| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219 |
- package amazon
- import (
- "context"
- "fmt"
- "github.com/aws/aws-sdk-go/aws"
- "github.com/aws/aws-sdk-go/aws/session"
- "github.com/aws/aws-sdk-go/service/cloudformation"
- "github.com/aws/aws-sdk-go/service/cloudformation/cloudformationiface"
- "github.com/aws/aws-sdk-go/service/cloudwatchlogs"
- "github.com/aws/aws-sdk-go/service/cloudwatchlogs/cloudwatchlogsiface"
- "github.com/aws/aws-sdk-go/service/ec2"
- "github.com/aws/aws-sdk-go/service/ec2/ec2iface"
- "github.com/aws/aws-sdk-go/service/ecs"
- "github.com/aws/aws-sdk-go/service/ecs/ecsiface"
- "github.com/aws/aws-sdk-go/service/elbv2"
- "github.com/aws/aws-sdk-go/service/elbv2/elbv2iface"
- "github.com/aws/aws-sdk-go/service/iam"
- "github.com/aws/aws-sdk-go/service/iam/iamiface"
- "github.com/aws/aws-sdk-go/service/secretsmanager"
- "github.com/aws/aws-sdk-go/service/secretsmanager/secretsmanageriface"
- cf "github.com/awslabs/goformation/v4/cloudformation"
- "github.com/sirupsen/logrus"
- )
- type sdk struct {
- sess *session.Session
- ECS ecsiface.ECSAPI
- EC2 ec2iface.EC2API
- ELB elbv2iface.ELBV2API
- CW cloudwatchlogsiface.CloudWatchLogsAPI
- IAM iamiface.IAMAPI
- CF cloudformationiface.CloudFormationAPI
- SM secretsmanageriface.SecretsManagerAPI
- }
- func NewAPI(sess *session.Session) API {
- return sdk{
- ECS: ecs.New(sess),
- EC2: ec2.New(sess),
- ELB: elbv2.New(sess),
- CW: cloudwatchlogs.New(sess),
- IAM: iam.New(sess),
- CF: cloudformation.New(sess),
- SM: secretsmanager.New(sess),
- }
- }
- func (s sdk) ClusterExists(ctx context.Context, name string) (bool, error) {
- logrus.Debug("Check if cluster was already created: ", name)
- clusters, err := s.ECS.DescribeClustersWithContext(aws.Context(ctx), &ecs.DescribeClustersInput{
- Clusters: []*string{aws.String(name)},
- })
- if err != nil {
- return false, err
- }
- return len(clusters.Clusters) > 0, nil
- }
- func (s sdk) CreateCluster(ctx context.Context, name string) (string, error) {
- logrus.Debug("Create cluster ", name)
- response, err := s.ECS.CreateClusterWithContext(aws.Context(ctx), &ecs.CreateClusterInput{ClusterName: aws.String(name)})
- if err != nil {
- return "", err
- }
- return *response.Cluster.Status, nil
- }
- func (s sdk) DeleteCluster(ctx context.Context, name string) error {
- logrus.Debug("Delete cluster ", name)
- response, err := s.ECS.DeleteClusterWithContext(aws.Context(ctx), &ecs.DeleteClusterInput{Cluster: aws.String(name)})
- if err != nil {
- return err
- }
- if *response.Cluster.Status == "INACTIVE" {
- return nil
- }
- return fmt.Errorf("Failed to delete cluster, status: %s" + *response.Cluster.Status)
- }
- func (s sdk) VpcExists(ctx context.Context, vpcID string) (bool, error) {
- logrus.Debug("Check if VPC exists: ", vpcID)
- _, err := s.EC2.DescribeVpcsWithContext(aws.Context(ctx), &ec2.DescribeVpcsInput{VpcIds: []*string{&vpcID}})
- return err == nil, err
- }
- func (s sdk) GetDefaultVPC(ctx context.Context) (string, error) {
- logrus.Debug("Retrieve default VPC")
- vpcs, err := s.EC2.DescribeVpcsWithContext(aws.Context(ctx), &ec2.DescribeVpcsInput{
- Filters: []*ec2.Filter{
- {
- Name: aws.String("isDefault"),
- Values: []*string{aws.String("true")},
- },
- },
- })
- if err != nil {
- return "", err
- }
