OpenSecurity/bin/vmmanager.pyw
author Oliver Maurhart <oliver.maurhart@ait.ac.at>
Tue, 04 Mar 2014 16:54:51 +0100
changeset 87 d5b04809faca
parent 81 84663db906d7
child 90 bfd41c38d156
permissions -rwxr-xr-x
basic layout for installment V0.2
oliver@87
     1
'''
oliver@87
     2
Created on Nov 19, 2013
oliver@87
     3
oliver@87
     4
@author: BarthaM
oliver@87
     5
'''
oliver@87
     6
import os
oliver@87
     7
import os.path
oliver@87
     8
from subprocess import Popen, PIPE, call, STARTUPINFO, _subprocess
oliver@87
     9
import sys
oliver@87
    10
import re
oliver@87
    11
oliver@87
    12
from cygwin import Cygwin
oliver@87
    13
from environment import Environment
oliver@87
    14
import threading
oliver@87
    15
import time
oliver@87
    16
import string
oliver@87
    17
oliver@87
    18
import shutil
oliver@87
    19
import stat
oliver@87
    20
import tempfile
oliver@87
    21
from opensecurity_util import logger, setupLogger, OpenSecurityException
oliver@87
    22
import ctypes
oliver@87
    23
import itertools
oliver@87
    24
DEBUG = True
oliver@87
    25
oliver@87
    26
class VMManagerException(Exception):
oliver@87
    27
    def __init__(self, value):
oliver@87
    28
        self.value = value
oliver@87
    29
    def __str__(self):
oliver@87
    30
        return repr(self.value)
oliver@87
    31
oliver@87
    32
class USBFilter:
oliver@87
    33
    vendorid = ""
oliver@87
    34
    productid = ""
oliver@87
    35
    revision = ""
oliver@87
    36
    
oliver@87
    37
    def __init__(self, vendorid, productid, revision):
oliver@87
    38
        self.vendorid = vendorid.lower()
oliver@87
    39
        self.productid = productid.lower()
oliver@87
    40
        self.revision = revision.lower()
oliver@87
    41
        return
oliver@87
    42
    
oliver@87
    43
    def __eq__(self, other):
oliver@87
    44
        return self.vendorid == other.vendorid and self.productid == other.productid and self.revision == other.revision
oliver@87
    45
    
oliver@87
    46
    def __hash__(self):
oliver@87
    47
        return hash(self.vendorid) ^ hash(self.productid) ^ hash(self.revision)
oliver@87
    48
    
oliver@87
    49
    def __repr__(self):
oliver@87
    50
        return "VendorId = \'" + str(self.vendorid) + "\' ProductId = \'" + str(self.productid) + "\' Revision = \'" + str(self.revision) + "\'"
oliver@87
    51
 
oliver@87
    52
class VMManager(object):
oliver@87
    53
    vmRootName = "SecurityDVM"
oliver@87
    54
    systemProperties = None
oliver@87
    55
    _instance = None
oliver@87
    56
    machineFolder = ''
oliver@87
    57
    rsdHandler = None
oliver@87
    58
    
oliver@87
    59
    def __init__(self):
oliver@87
    60
        self.systemProperties = self.getSystemProperties()
oliver@87
    61
        self.machineFolder = self.systemProperties["Default machine folder"]
oliver@87
    62
        self.cleanup()
oliver@87
    63
        self.rsdHandler = DeviceHandler(self)
oliver@87
    64
        self.rsdHandler.start()
oliver@87
    65
        return
oliver@87
    66
    
oliver@87
    67
    @staticmethod
oliver@87
    68
    def getInstance():
oliver@87
    69
        if VMManager._instance == None:
oliver@87
    70
            VMManager._instance = VMManager()
oliver@87
    71
        return VMManager._instance
oliver@87
    72
    
oliver@87
    73
    def cleanup(self):
oliver@87
    74
        if self.rsdHandler != None:
oliver@87
    75
            self.rsdHandler.stop()
oliver@87
    76
            self.rsdHandler.join()
oliver@87
    77
        drives = self.getNetworkDrives()
oliver@87
    78
        for drive in drives.keys():
oliver@87
    79
            self.unmapNetworkDrive(drive)
oliver@87
    80
        for vm in self.listSDVM():
oliver@87
    81
            self.poweroffVM(vm)
oliver@87
    82
            self.removeVM(vm)
oliver@87
    83
        
oliver@87
    84
    # return hosty system properties
oliver@87
    85
    def getSystemProperties(self):
oliver@87
    86
        result = Cygwin.vboxExecute('list systemproperties')
oliver@87
    87
        if result[1]=='':
oliver@87
    88
            return None
oliver@87
    89
        props = dict((k.strip(),v.strip().strip('"')) for k,v in (line.split(':', 1) for line in result[1].strip().splitlines()))
oliver@87
    90
        #logger.debug(props)
oliver@87
    91
        return props
oliver@87
    92
    
