virsh-secret.c 20.1 KB
Newer Older
1 2 3
/*
 * virsh-secret.c: Commands to manage secret
 *
4
 * Copyright (C) 2005, 2007-2016 Red Hat, Inc.
5 6 7 8 9 10 11 12 13 14 15 16
 *
 * This library is free software; you can redistribute it and/or
 * modify it under the terms of the GNU Lesser General Public
 * License as published by the Free Software Foundation; either
 * version 2.1 of the License, or (at your option) any later version.
 *
 * This library is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * Lesser General Public License for more details.
 *
 * You should have received a copy of the GNU Lesser General Public
17
 * License along with this library.  If not, see
18 19 20
 * <http://www.gnu.org/licenses/>.
 */

E
Eric Blake 已提交
21 22 23 24
#include <config.h>
#include "virsh-secret.h"

#include "internal.h"
25
#include "virbuffer.h"
26
#include "viralloc.h"
27
#include "virfile.h"
28
#include "virutil.h"
29
#include "virsecret.h"
30
#include "virstring.h"
31
#include "virtime.h"
32
#include "vsh-table.h"
33
#include "virenum.h"
E
Eric Blake 已提交
34

35
static virSecretPtr
36
virshCommandOptSecret(vshControl *ctl, const vshCmd *cmd, const char **name)
37 38 39 40
{
    virSecretPtr secret = NULL;
    const char *n = NULL;
    const char *optname = "secret";
41
    virshControlPtr priv = ctl->privData;
42

43
    if (vshCommandOptStringReq(ctl, cmd, optname, &n) < 0)
44 45 46 47 48 49 50 51
        return NULL;

    vshDebug(ctl, VSH_ERR_DEBUG,
             "%s: found option <%s>: %s\n", cmd->def->name, optname, n);

    if (name != NULL)
        *name = n;

52
    secret = virSecretLookupByUUIDString(priv->conn, n);
53 54 55 56 57 58 59 60 61 62 63

    if (secret == NULL)
        vshError(ctl, _("failed to get secret '%s'"), n);

    return secret;
}

/*
 * "secret-define" command
 */
static const vshCmdInfo info_secret_define[] = {
64 65 66 67 68 69 70
    {.name = "help",
     .data = N_("define or modify a secret from an XML file")
    },
    {.name = "desc",
     .data = N_("Define or modify a secret.")
    },
    {.name = NULL}
71 72 73
};

static const vshCmdOptDef opts_secret_define[] = {
74
    VIRSH_COMMON_OPT_FILE(N_("file containing secret attributes in XML")),
75
    {.name = NULL}
76 77 78 79 80 81 82 83 84
};

static bool
cmdSecretDefine(vshControl *ctl, const vshCmd *cmd)
{
    const char *from = NULL;
    char *buffer;
    virSecretPtr res;
    char uuid[VIR_UUID_STRING_BUFLEN];
85
    bool ret = false;
86
    virshControlPtr priv = ctl->privData;
87

88
    if (vshCommandOptStringReq(ctl, cmd, "file", &from) < 0)
89 90
        return false;

E
Eric Blake 已提交
91
    if (virFileReadAll(from, VSH_MAX_XML_FILE, &buffer) < 0)
92 93
        return false;

94
    if (!(res = virSecretDefineXML(priv->conn, buffer, 0))) {
95
        vshError(ctl, _("Failed to set attributes from %s"), from);
96
        goto cleanup;
97
    }
98

99 100
    if (virSecretGetUUIDString(res, &(uuid[0])) < 0) {
        vshError(ctl, "%s", _("Failed to get UUID of created secret"));
101
        goto cleanup;
102
    }
103

P
Pino Toscano 已提交
104
    vshPrintExtra(ctl, _("Secret %s created\n"), uuid);
105 106
    ret = true;

107
 cleanup:
108
    VIR_FREE(buffer);
109 110
    if (res)
        virSecretFree(res);
111
    return ret;
112 113 114 115 116 117
}

