blob: a00ed72d28477085e40863588b91c03b40c4b39a [file] [log] [blame]
Ash Wilson8ba82242014-08-28 15:38:55 -04001package openstack
2
3import (
Ash Wilsona87ee062014-09-03 11:26:06 -04004 "fmt"
Ash Wilson09694b92014-09-09 14:08:27 -04005 "net/url"
Ash Wilson4dee1b82014-08-29 14:56:45 -04006
Ash Wilson8ba82242014-08-28 15:38:55 -04007 "github.com/rackspace/gophercloud"
Ash Wilson52fbd182014-10-03 13:48:06 -04008 tokens2 "github.com/rackspace/gophercloud/openstack/identity/v2/tokens"
Ash Wilsona87ee062014-09-03 11:26:06 -04009 tokens3 "github.com/rackspace/gophercloud/openstack/identity/v3/tokens"
Ash Wilson4dee1b82014-08-29 14:56:45 -040010 "github.com/rackspace/gophercloud/openstack/utils"
Ash Wilson8ba82242014-08-28 15:38:55 -040011)
12
Ash Wilson4dee1b82014-08-29 14:56:45 -040013const (
14 v20 = "v2.0"
15 v30 = "v3.0"
16)
Ash Wilson8ba82242014-08-28 15:38:55 -040017
Ash Wilsona87ee062014-09-03 11:26:06 -040018// NewClient prepares an unauthenticated ProviderClient instance.
19// Most users will probably prefer using the AuthenticatedClient function instead.
20// This is useful if you wish to explicitly control the version of the identity service that's used for authentication explicitly,
21// for example.
22func NewClient(endpoint string) (*gophercloud.ProviderClient, error) {
Ash Wilson09694b92014-09-09 14:08:27 -040023 u, err := url.Parse(endpoint)
24 if err != nil {
25 return nil, err
26 }
27 hadPath := u.Path != ""
28 u.Path, u.RawQuery, u.Fragment = "", "", ""
29 base := u.String()
30
Ash Wilsona8440642014-10-07 09:55:58 -040031 endpoint = gophercloud.NormalizeURL(endpoint)
32 base = gophercloud.NormalizeURL(base)
Ash Wilsone7da01c2014-09-09 12:31:06 -040033
Ash Wilson09694b92014-09-09 14:08:27 -040034 if hadPath {
35 return &gophercloud.ProviderClient{
36 IdentityBase: base,
37 IdentityEndpoint: endpoint,
38 }, nil
39 }
40
41 return &gophercloud.ProviderClient{
42 IdentityBase: base,
43 IdentityEndpoint: "",
44 }, nil
Ash Wilsona87ee062014-09-03 11:26:06 -040045}
46
47// AuthenticatedClient logs in to an OpenStack cloud found at the identity endpoint specified by options, acquires a token, and
Ash Wilsonccd020b2014-09-02 10:40:54 -040048// returns a Client instance that's ready to operate.
Ash Wilson8ba82242014-08-28 15:38:55 -040049// It first queries the root identity endpoint to determine which versions of the identity service are supported, then chooses
50// the most recent identity service available to proceed.
Ash Wilsona87ee062014-09-03 11:26:06 -040051func AuthenticatedClient(options gophercloud.AuthOptions) (*gophercloud.ProviderClient, error) {
52 client, err := NewClient(options.IdentityEndpoint)
53 if err != nil {
54 return nil, err
55 }
56
57 err = Authenticate(client, options)
Ash Wilsonccd020b2014-09-02 10:40:54 -040058 if err != nil {
59 return nil, err
60 }
61 return client, nil
62}
63
Ash Wilsonccd020b2014-09-02 10:40:54 -040064// Authenticate or re-authenticate against the most recent identity service supported at the provided endpoint.
