github.com/ndarilek/terraform@v0.3.8-0.20150320140257-d3135c1b2bac/builtin/providers/aws/resource_aws_internet_gateway.go (about) 1 package aws 2 3 import ( 4 "fmt" 5 "log" 6 "time" 7 8 "github.com/hashicorp/aws-sdk-go/aws" 9 "github.com/hashicorp/aws-sdk-go/gen/ec2" 10 "github.com/hashicorp/terraform/helper/resource" 11 "github.com/hashicorp/terraform/helper/schema" 12 ) 13 14 func resourceAwsInternetGateway() *schema.Resource { 15 return &schema.Resource{ 16 Create: resourceAwsInternetGatewayCreate, 17 Read: resourceAwsInternetGatewayRead, 18 Update: resourceAwsInternetGatewayUpdate, 19 Delete: resourceAwsInternetGatewayDelete, 20 21 Schema: map[string]*schema.Schema{ 22 "vpc_id": &schema.Schema{ 23 Type: schema.TypeString, 24 Optional: true, 25 }, 26 "tags": tagsSchema(), 27 }, 28 } 29 } 30 31 func resourceAwsInternetGatewayCreate(d *schema.ResourceData, meta interface{}) error { 32 ec2conn := meta.(*AWSClient).ec2conn 33 34 // Create the gateway 35 log.Printf("[DEBUG] Creating internet gateway") 36 resp, err := ec2conn.CreateInternetGateway(nil) 37 if err != nil { 38 return fmt.Errorf("Error creating internet gateway: %s", err) 39 } 40 41 // Get the ID and store it 42 ig := resp.InternetGateway 43 d.SetId(*ig.InternetGatewayID) 44 log.Printf("[INFO] InternetGateway ID: %s", d.Id()) 45 46 err = setTags(ec2conn, d) 47 if err != nil { 48 return err 49 } 50 51 // Attach the new gateway to the correct vpc 52 return resourceAwsInternetGatewayAttach(d, meta) 53 } 54 55 func resourceAwsInternetGatewayRead(d *schema.ResourceData, meta interface{}) error { 56 ec2conn := meta.(*AWSClient).ec2conn 57 58 igRaw, _, err := IGStateRefreshFunc(ec2conn, d.Id())() 59 if err != nil { 60 return err 61 } 62 if igRaw == nil { 63 // Seems we have lost our internet gateway 64 d.SetId("") 65 return nil 66 } 67 68 ig := igRaw.(*ec2.InternetGateway) 69 if len(ig.Attachments) == 0 { 70 // Gateway exists but not attached to the VPC 71 d.Set("vpc_id", "") 72 } else { 73 d.Set("vpc_id", ig.Attachments[0].VPCID) 74 } 75 76 d.Set("tags", tagsToMap(ig.Tags)) 77 78 return nil 79 } 80 81 func resourceAwsInternetGatewayUpdate(d *schema.ResourceData, meta interface{}) error { 82 if d.HasChange("vpc_id") { 83 // If we're already attached, detach it first 84 if err := resourceAwsInternetGatewayDetach(d, meta); err != nil { 85 return err 86 } 87 88 // Attach the gateway to the new vpc 89 if err := resourceAwsInternetGatewayAttach(d, meta); err != nil { 90 return err 91 } 92 } 93 94 ec2conn := meta.(*AWSClient).ec2conn 95 96 if err := setTags(ec2conn, d); err != nil { 97 return err 98 } 99 100 d.SetPartial("tags") 101 102 return nil 103 } 104 105 func resourceAwsInternetGatewayDelete(d *schema.ResourceData, meta interface{}) error { 106 ec2conn := meta.(*AWSClient).ec2conn 107 108 // Detach if it is attached 109 if err := resourceAwsInternetGatewayDetach(d, meta); err != nil { 110 return err 111 } 112 113 log.Printf("[INFO] Deleting Internet Gateway: %s", d.Id()) 114 115 return resource.Retry(5*time.Minute, func() error { 116 err := ec2conn.DeleteInternetGateway(&ec2.DeleteInternetGatewayRequest{ 117 InternetGatewayID: aws.String(d.Id()), 118 }) 119 if err == nil { 120 return nil 121 } 122 123 ec2err, ok := err.(aws.APIError) 124 if !ok { 125 return err 126 } 127 128 switch ec2err.Code { 129 case "InvalidInternetGatewayID.NotFound": 130 return nil 131 case "DependencyViolation": 132 return err // retry 133 } 134 135 return resource.RetryError{Err: err} 136 }) 137 } 138 139 func resourceAwsInternetGatewayAttach(d *schema.ResourceData, meta interface{}) error { 140 ec2conn := meta.(*AWSClient).ec2conn 141 142 if d.Get("vpc_id").(string) == "" { 143 log.Printf( 144 "[DEBUG] Not attaching Internet Gateway '%s' as no VPC ID is set", 145 d.Id()) 146 return nil 147 } 148 149 log.Printf( 150 "[INFO] Attaching Internet Gateway '%s' to VPC '%s'", 151 d.Id(), 152 d.Get("vpc_id").(string)) 153 154 err := ec2conn.AttachInternetGateway(&ec2.AttachInternetGatewayRequest{ 155 InternetGatewayID: aws.String(d.Id()), 156 VPCID: aws.String(d.Get("vpc_id").(string)), 157 }) 158 if err != nil { 159 return err 160 } 161 162 // A note on the states below: the AWS docs (as of July, 2014) say 163 // that the states would be: attached, attaching, detached, detaching, 164 // but when running, I noticed that the state is usually "available" when 165 // it is attached. 