github.com/aspring/terraform@v0.8.2-0.20161216122603-6a8619a5db2e/builtin/providers/google/resource_container_cluster.go (about)

     1  package google
     2  
     3  import (
     4  	"fmt"
     5  	"log"
     6  	"net"
     7  	"regexp"
     8  	"time"
     9  
    10  	"github.com/hashicorp/terraform/helper/resource"
    11  	"github.com/hashicorp/terraform/helper/schema"
    12  	"google.golang.org/api/container/v1"
    13  	"google.golang.org/api/googleapi"
    14  )
    15  
    16  func resourceContainerCluster() *schema.Resource {
    17  	return &schema.Resource{
    18  		Create: resourceContainerClusterCreate,
    19  		Read:   resourceContainerClusterRead,
    20  		Update: resourceContainerClusterUpdate,
    21  		Delete: resourceContainerClusterDelete,
    22  
    23  		Schema: map[string]*schema.Schema{
    24  			"initial_node_count": &schema.Schema{
    25  				Type:     schema.TypeInt,
    26  				Required: true,
    27  				ForceNew: true,
    28  			},
    29  
    30  			"master_auth": &schema.Schema{
    31  				Type:     schema.TypeList,
    32  				Required: true,
    33  				ForceNew: true,
    34  				Elem: &schema.Resource{
    35  					Schema: map[string]*schema.Schema{
    36  						"client_certificate": &schema.Schema{
    37  							Type:     schema.TypeString,
    38  							Computed: true,
    39  						},
    40  						"client_key": &schema.Schema{
    41  							Type:     schema.TypeString,
    42  							Computed: true,
    43  						},
    44  						"cluster_ca_certificate": &schema.Schema{
    45  							Type:     schema.TypeString,
    46  							Computed: true,
    47  						},
    48  						"password": &schema.Schema{
    49  							Type:     schema.TypeString,
    50  							Required: true,
    51  							ForceNew: true,
    52  						},
    53  						"username": &schema.Schema{
    54  							Type:     schema.TypeString,
    55  							Required: true,
    56  							ForceNew: true,
    57  						},
    58  					},
    59  				},
    60  			},
    61  
    62  			"name": &schema.Schema{
    63  				Type:     schema.TypeString,
    64  				Required: true,
    65  				ForceNew: true,
    66  				ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) {
    67  					value := v.(string)
    68  
    69  					if len(value) > 40 {
    70  						errors = append(errors, fmt.Errorf(
    71  							"%q cannot be longer than 40 characters", k))
    72  					}
    73  					if !regexp.MustCompile("^[a-z0-9-]+$").MatchString(value) {
    74  						errors = append(errors, fmt.Errorf(
    75  							"%q can only contain lowercase letters, numbers and hyphens", k))
    76  					}
    77  					if !regexp.MustCompile("^[a-z]").MatchString(value) {
    78  						errors = append(errors, fmt.Errorf(
    79  							"%q must start with a letter", k))
    80  					}
    81  					if !regexp.MustCompile("[a-z0-9]$").MatchString(value) {
    82  						errors = append(errors, fmt.Errorf(
    83  							"%q must end with a number or a letter", k))
    84  					}
    85  					return
    86  				},
    87  			},
    88  
    89  			"zone": &schema.Schema{
    90  				Type:     schema.TypeString,
    91  				Required: true,
    92  				ForceNew: true,
    93  			},
    94  
    95  			"cluster_ipv4_cidr": &schema.Schema{
    96  				Type:     schema.TypeString,
    97  				Optional: true,
    98  				Computed: true,
    99  				ForceNew: true,
   100  				ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) {
   101  					value := v.(string)
   102  					_, ipnet, err := net.ParseCIDR(value)
   103  
   104  					if err != nil || ipnet == nil || value != ipnet.String() {
   105  						errors = append(errors, fmt.Errorf(
   106  							"%q must contain a valid CIDR", k))
   107  					}
   108  					return
   109  				},
   110  			},
   111  
   112  			"description": &schema.Schema{
   113  				Type:     schema.TypeString,
   114  				Optional: true,
   115  				ForceNew: true,
   116  			},
   117  
   118  			"endpoint": &schema.Schema{
   119  				Type:     schema.TypeString,
   120  				Computed: true,
   121  			},
   122  
   123  			"instance_group_urls": &schema.Schema{
   124  				Type:     schema.TypeList,
   125  				Computed: true,
   126  				Elem:     &schema.Schema{Type: schema.TypeString},
   127  			},
   128  
   129  			"logging_service": &schema.Schema{
