2009-07-28 02:39:48 +02:00
|
|
|
<!-- A Relax NG schema for the libvirt secret properties XML format -->
|
|
|
|
<grammar xmlns="http://relaxng.org/ns/structure/1.0">
|
|
|
|
<start>
|
|
|
|
<ref name='secret'/>
|
|
|
|
</start>
|
|
|
|
|
|
|
|
<define name='secret'>
|
|
|
|
<element name='secret'>
|
|
|
|
<optional>
|
2009-09-11 14:04:41 +01:00
|
|
|
<attribute name='ephemeral'>
|
|
|
|
<choice>
|
|
|
|
<value>yes</value>
|
|
|
|
<value>no</value>
|
|
|
|
</choice>
|
|
|
|
</attribute>
|
2009-07-28 02:39:48 +02:00
|
|
|
</optional>
|
|
|
|
<optional>
|
2009-09-11 14:04:41 +01:00
|
|
|
<attribute name='private'>
|
|
|
|
<choice>
|
|
|
|
<value>yes</value>
|
|
|
|
<value>no</value>
|
|
|
|
</choice>
|
|
|
|
</attribute>
|
2009-07-28 02:39:48 +02:00
|
|
|
</optional>
|
|
|
|
<interleave>
|
2009-09-11 14:04:41 +01:00
|
|
|
<optional>
|
|
|
|
<element name='uuid'>
|
|
|
|
<ref name='UUID'/>
|
|
|
|
</element>
|
|
|
|
</optional>
|
|
|
|
<optional>
|
|
|
|
<element name='description'>
|
|
|
|
<text/>
|
|
|
|
</element>
|
|
|
|
</optional>
|
|
|
|
<optional>
|
|
|
|
<element name='usage'>
|
|
|
|
<choice>
|
2009-12-10 17:03:47 +01:00
|
|
|
<ref name='usagevolume'/>
|
2009-09-11 14:04:41 +01:00
|
|
|
<!-- More choices later -->
|
|
|
|
</choice>
|
|
|
|
</element>
|
|
|
|
</optional>
|
2009-07-28 02:39:48 +02:00
|
|
|
</interleave>
|
|
|
|
</element>
|
|
|
|
</define>
|
2009-09-01 19:25:11 +02:00
|
|
|
|
|
|
|
<define name='usagevolume'>
|
|
|
|
<attribute name='type'>
|
|
|
|
<value>volume</value>
|
|
|
|
</attribute>
|
|
|
|
<element name='volume'>
|
2009-09-11 14:04:41 +01:00
|
|
|
<ref name='absFilePath'/>
|
2009-09-01 19:25:11 +02:00
|
|
|
</element>
|
|
|
|
</define>
|
Fix UUID handling in secrets/storage encryption APIs
Convert all the secret/storage encryption APIs / wire format to
handle UUIDs in raw format instead of non-canonical printable
format. Guarentees data format correctness.
* docs/schemas/storageencryption.rng: Make UUID mandatory for a secret
and validate fully
* docs/schemas/secret.rng: Fully validate UUID
* include/libvirt/libvirt.h, include/libvirt/libvirt.h.in, Add
virSecretLookupByUUID and virSecretGetUUID. Make
virSecretGetUUIDString follow normal API design pattern
* python/generator.py: Skip generation of virSecretGetUUID,
virSecretGetUUIDString and virSecretLookupByUUID
* python/libvir.c, python/libvirt-python-api.xml: Manual impl
of virSecretGetUUID,virSecretGetUUIDString and virSecretLookupByUUID
* qemud/remote.c: s/virSecretLookupByUUIDString/virSecretLookupByUUID/
Fix get_nonnull_secret/make_nonnull_secret to use unsigned char
* qemud/remote_protocol.x: Fix remote_nonnull_secret to use a
remote_uuid instead of remote_nonnull_string for UUID field.
Rename REMOTE_PROC_SECRET_LOOKUP_BY_UUID_STRING to
REMOTE_PROC_SECRET_LOOKUP_BY_UUID_STRING and make it take an
remote_uuid value
* qemud/remote_dispatch_args.h, qemud/remote_dispatch_prototypes.h,
qemud/remote_dispatch_ret.h, qemud/remote_dispatch_table.h,
qemud/remote_protocol.c, qemud/remote_protocol.h: Re-generate
* src/datatypes.h, src/datatypes.c: Store UUID in raw format instead
of printable. Change virGetSecret to use raw format UUID
* src/driver.h: Rename virDrvSecretLookupByUUIDString to
virDrvSecretLookupByUUID and use raw format UUID
* src/libvirt.c: Add virSecretLookupByUUID and virSecretGetUUID
and re-implement virSecretLookupByUUIDString and
virSecretGetUUIDString in terms of those
* src/libvirt_public.syms: Add virSecretLookupByUUID and
virSecretGetUUID
* src/remote_internal.c: Rename remoteSecretLookupByUUIDString
to remoteSecretLookupByUUID. Fix typo in args for
remoteSecretDefineXML impl. Use raw UUID format for
get_nonnull_secret and make_nonnull_secret
* src/storage_encryption_conf.c, src/storage_encryption_conf.h:
Storage UUID in raw format, and require it to be present in
XML. Use UUID parser to validate.
* secret_conf.h, secret_conf.c: Generate a UUID if none is provided.
Storage UUID in raw format.
* src/secret_driver.c: Adjust to deal with raw UUIDs. Save secrets
in a filed with printable UUID, instead of base64 UUID.
* src/virsh.c: Adjust for changed public API contract of
virSecretGetUUIDString.
* src/storage_Backend.c: DOn't undefine secret we just generated
upon successful volume creation. Fix to handle raw UUIDs. Generate
a non-clashing UUID
* src/qemu_driver.c: Change to use lookupByUUID instead of
lookupByUUIDString
2009-09-10 17:44:12 +01:00
|
|
|
|
|
|
|
<define name="UUID">
|
|
|
|
<choice>
|
|
|
|
<data type="string">
|
|
|
|
<param name="pattern">[a-fA-F0-9]{32}</param>
|
|
|
|
</data>
|
|
|
|
<data type="string">
|
|
|
|
<param name="pattern">[a-fA-F0-9]{8}\-([a-fA-F0-9]{4}\-){3}[a-fA-F0-9]{12}</param>
|
|
|
|
</data>
|
|
|
|
</choice>
|
|
|
|
</define>
|
|
|
|
|
2009-09-11 14:04:41 +01:00
|
|
|
<define name="absFilePath">
|
|
|
|
<data type="string">
|
|
|
|
<param name="pattern">/[a-zA-Z0-9_\.\+\-&/%]+</param>
|
|
|
|
</data>
|
|
|
|
</define>
|
|
|
|
|
2009-07-28 02:39:48 +02:00
|
|
|
</grammar>
|