validate include_role args (#28077)
* validate include_role args * nicer error msg * removed unused static * updated as per feedback * pepe ATE
This commit is contained in:
parent
ef953cb415
commit
d89dd75769
1 changed files with 19 additions and 11 deletions
|
@ -43,13 +43,17 @@ class IncludeRole(TaskInclude):
|
||||||
circumstances related to the `- include_role: ...`
|
circumstances related to the `- include_role: ...`
|
||||||
"""
|
"""
|
||||||
|
|
||||||
|
BASE = frozenset(['name', 'role']) # directly assigned
|
||||||
|
FROM_ARGS = frozenset(['tasks_from', 'vars_from', 'defaults_from']) # used to populate from dict in role
|
||||||
|
OTHER_ARGS = frozenset(['private', 'allow_duplicates']) # assigned to matching property
|
||||||
|
VALID_ARGS = frozenset(BASE.union(FROM_ARGS.union(OTHER_ARGS))) # all valid args
|
||||||
|
|
||||||
# =================================================================================
|
# =================================================================================
|
||||||
# ATTRIBUTES
|
# ATTRIBUTES
|
||||||
|
|
||||||
# private as this is a 'module options' vs a task property
|
# private as this is a 'module options' vs a task property
|
||||||
_allow_duplicates = FieldAttribute(isa='bool', default=True, private=True)
|
_allow_duplicates = FieldAttribute(isa='bool', default=True, private=True)
|
||||||
_private = FieldAttribute(isa='bool', default=None, private=True)
|
_private = FieldAttribute(isa='bool', default=None, private=True)
|
||||||
_static = FieldAttribute(isa='bool', default=None)
|
|
||||||
|
|
||||||
def __init__(self, block=None, role=None, task_include=None):
|
def __init__(self, block=None, role=None, task_include=None):
|
||||||
|
|
||||||
|
@ -100,23 +104,27 @@ class IncludeRole(TaskInclude):
|
||||||
|
|
||||||
ir = IncludeRole(block, role, task_include=task_include).load_data(data, variable_manager=variable_manager, loader=loader)
|
ir = IncludeRole(block, role, task_include=task_include).load_data(data, variable_manager=variable_manager, loader=loader)
|
||||||
|
|
||||||
# Process options
|
# Validate options
|
||||||
|
my_arg_names = frozenset(ir.args.keys())
|
||||||
|
|
||||||
# name is needed, or use role as alias
|
# name is needed, or use role as alias
|
||||||
ir._role_name = ir.args.get('name', ir.args.get('role'))
|
ir._role_name = ir.args.get('name', ir.args.get('role'))
|
||||||
if ir._role_name is None:
|
if ir._role_name is None:
|
||||||
raise AnsibleParserError("'name' is a required field for include_role.")
|
raise AnsibleParserError("'name' is a required field for include_role.")
|
||||||
|
|
||||||
# build options for role includes
|
# validate bad args, otherwise we silently ignore
|
||||||
for key in ['tasks', 'vars', 'defaults']:
|
bad_opts = my_arg_names.difference(IncludeRole.VALID_ARGS)
|
||||||
from_key = '%s_from' % key
|
if bad_opts:
|
||||||
if ir.args.get(from_key):
|
raise AnsibleParserError('Invalid options for include_role: %s' % ','.join(list(bad_opts)))
|
||||||
ir._from_files[key] = basename(ir.args.get(from_key))
|
|
||||||
|
# build options for role includes
|
||||||
|
for key in IncludeRole.FROM_ARGS.intersection(my_arg_names):
|
||||||
|
from_key = key.replace('_from', '')
|
||||||
|
ir._from_files[from_key] = basename(ir.args.get(key))
|
||||||
|
|
||||||
# FIXME: find a way to make this list come from object ( attributes does not work as per below)
|
|
||||||
# manual list as otherwise the options would set other task parameters we don't want.
|
# manual list as otherwise the options would set other task parameters we don't want.
|
||||||
for option in ['private', 'allow_duplicates']:
|
for option in IncludeRole.OTHER_ARGS.intersection(my_arg_names):
|
||||||
if option in ir.args:
|
setattr(ir, option, ir.args.get(option))
|
||||||
setattr(ir, option, ir.args.get(option))
|
|
||||||
|
|
||||||
return ir
|
return ir
|
||||||
|
|
||||||
|
|
Loading…
Reference in a new issue