/*
 * "secret-dumpxml" command
 */
static const vshCmdInfo info_secret_dumpxml[] = {
118 119 120 121 122 123 124
    {.name = "help",
     .data = N_("secret attributes in XML")
    },
    {.name = "desc",
     .data = N_("Output attributes of a secret as an XML dump to stdout.")
    },
    {.name = NULL}
125 126 127
};

static const vshCmdOptDef opts_secret_dumpxml[] = {
128 129 130
    {.name = "secret",
     .type = VSH_OT_DATA,
     .flags = VSH_OFLAG_REQ,
131 132
     .help = N_("secret UUID"),
     .completer = virshSecretUUIDCompleter,
133 134
    },
    {.name = NULL}
135 136 137 138 139 140 141 142 143
};

static bool
cmdSecretDumpXML(vshControl *ctl, const vshCmd *cmd)
{
    virSecretPtr secret;
    bool ret = false;
    char *xml;

144
    secret = virshCommandOptSecret(ctl, cmd, NULL);
145 146 147 148 149 150 151 152 153 154
    if (secret == NULL)
        return false;

    xml = virSecretGetXMLDesc(secret, 0);
    if (xml == NULL)
        goto cleanup;
    vshPrint(ctl, "%s", xml);
    VIR_FREE(xml);
    ret = true;

155
 cleanup:
156 157 158 159 160 161 162 163
    virSecretFree(secret);
    return ret;
}

/*
 * "secret-set-value" command
 */
static const vshCmdInfo info_secret_set_value[] = {
164 165 166 167 168 169 170
    {.name = "help",
     .data = N_("set a secret value")
    },
    {.name = "desc",
     .data = N_("Set a secret value.")
    },
    {.name = NULL}
171 172 173
};

static const vshCmdOptDef opts_secret_set_value[] = {
174 175 176
    {.name = "secret",
     .type = VSH_OT_DATA,
     .flags = VSH_OFLAG_REQ,
177 178
     .help = N_("secret UUID"),
     .completer = virshSecretUUIDCompleter,
179 180 181 182 183 184 185
    },
    {.name = "base64",
     .type = VSH_OT_DATA,
     .flags = VSH_OFLAG_REQ,
     .help = N_("base64-encoded secret value")
    },
    {.name = NULL}
186 187 188 189 190 191 192 193
};

static bool
cmdSecretSetValue(vshControl *ctl, const vshCmd *cmd)
{
    virSecretPtr secret;
    size_t value_size;
    const char *base64 = NULL;
194
    unsigned char *value;
195 196 197
    int res;
    bool ret = false;

198
    if (!(secret = virshCommandOptSecret(ctl, cmd, NULL)))
199 200
        return false;

201
    if (vshCommandOptStringReq(ctl, cmd, "base64", &base64) < 0)
202 203
        goto cleanup;

204
    value = g_base64_decode(base64, &value_size);
205

206
    res = virSecretSetValue(secret, value, value_size, 0);
207 208 209 210 211 212 213
    memset(value, 0, value_size);
    VIR_FREE(value);

    if (res != 0) {
        vshError(ctl, "%s", _("Failed to set secret value"));
        goto cleanup;
    }
P
Pino Toscano 已提交
214
    vshPrintExtra(ctl, "%s", _("Secret value set\n"));
215 216
    ret = true;

217
 cleanup:
218 219 220 221 222 223 224 225
    virSecretFree(secret);
    return ret;
}

