4 from routes import Mapper
12 from invirt.config import structs as config
13 from invirt import database
15 realpath = "/home/machines/"
17 class ConsoleFS(routefs.RouteFS):
19 ConsoleFS creates a series of subdirectories each mirroring the same real
20 directory, except for a single file - the .k5login - which is dynamically
21 generated for each subdirectory
24 def __init__(self, *args, **kw):
25 """Initialize the filesystem and set it to allow_other access besides
26 the user who mounts the filesystem (i.e. root)
28 super(ConsoleFS, self).__init__(*args, **kw)
29 self.lasttime = time()
30 self.fuse_args.add("allow_other", True)
32 openlog('sipb-xen-consolefs ', LOG_PID, LOG_DAEMON)
34 syslog(LOG_DEBUG, 'Init complete.')
38 m.connect('', controller='getMachines')
39 m.connect(':machine', controller='getMirror')
40 m.connect(':machine/.k5login', controller='getK5login')
41 m.connect(':machine/*(path)', controller='getMirror')
44 def getMachines(self, **kw):
45 """Get the list of VMs in the database, clearing the cache if it's
46 older than 15 seconds"""
47 if time() - self.lasttime > 15:
48 self.lasttime = time()
49 database.clear_cache()
50 return [machine.name for machine in database.Machine.query()]
52 def getMirror(self, machine, path='', **kw):
53 """Translate the path into its realpath equivalent, and return that
55 real = realpath + path
56 if os.path.isdir(real):
57 # The list is converted to a set so that we can handle the case
58 # where there is already a .k5login in the realpath gracefully
59 return routefs.Directory(set(os.listdir(real) + ['.k5login']))
60 elif os.path.islink(real):
61 return routefs.Symlink(os.readlink(real))
62 elif os.path.isfile(real):
63 return open(real).read()
67 def getK5login(self, machine, **kw):
68 """Build the ACL for a machine and turn it into a .k5login file
70 machine = database.Machine.query().filter_by(name=machine).one()
71 users = [acl.user for acl in machine.acl]
72 return "\n".join(map(self.userToPrinc, users) + [''])
74 def mirrorPath(self, path):
75 """Translate a virtual path to its real path counterpart"""
76 return realpath + "/".join(getParts(path)[1:])
78 def userToPrinc(self, user):
79 """Convert Kerberos v4-style names to v5-style and append a default
80 realm if none is specified
83 (princ, realm) = user.split('@')
86 realm = config.authn[0].realm
88 return princ.replace('.', '/') + '@' + realm
90 if __name__ == '__main__':
92 routefs.main(ConsoleFS)