   130  				Type:     schema.TypeString,
   131  				Optional: true,
   132  				Computed: true,
   133  				ForceNew: true,
   134  			},
   135  
   136  			"monitoring_service": &schema.Schema{
   137  				Type:     schema.TypeString,
   138  				Optional: true,
   139  				Computed: true,
   140  				ForceNew: true,
   141  			},
   142  
   143  			"network": &schema.Schema{
   144  				Type:     schema.TypeString,
   145  				Optional: true,
   146  				Default:  "default",
   147  				ForceNew: true,
   148  			},
   149  			"subnetwork": &schema.Schema{
   150  				Type:     schema.TypeString,
   151  				Optional: true,
   152  				ForceNew: true,
   153  			},
   154  			"addons_config": &schema.Schema{
   155  				Type:     schema.TypeList,
   156  				Optional: true,
   157  				ForceNew: true,
   158  				MaxItems: 1,
   159  				Elem: &schema.Resource{
   160  					Schema: map[string]*schema.Schema{
   161  						"http_load_balancing": &schema.Schema{
   162  							Type:     schema.TypeList,
   163  							Optional: true,
   164  							ForceNew: true,
   165  							MaxItems: 1,
   166  							Elem: &schema.Resource{
   167  								Schema: map[string]*schema.Schema{
   168  									"disabled": &schema.Schema{
   169  										Type:     schema.TypeBool,
   170  										Optional: true,
   171  										ForceNew: true,
   172  									},
   173  								},
   174  							},
   175  						},
   176  						"horizontal_pod_autoscaling": &schema.Schema{
   177  							Type:     schema.TypeList,
   178  							Optional: true,
   179  							ForceNew: true,
   180  							MaxItems: 1,
   181  							Elem: &schema.Resource{
   182  								Schema: map[string]*schema.Schema{
   183  									"disabled": &schema.Schema{
   184  										Type:     schema.TypeBool,
   185  										Optional: true,
   186  										ForceNew: true,
   187  									},
   188  								},
   189  							},
   190  						},
   191  					},
   192  				},
   193  			},
   194  			"node_config": &schema.Schema{
   195  				Type:     schema.TypeList,
   196  				Optional: true,
   197  				Computed: true,
   198  				ForceNew: true,
   199  				Elem: &schema.Resource{
   200  					Schema: map[string]*schema.Schema{
   201  						"machine_type": &schema.Schema{
   202  							Type:     schema.TypeString,
   203  							Optional: true,
   204  							Computed: true,
   205  							ForceNew: true,
   206  						},
   207  
   208  						"disk_size_gb": &schema.Schema{
   209  							Type:     schema.TypeInt,
   210  							Optional: true,
   211  							Computed: true,
   212  							ForceNew: true,
   213  							ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) {
   214  								value := v.(int)
   215  
   216  								if value < 10 {
   217  									errors = append(errors, fmt.Errorf(
   218  										"%q cannot be less than 10", k))
   219  								}
   220  								return
   221  							},
   222  						},
   223  
   224  						"oauth_scopes": &schema.Schema{
   225  							Type:     schema.TypeList,
   226  							Optional: true,
   227  							Computed: true,
   228  							ForceNew: true,
   229  							Elem: &schema.Schema{
   230  								Type: schema.TypeString,
   231  								StateFunc: func(v interface{}) string {
   232  									return canonicalizeServiceScope(v.(string))
   233  								},
   234  							},
   235  						},
   236  					},
   237  				},
   238  			},
   239  
   240  			"node_version": &schema.Schema{
   241  				Type:     schema.TypeString,
   242  				Optional: true,
   243  				Computed: true,
   244  			},
   245  
   246  			"project": &schema.Schema{
   247  				Type:     schema.TypeString,
   248  				Optional: true,
   249  				ForceNew: true,
   250  			},
   251  		},
   252  	}
   253  }
   254  
   255  func resourceContainerClusterCreate(d *schema.ResourceData, meta interface{}) error {
   256  	config := meta.(*Config)
   257  
   258  	project, err := getProject(d, config)
   259  	if err != nil {
   260  		return err
   261  	}
   262  
   263  	zoneName := d.Get("zone").(string)
   264  	clusterName := d.Get("name").(string)
   265  
   266  	masterAuths := d.Get("master_auth").([]interface{})
   267  	if len(masterAuths) > 1 {
   268  		return fmt.Errorf("Cannot specify more than one master_auth.")
