a | 2015-11-18 20:58:08 -0800 | [diff] [blame] | 528 | raise XOSProgrammingError("No VPCE image (looked for %s)" % str(look_for_images)) |
| Scott Baker | e274f6b | 2015-11-02 20:54:28 -0800 | [diff] [blame] | 529 | |
| 530 | @creator.setter |
| 531 | def creator(self, value): |
| 532 | if value: |
| 533 | value = value.id |
| 534 | if (value != self.get_attribute("creator_id", None)): |
| 535 | self.cached_creator=None |
| 536 | self.set_attribute("creator_id", value) |
| 537 | |
| Scott Baker | cfaf0d3 | 2015-11-16 22:51:02 -0800 | [diff] [blame] | 538 | def save_instance(self, instance): |
| 539 | # Override this function to do custom pre-save or post-save processing, |
| 540 | # such as creating ports for containers. |
| 541 | instance.save() |
| Scott Baker | e274f6b | 2015-11-02 20:54:28 -0800 | [diff] [blame] | 542 | |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 543 | def pick_least_loaded_instance_in_slice(self, slices): |
| 544 | for slice in slices: |
| 545 | if slice.instances.all().count() > 0: |
| 546 | for instance in slice.instances.all(): |
| 547 | #Pick the first instance that has lesser than 5 tenants |
| 548 | if self.count_of_tenants_of_an_instance(instance) < 5: |
| 549 | return instance |
| 550 | return None |
| 551 | |
| 552 | #TODO: Ideally the tenant count for an instance should be maintained using a |
| 553 | #many-to-one relationship attribute, however this model being proxy, it does |
| 554 | #not permit any new attributes to be defined. Find if any better solutions |
| 555 | def count_of_tenants_of_an_instance(self, instance): |
| 556 | tenant_count = 0 |
| 557 | for tenant in self.get_tenant_objects().all(): |
| 558 | if tenant.get_attribute("instance_id", None) == instance.id: |
| 559 | tenant_count += 1 |
| 560 | return tenant_count |
| 561 | |
| Scott Baker | cfaf0d3 | 2015-11-16 22:51:02 -0800 | [diff] [blame] | 562 | def manage_container(self): |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 563 | from core.models import Instance, Flavor |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 564 | |
| 565 | if self.deleted: |
| 566 | return |
| 567 | |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 568 | if (self.instance is not None) and (self.instance.image != self.image): |
| 569 | self.instance.delete() |
| 570 | self.instance = None |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 571 | |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 572 | if self.instance is None: |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 573 | if not self.provider_service.slices.count(): |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 574 | raise XOSConfigurationError("The service has no slices") |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 575 | |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 576 | new_instance_created = False |
| 577 | instance = None |
| 578 | if self.get_attribute("use_same_instance_for_multiple_tenants", default=False): |
| 579 | #Find if any existing instances can be used for this tenant |
| 580 | slices = self.provider_service.slices.all() |
| 581 | instance = self.pick_least_loaded_instance_in_slice(slices) |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 582 | |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 583 | if not instance: |
| 584 | flavors = Flavor.objects.filter(name="m1.small") |
| 585 | if not flavors: |
| 586 | raise XOSConfigurationError("No m1.small flavor") |
| 587 | |
| Srikanth Vavilapalli | 71120a9 | 2015-11-17 13:41:38 -0600 | [diff] [blame] | 588 | slice = self.provider_service.slices.all()[0] |
| Scott Baker | cfaf0d3 | 2015-11-16 22:51:02 -0800 | [diff] [blame] | 589 | |
| Srikanth Vavilapalli | 71120a9 | 2015-11-17 13:41:38 -0600 | [diff] [blame] | 590 | if slice.default_isolation == "container_vm": |
| Scott Baker | 534dd2a | 2015-11-18 20:58:08 -0800 | [diff] [blame] | 591 | (node, parent) = ContainerVmScheduler(slice).pick() |
| Srikanth Vavilapalli | 71120a9 | 2015-11-17 13:41:38 -0600 | [diff] [blame] | 592 | else: |
| Scott Baker | 534dd2a | 2015-11-18 20:58:08 -0800 | [diff] [blame] | 593 | (node, parent) = LeastLoadedNodeScheduler(slice).pick() |
| Scott Baker | cfaf0d3 | 2015-11-16 22:51:02 -0800 | [diff] [blame] | 594 | |
| Srikanth Vavilapalli | 71120a9 | 2015-11-17 13:41:38 -0600 | [diff] [blame] | 595 | instance = Instance(slice = slice, |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 596 | node = node, |
| 597 | image = self.image, |
| 598 | creator = self.creator, |
| 599 | deployment = node.site_deployment.deployment, |
| Srikanth Vavilapalli | 71120a9 | 2015-11-17 13:41:38 -0600 | [diff] [blame] | 600 | flavor = flavors[0], |
| 601 | isolation = slice.default_isolation, |
| 602 | parent = parent) |
| 603 | self.save_instance(instance) |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 604 | new_instance_created = True |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 605 | |
| 606 | try: |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 607 | self.instance = instance |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 608 | super(TenantWithContainer, self).save() |
| 609 | except: |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 610 | if new_instance_created: |
| 611 | instance.delete() |
| Scott Baker | e458afd | 2015-09-09 16:36:06 -0700 | [diff] [blame] | 612 | raise |
