This replaces the visitAll recursive function with a test that verifies that the option is set for all commands and subcommands, so that it doesn't have to be modified at runtime. We currently still have to loop over all functions for the setValidateArgs call, but that can be looked at separately. Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
80 lines
1.8 KiB
Go
80 lines
1.8 KiB
Go
package swarm
|
|
|
|
import (
|
|
"bufio"
|
|
"context"
|
|
"fmt"
|
|
"io"
|
|
"strings"
|
|
|
|
"github.com/docker/cli/cli"
|
|
"github.com/docker/cli/cli/command"
|
|
"github.com/docker/cli/cli/streams"
|
|
"github.com/moby/moby/api/types/swarm"
|
|
"github.com/pkg/errors"
|
|
"github.com/spf13/cobra"
|
|
"golang.org/x/term"
|
|
)
|
|
|
|
func newUnlockCommand(dockerCLI command.Cli) *cobra.Command {
|
|
cmd := &cobra.Command{
|
|
Use: "unlock",
|
|
Short: "Unlock swarm",
|
|
Args: cli.NoArgs,
|
|
RunE: func(cmd *cobra.Command, args []string) error {
|
|
return runUnlock(cmd.Context(), dockerCLI)
|
|
},
|
|
Annotations: map[string]string{
|
|
"version": "1.24",
|
|
"swarm": "manager",
|
|
},
|
|
ValidArgsFunction: cobra.NoFileCompletions,
|
|
DisableFlagsInUseLine: true,
|
|
}
|
|
|
|
return cmd
|
|
}
|
|
|
|
func runUnlock(ctx context.Context, dockerCLI command.Cli) error {
|
|
apiClient := dockerCLI.Client()
|
|
|
|
// First see if the node is actually part of a swarm, and if it is actually locked first.
|
|
// If it's in any other state than locked, don't ask for the key.
|
|
info, err := apiClient.Info(ctx)
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
switch info.Swarm.LocalNodeState {
|
|
case swarm.LocalNodeStateInactive:
|
|
return errors.New("Error: This node is not part of a swarm")
|
|
case swarm.LocalNodeStateLocked:
|
|
break
|
|
case swarm.LocalNodeStatePending, swarm.LocalNodeStateActive, swarm.LocalNodeStateError:
|
|
return errors.New("Error: swarm is not locked")
|
|
}
|
|
|
|
key, err := readKey(dockerCLI.In(), "Enter unlock key: ")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
return apiClient.SwarmUnlock(ctx, swarm.UnlockRequest{
|
|
UnlockKey: key,
|
|
})
|
|
}
|
|
|
|
func readKey(in *streams.In, prompt string) (string, error) {
|
|
if in.IsTerminal() {
|
|
fmt.Print(prompt)
|
|
dt, err := term.ReadPassword(int(in.FD()))
|
|
fmt.Println()
|
|
return string(dt), err
|
|
}
|
|
key, err := bufio.NewReader(in).ReadString('\n')
|
|
if err == io.EOF {
|
|
err = nil
|
|
}
|
|
return strings.TrimSpace(key), err
|
|
}
|