   269  	}
   270  	masterAuth := masterAuths[0].(map[string]interface{})
   271  
   272  	cluster := &container.Cluster{
   273  		MasterAuth: &container.MasterAuth{
   274  			Password: masterAuth["password"].(string),
   275  			Username: masterAuth["username"].(string),
   276  		},
   277  		Name:             clusterName,
   278  		InitialNodeCount: int64(d.Get("initial_node_count").(int)),
   279  	}
   280  
   281  	if v, ok := d.GetOk("cluster_ipv4_cidr"); ok {
   282  		cluster.ClusterIpv4Cidr = v.(string)
   283  	}
   284  
   285  	if v, ok := d.GetOk("description"); ok {
   286  		cluster.Description = v.(string)
   287  	}
   288  
   289  	if v, ok := d.GetOk("logging_service"); ok {
   290  		cluster.LoggingService = v.(string)
   291  	}
   292  
   293  	if v, ok := d.GetOk("monitoring_service"); ok {
   294  		cluster.MonitoringService = v.(string)
   295  	}
   296  
   297  	if _, ok := d.GetOk("network"); ok {
   298  		network, err := getNetworkName(d, "network")
   299  		if err != nil {
   300  			return err
   301  		}
   302  		cluster.Network = network
   303  	}
   304  
   305  	if v, ok := d.GetOk("subnetwork"); ok {
   306  		cluster.Subnetwork = v.(string)
   307  	}
   308  
   309  	if v, ok := d.GetOk("addons_config"); ok {
   310  		addonsConfig := v.([]interface{})[0].(map[string]interface{})
   311  		cluster.AddonsConfig = &container.AddonsConfig{}
   312  
   313  		if v, ok := addonsConfig["http_load_balancing"]; ok {
   314  			addon := v.([]interface{})[0].(map[string]interface{})
   315  			cluster.AddonsConfig.HttpLoadBalancing = &container.HttpLoadBalancing{
   316  				Disabled: addon["disabled"].(bool),
   317  			}
   318  		}
   319  
   320  		if v, ok := addonsConfig["horizontal_pod_autoscaling"]; ok {
   321  			addon := v.([]interface{})[0].(map[string]interface{})
   322  			cluster.AddonsConfig.HorizontalPodAutoscaling = &container.HorizontalPodAutoscaling{
   323  				Disabled: addon["disabled"].(bool),
   324  			}
   325  		}
   326  	}
   327  	if v, ok := d.GetOk("node_config"); ok {
   328  		nodeConfigs := v.([]interface{})
   329  		if len(nodeConfigs) > 1 {
   330  			return fmt.Errorf("Cannot specify more than one node_config.")
