GeniCM.pm.in 112 KB
Newer Older
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1 2
#!/usr/bin/perl -wT
#
3
# GENIPUBLIC-COPYRIGHT
4
# Copyright (c) 2008-2010 University of Utah and the Flux Group.
Leigh B. Stoller's avatar
Leigh B. Stoller committed
5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
# All rights reserved.
#
package GeniCM;

#
# The server side of the CM interface on remote sites. Also communicates
# with the GMC interface at Geni Central as a client.
#
use strict;
use Exporter;
use vars qw(@ISA @EXPORT);

@ISA    = "Exporter";
@EXPORT = qw ( );

# Must come after package declaration!
use lib '@prefix@/lib';
use GeniDB;
use Genixmlrpc;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
24 25
use GeniResponse;
use GeniTicket;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
26
use GeniCredential;
27
use GeniCertificate;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
28
use GeniSlice;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
29
use GeniAggregate;
30
use GeniAuthority;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
31
use GeniSliver;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
32
use GeniUser;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
33
use GeniRegistry;
34
use GeniUtil;
35
use GeniHRN;
36
use GeniXML;
37
use GeniUsage;
38
use libtestbed qw(SENDMAIL);
39
use emutil;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
40
# Hate to import all this crap; need a utility library.
41 42
use libdb qw(TBGetSiteVar EXPTSTATE_SWAPPED EXPTSTATE_ACTIVE TBOPSPID
	     TBDB_NODESTATE_TBFAILED);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
43
use User;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
44
use Node;
45
use Lan;
46
use OSinfo;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
47
use Image;
48
use Interface;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
49 50
use English;
use Data::Dumper;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
51
use XML::Simple;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
52
use Date::Parse;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
53
use POSIX qw(strftime tmpnam);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
54
use Time::Local;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
55
use Experiment;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
56
use VirtExperiment;
57
use Firewall;
58
use Compress::Zlib;
59
use File::Temp qw(tempfile);
60
use MIME::Base64;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
61 62 63 64 65 66 67 68

# Configure variables
my $TB		   = "@prefix@";
my $TBOPS          = "@TBOPSEMAIL@";
my $TBAPPROVAL     = "@TBAPPROVALEMAIL@";
my $TBAUDIT   	   = "@TBAUDITEMAIL@";
my $BOSSNODE       = "@BOSSNODE@";
my $OURDOMAIN      = "@OURDOMAIN@";
69
my $PGENIDOMAIN    = "@PROTOGENI_DOMAIN@";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
70
my $CREATEEXPT     = "$TB/bin/batchexp";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
71
my $ENDEXPT        = "$TB/bin/endexp";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
72
my $NALLOC	   = "$TB/bin/nalloc";
73
my $NFREE	   = "$TB/bin/nfree";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
74
my $AVAIL	   = "$TB/sbin/avail";
75
my $PTOPGEN	   = "$TB/libexec/ptopgen";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
76 77
my $TBSWAP	   = "$TB/bin/tbswap";
my $SWAPEXP	   = "$TB/bin/swapexp";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
78 79
my $PLABSLICE	   = "$TB/sbin/plabslicewrapper";
my $NAMEDSETUP     = "$TB/sbin/named_setup";
80
my $EXPORTS_SETUP  = "$TB/sbin/exports_setup";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
81 82
my $VNODESETUP     = "$TB/sbin/vnode_setup";
my $GENTOPOFILE    = "$TB/libexec/gentopofile";
83
my $TARFILES_SETUP = "$TB/bin/tarfiles_setup";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
84 85 86 87
my $MAPPER         = "$TB/bin/mapper";
my $VTOPGEN        = "$TB/bin/vtopgen";
my $SNMPIT         = "$TB/bin/snmpit";
my $PRERENDER      = "$TB/libexec/vis/prerender";
88
my $XMLLINT	   = "/usr/local/bin/xmllint";
89
my $EMULAB_PEMFILE = "@prefix@/etc/genicm.pem";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
90

91 92 93 94 95 96 97 98 99 100 101 102
my $API_VERSION = 1;

#
# Tell the client what API revision we support.  The correspondence
# between revision numbers and API features is to be specified elsewhere.
# No credentials are required.
#
sub GetVersion()
{
    return GeniResponse->Create( GENIRESPONSE_SUCCESS, $API_VERSION );
}

Leigh B. Stoller's avatar
Leigh B. Stoller committed
103
#
Leigh B. Stoller's avatar
Leigh B. Stoller committed
104
# Respond to a Resolve request. 
Leigh B. Stoller's avatar
Leigh B. Stoller committed
105 106 107 108 109 110
#
sub Resolve($)
{
    my ($argref) = @_;
    my $uuid       = $argref->{'uuid'};
    my $cred       = $argref->{'credential'};
111 112
    my $type       = lc( $argref->{'type'} );
    my $hrn        = $argref->{'hrn'};
Leigh B. Stoller's avatar
Leigh B. Stoller committed
113 114 115 116

    if (! defined($cred)) {
	return GeniResponse->MalformedArgsResponse();
    }
117 118 119 120
    if (defined($uuid) && GeniHRN::IsValid($uuid)) {
	$hrn  = $uuid;
	$uuid = undef;
    }
121 122 123 124 125 126 127 128 129 130 131 132
    if( defined( $hrn ) && GeniHRN::IsValid( $hrn ) ) {
	my ($auth,$t,$id) = GeniHRN::Parse( $hrn );

	return GeniResponse->Create( GENIRESPONSE_ERROR, undef,
				     "Authority mismatch" )
	    if( $auth ne $OURDOMAIN );

	$type = lc( $t );
	