| 613 | |
| 614 | def cleanup_container(self): |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 615 | if self.instance: |
| Srikanth Vavilapalli | 1d14ff0 | 2015-11-17 12:21:02 -0600 | [diff] [blame] | 616 | if self.get_attribute("use_same_instance_for_multiple_tenants", default=False): |
| 617 | #Delete the instance only if this is last tenant in that instance |
| 618 | tenant_count = self.count_of_tenants_of_an_instance(self.instance) |
| 619 | if tenant_count == 0: |
| 620 | self.instance.delete() |
| 621 | else: |
| 622 | self.instance.delete() |
| Tony Mack | 6a782f9 | 2015-09-13 22:50:39 +0000 | [diff] [blame] | 623 | self.instance = None |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 624 | |
| Scott Baker | 925a8fa | 2015-04-26 20:30:40 -0700 | [diff] [blame] | 625 | class CoarseTenant(Tenant): |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 626 | """ TODO: rename "CoarseTenant" --> "StaticTenant" """ |
| Scott Baker | 925a8fa | 2015-04-26 20:30:40 -0700 | [diff] [blame] | 627 | class Meta: |
| 628 | proxy = True |
| Siobhan Tully | 00353f7 | 2013-10-08 21:53:27 -0400 | [diff] [blame] | 629 | |
| Scott Baker | 2461bec | 2015-08-14 09:10:11 -0700 | [diff] [blame] | 630 | KIND = COARSE_KIND |
| Scott Baker | 925a8fa | 2015-04-26 20:30:40 -0700 | [diff] [blame] | 631 | |
| 632 | def save(self, *args, **kwargs): |
| 633 | if (not self.subscriber_service): |
| 634 | raise XOSValidationError("subscriber_service cannot be null") |
| 635 | if (self.subscriber_tenant or self.subscriber_user): |
| 636 | raise XOSValidationError("subscriber_tenant and subscriber_user must be null") |
| 637 | |
| 638 | super(CoarseTenant,self).save() |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 639 | |
| 640 | class Subscriber(TenantRoot): |
| 641 | """ Intermediate class for TenantRoots that are to be Subscribers """ |
| 642 | |
| 643 | class Meta: |
| 644 | proxy = True |
| 645 | |
| 646 | KIND = "Subscriber" |
| 647 | |
| 648 | class Provider(TenantRoot): |
| 649 | """ Intermediate class for TenantRoots that are to be Providers """ |
| 650 | |
| 651 | class Meta: |
| 652 | proxy = True |
| 653 | |
| 654 | KIND = "Provider" |
| 655 | |
| Scott Baker | 462a1d9 | 2015-10-15 15:59:19 -0700 | [diff] [blame] | 656 | class TenantAttribute(PlCoreBase): |
| Scott Baker | 907f991 | 2015-10-20 17:12:36 -0700 | [diff] [blame] | 657 | name = models.CharField(help_text="Attribute Name", max_length=128) |
| Scott Baker | 462a1d9 | 2015-10-15 15:59:19 -0700 | [diff] [blame] | 658 | value = models.TextField(help_text="Attribute Value") |
| 659 | tenant = models.ForeignKey(Tenant, related_name='tenantattributes', help_text="The Tenant this attribute is associated with") |
| 660 | |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 661 | class TenantRootRole(PlCoreBase): |
| Scott Baker | 5116b30 | 2015-07-24 15:48:03 -0700 | [diff] [blame] | 662 | ROLE_CHOICES = (('admin','Admin'), ('access','Access')) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 663 | |
| 664 | role = StrippedCharField(choices=ROLE_CHOICES, unique=True, max_length=30) |
| 665 | |
| 666 | def __unicode__(self): return u'%s' % (self.role) |
| 667 | |
| 668 | class TenantRootPrivilege(PlCoreBase): |
| 669 | user = models.ForeignKey('User', related_name="tenant_root_privileges") |
| 670 | tenant_root = models.ForeignKey('TenantRoot', related_name="tenant_root_privileges") |
| 671 | role = models.ForeignKey('TenantRootRole', related_name="tenant_root_privileges") |
| 672 | |
| 673 | class Meta: |
| 674 | unique_together = ('user', 'tenant_root', 'role') |
| 675 | |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 676 | def __unicode__(self): return u'%s %s %s' % (self.tenant_root, self.user, self.role) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 677 | |
| 678 | def save(self, *args, **kwds): |
| 679 | if not self.user.is_active: |
| 680 | raise PermissionDenied, "Cannot modify role(s) of a disabled user" |
| Scott Baker | 335882a | 2015-07-24 10:15:31 -0700 | [diff] [blame] | 681 | super(TenantRootPrivilege, self).save(*args, **kwds) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 682 | |
| 683 | def can_update(self, user): |
| Scott Baker | 335882a | 2015-07-24 10:15:31 -0700 | [diff] [blame] | 684 | return user.can_update_tenant_root_privilege(self) |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 685 | |
| Scott Baker | 16573d3 | 2015-07-24 15:36:02 -0700 | [diff] [blame] | 686 | @classmethod |
| 687 | def select_by_user(cls, user): |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 688 | if user.is_admin: |
| Scott Baker | 5116b30 | 2015-07-24 15:48:03 -0700 | [diff] [blame] | 689 | return cls.objects.all() |
| Scott Baker | 4587b82 | 2015-07-01 18:29:08 -0700 | [diff] [blame] | 690 | else: |
| Scott Baker | 5116b30 | 2015-07-24 15:48:03 -0700 | [diff] [blame] | 691 | # User can see his own privilege |
| 692 | trp_ids = [trp.id for trp in cls.objects.filter(user=user)] |
| 693 | |
| 694 | # A slice admin can see the SlicePrivileges for his Slice |
| 695 | for priv in cls.objects.filter(user=user, role__role="admin"): |
| 696 | trp_ids.extend( [trp.id for trp in cls.objects.filter(tenant_root=priv.tenant_root)] ) |
| 697 | |
| 698 | return cls.objects.filter(id__in=trp_ids) |
| 699 | |
| Scott Baker | 618a489 | 2015-07-06 14:27:31 -0700 | [diff] [blame] | 700 | |