/*
 * "secret-get-value" command
 */
static const vshCmdInfo info_secret_get_value[] = {
226 227 228 229 230 231 232
    {.name = "help",
     .data = N_("Output a secret value")
    },
    {.name = "desc",
     .data = N_("Output a secret value to stdout.")
    },
    {.name = NULL}
233 234 235
};

static const vshCmdOptDef opts_secret_get_value[] = {
236 237 238
    {.name = "secret",
     .type = VSH_OT_DATA,
     .flags = VSH_OFLAG_REQ,
239 240
     .help = N_("secret UUID"),
     .completer = virshSecretUUIDCompleter,
241 242
    },
    {.name = NULL}
243 244 245 246 247 248
};

static bool
cmdSecretGetValue(vshControl *ctl, const vshCmd *cmd)
{
    virSecretPtr secret;
249
    VIR_AUTODISPOSE_STR base64 = NULL;
250 251 252 253
    unsigned char *value;
    size_t value_size;
    bool ret = false;

254
    secret = virshCommandOptSecret(ctl, cmd, NULL);
255 256 257 258 259 260 261
    if (secret == NULL)
        return false;

    value = virSecretGetValue(secret, &value_size, 0);
    if (value == NULL)
        goto cleanup;

262
    base64 = g_base64_encode(value, value_size);
263

264 265 266
    vshPrint(ctl, "%s", base64);
    ret = true;

267
 cleanup:
268
    VIR_DISPOSE_N(value, value_size);
269 270 271 272 273 274 275 276
    virSecretFree(secret);
    return ret;
}

/*
 * "secret-undefine" command
 */
static const vshCmdInfo info_secret_undefine[] = {
277 278 279 280 281 282 283
    {.name = "help",
     .data = N_("undefine a secret")
    },
    {.name = "desc",
     .data = N_("Undefine a secret.")
    },
    {.name = NULL}
284 285 286
};

static const vshCmdOptDef opts_secret_undefine[] = {
287 288 289
    {.name = "secret",
     .type = VSH_OT_DATA,
     .flags = VSH_OFLAG_REQ,
290 291
     .help = N_("secret UUID"),
     .completer = virshSecretUUIDCompleter,
292 293
    },
    {.name = NULL}
294 295 296 297 298 299 300 301 302
};

static bool
cmdSecretUndefine(vshControl *ctl, const vshCmd *cmd)
{
    virSecretPtr secret;
    bool ret = false;
    const char *uuid;

303
    secret = virshCommandOptSecret(ctl, cmd, &uuid);
304 305 306 307 308 309 310
    if (secret == NULL)
        return false;

    if (virSecretUndefine(secret) < 0) {
        vshError(ctl, _("Failed to delete secret %s"), uuid);
        goto cleanup;
    }
P
Pino Toscano 已提交
311
    vshPrintExtra(ctl, _("Secret %s deleted\n"), uuid);
312 313
    ret = true;

314
 cleanup:
315 316 317 318
    virSecretFree(secret);
    return ret;
}

319
static int
320
virshSecretSorter(const void *a, const void *b)
321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338
{
    virSecretPtr *sa = (virSecretPtr *) a;
    virSecretPtr *sb = (virSecretPtr *) b;
    char uuid_sa[VIR_UUID_STRING_BUFLEN];
    char uuid_sb[VIR_UUID_STRING_BUFLEN];

    if (*sa && !*sb)
        return -1;

    if (!*sa)
        return *sb != NULL;

    virSecretGetUUIDString(*sa, uuid_sa);
    virSecretGetUUIDString(*sb, uuid_sb);

    return vshStrcasecmp(uuid_sa, uuid_sb);
}

339
struct virshSecretList {
340 341 342
    virSecretPtr *secrets;
    size_t nsecrets;
};
343
typedef struct virshSecretList *virshSecretListPtr;
344 345

static void
346
virshSecretListFree(virshSecretListPtr list)
347
{
348
    size_t i;
349

350
    if (list && list->secrets) {
351 352 353 354 355 356 357 358 359
        for (i = 0; i < list->nsecrets; i++) {
            if (list->secrets[i])
                virSecretFree(list->secrets[i]);
        }
        VIR_FREE(list->secrets);
    }
    VIR_FREE(list);
}