	$hrn = $id;	
    }
    if (! (defined($type) && ($type =~ /^(node)$/))) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
133 134 135
	return GeniResponse->MalformedArgsResponse();
    }
    # Allow lookup by uuid or hrn.
136
    if (! defined($uuid) && !defined( $hrn ) ) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156
	return GeniResponse->MalformedArgsResponse();
    }
    if (defined($uuid) && !($uuid =~ /^[-\w]*$/)) {
	return GeniResponse->MalformedArgsResponse();
    }

    my $credential = GeniCredential->CreateFromSigned($cred);
    if (!defined($credential)) {
	return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
				    "Could not create GeniCredential object");
    }
    
    #
    # Make sure the credential was issued to the caller, but no special
    # permission required to resolve component resources.
    #
    if ($credential->owner_uuid() ne $ENV{'GENIUUID'}) {
	return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
				    "This is not your credential!");
    }
157
    if ($type eq "node") {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
158 159 160
	my $node;
	
	if (defined($uuid)) {
161
	    $node= GeniUtil::LookupNode($uuid);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
162 163
	}
	else {
164
	    $node= GeniUtil::LookupNode($hrn);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
165
	}
166
	if (! defined($node)) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
167 168 169
	    return GeniResponse->Create(GENIRESPONSE_SEARCHFAILED,
					undef, "Nothing here by that name");
	}
170 171 172 173 174 175

	my $rspec = GetAdvertisement(0, $node->node_id());
	if (! defined($rspec)) {
	    return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
					"Could not start avail");
	}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
176 177
	
	# Return a blob.
178
	my $blob = { "hrn"          => "${PGENIDOMAIN}." . $node->node_id(),
Leigh B. Stoller's avatar
Leigh B. Stoller committed
179
		     "uuid"         => $node->uuid(),
180
		     "role"	    => $node->role(),
181
		     "hostname"     => $node->node_id() . ".${OURDOMAIN}",
182 183
		     "physctrl"     => 
			 Interface->LookupControl( $node->phys_nodeid() )->IP(),
184 185
		     "urn"          => GeniHRN::Generate( $OURDOMAIN,
							  "node",
186 187
							  $node->node_id() ),
		     "rspec"        => $rspec
Leigh B. Stoller's avatar
Leigh B. Stoller committed
188 189 190 191 192 193 194
		   };

	return GeniResponse->Create(GENIRESPONSE_SUCCESS, $blob);
    }
    return GeniResponse->Create(GENIRESPONSE_UNSUPPORTED);
}

Leigh B. Stoller's avatar
Leigh B. Stoller committed
195 196 197 198 199 200 201
#
# Discover resources on this component, returning a resource availablity spec
#
sub DiscoverResources($)
{
    my ($argref) = @_;
    my $credential = $argref->{'credential'};
202 203
    my $available = $argref->{'available'} || 0;
    my $compress = $argref->{'compress'} || 0;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
204 205 206 207 208 209 210 211
    my $user_uuid  = $ENV{'GENIUSER'};

    $credential = GeniCredential->CreateFromSigned($credential);
    if (!defined($credential)) {
	return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
				    "Could not create GeniCredential object");
    }
    # The credential owner/slice has to match what was provided.
212
    if ($user_uuid ne $credential->owner_uuid()) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
213 214 215
	return GeniResponse->Create(GENIRESPONSE_FORBIDDEN, undef,
				    "Invalid credentials for operation");
    }
216 217 218 219 220 221 222
    return DiscoverResourcesAux($available, $compress);
}
# Helper function for V2.
sub DiscoverResourcesAux($$)
{
    my ($available, $compress) = @_;
    my $user_uuid  = $ENV{'GENIUSER'};
Leigh B. Stoller's avatar
Leigh B. Stoller committed
223

224 225 226
    # Oh, for $*%(s sake.  Frontier::RPC2 insists on representing a
    # Boolean as its own object type -- which Perl always interprets as
    # true, regardless of the object's value.  Undo all of that silliness.
227 228 229 230 231 232
    if (defined($available) && ref($available) eq 'Frontier::RPC2::Boolean') {
	$available = $available->value;
    }
    if (defined($compress) && ref($compress) eq 'Frontier::RPC2::Boolean') {
	$compress = $compress->value;
    }
233

Leigh B. Stoller's avatar
Leigh B. Stoller committed
234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250
    #
    # A sitevar controls whether external users can get any nodes.
    #
    my $allow_externalusers = 0;
    if (!TBGetSiteVar('protogeni/allow_externalusers', \$allow_externalusers)){
	# Cannot get the value, say no.
	$allow_externalusers = 0;
    }
    if (!$allow_externalusers) {
	my $user = GeniUser->Lookup($user_uuid, 1);
	# No record means the user is remote.
	if (!defined($user) || !$user->IsLocal()) {
	    return GeniResponse->Create(GENIRESPONSE_UNAVAILABLE, undef,
					"External users temporarily denied");
	}
    }

Leigh B. Stoller's avatar
Leigh B. Stoller committed
251
    #
252
    # Acquire the advertisement from ptopgen and compress it if requested.
Leigh B. Stoller's avatar
Leigh B. Stoller committed
253
    #
254 255
    my $xml = GetAdvertisement($available, undef);
    if (! defined($xml)) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
256 257 258 259
	return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
				    "Could not start avail");
    }

260 261 262 263 264 265
    if( $compress ) {
	my $coder = Frontier::RPC2->new();
	my $base64 = encode_base64( compress( $xml ) );
	$xml = $coder->base64( $base64 );	
    }

Leigh B. Stoller's avatar
Leigh B. Stoller committed
266 267
    return GeniResponse->Create(GENIRESPONSE_SUCCESS, $xml);
}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
268

