deployments.py 21.2 KB
Newer Older
Lukas Burgey's avatar
Lukas Burgey committed
1
2
3
4
5
6

from json import dumps
from logging import getLogger

from django.conf import settings
from django.db import models
7
from django.db.models import Q
Lukas Burgey's avatar
Lukas Burgey committed
8
9
10
11
12
from django_mysql.models import JSONField
from polymorphic.models import PolymorphicModel

from feudal.backend.auth.v1.models.vo import VO

13
from . import Site, Service, brokers
Lukas Burgey's avatar
Lukas Burgey committed
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
from .users import User, SSHPublicKey


LOGGER = getLogger(__name__)


DEPLOYMENT_PENDING = 'deployment_pending'
REMOVAL_PENDING = 'removal_pending'
NOT_DEPLOYED = 'not_deployed'
DEPLOYED = 'deployed'
QUESTIONNAIRE = 'questionnaire'
FAILED = 'failed'
REJECTED = 'rejected'

TARGET_CHOICES = (
    (DEPLOYED, 'Deployed'),
    (NOT_DEPLOYED, 'Not Deployed'),
)
STATE_CHOICES = (
    (DEPLOYMENT_PENDING, 'VODeployment Pending'),
    (REMOVAL_PENDING, 'Removal Pending'),
    (DEPLOYED, 'Deployed'),
    (NOT_DEPLOYED, 'Not Deployed'),
    (QUESTIONNAIRE, 'Questionnaire'),
    (FAILED, 'Failed'),
    (REJECTED, 'Rejected'),
)


def questionnaire_default():
    return {}


def credential_default():
    return {}


51
52
53
54
55
56
57
58
59
60
61
62
63
def get_deployment(user, vo=None, service=None):
    if vo is not None and service is not None:
        raise ValueError('Cannot create deployment for both vo and service')

    if vo is not None:
        return VODeployment.get_deployment(user, vo)

    if service is not None:
        return ServiceDeployment.get_deployment(user, service)

    raise ValueError('Need vo or service to create deployment')


Lukas Burgey's avatar
Lukas Burgey committed
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
class Deployment(PolymorphicModel):
    user = models.ForeignKey(
        User,
        related_name='deployments',
        on_delete=models.CASCADE,
    )

    # which state do we currently want to reach?
    state_target = models.CharField(
        max_length=50,
        choices=TARGET_CHOICES,
        default=NOT_DEPLOYED,
    )

    is_active = models.BooleanField(
        default=True,
    )

    # credentials provided by the backend to the clients
    @property
    def credentials(self):
        return self.user.credentials

    @property
    def state(self):
89
        if self.states.exists():
Lukas Burgey's avatar
Lukas Burgey committed
90
            _state = ''
91
            for state in self.states.all():
Lukas Burgey's avatar
Lukas Burgey committed
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
                if _state == '':
                    _state = state.state
                elif _state != state.state:
                    return 'mixed'

            return _state

        # if we have no states we have nothing to do
        return self.state_target

    @property
    def target_reached(self):
        return self.state_target == self.state

    def _set_target(self, target):
107
108
        if str(self.state_target) == str(target):
            return
109

110
        LOGGER.debug(self.msg('Target: {} -> {} '.format(self.state_target, target)))
Lukas Burgey's avatar
Lukas Burgey committed
111

112
        self.state_target = target
Lukas Burgey's avatar
Lukas Burgey committed
113
114
        self.save()

115
        self.publish_to_user()
116
117

    # Deployment.user_deploy
Lukas Burgey's avatar
Lukas Burgey committed
118
    def user_deploy(self):
119
120
121
122
123
        LOGGER.debug(self.msg('user_deploy'))
        self._set_target(DEPLOYED)

        # states which are not DEPLOYED
        for item in self.states.filter(~Q(state=DEPLOYED)):
Lukas Burgey's avatar
Lukas Burgey committed
124
125
            item.user_deploy()

126
        self.publish_to_client()
127
128

    # Deployment.user_remove
Lukas Burgey's avatar
Lukas Burgey committed
129
    def user_remove(self):
130
        LOGGER.debug(self.msg('user_remove'))
131

Lukas Burgey's avatar
Lukas Burgey committed
132
        self._set_target(NOT_DEPLOYED)
133
134
135

        # states which are not NOT_DEPLOYED
        for item in self.states.filter(~Q(state=NOT_DEPLOYED)):
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
            item.user_remove()

