mirror of
https://github.com/apple/container.git
synced 2026-09-12 10:45:42 +00:00
- Closes #1122. - Adds placeholder ManagedResource and unit tests. Nothing is using these yet. - Adds system-defined resource labels for owning plugin and resource role. The system discriminates the builtin network using role "builtin". - Adds builtin role when creating builtin network at startup, and ensures that a preexisting network with ID "default" gets updated with the role label. - Replace all network ID checks for "default" with the builtin role check. - Adds "builder" role to builder VM. ## Type of Change - [ ] Bug fix - [x] New feature - [ ] Breaking change - [ ] Documentation update ## Motivation and Context Role and owner labels should make cross-cutting resource policy easier to implement. ## Testing - [x] Tested locally - [x] Added/updated tests - [ ] Added/updated docs
67 lines
2.5 KiB
Swift
67 lines
2.5 KiB
Swift
//===----------------------------------------------------------------------===//
|
|
// Copyright © 2025-2026 Apple Inc. and the container project authors.
|
|
//
|
|
// Licensed under the Apache License, Version 2.0 (the "License");
|
|
// you may not use this file except in compliance with the License.
|
|
// You may obtain a copy of the License at
|
|
//
|
|
// https://www.apache.org/licenses/LICENSE-2.0
|
|
//
|
|
// Unless required by applicable law or agreed to in writing, software
|
|
// distributed under the License is distributed on an "AS IS" BASIS,
|
|
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
// See the License for the specific language governing permissions and
|
|
// limitations under the License.
|
|
//===----------------------------------------------------------------------===//
|
|
|
|
import ArgumentParser
|
|
import ContainerAPIClient
|
|
import Foundation
|
|
|
|
extension Application.NetworkCommand {
|
|
public struct NetworkPrune: AsyncLoggableCommand {
|
|
public init() {}
|
|
public static let configuration = CommandConfiguration(
|
|
commandName: "prune",
|
|
abstract: "Remove networks with no container connections"
|
|
)
|
|
|
|
@OptionGroup
|
|
public var logOptions: Flags.Logging
|
|
|
|
public func run() async throws {
|
|
let allContainers = try await ClientContainer.list()
|
|
let allNetworks = try await ClientNetwork.list()
|
|
|
|
var networksInUse = Set<String>()
|
|
for container in allContainers {
|
|
for network in container.configuration.networks {
|
|
networksInUse.insert(network.network)
|
|
}
|
|
}
|
|
|
|
let networksToPrune = allNetworks.filter { network in
|
|
!network.isBuiltin && !networksInUse.contains(network.id)
|
|
}
|
|
|
|
var prunedNetworks = [String]()
|
|
|
|
for network in networksToPrune {
|
|
do {
|
|
try await ClientNetwork.delete(id: network.id)
|
|
prunedNetworks.append(network.id)
|
|
} catch {
|
|
// Note: This failure may occur due to a race condition between the network/
|
|
// container collection above and a container run command that attaches to a
|
|
// network listed in the networksToPrune collection.
|
|
log.error("Failed to prune network \(network.id): \(error)")
|
|
}
|
|
}
|
|
|
|
for name in prunedNetworks {
|
|
print(name)
|
|
}
|
|
}
|
|
}
|
|
}
|