269 270 271 272 273 274 275 276
#
# Use ptopgen in xml mode to spit back an xml file. 
#
sub GetAdvertisement($$)
{
    my ($available, $pc) = @_;
    my $xml = undef;

Jonathon Duerig's avatar
Jonathon Duerig committed
277
    my $invocation = "$PTOPGEN -x -g -r -p GeniSlices";
278 279 280 281 282
    $invocation .= " -a" unless $available;
    if (defined($pc)) {
	$invocation .= " -1 $pc";
    }
    if (open(AVAIL, "$invocation |")) {
283
	$xml = "";
284 285 286 287 288 289 290 291
	while (<AVAIL>) {
	    $xml .= $_;
	}
	close(AVAIL);
    }
    return $xml;
}

Leigh B. Stoller's avatar
Leigh B. Stoller committed
292
#
293
# Update a ticket with a new rspec.
Leigh B. Stoller's avatar
Leigh B. Stoller committed
294
#
295
sub UpdateTicket($)
Leigh B. Stoller's avatar
Leigh B. Stoller committed
296 297
{
    my ($argref) = @_;
298 299 300 301 302 303 304 305 306 307

    return GetTicket($argref, 1);
}

#
# Respond to a GetTicket request. 
#
sub GetTicket($;$)
{
    my ($argref, $isupdate) = @_;
308
    my $rspecstr   = $argref->{'rspec'};
Leigh B. Stoller's avatar
Leigh B. Stoller committed
309
    my $impotent   = $argref->{'impotent'};
310 311
    my $credstr    = $argref->{'credential'};
    my $tickstr    = $argref->{'ticket'};
312 313 314 315 316 317 318
    my $ticket;

    # Default to no update
    $isupdate = 0
	if (!defined($isupdate));
    $impotent = 0
	if (!defined($impotent));
Leigh B. Stoller's avatar
Leigh B. Stoller committed
319

320
    if (! defined($credstr)) {
321
	return GeniResponse->MalformedArgsResponse();
Leigh B. Stoller's avatar
Leigh B. Stoller committed
322
    }
323
    if (!defined($rspecstr)) {
324 325
	return GeniResponse->MalformedArgsResponse();
    }
326 327 328 329
    if (! ($rspecstr =~ /^[\040-\176\012\015\011]+$/)) {
	return GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
				    "Improper characters in rspec");
    }
330
    my $credential = GeniCredential->CreateFromSigned($credstr);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
331 332 333 334
    if (!defined($credential)) {
	return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
				    "Could not create GeniCredential object");
    }
335 336 337
    #
    # Make sure the credential was issued to the caller.
    #
338
    if ($credential->owner_uuid() ne $ENV{'GENIUUID'}) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
339
	return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
340
				    "This is not your credential!");
Leigh B. Stoller's avatar
Leigh B. Stoller committed
341
    }
342
    if ($isupdate) {
343
	$ticket = GeniTicket->CreateFromSignedTicket($tickstr);
344 345 346 347 348
	if (!defined($ticket)) {
	    return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
					"Could not create GeniTicket object");
	}
    }
349
    return GetTicketAux($credential,
350
			$rspecstr, $isupdate, $impotent, 0, 1, $ticket);
351
}
352

353
sub GetTicketAux($$$$$$$)
354
{
355 356
    my ($credential, $rspecstr, $isupdate, $impotent, $v2, $level,
	$ticket) = @_;
357
    
358 359 360 361 362 363
    defined($credential) &&
	($credential->HasPrivilege( "pi" ) or
	 $credential->HasPrivilege( "instantiate" ) or
	 $credential->HasPrivilege( "bind" ) or
	 return GeniResponse->Create( GENIRESPONSE_FORBIDDEN, undef,
				      "Insufficient privilege" ));
364
    
365 366
    my $slice_uuid = $credential->target_uuid();
    my $user_uuid  = $credential->owner_uuid();
367
    
Leigh B. Stoller's avatar
Leigh B. Stoller committed
368
    #
369
    # Create slice from the certificate.
Leigh B. Stoller's avatar
Leigh B. Stoller committed
370 371 372
    #
    my $slice = GeniSlice->Lookup($slice_uuid);
    if (!defined($slice)) {
373 374 375 376 377
	if ($isupdate) {
	    print STDERR "Could not locate slice $slice_uuid for Update\n";
	    return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
					"No slice found for UpdateTicket");
	}
378
	$slice = CreateSliceFromCertificate($credential);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
379
	if (!defined($slice)) {
380
	    print STDERR "Could not create $slice_uuid\n";
Leigh B. Stoller's avatar
Leigh B. Stoller committed
381
	    return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
382
					"Could not create slice");
Leigh B. Stoller's avatar
Leigh B. Stoller committed
383
	}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
384 385
    }

Leigh B. Stoller's avatar
Leigh B. Stoller committed
386
    #
Leigh B. Stoller's avatar
Leigh B. Stoller committed
387 388
    # Ditto the user.
    #
389
    my $user = CreateUserFromCertificate($credential->owner_cert());
Leigh B. Stoller's avatar
Leigh B. Stoller committed
390
    if (!defined($user)) {
391 392 393 394 395
	if ($isupdate) {
	    print STDERR "Could not locate $user_uuid for UpdateTicket\n";
	    return GeniResponse->Create(GENIRESPONSE_ERROR, undef,
					"No user found for UpdateTicket");
	}
396
	return GeniResponse->Create(GENIRESPONSE_ERROR);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
397
    }
398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417
    return GetTicketAuxAux($slice, $user, $rspecstr,
			   $isupdate, $impotent, $v2, $level, $ticket);
}
sub GetTicketAuxAux($$$$$$$$)
{
    my ($slice, $user,
	$rspecstr, $isupdate, $impotent, $v2, $level, $ticket) = @_;
    my $response    = undef;
    my $restorevirt = 0;	# Flag to restore virtual state
    my $restorephys = 0;	# Flag to restore physical state