   331  		}
   332  		nodeConfig := nodeConfigs[0].(map[string]interface{})
   333  
   334  		cluster.NodeConfig = &container.NodeConfig{}
   335  
   336  		if v, ok = nodeConfig["machine_type"]; ok {
   337  			cluster.NodeConfig.MachineType = v.(string)
   338  		}
   339  
   340  		if v, ok = nodeConfig["disk_size_gb"]; ok {
   341  			cluster.NodeConfig.DiskSizeGb = int64(v.(int))
   342  		}
   343  
   344  		if v, ok := nodeConfig["oauth_scopes"]; ok {
   345  			scopesList := v.([]interface{})
   346  			scopes := []string{}
   347  			for _, v := range scopesList {
   348  				scopes = append(scopes, canonicalizeServiceScope(v.(string)))
   349  			}
   350  
   351  			cluster.NodeConfig.OauthScopes = scopes
   352  		}
   353  	}
   354  
   355  	req := &container.CreateClusterRequest{
   356  		Cluster: cluster,
   357  	}
   358  
   359  	op, err := config.clientContainer.Projects.Zones.Clusters.Create(
   360  		project, zoneName, req).Do()
   361  	if err != nil {
   362  		return err
   363  	}
   364  
   365  	// Wait until it's created
   366  	wait := resource.StateChangeConf{
   367  		Pending:    []string{"PENDING", "RUNNING"},
   368  		Target:     []string{"DONE"},
   369  		Timeout:    30 * time.Minute,
   370  		MinTimeout: 3 * time.Second,
   371  		Refresh: func() (interface{}, string, error) {
   372  			resp, err := config.clientContainer.Projects.Zones.Operations.Get(
   373  				project, zoneName, op.Name).Do()
   374  			log.Printf("[DEBUG] Progress of creating GKE cluster %s: %s",
   375  				clusterName, resp.Status)
   376  			return resp, resp.Status, err
   377  		},
   378  	}
   379  
   380  	_, err = wait.WaitForState()
   381  	if err != nil {
   382  		return err
   383  	}
   384  
   385  	log.Printf("[INFO] GKE cluster %s has been created", clusterName)
   386  
   387  	d.SetId(clusterName)
   388  
   389  	return resourceContainerClusterRead(d, meta)
   390  }
   391  
   392  func resourceContainerClusterRead(d *schema.ResourceData, meta interface{}) error {
   393  	config := meta.(*Config)
   394  
   395  	project, err := getProject(d, config)
   396  	if err != nil {
   397  		return err
   398  	}
   399  
   400  	zoneName := d.Get("zone").(string)
   401  
   402  	cluster, err := config.clientContainer.Projects.Zones.Clusters.Get(
   403  		project, zoneName, d.Get("name").(string)).Do()
   404  	if err != nil {
   405  		if gerr, ok := err.(*googleapi.Error); ok && gerr.Code == 404 {
   406  			log.Printf("[WARN] Removing Container Cluster %q because it's gone", d.Get("name").(string))
   407  			// The resource doesn't exist anymore
   408  			d.SetId("")
   409  
   410  			return nil
   411  		}
   412  
   413  		return err
   414  	}
   415  
   416  	d.Set("name", cluster.Name)
   417  	d.Set("zone", cluster.Zone)
   418  	d.Set("endpoint", cluster.Endpoint)
   419  
   420  	masterAuth := []map[string]interface{}{
   421  		map[string]interface{}{
   422  			"username":               cluster.MasterAuth.Username,
   423  			"password":               cluster.MasterAuth.Password,
   424  			"client_certificate":     cluster.MasterAuth.ClientCertificate,
   425  			"client_key":             cluster.MasterAuth.ClientKey,
   426  			"cluster_ca_certificate": cluster.MasterAuth.ClusterCaCertificate,
   427  		},
   428  	}
   429  	d.Set("master_auth", masterAuth)
   430  
   431  	d.Set("initial_node_count", cluster.InitialNodeCount)
   432  	d.Set("node_version", cluster.CurrentNodeVersion)
   433  	d.Set("cluster_ipv4_cidr", cluster.ClusterIpv4Cidr)
   434  	d.Set("description", cluster.Description)
   435  	d.Set("logging_service", cluster.LoggingService)
   436  	d.Set("monitoring_service", cluster.MonitoringService)
   437  	d.Set("network", d.Get("network").(string))
   438  	d.Set("subnetwork", cluster.Subnetwork)
   439  	d.Set("node_config", flattenClusterNodeConfig(cluster.NodeConfig))
