github.com/aspring/terraform@v0.8.2-0.20161216122603-6a8619a5db2e/builtin/providers/google/resource_container_cluster.go (about) 1 package google 2 3 import ( 4 "fmt" 5 "log" 6 "net" 7 "regexp" 8 "time" 9 10 "github.com/hashicorp/terraform/helper/resource" 11 "github.com/hashicorp/terraform/helper/schema" 12 "google.golang.org/api/container/v1" 13 "google.golang.org/api/googleapi" 14 ) 15 16 func resourceContainerCluster() *schema.Resource { 17 return &schema.Resource{ 18 Create: resourceContainerClusterCreate, 19 Read: resourceContainerClusterRead, 20 Update: resourceContainerClusterUpdate, 21 Delete: resourceContainerClusterDelete, 22 23 Schema: map[string]*schema.Schema{ 24 "initial_node_count": &schema.Schema{ 25 Type: schema.TypeInt, 26 Required: true, 27 ForceNew: true, 28 }, 29 30 "master_auth": &schema.Schema{ 31 Type: schema.TypeList, 32 Required: true, 33 ForceNew: true, 34 Elem: &schema.Resource{ 35 Schema: map[string]*schema.Schema{ 36 "client_certificate": &schema.Schema{ 37 Type: schema.TypeString, 38 Computed: true, 39 }, 40 "client_key": &schema.Schema{ 41 Type: schema.TypeString, 42 Computed: true, 43 }, 44 "cluster_ca_certificate": &schema.Schema{ 45 Type: schema.TypeString, 46 Computed: true, 47 }, 48 "password": &schema.Schema{ 49 Type: schema.TypeString, 50 Required: true, 51 ForceNew: true, 52 }, 53 "username": &schema.Schema{ 54 Type: schema.TypeString, 55 Required: true, 56 ForceNew: true, 57 }, 58 }, 59 }, 60 }, 61 62 "name": &schema.Schema{ 63 Type: schema.TypeString, 64 Required: true, 65 ForceNew: true, 66 ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) { 67 value := v.(string) 68 69 if len(value) > 40 { 70 errors = append(errors, fmt.Errorf( 71 "%q cannot be longer than 40 characters", k)) 72 } 73 if !regexp.MustCompile("^[a-z0-9-]+$").MatchString(value) { 74 errors = append(errors, fmt.Errorf( 75 "%q can only contain lowercase letters, numbers and hyphens", k)) 76 } 77 if !regexp.MustCompile("^[a-z]").MatchString(value) { 78 errors = append(errors, fmt.Errorf( 79 "%q must start with a letter", k)) 80 } 81 if !regexp.MustCompile("[a-z0-9]$").MatchString(value) { 82 errors = append(errors, fmt.Errorf( 83 "%q must end with a number or a letter", k)) 84 } 85 return 86 }, 87 }, 88 89 "zone": &schema.Schema{ 90 Type: schema.TypeString, 91 Required: true, 92 ForceNew: true, 93 }, 94 95 "cluster_ipv4_cidr": &schema.Schema{ 96 Type: schema.TypeString, 97 Optional: true, 98 Computed: true, 99 ForceNew: true, 100 ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) { 101 value := v.(string) 102 _, ipnet, err := net.ParseCIDR(value) 103 104 if err != nil || ipnet == nil || value != ipnet.String() { 105 errors = append(errors, fmt.Errorf( 106 "%q must contain a valid CIDR", k)) 107 } 108 return 109 }, 110 }, 111 112 "description": &schema.Schema{ 113 Type: schema.TypeString, 114 Optional: true, 115 ForceNew: true, 116 }, 117 118 "endpoint": &schema.Schema{ 119 Type: schema.TypeString, 120 Computed: true, 121 }, 122 123 "instance_group_urls": &schema.Schema{ 124 Type: schema.TypeList, 125 Computed: true, 126 Elem: &schema.Schema{Type: schema.TypeString}, 127 }, 128 129 "logging_service": &schema.Schema{ 130 Type: schema.TypeString, 131 Optional: true, 132 Computed: true, 133 ForceNew: true, 134 }, 135 136 "monitoring_service": &schema.Schema{ 137 Type: schema.TypeString, 138 Optional: true, 139 Computed: true, 140 ForceNew: true, 141 }, 142 143 "network": &schema.Schema{ 144 Type: schema.TypeString, 145 Optional: true, 146 Default: "default", 147 ForceNew: true, 148 }, 149 "subnetwork": &schema.Schema{ 150 Type: schema.TypeString, 151 Optional: true, 