mirror of
https://github.com/bpg/terraform-provider-proxmox.git
synced 2025-07-04 04:22:59 +00:00
* refactoring existing cluster / firewall API for better composition * add basic security groups API fix linter errors * add rules API * fix after renaming resourceVirtualEnvironmentClusterIPSet * fix linter errors * make linter happy * even more refactoring * tidy up datasources * in refactoring spree * update examples * fix firewall resource/datasource & client error handling * add ipset(s) datasource * update docs * add security group resource with rules * docs * fix security group update, TODO: rule update * fix after rebase * add rule update, extract common rule schema, refactor group * fix linter errors * bump linter for ci * make alias and ipset reusable * make security group reusable * refactor datasources * add security group datasources * fix linter errors * update docs TODO: documentation for group datasources * add sg docs, update doc index * minor cleanup * fix examples & tests * stub for firewall-level options and rules * extract firewall interface * add firewall options and rules on the cluster level TODO: issues with rule list management * refactor all resources format AGAIN, now more flat, without complex subresources * sort out hierarchy of APIs and remove duplication in API wrappers * bring back security group * finally, working rules * restore cluster firewall option * add containers support * add options * move rules back under security group, update docs * fix vm_id / container_id attrs * add examples * cleanup * more cleanup Release-As: 0.17.0-rc1
75 lines
2.1 KiB
Go
75 lines
2.1 KiB
Go
/*
|
|
* This Source Code Form is subject to the terms of the Mozilla Public
|
|
* License, v. 2.0. If a copy of the MPL was not distributed with this
|
|
* file, You can obtain one at https://mozilla.org/MPL/2.0/.
|
|
*/
|
|
|
|
package firewall
|
|
|
|
import (
|
|
"context"
|
|
|
|
"github.com/hashicorp/terraform-plugin-sdk/v2/diag"
|
|
"github.com/hashicorp/terraform-plugin-sdk/v2/helper/schema"
|
|
|
|
"github.com/bpg/terraform-provider-proxmox/proxmox/firewall"
|
|
"github.com/bpg/terraform-provider-proxmox/proxmoxtf"
|
|
)
|
|
|
|
const (
|
|
mkSelectorNodeName = "node_name"
|
|
mkSelectorVMID = "vm_id"
|
|
mkSelectorContainerID = "container_id"
|
|
)
|
|
|
|
func selectorSchema() map[string]*schema.Schema {
|
|
return map[string]*schema.Schema{
|
|
mkSelectorNodeName: {
|
|
Type: schema.TypeString,
|
|
Optional: true,
|
|
Description: "The name of the node.",
|
|
},
|
|
mkSelectorVMID: {
|
|
Type: schema.TypeInt,
|
|
Optional: true,
|
|
Description: "The ID of the VM to manage the firewall for.",
|
|
},
|
|
mkSelectorContainerID: {
|
|
Type: schema.TypeInt,
|
|
Optional: true,
|
|
Description: "The ID of the container to manage the firewall for.",
|
|
},
|
|
}
|
|
}
|
|
|
|
func selectorSchemaMandatory() map[string]*schema.Schema {
|
|
s := selectorSchema()
|
|
s[mkSelectorNodeName].Optional = false
|
|
s[mkSelectorNodeName].Required = true
|
|
return s
|
|
}
|
|
|
|
func selectFirewallAPI(
|
|
f func(context.Context, firewall.API, *schema.ResourceData) diag.Diagnostics,
|
|
) func(context.Context, *schema.ResourceData, interface{}) diag.Diagnostics {
|
|
return func(ctx context.Context, d *schema.ResourceData, m interface{}) diag.Diagnostics {
|
|
config := m.(proxmoxtf.ProviderConfiguration)
|
|
veClient, err := config.GetVEClient()
|
|
if err != nil {
|
|
return diag.FromErr(err)
|
|
}
|
|
|
|
var api firewall.API = veClient.API().Cluster().Firewall()
|
|
if nn, ok := d.GetOk(mkSelectorNodeName); ok {
|
|
nodeName := nn.(string)
|
|
if v, ok := d.GetOk(mkSelectorVMID); ok {
|
|
api = veClient.API().VM(nodeName, v.(int)).Firewall()
|
|
} else if v, ok := d.GetOk(mkSelectorContainerID); ok {
|
|
api = veClient.API().Container(nodeName, v.(int)).Firewall()
|
|
}
|
|
}
|
|
|
|
return f(ctx, api, d)
|
|
}
|
|
}
|