CLICommand.java 14.4 KB
Newer Older
1 2 3
/*
 * The MIT License
 *
4
 * Copyright (c) 2004-2010, Sun Microsystems, Inc.
5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25
 *
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in
 * all copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
 * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN
 * THE SOFTWARE.
 */
package hudson.cli;

26
import hudson.AbortException;
27 28
import hudson.Extension;
import hudson.ExtensionList;
29 30 31
import hudson.ExtensionPoint;
import hudson.cli.declarative.CLIMethod;
import hudson.ExtensionPoint.LegacyInstancesAreScopedToHudson;
32
import hudson.cli.declarative.OptionHandlerExtension;
33
import hudson.model.Hudson;
34 35
import hudson.remoting.Callable;
import hudson.remoting.Channel;
36
import hudson.remoting.ChannelProperty;
37
import hudson.security.CliAuthenticator;
38
import hudson.security.SecurityRealm;
39 40 41
import org.acegisecurity.Authentication;
import org.acegisecurity.context.SecurityContext;
import org.acegisecurity.context.SecurityContextHolder;
42 43
import org.jvnet.hudson.annotation_indexer.Index;
import org.jvnet.tiger_types.Types;
44
import org.kohsuke.args4j.ClassParser;
45
import org.kohsuke.args4j.CmdLineException;
46
import org.kohsuke.args4j.CmdLineParser;
47
import org.kohsuke.args4j.spi.OptionHandler;
48

K
kohsuke 已提交
49
import java.io.BufferedInputStream;
50
import java.io.IOException;
51 52
import java.io.InputStream;
import java.io.PrintStream;
53
import java.lang.reflect.Type;
54
import java.util.List;
K
kohsuke 已提交
55
import java.util.Locale;
56
import java.util.logging.Logger;
57 58 59 60

/**
 * Base class for Hudson CLI.
 *
K
kohsuke 已提交
61
 * <h2>How does a CLI command work</h2>
62
 * <p>
K
kohsuke 已提交
63 64 65 66
 * The users starts {@linkplain CLI the "CLI agent"} on a remote system, by specifying arguments, like
 * <tt>"java -jar hudson-cli.jar command arg1 arg2 arg3"</tt>. The CLI agent creates
 * a remoting channel with the server, and it sends the entire arguments to the server, along with
 * the remoted stdin/out/err.
67 68
 *
 * <p>
K
kohsuke 已提交
69
 * The Hudson master then picks the right {@link CLICommand} to execute, clone it, and
70
 * calls {@link #main(List, Locale, InputStream, PrintStream, PrintStream)} method.
K
kohsuke 已提交
71 72
 *
 * <h2>Note for CLI command implementor</h2>
K
Kohsuke Kawaguchi 已提交
73
 * Start with <a href="http://wiki.jenkins-ci.org/display/JENKINS/Writing+CLI+commands">this document</a>
K
kohsuke 已提交
74 75
 * to get the general idea of CLI.
 *
K
kohsuke 已提交
76 77 78 79 80
 * <ul>
 * <li>
 * Put {@link Extension} on your implementation to have it discovered by Hudson.
 *
 * <li>
81
 * Use <a href="http://args4j.dev.java.net/">args4j</a> annotation on your implementation to define
K
kohsuke 已提交
82
 * options and arguments (however, if you don't like that, you could override
83
 * the {@link #main(List, Locale, InputStream, PrintStream, PrintStream)} method directly.
84
 *
K
kohsuke 已提交
85 86 87 88 89 90 91 92
 * <li>
 * stdin, stdout, stderr are remoted, so proper buffering is necessary for good user experience.
 *
 * <li>
 * Send {@link Callable} to a CLI agent by using {@link #channel} to get local interaction,
 * such as uploading a file, asking for a password, etc.
 *
 * </ul>
93 94 95
 *
 * @author Kohsuke Kawaguchi
 * @since 1.302
96
 * @see CLIMethod
97
 */
98
@LegacyInstancesAreScopedToHudson
99 100 101 102 103 104
public abstract class CLICommand implements ExtensionPoint, Cloneable {
    /**
     * Connected to stdout and stderr of the CLI agent that initiated the session.
     * IOW, if you write to these streams, the person who launched the CLI command
     * will see the messages in his terminal.
     *
K
kohsuke 已提交
105
     * <p>
106 107 108
     * (In contrast, calling {@code System.out.println(...)} would print out
     * the message to the server log file, which is probably not what you want.
     */
109
    public transient PrintStream stdout,stderr;
110

K
kohsuke 已提交
111 112 113 114 115 116
    /**
     * Connected to stdin of the CLI agent.
     *
     * <p>
     * This input stream is buffered to hide the latency in the remoting.
     */
117
    public transient InputStream stdin;
K
kohsuke 已提交
118

119 120 121 122
    /**
     * {@link Channel} that represents the CLI JVM. You can use this to
     * execute {@link Callable} on the CLI JVM, among other things.
     */
123
    public transient Channel channel;
124