Ash Wilsona87ee062014-09-03 11:26:06 -040065func Authenticate(client *gophercloud.ProviderClient, options gophercloud.AuthOptions) error {
Ash Wilson4dee1b82014-08-29 14:56:45 -040066 versions := []*utils.Version{
Ash Wilson09694b92014-09-09 14:08:27 -040067 &utils.Version{ID: v20, Priority: 20, Suffix: "/v2.0/"},
68 &utils.Version{ID: v30, Priority: 30, Suffix: "/v3/"},
Ash Wilson4dee1b82014-08-29 14:56:45 -040069 }
70
Ash Wilson09694b92014-09-09 14:08:27 -040071 chosen, endpoint, err := utils.ChooseVersion(client.IdentityBase, client.IdentityEndpoint, versions)
Ash Wilson4dee1b82014-08-29 14:56:45 -040072 if err != nil {
Ash Wilsonccd020b2014-09-02 10:40:54 -040073 return err
Ash Wilson4dee1b82014-08-29 14:56:45 -040074 }
75
76 switch chosen.ID {
77 case v20:
Ash Wilson09694b92014-09-09 14:08:27 -040078 return v2auth(client, endpoint, options)
Ash Wilson4dee1b82014-08-29 14:56:45 -040079 case v30:
Ash Wilson09694b92014-09-09 14:08:27 -040080 return v3auth(client, endpoint, options)
Ash Wilson4dee1b82014-08-29 14:56:45 -040081 default:
Ash Wilsonccd020b2014-09-02 10:40:54 -040082 // The switch statement must be out of date from the versions list.
Ash Wilsona87ee062014-09-03 11:26:06 -040083 return fmt.Errorf("Unrecognized identity version: %s", chosen.ID)
Ash Wilsonccd020b2014-09-02 10:40:54 -040084 }
85}
86
Ash Wilson09694b92014-09-09 14:08:27 -040087// AuthenticateV2 explicitly authenticates against the identity v2 endpoint.
88func AuthenticateV2(client *gophercloud.ProviderClient, options gophercloud.AuthOptions) error {
89 return v2auth(client, "", options)
90}
91
92func v2auth(client *gophercloud.ProviderClient, endpoint string, options gophercloud.AuthOptions) error {
93 v2Client := NewIdentityV2(client)
94 if endpoint != "" {
95 v2Client.Endpoint = endpoint
96 }
97
Ash Wilson40095f02014-10-07 15:46:40 -040098 result := tokens2.Create(v2Client, tokens2.AuthOptions{AuthOptions: options})
Ash Wilson52fbd182014-10-03 13:48:06 -040099
100 token, err := result.ExtractToken()
Ash Wilson09694b92014-09-09 14:08:27 -0400101 if err != nil {
102 return err
103 }
104
Ash Wilson52fbd182014-10-03 13:48:06 -0400105 catalog, err := result.ExtractServiceCatalog()
Ash Wilson09694b92014-09-09 14:08:27 -0400106 if err != nil {
107 return err
108 }
109
110 client.TokenID = token.ID
Ash Wilson130a6e22014-10-07 10:48:17 -0400111 client.EndpointLocator = func(opts gophercloud.EndpointOpts) (string, error) {
112 return V2EndpointURL(catalog, opts)
113 }
Ash Wilson09694b92014-09-09 14:08:27 -0400114
115 return nil
116}
117
Ash Wilson09694b92014-09-09 14:08:27 -0400118// AuthenticateV3 explicitly authenticates against the identity v3 service.
119func AuthenticateV3(client *gophercloud.ProviderClient, options gophercloud.AuthOptions) error {
120 return v3auth(client, "", options)
121}
122
123func v3auth(client *gophercloud.ProviderClient, endpoint string, options gophercloud.AuthOptions) error {
124 // Override the generated service endpoint with the one returned by the version endpoint.
125 v3Client := NewIdentityV3(client)
126 if endpoint != "" {
127 v3Client.Endpoint = endpoint
128 }
129
Ash Wilson63b2a292014-10-02 09:29:06 -0400130 token, err := tokens3.Create(v3Client, options, nil).Extract()
Ash Wilson09694b92014-09-09 14:08:27 -0400131 if err != nil {
132 return err
133 }
Ash Wilson63b2a292014-10-02 09:29:06 -0400134 client.TokenID = token.ID
Ash Wilson09694b92014-09-09 14:08:27 -0400135
Ash Wilson09694b92014-09-09 14:08:27 -0400136 client.EndpointLocator = func(opts gophercloud.EndpointOpts) (string, error) {
Ash Wilson61c49a52014-10-08 14:15:04 -0400137 return V3EndpointURL(v3Client, opts)
Ash Wilson09694b92014-09-09 14:08:27 -0400138 }
139
140 return nil
141}
142
Ash Wilsona87ee062014-09-03 11:26:06 -0400143// NewIdentityV2 creates a ServiceClient that may be used to interact with the v2 identity service.
