Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions examples/resources/sigsci_corp_user/import.sh
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
terraform import sigsci_corp_user.test id
12 changes: 12 additions & 0 deletions examples/resources/sigsci_corp_user/resource.tf
Original file line number Diff line number Diff line change
@@ -0,0 +1,12 @@
resource "sigsci_corp_user" "test" {
email = "[email protected]"
role = "user"

memberships = [
{
site_name = "test-test",
role = "user"
},
]
}

1 change: 1 addition & 0 deletions provider/provider.go
Original file line number Diff line number Diff line change
Expand Up @@ -80,6 +80,7 @@ func Provider() terraform.ResourceProvider {
"sigsci_corp_integration": resourceCorpIntegration(),
"sigsci_corp_cloudwaf_instance": resourceCorpCloudWAFInstance(),
"sigsci_corp_cloudwaf_certificate": resourceCorpCloudWAFCertificate(),
"sigsci_corp_user": resourceCorpUser(),
"sigsci_edge_deployment": resourceEdgeDeployment(),
"sigsci_edge_deployment_service": resourceEdgeDeploymentService(),
"sigsci_edge_deployment_service_backend": resourceEdgeDeploymentServiceBackend(),
Expand Down
129 changes: 129 additions & 0 deletions provider/resource_corp_user.go
Original file line number Diff line number Diff line change
@@ -0,0 +1,129 @@
package provider

import (
"fmt"

"github.com/hashicorp/terraform-plugin-sdk/helper/schema"
"github.com/signalsciences/go-sigsci"
)

func resourceCorpUser() *schema.Resource {
return &schema.Resource{
Create: resourceCorpUserCreate,
Read: resourceCorpUserRead,
Update: resourceCorpUserUpdate,
Delete: resourceCorpUserDelete,

Importer: &schema.ResourceImporter{
State: schema.ImportStatePassthrough,
},

Schema: map[string]*schema.Schema{
"email": {
Type: schema.TypeString,
Required: true,
ForceNew: true,
},
"role": {
Type: schema.TypeString,
Optional: true,
Default: "user",
},
"memberships": {
Type: schema.TypeList,
Optional: true,
Elem: &schema.Resource{
Schema: map[string]*schema.Schema{
"site_name": {
Type: schema.TypeString,
Required: true,
},
"role": {
Type: schema.TypeString,
Required: true,
},
},
},
},
},
}
}

func resourceCorpUserCreate(d *schema.ResourceData, m interface{}) error {
pm := m.(providerMetadata)
client := pm.Client
corp := pm.Corp

email := d.Get("email").(string)
role := d.Get("role").(string)

// Build site memberships
rawMemberships := d.Get("memberships").([]interface{})
var memberships []sigsci.SiteMembership
for _, m := range rawMemberships {
mem := m.(map[string]interface{})
memberships = append(memberships, sigsci.NewSiteMembership(
mem["site_name"].(string),
sigsci.Role(mem["role"].(string)),
))
}

invite := sigsci.NewCorpUserInvite(sigsci.Role(role), memberships)

if _, err := client.InviteUser(corp, email, invite); err != nil {
return fmt.Errorf("error inviting corp user: %w", err)
}

d.SetId(email)
return resourceCorpUserRead(d, m)
}

func resourceCorpUserRead(d *schema.ResourceData, m interface{}) error {
pm := m.(providerMetadata)
client := pm.Client
corp := pm.Corp

email := d.Id()
user, err := client.GetCorpUser(corp, email)
if err != nil {
d.SetId("")
fmt.Println(err)
return nil
}

d.Set("email", user.Email)
d.Set("role", user.Role)

// Flatten memberships
var memberships []map[string]interface{}
for siteName, role := range user.Memberships {
memberships = append(memberships, map[string]interface{}{
"site_name": siteName,
"role": role,
})
}
d.Set("memberships", memberships)

return nil
}

func resourceCorpUserUpdate(d *schema.ResourceData, m interface{}) error {
// The Signal Sciences API does not support updating user roles or memberships directly.
// To change a user's role or memberships, they must be removed and re-invited with the new settings.
return fmt.Errorf("updating corp users is not supported by the Signal Sciences API")
}

func resourceCorpUserDelete(d *schema.ResourceData, m interface{}) error {
pm := m.(providerMetadata)
client := pm.Client
corp := pm.Corp

email := d.Id()

if err := client.DeleteCorpUser(corp, email); err != nil {
return fmt.Errorf("error deleting corp user: %w", err)
}

d.SetId("")
return nil
}