EmbeddedNetworkController.hpp 7.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217
  1. /*
  2. * ZeroTier One - Network Virtualization Everywhere
  3. * Copyright (C) 2011-2015 ZeroTier, Inc.
  4. *
  5. * This program is free software: you can redistribute it and/or modify
  6. * it under the terms of the GNU General Public License as published by
  7. * the Free Software Foundation, either version 3 of the License, or
  8. * (at your option) any later version.
  9. *
  10. * This program is distributed in the hope that it will be useful,
  11. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  12. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  13. * GNU General Public License for more details.
  14. *
  15. * You should have received a copy of the GNU General Public License
  16. * along with this program. If not, see <http://www.gnu.org/licenses/>.
  17. */
  18. #ifndef ZT_SQLITENETWORKCONTROLLER_HPP
  19. #define ZT_SQLITENETWORKCONTROLLER_HPP
  20. #include <stdint.h>
  21. #include <string>
  22. #include <map>
  23. #include <vector>
  24. #include <set>
  25. #include <list>
  26. #include "../node/Constants.hpp"
  27. #include "../node/NetworkController.hpp"
  28. #include "../node/Mutex.hpp"
  29. #include "../node/Utils.hpp"
  30. #include "../node/Address.hpp"
  31. #include "../node/InetAddress.hpp"
  32. #include "../osdep/OSUtils.hpp"
  33. #include "../osdep/Thread.hpp"
  34. #include "../osdep/BlockingQueue.hpp"
  35. #include "../ext/json/json.hpp"
  36. #include "JSONDB.hpp"
  37. // Number of background threads to start -- not actually started until needed
  38. #define ZT_EMBEDDEDNETWORKCONTROLLER_BACKGROUND_THREAD_COUNT 2
  39. // TTL for circuit tests
  40. #define ZT_EMBEDDEDNETWORKCONTROLLER_CIRCUIT_TEST_EXPIRATION 120000
  41. namespace ZeroTier {
  42. class Node;
  43. class EmbeddedNetworkController : public NetworkController
  44. {
  45. public:
  46. /**
  47. * @param node Parent node
  48. * @param dbPath Path to store data
  49. */
  50. EmbeddedNetworkController(Node *node,const char *dbPath);
  51. virtual ~EmbeddedNetworkController();
  52. virtual void init(const Identity &signingId,Sender *sender);
  53. virtual void request(
  54. uint64_t nwid,
  55. const InetAddress &fromAddr,
  56. uint64_t requestPacketId,
  57. const Identity &identity,
  58. const Dictionary<ZT_NETWORKCONFIG_METADATA_DICT_CAPACITY> &metaData);
  59. unsigned int handleControlPlaneHttpGET(
  60. const std::vector<std::string> &path,
  61. const std::map<std::string,std::string> &urlArgs,
  62. const std::map<std::string,std::string> &headers,
  63. const std::string &body,
  64. std::string &responseBody,
  65. std::string &responseContentType);
  66. unsigned int handleControlPlaneHttpPOST(
  67. const std::vector<std::string> &path,
  68. const std::map<std::string,std::string> &urlArgs,
  69. const std::map<std::string,std::string> &headers,
  70. const std::string &body,
  71. std::string &responseBody,
  72. std::string &responseContentType);
  73. unsigned int handleControlPlaneHttpDELETE(
  74. const std::vector<std::string> &path,
  75. const std::map<std::string,std::string> &urlArgs,
  76. const std::map<std::string,std::string> &headers,
  77. const std::string &body,
  78. std::string &responseBody,
  79. std::string &responseContentType);
  80. void threadMain()
  81. throw();
  82. private:
  83. static void _circuitTestCallback(ZT_Node *node,ZT_CircuitTest *test,const ZT_CircuitTestReport *report);
  84. void _request(
  85. uint64_t nwid,
  86. const InetAddress &fromAddr,
  87. uint64_t requestPacketId,
  88. const Identity &identity,
  89. const Dictionary<ZT_NETWORKCONFIG_METADATA_DICT_CAPACITY> &metaData);
  90. struct _RQEntry
  91. {
  92. uint64_t nwid;
  93. uint64_t requestPacketId;
  94. InetAddress fromAddr;
  95. Identity identity;
  96. Dictionary<ZT_NETWORKCONFIG_METADATA_DICT_CAPACITY> metaData;
  97. };
  98. BlockingQueue<_RQEntry *> _queue;
  99. Thread _threads[ZT_EMBEDDEDNETWORKCONTROLLER_BACKGROUND_THREAD_COUNT];
  100. bool _threadsStarted;
  101. Mutex _threads_m;
  102. // Gathers a bunch of statistics about members of a network, IP assignments, etc. that we need in various places
  103. struct _NetworkMemberInfo
  104. {