        # we always publish to the client
        # ATTENTION! This may cause removals of Services which are wanted by other deployments!
        # These will be deployed again when their DepState realises the error
        self.publish_to_client()

        # this did not make sense
        # # we only publish to the clients if allowed
        # # we are not allowed to publish a removal if another deployment for our
        # # DeploymentStates exists and has the target DEPLOYED
        # if can_publish:
        #     self.publish()
        # else:
        #     self.publish_to_user()
Lukas Burgey's avatar
Lukas Burgey committed
151
152

    def user_credential_added(self, key):
153
        for item in self.states.all():
Lukas Burgey's avatar
Lukas Burgey committed
154
155
156
157
158
            item.user_credential_added(key)

        self.publish()

    def user_credential_removed(self, key):
159
        for item in self.states.all():
Lukas Burgey's avatar
Lukas Burgey committed
160
161
162
163
164
            item.user_credential_removed(key)

        self.publish()

    def publish_to_client(self):
Lukas Burgey's avatar
Lukas Burgey committed
165
        if settings.DEBUG_PUBLISHING:
166
            LOGGER.debug(self.msg('publish_to_client: {}'.format(self.state_target)))
167

168
169
170
        from .serializers import clients
        data = clients.DeploymentSerializer(self).data
        msg = dumps(data)
Lukas Burgey's avatar
Lukas Burgey committed
171

172
        brokers.RabbitMQInstance.load().publish(
173
174
175
            self,
            msg,
        )
Lukas Burgey's avatar
Lukas Burgey committed
176
177
178
179
180
181

    # sends a state update via RabbitMQ / STOMP to the users webpage instance
    def publish_to_user(self):
        if self.user is None:
            return

Lukas Burgey's avatar
Lukas Burgey committed
182
        if settings.DEBUG_PUBLISHING:
183
            LOGGER.debug(self.msg('publish_to_user: {}'.format(self.state_target)))
184

185
        brokers.publish_to_user(
Lukas Burgey's avatar
Lukas Burgey committed
186
            self.user,
187
188
189
            {
                'deployment': self,
            },
Lukas Burgey's avatar
Lukas Burgey committed
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
        )

    def publish(self):
        self.publish_to_user()
        self.publish_to_client()

    def msg(self, msg):
        return '{} - {}'.format(self, msg)

    def __str__(self):
        return 'Abstr. Deployment:({})#{}'.format(
            self.user,
            self.id,
        )


class VODeployment(Deployment):
    vo = models.ForeignKey(
        VO,
        related_name='vo_deployments',
        on_delete=models.CASCADE,
    )

    @property
    def services(self):
        return self.vo.services.all()

217
218
219
220
221
222
223
224
    @property
    def broker_exchange(self):
        return self.vo.broker_exchange

    @property
    def routing_key(self):
        return self.vo.name

225
    def create_states(self):
Lukas Burgey's avatar
Lukas Burgey committed
226
227
        for service in self.services:
            DeploymentState.get_state_item(
228
229
230
                self.user,
                service.site,
                service,
231
                deployments=[self],
Lukas Burgey's avatar
Lukas Burgey committed
232
233
234
235
236
237
238
239
240
            )

    @classmethod
    def get_deployment(cls, user, vo):
        try:
            deployment = cls.objects.get(
                user=user,
                vo=vo,
            )
241
            deployment.create_states()
Lukas Burgey's avatar
Lukas Burgey committed
242
243
244
245
246
247
248
249
250
251

            return deployment

        except cls.DoesNotExist:
            deployment = cls(
                user=user,
                vo=vo,
            )

            deployment.save()
252
            deployment.create_states()
Lukas Burgey's avatar
Lukas Burgey committed
253

254
            LOGGER.debug(deployment.msg('Created'))
Lukas Burgey's avatar
Lukas Burgey committed
255
256
257
258
259
            return deployment

    def service_added(self, service):
        LOGGER.debug(self.msg('Adding service {}'.format(service)))
        item = DeploymentState.get_state_item(
260
261
262
            self.user,
            service.site,
            service,
263
            deployments=[self],
Lukas Burgey's avatar
Lukas Burgey committed
264
        )
265
        if str(self.state_target) == 'deployed':
Lukas Burgey's avatar
Lukas Burgey committed
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
            item.user_deploy()

    def service_removed(self, service):
        LOGGER.debug(self.msg('Removing service {}'.format(service)))
        LOGGER.debug('TODO implement service removal')

    def msg(self, msg):
        return '{} - {}'.format(self, msg)

    def __str__(self):
        return 'VO-Dep: ({}:{})#{}'.format(
            self.vo,
            self.user,
            self.id,
        )


class ServiceDeployment(Deployment):
    service = models.ForeignKey(
        Service,
        related_name='service_deployments',
        on_delete=models.CASCADE,
    )

