HEX
Server: Apache/2.4.52 (Ubuntu)
System: Linux ip-10-0-8-47 6.8.0-1021-aws #23~22.04.1-Ubuntu SMP Tue Dec 10 16:31:58 UTC 2024 aarch64
User: ubuntu (1000)
PHP: 8.1.2-1ubuntu2.22
Disabled: NONE
Upload Files
File: //lib/python3/dist-packages/cloudinit/sources/__pycache__/DataSourceAzure.cpython-310.pyc
o

�Ad��
@s&UddlZddlZddlZddlZddlZddlmmZddl	m
Z
ddlmZddl
mZm
Z
ddlmZmZmZmZddlmZddlmZddlmZmZmZmZmZdd	lmZmZdd
l m!Z!m"Z"m#Z#ddl$m%Z%ddl&m'Z'dd
l(m)Z)ddl*m+Z+ddl,m-Z-m.Z.m/Z/m0Z0m1Z1m2Z2m3Z3m4Z4m5Z5m6Z6m7Z7m8Z8m9Z9m:Z:m;Z;m<Z<m=Z=ddl>m?Z?e�@eA�ZBdZCddiZDdZEdZFdZGdZHGdd�de
�ZIdZJeeKeLd<gd�ZMddgZNdd �ZOd!d"�ZPd#eKd$eKd%eeKfd&d'�ZQd(eKd%eKfd)d*�ZRe3d%eeKfd+d,��ZSe3d(eKd%eeKfd-d.��ZTd�d%eKfd/d0�ZUd1d2�ZVd3d4�ZWd5d6�ZXd%eeKfd7d8�ZYe�Z��rMd9ZFeYd:�Z[e[du�rFeB�\d;�d<e[ZEneB�\d=�dZJeGd>eEid?d@�Z]d>dAdBgd?dC�ieFdDdE�gdF�Z^dGeCgZ_dHZ`dIZadJZbe3dKeed%ecfdLdM��ZdGdNdO�dOeje�ZfdPdQ�ZgdRdS�ZhdTdU�ZidVdW�ZjdXdY�Zkd�d[d\�Zle3d]d^��Zme3d_d`��Zne3eEdadafdbeKdceKddecdeecfdfdg��Zoe3d�dhdi��Zpe3djdk��Zqd�dmdn�Zre3dodp��Zse3eJfdqdr��Zte3dsdt��Zue3dudv��Zve3dwewd%ewfdxdy��Zxe3d%ewfdzd{��Zye3d�d|d}��ZzefZ{efej|ffgZ}d~d�Z~dS)��N)�Enum)�Path)�sleep�time)�Any�Dict�List�Optional)�dmi)�log)�net�sources�ssh_util�subp�util)�
EventScope�	EventType)�NoDHCPLeaseError�NoDHCPLeaseInterfaceError�NoDHCPLeaseMissingDhclientError)�EphemeralDHCPv4)�events)�imds)�netlink)�DEFAULT_WIRESERVER_ENDPOINT�BrokenAzureDataSource�ChassisAssetTag�NonAzureDataSource�	OvfEnvXml�azure_ds_reporter�azure_ds_telemetry_reporter�build_minimal_ovf�dhcp_log_cb�get_boot_telemetry�get_ip_from_lease_value�get_metadata_from_fabric�get_system_info�is_byte_swapped�push_log_to_kvp�report_diagnostic_event�report_failure_to_fabric)�UrlError�Azure�instance-idziid-AZURE-NODEz/dev/disk/cloud/azure_resource�ext4z/var/lib/waagentz/dev/sr0c@s eZdZdZdZdZdZdZdS)�PPSType�None�PreprovisionedOSDisk�Running�Savable�UnknownN)�__name__�
__module__�__qualname__�NONE�OS_DISK�RUNNING�SAVABLE�UNKNOWN�r=r=�C/usr/lib/python3/dist-packages/cloudinit/sources/DataSourceAzure.pyr/Asr/z/sys/firmware/acpi/tables/OEM0�PLATFORM_ENTROPY_SOURCE)z"/etc/netplan/90-hotplug-azure.yamlz /usr/local/sbin/ephemeral_eth.shz+/etc/udev/rules.d/10-net-device-added.rulesz#/run/network/interfaces.ephemeral.d�	mlx4_core�	mlx5_corecCs�|��D]9}t�d|�r=|��}t|�dkr=|d�d�}t|�dkr=|ddkr=|d�|�r=|d�d�}|dSqd	S)
z�
    dev.storvsc.1.%pnpinfo:
        classid=32412632-86cb-44a2-9b5c-50d1417354f5
        deviceid=00000000-0001-8899-0000-000000000000
    �pnpinfo���=r�deviceid��.N)�
splitlines�re�search�split�len�
startswith)�
sysctl_outrF�line�fields�columns�compsr=r=r>�"find_storvscid_from_sysctl_pnpinfohs
�
���rTcCs2|��D]}t�||�r|��}|dSqdS)z�
    scbus0 on ata0 bus 0
    scbus1 on ata1 bus 0
    scbus2 on blkvsc0 bus 0
    scbus3 on blkvsc1 bus 0
    scbus4 on storvsc2 bus 0
    scbus5 on storvsc3 bus 0
    scbus-1 on xpt0 bus 0
    rN)rIrJrKrL)�camcontrol_out�disk_drvrP�itemsr=r=r>�find_busdev_from_disk~s�rXrU�busdev�returncCsN|��D] }t�||�r$|�d�}t|�dkr$|d�d�}|dSqdS)z�
    <Msft Virtual CD/ROM 1.0>          at scbus1 target 0 lun 0 (cd0,pass0)
    <Msft Virtual Disk 1.0>            at scbus2 target 0 lun 0 (da0,pass1)
    <Msft Virtual Disk 1.0>            at scbus3 target 1 lun 0 (da1,pass2)
    �(rDrG�,rN)rIrJrKrLrM)rUrYrPrW�dev_passr=r=r>�find_dev_from_busdev�s
�r^�macc
CsZt|�dkr)d�|dd�|dd�|dd�|dd�|dd�|dd�g�}|��S)	z1Normalize mac address with colons and lower-case.��:rrD����
)rM�join�lower�r_r=r=r>�normalize_mac_address�s
>�ricCsdd�t��D�S)z-Get Hyper-V NICs as normalized MAC addresses.cSs$g|]}|ddkrt|d��qS)rD�	hv_netvscrG�ri)�.0�nr=r=r>�
<listcomp>�s
�
�z1get_hv_netvsc_macs_normalized.<locals>.<listcomp>)r�get_interfacesr=r=r=r>�get_hv_netvsc_macs_normalized�s�rpcsj�fdd�tjtd�D�}d|vrdSt|�dkr(td�|ftjd�|dStd	�|ftjd�d
S)z0Determine the device driver to match on, if any.cs$g|]}�t|d�kr|d�qS)rGrDrk�rl�irhr=r>rn�s��z3determine_device_driver_for_mac.<locals>.<listcomp>)�blacklist_driversrjrGz4Assuming driver for interface with mac=%s drivers=%r��logger_funcrz=Unable to specify driver for interface with mac=%s drivers=%rN)rro�BLACKLIST_DRIVERSrMr)�LOG�debug�warning)r_�driversr=rhr>�determine_device_driver_for_mac�s(