125 126 127
    /**
     * The locale of the client. Messages should be formatted with this resource.
     */
128
    public transient Locale locale;
129

130 131 132 133 134 135 136 137 138 139 140 141 142 143 144

    /**
     * Gets the command name.
     *
     * <p>
     * For example, if the CLI is invoked as <tt>java -jar cli.jar foo arg1 arg2 arg4</tt>,
     * on the server side {@link CLICommand} that returns "foo" from {@link #getName()}
     * will be invoked.
     *
     * <p>
     * By default, this method creates "foo-bar-zot" from "FooBarZotCommand".
     */
    public String getName() {
        String name = getClass().getName();
        name = name.substring(name.lastIndexOf('.')+1); // short name
145
        name = name.substring(name.lastIndexOf('$')+1);
146 147 148 149
        if(name.endsWith("Command"))
            name = name.substring(0,name.length()-7); // trim off the command

        // convert "FooBarZot" into "foo-bar-zot"
K
kohsuke 已提交
150 151
        // Locale is fixed so that "CreateInstance" always become "create-instance" no matter where this is run.
        return name.replaceAll("([a-z0-9])([A-Z])","$1-$2").toLowerCase(Locale.ENGLISH);
152 153
    }

K
kohsuke 已提交
154 155 156 157 158 159
    /**
     * Gets the quick summary of what this command does.
     * Used by the help command to generate the list of commands.
     */
    public abstract String getShortDescription();

160
    public int main(List<String> args, Locale locale, InputStream stdin, PrintStream stdout, PrintStream stderr) {
K
kohsuke 已提交
161
        this.stdin = new BufferedInputStream(stdin);
162 163
        this.stdout = stdout;
        this.stderr = stderr;
164
        this.locale = locale;
165
        this.channel = Channel.current();
166
        registerOptionHandlers();
167
        CmdLineParser p = new CmdLineParser(this);
168 169 170 171 172

        // add options from the authenticator
        SecurityContext sc = SecurityContextHolder.getContext();
        Authentication old = sc.getAuthentication();

173
        CliAuthenticator authenticator = Hudson.getInstance().getSecurityRealm().createCliAuthenticator(this);
174
        new ClassParser().parse(authenticator,p);
175

176 177
        try {
            p.parseArgument(args.toArray(new String[args.size()]));
178 179 180 181
            Authentication auth = authenticator.authenticate();
            if (auth==Hudson.ANONYMOUS)
                auth = loadStoredAuthentication();
            sc.setAuthentication(auth); // run the CLI with the right credential
182 183
            if (!(this instanceof LoginCommand || this instanceof HelpCommand))
                Hudson.getInstance().checkPermission(Hudson.READ);
184 185 186 187 188
            return run();
        } catch (CmdLineException e) {
            stderr.println(e.getMessage());
            printUsage(stderr, p);
            return -1;
189 190 191 192
        } catch (AbortException e) {
            // signals an error without stack trace
            stderr.println(e.getMessage());
            return -1;
193 194 195
        } catch (Exception e) {
            e.printStackTrace(stderr);
            return -1;
196 197
        } finally {
            sc.setAuthentication(old); // restore
198 199 200
        }
    }

201 202 203 204 205 206 207 208 209 210 211 212 213
    /**
     * Loads the persisted authentication information from {@link ClientAuthenticationCache}.
     */
    protected Authentication loadStoredAuthentication() throws InterruptedException {
        try {
            return new ClientAuthenticationCache(channel).get();
        } catch (IOException e) {
            stderr.println("Failed to access the stored credential");
            e.printStackTrace(stderr);  // recover
            return Hudson.ANONYMOUS;
        }
    }

214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233
    /**
     * Determines if the user authentication is attempted through CLI before running this command.
     *
     * <p>
     * If your command doesn't require any authentication whatsoever, and if you don't even want to let the user
     * authenticate, then override this method to always return false &mdash; doing so will result in all the commands
     * running as anonymous user credential.
     *
     * <p>
     * Note that even if this method returns true, the user can still skip aut 
     *
     * @param auth
     *      Always non-null.
     *      If the underlying transport had already performed authentication, this object is something other than
     *      {@link Hudson#ANONYMOUS}.
     */
    protected boolean shouldPerformAuthentication(Authentication auth) {
        return auth==Hudson.ANONYMOUS;
    }

234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255
    /**
     * Returns the identity of the client as determined at the CLI transport level.
     *
     * <p>
     * When the CLI connection to the server is tunneled over HTTP, that HTTP connection
     * can authenticate the client, just like any other HTTP connections to the server
     * can authenticate the client. This method returns that information, if one is available.
     * By generalizing it, this method returns the identity obtained at the transport-level authentication.
     *
     * <p>
     * For example, imagine if the current {@link SecurityRealm} is doing Kerberos authentication,
     * then this method can return a valid identity of the client.
     *
     * <p>
     * If the transport doesn't do authentication, this method returns {@link Hudson#ANONYMOUS}.
     */
    public Authentication getTransportAuthentication() {
        Authentication a = channel.getProperty(TRANSPORT_AUTHENTICATION);
        if (a==null)    a = Hudson.ANONYMOUS;
        return a;
    }

