Skip to content

Commit c9e79fe

Browse files
IAM for Colab runtime template (#12742) (#20963)
[upstream:d0350e9490aa254daf9397b55e50bdaffe114598] Signed-off-by: Modular Magician <[email protected]>
1 parent d64cd90 commit c9e79fe

File tree

6 files changed

+734
-2
lines changed

6 files changed

+734
-2
lines changed

.changelog/12742.txt

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
```release-note: enhancement
2+
colab: Added IAM to `google_colab_runtime_template`.
3+
```

google/provider/provider_mmv1_resources.go

Lines changed: 6 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -376,6 +376,7 @@ var generatedIAMDatasources = map[string]*schema.Resource{
376376
"google_cloud_run_v2_job_iam_policy": tpgiamresource.DataSourceIamPolicy(cloudrunv2.CloudRunV2JobIamSchema, cloudrunv2.CloudRunV2JobIamUpdaterProducer),
377377
"google_cloud_run_v2_service_iam_policy": tpgiamresource.DataSourceIamPolicy(cloudrunv2.CloudRunV2ServiceIamSchema, cloudrunv2.CloudRunV2ServiceIamUpdaterProducer),
378378
"google_cloud_tasks_queue_iam_policy": tpgiamresource.DataSourceIamPolicy(cloudtasks.CloudTasksQueueIamSchema, cloudtasks.CloudTasksQueueIamUpdaterProducer),
379+
"google_colab_runtime_template_iam_policy": tpgiamresource.DataSourceIamPolicy(colab.ColabRuntimeTemplateIamSchema, colab.ColabRuntimeTemplateIamUpdaterProducer),
379380
"google_compute_disk_iam_policy": tpgiamresource.DataSourceIamPolicy(compute.ComputeDiskIamSchema, compute.ComputeDiskIamUpdaterProducer),
380381
"google_compute_image_iam_policy": tpgiamresource.DataSourceIamPolicy(compute.ComputeImageIamSchema, compute.ComputeImageIamUpdaterProducer),
381382
"google_compute_instance_iam_policy": tpgiamresource.DataSourceIamPolicy(compute.ComputeInstanceIamSchema, compute.ComputeInstanceIamUpdaterProducer),
@@ -470,8 +471,8 @@ var handwrittenIAMDatasources = map[string]*schema.Resource{
470471