�����r{c	Cs:zt�|�jWStjyt�dd�|��|YSw)NzFailed to execute: %s� )r�stdout�ProcessExecutionErrorrwrxrf)�cmd�fail_retr=r=r>�execute_or_debug�s�r�cCstddgdd�S)N�sysctlzdev.storvsc�)r��r�r=r=r=r>�get_dev_storvsc_sysctl��r�cCstgd��S)N)�
camcontrol�devlistz-br�r=r=r=r>�get_camcontrol_dev_bus��r�cCstddg�S)Nr�r�r�r=r=r=r>�get_camcontrol_dev�r�r�cCs�d}|dkrd}|d}dt|�}d�||�}t�}t||�}|s)t�d�dSt�}t�}d�|�}t||�}	|	rMt	||	�}
|
durKt�d	�dS|
Sd
�|�}t||�}	|	rkt	||	�}
|
durit�d	�dS|
SdS)N�00000000rG�00000001rD�000z{0}-{1}z#Fail to find storvsc id from sysctlz	blkvsc{0}zFail to find /dev/daXz
storvsc{0})
�str�formatr�rTrwrxr�r�rXr^)�port_id�g0�g1�g0g1rO�	storvscid�camcontrol_b_outrU�blkvsc�scbusx�devname�storvscr=r=r>�get_resource_disk_on_freebsd�s<









r�zfreebsd-ufsrGzresource disk is not None�/dev/zresource disk is None�
ephemeral0T)�data_dir�disk_aliases�apply_network_config�gpt�d)�
table_type�layout�	overwritezephemeral0.1)�
filesystem�device)�
disk_setup�fs_setup�
datasource�never_destroy_ntfszTemporary Storage�REDACTED�seed_dircCs,t��}|dur
dS|durdS|d��S)z@Check platform environment to report if this datasource may run.NTF�ovf-env.xml)r�query_system�exists)r��chassis_tagr=r=r>�is_platform_viable5sr�c
s�eZdZdZejejejhiZ	dZ
ejZ
dZdd�Zdeddf�fd	d
�Zdd�Zd
d�Zedddd�deedededdfdd��Zedmdd��Zdefdd�Zedd��Zedndedefdd��Zdo�fd!d"�	Zed#d$��Zd%d&�Z d'd(�Z!ede"efd)d*��Z#d+e$de"efd,d-�Z%de"efd.d/�Z&d0d1�Z'd2d3�Z(dpd4d5�Z)ed6d7��Z*e	9dqd:edede+fd;d<��Z,ed=d>��Z-ed?dd@�dAedBeddfdCdD��Z.edEdF��Z/ed:edefdGdH��Z0edIdJ��Z1edKdL��Z2edMdN��Z3edefdOdP��Z4eddQ�dRee"edee"efdSdT��Z5d+e$deefdUdV�Z6dWe$d+e$de7fdXdY�Z8edZd[��Z9ed\e$d+e$dee"efd]d^��Z:d_d`�Z;edadb��Z<e=dcdd��Z>ededf��Z?e=dgdh��Z@e=didj��ZAed+e$defdkdl��ZB�ZCS)r�DataSourceAzurer,FrGcCsztj�||||�tj�|jd�|_i|_d|_t	�
t	�|ti�t
g�|_d|_d|_d|_t|_tj�|jdd�|_dS)N�azure�data�reported_ready)r
�
DataSource�__init__�os�pathrfr��cfg�seedr�
mergemanydict�get_cfg_by_path�DS_CFG_PATH�BUILTIN_DS_CONFIG�ds_cfg�_iso_dev�_network_config�_ephemeral_dhcp_ctxr�_wireserver_endpoint�	cloud_dir�_reported_ready_marker_file)�self�sys_cfg�distro�pathsr=r=r>r�Ps�
�zDataSourceAzure.__init__�ci_pkl_versionrZNcs8t��|�d|_d|_t|_tj�|j	j
dd�|_dS)Nr�r�)�super�	_unpickler�r�rr�r�r�rfr�r�r�)r�r���	__class__r=r>r�`s

�zDataSourceAzure._unpicklecCstj�|�}d||jfS)Nz%s [seed=%s])r
r��__str__r�)r��rootr=r=r>r�jszDataSourceAzure.__str__cCsH|jdurd}n|j�d�rd}n|j��dkrd}nd}d||jfS)z/Return the subplatform metadata source details.N�unknownz/devzconfig-diskrzseed-dirz%s (%s))r�rNrg)r��subplatform_typer=r=r>�_get_subplatformns
z DataSourceAzure._get_subplatform�)�iface�retry_sleep�timeout_minutesr�r�r�cCs�|jdur	td��t�d|�t|t|j��d�|_d}|dt�}t	j
ddtd���|dur�z|j��}WnUt
yGtd	tjd
�YnFtyXtdtjd
�d|_�tyitd|tjd
�Yn$tjy�}ztd
|j|j|j|jftjd
�WYd}~nd}~ww|dur�t�||kr�t|�nn|dus0|dur�d|_t��|d|j_d|vr�t|d�|_Wd�dSWd�dS1s�wYdS)a�Setup ephemeral networking.

