blob: 22fc9c39c3fcaac4c2f8ed9ae7d7d6cdc528fed3 [file] [log] [blame]
Matthew Treinishb86cda92013-07-29 11:22:23 -04001# Copyright 2013 IBM Corp.
2#
3# Licensed under the Apache License, Version 2.0 (the "License"); you may
4# not use this file except in compliance with the License. You may obtain
5# a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
11# WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
12# License for the specific language governing permissions and limitations
13# under the License.
14
Andrea Frittolic3280152015-02-26 12:42:34 +000015import abc
Miguel Lavalleb8fabc52013-08-23 11:19:57 -050016import netaddr
Doug Hellmann583ce2c2015-03-11 14:55:46 +000017from oslo_log import log as logging
Andrea Frittolic3280152015-02-26 12:42:34 +000018import six
Matthew Treinish01472ff2015-02-20 17:26:52 -050019from tempest_lib.common.utils import data_utils
Masayuki Igawabfa07602015-01-20 18:47:17 +090020from tempest_lib import exceptions as lib_exc
Miguel Lavalleb8fabc52013-08-23 11:19:57 -050021
Matthew Treinishb86cda92013-07-29 11:22:23 -040022from tempest import clients
Marc Kodererd2690fe2014-07-16 14:17:47 +020023from tempest.common import cred_provider
Matthew Treinishb86cda92013-07-29 11:22:23 -040024from tempest import config
25from tempest import exceptions
Andrea Frittolic3280152015-02-26 12:42:34 +000026from tempest.services.identity.v2.json import identity_client as v2_identity
Matthew Treinishb86cda92013-07-29 11:22:23 -040027
Sean Dague86bd8422013-12-20 09:56:44 -050028CONF = config.CONF
Matthew Treinishb86cda92013-07-29 11:22:23 -040029LOG = logging.getLogger(__name__)
30
31
Andrea Frittolic3280152015-02-26 12:42:34 +000032@six.add_metaclass(abc.ABCMeta)
33class CredsClient(object):
34 """This class is a wrapper around the identity clients, to provide a
35 single interface for managing credentials in both v2 and v3 cases.
36 It's not bound to created credentials, only to a specific set of admin
37 credentials used for generating credentials.
38 """
39
40 def __init__(self, identity_client):
41 # The client implies version and credentials
42 self.identity_client = identity_client
43 self.credentials = self.identity_client.auth_provider.credentials
44
45 def create_user(self, username, password, project, email):
46 user = self.identity_client.create_user(
47 username, password, project['id'], email)
48 return user
49
50 @abc.abstractmethod
51 def create_project(self, name, description):
52 pass
53
54 def assign_user_role(self, user, project, role_name):
55 try:
56 roles = self._list_roles()
57 role = next(r for r in roles if r['name'] == role_name)
58 except StopIteration:
59 msg = 'No "%s" role found' % role_name
60 raise lib_exc.NotFound(msg)
61 try:
62 self.identity_client.assign_user_role(project['id'], user['id'],
63 role['id'])
64 except lib_exc.Conflict:
65 LOG.debug("Role %s already assigned on project %s for user %s" % (
66 role['id'], project['id'], user['id']))
67
68 @abc.abstractmethod
69 def get_credentials(self, user, project, password):
70 pass
71
72 def delete_user(self, user_id):
73 self.identity_client.delete_user(user_id)
74
75 def _list_roles(self):
76 roles = self.identity_client.list_roles()
77 return roles
78
79
80class V2CredsClient(CredsClient):
81
82 def create_project(self, name, description):
83 tenant = self.identity_client.create_tenant(
84 name=name, description=description)
85 return tenant
86
87 def get_credentials(self, user, project, password):
88 return cred_provider.get_credentials(
89 identity_version='v2',
90 username=user['name'], user_id=user['id'],
91 tenant_name=project['name'], tenant_id=project['id'],
92 password=password)
93
94 def delete_project(self, project_id):
95 self.identity_client.delete_tenant(project_id)
96
97
98class V3CredsClient(CredsClient):
99
100 def __init__(self, identity_client, domain_name):
101 super(V3CredsClient, self).__init__(identity_client)
102 try:
103 # Domain names must be unique, in any case a list is returned,
104 # selecting the first (and only) element