290
291
292
293
294
295
296
297
    @property
    def broker_exchange(self):
        return 'services'

    @property
    def routing_key(self):
        return self.service.name

Lukas Burgey's avatar
Lukas Burgey committed
298
299
    def create_state_item(self):
        DeploymentState.get_state_item(
300
301
302
            self.user,
            self.service.site,
            self.service,
303
            deployments=[self],
Lukas Burgey's avatar
Lukas Burgey committed
304
305
306
307
308
309
310
311
312
        )

    @classmethod
    def get_deployment(cls, user, service):
        try:
            deployment = cls.objects.get(
                user=user,
                service=service,
            )
313
            deployment.create_state_item()
Lukas Burgey's avatar
Lukas Burgey committed
314
315
316
317
318
319
320
321
322
323
324
325

            return deployment

        except cls.DoesNotExist:
            deployment = cls(
                user=user,
                service=service
            )

            deployment.save()
            deployment.create_state_item()

326
            LOGGER.debug(deployment.msg('Created'))
Lukas Burgey's avatar
Lukas Burgey committed
327
328
329
330
331
332
333
334
335
336
337
338
339
340
            return deployment

    def msg(self, msg):
        return '{} - {}'.format(self, msg)

    def __str__(self):
        return 'Service-Dep: ({}:{})#{}'.format(
            self.service,
            self.user,
            self.id,
        )


class DeploymentState(models.Model):
341
    deployments = models.ManyToManyField(
Lukas Burgey's avatar
Lukas Burgey committed
342
        Deployment,
343
        related_name='states',
Lukas Burgey's avatar
Lukas Burgey committed
344
345
346
347
    )

    user = models.ForeignKey(
        User,
348
        related_name='states',
Lukas Burgey's avatar
Lukas Burgey committed
349
350
351
352
353
354
355
        on_delete=models.SET_NULL,
        blank=True,
        null=True,
    )

    site = models.ForeignKey(
        Site,
356
        related_name='states',
Lukas Burgey's avatar
Lukas Burgey committed
357
358
359
360
361
        on_delete=models.CASCADE,
    )

    service = models.ForeignKey(
        Service,
362
        related_name='states',
Lukas Burgey's avatar
Lukas Burgey committed
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
        on_delete=models.CASCADE,
    )

    state = models.CharField(
        max_length=50,
        choices=STATE_CHOICES,
        default=NOT_DEPLOYED,
    )

    # message for the user
    message = models.TextField(
        max_length=300,
        default='',
    )

    # questions for the user (needed for deployment
    questionnaire = JSONField(
        default=questionnaire_default,
        null=True,
        blank=True,
    )

    # credentials for the service
    # only valid when state == deployed
    credentials = JSONField(
        default=credential_default,
        null=True,
        blank=True,
    )

393
394
395
396
397
398
399
400
    @property
    def state_target(self):
        for deployment in self.deployments.all():
            if deployment.state_target == DEPLOYED:
                return DEPLOYED

        return NOT_DEPLOYED

Lukas Burgey's avatar
Lukas Burgey committed
401
402
403
404
    @property
    def is_pending(self):
        # TODO
        # pending because we are orphaned -> pending until removed everywhere
405
        if not self.deployments.exists():
Lukas Burgey's avatar
Lukas Burgey committed
406
407
408
            return True

        # pending because the state target is not reached
409
        if self.state_target != self.state:
Lukas Burgey's avatar
Lukas Burgey committed
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
            return True

        return False

    @property
    def is_credential_pending(self):
        for credential_state in self.credential_states.all():
            if credential_state.is_pending:
                return True
        return False

