views.py 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585
  1. from netaddr import IPSet
  2. from django_tables2 import RequestConfig
  3. from django.contrib.auth.mixins import PermissionRequiredMixin
  4. from django.db.models import Count
  5. from django.shortcuts import get_object_or_404, render
  6. from dcim.models import Device
  7. from utilities.paginator import EnhancedPaginator
  8. from utilities.views import (
  9. BulkDeleteView, BulkEditView, BulkImportView, ObjectDeleteView, ObjectEditView, ObjectListView,
  10. )
  11. from . import filters, forms, tables
  12. from .models import Aggregate, IPAddress, Prefix, RIR, Role, VLAN, VLANGroup, VRF
  13. def add_available_prefixes(parent, prefix_list):
  14. """
  15. Create fake Prefix objects for all unallocated space within a prefix.
  16. """
  17. # Find all unallocated space
  18. available_prefixes = IPSet(parent) ^ IPSet([p.prefix for p in prefix_list])
  19. available_prefixes = [Prefix(prefix=p) for p in available_prefixes.iter_cidrs()]
  20. # Concatenate and sort complete list of children
  21. prefix_list = list(prefix_list) + available_prefixes
  22. prefix_list.sort(key=lambda p: p.prefix)
  23. return prefix_list
  24. #
  25. # VRFs
  26. #
  27. class VRFListView(ObjectListView):
  28. queryset = VRF.objects.select_related('tenant')
  29. filter = filters.VRFFilter
  30. filter_form = forms.VRFFilterForm
  31. table = tables.VRFTable
  32. edit_permissions = ['ipam.change_vrf', 'ipam.delete_vrf']
  33. template_name = 'ipam/vrf_list.html'
  34. def vrf(request, pk):
  35. vrf = get_object_or_404(VRF.objects.all(), pk=pk)
  36. prefixes = Prefix.objects.filter(vrf=vrf)
  37. prefix_table = tables.PrefixBriefTable(prefixes)
  38. return render(request, 'ipam/vrf.html', {
  39. 'vrf': vrf,
  40. 'prefix_table': prefix_table,
  41. })
  42. class VRFEditView(PermissionRequiredMixin, ObjectEditView):
  43. permission_required = 'ipam.change_vrf'
  44. model = VRF
  45. form_class = forms.VRFForm
  46. cancel_url = 'ipam:vrf_list'
  47. class VRFDeleteView(PermissionRequiredMixin, ObjectDeleteView):
  48. permission_required = 'ipam.delete_vrf'
  49. model = VRF
  50. redirect_url = 'ipam:vrf_list'
  51. class VRFBulkImportView(PermissionRequiredMixin, BulkImportView):
  52. permission_required = 'ipam.add_vrf'
  53. form = forms.VRFImportForm
  54. table = tables.VRFTable
  55. template_name = 'ipam/vrf_import.html'
  56. obj_list_url = 'ipam:vrf_list'
  57. class VRFBulkEditView(PermissionRequiredMixin, BulkEditView):
  58. permission_required = 'ipam.change_vrf'
  59. cls = VRF
  60. form = forms.VRFBulkEditForm
  61. template_name = 'ipam/vrf_bulk_edit.html'
  62. default_redirect_url = 'ipam:vrf_list'
  63. def update_objects(self, pk_list, form):
  64. fields_to_update = {}
  65. if form.cleaned_data['tenant'] == 0:
  66. fields_to_update['tenant'] = None
  67. elif form.cleaned_data['tenant']:
  68. fields_to_update['tenant'] = form.cleaned_data['tenant']
  69. for field in ['description']:
  70. if form.cleaned_data[field]:
  71. fields_to_update[field] = form.cleaned_data[field]
  72. return self.cls.objects.filter(pk__in=pk_list).update(**fields_to_update)
  73. class VRFBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  74. permission_required = 'ipam.delete_vrf'
  75. cls = VRF
  76. default_redirect_url = 'ipam:vrf_list'