105 self.creds_domain = self.identity_client.list_domains(
106 params={'name': domain_name})[0]
107 except lib_exc.NotFound:
108 # TODO(andrea) we could probably create the domain on the fly
109 msg = "Configured domain %s could not be found" % domain_name
110 raise exceptions.InvalidConfiguration(msg)
111
112 def create_project(self, name, description):
113 project = self.identity_client.create_project(
114 name=name, description=description,
115 domain_id=self.creds_domain['id'])
116 return project
117
118 def get_credentials(self, user, project, password):
119 return cred_provider.get_credentials(
120 identity_version='v3',
121 username=user['name'], user_id=user['id'],
122 project_name=project['name'], project_id=project['id'],
123 password=password,
124 project_domain_name=self.creds_domain['name'])
125
126 def delete_project(self, project_id):
127 self.identity_client.delete_project(project_id)
128
129
130def get_creds_client(identity_client, project_domain_name=None):
131 if isinstance(identity_client, v2_identity.IdentityClientJSON):
132 return V2CredsClient(identity_client)
133 else:
134 return V3CredsClient(identity_client, project_domain_name)
135
136
Marc Kodererd2690fe2014-07-16 14:17:47 +0200137class IsolatedCreds(cred_provider.CredentialProvider):
Matthew Treinishb86cda92013-07-29 11:22:23 -0400138
Andrea Frittolic3280152015-02-26 12:42:34 +0000139 def __init__(self, identity_version=None, name=None, password='pass',
140 network_resources=None):
141 super(IsolatedCreds, self).__init__(identity_version, name, password,
142 network_resources)
Matthew Treinish9f756a02014-01-15 10:26:07 -0500143 self.network_resources = network_resources
Matthew Treinishb86cda92013-07-29 11:22:23 -0400144 self.isolated_creds = {}
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500145 self.isolated_net_resources = {}
146 self.ports = []
Matthew Treinishb86cda92013-07-29 11:22:23 -0400147 self.password = password
Andrea Frittolic3280152015-02-26 12:42:34 +0000148 self.default_admin_creds = cred_provider.get_configured_credentials(
149 'identity_admin', fill_in=True,
150 identity_version=self.identity_version)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500151 self.identity_admin_client, self.network_admin_client = (
152 self._get_admin_clients())
Andrea Frittolic3280152015-02-26 12:42:34 +0000153 # Domain where isolated credentials are provisioned (v3 only).
154 # Use that of the admin account is None is configured.
155 self.creds_domain_name = None
156 if self.identity_version == 'v3':
157 self.creds_domain_name = (
158 CONF.auth.tenant_isolation_domain_name or
159 self.default_admin_creds.project_domain_name)
160 self.creds_client = get_creds_client(
161 self.identity_admin_client, self.creds_domain_name)
Matthew Treinishb86cda92013-07-29 11:22:23 -0400162
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500163 def _get_admin_clients(self):
Matthew Treinishb86cda92013-07-29 11:22:23 -0400164 """
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500165 Returns a tuple with instances of the following admin clients (in this
166 order):
167 identity
168 network
Matthew Treinishb86cda92013-07-29 11:22:23 -0400169 """
Andrea Frittolic3280152015-02-26 12:42:34 +0000170 os = clients.Manager(self.default_admin_creds)
171 if self.identity_version == 'v2':
172 return os.identity_client, os.network_client
173 else:
174 return os.identity_v3_client, os.network_client
Matthew Treinishb86cda92013-07-29 11:22:23 -0400175
Matthew Treinish976e8df2014-12-19 14:21:54 -0500176 def _create_creds(self, suffix="", admin=False, roles=None):
Sean Dague6969b902014-01-28 06:48:37 -0500177 """Create random credentials under the following schema.
178
179 If the name contains a '.' is the full class path of something, and
180 we don't really care. If it isn't, it's probably a meaningful name,
181 so use it.
182
183 For logging purposes, -user and -tenant are long and redundant,
184 don't use them. The user# will be sufficient to figure it out.
