diff --git a/agent/pom.xml b/agent/pom.xml
index 0f44c1aa297..c2b1502728f 100644
--- a/agent/pom.xml
+++ b/agent/pom.xml
@@ -36,6 +36,11 @@
cloud-utils
${project.version}
+
+ commons-daemon
+ commons-daemon
+ ${cs.daemon.version}
+
install
diff --git a/agent/src/com/cloud/agent/AgentShell.java b/agent/src/com/cloud/agent/AgentShell.java
index 73b3950e7e4..cf454b8c89c 100644
--- a/agent/src/com/cloud/agent/AgentShell.java
+++ b/agent/src/com/cloud/agent/AgentShell.java
@@ -24,7 +24,6 @@ import java.io.IOException;
import java.io.InputStream;
import java.lang.reflect.Constructor;
import java.lang.reflect.InvocationTargetException;
-import java.lang.reflect.Method;
import java.net.HttpURLConnection;
import java.util.ArrayList;
import java.util.Collections;
@@ -38,6 +37,9 @@ import java.util.UUID;
import javax.naming.ConfigurationException;
+import org.apache.commons.daemon.Daemon;
+import org.apache.commons.daemon.DaemonContext;
+import org.apache.commons.daemon.DaemonInitException;
import org.apache.commons.httpclient.HttpClient;
import org.apache.commons.httpclient.MultiThreadedHttpConnectionManager;
import org.apache.commons.httpclient.methods.GetMethod;
@@ -47,7 +49,6 @@ import org.apache.log4j.xml.DOMConfigurator;
import com.cloud.agent.Agent.ExitStatus;
import com.cloud.agent.dao.StorageComponent;
import com.cloud.agent.dao.impl.PropertiesStorage;
-import com.cloud.host.Host;
import com.cloud.resource.ServerResource;
import com.cloud.utils.LogUtils;
import com.cloud.utils.NumbersUtil;
@@ -58,7 +59,7 @@ import com.cloud.utils.backoff.impl.ConstantTimeBackoff;
import com.cloud.utils.exception.CloudRuntimeException;
import com.cloud.utils.script.Script;
-public class AgentShell implements IAgentShell {
+public class AgentShell implements IAgentShell, Daemon {
private static final Logger s_logger = Logger.getLogger(AgentShell.class
.getName());
private static final MultiThreadedHttpConnectionManager s_httpClientManager = new MultiThreadedHttpConnectionManager();
@@ -79,7 +80,6 @@ public class AgentShell implements IAgentShell {
private int _nextAgentId = 1;
private volatile boolean _exit = false;
private int _pingRetries;
- private Thread _consoleProxyMain = null;
private final List _agents = new ArrayList();
public AgentShell() {
@@ -376,7 +376,17 @@ public class AgentShell implements IAgentShell {
return true;
}
-
+
+ @Override
+ public void init(DaemonContext dc) throws DaemonInitException {
+ s_logger.debug("Initializing AgentShell from JSVC");
+ try {
+ init(dc.getArguments());
+ } catch (ConfigurationException ex) {
+ throw new DaemonInitException("Initialization failed", ex);
+ }
+ }
+
public void init(String[] args) throws ConfigurationException {
// PropertiesUtil is used both in management server and agent packages,
@@ -402,11 +412,13 @@ public class AgentShell implements IAgentShell {
loadProperties();
parseCommand(args);
- List properties = Collections.list((Enumeration)_properties.propertyNames());
- for (String property:properties){
- s_logger.debug("Found property: " + property);
+ if (s_logger.isDebugEnabled()) {
+ List properties = Collections.list((Enumeration)_properties.propertyNames());
+ for (String property:properties){
+ s_logger.debug("Found property: " + property);
+ }
}
-
+
s_logger.info("Defaulting to using properties file for storage");
_storage = new PropertiesStorage();
_storage.configure("Storage", new HashMap());
@@ -434,71 +446,6 @@ public class AgentShell implements IAgentShell {
launchAgentFromTypeInfo();
}
- private boolean needConsoleProxy() {
- for (Agent agent : _agents) {
- if (agent.getResource().getType().equals(Host.Type.ConsoleProxy)
- || agent.getResource().getType().equals(Host.Type.Routing))
- return true;
- }
- return false;
- }
-
- private int getConsoleProxyPort() {
- int port = NumbersUtil.parseInt(
- getProperty(null, "consoleproxy.httpListenPort"), 443);
- return port;
- }
-
- private void openPortWithIptables(int port) {
- // TODO
- }
-
- private void launchConsoleProxy() throws ConfigurationException {
- if (!needConsoleProxy()) {
- if (s_logger.isInfoEnabled())
- s_logger.info("Storage only agent, no need to start console proxy on it");
- return;
- }
-
- int port = getConsoleProxyPort();
- openPortWithIptables(port);
-
- _consoleProxyMain = new Thread(new Runnable() {
- @Override
- public void run() {
- try {
- Class> consoleProxyClazz = Class.forName("com.cloud.consoleproxy.ConsoleProxy");
-
- try {
- Method method = consoleProxyClazz.getMethod("start",
- Properties.class);
- method.invoke(null, _properties);
- } catch (SecurityException e) {
- s_logger.error("Unable to launch console proxy due to SecurityException");
- System.exit(ExitStatus.Error.value());
- } catch (NoSuchMethodException e) {
- s_logger.error("Unable to launch console proxy due to NoSuchMethodException");
- System.exit(ExitStatus.Error.value());
- } catch (IllegalArgumentException e) {
- s_logger.error("Unable to launch console proxy due to IllegalArgumentException");
- System.exit(ExitStatus.Error.value());
- } catch (IllegalAccessException e) {
- s_logger.error("Unable to launch console proxy due to IllegalAccessException");
- System.exit(ExitStatus.Error.value());
- } catch (InvocationTargetException e) {
- s_logger.error("Unable to launch console proxy due to InvocationTargetException");
- System.exit(ExitStatus.Error.value());
- }
- } catch (final ClassNotFoundException e) {
- s_logger.error("Unable to launch console proxy due to ClassNotFoundException");
- System.exit(ExitStatus.Error.value());
- }
- }
- }, "Console-Proxy-Main");
- _consoleProxyMain.setDaemon(true);
- _consoleProxyMain.start();
- }
-
private void launchAgentFromClassInfo(String resourceClassNames)
throws ConfigurationException {
String[] names = resourceClassNames.split("\\|");
@@ -591,14 +538,6 @@ public class AgentShell implements IAgentShell {
launchAgent();
- //
- // For both KVM & Xen-Server hypervisor, we have switched to
- // VM-based console proxy solution, disable launching
- // of console proxy here
- //
- // launchConsoleProxy();
- //
-
try {
while (!_exit)
Thread.sleep(1000);
@@ -618,9 +557,6 @@ public class AgentShell implements IAgentShell {
public void stop() {
_exit = true;
- if (_consoleProxyMain != null) {
- _consoleProxyMain.interrupt();
- }
}
public void destroy() {
@@ -629,6 +565,7 @@ public class AgentShell implements IAgentShell {
public static void main(String[] args) {
try {
+ s_logger.debug("Initializing AgentShell from main");
AgentShell shell = new AgentShell();
shell.init(args);
shell.start();
@@ -636,4 +573,5 @@ public class AgentShell implements IAgentShell {
System.out.println(e.getMessage());
}
}
+
}
diff --git a/api/src/com/cloud/agent/api/to/DnsmasqTO.java b/api/src/com/cloud/agent/api/to/DnsmasqTO.java
new file mode 100644
index 00000000000..f99878c2fed
--- /dev/null
+++ b/api/src/com/cloud/agent/api/to/DnsmasqTO.java
@@ -0,0 +1,53 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.agent.api.to;
+
+public class DnsmasqTO {
+ String routerIp;
+ String gateway;
+ String netmask;
+
+ public DnsmasqTO(String routerIp, String gateway, String netmask) {
+ this.routerIp = routerIp;
+ this.gateway = gateway;
+ this.netmask =netmask;
+ }
+
+ public void setRouterIp(String routerIp){
+ this.routerIp = routerIp;
+ }
+
+ public void setGateway(String gateway) {
+ this.gateway = gateway;
+ }
+
+ public void setNetmask(String netmask) {
+ this.netmask = netmask ;
+ }
+
+ public String getRouterIp() {
+ return routerIp;
+ }
+
+ public String getGateway() {
+ return gateway;
+ }
+
+ public String getNetmask() {
+ return netmask;
+ }
+}
diff --git a/api/src/com/cloud/agent/api/to/NetworkACLTO.java b/api/src/com/cloud/agent/api/to/NetworkACLTO.java
index 8818e13de4a..398591b120d 100644
--- a/api/src/com/cloud/agent/api/to/NetworkACLTO.java
+++ b/api/src/com/cloud/agent/api/to/NetworkACLTO.java
@@ -20,10 +20,10 @@ package com.cloud.agent.api.to;
import java.util.ArrayList;
import java.util.List;
+import com.cloud.network.vpc.NetworkACLItem;
+import com.cloud.network.vpc.NetworkACLItem.TrafficType;
import org.apache.cloudstack.api.InternalIdentity;
-import com.cloud.network.rules.FirewallRule;
-import com.cloud.network.rules.FirewallRule.TrafficType;
import com.cloud.utils.net.NetUtils;
@@ -37,15 +37,16 @@ public class NetworkACLTO implements InternalIdentity {
private List cidrList;
private Integer icmpType;
private Integer icmpCode;
- private FirewallRule.TrafficType trafficType;
-
+ private TrafficType trafficType;
+ String action;
+ int number;
protected NetworkACLTO() {
}
public NetworkACLTO(long id,String vlanTag, String protocol, Integer portStart, Integer portEnd, boolean revoked,
- boolean alreadyAdded, List cidrList, Integer icmpType,Integer icmpCode,TrafficType trafficType) {
+ boolean alreadyAdded, List cidrList, Integer icmpType,Integer icmpCode,TrafficType trafficType, boolean allow, int number) {
this.vlanTag = vlanTag;
this.protocol = protocol;
@@ -70,12 +71,20 @@ public class NetworkACLTO implements InternalIdentity {
this.icmpType = icmpType;
this.icmpCode = icmpCode;
this.trafficType = trafficType;
+
+ if(!allow){
+ this.action = "DROP";
+ } else {
+ this.action = "ACCEPT";
+ }
+
+ this.number = number;
}
- public NetworkACLTO(FirewallRule rule, String vlanTag, FirewallRule.TrafficType trafficType ) {
+ public NetworkACLTO(NetworkACLItem rule, String vlanTag, NetworkACLItem.TrafficType trafficType ) {
this(rule.getId(), vlanTag, rule.getProtocol(), rule.getSourcePortStart(), rule.getSourcePortEnd(),
- rule.getState() == FirewallRule.State.Revoke, rule.getState() == FirewallRule.State.Active,
- rule.getSourceCidrList() ,rule.getIcmpType(), rule.getIcmpCode(),trafficType);
+ rule.getState() == NetworkACLItem.State.Revoke, rule.getState() == NetworkACLItem.State.Active,
+ rule.getSourceCidrList() ,rule.getIcmpType(), rule.getIcmpCode(),trafficType, rule.getAction() == NetworkACLItem.Action.Allow, rule.getNumber());
}
public long getId() {
@@ -83,7 +92,7 @@ public class NetworkACLTO implements InternalIdentity {
}
public String getSrcVlanTag() {
- return vlanTag;
+ return vlanTag;
}
public String getProtocol() {
@@ -95,18 +104,18 @@ public class NetworkACLTO implements InternalIdentity {
}
public Integer getIcmpType(){
- return icmpType;
+ return icmpType;
}
public Integer getIcmpCode(){
- return icmpCode;
+ return icmpCode;
}
public String getStringPortRange() {
- if (portRange == null || portRange.length < 2)
- return "0:0";
- else
- return NetUtils.portRangeToString(portRange);
+ if (portRange == null || portRange.length < 2)
+ return "0:0";
+ else
+ return NetUtils.portRangeToString(portRange);
}
public boolean revoked() {
@@ -121,7 +130,15 @@ public class NetworkACLTO implements InternalIdentity {
return alreadyAdded;
}
- public FirewallRule.TrafficType getTrafficType() {
+ public TrafficType getTrafficType() {
return trafficType;
}
+
+ public String getAction() {
+ return action;
+ }
+
+ public int getNumber(){
+ return number;
+ }
}
diff --git a/api/src/com/cloud/event/EventTypes.java b/api/src/com/cloud/event/EventTypes.java
index 2489c541dcb..ce71eecebd7 100755
--- a/api/src/com/cloud/event/EventTypes.java
+++ b/api/src/com/cloud/event/EventTypes.java
@@ -113,6 +113,10 @@ public class EventTypes {
public static final String EVENT_NIC_CREATE = "NIC.CREATE";
public static final String EVENT_NIC_DELETE = "NIC.DELETE";
public static final String EVENT_NIC_UPDATE = "NIC.UPDATE";
+ public static final String EVENT_NIC_DETAIL_ADD = "NIC.DETAIL.ADD";
+ public static final String EVENT_NIC_DETAIL_UPDATE = "NIC.DETAIL.UPDATE";
+ public static final String EVENT_NIC_DETAIL_REMOVE = "NIC.DETAIL.REMOVE";
+
// Load Balancers
public static final String EVENT_ASSIGN_TO_LOAD_BALANCER_RULE = "LB.ASSIGN.TO.RULE";
@@ -176,6 +180,9 @@ public class EventTypes {
public static final String EVENT_VOLUME_UPLOAD = "VOLUME.UPLOAD";
public static final String EVENT_VOLUME_MIGRATE = "VOLUME.MIGRATE";
public static final String EVENT_VOLUME_RESIZE = "VOLUME.RESIZE";
+ public static final String EVENT_VOLUME_DETAIL_UPDATE = "VOLUME.DETAIL.UPDATE";
+ public static final String EVENT_VOLUME_DETAIL_ADD = "VOLUME.DETAIL.ADD";
+ public static final String EVENT_VOLUME_DETAIL_REMOVE = "VOLUME.DETAIL.REMOVE";
// Domains
public static final String EVENT_DOMAIN_CREATE = "DOMAIN.CREATE";
@@ -344,6 +351,14 @@ public class EventTypes {
public static final String EVENT_VPC_DELETE = "VPC.DELETE";
public static final String EVENT_VPC_RESTART = "VPC.RESTART";
+ // Network ACL
+ public static final String EVENT_NETWORK_ACL_CREATE = "NETWORK.ACL.CREATE";
+ public static final String EVENT_NETWORK_ACL_DELETE = "NETWORK.ACL.DELETE";
+ public static final String EVENT_NETWORK_ACL_REPLACE = "NETWORK.ACL.REPLACE";
+ public static final String EVENT_NETWORK_ACL_ITEM_CREATE = "NETWORK.ACL.ITEM.CREATE";
+ public static final String EVENT_NETWORK_ACL_ITEM_UPDATE = "NETWORK.ACL.ITEM.UPDATE";
+ public static final String EVENT_NETWORK_ACL_ITEM_DELETE = "NETWORK.ACL.ITEM.DELETE";
+
// VPC offerings
public static final String EVENT_VPC_OFFERING_CREATE = "VPC.OFFERING.CREATE";
public static final String EVENT_VPC_OFFERING_UPDATE = "VPC.OFFERING.UPDATE";
@@ -361,6 +376,10 @@ public class EventTypes {
public static final String EVENT_TAGS_CREATE = "CREATE_TAGS";
public static final String EVENT_TAGS_DELETE = "DELETE_TAGS";
+ // meta data related events
+ public static final String EVENT_RESOURCE_DETAILS_CREATE = "CREATE_RESOURCE_DETAILS";
+ public static final String EVENT_RESOURCE_DETAILS_DELETE = "DELETE_RESOURCE_DETAILS";
+
// vm snapshot events
public static final String EVENT_VM_SNAPSHOT_CREATE = "VMSNAPSHOT.CREATE";
public static final String EVENT_VM_SNAPSHOT_DELETE = "VMSNAPSHOT.DELETE";
diff --git a/api/src/com/cloud/exception/MissingParameterValueException.java b/api/src/com/cloud/exception/MissingParameterValueException.java
new file mode 100644
index 00000000000..231541dcdb3
--- /dev/null
+++ b/api/src/com/cloud/exception/MissingParameterValueException.java
@@ -0,0 +1,25 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.exception;
+
+import com.cloud.utils.exception.CloudRuntimeException;
+public class MissingParameterValueException extends CloudRuntimeException {
+
+ public MissingParameterValueException(String message) {
+ super(message);
+ }
+}
\ No newline at end of file
diff --git a/api/src/com/cloud/host/Status.java b/api/src/com/cloud/host/Status.java
index 97b151dc723..dd49122c13b 100755
--- a/api/src/com/cloud/host/Status.java
+++ b/api/src/com/cloud/host/Status.java
@@ -147,6 +147,7 @@ public enum Status {
s_fsm.addTransition(Status.Down, Event.Remove, Status.Removed);
s_fsm.addTransition(Status.Down, Event.ManagementServerDown, Status.Down);
s_fsm.addTransition(Status.Down, Event.AgentDisconnected, Status.Down);
+ s_fsm.addTransition(Status.Down, Event.PingTimeout, Status.Down);
s_fsm.addTransition(Status.Alert, Event.AgentConnected, Status.Connecting);
s_fsm.addTransition(Status.Alert, Event.Ping, Status.Up);
s_fsm.addTransition(Status.Alert, Event.Remove, Status.Removed);
diff --git a/api/src/com/cloud/network/Network.java b/api/src/com/cloud/network/Network.java
index fa062c6a694..a06208b2565 100644
--- a/api/src/com/cloud/network/Network.java
+++ b/api/src/com/cloud/network/Network.java
@@ -322,9 +322,14 @@ public interface Network extends ControlledEntity, StateObject, I
boolean getSpecifyIpRanges();
+ boolean getDisplayNetwork();
+
/**
* @return
*/
Long getVpcId();
+ Long getNetworkACLId();
+
+ void setNetworkACLId(Long networkACLId);
}
diff --git a/api/src/com/cloud/network/NetworkProfile.java b/api/src/com/cloud/network/NetworkProfile.java
index 2f56645139c..fa63ea286aa 100644
--- a/api/src/com/cloud/network/NetworkProfile.java
+++ b/api/src/com/cloud/network/NetworkProfile.java
@@ -52,6 +52,8 @@ public class NetworkProfile implements Network {
private boolean restartRequired;
private boolean specifyIpRanges;
private Long vpcId;
+ private boolean displayNetwork;
+ private Long networkAclId;
public NetworkProfile(Network network) {
this.id = network.getId();
@@ -81,6 +83,8 @@ public class NetworkProfile implements Network {
this.restartRequired = network.isRestartRequired();
this.specifyIpRanges = network.getSpecifyIpRanges();
this.vpcId = network.getVpcId();
+ this.displayNetwork = network.getDisplayNetwork();
+ this.networkAclId = network.getNetworkACLId();
}
public String getDns1() {
@@ -231,11 +235,26 @@ public class NetworkProfile implements Network {
return false;
}
+ @Override
+ public boolean getDisplayNetwork() {
+ return displayNetwork;
+ }
+
@Override
public Long getVpcId() {
return vpcId;
}
+ @Override
+ public Long getNetworkACLId() {
+ return networkAclId;
+ }
+
+ @Override
+ public void setNetworkACLId(Long networkACLId) {
+ this.networkAclId = networkACLId;
+ }
+
@Override
public void setTrafficType(TrafficType type) {
this.trafficType = type;
diff --git a/api/src/com/cloud/network/NetworkService.java b/api/src/com/cloud/network/NetworkService.java
index 5d4fd67d326..2e50c53d8bb 100755
--- a/api/src/com/cloud/network/NetworkService.java
+++ b/api/src/com/cloud/network/NetworkService.java
@@ -21,9 +21,7 @@ import java.util.List;
import org.apache.cloudstack.api.command.admin.network.DedicateGuestVlanRangeCmd;
import org.apache.cloudstack.api.command.admin.network.ListDedicatedGuestVlanRangesCmd;
import org.apache.cloudstack.api.command.admin.usage.ListTrafficTypeImplementorsCmd;
-import org.apache.cloudstack.api.command.user.network.RestartNetworkCmd;
-import org.apache.cloudstack.api.command.user.network.CreateNetworkCmd;
-import org.apache.cloudstack.api.command.user.network.ListNetworksCmd;
+import org.apache.cloudstack.api.command.user.network.*;
import org.apache.cloudstack.api.command.user.vm.ListNicsCmd;
import com.cloud.exception.ConcurrentOperationException;
@@ -73,7 +71,7 @@ public interface NetworkService {
IpAddress getIp(long id);
Network updateGuestNetwork(long networkId, String name, String displayText, Account callerAccount, User callerUser,
- String domainSuffix, Long networkOfferingId, Boolean changeCidr, String guestVmCidr);
+ String domainSuffix, Long networkOfferingId, Boolean changeCidr, String guestVmCidr, Boolean displayNetwork);
PhysicalNetwork createPhysicalNetwork(Long zoneId, String vnetRange, String networkSpeed,
List isolationMethods, String broadcastDomainRange, Long domainId, List tags, String name);
@@ -165,7 +163,7 @@ public interface NetworkService {
* @throws ResourceAllocationException
*/
Network createPrivateNetwork(String networkName, String displayText, long physicalNetworkId, String vlan,
- String startIp, String endIP, String gateway, String netmask, long networkOwnerId, Long vpcId, Boolean sourceNat)
+ String startIp, String endIP, String gateway, String netmask, long networkOwnerId, Long vpcId, Boolean sourceNat)
throws ResourceAllocationException, ConcurrentOperationException, InsufficientCapacityException;
/* Requests an IP address for the guest nic */
@@ -176,4 +174,5 @@ public interface NetworkService {
/* lists the nic informaton */
List extends Nic> listNics(ListNicsCmd listNicsCmd);
+
}
diff --git a/api/src/com/cloud/network/element/DhcpServiceProvider.java b/api/src/com/cloud/network/element/DhcpServiceProvider.java
index f73590c53e3..83008ca801f 100644
--- a/api/src/com/cloud/network/element/DhcpServiceProvider.java
+++ b/api/src/com/cloud/network/element/DhcpServiceProvider.java
@@ -28,4 +28,6 @@ import com.cloud.vm.VirtualMachineProfile;
public interface DhcpServiceProvider extends NetworkElement {
boolean addDhcpEntry(Network network, NicProfile nic, VirtualMachineProfile extends VirtualMachine> vm, DeployDestination dest, ReservationContext context) throws ConcurrentOperationException, InsufficientCapacityException, ResourceUnavailableException;
+ boolean configDhcpSupportForSubnet(Network network, NicProfile nic, VirtualMachineProfile extends VirtualMachine> vm, DeployDestination dest, ReservationContext context) throws ConcurrentOperationException, InsufficientCapacityException, ResourceUnavailableException;
+ boolean removeDhcpSupportForSubnet(Network network);
}
diff --git a/api/src/com/cloud/network/element/NetworkACLServiceProvider.java b/api/src/com/cloud/network/element/NetworkACLServiceProvider.java
index 4073b07ba1b..dac0a25c668 100644
--- a/api/src/com/cloud/network/element/NetworkACLServiceProvider.java
+++ b/api/src/com/cloud/network/element/NetworkACLServiceProvider.java
@@ -21,6 +21,7 @@ import java.util.List;
import com.cloud.exception.ResourceUnavailableException;
import com.cloud.network.Network;
import com.cloud.network.rules.FirewallRule;
+import com.cloud.network.vpc.NetworkACLItem;
public interface NetworkACLServiceProvider extends NetworkElement{
@@ -30,6 +31,6 @@ public interface NetworkACLServiceProvider extends NetworkElement{
* @return
* @throws ResourceUnavailableException
*/
- boolean applyNetworkACLs(Network config, List extends FirewallRule> rules) throws ResourceUnavailableException;
+ boolean applyNetworkACLs(Network config, List extends NetworkACLItem> rules) throws ResourceUnavailableException;
}
diff --git a/api/src/com/cloud/network/element/VpcProvider.java b/api/src/com/cloud/network/element/VpcProvider.java
index 81b1cf321db..acdd05d063c 100644
--- a/api/src/com/cloud/network/element/VpcProvider.java
+++ b/api/src/com/cloud/network/element/VpcProvider.java
@@ -52,4 +52,6 @@ public interface VpcProvider extends NetworkElement{
boolean deletePrivateGateway(PrivateGateway privateGateway) throws ConcurrentOperationException, ResourceUnavailableException;
boolean applyStaticRoutes(Vpc vpc, List routes) throws ResourceUnavailableException;
+
+ boolean applyACLItemsToPrivateGw(PrivateGateway gateway) throws ResourceUnavailableException;
}
diff --git a/api/src/com/cloud/network/firewall/NetworkACLService.java b/api/src/com/cloud/network/firewall/NetworkACLService.java
deleted file mode 100644
index 97de496f64f..00000000000
--- a/api/src/com/cloud/network/firewall/NetworkACLService.java
+++ /dev/null
@@ -1,51 +0,0 @@
-// Licensed to the Apache Software Foundation (ASF) under one
-// or more contributor license agreements. See the NOTICE file
-// distributed with this work for additional information
-// regarding copyright ownership. The ASF licenses this file
-// to you under the Apache License, Version 2.0 (the
-// "License"); you may not use this file except in compliance
-// with the License. You may obtain a copy of the License at
-//
-// http://www.apache.org/licenses/LICENSE-2.0
-//
-// Unless required by applicable law or agreed to in writing,
-// software distributed under the License is distributed on an
-// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
-// KIND, either express or implied. See the License for the
-// specific language governing permissions and limitations
-// under the License.
-package com.cloud.network.firewall;
-
-
-import java.util.List;
-
-import org.apache.cloudstack.api.command.user.network.ListNetworkACLsCmd;
-
-import com.cloud.exception.NetworkRuleConflictException;
-import com.cloud.exception.ResourceUnavailableException;
-import com.cloud.network.rules.FirewallRule;
-import com.cloud.user.Account;
-import com.cloud.utils.Pair;
-
-public interface NetworkACLService {
- FirewallRule getNetworkACL(long ruleId);
- boolean applyNetworkACLs(long networkId, Account caller) throws ResourceUnavailableException;
-
- /**
- * @param createNetworkACLCmd
- * @return
- */
- FirewallRule createNetworkACL(FirewallRule acl) throws NetworkRuleConflictException;
- /**
- * @param ruleId
- * @param apply
- * @return
- */
- boolean revokeNetworkACL(long ruleId, boolean apply);
- /**
- * @param listNetworkACLsCmd
- * @return
- */
- Pair, Integer> listNetworkACLs(ListNetworkACLsCmd cmd);
-
-}
diff --git a/api/src/com/cloud/network/vpc/NetworkACL.java b/api/src/com/cloud/network/vpc/NetworkACL.java
new file mode 100644
index 00000000000..8bde7c2142f
--- /dev/null
+++ b/api/src/com/cloud/network/vpc/NetworkACL.java
@@ -0,0 +1,36 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+
+package com.cloud.network.vpc;
+
+import org.apache.cloudstack.acl.ControlledEntity;
+import org.apache.cloudstack.api.InternalIdentity;
+
+public interface NetworkACL extends InternalIdentity{
+ public static final long DEFAULT_DENY = 1;
+ public static final long DEFAULT_ALLOW = 2;
+
+ String getDescription();
+
+ String getUuid();
+
+ Long getVpcId();
+
+ long getId();
+
+ String getName();
+}
diff --git a/api/src/com/cloud/network/vpc/NetworkACLItem.java b/api/src/com/cloud/network/vpc/NetworkACLItem.java
new file mode 100644
index 00000000000..312fa7390b2
--- /dev/null
+++ b/api/src/com/cloud/network/vpc/NetworkACLItem.java
@@ -0,0 +1,80 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.network.vpc;
+
+import org.apache.cloudstack.acl.ControlledEntity;
+import org.apache.cloudstack.api.Identity;
+import org.apache.cloudstack.api.InternalIdentity;
+
+import java.util.List;
+
+public interface NetworkACLItem extends InternalIdentity {
+
+ String getUuid();
+
+ Action getAction();
+
+ int getNumber();
+
+ enum State {
+ Staged, // Rule been created but has never got through network rule conflict detection. Rules in this state can not be sent to network elements.
+ Add, // Add means the rule has been created and has gone through network rule conflict detection.
+ Active, // Rule has been sent to the network elements and reported to be active.
+ Revoke // Revoke means this rule has been revoked. If this rule has been sent to the network elements, the rule will be deleted from database.
+ }
+
+ enum TrafficType {
+ Ingress,
+ Egress
+ }
+
+ enum Action {
+ Allow,
+ Deny
+ }
+
+ /**
+ * @return first port of the source port range.
+ */
+ Integer getSourcePortStart();
+
+ /**
+ * @return last port of the source prot range. If this is null, that means only one port is mapped.
+ */
+ Integer getSourcePortEnd();
+
+ /**
+ * @return protocol to open these ports for.
+ */
+ String getProtocol();
+
+ State getState();
+
+ long getAclId();
+
+ Integer getIcmpCode();
+
+ Integer getIcmpType();
+
+ List getSourceCidrList();
+
+ /**
+ * @return
+ */
+ TrafficType getTrafficType();
+
+}
diff --git a/api/src/com/cloud/network/vpc/NetworkACLService.java b/api/src/com/cloud/network/vpc/NetworkACLService.java
new file mode 100644
index 00000000000..ec53c26a4ce
--- /dev/null
+++ b/api/src/com/cloud/network/vpc/NetworkACLService.java
@@ -0,0 +1,135 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.network.vpc;
+
+
+import com.cloud.exception.ResourceUnavailableException;
+import com.cloud.utils.Pair;
+import org.apache.cloudstack.api.command.user.network.CreateNetworkACLCmd;
+import org.apache.cloudstack.api.command.user.network.ListNetworkACLsCmd;
+
+import java.util.List;
+
+public interface NetworkACLService {
+ /**
+ * Creates Network ACL for the specified VPC
+ * @param name
+ * @param description
+ * @param vpcId
+ * @return
+ */
+ NetworkACL createNetworkACL(String name, String description, long vpcId);
+
+ /**
+ * Get Network ACL with specified Id
+ * @param id
+ * @return
+ */
+ NetworkACL getNetworkACL(long id);
+
+ /**
+ * List NetworkACLs by Id/Name/Network or Vpc it belongs to
+ * @param id
+ * @param name
+ * @param networkId
+ * @param vpcId
+ * @return
+ */
+ Pair,Integer> listNetworkACLs(Long id, String name, Long networkId, Long vpcId);
+
+ /**
+ * Delete specified network ACL. Deletion fails if the list is not empty
+ * @param id
+ * @return
+ */
+ boolean deleteNetworkACL(long id);
+
+ /**
+ * Associates ACL with specified Network
+ * @param aclId
+ * @param networkId
+ * @return
+ * @throws ResourceUnavailableException
+ */
+ boolean replaceNetworkACL(long aclId, long networkId) throws ResourceUnavailableException;
+
+ /**
+ * Applied ACL to associated networks
+ * @param aclId
+ * @return
+ * @throws ResourceUnavailableException
+ */
+ boolean applyNetworkACL(long aclId) throws ResourceUnavailableException;
+
+ /**
+ * Creates a Network ACL Item within an ACL and applies the ACL to associated networks
+ * @param createNetworkACLCmd
+ * @return
+ */
+ NetworkACLItem createNetworkACLItem(CreateNetworkACLCmd aclItemCmd);
+
+ /**
+ * Return ACL item with specified Id
+ * @param ruleId
+ * @return
+ */
+ NetworkACLItem getNetworkACLItem(long ruleId);
+
+ /**
+ * Lists Network ACL Items by Id, Network, ACLId, Traffic Type, protocol
+ * @param listNetworkACLsCmd
+ * @return
+ */
+ Pair, Integer> listNetworkACLItems(ListNetworkACLsCmd cmd);
+
+ /**
+ * Revoked ACL Item with specified Id
+ * @param ruleId
+ * @param apply
+ * @return
+ */
+ boolean revokeNetworkACLItem(long ruleId);
+
+ /**
+ * Updates existing aclItem applies to associated networks
+ * @param id
+ * @param protocol
+ * @param sourceCidrList
+ * @param trafficType
+ * @param action
+ * @param number
+ * @param sourcePortStart
+ * @param sourcePortEnd
+ * @param icmpCode
+ * @param icmpType
+ * @return
+ * @throws ResourceUnavailableException
+ */
+ NetworkACLItem updateNetworkACLItem(Long id, String protocol, List sourceCidrList, NetworkACLItem.TrafficType trafficType,
+ String action, Integer number, Integer sourcePortStart, Integer sourcePortEnd,
+ Integer icmpCode, Integer icmpType) throws ResourceUnavailableException;
+
+ /**
+ * Associates ACL with specified Network
+ * @param aclId
+ * @param privateGatewayId
+ * @return
+ * @throws ResourceUnavailableException
+ */
+ boolean replaceNetworkACLonPrivateGw(long aclId, long privateGatewayId) throws ResourceUnavailableException;
+
+}
diff --git a/api/src/com/cloud/network/vpc/VpcGateway.java b/api/src/com/cloud/network/vpc/VpcGateway.java
index e3530d08561..5d278e952ed 100644
--- a/api/src/com/cloud/network/vpc/VpcGateway.java
+++ b/api/src/com/cloud/network/vpc/VpcGateway.java
@@ -81,4 +81,9 @@ public interface VpcGateway extends Identity, ControlledEntity, InternalIdentity
* @return
*/
boolean getSourceNat();
+
+ /**
+ * @return
+ */
+ long getNetworkACLId();
}
diff --git a/api/src/com/cloud/network/vpc/VpcService.java b/api/src/com/cloud/network/vpc/VpcService.java
index 23e276489c2..7a444c07b85 100644
--- a/api/src/com/cloud/network/vpc/VpcService.java
+++ b/api/src/com/cloud/network/vpc/VpcService.java
@@ -172,13 +172,14 @@ public interface VpcService {
* @param netmask
* @param gatewayOwnerId
* @param isSourceNat
+ * @param aclId
* @return
* @throws InsufficientCapacityException
* @throws ConcurrentOperationException
* @throws ResourceAllocationException
*/
public PrivateGateway createVpcPrivateGateway(long vpcId, Long physicalNetworkId, String vlan, String ipAddress,
- String gateway, String netmask, long gatewayOwnerId, Boolean isSourceNat) throws ResourceAllocationException,
+ String gateway, String netmask, long gatewayOwnerId, Boolean isSoruceNat, Long aclId) throws ResourceAllocationException,
ConcurrentOperationException, InsufficientCapacityException;
/**
diff --git a/api/src/com/cloud/server/ResourceMetaDataService.java b/api/src/com/cloud/server/ResourceMetaDataService.java
new file mode 100644
index 00000000000..556f97453a1
--- /dev/null
+++ b/api/src/com/cloud/server/ResourceMetaDataService.java
@@ -0,0 +1,47 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.package com.cloud.server;
+
+package com.cloud.server;
+import java.util.List;
+import java.util.Map;
+
+import com.cloud.server.ResourceTag.TaggedResourceType;
+
+public interface ResourceMetaDataService {
+
+ TaggedResourceType getResourceType (String resourceTypeStr);
+
+ /**
+ * @param resourceId TODO
+ * @param resourceType
+ * @param details
+ * @return
+ */
+ boolean addResourceMetaData(String resourceId, TaggedResourceType resourceType, Map details);
+
+
+ /**
+ *
+ * @param resourceId
+ * @param resourceType
+ * @param key
+ * @return
+ */
+ public boolean deleteResourceMetaData(String resourceId, TaggedResourceType resourceType, String key);
+
+
+ }
diff --git a/api/src/com/cloud/server/ResourceTag.java b/api/src/com/cloud/server/ResourceTag.java
index 9006e305d81..f1d31e4e0d0 100644
--- a/api/src/com/cloud/server/ResourceTag.java
+++ b/api/src/com/cloud/server/ResourceTag.java
@@ -29,6 +29,7 @@ public interface ResourceTag extends ControlledEntity, Identity, InternalIdentit
Volume,
Snapshot,
Network,
+ Nic,
LoadBalancer,
PortForwardingRule,
FirewallRule,
diff --git a/api/src/com/cloud/server/TaggedResourceService.java b/api/src/com/cloud/server/TaggedResourceService.java
index 92a4300db0a..46b185480bb 100644
--- a/api/src/com/cloud/server/TaggedResourceService.java
+++ b/api/src/com/cloud/server/TaggedResourceService.java
@@ -51,4 +51,7 @@ public interface TaggedResourceService {
boolean deleteTags(List resourceIds, TaggedResourceType resourceType, Map tags);
List extends ResourceTag> listByResourceTypeAndId(TaggedResourceType type, long resourceId);
-}
+
+ public Long getResourceId(String resourceId, TaggedResourceType resourceType);
+
+ }
diff --git a/api/src/com/cloud/storage/VolumeApiService.java b/api/src/com/cloud/storage/VolumeApiService.java
index 09a07d4be13..7e5ebe21200 100644
--- a/api/src/com/cloud/storage/VolumeApiService.java
+++ b/api/src/com/cloud/storage/VolumeApiService.java
@@ -18,12 +18,7 @@
*/
package com.cloud.storage;
-import org.apache.cloudstack.api.command.user.volume.AttachVolumeCmd;
-import org.apache.cloudstack.api.command.user.volume.CreateVolumeCmd;
-import org.apache.cloudstack.api.command.user.volume.DetachVolumeCmd;
-import org.apache.cloudstack.api.command.user.volume.MigrateVolumeCmd;
-import org.apache.cloudstack.api.command.user.volume.ResizeVolumeCmd;
-import org.apache.cloudstack.api.command.user.volume.UploadVolumeCmd;
+import org.apache.cloudstack.api.command.user.volume.*;
import com.cloud.exception.ConcurrentOperationException;
import com.cloud.exception.PermissionDeniedException;
@@ -79,4 +74,6 @@ public interface VolumeApiService {
Volume attachVolumeToVM(AttachVolumeCmd command);
Volume detachVolumeFromVM(DetachVolumeCmd cmmd);
+
+ Volume updateVolume(UpdateVolumeCmd updateVolumeCmd);
}
diff --git a/api/src/com/cloud/vm/NicIpAlias.java b/api/src/com/cloud/vm/NicIpAlias.java
new file mode 100644
index 00000000000..11e127ca856
--- /dev/null
+++ b/api/src/com/cloud/vm/NicIpAlias.java
@@ -0,0 +1,45 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.vm;
+
+import org.apache.cloudstack.acl.ControlledEntity;
+import org.apache.cloudstack.api.Identity;
+import org.apache.cloudstack.api.InternalIdentity;
+
+/** Each entry represents the alis ip of a perticular nic.
