| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 1 | package installer |
| 2 | |
| 3 | import ( |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 4 | "fmt" |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 5 | "io/fs" |
| Giorgi Lekveishvili | 03ee585 | 2023-05-30 13:20:10 +0400 | [diff] [blame] | 6 | "io/ioutil" |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 7 | "net" |
| 8 | "time" |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 9 | |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 10 | "golang.org/x/crypto/ssh" |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 11 | "golang.org/x/exp/slices" |
| 12 | |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 13 | "github.com/go-git/go-billy/v5/util" |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 14 | "github.com/go-git/go-git/v5" |
| 15 | "github.com/go-git/go-git/v5/plumbing/object" |
| 16 | gitssh "github.com/go-git/go-git/v5/plumbing/transport/ssh" |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 17 | "sigs.k8s.io/yaml" |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 18 | ) |
| 19 | |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 20 | const appDirName = "apps" |
| 21 | const configFileName = "config.yaml" |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 22 | const kustomizationFileName = "kustomization.yaml" |
| 23 | |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 24 | type AppManager struct { |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 25 | repo *git.Repository |
| 26 | signer ssh.Signer |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 27 | } |
| 28 | |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 29 | func NewAppManager(repo *git.Repository, signer ssh.Signer) (*AppManager, error) { |
| 30 | return &AppManager{ |
| 31 | repo, |
| 32 | signer, |
| 33 | }, nil |
| 34 | } |
| 35 | |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 36 | func (m *AppManager) Config() (Config, error) { |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 37 | wt, err := m.repo.Worktree() |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 38 | if err != nil { |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 39 | return Config{}, err |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 40 | } |
| 41 | configF, err := wt.Filesystem.Open(configFileName) |
| 42 | if err != nil { |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 43 | return Config{}, err |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 44 | } |
| 45 | defer configF.Close() |
| 46 | config, err := ReadConfig(configF) |
| 47 | if err != nil { |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 48 | return Config{}, err |
| 49 | } |
| 50 | return config, nil |
| 51 | } |
| 52 | |
| Giorgi Lekveishvili | 03ee585 | 2023-05-30 13:20:10 +0400 | [diff] [blame] | 53 | func (m *AppManager) AppConfig(name string) (map[string]any, error) { |
| 54 | wt, err := m.repo.Worktree() |
| 55 | if err != nil { |
| 56 | return nil, err |
| 57 | } |
| 58 | configF, err := wt.Filesystem.Open(wt.Filesystem.Join(appDirName, name, configFileName)) |
| 59 | if err != nil { |
| 60 | return nil, err |
| 61 | } |
| 62 | defer configF.Close() |
| 63 | var cfg map[string]any |
| 64 | contents, err := ioutil.ReadAll(configF) |
| 65 | if err != nil { |
| 66 | return cfg, err |
| 67 | } |
| 68 | err = yaml.UnmarshalStrict(contents, &cfg) |
| 69 | return cfg, err |
| 70 | } |
| 71 | |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 72 | func (m *AppManager) Install(app App, config map[string]any) error { |
| Giorgi Lekveishvili | 938b073 | 2023-06-09 13:14:01 +0400 | [diff] [blame] | 73 | if err := m.repo.Fetch(&git.FetchOptions{ |
| 74 | RemoteName: "origin", |
| 75 | Auth: auth(m.signer), |
| 76 | Force: true, |
| 77 | }); err != nil { |
| 78 | return err |
| 79 | } |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 80 | wt, err := m.repo.Worktree() |
| 81 | if err != nil { |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 82 | return err |
| 83 | } |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 84 | globalConfig, err := m.Config() |
| 85 | if err != nil { |
| 86 | return err |
| 87 | } |
| 88 | all := map[string]any{ |
| 89 | "Global": globalConfig.Values, |
| 90 | "Values": config, |
