common.go 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547
  1. package controller
  2. import (
  3. "context"
  4. "fmt"
  5. "log"
  6. "net"
  7. "time"
  8. "github.com/gravitl/netmaker/functions"
  9. "github.com/gravitl/netmaker/models"
  10. "github.com/gravitl/netmaker/mongoconn"
  11. "go.mongodb.org/mongo-driver/bson"
  12. "go.mongodb.org/mongo-driver/mongo/options"
  13. "golang.org/x/crypto/bcrypt"
  14. "gopkg.in/go-playground/validator.v9"
  15. )
  16. func GetPeersList(networkName string) ([]models.PeersResponse, error) {
  17. var peers []models.PeersResponse
  18. //Connection mongoDB with mongoconn class
  19. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  20. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  21. //Get all nodes in the relevant network which are NOT in pending state
  22. filter := bson.M{"network": networkName, "ispending": false}
  23. cur, err := collection.Find(ctx, filter)
  24. if err != nil {
  25. return peers, err
  26. }
  27. // Close the cursor once finished and cancel if it takes too long
  28. defer cancel()
  29. for cur.Next(context.TODO()) {
  30. var peer models.PeersResponse
  31. err := cur.Decode(&peer)
  32. if err != nil {
  33. log.Fatal(err)
  34. }
  35. // add the node to our node array
  36. //maybe better to just return this? But then that's just GetNodes...
  37. peers = append(peers, peer)
  38. }
  39. //Uh oh, fatal error! This needs some better error handling
  40. //TODO: needs appropriate error handling so the server doesnt shut down.
  41. if err := cur.Err(); err != nil {
  42. log.Fatal(err)
  43. }
  44. return peers, err
  45. }
  46. func ValidateNodeCreate(networkName string, node models.Node) error {
  47. v := validator.New()
  48. _ = v.RegisterValidation("address_check", func(fl validator.FieldLevel) bool {
  49. isIpv4 := functions.IsIpNet(node.Address)
  50. empty := node.Address == ""
  51. return (empty || isIpv4)
  52. })
  53. _ = v.RegisterValidation("address6_check", func(fl validator.FieldLevel) bool {
  54. isIpv6 := functions.IsIpNet(node.Address6)
  55. empty := node.Address6 == ""
  56. return (empty || isIpv6)
  57. })
  58. _ = v.RegisterValidation("endpoint_check", func(fl validator.FieldLevel) bool {
  59. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  60. isIp := functions.IsIpNet(node.Endpoint)
  61. notEmptyCheck := node.Endpoint != ""
  62. return (notEmptyCheck && isIp)
  63. })
  64. _ = v.RegisterValidation("localaddress_check", func(fl validator.FieldLevel) bool {
  65. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  66. isIp := functions.IsIpNet(node.LocalAddress)
  67. empty := node.LocalAddress == ""
  68. return (empty || isIp)
  69. })
  70. _ = v.RegisterValidation("macaddress_unique", func(fl validator.FieldLevel) bool {
  71. var isFieldUnique bool = functions.IsFieldUnique(networkName, "macaddress", node.MacAddress)
  72. return isFieldUnique
  73. })
  74. _ = v.RegisterValidation("macaddress_valid", func(fl validator.FieldLevel) bool {
  75. _, err := net.ParseMAC(node.MacAddress)
  76. return err == nil
  77. })
  78. _ = v.RegisterValidation("name_valid", func(fl validator.FieldLevel) bool {
  79. isvalid := functions.NameInNodeCharSet(node.Name)
  80. return isvalid
  81. })
  82. _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
  83. _, err := node.GetNetwork()
  84. return err == nil
  85. })
  86. _ = v.RegisterValidation("pubkey_check", func(fl validator.FieldLevel) bool {
  87. notEmptyCheck := node.PublicKey != ""
  88. isBase64 := functions.IsBase64(node.PublicKey)
  89. return (notEmptyCheck && isBase64)
  90. })
  91. _ = v.RegisterValidation("password_check", func(fl validator.FieldLevel) bool {
  92. notEmptyCheck := node.Password != ""
  93. goodLength := len(node.Password) > 5
  94. return (notEmptyCheck && goodLength)
  95. })
  96. err := v.Struct(node)
  97. if err != nil {
  98. for _, e := range err.(validator.ValidationErrors) {
  99. fmt.Println(e)
  100. }
  101. }
  102. return err
  103. }
  104. func ValidateNodeUpdate(networkName string, node models.Node) error {
  105. v := validator.New()
  106. _ = v.RegisterValidation("address_check", func(fl validator.FieldLevel) bool {
  107. isIpv4 := functions.IsIpNet(node.Address)
  108. empty := node.Address == ""
  109. return (empty || isIpv4)
  110. })
  111. _ = v.RegisterValidation("address6_check", func(fl validator.FieldLevel) bool {
  112. isIpv6 := functions.IsIpNet(node.Address6)
  113. empty := node.Address6 == ""
