Start-IpsVsphereDiagnosticsJob.ps1

<#
.SYNOPSIS
Start an Image Portability Service job to extract diagnostics from an Vsphere disk.

.DESCRIPTION
Start an Image Portability Service job to extract diagnostics from an Vsphere disk.

.PARAMETER CustomerId
Specifies the customer id of the Citrix customer running this command.

.PARAMETER SecureClientId
Specifies the client id of the Citrix customer's API client.

.PARAMETER SecureSecret
Specifies the client secret of the Citrix customer's API client.

.PARAMETER ResourceLocationId
Specifies the UUID of the resource location of the Citrix Connector Appliance in Vsphere.

.PARAMETER VsphereCwSecretId
Specifies the credential wallet id for the credentials used to access Vsphere.

.PARAMETER TargetDiskName
Specifies the name of the disk that diagnostics will be extracted from.

.PARAMETER VsphereHost
Specifies the host name or IP address of the Vsphere server.

.PARAMETER VspherePort
Specifies the network port number of the Vsphere server.

.PARAMETER VsphereSslCaCertificateFilePath
Specifies the path to the file containing the Vsphere SSL certificate.

.PARAMETER VsphereSslCaCertificate
Specifies the SSL root CA certificate to use in verifying the vCenter host certificate in vSphere API calls. This is only necessary when the VCenter host certificate isn't signed by a recognized authority. This may be the case for example when it was issued by a VMware Certificate Authority (VMCA). The certificate value must be in PEM format as a single-line string with newlines escaped.

.PARAMETER VsphereSslNoCheckHostname
If specified, do not check the SSL certificate host name (default $false).

.PARAMETER VsphereDataCenter
Specifies the datacenter where all resources for the job reside.

.PARAMETER VsphereDataStore
Specified the datastore to use for all storage requirements for the compositing engine VM.

.PARAMETER VsphereResourcePool
Specifies the resource pool to use for the compositing engine VM compute resources. If unspecified and a cluster or host system is supplied the root resource pool for the cluster or host system will be used. If unspecified and no cluster or host system is supplied the first resource pool named 'Resources' found in the datacenter will be used.

.PARAMETER VsphereNetwork
Specifies the name of the network on the Vsphere server to use for the job.

.PARAMETER VsphereHostSystem
Specifies the host system to use for the compositing engine VM compute resources. One of 'cluster' or 'hostSystem' should be specified.

.PARAMETER VsphereCluster
Specifies the cluster to use for the compositing engine VM compute resources. One of 'cluster' or 'hostSystem' should be specified.

.PARAMETER VsphereSslFingerprint
Specifies the fingerprint of the Vsphere SSL certificate.

.PARAMETER SmbLocation
Specifies the SMB URI used to access the SMB server.

.PARAMETER SmbCwId
Specifies the credential wallet id for the credentials used to access the SMB server.

.PARAMETER CeLogs
If specified, logs will be collected from the compositing engine.

.PARAMETER WindowsEventLogs
If specified, Windows event logs will be colected from the image.

.PARAMETER IpsData
If specified, Image Portability Service specific data will collected from the image.

.PARAMETER Timeout
Specifies an optional time limit for the operation. If the job does not complete in less than this time it will fail with a timeout error. The default value is 7200.

.PARAMETER Tags
Specifies a hash table of string values to apply as labels to resources created by the diagnostics operation.

.PARAMETER Prefix
Specifies an optional prefix which will be prepended to the name of assets created by the diagnostics operation. The default value is 'ce'.

.PARAMETER DryRun
If specified, a test run is performed and any problems with the parameters specified are reported. No actual changes are made.

.PARAMETER Deployment
Specifies the service address to send the job request to. It defaults to api.layering.cloud.com. This can be used if necessary to send the request to a geo specific deployment such as api.eu.layering.cloud.com.

.PARAMETER LogFileDir
Specifies the path to the file to log to. The local directory is the default.

.PARAMETER LogFileName
Specifies the name of the file to log to.

.PARAMETER OverwriteLog
If specified the log file is overwritten otherwise it is appended to.

.PARAMETER Force
If specified then any existing diagnostics file is overwritten otherwise the operation will fail if the output file exists.

.INPUTS
None.

.OUTPUTS
PSCustomObject. A job description which can be consumed by the Wait-IpsJob cmdlet.