185 """
186 if '.' in self.name:
187 root = ""
188 else:
189 root = self.name
190
Andrea Frittolic3280152015-02-26 12:42:34 +0000191 project_name = data_utils.rand_name(root) + suffix
192 project_desc = project_name + "-desc"
193 project = self.creds_client.create_project(
194 name=project_name, description=project_desc)
Sean Dague6969b902014-01-28 06:48:37 -0500195
196 username = data_utils.rand_name(root) + suffix
197 email = data_utils.rand_name(root) + suffix + "@example.com"
Andrea Frittolic3280152015-02-26 12:42:34 +0000198 user = self.creds_client.create_user(
199 username, self.password, project, email)
Matthew Treinishb86cda92013-07-29 11:22:23 -0400200 if admin:
Andrea Frittolic3280152015-02-26 12:42:34 +0000201 self.creds_client.assign_user_role(user, project,
202 CONF.identity.admin_role)
Matthew Treinish976e8df2014-12-19 14:21:54 -0500203 # Add roles specified in config file
204 for conf_role in CONF.auth.tempest_roles:
Andrea Frittolic3280152015-02-26 12:42:34 +0000205 self.creds_client.assign_user_role(user, project, conf_role)
Matthew Treinish976e8df2014-12-19 14:21:54 -0500206 # Add roles requested by caller
207 if roles:
208 for role in roles:
Andrea Frittolic3280152015-02-26 12:42:34 +0000209 self.creds_client.assign_user_role(user, project, role)
210 return self.creds_client.get_credentials(user, project, self.password)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500211
212 def _create_network_resources(self, tenant_id):
213 network = None
214 subnet = None
215 router = None
Matthew Treinish9f756a02014-01-15 10:26:07 -0500216 # Make sure settings
217 if self.network_resources:
218 if self.network_resources['router']:
219 if (not self.network_resources['subnet'] or
220 not self.network_resources['network']):
221 raise exceptions.InvalidConfiguration(
222 'A router requires a subnet and network')
223 elif self.network_resources['subnet']:
224 if not self.network_resources['network']:
225 raise exceptions.InvalidConfiguration(
226 'A subnet requires a network')
227 elif self.network_resources['dhcp']:
228 raise exceptions.InvalidConfiguration('DHCP requires a subnet')
229
Masayuki Igawa259c1132013-10-31 17:48:44 +0900230 data_utils.rand_name_root = data_utils.rand_name(self.name)
Matthew Treinish9f756a02014-01-15 10:26:07 -0500231 if not self.network_resources or self.network_resources['network']:
232 network_name = data_utils.rand_name_root + "-network"
233 network = self._create_network(network_name, tenant_id)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500234 try:
Matthew Treinish9f756a02014-01-15 10:26:07 -0500235 if not self.network_resources or self.network_resources['subnet']:
236 subnet_name = data_utils.rand_name_root + "-subnet"
237 subnet = self._create_subnet(subnet_name, tenant_id,
238 network['id'])
239 if not self.network_resources or self.network_resources['router']:
240 router_name = data_utils.rand_name_root + "-router"
241 router = self._create_router(router_name, tenant_id)
242 self._add_router_interface(router['id'], subnet['id'])
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500243 except Exception:
244 if router:
245 self._clear_isolated_router(router['id'], router['name'])
246 if subnet:
247 self._clear_isolated_subnet(subnet['id'], subnet['name'])
248 if network:
249 self._clear_isolated_network(network['id'], network['name'])
250 raise
251 return network, subnet, router
252
253 def _create_network(self, name, tenant_id):
David Kranz34e88122014-12-11 15:24:05 -0500254 resp_body = self.network_admin_client.create_network(
Andrea Frittoliae9aca02014-09-25 11:43:11 +0100255 name=name, tenant_id=tenant_id)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500256 return resp_body['network']
257
258 def _create_subnet(self, subnet_name, tenant_id, network_id):
Sean Dague86bd8422013-12-20 09:56:44 -0500259 base_cidr = netaddr.IPNetwork(CONF.network.tenant_network_cidr)