  114. return (empty || isIpv6)
  115. })
  116. _ = v.RegisterValidation("endpoint_check", func(fl validator.FieldLevel) bool {
  117. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  118. isIp := functions.IsIpNet(node.Address)
  119. empty := node.Endpoint == ""
  120. return (empty || isIp)
  121. })
  122. _ = v.RegisterValidation("localaddress_check", func(fl validator.FieldLevel) bool {
  123. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  124. isIp := functions.IsIpNet(node.LocalAddress)
  125. empty := node.LocalAddress == ""
  126. return (empty || isIp )
  127. })
  128. _ = v.RegisterValidation("macaddress_unique", func(fl validator.FieldLevel) bool {
  129. return true
  130. })
  131. _ = v.RegisterValidation("macaddress_valid", func(fl validator.FieldLevel) bool {
  132. _, err := net.ParseMAC(node.MacAddress)
  133. return err == nil
  134. })
  135. _ = v.RegisterValidation("name_valid", func(fl validator.FieldLevel) bool {
  136. isvalid := functions.NameInNodeCharSet(node.Name)
  137. return isvalid
  138. })
  139. _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
  140. _, err := node.GetNetwork()
  141. return err == nil
  142. })
  143. _ = v.RegisterValidation("pubkey_check", func(fl validator.FieldLevel) bool {
  144. empty := node.PublicKey == ""
  145. isBase64 := functions.IsBase64(node.PublicKey)
  146. return (empty || isBase64)
  147. })
  148. _ = v.RegisterValidation("password_check", func(fl validator.FieldLevel) bool {
  149. empty := node.Password == ""
  150. goodLength := len(node.Password) > 5
  151. return (empty || goodLength)
  152. })
  153. err := v.Struct(node)
  154. if err != nil {
  155. for _, e := range err.(validator.ValidationErrors) {
  156. fmt.Println(e)
  157. }
  158. }
  159. return err
  160. }
  161. func UpdateNode(nodechange models.Node, node models.Node) (models.Node, error) {
  162. //Question: Is there a better way of doing this than a bunch of "if" statements? probably...
  163. //Eventually, lets have a better way to check if any of the fields are filled out...
  164. queryMac := node.MacAddress
  165. queryNetwork := node.Network
  166. notifynetwork := false
  167. if nodechange.Address != "" {
  168. node.Address = nodechange.Address
  169. notifynetwork = true
  170. }
  171. if nodechange.Address6 != "" {
  172. node.Address6 = nodechange.Address6
  173. notifynetwork = true
  174. }
  175. if nodechange.Name != "" {
  176. node.Name = nodechange.Name
  177. }
  178. if nodechange.LocalAddress != "" {
  179. node.LocalAddress = nodechange.LocalAddress
  180. }
  181. if nodechange.ListenPort != 0 {
  182. node.ListenPort = nodechange.ListenPort
  183. }
  184. if nodechange.ExpirationDateTime != 0 {
  185. node.ExpirationDateTime = nodechange.ExpirationDateTime
  186. }
  187. if nodechange.PostDown != "" {
  188. node.PostDown = nodechange.PostDown
  189. }
  190. if nodechange.Interface != "" {
  191. node.Interface = nodechange.Interface
  192. }
  193. if nodechange.PostUp != "" {
  194. node.PostUp = nodechange.PostUp
  195. }
  196. if nodechange.AccessKey != "" {
  197. node.AccessKey = nodechange.AccessKey
  198. }
  199. if nodechange.Endpoint != "" {
  200. node.Endpoint = nodechange.Endpoint
  201. notifynetwork = true
  202. }
  203. if nodechange.SaveConfig != nil {
  204. node.SaveConfig = nodechange.SaveConfig
  205. }
  206. if nodechange.PersistentKeepalive != 0 {
  207. node.PersistentKeepalive = nodechange.PersistentKeepalive
  208. }
  209. if nodechange.Password != "" {
  210. err := bcrypt.CompareHashAndPassword([]byte(nodechange.Password), []byte(node.Password))
  211. if err != nil && nodechange.Password != node.Password {
  212. hash, err := bcrypt.GenerateFromPassword([]byte(nodechange.Password), 5)
  213. if err != nil {
  214. return node, err
  215. }
  216. nodechange.Password = string(hash)
  217. node.Password = nodechange.Password
  218. }
  219. }
  220. if nodechange.MacAddress != "" {
  221. node.MacAddress = nodechange.MacAddress
  222. }
  223. if nodechange.PublicKey != "" {
  224. node.PublicKey = nodechange.PublicKey
  225. node.KeyUpdateTimeStamp = time.Now().Unix()
  226. notifynetwork = true
  227. }
  228. //collection := mongoconn.ConnectDB()
  229. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  230. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  231. // Create filter
  232. filter := bson.M{"macaddress": queryMac, "network": queryNetwork}
  233. node.SetLastModified()
  234. // prepare update model.