+ *
+ */
+public interface NicIpAlias extends ControlledEntity, Identity, InternalIdentity{
+ /**
+ * @return id in the CloudStack database
+ */
+ enum state {
+ active,
+ revoked,
+ }
+ long getId();
+ long getNicId();
+ String getIp4Address();
+ String getIp6Address();
+ long getNetworkId();
+ long getVmId();
+ Long getAliasCount();
+ String getNetmask();
+ String getGateway();
+
+
+}
diff --git a/api/src/com/cloud/vm/UserVmService.java b/api/src/com/cloud/vm/UserVmService.java
index fa89521af0a..0a0660ad493 100755
--- a/api/src/com/cloud/vm/UserVmService.java
+++ b/api/src/com/cloud/vm/UserVmService.java
@@ -177,7 +177,10 @@ public interface UserVmService {
* TODO
* @param defaultIp
* TODO
+ * @param displayVm
+ * - Boolean flag whether to the display the vm to the end user or not
* @param affinityGroupIdList
+ *
* @param accountName
* - an optional account for the virtual machine. Must be used
* with domainId
@@ -197,9 +200,9 @@ public interface UserVmService {
* @throws InsufficientResourcesException
*/
UserVm createBasicSecurityGroupVirtualMachine(DataCenter zone, ServiceOffering serviceOffering, VirtualMachineTemplate template, List securityGroupIdList, Account owner, String hostName,
- String displayName, Long diskOfferingId, Long diskSize, String group, HypervisorType hypervisor,
+ String displayName, Long diskOfferingId, Long diskSize, String group, HypervisorType hypervisor,
HTTPMethod httpmethod, String userData, String sshKeyPair, Map requestedIps,
- IpAddresses defaultIp, String keyboard, List affinityGroupIdList)
+ IpAddresses defaultIp, Boolean displayVm, String keyboard, List affinityGroupIdList)
throws InsufficientCapacityException, ConcurrentOperationException, ResourceUnavailableException, StorageUnavailableException, ResourceAllocationException;
/**
@@ -250,7 +253,10 @@ public interface UserVmService {
* TODO
* @param defaultIps
* TODO
+ * @param displayVm
+ * - Boolean flag whether to the display the vm to the end user or not
* @param affinityGroupIdList
+ *
* @param accountName
* - an optional account for the virtual machine. Must be used
* with domainId
@@ -270,8 +276,8 @@ public interface UserVmService {
* @throws InsufficientResourcesException
*/
UserVm createAdvancedSecurityGroupVirtualMachine(DataCenter zone, ServiceOffering serviceOffering, VirtualMachineTemplate template, List networkIdList, List securityGroupIdList,
- Account owner, String hostName, String displayName, Long diskOfferingId, Long diskSize, String group, HypervisorType hypervisor, HTTPMethod httpmethod, String userData, String sshKeyPair,
- Map requestedIps, IpAddresses defaultIps, String keyboard, List affinityGroupIdList)
+ Account owner, String hostName, String displayName, Long diskOfferingId, Long diskSize, String group, HypervisorType hypervisor, HTTPMethod httpmethod, String userData, String sshKeyPair,
+ Map requestedIps, IpAddresses defaultIps, Boolean displayVm, String keyboard, List affinityGroupIdList)
throws InsufficientCapacityException, ConcurrentOperationException, ResourceUnavailableException, StorageUnavailableException, ResourceAllocationException;
/**
@@ -319,7 +325,10 @@ public interface UserVmService {
* TODO
* @param defaultIps
* TODO
+ * @param displayVm
+ * - Boolean flag whether to the display the vm to the end user or not
* @param affinityGroupIdList
+ *
* @param accountName
* - an optional account for the virtual machine. Must be used
* with domainId
@@ -340,8 +349,9 @@ public interface UserVmService {
*/
UserVm createAdvancedVirtualMachine(DataCenter zone, ServiceOffering serviceOffering, VirtualMachineTemplate template, List networkIdList, Account owner, String hostName,
String displayName, Long diskOfferingId, Long diskSize, String group, HypervisorType hypervisor,
- HTTPMethod httpmethod, String userData, String sshKeyPair, Map requestedIps,
- IpAddresses defaultIps, String keyboard, List affinityGroupIdList)
+ HTTPMethod httpmethod, String userData, String sshKeyPair, Map requestedIps,
+ IpAddresses defaultIps, Boolean displayVm, String keyboard, List affinityGroupIdList)
+
throws InsufficientCapacityException, ConcurrentOperationException, ResourceUnavailableException, StorageUnavailableException, ResourceAllocationException;
/**
diff --git a/api/src/org/apache/cloudstack/api/ApiConstants.java b/api/src/org/apache/cloudstack/api/ApiConstants.java
index f179aaaea4b..edbb85c7388 100755
--- a/api/src/org/apache/cloudstack/api/ApiConstants.java
+++ b/api/src/org/apache/cloudstack/api/ApiConstants.java
@@ -56,7 +56,12 @@ public class ApiConstants {
public static final String DISK_OFFERING_ID = "diskofferingid";
public static final String DISK_SIZE = "disksize";
public static final String DISPLAY_NAME = "displayname";
+ public static final String DISPLAY_NETWORK = "displaynetwork";
+ public static final String DISPLAY_NIC = "displaynic";
public static final String DISPLAY_TEXT = "displaytext";
+ public static final String DISPLAY_VM = "displayvm";
+ public static final String DISPLAY_OFFERING = "displayoffering";
+ public static final String DISPLAY_VOLUME = "displayvolume";
public static final String DNS1 = "dns1";
public static final String DNS2 = "dns2";
public static final String IP6_DNS1 = "ip6dns1";
@@ -491,6 +496,8 @@ public class ApiConstants {
public static final String ASA_INSIDE_PORT_PROFILE = "insideportprofile";
public static final String AFFINITY_GROUP_ID = "affinitygroupid";
public static final String DEPLOYMENT_PLANNER = "deploymentplanner";
+ public static final String ACL_ID = "aclid";
+ public static final String NUMBER = "number";
public enum HostDetails {
all, capacity, events, stats, min;
diff --git a/api/src/org/apache/cloudstack/api/BaseCmd.java b/api/src/org/apache/cloudstack/api/BaseCmd.java
index 8d66a8327f0..9ac110cfb1b 100644
--- a/api/src/org/apache/cloudstack/api/BaseCmd.java
+++ b/api/src/org/apache/cloudstack/api/BaseCmd.java
@@ -28,6 +28,7 @@ import java.util.regex.Pattern;
import javax.inject.Inject;
import org.apache.cloudstack.affinity.AffinityGroupService;
+import com.cloud.server.ResourceMetaDataService;
import org.apache.cloudstack.network.element.InternalLoadBalancerElementService;
import org.apache.cloudstack.network.lb.ApplicationLoadBalancerService;
import org.apache.cloudstack.network.lb.InternalLoadBalancerVMService;
@@ -52,7 +53,7 @@ import com.cloud.network.StorageNetworkService;
import com.cloud.network.VpcVirtualNetworkApplianceService;
import com.cloud.network.as.AutoScaleService;
import com.cloud.network.firewall.FirewallService;
-import com.cloud.network.firewall.NetworkACLService;
+import com.cloud.network.vpc.NetworkACLService;
import com.cloud.network.lb.LoadBalancingRulesService;
import com.cloud.network.rules.RulesService;
import com.cloud.network.security.SecurityGroupService;
@@ -132,6 +133,7 @@ public abstract class BaseCmd {
@Inject public IdentityService _identityService;
@Inject public StorageNetworkService _storageNetworkService;
@Inject public TaggedResourceService _taggedResourceService;
+ @Inject public ResourceMetaDataService _resourceMetaDataService;
@Inject public VpcService _vpcService;
@Inject public NetworkACLService _networkACLService;
@Inject public Site2SiteVpnService _s2sVpnService;
diff --git a/api/src/org/apache/cloudstack/api/ResponseGenerator.java b/api/src/org/apache/cloudstack/api/ResponseGenerator.java
index ab8f99583a8..10bf305cb1c 100644
--- a/api/src/org/apache/cloudstack/api/ResponseGenerator.java
+++ b/api/src/org/apache/cloudstack/api/ResponseGenerator.java
@@ -21,8 +21,15 @@ import java.util.EnumSet;
import java.util.List;
import java.util.Map;
+import com.cloud.vm.NicSecondaryIp;
import org.apache.cloudstack.affinity.AffinityGroup;
import org.apache.cloudstack.affinity.AffinityGroupResponse;
+import com.cloud.network.vpc.NetworkACL;
+import com.cloud.network.vpc.NetworkACLItem;
+import com.cloud.network.vpc.PrivateGateway;
+import com.cloud.network.vpc.StaticRoute;
+import com.cloud.network.vpc.Vpc;
+import com.cloud.network.vpc.VpcOffering;
import org.apache.cloudstack.api.ApiConstants.HostDetails;
import org.apache.cloudstack.api.ApiConstants.VMDetails;
import org.apache.cloudstack.api.command.user.job.QueryAsyncJobResultCmd;
@@ -109,6 +116,7 @@ import org.apache.cloudstack.api.response.VpcOfferingResponse;
import org.apache.cloudstack.api.response.VpcResponse;
import org.apache.cloudstack.api.response.VpnUsersResponse;
import org.apache.cloudstack.api.response.ZoneResponse;
+import org.apache.cloudstack.api.response.*;
import org.apache.cloudstack.network.lb.ApplicationLoadBalancerRule;
import org.apache.cloudstack.region.Region;
import org.apache.cloudstack.usage.Usage;
@@ -154,10 +162,6 @@ import com.cloud.network.rules.StaticNatRule;
import com.cloud.network.rules.StickinessPolicy;
import com.cloud.network.security.SecurityGroup;
import com.cloud.network.security.SecurityRule;
-import com.cloud.network.vpc.PrivateGateway;
-import com.cloud.network.vpc.StaticRoute;
-import com.cloud.network.vpc.Vpc;
-import com.cloud.network.vpc.VpcOffering;
import com.cloud.offering.DiskOffering;
import com.cloud.offering.NetworkOffering;
import com.cloud.offering.ServiceOffering;
@@ -381,11 +385,17 @@ public interface ResponseGenerator {
*/
VpcResponse createVpcResponse(Vpc vpc);
+ /**
+ * @param networkACLItem
+ * @return
+ */
+ NetworkACLItemResponse createNetworkACLItemResponse(NetworkACLItem networkACLItem);
+
/**
* @param networkACL
* @return
*/
- NetworkACLResponse createNetworkACLResponse(FirewallRule networkACL);
+ NetworkACLResponse createNetworkACLResponse(NetworkACL networkACL);
/**
* @param result
diff --git a/api/src/org/apache/cloudstack/api/command/admin/offering/CreateDiskOfferingCmd.java b/api/src/org/apache/cloudstack/api/command/admin/offering/CreateDiskOfferingCmd.java
index 68d5dd466a3..aa11599a69e 100644
--- a/api/src/org/apache/cloudstack/api/command/admin/offering/CreateDiskOfferingCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/admin/offering/CreateDiskOfferingCmd.java
@@ -62,7 +62,10 @@ public class CreateDiskOfferingCmd extends BaseCmd {
@Parameter(name=ApiConstants.STORAGE_TYPE, type=CommandType.STRING, description="the storage type of the disk offering. Values are local and shared.")
private String storageType = ServiceOffering.StorageType.shared.toString();
- /////////////////////////////////////////////////////
+ @Parameter(name=ApiConstants.DISPLAY_OFFERING, type=CommandType.BOOLEAN, description="an optional field, whether to display the offering to the end user or not.")
+ private Boolean displayOffering;
+
+/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
/////////////////////////////////////////////////////
@@ -94,6 +97,10 @@ public class CreateDiskOfferingCmd extends BaseCmd {
return storageType;
}
+ public Boolean getDisplayOffering() {
+ return displayOffering;
+ }
+
/////////////////////////////////////////////////////
/////////////// API Implementation///////////////////
/////////////////////////////////////////////////////
diff --git a/api/src/org/apache/cloudstack/api/command/admin/vpc/CreatePrivateGatewayCmd.java b/api/src/org/apache/cloudstack/api/command/admin/vpc/CreatePrivateGatewayCmd.java
index 20556957ff2..22dfb9e2acc 100644
--- a/api/src/org/apache/cloudstack/api/command/admin/vpc/CreatePrivateGatewayCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/admin/vpc/CreatePrivateGatewayCmd.java
@@ -23,6 +23,7 @@ import org.apache.cloudstack.api.BaseAsyncCmd;
import org.apache.cloudstack.api.BaseAsyncCreateCmd;
import org.apache.cloudstack.api.Parameter;
import org.apache.cloudstack.api.ServerApiException;
+import org.apache.cloudstack.api.response.NetworkACLResponse;
import org.apache.cloudstack.api.response.PhysicalNetworkResponse;
import org.apache.cloudstack.api.response.PrivateGatewayResponse;
import org.apache.cloudstack.api.response.VpcResponse;
@@ -74,6 +75,11 @@ public class CreatePrivateGatewayCmd extends BaseAsyncCreateCmd {
" 'false': sourcenat is not supported")
private Boolean isSourceNat;
+ @Parameter(name=ApiConstants.ACL_ID, type=CommandType.UUID, entityType = NetworkACLResponse.class,
+ required=false, description="the ID of the network ACL")
+ private Long aclId;
+
+
/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
/////////////////////////////////////////////////////
@@ -106,9 +112,14 @@ public class CreatePrivateGatewayCmd extends BaseAsyncCreateCmd {
if (isSourceNat == null) {
return false;
}
- return true;
+ return isSourceNat;
}
+ public Long getAclId() {
+ return aclId;
+ }
+
+
/////////////////////////////////////////////////////
/////////////// API Implementation///////////////////
/////////////////////////////////////////////////////
@@ -123,7 +134,7 @@ public class CreatePrivateGatewayCmd extends BaseAsyncCreateCmd {
PrivateGateway result = null;
try {
result = _vpcService.createVpcPrivateGateway(getVpcId(), getPhysicalNetworkId(),
- getVlan(), getStartIp(), getGateway(), getNetmask(), getEntityOwnerId(), getIsSourceNat());
+ getVlan(), getStartIp(), getGateway(), getNetmask(), getEntityOwnerId(), getIsSourceNat(), getAclId());
} catch (InsufficientCapacityException ex){
s_logger.info(ex);
s_logger.trace(ex);
diff --git a/api/src/org/apache/cloudstack/api/command/user/event/DeleteEventsCmd.java b/api/src/org/apache/cloudstack/api/command/user/event/DeleteEventsCmd.java
index 55ca92a5dfe..a03e6d9f7df 100644
--- a/api/src/org/apache/cloudstack/api/command/user/event/DeleteEventsCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/event/DeleteEventsCmd.java
@@ -25,7 +25,6 @@ import org.apache.cloudstack.api.ApiErrorCode;
import org.apache.cloudstack.api.BaseCmd;
import org.apache.cloudstack.api.Parameter;
import org.apache.cloudstack.api.ServerApiException;
-import org.apache.cloudstack.api.response.AlertResponse;
import org.apache.cloudstack.api.response.EventResponse;
import org.apache.cloudstack.api.response.SuccessResponse;
import org.apache.log4j.Logger;
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkACLCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkACLCmd.java
index 2e307018eed..275fa1866b6 100644
--- a/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkACLCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkACLCmd.java
@@ -19,6 +19,8 @@ package org.apache.cloudstack.api.command.user.network;
import java.util.ArrayList;
import java.util.List;
+import com.cloud.network.vpc.NetworkACL;
+import com.cloud.network.vpc.NetworkACLItem;
import org.apache.cloudstack.api.APICommand;
import org.apache.cloudstack.api.ApiConstants;
import org.apache.cloudstack.api.ApiErrorCode;
@@ -26,6 +28,7 @@ import org.apache.cloudstack.api.BaseAsyncCmd;
import org.apache.cloudstack.api.BaseAsyncCreateCmd;
import org.apache.cloudstack.api.Parameter;
import org.apache.cloudstack.api.ServerApiException;
+import org.apache.cloudstack.api.response.NetworkACLItemResponse;
import org.apache.cloudstack.api.response.NetworkACLResponse;
import org.apache.cloudstack.api.response.NetworkResponse;
import org.apache.log4j.Logger;
@@ -36,15 +39,14 @@ import com.cloud.exception.InvalidParameterValueException;
import com.cloud.exception.NetworkRuleConflictException;
import com.cloud.exception.ResourceUnavailableException;
import com.cloud.network.Network;
-import com.cloud.network.rules.FirewallRule;
import com.cloud.network.vpc.Vpc;
import com.cloud.user.Account;
import com.cloud.user.UserContext;
import com.cloud.utils.net.NetUtils;
-@APICommand(name = "createNetworkACL", description = "Creates a ACL rule the given network (the network has to belong to VPC)",
-responseObject = NetworkACLResponse.class)
-public class CreateNetworkACLCmd extends BaseAsyncCreateCmd implements FirewallRule {
+@APICommand(name = "createNetworkACL", description = "Creates a ACL rule in the given network (the network has to belong to VPC)",
+responseObject = NetworkACLItemResponse.class)
+public class CreateNetworkACLCmd extends BaseAsyncCreateCmd {
public static final Logger s_logger = Logger.getLogger(CreateNetworkACLCmd.class.getName());
private static final String s_name = "createnetworkaclresponse";
@@ -54,7 +56,7 @@ public class CreateNetworkACLCmd extends BaseAsyncCreateCmd implements FirewallR
// ///////////////////////////////////////////////////
@Parameter(name = ApiConstants.PROTOCOL, type = CommandType.STRING, required = true, description =
- "the protocol for the ACL rule. Valid values are TCP/UDP/ICMP.")
+ "the protocol for the ACL rule. Valid values are TCP/UDP/ICMP/ALL or valid protocol number")
private String protocol;
@Parameter(name = ApiConstants.START_PORT, type = CommandType.INTEGER, description = "the starting port of ACL")
@@ -74,23 +76,27 @@ public class CreateNetworkACLCmd extends BaseAsyncCreateCmd implements FirewallR
private Integer icmpCode;
@Parameter(name=ApiConstants.NETWORK_ID, type=CommandType.UUID, entityType = NetworkResponse.class,
- required=true,
description="The network of the vm the ACL will be created for")
private Long networkId;
+ @Parameter(name=ApiConstants.ACL_ID, type=CommandType.UUID, entityType = NetworkACLResponse.class,
+ description="The network of the vm the ACL will be created for")
+ private Long aclId;
+
@Parameter(name=ApiConstants.TRAFFIC_TYPE, type=CommandType.STRING, description="the traffic type for the ACL," +
"can be Ingress or Egress, defaulted to Ingress if not specified")
private String trafficType;
+ @Parameter(name=ApiConstants.NUMBER, type=CommandType.INTEGER, description="The network of the vm the ACL will be created for")
+ private Integer number;
+
+ @Parameter(name=ApiConstants.ACTION, type=CommandType.STRING, description="scl entry action, allow or deny")
+ private String action;
+
// ///////////////////////////////////////////////////
// ///////////////// Accessors ///////////////////////
// ///////////////////////////////////////////////////
- public Long getIpAddressId() {
- return null;
- }
-
- @Override
public String getProtocol() {
return protocol.trim();
}
@@ -105,26 +111,11 @@ public class CreateNetworkACLCmd extends BaseAsyncCreateCmd implements FirewallR
}
}
- public long getVpcId() {
- Network network = _networkService.getNetwork(getNetworkId());
- if (network == null) {
- throw new InvalidParameterValueException("Invalid networkId is given");
- }
-
- Long vpcId = network.getVpcId();
- if (vpcId == null) {
- throw new InvalidParameterValueException("Can create network ACL only for the network belonging to the VPC");
- }
-
- return vpcId;
- }
-
- @Override
- public FirewallRule.TrafficType getTrafficType() {
+ public NetworkACLItem.TrafficType getTrafficType() {
if (trafficType == null) {
- return FirewallRule.TrafficType.Ingress;
+ return NetworkACLItem.TrafficType.Ingress;
}
- for (FirewallRule.TrafficType type : FirewallRule.TrafficType.values()) {
+ for (NetworkACLItem.TrafficType type : NetworkACLItem.TrafficType.values()) {
if (type.toString().equalsIgnoreCase(trafficType)) {
return type;
}
@@ -141,192 +132,103 @@ public class CreateNetworkACLCmd extends BaseAsyncCreateCmd implements FirewallR
return s_name;
}
- public void setSourceCidrList(List cidrs){
- cidrlist = cidrs;
+ public String getAction() {
+ return action;
}
- @Override
- public void execute() throws ResourceUnavailableException {
- UserContext callerContext = UserContext.current();
- boolean success = false;
- FirewallRule rule = _networkACLService.getNetworkACL(getEntityId());
- try {
- UserContext.current().setEventDetails("Rule Id: " + getEntityId());
- success = _networkACLService.applyNetworkACLs(rule.getNetworkId(), callerContext.getCaller());
-
- // State is different after the rule is applied, so get new object here
- NetworkACLResponse aclResponse = new NetworkACLResponse();
- if (rule != null) {
- aclResponse = _responseGenerator.createNetworkACLResponse(rule);
- setResponseObject(aclResponse);
- }
- aclResponse.setResponseName(getCommandName());
- } finally {
- if (!success || rule == null) {
- _networkACLService.revokeNetworkACL(getEntityId(), true);
- throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to create network ACL");
- }
- }
+ public Integer getNumber() {
+ return number;
}
- @Override
- public long getId() {
- throw new UnsupportedOperationException("database id can only provided by VO objects");
- }
-
- @Override
- public String getXid() {
- // FIXME: We should allow for end user to specify Xid.
- return null;
- }
-
-
- @Override
- public String getUuid() {
- // TODO Auto-generated method stub
- return null;
- }
-
- @Override
- public Long getSourceIpAddressId() {
- return null;
- }
-
- @Override
public Integer getSourcePortStart() {
- if (publicStartPort != null) {
- return publicStartPort.intValue();
- }
- return null;
+ return publicStartPort;
}
- @Override
public Integer getSourcePortEnd() {
if (publicEndPort == null) {
if (publicStartPort != null) {
- return publicStartPort.intValue();
+ return publicStartPort;
}
} else {
- return publicEndPort.intValue();
+ return publicEndPort;
}
return null;
}
- @Override
- public Purpose getPurpose() {
- return Purpose.Firewall;
- }
-
- @Override
- public State getState() {
- throw new UnsupportedOperationException("Should never call me to find the state");
- }
-
- @Override
- public long getNetworkId() {
+ public Long getNetworkId() {
return networkId;
}
@Override
public long getEntityOwnerId() {
- Vpc vpc = _vpcService.getVpc(getVpcId());
- if (vpc == null) {
- throw new InvalidParameterValueException("Invalid vpcId is given");
- }
-
- Account account = _accountService.getAccount(vpc.getAccountId());
- return account.getId();
- }
-
- @Override
- public long getDomainId() {
- Vpc vpc = _vpcService.getVpc(getVpcId());
- return vpc.getDomainId();
- }
-
- @Override
- public void create() {
- if (getSourceCidrList() != null) {
- for (String cidr: getSourceCidrList()){
- if (!NetUtils.isValidCIDR(cidr)){
- throw new ServerApiException(ApiErrorCode.PARAM_ERROR, "Source cidrs formatting error " + cidr);
- }
- }
- }
-
- try {
- FirewallRule result = _networkACLService.createNetworkACL(this);
- setEntityId(result.getId());
- setEntityUuid(result.getUuid());
- } catch (NetworkRuleConflictException ex) {
- s_logger.info("Network rule conflict: " + ex.getMessage());
- s_logger.trace("Network Rule Conflict: ", ex);
- throw new ServerApiException(ApiErrorCode.NETWORK_RULE_CONFLICT_ERROR, ex.getMessage());
- }
+ Account caller = UserContext.current().getCaller();
+ return caller.getAccountId();
}
@Override
public String getEventType() {
- return EventTypes.EVENT_FIREWALL_OPEN;
+ return EventTypes.EVENT_NETWORK_ACL_ITEM_CREATE;
}
@Override
public String getEventDescription() {
- Network network = _networkService.getNetwork(networkId);
- return ("Createing Network ACL for Netowrk: " + network + " for protocol:" + this.getProtocol());
+ return "Creating Network ACL Item";
}
- @Override
- public long getAccountId() {
- Vpc vpc = _vpcService.getVpc(getVpcId());
- return vpc.getAccountId();
- }
-
- @Override
- public String getSyncObjType() {
- return BaseAsyncCmd.networkSyncObject;
- }
-
- @Override
- public Long getSyncObjId() {
- return getNetworkId();
- }
-
- @Override
public Integer getIcmpCode() {
if (icmpCode != null) {
return icmpCode;
- } else if (protocol.equalsIgnoreCase(NetUtils.ICMP_PROTO)) {
+ } else if (getProtocol().equalsIgnoreCase(NetUtils.ICMP_PROTO)) {
return -1;
}
return null;
}
- @Override
public Integer getIcmpType() {
if (icmpType != null) {
return icmpType;
- } else if (protocol.equalsIgnoreCase(NetUtils.ICMP_PROTO)) {
+ } else if (getProtocol().equalsIgnoreCase(NetUtils.ICMP_PROTO)) {
return -1;
}
return null;
}
- @Override
- public Long getRelated() {
- return null;
+ public Long getACLId() {
+ return aclId;
}
@Override
- public FirewallRuleType getType() {
- return FirewallRuleType.User;
+ public void create() {
+ NetworkACLItem result = _networkACLService.createNetworkACLItem(this);
+ setEntityId(result.getId());
+ setEntityUuid(result.getUuid());
}
@Override
- public AsyncJob.Type getInstanceType() {
- return AsyncJob.Type.FirewallRule;
+ public void execute() throws ResourceUnavailableException {
+ boolean success = false;
+ NetworkACLItem rule = _networkACLService.getNetworkACLItem(getEntityId());
+ try {
+ UserContext.current().setEventDetails("Rule Id: " + getEntityId());
+ success = _networkACLService.applyNetworkACL(rule.getAclId());
+
+ // State is different after the rule is applied, so get new object here
+ rule = _networkACLService.getNetworkACLItem(getEntityId());
+ NetworkACLItemResponse aclResponse = new NetworkACLItemResponse();
+ if (rule != null) {
+ aclResponse = _responseGenerator.createNetworkACLItemResponse(rule);
+ setResponseObject(aclResponse);
+ }
+ aclResponse.setResponseName(getCommandName());
+ } finally {
+ if (!success || rule == null) {
+ _networkACLService.revokeNetworkACLItem(getEntityId());
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to create network ACL Item");
+ }
+ }
}
}
+
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkACLListCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkACLListCmd.java
new file mode 100644
index 00000000000..591a3541a53
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkACLListCmd.java
@@ -0,0 +1,120 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.network;
+
+import com.cloud.event.EventTypes;
+import com.cloud.exception.InvalidParameterValueException;
+import com.cloud.exception.ResourceUnavailableException;
+import com.cloud.network.vpc.NetworkACL;
+import com.cloud.network.vpc.Vpc;
+import com.cloud.user.Account;
+import com.cloud.user.UserContext;
+import org.apache.cloudstack.api.APICommand;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.ApiErrorCode;
+import org.apache.cloudstack.api.BaseAsyncCreateCmd;
+import org.apache.cloudstack.api.Parameter;
+import org.apache.cloudstack.api.ServerApiException;
+import org.apache.cloudstack.api.response.NetworkACLResponse;
+import org.apache.cloudstack.api.response.VpcResponse;
+import org.apache.log4j.Logger;
+
+@APICommand(name = "createNetworkACLList", description = "Creates a Network ACL for the given VPC",
+responseObject = NetworkACLResponse.class)
+public class CreateNetworkACLListCmd extends BaseAsyncCreateCmd {
+ public static final Logger s_logger = Logger.getLogger(CreateNetworkACLListCmd.class.getName());
+
+ private static final String s_name = "createnetworkacllistresponse";
+
+ // ///////////////////////////////////////////////////
+ // ////////////// API parameters /////////////////////
+ // ///////////////////////////////////////////////////
+
+ @Parameter(name = ApiConstants.NAME, type = CommandType.STRING, required = true, description = "Name of the network ACL List")
+ private String name;
+
+ @Parameter(name = ApiConstants.DESCRIPTION, type = CommandType.STRING, description = "Description of the network ACL List")
+ private String description;
+
+ @Parameter(name = ApiConstants.VPC_ID, type = CommandType.UUID, required = true, entityType = VpcResponse.class, description = "Id of the VPC associated with this network ACL List")
+ private Long vpcId;
+
+ // ///////////////////////////////////////////////////
+ // ///////////////// Accessors ///////////////////////
+ // ///////////////////////////////////////////////////
+
+ public String getName() {
+ return name;
+ }
+
+ public String getDescription() {
+ return description;
+ }
+
+ public Long getVpcId() {
+ return vpcId;
+ }
+
+ // ///////////////////////////////////////////////////
+ // ///////////// API Implementation///////////////////
+ // ///////////////////////////////////////////////////
+
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+ @Override
+ public void create() {
+ NetworkACL result = _networkACLService.createNetworkACL(getName(), getDescription(), getVpcId());
+ setEntityId(result.getId());
+ setEntityUuid(result.getUuid());
+ }
+
+ @Override
+ public void execute() throws ResourceUnavailableException {
+ NetworkACL acl = _networkACLService.getNetworkACL(getEntityId());
+ if(acl != null){
+ NetworkACLResponse aclResponse = _responseGenerator.createNetworkACLResponse(acl);
+ setResponseObject(aclResponse);
+ aclResponse.setResponseName(getCommandName());
+ } else {
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to create network ACL");
+ }
+ }
+
+ @Override
+ public long getEntityOwnerId() {
+ Vpc vpc = _vpcService.getVpc(getVpcId());
+ if (vpc == null) {
+ throw new InvalidParameterValueException("Invalid vpcId is given");
+ }
+
+ Account account = _accountService.getAccount(vpc.getAccountId());
+ return account.getId();
+ }
+
+ @Override
+ public String getEventType() {
+ return EventTypes.EVENT_NETWORK_ACL_CREATE;
+ }
+
+ @Override
+ public String getEventDescription() {
+ return "Creating Network ACL with id: "+getEntityUuid();
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkCmd.java
index fc7bd9fdd3f..667c4c89966 100644
--- a/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/network/CreateNetworkCmd.java
@@ -22,13 +22,7 @@ import org.apache.cloudstack.api.ApiErrorCode;
import org.apache.cloudstack.api.BaseCmd;
import org.apache.cloudstack.api.Parameter;
import org.apache.cloudstack.api.ServerApiException;
-import org.apache.cloudstack.api.response.DomainResponse;
-import org.apache.cloudstack.api.response.NetworkOfferingResponse;
-import org.apache.cloudstack.api.response.NetworkResponse;
-import org.apache.cloudstack.api.response.PhysicalNetworkResponse;
-import org.apache.cloudstack.api.response.ProjectResponse;
-import org.apache.cloudstack.api.response.VpcResponse;
-import org.apache.cloudstack.api.response.ZoneResponse;
+import org.apache.cloudstack.api.response.*;
import org.apache.log4j.Logger;
import com.cloud.exception.ConcurrentOperationException;
@@ -126,6 +120,12 @@ public class CreateNetworkCmd extends BaseCmd {
@Parameter(name=ApiConstants.IP6_CIDR, type=CommandType.STRING, description="the CIDR of IPv6 network, must be at least /64")
private String ip6Cidr;
+ @Parameter(name=ApiConstants.DISPLAY_NETWORK, type=CommandType.BOOLEAN, description="an optional field, whether to the display the network to the end user or not.")