260 mask_bits = CONF.network.tenant_network_mask_bits
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500261 for subnet_cidr in base_cidr.subnet(mask_bits):
262 try:
Andrea Frittoliae9aca02014-09-25 11:43:11 +0100263 if self.network_resources:
David Kranz34e88122014-12-11 15:24:05 -0500264 resp_body = self.network_admin_client.\
Andrea Frittoliae9aca02014-09-25 11:43:11 +0100265 create_subnet(
266 network_id=network_id, cidr=str(subnet_cidr),
267 name=subnet_name,
268 tenant_id=tenant_id,
269 enable_dhcp=self.network_resources['dhcp'],
270 ip_version=4)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500271 else:
David Kranz34e88122014-12-11 15:24:05 -0500272 resp_body = self.network_admin_client.\
Andrea Frittoliae9aca02014-09-25 11:43:11 +0100273 create_subnet(network_id=network_id,
274 cidr=str(subnet_cidr),
275 name=subnet_name,
276 tenant_id=tenant_id,
277 ip_version=4)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500278 break
Masayuki Igawa4b29e472015-02-16 10:41:54 +0900279 except lib_exc.BadRequest as e:
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500280 if 'overlaps with another subnet' not in str(e):
281 raise
282 else:
David Kranzd4210412014-11-21 08:37:45 -0500283 message = 'Available CIDR for subnet creation could not be found'
284 raise Exception(message)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500285 return resp_body['subnet']
286
287 def _create_router(self, router_name, tenant_id):
288 external_net_id = dict(
Sean Dague86bd8422013-12-20 09:56:44 -0500289 network_id=CONF.network.public_network_id)
David Kranz34e88122014-12-11 15:24:05 -0500290 resp_body = self.network_admin_client.create_router(
Andrea Frittoliae9aca02014-09-25 11:43:11 +0100291 router_name,
292 external_gateway_info=external_net_id,
293 tenant_id=tenant_id)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500294 return resp_body['router']
295
296 def _add_router_interface(self, router_id, subnet_id):
Andrea Frittoliae9aca02014-09-25 11:43:11 +0100297 self.network_admin_client.add_router_interface_with_subnet_id(
298 router_id, subnet_id)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500299
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500300 def get_primary_network(self):
301 return self.isolated_net_resources.get('primary')[0]
302
303 def get_primary_subnet(self):
304 return self.isolated_net_resources.get('primary')[1]
305
306 def get_primary_router(self):
307 return self.isolated_net_resources.get('primary')[2]
308
309 def get_admin_network(self):
310 return self.isolated_net_resources.get('admin')[0]
311
312 def get_admin_subnet(self):
313 return self.isolated_net_resources.get('admin')[1]
314
315 def get_admin_router(self):
316 return self.isolated_net_resources.get('admin')[2]
317
318 def get_alt_network(self):
319 return self.isolated_net_resources.get('alt')[0]
320
321 def get_alt_subnet(self):
322 return self.isolated_net_resources.get('alt')[1]
323
324 def get_alt_router(self):
325 return self.isolated_net_resources.get('alt')[2]
326
Andrea Frittoli9612e812014-03-13 10:57:26 +0000327 def get_credentials(self, credential_type):
Matthew Treinish976e8df2014-12-19 14:21:54 -0500328 if self.isolated_creds.get(str(credential_type)):
329 credentials = self.isolated_creds[str(credential_type)]
Matthew Treinishb86cda92013-07-29 11:22:23 -0400330 else:
Matthew Treinish976e8df2014-12-19 14:21:54 -0500331 if credential_type in ['primary', 'alt', 'admin']:
332 is_admin = (credential_type == 'admin')
333 credentials = self._create_creds(admin=is_admin)
334 else:
335 credentials = self._create_creds(roles=credential_type)
336 self.isolated_creds[str(credential_type)] = credentials
Andrea Frittolifc315902014-03-20 09:21:44 +0000337 # Maintained until tests are ported