360 361 362
static virshSecretListPtr
virshSecretListCollect(vshControl *ctl,
                       unsigned int flags)
363
{
364
    virshSecretListPtr list = vshMalloc(ctl, sizeof(*list));
365
    size_t i;
366 367 368 369 370 371
    int ret;
    virSecretPtr secret;
    bool success = false;
    size_t deleted = 0;
    int nsecrets = 0;
    char **uuids = NULL;
372
    virshControlPtr priv = ctl->privData;
373 374

    /* try the list with flags support (0.10.2 and later) */
375
    if ((ret = virConnectListAllSecrets(priv->conn,
376 377 378 379 380 381 382 383 384 385 386 387 388 389 390
                                        &list->secrets,
                                        flags)) >= 0) {
        list->nsecrets = ret;
        goto finished;
    }

    /* check if the command is actually supported */
    if (last_error && last_error->code == VIR_ERR_NO_SUPPORT)
        goto fallback;

    /* there was an error during the call */
    vshError(ctl, "%s", _("Failed to list node secrets"));
    goto cleanup;


391
 fallback:
392 393 394 395 396 397 398 399
    /* fall back to old method (0.10.1 and older) */
    vshResetLibvirtError();

    if (flags) {
        vshError(ctl, "%s", _("Filtering is not supported by this libvirt"));
        goto cleanup;
    }

400
    nsecrets = virConnectNumOfSecrets(priv->conn);
401 402 403 404 405 406 407 408 409 410
    if (nsecrets < 0) {
        vshError(ctl, "%s", _("Failed to count secrets"));
        goto cleanup;
    }

    if (nsecrets == 0)
        return list;

    uuids = vshMalloc(ctl, sizeof(char *) * nsecrets);

411
    nsecrets = virConnectListSecrets(priv->conn, uuids, nsecrets);
412 413 414 415 416 417 418 419 420
    if (nsecrets < 0) {
        vshError(ctl, "%s", _("Failed to list secrets"));
        goto cleanup;
    }

    list->secrets = vshMalloc(ctl, sizeof(virSecretPtr) * (nsecrets));
    list->nsecrets = 0;

    /* get the secrets */
421
    for (i = 0; i < nsecrets; i++) {
422
        if (!(secret = virSecretLookupByUUIDString(priv->conn, uuids[i])))
423 424 425 426 427 428 429
            continue;
        list->secrets[list->nsecrets++] = secret;
    }

    /* truncate secrets that weren't found */
    deleted = nsecrets - list->nsecrets;

430
 finished:
431 432 433
    /* sort the list */
    if (list->secrets && list->nsecrets)
        qsort(list->secrets, list->nsecrets,
434
              sizeof(*list->secrets), virshSecretSorter);
435 436 437 438 439 440 441

    /* truncate the list for not found secret objects */
    if (deleted)
        VIR_SHRINK_N(list->secrets, list->nsecrets, deleted);

    success = true;

442
 cleanup:
443 444 445 446 447
    if (nsecrets > 0) {
        for (i = 0; i < nsecrets; i++)
            VIR_FREE(uuids[i]);
        VIR_FREE(uuids);
    }
448 449

    if (!success) {
450
        virshSecretListFree(list);
451 452 453 454 455 456
        list = NULL;
    }

    return list;
}

457 458 459 460
/*
 * "secret-list" command
 */
static const vshCmdInfo info_secret_list[] = {
461 462 463 464 465 466 467
    {.name = "help",
     .data = N_("list secrets")
    },
    {.name = "desc",
     .data = N_("Returns a list of secrets")
    },
    {.name = NULL}
468 469
};

470
static const vshCmdOptDef opts_secret_list[] = {
471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487
    {.name = "ephemeral",
     .type = VSH_OT_BOOL,
     .help = N_("list ephemeral secrets")
    },
    {.name = "no-ephemeral",
     .type = VSH_OT_BOOL,
     .help = N_("list non-ephemeral secrets")
    },
    {.name = "private",
     .type = VSH_OT_BOOL,
     .help = N_("list private secrets")
    },
    {.name = "no-private",
     .type = VSH_OT_BOOL,
     .help = N_("list non-private secrets")
    },
    {.name = NULL}
488 489
};

