2 * Copyright (c) 2019 Ericsson India Global Services Pvt Ltd. and others. All rights reserved.
4 * This program and the accompanying materials are made available under the
5 * terms of the Eclipse Public License v1.0 which accompanies this distribution,
6 * and is available at http://www.eclipse.org/legal/epl-v10.html
8 package org.opendaylight.netvirt.neutronvpn;
10 import static org.opendaylight.controller.md.sal.binding.api.WriteTransaction.CREATE_MISSING_PARENTS;
11 import static org.opendaylight.genius.infra.Datastore.CONFIGURATION;
13 import java.util.ArrayList;
14 import java.util.Collections;
16 import javax.annotation.PostConstruct;
17 import javax.inject.Inject;
18 import javax.inject.Singleton;
20 import org.opendaylight.controller.md.sal.binding.api.DataBroker;
21 import org.opendaylight.controller.md.sal.common.api.data.LogicalDatastoreType;
22 import org.opendaylight.genius.datastoreutils.AsyncDataTreeChangeListenerBase;
23 import org.opendaylight.genius.infra.ManagedNewTransactionRunner;
24 import org.opendaylight.genius.infra.ManagedNewTransactionRunnerImpl;
25 import org.opendaylight.infrautils.jobcoordinator.JobCoordinator;
26 import org.opendaylight.yang.gen.v1.urn.ietf.params.xml.ns.yang.ietf.access.control.list.rev160218.AccessLists;
27 import org.opendaylight.yang.gen.v1.urn.ietf.params.xml.ns.yang.ietf.access.control.list.rev160218.access.lists.Acl;
28 import org.opendaylight.yang.gen.v1.urn.ietf.params.xml.ns.yang.ietf.access.control.list.rev160218.access.lists.AclBuilder;
29 import org.opendaylight.yang.gen.v1.urn.ietf.params.xml.ns.yang.ietf.access.control.list.rev160218.access.lists.AclKey;
30 import org.opendaylight.yang.gen.v1.urn.ietf.params.xml.ns.yang.ietf.access.control.list.rev160218.access.lists.acl.AccessListEntriesBuilder;
31 import org.opendaylight.yang.gen.v1.urn.opendaylight.netvirt.aclservice.rev160608.AclserviceAugmentation;
32 import org.opendaylight.yang.gen.v1.urn.opendaylight.netvirt.aclservice.rev160608.AclserviceAugmentationBuilder;
33 import org.opendaylight.yang.gen.v1.urn.opendaylight.neutron.rev150712.Neutron;
34 import org.opendaylight.yang.gen.v1.urn.opendaylight.neutron.secgroups.rev150712.security.groups.attributes.SecurityGroups;
35 import org.opendaylight.yang.gen.v1.urn.opendaylight.neutron.secgroups.rev150712.security.groups.attributes.security.groups.SecurityGroup;
36 import org.opendaylight.yangtools.yang.binding.InstanceIdentifier;
37 import org.slf4j.Logger;
38 import org.slf4j.LoggerFactory;
41 public class NeutronSecurityGroupListener
42 extends AsyncDataTreeChangeListenerBase<SecurityGroup, NeutronSecurityGroupListener> {
43 private static final Logger LOG = LoggerFactory.getLogger(NeutronSecurityGroupListener.class);
44 private final DataBroker dataBroker;
45 private final ManagedNewTransactionRunner txRunner;
46 private final JobCoordinator jobCoordinator;
47 private final NeutronSecurityGroupUtils neutronSecurityGroupUtils;
50 public NeutronSecurityGroupListener(DataBroker dataBroker, JobCoordinator jobCoordinator,
51 final NeutronSecurityGroupUtils neutronSecurityGroupUtils) {
52 super(SecurityGroup.class, NeutronSecurityGroupListener.class);
53 this.dataBroker = dataBroker;
54 this.jobCoordinator = jobCoordinator;
55 this.txRunner = new ManagedNewTransactionRunnerImpl(dataBroker);
56 this.neutronSecurityGroupUtils = neutronSecurityGroupUtils;
62 LOG.info("{} init", getClass().getSimpleName());
63 neutronSecurityGroupUtils.createAclIdPool();
64 registerListener(LogicalDatastoreType.CONFIGURATION, dataBroker);
68 protected InstanceIdentifier<SecurityGroup> getWildCardPath() {
69 return InstanceIdentifier.create(Neutron.class).child(SecurityGroups.class).child(SecurityGroup.class);
73 protected void remove(InstanceIdentifier<SecurityGroup> key, SecurityGroup securityGroup) {
74 LOG.trace("Removing securityGroup: {}", securityGroup);
75 InstanceIdentifier<Acl> identifier = getAclInstanceIdentifier(securityGroup);
76 String securityGroupId = securityGroup.key().getUuid().getValue();
77 jobCoordinator.enqueueJob(securityGroupId, () -> {
78 neutronSecurityGroupUtils.releaseAclTag(securityGroupId);
79 return Collections.singletonList(txRunner.callWithNewWriteOnlyTransactionAndSubmit(CONFIGURATION,
80 tx -> tx.delete(identifier)));
85 protected void update(InstanceIdentifier<SecurityGroup> key, SecurityGroup dataObjectModificationBefore,
86 SecurityGroup dataObjectModificationAfter) {
87 LOG.debug("Do nothing");
91 protected void add(InstanceIdentifier<SecurityGroup> instanceIdentifier, SecurityGroup securityGroup) {
92 LOG.trace("Adding securityGroup: {}", securityGroup);
93 String securityGroupId = securityGroup.key().getUuid().getValue();
94 InstanceIdentifier<Acl> identifier = getAclInstanceIdentifier(securityGroup);
95 jobCoordinator.enqueueJob(securityGroupId, () -> {
96 Integer aclTag = neutronSecurityGroupUtils.allocateAclTag(securityGroupId);
97 Acl acl = toAclBuilder(securityGroup, aclTag).build();
98 return Collections.singletonList(txRunner.callWithNewWriteOnlyTransactionAndSubmit(CONFIGURATION,
99 tx -> tx.put(identifier, acl, CREATE_MISSING_PARENTS)));
104 protected NeutronSecurityGroupListener getDataTreeChangeListener() {
108 private InstanceIdentifier<Acl> getAclInstanceIdentifier(SecurityGroup securityGroup) {
109 return InstanceIdentifier
110 .builder(AccessLists.class).child(Acl.class,
111 new AclKey(securityGroup.key().getUuid().getValue(), NeutronSecurityGroupConstants.ACLTYPE))
115 private AclBuilder toAclBuilder(SecurityGroup securityGroup, Integer aclTag) {
116 AclBuilder aclBuilder = new AclBuilder();
117 aclBuilder.setAclName(securityGroup.key().getUuid().getValue());
118 aclBuilder.setAclType(NeutronSecurityGroupConstants.ACLTYPE);
119 aclBuilder.setAccessListEntries(new AccessListEntriesBuilder().setAce(new ArrayList<>()).build());
120 if (aclTag != NeutronSecurityGroupConstants.INVALID_ACL_TAG) {
121 AclserviceAugmentationBuilder aclserviceAugmentationBuilder = new AclserviceAugmentationBuilder();
122 aclserviceAugmentationBuilder.setAclTag(aclTag);
123 aclBuilder.addAugmentation(AclserviceAugmentation.class, aclserviceAugmentationBuilder.build());