oliver@87
    93
    # return the folder containing the guest VMs     
oliver@87
    94
    def getMachineFolder(self):
oliver@87
    95
        return self.machineFolder
oliver@87
    96
oliver@87
    97
    # list all existing VMs registered with VBox
oliver@87
    98
    def listVM(self):
oliver@87
    99
        result = Cygwin.vboxExecute('list vms')[1]
oliver@87
   100
        vms = list(k.strip().strip('"') for k,_ in (line.split(' ') for line in result.splitlines()))
oliver@87
   101
        return vms
oliver@87
   102
    
oliver@87
   103
    # list running VMs
oliver@87
   104
    def listRunningVMS(self):
oliver@87
   105
        result = Cygwin.vboxExecute('list runningvms')[1]
oliver@87
   106
        vms = list(k.strip().strip('"') for k,_ in (line.split(' ') for line in result.splitlines()))
oliver@87
   107
        return vms
oliver@87
   108
    
oliver@87
   109
    # list existing SDVMs
oliver@87
   110
    def listSDVM(self):
oliver@87
   111
        vms = self.listVM()
oliver@87
   112
        svdms = []
oliver@87
   113
        for vm in vms:
oliver@87
   114
            if vm.startswith(self.vmRootName) and vm != self.vmRootName:
oliver@87
   115
                svdms.append(vm)
oliver@87
   116
        return svdms
oliver@87
   117
    
oliver@87
   118
    # generate valid (not already existing SDVM name). necessary for creating a new VM
oliver@87
   119
    def generateSDVMName(self):
oliver@87
   120
        vms = self.listVM()
oliver@87
   121
        for i in range(0,999):
oliver@87
   122
            if(not self.vmRootName+str(i) in vms):
oliver@87
   123
                return self.vmRootName+str(i)
oliver@87
   124
        return ''
oliver@87
   125
    
oliver@87
   126
    # return the RSDs connected to the host
oliver@87
   127
    def getConnectedRSDS(self):
oliver@87
   128
        results = Cygwin.vboxExecute('list usbhost')[1]
oliver@87
   129
        results = results.split('Host USB Devices:')[1].strip()
oliver@87
   130
        
oliver@87
   131
        items = list( "UUID:"+result for result in results.split('UUID:') if result != '')
oliver@87
   132
        rsds = dict()   
oliver@87
   133
        for item in items:
oliver@87
   134
            props = dict()
oliver@87
   135
            for line in item.splitlines():
oliver@87
   136
                if line != "":         
oliver@87
   137
                    k,v = line[:line.index(':')].strip(), line[line.index(':')+1:].strip()
oliver@87
   138
                    props[k] = v
oliver@87
   139
            
oliver@87
   140
            if 'Product' in props.keys() and props['Product'] == 'Mass Storage':
oliver@87
   141
                usb_filter = USBFilter( re.search(r"\((?P<vid>[0-9A-Fa-f]+)\)", props['VendorId']).groupdict()['vid'], 
oliver@87
   142
                                        re.search(r"\((?P<pid>[0-9A-Fa-f]+)\)", props['ProductId']).groupdict()['pid'],
oliver@87
   143
                                        re.search(r"\((?P<rev>[0-9A-Fa-f]+)\)", props['Revision']).groupdict()['rev'] )
oliver@87
   144
                rsds[props['UUID']] = usb_filter;
oliver@87
   145
                logger.debug(usb_filter)
oliver@87
   146
        return rsds
oliver@87
   147
    
oliver@87
   148
    # return the RSDs attached to all existing SDVMs
oliver@87
   149
    def getAttachedRSDs(self):
oliver@87
   150
        vms = self.listSDVM()
oliver@87
   151
        attached_devices = dict()
oliver@87
   152
        for vm in vms:
oliver@87
   153
            rsd_filter = self.getUSBFilter(vm)
oliver@87
   154
            if rsd_filter != None:
oliver@87
   155
                attached_devices[vm] = rsd_filter
oliver@87
   156
        return attached_devices
oliver@87
   157
    
oliver@87
   158
    # configures hostonly networking and DHCP server. requires admin rights
oliver@87
   159
    def configureHostNetworking(self):
oliver@87
   160
        #cmd = 'vboxmanage list hostonlyifs'
oliver@87
   161
        #Cygwin.vboxExecute(cmd)
oliver@87
   162
        #cmd = 'vboxmanage hostonlyif remove \"VirtualBox Host-Only Ethernet Adapter\"'
oliver@87
   163
        #Cygwin.vboxExecute(cmd)
oliver@87
   164
        #cmd = 'vboxmanage hostonlyif create'
oliver@87
   165
        #Cygwin.vboxExecute(cmd)
oliver@87
   166
        Cygwin.vboxExecute('hostonlyif ipconfig \"VirtualBox Host-Only Ethernet Adapter\" --ip 192.168.56.1 --netmask 255.255.255.0')
oliver@87
   167
        #cmd = 'vboxmanage dhcpserver add'
oliver@87
   168
        #Cygwin.vboxExecute(cmd)
oliver@87
   169
        Cygwin.vboxExecute('dhcpserver modify --ifname \"VirtualBox Host-Only Ethernet Adapter\" --ip 192.168.56.100 --netmask 255.255.255.0 --lowerip 192.168.56.101 --upperip 192.168.56.200')
oliver@87
   170
    