490
static bool
J
Ján Tomko 已提交
491
cmdSecretList(vshControl *ctl, const vshCmd *cmd G_GNUC_UNUSED)
492
{
493
    size_t i;
494
    virshSecretListPtr list = NULL;
495 496
    bool ret = false;
    unsigned int flags = 0;
497
    vshTablePtr table = NULL;
498

499 500
    if (vshCommandOptBool(cmd, "ephemeral"))
        flags |= VIR_CONNECT_LIST_SECRETS_EPHEMERAL;
501

502 503 504 505 506
    if (vshCommandOptBool(cmd, "no-ephemeral"))
        flags |= VIR_CONNECT_LIST_SECRETS_NO_EPHEMERAL;

    if (vshCommandOptBool(cmd, "private"))
        flags |= VIR_CONNECT_LIST_SECRETS_PRIVATE;
507

508 509 510
    if (vshCommandOptBool(cmd, "no-private"))
        flags |= VIR_CONNECT_LIST_SECRETS_NO_PRIVATE;

511
    if (!(list = virshSecretListCollect(ctl, flags)))
512
        return false;
513

514 515 516
    table = vshTableNew(_("UUID"), _("Usage"), NULL);
    if (!table)
        goto cleanup;
517

518 519
    for (i = 0; i < list->nsecrets; i++) {
        virSecretPtr sec = list->secrets[i];
J
John Ferlan 已提交
520
        int usageType = virSecretGetUsageType(sec);
521
        const char *usageStr = virSecretUsageTypeToString(usageType);
522
        char uuid[VIR_UUID_STRING_BUFLEN];
523
        virBuffer buf = VIR_BUFFER_INITIALIZER;
524
        g_autofree char *usage = NULL;
J
John Ferlan 已提交
525

526
        if (virSecretGetUUIDString(sec, uuid) < 0) {
527 528 529 530
            vshError(ctl, "%s", _("Failed to get uuid of secret"));
            goto cleanup;
        }

531
        if (usageType) {
532 533 534 535 536 537 538 539
            virBufferStrcat(&buf, usageStr, " ",
                            virSecretGetUsageID(sec), NULL);
            usage = virBufferContentAndReset(&buf);
            if (!usage)
                goto cleanup;

            if (vshTableRowAppend(table, uuid, usage, NULL) < 0)
                goto cleanup;
540
        } else {
541 542
            if (vshTableRowAppend(table, uuid, _("Unused"), NULL) < 0)
                goto cleanup;
543 544
        }
    }
545

546 547
    vshTablePrintToStdout(table, ctl);

548 549
    ret = true;

550
 cleanup:
551
    vshTableFree(table);
552
    virshSecretListFree(list);
553
    return ret;
554
}
555

556 557 558
/*
 * "Secret-event" command
 */
559
VIR_ENUM_DECL(virshSecretEvent);
560 561 562
VIR_ENUM_IMPL(virshSecretEvent,
              VIR_SECRET_EVENT_LAST,
              N_("Defined"),
563
              N_("Undefined"));
564 565 566 567 568 569 570 571 572 573 574 575 576

static const char *
virshSecretEventToString(int event)
{
    const char *str = virshSecretEventTypeToString(event);
    return str ? _(str) : _("unknown");
}

struct virshSecretEventData {
    vshControl *ctl;
    bool loop;
    bool timestamp;
    int count;
577
    virshSecretEventCallback *cb;
578 579 580 581
};
typedef struct virshSecretEventData virshSecretEventData;

static void
J
Ján Tomko 已提交
582
vshEventLifecyclePrint(virConnectPtr conn G_GNUC_UNUSED,
583 584
                       virSecretPtr secret,
                       int event,
J
Ján Tomko 已提交
585
                       int detail G_GNUC_UNUSED,
586 587 588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606 607 608 609 610 611 612
                       void *opaque)
{
    virshSecretEventData *data = opaque;
    char uuid[VIR_UUID_STRING_BUFLEN];

