Skip to content

Commit 4b7dc8d

Browse files
Misc improvements for Certificate Authority (#4407) (#2883)
Signed-off-by: Modular Magician <[email protected]>
1 parent 9e91f2d commit 4b7dc8d

9 files changed

+926
-89
lines changed

.changelog/4407.txt

Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
```release-note:new-resource
2+
google_privateca_certificate_authority_iam_policy
3+
```
4+
```release-note:new-resource
5+
google_privateca_certificate_authority_iam_binding
6+
```
7+
```release-note:new-resource
8+
google_privateca_certificate_authority_iam_member
9+
```
Lines changed: 166 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,166 @@
1+
// ----------------------------------------------------------------------------
2+
//
3+
// *** AUTO GENERATED CODE *** AUTO GENERATED CODE ***
4+
//
5+
// ----------------------------------------------------------------------------
6+
//
7+
// This file is automatically generated by Magic Modules and manual
8+
// changes will be clobbered when the file is regenerated.
9+
//
10+
// Please read more about how to change this file in
11+
// .github/CONTRIBUTING.md.
12+
//
13+
// ----------------------------------------------------------------------------
14+
package google
15+
16+
import (
17+
"fmt"
18+
19+
"github.com/hashicorp/errwrap"
20+
"github.com/hashicorp/terraform-plugin-sdk/v2/helper/schema"
21+
"google.golang.org/api/cloudresourcemanager/v1"
22+
)
23+
24+
var PrivatecaCertificateAuthorityIamSchema = map[string]*schema.Schema{
25+
"certificate_authority": {
26+
Type: schema.TypeString,
27+
Required: true,
28+
ForceNew: true,
29+
DiffSuppressFunc: compareSelfLinkOrResourceName,
30+
},
31+
}
32+
33+
type PrivatecaCertificateAuthorityIamUpdater struct {
34+
certificateAuthority string
35+
d *schema.ResourceData
36+
Config *Config
37+
}
38+
39+
func PrivatecaCertificateAuthorityIamUpdaterProducer(d *schema.ResourceData, config *Config) (ResourceIamUpdater, error) {
40+
values := make(map[string]string)
41+
42+
if v, ok := d.GetOk("certificate_authority"); ok {
43+
values["certificate_authority"] = v.(string)
44+
}
45+
46+
// We may have gotten either a long or short name, so attempt to parse long name if possible
47+
m, err := getImportIdQualifiers([]string{"projects/(?P<project>[^/]+)/locations/(?P<location>[^/]+)/certificateAuthorities/(?P<certificate_authority_id>[^/]+)", "(?P<project>[^/]+)/(?P<location>[^/]+)/(?P<certificate_authority_id>[^/]+)", "(?P<location>[^/]+)/(?P<certificate_authority_id>[^/]+)"}, d, config, d.Get("certificate_authority").(string))
48+
if err != nil {
49+
return nil, err
50+
}
51+
52+
for k, v := range m {
53+
values[k] = v
54+
}
55+
56+
u := &PrivatecaCertificateAuthorityIamUpdater{
57+
certificateAuthority: values["certificate_authority"],
58+
d: d,
59+
Config: config,
60+
}
61+
62+
if err := d.Set("certificate_authority", u.GetResourceId()); err != nil {
63+
return nil, fmt.Errorf("Error setting certificate_authority: %s", err)
64+
}
65+
66+
return u, nil
67+
}
68+
69+
func PrivatecaCertificateAuthorityIdParseFunc(d *schema.ResourceData, config *Config) error {
70+
values := make(map[string]string)
71+
72+
