2021-03-05 11:43:39 +00:00
|
|
|
use anyhow::{bail, Error};
|
2021-02-14 09:32:33 +00:00
|
|
|
use serde_json::Value;
|
|
|
|
use ::serde::{Deserialize, Serialize};
|
|
|
|
|
2021-03-05 11:43:39 +00:00
|
|
|
use proxmox::api::{api, Router, RpcEnvironment, Permission};
|
2021-09-02 10:47:11 +00:00
|
|
|
use pbs_config::open_backup_lockfile;
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
use crate::{
|
|
|
|
api2::types::{
|
2021-03-03 11:44:39 +00:00
|
|
|
Authid,
|
2021-03-05 08:45:30 +00:00
|
|
|
Userid,
|
2021-02-14 09:32:33 +00:00
|
|
|
JOB_ID_SCHEMA,
|
2021-03-05 11:43:39 +00:00
|
|
|
DATASTORE_SCHEMA,
|
|
|
|
DRIVE_NAME_SCHEMA,
|
2021-02-14 09:32:33 +00:00
|
|
|
PROXMOX_CONFIG_DIGEST_SCHEMA,
|
2021-03-05 11:43:39 +00:00
|
|
|
SINGLE_LINE_COMMENT_SCHEMA,
|
|
|
|
MEDIA_POOL_NAME_SCHEMA,
|
|
|
|
SYNC_SCHEDULE_SCHEMA,
|
2021-02-14 09:32:33 +00:00
|
|
|
},
|
|
|
|
config::{
|
|
|
|
self,
|
2021-03-03 11:44:39 +00:00
|
|
|
cached_user_info::CachedUserInfo,
|
|
|
|
acl::{
|
|
|
|
PRIV_TAPE_AUDIT,
|
|
|
|
PRIV_TAPE_MODIFY,
|
|
|
|
},
|
2021-02-14 09:32:33 +00:00
|
|
|
tape_job::{
|
|
|
|
TAPE_JOB_CFG_LOCKFILE,
|
|
|
|
TapeBackupJobConfig,
|
|
|
|
}
|
|
|
|
},
|
|
|
|
};
|
|
|
|
|
|
|
|
#[api(
|
|
|
|
input: {
|
|
|
|
properties: {},
|
|
|
|
},
|
|
|
|
returns: {
|
|
|
|
description: "List configured jobs.",
|
|
|
|
type: Array,
|
|
|
|
items: { type: TapeBackupJobConfig },
|
|
|
|
},
|
2021-03-03 11:44:39 +00:00
|
|
|
access: {
|
|
|
|
description: "List configured tape jobs filtered by Tape.Audit privileges",
|
|
|
|
permission: &Permission::Anybody,
|
|
|
|
},
|
2021-02-14 09:32:33 +00:00
|
|
|
)]
|
|
|
|
/// List all tape backup jobs
|
|
|
|
pub fn list_tape_backup_jobs(
|
|
|
|
_param: Value,
|
|
|
|
mut rpcenv: &mut dyn RpcEnvironment,
|
|
|
|
) -> Result<Vec<TapeBackupJobConfig>, Error> {
|
2021-03-03 11:44:39 +00:00
|
|
|
let auth_id: Authid = rpcenv.get_auth_id().unwrap().parse()?;
|
|
|
|
let user_info = CachedUserInfo::new()?;
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
let (config, digest) = config::tape_job::config()?;
|
|
|
|
|
2021-03-03 11:44:39 +00:00
|
|
|
let list = config.convert_to_typed_array::<TapeBackupJobConfig>("backup")?;
|
|
|
|
|
|
|
|
let list = list
|
|
|
|
.into_iter()
|
|
|
|
.filter(|job| {
|
|
|
|
let privs = user_info.lookup_privs(&auth_id, &["tape", "job", &job.id]);
|
|
|
|
privs & PRIV_TAPE_AUDIT != 0
|
|
|
|
})
|
|
|
|
.collect();
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
rpcenv["digest"] = proxmox::tools::digest_to_hex(&digest).into();
|
|
|
|
|
|
|
|
Ok(list)
|
|
|
|
}
|
|
|
|
|
|
|
|
#[api(
|
|
|
|
protected: true,
|
|
|
|
input: {
|
|
|
|
properties: {
|
|
|
|
job: {
|
|
|
|
type: TapeBackupJobConfig,
|
|
|
|
flatten: true,
|
|
|
|
},
|
|
|
|
},
|
|
|
|
},
|
2021-03-03 11:44:39 +00:00
|
|
|
access: {
|
|
|
|
permission: &Permission::Privilege(&["tape", "job"], PRIV_TAPE_MODIFY, false),
|
|
|
|
},
|
2021-02-14 09:32:33 +00:00
|
|
|
)]
|
|
|
|
/// Create a new tape backup job.
