Search in sources :

Example 21 with VirtualMachineTemplate

use of in project cosmic by MissionCriticalCloud.

the class RegisterIsoCmd method execute.

// ///////////////////////////////////////////////////
// ///////////// API Implementation///////////////////
// ///////////////////////////////////////////////////
public void execute() throws ResourceAllocationException {
    final VirtualMachineTemplate template = _templateService.registerIso(this);
    if (template != null) {
        final ListResponse<TemplateResponse> response = new ListResponse<>();
        final List<TemplateResponse> templateResponses = _responseGenerator.createIsoResponses(ResponseView.Restricted, template, zoneId, false);
    } else {
        throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to register ISO");
Also used : VirtualMachineTemplate( ListResponse( ServerApiException( TemplateResponse(

Example 22 with VirtualMachineTemplate

use of in project cosmic by MissionCriticalCloud.

the class UpdateTemplateCmd method execute.

public void execute() {
    final VirtualMachineTemplate result = _templateService.updateTemplate(this);
    if (result != null) {
        final TemplateResponse response = _responseGenerator.createTemplateUpdateResponse(ResponseView.Restricted, result);
        // Template can be either USER or ROUTING type
    } else {
        throw new ServerApiException(ApiErrorCode.INTERNAL_ERROR, "Failed to update template");
Also used : VirtualMachineTemplate( ServerApiException( TemplateResponse(

Example 23 with VirtualMachineTemplate

use of in project cosmic by MissionCriticalCloud.

the class UserVmManagerImpl method moveVMToUser.