oliver@87
   171
    #create new virtual machine instance based on template vm named SecurityDVM (\SecurityDVM\SecurityDVM.vmdk)
oliver@87
   172
    def createVM(self, vm_name):
oliver@87
   173
        hostonly_if = self.getHostOnlyIFs()
oliver@87
   174
        Cygwin.vboxExecute('createvm --name ' + vm_name + ' --ostype Debian --register')
oliver@87
   175
        Cygwin.vboxExecute('modifyvm ' + vm_name + ' --memory 512 --vram 10 --cpus 1 --usb on --usbehci on --nic1 hostonly --hostonlyadapter1 \"' + hostonly_if['Name'] + '\" --nic2 nat')
oliver@87
   176
        Cygwin.vboxExecute('storagectl ' + vm_name + ' --name SATA --add sata --portcount 2')
oliver@87
   177
        return
oliver@87
   178
    
oliver@87
   179
    # attach storage image to controller
oliver@87
   180
    def storageAttach(self, vm_name):
oliver@87
   181
        if self.isStorageAttached(vm_name):
oliver@87
   182
            self.storageDetach(vm_name)
oliver@87
   183
        Cygwin.vboxExecute('storageattach ' + vm_name + ' --storagectl SATA --port 0 --device 0 --type hdd --medium \"'+ self.machineFolder + '\SecurityDVM\SecurityDVM.vmdk\"')
oliver@87
   184
        return
oliver@87
   185
    
oliver@87
   186
    # return true if storage is attached 
oliver@87
   187
    def isStorageAttached(self, vm_name):
oliver@87
   188
        info = self.getVMInfo(vm_name)
oliver@87
   189
        return (info['SATA-0-0']!='none')
oliver@87
   190
    
oliver@87
   191
    # detach storage from controller
oliver@87
   192
    def storageDetach(self, vm_name):
oliver@87
   193
        if self.isStorageAttached(vm_name):
oliver@87
   194
            Cygwin.vboxExecute('storageattach ' + vm_name + ' --storagectl SATA --port 0 --device 0 --type hdd --medium none')
oliver@87
   195
        return
oliver@87
   196
    
oliver@87
   197
    def changeStorageType(self, filename, storage_type):
oliver@87
   198
        Cygwin.vboxExecute('modifyhd \"' + filename + '\" --type ' + storage_type)
oliver@87
   199
        return
oliver@87
   200
    
oliver@87
   201
    # list storage snaphots for VM
oliver@87
   202
    def updateTemplate(self):
oliver@87
   203
        self.cleanup()
oliver@87
   204
        self.poweroffVM('SecurityDVM')
oliver@87
   205
        self.waitShutdown('SecurityDVM')
oliver@87
   206
        
oliver@87
   207
        # check for updates
oliver@87
   208
        self.genCertificateISO('SecurityDVM')
oliver@87
   209
        self.attachCertificateISO('SecurityDVM')
oliver@87
   210
        
oliver@87
   211
        self.storageDetach('SecurityDVM')
oliver@87
   212
        results = Cygwin.vboxExecute('list hdds')[1]
oliver@87
   213
        results = results.replace('Parent UUID', 'Parent')
oliver@87
   214
        items = list( "UUID:"+result for result in results.split('UUID:') if result != '')
oliver@87
   215
        
oliver@87
   216
        snaps = dict()   
oliver@87
   217
        for item in items:
oliver@87
   218
            props = dict()
oliver@87
   219
            for line in item.splitlines():
oliver@87
   220
                if line != "":         
oliver@87
   221
                    k,v = line[:line.index(':')].strip(), line[line.index(':')+1:].strip()
oliver@87
   222
                    props[k] = v;
oliver@87
   223
            snaps[props['UUID']] = props
oliver@87
   224
        
oliver@87
   225
        
oliver@87
   226
        template_storage = self.machineFolder + '\SecurityDVM\SecurityDVM.vmdk'
oliver@87
   227
        
oliver@87
   228
        # find template uuid
oliver@87
   229
        template_uuid = ''
oliver@87
   230
        for hdd in snaps.values():
oliver@87
   231
            if hdd['Location'] == template_storage:
oliver@87
   232
                template_uuid = hdd['UUID']
oliver@87
   233
        logger.debug('found parent uuid ' + template_uuid)
oliver@87
   234
        
oliver@87
   235
        # remove snapshots 
oliver@87
   236
        for hdd in snaps.values():
oliver@87
   237
            if hdd['Parent'] == template_uuid:
oliver@87
   238
                #template_uuid = hdd['UUID']
oliver@87
   239
                logger.debug('removing snapshot ' + hdd['UUID'])
oliver@87
   240
                results = Cygwin.vboxExecute('closemedium disk {' + hdd['UUID'] + '} --delete')[1]
oliver@87
   241
                # parse result 0%...10%...20%...30%...40%...50%...60%...70%...80%...90%...100%
oliver@87
   242
        
