common.go 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556
  1. package controller
  2. import (
  3. "context"
  4. "fmt"
  5. "log"
  6. "net"
  7. "time"
  8. "github.com/gravitl/netmaker/functions"
  9. "github.com/gravitl/netmaker/servercfg"
  10. "github.com/gravitl/netmaker/models"
  11. "github.com/gravitl/netmaker/mongoconn"
  12. "go.mongodb.org/mongo-driver/bson"
  13. "go.mongodb.org/mongo-driver/mongo/options"
  14. "golang.org/x/crypto/bcrypt"
  15. "gopkg.in/go-playground/validator.v9"
  16. )
  17. func GetPeersList(networkName string) ([]models.PeersResponse, error) {
  18. var peers []models.PeersResponse
  19. //Connection mongoDB with mongoconn class
  20. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  21. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  22. //Get all nodes in the relevant network which are NOT in pending state
  23. filter := bson.M{"network": networkName, "ispending": false}
  24. cur, err := collection.Find(ctx, filter)
  25. if err != nil {
  26. return peers, err
  27. }
  28. // Close the cursor once finished and cancel if it takes too long
  29. defer cancel()
  30. for cur.Next(context.TODO()) {
  31. var peer models.PeersResponse
  32. err := cur.Decode(&peer)
  33. if err != nil {
  34. log.Fatal(err)
  35. }
  36. // add the node to our node array
  37. //maybe better to just return this? But then that's just GetNodes...
  38. peers = append(peers, peer)
  39. }
  40. //Uh oh, fatal error! This needs some better error handling
  41. //TODO: needs appropriate error handling so the server doesnt shut down.
  42. if err := cur.Err(); err != nil {
  43. log.Fatal(err)
  44. }
  45. return peers, err
  46. }
  47. func ValidateNodeCreate(networkName string, node models.Node) error {
  48. v := validator.New()
  49. _ = v.RegisterValidation("address_check", func(fl validator.FieldLevel) bool {
  50. isIpv4 := functions.IsIpNet(node.Address)
  51. empty := node.Address == ""
  52. return (empty || isIpv4)
  53. })
  54. _ = v.RegisterValidation("address6_check", func(fl validator.FieldLevel) bool {
  55. isIpv6 := functions.IsIpNet(node.Address6)
  56. empty := node.Address6 == ""
  57. return (empty || isIpv6)
  58. })
  59. _ = v.RegisterValidation("endpoint_check", func(fl validator.FieldLevel) bool {
  60. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  61. isIp := functions.IsIpNet(node.Endpoint)
  62. notEmptyCheck := node.Endpoint != ""
  63. return (notEmptyCheck && isIp)
  64. })
  65. _ = v.RegisterValidation("localaddress_check", func(fl validator.FieldLevel) bool {
  66. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  67. isIp := functions.IsIpNet(node.LocalAddress)
  68. empty := node.LocalAddress == ""
  69. return (empty || isIp)
  70. })
  71. _ = v.RegisterValidation("macaddress_unique", func(fl validator.FieldLevel) bool {
  72. var isFieldUnique bool = functions.IsFieldUnique(networkName, "macaddress", node.MacAddress)
  73. return isFieldUnique
  74. })
  75. _ = v.RegisterValidation("macaddress_valid", func(fl validator.FieldLevel) bool {
  76. _, err := net.ParseMAC(node.MacAddress)
  77. return err == nil
  78. })
  79. _ = v.RegisterValidation("name_valid", func(fl validator.FieldLevel) bool {
  80. isvalid := functions.NameInNodeCharSet(node.Name)
  81. return isvalid
  82. })
  83. _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
  84. _, err := node.GetNetwork()
  85. return err == nil
  86. })
  87. _ = v.RegisterValidation("pubkey_check", func(fl validator.FieldLevel) bool {
  88. notEmptyCheck := node.PublicKey != ""
  89. isBase64 := functions.IsBase64(node.PublicKey)
  90. return (notEmptyCheck && isBase64)
  91. })
  92. _ = v.RegisterValidation("password_check", func(fl validator.FieldLevel) bool {
  93. notEmptyCheck := node.Password != ""
  94. goodLength := len(node.Password) > 5
  95. return (notEmptyCheck && goodLength)
  96. })
  97. err := v.Struct(node)
  98. if err != nil {
  99. for _, e := range err.(validator.ValidationErrors) {
  100. fmt.Println(e)
  101. }
  102. }
  103. return err
  104. }
  105. func ValidateNodeUpdate(networkName string, node models.Node) error {
  106. v := validator.New()
  107. _ = v.RegisterValidation("address_check", func(fl validator.FieldLevel) bool {
  108. isIpv4 := functions.IsIpNet(node.Address)
  109. empty := node.Address == ""
  110. return (empty || isIpv4)
  111. })
  112. _ = v.RegisterValidation("address6_check", func(fl validator.FieldLevel) bool {
  113. isIpv6 := functions.IsIpNet(node.Address6)
