util.go 1.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263
  1. package mq
  2. import (
  3. "fmt"
  4. "github.com/gravitl/netmaker/logic"
  5. "github.com/gravitl/netmaker/models"
  6. "github.com/gravitl/netmaker/netclient/ncutils"
  7. )
  8. func decryptMsg(node *models.Node, msg []byte) ([]byte, error) {
  9. if len(msg) <= 24 { // make sure message is of appropriate length
  10. return nil, fmt.Errorf("recieved invalid message from broker %s", string(msg))
  11. }
  12. trafficKey, trafficErr := logic.RetrievePrivateTrafficKey() // get server private key
  13. if trafficErr != nil {
  14. return nil, trafficErr
  15. }
  16. serverPrivTKey, err := ncutils.ConvertBytesToKey(trafficKey)
  17. if err != nil {
  18. return nil, err
  19. }
  20. nodePubTKey, err := ncutils.ConvertBytesToKey(node.TrafficKeys.Mine)
  21. if err != nil {
  22. return nil, err
  23. }
  24. return ncutils.BoxDecrypt(msg, nodePubTKey, serverPrivTKey)
  25. }
  26. func encryptMsg(node *models.Node, msg []byte) ([]byte, error) {
  27. // fetch server public key to be certain hasn't changed in transit
  28. trafficKey, trafficErr := logic.RetrievePrivateTrafficKey()
  29. if trafficErr != nil {
  30. return nil, trafficErr
  31. }
  32. serverPrivKey, err := ncutils.ConvertBytesToKey(trafficKey)
  33. if err != nil {
  34. return nil, err
  35. }
  36. nodePubKey, err := ncutils.ConvertBytesToKey(node.TrafficKeys.Mine)
  37. if err != nil {
  38. return nil, err
  39. }
  40. return ncutils.BoxEncrypt(msg, nodePubKey, serverPrivKey)
  41. }
  42. func publish(node *models.Node, dest string, msg []byte) error {
  43. client := SetupMQTT(true)
  44. defer client.Disconnect(250)
  45. encrypted, encryptErr := encryptMsg(node, msg)
  46. if encryptErr != nil {
  47. return encryptErr
  48. }
  49. if token := client.Publish(dest, 0, true, encrypted); token.Wait() && token.Error() != nil {
  50. return token.Error()
  51. }
  52. return nil
  53. }