keystone/keystone/api/services.py

80 lines
2.9 KiB
Python

# Licensed under the Apache License, Version 2.0 (the "License"); you may
# not use this file except in compliance with the License. You may obtain
# a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
# WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
# License for the specific language governing permissions and limitations
# under the License.
# This file handles all flask-restful resources for /v3/services
from six.moves import http_client
from keystone.catalog import schema
from keystone.common import provider_api
from keystone.common import rbac_enforcer
from keystone.common import validation
from keystone.server import flask as ks_flask
ENFORCER = rbac_enforcer.RBACEnforcer
PROVIDERS = provider_api.ProviderAPIs
class ServicesResource(ks_flask.ResourceBase):
collection_key = 'services'
member_key = 'service'
def _get_service(self, service_id):
ENFORCER.enforce_call(action='identity:get_service')
return self.wrap_member(PROVIDERS.catalog_api.get_service(service_id))
def _list_service(self):
filters = ['type', 'name']
ENFORCER.enforce_call(action='identity:list_services', filters=filters)
hints = self.build_driver_hints(filters)
refs = PROVIDERS.catalog_api.list_services(hints=hints)
return self.wrap_collection(refs, hints=hints)
def get(self, service_id=None):
if service_id is not None:
return self._get_service(service_id)
return self._list_service()
def post(self):
ENFORCER.enforce_call(action='identity:create_service')
service = self.request_body_json.get('service')
validation.lazy_validate(schema.service_create, service)
service = self._assign_unique_id(self._normalize_dict(service))
ref = PROVIDERS.catalog_api.create_service(
service['id'], service, initiator=self.audit_initiator)
return self.wrap_member(ref), http_client.CREATED
def patch(self, service_id):
ENFORCER.enforce_call(action='identity:update_service')
service = self.request_body_json.get('service')
validation.lazy_validate(schema.service_update, service)
self._require_matching_id(service)
ref = PROVIDERS.catalog_api.update_service(
service_id, service, initiator=self.audit_initiator)
return self.wrap_member(ref)
def delete(self, service_id):
ENFORCER.enforce_call(action='identity:delete_service')
return PROVIDERS.catalog_api.delete_service(
service_id, initiator=self.audit_initiator), http_client.NO_CONTENT
class ServiceAPI(ks_flask.APIBase):
_name = 'services'
_import_name = __name__
resources = [ServicesResource]
resource_mapping = []
APIs = (ServiceAPI,)