    #
    # We need this below to sign the ticket.
    #
    my $authority = GeniCertificate->LoadFromFile($EMULAB_PEMFILE);
    if (!defined($authority)) {
	print STDERR " Could not get uuid from $EMULAB_PEMFILE\n";
	return GeniResponse->Create(GENIRESPONSE_ERROR);
    }

418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435
    #
    # Run xmllint on the rspec to catch format errors.
    #
    my ($fh, $filename) = tempfile(UNLINK => 0);
    if (!defined($fh)) {
	print STDERR "Could not create temp file for rspec\n";
	return GeniResponse->Create(GENIRESPONSE_ERROR);
    }
    print $fh $rspecstr;
    close($fh);
    my $xmlerrors = `$XMLLINT --noout $filename 2>&1`;
    unlink($filename);
    if ($?) {
	return GeniResponse->Create(GENIRESPONSE_ERROR,
				    $xmlerrors,
				    "rspec is not well formed");
    }

436 437
    my $rspec = GeniXML::Parse($rspecstr);
    if (! defined($rspec)) {
438
	return GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
439
				    "Error Parsing rspec XML");
440
    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
441

Leigh B. Stoller's avatar
Leigh B. Stoller committed
442 443 444 445 446 447 448 449 450 451 452 453 454 455
    #
    # A sitevar controls whether external users can get any nodes.
    #
    my $allow_externalusers = 0;
    if (!TBGetSiteVar('protogeni/allow_externalusers', \$allow_externalusers)){
	# Cannot get the value, say no.
	$allow_externalusers = 0;
    }
    if (!$allow_externalusers && !$user->IsLocal()) {
	return GeniResponse->Create(GENIRESPONSE_UNAVAILABLE, undef,
				    "External users temporarily denied");
    }
    
    #
456
    # For now all tickets expire very quickly (minutes), but once the
Leigh B. Stoller's avatar
Leigh B. Stoller committed
457
    # ticket is redeemed, it will expire according to the rspec request.
458 459 460
    # If nothing specified in the rspec, then it will expire when the
    # slice record expires, which was given by the expiration time of the
    # slice credential.
Leigh B. Stoller's avatar
Leigh B. Stoller committed
461
    #
462 463
    my $expires = GeniXML::GetText("valid_until", $rspec);
    if (defined($expires)) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
464 465 466 467 468 469 470 471 472 473 474 475
	if (! ($expires =~ /^[-\w:.\/]+/)) {
	    return GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
					"Illegal valid_until in rspec");
	}
	# Convert to a localtime.
	my $when = timegm(strptime($expires));
	if (!defined($when)) {
	    return GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
					"Could not parse valid_until");
	}
	
	#
476
	# Do we need a policy limit?
Leigh B. Stoller's avatar
Leigh B. Stoller committed
477 478
	#
	my $diff = $when - time();
479
	if ($diff < (60 * 5) || $diff > (3600 * 24 * 90)) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
480 481 482
	    return GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
					"valid_until out of range");
	}
483 484 485 486 487 488

	#
	# Must be before the slice expires.
	#
	my $slice_expires = $slice->expires();
	if (defined($slice_expires)) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
489
	    $slice_expires = str2time($slice_expires);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
490
	    if ($when > $slice_expires) {
491 492 493 494
		return GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
				    "valid_until is past slice expiration");
	    }
	}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
495
    }
496 497 498 499 500 501 502

    #
    # Lock the ticket so it cannot be released.
    #
    if (defined($ticket) && $ticket->stored() && $ticket->Lock() != 0) {
	return GeniResponse->BusyResponse("ticket");
    }
503 504 505
    if (defined($ticket)) {
	$ticket->SetSlice($slice);
    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
506 507 508 509 510 511
    
    #
    #
    # Lock the slice from further access.
    #
    if ($slice->Lock() != 0) {
512 513 514
	$ticket->UnLock()
	    if (defined($ticket) && $ticket->stored());
	return GeniResponse->BusyResponse("slice");
Leigh B. Stoller's avatar
Leigh B. Stoller committed
515
    }
516 517 518
    # Shutdown slices get nothing.
    if ($slice->shutdown()) {
	$slice->UnLock();
519 520
	$ticket->UnLock()
	    if (defined($ticket) && $ticket->stored());
521 522 523
	return GeniResponse->Create(GENIRESPONSE_FORBIDDEN, undef,
				    "Slice has been shutdown");
    }
524 525 526 527 528 529 530 531
    # Ditto for expired.
    if ($slice->IsExpired()) {
	$slice->UnLock();
	$ticket->UnLock()
	    if (defined($ticket) && $ticket->stored());
	return GeniResponse->Create(GENIRESPONSE_REFUSED, undef,
				    "Slice has expired");
    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
532

533
    #
Leigh B. Stoller's avatar
Leigh B. Stoller committed
534
    # For now, there can be only a single toplevel aggregate per slice.
535
    # The existence of an aggregate means the slice is active here. 
Leigh B. Stoller's avatar
Leigh B. Stoller committed
536
    #
537
    my $aggregate = GeniAggregate->SliceAggregate($slice);
538 539 540 541 542
    if (!$isupdate) {
	if (defined($aggregate)) {
	    $response = GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
				     "Already have an aggregate for slice");
	    goto bad;
543 544
	}
    }
545 546 547 548 549
    elsif ($v2 && $level && !defined($ticket) && !defined($aggregate)) {
	print STDERR "No aggregate for $slice in version two API\n";
	$response = GeniResponse->Create(GENIRESPONSE_ERROR);
	goto bad;
    }
550 551 552 553