|
|
|
|
pub fn create_tape_backup_job(
|
|
|
|
job: TapeBackupJobConfig,
|
|
|
|
_rpcenv: &mut dyn RpcEnvironment,
|
|
|
|
) -> Result<(), Error> {
|
2021-07-20 11:51:54 +00:00
|
|
|
let _lock = open_backup_lockfile(TAPE_JOB_CFG_LOCKFILE, None, true)?;
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
let (mut config, _digest) = config::tape_job::config()?;
|
|
|
|
|
|
|
|
if config.sections.get(&job.id).is_some() {
|
|
|
|
bail!("job '{}' already exists.", job.id);
|
|
|
|
}
|
|
|
|
|
|
|
|
config.set_data(&job.id, "backup", &job)?;
|
|
|
|
|
|
|
|
config::tape_job::save_config(&config)?;
|
|
|
|
|
2021-02-15 06:55:13 +00:00
|
|
|
crate::server::jobstate::create_state_file("tape-backup-job", &job.id)?;
|
|
|
|
|
2021-02-14 09:32:33 +00:00
|
|
|
Ok(())
|
|
|
|
}
|
|
|
|
|
|
|
|
#[api(
|
|
|
|
input: {
|
|
|
|
properties: {
|
|
|
|
id: {
|
|
|
|
schema: JOB_ID_SCHEMA,
|
|
|
|
},
|
|
|
|
},
|
|
|
|
},
|
|
|
|
returns: { type: TapeBackupJobConfig },
|
2021-03-03 11:44:39 +00:00
|
|
|
access: {
|
|
|
|
permission: &Permission::Privilege(&["tape", "job", "{id}"], PRIV_TAPE_AUDIT, false),
|
|
|
|
},
|
2021-02-14 09:32:33 +00:00
|
|
|
)]
|
|
|
|
/// Read a tape backup job configuration.
|
|
|
|
pub fn read_tape_backup_job(
|
|
|
|
id: String,
|
|
|
|
mut rpcenv: &mut dyn RpcEnvironment,
|
|
|
|
) -> Result<TapeBackupJobConfig, Error> {
|
|
|
|
|
|
|
|
let (config, digest) = config::tape_job::config()?;
|
|
|
|
|
|
|
|
let job = config.lookup("backup", &id)?;
|
|
|
|
|
|
|
|
rpcenv["digest"] = proxmox::tools::digest_to_hex(&digest).into();
|
|
|
|
|
|
|
|
Ok(job)
|
|
|
|
}
|
|
|
|
|
|
|
|
#[api()]
|
|
|
|
#[derive(Serialize, Deserialize)]
|
|
|
|
#[serde(rename_all="kebab-case")]
|
|
|
|
/// Deletable property name
|
|
|
|
pub enum DeletableProperty {
|
|
|
|
/// Delete the comment property.
|
2021-02-15 09:39:39 +00:00
|
|
|
Comment,
|
2021-02-14 09:32:33 +00:00
|
|
|
/// Delete the job schedule.
|
2021-02-15 09:39:39 +00:00
|
|
|
Schedule,
|
2021-02-15 06:55:13 +00:00
|
|
|
/// Delete the eject-media property
|
2021-02-15 09:39:39 +00:00
|
|
|
EjectMedia,
|
2021-02-15 06:55:13 +00:00
|
|
|
/// Delete the export-media-set property
|
2021-02-15 09:39:39 +00:00
|
|
|
ExportMediaSet,
|
2021-02-24 10:19:12 +00:00
|
|
|
/// Delete the 'latest-only' property
|
|
|
|
LatestOnly,
|
2021-03-05 08:45:30 +00:00
|
|
|
/// Delete the 'notify-user' property
|
|
|
|
NotifyUser,
|
2021-02-14 09:32:33 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
#[api(
|
|
|
|
protected: true,
|
|
|
|
input: {
|
|
|
|
properties: {
|
2021-03-05 11:43:39 +00:00
|
|
|
id: {
|
|
|
|
schema: JOB_ID_SCHEMA,
|
|
|
|
},
|
|
|
|
store: {
|
|
|
|
schema: DATASTORE_SCHEMA,
|
|
|
|
optional: true,
|
|
|
|
},
|
|
|
|
pool: {
|
|
|
|
schema: MEDIA_POOL_NAME_SCHEMA,
|
|
|
|
optional: true,
|
|
|
|
},
|
|
|
|
drive: {
|
|
|
|
schema: DRIVE_NAME_SCHEMA,
|
|
|
|
optional: true,
|
|
|
|
},
|
|
|
|
"eject-media": {
|
|
|
|
description: "Eject media upon job completion.",
|
|
|
|
type: bool,
|
|
|
|
optional: true,
|
|
|
|
},
|
|
|
|
"export-media-set": {
|
|
|
|
description: "Export media set upon job completion.",
|
|
|
|
type: bool,
|
|
|
|
optional: true,
|
|
|
|
},