m, err := getImportIdQualifiers([]string{"projects/(?P<project>[^/]+)/locations/(?P<location>[^/]+)/certificateAuthorities/(?P<certificate_authority_id>[^/]+)", "(?P<project>[^/]+)/(?P<location>[^/]+)/(?P<certificate_authority_id>[^/]+)", "(?P<location>[^/]+)/(?P<certificate_authority_id>[^/]+)"}, d, config, d.Id())
73+
if err != nil {
74+
return err
75+
}
76+
77+
for k, v := range m {
78+
values[k] = v
79+
}
80+
81+
u := &PrivatecaCertificateAuthorityIamUpdater{
82+
certificateAuthority: values["certificate_authority"],
83+
d: d,
84+
Config: config,
85+
}
86+
if err := d.Set("certificate_authority", u.GetResourceId()); err != nil {
87+
return fmt.Errorf("Error setting certificate_authority: %s", err)
88+
}
89+
d.SetId(u.GetResourceId())
90+
return nil
91+
}
92+
93+
func (u *PrivatecaCertificateAuthorityIamUpdater) GetResourceIamPolicy() (*cloudresourcemanager.Policy, error) {
94+
url, err := u.qualifyCertificateAuthorityUrl("getIamPolicy")
95+
if err != nil {
96+
return nil, err
97+
}
98+
99+
var obj map[string]interface{}
100+
101+
userAgent, err := generateUserAgentString(u.d, u.Config.userAgent)
102+
if err != nil {
103+
return nil, err
104+
}
105+
106+
policy, err := sendRequest(u.Config, "GET", "", url, userAgent, obj)
107+
if err != nil {
108+
return nil, errwrap.Wrapf(fmt.Sprintf("Error retrieving IAM policy for %s: {{err}}", u.DescribeResource()), err)
109+
}
110+
111+
out := &cloudresourcemanager.Policy{}
112+
err = Convert(policy, out)
113+
if err != nil {
114+
return nil, errwrap.Wrapf("Cannot convert a policy to a resource manager policy: {{err}}", err)
115+
}
116+
117+
return out, nil
118+
}
119+
120+
func (u *PrivatecaCertificateAuthorityIamUpdater) SetResourceIamPolicy(policy *cloudresourcemanager.Policy) error {
121+
json, err := ConvertToMap(policy)
122+
if err != nil {
123+
return err
124+
}
125+
126+
obj := make(map[string]interface{})
127+
obj["policy"] = json
128+
129+
url, err := u.qualifyCertificateAuthorityUrl("setIamPolicy")
130+
if err != nil {
131+
return err
132+
}
133+
134+
userAgent, err := generateUserAgentString(u.d, u.Config.userAgent)
135+
if err != nil {
136+
return err
137+
}
138+
139+
_, err = sendRequestWithTimeout(u.Config, "POST", "", url, userAgent, obj, u.d.Timeout(schema.TimeoutCreate))
140+
if err != nil {
141+
return errwrap.Wrapf(fmt.Sprintf("Error setting IAM policy for %s: {{err}}", u.DescribeResource()), err)
142+
}
143+
144+
return nil
145+
}
146+
147+
func (u *PrivatecaCertificateAuthorityIamUpdater) qualifyCertificateAuthorityUrl(methodIdentifier string) (string, error) {
148+
urlTemplate := fmt.Sprintf("{{PrivatecaBasePath}}%s:%s", fmt.Sprintf("%s", u.certificateAuthority), methodIdentifier)
149+
url, err := replaceVars(u.d, u.Config, urlTemplate)
150+
if err != nil {
151+
return "", err
152+
}
153+
return url, nil
154+
}
155+
156+
func (u *PrivatecaCertificateAuthorityIamUpdater) GetResourceId() string {
157+
return fmt.Sprintf("%s", u.certificateAuthority)
158+
}
159+
160+
func (u *PrivatecaCertificateAuthorityIamUpdater) GetMutexKey() string {
161+
return fmt.Sprintf("iam-privateca-certificateauthority-%s", u.GetResourceId())
162+
}
163+
164+
func (u *PrivatecaCertificateAuthorityIamUpdater) DescribeResource() string {
165+
return fmt.Sprintf("privateca certificateauthority %q", u.GetResourceId())
166+
}

0 commit comments

Comments
 (0)