  235. update := bson.D{
  236. {"$set", bson.D{
  237. {"address", node.Address},
  238. {"address6", node.Address6},
  239. {"name", node.Name},
  240. {"password", node.Password},
  241. {"listenport", node.ListenPort},
  242. {"publickey", node.PublicKey},
  243. {"keyupdatetimestamp", node.KeyUpdateTimeStamp},
  244. {"expdatetime", node.ExpirationDateTime},
  245. {"endpoint", node.Endpoint},
  246. {"postup", node.PostUp},
  247. {"postdown", node.PostDown},
  248. {"macaddress", node.MacAddress},
  249. {"localaddress", node.LocalAddress},
  250. {"persistentkeepalive", node.PersistentKeepalive},
  251. {"saveconfig", node.SaveConfig},
  252. {"accesskey", node.AccessKey},
  253. {"interface", node.Interface},
  254. {"lastmodified", node.LastModified},
  255. }},
  256. }
  257. var nodeupdate models.Node
  258. errN := collection.FindOneAndUpdate(ctx, filter, update).Decode(&nodeupdate)
  259. if errN != nil {
  260. return nodeupdate, errN
  261. }
  262. if nodechange.MacAddress != "" {
  263. queryMac = nodechange.MacAddress
  264. }
  265. returnnode, errN := GetNode(queryMac, queryNetwork)
  266. defer cancel()
  267. if notifynetwork {
  268. errN = SetNetworkNodesLastModified(queryNetwork)
  269. }
  270. return returnnode, errN
  271. }
  272. func DeleteNode(macaddress string, network string) (bool, error) {
  273. deleted := false
  274. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  275. filter := bson.M{"macaddress": macaddress, "network": network}
  276. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  277. result, err := collection.DeleteOne(ctx, filter)
  278. deletecount := result.DeletedCount
  279. if deletecount > 0 {
  280. deleted = true
  281. }
  282. defer cancel()
  283. err = SetNetworkNodesLastModified(network)
  284. fmt.Println("Deleted node " + macaddress + " from network " + network)
  285. return deleted, err
  286. }
  287. func GetNode(macaddress string, network string) (models.Node, error) {
  288. var node models.Node
  289. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  290. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  291. filter := bson.M{"macaddress": macaddress, "network": network}
  292. err := collection.FindOne(ctx, filter, options.FindOne().SetProjection(bson.M{"_id": 0})).Decode(&node)
  293. defer cancel()
  294. return node, err
  295. }
  296. func CreateNode(node models.Node, networkName string) (models.Node, error) {
  297. //encrypt that password so we never see it again
  298. hash, err := bcrypt.GenerateFromPassword([]byte(node.Password), 5)
  299. if err != nil {
  300. return node, err
  301. }
  302. //set password to encrypted password
  303. node.Password = string(hash)
  304. node.Network = networkName
  305. //node.SetDefaults()
  306. //Umm, why am I doing this again?
  307. //TODO: Why am I using a local function instead of the struct function? I really dont know.
  308. //I think I thought it didn't work but uhhh...idk
  309. node.SetDefaults()
  310. //Another DB call here...Inefficient
  311. //Anyways, this scrolls through all the IP Addresses in the network range and checks against nodes
  312. //until one is open and then returns it
  313. node.Address, err = functions.UniqueAddress(networkName)
  314. if err != nil {
  315. return node, err
  316. }
  317. node.Address6, err = functions.UniqueAddress6(networkName)
  318. if err != nil {
  319. return node, err
  320. }
  321. //IDK why these aren't a part of "set defaults. Pretty dumb.
  322. //TODO: This is dumb. Consolidate and fix.