        Keep retrying DHCP up to specified number of minutes.  This does
        not kill dhclient, so the timeout in practice may be up to
        timeout_minutes + the system-configured timeout for dhclient.

        :param timeout_minutes: Number of minutes to keep retrying for.

        :raises NoDHCPLeaseError: If unable to obtain DHCP lease.
        Nz/Bringing up networking when already configured.z)Requested ephemeral networking (iface=%s))r��
dhcp_log_func�tmp_dir�<zobtain-dhcp-leasezobtain dhcp lease��name�description�parentzInterface not found for DHCPrtzdhclient executable not foundz&Failed to obtain DHCP lease (iface=%s)z7Command failed: cmd=%r stderr=%r stdout=%r exit_code=%s�	interfacezunknown-245)r��RuntimeErrorrwrxrr"r��get_tmp_exec_pathrr�ReportEventStackr�obtain_leaserr)ryr�errorrrr~r�stderrr}�	exit_coderr�r$r�)r�r�r�r��lease�timeoutr�r=r=r>�_setup_ephemeral_networkingzs~
���
��
������
�)��6"�z+DataSourceAzure._setup_ephemeral_networkingcCs"|jdurdS|j��d|_dS)zTeardown ephemeral networking.N)r��
clean_network�r�r=r=r>�_teardown_ephemeral_networking�s


z.DataSourceAzure._teardown_ephemeral_networkingcCs|jdup
|jjduS)z"Check if networking is configured.N)r�r�r�r=r=r>�_is_ephemeral_networking_up�s

�z+DataSourceAzure._is_ephemeral_networking_upcCs�i}|jd}d}ddi}ddddiii}d}i}t|j|�D]{}z:|�d�rFt��r8tj|td	d
�\}}}}n
t�|t�\}}}}||_nt|�\}}}}|}t	d|t
jd�WnHtymt	d
|t
jd�Yqtj
yt	d|t
jd�Yqty�}	zd|	}
t	|
t
jd�t�|
��d}	~	wwd}
t	|
t
jd�t|j�p�|du}|r�dnd}z|j|d�Wn	ty�Ynwi}
|��r�|��}
|
s�|dur�d}
t	|
�t�|
��|�||
�}|tjk�r%t��r�d}
t	|
t
jd�t�|
��|tjk�r	|��n|tjk�r|jdd�|��|� �\}}}}|��}
|j!|
d�|�p/d|_"|�#||t�$|d|
ig�|d��t%|
�}t&|
�}t'|
�}|�r_t
�d|�||ddd<|�rnt
�d|�||dd<|�r}t
�d|�||dd <|j"dk�r�|d!�s�zt(|||d"�}d#|i|d!<Wnt)�y�}zt	d$|t
jd�WYd}~nd}~ww|�s�t*|
�}|�r�t
�d%�zt+�,d�-|�.���|d&<Wnt)�y�t	d't
jd�Ynw||k�r�t	d(|t
jd�t/�}|�r�||dd)<|�0�|dd*<|j1du�rA|���rA|j2||
d+�}z|j3|d,�}Wnt)�y*Y|Swt
�d-|�|�r:||dd.<|�4�d/|_1|S)0aWalk all instance metadata sources returning a dict on success.

        @return: A dictionary of any metadata content for this instance.
        @raise: InvalidMetaDataException when the expected metadata service is
            unavailable, broken or disabled.
        r�N�local-hostnamer��system_info�default_userr�r��udf)�mtypez!Found provisioning metadata in %srtz$Did not find Azure data source in %sz%s was not mountablezBrokenAzureDataSource: %sz�Unable to find provisioning media, falling back to IMDS metadata. Be aware that IMDS metadata does not support admin passwords or custom-data (user-data only).�r��r�zNo OVF or IMDS availablez%Free BSD is not supported for PPS VMsF)�
create_marker)�imds_md�IMDSr)r��files�metadata�userdata_rawz Username retrieved from IMDS: %sz Hostname retrieved from IMDS: %sr�z(Disable password retrieved from IMDS: %s�disable_passwordr�)�username�hostname�
disableSshPwdr�z)Failed to construct OVF from IMDS data %szRetrieved userdata from IMDSr�zBad userdata in IMDSzusing files cached in %s�random_seedr-)r�r���pubkey_infoznegotiating returned %s�public-keysT)5r��list_possible_azure_dsr�rNr�
is_FreeBSD�mount_cb�load_azure_ds_dirr�r)rwrxr�MountFailedErrorrr�r
�InvalidMetaDataExceptionry�boolr�rr��get_metadata_from_imds�_determine_pps_typer/r8r;�_wait_for_all_nics_readyr9�_report_ready_for_pps�_wait_for_pps_os_disk_shutdown�_reprovision�validate_imds_network_metadatar��updater��_username_from_imds�_hostname_from_imds�_disable_password_from_imdsr!�	Exception�_userdata_from_imds�base64�	b64decoderfrL�_get_random_seed�_iid�_negotiated�!_determine_wireserver_pubkey_info�
_report_ready�_cleanup_markers)r��crawled_data�ddir�
ovf_source�mdr�r�r��src�exc�msg�requires_imds_metadatar�r��pps_type�
imds_username�
imds_hostname�imds_disable_password�contents�e�
imds_userdatar�r�ssh_keysr=r=r>�crawl_metadata�s.