oliver@87
   243
        self.changeStorageType(template_storage,'normal')
oliver@87
   244
        self.storageAttach('SecurityDVM')
oliver@87
   245
        self.startVM('SecurityDVM')
oliver@87
   246
        self.waitStartup('SecurityDVM')
oliver@87
   247
        Cygwin.sshExecute('"sudo apt-get -y update"', VMManager.getHostOnlyIP('SecurityDVM'), 'osecuser', Cygwin.cygPath(self.machineFolder) + '/' + 'SecurityDVM' + '/dvm_key'  )
oliver@87
   248
        Cygwin.sshExecute('"sudo apt-get -y upgrade"', VMManager.getHostOnlyIP('SecurityDVM'), 'osecuser', Cygwin.cygPath(self.machineFolder) + '/' + 'SecurityDVM' + '/dvm_key'  )
oliver@87
   249
        #self.stopVM('SecurityDVM')
oliver@87
   250
        self.hibernateVM('SecurityDVM')
oliver@87
   251
        self.waitShutdown('SecurityDVM')
oliver@87
   252
        self.storageDetach('SecurityDVM')
oliver@87
   253
        self.changeStorageType(template_storage,'immutable')
oliver@87
   254
        self.storageAttach('SecurityDVM')
oliver@87
   255
        self.rsdHandler = DeviceHandler(self)
oliver@87
   256
        self.rsdHandler.start()
oliver@87
   257
    
oliver@87
   258
    #remove VM from the system. should be used on VMs returned by listSDVMs    
oliver@87
   259
    def removeVM(self, vm_name):
oliver@87
   260
        logger.info('Removing ' + vm_name)
oliver@87
   261
        Cygwin.vboxExecute('unregistervm ' + vm_name + ' --delete')
oliver@87
   262
        machineFolder = Cygwin.cygPath(self.machineFolder)
oliver@87
   263
        Cygwin.bashExecute('"/usr/bin/rm -rf ' + machineFolder + '/' + vm_name + '"')
oliver@87
   264
    
oliver@87
   265
    # start VM
oliver@87
   266
    def startVM(self, vm_name):
oliver@87
   267
        logger.info('Starting ' +  vm_name)
oliver@87
   268
        result = Cygwin.vboxExecute('startvm ' + vm_name + ' --type headless' )
oliver@87
   269
        while not string.find(str(result), 'successfully started',):
oliver@87
   270
            logger.error("Failed to start SDVM: " + vm_name + " retrying")
oliver@87
   271
            time.sleep(1)
oliver@87
   272
            result = Cygwin.vboxExecute('startvm ' + vm_name + ' --type headless')
oliver@87
   273
        return result[0]
oliver@87
   274
    
oliver@87
   275
    # return wether VM is running or not
oliver@87
   276
    def isVMRunning(self, vm_name):
oliver@87
   277
        return vm_name in self.listRunningVMS()    
oliver@87
   278
    
oliver@87
   279
    # stop VM
oliver@87
   280
    def stopVM(self, vm_name):
oliver@87
   281
        logger.info('Sending shutdown signal to ' + vm_name)
oliver@87
   282
        Cygwin.sshExecute( '"sudo shutdown -h now"', VMManager.getHostOnlyIP(vm_name), 'osecuser', Cygwin.cygPath(self.machineFolder) + '/' + vm_name + '/dvm_key' )
oliver@87
   283
    
oliver@87
   284
    # stop VM
oliver@87
   285
    def hibernateVM(self, vm_name):
oliver@87
   286
        logger.info('Sending shutdown signal to ' + vm_name)
oliver@87
   287
        Cygwin.sshExecute( '"sudo hibernate-disk&"', VMManager.getHostOnlyIP(vm_name), 'osecuser', Cygwin.cygPath(self.machineFolder) + '/' + vm_name + '/dvm_key', wait_return=False )
oliver@87
   288
            
oliver@87
   289
    # poweroff VM
oliver@87
   290
    def poweroffVM(self, vm_name):
oliver@87
   291
        if not self.isVMRunning(vm_name):
oliver@87
   292
            return
oliver@87
   293
        logger.info('Powering off ' + vm_name)
oliver@87
   294
        return Cygwin.vboxExecute('controlvm ' + vm_name + ' poweroff')
oliver@87
   295
    
oliver@87
   296
    #list the hostonly IFs exposed by the VBox host
oliver@87
   297
    @staticmethod    
oliver@87
   298
    def getHostOnlyIFs():
oliver@87
   299
        result = Cygwin.vboxExecute('list hostonlyifs')[1]
oliver@87
   300
        if result=='':
oliver@87
   301
            return None
oliver@87
   302
        props = dict((k.strip(),v.strip().strip('"')) for k,v in (line.split(':', 1) for line in result.strip().splitlines()))
oliver@87
   303
        return props
oliver@87
   304
    