152 ForceNew: true, 153 }, 154 "addons_config": &schema.Schema{ 155 Type: schema.TypeList, 156 Optional: true, 157 ForceNew: true, 158 MaxItems: 1, 159 Elem: &schema.Resource{ 160 Schema: map[string]*schema.Schema{ 161 "http_load_balancing": &schema.Schema{ 162 Type: schema.TypeList, 163 Optional: true, 164 ForceNew: true, 165 MaxItems: 1, 166 Elem: &schema.Resource{ 167 Schema: map[string]*schema.Schema{ 168 "disabled": &schema.Schema{ 169 Type: schema.TypeBool, 170 Optional: true, 171 ForceNew: true, 172 }, 173 }, 174 }, 175 }, 176 "horizontal_pod_autoscaling": &schema.Schema{ 177 Type: schema.TypeList, 178 Optional: true, 179 ForceNew: true, 180 MaxItems: 1, 181 Elem: &schema.Resource{ 182 Schema: map[string]*schema.Schema{ 183 "disabled": &schema.Schema{ 184 Type: schema.TypeBool, 185 Optional: true, 186 ForceNew: true, 187 }, 188 }, 189 }, 190 }, 191 }, 192 }, 193 }, 194 "node_config": &schema.Schema{ 195 Type: schema.TypeList, 196 Optional: true, 197 Computed: true, 198 ForceNew: true, 199 Elem: &schema.Resource{ 200 Schema: map[string]*schema.Schema{ 201 "machine_type": &schema.Schema{ 202 Type: schema.TypeString, 203 Optional: true, 204 Computed: true, 205 ForceNew: true, 206 }, 207 208 "disk_size_gb": &schema.Schema{ 209 Type: schema.TypeInt, 210 Optional: true, 211 Computed: true, 212 ForceNew: true, 213 ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) { 214 value := v.(int) 215 216 if value < 10 { 217 errors = append(errors, fmt.Errorf( 218 "%q cannot be less than 10", k)) 219 } 220 return 221 }, 222 }, 223 224 "oauth_scopes": &schema.Schema{ 225 Type: schema.TypeList, 226 Optional: true, 227 Computed: true, 228 ForceNew: true, 229 Elem: &schema.Schema{ 230 Type: schema.TypeString, 231 StateFunc: func(v interface{}) string { 232 return canonicalizeServiceScope(v.(string)) 233 }, 234 }, 235 }, 236 }, 237 }, 238 }, 239 240 "node_version": &schema.Schema{ 241 Type: schema.TypeString, 242 Optional: true, 243 Computed: true, 244 }, 245 246 "project": &schema.Schema{ 247 Type: schema.TypeString, 248 Optional: true, 249 ForceNew: true, 250 }, 251 }, 252 } 253 } 254 255 func resourceContainerClusterCreate(d *schema.ResourceData, meta interface{}) error { 256 config := meta.(*Config) 257 258 project, err := getProject(d, config) 259 if err != nil { 260 return err 261 } 262 263 zoneName := d.Get("zone").(string) 264 clusterName := d.Get("name").(string) 265 266 masterAuths := d.Get("master_auth").([]interface{}) 267 if len(masterAuths) > 1 { 268 return fmt.Errorf("Cannot specify more than one master_auth.") 269 } 270 masterAuth := masterAuths[0].(map[string]interface{}) 271 272 cluster := &container.Cluster{ 273 MasterAuth: &container.MasterAuth{ 274 Password: masterAuth["password"].(string), 275 Username: masterAuth["username"].(string), 276 }, 277 Name: clusterName, 278 InitialNodeCount: int64(d.Get("initial_node_count").(int)), 279 } 280 281 if v, ok := d.GetOk("cluster_ipv4_cidr"); ok { 282 cluster.ClusterIpv4Cidr = v.(string) 283 } 284 285 if v, ok := d.GetOk("description"); ok { 286 cluster.Description = v.(string) 287 } 288 289 if v, ok := d.GetOk("logging_service"); ok { 290 cluster.LoggingService = v.(string) 291 } 292 293 if v, ok := d.GetOk("monitoring_service"); ok { 294 cluster.MonitoringService = v.(string) 295 } 296 297 if _, ok := d.GetOk("network"); ok { 298 network, err := getNetworkName(d, "network") 299 if err != nil { 300 return err 301 } 302 cluster.Network = network 303 } 304 305 if v, ok := d.GetOk("subnetwork"); ok { 306 cluster.Subnetwork = v.(string) 307 } 308 309 if v, ok := d.GetOk("addons_config"); ok { 310 addonsConfig := v.