    #
    # Firewall hack; just a flag in the rspec for now.
    #
554 555 556
    my $needsfirewall = GeniXML::GetText("needsfirewall", $rspec);
    if (defined($needsfirewall)) {
	if ($slice->SetFirewallFlag($needsfirewall) != 0) {
557 558
	    $response = GeniResponse->Create(GENIRESPONSE_ERROR);
	    goto bad;
559 560
	}
    }
561 562

    #
Leigh B. Stoller's avatar
Leigh B. Stoller committed
563
    # We need this now so we can form a virtual topo.
564
    #
Leigh B. Stoller's avatar
Leigh B. Stoller committed
565 566 567 568 569 570 571 572
    my $slice_experiment = GeniExperiment($slice);
    if (!defined($slice_experiment)) {
	print STDERR "Could not create new Geni slice experiment!\n";
	$response = GeniResponse->Create(GENIRESPONSE_ERROR);
	goto bad;
    }
    my $pid = $slice_experiment->pid();
    my $eid = $slice_experiment->eid();
573 574 575 576 577

    #
    # Mark the experiment locally as coming from the cooked interface.
    # This changes what tmcd returns to the local nodes.
    #
578
    my $generated_by = GeniXML::GetText("generated_by", $rspec);
579 580
    if (defined($generated_by) &&
	$generated_by eq "libvtop") {
581 582 583 584
	$slice_experiment->Update({"geniflags" =>
				       $Experiment::EXPT_GENIFLAGS_EXPT|
				       $Experiment::EXPT_GENIFLAGS_COOKED});
    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
585 586 587 588 589 590 591 592 593 594 595 596 597
    
    #
    # Create a virt topology object. We are going to load this up as we
    # process the rspec.
    #
    my $virtexperiment = VirtExperiment->CreateNew($slice_experiment);
    if (!defined($virtexperiment)) {
	print STDERR "Could not create VirtExperiment object!\n";
	$response = GeniResponse->Create(GENIRESPONSE_ERROR);
	goto bad;
    }
    # Turn off fixnode; we will control this on the commandline.
    $virtexperiment->allowfixnode(0);
598
    $virtexperiment->multiplex_factor(3);
599 600

    # This is where nodes are parked until a ticket is redeemed.
601
    # This experiment no longer has to exist.
602
    my $reserved_holding = Experiment->Lookup("GeniSlices", "reservations");
Leigh B. Stoller's avatar
Leigh B. Stoller committed
603

Leigh B. Stoller's avatar
Leigh B. Stoller committed
604
    #
Leigh B. Stoller's avatar
Leigh B. Stoller committed
605 606
    # An rspec is a structure that requests specific nodes. If those
    # nodes are available, then reserve it. Otherwise the ticket
Leigh B. Stoller's avatar
Leigh B. Stoller committed
607 608
    # cannot be granted.
    #
609 610 611
    my %namemap  = ();
    my %colomap  = ();
    my %ifacemap = ();
612
    my %vportmap = ();
Leigh B. Stoller's avatar
Leigh B. Stoller committed
613
    my %nodemap  = ();
614
    my @nodeids  = ();
615
    my %lannodes = ();
616
    my @dealloc;
617 618 619 620 621 622 623 624

    #
    # If this is a ticket update, we want to seed the namemap with
    # existing nodes. This is cause the rspec might refer to wildcards
    # that were already bound in a previous call. We also want to know
    # what nodes are currently reserved in case we have to release some.
    #
    if ($isupdate) {
Leigh B. Stoller's avatar
Leigh B. Stoller committed
625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641 642
	$slice_experiment->ClearBackupState();
	if ($slice_experiment->BackupVirtualState()) {
	    print STDERR "Could not backup virtual state!\n";
	    $response = GeniResponse->Create(GENIRESPONSE_ERROR);
	    goto bad;
	}
	if ($slice_experiment->RemoveVirtualState()) {
	    print STDERR "Could not remove virtual state!\n";
	    $response = GeniResponse->Create(GENIRESPONSE_ERROR);
	    goto bad;
	}
	$restorevirt = 1;

	if ($slice_experiment->BackupPhysicalState()) {
	    print STDERR "Could not backup physical state!\n";
	    $response = GeniResponse->Create(GENIRESPONSE_ERROR);
	    goto bad;
	}
643 644 645 646 647 648 649
	my $oldrspec;
	if ($v2 && defined($aggregate)) {
	    $oldrspec = $aggregate->GetManifest(0);
	}
	else {
	    $oldrspec = $ticket->rspec();
	}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
650
	
651
	foreach my $ref (GeniXML::FindNodes("n:node",
652
					    $oldrspec)->get_nodelist()) {
653
	    # Let remote nodes pass through.
654
	    next
655
		if (!GeniXML::IsLocalNode($ref));
656

657 658
	    # Skip lan nodes; they are fake.
	    next
659
		if (GeniXML::IsLanNode($ref));
660

661 662 663
	    my $node_nickname = GeniXML::GetVirtualId($ref);
	    my $colocate      = GeniXML::GetText("colocate", $ref) ||
		                GeniXML::GetText("phys_nickname", $ref);
664
	    my $resource_uuid = GeniXML::GetNodeId($ref);
665
	    my $node = GeniUtil::LookupNode($resource_uuid);
666 667
	    if (!defined($node)) {
		$response = GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
Leigh B. Stoller's avatar
Leigh B. Stoller committed
668
				 "Bad resource $resource_uuid in ticket");
669 670 671
		goto bad;
	    }