166 167 // Wait for it to be fully attached before continuing 168 log.Printf("[DEBUG] Waiting for internet gateway (%s) to attach", d.Id()) 169 stateConf := &resource.StateChangeConf{ 170 Pending: []string{"detached", "attaching"}, 171 Target: "available", 172 Refresh: IGAttachStateRefreshFunc(ec2conn, d.Id(), "available"), 173 Timeout: 1 * time.Minute, 174 } 175 if _, err := stateConf.WaitForState(); err != nil { 176 return fmt.Errorf( 177 "Error waiting for internet gateway (%s) to attach: %s", 178 d.Id(), err) 179 } 180 181 return nil 182 } 183 184 func resourceAwsInternetGatewayDetach(d *schema.ResourceData, meta interface{}) error { 185 ec2conn := meta.(*AWSClient).ec2conn 186 187 // Get the old VPC ID to detach from 188 vpcID, _ := d.GetChange("vpc_id") 189 190 if vpcID.(string) == "" { 191 log.Printf( 192 "[DEBUG] Not detaching Internet Gateway '%s' as no VPC ID is set", 193 d.Id()) 194 return nil 195 } 196 197 log.Printf( 198 "[INFO] Detaching Internet Gateway '%s' from VPC '%s'", 199 d.Id(), 200 vpcID.(string)) 201 202 wait := true 203 err := ec2conn.DetachInternetGateway(&ec2.DetachInternetGatewayRequest{ 204 InternetGatewayID: aws.String(d.Id()), 205 VPCID: aws.String(vpcID.(string)), 206 }) 207 if err != nil { 208 ec2err, ok := err.(aws.APIError) 209 if ok { 210 if ec2err.Code == "InvalidInternetGatewayID.NotFound" { 211 err = nil 212 wait = false 213 } else if ec2err.Code == "Gateway.NotAttached" { 214 err = nil 215 wait = false 216 } 217 } 218 219 if err != nil { 220 return err 221 } 222 } 223 224 if !wait { 225 return nil 226 } 227 228 // Wait for it to be fully detached before continuing 229 log.Printf("[DEBUG] Waiting for internet gateway (%s) to detach", d.Id()) 230 stateConf := &resource.StateChangeConf{ 231 Pending: []string{"attached", "detaching", "available"}, 232 Target: "detached", 233 Refresh: IGAttachStateRefreshFunc(ec2conn, d.Id(), "detached"), 234 Timeout: 1 * time.Minute, 235 } 236 if _, err := stateConf.WaitForState(); err != nil { 237 return fmt.Errorf( 238 "Error waiting for internet gateway (%s) to detach: %s", 239 d.Id(), err) 240 } 241 242 return nil 243 } 244 245 // IGStateRefreshFunc returns a resource.StateRefreshFunc that is used to watch 246 // an internet gateway. 247 func IGStateRefreshFunc(ec2conn *ec2.EC2, id string) resource.StateRefreshFunc { 248 return func() (interface{}, string, error) { 249 resp, err := ec2conn.DescribeInternetGateways(&ec2.DescribeInternetGatewaysRequest{ 250 InternetGatewayIDs: []string{id}, 251 }) 252 if err != nil { 253 ec2err, ok := err.(aws.APIError) 254 if ok && ec2err.Code == "InvalidInternetGatewayID.NotFound" { 255 resp = nil 256 } else { 257 log.Printf("[ERROR] Error on IGStateRefresh: %s", err) 258 return nil, "", err 259 } 260 } 261 262 if resp == nil { 263 // Sometimes AWS just has consistency issues and doesn't see 264 // our instance yet. Return an empty state. 265 return nil, "", nil 266 } 267 268 ig := &resp.InternetGateways[0] 269 return ig, "available", nil 270 } 271 } 272 273 // IGAttachStateRefreshFunc returns a resource.StateRefreshFunc that is used 274 // watch the state of an internet gateway's attachment. 275 func IGAttachStateRefreshFunc(ec2conn *ec2.EC2, id string, expected string) resource.StateRefreshFunc { 276 var start time.Time 277 return func() (interface{}, string, error) { 278 if start.IsZero() { 279 start = time.Now() 280 } 281 282 resp, err := ec2conn.DescribeInternetGateways(&ec2.DescribeInternetGatewaysRequest{ 283 InternetGatewayIDs: []string{id}, 284 }) 285 if err != nil { 286 ec2err, ok := err.(aws.APIError) 287 if ok && ec2err.Code == "InvalidInternetGatewayID.NotFound" { 288 resp = nil 289 } else { 290 log.Printf("[ERROR] Error on IGStateRefresh: %s", err) 291 return nil, "", err 292 } 293 } 294 295 if resp == nil { 296 // Sometimes AWS just has consistency issues and doesn't see 297 // our instance yet. Return an empty state. 298 return nil, "", nil 299 } 300 301 ig := &resp.InternetGateways[0] 302 303 if time.Now().Sub(start) > 10*time.Second { 304 return ig, expected, nil 305 } 306 307 if len(ig.Attachments) == 0 { 308 // No attachments, we're detached 309 return ig, "detached", nil 310 } 311 312 return ig, *ig.Attachments[0].State, nil 313 } 314 }