    if (!data->loop && data->count)
        return;

    virSecretGetUUIDString(secret, uuid);
    if (data->timestamp) {
        char timestamp[VIR_TIME_STRING_BUFLEN];

        if (virTimeStringNowRaw(timestamp) < 0)
            timestamp[0] = '\0';

        vshPrint(data->ctl, _("%s: event 'lifecycle' for secret %s: %s\n"),
                 timestamp, uuid, virshSecretEventToString(event));
    } else {
        vshPrint(data->ctl, _("event 'lifecycle' for secret %s: %s\n"),
                 uuid, virshSecretEventToString(event));
    }

    data->count++;
    if (!data->loop)
        vshEventDone(data->ctl);
}

613
static void
J
Ján Tomko 已提交
614
vshEventGenericPrint(virConnectPtr conn G_GNUC_UNUSED,
615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641 642 643 644 645 646
                     virSecretPtr secret,
                     void *opaque)
{
    virshSecretEventData *data = opaque;
    char uuid[VIR_UUID_STRING_BUFLEN];

    if (!data->loop && data->count)
        return;

    virSecretGetUUIDString(secret, uuid);

    if (data->timestamp) {
        char timestamp[VIR_TIME_STRING_BUFLEN];

        if (virTimeStringNowRaw(timestamp) < 0)
            timestamp[0] = '\0';

        vshPrint(data->ctl, _("%s: event '%s' for secret %s\n"),
                 timestamp,
                 data->cb->name,
                 uuid);
    } else {
        vshPrint(data->ctl, _("event '%s' for secret %s\n"),
                 data->cb->name,
                 uuid);
    }

    data->count++;
    if (!data->loop)
        vshEventDone(data->ctl);
}

647
virshSecretEventCallback virshSecretEventCallbacks[] = {
648 649
    { "lifecycle",
      VIR_SECRET_EVENT_CALLBACK(vshEventLifecyclePrint), },
650
    { "value-changed", vshEventGenericPrint, },
651
};
652
verify(VIR_SECRET_EVENT_ID_LAST == G_N_ELEMENTS(virshSecretEventCallbacks));
653 654 655 656 657 658 659 660 661 662 663 664 665 666

static const vshCmdInfo info_secret_event[] = {
    {.name = "help",
     .data = N_("Secret Events")
    },
    {.name = "desc",
     .data = N_("List event types, or wait for secret events to occur")
    },
    {.name = NULL}
};

static const vshCmdOptDef opts_secret_event[] = {
    {.name = "secret",
     .type = VSH_OT_STRING,
667 668
     .help = N_("filter by secret name or uuid"),
     .completer = virshSecretUUIDCompleter,
669 670 671
    },
    {.name = "event",
     .type = VSH_OT_STRING,
672
     .completer = virshSecretEventNameCompleter,
673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709
     .help = N_("which event type to wait for")
    },
    {.name = "loop",
     .type = VSH_OT_BOOL,
     .help = N_("loop until timeout or interrupt, rather than one-shot")
    },
    {.name = "timeout",
     .type = VSH_OT_INT,
     .help = N_("timeout seconds")
    },
    {.name = "list",
     .type = VSH_OT_BOOL,
     .help = N_("list valid event types")
    },
    {.name = "timestamp",
     .type = VSH_OT_BOOL,
     .help = N_("show timestamp for each printed event")
    },
    {.name = NULL}
};

static bool
cmdSecretEvent(vshControl *ctl, const vshCmd *cmd)
{
    virSecretPtr secret = NULL;
    bool ret = false;
    int eventId = -1;
    int timeout = 0;
    virshSecretEventData data;
    const char *eventName = NULL;
    int event;
    virshControlPtr priv = ctl->privData;