oliver@87
   305
    # return the hostOnly IP for a running guest or the host
oliver@87
   306
    @staticmethod    
oliver@87
   307
    def getHostOnlyIP(vm_name):
oliver@87
   308
        if vm_name == None:
oliver@87
   309
            logger.info('Gettting hostOnly IP address for Host')
oliver@87
   310
            return VMManager.getHostOnlyIFs()['IPAddress']
oliver@87
   311
        else:
oliver@87
   312
            logger.info('Gettting hostOnly IP address ' + vm_name)
oliver@87
   313
            result = Cygwin.vboxExecute('guestproperty get ' + vm_name + ' /VirtualBox/GuestInfo/Net/0/V4/IP')
oliver@87
   314
            if result=='':
oliver@87
   315
                return None
oliver@87
   316
            result = result[1]
oliver@87
   317
            if result.startswith('No value set!'):
oliver@87
   318
                return None
oliver@87
   319
            return result[result.index(':')+1:].strip()
oliver@87
   320
            
oliver@87
   321
    # attach removable storage device to VM by provision of filter
oliver@87
   322
    def attachRSD(self, vm_name, rsd_filter):
oliver@87
   323
        return Cygwin.vboxExecute('usbfilter add 0 --target ' + vm_name + ' --name OpenSecurityRSD --vendorid ' + rsd_filter.vendorid + ' --productid ' + rsd_filter.productid + ' --revision ' + rsd_filter.revision)
oliver@87
   324
    
oliver@87
   325
    # detach removable storage from VM by 
oliver@87
   326
    def detachRSD(self, vm_name):
oliver@87
   327
        return Cygwin.vboxExecute('usbfilter remove 0 --target ' + vm_name )
oliver@87
   328
        
oliver@87
   329
    
oliver@87
   330
    # return the description set for an existing VM
oliver@87
   331
    def getVMInfo(self, vm_name):
oliver@87
   332
        results = Cygwin.vboxExecute('showvminfo ' + vm_name + ' --machinereadable')[1]
oliver@87
   333
        props = dict((k.strip().strip('"'),v.strip().strip('"')) for k,v in (line.split('=', 1) for line in results.splitlines()))
oliver@87
   334
        #logger.debug(props)
oliver@87
   335
        return props
oliver@87
   336
    
oliver@87
   337
    # return the configured USB filter for an existing VM 
oliver@87
   338
    def getUSBFilter(self, vm_name):
oliver@87
   339
        props = self.getVMInfo(vm_name)
oliver@87
   340
        keys = set(['USBFilterVendorId1', 'USBFilterProductId1', 'USBFilterRevision1'])
oliver@87
   341
        keyset = set(props.keys())
oliver@87
   342
        usb_filter = None
oliver@87
   343
        if keyset.issuperset(keys):
oliver@87
   344
            usb_filter = USBFilter(props['USBFilterVendorId1'], props['USBFilterProductId1'], props['USBFilterRevision1'])
oliver@87
   345
        return usb_filter
oliver@87
   346
    
oliver@87
   347
    #generates ISO containing authorized_keys for use with guest VM
oliver@87
   348
    def genCertificateISO(self, vm_name):
oliver@87
   349
        machineFolder = Cygwin.cygPath(self.machineFolder)
oliver@87
   350
        # remove .ssh folder if exists
oliver@87
   351
        cmd = '\"/usr/bin/rm -rf \\\"' + machineFolder + '/' + vm_name + '/.ssh\\\"\"'
oliver@87
   352
        Cygwin.bashExecute(cmd)
oliver@87
   353
        # remove .ssh folder if exists
oliver@87
   354
        Cygwin.bashExecute('\"/usr/bin/rm -rf \\\"' + machineFolder + '/' + vm_name + '/dvm_key\\\"\"')
oliver@87
   355
        # create .ssh folder in vm_name
oliver@87
   356
        Cygwin.bashExecute('\"/usr/bin/mkdir -p \\\"' + machineFolder + '/' + vm_name + '/.ssh\\\"\"')
oliver@87
   357
        # generate dvm_key pair in vm_name / .ssh     
oliver@87
   358
        Cygwin.bashExecute('\"/usr/bin/ssh-keygen -q -t rsa -N \\"\\" -C \\\"' + vm_name + '\\\" -f \\\"' + machineFolder + '/' + vm_name + '/.ssh/dvm_key\\\"\"')
oliver@87
   359
        # move out private key
oliver@87
   360
        Cygwin.bashExecute('\"/usr/bin/mv \\\"' + machineFolder + '/' + vm_name + '/.ssh/dvm_key\\\" \\\"' + machineFolder + '/' + vm_name + '\\\"')
oliver@87
   361
        # set permissions for private key
oliver@87
   362
        Cygwin.bashExecute('\"/usr/bin/chmod 500 \\\"' + machineFolder + '/' + vm_name + '/dvm_key\\\"\"')
oliver@87
   363
        # rename public key to authorized_keys
oliver@87
   364
        Cygwin.bashExecute('\"/usr/bin/mv \\\"' + machineFolder + '/' + vm_name + '/.ssh/dvm_key.pub\\\" \\\"' + machineFolder + '/' + vm_name + '/.ssh/authorized_keys\\\"')
oliver@87
   365
        # set permissions for authorized_keys
oliver@87
   366
        Cygwin.bashExecute('\"/usr/bin/chmod 500 \\\"' + machineFolder + '/' + vm_name + '/.ssh/authorized_keys\\\"\"')
oliver@87
   367
        # generate iso image with .ssh/authorized keys
oliver@87
   368
        Cygwin.bashExecute('\"/usr/bin/genisoimage -J -R -o \\\"' + machineFolder + '/' + vm_name + '/'+ vm_name + '.iso\\\" \\\"' + machineFolder + '/' + vm_name + '/.ssh\\\"\"')
oliver@87
   369
    