144func NewIdentityV2(client *gophercloud.ProviderClient) *gophercloud.ServiceClient {
Ash Wilson09694b92014-09-09 14:08:27 -0400145 v2Endpoint := client.IdentityBase + "v2.0/"
Ash Wilsonccd020b2014-09-02 10:40:54 -0400146
Ash Wilsona87ee062014-09-03 11:26:06 -0400147 return &gophercloud.ServiceClient{
148 Provider: client,
149 Endpoint: v2Endpoint,
Ash Wilson4dee1b82014-08-29 14:56:45 -0400150 }
Ash Wilson8ba82242014-08-28 15:38:55 -0400151}
152
Ash Wilsona87ee062014-09-03 11:26:06 -0400153// NewIdentityV3 creates a ServiceClient that may be used to access the v3 identity service.
154func NewIdentityV3(client *gophercloud.ProviderClient) *gophercloud.ServiceClient {
Ash Wilson09694b92014-09-09 14:08:27 -0400155 v3Endpoint := client.IdentityBase + "v3/"
Ash Wilsona87ee062014-09-03 11:26:06 -0400156
157 return &gophercloud.ServiceClient{
158 Provider: client,
159 Endpoint: v3Endpoint,
160 }
Ash Wilson8ba82242014-08-28 15:38:55 -0400161}
Ash Wilson1cd3e692014-09-09 11:01:47 -0400162
Jon Perrittbb5e9812014-10-15 17:53:44 -0500163// NewObjectStorageV1 creates a ServiceClient that may be used with the v1 object storage package.
164func NewObjectStorageV1(client *gophercloud.ProviderClient, eo gophercloud.EndpointOpts) (*gophercloud.ServiceClient, error) {
Jon Perritt509fbb62014-09-10 13:29:56 -0500165 eo.ApplyDefaults("object-store")
166 url, err := client.EndpointLocator(eo)
Ash Wilson1cd3e692014-09-09 11:01:47 -0400167 if err != nil {
168 return nil, err
169 }
170 return &gophercloud.ServiceClient{Provider: client, Endpoint: url}, nil
171}
Ash Wilson5e57c1b2014-09-17 09:24:46 -0400172
173// NewComputeV2 creates a ServiceClient that may be used with the v2 compute package.
174func NewComputeV2(client *gophercloud.ProviderClient, eo gophercloud.EndpointOpts) (*gophercloud.ServiceClient, error) {
175 eo.ApplyDefaults("compute")
176 url, err := client.EndpointLocator(eo)
177 if err != nil {
178 return nil, err
179 }
180 return &gophercloud.ServiceClient{Provider: client, Endpoint: url}, nil
181}
Ash Wilsonebc3d122014-09-24 13:44:05 -0400182
183// NewNetworkV2 creates a ServiceClient that may be used with the v2 network package.
Jamie Hannaford7ea29582014-09-11 15:49:46 +0200184func NewNetworkV2(client *gophercloud.ProviderClient, eo gophercloud.EndpointOpts) (*gophercloud.ServiceClient, error) {
185 eo.ApplyDefaults("network")
186 url, err := client.EndpointLocator(eo)
187 if err != nil {
188 return nil, err
189 }
Ash Wilson99541ab2014-10-06 17:32:39 -0400190 return &gophercloud.ServiceClient{
191 Provider: client,
192 Endpoint: url,
193 ResourceBase: url + "v2.0/",
194 }, nil
Jamie Hannaford7ea29582014-09-11 15:49:46 +0200195}
Jon Perrittc5ee85e2014-09-17 00:53:19 -0500196
197// NewBlockStorageV1 creates a ServiceClient that may be used to access the v1 block storage service.
198func NewBlockStorageV1(client *gophercloud.ProviderClient, eo gophercloud.EndpointOpts) (*gophercloud.ServiceClient, error) {
199 eo.ApplyDefaults("volume")
200 url, err := client.EndpointLocator(eo)
201 if err != nil {
202 return nil, err
203 }
204 return &gophercloud.ServiceClient{Provider: client, Endpoint: url}, nil
205}