672 673 674 675 676 677
	    #
	    # Grab the reservation. For backwards compatibility, we want
	    # to find nodes in the reservations holding area, and move them
	    # into the slice experiment. The holding area is no longer going
	    # to be used, at least not until we have a reservations system.
	    #
678
	    my $reservation = $node->Reservation();
679
	    if (defined($reservation) &&
680
		defined($reserved_holding) &&
681 682 683 684 685 686
		$reservation->SameExperiment($reserved_holding)) {
		if ($node->MoveReservation($slice_experiment)) {
		    print STDERR "Could not move $node to $slice_experiment\n";
		    goto bad;
		}
		$node->Refresh();
687 688 689 690 691 692
	    }
	    $namemap{$node_nickname} = $node;
	    $colomap{$colocate} = $node
		if (defined($colocate));
	}
    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
693

694
    print $rspec->toString();
Leigh B. Stoller's avatar
Leigh B. Stoller committed
695

696
    foreach my $ref (GeniXML::FindNodes("n:node", $rspec)->get_nodelist()) {
697
	my $resource_uuid = GeniXML::GetNodeId($ref);
698 699 700 701 702
	my $manager_uuid  = GeniXML::GetManagerId($ref);
	my $node_nickname = GeniXML::GetVirtualId($ref);
	my $colocate      = GeniXML::GetText("colocate", $ref) ||
	                    GeniXML::GetText("phys_nickname", $ref);
	my $subnode_of    = GeniXML::GetText("subnode_of", $ref);
703
	my $virtualization_type
704
                          = GeniXML::GetText("virtualization_type", $ref);
705
	my $virtualization_subtype
706
                          = GeniXML::GetText("virtualization_subtype",
707
					     $ref);
708
	my $exclusive     = GeniXML::GetText("exclusive", $ref);
709
	my $pctype;
710
	my $osname;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
711 712
	my $node;

713
	# Let remote nodes pass through.
714
	next
715
	    if (! GeniXML::IsLocalNode($ref));
716

717 718 719 720 721
	#
	# Lan nodes are fake and do not go into the virt topo. Need
	# to remember them though, for when we do the links below.
	# They are still in the returned ticket though. 
	#
722
	if (GeniXML::IsLanNode($ref)) {
723 724 725 726
	    $lannodes{$node_nickname} = $ref;
	    next;
	}

Leigh B. Stoller's avatar
Leigh B. Stoller committed
727 728 729
	if (defined($virtualization_type)) {
	    if ($virtualization_type eq "emulab-vnode") {
		if (defined($virtualization_subtype)) {
730 731
		    $pctype = "pcvm";
		    
Leigh B. Stoller's avatar
Leigh B. Stoller committed
732 733 734 735 736 737
		    if ($virtualization_subtype eq "emulab-jail") {
			$osname = "FBSD-JAIL";
		    }
		    elsif ($virtualization_subtype eq "emulab-openvz") {
			$osname = "OPENVZ-STD";
		    }
738 739 740 741
		    elsif ($virtualization_subtype eq "emulab-spp") {
			$osname = "SPPVM-FAKE";
			$pctype = "sppvm";
			# Lets force to shared node.
742 743 744 745 746 747 748 749
			if (! GeniXML::SetText("exclusive", $ref, 0)) {
			    $response
				= GeniResponse->Create(GENIRESPONSE_BADARGS,
						       undef,
						       "Malformed rspec: Cannot set exclusive tag to false");
			    goto bad;
			}
			$exclusive = 0;
750 751
			# Kludge for libvtop.
			$virtexperiment->multiplex_factor(1);
752
			$virtexperiment->encap_style("vlan");
753
		    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
754 755 756 757 758 759 760 761
		}
		else {
		    goto raw;
		}
	    }
	    else {
	      raw:
		# Lets force to exclusive real node.
762 763 764 765 766 767 768 769 770 771 772 773 774
		if (! GeniXML::SetText("exclusive", $ref, 1)) {
		    $response = GeniResponse->Create(GENIRESPONSE_BADARGS,
						     undef,
						     "Malformed rspec: Cannot set exclusive tag to true");
		    goto bad;
		}
		$exclusive = 1;
		if (! GeniXML::SetText("virtualization_type", $ref, "raw")) {
		    $response = GeniResponse->Create(GENIRESPONSE_BADARGS,
						     undef,
						     "Malformed rspec: Cannot set virtualization_type to raw");
		    goto bad;
		}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
775 776 777 778
	    }
	}
	else {
	    $response = GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
779
				     "Must provide a virtualization_type");
Leigh B. Stoller's avatar
Leigh B. Stoller committed
780 781 782
	    goto bad;

	}
783 784 785 786 787 788
	if (!defined($node_nickname)) {
	    $response = GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
				     "Must provide a virtual_id for nodes");
	    goto bad;
	}

Leigh B. Stoller's avatar
Leigh B. Stoller committed
789
	#
Leigh B. Stoller's avatar
Leigh B. Stoller committed
790
	# Allow wildcarding.
Leigh B. Stoller's avatar
Leigh B. Stoller committed
791
	#
792 793 794 795 796 797
	if (!defined($resource_uuid) || $resource_uuid eq "*") {
	    if (defined($colocate) && exists($colomap{$colocate})) {
		$node = $colomap{$colocate};
	    }
	    elsif ($isupdate && exists($namemap{$node_nickname})) {
		$node = $namemap{$node_nickname};
798
	    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
799 800
	}
	else {
801
	    $node = GeniUtil::LookupNode($resource_uuid);
Leigh B. Stoller's avatar
Leigh B. Stoller committed
802 803 804 805 806 807 808

	    if (!defined($node)) {
		$response =
		    GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
					 "Bad resource $resource_uuid");
		goto bad;
	    }
809 810
	    $pctype = $node->type()
		if (!defined($pctype));
811 812
	}
	#
Leigh B. Stoller's avatar
Leigh B. Stoller committed
813
	# If no osname by this point, try for the default.
814 815
	#
	if (defined($node) && !defined($osname)) {
816 817 818 819 820
	    if (defined($node->default_osid())) {	    
		my $osinfo = OSinfo->Lookup($node->default_osid());
		$osname = $osinfo->osname()
		    if (defined($osinfo));
	    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
821
	}
822 823 824
	# The slot does not like to be NULL.
	$osname = ""
	    if (!defined($osname));
825
	