|
|
|
|
"latest-only": {
|
|
|
|
description: "Backup latest snapshots only.",
|
|
|
|
type: bool,
|
|
|
|
optional: true,
|
|
|
|
},
|
2021-03-05 08:45:30 +00:00
|
|
|
"notify-user": {
|
|
|
|
optional: true,
|
|
|
|
type: Userid,
|
|
|
|
},
|
2021-03-05 11:43:39 +00:00
|
|
|
comment: {
|
|
|
|
optional: true,
|
|
|
|
schema: SINGLE_LINE_COMMENT_SCHEMA,
|
|
|
|
},
|
|
|
|
schedule: {
|
|
|
|
optional: true,
|
|
|
|
schema: SYNC_SCHEDULE_SCHEMA,
|
2021-02-14 09:32:33 +00:00
|
|
|
},
|
|
|
|
delete: {
|
|
|
|
description: "List of properties to delete.",
|
|
|
|
type: Array,
|
|
|
|
optional: true,
|
|
|
|
items: {
|
|
|
|
type: DeletableProperty,
|
|
|
|
}
|
|
|
|
},
|
|
|
|
digest: {
|
|
|
|
optional: true,
|
|
|
|
schema: PROXMOX_CONFIG_DIGEST_SCHEMA,
|
|
|
|
},
|
|
|
|
},
|
|
|
|
},
|
2021-03-03 11:44:39 +00:00
|
|
|
access: {
|
|
|
|
permission: &Permission::Privilege(&["tape", "job", "{id}"], PRIV_TAPE_MODIFY, false),
|
|
|
|
},
|
2021-02-14 09:32:33 +00:00
|
|
|
)]
|
|
|
|
/// Update the tape backup job
|
|
|
|
pub fn update_tape_backup_job(
|
2021-03-05 11:43:39 +00:00
|
|
|
id: String,
|
|
|
|
store: Option<String>,
|
|
|
|
pool: Option<String>,
|
|
|
|
drive: Option<String>,
|
|
|
|
eject_media: Option<bool>,
|
|
|
|
export_media_set: Option<bool>,
|
|
|
|
latest_only: Option<bool>,
|
2021-03-05 08:45:30 +00:00
|
|
|
notify_user: Option<Userid>,
|
2021-03-05 11:43:39 +00:00
|
|
|
comment: Option<String>,
|
|
|
|
schedule: Option<String>,
|
|
|
|
delete: Option<Vec<DeletableProperty>>,
|
2021-02-14 09:32:33 +00:00
|
|
|
digest: Option<String>,
|
|
|
|
) -> Result<(), Error> {
|
2021-07-20 11:51:54 +00:00
|
|
|
let _lock = open_backup_lockfile(TAPE_JOB_CFG_LOCKFILE, None, true)?;
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
let (mut config, expected_digest) = config::tape_job::config()?;
|
|
|
|
|
2021-03-05 11:43:39 +00:00
|
|
|
let mut data: TapeBackupJobConfig = config.lookup("backup", &id)?;
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
if let Some(ref digest) = digest {
|
|
|
|
let digest = proxmox::tools::hex_to_digest(digest)?;
|
|
|
|
crate::tools::detect_modified_configuration_file(&digest, &expected_digest)?;
|
|
|
|
}
|
|
|
|
|
2021-03-05 11:43:39 +00:00
|
|
|
if let Some(delete) = delete {
|
|
|
|
for delete_prop in delete {
|
|
|
|
match delete_prop {
|
|
|
|
DeletableProperty::EjectMedia => { data.setup.eject_media = None; },
|
|
|
|
DeletableProperty::ExportMediaSet => { data.setup.export_media_set = None; },
|
|
|
|
DeletableProperty::LatestOnly => { data.setup.latest_only = None; },
|
2021-03-05 08:45:30 +00:00
|
|
|
DeletableProperty::NotifyUser => { data.setup.notify_user = None; },
|
2021-03-05 11:43:39 +00:00
|
|
|
DeletableProperty::Schedule => { data.schedule = None; },
|
|
|
|
DeletableProperty::Comment => { data.comment = None; },
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
2021-02-14 09:32:33 +00:00
|
|
|
|
2021-03-05 11:43:39 +00:00
|
|
|
if let Some(store) = store { data.setup.store = store; }
|
|
|
|
if let Some(pool) = pool { data.setup.pool = pool; }
|
|
|
|
if let Some(drive) = drive { data.setup.drive = drive; }
|
|
|
|
|
|
|
|