    if (vshCommandOptBool(cmd, "list")) {
        size_t i;

        for (i = 0; i < VIR_SECRET_EVENT_ID_LAST; i++)
710
            vshPrint(ctl, "%s\n", virshSecretEventCallbacks[i].name);
711 712 713 714 715 716 717 718 719 720
        return true;
    }

    if (vshCommandOptStringReq(ctl, cmd, "event", &eventName) < 0)
        return false;
    if (!eventName) {
        vshError(ctl, "%s", _("either --list or --event <type> is required"));
        return false;
    }
    for (event = 0; event < VIR_SECRET_EVENT_ID_LAST; event++)
721
        if (STREQ(eventName, virshSecretEventCallbacks[event].name))
722 723 724 725 726 727 728 729 730 731
            break;
    if (event == VIR_SECRET_EVENT_ID_LAST) {
        vshError(ctl, _("unknown event type %s"), eventName);
        return false;
    }

    data.ctl = ctl;
    data.loop = vshCommandOptBool(cmd, "loop");
    data.timestamp = vshCommandOptBool(cmd, "timestamp");
    data.count = 0;
732
    data.cb = &virshSecretEventCallbacks[event];
733 734 735 736 737 738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770
    if (vshCommandOptTimeoutToMs(ctl, cmd, &timeout) < 0)
        return false;

    if (vshCommandOptBool(cmd, "secret"))
        secret = virshCommandOptSecret(ctl, cmd, NULL);
    if (vshEventStart(ctl, timeout) < 0)
        goto cleanup;

    if ((eventId = virConnectSecretEventRegisterAny(priv->conn, secret, event,
                                                    data.cb->cb,
                                                    &data, NULL)) < 0)
        goto cleanup;
    switch (vshEventWait(ctl)) {
    case VSH_EVENT_INTERRUPT:
        vshPrint(ctl, "%s", _("event loop interrupted\n"));
        break;
    case VSH_EVENT_TIMEOUT:
        vshPrint(ctl, "%s", _("event loop timed out\n"));
        break;
    case VSH_EVENT_DONE:
        break;
    default:
        goto cleanup;
    }
    vshPrint(ctl, _("events received: %d\n"), data.count);
    if (data.count)
        ret = true;

 cleanup:
    vshEventCleanup(ctl);
    if (eventId >= 0 &&
        virConnectSecretEventDeregisterAny(priv->conn, eventId) < 0)
        ret = false;
    if (secret)
        virSecretFree(secret);
    return ret;
}

E
Eric Blake 已提交
771
const vshCmdDef secretCmds[] = {
772 773 774 775 776 777 778 779 780 781 782 783
    {.name = "secret-define",
     .handler = cmdSecretDefine,
     .opts = opts_secret_define,
     .info = info_secret_define,
     .flags = 0
    },
    {.name = "secret-dumpxml",
     .handler = cmdSecretDumpXML,
     .opts = opts_secret_dumpxml,
     .info = info_secret_dumpxml,
     .flags = 0
    },
784 785 786 787 788 789
    {.name = "secret-event",
     .handler = cmdSecretEvent,
     .opts = opts_secret_event,
     .info = info_secret_event,
     .flags = 0
    },
790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810 811 812 813 814
    {.name = "secret-get-value",
     .handler = cmdSecretGetValue,
     .opts = opts_secret_get_value,
     .info = info_secret_get_value,
     .flags = 0
    },
    {.name = "secret-list",
     .handler = cmdSecretList,
     .opts = opts_secret_list,
     .info = info_secret_list,
     .flags = 0
    },
    {.name = "secret-set-value",
     .handler = cmdSecretSetValue,
     .opts = opts_secret_set_value,
     .info = info_secret_set_value,
     .flags = 0
    },
    {.name = "secret-undefine",
     .handler = cmdSecretUndefine,
     .opts = opts_secret_undefine,
     .info = info_secret_undefine,
     .flags = 0
    },
    {.name = NULL}
815
};