@ActionEvent(eventType = EventTypes.EVENT_VM_MOVE, eventDescription = "move VM to another user", async = false)
public UserVm moveVMToUser(final AssignVMCmd cmd) throws ResourceAllocationException, ConcurrentOperationException, ResourceUnavailableException, InsufficientCapacityException {
    // VV 1: verify the two users
    final Account caller = CallContext.current().getCallingAccount();
    if (!_accountMgr.isRootAdmin(caller.getId()) && !_accountMgr.isDomainAdmin(caller.getId())) {
        // VMs
        throw new InvalidParameterValueException("Only domain admins are allowed to assign VMs and not " + caller.getType());
    // get and check the valid VM
    final UserVmVO vm = _vmDao.findById(cmd.getVmId());
    if (vm == null) {
        throw new InvalidParameterValueException("There is no vm by that id " + cmd.getVmId());
    } else if (vm.getState() == State.Running) {
        // running
        if (s_logger.isDebugEnabled()) {
            s_logger.debug("VM is Running, unable to move the vm " + vm);
        final InvalidParameterValueException ex = new InvalidParameterValueException("VM is Running, unable to move the vm with specified vmId");
        ex.addProxyObject(vm.getUuid(), "vmId");
        throw ex;
    final Account oldAccount = _accountService.getActiveAccountById(vm.getAccountId());
    if (oldAccount == null) {
        throw new InvalidParameterValueException("Invalid account for VM " + vm.getAccountId() + " in domain.");
    // don't allow to move the vm from the project
    if (oldAccount.getType() == Account.ACCOUNT_TYPE_PROJECT) {
        final InvalidParameterValueException ex = new InvalidParameterValueException("Specified Vm id belongs to the project and can't be moved");
        ex.addProxyObject(vm.getUuid(), "vmId");
        throw ex;
    final Account newAccount = _accountService.getActiveAccountByName(cmd.getAccountName(), cmd.getDomainId());
    if (newAccount == null || newAccount.getType() == Account.ACCOUNT_TYPE_PROJECT) {
        throw new InvalidParameterValueException("Invalid accountid=" + cmd.getAccountName() + " in domain " + cmd.getDomainId());
    if (newAccount.getState() == Account.State.disabled) {
        throw new InvalidParameterValueException("The new account owner " + cmd.getAccountName() + " is disabled.");
    // check caller has access to both the old and new account
    _accountMgr.checkAccess(caller, null, true, oldAccount);
    _accountMgr.checkAccess(caller, null, true, newAccount);
    // make sure the accounts are not same
    if (oldAccount.getAccountId() == newAccount.getAccountId()) {
        throw new InvalidParameterValueException("The new account is the same as the old account. Account id =" + oldAccount.getAccountId());
    // don't allow to move the vm if there are existing PF/LB/Static Nat
    // rules, or vm is assigned to static Nat ip
    final List<PortForwardingRuleVO> pfrules = _portForwardingDao.listByVm(cmd.getVmId());
    if (pfrules != null && pfrules.size() > 0) {
        throw new InvalidParameterValueException("Remove the Port forwarding rules for this VM before assigning to another user.");
    final List<FirewallRuleVO> snrules = _rulesDao.listStaticNatByVmId(vm.getId());
    if (snrules != null && snrules.size() > 0) {
        throw new InvalidParameterValueException("Remove the StaticNat rules for this VM before assigning to another user.");
    final List<LoadBalancerVMMapVO> maps = _loadBalancerVMMapDao.listByInstanceId(vm.getId());
    if (maps != null && maps.size() > 0) {
        throw new InvalidParameterValueException("Remove the load balancing rules for this VM before assigning to another user.");
    // check for one on one nat
    final List<IPAddressVO> ips = _ipAddressDao.findAllByAssociatedVmId(cmd.getVmId());
    for (final IPAddressVO ip : ips) {
        if (ip.isOneToOneNat()) {
            throw new InvalidParameterValueException("Remove the one to one nat rule for this VM for ip " + ip.toString());
    final Zone zone = zoneRepository.findById(vm.getDataCenterId()).orElse(null);
    // Get serviceOffering and Volumes for Virtual Machine
    final ServiceOfferingVO offering = _serviceOfferingDao.findByIdIncludingRemoved(vm.getId(), vm.getServiceOfferingId());
    final List<VolumeVO> volumes = _volsDao.findByInstance(cmd.getVmId());
    // Remove vm from instance group
    // VV 2: check if account/domain is with in resource limits to create a new vm
    resourceLimitCheck(newAccount, vm.isDisplayVm(), new Long(offering.getCpu()), new Long(offering.getRamSize()));
    // VV 3: check if volumes and primary storage space are with in resource limits
    _resourceLimitMgr.checkResourceLimit(newAccount, ResourceType.volume, _volsDao.findByInstance(cmd.getVmId()).size());
    Long totalVolumesSize = (long) 0;
    for (final VolumeVO volume : volumes) {
        totalVolumesSize += volume.getSize();
    _resourceLimitMgr.checkResourceLimit(newAccount, ResourceType.primary_storage, totalVolumesSize);
    // VV 4: Check if new owner can use the vm template
    final VirtualMachineTemplate template = _templateDao.findById(vm.getTemplateId());
    if (!template.isPublicTemplate()) {
        final Account templateOwner = _accountMgr.getAccount(template.getAccountId());
        _accountMgr.checkAccess(newAccount, null, true, templateOwner);
    // VV 5: check the new account can create vm in the domain
    final DomainVO domain = _domainDao.findById(cmd.getDomainId());
    _accountMgr.checkAccess(newAccount, domain);
    Transaction.execute(new TransactionCallbackNoReturn() {