oliver@87
   370
    # attaches generated ssh public cert to guest vm
oliver@87
   371
    def attachCertificateISO(self, vm_name):
oliver@87
   372
        result = Cygwin.vboxExecute('storageattach ' + vm_name + ' --storagectl SATA --port 1 --device 0 --type dvddrive --mtype readonly --medium \"' + self.machineFolder + '\\' + vm_name + '\\'+ vm_name + '.iso\"')
oliver@87
   373
        return result
oliver@87
   374
    
oliver@87
   375
    # wait for machine to come up
oliver@87
   376
    def waitStartup(self, vm_name, timeout_ms = 30000):
oliver@87
   377
        result = Cygwin.vboxExecute('guestproperty wait ' + vm_name + ' SDVMStarted --timeout ' + str(timeout_ms) + ' --fail-on-timeout')
oliver@87
   378
        return VMManager.getHostOnlyIP(vm_name)
oliver@87
   379
    
oliver@87
   380
    # wait for machine to shutdown
oliver@87
   381
    def waitShutdown(self, vm_name):
oliver@87
   382
        while vm_name in self.listRunningVMS():
oliver@87
   383
            time.sleep(1)
oliver@87
   384
        return
oliver@87
   385
        
oliver@87
   386
    # handles browsing request    
oliver@87
   387
    def handleBrowsingRequest(self):
oliver@87
   388
        if VMManager.handleDeviceChangeLock.acquire(True):
oliver@87
   389
            new_sdvm = self.generateSDVMName()
oliver@87
   390
            self.createVM(new_sdvm)
oliver@87
   391
            self.storageAttach(new_sdvm)
oliver@87
   392
            self.genCertificateISO(new_sdvm)
oliver@87
   393
            self.attachCertificateISO(new_sdvm)
oliver@87
   394
            self.startVM(new_sdvm)
oliver@87
   395
            new_ip = self.waitStartup(new_sdvm)
oliver@87
   396
            if new_ip != None:
oliver@87
   397
                self.mapNetworkDrive('g:', '\\\\' + new_ip + '\\Download', None, None)
oliver@87
   398
            #TODO: cleanup notifications somwhere else (eg. machine shutdown)
oliver@87
   399
            VMManager.handleDeviceChangeLock.release()
oliver@87
   400
        return new_sdvm
oliver@87
   401
    
oliver@87
   402
    #Small function to check the availability of network resource.
oliver@87
   403
    #def isAvailable(self, path):
oliver@87
   404
        #return os.path.exists(path)
oliver@87
   405
        #result = Cygwin.cmdExecute('IF EXIST "' + path + '" echo YES')
oliver@87
   406
        #return string.find(result[1], 'YES',)
oliver@87
   407
    
oliver@87
   408
    #Small function to check if the mention location is a directory
oliver@87
   409
    def isDirectory(self, path):
oliver@87
   410
        result = Cygwin.cmdExecute('dir ' + path + ' | FIND ".."')
oliver@87
   411
        return string.find(result[1], 'DIR',)
oliver@87
   412
oliver@87
   413
    def mapNetworkDrive(self, drive, networkPath, user, password):
oliver@87
   414
        self.unmapNetworkDrive(drive)
oliver@87
   415
        #Check for drive availability
oliver@87
   416
        if os.path.exists(drive):
oliver@87
   417
            logger.error("Drive letter is already in use: " + drive)
oliver@87
   418
            return -1
oliver@87
   419
        #Check for network resource availability
oliver@87
   420
        while not os.path.exists(networkPath):
oliver@87
   421
            time.sleep(1)
oliver@87
   422
            logger.info("Path not accessible: " + networkPath + " retrying")
oliver@87
   423
            #return -1
oliver@87
   424
    
oliver@87
   425
        command = 'USE ' + drive + ' ' + networkPath + ' /PERSISTENT:NO'
oliver@87
   426
        if user != None:
oliver@87
   427
            command += ' ' + password + ' /User' + user
oliver@87
   428
    
oliver@87
   429
        #TODO: Execute 'NET USE' command with authentication
oliver@87
   430
        result = Cygwin.execute('C:\\Windows\\system32\\net.exe', command)
oliver@87
   431
        if string.find(result[1], 'successfully',) == -1:
oliver@87
   432
            logger.error("Failed: NET " + command)
oliver@87
   433
            return -1
oliver@87
   434
        return 1
oliver@87
   435
    
oliver@87
   436
    def unmapNetworkDrive(self, drive):
oliver@87
   437
        drives = self.getNetworkDrives()
oliver@87
   438
        if drive not in drives.keys():
oliver@87
   439
            return 1 
oliver@87
   440
        result = Cygwin.execute('C:\\Windows\\system32\\net.exe', 'USE ' + drive + ' /DELETE /YES')
oliver@87
   441
        if string.find(str(result[1]), 'successfully',) == -1:
oliver@87
   442
            logger.error(result[2])
oliver@87
   443
            return -1
oliver@87
   444
        return 1
oliver@87
   445
    