- if len(vpcs.Vpcs) == 0 {
- return "", fmt.Errorf("account has not default VPC")
- }
- return *vpcs.Vpcs[0].VpcId, nil
- }
- func (s sdk) GetSubNets(ctx context.Context, vpcID string) ([]string, error) {
- logrus.Debug("Retrieve SubNets")
- subnets, err := s.EC2.DescribeSubnetsWithContext(aws.Context(ctx), &ec2.DescribeSubnetsInput{
- DryRun: nil,
- Filters: []*ec2.Filter{
- {
- Name: aws.String("vpc-id"),
- Values: []*string{aws.String(vpcID)},
- },
- {
- Name: aws.String("default-for-az"),
- Values: []*string{aws.String("true")},
- },
- },
- })
- if err != nil {
- return nil, err
- }
- ids := []string{}
- for _, subnet := range subnets.Subnets {
- ids = append(ids, *subnet.SubnetId)
- }
- return ids, nil
- }
- func (s sdk) ListRolesForPolicy(ctx context.Context, policy string) ([]string, error) {
- entities, err := s.IAM.ListEntitiesForPolicyWithContext(aws.Context(ctx), &iam.ListEntitiesForPolicyInput{
- EntityFilter: aws.String("Role"),
- PolicyArn: aws.String(policy),
- })
- if err != nil {
- return nil, err
- }
- roles := []string{}
- for _, e := range entities.PolicyRoles {
- roles = append(roles, *e.RoleName)
- }
- return roles, nil
- }
- func (s sdk) GetRoleArn(ctx context.Context, name string) (string, error) {
- role, err := s.IAM.GetRoleWithContext(aws.Context(ctx), &iam.GetRoleInput{
- RoleName: aws.String(name),
- })
- if err != nil {
- return "", err
- }
- return *role.Role.Arn, nil
- }
- func (s sdk) StackExists(ctx context.Context, name string) (bool, error) {
- stacks, err := s.CF.DescribeStacksWithContext(aws.Context(ctx), &cloudformation.DescribeStacksInput{
- StackName: aws.String(name),
- })
- if err != nil {
- // FIXME doesn't work as expected
- return false, nil
- }
- return len(stacks.Stacks) > 0, nil
- }
- func (s sdk) CreateStack(ctx context.Context, name string, template *cf.Template) error {
- logrus.Debug("Create CloudFormation stack")
- json, err := template.JSON()
- if err != nil {
- return err
- }
- _, err = s.CF.CreateStackWithContext(aws.Context(ctx), &cloudformation.CreateStackInput{
- OnFailure: aws.String("DELETE"),
- StackName: aws.String(name),
- TemplateBody: aws.String(string(json)),
- TimeoutInMinutes: aws.Int64(10),
- })
- return err
- }
- func (s sdk) DescribeStackEvents(ctx context.Context, name string) error {
- // Fixme implement Paginator on Events and return as a chan(events)
- _, err := s.CF.DescribeStackEventsWithContext(aws.Context(ctx), &cloudformation.DescribeStackEventsInput{
- StackName: aws.String(name),
- })
- return err
- }
- func (s sdk) DeleteStack(ctx context.Context, name string) error {
- logrus.Debug("Delete CloudFormation stack")
- _, err := s.CF.DeleteStackWithContext(aws.Context(ctx), &cloudformation.DeleteStackInput{
- StackName: aws.String(name),
- })
- return err
- }
- func (s sdk) CreateSecret(ctx context.Context, name string, content string) (string, error) {
- logrus.Debug("Create secret " + name)
- return "test", nil
- }
- func (s sdk) InspectSecret(ctx context.Context, name string) error {
- fmt.Printf("... done. \n")
- return nil
- }
- func (s sdk) ListSecrets(ctx context.Context) error {
- fmt.Printf("... done. \n")
- return nil
- }
- func (s sdk) DeleteSecret(ctx context.Context, name string) error {
- fmt.Printf("... done. \n")
- return nil
- }
|