471472
// Resources
472473
// Generated resources: 511
473-
// Generated IAM resources: 267
474-
// Total generated resources: 778
474+
// Generated IAM resources: 270
475+
// Total generated resources: 781
475476
var generatedResources = map[string]*schema.Resource{
476477
"google_folder_access_approval_settings": accessapproval.ResourceAccessApprovalFolderSettings(),
477478
"google_organization_access_approval_settings": accessapproval.ResourceAccessApprovalOrganizationSettings(),
@@ -642,6 +643,9 @@ var generatedResources = map[string]*schema.Resource{
642643
"google_cloud_tasks_queue_iam_policy": tpgiamresource.ResourceIamPolicy(cloudtasks.CloudTasksQueueIamSchema, cloudtasks.CloudTasksQueueIamUpdaterProducer, cloudtasks.CloudTasksQueueIdParseFunc),
643644
"google_colab_runtime": colab.ResourceColabRuntime(),
644645
"google_colab_runtime_template": colab.ResourceColabRuntimeTemplate(),
646+
"google_colab_runtime_template_iam_binding": tpgiamresource.ResourceIamBinding(colab.ColabRuntimeTemplateIamSchema, colab.ColabRuntimeTemplateIamUpdaterProducer, colab.ColabRuntimeTemplateIdParseFunc),
647+
"google_colab_runtime_template_iam_member": tpgiamresource.ResourceIamMember(colab.ColabRuntimeTemplateIamSchema, colab.ColabRuntimeTemplateIamUpdaterProducer, colab.ColabRuntimeTemplateIdParseFunc),
648+
"google_colab_runtime_template_iam_policy": tpgiamresource.ResourceIamPolicy(colab.ColabRuntimeTemplateIamSchema, colab.ColabRuntimeTemplateIamUpdaterProducer, colab.ColabRuntimeTemplateIdParseFunc),
645649
"google_composer_user_workloads_config_map": composer.ResourceComposerUserWorkloadsConfigMap(),
646650
"google_compute_address": compute.ResourceComputeAddress(),
647651
"google_compute_autoscaler": compute.ResourceComputeAutoscaler(),
Lines changed: 245 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,245 @@
1+
// Copyright (c) HashiCorp, Inc.
2+
// SPDX-License-Identifier: MPL-2.0
3+
4+
// ----------------------------------------------------------------------------
5+
//
6+
// *** AUTO GENERATED CODE *** Type: MMv1 ***
7+
//
8+
// ----------------------------------------------------------------------------
9+
//
10+
// This file is automatically generated by Magic Modules and manual
11+
// changes will be clobbered when the file is regenerated.
12+
//
13+
// Please read more about how to change this file in
14+
// .github/CONTRIBUTING.md.
15+
//
16+
// ----------------------------------------------------------------------------
17+
18+
package colab
19+
20+
import (
21+
"fmt"
22+
23+
"github.com/hashicorp/errwrap"
24+
"github.com/hashicorp/terraform-plugin-sdk/v2/helper/schema"
25+
"google.golang.org/api/cloudresourcemanager/v1"
26+
27+
"github.com/hashicorp/terraform-provider-google/google/tpgiamresource"
28+
"github.com/hashicorp/terraform-provider-google/google/tpgresource"
29+
transport_tpg "github.com/hashicorp/terraform-provider-google/google/transport"
30+
)
31+
32+
var ColabRuntimeTemplateIamSchema = map[string]*schema.Schema{
33+
"project": {
34+
Type: schema.TypeString,
35+
Computed: true,
36+
Optional: true,
37+
ForceNew: true,
38+
},
39+
"location": {
40+
Type: schema.TypeString,
41+
Computed: true,
42+
Optional: true,
43+
ForceNew: true,
44+
},
45+
"runtime_template": {
46+
Type: schema.TypeString,
47+
Required: true,
48+
ForceNew: true,
49+
DiffSuppressFunc: tpgresource.CompareSelfLinkOrResourceName,
50+
},
51+
}
52+
53+
type ColabRuntimeTemplateIamUpdater struct {
54+
project string
55+
location string
56+
runtimeTemplate string
57+
d tpgresource.TerraformResourceData
58+
Config *transport_tpg.Config
59+
}
60+
61+
func ColabRuntimeTemplateIamUpdaterProducer(d tpgresource.TerraformResourceData, config *transport_tpg.Config) (tpgiamresource.ResourceIamUpdater, error) {
62+
values := make(map[string]string)
63+
64+
project, _ := tpgresource.GetProject(d, config)
65+
if project != "" {
66+
if err := d.Set("project", project); err != nil {
67+
return nil, fmt.Errorf("Error setting project: %s", err)
68+
}
69+
}
70+
values["project"] = project
71+
location, _ := tpgresource.GetLocation(d, config)
72+
if location != "" {
73+
if err := d.Set("location", location); err != nil {
74+
return nil, fmt.Errorf("Error setting location: %s", err)
75+
}
76+
}
77+
values["location"] = location
78+
if v, ok := d.GetOk("runtime_template"); ok {
79+
values["runtime_template"] = v.(string)
80+
}
81+
82+
// We may have gotten either a long or short name, so attempt to parse long name if possible
83+
m, err := tpgresource.GetImportIdQualifiers([]string{"projects/(?P<project>[^/]+)/locations/(?P<location>[^/]+)/notebookRuntimeTemplates/(?P<runtime_template>[^/]+)", "(?P<project>[^/]+)/(?P<location>[^/]+)/(?P<runtime_template>[^/]+)", "(?P<location>[^/]+)/(?P<runtime_template>[^/]+)", "(?P<runtime_template>[^/]+)"}, d, config, d.Get("runtime_template").(string))
84+
if err != nil {
85+
return nil, err
86+
}
87+
88+
for k, v := range m {
89+
values[k] = v
90+
}
91+
92+
u := &ColabRuntimeTemplateIamUpdater{
93+
project: values["project"],