.EXAMPLE
PS> $DiagsParams = @{
        CustomerId = 'a7f4wb1example'
        SecureClientId = '7fed2a1e-1495-46b7-8fd3-5644764af395'
        SecureSecret = '9T.3Q~MGlnB6NNgpNUUWrcquVzODrdGK~eXampLe'
        ResourceLocationId = '47251663-6710-4f76-854a-2385e3fe002d'
        VsphereCwSecretId = 'vsphere-creds'
        VsphereHost = 'hostname.example.com'
        VsphereSslFingerprint = 'db767676e22cefdf4112fc9e6ede9fc879627273'
        VsphereDataCenter = 'datacenter1'
        VsphereDataStore = 'Storage1'
        VsphereCluster = 'Cluster1'
        VsphereNetwork = 'VM Network'
        TargetDiskName = 'marketing-gold'
        SmbLocation = "smb://example.com/share/folder"
        SmbCwId = "smb-credential-wallet-id"
        CeLogs = $True
        WindowsEventLogs = $True
        IpsData = $True
        Prefix = 'acme'
        DryRun = $False
        Tags = @{
            MyTagName = "MyTagValue"
        }
        Timeout = 7200
        LogFileName = '.\DiagsVsphere.log'
    }
PS> Start-IpsVsphereDiagnosticsJob @DiagsParams -Force -OverwriteLog -Verbose | Wait-IpsJob

.EXAMPLE
PS> $DiagsParams = @{
        CustomerId = 'a7f4wb1example'
        SecureClientId = '7fed2a1e-1495-46b7-8fd3-5644764af395'
        SecureSecret = '9T.3Q~MGlnB6NNgpNUUWrcquVzODrdGK~eXampLe'
        ResourceLocationId = '47251663-6710-4f76-854a-2385e3fe002d'
        VsphereCwSecretId = 'vsphere-creds'
        VsphereHost = 'hostname.example.com'
        VsphereSslFingerprint = 'db767676e22cefdf4112fc9e6ede9fc879627273'
        VsphereDataCenter = 'datacenter1'
        VsphereDataStore = 'Storage1'
        VsphereCluster = 'Cluster1'
        VsphereNetwork = 'VM Network'
        TargetDiskName = 'marketing-gold'
        SmbLocation = "smb://example.com/share/folder"
        SmbCwId = "smb-credential-wallet-id"
        CeLogs = $False
        Prefix = 'acme'
        DryRun = $False
        Timeout = 7200
        LogFileName = '.\DiagsVsphere.log'
    }
PS> Start-IpsVsphereDiagnosticsJob @DiagsParams -Force -OverwriteLog -Verbose | Wait-IpsJob
#>


Function Start-IpsVsphereDiagnosticsJob
{
    Param(
        [Parameter(Mandatory = $true)]
        [string]$CustomerId,
        [Parameter(Mandatory = $true)]
        [string]$VsphereCwSecretId,
        [Parameter(Mandatory = $false)]
        [string]$Deployment,
        [Parameter(Mandatory = $true)]
        [string]$ResourceLocationId,
        [Parameter(Mandatory = $true)]
        [string]$TargetDiskName,
        [Parameter(Mandatory = $true)]
        [string]$VsphereHost,
        [Parameter(Mandatory = $false)]
        [int]$VspherePort = 443,
        [Parameter(Mandatory = $false)]
        [string]$VsphereSslCaCertificateFilePath,
        [Parameter(Mandatory = $false)]
        [string]$VsphereSslCaCertificate,
        [Parameter(Mandatory = $false)]
        [Alias("VCenterSslFingerprint")]
        [string]$VsphereSslFingerprint,
        [Parameter(Mandatory = $false)]
        [bool]$VsphereSslNoCheckHostname,
        [Parameter(Mandatory = $true)]
        [string]$VsphereDataCenter,
        [Parameter(Mandatory = $true)]
        [string]$VsphereDataStore,
        [Parameter(Mandatory = $false)]
        [string]$VsphereResourcePool,
        [Parameter(Mandatory = $true)]
        [string]$VsphereNetwork,
        [Parameter(Mandatory = $false)]
        [string]$VsphereHostSystem,
        [Parameter(Mandatory = $false)]
        [string]$VsphereCluster,
        [Parameter(Mandatory = $true)]
        [string]$SmbLocation,
        [Parameter(Mandatory = $true)]
        [string]$SmbCwId,
        [Parameter(Mandatory = $false)]
        [string]$AssetsId,
        [Parameter(Mandatory = $false)]
        [HashTable]$Tags = @{},
        [Parameter(Mandatory = $false)]
        [int]$Timeout = 7200,
        [Parameter(Mandatory = $false)]
        [string]$Prefix = "ce",
        [Parameter(Mandatory = $false)]
        [bool]$CeLogs = $true,
        [Parameter(Mandatory = $false)]
        [bool]$WindowsEventLogs = $true,
        [Parameter(Mandatory = $false)]
        [bool]$IpsData = $true,
        [Parameter(Mandatory = $false)]
        [bool]$DryRun = $false,
        [Parameter(Mandatory = $false)]
        [string]$SecureClientId,
        [Parameter(Mandatory = $false)]
        [string]$SecureSecret,
        [Parameter(Mandatory = $false)]
        [string]$LogFileDir,
        [Parameter(Mandatory = $false)]
        [string]$LogFileName = 'DiagsVsphere.log',
        [Parameter(Mandatory = $false)]
        [switch]$OverwriteLog,
        [Parameter(Mandatory = $false)]
        [switch]$Force
    )