  77. #
  78. # RIRs
  79. #
  80. class RIRListView(ObjectListView):
  81. queryset = RIR.objects.annotate(aggregate_count=Count('aggregates'))
  82. table = tables.RIRTable
  83. edit_permissions = ['ipam.change_rir', 'ipam.delete_rir']
  84. template_name = 'ipam/rir_list.html'
  85. class RIREditView(PermissionRequiredMixin, ObjectEditView):
  86. permission_required = 'ipam.change_rir'
  87. model = RIR
  88. form_class = forms.RIRForm
  89. success_url = 'ipam:rir_list'
  90. cancel_url = 'ipam:rir_list'
  91. class RIRBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  92. permission_required = 'ipam.delete_rir'
  93. cls = RIR
  94. default_redirect_url = 'ipam:rir_list'
  95. #
  96. # Aggregates
  97. #
  98. class AggregateListView(ObjectListView):
  99. queryset = Aggregate.objects.select_related('rir').extra(select={
  100. 'child_count': 'SELECT COUNT(*) FROM ipam_prefix WHERE ipam_prefix.prefix <<= ipam_aggregate.prefix',
  101. })
  102. filter = filters.AggregateFilter
  103. filter_form = forms.AggregateFilterForm
  104. table = tables.AggregateTable
  105. edit_permissions = ['ipam.change_aggregate', 'ipam.delete_aggregate']
  106. template_name = 'ipam/aggregate_list.html'
  107. def extra_context(self):
  108. ipv4_total = 0
  109. ipv6_total = 0
  110. for a in self.queryset:
  111. if a.prefix.version == 4:
  112. ipv4_total += a.prefix.size
  113. elif a.prefix.version == 6:
  114. ipv6_total += a.prefix.size / 2 ** 64
  115. return {
  116. 'ipv4_total': ipv4_total,
  117. 'ipv6_total': ipv6_total,
  118. }
  119. def aggregate(request, pk):
  120. aggregate = get_object_or_404(Aggregate, pk=pk)
  121. # Find all child prefixes contained by this aggregate
  122. child_prefixes = Prefix.objects.filter(prefix__net_contained_or_equal=str(aggregate.prefix))\
  123. .select_related('site', 'role').annotate_depth(limit=0)
  124. child_prefixes = add_available_prefixes(aggregate.prefix, child_prefixes)
  125. prefix_table = tables.PrefixTable(child_prefixes)
  126. prefix_table.model = Prefix
  127. if request.user.has_perm('ipam.change_prefix') or request.user.has_perm('ipam.delete_prefix'):
  128. prefix_table.base_columns['pk'].visible = True
  129. RequestConfig(request, paginate={'klass': EnhancedPaginator}).configure(prefix_table)
  130. return render(request, 'ipam/aggregate.html', {
  131. 'aggregate': aggregate,
  132. 'prefix_table': prefix_table,
  133. })
  134. class AggregateEditView(PermissionRequiredMixin, ObjectEditView):
  135. permission_required = 'ipam.change_aggregate'
  136. model = Aggregate
  137. form_class = forms.AggregateForm
  138. cancel_url = 'ipam:aggregate_list'
  139. class AggregateDeleteView(PermissionRequiredMixin, ObjectDeleteView):
  140. permission_required = 'ipam.delete_aggregate'
  141. model = Aggregate
  142. redirect_url = 'ipam:aggregate_list'
  143. class AggregateBulkImportView(PermissionRequiredMixin, BulkImportView):
  144. permission_required = 'ipam.add_aggregate'
  145. form = forms.AggregateImportForm
  146. table = tables.AggregateTable
  147. template_name = 'ipam/aggregate_import.html'
  148. obj_list_url = 'ipam:aggregate_list'
  149. class AggregateBulkEditView(PermissionRequiredMixin, BulkEditView):
  150. permission_required = 'ipam.change_aggregate'
  151. cls = Aggregate
  152. form = forms.AggregateBulkEditForm
