use clap::Args;
use eyre::OptionExt;
use tracing::info;
use openstack_sdk::AsyncOpenStack;
use crate::Cli;
use crate::OpenStackCliError;
use crate::output::OutputProcessor;
use eyre::eyre;
use openstack_sdk::api::QueryAsync;
use openstack_sdk::api::find_by_name;
use openstack_sdk::api::identity::v3::domain::find as find_domain;
use openstack_sdk::api::identity::v3::domain::user::role::list;
use openstack_sdk::api::identity::v3::user::find as find_user;
use openstack_types::identity::v3::domain::user::role::response::list::RoleResponse;
use tracing::warn;
#[derive(Args)]
#[command(about = "List role assignments for user on domain")]
pub struct RolesCommand {
#[command(flatten)]
query: QueryParameters,
#[command(flatten)]
path: PathParameters,
}
#[derive(Args)]
struct QueryParameters {}
#[derive(Args)]
struct PathParameters {
#[command(flatten)]
domain: DomainInput,
#[command(flatten)]
user: UserInput,
}
#[derive(Args)]
#[group(required = true, multiple = false)]
struct DomainInput {
#[arg(long, help_heading = "Path parameters", value_name = "DOMAIN_NAME")]
domain_name: Option<String>,
#[arg(long, help_heading = "Path parameters", value_name = "DOMAIN_ID")]
domain_id: Option<String>,
#[arg(long, help_heading = "Path parameters", action = clap::ArgAction::SetTrue)]
current_domain: bool,
}
#[derive(Args)]
#[group(required = true, multiple = false)]
struct UserInput {
#[arg(long, help_heading = "Path parameters", value_name = "USER_NAME")]
user_name: Option<String>,
#[arg(long, help_heading = "Path parameters", value_name = "USER_ID")]
user_id: Option<String>,
#[arg(long, help_heading = "Path parameters", action = clap::ArgAction::SetTrue)]
current_user: bool,
}
impl RolesCommand {
pub async fn take_action(
&self,
parsed_args: &Cli,
client: &mut AsyncOpenStack,
) -> Result<(), OpenStackCliError> {
info!("List Roles");
let op = OutputProcessor::from_args(
parsed_args,
Some("identity.domain/user/role"),
Some("list"),
);
op.validate_args(parsed_args)?;
let mut ep_builder = list::Request::builder();
if let Some(id) = &self.path.domain.domain_id {
ep_builder.domain_id(id);
} else if let Some(name) = &self.path.domain.domain_name {
let mut sub_find_builder = find_domain::Request::builder();
warn!(
"Querying domain by name (because of `--domain-name` parameter passed) may not be definite. This may fail in which case parameter `--domain-id` should be used instead."
);
sub_find_builder.id(name);
let find_ep = sub_find_builder
.build()
.map_err(|x| OpenStackCliError::EndpointBuild(x.to_string()))?;
let find_data: serde_json::Value = find_by_name(find_ep).query_async(client).await?;
match find_data.get("id") {
Some(val) => match val.as_str() {
Some(id_str) => {
ep_builder.domain_id(id_str.to_owned());
}
None => {
return Err(OpenStackCliError::ResourceAttributeNotString(
serde_json::to_string(&val)?,
));
}
},
None => {
return Err(OpenStackCliError::ResourceAttributeMissing(
"id".to_string(),
));
}
};
} else if self.path.domain.current_domain {
let token = client
.get_auth_info()
.ok_or_eyre("Cannot determine current authentication information")?
.token;
if let Some(domain) = token.domain {
ep_builder.domain_id(domain.id.ok_or_eyre("Domain ID is missing in the auth")?);
} else if let Some(project) = token.project {
ep_builder.domain_id(
project
.domain
.ok_or_eyre("Domain information is missing in the project auth info")?
.id
.ok_or_eyre("Domain ID is missing in the project.domain auth info")?,
);
} else {
return Err(eyre!("Current domain information can not be identified").into());
}
}
if let Some(id) = &self.path.user.user_id {
ep_builder.user_id(id);
} else if let Some(name) = &self.path.user.user_name {
let mut sub_find_builder = find_user::Request::builder();
warn!(
"Querying user by name (because of `--user-name` parameter passed) may not be definite. This may fail in which case parameter `--user-id` should be used instead."
);
sub_find_builder.id(name);
let find_ep = sub_find_builder
.build()
.map_err(|x| OpenStackCliError::EndpointBuild(x.to_string()))?;
let find_data: serde_json::Value = find_by_name(find_ep).query_async(client).await?;
match find_data.get("id") {
Some(val) => match val.as_str() {
Some(id_str) => {
ep_builder.user_id(id_str.to_owned());
}
None => {
return Err(OpenStackCliError::ResourceAttributeNotString(
serde_json::to_string(&val)?,
));
}
},
None => {
return Err(OpenStackCliError::ResourceAttributeMissing(
"id".to_string(),
));
}
};
} else if self.path.user.current_user {
ep_builder.user_id(
client
.get_auth_info()
.ok_or_eyre("Cannot determine current authentication information")?
.token
.user
.id,
);
}
let ep = ep_builder
.build()
.map_err(|x| OpenStackCliError::EndpointBuild(x.to_string()))?;
let data: Vec<serde_json::Value> = ep.query_async(client).await?;
op.output_list::<RoleResponse>(data)?;
op.show_command_hint()?;
Ok(())
}
}