        public void doInTransactionWithoutResult(final TransactionStatus status) {
            // update resource counts for old account
            resourceCountDecrement(oldAccount.getAccountId(), vm.isDisplayVm(), new Long(offering.getCpu()), new Long(offering.getRamSize()));
            // OWNERSHIP STEP 1: update the vm owner
            // OS 2: update volume
            for (final VolumeVO volume : volumes) {
                _resourceLimitMgr.decrementResourceCount(oldAccount.getAccountId(), ResourceType.volume);
                _resourceLimitMgr.decrementResourceCount(oldAccount.getAccountId(), ResourceType.primary_storage, new Long(volume.getSize()));
                _resourceLimitMgr.incrementResourceCount(newAccount.getAccountId(), ResourceType.volume);
                _resourceLimitMgr.incrementResourceCount(newAccount.getAccountId(), ResourceType.primary_storage, new Long(volume.getSize()));
                // snapshots: mark these removed in db
                final List<SnapshotVO> snapshots = _snapshotDao.listByVolumeIdIncludingRemoved(volume.getId());
                for (final SnapshotVO snapshot : snapshots) {
            // update resource count of new account
            resourceCountIncrement(newAccount.getAccountId(), vm.isDisplayVm(), new Long(offering.getCpu()), new Long(offering.getRamSize()));
    final VirtualMachine vmoi = _itMgr.findById(vm.getId());
    final VirtualMachineProfileImpl vmOldProfile = new VirtualMachineProfileImpl(vmoi);
    // OS 3: update the network
    final List<Long> networkIdList = cmd.getNetworkIds();
    if (zone.getNetworkType() == NetworkType.Basic) {
        if (networkIdList != null && !networkIdList.isEmpty()) {
            throw new InvalidParameterValueException("Can't move vm with network Ids; this is a basic zone VM");
        // cleanup the network for the oldOwner
        // security groups will be recreated for the new account, when the
        // VM is started
        final List<NetworkVO> networkList = new ArrayList<>();
        // Get default guest network in Basic zone
        final Network defaultNetwork = _networkModel.getExclusiveGuestNetwork(zone.getId());
        if (defaultNetwork == null) {
            throw new InvalidParameterValueException("Unable to find a default network to start a vm");
        } else {
        final LinkedHashMap<Network, List<? extends NicProfile>> networks = new LinkedHashMap<>();
        final NicProfile profile = new NicProfile();
        networks.put(networkList.get(0), new ArrayList<>(Arrays.asList(profile)));
        final VirtualMachine vmi = _itMgr.findById(vm.getId());
        final VirtualMachineProfileImpl vmProfile = new VirtualMachineProfileImpl(vmi);
        _networkMgr.allocate(vmProfile, networks);
    } else {
        // cleanup the network for the oldOwner
        final Set<NetworkVO> applicableNetworks = new HashSet<>();
        if (networkIdList != null && !networkIdList.isEmpty()) {
            // add any additional networks
            for (final Long networkId : networkIdList) {
                final NetworkVO network = _networkDao.findById(networkId);
                if (network == null) {
                    final InvalidParameterValueException ex = new InvalidParameterValueException("Unable to find specified network id");
                    ex.addProxyObject(networkId.toString(), "networkId");
                    throw ex;
                _networkModel.checkNetworkPermissions(newAccount, network);
                // don't allow to use system networks
                final NetworkOffering networkOffering = _entityMgr.findById(NetworkOffering.class, network.getNetworkOfferingId());
                if (networkOffering.isSystemOnly()) {
                    final InvalidParameterValueException ex = new InvalidParameterValueException("Specified Network id is system only and can't be used for vm deployment");
                    ex.addProxyObject(network.getUuid(), "networkId");
                    throw ex;
        } else {
            final NetworkVO defaultNetwork;
            final List<NetworkOfferingVO> requiredOfferings = _networkOfferingDao.listByAvailability(Availability.Required, false);
            if (requiredOfferings.size() < 1) {
                throw new InvalidParameterValueException("Unable to find network offering with availability=" + Availability.Required + " to automatically create the network as a part of vm creation");
            if (requiredOfferings.get(0).getState() == NetworkOffering.State.Enabled) {
                // get Virtual networks
                final List<? extends Network> virtualNetworks = _networkModel.listNetworksForAccount(newAccount.getId(), zone.getId(), GuestType.Isolated);
                if (virtualNetworks.isEmpty()) {
                    final long physicalNetworkId = _networkModel.findPhysicalNetworkId(zone.getId(), requiredOfferings.get(0).getTags(), requiredOfferings.get(0).getTrafficType());
                    // Validate physical network
                    final PhysicalNetwork physicalNetwork = _physicalNetworkDao.findById(physicalNetworkId);
                    if (physicalNetwork == null) {