  153. template_name = 'ipam/aggregate_bulk_edit.html'
  154. default_redirect_url = 'ipam:aggregate_list'
  155. def update_objects(self, pk_list, form):
  156. fields_to_update = {}
  157. for field in ['rir', 'date_added', 'description']:
  158. if form.cleaned_data[field]:
  159. fields_to_update[field] = form.cleaned_data[field]
  160. return self.cls.objects.filter(pk__in=pk_list).update(**fields_to_update)
  161. class AggregateBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  162. permission_required = 'ipam.delete_aggregate'
  163. cls = Aggregate
  164. default_redirect_url = 'ipam:aggregate_list'
  165. #
  166. # Prefix/VLAN roles
  167. #
  168. class RoleListView(ObjectListView):
  169. queryset = Role.objects.all()
  170. table = tables.RoleTable
  171. edit_permissions = ['ipam.change_role', 'ipam.delete_role']
  172. template_name = 'ipam/role_list.html'
  173. class RoleEditView(PermissionRequiredMixin, ObjectEditView):
  174. permission_required = 'ipam.change_role'
  175. model = Role
  176. form_class = forms.RoleForm
  177. success_url = 'ipam:role_list'
  178. cancel_url = 'ipam:role_list'
  179. class RoleBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  180. permission_required = 'ipam.delete_role'
  181. cls = Role
  182. default_redirect_url = 'ipam:role_list'
  183. #
  184. # Prefixes
  185. #
  186. class PrefixListView(ObjectListView):
  187. queryset = Prefix.objects.select_related('site', 'vrf__tenant', 'role')
  188. filter = filters.PrefixFilter
  189. filter_form = forms.PrefixFilterForm
  190. table = tables.PrefixTable
  191. edit_permissions = ['ipam.change_prefix', 'ipam.delete_prefix']
  192. template_name = 'ipam/prefix_list.html'
  193. def alter_queryset(self, request):
  194. # Show only top-level prefixes by default (unless searching)
  195. limit = None if request.GET.get('expand') or request.GET.get('q') else 0
  196. return self.queryset.annotate_depth(limit=limit)
  197. def prefix(request, pk):
  198. prefix = get_object_or_404(Prefix.objects.select_related('site', 'vlan', 'role'), pk=pk)
  199. try:
  200. aggregate = Aggregate.objects.get(prefix__net_contains_or_equals=str(prefix.prefix))
  201. except Aggregate.DoesNotExist:
  202. aggregate = None
  203. # Count child IP addresses
  204. ipaddress_count = IPAddress.objects.filter(vrf=prefix.vrf, address__net_contained_or_equal=str(prefix.prefix))\
  205. .count()
  206. # Parent prefixes table
  207. parent_prefixes = Prefix.objects.filter(vrf=prefix.vrf, prefix__net_contains=str(prefix.prefix))\
  208. .select_related('site', 'role').annotate_depth()
  209. parent_prefix_table = tables.PrefixBriefTable(parent_prefixes)
  210. # Duplicate prefixes table
  211. duplicate_prefixes = Prefix.objects.filter(vrf=prefix.vrf, prefix=str(prefix.prefix)).exclude(pk=prefix.pk)\
  212. .select_related('site', 'role')
  213. duplicate_prefix_table = tables.PrefixBriefTable(duplicate_prefixes)
  214. # Child prefixes table
  215. child_prefixes = Prefix.objects.filter(vrf=prefix.vrf, prefix__net_contained=str(prefix.prefix))\
  216. .select_related('site', 'role').annotate_depth(limit=0)
  217. if child_prefixes:
  218. child_prefixes = add_available_prefixes(prefix.prefix, child_prefixes)
  219. child_prefix_table = tables.PrefixTable(child_prefixes)
  220. child_prefix_table.model = Prefix
  221. if request.user.has_perm('ipam.change_prefix') or request.user.has_perm('ipam.delete_prefix'):