  114. empty := node.Address6 == ""
  115. return (empty || isIpv6)
  116. })
  117. _ = v.RegisterValidation("endpoint_check", func(fl validator.FieldLevel) bool {
  118. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  119. isIp := functions.IsIpNet(node.Address)
  120. empty := node.Endpoint == ""
  121. return (empty || isIp)
  122. })
  123. _ = v.RegisterValidation("localaddress_check", func(fl validator.FieldLevel) bool {
  124. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  125. isIp := functions.IsIpNet(node.LocalAddress)
  126. empty := node.LocalAddress == ""
  127. return (empty || isIp )
  128. })
  129. _ = v.RegisterValidation("macaddress_unique", func(fl validator.FieldLevel) bool {
  130. return true
  131. })
  132. _ = v.RegisterValidation("macaddress_valid", func(fl validator.FieldLevel) bool {
  133. _, err := net.ParseMAC(node.MacAddress)
  134. return err == nil
  135. })
  136. _ = v.RegisterValidation("name_valid", func(fl validator.FieldLevel) bool {
  137. isvalid := functions.NameInNodeCharSet(node.Name)
  138. return isvalid
  139. })
  140. _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
  141. _, err := node.GetNetwork()
  142. return err == nil
  143. })
  144. _ = v.RegisterValidation("pubkey_check", func(fl validator.FieldLevel) bool {
  145. empty := node.PublicKey == ""
  146. isBase64 := functions.IsBase64(node.PublicKey)
  147. return (empty || isBase64)
  148. })
  149. _ = v.RegisterValidation("password_check", func(fl validator.FieldLevel) bool {
  150. empty := node.Password == ""
  151. goodLength := len(node.Password) > 5
  152. return (empty || goodLength)
  153. })
  154. err := v.Struct(node)
  155. if err != nil {
  156. for _, e := range err.(validator.ValidationErrors) {
  157. fmt.Println(e)
  158. }
  159. }
  160. return err
  161. }
  162. func UpdateNode(nodechange models.Node, node models.Node) (models.Node, error) {
  163. //Question: Is there a better way of doing this than a bunch of "if" statements? probably...
  164. //Eventually, lets have a better way to check if any of the fields are filled out...
  165. queryMac := node.MacAddress
  166. queryNetwork := node.Network
  167. notifynetwork := false
  168. if nodechange.Address != "" {
  169. node.Address = nodechange.Address
  170. notifynetwork = true
  171. }
  172. if nodechange.Address6 != "" {
  173. node.Address6 = nodechange.Address6
  174. notifynetwork = true
  175. }
  176. if nodechange.Name != "" {
  177. node.Name = nodechange.Name
  178. }
  179. if nodechange.LocalAddress != "" {
  180. node.LocalAddress = nodechange.LocalAddress
  181. }
  182. if nodechange.ListenPort != 0 {
  183. node.ListenPort = nodechange.ListenPort
  184. }
  185. if nodechange.ExpirationDateTime != 0 {
  186. node.ExpirationDateTime = nodechange.ExpirationDateTime
  187. }
  188. if nodechange.PostDown != "" {
  189. node.PostDown = nodechange.PostDown
  190. }
  191. if nodechange.Interface != "" {
  192. node.Interface = nodechange.Interface
  193. }
  194. if nodechange.PostUp != "" {
  195. node.PostUp = nodechange.PostUp
  196. }
  197. if nodechange.AccessKey != "" {
  198. node.AccessKey = nodechange.AccessKey
  199. }
  200. if nodechange.Endpoint != "" {
  201. node.Endpoint = nodechange.Endpoint
  202. notifynetwork = true
  203. }
  204. if nodechange.SaveConfig != nil {
  205. node.SaveConfig = nodechange.SaveConfig
  206. }
  207. if nodechange.PersistentKeepalive != 0 {
  208. node.PersistentKeepalive = nodechange.PersistentKeepalive
  209. }
  210. if nodechange.Password != "" {
  211. err := bcrypt.CompareHashAndPassword([]byte(nodechange.Password), []byte(node.Password))
  212. if err != nil && nodechange.Password != node.Password {
  213. hash, err := bcrypt.GenerateFromPassword([]byte(nodechange.Password), 5)
  214. if err != nil {
  215. return node, err
  216. }
  217. nodechange.Password = string(hash)
  218. node.Password = nodechange.Password
  219. }
  220. }
  221. if nodechange.MacAddress != "" {
  222. node.MacAddress = nodechange.MacAddress
  223. }
  224. if nodechange.PublicKey != "" {
  225. node.PublicKey = nodechange.PublicKey
  226. node.KeyUpdateTimeStamp = time.Now().Unix()
  227. notifynetwork = true
  228. }
  229. //collection := mongoconn.ConnectDB()
  230. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  231. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  232. // Create filter
  233. filter := bson.M{"macaddress": queryMac, "network": queryNetwork}
  234. node.SetLastModified()
  235. // prepare update model.