+ private Boolean displayNetwork;
+
+ @Parameter(name=ApiConstants.ACL_ID, type=CommandType.UUID, entityType = NetworkACLResponse.class,
+ description="Network ACL Id associated for the network")
+ private Long aclId;
/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
/////////////////////////////////////////////////////
@@ -189,6 +189,10 @@ public class CreateNetworkCmd extends BaseCmd {
return vpcId;
}
+ public Boolean getDisplayNetwork() {
+ return displayNetwork;
+ }
+
public Long getZoneId() {
Long physicalNetworkId = getPhysicalNetworkId();
@@ -247,6 +251,10 @@ public class CreateNetworkCmd extends BaseCmd {
return ip6Cidr.toLowerCase();
}
+ public Long getAclId() {
+ return aclId;
+ }
+
/////////////////////////////////////////////////////
/////////////// API Implementation///////////////////
/////////////////////////////////////////////////////
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/DeleteNetworkACLCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/DeleteNetworkACLCmd.java
index 2a2444b3e1b..d35b22c532a 100644
--- a/api/src/org/apache/cloudstack/api/command/user/network/DeleteNetworkACLCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/network/DeleteNetworkACLCmd.java
@@ -16,6 +16,8 @@
// under the License.
package org.apache.cloudstack.api.command.user.network;
+import com.cloud.network.vpc.NetworkACLItem;
+import com.cloud.user.Account;
import org.apache.cloudstack.api.APICommand;
import org.apache.cloudstack.api.ApiConstants;
import org.apache.cloudstack.api.ApiErrorCode;
@@ -24,6 +26,7 @@ import org.apache.cloudstack.api.Parameter;
import org.apache.cloudstack.api.ServerApiException;
import org.apache.cloudstack.api.response.AccountResponse;
import org.apache.cloudstack.api.response.FirewallRuleResponse;
+import org.apache.cloudstack.api.response.NetworkACLItemResponse;
import org.apache.cloudstack.api.response.SuccessResponse;
import org.apache.log4j.Logger;
@@ -43,14 +46,10 @@ public class DeleteNetworkACLCmd extends BaseAsyncCmd {
//////////////// API parameters /////////////////////
/////////////////////////////////////////////////////
- @Parameter(name=ApiConstants.ID, type=CommandType.UUID, entityType = FirewallRuleResponse.class,
+ @Parameter(name=ApiConstants.ID, type=CommandType.UUID, entityType = NetworkACLItemResponse.class,
required=true, description="the ID of the network ACL")
private Long id;
- // unexposed parameter needed for events logging
- @Parameter(name=ApiConstants.ACCOUNT_ID, type=CommandType.UUID, entityType = AccountResponse.class,
- expose=false)
- private Long ownerId;
/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
/////////////////////////////////////////////////////
@@ -69,7 +68,7 @@ public class DeleteNetworkACLCmd extends BaseAsyncCmd {
@Override
public String getEventType() {
- return EventTypes.EVENT_FIREWALL_CLOSE;
+ return EventTypes.EVENT_NETWORK_ACL_ITEM_DELETE;
}
@Override
@@ -79,44 +78,22 @@ public class DeleteNetworkACLCmd extends BaseAsyncCmd {
@Override
public long getEntityOwnerId() {
- if (ownerId == null) {
- FirewallRule rule = _networkACLService.getNetworkACL(id);
- if (rule == null) {
- throw new InvalidParameterValueException("Unable to find network ACL by id=" + id);
- } else {
- ownerId = rule.getAccountId();
- }
- }
- return ownerId;
+ Account caller = UserContext.current().getCaller();
+ return caller.getAccountId();
}
@Override
public void execute() throws ResourceUnavailableException {
- UserContext.current().setEventDetails("Network ACL Id: " + id);
- boolean result = _networkACLService.revokeNetworkACL(id, true);
+ UserContext.current().setEventDetails("Network ACL Item Id: " + id);
+ boolean result = _networkACLService.revokeNetworkACLItem(id);
if (result) {
SuccessResponse response = new SuccessResponse(getCommandName());
this.setResponseObject(response);
} else {
- throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to delete network ACL");
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to delete network ACL Item");
}
}
-
- @Override
- public String getSyncObjType() {
- return BaseAsyncCmd.networkSyncObject;
- }
-
- @Override
- public Long getSyncObjId() {
- return _firewallService.getFirewallRule(id).getNetworkId();
- }
-
- @Override
- public AsyncJob.Type getInstanceType() {
- return AsyncJob.Type.FirewallRule;
- }
}
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/DeleteNetworkACLListCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/DeleteNetworkACLListCmd.java
new file mode 100644
index 00000000000..379b44a0d50
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/network/DeleteNetworkACLListCmd.java
@@ -0,0 +1,93 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.network;
+
+import com.cloud.async.AsyncJob;
+import com.cloud.event.EventTypes;
+import com.cloud.exception.InvalidParameterValueException;
+import com.cloud.exception.ResourceUnavailableException;
+import com.cloud.network.rules.FirewallRule;
+import com.cloud.network.vpc.NetworkACL;
+import com.cloud.network.vpc.Vpc;
+import com.cloud.user.Account;
+import com.cloud.user.UserContext;
+import org.apache.cloudstack.api.*;
+import org.apache.cloudstack.api.response.AccountResponse;
+import org.apache.cloudstack.api.response.FirewallRuleResponse;
+import org.apache.cloudstack.api.response.NetworkACLResponse;
+import org.apache.cloudstack.api.response.SuccessResponse;
+import org.apache.log4j.Logger;
+
+@APICommand(name = "deleteNetworkACLList", description="Deletes a Network ACL", responseObject=SuccessResponse.class)
+public class DeleteNetworkACLListCmd extends BaseAsyncCmd {
+ public static final Logger s_logger = Logger.getLogger(DeleteNetworkACLListCmd.class.getName());
+ private static final String s_name = "deletenetworkacllistresponse";
+
+ /////////////////////////////////////////////////////
+ //////////////// API parameters /////////////////////
+ /////////////////////////////////////////////////////
+
+ @Parameter(name=ApiConstants.ID, type=CommandType.UUID, entityType = NetworkACLResponse.class,
+ required=true, description="the ID of the network ACL")
+ private Long id;
+
+ /////////////////////////////////////////////////////
+ /////////////////// Accessors ///////////////////////
+ /////////////////////////////////////////////////////
+
+ public long getId() {
+ return id;
+ }
+
+ /////////////////////////////////////////////////////
+ /////////////// API Implementation///////////////////
+ /////////////////////////////////////////////////////
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+ @Override
+ public String getEventType() {
+ return EventTypes.EVENT_NETWORK_ACL_DELETE;
+ }
+
+ @Override
+ public String getEventDescription() {
+ return ("Deleting Network ACL id=" + id);
+ }
+
+ @Override
+ public long getEntityOwnerId() {
+ Account caller = UserContext.current().getCaller();
+ return caller.getAccountId();
+ }
+
+ @Override
+ public void execute() throws ResourceUnavailableException {
+ UserContext.current().setEventDetails("Network ACL Id: " + id);
+ boolean result = _networkACLService.deleteNetworkACL(id);
+
+ if (result) {
+ SuccessResponse response = new SuccessResponse(getCommandName());
+ this.setResponseObject(response);
+ } else {
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to delete network ACL");
+ }
+ }
+}
+
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/ListNetworkACLListsCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/ListNetworkACLListsCmd.java
new file mode 100644
index 00000000000..bb825d9f9f9
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/network/ListNetworkACLListsCmd.java
@@ -0,0 +1,102 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.network;
+
+import com.cloud.network.vpc.NetworkACL;
+import com.cloud.utils.Pair;
+import org.apache.cloudstack.api.APICommand;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.BaseListCmd;
+import org.apache.cloudstack.api.Parameter;
+import org.apache.cloudstack.api.response.ListResponse;
+import org.apache.cloudstack.api.response.NetworkACLResponse;
+import org.apache.cloudstack.api.response.NetworkResponse;
+import org.apache.cloudstack.api.response.VpcResponse;
+import org.apache.log4j.Logger;
+
+import java.util.ArrayList;
+import java.util.List;
+
+@APICommand(name = "listNetworkACLLists", description="Lists all network ACLs", responseObject=NetworkACLResponse.class)
+public class ListNetworkACLListsCmd extends BaseListCmd {
+ public static final Logger s_logger = Logger.getLogger(ListNetworkACLListsCmd.class.getName());
+
+ private static final String s_name = "listnetworkacllistsresponse";
+
+ /////////////////////////////////////////////////////
+ //////////////// API parameters /////////////////////
+ /////////////////////////////////////////////////////
+ @Parameter(name=ApiConstants.ID, type=CommandType.UUID, entityType = NetworkACLResponse.class,
+ description="Lists network ACL with the specified ID.")
+ private Long id;
+
+ @Parameter(name=ApiConstants.NETWORK_ID, type=CommandType.UUID, entityType = NetworkResponse.class,
+ description="list network ACLs by network Id")
+ private Long networkId;
+
+ @Parameter(name=ApiConstants.VPC_ID, type=CommandType.UUID, entityType = VpcResponse.class,
+ description="list network ACLs by Vpc Id")
+ private Long vpcId;
+
+ @Parameter(name=ApiConstants.NAME, type=CommandType.STRING, description="list network ACLs by specified name")
+ private String name;
+
+
+ /////////////////////////////////////////////////////
+ /////////////////// Accessors ///////////////////////
+ /////////////////////////////////////////////////////
+
+ public Long getNetworkId() {
+ return networkId;
+ }
+
+ public Long getId() {
+ return id;
+ }
+
+ public Long getVpcId() {
+ return vpcId;
+ }
+
+ public String getName(){
+ return name;
+ }
+
+ /////////////////////////////////////////////////////
+ /////////////// API Implementation///////////////////
+ /////////////////////////////////////////////////////
+
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+ @Override
+ public void execute(){
+ Pair,Integer> result = _networkACLService.listNetworkACLs(getId(), getName(), getNetworkId(), getVpcId());
+ ListResponse response = new ListResponse();
+ List aclResponses = new ArrayList();
+
+ for (NetworkACL acl : result.first()) {
+ NetworkACLResponse aclResponse = _responseGenerator.createNetworkACLResponse(acl);
+ aclResponses.add(aclResponse);
+ }
+ response.setResponses(aclResponses, result.second());
+ response.setResponseName(getCommandName());
+ this.setResponseObject(response);
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/ListNetworkACLsCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/ListNetworkACLsCmd.java
index d166974e7d1..df21a722408 100644
--- a/api/src/org/apache/cloudstack/api/command/user/network/ListNetworkACLsCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/network/ListNetworkACLsCmd.java
@@ -19,20 +19,18 @@ package org.apache.cloudstack.api.command.user.network;
import java.util.ArrayList;
import java.util.List;
+import com.cloud.network.vpc.NetworkACLItem;
import org.apache.cloudstack.api.APICommand;
import org.apache.cloudstack.api.ApiConstants;
import org.apache.cloudstack.api.BaseListTaggedResourcesCmd;
import org.apache.cloudstack.api.Parameter;
-import org.apache.cloudstack.api.response.FirewallRuleResponse;
-import org.apache.cloudstack.api.response.ListResponse;
-import org.apache.cloudstack.api.response.NetworkACLResponse;
-import org.apache.cloudstack.api.response.NetworkResponse;
+import org.apache.cloudstack.api.response.*;
import org.apache.log4j.Logger;
import com.cloud.network.rules.FirewallRule;
import com.cloud.utils.Pair;
-@APICommand(name = "listNetworkACLs", description="Lists all network ACLs", responseObject=NetworkACLResponse.class)
+@APICommand(name = "listNetworkACLs", description="Lists all network ACL items", responseObject=NetworkACLItemResponse.class)
public class ListNetworkACLsCmd extends BaseListTaggedResourcesCmd {
public static final Logger s_logger = Logger.getLogger(ListNetworkACLsCmd.class.getName());
@@ -42,16 +40,26 @@ public class ListNetworkACLsCmd extends BaseListTaggedResourcesCmd {
//////////////// API parameters /////////////////////
/////////////////////////////////////////////////////
@Parameter(name=ApiConstants.ID, type=CommandType.UUID, entityType = FirewallRuleResponse.class,
- description="Lists network ACL with the specified ID.")
+ description="Lists network ACL Item with the specified ID")
private Long id;
@Parameter(name=ApiConstants.NETWORK_ID, type=CommandType.UUID, entityType = NetworkResponse.class,
- description="list network ACLs by network Id")
+ description="list network ACL Items by network Id")
private Long networkId;
- @Parameter(name=ApiConstants.TRAFFIC_TYPE, type=CommandType.STRING, description="list network ACLs by traffic type - Ingress or Egress")
+ @Parameter(name=ApiConstants.TRAFFIC_TYPE, type=CommandType.STRING, description="list network ACL Items by traffic type - Ingress or Egress")
private String trafficType;
+ @Parameter(name=ApiConstants.ACL_ID, type=CommandType.UUID, entityType = NetworkACLResponse.class,
+ description="list network ACL Items by ACL Id")
+ private Long aclId;
+
+ @Parameter(name=ApiConstants.PROTOCOL, type=CommandType.STRING, description="list network ACL Items by Protocol")
+ private String protocol;
+
+ @Parameter(name=ApiConstants.ACTION, type=CommandType.STRING, description="list network ACL Items by Action")
+ private String action;
+
/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
/////////////////////////////////////////////////////
@@ -68,6 +76,18 @@ public class ListNetworkACLsCmd extends BaseListTaggedResourcesCmd {
return trafficType;
}
+ public Long getAclId(){
+ return aclId;
+ }
+
+ public String getProtocol() {
+ return protocol;
+ }
+
+ public String getAction() {
+ return action;
+ }
+
/////////////////////////////////////////////////////
/////////////// API Implementation///////////////////
/////////////////////////////////////////////////////
@@ -79,12 +99,12 @@ public class ListNetworkACLsCmd extends BaseListTaggedResourcesCmd {
@Override
public void execute(){
- Pair,Integer> result = _networkACLService.listNetworkACLs(this);
- ListResponse response = new ListResponse();
- List aclResponses = new ArrayList();
+ Pair,Integer> result = _networkACLService.listNetworkACLItems(this);
+ ListResponse response = new ListResponse();
+ List aclResponses = new ArrayList();
- for (FirewallRule acl : result.first()) {
- NetworkACLResponse ruleData = _responseGenerator.createNetworkACLResponse(acl);
+ for (NetworkACLItem acl : result.first()) {
+ NetworkACLItemResponse ruleData = _responseGenerator.createNetworkACLItemResponse(acl);
aclResponses.add(ruleData);
}
response.setResponses(aclResponses, result.second());
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/ReplaceNetworkACLListCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/ReplaceNetworkACLListCmd.java
new file mode 100644
index 00000000000..67f40d1a942
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/network/ReplaceNetworkACLListCmd.java
@@ -0,0 +1,120 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.network;
+
+import com.cloud.event.EventTypes;
+import com.cloud.exception.InvalidParameterValueException;
+import com.cloud.exception.ResourceUnavailableException;
+import com.cloud.network.vpc.NetworkACL;
+import com.cloud.network.vpc.Vpc;
+import com.cloud.user.Account;
+import com.cloud.user.UserContext;
+import org.apache.cloudstack.api.*;
+import org.apache.cloudstack.api.response.NetworkACLResponse;
+import org.apache.cloudstack.api.response.NetworkResponse;
+import org.apache.cloudstack.api.response.PrivateGatewayResponse;
+import org.apache.cloudstack.api.response.SuccessResponse;
+import org.apache.log4j.Logger;
+
+@APICommand(name = "replaceNetworkACLList", description="Replaces ACL associated with a Network or private gateway", responseObject=SuccessResponse.class)
+public class ReplaceNetworkACLListCmd extends BaseAsyncCmd {
+ public static final Logger s_logger = Logger.getLogger(ReplaceNetworkACLListCmd.class.getName());
+ private static final String s_name = "replacenetworkacllistresponse";
+
+ /////////////////////////////////////////////////////
+ //////////////// API parameters /////////////////////
+ /////////////////////////////////////////////////////
+
+ @Parameter(name=ApiConstants.ACL_ID, type=CommandType.UUID, entityType = NetworkACLResponse.class,
+ required=true, description="the ID of the network ACL")
+ private long aclId;
+
+ @Parameter(name=ApiConstants.NETWORK_ID, type=CommandType.UUID, entityType = NetworkResponse.class,
+ description="the ID of the network")
+ private Long networkId;
+
+ @Parameter(name=ApiConstants.GATEWAY_ID, type=CommandType.UUID, entityType = PrivateGatewayResponse.class,
+ description="the ID of the private gateway")
+ private Long privateGatewayId;
+
+ /////////////////////////////////////////////////////
+ /////////////////// Accessors ///////////////////////
+ /////////////////////////////////////////////////////
+
+ public long getAclId() {
+ return aclId;
+ }
+
+ public Long getNetworkId(){
+ return networkId;
+ }
+
+ public Long getPrivateGatewayId() {
+ return privateGatewayId;
+ }
+
+ /////////////////////////////////////////////////////
+ /////////////// API Implementation///////////////////
+ /////////////////////////////////////////////////////
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+ @Override
+ public String getEventType() {
+ return EventTypes.EVENT_NETWORK_ACL_REPLACE;
+ }
+
+ @Override
+ public String getEventDescription() {
+ return ("Associating Network ACL id=" + aclId+ " with Network id="+ networkId);
+ }
+
+ @Override
+ public long getEntityOwnerId() {
+ Account caller = UserContext.current().getCaller();
+ return caller.getAccountId();
+ }
+
+ @Override
+ public void execute() throws ResourceUnavailableException {
+ if (getNetworkId() == null && getPrivateGatewayId() == null) {
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Network id and private gateway can't be null at the same time");
+ }
+
+ if (getNetworkId() != null && getPrivateGatewayId() != null) {
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Network id and private gateway can't be passed at the same time");
+ }
+
+ UserContext.current().setEventDetails("Network ACL Id: " + aclId);
+ boolean result = false;
+ if (getPrivateGatewayId() != null) {
+ result = _networkACLService.replaceNetworkACLonPrivateGw(aclId, privateGatewayId);
+ } else {
+ result = _networkACLService.replaceNetworkACL(aclId, networkId);
+ }
+
+ if (result) {
+ SuccessResponse response = new SuccessResponse(getCommandName());
+ this.setResponseObject(response);
+ } else {
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to replace network ACL");
+ }
+ }
+}
+
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/UpdateNetworkACLItemCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/UpdateNetworkACLItemCmd.java
new file mode 100644
index 00000000000..1ea815ab1fb
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/network/UpdateNetworkACLItemCmd.java
@@ -0,0 +1,173 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.network;
+
+import com.cloud.event.EventTypes;
+import com.cloud.exception.InvalidParameterValueException;
+import com.cloud.exception.ResourceUnavailableException;
+import com.cloud.network.vpc.NetworkACLItem;
+import com.cloud.user.Account;
+import com.cloud.user.UserContext;
+import com.cloud.utils.net.NetUtils;
+import org.apache.cloudstack.api.*;
+import org.apache.cloudstack.api.response.NetworkACLItemResponse;
+import org.apache.cloudstack.api.response.NetworkACLResponse;
+import org.apache.cloudstack.api.response.NetworkResponse;
+import org.apache.log4j.Logger;
+
+import java.util.ArrayList;
+import java.util.List;
+
+@APICommand(name = "updateNetworkACLItem", description = "Updates ACL Item with specified Id",
+responseObject = NetworkACLItemResponse.class)
+public class UpdateNetworkACLItemCmd extends BaseAsyncCmd {
+ public static final Logger s_logger = Logger.getLogger(UpdateNetworkACLItemCmd.class.getName());
+
+ private static final String s_name = "createnetworkaclresponse";
+
+ // ///////////////////////////////////////////////////
+ // ////////////// API parameters /////////////////////
+ // ///////////////////////////////////////////////////
+
+ @Parameter(name=ApiConstants.ID, type=CommandType.UUID, entityType = NetworkACLItemResponse.class,
+ required=true, description="the ID of the network ACL Item")
+ private Long id;
+
+ @Parameter(name = ApiConstants.PROTOCOL, type = CommandType.STRING, description =
+ "the protocol for the ACL rule. Valid values are TCP/UDP/ICMP/ALL or valid protocol number")
+ private String protocol;
+
+ @Parameter(name = ApiConstants.START_PORT, type = CommandType.INTEGER, description = "the starting port of ACL")
+ private Integer publicStartPort;
+
+ @Parameter(name = ApiConstants.END_PORT, type = CommandType.INTEGER, description = "the ending port of ACL")
+ private Integer publicEndPort;
+
+ @Parameter(name = ApiConstants.CIDR_LIST, type = CommandType.LIST, collectionType = CommandType.STRING,
+ description = "the cidr list to allow traffic from/to")
+ private List cidrlist;
+
+ @Parameter(name = ApiConstants.ICMP_TYPE, type = CommandType.INTEGER, description = "type of the icmp message being sent")
+ private Integer icmpType;
+
+ @Parameter(name = ApiConstants.ICMP_CODE, type = CommandType.INTEGER, description = "error code for this icmp message")
+ private Integer icmpCode;
+
+ @Parameter(name=ApiConstants.TRAFFIC_TYPE, type=CommandType.STRING, description="the traffic type for the ACL," +
+ "can be Ingress or Egress, defaulted to Ingress if not specified")
+ private String trafficType;
+
+ @Parameter(name=ApiConstants.NUMBER, type=CommandType.INTEGER, description="The network of the vm the ACL will be created for")
+ private Integer number;
+
+ @Parameter(name=ApiConstants.ACTION, type=CommandType.STRING, description="scl entry action, allow or deny")
+ private String action;
+
+ // ///////////////////////////////////////////////////
+ // ///////////////// Accessors ///////////////////////
+ // ///////////////////////////////////////////////////
+
+ public Long getId() {
+ return id;
+ }
+
+ public String getProtocol() {
+ if(protocol != null){
+ return protocol.trim();
+ } else
+ return null;
+ }
+
+ public List getSourceCidrList() {
+ return cidrlist;
+ }
+
+ public NetworkACLItem.TrafficType getTrafficType() {
+ if (trafficType != null) {
+ for (NetworkACLItem.TrafficType type : NetworkACLItem.TrafficType.values()) {
+ if (type.toString().equalsIgnoreCase(trafficType)) {
+ return type;
+ }
+ }
+ }
+ return null;
+ }
+
+ // ///////////////////////////////////////////////////
+ // ///////////// API Implementation///////////////////
+ // ///////////////////////////////////////////////////
+
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+ public String getAction() {
+ return action;
+ }
+
+ public Integer getNumber() {
+ return number;
+ }
+
+ public Integer getSourcePortStart() {
+ return publicStartPort;
+ }
+
+ public Integer getSourcePortEnd() {
+ return publicEndPort;
+ }
+
+ @Override
+ public long getEntityOwnerId() {
+ Account caller = UserContext.current().getCaller();
+ return caller.getAccountId();
+ }
+
+ @Override
+ public String getEventType() {
+ return EventTypes.EVENT_NETWORK_ACL_ITEM_UPDATE;
+ }
+
+ @Override
+ public String getEventDescription() {
+ return "Updating Network ACL Item";
+ }
+
+ public Integer getIcmpCode() {
+ return icmpCode;
+ }
+
+ public Integer getIcmpType() {
+ return icmpType;
+ }
+
+ @Override
+ public void execute() throws ResourceUnavailableException {
+ UserContext.current().setEventDetails("Rule Id: " + getId());
+ NetworkACLItem aclItem = _networkACLService.updateNetworkACLItem(getId(), getProtocol(), getSourceCidrList(), getTrafficType(),
+ getAction(), getNumber(), getSourcePortStart(), getSourcePortEnd(), getIcmpCode(), getIcmpType());
+ if (aclItem == null) {
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to update network ACL Item");
+ }
+ NetworkACLItemResponse aclResponse = _responseGenerator.createNetworkACLItemResponse(aclItem);
+ setResponseObject(aclResponse);
+ aclResponse.setResponseName(getCommandName());
+ }
+
+}
+
diff --git a/api/src/org/apache/cloudstack/api/command/user/network/UpdateNetworkCmd.java b/api/src/org/apache/cloudstack/api/command/user/network/UpdateNetworkCmd.java
index a61474e69d0..fe381246b28 100644
--- a/api/src/org/apache/cloudstack/api/command/user/network/UpdateNetworkCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/network/UpdateNetworkCmd.java
@@ -67,6 +67,9 @@ public class UpdateNetworkCmd extends BaseAsyncCmd {
@Parameter(name=ApiConstants.GUEST_VM_CIDR, type=CommandType.STRING, description="CIDR for Guest VMs,Cloudstack allocates IPs to Guest VMs only from this CIDR")
private String guestVmCidr;
+ @Parameter(name=ApiConstants.DISPLAY_NETWORK, type=CommandType.BOOLEAN, description="an optional field, whether to the display the network to the end user or not.")
+ private Boolean displayNetwork;
+
/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
/////////////////////////////////////////////////////
@@ -101,6 +104,10 @@ public class UpdateNetworkCmd extends BaseAsyncCmd {
private String getGuestVmCidr() {
return guestVmCidr;
}
+
+ public Boolean getDisplayNetwork() {
+ return displayNetwork;
+ }
/////////////////////////////////////////////////////
/////////////// API Implementation///////////////////
/////////////////////////////////////////////////////
@@ -130,7 +137,7 @@ public class UpdateNetworkCmd extends BaseAsyncCmd {
}
Network result = _networkService.updateGuestNetwork(getId(), getNetworkName(), getDisplayText(), callerAccount,
- callerUser, getNetworkDomain(), getNetworkOfferingId(), getChangeCidr(), getGuestVmCidr());
+ callerUser, getNetworkDomain(), getNetworkOfferingId(), getChangeCidr(), getGuestVmCidr(), getDisplayNetwork());
if (result != null) {
diff --git a/api/src/org/apache/cloudstack/api/command/user/vm/DeployVMCmd.java b/api/src/org/apache/cloudstack/api/command/user/vm/DeployVMCmd.java
index 3ed08d26be0..b5cf9f9c054 100755
--- a/api/src/org/apache/cloudstack/api/command/user/vm/DeployVMCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/vm/DeployVMCmd.java
@@ -183,6 +183,8 @@ public class DeployVMCmd extends BaseAsyncCreateCmd {
+ "Mutually exclusive with affinitygroupids parameter")
private List affinityGroupNameList;
+ @Parameter(name=ApiConstants.DISPLAY_VM, type=CommandType.BOOLEAN, since="4.2", description="an optional field, whether to the display the vm to the end user or not.")
+ private Boolean displayVm;
/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
@@ -219,6 +221,10 @@ public class DeployVMCmd extends BaseAsyncCreateCmd {
return HypervisorType.getType(hypervisor);
}
+ public Boolean getDisplayVm() {
+ return displayVm;
+ }
+
public List getSecurityGroupIdList() {
if (securityGroupNameList != null && securityGroupIdList != null) {
throw new InvalidParameterValueException("securitygroupids parameter is mutually exclusive with securitygroupnames parameter");
@@ -481,18 +487,20 @@ public class DeployVMCmd extends BaseAsyncCreateCmd {
throw new InvalidParameterValueException("Can't specify network Ids in Basic zone");
} else {
vm = _userVmService.createBasicSecurityGroupVirtualMachine(zone, serviceOffering, template, getSecurityGroupIdList(), owner, name,
- displayName, diskOfferingId, size, group, getHypervisor(), this.getHttpMethod(), userData, sshKeyPairName, getIpToNetworkMap(), addrs, keyboard, getAffinityGroupIdList());
+ displayName, diskOfferingId, size, group, getHypervisor(), this.getHttpMethod(), userData, sshKeyPairName, getIpToNetworkMap(), addrs, displayVm, keyboard, getAffinityGroupIdList());
}
} else {
if (zone.isSecurityGroupEnabled()) {
vm = _userVmService.createAdvancedSecurityGroupVirtualMachine(zone, serviceOffering, template, getNetworkIds(), getSecurityGroupIdList(),
- owner, name, displayName, diskOfferingId, size, group, getHypervisor(), this.getHttpMethod(), userData, sshKeyPairName, getIpToNetworkMap(), addrs, keyboard, getAffinityGroupIdList());
+ owner, name, displayName, diskOfferingId, size, group, getHypervisor(), this.getHttpMethod(), userData, sshKeyPairName, getIpToNetworkMap(), addrs, displayVm, keyboard, getAffinityGroupIdList());
+
} else {
if (getSecurityGroupIdList() != null && !getSecurityGroupIdList().isEmpty()) {
throw new InvalidParameterValueException("Can't create vm with security groups; security group feature is not enabled per zone");
}
vm = _userVmService.createAdvancedVirtualMachine(zone, serviceOffering, template, getNetworkIds(), owner, name, displayName,
- diskOfferingId, size, group, getHypervisor(), this.getHttpMethod(), userData, sshKeyPairName, getIpToNetworkMap(), addrs, keyboard, getAffinityGroupIdList());
+ diskOfferingId, size, group, getHypervisor(), this.getHttpMethod(), userData, sshKeyPairName, getIpToNetworkMap(), addrs, displayVm, keyboard, getAffinityGroupIdList());
+
}
}
diff --git a/api/src/org/apache/cloudstack/api/command/user/vm/UpdateVMCmd.java b/api/src/org/apache/cloudstack/api/command/user/vm/UpdateVMCmd.java
index bbf9b259201..28602830e02 100644
--- a/api/src/org/apache/cloudstack/api/command/user/vm/UpdateVMCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/vm/UpdateVMCmd.java
@@ -64,6 +64,8 @@ public class UpdateVMCmd extends BaseCmd{
@Parameter(name=ApiConstants.USER_DATA, type=CommandType.STRING, description="an optional binary data that can be sent to the virtual machine upon a successful deployment. This binary data must be base64 encoded before adding it to the request. Using HTTP GET (via querystring), you can send up to 2KB of data after base64 encoding. Using HTTP POST(via POST body), you can send up to 32K of data after base64 encoding.", length=32768)
private String userData;
+ @Parameter(name=ApiConstants.DISPLAY_VM, type=CommandType.BOOLEAN, description="an optional field, whether to the display the vm to the end user or not.")
+ private Boolean displayVm;
/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
@@ -89,6 +91,10 @@ public class UpdateVMCmd extends BaseCmd{
return userData;
}
+ public Boolean getDisplayVm() {
+ return displayVm;
+ }
+
/////////////////////////////////////////////////////
/////////////// API Implementation///////////////////
/////////////////////////////////////////////////////
@@ -107,6 +113,7 @@ public class UpdateVMCmd extends BaseCmd{
}
@Override
+
public long getEntityOwnerId() {
UserVm userVm = _entityMgr.findById(UserVm.class, getId());
if (userVm != null) {
diff --git a/api/src/org/apache/cloudstack/api/command/user/volume/AddResourceDetailCmd.java b/api/src/org/apache/cloudstack/api/command/user/volume/AddResourceDetailCmd.java
new file mode 100644
index 00000000000..de5832dc8e6
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/volume/AddResourceDetailCmd.java
@@ -0,0 +1,116 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.volume;
+
+import com.cloud.server.ResourceTag;
+import org.apache.cloudstack.api.APICommand;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.ApiErrorCode;
+import org.apache.cloudstack.api.BaseAsyncCmd;
+import org.apache.cloudstack.api.Parameter;
+import org.apache.cloudstack.api.ServerApiException;
+import org.apache.cloudstack.api.response.SuccessResponse;
+import org.apache.cloudstack.api.response.UserVmResponse;
+import org.apache.cloudstack.api.response.VolumeResponse;
+import org.apache.log4j.Logger;
+
+import com.cloud.async.AsyncJob;
+import com.cloud.event.EventTypes;
+import com.cloud.storage.Volume;
+import com.cloud.user.Account;
+import com.cloud.user.UserContext;
+
+import java.util.*;
+
+@APICommand(name = "addResourceDetail", description="Adds detail for the Resource.", responseObject=SuccessResponse.class)
+public class AddResourceDetailCmd extends BaseAsyncCmd {
+ public static final Logger s_logger = Logger.getLogger(AddResourceDetailCmd.class.getName());
+ private static final String s_name = "addResourceDetailresponse";
+
+ /////////////////////////////////////////////////////
+ //////////////// API parameters /////////////////////
+ /////////////////////////////////////////////////////
+
+ @Parameter(name = ApiConstants.DETAILS, type = CommandType.MAP, required=true, description = "Map of (key/value pairs)")
+ private Map details;
+
+ @Parameter(name=ApiConstants.RESOURCE_TYPE, type=CommandType.STRING, required=true, description="type of the resource")
+ private String resourceType;
+
+ @Parameter(name=ApiConstants.RESOURCE_ID, type=CommandType.STRING, required=true,
+ collectionType=CommandType.STRING, description="resource id to create the details for")
+ private String resourceId;
+
+ /////////////////////////////////////////////////////
+ /////////////////// Accessors ///////////////////////
+ /////////////////////////////////////////////////////
+
+ public Map getDetails() {
+ Map detailsMap = null;
+ if (!details.isEmpty()) {
+ detailsMap = new HashMap();
+ Collection> servicesCollection = details.values();
+ Iterator> iter = servicesCollection.iterator();
+ while (iter.hasNext()) {
+ HashMap services = (HashMap) iter.next();
+ String key = services.get("key");
+ String value = services.get("value");
+ detailsMap.put(key, value);
+ }
+ }
+ return detailsMap;
+ }
+
+ public ResourceTag.TaggedResourceType getResourceType() {
+ return _taggedResourceService.getResourceType(resourceType);
+ }
+
+ public String getResourceId() {
+ return resourceId;
+ }
+/////////////////////////////////////////////////////
+ /////////////// API Implementation///////////////////
+ /////////////////////////////////////////////////////
+
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+
+ @Override
+ public long getEntityOwnerId() {
+ //FIXME - validate the owner here
+ return 1;
+ }
+
+ @Override
+ public String getEventType() {
+ return EventTypes.EVENT_RESOURCE_DETAILS_CREATE;
+ }
+
+ @Override
+ public String getEventDescription() {
+ return "adding details to the resource ";
+ }
+
+ @Override
+ public void execute(){
+ _resourceMetaDataService.addResourceMetaData(getResourceId(), getResourceType(), getDetails());
+ this.setResponseObject(new SuccessResponse(getCommandName()));
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/command/user/volume/CreateVolumeCmd.java b/api/src/org/apache/cloudstack/api/command/user/volume/CreateVolumeCmd.java
index 5db06bcd47f..86a494b8848 100644
--- a/api/src/org/apache/cloudstack/api/command/user/volume/CreateVolumeCmd.java
+++ b/api/src/org/apache/cloudstack/api/command/user/volume/CreateVolumeCmd.java
@@ -76,8 +76,10 @@ public class CreateVolumeCmd extends BaseAsyncCreateCmd {
description="the ID of the availability zone")
private Long zoneId;
+ @Parameter(name=ApiConstants.DISPLAY_VOLUME, type=CommandType.BOOLEAN, description="an optional field, whether to display the volume to the end user or not.")