    @property
    def user_credentials(self):
        return self.user.credentials

    @classmethod
426
    def get_state_item(cls, user, site, service, deployments=[]):
Lukas Burgey's avatar
Lukas Burgey committed
427
428
429
430
431
432
        try:
            item = cls.objects.get(
                user=user,
                site=site,
                service=service,
            )
433
434
435
436
437
438

            for deployment in deployments:
                if not item.deployments.filter(id=deployment.id).exists():
                    LOGGER.debug(item.msg('Binding to deployment {}'.format(deployment)))
                    item.deployments.add(deployment)

Lukas Burgey's avatar
Lukas Burgey committed
439
440
441
442
443
444
445
446
447
            return item

        except cls.DoesNotExist:
            item = cls(
                user=user,
                site=site,
                service=service,
            )
            item.save()
448
449
            for deployment in deployments:
                item.deployments.add(deployment)
Lukas Burgey's avatar
Lukas Burgey committed
450

451
            LOGGER.debug(item.msg('Created'))
Lukas Burgey's avatar
Lukas Burgey committed
452
453
454
455
456
            return item

    # starts tracking this the credential for this item
    def user_credential_added(self, credential):
        if settings.DEBUG_CREDENTIALS:
457
            LOGGER.debug(self.msg('Adding credential {}'.format(credential.name)))
Lukas Burgey's avatar
Lukas Burgey committed
458
459
460
461
462
463
464
465

        CredentialState.get_credential_state(
            credential,
            self,
        )

    def user_credential_removed(self, credential):
        if settings.DEBUG_CREDENTIALS:
466
            LOGGER.debug(self.msg('Removing credential {}'.format(credential.name)))
Lukas Burgey's avatar
Lukas Burgey committed
467
468
469
470
471
472
473
474
475
476

        try:
            credential_state = self.credential_states.get(credential=credential)
            credential_state.credential_deleted()

        except CredentialState.DoesNotExist:
            LOGGER.error(self.msg('Credential {} has no CredentialState'.format(credential)))

    # STATE TRANSITIONS

477
    # DeploymentState.user_deploy
Lukas Burgey's avatar
Lukas Burgey committed
478
    def user_deploy(self):
479
480
481
482
483
484
485
        LOGGER.debug(self.msg('user_deploy'))

        self._assure_credential_states_exist()
        for cred_state in self.credential_states.all():
            cred_state.set_target(DEPLOYED)

        if str(self.state) == REMOVAL_PENDING:
Lukas Burgey's avatar
Lukas Burgey committed
486
487
488
            self._set_state(DEPLOYED)
            return

489
490
        if str(self.state) == DEPLOYED:
            LOGGER.debug(self.msg('State: already deployed'))
Lukas Burgey's avatar
Lukas Burgey committed
491
492
            return

493
        self._set_state(DEPLOYMENT_PENDING)
Lukas Burgey's avatar
Lukas Burgey committed
494

495
496
    # DeploymentState.user_remove
    # returns True if no other deployment needs this state_item to be deployed
Lukas Burgey's avatar
Lukas Burgey committed
497
    def user_remove(self):
498
499
500
501
502
        if str(self.state_target) == DEPLOYED:
            LOGGER.debug(self.msg('user_remove: Not removing: another deployment has target deployed'))

            # False: signal the callee that a publish_to_client is *not* permitted
            return False
Lukas Burgey's avatar
Lukas Burgey committed
503

504
505
506
507
508
509
510
511
512
513
514
515
        LOGGER.debug(self.msg('user_remove'))

        for cred_state in self.credential_states.all():
            cred_state.set_target(NOT_DEPLOYED)

        if str(self.state) == NOT_DEPLOYED:
            LOGGER.debug(self.msg('State: already not_deployed'))

        elif (
                self.state_target == DEPLOYED
                and (self.state == FAILED
                     or self.state == REJECTED)
Lukas Burgey's avatar
Lukas Burgey committed
516
517
        ):
            self._reset()
518
            self._set_state(NOT_DEPLOYED)
Lukas Burgey's avatar
Lukas Burgey committed
519

520
        elif (
Lukas Burgey's avatar
Lukas Burgey committed
521
522
523
                self.state == DEPLOYMENT_PENDING
                or self.state == QUESTIONNAIRE
        ):
524
            self._set_state(NOT_DEPLOYED, publish=True)
Lukas Burgey's avatar
Lukas Burgey committed
525

526
527
        else:
            # default: start the removal process
528
            self._set_state(REMOVAL_PENDING)
529
530
531

        # True: signal the callee that a publish_to_client is permitted
        return True
Lukas Burgey's avatar
Lukas Burgey committed
532
533
534