  236. update := bson.D{
  237. {"$set", bson.D{
  238. {"address", node.Address},
  239. {"address6", node.Address6},
  240. {"name", node.Name},
  241. {"password", node.Password},
  242. {"listenport", node.ListenPort},
  243. {"publickey", node.PublicKey},
  244. {"keyupdatetimestamp", node.KeyUpdateTimeStamp},
  245. {"expdatetime", node.ExpirationDateTime},
  246. {"endpoint", node.Endpoint},
  247. {"postup", node.PostUp},
  248. {"postdown", node.PostDown},
  249. {"macaddress", node.MacAddress},
  250. {"localaddress", node.LocalAddress},
  251. {"persistentkeepalive", node.PersistentKeepalive},
  252. {"saveconfig", node.SaveConfig},
  253. {"accesskey", node.AccessKey},
  254. {"interface", node.Interface},
  255. {"lastmodified", node.LastModified},
  256. }},
  257. }
  258. var nodeupdate models.Node
  259. errN := collection.FindOneAndUpdate(ctx, filter, update).Decode(&nodeupdate)
  260. if errN != nil {
  261. return nodeupdate, errN
  262. }
  263. if nodechange.MacAddress != "" {
  264. queryMac = nodechange.MacAddress
  265. }
  266. returnnode, errN := GetNode(queryMac, queryNetwork)
  267. defer cancel()
  268. if notifynetwork {
  269. errN = SetNetworkNodesLastModified(queryNetwork)
  270. }
  271. if servercfg.IsDNSMode() {
  272. errN = SetDNS()
  273. }
  274. return returnnode, errN
  275. }
  276. func DeleteNode(macaddress string, network string) (bool, error) {
  277. deleted := false
  278. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  279. filter := bson.M{"macaddress": macaddress, "network": network}
  280. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  281. result, err := collection.DeleteOne(ctx, filter)
  282. deletecount := result.DeletedCount
  283. if deletecount > 0 {
  284. deleted = true
  285. }
  286. defer cancel()
  287. err = SetNetworkNodesLastModified(network)
  288. fmt.Println("Deleted node " + macaddress + " from network " + network)
  289. if servercfg.IsDNSMode() {
  290. err = SetDNS()
  291. }
  292. return deleted, err
  293. }
  294. func GetNode(macaddress string, network string) (models.Node, error) {
  295. var node models.Node
  296. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  297. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  298. filter := bson.M{"macaddress": macaddress, "network": network}
  299. err := collection.FindOne(ctx, filter, options.FindOne().SetProjection(bson.M{"_id": 0})).Decode(&node)
  300. defer cancel()
  301. return node, err
  302. }
  303. func CreateNode(node models.Node, networkName string) (models.Node, error) {
  304. //encrypt that password so we never see it again
  305. hash, err := bcrypt.GenerateFromPassword([]byte(node.Password), 5)
  306. if err != nil {
  307. return node, err
  308. }
  309. //set password to encrypted password
  310. node.Password = string(hash)
  311. node.Network = networkName
  312. //node.SetDefaults()
  313. //Umm, why am I doing this again?
  314. //TODO: Why am I using a local function instead of the struct function? I really dont know.