oliver@87
   446
    def getNetworkDrives(self):
oliver@87
   447
        ip = VMManager.getHostOnlyIP(None)
oliver@87
   448
        ip = ip[:ip.rindex('.')]
oliver@87
   449
        drives = dict()    
oliver@87
   450
        result = Cygwin.execute('C:\\Windows\\system32\\net.exe', 'USE')
oliver@87
   451
        for line in result[1].splitlines():
oliver@87
   452
            if ip in line:
oliver@87
   453
                parts = line.split()
oliver@87
   454
                drives[parts[1]] = parts[2]
oliver@87
   455
        return drives
oliver@87
   456
            
oliver@87
   457
    def genNetworkDrive(self):
oliver@87
   458
        network_drives = self.getNetworkDrives()
oliver@87
   459
        logical_drives = self.getLogicalDrives()
oliver@87
   460
        drives = list(map(chr, range(68, 91)))  
oliver@87
   461
        for drive in drives:
oliver@87
   462
            if drive+':' not in network_drives and drive not in logical_drives:
oliver@87
   463
                return drive+':'
oliver@87
   464
oliver@87
   465
    def getNetworkDrive(self, vm_name):
oliver@87
   466
        ip = self.getHostOnlyIP(vm_name)
oliver@87
   467
        result = Cygwin.execute('C:\\Windows\\system32\\net.exe', 'USE')
oliver@87
   468
        for line in result[1].splitlines():
oliver@87
   469
            if ip in line:
oliver@87
   470
                parts = line.split()
oliver@87
   471
                return parts[0]
oliver@87
   472
    
oliver@87
   473
    def getLogicalDrives(self):
oliver@87
   474
        drive_bitmask = ctypes.cdll.kernel32.GetLogicalDrives()
oliver@87
   475
        return list(itertools.compress(string.ascii_uppercase,  map(lambda x:ord(x) - ord('0'), bin(drive_bitmask)[:1:-1])))
oliver@87
   476
                    
oliver@87
   477
        #vms = self.listSDVM()
oliver@87
   478
        #for vm in vms:
oliver@87
   479
        #    ip = self.getHostOnlyIP(vm)
oliver@87
   480
        
oliver@87
   481
class DeviceHandler(threading.Thread): 
oliver@87
   482
    vmm = None
oliver@87
   483
    #handleDeviceChangeLock = threading.Lock()
oliver@87
   484
    attachedRSDs = None  
oliver@87
   485
    connectedRSDs = None
oliver@87
   486
    running = True
oliver@87
   487
    def __init__(self, vmmanger): 
oliver@87
   488
        threading.Thread.__init__(self)
oliver@87
   489
        self.vmm = vmmanger
oliver@87
   490
 
oliver@87
   491
    def stop(self):
oliver@87
   492
        self.running = False
oliver@87
   493
        
oliver@87
   494
    def run(self):
oliver@87
   495
        self.connectedRSDs = dict()#self.vmm.getConnectedRSDS()
oliver@87
   496
        self.attachedRSDs = self.vmm.getAttachedRSDs()
oliver@87
   497
        while self.running:
oliver@87
   498
            tmp_rsds = self.vmm.getConnectedRSDS()
oliver@87
   499
            if tmp_rsds.keys() == self.connectedRSDs.keys():
oliver@87
   500
                logger.debug("Nothing's changed. sleep(3)")
oliver@87
   501
                time.sleep(3)
oliver@87
   502
                continue
oliver@87
   503
            
oliver@87
   504
            logger.info("Something's changed")          
oliver@87
   505
            
oliver@87
   506
            self.connectedRSDs = tmp_rsds
oliver@87
   507
            self.attachedRSDs = self.vmm.getAttachedRSDs()
oliver@87
   508
            
oliver@87
   509
            
oliver@87
   510
            for vm_name in self.attachedRSDs.keys():
oliver@87
   511
                if self.attachedRSDs[vm_name] not in self.connectedRSDs.values():
oliver@87
   512
                    drive = self.vmm.getNetworkDrive(vm_name)
oliver@87
   513
                    self.vmm.unmapNetworkDrive(drive)
oliver@87
   514
                    #self.stopVM(vm_name)
oliver@87
   515
                    self.vmm.detachRSD(vm_name)
oliver@87
   516
                    self.vmm.poweroffVM(vm_name)
oliver@87
   517
                    self.vmm.removeVM(vm_name)
oliver@87
   518
            #create new vm for attached device if any
oliver@87
   519
            self.attachedRSDs = self.vmm.getAttachedRSDs()
oliver@87
   520
            self.connectedRSDs = self.vmm.getConnectedRSDS()
oliver@87
   521
            
