github.com/nathanielks/terraform@v0.6.1-0.20170509030759-13e1a62319dc/builtin/providers/profitbricks/resource_profitbricks_firewall.go (about)

     1  package profitbricks
     2  
     3  import (
     4  	"fmt"
     5  	"github.com/hashicorp/terraform/helper/schema"
     6  	"github.com/profitbricks/profitbricks-sdk-go"
     7  )
     8  
     9  func resourceProfitBricksFirewall() *schema.Resource {
    10  	return &schema.Resource{
    11  		Create: resourceProfitBricksFirewallCreate,
    12  		Read:   resourceProfitBricksFirewallRead,
    13  		Update: resourceProfitBricksFirewallUpdate,
    14  		Delete: resourceProfitBricksFirewallDelete,
    15  		Schema: map[string]*schema.Schema{
    16  
    17  			"name": {
    18  				Type:     schema.TypeString,
    19  				Optional: true,
    20  			},
    21  
    22  			"protocol": {
    23  				Type:     schema.TypeString,
    24  				Required: true,
    25  			},
    26  			"source_mac": {
    27  				Type:     schema.TypeString,
    28  				Optional: true,
    29  			},
    30  			"source_ip": {
    31  				Type:     schema.TypeString,
    32  				Optional: true,
    33  			},
    34  			"target_ip": {
    35  				Type:     schema.TypeString,
    36  				Optional: true,
    37  			},
    38  			"port_range_start": {
    39  				Type:     schema.TypeInt,
    40  				Optional: true,
    41  				ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) {
    42  					if v.(int) < 1 && v.(int) > 65534 {
    43  						errors = append(errors, fmt.Errorf("Port start range must be between 1 and 65534"))
    44  					}
    45  					return
    46  				},
    47  			},
    48  
    49  			"port_range_end": {
    50  				Type:     schema.TypeInt,
    51  				Optional: true,
    52  				ValidateFunc: func(v interface{}, k string) (ws []string, errors []error) {
    53  					if v.(int) < 1 && v.(int) > 65534 {
    54  						errors = append(errors, fmt.Errorf("Port end range must be between 1 and 65534"))
    55  					}
    56  					return
    57  				},
    58  			},
    59  			"icmp_type": {
    60  				Type:     schema.TypeString,
    61  				Optional: true,
    62  			},
    63  			"icmp_code": {
    64  				Type:     schema.TypeString,
    65  				Optional: true,
    66  			},
    67  			"datacenter_id": {
    68  				Type:     schema.TypeString,
    69  				Required: true,
    70  			},
    71  			"server_id": {
    72  				Type:     schema.TypeString,
    73  				Required: true,
    74  			},
    75  			"nic_id": {
    76  				Type:     schema.TypeString,
    77  				Required: true,
    78  			},
    79  		},
    80  	}
    81  }
    82  
    83  func resourceProfitBricksFirewallCreate(d *schema.ResourceData, meta interface{}) error {
    84  	fw := profitbricks.FirewallRule{
    85  		Properties: profitbricks.FirewallruleProperties{
    86  			Protocol: d.Get("protocol").(string),
    87  		},
    88  	}
    89  
    90  	if _, ok := d.GetOk("name"); ok {
    91  		fw.Properties.Name = d.Get("name").(string)
    92  	}
    93  	if _, ok := d.GetOk("source_mac"); ok {
    94  		fw.Properties.SourceMac = d.Get("source_mac").(string)
    95  	}
    96  	if _, ok := d.GetOk("source_ip"); ok {
    97  		fw.Properties.SourceIp = d.Get("source_ip").(string)
    98  	}
    99  	if _, ok := d.GetOk("target_ip"); ok {
   100  		fw.Properties.TargetIp = d.Get("target_ip").(string)
   101  	}
   102  	if _, ok := d.GetOk("port_range_start"); ok {
   103  		fw.Properties.PortRangeStart = d.Get("port_range_start").(int)
   104  	}
   105  	if _, ok := d.GetOk("port_range_end"); ok {
   106  		fw.Properties.PortRangeEnd = d.Get("port_range_end").(int)
   107  	}
   108  	if _, ok := d.GetOk("icmp_type"); ok {
   109  		fw.Properties.IcmpType = d.Get("icmp_type").(string)
   110  	}
   111  	if _, ok := d.GetOk("icmp_code"); ok {
   112  		fw.Properties.IcmpCode = d.Get("icmp_code").(string)
   113  	}
   114  
   115  	fw = profitbricks.CreateFirewallRule(d.Get("datacenter_id").(string), d.Get("server_id").(string), d.Get("nic_id").(string), fw)
   116  
   117  	if fw.StatusCode > 299 {
