github.com/pbthorste/terraform@v0.8.6-0.20170127005045-deb56bd93da2/builtin/providers/google/provider.go (about) 1 package google 2 3 import ( 4 "encoding/json" 5 "fmt" 6 "strings" 7 8 "github.com/hashicorp/terraform/helper/pathorcontents" 9 "github.com/hashicorp/terraform/helper/schema" 10 "github.com/hashicorp/terraform/terraform" 11 "google.golang.org/api/compute/v1" 12 "google.golang.org/api/googleapi" 13 ) 14 15 // Provider returns a terraform.ResourceProvider. 16 func Provider() terraform.ResourceProvider { 17 return &schema.Provider{ 18 Schema: map[string]*schema.Schema{ 19 "account_file": &schema.Schema{ 20 Type: schema.TypeString, 21 Optional: true, 22 DefaultFunc: schema.EnvDefaultFunc("GOOGLE_ACCOUNT_FILE", nil), 23 ValidateFunc: validateAccountFile, 24 Deprecated: "Use the credentials field instead", 25 }, 26 27 "credentials": &schema.Schema{ 28 Type: schema.TypeString, 29 Optional: true, 30 DefaultFunc: schema.MultiEnvDefaultFunc([]string{ 31 "GOOGLE_CREDENTIALS", 32 "GOOGLE_CLOUD_KEYFILE_JSON", 33 "GCLOUD_KEYFILE_JSON", 34 }, nil), 35 ValidateFunc: validateCredentials, 36 }, 37 38 "project": &schema.Schema{ 39 Type: schema.TypeString, 40 Optional: true, 41 DefaultFunc: schema.MultiEnvDefaultFunc([]string{ 42 "GOOGLE_PROJECT", 43 "GCLOUD_PROJECT", 44 "CLOUDSDK_CORE_PROJECT", 45 }, nil), 46 }, 47 48 "region": &schema.Schema{ 49 Type: schema.TypeString, 50 Required: true, 51 DefaultFunc: schema.MultiEnvDefaultFunc([]string{ 52 "GOOGLE_REGION", 53 "GCLOUD_REGION", 54 "CLOUDSDK_COMPUTE_REGION", 55 }, nil), 56 }, 57 }, 58 59 DataSourcesMap: map[string]*schema.Resource{ 60 "google_iam_policy": dataSourceGoogleIamPolicy(), 61 }, 62 63 ResourcesMap: map[string]*schema.Resource{ 64 "google_compute_autoscaler": resourceComputeAutoscaler(), 65 "google_compute_address": resourceComputeAddress(), 66 "google_compute_backend_service": resourceComputeBackendService(), 67 "google_compute_disk": resourceComputeDisk(), 68 "google_compute_firewall": resourceComputeFirewall(), 69 "google_compute_forwarding_rule": resourceComputeForwardingRule(), 70 "google_compute_global_address": resourceComputeGlobalAddress(), 71 "google_compute_global_forwarding_rule": resourceComputeGlobalForwardingRule(), 72 "google_compute_health_check": resourceComputeHealthCheck(), 73 "google_compute_http_health_check": resourceComputeHttpHealthCheck(), 74 "google_compute_https_health_check": resourceComputeHttpsHealthCheck(), 75 "google_compute_image": resourceComputeImage(), 76 "google_compute_instance": resourceComputeInstance(), 77 "google_compute_instance_group": resourceComputeInstanceGroup(), 78 "google_compute_instance_group_manager": resourceComputeInstanceGroupManager(), 79 "google_compute_instance_template": resourceComputeInstanceTemplate(), 80 "google_compute_network": resourceComputeNetwork(), 81 "google_compute_project_metadata": resourceComputeProjectMetadata(), 82 "google_compute_region_backend_service": resourceComputeRegionBackendService(), 83 "google_compute_route": resourceComputeRoute(), 84 "google_compute_ssl_certificate": resourceComputeSslCertificate(), 85 "google_compute_subnetwork": resourceComputeSubnetwork(), 86 "google_compute_target_http_proxy": resourceComputeTargetHttpProxy(), 87 "google_compute_target_https_proxy": resourceComputeTargetHttpsProxy(), 88 "google_compute_target_pool": resourceComputeTargetPool(), 89 "google_compute_url_map": resourceComputeUrlMap(), 90 "google_compute_vpn_gateway": resourceComputeVpnGateway(), 91 "google_compute_vpn_tunnel": resourceComputeVpnTunnel(), 92 "google_container_cluster": resourceContainerCluster(), 93 "google_dns_managed_zone": resourceDnsManagedZone(), 94 "google_dns_record_set": resourceDnsRecordSet(), 95 "google_sql_database": resourceSqlDatabase(), 96 "google_sql_database_instance": resourceSqlDatabaseInstance(), 97 "google_sql_user": resourceSqlUser(), 98 "google_project": resourceGoogleProject(), 99 "google_project_iam_policy": resourceGoogleProjectIamPolicy(), 100 "google_project_services": resourceGoogleProjectServices(), 101 "google_pubsub_topic": resourcePubsubTopic(), 102 "google_pubsub_subscription": resourcePubsubSubscription(), 103 "google_service_account": resourceGoogleServiceAccount(), 104 "google_storage_bucket": resourceStorageBucket(), 105 "google_storage_bucket_acl": resourceStorageBucketAcl(), 106 "google_storage_bucket_object": resourceStorageBucketObject(), 107 "google_storage_object_acl": resourceStorageObjectAcl(), 108 }, 109 110 ConfigureFunc: providerConfigure, 111 } 112 } 113 114 func providerConfigure(d *schema.ResourceData) (interface{}, error) { 115 credentials := d.Get("credentials").(string) 116 if credentials == "" { 117 credentials = d.Get("account_file").(string) 118 } 119 config := Config{ 120 Credentials: credentials, 121 Project: d.Get("project").(string), 122 Region: d.Get("region").(string), 123 } 124 125 if err := config.loadAndValidate(); err != nil { 126 return nil, err 127 } 128 129 return &config, nil 130 } 131 132 func validateAccountFile(v interface{}, k string) (warnings []string, errors []error) { 133 if v == nil { 134 return 135 } 136 137 value := v.