����
�
����


���������
�
��

��	�zDataSourceAzure.crawl_metadatare�retriesc
CsNztj|d�WSttfy&}ztd|tjd�iWYd}~Sd}~ww)N�r2z!Ignoring IMDS metadata due to: %srt)r� fetch_metadata_with_api_fallbackr+�
ValueErrorr)rwry)r�r2r�r=r=r>r�s���z&DataSourceAzure.get_metadata_from_imdsr=cstt|��|�tj|_dS)z.Reset any cached class attributes to defaults.N)r�r��clear_cached_attrsr
�UNSET�_metadata_imds)r��
attr_defaultsr�r=r>r6�sz"DataSourceAzure.clear_cached_attrsc
Cs�tt|j��s	dSzt�Wnty&}zt�d|�WYd}~nd}~wwzt�WntyD}zt�d|�WYd}~nd}~wwt|j	j
_z8ztj
tjd|jd�}Wn%ty|}ztd|tjd�|��WYd}~W|��dSd}~wwW|��n|��w|j	r�|j	jd	kr�|j�d
�r�t�t}tj�|�r�td|tjd�t�|dtg�|_ntd
|tjd�|d|_|dd|_t�|dt g�|_!|d|_"t#|jd|ddd�dS)z�Crawl and process datasource metadata caching metadata as attrs.

        @return: True on success, False on error, invalid or disabled
            datasource.
        Fz Failed to get boot telemetry: %sNz$Failed to get system information: %szCrawl of metadata service)�logfuncr'�funcz"Could not crawl Azure metadata: %srt�ubuntur�zXEphemeral resource disk '%s' exists. Merging default Azure cloud ephemeral disk configs.r�zdEphemeral resource disk '%s' does not exist. Not merging default Azure cloud ephemeral disk configs.r�rr�r�r�i�)�dirmodeT)$r�rr�r#rrwryr&rvr��
networkingrsr�log_timerxr1r)r��_report_failurer�r�r��get�*maybe_remove_ubuntu_network_config_scripts�RESOURCE_DISK_PATHr�r�r�r��#BUILTIN_CLOUD_EPHEMERAL_DISK_CONFIGr�r8�DEFAULT_METADATAr�r��write_files)r�r.r!�devpathr=r=r>�	_get_data�s�
��
��

�
�����
�
���
���

�
�zDataSourceAzure._get_datacCs&|jrd|jvr|��St|jd�S)Nr-)r�rr�r�r=r=r>�get_instance_id
szDataSourceAzure.get_instance_idcCs|jd�|�S)Nr�)r�rA)r�r�r=r=r>�device_name_to_devicer�z%DataSourceAzure.device_name_to_devicec	Cs0z	|�|jd�WSttfyY|��Sw)z+
        Retrieve public SSH keys.
        r)�_get_public_keys_from_imdsr��KeyErrorr5�_get_public_keys_from_ovfr�r=r=r>�get_public_ssh_keyss�z#DataSourceAzure.get_public_ssh_keysr�cCs�z
dd�|ddD�}Wntyd}t|tjd��wtdd�|D��r5d	}t|tjd�t|��d
�t|��}t|tjd�|S)z�Get SSH keys from IMDS metadata.

        :raises KeyError: if IMDS metadata is malformed/missing.
        :raises ValueError: if key format is not supported.

        :returns: List of keys.
        cS�g|]}|d�qS)�keyDatar=)rl�
public_keyr=r=r>rn's��z>DataSourceAzure._get_public_keys_from_imds.<locals>.<listcomp>�compute�
publicKeysz"No SSH keys found in IMDS metadatartcss�|]	}t|d�VqdS))�keyN)�_key_is_openssh_formatted)rlrTr=r=r>�	<genexpr>0s�z=DataSourceAzure._get_public_keys_from_imds.<locals>.<genexpr>zKey(s) not in OpenSSH formatzRetrieved {} keys from IMDS)rLr)rwrx�anyr5r�rM)r�r�r0�log_msgr=r=r>rKs 

��z*DataSourceAzure._get_public_keys_from_imdscCsXg}z|jd}d�t|��}t|tjd�W|Sty+d}t|tjd�Y|Sw)zYGet SSH keys that were fetched from wireserver.

        :returns: List of keys.
        rzRetrieved {} keys from OVFrtzNo keys available from OVF)r�r�rMr)rwrxrL)r�r0rXr=r=r>rM9s
��z)DataSourceAzure._get_public_keys_from_ovfcCs|jS�N�r�r�r=r=r>�get_config_objIszDataSourceAzure.get_config_objcCst�|���SrY)r
�instance_id_matches_system_uuidrI)r�r�r=r=r>�check_instance_idLsz!DataSourceAzure.check_instance_idcCsxtj�|j�d�d�}t�d�}|durtd��|��}tj�	|�r:t
�|���}|��|kr1|St
|��|�r:|S|S)Nr�r-zsystem-uuidzfailed to read system-uuid)r�r�rfr��	get_cpathr
�
read_dmi_datar�rgr�r�	load_file�stripr')r��previous�
prev_iid_path�system_uuid�iidr=r=r>rPs�
zDataSourceAzure._iidc
Cs�z;d}tjddtd��
t�|�}Wd�n1swY|dur0d}t|tjd�WdStd|tjd�WdStyQ}z
tt	|�tj
d��d}~ww)z�Use the netlink socket provided to wait for nic detach event.
        NOTE: The function doesn't close the socket. The caller owns closing
        the socket and disposing it safely.
        Nzwait-for-nic-detachzwait for nic detachr�zHPreprovisioned nic not detached as expected. Proceeding without failing.rtz%The preprovisioned nic %s is detached)rr�rr�wait_for_nic_detach_eventr)rwry�AssertionErrorr�r�)r��nl_sock�ifnamer'r�r=r=r>�_wait_for_nic_detachgs,������z$DataSourceAzure._wait_for_nic_detachr�皙�����?ricCsft|�D]}|jj�|�rtd|tjd�dS|d|kr#t|�qtd|||ftjd�dS)NzThe link %s is up.rtrGz;The link %s is not up after %f seconds, continuing anyways.)�ranger�r>�try_set_link_upr)rw�infor)r�rir2r�rrr=r=r>�wait_for_link_up�s
��
�
�z DataSourceAzure.wait_for_link_upcCs@|j}t�d|�t�|djt��t�d��t	dtj
d�dS)Nz*Creating a marker file to report ready: %sz{pid}: {time}
)�pidrzRSuccessfully created reported ready marker file while in the preprovisioning pool.rt)r�rwrnr�
write_filer�r��getpidrr)rx)r�r�r=r=r>�_create_report_ready_marker�s�
�z+DataSourceAzure._create_report_ready_markerT)r��expect_url_errorr�rtc
Cs�z|��Wn3ty9}z'|r t|t�r tdtjd�d|_nd}t|tjd�t	�
|�|�WYd}~nd}~ww|rB|��dSdS)z�Report ready for PPS, creating the marker file upon completion.