Andrea Frittolifc315902014-03-20 09:21:44 +0000338 LOG.info("Acquired isolated creds:\n credentials: %s"
339 % credentials)
Adam Gandelman85395e72014-07-29 18:34:33 -0700340 if (CONF.service_available.neutron and
341 not CONF.baremetal.driver_enabled):
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500342 network, subnet, router = self._create_network_resources(
Andrea Frittolifc315902014-03-20 09:21:44 +0000343 credentials.tenant_id)
Matthew Treinish976e8df2014-12-19 14:21:54 -0500344 self.isolated_net_resources[str(credential_type)] = (
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500345 network, subnet, router,)
346 LOG.info("Created isolated network resources for : \n"
Andrea Frittolifc315902014-03-20 09:21:44 +0000347 + " credentials: %s" % credentials)
Andrea Frittoli9612e812014-03-13 10:57:26 +0000348 return credentials
Matthew Treinishb86cda92013-07-29 11:22:23 -0400349
Andrea Frittoli9612e812014-03-13 10:57:26 +0000350 def get_primary_creds(self):
351 return self.get_credentials('primary')
Matthew Treinishb86cda92013-07-29 11:22:23 -0400352
Andrea Frittoli9612e812014-03-13 10:57:26 +0000353 def get_admin_creds(self):
354 return self.get_credentials('admin')
Andrea Frittolifc315902014-03-20 09:21:44 +0000355
Andrea Frittoli9612e812014-03-13 10:57:26 +0000356 def get_alt_creds(self):
357 return self.get_credentials('alt')
Matthew Treinishb86cda92013-07-29 11:22:23 -0400358
Matthew Treinish976e8df2014-12-19 14:21:54 -0500359 def get_creds_by_roles(self, roles, force_new=False):
360 roles = list(set(roles))
361 # The roles list as a str will become the index as the dict key for
362 # the created credentials set in the isolated_creds dict.
363 exist_creds = self.isolated_creds.get(str(roles))
364 # If force_new flag is True 2 cred sets with the same roles are needed
365 # handle this by creating a separate index for old one to store it
366 # separately for cleanup
367 if exist_creds and force_new:
368 new_index = str(roles) + '-' + str(len(self.isolated_creds))
369 self.isolated_creds[new_index] = exist_creds
370 del self.isolated_creds[str(roles)]
371 # Handle isolated neutron resouces if they exist too
372 if CONF.service_available.neutron:
373 exist_net = self.isolated_net_resources.get(str(roles))
374 if exist_net:
375 self.isolated_net_resources[new_index] = exist_net
376 del self.isolated_net_resources[str(roles)]
377 return self.get_credentials(roles)
378
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500379 def _clear_isolated_router(self, router_id, router_name):
380 net_client = self.network_admin_client
381 try:
382 net_client.delete_router(router_id)
Masayuki Igawabfa07602015-01-20 18:47:17 +0900383 except lib_exc.NotFound:
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500384 LOG.warn('router with name: %s not found for delete' %
385 router_name)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500386
387 def _clear_isolated_subnet(self, subnet_id, subnet_name):
388 net_client = self.network_admin_client
389 try:
390 net_client.delete_subnet(subnet_id)
Masayuki Igawabfa07602015-01-20 18:47:17 +0900391 except lib_exc.NotFound:
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500392 LOG.warn('subnet with name: %s not found for delete' %
393 subnet_name)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500394
395 def _clear_isolated_network(self, network_id, network_name):
396 net_client = self.network_admin_client
397 try:
398 net_client.delete_network(network_id)
Masayuki Igawabfa07602015-01-20 18:47:17 +0900399 except lib_exc.NotFound:
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500400 LOG.warn('network with name: %s not found for delete' %
401 network_name)
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500402
Ala Rezmerita846eb7c2014-03-10 09:06:03 +0100403 def _cleanup_default_secgroup(self, tenant):
404 net_client = self.network_admin_client