  222. child_prefix_table.base_columns['pk'].visible = True
  223. RequestConfig(request, paginate={'klass': EnhancedPaginator}).configure(child_prefix_table)
  224. return render(request, 'ipam/prefix.html', {
  225. 'prefix': prefix,
  226. 'aggregate': aggregate,
  227. 'ipaddress_count': ipaddress_count,
  228. 'parent_prefix_table': parent_prefix_table,
  229. 'child_prefix_table': child_prefix_table,
  230. 'duplicate_prefix_table': duplicate_prefix_table,
  231. })
  232. class PrefixEditView(PermissionRequiredMixin, ObjectEditView):
  233. permission_required = 'ipam.change_prefix'
  234. model = Prefix
  235. form_class = forms.PrefixForm
  236. fields_initial = ['site', 'vrf', 'prefix']
  237. cancel_url = 'ipam:prefix_list'
  238. class PrefixDeleteView(PermissionRequiredMixin, ObjectDeleteView):
  239. permission_required = 'ipam.delete_prefix'
  240. model = Prefix
  241. redirect_url = 'ipam:prefix_list'
  242. class PrefixBulkImportView(PermissionRequiredMixin, BulkImportView):
  243. permission_required = 'ipam.add_prefix'
  244. form = forms.PrefixImportForm
  245. table = tables.PrefixTable
  246. template_name = 'ipam/prefix_import.html'
  247. obj_list_url = 'ipam:prefix_list'
  248. class PrefixBulkEditView(PermissionRequiredMixin, BulkEditView):
  249. permission_required = 'ipam.change_prefix'
  250. cls = Prefix
  251. form = forms.PrefixBulkEditForm
  252. template_name = 'ipam/prefix_bulk_edit.html'
  253. default_redirect_url = 'ipam:prefix_list'
  254. def update_objects(self, pk_list, form):
  255. fields_to_update = {}
  256. for field in ['vrf', 'tenant']:
  257. if form.cleaned_data[field] == 0:
  258. fields_to_update[field] = None
  259. elif form.cleaned_data[field]:
  260. fields_to_update[field] = form.cleaned_data[field]
  261. for field in ['site', 'status', 'role', 'description']:
  262. if form.cleaned_data[field]:
  263. fields_to_update[field] = form.cleaned_data[field]
  264. return self.cls.objects.filter(pk__in=pk_list).update(**fields_to_update)
  265. class PrefixBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  266. permission_required = 'ipam.delete_prefix'
  267. cls = Prefix
  268. default_redirect_url = 'ipam:prefix_list'
  269. def prefix_ipaddresses(request, pk):
  270. prefix = get_object_or_404(Prefix.objects.all(), pk=pk)
  271. # Find all IPAddresses belonging to this Prefix
  272. ipaddresses = IPAddress.objects.filter(vrf=prefix.vrf, address__net_contained_or_equal=str(prefix.prefix))\
  273. .select_related('vrf', 'interface__device', 'primary_ip4_for', 'primary_ip6_for')
  274. ip_table = tables.IPAddressTable(ipaddresses)
  275. ip_table.model = IPAddress
  276. if request.user.has_perm('ipam.change_ipaddress') or request.user.has_perm('ipam.delete_ipaddress'):
  277. ip_table.base_columns['pk'].visible = True
  278. RequestConfig(request, paginate={'klass': EnhancedPaginator}).configure(ip_table)
  279. return render(request, 'ipam/prefix_ipaddresses.html', {
  280. 'prefix': prefix,
  281. 'ip_table': ip_table,
  282. })
  283. #
  284. # IP addresses
  285. #
  286. class IPAddressListView(ObjectListView):
  287. queryset = IPAddress.objects.select_related('vrf__tenant', 'interface__device')
  288. filter = filters.IPAddressFilter
  289. filter_form = forms.IPAddressFilterForm
  290. table = tables.IPAddressTable
