blob: ce44fe646a04ab53ca207339ff0c22ed20b56875 [file] [log] [blame]
Jakub Josef8e7385e2016-12-07 21:20:34 +01001import logging
2logger = logging.getLogger(__name__)
3
4create_credential_groovy = u"""\
5import jenkins.*;
6import jenkins.model.*;
7import hudson.*;
8import hudson.model.*;
9
10import com.cloudbees.plugins.credentials.domains.Domain;
11import com.cloudbees.plugins.credentials.CredentialsScope;
12
Jakub Josef98123ab2016-12-14 14:05:01 +010013def creds = com.cloudbees.plugins.credentials.CredentialsProvider.lookupCredentials(
14 com.cloudbees.plugins.credentials.common.StandardUsernameCredentials.class,
15 Jenkins.instance
16 )
Jakub Josef8e7385e2016-12-07 21:20:34 +010017
Jakub Josef98123ab2016-12-14 14:05:01 +010018def result = creds.find{{ it.username == "{username}" && it.password.toString() == "{password}" }}
19if(result){{
20 print("EXISTS")
21}}else{{
22 domain = Domain.global()
23 store = Jenkins.instance.getExtensionList(
24 'com.cloudbees.plugins.credentials.SystemCredentialsProvider'
25 )[0].getStore()
Jakub Josef8e7385e2016-12-07 21:20:34 +010026
Jakub Josef98123ab2016-12-14 14:05:01 +010027 credentials_new = new {clazz}(
28 {params}
29 )
Jakub Josef8e7385e2016-12-07 21:20:34 +010030
Jakub Josef98123ab2016-12-14 14:05:01 +010031 creds = com.cloudbees.plugins.credentials.CredentialsProvider.lookupCredentials(
32 {clazz}.class, Jenkins.instance
33 );
Jakub Josef8e7385e2016-12-07 21:20:34 +010034 ret = store.addCredentials(domain, credentials_new)
Jakub Josef98123ab2016-12-14 14:05:01 +010035 if (ret) {{
36 print("CREATED");
37 }} else {{
38 print("FAILED");
39 }}
Jakub Josef8e7385e2016-12-07 21:20:34 +010040}}
41""" # noqa
42
Jakub Josef8e7385e2016-12-07 21:20:34 +010043def present(name, scope, username, password=None, desc="", key=None):
44 """
45 Main jenkins credentials state method
46
47 :param name: credential name
48 :param scope: credential scope
49 :param username: username
50 :param password: password (optional)
51 :param desc: credential description (optional)
52 :param key: credential key (optional)
53 :returns: salt-specified state dict
54 """
55 test = __opts__['test'] # noqa
56 ret = {
57 'name': name,
58 'changes': {},
59 'result': False,
60 'comment': '',
61 }
62 result = False
63 if test:
64 status = 'CREATED'
65 ret['changes'][name] = status
Jakub Josef98123ab2016-12-14 14:05:01 +010066 ret['comment'] = 'Credentials %s %s' % (name, status.lower())
Jakub Josef8e7385e2016-12-07 21:20:34 +010067 else:
68 clazz = ""
69 if key:
70 clazz = "com.cloudbees.jenkins.plugins.sshcredentials.impl.BasicSSHUserPrivateKey"
Jakub Josef98123ab2016-12-14 14:05:01 +010071 params = 'CredentialsScope.{}, "{}", "{}", "{}"'.format(
72 scope, name, desc, key)
Jakub Josef8e7385e2016-12-07 21:20:34 +010073 else:
74 clazz = "com.cloudbees.plugins.credentials.impl.UsernamePasswordCredentialsImpl"
Jakub Josef98123ab2016-12-14 14:05:01 +010075 params = 'CredentialsScope.{}, "{}", "{}", "{}", "{}"'.format(
76 scope, name, desc, username, password)
Jakub Josef8e7385e2016-12-07 21:20:34 +010077
Jakub Josef98123ab2016-12-14 14:05:01 +010078 call_result = __salt__['jenkins_common.call_groovy_script'](
79 create_credential_groovy, {"username": username, "password": password, "clazz": clazz, "params": params})
80 if call_result["code"] == 200 and call_result["msg"] in ["CREATED", "EXISTS"]:
Jakub Josef8e7385e2016-12-07 21:20:34 +010081 status = call_result["msg"]
Jakub Josef98123ab2016-12-14 14:05:01 +010082 if call_result["msg"] == "CREATED":
83 ret['changes'][name] = status
84 ret['comment'] = 'Credentials %s %s' % (name, status.lower())
Jakub Josef8e7385e2016-12-07 21:20:34 +010085 result = True
86 else:
87 status = 'FAILED'
Jakub Josef98123ab2016-12-14 14:05:01 +010088 logger.error(
89 "Jenkins credentials API call failure: %s", call_result["msg"])
Jakub Josefe13e2e72016-12-08 13:41:19 +010090 ret['comment'] = 'Jenkins credentials API call failure: %s' % (call_result["msg"])
Jakub Josef8e7385e2016-12-07 21:20:34 +010091 ret['result'] = None if test else result
92 return ret