+ private Boolean displayVolume;
- /////////////////////////////////////////////////////
+/////////////////////////////////////////////////////
/////////////////// Accessors ///////////////////////
/////////////////////////////////////////////////////
@@ -114,6 +116,10 @@ public class CreateVolumeCmd extends BaseAsyncCreateCmd {
return projectId;
}
+ public Boolean getDisplayVolume() {
+ return displayVolume;
+ }
+
/////////////////////////////////////////////////////
/////////////// API Implementation///////////////////
/////////////////////////////////////////////////////
diff --git a/api/src/org/apache/cloudstack/api/command/user/volume/ListResourceDetailsCmd.java b/api/src/org/apache/cloudstack/api/command/user/volume/ListResourceDetailsCmd.java
new file mode 100644
index 00000000000..c02d4b4c6ef
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/volume/ListResourceDetailsCmd.java
@@ -0,0 +1,75 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+
+package org.apache.cloudstack.api.command.user.volume;
+
+import com.cloud.server.ResourceTag;
+import org.apache.cloudstack.api.APICommand;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.BaseListProjectAndAccountResourcesCmd;
+import org.apache.cloudstack.api.Parameter;
+import org.apache.cloudstack.api.response.ListResponse;
+import org.apache.cloudstack.api.response.ResourceDetailResponse;
+import org.apache.cloudstack.api.response.ResourceTagResponse;
+
+import java.util.List;
+
+@APICommand(name = "listResourceDetails", description = "List resource detail(s)", responseObject = ResourceTagResponse.class, since = "4.2")
+public class ListResourceDetailsCmd extends BaseListProjectAndAccountResourcesCmd{
+ private static final String s_name = "listresourcedetailsresponse";
+
+ @Parameter(name=ApiConstants.RESOURCE_TYPE, type=CommandType.STRING, description="list by resource type")
+ private String resourceType;
+
+ @Parameter(name=ApiConstants.RESOURCE_ID, type=CommandType.STRING, description="list by resource id")
+ private String resourceId;
+
+ @Parameter(name=ApiConstants.KEY, type=CommandType.STRING, description="list by key")
+ private String key;
+
+ /////////////////////////////////////////////////////
+ /////////////////// Accessors ///////////////////////
+ /////////////////////////////////////////////////////
+
+ @Override
+ public void execute() {
+
+ ListResponse response = new ListResponse();
+ List resourceDetailResponse = _queryService.listResource(this);
+ response.setResponses(resourceDetailResponse);
+ response.setResponseName(getCommandName());
+ this.setResponseObject(response);
+ }
+
+ public ResourceTag.TaggedResourceType getResourceType() {
+ return _taggedResourceService.getResourceType(resourceType);
+ }
+
+ public String getResourceId() {
+ return resourceId;
+ }
+
+ public String getKey() {
+ return key;
+ }
+
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+}
diff --git a/api/src/org/apache/cloudstack/api/command/user/volume/RemoveResourceDetailCmd.java b/api/src/org/apache/cloudstack/api/command/user/volume/RemoveResourceDetailCmd.java
new file mode 100644
index 00000000000..3474996a52c
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/volume/RemoveResourceDetailCmd.java
@@ -0,0 +1,110 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for Removeitional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.volume;
+
+import com.cloud.server.ResourceTag;
+import org.apache.cloudstack.api.APICommand;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.ApiErrorCode;
+import org.apache.cloudstack.api.BaseAsyncCmd;
+import org.apache.cloudstack.api.Parameter;
+import org.apache.cloudstack.api.ServerApiException;
+import org.apache.cloudstack.api.response.SuccessResponse;
+import org.apache.cloudstack.api.response.UserVmResponse;
+import org.apache.cloudstack.api.response.VolumeResponse;
+import org.apache.log4j.Logger;
+
+import com.cloud.async.AsyncJob;
+import com.cloud.event.EventTypes;
+import com.cloud.storage.Volume;
+import com.cloud.user.Account;
+import com.cloud.user.UserContext;
+
+import java.util.*;
+
+@APICommand(name = "removeResourceDetail", description="Removes detail for the Resource.", responseObject=SuccessResponse.class)
+public class RemoveResourceDetailCmd extends BaseAsyncCmd {
+ public static final Logger s_logger = Logger.getLogger(RemoveResourceDetailCmd.class.getName());
+ private static final String s_name = "RemoveResourceDetailresponse";
+
+ /////////////////////////////////////////////////////
+ //////////////// API parameters /////////////////////
+ /////////////////////////////////////////////////////
+
+ @Parameter(name = ApiConstants.KEY, type = CommandType.STRING, description = "Delete details matching key/value pairs")
+ private String key;
+
+ @Parameter(name=ApiConstants.RESOURCE_TYPE, type=CommandType.STRING, required=true, description="Delete detail by resource type")
+ private String resourceType;
+
+ @Parameter(name=ApiConstants.RESOURCE_ID, type=CommandType.STRING, required=true,
+ collectionType=CommandType.STRING, description="Delete details for resource id")
+ private String resourceId;
+
+ /////////////////////////////////////////////////////
+ /////////////////// Accessors ///////////////////////
+ /////////////////////////////////////////////////////
+
+
+ public ResourceTag.TaggedResourceType getResourceType(){
+ return _taggedResourceService.getResourceType(resourceType);
+ }
+
+ public String getKey() {
+ return key;
+ }
+
+ public String getResourceId() {
+ return resourceId;
+ }
+
+ /////////////////////////////////////////////////////
+ /////////////// API Implementation///////////////////
+ /////////////////////////////////////////////////////
+
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+ public AsyncJob.Type getInstanceType() {
+ return AsyncJob.Type.Volume;
+ }
+
+
+ @Override
+ public long getEntityOwnerId() {
+ //FIXME - validate the owner here
+ return 1;
+ }
+
+ @Override
+ public String getEventType() {
+ return EventTypes.EVENT_RESOURCE_DETAILS_DELETE;
+ }
+
+ @Override
+ public String getEventDescription() {
+ return "Removing detail to the volume ";
+ }
+
+ @Override
+ public void execute(){
+ _resourceMetaDataService.deleteResourceMetaData(getResourceId(), getResourceType(), getKey());
+ this.setResponseObject(new SuccessResponse(getCommandName()));
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/command/user/volume/UpdateVolumeCmd.java b/api/src/org/apache/cloudstack/api/command/user/volume/UpdateVolumeCmd.java
new file mode 100644
index 00000000000..3453eef9187
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/command/user/volume/UpdateVolumeCmd.java
@@ -0,0 +1,112 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.command.user.volume;
+
+import org.apache.cloudstack.api.APICommand;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.ApiErrorCode;
+import org.apache.cloudstack.api.BaseAsyncCmd;
+import org.apache.cloudstack.api.Parameter;
+import org.apache.cloudstack.api.ServerApiException;
+import org.apache.cloudstack.api.response.UserVmResponse;
+import org.apache.cloudstack.api.response.VolumeResponse;
+import org.apache.log4j.Logger;
+
+import com.cloud.async.AsyncJob;
+import com.cloud.event.EventTypes;
+import com.cloud.storage.Volume;
+import com.cloud.user.Account;
+import com.cloud.user.UserContext;
+
+@APICommand(name = "updateVolume", description="Updates the volume.", responseObject=VolumeResponse.class)
+public class UpdateVolumeCmd extends BaseAsyncCmd {
+ public static final Logger s_logger = Logger.getLogger(UpdateVolumeCmd.class.getName());
+ private static final String s_name = "addVolumeresponse";
+
+ /////////////////////////////////////////////////////
+ //////////////// API parameters /////////////////////
+ /////////////////////////////////////////////////////
+
+ @Parameter(name=ApiConstants.ID, type=CommandType.UUID, entityType=VolumeResponse.class,
+ required=true, description="the ID of the disk volume")
+ private Long id;
+
+ @Parameter(name=ApiConstants.PATH, type=CommandType.STRING,
+ required=true, description="the path of the volume")
+ private String path;
+
+ /////////////////////////////////////////////////////
+ /////////////////// Accessors ///////////////////////
+ /////////////////////////////////////////////////////
+
+ public String getPath() {
+ return path;
+ }
+
+ public Long getId() {
+ return id;
+ }
+
+ /////////////////////////////////////////////////////
+ /////////////// API Implementation///////////////////
+ /////////////////////////////////////////////////////
+
+ @Override
+ public String getCommandName() {
+ return s_name;
+ }
+
+ public AsyncJob.Type getInstanceType() {
+ return AsyncJob.Type.Volume;
+ }
+
+ public Long getInstanceId() {
+ return getId();
+ }
+
+ @Override
+ public long getEntityOwnerId() {
+ Volume volume = _responseGenerator.findVolumeById(getId());
+ if (volume == null) {
+ return Account.ACCOUNT_ID_SYSTEM; // bad id given, parent this command to SYSTEM so ERROR events are tracked
+ }
+ return volume.getAccountId();
+ }
+
+ @Override
+ public String getEventType() {
+ return EventTypes.EVENT_VOLUME_ATTACH;
+ }
+
+ @Override
+ public String getEventDescription() {
+ return "adding detail to the volume: " + getId();
+ }
+
+ @Override
+ public void execute(){
+ UserContext.current().setEventDetails("Volume Id: "+getId());
+ Volume result = _volumeService.updateVolume(this);
+ if (result != null) {
+ VolumeResponse response = _responseGenerator.createVolumeResponse(result);
+ response.setResponseName(getCommandName());
+ this.setResponseObject(response);
+ } else {
+ throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to update volume");
+ }
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/response/DiskOfferingResponse.java b/api/src/org/apache/cloudstack/api/response/DiskOfferingResponse.java
index 04c318f8a2f..377e66ec2b1 100644
--- a/api/src/org/apache/cloudstack/api/response/DiskOfferingResponse.java
+++ b/api/src/org/apache/cloudstack/api/response/DiskOfferingResponse.java
@@ -58,8 +58,20 @@ public class DiskOfferingResponse extends BaseResponse {
@SerializedName("storagetype") @Param(description="the storage type for this disk offering")
private String storageType;
+ @SerializedName("displayoffering") @Param(description="whether to display the offering to the end user or not.")
+ private Boolean displayOffering;
+
+ public Boolean getDisplayOffering() {
+ return displayOffering;
+ }
+
+ public void setDisplayOffering(Boolean displayOffering) {
+ this.displayOffering = displayOffering;
+ }
+
public String getId() {
return id;
+
}
public void setId(String id) {
diff --git a/api/src/org/apache/cloudstack/api/response/NetworkACLItemResponse.java b/api/src/org/apache/cloudstack/api/response/NetworkACLItemResponse.java
new file mode 100644
index 00000000000..400a4db7631
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/response/NetworkACLItemResponse.java
@@ -0,0 +1,122 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.response;
+
+import java.util.List;
+
+import com.cloud.network.vpc.NetworkACLItem;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.BaseResponse;
+
+import com.cloud.serializer.Param;
+import com.google.gson.annotations.SerializedName;
+import org.apache.cloudstack.api.EntityReference;
+
+@EntityReference(value = NetworkACLItem.class)
+public class NetworkACLItemResponse extends BaseResponse {
+ @SerializedName(ApiConstants.ID) @Param(description="the ID of the ACL Item")
+ private String id;
+
+ @SerializedName(ApiConstants.PROTOCOL) @Param(description="the protocol of the ACL")
+ private String protocol;
+
+ @SerializedName(ApiConstants.START_PORT) @Param(description="the starting port of ACL's port range")
+ private String startPort;
+
+ @SerializedName(ApiConstants.END_PORT) @Param(description = "the ending port of ACL's port range")
+ private String endPort;
+
+ @SerializedName(ApiConstants.TRAFFIC_TYPE) @Param(description="the traffic type for the ACL")
+ private String trafficType;
+
+ @SerializedName(ApiConstants.STATE) @Param(description="the state of the rule")
+ private String state;
+
+ @SerializedName(ApiConstants.CIDR_LIST) @Param(description="the cidr list to forward traffic from")
+ private String cidrList;
+
+ @SerializedName(ApiConstants.ICMP_TYPE) @Param(description= "type of the icmp message being sent")
+ private Integer icmpType;
+
+ @SerializedName(ApiConstants.ICMP_CODE) @Param(description = "error code for this icmp message")
+ private Integer icmpCode;
+
+ @SerializedName(ApiConstants.TAGS) @Param(description="the list of resource tags associated with the network ACLs",
+ responseObject = ResourceTagResponse.class)
+ private List tags;
+
+ @SerializedName(ApiConstants.ACL_ID) @Param(description="the ID of the ACL this item belongs to")
+ private String aclId;
+
+ @SerializedName(ApiConstants.NUMBER) @Param(description= "Number of the ACL Item")
+ private Integer number;
+
+ @SerializedName(ApiConstants.ACTION) @Param(description="Action of ACL Item. Allow/Deny")
+ private String action;
+
+ public void setId(String id) {
+ this.id = id;
+ }
+
+ public void setProtocol(String protocol) {
+ this.protocol = protocol;
+ }
+
+ public void setStartPort(String startPort) {
+ this.startPort = startPort;
+ }
+
+ public void setEndPort(String endPort) {
+ this.endPort = endPort;
+ }
+
+ public void setState(String state) {
+ this.state = state;
+ }
+
+ public void setCidrList(String cidrList) {
+ this.cidrList = cidrList;
+ }
+
+ public void setIcmpType(Integer icmpType) {
+ this.icmpType = icmpType;
+ }
+
+ public void setIcmpCode(Integer icmpCode) {
+ this.icmpCode = icmpCode;
+ }
+
+ public void setTrafficType(String trafficType) {
+ this.trafficType = trafficType;
+ }
+
+ public void setTags(List tags) {
+ this.tags = tags;
+ }
+
+ public void setAclId(String aclId) {
+ this.aclId = aclId;
+ }
+
+ public void setNumber(Integer number) {
+ this.number = number;
+ }
+
+ public void setAction(String action) {
+ this.action = action;
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/response/NetworkACLResponse.java b/api/src/org/apache/cloudstack/api/response/NetworkACLResponse.java
index b45b43cf6ec..12ca38b222a 100644
--- a/api/src/org/apache/cloudstack/api/response/NetworkACLResponse.java
+++ b/api/src/org/apache/cloudstack/api/response/NetworkACLResponse.java
@@ -16,84 +16,42 @@
// under the License.
package org.apache.cloudstack.api.response;
-import java.util.List;
-
-import org.apache.cloudstack.api.ApiConstants;
-import org.apache.cloudstack.api.BaseResponse;
-
+import com.cloud.network.vpc.NetworkACL;
import com.cloud.serializer.Param;
import com.google.gson.annotations.SerializedName;
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.BaseResponse;
+import org.apache.cloudstack.api.EntityReference;
-@SuppressWarnings("unused")
+import java.util.List;
+
+@EntityReference(value = NetworkACL.class)
public class NetworkACLResponse extends BaseResponse {
@SerializedName(ApiConstants.ID) @Param(description="the ID of the ACL")
private String id;
- @SerializedName(ApiConstants.PROTOCOL) @Param(description="the protocol of the ACL")
- private String protocol;
+ @SerializedName(ApiConstants.NAME) @Param(description="the Name of the ACL")
+ private String name;
- @SerializedName(ApiConstants.START_PORT) @Param(description="the starting port of ACL's port range")
- private String startPort;
+ @SerializedName(ApiConstants.DESCRIPTION) @Param(description="Description of the ACL")
+ private String description;
- @SerializedName(ApiConstants.END_PORT) @Param(description = "the ending port of ACL's port range")
- private String endPort;
-
- @SerializedName(ApiConstants.TRAFFIC_TYPE) @Param(description="the traffic type for the ACL")
- private String trafficType;
-
- @SerializedName(ApiConstants.STATE) @Param(description="the state of the rule")
- private String state;
-
- @SerializedName(ApiConstants.CIDR_LIST) @Param(description="the cidr list to forward traffic from")
- private String cidrList;
-
- @SerializedName(ApiConstants.ICMP_TYPE) @Param(description= "type of the icmp message being sent")
- private Integer icmpType;
-
- @SerializedName(ApiConstants.ICMP_CODE) @Param(description = "error code for this icmp message")
- private Integer icmpCode;
-
- @SerializedName(ApiConstants.TAGS) @Param(description="the list of resource tags associated with the network ACLs",
- responseObject = ResourceTagResponse.class)
- private List tags;
+ @SerializedName(ApiConstants.VPC_ID) @Param(description="Id of the VPC this ACL is associated with")
+ private String vpcId;
public void setId(String id) {
this.id = id;
}
- public void setProtocol(String protocol) {
- this.protocol = protocol;
+ public void setName(String name) {
+ this.name = name;
}
- public void setStartPort(String startPort) {
- this.startPort = startPort;
+ public void setDescription(String description) {
+ this.description = description;
}
- public void setEndPort(String endPort) {
- this.endPort = endPort;
- }
-
- public void setState(String state) {
- this.state = state;
- }
-
- public void setCidrList(String cidrList) {
- this.cidrList = cidrList;
- }
-
- public void setIcmpType(Integer icmpType) {
- this.icmpType = icmpType;
- }
-
- public void setIcmpCode(Integer icmpCode) {
- this.icmpCode = icmpCode;
- }
-
- public void setTrafficType(String trafficType) {
- this.trafficType = trafficType;
- }
-
- public void setTags(List tags) {
- this.tags = tags;
+ public void setVpcId(String vpcId) {
+ this.vpcId = vpcId;
}
}
diff --git a/api/src/org/apache/cloudstack/api/response/NetworkResponse.java b/api/src/org/apache/cloudstack/api/response/NetworkResponse.java
index 3f366e2e576..d6847d55846 100644
--- a/api/src/org/apache/cloudstack/api/response/NetworkResponse.java
+++ b/api/src/org/apache/cloudstack/api/response/NetworkResponse.java
@@ -162,7 +162,18 @@ public class NetworkResponse extends BaseResponse implements ControlledEntityRes
@SerializedName(ApiConstants.IP6_CIDR) @Param(description="the cidr of IPv6 network")
private String ip6Cidr;
-
+
+ @SerializedName(ApiConstants.DISPLAY_NETWORK) @Param(description="an optional field, whether to the display the network to the end user or not.")
+ private Boolean displayNetwork;
+
+ public Boolean getDisplayNetwork() {
+ return displayNetwork;
+ }
+
+ public void setDisplayNetwork(Boolean displayNetwork) {
+ this.displayNetwork = displayNetwork;
+ }
+
public void setId(String id) {
this.id = id;
}
diff --git a/api/src/org/apache/cloudstack/api/response/NicDetailResponse.java b/api/src/org/apache/cloudstack/api/response/NicDetailResponse.java
new file mode 100644
index 00000000000..f8ddf1c8250
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/response/NicDetailResponse.java
@@ -0,0 +1,81 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.response;
+
+import java.util.Date;
+import java.util.HashSet;
+import java.util.LinkedHashSet;
+import java.util.Set;
+
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.BaseResponse;
+import org.apache.cloudstack.api.EntityReference;
+
+import com.cloud.serializer.Param;
+import com.google.gson.annotations.SerializedName;
+
+@SuppressWarnings("unused")
+public class NicDetailResponse extends BaseResponse{
+ @SerializedName(ApiConstants.ID)
+ @Param(description = "ID of the nic")
+ private String id;
+
+ @SerializedName(ApiConstants.NAME)
+ @Param(description = "name of the nic detail")
+ private String name;
+
+
+ @SerializedName(ApiConstants.VALUE)
+ @Param(description = "value of the nic detail")
+ private String value;
+
+ @SerializedName(ApiConstants.DISPLAY_NIC) @Param(description="an optional field whether to the display the nic to the end user or not.")
+ private Boolean displayNic;
+
+ public String getId() {
+ return id;
+ }
+
+ public void setId(String id) {
+ this.id = id;
+ }
+
+ public String getValue() {
+ return value;
+ }
+
+ public void setValue(String value) {
+ this.value = value;
+ }
+
+ public String getName() {
+
+ return name;
+ }
+
+ public void setName(String name) {
+ this.name = name;
+ }
+
+ public Boolean getDisplayNic() {
+ return displayNic;
+ }
+
+ public void setDisplayNic(Boolean displayNic) {
+ this.displayNic = displayNic;
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/response/PrivateGatewayResponse.java b/api/src/org/apache/cloudstack/api/response/PrivateGatewayResponse.java
index ca760626324..c5c7df59464 100644
--- a/api/src/org/apache/cloudstack/api/response/PrivateGatewayResponse.java
+++ b/api/src/org/apache/cloudstack/api/response/PrivateGatewayResponse.java
@@ -80,6 +80,10 @@ public class PrivateGatewayResponse extends BaseResponse implements ControlledEn
private Boolean sourceNat;
+ @SerializedName(ApiConstants.ACL_ID) @Param(description = "ACL Id set for private gateway")
+ private String aclId;
+
+
@Override
public String getObjectId() {
return this.id;
@@ -154,6 +158,11 @@ public class PrivateGatewayResponse extends BaseResponse implements ControlledEn
this.sourceNat = sourceNat;
}
+ public void setAclId(String aclId) {
+ this.aclId = aclId;
+ }
+
+
}
diff --git a/api/src/org/apache/cloudstack/api/response/ResourceDetailResponse.java b/api/src/org/apache/cloudstack/api/response/ResourceDetailResponse.java
new file mode 100644
index 00000000000..0e917d71904
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/response/ResourceDetailResponse.java
@@ -0,0 +1,81 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.response;
+
+import java.util.Date;
+import java.util.HashSet;
+import java.util.LinkedHashSet;
+import java.util.Set;
+
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.BaseResponse;
+import org.apache.cloudstack.api.EntityReference;
+
+import com.cloud.serializer.Param;
+import com.google.gson.annotations.SerializedName;
+
+@SuppressWarnings("unused")
+public class ResourceDetailResponse extends BaseResponse{
+ @SerializedName(ApiConstants.RESOURCE_ID)
+ @Param(description = "ID of the resource")
+ private String resourceId;
+
+ @SerializedName(ApiConstants.RESOURCE_TYPE)
+ @Param(description = "ID of the resource")
+ private String resourceType;
+
+ @SerializedName(ApiConstants.KEY)
+ @Param(description = "key of the resource detail")
+ private String name;
+
+
+ @SerializedName(ApiConstants.VALUE)
+ @Param(description = "value of the resource detail")
+ private String value;
+
+ public String getResourceId() {
+ return resourceId;
+ }
+
+ public void setResourceId(String resourceId) {
+ this.resourceId = resourceId;
+ }
+
+ public String getResourceType() {
+ return resourceType;
+ }
+
+ public void setResourceType(String resourceType) {
+ this.resourceType = resourceType;
+ }
+
+ public String getName() {
+ return name;
+ }
+
+ public void setName(String name) {
+ this.name = name;
+ }
+
+ public String getValue() {
+ return value;
+ }
+
+ public void setValue(String value) {
+ this.value = value;
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/response/UserVmResponse.java b/api/src/org/apache/cloudstack/api/response/UserVmResponse.java
index da08c94074c..c3bbf8db382 100644
--- a/api/src/org/apache/cloudstack/api/response/UserVmResponse.java
+++ b/api/src/org/apache/cloudstack/api/response/UserVmResponse.java
@@ -177,6 +177,9 @@ public class UserVmResponse extends BaseResponse implements ControlledEntityResp
@Param(description = "list of affinity groups associated with the virtual machine", responseObject = AffinityGroupResponse.class)
private Set affinityGroupList;
+ @SerializedName(ApiConstants.DISPLAY_VM) @Param(description="an optional field whether to the display the vm to the end user or not.")
+ private Boolean displayVm;
+
public UserVmResponse(){
securityGroupList = new LinkedHashSet();
nics = new LinkedHashSet();
@@ -196,7 +199,13 @@ public class UserVmResponse extends BaseResponse implements ControlledEntityResp
return this.id;
}
+ public Boolean getDisplayVm() {
+ return displayVm;
+ }
+ public void setDisplayVm(Boolean displayVm) {
+ this.displayVm = displayVm;
+ }
@Override
public String getObjectId() {
diff --git a/api/src/org/apache/cloudstack/api/response/VolumeDetailResponse.java b/api/src/org/apache/cloudstack/api/response/VolumeDetailResponse.java
new file mode 100644
index 00000000000..04d280d0d9f
--- /dev/null
+++ b/api/src/org/apache/cloudstack/api/response/VolumeDetailResponse.java
@@ -0,0 +1,82 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package org.apache.cloudstack.api.response;
+
+import java.util.Date;
+import java.util.HashSet;
+import java.util.LinkedHashSet;
+import java.util.Set;
+
+import org.apache.cloudstack.api.ApiConstants;
+import org.apache.cloudstack.api.BaseResponse;
+import org.apache.cloudstack.api.EntityReference;
+
+import com.cloud.serializer.Param;
+import com.cloud.storage.Volume;
+import com.google.gson.annotations.SerializedName;
+
+@SuppressWarnings("unused")
+public class VolumeDetailResponse extends BaseResponse{
+ @SerializedName(ApiConstants.ID)
+ @Param(description = "ID of the volume")
+ private String id;
+
+ @SerializedName(ApiConstants.NAME)
+ @Param(description = "name of the volume detail")
+ private String name;
+
+
+ @SerializedName(ApiConstants.VALUE)
+ @Param(description = "value of the volume detail")
+ private String value;
+
+ @SerializedName(ApiConstants.DISPLAY_VOLUME) @Param(description="an optional field whether to the display the volume to the end user or not.")
+ private Boolean displayVm;
+
+ public String getId() {
+ return id;
+ }
+
+ public void setId(String id) {
+ this.id = id;
+ }
+
+ public String getValue() {
+ return value;
+ }
+
+ public void setValue(String value) {
+ this.value = value;
+ }
+
+ public String getName() {
+
+ return name;
+ }
+
+ public void setName(String name) {
+ this.name = name;
+ }
+
+ public Boolean getDisplayVm() {
+ return displayVm;
+ }
+
+ public void setDisplayVm(Boolean displayVm) {
+ this.displayVm = displayVm;
+ }
+}
diff --git a/api/src/org/apache/cloudstack/api/response/VolumeResponse.java b/api/src/org/apache/cloudstack/api/response/VolumeResponse.java
index b928fcd90d0..21d7d1a449f 100644
--- a/api/src/org/apache/cloudstack/api/response/VolumeResponse.java
+++ b/api/src/org/apache/cloudstack/api/response/VolumeResponse.java
@@ -165,6 +165,9 @@ public class VolumeResponse extends BaseResponse implements ControlledViewEntity
@SerializedName(ApiConstants.TAGS) @Param(description="the list of resource tags associated with volume", responseObject = ResourceTagResponse.class)
private Set tags;
+ @SerializedName(ApiConstants.DISPLAY_VOLUME) @Param(description="an optional field whether to the display the volume to the end user or not.")
+ private Boolean displayVm;
+
public VolumeResponse(){
tags = new LinkedHashSet();
}
@@ -324,4 +327,13 @@ public class VolumeResponse extends BaseResponse implements ControlledViewEntity
public void addTag(ResourceTagResponse tag){
this.tags.add(tag);
}
+
+ public Boolean getDisplayVm() {
+ return displayVm;
+ }
+
+ public void setDisplayVm(Boolean displayVm) {
+ this.displayVm = displayVm;
+ }
+
}
diff --git a/api/src/org/apache/cloudstack/query/QueryService.java b/api/src/org/apache/cloudstack/query/QueryService.java
index 2f50d63828c..2dfd97cfa98 100644
--- a/api/src/org/apache/cloudstack/query/QueryService.java
+++ b/api/src/org/apache/cloudstack/query/QueryService.java
@@ -34,30 +34,15 @@ import org.apache.cloudstack.api.command.user.securitygroup.ListSecurityGroupsCm
import org.apache.cloudstack.api.command.user.tag.ListTagsCmd;
import org.apache.cloudstack.api.command.user.vm.ListVMsCmd;
import org.apache.cloudstack.api.command.user.vmgroup.ListVMGroupsCmd;
+import org.apache.cloudstack.api.command.user.volume.ListResourceDetailsCmd;
import org.apache.cloudstack.api.command.user.volume.ListVolumesCmd;
import org.apache.cloudstack.api.command.user.zone.ListZonesByCmd;
-import org.apache.cloudstack.api.response.AccountResponse;
-import org.apache.cloudstack.api.response.AsyncJobResponse;
-import org.apache.cloudstack.api.response.DiskOfferingResponse;
-import org.apache.cloudstack.api.response.DomainRouterResponse;
-import org.apache.cloudstack.api.response.EventResponse;
-import org.apache.cloudstack.api.response.HostResponse;
-import org.apache.cloudstack.api.response.InstanceGroupResponse;
-import org.apache.cloudstack.api.response.ListResponse;
-import org.apache.cloudstack.api.response.ProjectAccountResponse;
-import org.apache.cloudstack.api.response.ProjectInvitationResponse;
-import org.apache.cloudstack.api.response.ProjectResponse;
-import org.apache.cloudstack.api.response.ResourceTagResponse;
-import org.apache.cloudstack.api.response.SecurityGroupResponse;
-import org.apache.cloudstack.api.response.ServiceOfferingResponse;
-import org.apache.cloudstack.api.response.StoragePoolResponse;
-import org.apache.cloudstack.api.response.UserResponse;
-import org.apache.cloudstack.api.response.UserVmResponse;
-import org.apache.cloudstack.api.response.VolumeResponse;
-import org.apache.cloudstack.api.response.ZoneResponse;
+import org.apache.cloudstack.api.response.*;
import com.cloud.exception.PermissionDeniedException;
+import java.util.List;
+
/**
* Service used for list api query.
*
@@ -103,5 +88,8 @@ public interface QueryService {
public ListResponse listAffinityGroups(Long affinityGroupId, String affinityGroupName,
String affinityGroupType, Long vmId, Long startIndex, Long pageSize);
+ public List listResource(ListResourceDetailsCmd cmd);
+
ListResponse searchForInternalLbVms(ListInternalLBVMsCmd cmd);
+
}
diff --git a/client/tomcatconf/applicationContext.xml.in b/client/tomcatconf/applicationContext.xml.in
index d5c61bbc320..1d1eca4c191 100644
--- a/client/tomcatconf/applicationContext.xml.in
+++ b/client/tomcatconf/applicationContext.xml.in
@@ -246,6 +246,8 @@
+
+
@@ -256,7 +258,9 @@
+
+
@@ -354,6 +358,7 @@
+
@@ -679,6 +684,7 @@
+
@@ -698,6 +704,7 @@
+
diff --git a/client/tomcatconf/commands.properties.in b/client/tomcatconf/commands.properties.in
index 216f59a5e1e..4cd9065b641 100644
--- a/client/tomcatconf/commands.properties.in
+++ b/client/tomcatconf/commands.properties.in
@@ -67,7 +67,7 @@ getVMPassword=15
restoreVirtualMachine=15
changeServiceForVirtualMachine=15
scaleVirtualMachine=15
-assignVirtualMachine=1
+assignVirtualMachine=7
migrateVirtualMachine=1
migrateVirtualMachineWithVolume=1
recoverVirtualMachine=7
@@ -274,6 +274,11 @@ listVolumes=15
extractVolume=15
migrateVolume=15
resizeVolume=15
+updateVolume=1
+addVolumeDetail=1
+updateVolumeDetail=1
+removeVolumeDetail=1
+listVolumeDetails=1
#### registration command: FIXME -- this really should be something in management server that
#### generates a new key for the user and they just have to
@@ -344,6 +349,10 @@ updateNetwork=15
addNicToVirtualMachine=15
removeNicFromVirtualMachine=15
updateDefaultNicForVirtualMachine=15
+addNicDetail=1
+updateNicDetail=1
+removeNicDetail=1
+listNicDetails=1
####
addIpToNic=15
@@ -435,8 +444,14 @@ deletePrivateGateway=1
#### Network ACL commands
createNetworkACL=15
+updateNetworkACLItem=15
deleteNetworkACL=15
listNetworkACLs=15
+createNetworkACLList=15
+deleteNetworkACLList=15
+replaceNetworkACLList=15
+listNetworkACLLists=15
+
#### Static route commands
createStaticRoute=15
@@ -448,6 +463,11 @@ createTags=15
deleteTags=15
listTags=15
+#### Meta Data commands
+addResourceDetail=1
+removeResourceDetail=1
+listResourceDetails=1
+
### Site-to-site VPN commands
createVpnCustomerGateway=15
createVpnGateway=15
@@ -585,9 +605,9 @@ listLoadBalancers=15
deleteLoadBalancer=15
#Internal Load Balancer Element commands
-configureInternalLoadBalancerElement=1
-createInternalLoadBalancerElement=1
-listInternalLoadBalancerElements=1
+configureInternalLoadBalancerElement=7
+createInternalLoadBalancerElement=7
+listInternalLoadBalancerElements=7
#### Affinity group commands
diff --git a/core/src/com/cloud/agent/api/routing/CreateIpAliasCommand.java b/core/src/com/cloud/agent/api/routing/CreateIpAliasCommand.java
new file mode 100644
index 00000000000..92486fb847c
--- /dev/null
+++ b/core/src/com/cloud/agent/api/routing/CreateIpAliasCommand.java
@@ -0,0 +1,36 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.agent.api.routing;
+import java.util.List;
+public class CreateIpAliasCommand extends NetworkElementCommand {
+ String routerip;
+ List ipAliasTOs;
+
+
+ public CreateIpAliasCommand(String routerip, List ipAliasTOs){
+ this.routerip = routerip;
+ this.ipAliasTOs = ipAliasTOs;
+ }
+
+ public String getRouterip (){
+ return routerip;
+ }
+
+ public List getIpAliasList() {
+ return ipAliasTOs;
+ }
+}
diff --git a/core/src/com/cloud/agent/api/routing/DeleteIpAliasCommand.java b/core/src/com/cloud/agent/api/routing/DeleteIpAliasCommand.java
new file mode 100644
index 00000000000..612084ff5c0
--- /dev/null
+++ b/core/src/com/cloud/agent/api/routing/DeleteIpAliasCommand.java
@@ -0,0 +1,50 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.agent.api.routing;
+
+
+
+
+
+import java.util.List;
+
+public class DeleteIpAliasCommand extends NetworkElementCommand {
+ String routerip;
+ List deleteIpAliasTOs;
+ List createIpAliasTos;
+
+
+ public DeleteIpAliasCommand( String routerip, List deleteIpAliasTOs, List createIpAliasTos){
+ this.routerip = routerip;
+ this.deleteIpAliasTOs = deleteIpAliasTOs;
+ this.createIpAliasTos = createIpAliasTos;
+
+ }
+
+ public String getRouterip (){
+ return routerip;
+ }
+
+ public List getDeleteIpAliasTos() {
+ return deleteIpAliasTOs;
+ }
+
+ public List getCreateIpAliasTos() {
+ return createIpAliasTos;
+ }
+
+}
diff --git a/core/src/com/cloud/agent/api/routing/DnsMasqConfigCommand.java b/core/src/com/cloud/agent/api/routing/DnsMasqConfigCommand.java
new file mode 100644
index 00000000000..a52af90fb10
--- /dev/null
+++ b/core/src/com/cloud/agent/api/routing/DnsMasqConfigCommand.java
@@ -0,0 +1,65 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.agent.api.routing;
+
+import com.cloud.agent.api.to.DnsmasqTO;
+
+import java.util.List;
+
+public class DnsMasqConfigCommand extends NetworkElementCommand {
+ String domain;
+ String dns1;
+ String dns2;
+ String internal_dns1;
+ String internal_dns2;
+ List dnsmasqTOs;
+
+ public DnsMasqConfigCommand(String domain, List dnsmasqTOs, String dns1, String dns2, String internal_dns1, String internal_dns2) {
+ this.domain = domain;
+ this.dnsmasqTOs = dnsmasqTOs;
+ this.dns1= dns1;
+ this.dns2= dns2;
+ this.internal_dns1 = internal_dns1;
+ this.internal_dns2 = internal_dns2;
+
+ }
+
+ public List getIps() {
+ return dnsmasqTOs;
+ }
+
+ public String getDomain() {
+ return domain;
+ }
+
+ public String getDns1() {
+ return dns1;
+ }
+
+ public String getDns2() {
+ return dns2;
+ }
+
+ public String getInternal_dns1() {
+ return internal_dns1;
+ }
+
+ public String getInternal_dns2() {
+ return internal_dns2;
+ }
+
+}
diff --git a/core/src/com/cloud/agent/api/routing/IpAliasTO.java b/core/src/com/cloud/agent/api/routing/IpAliasTO.java
new file mode 100644
index 00000000000..26a545deff9
--- /dev/null
+++ b/core/src/com/cloud/agent/api/routing/IpAliasTO.java
@@ -0,0 +1,42 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.agent.api.routing;
+
+
+public class IpAliasTO {
+ String routerip;
+ String netmask;
+ String alias_count;
+
+ public IpAliasTO(String routerip, String netmask, String alias_count) {
+ this.routerip = routerip;
+ this.netmask = netmask;
+ this.alias_count = alias_count;
+ }
+
+ public String getRouterip() {
+ return routerip;
+ }
+
+ public String getNetmask() {
+ return netmask;
+ }
+
+ public String getAlias_count() {
+ return alias_count;
+ }
+}
diff --git a/core/src/com/cloud/agent/api/routing/NetworkElementCommand.java b/core/src/com/cloud/agent/api/routing/NetworkElementCommand.java
index 41ae80fe223..ddb7ac87386 100644
--- a/core/src/com/cloud/agent/api/routing/NetworkElementCommand.java
+++ b/core/src/com/cloud/agent/api/routing/NetworkElementCommand.java
@@ -32,6 +32,8 @@ public abstract class NetworkElementCommand extends Command {
public static final String ROUTER_GUEST_IP = "router.guest.ip";
public static final String ZONE_NETWORK_TYPE = "zone.network.type";
public static final String GUEST_BRIDGE = "guest.bridge";
+ public static final String VPC_PRIVATE_GATEWAY = "vpc.gateway.private";
+
protected NetworkElementCommand() {
super();
diff --git a/core/src/com/cloud/agent/api/routing/SetNetworkACLCommand.java b/core/src/com/cloud/agent/api/routing/SetNetworkACLCommand.java
index dba7354c8f2..d876c61fb4b 100644
--- a/core/src/com/cloud/agent/api/routing/SetNetworkACLCommand.java
+++ b/core/src/com/cloud/agent/api/routing/SetNetworkACLCommand.java
@@ -17,6 +17,9 @@
package com.cloud.agent.api.routing;
+import java.util.Arrays;
+import java.util.Collections;
+import java.util.Comparator;
import java.util.HashSet;
import java.util.List;
import java.util.Set;
@@ -42,11 +45,17 @@ public class SetNetworkACLCommand extends NetworkElementCommand{
public String[][] generateFwRules() {
String [][] result = new String [2][];
Set toAdd = new HashSet();
+ List aclList = Arrays.asList(rules);
+ Collections.sort(aclList, new Comparator() {
+ @Override
+ public int compare(NetworkACLTO acl1, NetworkACLTO acl2) {
+ return acl1.getNumber() > acl2.getNumber() ? 1 : -1;
+ }
+ });
-
- for (NetworkACLTO aclTO: rules) {
- /* example : Ingress:tcp:80:80:0.0.0.0/0:,Egress:tcp:220:220:0.0.0.0/0:,
- * each entry format Ingress/Egress:protocol:start port: end port:scidrs:
+ for (NetworkACLTO aclTO: aclList) {
+ /* example : Ingress:tcp:80:80:0.0.0.0/0:ACCEPT:,Egress:tcp:220:220:0.0.0.0/0:DROP:,
+ * each entry format Ingress/Egress:protocol:start port: end port:scidrs:action:
* reverted entry format Ingress/Egress:reverted:0:0:0:
*/
if (aclTO.revoked() == true)
@@ -80,7 +89,7 @@ public class SetNetworkACLCommand extends NetworkElementCommand{
firstEntry = false;
}
}
- sb.append(":");
+ sb.append(":").append(aclTO.getAction()).append(":");
String aclRuleEntry = sb.toString();
toAdd.add(aclRuleEntry);
diff --git a/core/src/com/cloud/agent/resource/virtualnetwork/VirtualRoutingResource.java b/core/src/com/cloud/agent/resource/virtualnetwork/VirtualRoutingResource.java
index b9bda4d9688..8b996d1bfed 100755
--- a/core/src/com/cloud/agent/resource/virtualnetwork/VirtualRoutingResource.java
+++ b/core/src/com/cloud/agent/resource/virtualnetwork/VirtualRoutingResource.java
@@ -16,28 +16,6 @@
// under the License.
