-
Notifications
You must be signed in to change notification settings - Fork 54
/
cfspace_validator.go
105 lines (83 loc) · 3.53 KB
/
cfspace_validator.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
package workloads
import (
"context"
"fmt"
"strings"
korifiv1alpha1 "code.cloudfoundry.org/korifi/controllers/api/v1alpha1"
"code.cloudfoundry.org/korifi/controllers/webhooks"
apierrors "k8s.io/apimachinery/pkg/api/errors"
"k8s.io/apimachinery/pkg/runtime"
ctrl "sigs.k8s.io/controller-runtime"
logf "sigs.k8s.io/controller-runtime/pkg/log"
"sigs.k8s.io/controller-runtime/pkg/webhook"
)
const (
CFSpaceEntityType = "cfspace"
// Note: the cf cli expects the specific text `Name must be unique per organization` in the error and ignores the error if it matches it.
duplicateSpaceNameErrorMessage = "Space '%s' already exists. Name must be unique per organization."
)
var spaceLogger = logf.Log.WithName("cfspace-validate")
//+kubebuilder:webhook:path=/validate-korifi-cloudfoundry-org-v1alpha1-cfspace,mutating=false,failurePolicy=fail,sideEffects=None,groups=korifi.cloudfoundry.org,resources=cfspaces,verbs=create;update;delete,versions=v1alpha1,name=vcfspace.korifi.cloudfoundry.org,admissionReviewVersions={v1,v1beta1}
type CFSpaceValidator struct {
duplicateValidator webhooks.NameValidator
placementValidator webhooks.NamespaceValidator
}
var _ webhook.CustomValidator = &CFSpaceValidator{}
func NewCFSpaceValidator(duplicateSpaceValidator webhooks.NameValidator, placementValidator webhooks.NamespaceValidator) *CFSpaceValidator {
return &CFSpaceValidator{
duplicateValidator: duplicateSpaceValidator,
placementValidator: placementValidator,
}
}
func (v *CFSpaceValidator) SetupWebhookWithManager(mgr ctrl.Manager) error {
return ctrl.NewWebhookManagedBy(mgr).
For(&korifiv1alpha1.CFSpace{}).
WithValidator(v).
Complete()
}
func (v *CFSpaceValidator) ValidateCreate(ctx context.Context, obj runtime.Object) error {
space, ok := obj.(*korifiv1alpha1.CFSpace)
if !ok {
return apierrors.NewBadRequest(fmt.Sprintf("expected a CFSpace but got a %T", obj))
}
duplicateErrorMessage := fmt.Sprintf(duplicateSpaceNameErrorMessage, space.Spec.DisplayName)
validationErr := v.duplicateValidator.ValidateCreate(ctx, spaceLogger, space.Namespace, strings.ToLower(space.Spec.DisplayName), duplicateErrorMessage)
if validationErr != nil {
return validationErr.ExportJSONError()
}
err := v.placementValidator.ValidateSpaceCreate(*space)
if err != nil {
return err.ExportJSONError()
}
return nil
}
func (v *CFSpaceValidator) ValidateUpdate(ctx context.Context, oldObj, obj runtime.Object) error {
space, ok := obj.(*korifiv1alpha1.CFSpace)
if !ok {
return apierrors.NewBadRequest(fmt.Sprintf("expected a CFSpace but got a %T", obj))
}
if !space.GetDeletionTimestamp().IsZero() {
return nil
}
oldSpace, ok := oldObj.(*korifiv1alpha1.CFSpace)
if !ok {
return apierrors.NewBadRequest(fmt.Sprintf("expected a CFSpace but got a %T", obj))
}
duplicateErrorMessage := fmt.Sprintf(duplicateSpaceNameErrorMessage, space.Spec.DisplayName)
validationErr := v.duplicateValidator.ValidateUpdate(ctx, spaceLogger, oldSpace.Namespace, strings.ToLower(oldSpace.Spec.DisplayName), strings.ToLower(space.Spec.DisplayName), duplicateErrorMessage)
if validationErr != nil {
return validationErr.ExportJSONError()
}
return nil
}
func (v *CFSpaceValidator) ValidateDelete(ctx context.Context, obj runtime.Object) error {
space, ok := obj.(*korifiv1alpha1.CFSpace)
if !ok {
return apierrors.NewBadRequest(fmt.Sprintf("expected a CFSpace but got a %T", obj))
}
validationErr := v.duplicateValidator.ValidateDelete(ctx, spaceLogger, space.Namespace, space.Spec.DisplayName)
if validationErr != nil {
return validationErr.ExportJSONError()
}
return nil
}