256 257 258 259 260
    /**
     * Executes the command, and return the exit code.
     *
     * @return
     *      0 to indicate a success, otherwise an error code.
261 262 263 264 265 266
     * @throws AbortException
     *      If the processing should be aborted. Hudson will report the error message
     *      without stack trace, and then exits this command.
     * @throws Exception
     *      All the other exceptions cause the stack trace to be dumped, and then
     *      the command exits with an error code.
267
     */
268
    protected abstract int run() throws Exception;
269 270 271

    protected void printUsage(PrintStream stderr, CmdLineParser p) {
        stderr.println("java -jar hudson-cli.jar "+getName()+" args...");
272
        printUsageSummary(stderr);
273 274 275
        p.printUsage(stderr);
    }

276 277 278 279 280 281 282 283 284
    /**
     * Called while producing usage. This is a good method to override
     * to render the general description of the command that goes beyond
     * a single-line summary. 
     */
    protected void printUsageSummary(PrintStream stderr) {
        stderr.println(getShortDescription());
    }

285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305
    /**
     * Convenience method for subtypes to obtain the system property of the client.
     */
    protected String getClientSystemProperty(String name) throws IOException, InterruptedException {
        return channel.call(new GetSystemProperty(name));
    }

    private static final class GetSystemProperty implements Callable<String, IOException> {
        private final String name;

        private GetSystemProperty(String name) {
            this.name = name;
        }

        public String call() throws IOException {
            return System.getProperty(name);
        }

        private static final long serialVersionUID = 1L;
    }

K
Kohsuke Kawaguchi 已提交
306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326
    /**
     * Convenience method for subtypes to obtain environment variables of the client.
     */
    protected String getClientEnvironmentVariable(String name) throws IOException, InterruptedException {
        return channel.call(new GetEnvironmentVariable(name));
    }

    private static final class GetEnvironmentVariable implements Callable<String, IOException> {
        private final String name;

        private GetEnvironmentVariable(String name) {
            this.name = name;
        }

        public String call() throws IOException {
            return System.getenv(name);
        }

        private static final long serialVersionUID = 1L;
    }

327 328 329 330 331 332 333 334 335 336 337 338 339
    /**
     * Creates a clone to be used to execute a command.
     */
    protected CLICommand createClone() {
        try {
            return getClass().newInstance();
        } catch (IllegalAccessException e) {
            throw new AssertionError(e);
        } catch (InstantiationException e) {
            throw new AssertionError(e);
        }
    }

340 341 342 343 344 345 346 347 348 349 350 351 352
    /**
     * Auto-discovers {@link OptionHandler}s and add them to the given command line parser.
     */
    protected void registerOptionHandlers() {
        try {
            for (Class c : Index.list(OptionHandlerExtension.class,Hudson.getInstance().pluginManager.uberClassLoader,Class.class)) {
                Type t = Types.getBaseClass(c, OptionHandler.class);
                CmdLineParser.registerHandler(Types.erasure(Types.getTypeArgument(t,0)), c);
            }
        } catch (IOException e) {
            throw new Error(e);
        }
    }
353

354 355 356 357 358 359 360 361 362 363 364
    /**
     * Returns all the registered {@link CLICommand}s.
     */
    public static ExtensionList<CLICommand> all() {
        return Hudson.getInstance().getExtensionList(CLICommand.class);
    }

    /**
     * Obtains a copy of the command for invocation.
     */
    public static CLICommand clone(String name) {
365 366 367
        for (CLICommand cmd : all())
            if(name.equals(cmd.getName()))
                return cmd.createClone();
368 369
        return null;
    }
370 371

    private static final Logger LOGGER = Logger.getLogger(CLICommand.class.getName());
J
jpederzolli 已提交
372

373 374 375 376 377
    /**
     * Key for {@link Channel#getProperty(Object)} that links to the {@link Authentication} object
     * which captures the identity of the client given by the transport layer.
     */
    public static final ChannelProperty<Authentication> TRANSPORT_AUTHENTICATION = new ChannelProperty<Authentication>(Authentication.class,"transportAuthentication");
378 379 380 381 382 383 384 385 386 387 388 389 390 391 392

    private static final ThreadLocal<CLICommand> CURRENT_COMMAND = new ThreadLocal<CLICommand>();

    /*package*/ static CLICommand setCurrent(CLICommand cmd) {
        CLICommand old = getCurrent();
        CURRENT_COMMAND.set(cmd);
        return old;
    }

    /**
     * If the calling thread is in the middle of executing a CLI command, return it. Otherwise null.
     */
    public static CLICommand getCurrent() {
        return CURRENT_COMMAND.get();
    }
393
}