    Begin
    {
        Add-PSSnapin Citrix.*
    }
    Process
    {
        # Initialize Logger
        # Set parameter 'Verbose' by internal parameter 'VerbosePreference', since the option -Verbose is occupied by powershell cmdlet
        $Verbose = $VerbosePreference -eq 'Continue'
        LogInit $MyInvocation $LogFileDir $LogFileName $OverwriteLog $Verbose

        VersionCheck $Deployment $CustomerId

        try {
            # Authenticate to Citrix Cloud
            $parameters = AuthToCitrixCloud $CustomerId $SecureClientId $SecureSecret
            if ([string]::IsNullOrWhiteSpace($SecureClientId) -Or [string]::IsNullOrWhiteSpace($SecureSecret)) {
                $SecureClientId = $parameters.ApiKey
                $SecureSecret = $parameters.SecretKey
            }
        }
        catch {
            LogFatal "Failed to authenticate to Citrix Cloud"
        }

        try {
            Write-Host "***** Call Method: ImageDiagnosticsJob *****"
            $platformDiagsData = @{
                targetDiskName = $TargetDiskName
                vCenterHost = $VsphereHost
                vCenterPort = $VspherePort
                datacenter = $VsphereDataCenter
                datastore = $VsphereDataStore
                network = $VsphereNetwork
            }
            if ($VsphereHostSystem)
            {
                $platformDiagsData['hostSystem'] = $VsphereHostSystem
            }
            if ($VsphereCluster)
            {
                $platformDiagsData['cluster'] = $VsphereCluster
            }
            if ($VsphereResourcePool)
            {
                $platformDiagsData['resourcePoolName'] = $VsphereResourcePool
            }
            if ($VsphereSslCaCertificateFilePath -And (Test-Path -Path $VsphereSslCaCertificateFilePath -PathType "Leaf"))
            {
                $platformDiagsData['vCenterSslCaCertificate'] = ((Get-Content $VsphereSslCaCertificateFilePath) -join "`n") + "`n"
            }
            elseif ($VsphereSslCaCertificate)
            {
                # Replace raw string \n -> PowerShell-readable `n
                $VsphereSslCaCertificate = $VsphereSslCaCertificate.replace("\n", "`n")
                $platformDiagsData['vCenterSslCaCertificate'] = $VsphereSslCaCertificate
            }
            if ($VsphereSslFingerprint)
            {
                $platformDiagsData['vCenterSslFingerprint'] = $VsphereSslFingerprint
            }
            if ($VsphereSslNoCheckHostname)
            {
                $platformDiagsData['vCenterSslNoCheckHostname'] = $VsphereSslNoCheckHostname
            }

            #Add default tags
            $Tags['ctx-user'] = ($env:UserName).ToLower()
            $diagsData = @{
                platform = "vSphere"
                platformCredentialId = $VsphereCwSecretId
                resourceLocationId = $ResourceLocationId
                outputStorageLocation = @{
                    credentialId = $SmbCwId
                    Location = $SmbLocation
                }
                CeLogs = $CeLogs
                WindowsEventLogs = $WindowsEventLogs
                IpsData = $IpsData
                tags = $Tags
                timeoutInSeconds = $Timeout
                prefix = $Prefix
                ceVmSku = $CeVmSku
                overwriteTargetFile = $Force.IsPresent
            }

            if ($AssetsId)
            {
                $diagsData['assetsId'] = $AssetsId
            }
            
            # Convert the object to JSON to use in the POST body (Note: Default depth is 2 when serializing)
            $json = ($diagsData + $platformDiagsData) | ConvertTo-Json -Depth 10
            LogIt "Vsphere Diagnostics POST body $json" $Verbose

            $query = @{
                "async" = $true
                "dryRun" = $DryRun
            }

            # Send the POST
            try {
                $response = Invoke-CCRestMethod -method 'Post' -deployment $Deployment -serviceRoute "images/`$diagnostics" -customerId $CustomerId -secureClientId $SecureClientId -secureSecret $SecureSecret -query $query -json $json
                $JobId = $response.id
                LogIt "Image diagnostics started with id $JobId"
            } catch {
                $JobId = "Job failed to start"
                throw "Failed to start diagnostics: $_"
            }
        }
        catch {
            LogFatal "Workflow failed: $_"
        }
        finally {
            $output = [PSCustomObject]@{
                CustomerId = $CustomerId
                Deployment = $Deployment
                JobId = $JobId
                LogFileDir = $LogFileDir
                LogFileName = $LogFileName
            }
            Write-Output $output

            # Clear credentials at end of pipeline
            if ($PSCmdlet.MyInvocation.PipelinePosition -eq $PSCmdlet.MyInvocation.PipelineLength) {
                Clear-XDCredentials
            }
        }
    }
}