   118  		return fmt.Errorf("An error occured while creating a firewall rule: %s", fw.Response)
   119  	}
   120  
   121  	err := waitTillProvisioned(meta, fw.Headers.Get("Location"))
   122  	if err != nil {
   123  		return err
   124  	}
   125  	d.SetId(fw.Id)
   126  
   127  	return resourceProfitBricksFirewallRead(d, meta)
   128  }
   129  
   130  func resourceProfitBricksFirewallRead(d *schema.ResourceData, meta interface{}) error {
   131  	fw := profitbricks.GetFirewallRule(d.Get("datacenter_id").(string), d.Get("server_id").(string), d.Get("nic_id").(string), d.Id())
   132  
   133  	if fw.StatusCode > 299 {
   134  		if fw.StatusCode == 404 {
   135  			d.SetId("")
   136  			return nil
   137  		}
   138  		return fmt.Errorf("An error occured while fetching a firewall rule  dcId: %s server_id: %s  nic_id: %s ID: %s %s", d.Get("datacenter_id").(string), d.Get("server_id").(string), d.Get("nic_id").(string), d.Id(), fw.Response)
   139  	}
   140  
   141  	d.Set("protocol", fw.Properties.Protocol)
   142  	d.Set("name", fw.Properties.Name)
   143  	d.Set("source_mac", fw.Properties.SourceMac)
   144  	d.Set("source_ip", fw.Properties.SourceIp)
   145  	d.Set("target_ip", fw.Properties.TargetIp)
   146  	d.Set("port_range_start", fw.Properties.PortRangeStart)
   147  	d.Set("port_range_end", fw.Properties.PortRangeEnd)
   148  	d.Set("icmp_type", fw.Properties.IcmpType)
   149  	d.Set("icmp_code", fw.Properties.IcmpCode)
   150  	d.Set("nic_id", d.Get("nic_id").(string))
   151  
   152  	return nil
   153  }
   154  
   155  func resourceProfitBricksFirewallUpdate(d *schema.ResourceData, meta interface{}) error {
   156  	properties := profitbricks.FirewallruleProperties{}
   157  
   158  	if d.HasChange("name") {
   159  		_, new := d.GetChange("name")
   160  
   161  		properties.Name = new.(string)
   162  	}
   163  	if d.HasChange("source_mac") {
   164  		_, new := d.GetChange("source_mac")
   165  
   166  		properties.SourceMac = new.(string)
   167  	}
   168  	if d.HasChange("source_ip") {
   169  		_, new := d.GetChange("source_ip")
   170  
   171  		properties.SourceIp = new.(string)
   172  	}
   173  	if d.HasChange("target_ip") {
   174  		_, new := d.GetChange("target_ip")
   175  
   176  		properties.TargetIp = new.(string)
   177  	}
   178  	if d.HasChange("port_range_start") {
   179  		_, new := d.GetChange("port_range_start")
   180  
   181  		properties.PortRangeStart = new.(int)
   182  	}
   183  	if d.HasChange("port_range_end") {
   184  		_, new := d.GetChange("port_range_end")
   185  
   186  		properties.PortRangeEnd = new.(int)
   187  	}
   188  	if d.HasChange("icmp_type") {
   189  		_, new := d.GetChange("icmp_type")
   190  
   191  		properties.IcmpType = new.(int)
   192  	}
   193  	if d.HasChange("icmp_code") {
   194  		_, new := d.GetChange("icmp_code")
   195  
   196  		properties.IcmpCode = new.(int)
   197  	}
   198  
   199  	resp := profitbricks.PatchFirewallRule(d.Get("datacenter_id").(string), d.Get("server_id").(string), d.Get("nic_id").(string), d.Id(), properties)
   200  
   201  	if resp.StatusCode > 299 {
   202  		return fmt.Errorf("An error occured while deleting a firewall rule ID %s %s", d.Id(), resp.Response)
   203  	}
   204  
   205  	err := waitTillProvisioned(meta, resp.Headers.Get("Location"))
   206  	if err != nil {
   207  		return err
   208  	}
   209  	return resourceProfitBricksFirewallRead(d, meta)
   210  }
   211  
   212  func resourceProfitBricksFirewallDelete(d *schema.ResourceData, meta interface{}) error {
   213  	resp := profitbricks.DeleteFirewallRule(d.Get("datacenter_id").(string), d.Get("server_id").(string), d.Get("nic_id").(string), d.Id())
   214  
   215  	if resp.StatusCode > 299 {
   216  		return fmt.Errorf("An error occured while deleting a firewall rule ID %s %s", d.Id(), string(resp.Body))
   217  	}
   218  
   219  	err := waitTillProvisioned(meta, resp.Headers.Get("Location"))
   220  	if err != nil {
   221  		return err
   222  	}
   223  	d.SetId("")
   224  
   225  	return nil
   226  }