  105. _NetworkMemberInfo() : authorizedMemberCount(0),activeMemberCount(0),totalMemberCount(0),mostRecentDeauthTime(0) {}
  106. std::set<Address> activeBridges;
  107. std::set<InetAddress> allocatedIps;
  108. unsigned long authorizedMemberCount;
  109. unsigned long activeMemberCount;
  110. unsigned long totalMemberCount;
  111. uint64_t mostRecentDeauthTime;
  112. uint64_t nmiTimestamp; // time this NMI structure was computed
  113. };
  114. std::map<uint64_t,_NetworkMemberInfo> _nmiCache;
  115. Mutex _nmiCache_m;
  116. void _getNetworkMemberInfo(uint64_t now,uint64_t nwid,_NetworkMemberInfo &nmi);
  117. inline void _clearNetworkMemberInfoCache(const uint64_t nwid)
  118. {
  119. Mutex::Lock _l(_nmiCache_m);
  120. _nmiCache.erase(nwid);
  121. }
  122. void _pushMemberUpdate(uint64_t now,uint64_t nwid,const nlohmann::json &member);
  123. // These init objects with default and static/informational fields
  124. inline void _initMember(nlohmann::json &member)
  125. {
  126. if (!member.count("authorized")) member["authorized"] = false;
  127. if (!member.count("authHistory")) member["authHistory"] = nlohmann::json::array();
  128. if (!member.count("ipAssignments")) member["ipAssignments"] = nlohmann::json::array();
  129. if (!member.count("recentLog")) member["recentLog"] = nlohmann::json::array();
  130. if (!member.count("activeBridge")) member["activeBridge"] = false;
  131. if (!member.count("tags")) member["tags"] = nlohmann::json::array();
  132. if (!member.count("capabilities")) member["capabilities"] = nlohmann::json::array();
  133. if (!member.count("creationTime")) member["creationTime"] = OSUtils::now();
  134. if (!member.count("noAutoAssignIps")) member["noAutoAssignIps"] = false;
  135. if (!member.count("revision")) member["revision"] = 0ULL;
  136. if (!member.count("lastDeauthorizedTime")) member["lastDeauthorizedTime"] = 0ULL;
  137. if (!member.count("lastAuthorizedTime")) member["lastAuthorizedTime"] = 0ULL;
  138. member["objtype"] = "member";
  139. }
  140. inline void _initNetwork(nlohmann::json &network)
  141. {
  142. if (!network.count("private")) network["private"] = true;
  143. if (!network.count("creationTime")) network["creationTime"] = OSUtils::now();
  144. if (!network.count("name")) network["name"] = "";
  145. if (!network.count("multicastLimit")) network["multicastLimit"] = (uint64_t)32;
  146. if (!network.count("enableBroadcast")) network["enableBroadcast"] = true;
  147. if (!network.count("v4AssignMode")) network["v4AssignMode"] = {{"zt",false}};
  148. if (!network.count("v6AssignMode")) network["v6AssignMode"] = {{"rfc4193",false},{"zt",false},{"6plane",false}};
  149. if (!network.count("authTokens")) network["authTokens"] = nlohmann::json::array();
  150. if (!network.count("capabilities")) network["capabilities"] = nlohmann::json::array();
  151. if (!network.count("tags")) network["tags"] = nlohmann::json::array();
  152. if (!network.count("routes")) network["routes"] = nlohmann::json::array();
  153. if (!network.count("ipAssignmentPools")) network["ipAssignmentPools"] = nlohmann::json::array();
  154. if (!network.count("rules")) {
  155. // If unspecified, rules are set to allow anything and behave like a flat L2 segment
  156. network["rules"] = {{
  157. { "not",false },
  158. { "or", false },
  159. { "type","ACTION_ACCEPT" }
  160. }};
  161. }
  162. network["objtype"] = "network";
  163. }
  164. inline void _addNetworkNonPersistedFields(nlohmann::json &network,uint64_t now,const _NetworkMemberInfo &nmi)
  165. {
  166. network["clock"] = now;
  167. network["authorizedMemberCount"] = nmi.authorizedMemberCount;
  168. network["activeMemberCount"] = nmi.activeMemberCount;
  169. network["totalMemberCount"] = nmi.totalMemberCount;
  170. }
  171. inline void _addMemberNonPersistedFields(nlohmann::json &member,uint64_t now)
  172. {
  173. member["clock"] = now;
  174. }
  175. JSONDB _db;
  176. Mutex _db_m;
  177. Node *const _node;
  178. std::string _path;
  179. NetworkController::Sender *_sender;
  180. Identity _signingId;
  181. std::list< ZT_CircuitTest > _tests;
  182. Mutex _tests_m;
  183. std::map< std::pair<uint64_t,uint64_t>,uint64_t > _lastRequestTime; // last request time by <address,networkId>
  184. Mutex _lastRequestTime_m;
  185. };
  186. } // namespace ZeroTier
  187. #endif