  291. edit_permissions = ['ipam.change_ipaddress', 'ipam.delete_ipaddress']
  292. template_name = 'ipam/ipaddress_list.html'
  293. def ipaddress(request, pk):
  294. ipaddress = get_object_or_404(IPAddress.objects.select_related('interface__device'), pk=pk)
  295. # Parent prefixes table
  296. parent_prefixes = Prefix.objects.filter(vrf=ipaddress.vrf, prefix__net_contains=str(ipaddress.address.ip))
  297. parent_prefixes_table = tables.PrefixBriefTable(parent_prefixes)
  298. # Duplicate IPs table
  299. duplicate_ips = IPAddress.objects.filter(vrf=ipaddress.vrf, address=str(ipaddress.address))\
  300. .exclude(pk=ipaddress.pk).select_related('interface__device', 'nat_inside')
  301. duplicate_ips_table = tables.IPAddressBriefTable(duplicate_ips)
  302. # Related IP table
  303. related_ips = IPAddress.objects.select_related('interface__device').exclude(address=str(ipaddress.address))\
  304. .filter(vrf=ipaddress.vrf, address__net_contained_or_equal=str(ipaddress.address))
  305. related_ips_table = tables.IPAddressBriefTable(related_ips)
  306. return render(request, 'ipam/ipaddress.html', {
  307. 'ipaddress': ipaddress,
  308. 'parent_prefixes_table': parent_prefixes_table,
  309. 'duplicate_ips_table': duplicate_ips_table,
  310. 'related_ips_table': related_ips_table,
  311. })
  312. class IPAddressEditView(PermissionRequiredMixin, ObjectEditView):
  313. permission_required = 'ipam.change_ipaddress'
  314. model = IPAddress
  315. form_class = forms.IPAddressForm
  316. fields_initial = ['address', 'vrf']
  317. template_name = 'ipam/ipaddress_edit.html'
  318. cancel_url = 'ipam:ipaddress_list'
  319. class IPAddressDeleteView(PermissionRequiredMixin, ObjectDeleteView):
  320. permission_required = 'ipam.delete_ipaddress'
  321. model = IPAddress
  322. redirect_url = 'ipam:ipaddress_list'
  323. class IPAddressBulkImportView(PermissionRequiredMixin, BulkImportView):
  324. permission_required = 'ipam.add_ipaddress'
  325. form = forms.IPAddressImportForm
  326. table = tables.IPAddressTable
  327. template_name = 'ipam/ipaddress_import.html'
  328. obj_list_url = 'ipam:ipaddress_list'
  329. def save_obj(self, obj):
  330. obj.save()
  331. # Update primary IP for device if needed
  332. try:
  333. if obj.family == 4 and obj.primary_ip4_for:
  334. device = obj.primary_ip4_for
  335. device.primary_ip4 = obj
  336. device.save()
  337. elif obj.family == 6 and obj.primary_ip6_for:
  338. device = obj.primary_ip6_for
  339. device.primary_ip6 = obj
  340. device.save()
  341. except Device.DoesNotExist:
  342. pass
  343. class IPAddressBulkEditView(PermissionRequiredMixin, BulkEditView):
  344. permission_required = 'ipam.change_ipaddress'
  345. cls = IPAddress
  346. form = forms.IPAddressBulkEditForm
  347. template_name = 'ipam/ipaddress_bulk_edit.html'
  348. default_redirect_url = 'ipam:ipaddress_list'
  349. def update_objects(self, pk_list, form):
  350. fields_to_update = {}
  351. for field in ['vrf', 'tenant']:
  352. if form.cleaned_data[field] == 0:
  353. fields_to_update[field] = None
  354. elif form.cleaned_data[field]:
  355. fields_to_update[field] = form.cleaned_data[field]
  356. for field in ['description']:
  357. if form.cleaned_data[field]:
  358. fields_to_update[field] = form.cleaned_data[field]
  359. return self.cls.objects.filter(pk__in=pk_list).update(**fields_to_update)