        :raises sources.InvalidMetaDataException: On error reporting ready.
        z,Ignoring http call failure, it was expected.rtNz9Failed reporting ready while in the preprovisioning pool.)rr�
isinstancer+r)rwrxr�r�r
r
rs)r�r�rtr�r'r=r=r>r�s&������z%DataSourceAzure._report_ready_for_ppscCstdtjd�td�td��)Nz"Waiting for host to shutdown VM...rti�3�zShutdown failure for PPS disk.)r)rwrnrrr�r=r=r>r�s�z.DataSourceAzure._wait_for_pps_os_disk_shutdowncCsF|j|dd�|jdd�}|rt�d|�dSt�d|�|��dS)	z5Check if a given interface is the primary nic or not.r�)r�r�i,r3z%s is the primary nicTzQFailed to fetch IMDS metadata using nic %s. Assuming this is not the primary nic.F)r�rrwrnryr�)r�rir�r=r=r>�_check_if_nic_is_primary�s�z(DataSourceAzure._check_if_nic_is_primaryc
Cs�t�d�zTg}d}	d}tjddt|�td��t�||�}Wd�n1s*wY|�|�t	d|tjd	�|�
|�|sOt�d
|�|�|�}|rYt�d�WdSqtyu}zt	t
|�tjd	�WYd}~dSd}~ww)z6Wait until the primary nic for the vm is hot-attached.z*Waiting for primary nic to be hot-attachedFTNzwait-for-nic-attachz4wait for nic attach after %d nics have been attachedr�zDetected nic %s attached.rtz!Checking if %s is the primary niczFound primary nic for this VM.)rwrnrr�rMrr�wait_for_nic_attach_event�appendr)rorvrgr�r�)r�rh�
nics_found�primary_nic_foundrir�r=r=r>�"_wait_for_hot_attached_primary_nic�sB
����


�


�$ ��z2DataSourceAzure._wait_for_hot_attached_primary_nicc
Cs�d}z_z<t��}|jdd�z|��Wntjy3}ztd|tjd�d|_	WYd}~nd}~ww|�
|�|�|�WntjyV}z
tt
|�tjd��d}~wwW|r`|��dSdS|ri|��ww)aWait for nic(s) to be hot-attached. There may be multiple nics
        depending on the customer request.
        But only primary nic would be able to communicate with wireserver
        and IMDS. So we detect and save the primary nic to be used later.
        NT)rtzLIgnoring failure while tearing down networking, NIC was likely unplugged: %rrt)r�create_bound_netlink_socketrr�rr~r)rwrnr�rjr{�NetlinkCreateSocketErrorr�ry�close)r�rhr.r=r=r>r"s:����
����
�z(DataSourceAzure._wait_for_all_nics_readycCsFd}ttj�|j��}d}|r�|��s|jdd�z�z_|jdus'|jjdur+t	d��|jj}t
��}|��t
�d|�tjddtd	��,zt
�||�Wntyi}ztd
|t
jd�WYd}~nd}~wwWd�n1stwYWn4t
jy�}ztd|t
jd�t�d
�|�d}~wty�}z
tdt
jd�t�d
�|�d}~wwW|r�|��n|r�|��ww|��d}|�s|��s�|d7}z|jdd�Wn	ty�Yq�wtjddtd	��#zt��}Wnt�y|��YWd�q�wWd�n	1�swY|r�td|t
jd�|S)ztPoll IMDS for the new provisioning data until we get a valid
        response. Then return the returned JSON object.Nrr�r�zMissing ephemeral contextz#Wait for vnetswitch to happen on %sz!wait-for-media-disconnect-connectzwait for vnet switchr�z'Error while waiting for vnet switch: %srtz)Failed to create bound netlink socket: %sz2Failed to report ready while in provisioning pool.z&DHCP failed while in provisioning poolrGr�zget-reprovision-data-from-imdszget reprovision data from imdsz#attempted dhcp %d times after reuse) rr�r��isfiler�r�r�r�r�r�rr|rrwrxrr�r�!wait_for_media_disconnect_connectrgr)r�r}ryr
r
rr~r�r�fetch_reprovision_datar+)r�rh�report_ready�
dhcp_attemptsr�r.�reprovision_datar=r=r>�
_poll_imdsAs���
��������������������	��
��������zDataSourceAzure._poll_imdsc
Cs�|��r0ztdtjd�t|jd�WdSty/}ztd|tjd�WYd}~nd}~wwz&tdtjd�|��z|j	dd	�Wn	t
yMYnwt|jd�WdStyr}ztd
|tjd�WYd}~dSd}~ww)z�Tells the Azure fabric that provisioning has failed.

        @param description: A description of the error encountered.
        @return: The success status of sending the failure signal.
        z>Using cached ephemeral dhcp context to report failure to Azurert)�endpointTz@Failed to report failure using cached ephemeral dhcp context: %sNz3Using new ephemeral dhcp to report failure to Azurer�r�z5Failed to report failure using new ephemeral dhcp: %sF)r�r)rwrxr*r�rr�r�r�r�r�r.r=r=r>r@�sL����������zDataSourceAzure._report_failurerrc
CsNzt|j|j|d�}Wnty!}z
td|tjd��d}~wwd|_|S)z�Tells the fabric provisioning has completed.