package com.cloud.agent.resource.virtualnetwork;
-import java.io.BufferedReader;
-import java.io.BufferedWriter;
-import java.io.File;
-import java.io.FileOutputStream;
-import java.io.FileWriter;
-import java.io.IOException;
-import java.io.InputStream;
-import java.io.InputStreamReader;
-import java.io.PrintWriter;
-import java.net.InetSocketAddress;
-import java.net.URL;
-import java.net.URLConnection;
-import java.nio.channels.SocketChannel;
-import java.util.List;
-import java.util.Map;
-
-import javax.ejb.Local;
-import javax.naming.ConfigurationException;
-
-import org.apache.commons.codec.binary.Base64;
-import org.apache.log4j.Logger;
-
import com.cloud.agent.api.Answer;
import com.cloud.agent.api.BumpUpPriorityCommand;
import com.cloud.agent.api.CheckRouterAnswer;
@@ -50,7 +28,11 @@ import com.cloud.agent.api.GetDomRVersionCmd;
import com.cloud.agent.api.proxy.CheckConsoleProxyLoadCommand;
import com.cloud.agent.api.proxy.ConsoleProxyLoadAnswer;
import com.cloud.agent.api.proxy.WatchConsoleProxyLoadCommand;
+import com.cloud.agent.api.routing.CreateIpAliasCommand;
+import com.cloud.agent.api.routing.DeleteIpAliasCommand;
import com.cloud.agent.api.routing.DhcpEntryCommand;
+import com.cloud.agent.api.routing.DnsMasqConfigCommand;
+import com.cloud.agent.api.routing.IpAliasTO;
import com.cloud.agent.api.routing.IpAssocAnswer;
import com.cloud.agent.api.routing.IpAssocCommand;
import com.cloud.agent.api.routing.LoadBalancerConfigCommand;
@@ -74,6 +56,7 @@ import com.cloud.agent.api.to.IpAddressTO;
import com.cloud.agent.api.to.PortForwardingRuleTO;
import com.cloud.agent.api.to.StaticNatRuleTO;
import com.cloud.exception.InternalErrorException;
+import com.cloud.network.DnsMasqConfigurator;
import com.cloud.network.HAProxyConfigurator;
import com.cloud.network.LoadBalancerConfigurator;
import com.cloud.network.rules.FirewallRule;
@@ -84,6 +67,26 @@ import com.cloud.utils.net.NetUtils;
import com.cloud.utils.script.OutputInterpreter;
import com.cloud.utils.script.Script;
import com.cloud.utils.ssh.SshHelper;
+import org.apache.commons.codec.binary.Base64;
+import org.apache.log4j.Logger;
+
+import javax.ejb.Local;
+import javax.naming.ConfigurationException;
+import java.io.BufferedReader;
+import java.io.BufferedWriter;
+import java.io.File;
+import java.io.FileOutputStream;
+import java.io.FileWriter;
+import java.io.IOException;
+import java.io.InputStream;
+import java.io.InputStreamReader;
+import java.io.PrintWriter;
+import java.net.InetSocketAddress;
+import java.net.URL;
+import java.net.URLConnection;
+import java.nio.channels.SocketChannel;
+import java.util.List;
+import java.util.Map;
/**
* VirtualNetworkResource controls and configures virtual networking
@@ -106,6 +109,9 @@ public class VirtualRoutingResource implements Manager {
private String _privateEthIf;
private String _bumpUpPriorityPath;
private String _routerProxyPath;
+ private String _createIpAliasPath;
+ private String _deleteIpAliasPath;
+ private String _configDhcpPath;
private int _timeout;
private int _startTimeout;
@@ -137,6 +143,12 @@ public class VirtualRoutingResource implements Manager {
return execute((SavePasswordCommand)cmd);
} else if (cmd instanceof DhcpEntryCommand) {
return execute((DhcpEntryCommand)cmd);
+ } else if (cmd instanceof CreateIpAliasCommand) {
+ return execute((CreateIpAliasCommand) cmd);
+ } else if (cmd instanceof DnsMasqConfigCommand) {
+ return execute((DnsMasqConfigCommand) cmd);
+ } else if (cmd instanceof DeleteIpAliasCommand) {
+ return execute((DeleteIpAliasCommand) cmd);
} else if (cmd instanceof VmDataCommand) {
return execute ((VmDataCommand)cmd);
} else if (cmd instanceof CheckRouterCommand) {
@@ -609,6 +621,67 @@ public class VirtualRoutingResource implements Manager {
return new Answer(cmd, result==null, result);
}
+ protected Answer execute(final CreateIpAliasCommand cmd) {
+ String routerIp = cmd.getAccessDetail(NetworkElementCommand.ROUTER_IP);
+ final Script command = new Script(_createIpAliasPath, _timeout, s_logger);
+ List ipAliasTOs = cmd.getIpAliasList();
+ String args=routerIp+" ";
+ for (IpAliasTO ipaliasto : ipAliasTOs) {
+ args = args + ipaliasto.getAlias_count()+":"+ipaliasto.getRouterip()+":"+ipaliasto.getNetmask()+"-";
+ }
+ command.add(args);
+ final String result = command.execute();
+ return new Answer(cmd, result==null, result);
+ }
+
+ protected Answer execute(final DeleteIpAliasCommand cmd) {
+ final Script command = new Script(_deleteIpAliasPath, _timeout, s_logger);
+ String routerIp = cmd.getAccessDetail(NetworkElementCommand.ROUTER_IP);
+ String args = "";
+ List revokedIpAliasTOs = cmd.getDeleteIpAliasTos();
+ for (IpAliasTO ipAliasTO : revokedIpAliasTOs) {
+ args = args + ipAliasTO.getAlias_count()+":"+ipAliasTO.getRouterip()+":"+ipAliasTO.getNetmask()+"-";
+ }
+ args = args + " " ;
+ List activeIpAliasTOs = cmd.getCreateIpAliasTos();
+ for (IpAliasTO ipAliasTO : activeIpAliasTOs) {
+ args = args + ipAliasTO.getAlias_count()+":"+ipAliasTO.getRouterip()+":"+ipAliasTO.getNetmask()+"-";
+ }
+ command.add(args);
+ final String result = command.execute();
+ return new Answer(cmd, result==null, result);
+ }
+
+ protected Answer execute(final DnsMasqConfigCommand cmd) {
+ final Script command = new Script(_configDhcpPath, _timeout, s_logger);
+ String routerIp = cmd.getAccessDetail(NetworkElementCommand.ROUTER_IP);
+ DnsMasqConfigurator configurator = new DnsMasqConfigurator();
+ String [] config = configurator.generateConfiguration(cmd);
+ File tmpCfgFile = null;
+ try {
+ String cfgFilePath = "";
+ if (routerIp != null) {
+ tmpCfgFile = File.createTempFile(routerIp.replace('.', '_'), "cfg");
+ final PrintWriter out
+ = new PrintWriter(new BufferedWriter(new FileWriter(tmpCfgFile)));
+ for (int i=0; i < config.length; i++) {
+ out.println(config[i]);
+ }
+ out.close();
+ cfgFilePath = tmpCfgFile.getAbsolutePath();
+ }
+ command.add(cfgFilePath);
+ final String result = command.execute();
+ return new Answer(cmd, result == null, result);
+ } catch (final IOException e) {
+ return new Answer(cmd, false, e.getMessage());
+ } finally {
+ if (tmpCfgFile != null) {
+ tmpCfgFile.delete();
+ }
+ }
+ }
+
public String getRouterStatus(String routerIP) {
return routerProxyWithParser("checkrouter.sh", routerIP, null);
}
@@ -819,12 +892,17 @@ public class VirtualRoutingResource implements Manager {
}
public String assignNetworkACL(final String routerIP, final String dev,
- final String routerGIP, final String netmask, final String rule){
+ final String routerGIP, final String netmask, final String rule, String privateGw){
String args = " -d " + dev;
- args += " -i " + routerGIP;
- args += " -m " + netmask;
- args += " -a " + rule;
- return routerProxy("vpc_acl.sh", routerIP, args);
+ if (privateGw != null) {
+ args += " -a " + rule;
+ return routerProxy("vpc_privategw_acl.sh", routerIP, args);
+ } else {
+ args += " -i " + routerGIP;
+ args += " -m " + netmask;
+ args += " -a " + rule;
+ return routerProxy("vpc_acl.sh", routerIP, args);
+ }
}
public String assignSourceNat(final String routerIP, final String pubIP, final String dev) {
diff --git a/core/src/com/cloud/network/DnsMasqConfigurator.java b/core/src/com/cloud/network/DnsMasqConfigurator.java
new file mode 100644
index 00000000000..bbf721d5509
--- /dev/null
+++ b/core/src/com/cloud/network/DnsMasqConfigurator.java
@@ -0,0 +1,118 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.network;
+
+import com.cloud.agent.api.routing.DnsMasqConfigCommand;
+import com.cloud.agent.api.to.DnsmasqTO;
+import org.apache.log4j.Logger;
+
+import java.util.Arrays;
+import java.util.List;
+
+
+
+ public class DnsMasqConfigurator {
+
+ private static final Logger s_logger = Logger.getLogger(DnsMasqConfigurator.class);
+ private static String[] Dnsmasq_config = {"# Never forward plain names (without a dot or domain part) \ndomain-needed\n",
+ "# Never forward addresses in the non-routed address spaces. \nbogus-priv\n",
+ "# Uncomment this to filter useless windows-originated DNS requests # which can trigger dial-on-demand links needlessly. \n # Note that (amongst other things) this blocks all SRV requests, # so don't use it if you use eg Kerberos, SIP, XMMP or Google-talk.# This option only affects forwarding, SRV records originating for # dnsmasq (via srv-host= lines) are not suppressed by it. \nfilterwin2k\n",
+ "# Change this line if you want dns to get its upstream servers from# somewhere other that /etc/resolv.conf \nresolv-file=/etc/dnsmasq-resolv.conf\n",
+ "# Add local-only domains here, queries in these domains are answered\n # from /etc/hosts or DHCP only.\n local=/cs1cloud.internal/",
+ "# If you want dnsmasq to listen for DHCP and DNS requests only on\n #specified interfaces (and the loopback) give the name of the\n# interface (eg eth0) here.\n# Repeat the line for more than one interface.\ninterface=eth0\n",
+ "# Or you can specify which interface _not_ to listen on\nexcept-interface=eth1\nexcept-interface=eth2\nexcept-interface=lo\n",
+ "# Or which to listen on by address (remember to include 127.0.0.1 if\n# you use this.)\n#listen-address=?\n",
+ "# If you want dnsmasq to provide only DNS service on an interface,\n# configure it as shown above, and then use the following line to\n#disable DHCP and TFTP on it.\nno-dhcp-interface=eth1\nno-dhcp-interface=eth2\n",
+ "# On systems which support it, dnsmasq binds the wildcard address,\n" +
+ "# even when it is listening on only some interfaces. It then discards\n" +
+ "# requests that it shouldn't reply to. This has the advantage of\n" +
+ "# working even when interfaces come and go and change address. If you\n" +
+ "# want dnsmasq to really bind only the interfaces it is listening on,\n" +
+ "# uncomment this option. About the only time you may need this is when\n" +
+ "# running another nameserver on the same machine.\n" +
+ "bind-interfaces\n",
+ "# Set this (and domain: see below) if you want to have a domain\n" +
+ "# automatically added to simple names in a hosts-file.\n" +
+ "expand-hosts\n",
+ "# Set the domain for dnsmasq. this is optional, but if it is set, it\n" +
+ "# does the following things.\n" +
+ "# 1) Allows DHCP hosts to have fully qualified domain names, as long\n" +
+ "# as the domain part matches this setting.\n" +
+ "# 2) Sets the \"domain\" DHCP option thereby potentially setting the\n" +
+ "# domain of all systems configured by DHCP\n" +
+ "# 3) Provides the domain part for \"expand-hosts\"\n",
+ "domain=cs1cloud.internal\n",
+ "# Set a different domain for a particular subnet\n",
+ "domain=cs1cloud.internal\n",
+ "# Same idea, but range rather then subnet\n",
+ "domain=cs1cloud.internal\n",
+ "# Uncomment this to enable the integrated DHCP server, you need\n" +
+ "# to supply the range of addresses available for lease and optionally\n" +
+ "# a lease time. If you have more than one network, you will need to\n" +
+ "# repeat this for each network on which you want to supply DHCP\n" +
+ "# service.\n",
+ "dhcp-range=set:net1,ipaddress,static\n",
+ "dhcp-hostsfile=/etc/dhcphosts.txt\n",
+ "log-facility=/var/log/dnsmasq.log\n",
+ "conf-dir=/etc/dnsmasq.d\n",
+ "dhcp-option=tag:net1,3,ipaddress\n",
+ "dhcp-option=tag:net1,1,netmask\n",
+ "dhcp-option=6,10.147.28.149,8.8.8.8\n",
+ "dhcp-optsfile=/etc/dhcpopts.txt\n",
+
+
+ };
+
+ public String[] generateConfiguration(DnsMasqConfigCommand dnsMasqconfigcmd) {
+ List dnsmasqTOs = dnsMasqconfigcmd.getIps();
+ List dnsMasqconf = Arrays.asList(Dnsmasq_config);
+ String range="";
+ String gateway="";
+ String netmask="";
+ String domain= dnsMasqconfigcmd.getDomain();
+ String dnsServers="";
+ int i=0;
+ for (; i< dnsmasqTOs.size(); i++) {
+ range=range + "dhcp-range=set:range"+i+","+dnsmasqTOs.get(i).getRouterIp()+",static\n";
+ gateway=gateway +"dhcp-option=tag:range"+i+",3,"+dnsmasqTOs.get(i).getGateway()+"\n";
+ netmask=netmask +"dhcp-option=tag:range"+i+",1,"+dnsmasqTOs.get(i).getNetmask()+"\n";
+ }
+ dnsMasqconf.set(12, "domain="+domain+"\n");
+ dnsMasqconf.set(14, "domain="+domain+"\n");
+ dnsMasqconf.set(16,"domain="+domain+"\n");
+ dnsMasqconf.set(18, range);
+ dnsMasqconf.set(22, gateway);
+ dnsMasqconf.set(23, netmask);
+ if (dnsMasqconfigcmd.getInternal_dns1() != null) {
+ dnsServers = dnsServers+dnsMasqconfigcmd.getInternal_dns1()+",";
+ }
+ if (dnsMasqconfigcmd.getInternal_dns2() != null) {
+ dnsServers = dnsServers+dnsMasqconfigcmd.getInternal_dns2()+",";
+ }
+ if (dnsMasqconfigcmd.getDns1() != null) {
+ dnsServers = dnsServers+dnsMasqconfigcmd.getDns1()+",";
+ }
+ if (dnsMasqconfigcmd.getDns2() != null) {
+ dnsServers = dnsServers+dnsMasqconfigcmd.getDns2()+",";
+ }
+ dnsServers = dnsServers +"*";
+ dnsServers = dnsServers.replace(";*", "");
+ dnsMasqconf.set(24,"dhcp-option=6,"+dnsServers);
+ return dnsMasqconf.toArray( new String[dnsMasqconf.size()]);
+ }
+
+ }
diff --git a/core/src/com/cloud/storage/VolumeDetailVO.java b/core/src/com/cloud/storage/VolumeDetailVO.java
new file mode 100644
index 00000000000..b0c8c1dbf35
--- /dev/null
+++ b/core/src/com/cloud/storage/VolumeDetailVO.java
@@ -0,0 +1,85 @@
+// Licensed to the Apache Software Foundation (ASF) under one
+// or more contributor license agreements. See the NOTICE file
+// distributed with this work for additional information
+// regarding copyright ownership. The ASF licenses this file
+// to you under the Apache License, Version 2.0 (the
+// "License"); you may not use this file except in compliance
+// with the License. You may obtain a copy of the License at
+//
+// http://www.apache.org/licenses/LICENSE-2.0
+//
+// Unless required by applicable law or agreed to in writing,
+// software distributed under the License is distributed on an
+// "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
+// KIND, either express or implied. See the License for the
+// specific language governing permissions and limitations
+// under the License.
+package com.cloud.storage;
+
+import org.apache.cloudstack.api.InternalIdentity;
+
+import javax.persistence.Column;
+import javax.persistence.Entity;
+import javax.persistence.GeneratedValue;
+import javax.persistence.GenerationType;
+import javax.persistence.Id;
+import javax.persistence.Table;
+
+@Entity
+@Table(name="volume_details")
+public class VolumeDetailVO implements InternalIdentity {
+ @Id
+ @GeneratedValue(strategy=GenerationType.IDENTITY)
+ @Column(name="id")
+ private long id;
+
+ @Column(name="volume_id")
+ private long volumeId;
+
+ @Column(name="name")
+ private String name;
+
+ @Column(name="value", length=1024)
+ private String value;
+
+ public VolumeDetailVO() {}
+
+ public VolumeDetailVO(long volumeId, String name, String value) {
+ this.volumeId = volumeId;
+ this.name = name;
+ this.value = value;
+ }
+
+ public long getId() {
+ return id;
+ }
+
+ public long getVolumeId() {
+ return volumeId;
+ }
+
+ public String getName() {
+ return name;
+ }
+
+ public String getValue() {
+ return value;
+ }
+
+ public void setId(long id) {
+ this.id = id;
+ }
+
+ public void setVolumeId(long volumeId) {
+ this.volumeId = volumeId;
+ }
+
+ public void setName(String name) {
+ this.name = name;
+ }
+
+ public void setValue(String value) {
+ this.value = value;
+ }
+
+}
diff --git a/debian/changelog b/debian/changelog
index f56dbd820d4..6e90eb33e89 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,9 @@
+cloudstack (4.2.0) unstable; urgency=low
+
+ * Update the version to 4.2.0 to be in sync with Maven (again)
+
+ -- Wido den Hollander Tue, 14 May 2013 15:56:42 +0200
+
cloudstack (4.2.0-incubating-0.0.snapshot) unstable; urgency=low
* Update the version to 4.2.0 to be in sync with Maven
diff --git a/debian/rules b/debian/rules
index c5875e75c99..ff12154db31 100755
--- a/debian/rules
+++ b/debian/rules
@@ -157,7 +157,7 @@ install:
install -D awsapi-setup/setup/cloud-setup-bridge $(DESTDIR)/usr/bin/cloudstack-setup-bridge
install -D awsapi-setup/setup/cloudstack-aws-api-register $(DESTDIR)/usr/bin/cloudstack-aws-api-register
cp -r awsapi-setup/db/mysql/* $(DESTDIR)/usr/share/$(PACKAGE)-bridge/setup
- for i in applicationContext.xml cloud-bridge.properties commons-logging.properties crypto.properties xes.keystore ec2-service.properties; do \
+ for i in cloud-bridge.properties commons-logging.properties crypto.properties xes.keystore ec2-service.properties; do \
mv $(DESTDIR)/usr/share/$(PACKAGE)-bridge/webapps/awsapi/WEB-INF/classes/$$i $(DESTDIR)/$(SYSCONFDIR)/$(PACKAGE)/management/; \
done
rm $(DESTDIR)/usr/share/$(PACKAGE)-bridge/webapps/awsapi/WEB-INF/classes/log4j-vmops.xml
diff --git a/docs/en-US/Installation_Guide.xml b/docs/en-US/Installation_Guide.xml
index e6a80318611..ea97f25c99c 100644
--- a/docs/en-US/Installation_Guide.xml
+++ b/docs/en-US/Installation_Guide.xml
@@ -55,6 +55,7 @@
+
diff --git a/docs/en-US/Release_Notes.xml b/docs/en-US/Release_Notes.xml
index cda8d724e9f..dca95d37c16 100644
--- a/docs/en-US/Release_Notes.xml
+++ b/docs/en-US/Release_Notes.xml
@@ -5113,7 +5113,7 @@ service cloudstack-agent start
Start the first Management Server. Do not start any other Management Server nodes
yet.
- # service cloud-management start
+ # service cloudstack-management start
Wait until the databases are upgraded. Ensure that the database upgrade is complete.
After confirmation, start the other Management Servers one at a time by running the same
command on each node.
@@ -5126,7 +5126,7 @@ service cloudstack-agent start
Start all Usage Servers (if they were running on your previous version). Perform
this on each Usage Server host.
- # service cloud-usage start
+ # service cloudstack-usage start
@@ -5152,7 +5152,7 @@ service cloudstack-agent start
Start the agent.
- # service cloud-agent start
+ # service cloudstack-agent start
Edit /etc/cloud/agent/agent.properties to change the
@@ -5742,7 +5742,7 @@ service cloudstack-agent start
Start the first Management Server. Do not start any other Management Server nodes
yet.
- # service cloud-management start
+ # service cloudstack-management start
Wait until the databases are upgraded. Ensure that the database upgrade is complete.
You should see a message like "Complete! Done." After confirmation, start the other
Management Servers one at a time by running the same command on each node.
@@ -5750,7 +5750,7 @@ service cloudstack-agent start
Start all Usage Servers (if they were running on your previous version). Perform
this on each Usage Server host.
- # service cloud-usage start
+ # service cloudstack-usage start
(KVM only) Additional steps are required for each KVM host. These steps will not
@@ -5776,7 +5776,7 @@ service cloudstack-agent start
Start the agent.
- # service cloud-agent start
+ # service cloudstack-agent start
Copy the contents of the agent.properties file to the new
diff --git a/docs/en-US/added-API-commands-4.2.xml b/docs/en-US/added-API-commands-4.2.xml
index 7417bd15f35..3abb780663e 100644
--- a/docs/en-US/added-API-commands-4.2.xml
+++ b/docs/en-US/added-API-commands-4.2.xml
@@ -91,20 +91,31 @@
listGlobalLoadBalancerRule
- Lists load balancer rules. account (lists resources by account. Use with the domainId
- parameter); domainid (lists only resources belonging to the domain specified) id (the unique
- ID of the global load balancer rule) isrecursive (defaults to false, but if true, lists all
- resources from the parent specified by the domainId till leaves); keyword (List by keyword);
- listall (if set to false, list only resources belonging to the command's caller; if set to
- true - list resources that the caller is authorized to see. Default value is false); page;
- pagesize; projectid (lists objects by project); regionid (region ID); tags (lists resources
- by tags: key/value pairs).
+ Lists load balancer rules.
+ The request parameters are: account (lists resources by account. Use with the domainid
+ parameter); domainid (lists only resources belonging to the domain specified); id (the
+ unique ID of the global load balancer rule); isrecursive (defaults to false; but if true,
+ lists all the resources from the parent specified by the domainid); keyword (lists by
+ keyword); listall (if set to false, lists only resources belonging to the command's caller;
+ if set to true, lists resources that the caller is authorized to see. Default value is
+ false); page; pagesize; projectid (lists objects by project); regionid ; tags (lists
+ resources by tags: key/value pairs).
updateGlobalLoadBalancerRule
- Archives the specified events. The request parameters are: ids (allowed to pass one or
- more IDs separated by comma); type (string); olderthan (yyyy-mm-dd format).
- The response parameters are: true, false
+ Updates global load balancer rules.
+ The request parameters are: id (the unique ID of the global load balancer rule); account
+ (lists resources by account. Use with the domainid parameter); description (the description
+ of the load balancer rule); domainid (lists only resources belonging to the domain
+ specified); gslblbmethod (the load balancer algorithm that is used to distributed traffic
+ across the zones participating in global server load balancing, if not specified defaults to
+ round robin); gslbstickysessionmethodname (the session sticky method; if not specified
+ defaults to sourceip); isrecursive (defaults to false, but if true, lists all resources from
+ the parent specified by the domainid till leaves); keyword (lists by keyword); listall (if
+ set to false, list only those resources belonging to the command's caller; if set to true,
+ lists resources that the caller is authorized to see. Default value is false); page;
+ pagesize; projectid (lists objects by project); regionid; tags (lists resources by tags:
+ key/value pairs)
diff --git a/docs/en-US/aws-ec2-configuration.xml b/docs/en-US/aws-ec2-configuration.xml
index dd7732ebced..d6dd2b5467e 100644
--- a/docs/en-US/aws-ec2-configuration.xml
+++ b/docs/en-US/aws-ec2-configuration.xml
@@ -35,7 +35,7 @@
Be sure you have included the Amazon default service offering, m1.small. As well as any EC2 instance types that you will use.
If you did not already do so when you set the configuration parameter in step , restart the Management Server.
- # service cloud-management restart
+ # service cloudstack-management restart
The following sections provides details to perform these steps
diff --git a/docs/en-US/build-rpm.xml b/docs/en-US/build-rpm.xml
index ba32ef568ab..574065833ff 100644
--- a/docs/en-US/build-rpm.xml
+++ b/docs/en-US/build-rpm.xml
@@ -26,7 +26,7 @@ under the License.
Building RPMs from Source
As mentioned previously in , you will need to install several prerequisites before you can build packages for &PRODUCT;. Here we'll assume you're working with a 64-bit build of CentOS or Red Hat Enterprise Linux.
# yum groupinstall "Development Tools"
- # yum install java-1.6.0-openjdk-devel.x86_64 genisoimage mysql mysql-server ws-common-utils MySQL-python tomcat6 createrepo
+ # yum install java-1.6.0-openjdk-devel.x86_64 genisoimage mysql mysql-server ws-commons-util MySQL-python tomcat6 createrepo
Next, you'll need to install build-time dependencies for CloudStack with
Maven. We're using Maven 3, so you'll want to
grab a Maven 3 tarball
diff --git a/docs/en-US/change-database-password.xml b/docs/en-US/change-database-password.xml
index 0ab52675e3c..b0021a42a13 100644
--- a/docs/en-US/change-database-password.xml
+++ b/docs/en-US/change-database-password.xml
@@ -29,8 +29,8 @@
Before changing the password, you'll need to stop CloudStack's management server and the usage engine if you've deployed that component.
-# service cloud-management stop
-# service cloud-usage stop
+# service cloudstack-management stop
+# service cloudstack-usage stop
@@ -68,7 +68,7 @@ db.usage.password=ENC(encrypted_password_from_above)
After copying the new password over, you can now start CloudStack (and the usage engine, if necessary).
- # service cloud-management start
+ # service cloudstack-management start
# service cloud-usage start
diff --git a/docs/en-US/citrix-xenserver-installation.xml b/docs/en-US/citrix-xenserver-installation.xml
index 2cd39a41368..a5118d751d4 100644
--- a/docs/en-US/citrix-xenserver-installation.xml
+++ b/docs/en-US/citrix-xenserver-installation.xml
@@ -610,7 +610,7 @@ master-password=[your password]
Restart the Management Server and Usage Server. You only need to do this once for
all clusters.
- # service cloud-management start
+ # service cloudstack-management start
# service cloud-usage start
diff --git a/docs/en-US/configure-usage-server.xml b/docs/en-US/configure-usage-server.xml
index 173f4a5306d..83bed07b349 100644
--- a/docs/en-US/configure-usage-server.xml
+++ b/docs/en-US/configure-usage-server.xml
@@ -32,8 +32,8 @@
In Actions, click the Edit icon.
Type the desired value and click the Save icon.
Restart the Management Server (as usual with any global configuration change) and also the Usage Server:
- # service cloud-management restart
-# service cloud-usage restart
+ # service cloudstack-management restart
+# service cloudstack-usage restart
The following table shows the global configuration settings that control the behavior of the Usage Server.
diff --git a/docs/en-US/creating-network-offerings.xml b/docs/en-US/creating-network-offerings.xml
index 2b23ca89a1f..260751ea079 100644
--- a/docs/en-US/creating-network-offerings.xml
+++ b/docs/en-US/creating-network-offerings.xml
@@ -253,7 +253,7 @@
mode. In this mode, network resources are allocated only when the first virtual machine
starts in the network. When conservative mode is off, the public IP can only be used for
a single service. For example, a public IP used for a port forwarding rule cannot be
- used for defining other services, such as SaticNAT or load balancing. When the conserve
+ used for defining other services, such as StaticNAT or load balancing. When the conserve
mode is on, you can define more than one service on the same public IP.
If StaticNAT is enabled, irrespective of the status of the conserve mode, no port
diff --git a/docs/en-US/database-replication.xml b/docs/en-US/database-replication.xml
index 718c34959da..bb144579ddf 100644
--- a/docs/en-US/database-replication.xml
+++ b/docs/en-US/database-replication.xml
@@ -121,14 +121,14 @@ mysql> start slave;
Failover
This will provide for a replicated database that can be used to implement manual failover for the Management Servers. &PRODUCT; failover from one MySQL instance to another is performed by the administrator. In the event of a database failure you should:
- Stop the Management Servers (via service cloud-management stop).
+ Stop the Management Servers (via service cloudstack-management stop).
Change the replica's configuration to be a master and restart it.
Ensure that the replica's port 3306 is open to the Management Servers.
- Make a change so that the Management Server uses the new database. The simplest process here is to put the IP address of the new database server into each Management Server's /etc/cloud/management/db.properties.
+ Make a change so that the Management Server uses the new database. The simplest process here is to put the IP address of the new database server into each Management Server's /etc/cloudstack/management/db.properties.
Restart the Management Servers:
-# service cloud-management start
+# service cloudstack-management start
diff --git a/docs/en-US/delete-event-alerts.xml b/docs/en-US/delete-event-alerts.xml
index ef39040c102..5958b721940 100644
--- a/docs/en-US/delete-event-alerts.xml
+++ b/docs/en-US/delete-event-alerts.xml
@@ -27,7 +27,10 @@
You can delete or archive individual alerts or events either directly by using the Quickview
or by using the Details page. If you want to delete multiple alerts or events at the same time,
you can use the respective context menu. You can delete alerts or events by category for a time
- period.
+ period. For example, you can select categories such as USER.LOGOUT, VM.DESTROY, VM.AG.UPDATE, CONFIGURATION.VALUE.EDI, and so on.
+ You can also view the number of events or alerts archived or deleted.
In order to support the delete or archive alerts, the following global parameters have been
added:
diff --git a/docs/en-US/external-firewalls-and-load-balancers.xml b/docs/en-US/external-firewalls-and-load-balancers.xml
index b947daf7361..42ecacf9f75 100644
--- a/docs/en-US/external-firewalls-and-load-balancers.xml
+++ b/docs/en-US/external-firewalls-and-load-balancers.xml
@@ -29,5 +29,6 @@
xmlns:xi="http://www.w3.org/2001/XInclude"/>
+
diff --git a/docs/en-US/gslb.xml b/docs/en-US/gslb.xml
index 385642d394d..d5d2d203265 100644
--- a/docs/en-US/gslb.xml
+++ b/docs/en-US/gslb.xml
@@ -26,7 +26,7 @@
achieve this by extending its functionality of integrating with NetScaler Application Delivery
Controller (ADC), which also provides various GSLB capabilities, such as disaster recovery and
load balancing. The DNS redirection technique is used to achieve GSLB in &PRODUCT;.
- In order to support his functionality, region level services and service provider are
+ In order to support this functionality, region level services and service provider are
introduced. A new service 'GSLB' is introduced as a region level service. The GSLB service
provider is introduced that will provider the GSLB service. Currently, NetScaler is the
supported GSLB provider in &PRODUCT;. GSLB functionality works in an Active-Active data center
@@ -40,194 +40,446 @@
multiple data centers situated at geographically separated locations. GSLB can also provide an
alternate location for accessing a resource in the event of a failure, or to provide a means
of shifting traffic easily to simplify maintenance, or both.