   440  	d.Set("instance_group_urls", cluster.InstanceGroupUrls)
   441  
   442  	return nil
   443  }
   444  
   445  func resourceContainerClusterUpdate(d *schema.ResourceData, meta interface{}) error {
   446  	config := meta.(*Config)
   447  
   448  	project, err := getProject(d, config)
   449  	if err != nil {
   450  		return err
   451  	}
   452  
   453  	zoneName := d.Get("zone").(string)
   454  	clusterName := d.Get("name").(string)
   455  	desiredNodeVersion := d.Get("node_version").(string)
   456  
   457  	req := &container.UpdateClusterRequest{
   458  		Update: &container.ClusterUpdate{
   459  			DesiredNodeVersion: desiredNodeVersion,
   460  		},
   461  	}
   462  	op, err := config.clientContainer.Projects.Zones.Clusters.Update(
   463  		project, zoneName, clusterName, req).Do()
   464  	if err != nil {
   465  		return err
   466  	}
   467  
   468  	// Wait until it's updated
   469  	wait := resource.StateChangeConf{
   470  		Pending:    []string{"PENDING", "RUNNING"},
   471  		Target:     []string{"DONE"},
   472  		Timeout:    10 * time.Minute,
   473  		MinTimeout: 2 * time.Second,
   474  		Refresh: func() (interface{}, string, error) {
   475  			log.Printf("[DEBUG] Checking if GKE cluster %s is updated", clusterName)
   476  			resp, err := config.clientContainer.Projects.Zones.Operations.Get(
   477  				project, zoneName, op.Name).Do()
   478  			log.Printf("[DEBUG] Progress of updating GKE cluster %s: %s",
   479  				clusterName, resp.Status)
   480  			return resp, resp.Status, err
   481  		},
   482  	}
   483  
   484  	_, err = wait.WaitForState()
   485  	if err != nil {
   486  		return err
   487  	}
   488  
   489  	log.Printf("[INFO] GKE cluster %s has been updated to %s", d.Id(),
   490  		desiredNodeVersion)
   491  
   492  	return resourceContainerClusterRead(d, meta)
   493  }
   494  
   495  func resourceContainerClusterDelete(d *schema.ResourceData, meta interface{}) error {
   496  	config := meta.(*Config)
   497  
   498  	project, err := getProject(d, config)
   499  	if err != nil {
   500  		return err
   501  	}
   502  
   503  	zoneName := d.Get("zone").(string)
   504  	clusterName := d.Get("name").(string)
   505  
   506  	log.Printf("[DEBUG] Deleting GKE cluster %s", d.Get("name").(string))
   507  	op, err := config.clientContainer.Projects.Zones.Clusters.Delete(
   508  		project, zoneName, clusterName).Do()
   509  	if err != nil {
   510  		return err
   511  	}
   512  
   513  	// Wait until it's deleted
   514  	wait := resource.StateChangeConf{
   515  		Pending:    []string{"PENDING", "RUNNING"},
   516  		Target:     []string{"DONE"},
   517  		Timeout:    10 * time.Minute,
   518  		MinTimeout: 3 * time.Second,
   519  		Refresh: func() (interface{}, string, error) {
   520  			log.Printf("[DEBUG] Checking if GKE cluster %s is deleted", clusterName)
   521  			resp, err := config.clientContainer.Projects.Zones.Operations.Get(
   522  				project, zoneName, op.Name).Do()
   523  			log.Printf("[DEBUG] Progress of deleting GKE cluster %s: %s",
   524  				clusterName, resp.Status)
   525  			return resp, resp.Status, err
   526  		},
   527  	}
   528  
   529  	_, err = wait.WaitForState()
   530  	if err != nil {
   531  		return err
   532  	}
   533  
   534  	log.Printf("[INFO] GKE cluster %s has been deleted", d.Id())
   535  
   536  	d.SetId("")
   537  
   538  	return nil
   539  }
   540  
   541  func flattenClusterNodeConfig(c *container.NodeConfig) []map[string]interface{} {
   542  	config := []map[string]interface{}{
   543  		map[string]interface{}{
   544  			"machine_type": c.MachineType,
   545  			"disk_size_gb": c.DiskSizeGb,
   546  		},
   547  	}
   548  
   549  	if len(c.OauthScopes) > 0 {
   550  		config[0]["oauth_scopes"] = c.OauthScopes
   551  	}
   552  
   553  	return config
   554  }