oliver@87
   522
            new_ip = None
oliver@87
   523
            for connected_device in self.connectedRSDs.values():
oliver@87
   524
                if (self.attachedRSDs and False) or (connected_device not in self.attachedRSDs.values()):
oliver@87
   525
                    new_sdvm = self.vmm.generateSDVMName()
oliver@87
   526
                    self.vmm.createVM(new_sdvm)
oliver@87
   527
                    self.vmm.storageAttach(new_sdvm)
oliver@87
   528
                    self.vmm.attachRSD(new_sdvm, connected_device)
oliver@87
   529
                    self.vmm.startVM(new_sdvm)
oliver@87
   530
                    new_ip = self.vmm.waitStartup(new_sdvm)
oliver@87
   531
                    drive = self.vmm.genNetworkDrive()
oliver@87
   532
                    if new_ip != None:
oliver@87
   533
                        self.vmm.mapNetworkDrive(drive, '\\\\' + new_ip + '\\USB', None, None)
oliver@87
   534
                    #TODO: cleanup notifications somwhere else (eg. machine shutdown)
oliver@87
   535
            #self.handleDeviceChangeLock.release()
oliver@87
   536
                
oliver@87
   537
oliver@87
   538
if __name__ == '__main__':
oliver@87
   539
    #man = VMManager.getInstance()
oliver@87
   540
    #man.listVM()
oliver@87
   541
    #print man.getConnectedRSDs()
oliver@87
   542
    #print man.getNetworkDrives()
oliver@87
   543
    #man.genNetworkDrive()
oliver@87
   544
    drive_bitmask = ctypes.cdll.kernel32.GetLogicalDrives()
oliver@87
   545
    print list(itertools.compress(string.ascii_uppercase,  map(lambda x:ord(x) - ord('0'), bin(drive_bitmask)[:1:-1])))
oliver@87
   546
    #print list(map(chr, range(68, 91))) 
oliver@87
   547
    
oliver@87
   548
    #time.sleep(-1)
oliver@87
   549
    #man.listVM()
oliver@87
   550
    #man.listVM()
oliver@87
   551
    #man.listVM()
oliver@87
   552
    #man.listVM()
oliver@87
   553
    #man.genCertificateISO('SecurityDVM0')
oliver@87
   554
    #man.guestExecute('SecurityDVM0', '/bin/ls -la')
oliver@87
   555
    #logger = setupLogger('VMManager')
oliver@87
   556
    #c = Cygwin()
oliver@87
   557
    
oliver@87
   558
    #man.sshExecute('/bin/ls -la', 'SecurityDVM0')
oliver@87
   559
    #man.sshExecuteX11('/usr/bin/iceweasel', 'SecurityDVM0')
oliver@87
   560
    #man.removeVM('SecurityDVM0')
oliver@87
   561
    #man.netUse('192.168.56.134', 'USB\\')
oliver@87
   562
    #ip = '192.168.56.139'
oliver@87
   563
    
oliver@87
   564
    #man.cygwin_path = 'c:\\cygwin64\\bin\\'
oliver@87
   565
    #man.handleDeviceChange()
oliver@87
   566
    #print man.listSDVM()
oliver@87
   567
    #man.configureHostNetworking()
oliver@87
   568
    #new_vm = man.generateSDVMName()
oliver@87
   569
    #man.createVM(new_vm)
oliver@87
   570
    
oliver@87
   571
    #print Cygwin.cmd()
oliver@87
   572
    #man.isAvailable('c:')
oliver@87
   573
    #ip = man.getHostOnlyIP('SecurityDVM0')
oliver@87
   574
    #man.mapNetworkDrive('h:', '\\\\' + ip + '\Download', None, None)
oliver@87
   575
    
oliver@87
   576
    #man.genCertificateISO(new_vm)
oliver@87
   577
    #man.attachCertificateISO(new_vm)
oliver@87
   578
    
oliver@87
   579
    #man.attachCertificateISO(vm_name)
oliver@87
   580
    #man.guestExecute(vm_name, "ls")
oliver@87
   581
    #man.sshGuestX11Execute('SecurityDVM1', '/usr/bin/iceweasel')
oliver@87
   582
    #time.sleep(60)
oliver@87
   583
    #print man.cygwinPath("C:\Users\BarthaM\VirtualBox VMs\SecurityDVM\.ssh\*")
oliver@87
   584
    #man.genCertificateISO('SecurityDVM')
oliver@87
   585
    #man.attachCertificateISO('SecurityDVM')
oliver@87
   586
    #man.isStorageAttached('SecurityDVM')
oliver@87
   587
    #man.guestExecute('SecurityDVM', 'sudo apt-get -y update')
oliver@87
   588
    #man.guestExecute('SecurityDVM', 'sudo apt-get -y upgrade' )
oliver@87
   589
    
oliver@87
   590
    #man.stopVM('SecurityDVM')
oliver@87
   591
    #man.storageDetach('SecurityDVM')
oliver@87
   592
    #man.changeStorageType('C:\Users\BarthaM\VirtualBox VMs\SecurityDVM\SecurityDVM.vmdk','immutable')
oliver@87
   593
    #man.storageAttach('SecurityDVM')
oliver@87
   594
    
oliver@87
   595
    
oliver@87
   596
    #cmd = "c:\\cygwin64\\bin\\bash.exe --login -c \"/bin/ls\""
oliver@87
   597
    #man.execute(cmd)
oliver@87
   598