(string) 138 139 if value == "" { 140 return 141 } 142 143 contents, wasPath, err := pathorcontents.Read(value) 144 if err != nil { 145 errors = append(errors, fmt.Errorf("Error loading Account File: %s", err)) 146 } 147 if wasPath { 148 warnings = append(warnings, `account_file was provided as a path instead of 149 as file contents. This support will be removed in the future. Please update 150 your configuration to use ${file("filename.json")} instead.`) 151 } 152 153 var account accountFile 154 if err := json.Unmarshal([]byte(contents), &account); err != nil { 155 errors = append(errors, 156 fmt.Errorf("account_file not valid JSON '%s': %s", contents, err)) 157 } 158 159 return 160 } 161 162 func validateCredentials(v interface{}, k string) (warnings []string, errors []error) { 163 if v == nil || v.(string) == "" { 164 return 165 } 166 creds := v.(string) 167 var account accountFile 168 if err := json.Unmarshal([]byte(creds), &account); err != nil { 169 errors = append(errors, 170 fmt.Errorf("credentials are not valid JSON '%s': %s", creds, err)) 171 } 172 173 return 174 } 175 176 // getRegionFromZone returns the region from a zone for Google cloud. 177 func getRegionFromZone(zone string) string { 178 if zone != "" && len(zone) > 2 { 179 region := zone[:len(zone)-2] 180 return region 181 } 182 return "" 183 } 184 185 // getRegion reads the "region" field from the given resource data and falls 186 // back to the provider's value if not given. If the provider's value is not 187 // given, an error is returned. 188 func getRegion(d *schema.ResourceData, config *Config) (string, error) { 189 res, ok := d.GetOk("region") 190 if !ok { 191 if config.Region != "" { 192 return config.Region, nil 193 } 194 return "", fmt.Errorf("%q: required field is not set", "region") 195 } 196 return res.(string), nil 197 } 198 199 // getProject reads the "project" field from the given resource data and falls 200 // back to the provider's value if not given. If the provider's value is not 201 // given, an error is returned. 202 func getProject(d *schema.ResourceData, config *Config) (string, error) { 203 res, ok := d.GetOk("project") 204 if !ok { 205 if config.Project != "" { 206 return config.Project, nil 207 } 208 return "", fmt.Errorf("%q: required field is not set", "project") 209 } 210 return res.(string), nil 211 } 212 213 func getZonalResourceFromRegion(getResource func(string) (interface{}, error), region string, compute *compute.Service, project string) (interface{}, error) { 214 zoneList, err := compute.Zones.List(project).Do() 215 if err != nil { 216 return nil, err 217 } 218 var resource interface{} 219 for _, zone := range zoneList.Items { 220 if strings.Contains(zone.Name, region) { 221 resource, err = getResource(zone.Name) 222 if err != nil { 223 if gerr, ok := err.(*googleapi.Error); ok && gerr.Code == 404 { 224 // Resource was not found in this zone 225 continue 226 } 227 return nil, fmt.Errorf("Error reading Resource: %s", err) 228 } 229 // Resource was found 230 return resource, nil 231 } 232 } 233 // Resource does not exist in this region 234 return nil, nil 235 } 236 237 // getNetworkLink reads the "network" field from the given resource data and if the value: 238 // - is a resource URL, returns the string unchanged 239 // - is the network name only, then looks up the resource URL using the google client 240 func getNetworkLink(d *schema.ResourceData, config *Config, field string) (string, error) { 241 if v, ok := d.GetOk(field); ok { 242 network := v.(string) 243 244 project, err := getProject(d, config) 245 if err != nil { 246 return "", err 247 } 248 249 if !strings.HasPrefix(network, "https://www.googleapis.com/compute/") { 250 // Network value provided is just the name, lookup the network SelfLink 251 networkData, err := config.clientCompute.Networks.Get( 252 project, network).Do() 253 if err != nil { 254 return "", fmt.Errorf("Error reading network: %s", err) 255 } 256 network = networkData.SelfLink 257 } 258 259 return network, nil 260 261 } else { 262 return "", nil 263 } 264 } 265 266 // getNetworkName reads the "network" field from the given resource data and if the value: 267 // - is a resource URL, extracts the network name from the URL and returns it 268 // - is the network name only (i.e not prefixed with http://www.googleapis.com/compute/...), is returned unchanged 269 func getNetworkName(d *schema.ResourceData, field string) (string, error) { 270 if v, ok := d.GetOk(field); ok { 271 network := v.(string) 272 273 if strings.HasPrefix(network, "https://www.googleapis.com/compute/") { 274 // extract the network name from SelfLink URL 275 networkName := network[strings.LastIndex(network, "/")+1:] 276 if networkName == "" { 277 return "", fmt.Errorf("network url not valid") 278 } 279 return networkName, nil 280 } 281 282 return network, nil 283 } 284 return "", nil 285 }