David Kranz34e88122014-12-11 15:24:05 -0500405 resp_body = net_client.list_security_groups(tenant_id=tenant,
406 name="default")
Ala Rezmerita846eb7c2014-03-10 09:06:03 +0100407 secgroups_to_delete = resp_body['security_groups']
408 for secgroup in secgroups_to_delete:
409 try:
410 net_client.delete_security_group(secgroup['id'])
Masayuki Igawabfa07602015-01-20 18:47:17 +0900411 except lib_exc.NotFound:
Ala Rezmerita846eb7c2014-03-10 09:06:03 +0100412 LOG.warn('Security group %s, id %s not found for clean-up' %
413 (secgroup['name'], secgroup['id']))
414
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500415 def _clear_isolated_net_resources(self):
416 net_client = self.network_admin_client
417 for cred in self.isolated_net_resources:
418 network, subnet, router = self.isolated_net_resources.get(cred)
Salvatore Orlandocf996c62014-01-30 09:15:18 -0800419 LOG.debug("Clearing network: %(network)s, "
Matthew Treinishfe094ea2014-12-09 01:19:27 +0000420 "subnet: %(subnet)s, router: %(router)s",
421 {'network': network, 'subnet': subnet, 'router': router})
Salvatore Orlandocf996c62014-01-30 09:15:18 -0800422 if (not self.network_resources or
423 self.network_resources.get('router')):
Matthew Treinish9f756a02014-01-15 10:26:07 -0500424 try:
Andrea Frittoliae9aca02014-09-25 11:43:11 +0100425 net_client.remove_router_interface_with_subnet_id(
426 router['id'], subnet['id'])
Masayuki Igawabfa07602015-01-20 18:47:17 +0900427 except lib_exc.NotFound:
Matthew Treinish9f756a02014-01-15 10:26:07 -0500428 LOG.warn('router with name: %s not found for delete' %
429 router['name'])
Matthew Treinish9f756a02014-01-15 10:26:07 -0500430 self._clear_isolated_router(router['id'], router['name'])
Salvatore Orlandocf996c62014-01-30 09:15:18 -0800431 if (not self.network_resources or
Salvatore Orlandocf996c62014-01-30 09:15:18 -0800432 self.network_resources.get('subnet')):
Matthew Treinish9f756a02014-01-15 10:26:07 -0500433 self._clear_isolated_subnet(subnet['id'], subnet['name'])
Salvatore Orlandocf996c62014-01-30 09:15:18 -0800434 if (not self.network_resources or
435 self.network_resources.get('network')):
Matthew Treinish9f756a02014-01-15 10:26:07 -0500436 self._clear_isolated_network(network['id'], network['name'])
ahmadfe72a402015-02-13 17:30:36 +0530437 self.isolated_net_resources = {}
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500438
Matthew Treinishb86cda92013-07-29 11:22:23 -0400439 def clear_isolated_creds(self):
440 if not self.isolated_creds:
441 return
Miguel Lavalleb8fabc52013-08-23 11:19:57 -0500442 self._clear_isolated_net_resources()
Andrea Frittolifc315902014-03-20 09:21:44 +0000443 for creds in self.isolated_creds.itervalues():
Matthew Treinishb86cda92013-07-29 11:22:23 -0400444 try:
Andrea Frittolic3280152015-02-26 12:42:34 +0000445 self.creds_client.delete_user(creds.user_id)
Masayuki Igawabfa07602015-01-20 18:47:17 +0900446 except lib_exc.NotFound:
Andrea Frittolifc315902014-03-20 09:21:44 +0000447 LOG.warn("user with name: %s not found for delete" %
448 creds.username)
Matthew Treinishb86cda92013-07-29 11:22:23 -0400449 try:
Andrea Frittolic3280152015-02-26 12:42:34 +0000450 if CONF.service_available.neutron:
451 self._cleanup_default_secgroup(creds.tenant_id)
452 self.creds_client.delete_project(creds.tenant_id)
Masayuki Igawabfa07602015-01-20 18:47:17 +0900453 except lib_exc.NotFound:
Andrea Frittolifc315902014-03-20 09:21:44 +0000454 LOG.warn("tenant with name: %s not found for delete" %
455 creds.tenant_name)
ahmadfe72a402015-02-13 17:30:36 +0530456 self.isolated_creds = {}
Andrea Frittoli8283b4e2014-07-17 13:28:58 +0100457
458 def is_multi_user(self):
459 return True
Yair Fried76488d72014-10-21 10:13:19 +0300460
461 def is_multi_tenant(self):
462 return True
Matthew Treinish4a596932015-03-06 20:37:01 -0500463
464 def is_role_available(self, role):
465 return True