  360. class IPAddressBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  361. permission_required = 'ipam.delete_ipaddress'
  362. cls = IPAddress
  363. default_redirect_url = 'ipam:ipaddress_list'
  364. #
  365. # VLAN groups
  366. #
  367. class VLANGroupListView(ObjectListView):
  368. queryset = VLANGroup.objects.annotate(vlan_count=Count('vlans'))
  369. filter = filters.VLANGroupFilter
  370. filter_form = forms.VLANGroupFilterForm
  371. table = tables.VLANGroupTable
  372. edit_permissions = ['ipam.change_vlangroup', 'ipam.delete_vlangroup']
  373. template_name = 'ipam/vlangroup_list.html'
  374. class VLANGroupEditView(PermissionRequiredMixin, ObjectEditView):
  375. permission_required = 'ipam.change_vlangroup'
  376. model = VLANGroup
  377. form_class = forms.VLANGroupForm
  378. cancel_url = 'ipam:vlangroup_list'
  379. class VLANGroupBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  380. permission_required = 'ipam.delete_vlangroup'
  381. cls = VLANGroup
  382. default_redirect_url = 'ipam:vlangroup_list'
  383. #
  384. # VLANs
  385. #
  386. class VLANListView(ObjectListView):
  387. queryset = VLAN.objects.select_related('site', 'role')
  388. filter = filters.VLANFilter
  389. filter_form = forms.VLANFilterForm
  390. table = tables.VLANTable
  391. edit_permissions = ['ipam.change_vlan', 'ipam.delete_vlan']
  392. template_name = 'ipam/vlan_list.html'
  393. def vlan(request, pk):
  394. vlan = get_object_or_404(VLAN.objects.select_related('site', 'role'), pk=pk)
  395. prefixes = Prefix.objects.filter(vlan=vlan)
  396. prefix_table = tables.PrefixBriefTable(prefixes)
  397. return render(request, 'ipam/vlan.html', {
  398. 'vlan': vlan,
  399. 'prefix_table': prefix_table,
  400. })
  401. class VLANEditView(PermissionRequiredMixin, ObjectEditView):
  402. permission_required = 'ipam.change_vlan'
  403. model = VLAN
  404. form_class = forms.VLANForm
  405. cancel_url = 'ipam:vlan_list'
  406. class VLANDeleteView(PermissionRequiredMixin, ObjectDeleteView):
  407. permission_required = 'ipam.delete_vlan'
  408. model = VLAN
  409. redirect_url = 'ipam:vlan_list'
  410. class VLANBulkImportView(PermissionRequiredMixin, BulkImportView):
  411. permission_required = 'ipam.add_vlan'
  412. form = forms.VLANImportForm
  413. table = tables.VLANTable
  414. template_name = 'ipam/vlan_import.html'
  415. obj_list_url = 'ipam:vlan_list'
  416. class VLANBulkEditView(PermissionRequiredMixin, BulkEditView):
  417. permission_required = 'ipam.change_vlan'
  418. cls = VLAN
  419. form = forms.VLANBulkEditForm
  420. template_name = 'ipam/vlan_bulk_edit.html'
  421. default_redirect_url = 'ipam:vlan_list'
  422. def update_objects(self, pk_list, form):
  423. fields_to_update = {}
  424. if form.cleaned_data['tenant'] == 0:
  425. fields_to_update['tenant'] = None
  426. elif form.cleaned_data['tenant']:
  427. fields_to_update['tenant'] = form.cleaned_data['tenant']
  428. for field in ['site', 'group', 'status', 'role', 'description']:
  429. if form.cleaned_data[field]:
  430. fields_to_update[field] = form.cleaned_data[field]
  431. return self.cls.objects.filter(pk__in=pk_list).update(**fields_to_update)
  432. class VLANBulkDeleteView(PermissionRequiredMixin, BulkDeleteView):
  433. permission_required = 'ipam.delete_vlan'
  434. cls = VLAN
  435. default_redirect_url = 'ipam:vlan_list'