        :param pubkey_info: Fingerprints of keys to request from Wireserver.

        :raises Exception: if failed to report.

        :returns: List of SSH keys, if requested.
        )r��iso_devrzQError communicating with Azure fabric; You may experience connectivity issues: %srtN)r%r�r�rr)rwry)r�rr�r.r=r=r>r�s$
�����	zDataSourceAzure._report_readyc
CsLz	|dddWSty%}ztd|tjd�WYd}~dSd}~ww)N�extendedrR�ppsTypez2Could not retrieve pps configuration from IMDS: %srt)rr)rwrx)r�r�r.r=r=r>�_ppstype_from_imds�s���z"DataSourceAzure._ppstype_from_imds�ovf_cfgcCs�tj�|j�rtj}nO|�dd�tjjks|�	|�tjjkr"tj}n8|�dd�tj
jks5|�	|�tj
jkr9tj
}n!|�d�dusS|�dd�tjjksS|�	|�tjjkrWtj}ntj}t
d|jtjd�|S)z@Determine PPS type using OVF, IMDS data, and reprovision marker.�PreprovisionedVMTypeN�PreprovisionedVmTzPPS type: %srt)r�r�rr�r/r<rAr;�valuer�r9r:r8r)rwrn)r�r�r�r)r=r=r>r
�s4�����
����z#DataSourceAzure._determine_pps_typecCsZ|��}tjddtd��t|�\}}}|||d|ifWd�S1s&wYdS)zrInitiate the reprovisioning workflow.

        Ephemeral networking is up upon successful reprovisioning.
        zreprovisioning-read-azure-ovfz$read azure ovf during reprovisioningr�r�N)r�rr�r�read_azure_ovf)r�r-r$�udr�r=r=r>rs�$�zDataSourceAzure._reprovisionr�c	Csbd}z|�|�W|Sttfy0|�dd�}d�|dur#t|�nd�}t|tjd�Y|Sw)z�Determine the fingerprints we need to retrieve from Wireserver.

        :return: List of keys to request from Wireserver, if any, else None.
        N�_pubkeysz"Retrieved {} fingerprints from OVFrrt)	rKrLr5rAr�rMr)rwrx)r�r�r�rrXr=r=r>r"s���z1DataSourceAzure._determine_wireserver_pubkey_infocCst�|j�dS)zCleanup any marker files.N)r�del_filer�r�r=r=r>r 5sz DataSourceAzure._cleanup_markersc	CsH|j��}zt|||j�td�d�Wt|jd�dSt|jd�w)NF)�is_new_instance�
preserve_ntfs�def_log_file)r��
get_ipath_cur�address_ephemeral_resizer�rA�DS_CFG_KEY_PRESERVE_NTFSr(r�)r�r�r��instance_dirr=r=r>�activate9s
��zDataSourceAzure.activatecC�|j�di��di��d�S)NrrR�platformFaultDomain�r�rAr�r=r=r>�availability_zoneFs�z!DataSourceAzure.availability_zonec
Cs�|jr2|jtjkr2|j�d�r2zt|jd�WSty1}zt�dt	|��WYd}~nd}~wwzt
�WStyQ}zt�dt	|��WYd}~iSd}~ww)z:Generate network configuration according to configuration.r��networkz?Failed generating network config from IMDS network metadata: %sNz-Failed generating fallback network config: %s)r8r
r7r�rA�6generate_network_config_from_instance_network_metadatarrwr�r��-_generate_network_config_from_fallback_configr�r=r=r>�_generate_network_configNs0�
�
�������z(DataSourceAzure._generate_network_configcCs(|jr|jtjkr|jS|��|_|jS)z,Provide network configuration v2 dictionary.)r�r
r7r�r�r=r=r>�network_configjs
zDataSourceAzure.network_configcCr�)NrrR�locationr�r�r=r=r>�regiontszDataSourceAzure.regioncs�t�}z|d}dd�|dD��Wnty(td|�d�tjd�YdSw�fdd�|D�}|s6d	Std
||ftjd�|jrH|jjsJdSt�	|jj�}|rXt
|t�sZdSt|�}||vrmtd||ftjd�dS)z=Validate IMDS network config and report telemetry for errors.r�cSsg|]}t|d��qS)�
macAddressrkrqr=r=r>rns
��zBDataSourceAzure.validate_imds_network_metadata.<locals>.<listcomp>r�z6IMDS network metadata has incomplete configuration: %rrtFcsg|]}|�vr|�qSr=r=)rl�m��	imds_macsr=r>rn�sTz>IMDS network metadata is missing configuration for NICs %r: %rz3IMDS network metadata is missing primary NIC %r: %r)
rprLr)rArwryr�r�r�get_interface_macrur�ri)r�r��
local_macsr��missing_macs�primary_macr=r�r>rxsL
��������z.DataSourceAzure.validate_imds_network_metadata)rZN)re)r=rY)r�rk)Dr5r6r7�dsnamer�NETWORKr�BOOT_NEW_INSTANCE�BOOT�default_update_eventsrr
r7r8�_ci_pkl_versionr��intr�r�r�r r	r�r�r�rr�r1rrr6rHrIrJrrN�dictrKrMr[r]rrj�floatrorsrrrvr{rr�r@rr�r/r
rrr r��propertyr�r�r�r�r�
__classcell__r=r=r�r>r�Cs���
�����Z
E