94+
location: values["location"],
95+
runtimeTemplate: values["runtime_template"],
96+
d: d,
97+
Config: config,
98+
}
99+
100+
if err := d.Set("project", u.project); err != nil {
101+
return nil, fmt.Errorf("Error setting project: %s", err)
102+
}
103+
if err := d.Set("location", u.location); err != nil {
104+
return nil, fmt.Errorf("Error setting location: %s", err)
105+
}
106+
if err := d.Set("runtime_template", u.GetResourceId()); err != nil {
107+
return nil, fmt.Errorf("Error setting runtime_template: %s", err)
108+
}
109+
110+
return u, nil
111+
}
112+
113+
func ColabRuntimeTemplateIdParseFunc(d *schema.ResourceData, config *transport_tpg.Config) error {
114+
values := make(map[string]string)
115+
116+
project, _ := tpgresource.GetProject(d, config)
117+
if project != "" {
118+
values["project"] = project
119+
}
120+
121+
location, _ := tpgresource.GetLocation(d, config)
122+
if location != "" {
123+
values["location"] = location
124+
}
125+
126+
m, err := tpgresource.GetImportIdQualifiers([]string{"projects/(?P<project>[^/]+)/locations/(?P<location>[^/]+)/notebookRuntimeTemplates/(?P<runtime_template>[^/]+)", "(?P<project>[^/]+)/(?P<location>[^/]+)/(?P<runtime_template>[^/]+)", "(?P<location>[^/]+)/(?P<runtime_template>[^/]+)", "(?P<runtime_template>[^/]+)"}, d, config, d.Id())
127+
if err != nil {
128+
return err
129+
}
130+
131+
for k, v := range m {
132+
values[k] = v
133+
}
134+
135+
u := &ColabRuntimeTemplateIamUpdater{
136+
project: values["project"],
137+
location: values["location"],
138+
runtimeTemplate: values["runtime_template"],
139+
d: d,
140+
Config: config,
141+
}
142+
if err := d.Set("runtime_template", u.GetResourceId()); err != nil {
143+
return fmt.Errorf("Error setting runtime_template: %s", err)
144+
}
145+
d.SetId(u.GetResourceId())
146+
return nil
147+
}
148+
149+
func (u *ColabRuntimeTemplateIamUpdater) GetResourceIamPolicy() (*cloudresourcemanager.Policy, error) {
150+
url, err := u.qualifyRuntimeTemplateUrl("getIamPolicy")
151+
if err != nil {
152+
return nil, err
153+
}
154+
155+
project, err := tpgresource.GetProject(u.d, u.Config)
156+
if err != nil {
157+
return nil, err
158+
}
159+
var obj map[string]interface{}
160+
161+
userAgent, err := tpgresource.GenerateUserAgentString(u.d, u.Config.UserAgent)
162+
if err != nil {
163+
return nil, err
164+
}
165+
166+
policy, err := transport_tpg.SendRequest(transport_tpg.SendRequestOptions{
167+
Config: u.Config,
168+
Method: "POST",
169+
Project: project,
170+
RawURL: url,
171+
UserAgent: userAgent,
172+
Body: obj,
173+
})
174+
if err != nil {
175+
return nil, errwrap.Wrapf(fmt.Sprintf("Error retrieving IAM policy for %s: {{err}}", u.DescribeResource()), err)
176+
}
177+
178+
out := &cloudresourcemanager.Policy{}
179+
err = tpgresource.Convert(policy, out)
180+
if err != nil {
181+
return nil, errwrap.Wrapf("Cannot convert a policy to a resource manager policy: {{err}}", err)
182+
}
183+
184+
return out, nil
185+
}
186+
187+
func (u *ColabRuntimeTemplateIamUpdater) SetResourceIamPolicy(policy *cloudresourcemanager.Policy) error {
188+
json, err := tpgresource.ConvertToMap(policy)
189+
if err != nil {
190+
return err
191+
}
192+
193+
obj := make(map[string]interface{})
194+
obj["policy"] = json
195+
196+
url, err := u.qualifyRuntimeTemplateUrl("setIamPolicy")
197+
if err != nil {
198+
return err
199+
}
200+
project, err := tpgresource.GetProject(u.d, u.Config)
201+
if err != nil {
202+
return err
203+
}
204+
205+
userAgent, err := tpgresource.GenerateUserAgentString(u.d, u.Config.UserAgent)
206+
if err != nil {
207+
return err
208+
}
209+
210+
_, err = transport_tpg.SendRequest(transport_tpg.SendRequestOptions{
211+
Config: u.Config,
212+
Method: "POST",
213+
Project: project,
214+
RawURL: url,
215+
UserAgent: userAgent,
216+
Body: obj,
217+
Timeout: u.d.Timeout(schema.TimeoutCreate),
218+
})
219+
if err != nil {
220+
return errwrap.Wrapf(fmt.Sprintf("Error setting IAM policy for %s: {{err}}", u.DescribeResource()), err)
221+
}
222+
223+
return nil
224+
}
225+
226+
func (u *ColabRuntimeTemplateIamUpdater) qualifyRuntimeTemplateUrl(methodIdentifier string) (string, error) {
227+
urlTemplate := fmt.Sprintf("{{ColabBasePath}}%s:%s", fmt.Sprintf("projects/%s/locations/%s/notebookRuntimeTemplates/%s", u.project, u.location, u.runtimeTemplate), methodIdentifier)
228+
url, err := tpgresource.ReplaceVars(u.d, u.Config, urlTemplate)
229+
if err != nil {
230+
return "", err
231+
}
232+
return url, nil
233+
}
234+
235+
func (u *ColabRuntimeTemplateIamUpdater) GetResourceId() string {
236+
return fmt.Sprintf("projects/%s/locations/%s/notebookRuntimeTemplates/%s", u.project, u.location, u.runtimeTemplate)
237+
}
238+
239+
func (u *ColabRuntimeTemplateIamUpdater) GetMutexKey() string {
240+
return fmt.Sprintf("iam-colab-runtimetemplate-%s", u.GetResourceId())
241+
}
242+
243+
func (u *ColabRuntimeTemplateIamUpdater) DescribeResource() string {
244+
return fmt.Sprintf("colab runtimetemplate %q", u.GetResourceId())
245+
}

0 commit comments

Comments
 (0)