+
+ Components of GSLB
+ A typical GSLB environment is comprised of the following components:
+
+
+ GSLB Site: In &PRODUCT;terminology, GSLB sites are
+ represented by zones that are mapped to data centers, each of which has various network
+ appliances. Each GSLB site is managed by a NetScaler appliance that is local to that
+ site. Each of these appliances treats its own site as the local site and all other
+ sites, managed by other appliances, as remote sites. It is the central entity in a GSLB
+ deployment, and is represented by a name and an IP address.
+
+
+ GSLB Services: A GSLB service is typically
+ represented by a load balancing or content switching virtual server. In a GSLB
+ environment, you can have a local as well as remote GSLB services. A local GSLB service
+ represents a local load balancing or content switching virtual server. A remote GSLB
+ service is the one configured at one of the other sites in the GSLB setup. At each site
+ in the GSLB setup, you can create one local GSLB service and any number of remote GSLB
+ services.
+
+
+ GSLB Virtual Servers: A GSLB virtual server refers
+ to one or more GSLB services and balances traffic between traffic across the VMs in
+ multiple zones by using the &PRODUCT; functionality. It evaluates the configured GSLB
+ methods or algorithms to select a GSLB service to which to send the client requests. One
+ or more virtual servers from different zones are bound to the GSLB virtual server. GSLB
+ virtual server does not have a public IP associated with it, instead it will have a FQDN
+ DNS name.
+
+
+ Load Balancing or Content Switching Virtual
+ Servers: According to Citrix NetScaler terminology, a load balancing or
+ content switching virtual server represents one or many servers on the local network.
+ Clients send their requests to the load balancing or content switching virtual server’s
+ virtual IP (VIP) address, and the virtual server balances the load across the local
+ servers. After a GSLB virtual server selects a GSLB service representing either a local
+ or a remote load balancing or content switching virtual server, the client sends the
+ request to that virtual server’s VIP address.
+
+
+ DNS VIPs: DNS virtual IP represents a load
+ balancing DNS virtual server on the GSLB service provider. The DNS requests for domains
+ for which the GSLB service provider is authoritative can be sent to a DNS VIP.
+
+
+ Authoritative DNS: ADNS (Authoritative Domain Name
+ Server) is a service that provides actual answer to DNS queries, such as web site IP
+ address. In a GSLB environment, an ADNS service responds only to DNS requests for
+ domains for which the GSLB service provider is authoritative. When an ADNS service is
+ configured, the service provider owns that IP address and advertises it. When you create
+ an ADNS service, the NetScaler responds to DNS queries on the configured ADNS service IP
+ and port.
+
+
+
+
+ How Does GSLB Works in &PRODUCT;?
+ Global server load balancing is used to manage the traffic flow to a web site hosted on
+ two separate zones that ideally are in different geographic locations. The following is an
+ illustration of how GLSB functionality is provided in &PRODUCT;: An organization, xyztelco,
+ has set up a public cloud that spans two zones, Zone-1 and Zone-2, across geographically
+ separated data centers that are managed by &PRODUCT;. Tenant-A of the cloud launches a
+ highly available solution by using xyztelco cloud. For that purpose, they launch two
+ instances each in both the zones: VM1 and VM2 in Zone-1 and VM5 and VM6 in Zone-2. Tenant-A
+ acquires a public IP, IP-1 in Zone-1, and configures a load balancer rule to load balance
+ the traffic between VM1 and VM2 instances. &PRODUCT; orchestrates setting up a virtual
+ server on the LB service provider in Zone-1. Virtual server 1 that is set up on the LB
+ service provider in Zone-1 represents a publicly accessible virtual server that client
+ reaches at IP-1. The client traffic to virtual server 1 at IP-1 will be load balanced across
+ VM1 and VM2 instances.
+ Tenant-A acquires another public IP, IP-2 in Zone-2 and sets up a load balancer rule to
+ load balance the traffic between VM5 and VM6 instances. Similarly in Zone-2, &PRODUCT;
+ orchestrates setting up a virtual server on the LB service provider. Virtual server 2 that
+ is setup on the LB service provider in Zone-2 represents a publicly accessible virtual
+ server that client reaches at IP-2. The client traffic that reaches virtual server 2 at IP-2
+ is load balanced across VM5 and VM6 instances. At this point Tenant-A has the service
+ enabled in both the zones, but has no means to set up a disaster recovery plan if one of the
+ zone fails. Additionally, there is no way for Tenant-A to load balance the traffic
+ intelligently to one of the zones based on load, proximity and so on. The cloud
+ administrator of xyztelco provisions a GSLB service provider to both the zones. A GSLB
+ provider is typically an ADC that has the ability to act as an ADNS (Authoritative Domain
+ Name Server) and has the mechanism to monitor health of virtual servers both at local and
+ remote sites. The cloud admin enables GSLB as a service to the tenants that use zones 1 and
+ 2.
+
+
+
+
+
+ gslb.png: GSLB architecture
+
+
+ Tenant-A wishes to leverage the GSLB service provided by the xyztelco cloud. Tenant-A
+ configures a GSLB rule to load balance traffic across virtual server 1 at Zone-1 and virtual
+ server 2 at Zone-2. The domain name is provided as A.xyztelco.com. &PRODUCT; orchestrates
+ setting up GSLB virtual server 1 on the GSLB service provider at Zone-1. &PRODUCT; binds
+ virtual server 1 of Zone-1 and virtual server 2 of Zone-2 to GLSB virtual server 1. GSLB
+ virtual server 1 is configured to start monitoring the health of virtual server 1 and 2 in
+ Zone-1. &PRODUCT; will also orchestrate setting up GSLB virtual server 2 on GSLB service
+ provider at Zone-2. &PRODUCT; will bind virtual server 1 of Zone-1 and virtual server 2 of
+ Zone-2 to GLSB virtual server 2. GSLB virtual server 2 is configured to start monitoring the
+ health of virtual server 1 and 2. &PRODUCT; will bind the domain A.xyztelco.com to both the
+ GSLB virtual server 1 and 2. At this point, Tenant-A service will be globally reachable at
+ A.xyztelco.com. The private DNS server for the domain xyztelcom.com is configured by the
+ admin out-of-band to resolve the domain A.xyztelco.com to the GSLB providers at both the
+ zones, which are configured as ADNS for the domain A.xyztelco.com. A client when sends a DNS
+ request to resolve A.xyztelcom.com, will eventually get DNS delegation to the address of
+ GSLB providers at zone 1 and 2. A client DNS request will be received by the GSLB provider.
+ The GSLB provider, depending on the domain for which it needs to resolve, will pick up the
+ GSLB virtual server associated with the domain. Depending on the health of the virtual
+ servers being load balanced, DNS request for the domain will be resolved to the public IP
+ associated with the selected virtual server.
+
-
- Prerequisites and Guidelines
-
-
- The GSLB functionality is supported both Basic and Advanced zones.
-
-
- GSLB is added as a new network service.
-
-
- GSLB service provider can be added to a physical network in a zone.
-
-
- The admin is allowed to enable or disable GSLB functionality at region level.
-
-
- The admin is allowed to configure a zone as GSLB capable or enabled.
- A zone shall be considered as GSLB capable only if a GSLB service provider is
- provisioned in the zone.
-
-
- When users have VMs deployed in multiple availability zones which are GSLB enabled,
- user is allowed to use the GSLB functionality to load balance traffic across the VMs in
- multiple zones.
-
-
- The users are allowed to use GSLB to load balance across the VMs across zones in a
- region only if the admin has enabled GSLB in that region.
-
-
- The users are allowed to load balance traffic across the availability zones in the
- same region or different regions.
-
-
- The admin is allowed to configure DNS name for the entire cloud.
-
-
- The users can specify an unique name, across the cloud, for a globally load balanced
- service. The provided name will be used as the domain under the DNS name associated with
- the cloud.
- The user-provided name along with the admin-provided DNS name is used to produce a
- globally resolvable FQDN for the globally load balanced service of the user. For example,
- if the admin has configured xyztelco.com as the DNS name for the cloud, and user specifies
- 'foo' for the GSLB virtual service, then the FQDN name of the GSLB virtual service is
- foo.xyztelco.com.
-
-
- While setting up GSLB, users can select a load balancing method, such as round robin
- or least RTT, that would be the load balance traffic used across the zones that are part
- of GSLB.
-
-
- The user shall be able to set weight to zone-level virtual server. Weight shall be
- considered by the load balancing method is distributing the traffic.
-
-
- The GSLB functionality shall support session persistence, where series of client
- requests for particular domain name is sent to a virtual server on the same zone.
- Statistics is collected from each GSLB virtual server.
-
-
-
-
- Adding a GSLB Rule
+
+ Configuring GSLB
+ To configure a GSLB deployment, you must first configure a standard load balancing setup
+ for each zone. This enables you to balance load across the different servers in each zone in
+ the region. Then on the NetScaler side, configure both NetScaler appliances that you plan to
+ add to each zone as authoritative DNS (ADNS) servers. Next, create a GSLB site for each zone,
+ configure GSLB virtual servers for each site, create GLSB services, and bind the GSLB services
+ to the GSLB virtual servers. Finally, bind the domain to the GSLB virtual servers. The GSLB
+ configurations on the two appliances at the two different zones are identical, although each
+ sites load-balancing configuration is specific to that site.
+ Perform the following as a cloud administrator. As per the example given above, the
+ administrator of xyztelco is the one who sets up GSLB:
- Log in to the &PRODUCT; UI as administrator.
+ In the cloud.dns.name global parameter, specify the DNS name of your tenant's cloud
+ that make use of the GSLB service.
- In the left navigation pane, click Region.
+ On the NetScaler side, configure GSLB as given in Configuring Global Server Load Balancing (GSLB):
+
+
+ Configuring a standard load balancing setup.
+
+
+ Configure Authoritative DNS, as explained in Configuring an Authoritative DNS Service.
+
+
+ Configure a GSLB site with site name formed from the domain name details.
+ Configure a GSLB site with the site name formed from the domain name.
+ As per the example given above, the site names are A.xyztelco.com and
+ B.xyztelco.com.
+ For more information, see Configuring a Basic GSLB Site.
+
+
+ Configure a GSLB virtual server.
+ For more information, see Configuring a GSLB Virtual Server.
+
+
+ Configure a GSLB service for each virtual server.
+ For more information, see Configuring a GSLB Service.
+
+
+ Bind the GSLB services to the GSLB virtual server.
+ For more information, see Binding GSLB Services to a GSLB Virtual Server.
+
+
+ Bind domain name to GSLB virtual server. Domain name is obtained from the domain
+ details.
+ For more information, see Binding a Domain to a GSLB Virtual Server.
+
+
- Select the region for which you want to create a GSLB rule.
-
-
- In the Details tab, click View GSLB.
-
-
- Click Add GSLB.
- The Add GSLB page is displayed as follows:
-
-
-
-
-
- gslb-add.png: adding a gslb rule
-
-
-
-
- Specify the following:
-
-
- Name: Name for the GSLB rule.
-
-
- Description: (Optional) A short description of
- the GSLB rule that can be displayed to users.
-
-
- GSLB Domain Name: A preferred domain name for the
- service.
-
-
- Algorithm: (Optional) The algorithm to use to
- load balance the traffic across the zones. The options are Round Robin, Least
- Connection, and Proximity.
-
-
- Service Type: The transport protocol to use for
- GSLB. The options are TCP and UDP.
-
-
- Domain: (Optional) The domain for which you want
- to create the GSLB rule.
-
-
- Account: (Optional) The account on which you want
- to apply the GSLB rule.
-
-
-
-
- Click OK to confirm.
+ In each zone that are participating in GSLB, add GSLB-enabled NetScaler device.
+ For more information, see .
+ As a domain administrator/ user perform the following:
+
+
+ Add a GSLB rule on both the sites.
+ See .
+
+
+ Assign load balancer rules.
+ See .
+
+
+
+ Prerequisites and Guidelines
+
+
+ The GSLB functionality is supported both Basic and Advanced zones.
+
+
+ GSLB is added as a new network service.
+
+
+ GSLB service provider can be added to a physical network in a zone.
+
+
+ The admin is allowed to enable or disable GSLB functionality at region level.
+
+
+ The admin is allowed to configure a zone as GSLB capable or enabled.
+ A zone shall be considered as GSLB capable only if a GSLB service provider is
+ provisioned in the zone.
+
+
+ When users have VMs deployed in multiple availability zones which are GSLB enabled,
+ they can use the GSLB functionality to load balance traffic across the VMs in multiple
+ zones.
+
+
+ The users can use GSLB to load balance across the VMs across zones in a region only
+ if the admin has enabled GSLB in that region.
+
+
+ The users can load balance traffic across the availability zones in the same region
+ or different regions.
+
+
+ The admin can configure DNS name for the entire cloud.
+
+
+ The users can specify an unique name across the cloud for a globally load balanced
+ service. The provided name is used as the domain name under the DNS name associated with
+ the cloud.
+ The user-provided name along with the admin-provided DNS name is used to produce a
+ globally resolvable FQDN for the globally load balanced service of the user. For
+ example, if the admin has configured xyztelco.com as the DNS name for the cloud, and
+ user specifies 'foo' for the GSLB virtual service, then the FQDN name of the GSLB
+ virtual service is foo.xyztelco.com.
+
+
+ While setting up GSLB, users can select a load balancing method, such as round
+ robin, for using across the zones that are part of GSLB.
+
+
+ The user shall be able to set weight to zone-level virtual server. Weight shall be
+ considered by the load balancing method for distributing the traffic.
+
+
+ The GSLB functionality shall support session persistence, where series of client
+ requests for particular domain name is sent to a virtual server on the same zone.
+ Statistics is collected from each GSLB virtual server.
+
+
+
+
+ Enabling GSLB in NetScaler
+ In each zone, add GSLB-enabled NetScaler device for load balancing.
+
+
+ Log in as administrator to the &PRODUCT; UI.
+
+
+ In the left navigation bar, click Infrastructure.
+
+
+ In Zones, click View More.
+
+
+ Choose the zone you want to work with.
+
+
+ Click the Physical Network tab, then click the name of the physical network.
+
+
+ In the Network Service Providers node of the diagram, click Configure.
+ You might have to scroll down to see this.
+
+
+ Click NetScaler.
+
+
+ Click Add NetScaler device and provide the following:
+ For NetScaler:
+
+
+ IP Address: The IP address of the SRX.
+
+
+ Username/Password: The authentication
+ credentials to access the device. &PRODUCT; uses these credentials to access the
+ device.
+
+
+ Type: The type of device that is being added.
+ It could be F5 Big Ip Load Balancer, NetScaler VPX, NetScaler MPX, or NetScaler SDX.
+ For a comparison of the NetScaler types, see the &PRODUCT; Administration
+ Guide.
+
+
+ Public interface: Interface of device that is
+ configured to be part of the public network.
+
+
+ Private interface: Interface of device that is
+ configured to be part of the private network.
+
+
+ GSLB service: Select this option.
+
+
+ GSLB service Public IP: The public IP address
+ of the NAT translator for a GSLB service that is on a private network.
+
+
+ GSLB service Private IP: The private IP of the
+ GSLB service.
+
+
+ Number of Retries. Number of times to attempt a
+ command on the device before considering the operation failed. Default is 2.
+
+
+ Capacity: The number of networks the device can
+ handle.
+
+
+ Dedicated: When marked as dedicated, this
+ device will be dedicated to a single account. When Dedicated is checked, the value
+ in the Capacity field has no significance implicitly, its value is 1.
+
+
+
+
+ Click OK.
+
+
+
+
+ Adding a GSLB Rule
+
+
+ Log in to the &PRODUCT; UI as a domain administrator or user.
+
+
+ In the left navigation pane, click Region.
+
+
+ Select the region for which you want to create a GSLB rule.
+
+
+ In the Details tab, click View GSLB.
+
+
+ Click Add GSLB.
+ The Add GSLB page is displayed as follows:
+
+
+
+
+
+ gslb-add.png: adding a gslb rule
+
+
+
+
+ Specify the following:
+
+
+ Name: Name for the GSLB rule.
+
+
+ Description: (Optional) A short description of
+ the GSLB rule that can be displayed to users.
+
+
+ GSLB Domain Name: A preferred domain name for
+ the service.
+
+
+ Algorithm: (Optional) The algorithm to use to
+ load balance the traffic across the zones. The options are Round Robin, Least
+ Connection, and Proximity.
+
+
+ Service Type: The transport protocol to use for
+ GSLB. The options are TCP and UDP.
+
+
+ Domain: (Optional) The domain for which you
+ want to create the GSLB rule.
+
+
+ Account: (Optional) The account on which you
+ want to apply the GSLB rule.
+
+
+
+
+ Click OK to confirm.
+
+
+
+
+ Assigning Load Balancing Rules to GSLB
+
+
+ Log in to the &PRODUCT; UI as a domain administrator or user.
+
+
+ In the left navigation pane, click Region.
+
+
+ Select the region for which you want to create a GSLB rule.
+
+
+ In the Details tab, click View GSLB.
+
+
+ Select the desired GSLB.
+
+
+ Click view assigned load balancing.
+
+
+ Click assign more load balancing.
+
+
+ Select the load balancing rule you have created for the zone.
+
+
+ Click OK to confirm.
+
+
+
-
- Assigning Load Balancing Rules to GSLB
-
-
-
- How Does GSLB Works in &PRODUCT;?
- The following is an illustrated conceptual model of how GLSB functionality is provided in
- &PRODUCT;: An organization, xyztelco, has set up a public cloud that spans two zones, Zone-1
- and Zone-2, across geographically separated data centers that are managed by &PRODUCT;.
- Tenant-A of the cloud launches a highly available solution by using xyztelco cloud. For that
- purpose, they launch two instances each in both the zones: VM1 and VM2 in Zone-1 and VM5 and
- VM6 in Zone-2. Tenant-A acquires a public IP, IP-1 in Zone-1, and configures a load balancer
- rule to load balance the traffic between VM1 and VM2 instances. &PRODUCT; orchestrates setting
- up a virtual server on the LB service provider in Zone-1. Virtual server 1 that is set up on
- the LB service provider in Zone-1 represents a publicly accessible virtual server that client
- reaches at IP-1. The client traffic to virtual server 1 at IP-1 will be load balanced across
- VM1 and VM2 instances.
- Tenant-A acquires another public IP, IP-2 in Zone-2 and sets up a load balancer rule to
- load balance the traffic between VM5 and VM6 instances. Similarly in Zone-2, &PRODUCT;
- orchestrates setting up a virtual server on the LB service provider. Virtual server 2 that is
- setup on the LB service provider in Zone-2 represents a publicly accessible virtual server
- that client reaches at IP-2. The client traffic that reaches virtual server 2 at IP-2 is load
- balanced across VM5 and VM6 instances. At this point Tenant-A has the service enabled in both
- the zones, but has no means to set up a disaster recovery plan if one of the zone fails.
- Additionally, there is no way for Tenant-A to load balance the traffic intelligently to one of
- the zones based on load, proximity and so on. The cloud administrator of xyztelco provisions a
- GSLB service provider to both the zones. A GSLB provider is typically an ADC that has the
- ability to act as an ADNS (Authoritative Domain Name Server) and has the mechanism to monitor
- health of virtual servers both at local and remote sites. The cloud admin enables GSLB as a
- service to the tenants that use zones 1 and 2.
-
-
-
-
-
- gslb.png: GSLB architecture
-
-
- Tenant-A wishes to leverage the GSLB service provided by the xyztelco cloud. Tenant-A
- configures a GSLB rule to load balance traffic across virtual server 1 at Zone-1 and virtual
- server 2 at Zone-2. The domain name is provided as A.xyztelco.com. &PRODUCT; orchestrates
- setting up GSLB virtual server 1 on the GSLB service provider at Zone-1. &PRODUCT; binds
- virtual server 1 of Zone-1 and virtual server 2 of Zone-2 to GLSB virtual server 1. GSLB
- virtual server 1 is configured to start monitoring the health of virtual server 1 and 2 in
- Zone-1. &PRODUCT; will also orchestrate setting up GSLB virtual server 2 on GSLB service
- provider at Zone-2. &PRODUCT; will bind virtual server 1 of Zone-1 and virtual server 2 of
- Zone-2 to GLSB virtual server 2. GSLB virtual server 2 is configured to start monitoring the
- health of virtual server 1 and 2. &PRODUCT; will bind the domain A.xyztelco.com to both the
- GSLB virtual server 1 and 2. At this point, Tenant-A service will be globally reachable at
- A.xyztelco.com. The private DNS server for the domain xyztelcom.com is configured by the admin
- out-of-band to resolve the domain A.xyztelco.com to the GSLB providers at both the zones,
- which are configured as ADNS for the domain A.xyztelco.com. A client when sends a DNS request
- to resolve A.xyztelcom.com, will eventually get DNS delegation to the address of GSLB
- providers at Zone 1 and 2. A client DNS request will be received by the GSLB provider. The
- GSLB provider, depending on the domain for which it needs to resolve, will pick up the GSLB
- virtual server associated with the domain. Depending on the health of the virtual servers
- being load balanced, DNS request for the domain will be resolved to the public IP associated
- with the selected virtual server.
-
-
+
Known Limitation
Currently, &PRODUCT; does not support orchestration of services across the zones. The
notion of services and service providers in region are to be introduced.
diff --git a/docs/en-US/host-add-xenserver-kvm-ovm.xml b/docs/en-US/host-add-xenserver-kvm-ovm.xml
index 1f13e72d4c3..6973dbd1cc2 100644
--- a/docs/en-US/host-add-xenserver-kvm-ovm.xml
+++ b/docs/en-US/host-add-xenserver-kvm-ovm.xml
@@ -98,7 +98,7 @@
Adding a XenServer or KVM Host
-
+
If you have not already done so, install the hypervisor software on the host. You will
need to know which version of the hypervisor software version is supported by &PRODUCT;
@@ -152,6 +152,6 @@
Repeat for additional hosts.
-
+
diff --git a/docs/en-US/hypervisor-host-install-agent.xml b/docs/en-US/hypervisor-host-install-agent.xml
index e5bfa37fb6d..41b6719bbaf 100644
--- a/docs/en-US/hypervisor-host-install-agent.xml
+++ b/docs/en-US/hypervisor-host-install-agent.xml
@@ -27,8 +27,8 @@
To manage KVM instances on the host &PRODUCT; uses a Agent. This Agent communicates with the Management server and controls all the instances on the host.
First we start by installing the agent:
In RHEL or CentOS:
- $ yum install cloud-agent
+ $ yum install cloudstack-agent
In Ubuntu:
- $ apt-get install cloud-agent
+ $ apt-get install cloudstack-agent
The host is now ready to be added to a cluster. This is covered in a later section, see . It is recommended that you continue to read the documentation before adding the host!
-
\ No newline at end of file
+
diff --git a/docs/en-US/hypervisor-host-install-libvirt.xml b/docs/en-US/hypervisor-host-install-libvirt.xml
index f3ff090463c..d3d6b9b4e80 100644
--- a/docs/en-US/hypervisor-host-install-libvirt.xml
+++ b/docs/en-US/hypervisor-host-install-libvirt.xml
@@ -24,7 +24,7 @@
Install and Configure libvirt
- &PRODUCT; uses libvirt for managing virtual machines. Therefore it is vital that libvirt is configured correctly. Libvirt is a dependency of cloud-agent and should already be installed.
+ &PRODUCT; uses libvirt for managing virtual machines. Therefore it is vital that libvirt is configured correctly. Libvirt is a dependency of cloudstack-agent and should already be installed.
In order to have live migration working libvirt has to listen for unsecured TCP connections. We also need to turn off libvirts attempt to use Multicast DNS advertising. Both of these settings are in /etc/libvirt/libvirtd.conf
diff --git a/docs/en-US/images/gslb.png b/docs/en-US/images/gslb.png
index 8d1a389936c..9f13580c560 100644
Binary files a/docs/en-US/images/gslb.png and b/docs/en-US/images/gslb.png differ
diff --git a/docs/en-US/increase-management-server-max-memory.xml b/docs/en-US/increase-management-server-max-memory.xml
index 16d18e75830..51c8724a020 100644
--- a/docs/en-US/increase-management-server-max-memory.xml
+++ b/docs/en-US/increase-management-server-max-memory.xml
@@ -28,7 +28,7 @@
Edit the Tomcat configuration file:/etc/cloud/management/tomcat6.conf
Change the command-line parameter -XmxNNNm to a higher value of N.For example, if the current value is -Xmx128m, change it to -Xmx1024m or higher.
- To put the new setting into effect, restart the Management Server.# service cloud-management restart
+ To put the new setting into effect, restart the Management Server.# service cloudstack-management restart
For more information about memory issues, see "FAQ: Memory" at Tomcat Wiki.
diff --git a/docs/en-US/install-usage-server.xml b/docs/en-US/install-usage-server.xml
index 9dde5523f5e..ffd748d758e 100644
--- a/docs/en-US/install-usage-server.xml
+++ b/docs/en-US/install-usage-server.xml
@@ -52,7 +52,7 @@
Once installed, start the Usage Server with the following command.
-# service cloud-usage start
+# service cloudstack-usage start
diff --git a/docs/en-US/lxc-install.xml b/docs/en-US/lxc-install.xml
index a80c18afdd6..40f6a0aaa69 100644
--- a/docs/en-US/lxc-install.xml
+++ b/docs/en-US/lxc-install.xml
@@ -74,9 +74,9 @@
To manage LXC instances on the host &PRODUCT; uses a Agent. This Agent communicates with the Management server and controls all the instances on the host.
First we start by installing the agent:
In RHEL or CentOS:
- $ yum install cloud-agent
+ $ yum install cloudstack-agent
In Ubuntu:
- $ apt-get install cloud-agent
+ $ apt-get install cloudstack-agent
Next step is to update the Agent configuration setttings. The settings are in /etc/cloudstack/agent/agent.properties
diff --git a/docs/en-US/networks.xml b/docs/en-US/networks.xml
index c2090d2b1b4..8a7405a63ac 100644
--- a/docs/en-US/networks.xml
+++ b/docs/en-US/networks.xml
@@ -36,7 +36,8 @@
-
+
diff --git a/docs/en-US/set-database-buffer-pool-size.xml b/docs/en-US/set-database-buffer-pool-size.xml
index 1c7503101ca..8265ae544f2 100644
--- a/docs/en-US/set-database-buffer-pool-size.xml
+++ b/docs/en-US/set-database-buffer-pool-size.xml
@@ -26,7 +26,7 @@
Set Database Buffer Pool Size
It is important to provide enough memory space for the MySQL database to cache data and indexes:
- Edit the Tomcat configuration file:/etc/my.cnf
+ Edit the MySQL configuration file:/etc/my.cnf
Insert the following line in the [mysqld] section, below the datadir line. Use a value that is appropriate for your situation. We recommend setting the buffer pool at 40% of RAM if MySQL is on the same server as the management server or 70% of RAM if MySQL has a dedicated server. The following example assumes a dedicated server with 1024M of RAM.
innodb_buffer_pool_size=700M
Restart the MySQL service.# service mysqld restart
diff --git a/docs/en-US/set-global-project-resource-limits.xml b/docs/en-US/set-global-project-resource-limits.xml
index d91942ad8db..8ec13259051 100644
--- a/docs/en-US/set-global-project-resource-limits.xml
+++ b/docs/en-US/set-global-project-resource-limits.xml
@@ -76,7 +76,7 @@
Restart the Management Server.
- # service cloud-management restart
+ # service cloudstack-management restart
diff --git a/docs/en-US/set-projects-creator-permissions.xml b/docs/en-US/set-projects-creator-permissions.xml
index 9b272f6bc7e..dd9cfe95d56 100644
--- a/docs/en-US/set-projects-creator-permissions.xml
+++ b/docs/en-US/set-projects-creator-permissions.xml
@@ -56,7 +56,7 @@
Restart the Management Server.
- # service cloud-management restart
+ # service cloudstack-management restart
diff --git a/docs/en-US/set-up-invitations.xml b/docs/en-US/set-up-invitations.xml
index c1303cf5e92..180c041e87e 100644
--- a/docs/en-US/set-up-invitations.xml
+++ b/docs/en-US/set-up-invitations.xml
@@ -89,7 +89,7 @@
Restart the Management Server:
- service cloud-management restart
+ service cloudstack-management restart
diff --git a/docs/en-US/stop-restart-management-server.xml b/docs/en-US/stop-restart-management-server.xml
index 5c1bcecbc00..74a687c23a1 100644
--- a/docs/en-US/stop-restart-management-server.xml
+++ b/docs/en-US/stop-restart-management-server.xml
@@ -26,9 +26,9 @@
The root administrator will need to stop and restart the Management Server from time to time.
For example, after changing a global configuration parameter, a restart is required. If you have multiple Management Server nodes, restart all of them to put the new parameter value into effect consistently throughout the cloud..
To stop the Management Server, issue the following command at the operating system prompt on the Management Server node:
- # service cloud-management stop
+ # service cloudstack-management stop
To start the Management Server:
- # service cloud-management start
+ # service cloudstack-management start
To stop the Management Server:
- # service cloud-management stop
+ # service cloudstack-management stop
diff --git a/docs/en-US/storage-setup.xml b/docs/en-US/storage-setup.xml
new file mode 100644
index 00000000000..dee2f4ccbd7
--- /dev/null
+++ b/docs/en-US/storage-setup.xml
@@ -0,0 +1,192 @@
+
+
+%BOOK_ENTITIES;
+]>
+
+
+ Storage Setup
+ &PRODUCT; is designed to work with a wide variety of commodity and enterprise-grade storage. Local disk may be used as well, if supported by the selected hypervisor. Storage type support for guest virtual disks differs based on hypervisor selection.
+
+
+
+
+
+ XenServer
+ vSphere
+ KVM
+
+
+
+
+ NFS
+ Supported
+ Supported
+ Supported
+
+
+ iSCSI
+ Supported
+ Supported via VMFS
+ Supported via Clustered Filesystems
+
+
+ Fiber Channel
+ Supported via Pre-existing SR
+ Supported
+ Supported via Clustered Filesystems
+
+
+ Local Disk
+ Supported
+ Supported
+ Supported
+
+
+
+
+ The use of the Cluster Logical Volume Manager (CLVM) for KVM is not officially supported with &PRODUCT;.
+
+ Small-Scale Setup
+ In a small-scale setup, a single NFS server can function as both primary and secondary storage. The NFS server just needs to export two separate shares, one for primary storage and the other for secondary storage.
+
+
+ Secondary Storage
+ &PRODUCT; is designed to work with any scalable secondary storage system. The only requirement is the secondary storage system supports the NFS protocol.
+
+ The storage server should be a machine with a large number of disks. The disks should ideally be managed by a hardware RAID controller. Modern hardware RAID controllers support hot plug functionality independent of the operating system so you can replace faulty disks without impacting the running operating system.
+
+
+
+ Example Configurations
+ In this section we go through a few examples of how to set up storage to work properly on a few types of NFS and iSCSI storage systems.
+
+ Linux NFS on Local Disks and DAS
+ This section describes how to configure an NFS export on a standard Linux installation. The exact commands might vary depending on the operating system version.
+
+ Install the RHEL/CentOS distribution on the storage server.
+ If the root volume is more than 2 TB in size, create a smaller boot volume to install RHEL/CentOS. A root volume of 20 GB should be sufficient.
+ After the system is installed, create a directory called /export. This can each be a directory in the root partition itself or a mount point for a large disk volume.
+ If you have more than 16TB of storage on one host, create multiple EXT3 file systems and multiple NFS exports. Individual EXT3 file systems cannot exceed 16TB.
+
+ After /export directory is created, run the following command to configure it as an NFS export.
+ # echo "/export <CIDR>(rw,async,no_root_squash)" >> /etc/exports
+ Adjust the above command to suit your deployment needs.
+
+
+ Limiting NFS export. It is highly recommended that you limit the NFS export to a particular subnet by specifying a subnet mask (e.g.,”192.168.1.0/24”). By allowing access from only within the expected cluster, you avoid having non-pool member mount the storage. The limit you place must include the management network(s) and the storage network(s). If the two are the same network then one CIDR is sufficient. If you have a separate storage network you must provide separate CIDR’s for both or one CIDR that is broad enough to span both.
+ The following is an example with separate CIDRs:
+ /export 192.168.1.0/24(rw,async,no_root_squash) 10.50.1.0/24(rw,async,no_root_squash)
+
+
+ Removing the async flag. The async flag improves performance by allowing the NFS server to respond before writes are committed to the disk. Remove the async flag in your mission critical production deployment.
+
+
+
+
+ Run the following command to enable NFS service.
+ # chkconfig nfs on
+
+
+ Edit the /etc/sysconfig/nfs file and uncomment the following lines.
+ LOCKD_TCPPORT=32803
+LOCKD_UDPPORT=32769
+MOUNTD_PORT=892
+RQUOTAD_PORT=875
+STATD_PORT=662
+STATD_OUTGOING_PORT=2020
+
+
+ Edit the /etc/sysconfig/iptables file and add the following lines at the beginning of the INPUT chain.
+
+-A INPUT -m state --state NEW -p udp --dport 111 -j ACCEPT
+-A INPUT -m state --state NEW -p tcp --dport 111 -j ACCEPT
+-A INPUT -m state --state NEW -p tcp --dport 2049 -j ACCEPT
+-A INPUT -m state --state NEW -p tcp --dport 32803 -j ACCEPT
+-A INPUT -m state --state NEW -p udp --dport 32769 -j ACCEPT
+-A INPUT -m state --state NEW -p tcp --dport 892 -j ACCEPT
+-A INPUT -m state --state NEW -p udp --dport 892 -j ACCEPT
+-A INPUT -m state --state NEW -p tcp --dport 875 -j ACCEPT
+-A INPUT -m state --state NEW -p udp --dport 875 -j ACCEPT
+-A INPUT -m state --state NEW -p tcp --dport 662 -j ACCEPT
+-A INPUT -m state --state NEW -p udp --dport 662 -j ACCEPT
+
+
+
+ Reboot the server.
+ An NFS share called /export is now set up.
+
+
+ When copying and pasting a command, be sure the command has pasted as a single line before executing. Some document viewers may introduce unwanted line breaks in copied text.
+
+
+ Linux NFS on iSCSI
+ Use the following steps to set up a Linux NFS server export on an iSCSI volume. These steps apply to RHEL/CentOS 5 distributions.
+
+
+ Install iscsiadm.
+
+# yum install iscsi-initiator-utils
+# service iscsi start
+# chkconfig --add iscsi
+# chkconfig iscsi on
+
+
+
+ Discover the iSCSI target.
+ # iscsiadm -m discovery -t st -p <iSCSI Server IP address>:3260
+ For example:
+ # iscsiadm -m discovery -t st -p 172.23.10.240:3260
+ 172.23.10.240:3260,1 iqn.2001-05.com.equallogic:0-8a0906-83bcb3401-16e0002fd0a46f3d-rhel5-test
+
+
+ Log in.
+ # iscsiadm -m node -T <Complete Target Name> -l -p <Group IP>:3260
+ For example:
+ # iscsiadm -m node -l -T iqn.2001-05.com.equallogic:83bcb3401-16e0002fd0a46f3d-rhel5-test -p 172.23.10.240:3260
+
+
+ Discover the SCSI disk. For example:
+
+# iscsiadm -m session -P3 | grep Attached
+Attached scsi disk sdb State: running
+
+
+
+ Format the disk as ext3 and mount the volume.
+ # mkfs.ext3 /dev/sdb
+# mkdir -p /export
+# mount /dev/sdb /export
+
+
+
+ Add the disk to /etc/fstab to make sure it gets mounted on boot.