    # user: questionnaire answered
    def user_answers(self, answers=None):
535
536
        if not self.deployments.exists():
            LOGGER.error('user_remove: no deployments')
Lukas Burgey's avatar
Lukas Burgey committed
537
538
539
            return

        self.questionnaire = answers
540
        self._set_state(DEPLOYMENT_PENDING)
541
        self.publish_to_client()
Lukas Burgey's avatar
Lukas Burgey committed
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557

    def client_credential_states(self, credential_states):
        # maps ssh key names to their state
        ssh_key_states = credential_states.get('ssh_key', None)

        # ASSUMPTION:
        # if we hear nothing about a credential we assume it got deprovisioned!
        for credential_state in self.credential_states.all():
            if (
                    ssh_key_states is not None
                    and credential_state.credential.name in ssh_key_states
            ):
                credential_state.set(ssh_key_states[credential_state.credential.name])
            else:
                credential_state.set(NOT_DEPLOYED)

558
    # client_response returns None on success, or a string describing an error
Lukas Burgey's avatar
Lukas Burgey committed
559
    def client_response(self, output):
560
561
562
563
564
565
566

        if 'state' not in output:
            return 'field "state" is missing in output'

        state = output.get('state', '')
        LOGGER.debug(self.msg('Client response: {}'.format(state)))

Lukas Burgey's avatar
Lukas Burgey committed
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
        credential_states = output.get('user_credential_states', None)
        if credential_states is not None:
            self.client_credential_states(credential_states)

        self.message = output.get('message', '')

        # update values
        if state == DEPLOYED:
            self.credentials = output.get('credentials', {})
            self.save()

        elif state == NOT_DEPLOYED:
            # reset credentials and questionnaire
            self._reset()
            self.save()

        elif state == QUESTIONNAIRE:
            self.questionnaire = output.get('questionnaire', {})
            self.save()
        elif state == REJECTED:
            pass
        elif state == FAILED:
            pass
        else:
591
592
            return 'unknown state "{}"'.format(state)

593
594
595
596
597
598
        # _set_state does not always save!
        self.save()

        # publish after we updated the values of the response
        self._set_state(state, publish=True)

599
        # is the target reached now?
600
        if str(self.state_target) != str(self.state):
601
602
603
604
            LOGGER.debug(self.msg('Target {} still not reached. Publishing again'.format(
                self.state_target,
            )))
            self.publish_to_client()
Lukas Burgey's avatar
Lukas Burgey committed
605
606
607
608
609
610
611
612
613

        return None

    # resets all client sent values
    def _reset(self):
        self.credentials = credential_default()
        self.questionnaire = questionnaire_default()
        self.message = ''

614
    def _assure_credential_states_exist(self):
Lukas Burgey's avatar
Lukas Burgey committed
615
616
617
618
619
620
621
622
623
624
625
        # assure all user credentials have a state
        if self.user is not None:
            for key in self.user.ssh_keys.all():
                try:
                    CredentialState.get_credential_state(
                        credential=key,
                        target=self,
                    )
                except CredentialState.DoesNotExist:
                    LOGGER.error('CredentialState.DoesNotExist in _set_state')

626
    def _set_state(self, state, publish=False):
627
628
        self._assure_credential_states_exist()

629
        # not trans
630
        if str(self.state) == str(state):
631
632
633
            # publish to user (even if the state did not change!)
            if publish:
                self.publish_to_user()
634
635
636
            return

        LOGGER.debug(self.msg('State: {} -> {} - Target: {}'.format(self.state, state, self.state_target)))
Lukas Burgey's avatar
Lukas Burgey committed
637
638
639

        self.state = state
        self.save()
640

641
        if publish:
642
643
644
            self.publish_to_user()

    def publish_to_user(self):
645
646
647
648
649
650
651
652
653
654
        if self.user is not None:
            if settings.DEBUG_PUBLISHING:
                LOGGER.debug(self.msg('publish_to_user'))

            brokers.publish_to_user(
                self.user,
                {
                    'deployment_state': self,
                },
            )
655
656

    def publish_to_client(self):
657
658
        # only publish to the client using deployments with our target
        for deployment in self.deployments.filter(state_target=self.state_target):
659
            deployment.publish_to_client()
Lukas Burgey's avatar
Lukas Burgey committed
660
661

    def msg(self, msg):
662
        return ' {} - {}'.format(self, msg)
Lukas Burgey's avatar
Lukas Burgey committed
663
664

    def __str__(self):
665
666
667
        if self.deployments.exists():
            deployment_names = [str(deployment.id) for deployment in self.deployments.all()]