if eject_media.is_some() { data.setup.eject_media = eject_media; };
|
|
|
|
if export_media_set.is_some() { data.setup.export_media_set = export_media_set; }
|
|
|
|
if latest_only.is_some() { data.setup.latest_only = latest_only; }
|
2021-03-05 08:45:30 +00:00
|
|
|
if notify_user.is_some() { data.setup.notify_user = notify_user; }
|
2021-03-05 11:43:39 +00:00
|
|
|
|
2021-04-19 08:32:16 +00:00
|
|
|
let schedule_changed = data.schedule != schedule;
|
2021-03-05 11:43:39 +00:00
|
|
|
if schedule.is_some() { data.schedule = schedule; }
|
|
|
|
|
|
|
|
if let Some(comment) = comment {
|
|
|
|
let comment = comment.trim();
|
|
|
|
if comment.is_empty() {
|
|
|
|
data.comment = None;
|
|
|
|
} else {
|
|
|
|
data.comment = Some(comment.to_string());
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
config.set_data(&id, "backup", &data)?;
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
config::tape_job::save_config(&config)?;
|
|
|
|
|
2021-04-19 08:32:16 +00:00
|
|
|
if schedule_changed {
|
2021-04-26 08:21:05 +00:00
|
|
|
crate::server::jobstate::update_job_last_run_time("tape-backup-job", &id)?;
|
2021-04-19 08:32:16 +00:00
|
|
|
}
|
|
|
|
|
2021-02-14 09:32:33 +00:00
|
|
|
Ok(())
|
|
|
|
}
|
|
|
|
|
|
|
|
#[api(
|
|
|
|
protected: true,
|
|
|
|
input: {
|
|
|
|
properties: {
|
|
|
|
id: {
|
|
|
|
schema: JOB_ID_SCHEMA,
|
|
|
|
},
|
|
|
|
digest: {
|
|
|
|
optional: true,
|
|
|
|
schema: PROXMOX_CONFIG_DIGEST_SCHEMA,
|
|
|
|
},
|
|
|
|
},
|
|
|
|
},
|
2021-03-03 11:44:39 +00:00
|
|
|
access: {
|
|
|
|
permission: &Permission::Privilege(&["tape", "job", "{id}"], PRIV_TAPE_MODIFY, false),
|
|
|
|
},
|
2021-02-14 09:32:33 +00:00
|
|
|
)]
|
|
|
|
/// Remove a tape backup job configuration
|
|
|
|
pub fn delete_tape_backup_job(
|
|
|
|
id: String,
|
|
|
|
digest: Option<String>,
|
|
|
|
_rpcenv: &mut dyn RpcEnvironment,
|
|
|
|
) -> Result<(), Error> {
|
2021-07-20 11:51:54 +00:00
|
|
|
let _lock = open_backup_lockfile(TAPE_JOB_CFG_LOCKFILE, None, true)?;
|
2021-02-14 09:32:33 +00:00
|
|
|
|
|
|
|
let (mut config, expected_digest) = config::tape_job::config()?;
|
|
|
|
|
|
|
|
if let Some(ref digest) = digest {
|
|
|
|
let digest = proxmox::tools::hex_to_digest(digest)?;
|
|
|
|
crate::tools::detect_modified_configuration_file(&digest, &expected_digest)?;
|
|
|
|
}
|
|
|
|
|
|
|
|
match config.lookup::<TapeBackupJobConfig>("backup", &id) {
|
|
|
|
Ok(_job) => {
|
|
|
|
config.sections.remove(&id);
|
|
|
|
},
|
|
|
|
Err(_) => { bail!("job '{}' does not exist.", id) },
|
|
|
|
};
|
|
|
|
|
|
|
|
config::tape_job::save_config(&config)?;
|
|
|
|
|
2021-02-15 06:55:13 +00:00
|
|
|
crate::server::jobstate::remove_state_file("tape-backup-job", &id)?;
|
|
|
|
|
2021-02-14 09:32:33 +00:00
|
|
|
Ok(())
|
|
|
|
}
|
|
|
|
|
|
|
|
const ITEM_ROUTER: Router = Router::new()
|
|
|
|
.get(&API_METHOD_READ_TAPE_BACKUP_JOB)
|
2021-02-23 10:58:00 +00:00
|
|
|
.put(&API_METHOD_UPDATE_TAPE_BACKUP_JOB)
|
2021-02-14 09:32:33 +00:00
|
|
|
.delete(&API_METHOD_DELETE_TAPE_BACKUP_JOB);
|
|
|
|
|
|
|
|
pub const ROUTER: Router = Router::new()
|
|
|
|
.get(&API_METHOD_LIST_TAPE_BACKUP_JOBS)
|
|
|
|
.post(&API_METHOD_CREATE_TAPE_BACKUP_JOB)
|
|
|
|
.match_all("id", &ITEM_ROUTER);
|