                        throw new InvalidParameterValueException("Unable to find physical network with id: " + physicalNetworkId + " and tag: " + requiredOfferings.get(0).getTags());
                    s_logger.debug("Creating network for account " + newAccount + " from the network offering id=" + requiredOfferings.get(0).getId() + " as a part of deployVM process");
                    Network newNetwork = _networkMgr.createGuestNetwork(requiredOfferings.get(0).getId(), newAccount.getAccountName() + "-network", newAccount.getAccountName() + "-network", null, null, null, null, newAccount, null, physicalNetwork, zone.getId(), ACLType.Account, null, null, null, null, true, null, null, null, null, null, null);
                    // if the network offering has persistent set to true, implement the network
                    if (requiredOfferings.get(0).getIsPersistent()) {
                        final DeployDestination dest = new DeployDestination(zone, null, null, null);
                        final UserVO callerUser = _userDao.findById(CallContext.current().getCallingUserId());
                        final Journal journal = new Journal.LogJournal("Implementing " + newNetwork, s_logger);
                        final ReservationContext context = new ReservationContextImpl(UUID.randomUUID().toString(), journal, callerUser, caller);
                        s_logger.debug("Implementing the network for account" + newNetwork + " as a part of" + " network provision for persistent networks");
                        try {
                            final Pair<? extends NetworkGuru, ? extends Network> implementedNetwork = _networkMgr.implementNetwork(newNetwork.getId(), dest, context);
                            if (implementedNetwork == null || implementedNetwork.first() == null) {
                                s_logger.warn("Failed to implement the network " + newNetwork);
                            newNetwork = implementedNetwork.second();
                        } catch (final Exception ex) {
                            s_logger.warn("Failed to implement network " + newNetwork + " elements and" + " resources as a part of network provision for persistent network due to ", ex);
                            final CloudRuntimeException e = new CloudRuntimeException("Failed to implement network" + " (with specified id) elements and resources as a part of network provision");
                            e.addProxyObject(newNetwork.getUuid(), "networkId");
                            throw e;
                    defaultNetwork = _networkDao.findById(newNetwork.getId());
                } else if (virtualNetworks.size() > 1) {
                    throw new InvalidParameterValueException("More than 1 default Isolated networks are found " + "for account " + newAccount + "; please specify networkIds");
                } else {
                    defaultNetwork = _networkDao.findById(virtualNetworks.get(0).getId());
            } else {
                throw new InvalidParameterValueException("Required network offering id=" + requiredOfferings.get(0).getId() + " is not in " + NetworkOffering.State.Enabled);
        // add the new nics
        final LinkedHashMap<Network, List<? extends NicProfile>> networks = new LinkedHashMap<>();
        int toggle = 0;
        for (final NetworkVO appNet : applicableNetworks) {
            final NicProfile defaultNic = new NicProfile();
            if (toggle == 0) {
            networks.put(appNet, new ArrayList<>(Arrays.asList(defaultNic)));
        final VirtualMachine vmi = _itMgr.findById(vm.getId());
        final VirtualMachineProfileImpl vmProfile = new VirtualMachineProfileImpl(vmi);
        _networkMgr.allocate(vmProfile, networks);
        s_logger.debug("AssignVM: Advance virtual, adding networks no " + networks.size() + " to " + vm.getInstanceName());
    // END IF ADVANCED"AssignVM: vm " + vm.getInstanceName() + " now belongs to account " + cmd.getAccountName());
    return vm;
Also used : Account( ArrayList(java.util.ArrayList) TransactionStatus( Journal( ServiceOfferingVO( FirewallRuleVO( LinkedHashMap(java.util.LinkedHashMap) VolumeVO( InvalidParameterValueException( PhysicalNetwork( PhysicalNetwork( Network( LoadBalancerVMMapVO( ArrayList(java.util.ArrayList) ExcludeList( List(java.util.List) HashSet(java.util.HashSet) PortForwardingRuleVO( NetworkVO( VirtualMachineTemplate( DomainVO( DeployDestination( NetworkOfferingVO( VirtualMachine( TransactionCallbackNoReturn( CloudRuntimeException( NetworkOffering( Zone( PermissionDeniedException( TransactionCallbackWithException( ConcurrentOperationException( OperationTimedoutException( InsufficientAddressCapacityException( VirtualMachineMigrationException( InvalidParameterValueException( ExecutionException( ResourceAllocationException( CloudException( NoTransitionException( InsufficientCapacityException( AgentUnavailableException( ConfigurationException(javax.naming.ConfigurationException) StorageUnavailableException( ResourceUnavailableException( ManagementServerException( CloudRuntimeException( VMSnapshotVO( SnapshotVO( UserVO( IPAddressVO( ActionEvent( DB(