668
            return 'Dep-St: ({}:{}:{})#{}'.format(
669
                ','.join(deployment_names),
Lukas Burgey's avatar
Lukas Burgey committed
670
671
672
673
674
                self.service,
                self.site,
                self.id,
            )

675
        return 'Dep-St: (ORPHANED:{}:{})#{}'.format(
Lukas Burgey's avatar
Lukas Burgey committed
676
677
678
679
680
681
682
683
684
685
686
687
688
689
690
691
692
693
694
695
696
697
698
699
700
701
702
703
704
            self.service,
            self.site,
            self.id,
        )


class CredentialState(models.Model):
    state_target = models.CharField(
        max_length=50,
        choices=TARGET_CHOICES,
        default=NOT_DEPLOYED
    )

    state = models.CharField(
        max_length=50,
        choices=STATE_CHOICES,
        default=NOT_DEPLOYED
    )

    credential = models.ForeignKey(
        SSHPublicKey,
        related_name='credential_states',
        on_delete=models.CASCADE,
    )

    _credential_deleted = models.BooleanField(
        default=False,
    )

705
    # TODO target is a stupid field name. Change it
Lukas Burgey's avatar
Lukas Burgey committed
706
707
708
709
710
711
712
713
714
715
716
717
718
719
720
721
722
723
724
725
726
727
728
    target = models.ForeignKey(
        DeploymentState,
        related_name='credential_states',
        on_delete=models.CASCADE,
    )

    @property
    def is_pending(self):
        return self.state != self.state_target

    @classmethod
    def get_credential_state(cls, credential, target):
        try:
            return cls.objects.get(
                credential=credential,
                target=target,
            )
        except cls.DoesNotExist:

            new_state = cls(
                credential=credential,
                target=target,
                state=NOT_DEPLOYED,
729
                state_target=target.state_target,
Lukas Burgey's avatar
Lukas Burgey committed
730
731
732
733
734
735
736
737
738
            )
            new_state.save()

            if settings.DEBUG_CREDENTIALS:
                LOGGER.debug(new_state.msg('Created'))

            return new_state

    def set_target(self, target):
739
740
741
        if str(self.state_target) == str(target):
            return

Lukas Burgey's avatar
Lukas Burgey committed
742
743
744
745
        # state_target is locked, since we are marked for deletion
        if self._credential_deleted:
            return

746
747
        LOGGER.debug(self.msg('Target: {} -> {}'.format(self.state_target, target)))

Lukas Burgey's avatar
Lukas Burgey committed
748
749
750
751
        self.state_target = target
        self.save()

    def set(self, state):
752
753
754
        if str(self.state) == str(state):
            return

Lukas Burgey's avatar
Lukas Burgey committed
755
756
757
758
759
760
761
        if state == NOT_DEPLOYED and self._credential_deleted:
            self._delete_state()
            return

        if state == self.state:
            return

762
763
764
        if settings.DEBUG_CREDENTIALS:
            LOGGER.debug(self.msg('State: {} -> {}'.format(self.state, state)))

Lukas Burgey's avatar
Lukas Burgey committed
765
766
        self.state = state
        self.save()
767

Lukas Burgey's avatar
Lukas Burgey committed
768
769
770
771
772
773
774
775
776
777
778
779
780
781
782
783
784
785
786
    def credential_deleted(self):
        if self.state == NOT_DEPLOYED:
            self._delete_state()

        self.state_target = NOT_DEPLOYED
        self._credential_deleted = True
        self.save()

        if settings.DEBUG_CREDENTIALS:
            LOGGER.debug(self.msg('Marked as deleted'))

    def _delete_state(self):
        LOGGER.debug(self.msg('Deleted'))
        credential = self.credential
        self.delete()

        credential.try_delete_key()

    def msg(self, message):
787
        return '  {} - {}'.format(self, message)
Lukas Burgey's avatar
Lukas Burgey committed
788
789

    def __str__(self):
790
        return 'Cred-St: ({}:{})#{}'.format(
Lukas Burgey's avatar
Lukas Burgey committed
791
792
793
794
            self.target.id,
            self.credential,
            self.id,
        )