826 827 828
	# Need some kind of default.
	$pctype = "pc"
	    if (!defined($pctype));
829
	
830 831 832 833 834
	my $nodeblob = {"vname"   => $node_nickname,
			"type"    => $pctype,
			"osname"  => $osname,
			"ips"     => '', # deprecated
			"cmd_line"=> '', # bogus
Leigh B. Stoller's avatar
Leigh B. Stoller committed
835 836
			"fixed"   => (defined($subnode_of) ? $subnode_of :
				      defined($node) ? $node->node_id() : ""),
837
			};
838 839

	# Tarball and startup command.
840
	my $startupcmd = GeniXML::GetText("startup_command", $ref);
841
	if (defined($startupcmd)) {
842 843 844 845 846 847 848 849 850
	    if (! TBcheck_dbslot($startupcmd, "virt_nodes", "startupcmd",
			 TBDB_CHECKDBSLOT_WARN|TBDB_CHECKDBSLOT_ERROR)) {
		$response =
		    GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
					 "Invalid startup command");
		goto bad;
	    }
	    $nodeblob->{'startupcmd'} = $startupcmd;
	}
851
	my $tarfiles = GeniXML::GetText("tarfiles", $ref);
852
	if (defined($tarfiles)) {
853
	    if (! TBcheck_dbslot($tarfiles, "virt_nodes", "tarfiles",
854 855 856 857 858 859
			 TBDB_CHECKDBSLOT_WARN|TBDB_CHECKDBSLOT_ERROR)) {
		$response =
		    GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
					 "Invalid tarfiles");
		goto bad;
	    }
860
	    $nodeblob->{'tarfiles'} = $tarfiles;
861 862 863 864 865 866 867 868
	}

	my $virtnode = $virtexperiment->NewTableRow("virt_nodes", $nodeblob);
	if (!defined($virtnode)) {
	    $response = GeniResponse->Create(GENIRESPONSE_ERROR, undef,
					     "Error creating virtnode");
	    goto bad;
	}
869

Leigh B. Stoller's avatar
Leigh B. Stoller committed
870 871 872 873 874 875 876 877 878 879
	$virtexperiment->NewTableRow("virt_node_desires",
				     {"vname"    => $node_nickname,
				      "desire"   => "pcshared",
				      "weight"   => 0.95})
	    if (!defined($exclusive) || !$exclusive);

	# Store reference so we can munge it below. 
	$nodemap{$node_nickname} = {"rspec"    => $ref,
				    "virtnode" => $virtnode};
	
880 881 882 883
	#
	# Look for interface forward declarations that will be used later
	# in the link specifications. 
	#
Leigh B. Stoller's avatar
Leigh B. Stoller committed
884
	next
885
	    if (!defined(GeniXML::FindFirst("n:interface", $ref)));
Leigh B. Stoller's avatar
Leigh B. Stoller committed
886
	
887
	foreach my $linkref (GeniXML::FindNodes("n:interface",
888
						$ref)->get_nodelist()) {
889
	    my $virtual_id   = GeniXML::GetText("virtual_id", $linkref);
890 891 892 893 894 895 896 897 898 899

	    if (!defined($virtual_id)) {
		$response = GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
			     "Must provide a virtual_id for interfaces");
		goto bad;
	    }
	    
	    $ifacemap{$node_nickname} = {}
	        if (!exists($ifacemap{$node_nickname}));

Leigh B. Stoller's avatar
Leigh B. Stoller committed
900 901 902
	    # port counter.
	    my $vport = scalar(keys(%{ $ifacemap{$node_nickname} }));

903
	    # Store reference so we can munge it below. 
Leigh B. Stoller's avatar
Leigh B. Stoller committed
904 905
	    $ifacemap{$node_nickname}->{$virtual_id} = {"rspec" => $linkref,
							"vport" => $vport};
Leigh B. Stoller's avatar
Leigh B. Stoller committed
906

Leigh B. Stoller's avatar
Leigh B. Stoller committed
907
	    # This is used after the mapper runs since it uses vname:vport.
908
	    $vportmap{"$node_nickname:$vport"} = $linkref;
Leigh B. Stoller's avatar
Leigh B. Stoller committed
909
	}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
910 911
    }

912
    goto skiplinks
913
	if (!defined(GeniXML::FindFirst("n:link", $rspec)));
914
    
915 916 917 918
    #
    # Now deal with links for wildcarded nodes. We need to fill in the
    # node_uuid.
    #
Leigh B. Stoller's avatar
Leigh B. Stoller committed
919 920
    my $linknum = 1;
    
921
    foreach my $linkref (GeniXML::FindNodes("n:link",
922
					    $rspec)->get_nodelist()) {
923
	my $lanname    = GeniXML::GetVirtualId($linkref);
924 925
	my $link_type  = GeniXML::GetText("link_type", $linkref);
	my $istunnel   = (defined($link_type) && $link_type eq "tunnel");
926 927
	my @interfaces = GeniXML::FindNodes("n:linkendpoints | ".
					    "n:interface_ref",
928
					    $linkref)->get_nodelist();
Leigh B. Stoller's avatar
Leigh B. Stoller committed
929
	my $ifacenum   = 1;
930
	my $trivial_ok = 0;
931