  323. node.SetLastModified()
  324. node.SetDefaultName()
  325. node.SetLastCheckIn()
  326. node.SetLastPeerUpdate()
  327. node.KeyUpdateTimeStamp = time.Now().Unix()
  328. //Create a JWT for the node
  329. tokenString, _ := functions.CreateJWT(node.MacAddress, networkName)
  330. if tokenString == "" {
  331. //returnErrorResponse(w, r, errorResponse)
  332. return node, err
  333. }
  334. // connect db
  335. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  336. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  337. // insert our node to the node db.
  338. result, err := collection.InsertOne(ctx, node)
  339. _ = result
  340. defer cancel()
  341. if err != nil {
  342. return node, err
  343. }
  344. //return response for if node is pending
  345. if !node.IsPending {
  346. functions.DecrimentKey(node.Network, node.AccessKey)
  347. }
  348. SetNetworkNodesLastModified(node.Network)
  349. return node, err
  350. }
  351. func NodeCheckIn(node models.Node, networkName string) (models.CheckInResponse, error) {
  352. var response models.CheckInResponse
  353. parentnetwork, err := functions.GetParentNetwork(networkName)
  354. if err != nil {
  355. err = fmt.Errorf("%w; Couldnt retrieve Network "+networkName+": ", err)
  356. return response, err
  357. }
  358. parentnode, err := functions.GetNodeByMacAddress(networkName, node.MacAddress)
  359. if err != nil {
  360. err = fmt.Errorf("%w; Couldnt Get Node "+node.MacAddress, err)
  361. return response, err
  362. }
  363. if parentnode.IsPending {
  364. err = fmt.Errorf("%w; Node checking in is still pending: "+node.MacAddress, err)
  365. response.IsPending = true
  366. return response, err
  367. }
  368. networklm := parentnetwork.NetworkLastModified
  369. peerslm := parentnetwork.NodesLastModified
  370. gkeyupdate := parentnetwork.KeyUpdateTimeStamp
  371. nkeyupdate := parentnode.KeyUpdateTimeStamp
  372. peerlistlm := parentnode.LastPeerUpdate
  373. parentnodelm := parentnode.LastModified
  374. parentnodelastcheckin := parentnode.LastCheckIn
  375. if parentnodelastcheckin < parentnodelm {
  376. response.NeedConfigUpdate = true
  377. }
  378. if parentnodelm < networklm {
  379. response.NeedConfigUpdate = true
  380. }
  381. if peerlistlm < peerslm {
  382. response.NeedPeerUpdate = true
  383. }
  384. if nkeyupdate < gkeyupdate {
  385. response.NeedKeyUpdate = true
  386. }
  387. if time.Now().Unix() > parentnode.ExpirationDateTime {
  388. response.NeedDelete = true
  389. _, err = DeleteNode(node.MacAddress, networkName)
  390. } else {
  391. err = TimestampNode(parentnode, true, false, false)
  392. if err != nil {
  393. err = fmt.Errorf("%w; Couldnt Timestamp Node: ", err)
  394. return response, err
  395. }
  396. }
  397. response.Success = true
  398. return response, err
  399. }
  400. func SetNetworkNodesLastModified(networkName string) error {
  401. timestamp := time.Now().Unix()
  402. collection := mongoconn.Client.Database("netmaker").Collection("networks")
  403. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  404. // Create filter
  405. filter := bson.M{"netid": networkName}
  406. // prepare update model.
  407. update := bson.D{
  408. {"$set", bson.D{
  409. {"nodeslastmodified", timestamp},
  410. }},
  411. }
  412. result := collection.FindOneAndUpdate(ctx, filter, update)
  413. defer cancel()
  414. if result.Err() != nil {
  415. return result.Err()
  416. }
  417. return nil
  418. }
  419. func TimestampNode(node models.Node, updatecheckin bool, updatepeers bool, updatelm bool) error {
  420. if updatelm {
  421. node.SetLastModified()
  422. }
  423. if updatecheckin {
  424. node.SetLastCheckIn()
  425. }
  426. if updatepeers {
  427. node.SetLastPeerUpdate()
  428. }
  429. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  430. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  431. // Create filter
  432. filter := bson.M{"macaddress": node.MacAddress, "network": node.Network}
  433. // prepare update model.
  434. update := bson.D{
  435. {"$set", bson.D{
  436. {"lastmodified", node.LastModified},
  437. {"lastpeerupdate", node.LastPeerUpdate},
  438. {"lastcheckin", node.LastCheckIn},
  439. }},
  440. }
  441. var nodeupdate models.Node
  442. err := collection.FindOneAndUpdate(ctx, filter, update).Decode(&nodeupdate)
  443. defer cancel()
  444. return err
  445. }