use clap::Args;
use eyre::{OptionExt, WrapErr};
use tracing::info;
use openstack_sdk::AsyncOpenStack;
use crate::Cli;
use crate::OpenStackCliError;
use crate::output::OutputProcessor;
use openstack_sdk::api::QueryAsync;
use openstack_sdk::api::find_by_name;
use openstack_sdk::api::identity::v3::user::application_credential::create;
use openstack_sdk::api::identity::v3::user::find as find_user;
use openstack_types::identity::v3::user::application_credential::response::create::ApplicationCredentialResponse;
use serde_json::Value;
use tracing::warn;
#[derive(Args)]
#[command(about = "Create application credential")]
pub struct ApplicationCredentialCommand {
#[command(flatten)]
query: QueryParameters,
#[command(flatten)]
path: PathParameters,
#[command(flatten)]
application_credential: ApplicationCredential,
}
#[derive(Args)]
struct QueryParameters {}
#[derive(Args)]
struct PathParameters {
#[command(flatten)]
user: UserInput,
}
#[derive(Args)]
#[group(required = true, multiple = false)]
struct UserInput {
#[arg(long, help_heading = "Path parameters", value_name = "USER_NAME")]
user_name: Option<String>,
#[arg(long, help_heading = "Path parameters", value_name = "USER_ID")]
user_id: Option<String>,
#[arg(long, help_heading = "Path parameters", action = clap::ArgAction::SetTrue)]
current_user: bool,
}
#[derive(Args, Clone)]
struct ApplicationCredential {
#[arg(action=clap::ArgAction::Append, help_heading = "Body parameters", long, value_name="JSON", value_parser=crate::common::parse_json)]
access_rules: Option<Vec<Value>>,
#[arg(help_heading = "Body parameters", long)]
description: Option<String>,
#[arg(help_heading = "Body parameters", long, action = clap::ArgAction::SetTrue, conflicts_with = "description")]
no_description: bool,
#[arg(help_heading = "Body parameters", long)]
expires_at: Option<String>,
#[arg(help_heading = "Body parameters", long, action = clap::ArgAction::SetTrue, conflicts_with = "expires_at")]
no_expires_at: bool,
#[arg(help_heading = "Body parameters", long)]
id: Option<String>,
#[arg(help_heading = "Body parameters", long)]
name: String,
#[arg(help_heading = "Body parameters", long)]
project_id: Option<String>,
#[arg(action=clap::ArgAction::Append, help_heading = "Body parameters", long, value_name="JSON", value_parser=crate::common::parse_json)]
roles: Option<Vec<Value>>,
#[arg(help_heading = "Body parameters", long)]
secret: Option<String>,
#[arg(help_heading = "Body parameters", long, action = clap::ArgAction::SetTrue, conflicts_with = "secret")]
no_secret: bool,
#[arg(help_heading = "Body parameters", long)]
system: Option<String>,
#[arg(help_heading = "Body parameters", long, action = clap::ArgAction::SetTrue, conflicts_with = "system")]
no_system: bool,
#[arg(action=clap::ArgAction::Set, help_heading = "Body parameters", long)]
unrestricted: Option<Option<bool>>,
}
impl ApplicationCredentialCommand {
pub async fn take_action(
&self,
parsed_args: &Cli,
client: &mut AsyncOpenStack,
) -> Result<(), OpenStackCliError> {
info!("Create ApplicationCredential");
let op = OutputProcessor::from_args(
parsed_args,
Some("identity.user/application_credential"),
Some("create"),
);
op.validate_args(parsed_args)?;
let mut ep_builder = create::Request::builder();
if let Some(id) = &self.path.user.user_id {
ep_builder.user_id(id);
} else if let Some(name) = &self.path.user.user_name {
let mut sub_find_builder = find_user::Request::builder();
warn!(
"Querying user by name (because of `--user-name` parameter passed) may not be definite. This may fail in which case parameter `--user-id` should be used instead."
);
sub_find_builder.id(name);
let find_ep = sub_find_builder
.build()
.map_err(|x| OpenStackCliError::EndpointBuild(x.to_string()))?;
let find_data: serde_json::Value = find_by_name(find_ep).query_async(client).await?;
match find_data.get("id") {
Some(val) => match val.as_str() {
Some(id_str) => {
ep_builder.user_id(id_str.to_owned());
}
None => {
return Err(OpenStackCliError::ResourceAttributeNotString(
serde_json::to_string(&val)?,
));
}
},
None => {
return Err(OpenStackCliError::ResourceAttributeMissing(
"id".to_string(),
));
}
};
} else if self.path.user.current_user {
ep_builder.user_id(
client
.get_auth_info()
.ok_or_eyre("Cannot determine current authentication information")?
.token
.user
.id,
);
}
let args = &self.application_credential;
let mut application_credential_builder = create::ApplicationCredentialBuilder::default();
if let Some(val) = &args.access_rules {
let access_rules_builder: Vec<create::AccessRules> = val
.iter()
.flat_map(|v| serde_json::from_value::<create::AccessRules>(v.to_owned()))
.collect::<Vec<create::AccessRules>>();
application_credential_builder.access_rules(access_rules_builder);
}
if let Some(val) = &args.description {
application_credential_builder.description(Some(val.into()));
} else if args.no_description {
application_credential_builder.description(None);
}
if let Some(val) = &args.expires_at {
application_credential_builder.expires_at(Some(val.into()));
} else if args.no_expires_at {
application_credential_builder.expires_at(None);
}
if let Some(val) = &args.id {
application_credential_builder.id(val);
}
application_credential_builder.name(&args.name);
if let Some(val) = &args.project_id {
application_credential_builder.project_id(val);
}
if let Some(val) = &args.roles {
let roles_builder: Vec<create::Roles> = val
.iter()
.flat_map(|v| serde_json::from_value::<create::Roles>(v.to_owned()))
.collect::<Vec<create::Roles>>();
application_credential_builder.roles(roles_builder);
}
if let Some(val) = &args.secret {
application_credential_builder.secret(Some(val.into()));
} else if args.no_secret {
application_credential_builder.secret(None);
}
if let Some(val) = &args.system {
application_credential_builder.system(Some(val.into()));
} else if args.no_system {
application_credential_builder.system(None);
}
if let Some(val) = &args.unrestricted {
application_credential_builder.unrestricted(*val);
}
ep_builder.application_credential(
application_credential_builder
.build()
.wrap_err("error preparing the request data")?,
);
let ep = ep_builder
.build()
.map_err(|x| OpenStackCliError::EndpointBuild(x.to_string()))?;
let data = ep.query_async(client).await?;
op.output_single::<ApplicationCredentialResponse>(data)?;
op.show_command_hint()?;
Ok(())
}
}