O

����
����#

2

`+�
�
�

��
�



	
r�cC�(z	|dddWStyYdSw)NrR�	osProfile�
adminUsername�rL��	imds_datar=r=r>r��
�rcCs$z|ddWStyYdSw)NrR�userDatar�r�r=r=r>r�s
�rcCr�)NrRr��computerNamer�r�r=r=r>r�r�rcCs,z|ddddkWStyYdSw)NrRr��disablePasswordAuthentication�truer�r�r=r=r>r�s���rcCsFd|��vrdSt��}z|�|�}Wn
tyYdSw|jduS)z?
    Validate whether or not the key is OpenSSH-formatted.
    z
FN)rar�AuthKeyLineParser�parse�	TypeError�keytype)rT�parser�aklr=r=r>rU�s�
rU�cCs`dD]+}g}td|�D]}||t|�}tj�|�r&|�|tj�|�f�q|r-|SqgS)N)z-part�pr�rG)rlr�r�r�r�rx�realpath)rG�maxnum�suff�found�pnum�ppathr=r=r>�_partitions_on_device�s��r�cCs*tjddd�}t�d|�tj�|�|vS)Nz	TYPE=ntfsT)�no_cachezntfs_devices found = %s)r�find_devs_withrwrxr�r�r�)rG�ntfs_devicesr=r=r>�_has_ntfs_filesystem�sr�cCs|rdd�t�tf}d|fStj�|�sdd|fSt�d|tj�|��t	|�}t
|�dkr6dd|fSt
|�dkrNd	|d
�dd�|D��f}d|fSt
|�dkr[|d
\}}n|d\}}t|�spd|||f}d|fStdd��}d|||f}t
jddtd��x}z
tj||dddid�}	Wn@tjy�}
z3d|_dt|
�vr�d|dfWYd}
~
Wd�Sd|d||
ffWYd}
~
Wd�Sd}
~
ww|	dkr�d|	|_t�dd�t�t�d|d |	fWd�SWd�n	1�swYd|d!fS)"a�Determine if the ephemeral drive at devpath should be reformatted.

    A fresh ephemeral disk is formatted by Azure and will:
      a.) have a partition table (dos or gpt)
      b.) have 1 partition that is ntfs formatted, or
          have 2 partitions with the second partition ntfs formatted.
          (larger instances with >2TB ephemeral disk have gpt, and will
           have a microsoft reserved partition as part 1.  LP: #1686514)
      c.) the ntfs partition will have no files other than possibly
          'dataloss_warning_readme.txt'

    User can indicate that NTFS should never be destroyed by setting
    DS_CFG_KEY_PRESERVE_NTFS in dscfg.
    If data is found on NTFS, user is warned to set DS_CFG_KEY_PRESERVE_NTFS
    to make sure cloud-init does not accidentally wipe their data.
    If cloud-init cannot mount the disk to check for data, destruction
    will be allowed, unless the dscfg key is set.z:config says to never destroy NTFS (%s.%s), skipping checksrHFzdevice %s does not existzResolving realpath of %s -> %srzdevice %s was not partitionedrDz&device %s had 3 or more partitions: %sr|cSrO)rGr=)rlr�r=r=r>rnsz*can_dev_be_reformatted.<locals>.<listcomp>rGz5partition %s (%s) on device %s was not ntfs formattedcs&tdg��t�fdd�t�|�D��S)Nzdataloss_warning_readme.txtcsg|]
}|���vr|�qSr=)rg)rl�f��ignoredr=r>rn)sz?can_dev_be_reformatted.<locals>.count_files.<locals>.<listcomp>)�setrMr��listdir)�mpr=r�r>�count_files&s
z+can_dev_be_reformatted.<locals>.count_filesz1partition %s (%s) on device %s was ntfs formattedzmount-ntfs-and-countr��ntfs�LANG�C)r��update_env_for_mountzcannot mount ntfszunknown filesystem type 'ntfs'Tz^ but this system cannot mount NTFS, assuming there are no important files. Formatting allowed.Nz but mount of %s failed: %szmounted and counted %d fileszxit looks like you're using NTFS on the ephemeral disk, to ensure that filesystem does not get wiped, set %s.%s in configz but had %d files on it.z3 and had no important files. Safe for reformatting.)rfr�r�r�r�r�rwrxr�r�rMr�r rr�rrrr	r�r�ry)rGr�r'�
partitions�	cand_part�	cand_pathr��bmsg�evt�
file_countr.r=r=r>�can_dev_be_reformatted�s�����
��
�����
���$r�Fr�rGr�r�c
Cstj�|�std|tjd�dStd|tjd�d}d}|r%d\}}nt||�\}}t�d||�|s7dSdD]E}tj�|dd	|�}d
||f}tj�|�rxz
t�|�t�d|�Wq9t	yw}	z
t�
d||	�WYd}	~	q9d}	~	wwt�d
|�q9dS)Nz,Ephemeral resource disk '%s' does not exist.rtz$Ephemeral resource disk '%s' exists.F)TzFirst instance boot.zreformattable=%s: %s)r��mounts�sem�config_zMarker "%s" for module "%s"z%s removed.z%s: remove failed! (%s)z%s did not exist.)r�r�r�r)rwrxr�rf�unlink�FileNotFoundErrorry)
r�rGr�r��resultr'�mod�sempathr�r.r=r=r>r�Xs>��

��r�cCsjdd�}|sdS|si}t�||�|��D]\}}tj�||�}d|vr*|||�}tj||dd�qdS)NcSsbzt�|�}|��D]}d|jvr|jtkrt|_q
t�|�WSty0t�	d|�|YSw)z>Azure provides the UserPassword in plain text. So we redact it�UserPasswordz#failed to redact userpassword in %s)
�ET�
fromstring�iter�tag�text�DEF_PASSWD_REDACTION�tostringrrw�critical)�cnt�fnamer��elemr=r=r>�_redact_password�s
����z%write_files.<locals>._redact_passwordr�i�)�filename�content�mode)r�
ensure_dirrWr�r�rfrq)�datadirr�r=r�r�rr�r=r=r>rF�s
�rFcCs�t�|�}i}i}|jp
d}|jr|j|d<|jr|j|d<|jdur*|j|d<n|jr1d|d<i}|jr;|j|d<|jrNd|d	<t|jkrNt	|j�|d
<|rVd|i|d<|j
|d
<td|j
tj
d�|j|d<td|jtj
d�|||fS)z�Parse OVF XML contents.