([]interface{})[0].(map[string]interface{}) 311 cluster.AddonsConfig = &container.AddonsConfig{} 312 313 if v, ok := addonsConfig["http_load_balancing"]; ok { 314 addon := v.([]interface{})[0].(map[string]interface{}) 315 cluster.AddonsConfig.HttpLoadBalancing = &container.HttpLoadBalancing{ 316 Disabled: addon["disabled"].(bool), 317 } 318 } 319 320 if v, ok := addonsConfig["horizontal_pod_autoscaling"]; ok { 321 addon := v.([]interface{})[0].(map[string]interface{}) 322 cluster.AddonsConfig.HorizontalPodAutoscaling = &container.HorizontalPodAutoscaling{ 323 Disabled: addon["disabled"].(bool), 324 } 325 } 326 } 327 if v, ok := d.GetOk("node_config"); ok { 328 nodeConfigs := v.([]interface{}) 329 if len(nodeConfigs) > 1 { 330 return fmt.Errorf("Cannot specify more than one node_config.") 331 } 332 nodeConfig := nodeConfigs[0].(map[string]interface{}) 333 334 cluster.NodeConfig = &container.NodeConfig{} 335 336 if v, ok = nodeConfig["machine_type"]; ok { 337 cluster.NodeConfig.MachineType = v.(string) 338 } 339 340 if v, ok = nodeConfig["disk_size_gb"]; ok { 341 cluster.NodeConfig.DiskSizeGb = int64(v.(int)) 342 } 343 344 if v, ok := nodeConfig["oauth_scopes"]; ok { 345 scopesList := v.([]interface{}) 346 scopes := []string{} 347 for _, v := range scopesList { 348 scopes = append(scopes, canonicalizeServiceScope(v.(string))) 349 } 350 351 cluster.NodeConfig.OauthScopes = scopes 352 } 353 } 354 355 req := &container.CreateClusterRequest{ 356 Cluster: cluster, 357 } 358 359 op, err := config.clientContainer.Projects.Zones.Clusters.Create( 360 project, zoneName, req).Do() 361 if err != nil { 362 return err 363 } 364 365 // Wait until it's created 366 wait := resource.StateChangeConf{ 367 Pending: []string{"PENDING", "RUNNING"}, 368 Target: []string{"DONE"}, 369 Timeout: 30 * time.Minute, 370 MinTimeout: 3 * time.Second, 371 Refresh: func() (interface{}, string, error) { 372 resp, err := config.clientContainer.Projects.Zones.Operations.Get( 373 project, zoneName, op.Name).Do() 374 log.Printf("[DEBUG] Progress of creating GKE cluster %s: %s", 375 clusterName, resp.Status) 376 return resp, resp.Status, err 377 }, 378 } 379 380 _, err = wait.WaitForState() 381 if err != nil { 382 return err 383 } 384 385 log.Printf("[INFO] GKE cluster %s has been created", clusterName) 386 387 d.SetId(clusterName) 388 389 return resourceContainerClusterRead(d, meta) 390 } 391 392 func resourceContainerClusterRead(d *schema.ResourceData, meta interface{}) error { 393 config := meta.(*Config) 394 395 project, err := getProject(d, config) 396 if err != nil { 397 return err 398 } 399 400 zoneName := d.Get("zone").(string) 401 402 cluster, err := config.clientContainer.Projects.Zones.Clusters.Get( 403 project, zoneName, d.Get("name").(string)).Do() 404 if err != nil { 405 if gerr, ok := err.(*googleapi.Error); ok && gerr.Code == 404 { 406 log.Printf("[WARN] Removing Container Cluster %q because it's gone", d.Get("name").(string)) 407 // The resource doesn't exist anymore 408 d.SetId("") 409 410 return nil 411 } 412 413 return err 414 } 415 416 d.Set("name", cluster.Name) 417 d.Set("zone", cluster.Zone) 418 d.Set("endpoint", cluster.Endpoint) 419 420 masterAuth := []map[string]interface{}{ 421 map[string]interface{}{ 422 "username": cluster.MasterAuth.Username, 423 "password": cluster.MasterAuth.Password, 424 "client_certificate": cluster.MasterAuth.ClientCertificate, 425 "client_key": cluster.MasterAuth.ClientKey, 426 "cluster_ca_certificate": cluster.MasterAuth.ClusterCaCertificate, 427 }, 428 } 429 d.Set("master_auth", masterAuth) 430 431 d.Set("initial_node_count", cluster.InitialNodeCount) 432 d.Set("node_version", cluster.CurrentNodeVersion) 433 d.Set("cluster_ipv4_cidr", cluster.ClusterIpv4Cidr) 434 d.Set("description", cluster.Description) 435 d.Set("logging_service", cluster.LoggingService) 436 d.Set("monitoring_service", cluster.MonitoringService) 437 d.Set("network", d.Get("network").