932
	if (!defined($lanname)) {
933 934 935 936
	    $response = GeniResponse->Create(GENIRESPONSE_BADARGS, undef,
				     "Must provide a virtual_id for links");
	    goto bad;
	}
Leigh B. Stoller's avatar
Leigh B. Stoller committed
937

938 939 940 941 942 943 944
	#
	# Ick. Before we create the virt_lan_lans entry, we have to check
	# inside to see if one of the interfaces is connected to a lan
	# node. In this case, we want to reuse (if its been created) the
	# lan name, rather then a bunch of links with one interface, which
	# would result in a bogus topology. 
	#
Leigh B. Stoller's avatar
Leigh B. Stoller committed
945
	if (!$istunnel) {
946
	    foreach my $ref (@interfaces) {
947 948 949
		my $node_nickname =
		    GeniXML::GetText("virtual_node_id", $ref) ||
		    GeniXML::GetText("node_nickname", $ref);
950 951 952 953 954 955 956 957 958

		if (exists($lannodes{$node_nickname})) {
		    $lanname = $node_nickname;
		}
	    }
	    if (!defined($virtexperiment->Find("virt_lan_lans", $lanname))) {
		$virtexperiment->NewTableRow("virt_lan_lans",
					     {"vname" => $lanname});
	    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
959
	}
960
	
961
	foreach my $ref (@interfaces) {
962 963 964 965
	    my $node_nickname = GeniXML::GetText("virtual_node_id", $ref) ||
		                GeniXML::GetText("node_nickname", $ref);
	    my $iface_id = GeniXML::GetText("virtual_interface_id", $ref) ||
		           GeniXML::GetText("iface_name", $ref);
966

967
	    if (!defined($node_nickname)) {
968 969
		$response =
		    GeniResponse->Create(GENIRESPONSE_ERROR, undef,
970
				 "$lanname: Need node id for links");
971 972 973 974 975
		goto bad;
	    }
	    if (!defined($iface_id)) {
		$response =
		    GeniResponse->Create(GENIRESPONSE_ERROR, undef,
976
				 "$lanname: Need interface id for links");
977 978 979
		goto bad;
	    }

980 981 982 983 984 985 986 987 988
	    #
	    # Look for links that are really lans; one of the interfaces
	    # is on a fake lan node, which we caught above. Just skip it
	    # since in the virt topo, a lan is just a link with more then
	    # two nodes.
	    #
	    next
		if (exists($lannodes{$node_nickname}));

989
	    if ($istunnel) {
990
		# Might be the other side. Skip for now; might bite later.
991 992
		next
		    if (!exists($namemap{$node_nickname}));
993

994 995 996
		# Not doing anything else.
		next;
	    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
997
	    if (!exists($ifacemap{$node_nickname})) {
Leigh B Stoller's avatar
Leigh B Stoller committed
998 999 1000 1001
		# Might be the other side. Skip for now; might bite later.
		next
		    if (!exists($namemap{$node_nickname}));

1002 1003
		$response =
		    GeniResponse->Create(GENIRESPONSE_ERROR, undef,
1004
				 "$lanname: No such virtual_node_id: ".
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1005
				 "$node_nickname");
1006
		goto bad;
1007
	    }
1008
	    
1009
	    #
1010
	    # Sanity check the interface.
1011
	    #
1012 1013 1014
	    if (!exists($ifacemap{$node_nickname}->{$iface_id})) {
		$response =
		    GeniResponse->Create(GENIRESPONSE_ERROR, undef,
1015
				 "$lanname: No such interface on component: ".
1016 1017 1018
				 "$node_nickname:$iface_id");
		goto bad;
	    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1019
	    my $iface_ref   = $ifacemap{$node_nickname}->{$iface_id}->{"rspec"};
1020
	    my $iface_name  = GeniXML::GetText("component_id", $iface_ref);
1021 1022 1023
	    if (!defined($iface_name)) {
		$iface_name = "";
	    }
1024
	    if( GeniHRN::IsValid( $iface_name ) ) {
1025 1026
		my ($urn_authority,$urn_node,$urn_iface) =
		    GeniHRN::ParseInterface( $iface_name );
1027 1028
		$iface_name = $urn_iface;
	    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1029 1030 1031 1032 1033 1034
	    my $iface_vport = $ifacemap{$node_nickname}->{$iface_id}->{"vport"};

	    # XXX
	    my $ip     = "10.10.${linknum}.${ifacenum}";
	    my $mask   = "255.255.255.0";
	    my $member = "$node_nickname:$iface_vport";
1035 1036 1037
	    my $bandwidth = 100000;

	    # Let user override.
1038
	    my $user_bandwidth = GeniXML::GetText("bandwidth", $linkref);
1039 1040 1041
	    if (defined($user_bandwidth)) {
		$bandwidth = $user_bandwidth;
	    }
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1042 1043
	    
	    $virtexperiment->NewTableRow("virt_lans",
1044
					 {"vname"       => $lanname,
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1045 1046
					  "vnode"       => $node_nickname,
					  "vport"       => $iface_vport,
1047
					  "trivial_ok"  => $trivial_ok,
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1048 1049
					  "ip"          => $ip,
					  "delay"       => 0.0,
1050
					  "bandwidth"   => $bandwidth, # kbps
Leigh B. Stoller's avatar
Leigh B. Stoller committed
1051 1052 1053 1054
					  "lossrate"    => 0.0,
					  "member"      => $member,
					  "mask"        => $mask,
					  "rdelay"      => 0.0,
1055
					  "rbandwidth"  => $bandwidth, # kbps