    :return: Tuple of metadata, configuration, userdata dicts.

    :raises NonAzureDataSource: if XML is not in Azure's format.
    :raises BrokenAzureDataSource: if XML is unparseable or invalid.
    r�r�r�N�
ssh_pwauthTr�F�lock_passwd�
hashed_passwdr�r�r�zPreprovisionedVm: %srtr�zPreprovisionedVMType: %s)r�
parse_text�custom_datar��public_keys�disable_ssh_password_auth�passwordr�r��encrypt_pass�preprovisioned_vmr)rwrn�preprovisioned_vm_type)r-�ovf_envr$r�r��defuserr=r=r>r��s@
	






�
�
r��$6$cCst�||tjdd��S)Nr�)�strlen)�cryptr�rand_str)r�salt_idr=r=r>r�srcCs`zt|��}|�d�	Wd�WdS1swYWdSty/t�d|�YdSw)z;Return boolean indicating path to cdrom device has content.iNTzcdrom (%s) is not configuredF)�open�read�IOErrorrwrx)�	cdrom_dev�fpr=r=r>�_check_freebsd_cdrom�s

$���rcCs*|durdStj|ddd�}t�|���S)zIReturn content random seed file if available, otherwise,
    return None.NTF)�quiet�decode)rr`r�	b64encoder)�sourcer�r=r=r>r�s
rccsZ�|VtVt��rd}t|�r|VndD]}t�d|�EdHq|r+|VdSdS)Nz/dev/cd0)�iso9660r�zTYPE=%s)�DEFAULT_PROVISIONING_ISO_DEVrrrr�)r��	cache_dirr�fstyper=r=r>r�s��
�rcCsrtj�|d�}tj�|�std��t|d��}|��}Wd�n1s%wYt|�\}}}|||d|ifS)Nr�zNo ovf-env file found�rb)r�r�rfrrrrr�)�
source_dir�ovf_filerr-r$r�r�r=r=r>rs
�r�network_metadatac	Csjdid�}t|d�D]�\}}d}dj|d�}d|dd	i}d
|dd�}dD]Y}|�|i��d
g�}	|	s=t�d||�q'd
}|dkrFd}
nd}
|	rRd
|d<||d<|	dd�D]'}||dd�d|
�}|d}
|�d�ssg|d<|d�dj|
|d��qXq'|r�|r�t|d�}|�d|��i|d��t	|�}|r�||dd <||d!|<qt�d"|||�q|S)#z�Convert imds network metadata dictionary to network v2 configuration.

    :param: network_metadata: Dict of "network" key from instance metdata.

    :return: Dictionary containing network version 2 standard configuration.
    rD)�version�	ethernetsr�Fzeth{idx})�idxzroute-metricrGr�T)�dhcp4zdhcp4-overrides�dhcp6)�ipv4�ipv6�	ipAddresszNo %s addresses found for: %rr-�24�128r,zdhcp6-overridesN�subnetr�prefix�privateIpAddress�	addressesz
{ip}/{prefix})�ipr3r��
macaddress)�matchzset-namer8�driverr)z<No configuration for: %s (dev_config=%r) (has_ip_address=%r))
�	enumerater�rArwrxrxrirrgr{)r'�	netconfigr*�intf�has_ip_address�nicname�
dhcp_override�
dev_config�	addr_typer5�default_prefix�addr�	netPrefix�	privateIpr_r9r=r=r>r�sb

��
����r�cCstjtdd�}|dur
iS|S)z�Generate fallback network config excluding blacklisted devices.

    @return: Dictionary containing network version 2 standard configuration.
    T)rs�
config_driverN)r�generate_fallback_configrvrZr=r=r>r�]s�r�cCsh|st}d}|D])}tj�|�r1|s t�dtjjtj	jg�d}tj�
|�r,t�|�qt�
|�qdS)a(Remove Azure-specific ubuntu network config for non-primary nics.

    @param paths: List of networking scripts or directories to remove when
        present.

    In certain supported ubuntu images, static udev rules or netplan yaml
    config is delivered in the base ubuntu image to support dhcp on any
    additional interfaces which get attached by a customer at some point
    after initial boot. Since the Azure datasource can now regenerate
    network configuration as metadata reports these new devices, we no longer
    want the udev rules or netplan's 90-hotplug-azure.yaml to configure
    networking on eth1 or greater as it might collide with cloud-init's
    configuration.

    Remove the any existing extended network scripts if the datasource is
    enabled to write network per-boot.
    Fz|Removing Ubuntu extended network scripts because cloud-init updates Azure network configuration on the following events: %s.TN)�UBUNTU_EXTENDED_NETWORK_SCRIPTSr�r�r�rwrnrr�r��BOOT_LEGACY�isdirr�del_dirr�)r��loggedr�r=r=r>rBks �
��rBcCst�|t�SrY)r
�list_from_depends�datasources)�dependsr=r=r>�get_datasource_list�r�rPrY)r�)r)rrr��os.pathrJ�xml.etree.ElementTree�etree�ElementTreer��enumr�pathlibrrr�typingrrrr	�	cloudinitr
r�loggingrr
rrr�cloudinit.eventrr�cloudinit.net.dhcprrr�cloudinit.net.ephemeralr�cloudinit.reportingr�cloudinit.sources.azurer�cloudinit.sources.helpersr�cloudinit.sources.helpers.azurerrrrrrr r!r"r#r$r%r&r'r(r)r*�cloudinit.url_helperr+�	getLoggerr5rw�DS_NAMErErC�
DEFAULT_FS�AGENT_SEED_DIRr!r/r?r��__annotations__rHrvrTrXr^rirpr{r�r�r�r�r�r�res_diskrxr�rDr�r��DEF_EPHEMERAL_LABELr�rr�r�r�rrrrrUr�r�r�r�rFr�rrrrrr�r�r�rB�DataSourceAzureNet�DEP_FILESYSTEMrNrPr=r=r=r>�<module>s
L

	
+



���
�
n



j�����+

1



��G
&