Example 24 with VirtualMachineTemplate

use of in project cosmic by MissionCriticalCloud.

the class UserVmManagerImpl method restoreVM.

public UserVm restoreVM(final RestoreVMCmd cmd) throws InsufficientCapacityException, ResourceUnavailableException {
    // Input validation
    final Account caller = CallContext.current().getCallingAccount();
    final long vmId = cmd.getVmId();
    final Long newTemplateId = cmd.getTemplateId();
    final UserVmVO vm = _vmDao.findById(vmId);
    if (vm == null) {
        final InvalidParameterValueException ex = new InvalidParameterValueException("Cannot find VM with ID " + vmId);
        ex.addProxyObject(String.valueOf(vmId), "vmId");
        throw ex;
    final Zone zone = zoneRepository.findById(vm.getDataCenterId()).orElse(null);
    final VirtualMachineTemplate template = _entityMgr.findByIdIncludingRemoved(VirtualMachineTemplate.class, vm.getTemplateId());
    checkHypervisorEnabled(zone, template);
    _accountMgr.checkAccess(caller, null, true, vm);
    return restoreVMInternal(caller, vm, newTemplateId);
Also used : Account( VirtualMachineTemplate( InvalidParameterValueException( Zone(

Example 25 with VirtualMachineTemplate

use of in project cosmic by MissionCriticalCloud.

the class TemplateManagerImpl method listTemplatePermissions.

public List<String> listTemplatePermissions(final BaseListTemplateOrIsoPermissionsCmd cmd) {
    final Account caller = CallContext.current().getCallingAccount();
    final Long id = cmd.getId();
    if (id.equals(Long.valueOf(1))) {
        throw new PermissionDeniedException("unable to list permissions for " + cmd.getMediaType() + " with id " + id);
    final VirtualMachineTemplate template = this._tmpltDao.findById(id);
    if (template == null) {
        throw new InvalidParameterValueException("unable to find " + cmd.getMediaType() + " with id " + id);
    if (cmd instanceof ListTemplatePermissionsCmd) {
        if (template.getFormat().equals(ImageFormat.ISO)) {
            throw new InvalidParameterValueException("Please provide a valid template");
    } else if (cmd instanceof ListIsoPermissionsCmd) {
        if (!template.getFormat().equals(ImageFormat.ISO)) {
            throw new InvalidParameterValueException("Please provide a valid iso");
    if (!template.isPublicTemplate()) {
        this._accountMgr.checkAccess(caller, null, true, template);
    final List<String> accountNames = new ArrayList<>();
    final List<LaunchPermissionVO> permissions = this._launchPermissionDao.findByTemplate(id);
    if (permissions != null && !permissions.isEmpty()) {
        for (final LaunchPermissionVO permission : permissions) {
            final Account acct = this._accountDao.findById(permission.getAccountId());
    // also add the owner if not public
    if (!template.isPublicTemplate()) {
        final Account templateOwner = this._accountDao.findById(template.getAccountId());
    return accountNames;
Also used : Account( ListTemplatePermissionsCmd( VirtualMachineTemplate( InvalidParameterValueException( ArrayList(java.util.ArrayList) ListIsoPermissionsCmd( PermissionDeniedException( LaunchPermissionVO(


VirtualMachineTemplate ( ServerApiException ( TemplateResponse ( Account ( ListResponse ( InvalidParameterValueException ( CloudRuntimeException ( PermissionDeniedException ( Zone ( ConcurrentOperationException ( InsufficientCapacityException ( NoTransitionException ( ResourceAllocationException ( ResourceUnavailableException ( StorageUnavailableException ( Network ( ArrayList (java.util.ArrayList)3 AffinityGroup ( DeployDestination ( ExcludeList (