X-Git-Url: https://git.adam-barratt.org.uk/?a=blobdiff_plain;f=modules%2Fpuppetmaster%2Flib%2Fpuppet%2Fparser%2Ffunctions%2Fnodeinfo.rb;h=31ba3858103420938a9dd57270cb286a62078dc2;hb=d3e812cb9c2b22b06511876a1520cddc2da12db1;hp=f43ef25e61dbf637a32b32a85a65c4cb8ee048ff;hpb=802e8b8fc8aa875bb8d1d1cfff8878255cde6e21;p=mirror%2Fdsa-puppet.git diff --git a/modules/puppetmaster/lib/puppet/parser/functions/nodeinfo.rb b/modules/puppetmaster/lib/puppet/parser/functions/nodeinfo.rb index f43ef25e6..31ba38581 100644 --- a/modules/puppetmaster/lib/puppet/parser/functions/nodeinfo.rb +++ b/modules/puppetmaster/lib/puppet/parser/functions/nodeinfo.rb @@ -1,49 +1,82 @@ module Puppet::Parser::Functions newfunction(:nodeinfo, :type => :rvalue) do |args| + require 'ipaddr' host = args[0] yamlfile = args[1] + begin + nodeinfo = function_yamlinfo([host, yamlfile]) + nodeinfo['ldap'] = function_ldapinfo([host, '*']) + unless nodeinfo['ldap']['ipHostNumber'] + raise Puppet::ParseError, "Host #{host} does not have ipHostNumber values in ldap" + end + nodeinfo['hoster'] = function_whohosts([nodeinfo['ldap']['ipHostNumber']]) + nodeinfo['timeserver'] = (nodeinfo['ldap']['purpose'].respond_to?('include?') && nodeinfo['ldap']['purpose'].include?('timeserver')) + nodeinfo['ganeti'] = (nodeinfo['ldap']['purpose'].respond_to?('include?') && nodeinfo['ldap']['purpose'].include?('ganeti/kvm host')) - require '/var/lib/puppet/lib/puppet/parser/functions/ldapinfo.rb' - require '/var/lib/puppet/lib/puppet/parser/functions/whohosts.rb' + if lookupvar('::mta') == 'exim4' + unless nodeinfo['heavy_exim'] + nodeinfo['smarthost'] = 'mailout.debian.org' + end + elsif lookupvar('::mta') == 'postfix' + unless nodeinfo['heavy_postfix'] + nodeinfo['smarthost'] = 'mailout.debian.org' + end + end - nodeinfo = function_yamlinfo(host, yamlfile) - nodeinfo['ldap'] = function_ldapinfo(host, '*') - unless nodeinfo['ldap']['ipHostNumber'] - raise Puppet::ParseError, "Host #{host} does not have ipHostNumber values in ldap" - end - nodeinfo['hoster'] = function_whohosts(nodeinfo['ldap']['ipHostNumber'], "/etc/puppet/modules/debian-org/misc/hoster.yaml") - - nodeinfo['misc'] = {} - fqdn = lookupvar('fqdn') - if fqdn and fqdn == host - v4ips = lookupvar('v4ips') - if v4ips - nodeinfo['misc']['v4addrs'] = v4ips.split(',') - - # find out if we are behind nat - intersection = nodeinfo['misc']['v4addrs'] & nodeinfo['ldap']['ipHostNumber'] - nodeinfo['misc']['natted'] = intersection.empty? + nodeinfo['misc'] = {} + fqdn = lookupvar('::fqdn') + if fqdn and fqdn == host + v4ips = lookupvar('::v4ips') + if v4ips and v4ips.to_s != "" and v4ips.to_s != 'undefined' + nodeinfo['misc']['v4addrs'] = v4ips.split(',').uniq() + + # find out if we are behind nat + intersection = nodeinfo['misc']['v4addrs'] & nodeinfo['ldap']['ipHostNumber'] + nodeinfo['misc']['natted'] = intersection.empty? + else + nodeinfo['misc']['v4addrs'] = [] + end + + v6ips = lookupvar('::v6ips') + if v6ips and v6ips.to_s != "" and v6ips.to_s != 'undefined' + nodeinfo['misc']['v6addrs'] = v6ips.split(',').uniq() + else + nodeinfo['misc']['v6addrs'] = [] + end + + # find out if we have an ipv4 and/or an ipv6 address for our host in ldap. + nodeinfo['misc']['has_v4_ldap'] = nodeinfo['ldap']['ipHostNumber'].any? { |x| IPAddr.new(x).ipv4? } + nodeinfo['misc']['has_v6_ldap'] = nodeinfo['ldap']['ipHostNumber'].any? { |x| IPAddr.new(x).ipv6? } + nodeinfo['misc']['v4_ldap'] = nodeinfo['ldap']['ipHostNumber'].select { |x| IPAddr.new(x).ipv4? } + nodeinfo['misc']['v6_ldap'] = nodeinfo['ldap']['ipHostNumber'].select { |x| IPAddr.new(x).ipv6? } end - v6ips = lookupvar('v6ips') - if v6ips and v6ips != "no" - nodeinfo['misc']['v6addrs'] = v6ips.split(',') + ns = call_function('hiera',['nameservers']) + allow_dns_q = call_function('hiera',['allow_dns_query']) + if ns.empty? + # no nameservers known for this hoster + nodeinfo['misc']['resolver-recursive'] = true + + if not allow_dns_q.empty? + raise Puppet::ParseError, "No nameservers listed for #{nodeinfo['hoster']['name']} yet we should answer somebody's queries? That makes no sense. allow_dns_q: #{allow_dns_q}." + end + elsif (nodeinfo['misc']['v4addrs'] and (ns & nodeinfo['misc']['v4addrs']).size > 0) or + (nodeinfo['misc']['v6addrs'] and (ns & nodeinfo['misc']['v6addrs']).size > 0) + # this host is listed as a nameserver at this location + nodeinfo['misc']['resolver-recursive'] = true + + if allow_dns_q.empty? + raise Puppet::ParseError, "Host #{host} is listed as a nameserver for #{nodeinfo['hoster']['name']} but no allow_dns_query networks are defined for this location" + end + else + nodeinfo['misc']['resolver-recursive'] = false end - end - if not nodeinfo['hoster']['nameservers'] or nodeinfo['hoster']['nameservers'].empty? - # no nameservers known for this hoster - nodeinfo['misc']['resolver-recursive'] = true - elsif (nodeinfo['hoster']['nameservers'] & nodeinfo['misc']['v4addrs']).size > 0 or - (nodeinfo['hoster']['nameservers'] & nodeinfo['misc']['v6addrs']).size > 0 - # this host is listed as a nameserver at this location - nodeinfo['misc']['resolver-recursive'] = true - else - nodeinfo['misc']['resolver-recursive'] = false + return(nodeinfo) + rescue => e + raise Puppet::ParseError, "Error in nodeinfo for node #{host}, yamlfile #{yamlfile}: #{e.message}\n#{e.backtrace}" end - - return(nodeinfo) end end