(string)) 438 d.Set("subnetwork", cluster.Subnetwork) 439 d.Set("node_config", flattenClusterNodeConfig(cluster.NodeConfig)) 440 d.Set("instance_group_urls", cluster.InstanceGroupUrls) 441 442 return nil 443 } 444 445 func resourceContainerClusterUpdate(d *schema.ResourceData, meta interface{}) error { 446 config := meta.(*Config) 447 448 project, err := getProject(d, config) 449 if err != nil { 450 return err 451 } 452 453 zoneName := d.Get("zone").(string) 454 clusterName := d.Get("name").(string) 455 desiredNodeVersion := d.Get("node_version").(string) 456 457 req := &container.UpdateClusterRequest{ 458 Update: &container.ClusterUpdate{ 459 DesiredNodeVersion: desiredNodeVersion, 460 }, 461 } 462 op, err := config.clientContainer.Projects.Zones.Clusters.Update( 463 project, zoneName, clusterName, req).Do() 464 if err != nil { 465 return err 466 } 467 468 // Wait until it's updated 469 wait := resource.StateChangeConf{ 470 Pending: []string{"PENDING", "RUNNING"}, 471 Target: []string{"DONE"}, 472 Timeout: 10 * time.Minute, 473 MinTimeout: 2 * time.Second, 474 Refresh: func() (interface{}, string, error) { 475 log.Printf("[DEBUG] Checking if GKE cluster %s is updated", clusterName) 476 resp, err := config.clientContainer.Projects.Zones.Operations.Get( 477 project, zoneName, op.Name).Do() 478 log.Printf("[DEBUG] Progress of updating GKE cluster %s: %s", 479 clusterName, resp.Status) 480 return resp, resp.Status, err 481 }, 482 } 483 484 _, err = wait.WaitForState() 485 if err != nil { 486 return err 487 } 488 489 log.Printf("[INFO] GKE cluster %s has been updated to %s", d.Id(), 490 desiredNodeVersion) 491 492 return resourceContainerClusterRead(d, meta) 493 } 494 495 func resourceContainerClusterDelete(d *schema.ResourceData, meta interface{}) error { 496 config := meta.(*Config) 497 498 project, err := getProject(d, config) 499 if err != nil { 500 return err 501 } 502 503 zoneName := d.Get("zone").(string) 504 clusterName := d.Get("name").(string) 505 506 log.Printf("[DEBUG] Deleting GKE cluster %s", d.Get("name").(string)) 507 op, err := config.clientContainer.Projects.Zones.Clusters.Delete( 508 project, zoneName, clusterName).Do() 509 if err != nil { 510 return err 511 } 512 513 // Wait until it's deleted 514 wait := resource.StateChangeConf{ 515 Pending: []string{"PENDING", "RUNNING"}, 516 Target: []string{"DONE"}, 517 Timeout: 10 * time.Minute, 518 MinTimeout: 3 * time.Second, 519 Refresh: func() (interface{}, string, error) { 520 log.Printf("[DEBUG] Checking if GKE cluster %s is deleted", clusterName) 521 resp, err := config.clientContainer.Projects.Zones.Operations.Get( 522 project, zoneName, op.Name).Do() 523 log.Printf("[DEBUG] Progress of deleting GKE cluster %s: %s", 524 clusterName, resp.Status) 525 return resp, resp.Status, err 526 }, 527 } 528 529 _, err = wait.WaitForState() 530 if err != nil { 531 return err 532 } 533 534 log.Printf("[INFO] GKE cluster %s has been deleted", d.Id()) 535 536 d.SetId("") 537 538 return nil 539 } 540 541 func flattenClusterNodeConfig(c *container.NodeConfig) []map[string]interface{} { 542 config := []map[string]interface{}{ 543 map[string]interface{}{ 544 "machine_type": c.MachineType, 545 "disk_size_gb": c.DiskSizeGb, 546 }, 547 } 548 549 if len(c.OauthScopes) > 0 { 550 config[0]["oauth_scopes"] = c.OauthScopes 551 } 552 553 return config 554 }