terraform/builtin/providers/google/config.go

138 lines
3.4 KiB
Go
Raw Normal View History

2014-08-25 20:48:20 +02:00
package google
import (
"encoding/json"
"fmt"
"log"
"net/http"
"os"
"runtime"
2014-08-25 20:48:20 +02:00
// TODO(dcunnin): Use version code from version.go
// "github.com/hashicorp/terraform"
2015-02-12 03:21:24 +01:00
"golang.org/x/oauth2"
"golang.org/x/oauth2/google"
"golang.org/x/oauth2/jwt"
"google.golang.org/api/compute/v1"
2015-04-30 07:32:34 +02:00
"google.golang.org/api/dns/v1"
2014-08-25 20:48:20 +02:00
)
// Config is the configuration structure used to instantiate the Google
// provider.
type Config struct {
AccountFile string
Project string
Region string
2014-08-25 20:48:20 +02:00
clientCompute *compute.Service
2015-04-30 07:32:34 +02:00
clientDns *dns.Service
2014-08-25 20:48:20 +02:00
}
func (c *Config) loadAndValidate() error {
var account accountFile
// TODO: validation that it isn't blank
if c.AccountFile == "" {
c.AccountFile = os.Getenv("GOOGLE_ACCOUNT_FILE")
}
if c.Project == "" {
c.Project = os.Getenv("GOOGLE_PROJECT")
}
if c.Region == "" {
c.Region = os.Getenv("GOOGLE_REGION")
}
2014-08-25 20:48:20 +02:00
2015-02-12 03:21:24 +01:00
var client *http.Client
2015-01-30 20:53:09 +01:00
if c.AccountFile != "" {
if err := loadJSON(&account, c.AccountFile); err != nil {
return fmt.Errorf(
"Error loading account file '%s': %s",
c.AccountFile,
err)
}
2015-04-30 07:32:34 +02:00
clientScopes := []string{
"https://www.googleapis.com/auth/compute",
"https://www.googleapis.com/auth/ndev.clouddns.readwrite",
}
2015-02-12 03:21:24 +01:00
2015-01-30 20:53:09 +01:00
// Get the token for use in our requests
log.Printf("[INFO] Requesting Google token...")
log.Printf("[INFO] -- Email: %s", account.ClientEmail)
log.Printf("[INFO] -- Scopes: %s", clientScopes)
log.Printf("[INFO] -- Private Key Length: %d", len(account.PrivateKey))
2015-02-12 03:21:24 +01:00
conf := jwt.Config{
Email: account.ClientEmail,
PrivateKey: []byte(account.PrivateKey),
Scopes: clientScopes,
TokenURL: "https://accounts.google.com/o/oauth2/token",
}
// Initiate an http.Client. The following GET request will be
// authorized and authenticated on the behalf of
// your service account.
client = conf.Client(oauth2.NoContext)
2015-01-30 20:53:09 +01:00
} else {
log.Printf("[INFO] Requesting Google token via GCE Service Role...")
2015-02-12 03:21:24 +01:00
client = &http.Client{
Transport: &oauth2.Transport{
// Fetch from Google Compute Engine's metadata server to retrieve
// an access token for the provided account.
// If no account is specified, "default" is used.
Source: google.ComputeTokenSource(""),
},
}
2014-08-25 20:48:20 +02:00
}
2015-04-30 07:32:34 +02:00
// Build UserAgent
versionString := "0.0.0"
// TODO(dcunnin): Use Terraform's version code from version.go
// versionString := main.Version
// if main.VersionPrerelease != "" {
// versionString = fmt.Sprintf("%s-%s", versionString, main.VersionPrerelease)
// }
2015-04-30 07:32:34 +02:00
userAgent := fmt.Sprintf(
"(%s %s) Terraform/%s", runtime.GOOS, runtime.GOARCH, versionString)
2015-04-30 07:32:34 +02:00
var err error
log.Printf("[INFO] Instantiating GCE client...")
c.clientCompute, err = compute.New(client)
if err != nil {
return err
}
c.clientCompute.UserAgent = userAgent
log.Printf("[INFO] Instantiating Google Cloud DNS client...")
c.clientDns, err = dns.New(client)
2014-08-25 20:48:20 +02:00
if err != nil {
return err
}
2015-04-30 07:32:34 +02:00
c.clientDns.UserAgent = userAgent
2014-08-25 20:48:20 +02:00
return nil
}
// accountFile represents the structure of the account file JSON file.
type accountFile struct {
PrivateKeyId string `json:"private_key_id"`
PrivateKey string `json:"private_key"`
ClientEmail string `json:"client_email"`
ClientId string `json:"client_id"`
}
func loadJSON(result interface{}, path string) error {
f, err := os.Open(path)
if err != nil {
return err
}
defer f.Close()
dec := json.NewDecoder(f)
return dec.Decode(result)
}