+ /dev/sdb /export ext3 _netdev 0 0
+
+
+ Now you can set up /export as an NFS share.
+
+
+ Limiting NFS export. In order to avoid data loss, it is highly recommended that you limit the NFS export to a particular subnet by specifying a subnet mask (e.g.,”192.168.1.0/24”). By allowing access from only within the expected cluster, you avoid having non-pool member mount the storage and inadvertently delete all its data. The limit you place must include the management network(s) and the storage network(s). If the two are the same network then one CIDR is sufficient. If you have a separate storage network you must provide separate CIDRs for both or one CIDR that is broad enough to span both.
+ The following is an example with separate CIDRs:
+ /export 192.168.1.0/24(rw,async,no_root_squash) 10.50.1.0/24(rw,async,no_root_squash)
+
+ Removing the async flag. The async flag improves performance by allowing the NFS server to respond before writes are committed to the disk. Remove the async flag in your mission critical production deployment.
+
+
+
+
diff --git a/docs/en-US/sys-offering-sysvm.xml b/docs/en-US/sys-offering-sysvm.xml
index cccf3e04796..563dd6f5ebf 100644
--- a/docs/en-US/sys-offering-sysvm.xml
+++ b/docs/en-US/sys-offering-sysvm.xml
@@ -65,7 +65,7 @@
Restart &PRODUCT; Management Server. Restarting is required because the default
offerings are loaded into the memory at startup.
- service cloud-management restart
+ service cloudstack-management restart
Destroy the existing CPVM or SSVM offerings and wait for them to be recreated. The new
diff --git a/docs/en-US/zone-add.xml b/docs/en-US/zone-add.xml
index 4f6606fce03..3ca5789cd99 100644
--- a/docs/en-US/zone-add.xml
+++ b/docs/en-US/zone-add.xml
@@ -42,7 +42,7 @@
Restart the Management Server.
- # service cloud-management restart
+ # service cloudstack-management restart
Refresh the &PRODUCT; UI browser tab and log back in.
diff --git a/engine/orchestration/src/org/apache/cloudstack/engine/datacenter/entity/api/db/dao/HostDetailsDaoImpl.java b/engine/orchestration/src/org/apache/cloudstack/engine/datacenter/entity/api/db/dao/HostDetailsDaoImpl.java
index 02f8c2c546c..e0ae778911c 100644
--- a/engine/orchestration/src/org/apache/cloudstack/engine/datacenter/entity/api/db/dao/HostDetailsDaoImpl.java
+++ b/engine/orchestration/src/org/apache/cloudstack/engine/datacenter/entity/api/db/dao/HostDetailsDaoImpl.java
@@ -16,6 +16,8 @@
// under the License.
package org.apache.cloudstack.engine.datacenter.entity.api.db.dao;
+import java.sql.PreparedStatement;
+import java.sql.SQLException;
import java.util.HashMap;
import java.util.List;
import java.util.Map;
@@ -30,18 +32,19 @@ import com.cloud.utils.db.GenericDaoBase;
import com.cloud.utils.db.SearchBuilder;
import com.cloud.utils.db.SearchCriteria;
import com.cloud.utils.db.Transaction;
+import com.cloud.utils.exception.CloudRuntimeException;
@Component(value="EngineHostDetailsDao")
@Local(value=HostDetailsDao.class)
public class HostDetailsDaoImpl extends GenericDaoBase implements HostDetailsDao {
protected final SearchBuilder HostSearch;
protected final SearchBuilder DetailSearch;
-
+
public HostDetailsDaoImpl() {
HostSearch = createSearchBuilder();
HostSearch.and("hostId", HostSearch.entity().getHostId(), SearchCriteria.Op.EQ);
HostSearch.done();
-
+
DetailSearch = createSearchBuilder();
DetailSearch.and("hostId", DetailSearch.entity().getHostId(), SearchCriteria.Op.EQ);
DetailSearch.and("name", DetailSearch.entity().getName(), SearchCriteria.Op.EQ);
@@ -53,7 +56,7 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
SearchCriteria sc = DetailSearch.create();
sc.setParameters("hostId", hostId);
sc.setParameters("name", name);
-
+
DetailVO detail = findOneIncludingRemovedBy(sc);
if("password".equals(name) && detail != null){
detail.setValue(DBEncryptionUtil.decrypt(detail.getValue()));
@@ -65,7 +68,7 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
public Map findDetails(long hostId) {
SearchCriteria sc = HostSearch.create();
sc.setParameters("hostId", hostId);
-
+
List results = search(sc, null);
Map details = new HashMap(results.size());
for (DetailVO result : results) {
@@ -77,12 +80,12 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
}
return details;
}
-
+
@Override
public void deleteDetails(long hostId) {
SearchCriteria sc = HostSearch.create();
sc.setParameters("hostId", hostId);
-
+
List results = search(sc, null);
for (DetailVO result : results) {
remove(result.getId());
@@ -91,19 +94,27 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
@Override
public void persist(long hostId, Map details) {
+ final String InsertOrUpdateSql = "INSERT INTO `cloud`.`host_details` (host_id, name, value) VALUES (?,?,?) ON DUPLICATE KEY UPDATE value=?";
+
Transaction txn = Transaction.currentTxn();
txn.start();
- SearchCriteria sc = HostSearch.create();
- sc.setParameters("hostId", hostId);
- expunge(sc);
-
+
for (Map.Entry detail : details.entrySet()) {
- String value = detail.getValue();
- if("password".equals(detail.getKey())){
- value = DBEncryptionUtil.encrypt(value);
- }
- DetailVO vo = new DetailVO(hostId, detail.getKey(), value);
- persist(vo);
+ String value = detail.getValue();
+ if ("password".equals(detail.getKey())) {
+ value = DBEncryptionUtil.encrypt(value);
+ }
+ try {
+ PreparedStatement pstmt = txn.prepareAutoCloseStatement(InsertOrUpdateSql);
+ pstmt.setLong(1, hostId);
+ pstmt.setString(2, detail.getKey());
+ pstmt.setString(3, value);
+ pstmt.setString(4, value);
+ pstmt.executeUpdate();
+ } catch (SQLException e) {
+ throw new CloudRuntimeException("Unable to persist the host_details key: " + detail.getKey()
+ + " for host id: " + hostId, e);
+ }
}
txn.commit();
}
diff --git a/engine/schema/src/com/cloud/dc/dao/VlanDao.java b/engine/schema/src/com/cloud/dc/dao/VlanDao.java
index cc82632e9e3..39fa818e26f 100755
--- a/engine/schema/src/com/cloud/dc/dao/VlanDao.java
+++ b/engine/schema/src/com/cloud/dc/dao/VlanDao.java
@@ -16,13 +16,13 @@
// under the License.
package com.cloud.dc.dao;
-import java.util.List;
-
import com.cloud.dc.Vlan;
import com.cloud.dc.Vlan.VlanType;
import com.cloud.dc.VlanVO;
import com.cloud.utils.db.GenericDao;
+import java.util.List;
+
public interface VlanDao extends GenericDao {
VlanVO findByZoneAndVlanId(long zoneId, String vlanId);
@@ -52,4 +52,8 @@ public interface VlanDao extends GenericDao {
List listVlansByPhysicalNetworkId(long physicalNetworkId);
List listZoneWideNonDedicatedVlans(long zoneId);
+
+ List listVlansByNetworkIdAndGateway(long networkid, String gateway);
+
+ List listDedicatedVlans(long accountId);
}
diff --git a/engine/schema/src/com/cloud/dc/dao/VlanDaoImpl.java b/engine/schema/src/com/cloud/dc/dao/VlanDaoImpl.java
index 100295b4b5f..eb3bde9d005 100755
--- a/engine/schema/src/com/cloud/dc/dao/VlanDaoImpl.java
+++ b/engine/schema/src/com/cloud/dc/dao/VlanDaoImpl.java
@@ -16,19 +16,6 @@
// under the License.
package com.cloud.dc.dao;
-import java.sql.PreparedStatement;
-import java.sql.ResultSet;
-import java.sql.SQLException;
-import java.util.ArrayList;
-import java.util.List;
-import java.util.Map;
-
-import javax.ejb.Local;
-import javax.inject.Inject;
-import javax.naming.ConfigurationException;
-
-import org.springframework.stereotype.Component;
-
import com.cloud.dc.AccountVlanMapVO;
import com.cloud.dc.PodVlanMapVO;
import com.cloud.dc.Vlan;
@@ -43,6 +30,17 @@ import com.cloud.utils.db.SearchBuilder;
import com.cloud.utils.db.SearchCriteria;
import com.cloud.utils.db.Transaction;
import com.cloud.utils.exception.CloudRuntimeException;
+import org.springframework.stereotype.Component;
+
+import javax.ejb.Local;
+import javax.inject.Inject;
+import javax.naming.ConfigurationException;
+import java.sql.PreparedStatement;
+import java.sql.ResultSet;
+import java.sql.SQLException;
+import java.util.ArrayList;
+import java.util.List;
+import java.util.Map;
@Component
@Local(value={VlanDao.class})
@@ -59,6 +57,8 @@ public class VlanDaoImpl extends GenericDaoBase implements VlanDao
protected SearchBuilder NetworkVlanSearch;
protected SearchBuilder PhysicalNetworkVlanSearch;
protected SearchBuilder ZoneWideNonDedicatedVlanSearch;
+ protected SearchBuilder VlanGatewaysearch;
+ protected SearchBuilder DedicatedVlanSearch;
protected SearchBuilder AccountVlanMapSearch;
@@ -103,6 +103,11 @@ public class VlanDaoImpl extends GenericDaoBase implements VlanDao
PhysicalNetworkVlanSearch = createSearchBuilder();
PhysicalNetworkVlanSearch.and("physicalNetworkId", PhysicalNetworkVlanSearch.entity().getPhysicalNetworkId(), SearchCriteria.Op.EQ);
PhysicalNetworkVlanSearch.done();
+
+ VlanGatewaysearch = createSearchBuilder();
+ VlanGatewaysearch.and("gateway", VlanGatewaysearch.entity().getVlanGateway(), SearchCriteria.Op.EQ);
+ VlanGatewaysearch.and("networkid", VlanGatewaysearch.entity().getNetworkId(), SearchCriteria.Op.EQ);
+ VlanGatewaysearch.done();
}
@Override
@@ -209,6 +214,13 @@ public class VlanDaoImpl extends GenericDaoBase implements VlanDao
ZoneWideNonDedicatedVlanSearch.done();
AccountVlanMapSearch.done();
+ DedicatedVlanSearch = createSearchBuilder();
+ AccountVlanMapSearch = _accountVlanMapDao.createSearchBuilder();
+ AccountVlanMapSearch.and("accountId", AccountVlanMapSearch.entity().getAccountId(), SearchCriteria.Op.EQ);
+ DedicatedVlanSearch.join("AccountVlanMapSearch", AccountVlanMapSearch, DedicatedVlanSearch.entity().getId(), AccountVlanMapSearch.entity().getVlanDbId(), JoinBuilder.JoinType.LEFTOUTER);
+ DedicatedVlanSearch.done();
+ AccountVlanMapSearch.done();
+
return result;
}
@@ -317,6 +329,14 @@ public class VlanDaoImpl extends GenericDaoBase implements VlanDao
return listBy(sc);
}
+ @Override
+ public List listVlansByNetworkIdAndGateway(long networkid, String gateway){
+ SearchCriteria sc = VlanGatewaysearch.create();
+ sc.setParameters("networkid", networkid);
+ sc.setParameters("gateway", gateway);
+ return listBy(sc);
+ }
+
@Override
public List listVlansByPhysicalNetworkId(long physicalNetworkId) {
SearchCriteria sc = PhysicalNetworkVlanSearch.create();
@@ -331,4 +351,11 @@ public class VlanDaoImpl extends GenericDaoBase implements VlanDao
return listBy(sc);
}
+ @Override
+ public List listDedicatedVlans(long accountId) {
+ SearchCriteria sc = DedicatedVlanSearch.create();
+ sc.setJoinParameters("AccountVlanMapSearch", "accountId", accountId);
+ return listBy(sc);
+ }
+
}
diff --git a/engine/schema/src/com/cloud/domain/dao/DomainDao.java b/engine/schema/src/com/cloud/domain/dao/DomainDao.java
index afeb0f462f4..cb1c1f2c4be 100644
--- a/engine/schema/src/com/cloud/domain/dao/DomainDao.java
+++ b/engine/schema/src/com/cloud/domain/dao/DomainDao.java
@@ -26,9 +26,10 @@ public interface DomainDao extends GenericDao {
public DomainVO create(DomainVO domain);
public DomainVO findDomainByPath(String domainPath);
public boolean isChildDomain(Long parentId, Long childId);
- DomainVO findImmediateChildForParent(Long parentId);
- List findImmediateChildrenForParent(Long parentId);
- List findAllChildren(String path, Long parentId);
- List findInactiveDomains();
+ DomainVO findImmediateChildForParent(Long parentId);
+ List findImmediateChildrenForParent(Long parentId);
+ List findAllChildren(String path, Long parentId);
+ List findInactiveDomains();
Set getDomainParentIds(long domainId);
+ List getDomainChildrenIds(String path);
}
diff --git a/engine/schema/src/com/cloud/domain/dao/DomainDaoImpl.java b/engine/schema/src/com/cloud/domain/dao/DomainDaoImpl.java
index c30ca5ef49a..9460a73dc57 100644
--- a/engine/schema/src/com/cloud/domain/dao/DomainDaoImpl.java
+++ b/engine/schema/src/com/cloud/domain/dao/DomainDaoImpl.java
@@ -32,6 +32,7 @@ import com.cloud.domain.Domain;
import com.cloud.domain.DomainVO;
import com.cloud.utils.db.DB;
import com.cloud.utils.db.GenericDaoBase;
+import com.cloud.utils.db.GenericSearchBuilder;
import com.cloud.utils.db.SearchBuilder;
import com.cloud.utils.db.SearchCriteria;
import com.cloud.utils.db.Transaction;
@@ -46,6 +47,7 @@ public class DomainDaoImpl extends GenericDaoBase implements Dom
protected SearchBuilder DomainPairSearch;
protected SearchBuilder ImmediateChildDomainSearch;
protected SearchBuilder FindAllChildrenSearch;
+ protected GenericSearchBuilder FindIdsOfAllChildrenSearch;
protected SearchBuilder AllFieldsSearch;
public DomainDaoImpl () {
@@ -70,7 +72,12 @@ public class DomainDaoImpl extends GenericDaoBase implements Dom
FindAllChildrenSearch.and("path", FindAllChildrenSearch.entity().getPath(), SearchCriteria.Op.LIKE);
FindAllChildrenSearch.and("id", FindAllChildrenSearch.entity().getId(), SearchCriteria.Op.NEQ);
FindAllChildrenSearch.done();
-
+
+ FindIdsOfAllChildrenSearch = createSearchBuilder(Long.class);
+ FindIdsOfAllChildrenSearch.selectField(FindIdsOfAllChildrenSearch.entity().getId());
+ FindIdsOfAllChildrenSearch.and("path", FindIdsOfAllChildrenSearch.entity().getPath(), SearchCriteria.Op.LIKE);
+ FindIdsOfAllChildrenSearch.done();
+
AllFieldsSearch = createSearchBuilder();
AllFieldsSearch.and("name", AllFieldsSearch.entity().getName(), SearchCriteria.Op.EQ);
AllFieldsSearch.and("state", AllFieldsSearch.entity().getState(), SearchCriteria.Op.EQ);
@@ -221,7 +228,14 @@ public class DomainDaoImpl extends GenericDaoBase implements Dom
sc.setParameters("id", parentId);
return listBy(sc);
}
-
+
+ @Override
+ public List getDomainChildrenIds(String path){
+ SearchCriteria sc = FindIdsOfAllChildrenSearch.create();
+ sc.setParameters("path", path+"%");
+ return customSearch(sc, null);
+ }
+
@Override
public boolean isChildDomain(Long parentId, Long childId) {
if ((parentId == null) || (childId == null)) {
diff --git a/engine/schema/src/com/cloud/event/dao/EventDao.java b/engine/schema/src/com/cloud/event/dao/EventDao.java
index da5f47a90b4..9454ce717de 100644
--- a/engine/schema/src/com/cloud/event/dao/EventDao.java
+++ b/engine/schema/src/com/cloud/event/dao/EventDao.java
@@ -31,7 +31,7 @@ public interface EventDao extends GenericDao {
EventVO findCompletedEvent(long startId);
- public List listToArchiveOrDeleteEvents(List ids, String type, Date olderThan, Long accountId);
+ public List listToArchiveOrDeleteEvents(List ids, String type, Date olderThan, List accountIds);
public void archiveEvents(List events);
diff --git a/engine/schema/src/com/cloud/event/dao/EventDaoImpl.java b/engine/schema/src/com/cloud/event/dao/EventDaoImpl.java
index 6ba59c56b0a..0d3d38a0204 100644
--- a/engine/schema/src/com/cloud/event/dao/EventDaoImpl.java
+++ b/engine/schema/src/com/cloud/event/dao/EventDaoImpl.java
@@ -49,7 +49,7 @@ public class EventDaoImpl extends GenericDaoBase implements Event
ToArchiveOrDeleteEventSearch = createSearchBuilder();
ToArchiveOrDeleteEventSearch.and("id", ToArchiveOrDeleteEventSearch.entity().getId(), Op.IN);
ToArchiveOrDeleteEventSearch.and("type", ToArchiveOrDeleteEventSearch.entity().getType(), Op.EQ);
- ToArchiveOrDeleteEventSearch.and("accountId", ToArchiveOrDeleteEventSearch.entity().getAccountId(), Op.EQ);
+ ToArchiveOrDeleteEventSearch.and("accountIds", ToArchiveOrDeleteEventSearch.entity().getAccountId(), Op.IN);
ToArchiveOrDeleteEventSearch.and("createDateL", ToArchiveOrDeleteEventSearch.entity().getCreateDate(), Op.LT);
ToArchiveOrDeleteEventSearch.done();
}
@@ -76,7 +76,7 @@ public class EventDaoImpl extends GenericDaoBase implements Event
}
@Override
- public List listToArchiveOrDeleteEvents(List ids, String type, Date olderThan, Long accountId) {
+ public List listToArchiveOrDeleteEvents(List ids, String type, Date olderThan, List accountIds) {
SearchCriteria sc = ToArchiveOrDeleteEventSearch.create();
if (ids != null) {
sc.setParameters("id", ids.toArray(new Object[ids.size()]));
@@ -87,23 +87,24 @@ public class EventDaoImpl extends GenericDaoBase implements Event
if (olderThan != null) {
sc.setParameters("createDateL", olderThan);
}
- if (accountId != null) {
- sc.setParameters("accountId", accountId);
+ if (accountIds != null && !accountIds.isEmpty()) {
+ sc.setParameters("accountIds", accountIds.toArray(new Object[accountIds.size()]));
}
return search(sc, null);
}
@Override
public void archiveEvents(List events) {
-
- Transaction txn = Transaction.currentTxn();
- txn.start();
- for (EventVO event : events) {
- event = lockRow(event.getId(), true);
- event.setArchived(true);
- update(event.getId(), event);
- txn.commit();
+ if (events != null && !events.isEmpty()) {
+ Transaction txn = Transaction.currentTxn();
+ txn.start();
+ for (EventVO event : events) {
+ event = lockRow(event.getId(), true);
+ event.setArchived(true);
+ update(event.getId(), event);
+ txn.commit();
+ }
+ txn.close();
}
- txn.close();
}
}
diff --git a/engine/schema/src/com/cloud/host/dao/HostDetailsDaoImpl.java b/engine/schema/src/com/cloud/host/dao/HostDetailsDaoImpl.java
index b6a9cef9ee9..47cdeb30633 100644
--- a/engine/schema/src/com/cloud/host/dao/HostDetailsDaoImpl.java
+++ b/engine/schema/src/com/cloud/host/dao/HostDetailsDaoImpl.java
@@ -16,6 +16,8 @@
// under the License.
package com.cloud.host.dao;
+import java.sql.PreparedStatement;
+import java.sql.SQLException;
import java.util.HashMap;
import java.util.List;
import java.util.Map;
@@ -30,18 +32,19 @@ import com.cloud.utils.db.GenericDaoBase;
import com.cloud.utils.db.SearchBuilder;
import com.cloud.utils.db.SearchCriteria;
import com.cloud.utils.db.Transaction;
+import com.cloud.utils.exception.CloudRuntimeException;
@Component
@Local(value=HostDetailsDao.class)
public class HostDetailsDaoImpl extends GenericDaoBase implements HostDetailsDao {
protected final SearchBuilder HostSearch;
protected final SearchBuilder DetailSearch;
-
+
public HostDetailsDaoImpl() {
HostSearch = createSearchBuilder();
HostSearch.and("hostId", HostSearch.entity().getHostId(), SearchCriteria.Op.EQ);
HostSearch.done();
-
+
DetailSearch = createSearchBuilder();
DetailSearch.and("hostId", DetailSearch.entity().getHostId(), SearchCriteria.Op.EQ);
DetailSearch.and("name", DetailSearch.entity().getName(), SearchCriteria.Op.EQ);
@@ -53,7 +56,7 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
SearchCriteria sc = DetailSearch.create();
sc.setParameters("hostId", hostId);
sc.setParameters("name", name);
-
+
DetailVO detail = findOneIncludingRemovedBy(sc);
if("password".equals(name) && detail != null){
detail.setValue(DBEncryptionUtil.decrypt(detail.getValue()));
@@ -65,7 +68,7 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
public Map findDetails(long hostId) {
SearchCriteria sc = HostSearch.create();
sc.setParameters("hostId", hostId);
-
+
List results = search(sc, null);
Map details = new HashMap(results.size());
for (DetailVO result : results) {
@@ -77,12 +80,12 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
}
return details;
}
-
+
@Override
public void deleteDetails(long hostId) {
SearchCriteria sc = HostSearch.create();
sc.setParameters("hostId", hostId);
-
+
List results = search(sc, null);
for (DetailVO result : results) {
remove(result.getId());
@@ -91,19 +94,27 @@ public class HostDetailsDaoImpl extends GenericDaoBase implement
@Override
public void persist(long hostId, Map details) {
+ final String InsertOrUpdateSql = "INSERT INTO `cloud`.`host_details` (host_id, name, value) VALUES (?,?,?) ON DUPLICATE KEY UPDATE value=?";
+
Transaction txn = Transaction.currentTxn();
txn.start();
- SearchCriteria sc = HostSearch.create();
- sc.setParameters("hostId", hostId);
- expunge(sc);
-
+
for (Map.Entry detail : details.entrySet()) {
- String value = detail.getValue();
- if("password".equals(detail.getKey())){
- value = DBEncryptionUtil.encrypt(value);
- }
- DetailVO vo = new DetailVO(hostId, detail.getKey(), value);
- persist(vo);
+ String value = detail.getValue();
+ if ("password".equals(detail.getKey())) {
+ value = DBEncryptionUtil.encrypt(value);
+ }
+ try {
+ PreparedStatement pstmt = txn.prepareAutoCloseStatement(InsertOrUpdateSql);
+ pstmt.setLong(1, hostId);
+ pstmt.setString(2, detail.getKey());
+ pstmt.setString(3, value);
+ pstmt.setString(4, value);
+ pstmt.executeUpdate();
+ } catch (SQLException e) {
+ throw new CloudRuntimeException("Unable to persist the host_details key: " + detail.getKey()
+ + " for host id: " + hostId, e);
+ }
}
txn.commit();
}
diff --git a/engine/schema/src/com/cloud/network/dao/IPAddressDao.java b/engine/schema/src/com/cloud/network/dao/IPAddressDao.java
index 3d588fa9307..fecd44a32b1 100755
--- a/engine/schema/src/com/cloud/network/dao/IPAddressDao.java
+++ b/engine/schema/src/com/cloud/network/dao/IPAddressDao.java
@@ -16,12 +16,12 @@
// under the License.
package com.cloud.network.dao;
-import java.util.List;
-
import com.cloud.dc.Vlan.VlanType;
import com.cloud.utils.db.GenericDao;
import com.cloud.utils.net.Ip;
+import java.util.List;
+
public interface IPAddressDao extends GenericDao {
IPAddressVO markAsUnavailable(long ipAddressId);
@@ -68,4 +68,8 @@ public interface IPAddressDao extends GenericDao {
IPAddressVO findByAssociatedVmIdAndVmIp(long vmId, String vmIp);
IPAddressVO findByIpAndNetworkId(long networkId, String ipAddress);
+
+ IPAddressVO findByIpAndVlanId(String ipAddress, long vlanid);
+
+ long countFreeIpsInVlan(long vlanDbId);
}
diff --git a/engine/schema/src/com/cloud/network/dao/IPAddressDaoImpl.java b/engine/schema/src/com/cloud/network/dao/IPAddressDaoImpl.java
index 73f310fd628..1839ca45476 100755
--- a/engine/schema/src/com/cloud/network/dao/IPAddressDaoImpl.java
+++ b/engine/schema/src/com/cloud/network/dao/IPAddressDaoImpl.java
@@ -16,26 +16,12 @@
// under the License.
package com.cloud.network.dao;
-import java.sql.PreparedStatement;
-import java.sql.ResultSet;
-import java.util.Date;
-import java.util.List;
-
-import javax.annotation.PostConstruct;
-import javax.ejb.Local;
-import javax.inject.Inject;
-
-import org.apache.log4j.Logger;
-import org.springframework.stereotype.Component;
-
import com.cloud.dc.Vlan.VlanType;
import com.cloud.dc.VlanVO;
import com.cloud.dc.dao.VlanDao;
-import com.cloud.dc.dao.VlanDaoImpl;
import com.cloud.network.IpAddress.State;
import com.cloud.server.ResourceTag.TaggedResourceType;
import com.cloud.tags.dao.ResourceTagDao;
-import com.cloud.tags.dao.ResourceTagsDaoImpl;
import com.cloud.utils.db.DB;
import com.cloud.utils.db.GenericDaoBase;
import com.cloud.utils.db.GenericSearchBuilder;
@@ -46,6 +32,16 @@ import com.cloud.utils.db.SearchCriteria.Func;
import com.cloud.utils.db.SearchCriteria.Op;
import com.cloud.utils.db.Transaction;
import com.cloud.utils.net.Ip;
+import org.apache.log4j.Logger;
+import org.springframework.stereotype.Component;
+
+import javax.annotation.PostConstruct;
+import javax.ejb.Local;
+import javax.inject.Inject;
+import java.sql.PreparedStatement;
+import java.sql.ResultSet;
+import java.util.Date;
+import java.util.List;
@Component
@Local(value = { IPAddressDao.class })
@@ -192,6 +188,14 @@ public class IPAddressDaoImpl extends GenericDaoBase implemen
return findOneBy(sc);
}
+ @Override
+ public IPAddressVO findByIpAndVlanId(String ipAddress, long vlanid) {
+ SearchCriteria sc = AllFieldsSearch.create();
+ sc.setParameters("ipAddress", ipAddress);
+ sc.setParameters("vlan", vlanid);
+ return findOneBy(sc);
+ }
+
@Override
public IPAddressVO findByIpAndDcId(long dcId, String ipAddress) {
SearchCriteria sc = AllFieldsSearch.create();
@@ -332,6 +336,13 @@ public class IPAddressDaoImpl extends GenericDaoBase implemen
return customSearch(sc, null).get(0);
}
+ @Override
+ public long countFreeIpsInVlan(long vlanDbId) {
+ SearchCriteria sc = VlanDbIdSearchUnallocated.create();
+ sc.setParameters("vlanDbId", vlanDbId);
+ return listBy(sc).size();
+ }
+
@Override
public List listByAssociatedVpc(long vpcId, Boolean isSourceNat) {
SearchCriteria sc = AllFieldsSearch.create();
diff --git a/engine/schema/src/com/cloud/network/dao/NetworkDao.java b/engine/schema/src/com/cloud/network/dao/NetworkDao.java
index 1d3f0b84aa6..d0a1a256efc 100644
--- a/engine/schema/src/com/cloud/network/dao/NetworkDao.java
+++ b/engine/schema/src/com/cloud/network/dao/NetworkDao.java
@@ -111,4 +111,8 @@ public interface NetworkDao extends GenericDao , StateDao listNetworksByAccount(long accountId, long zoneId, Network.GuestType type, boolean isSystem);
List listRedundantNetworks();
+
+ List listByAclId(long aclId);
+
+ int getNonSystemNetworkCountByVpcId(long vpcId);
}
diff --git a/engine/schema/src/com/cloud/network/dao/NetworkDaoImpl.java b/engine/schema/src/com/cloud/network/dao/NetworkDaoImpl.java
index 1bc8973bc50..c55cf28273a 100644
--- a/engine/schema/src/com/cloud/network/dao/NetworkDaoImpl.java
+++ b/engine/schema/src/com/cloud/network/dao/NetworkDaoImpl.java
@@ -104,6 +104,7 @@ public class NetworkDaoImpl extends GenericDaoBase implements N
AllFieldsSearch.and("physicalNetwork", AllFieldsSearch.entity().getPhysicalNetworkId(), Op.EQ);
AllFieldsSearch.and("broadcastUri", AllFieldsSearch.entity().getBroadcastUri(), Op.EQ);
AllFieldsSearch.and("vpcId", AllFieldsSearch.entity().getVpcId(), Op.EQ);
+ AllFieldsSearch.and("aclId", AllFieldsSearch.entity().getNetworkACLId(), Op.EQ);
SearchBuilder join1 = _ntwkOffDao.createSearchBuilder();
join1.and("isSystem", join1.entity().isSystemOnly(), Op.EQ);
join1.and("isRedundant", join1.entity().getRedundantRouter(), Op.EQ);
@@ -161,6 +162,9 @@ public class NetworkDaoImpl extends GenericDaoBase implements N
CountBy.and("offeringId", CountBy.entity().getNetworkOfferingId(), Op.EQ);
CountBy.and("vpcId", CountBy.entity().getVpcId(), Op.EQ);
CountBy.and("removed", CountBy.entity().getRemoved(), Op.NULL);
+ SearchBuilder ntwkOffJoin = _ntwkOffDao.createSearchBuilder();
+ ntwkOffJoin.and("isSystem", ntwkOffJoin.entity().isSystemOnly(), Op.EQ);
+ CountBy.join("offerings", ntwkOffJoin, CountBy.entity().getNetworkOfferingId(), ntwkOffJoin.entity().getId(), JoinBuilder.JoinType.INNER);
CountBy.done();
PhysicalNetworkSearch = createSearchBuilder();
@@ -618,4 +622,22 @@ public class NetworkDaoImpl extends GenericDaoBase implements N
sc.setJoinParameters("offerings", "isRedundant", true);
return listBy(sc, null);
}
+
+ @Override
+ public List listByAclId(long aclId) {
+ SearchCriteria sc = AllFieldsSearch.create();
+ sc.setParameters("aclId", aclId);
+
+ return listBy(sc, null);
+ }
+
+
+ @Override
+ public int getNonSystemNetworkCountByVpcId(long vpcId) {
+ SearchCriteria sc = CountBy.create();
+ sc.setParameters("vpcId", vpcId);
+ sc.setJoinParameters("offerings", "isSystem", false);
+ List results = customSearch(sc, null);
+ return results.get(0);
+ }
}
diff --git a/engine/schema/src/com/cloud/network/dao/NetworkVO.java b/engine/schema/src/com/cloud/network/dao/NetworkVO.java
index 8e728abd984..6580ea054f9 100644
--- a/engine/schema/src/com/cloud/network/dao/NetworkVO.java
+++ b/engine/schema/src/com/cloud/network/dao/NetworkVO.java
@@ -160,6 +160,12 @@ public class NetworkVO implements Network {
@Column(name="ip6_cidr")
String ip6Cidr;
+ @Column(name="display_network", updatable=true, nullable=false)
+ protected boolean displayNetwork = true;
+
+ @Column(name="network_acl_id")
+ Long networkACLId;
+
public NetworkVO() {
this.uuid = UUID.randomUUID().toString();
}
@@ -537,4 +543,23 @@ public class NetworkVO implements Network {
public void setIp6Gateway(String ip6Gateway) {
this.ip6Gateway = ip6Gateway;
}
+
+ @Override()
+ public boolean getDisplayNetwork() {
+ return displayNetwork;
+ }
+
+ public void setDisplayNetwork(boolean displayNetwork) {
+ this.displayNetwork = displayNetwork;
+ }
+
+ @Override
+ public void setNetworkACLId(Long networkACLId) {
+ this.networkACLId = networkACLId;
+ }
+
+ @Override
+ public Long getNetworkACLId() {
+ return networkACLId;
+ }
}
diff --git a/engine/schema/src/com/cloud/network/vpc/VpcGatewayVO.java b/engine/schema/src/com/cloud/network/vpc/VpcGatewayVO.java
index e8dcb46b211..7df2dfd236e 100644
--- a/engine/schema/src/com/cloud/network/vpc/VpcGatewayVO.java
+++ b/engine/schema/src/com/cloud/network/vpc/VpcGatewayVO.java
@@ -87,6 +87,11 @@ public class VpcGatewayVO implements VpcGateway {
@Column(name="source_nat")
boolean sourceNat;
+ @Column(name="network_acl_id")
+ long networkACLId;
+
+
+
protected VpcGatewayVO(){
this.uuid = UUID.randomUUID().toString();
}
@@ -106,7 +111,7 @@ public class VpcGatewayVO implements VpcGateway {
* @param sourceNat
*/
public VpcGatewayVO(String ip4Address, Type type, Long vpcId, long zoneId, Long networkId, String vlanTag,
- String gateway, String netmask, long accountId, long domainId, boolean sourceNat) {
+ String gateway, String netmask, long accountId, long domainId, boolean sourceNat, long networkACLId) {
this.ip4Address = ip4Address;
this.type = type;
this.vpcId = vpcId;
@@ -120,6 +125,8 @@ public class VpcGatewayVO implements VpcGateway {
this.domainId = domainId;
this.state = State.Creating;
this.sourceNat = sourceNat;
+ this.networkACLId = networkACLId;
+
}
@Override
@@ -203,4 +210,12 @@ public class VpcGatewayVO implements VpcGateway {
return this.sourceNat;
}
+ public void setNetworkACLId(long networkACLId) {
+ this.networkACLId = networkACLId;
+ }
+
+ @Override
+ public long getNetworkACLId() {
+ return networkACLId;
+ }
}
diff --git a/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDao.java b/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDao.java
index 02df92e9c67..ff8c26a9571 100644
--- a/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDao.java
+++ b/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDao.java
@@ -70,6 +70,7 @@ public interface PrivateIpDao extends GenericDao{
*/
PrivateIpVO findByIpAndVpcId(long vpcId, String ip4Address);
-
+
+ PrivateIpVO findByIpAndSourceNetworkIdAndVpcId(long networkId, String ip4Address, long vpcId);
}
diff --git a/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDaoImpl.java b/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDaoImpl.java
index ecab3bb6625..fe435c05175 100644
--- a/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDaoImpl.java
+++ b/engine/schema/src/com/cloud/network/vpc/dao/PrivateIpDaoImpl.java
@@ -114,7 +114,16 @@ public class PrivateIpDaoImpl extends GenericDaoBase implemen
sc.setParameters("networkId", networkId);
return findOneBy(sc);
}
-
+
+ @Override
+ public PrivateIpVO findByIpAndSourceNetworkIdAndVpcId(long networkId, String ip4Address, long vpcId) {
+ SearchCriteria sc = AllFieldsSearch.create();
+ sc.setParameters("ip", ip4Address);
+ sc.setParameters("networkId", networkId);
+ sc.setParameters("vpcId", vpcId);
+ return findOneBy(sc);
+ }
+
@Override
public PrivateIpVO findByIpAndVpcId(long vpcId, String ip4Address) {
SearchCriteria sc = AllFieldsSearch.create();
diff --git a/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDao.java b/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDao.java
index 600d67f6684..24d9deb511c 100644
--- a/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDao.java
+++ b/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDao.java
@@ -16,11 +16,18 @@
// under the License.