| 91 | } |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 92 | appsRoot, err := wt.Filesystem.Chroot(appDirName) |
| 93 | if err != nil { |
| 94 | return err |
| 95 | } |
| 96 | rootKustF, err := appsRoot.Open(kustomizationFileName) |
| 97 | if err != nil { |
| 98 | return err |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 99 | } |
| 100 | defer rootKustF.Close() |
| 101 | rootKust, err := ReadKustomization(rootKustF) |
| 102 | if err != nil { |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 103 | return err |
| 104 | } |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 105 | appRoot, err := appsRoot.Chroot(app.Name) |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 106 | if err != nil { |
| 107 | return err |
| 108 | } |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 109 | if err := util.RemoveAll(appRoot, app.Name); err != nil { |
| 110 | return err |
| 111 | } |
| 112 | if err := appRoot.MkdirAll(app.Name, fs.ModePerm); err != nil { |
| 113 | return nil |
| 114 | } |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 115 | appKust := NewKustomization() |
| 116 | for _, t := range app.Templates { |
| 117 | out, err := appRoot.Create(t.Name()) |
| 118 | if err != nil { |
| 119 | return err |
| 120 | } |
| 121 | defer out.Close() |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 122 | if err := t.Execute(out, all); err != nil { |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 123 | return err |
| 124 | } |
| Giorgi Lekveishvili | 3550b43 | 2023-06-09 19:37:51 +0400 | [diff] [blame] | 125 | appKust.AddResources(t.Name()) |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 126 | } |
| Giorgi Lekveishvili | 7efe22f | 2023-05-30 13:01:53 +0400 | [diff] [blame] | 127 | { |
| 128 | out, err := appRoot.Create(configFileName) |
| 129 | if err != nil { |
| 130 | return err |
| 131 | } |
| 132 | defer out.Close() |
| 133 | configBytes, err := yaml.Marshal(config) |
| 134 | if err != nil { |
| 135 | return err |
| 136 | } |
| 137 | if _, err := out.Write(configBytes); err != nil { |
| 138 | return err |
| 139 | } |
| 140 | } |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 141 | appKustF, err := appRoot.Create(kustomizationFileName) |
| 142 | if err != nil { |
| 143 | return err |
| 144 | } |
| 145 | defer appKustF.Close() |
| 146 | if err := appKust.Write(appKustF); err != nil { |
| 147 | return err |
| 148 | } |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 149 | if !slices.Contains(rootKust.Resources, app.Name) { |
| Giorgi Lekveishvili | 3550b43 | 2023-06-09 19:37:51 +0400 | [diff] [blame] | 150 | rootKust.AddResources(app.Name) |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 151 | rootKustFW, err := appsRoot.Create(kustomizationFileName) |
| 152 | if err != nil { |
| 153 | return err |
| 154 | } |
| 155 | defer rootKustFW.Close() |
| 156 | if err := rootKust.Write(rootKustFW); err != nil { |
| 157 | return err |
| 158 | } |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 159 | } |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 160 | // Commit and push |
| 161 | if err := wt.AddGlob("*"); err != nil { |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 162 | return err |
| 163 | } |
| Giorgi Lekveishvili | bd6be7f | 2023-05-26 15:51:28 +0400 | [diff] [blame] | 164 | if _, err := wt.Commit(fmt.Sprintf("install: %s", app.Name), &git.CommitOptions{ |
| 165 | Author: &object.Signature{ |
| 166 | Name: "pcloud-appmanager", |
| 167 | When: time.Now(), |
| 168 | }, |
| 169 | }); err != nil { |
| 170 | return err |
| 171 | } |
| 172 | return m.repo.Push(&git.PushOptions{ |
| 173 | RemoteName: "origin", |
| 174 | Auth: auth(m.signer), |
| 175 | }) |
| 176 | } |
| 177 | |
| 178 | func auth(signer ssh.Signer) *gitssh.PublicKeys { |
| 179 | return &gitssh.PublicKeys{ |
| 180 | Signer: signer, |
| 181 | HostKeyCallbackHelper: gitssh.HostKeyCallbackHelper{ |
| 182 | HostKeyCallback: func(hostname string, remote net.Addr, key ssh.PublicKey) error { |
| 183 | // TODO(giolekva): verify server public key |
| 184 | // fmt.Printf("## %s || %s -- \n", serverPubKey, ssh.MarshalAuthorizedKey(key)) |
| 185 | return nil |
| 186 | }, |
| 187 | }, |
| 188 | } |
| Giorgi Lekveishvili | 23ef7f8 | 2023-05-26 11:57:48 +0400 | [diff] [blame] | 189 | } |