package com.cloud.network.vpc.dao;
+import com.cloud.network.vpc.VpcGateway;
import com.cloud.network.vpc.VpcGatewayVO;
import com.cloud.utils.db.GenericDao;
+import java.util.List;
+
public interface VpcGatewayDao extends GenericDao{
VpcGatewayVO getPrivateGatewayForVpc(long vpcId);
VpcGatewayVO getVpnGatewayForVpc(long vpcId);
+
+ Long getNetworkAclIdForPrivateIp(long vpcId, long networkId, String ipaddr);
+
+ List listByVpcIdAndType(long vpcId, VpcGateway.Type type);
}
diff --git a/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDaoImpl.java b/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDaoImpl.java
index a1cd9340402..6a2f8bd4459 100644
--- a/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDaoImpl.java
+++ b/engine/schema/src/com/cloud/network/vpc/dao/VpcGatewayDaoImpl.java
@@ -27,6 +27,8 @@ import com.cloud.utils.db.GenericDaoBase;
import com.cloud.utils.db.SearchBuilder;
import com.cloud.utils.db.SearchCriteria;
+import java.util.List;
+
@Component
@Local(value = VpcGatewayDao.class)
@DB(txn = false)
@@ -37,6 +39,8 @@ public class VpcGatewayDaoImpl extends GenericDaoBase implem
AllFieldsSearch = createSearchBuilder();
AllFieldsSearch.and("vpcId", AllFieldsSearch.entity().getVpcId(), SearchCriteria.Op.EQ);
AllFieldsSearch.and("type", AllFieldsSearch.entity().getType(), SearchCriteria.Op.EQ);
+ AllFieldsSearch.and("networkid", AllFieldsSearch.entity().getNetworkId(), SearchCriteria.Op.EQ);
+ AllFieldsSearch.and("ipaddress", AllFieldsSearch.entity().getIp4Address(), SearchCriteria.Op.EQ);
AllFieldsSearch.done();
}
@@ -59,4 +63,27 @@ public class VpcGatewayDaoImpl extends GenericDaoBase implem
return findOneBy(sc);
}
+ @Override
+ public Long getNetworkAclIdForPrivateIp (long vpcId, long networkId, String ipaddr) {
+ SearchCriteria sc = AllFieldsSearch.create();
+ sc.setParameters("vpcId", vpcId);
+ sc.setParameters("networkid", networkId);
+ sc.setParameters("ipaddress", ipaddr);
+
+ VpcGateway vpcGateway = findOneBy(sc);
+ if (vpcGateway != null) {
+ return vpcGateway.getNetworkACLId();
+ } else {
+ return null;
+ }
+ }
+
+ @Override
+ public List listByVpcIdAndType(long vpcId, VpcGateway.Type type) {
+ SearchCriteria sc = AllFieldsSearch.create();
+ sc.setParameters("vpcId", vpcId);
+ sc.setParameters("type", type);
+ return listBy(sc);
+ }
+
}
diff --git a/engine/schema/src/com/cloud/storage/DiskOfferingVO.java b/engine/schema/src/com/cloud/storage/DiskOfferingVO.java
index e4fc21c7c13..909d7fe6325 100755
--- a/engine/schema/src/com/cloud/storage/DiskOfferingVO.java
+++ b/engine/schema/src/com/cloud/storage/DiskOfferingVO.java
@@ -100,6 +100,9 @@ public class DiskOfferingVO implements DiskOffering {
@Column(name="sort_key")
int sortKey;
+ @Column(name="display_offering")
+ boolean displayOffering;
+
public DiskOfferingVO() {
this.uuid = UUID.randomUUID().toString();
}
@@ -315,4 +318,13 @@ public class DiskOfferingVO implements DiskOffering {
public void setRecreatable(boolean recreatable) {
this.recreatable = recreatable;
}
+
+
+ public boolean getDisplayOffering() {
+ return displayOffering;
+ }
+
+ public void setDisplayOffering(boolean displayOffering) {
+ this.displayOffering = displayOffering;
+ }
}
diff --git a/engine/schema/src/com/cloud/storage/VolumeVO.java b/engine/schema/src/com/cloud/storage/VolumeVO.java
index a287c26348b..1699afd320f 100755
--- a/engine/schema/src/com/cloud/storage/VolumeVO.java
+++ b/engine/schema/src/com/cloud/storage/VolumeVO.java
@@ -130,7 +130,10 @@ public class VolumeVO implements Volume {
@Column(name = "uuid")
String uuid;
-
+
+ @Column(name="display_volume", updatable=true, nullable=false)
+ protected boolean displayVolume;
+
@Transient
// @Column(name="reservation")
String reservationId;
@@ -451,4 +454,13 @@ public class VolumeVO implements Volume {
public void setUuid(String uuid) {
this.uuid = uuid;
}
+
+
+ public boolean isDisplayVolume() {
+ return displayVolume;
+ }
+
+ public void setDisplayVolume(boolean displayVolume) {
+ this.displayVolume = displayVolume;
+ }
}
diff --git a/engine/schema/src/com/cloud/upgrade/dao/Upgrade302to40.java b/engine/schema/src/com/cloud/upgrade/dao/Upgrade302to40.java
index 753f64ec682..ecda872dfa4 100644
--- a/engine/schema/src/com/cloud/upgrade/dao/Upgrade302to40.java
+++ b/engine/schema/src/com/cloud/upgrade/dao/Upgrade302to40.java
@@ -63,6 +63,7 @@ public class Upgrade302to40 extends Upgrade30xBase implements DbUpgrade {
@Override
public void performDataMigration(Connection conn) {
+ updateVmWareSystemVms(conn);
correctVRProviders(conn);
correctMultiplePhysicaNetworkSetups(conn);
addHostDetailsUniqueKey(conn);
@@ -82,7 +83,55 @@ public class Upgrade302to40 extends Upgrade30xBase implements DbUpgrade {
return new File[] { new File(script) };
}
-
+
+ private void updateVmWareSystemVms(Connection conn){
+ PreparedStatement pstmt = null;
+ ResultSet rs = null;
+ boolean VMware = false;
+ try {
+ pstmt = conn.prepareStatement("select distinct(hypervisor_type) from `cloud`.`cluster` where removed is null");
+ rs = pstmt.executeQuery();
+ while(rs.next()){
+ if("VMware".equals(rs.getString(1))){
+ VMware = true;
+ }
+ }
+ } catch (SQLException e) {
+ throw new CloudRuntimeException("Error while iterating through list of hypervisors in use", e);
+ }
+ // Just update the VMware system template. Other hypervisor templates are unchanged from previous 3.0.x versions.
+ s_logger.debug("Updating VMware System Vms");
+ try {
+ //Get 4.0 VMware system Vm template Id
+ pstmt = conn.prepareStatement("select id from `cloud`.`vm_template` where name = 'systemvm-vmware-4.0' and removed is null");
+ rs = pstmt.executeQuery();
+ if(rs.next()){
+ long templateId = rs.getLong(1);
+ rs.close();
+ pstmt.close();
+ // change template type to SYSTEM
+ pstmt = conn.prepareStatement("update `cloud`.`vm_template` set type='SYSTEM' where id = ?");
+ pstmt.setLong(1, templateId);
+ pstmt.executeUpdate();
+ pstmt.close();
+ // update templete ID of system Vms
+ pstmt = conn.prepareStatement("update `cloud`.`vm_instance` set vm_template_id = ? where type <> 'User' and hypervisor_type = 'VMware'");
+ pstmt.setLong(1, templateId);
+ pstmt.executeUpdate();
+ pstmt.close();
+ } else {
+ if (VMware){
+ throw new CloudRuntimeException("4.0 VMware SystemVm template not found. Cannot upgrade system Vms");
+ } else {
+ s_logger.warn("4.0 VMware SystemVm template not found. VMware hypervisor is not used, so not failing upgrade");
+ }
+ }
+ } catch (SQLException e) {
+ throw new CloudRuntimeException("Error while updating VMware systemVm template", e);
+ }
+ s_logger.debug("Updating System Vm Template IDs Complete");
+ }
+
private void correctVRProviders(Connection conn) {
PreparedStatement pstmtVR = null;
ResultSet rsVR = null;
diff --git a/engine/schema/src/com/cloud/upgrade/dao/Upgrade410to420.java b/engine/schema/src/com/cloud/upgrade/dao/Upgrade410to420.java
index cec13288315..c03d377cbe0 100644
--- a/engine/schema/src/com/cloud/upgrade/dao/Upgrade410to420.java
+++ b/engine/schema/src/com/cloud/upgrade/dao/Upgrade410to420.java
@@ -23,10 +23,13 @@ import com.cloud.utils.script.Script;
import org.apache.log4j.Logger;
import java.io.File;
import java.sql.Connection;
+import java.sql.Date;
import java.sql.PreparedStatement;
import java.sql.ResultSet;
import java.sql.SQLException;
+import java.sql.Types;
import java.util.UUID;
+import com.cloud.network.vpc.NetworkACL;
public class Upgrade410to420 implements DbUpgrade {
final static Logger s_logger = Logger.getLogger(Upgrade410to420.class);
@@ -69,6 +72,9 @@ public class Upgrade410to420 implements DbUpgrade {
updateGlobalDeploymentPlanner(conn);
upgradeDefaultVpcOffering(conn);
upgradePhysicalNtwksWithInternalLbProvider(conn);
+ updateNetworkACLs(conn);
+ addHostDetailsIndex(conn);
+ updateNetworksForPrivateGateways(conn);
}
private void updateSystemVmTemplates(Connection conn) {
@@ -309,6 +315,7 @@ public class Upgrade410to420 implements DbUpgrade {
}
}
}
+
private void addEgressFwRulesForSRXGuestNw(Connection conn) {
PreparedStatement pstmt = null;
ResultSet rs = null;
@@ -390,11 +397,164 @@ public class Upgrade410to420 implements DbUpgrade {
}
} catch (SQLException e) {
throw new CloudRuntimeException("Unable to set elastic_ip_service for network offerings with EIP service enabled.", e);
+ }
+ }
+
+ private void updateNetworkACLs(Connection conn) {
+ //Fetch all VPC Tiers
+ //For each tier create a network ACL and move all the acl_items to network_acl_item table
+ // If there are no acl_items for a tier, associate it with default ACL
+
+ s_logger.debug("Updating network ACLs");
+
+ PreparedStatement pstmt = null;
+ PreparedStatement pstmtDelete = null;
+ ResultSet rs = null;
+ ResultSet rsAcls = null;
+ ResultSet rsCidr = null;
+
+ //1,2 are default acl Ids, start acl Ids from 3
+ long nextAclId = 3;
+
+ try {
+ //Get all VPC tiers
+ pstmt = conn.prepareStatement("SELECT id, vpc_id, uuid FROM `cloud`.`networks` where vpc_id is not null and removed is null");
+ rs = pstmt.executeQuery();
+ while (rs.next()) {
+ Long networkId = rs.getLong(1);
+ s_logger.debug("Updating network ACLs for network: "+networkId);
+ Long vpcId = rs.getLong(2);
+ String tierUuid = rs.getString(3);
+ pstmt = conn.prepareStatement("SELECT id, uuid, start_port, end_port, state, protocol, icmp_code, icmp_type, created, traffic_type FROM `cloud`.`firewall_rules` where network_id = ? and purpose = 'NetworkACL'");
+ pstmt.setLong(1, networkId);
+ rsAcls = pstmt.executeQuery();
+ boolean hasAcls = false;
+ Long aclId = null;
+ int number = 1;
+ while(rsAcls.next()){
+ if(!hasAcls){
+ hasAcls = true;
+ aclId = nextAclId++;
+ //create ACL for the tier
+ s_logger.debug("Creating network ACL for tier: "+tierUuid);
+ pstmt = conn.prepareStatement("INSERT INTO `cloud`.`network_acl` (id, uuid, vpc_id, description, name) values (?, UUID(), ? , ?, ?)");
+ pstmt.setLong(1, aclId);
+ pstmt.setLong(2, vpcId);
+ pstmt.setString(3, "ACL for tier " + tierUuid);
+ pstmt.setString(4, "tier_" + tierUuid);
+ pstmt.executeUpdate();
+ }
+
+ Long fwRuleId = rsAcls.getLong(1);
+ String cidr = null;
+ //get cidr from firewall_rules_cidrs
+ pstmt = conn.prepareStatement("SELECT id, source_cidr FROM `cloud`.`firewall_rules_cidrs` where firewall_rule_id = ?");
+ pstmt.setLong(1, fwRuleId);
+ rsCidr = pstmt.executeQuery();
+ while(rsCidr.next()){
+ Long cidrId = rsCidr.getLong(1);
+ String sourceCidr = rsCidr.getString(2);
+ if(cidr == null){
+ cidr = sourceCidr;
+ } else {
+ cidr += ","+sourceCidr;
+ }
+ //Delete cidr entry
+ pstmtDelete = conn.prepareStatement("DELETE FROM `cloud`.`firewall_rules_cidrs` where id = ?");
+ pstmtDelete.setLong(1, cidrId);
+ pstmtDelete.executeUpdate();
+ }
+
+
+ String aclItemUuid = rsAcls.getString(2);
+ //Move acl to network_acl_item table
+ s_logger.debug("Moving firewall rule: "+aclItemUuid);
+ pstmt = conn.prepareStatement("INSERT INTO `cloud`.`network_acl_item` (uuid, acl_id, start_port, end_port, state, protocol, icmp_code, icmp_type, created, traffic_type, cidr, number, action) values (?, ?, ?, ?, ?, ?, ?, ?, ?, ?, ?, ?, ? )");
+ //uuid
+ pstmt.setString(1, aclItemUuid);
+ //aclId
+ pstmt.setLong(2, aclId);
+ //Start port
+ Integer startPort = rsAcls.getInt(3);
+ if(rsAcls.wasNull()){
+ pstmt.setNull(3, Types.INTEGER);
+ } else {
+ pstmt.setLong(3, startPort);
+ }
+ //End port
+ Integer endPort = rsAcls.getInt(4);
+ if(rsAcls.wasNull()){
+ pstmt.setNull(4, Types.INTEGER);
+ } else {
+ pstmt.setLong(4, endPort);
+ }
+ //State
+ String state = rsAcls.getString(5);
+ pstmt.setString(5, state);
+ //protocol
+ String protocol = rsAcls.getString(6);
+ pstmt.setString(6, protocol);
+ //icmp_code
+ Integer icmpCode = rsAcls.getInt(7);
+ if(rsAcls.wasNull()){
+ pstmt.setNull(7, Types.INTEGER);
+ } else {
+ pstmt.setLong(7, icmpCode);
+ }
+
+ //icmp_type
+ Integer icmpType = rsAcls.getInt(8);
+ if(rsAcls.wasNull()){
+ pstmt.setNull(8, Types.INTEGER);
+ } else {
+ pstmt.setLong(8, icmpType);
+ }
+
+ //created
+ Date created = rsAcls.getDate(9);
+ pstmt.setDate(9, created);
+ //traffic type
+ String trafficType = rsAcls.getString(10);
+ pstmt.setString(10, trafficType);
+
+ //cidr
+ pstmt.setString(11, cidr);
+ //number
+ pstmt.setInt(12, number++);
+ //action
+ pstmt.setString(13, "Allow");
+ pstmt.executeUpdate();
+
+ //Delete firewall rule
+ pstmtDelete = conn.prepareStatement("DELETE FROM `cloud`.`firewall_rules` where id = ?");
+ pstmtDelete.setLong(1, fwRuleId);
+ pstmtDelete.executeUpdate();
+ }
+ if(!hasAcls){
+ //no network ACls for this network.
+ // Assign default Deny ACL
+ aclId = NetworkACL.DEFAULT_DENY;
+ }
+ //Assign acl to network
+ pstmt = conn.prepareStatement("UPDATE `cloud`.`networks` set network_acl_id=? where id=?");
+ pstmt.setLong(1, aclId);
+ pstmt.setLong(2, networkId);
+ pstmt.executeUpdate();
+ }
+ s_logger.debug("Done updating network ACLs ");
+ } catch (SQLException e) {
+ throw new CloudRuntimeException("Unable to move network acls from firewall rules table to network_acl_item table", e);
} finally {
try {
if (rs != null) {
rs.close();
}
+ if (rsAcls != null) {
+ rsAcls.close();
+ }
+ if (rsCidr != null) {
+ rsCidr.close();
+ }
if (pstmt != null) {
pstmt.close();
}
@@ -450,8 +610,8 @@ public class Upgrade410to420 implements DbUpgrade {
}
}
- private void upgradeDefaultVpcOffering(Connection conn) {
+ private void upgradeDefaultVpcOffering(Connection conn) {
PreparedStatement pstmt = null;
ResultSet rs = null;
@@ -483,7 +643,6 @@ public class Upgrade410to420 implements DbUpgrade {
}
}
-
private void upgradePhysicalNtwksWithInternalLbProvider(Connection conn) {
PreparedStatement pstmt = null;
@@ -530,6 +689,62 @@ public class Upgrade410to420 implements DbUpgrade {
} catch (SQLException e) {
}
}
+ }
+ private void addHostDetailsIndex(Connection conn) {
+ s_logger.debug("Checking if host_details index exists, if not we will add it");
+ PreparedStatement pstmt = null;
+ ResultSet rs = null;
+ try {
+ pstmt = conn.prepareStatement("SHOW INDEX FROM `cloud`.`host_details` where KEY_NAME = 'fk_host_details__host_id'");
+ rs = pstmt.executeQuery();
+ if (rs.next()) {
+ s_logger.debug("Index already exists on host_details - not adding new one");
+ } else {
+ // add the index
+ PreparedStatement pstmtUpdate = conn.prepareStatement("ALTER IGNORE TABLE `cloud`.`host_details` ADD INDEX `fk_host_details__host_id` (`host_id`)");
+ pstmtUpdate.executeUpdate();
+ s_logger.debug("Index did not exist on host_details - added new one");
+ pstmtUpdate.close();
+ }
+ } catch (SQLException e) {
+ throw new CloudRuntimeException("Failed to check/update the host_details index ", e);
+ } finally {
+ try {
+ if (rs != null) {
+ rs.close();
+ }
+
+ if (pstmt != null) {
+ pstmt.close();
+ }
+ } catch (SQLException e) {
+ }
+ }
+ }
+
+
+ private void updateNetworksForPrivateGateways(Connection conn) {
+
+ PreparedStatement pstmt = null;
+ ResultSet rs = null;
+
+ try {
+ //1) get all non removed gateways
+ pstmt = conn.prepareStatement("SELECT network_id, vpc_id FROM `cloud`.`vpc_gateways` WHERE type='Private' AND removed IS null");
+ rs = pstmt.executeQuery();
+ while (rs.next()) {
+ Long networkId = rs.getLong(1);
+ Long vpcId = rs.getLong(2);
+ //2) Update networks with vpc_id if its set to NULL
+ pstmt = conn.prepareStatement("UPDATE `cloud`.`networks` set vpc_id=? where id=? and vpc_id is NULL and removed is NULL");
+ pstmt.setLong(1, vpcId);
+ pstmt.setLong(2, networkId);
+ pstmt.executeUpdate();
+
+ }
+ } catch (SQLException e) {
+ throw new CloudRuntimeException("Failed to update private networks with VPC id.", e);
+ }
}
}
diff --git a/engine/schema/src/com/cloud/user/dao/AccountDao.java b/engine/schema/src/com/cloud/user/dao/AccountDao.java
index 3b7fa66434e..204da394a69 100644
--- a/engine/schema/src/com/cloud/user/dao/AccountDao.java
+++ b/engine/schema/src/com/cloud/user/dao/AccountDao.java
@@ -49,4 +49,5 @@ public interface AccountDao extends GenericDao {
//returns only non-removed account
Account findActiveAccount(String accountName, Long domainId);
Account findActiveNonProjectAccount(String accountName, Long domainId);
+ List getAccountIdsForDomains(List ids);
}
diff --git a/engine/schema/src/com/cloud/user/dao/AccountDaoImpl.java b/engine/schema/src/com/cloud/user/dao/AccountDaoImpl.java
index 892fdcd548d..aa67e86bf70 100755
--- a/engine/schema/src/com/cloud/user/dao/AccountDaoImpl.java
+++ b/engine/schema/src/com/cloud/user/dao/AccountDaoImpl.java
@@ -35,8 +35,10 @@ import com.cloud.utils.Pair;
import com.cloud.utils.crypt.DBEncryptionUtil;
import com.cloud.utils.db.Filter;
import com.cloud.utils.db.GenericDaoBase;
+import com.cloud.utils.db.GenericSearchBuilder;
import com.cloud.utils.db.SearchBuilder;
import com.cloud.utils.db.SearchCriteria;
+import com.cloud.utils.db.SearchCriteria.Op;
import com.cloud.utils.db.Transaction;
@Component
@@ -54,7 +56,8 @@ public class AccountDaoImpl extends GenericDaoBase implements A
protected final SearchBuilder CleanupForRemovedAccountsSearch;
protected final SearchBuilder CleanupForDisabledAccountsSearch;
protected final SearchBuilder NonProjectAccountSearch;
-
+ protected final GenericSearchBuilder AccountIdsSearch;
+
public AccountDaoImpl() {
AllFieldsSearch = createSearchBuilder();
AllFieldsSearch.and("accountName", AllFieldsSearch.entity().getAccountName(), SearchCriteria.Op.EQ);
@@ -91,6 +94,11 @@ public class AccountDaoImpl extends GenericDaoBase implements A
NonProjectAccountSearch.and("state", NonProjectAccountSearch.entity().getState(), SearchCriteria.Op.EQ);
NonProjectAccountSearch.and("type", NonProjectAccountSearch.entity().getType(), SearchCriteria.Op.NEQ);
NonProjectAccountSearch.done();
+
+ AccountIdsSearch = createSearchBuilder(Long.class);
+ AccountIdsSearch.selectField(AccountIdsSearch.entity().getId());
+ AccountIdsSearch.and("ids", AccountIdsSearch.entity().getDomainId(), Op.IN);
+ AccountIdsSearch.done();
}
@Override
@@ -263,5 +271,12 @@ public class AccountDaoImpl extends GenericDaoBase implements A
}
}
}
-
+
+ @Override
+ public List getAccountIdsForDomains(List domainIds) {
+ SearchCriteria sc = AccountIdsSearch.create();
+ sc.setParameters("ids", domainIds.toArray(new Object[domainIds.size()]));
+ return customSearch(sc, null);
+ }
+
}
diff --git a/engine/schema/src/com/cloud/vm/VMInstanceVO.java b/engine/schema/src/com/cloud/vm/VMInstanceVO.java
index 5ec2712d3d8..fbe03dca8a2 100644
--- a/engine/schema/src/com/cloud/vm/VMInstanceVO.java
+++ b/engine/schema/src/com/cloud/vm/VMInstanceVO.java
@@ -111,6 +111,9 @@ public class VMInstanceVO implements VirtualMachine, FiniteStateObject {
List listByVmId(long instanceId);
@@ -66,4 +66,6 @@ public interface NicDao extends GenericDao {
List listPlaceholderNicsByNetworkId(long networkId);
List listPlaceholderNicsByNetworkIdAndVmType(long networkId, VirtualMachine.Type vmType);
+
+ NicVO findByInstanceIdAndIpAddressAndVmtype(long instanceId, String ipaddress, VirtualMachine.Type type);
}
diff --git a/engine/schema/src/com/cloud/vm/dao/NicDaoImpl.java b/engine/schema/src/com/cloud/vm/dao/NicDaoImpl.java
index fa30168bf86..420643f7363 100644
--- a/engine/schema/src/com/cloud/vm/dao/NicDaoImpl.java
+++ b/engine/schema/src/com/cloud/vm/dao/NicDaoImpl.java
@@ -16,12 +16,6 @@
// under the License.
package com.cloud.vm.dao;
-import java.util.List;
-
-import javax.ejb.Local;
-
-import org.springframework.stereotype.Component;
-
import com.cloud.utils.db.GenericDaoBase;
import com.cloud.utils.db.GenericSearchBuilder;
import com.cloud.utils.db.SearchBuilder;
@@ -32,6 +26,10 @@ import com.cloud.vm.Nic;
import com.cloud.vm.Nic.State;
import com.cloud.vm.NicVO;
import com.cloud.vm.VirtualMachine;
+import org.springframework.stereotype.Component;
+
+import javax.ejb.Local;
+import java.util.List;
@Component
@Local(value=NicDao.class)
@@ -119,6 +117,15 @@ public class NicDaoImpl extends GenericDaoBase implements NicDao {
sc.setParameters("instance", instanceId);
return findOneBy(sc);
}
+
+ @Override
+ public NicVO findByInstanceIdAndIpAddressAndVmtype(long instanceId, String ipaddress, VirtualMachine.Type type) {
+ SearchCriteria sc = AllFieldsSearch.create();
+ sc.setParameters("instance", instanceId);
+ sc.setParameters("address", ipaddress);
+ sc.setParameters("vmType", type);
+ return findOneBy(sc);
+ }
@Override
public NicVO findByInstanceIdAndNetworkIdIncludingRemoved(long networkId, long instanceId) {
diff --git a/engine/schema/src/com/cloud/vm/dao/UserVmDao.java b/engine/schema/src/com/cloud/vm/dao/UserVmDao.java
index 81d13cda2ed..e7cd61bddfe 100755
--- a/engine/schema/src/com/cloud/vm/dao/UserVmDao.java
+++ b/engine/schema/src/com/cloud/vm/dao/UserVmDao.java
@@ -38,8 +38,9 @@ public interface UserVmDao extends GenericDao {
* @param id vm id.
* @param displan name and enable for ha
* @param userData updates the userData of the vm
+ * @param displayVm updates the displayvm attribute signifying whether it has to be displayed to the end user or not.
*/
- void updateVM(long id, String displayName, boolean enable, Long osTypeId, String userData);
+ void updateVM(long id, String displayName, boolean enable, Long osTypeId, String userData, boolean displayVm);
List findDestroyedVms(Date date);
diff --git a/engine/schema/src/com/cloud/vm/dao/UserVmDaoImpl.java b/engine/schema/src/com/cloud/vm/dao/UserVmDaoImpl.java
index c2fd6481875..5e8be1054a9 100755
--- a/engine/schema/src/com/cloud/vm/dao/UserVmDaoImpl.java
+++ b/engine/schema/src/com/cloud/vm/dao/UserVmDaoImpl.java
@@ -224,12 +224,13 @@ public class UserVmDaoImpl extends GenericDaoBase implements Use
}
@Override
- public void updateVM(long id, String displayName, boolean enable, Long osTypeId, String userData) {
+ public void updateVM(long id, String displayName, boolean enable, Long osTypeId, String userData, boolean displayVm) {
UserVmVO vo = createForUpdate();
vo.setDisplayName(displayName);
vo.setHaEnabled(enable);
vo.setGuestOSId(osTypeId);
vo.setUserData(userData);
+ vo.setDisplayVm(displayVm);
update(id, vo);
}
diff --git a/engine/storage/src/org/apache/cloudstack/storage/volume/db/VolumeVO.java b/engine/storage/src/org/apache/cloudstack/storage/volume/db/VolumeVO.java
index da8234e35f3..831022455c9 100644
--- a/engine/storage/src/org/apache/cloudstack/storage/volume/db/VolumeVO.java
+++ b/engine/storage/src/org/apache/cloudstack/storage/volume/db/VolumeVO.java
@@ -156,6 +156,7 @@ public class VolumeVO implements Identity, StateObject {
this(that.getSize(), that.getVolumeType(), that.getName(), that.getTemplateId());
this.recreatable = that.isRecreatable();
this.state = that.getState();
+
this.size = that.getSize();
this.diskOfferingId = that.getDiskOfferingId();
this.poolId = that.getPoolId();
@@ -413,4 +414,5 @@ public class VolumeVO implements Identity, StateObject {
public void setDiskType(DiskFormat type) {
diskType = type;
}
+
}
diff --git a/engine/storage/volume/src/org/apache/cloudstack/storage/datastore/provider/DefaultHostListener.java b/engine/storage/volume/src/org/apache/cloudstack/storage/datastore/provider/DefaultHostListener.java
index f2cb1c45c82..2f0b43ad9f6 100644
--- a/engine/storage/volume/src/org/apache/cloudstack/storage/datastore/provider/DefaultHostListener.java
+++ b/engine/storage/volume/src/org/apache/cloudstack/storage/datastore/provider/DefaultHostListener.java
@@ -56,7 +56,7 @@ public class DefaultHostListener implements HypervisorHostListener {
}
if (!answer.getResult()) {
- String msg = "Add host failed due to ModifyStoragePoolCommand failed" + answer.getDetails();
+ String msg = "Unable to attach storage pool" + poolId + " to the host" + hostId;
alertMgr.sendAlert(AlertManager.ALERT_TYPE_HOST, pool.getDataCenterId(), pool.getPodId(), msg, msg);
throw new CloudRuntimeException("Unable establish connection from storage head to storage pool " + pool.getId() + " due to " + answer.getDetails() + pool.getId());
}
diff --git a/engine/storage/volume/src/org/apache/cloudstack/storage/volume/VolumeServiceImpl.java b/engine/storage/volume/src/org/apache/cloudstack/storage/volume/VolumeServiceImpl.java
index b39502b1924..26253544e77 100644
--- a/engine/storage/volume/src/org/apache/cloudstack/storage/volume/VolumeServiceImpl.java
+++ b/engine/storage/volume/src/org/apache/cloudstack/storage/volume/VolumeServiceImpl.java
@@ -772,9 +772,8 @@ public class VolumeServiceImpl implements VolumeService {
return future;
}
CreateVolumeContext context = new CreateVolumeContext(null, volume, future);
- AsyncCallbackDispatcher caller = AsyncCallbackDispatcher.create(this);
- caller.setCallback(caller.getTarget().registerVolumeCallback(null, null))
- .setContext(context);
+ AsyncCallbackDispatcher caller = AsyncCallbackDispatcher.create(this);
+ caller.setCallback(caller.getTarget().resizeVolumeCallback(caller, context)).setContext(context);
volume.getDataStore().getDriver().resize(volume, caller);
return future;
}
diff --git a/packaging/centos63/cloud.spec b/packaging/centos63/cloud.spec
index a7cc20e8ab8..1cde336e7b1 100644
--- a/packaging/centos63/cloud.spec
+++ b/packaging/centos63/cloud.spec
@@ -205,6 +205,7 @@ mkdir -p ${RPM_BUILD_ROOT}%{_datadir}/%{name}-management/setup
mkdir -p ${RPM_BUILD_ROOT}%{_localstatedir}/log/%{name}/management
mkdir -p ${RPM_BUILD_ROOT}%{_localstatedir}/log/%{name}/awsapi
mkdir -p ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}/management
+mkdir -p ${RPM_BUILD_ROOT}%{_localstatedir}/log/%{name}-management
# Specific for tomcat
mkdir -p ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}/management/Catalina/localhost/client
@@ -259,6 +260,7 @@ chmod 770 ${RPM_BUILD_ROOT}%{_localstatedir}/cache/%{name}/management/work
chmod 770 ${RPM_BUILD_ROOT}%{_localstatedir}/cache/%{name}/management/temp
chmod 770 ${RPM_BUILD_ROOT}%{_localstatedir}/log/%{name}/management
chmod 770 ${RPM_BUILD_ROOT}%{_localstatedir}/log/%{name}/agent
+chmod 770 ${RPM_BUILD_ROOT}%{_localstatedir}/log/%{name}-management
# KVM Agent
mkdir -p ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}/agent
@@ -397,6 +399,8 @@ if [ -L $oldserverxml ] ; then
if [ -L $serverxml ]; then rm -f $serverxml; fi
ln -s %{_sysconfdir}/%{name}/management/server-ssl.xml $serverxml
fi
+else
+ echo "Unable to determine ssl settings for server.xml, please run cloudstack-setup-management manually"
fi
tomcatconf=%{_sysconfdir}/%{name}/management/tomcat6.conf
@@ -409,6 +413,8 @@ if [ -L $oldtomcatconf ] ; then
if [ -L $tomcatconf ]; then rm -f $tomcatconf; fi
ln -s %{_sysconfdir}/%{name}/management/tomcat6-ssl.conf $tomcatconf
fi
+else
+ echo "Unable to determine ssl settings for tomcat.conf, please run cloudstack-setup-management manually"
fi
%preun agent
@@ -510,6 +516,7 @@ fi
%attr(0755,root,root) %{_bindir}/%{name}-external-ipallocator.py
%attr(0755,root,root) %{_initrddir}/%{name}-ipallocator
%dir %attr(0770,root,root) %{_localstatedir}/log/%{name}/ipallocator
+%dir %attr(0770,root,root) %{_localstatedir}/log/%{name}-management
%{_defaultdocdir}/%{name}-management-%{version}/LICENSE
%{_defaultdocdir}/%{name}-management-%{version}/NOTICE
diff --git a/patches/systemvm/debian/config/opt/cloud/bin/vpc_acl.sh b/patches/systemvm/debian/config/opt/cloud/bin/vpc_acl.sh
index 8a207e880be..903d6d6127a 100755
--- a/patches/systemvm/debian/config/opt/cloud/bin/vpc_acl.sh
+++ b/patches/systemvm/debian/config/opt/cloud/bin/vpc_acl.sh
@@ -102,6 +102,7 @@ acl_entry_for_guest_network() {
local sport=$(echo $rule | cut -d: -f3)
local eport=$(echo $rule | cut -d: -f4)
local cidrs=$(echo $rule | cut -d: -f5 | sed 's/-/ /g')
+ local action=$(echo $rule | cut -d: -f6)
if [ "$sport" == "0" -a "$eport" == "0" ]
then
DPORT=""
@@ -123,21 +124,21 @@ acl_entry_for_guest_network() {
if [ "$ttype" == "Ingress" ]
then
sudo iptables -I ACL_INBOUND_$dev -p $prot -s $lcidr \
- --icmp-type $typecode -j ACCEPT
+ --icmp-type $typecode -j $action
else
let egress++
sudo iptables -t mangle -I ACL_OUTBOUND_$dev -p $prot -d $lcidr \
- --icmp-type $typecode -j ACCEPT
+ --icmp-type $typecode -j $action
fi
else
if [ "$ttype" == "Ingress" ]
then
sudo iptables -I ACL_INBOUND_$dev -p $prot -s $lcidr \
- $DPORT -j ACCEPT
+ $DPORT -j $action
else
let egress++
sudo iptables -t mangle -I ACL_OUTBOUND_$dev -p $prot -d $lcidr \
- $DPORT -j ACCEPT
+ $DPORT -j $action
fi
fi
result=$?
@@ -195,7 +196,7 @@ fi
# protocal:sport:eport:cidr
#-a tcp:80:80:0.0.0.0/0::tcp:220:220:0.0.0.0/0:,172.16.92.44:tcp:222:222:192.168.10.0/24-75.57.23.0/22-88.100.33.1/32
# if any entry is reverted , entry will be in the format