  315. //I think I thought it didn't work but uhhh...idk
  316. node.SetDefaults()
  317. //Another DB call here...Inefficient
  318. //Anyways, this scrolls through all the IP Addresses in the network range and checks against nodes
  319. //until one is open and then returns it
  320. node.Address, err = functions.UniqueAddress(networkName)
  321. if err != nil {
  322. return node, err
  323. }
  324. node.Address6, err = functions.UniqueAddress6(networkName)
  325. if err != nil {
  326. return node, err
  327. }
  328. //IDK why these aren't a part of "set defaults. Pretty dumb.
  329. //TODO: This is dumb. Consolidate and fix.
  330. node.SetLastModified()
  331. node.SetDefaultName()
  332. node.SetLastCheckIn()
  333. node.SetLastPeerUpdate()
  334. node.KeyUpdateTimeStamp = time.Now().Unix()
  335. //Create a JWT for the node
  336. tokenString, _ := functions.CreateJWT(node.MacAddress, networkName)
  337. if tokenString == "" {
  338. //returnErrorResponse(w, r, errorResponse)
  339. return node, err
  340. }
  341. // connect db
  342. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  343. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  344. // insert our node to the node db.
  345. result, err := collection.InsertOne(ctx, node)
  346. _ = result
  347. defer cancel()
  348. if err != nil {
  349. return node, err
  350. }
  351. //return response for if node is pending
  352. if !node.IsPending {
  353. functions.DecrimentKey(node.Network, node.AccessKey)
  354. }
  355. SetNetworkNodesLastModified(node.Network)
  356. if servercfg.IsDNSMode() {
  357. err = SetDNS()
  358. }
  359. return node, err
  360. }
  361. func NodeCheckIn(node models.Node, networkName string) (models.CheckInResponse, error) {
  362. var response models.CheckInResponse
  363. parentnetwork, err := functions.GetParentNetwork(networkName)
  364. if err != nil {
  365. err = fmt.Errorf("%w; Couldnt retrieve Network "+networkName+": ", err)
  366. return response, err
  367. }
  368. parentnode, err := functions.GetNodeByMacAddress(networkName, node.MacAddress)
  369. if err != nil {
  370. err = fmt.Errorf("%w; Couldnt Get Node "+node.MacAddress, err)
  371. return response, err
  372. }
  373. if parentnode.IsPending {
  374. err = fmt.Errorf("%w; Node checking in is still pending: "+node.MacAddress, err)
  375. response.IsPending = true
  376. return response, err
  377. }
  378. networklm := parentnetwork.NetworkLastModified
  379. peerslm := parentnetwork.NodesLastModified
  380. gkeyupdate := parentnetwork.KeyUpdateTimeStamp
  381. nkeyupdate := parentnode.KeyUpdateTimeStamp
  382. peerlistlm := parentnode.LastPeerUpdate
  383. parentnodelm := parentnode.LastModified
  384. parentnodelastcheckin := parentnode.LastCheckIn
  385. if parentnodelastcheckin < parentnodelm {
  386. response.NeedConfigUpdate = true
  387. }
  388. if parentnodelm < networklm {
  389. response.NeedConfigUpdate = true
  390. }
  391. if peerlistlm < peerslm {
  392. response.NeedPeerUpdate = true
  393. }
  394. if nkeyupdate < gkeyupdate {
  395. response.NeedKeyUpdate = true
  396. }
  397. if time.Now().Unix() > parentnode.ExpirationDateTime {
  398. response.NeedDelete = true
  399. _, err = DeleteNode(node.MacAddress, networkName)
  400. } else {
  401. err = TimestampNode(parentnode, true, false, false)
  402. if err != nil {
  403. err = fmt.Errorf("%w; Couldnt Timestamp Node: ", err)
  404. return response, err
  405. }
  406. }
  407. response.Success = true
  408. return response, err
  409. }
  410. func SetNetworkNodesLastModified(networkName string) error {
  411. timestamp := time.Now().Unix()
  412. collection := mongoconn.Client.Database("netmaker").Collection("networks")
  413. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  414. // Create filter
  415. filter := bson.M{"netid": networkName}
  416. // prepare update model.
  417. update := bson.D{
  418. {"$set", bson.D{
  419. {"nodeslastmodified", timestamp},
  420. }},
  421. }
  422. result := collection.FindOneAndUpdate(ctx, filter, update)
  423. defer cancel()
  424. if result.Err() != nil {
  425. return result.Err()
  426. }
  427. return nil
  428. }
  429. func TimestampNode(node models.Node, updatecheckin bool, updatepeers bool, updatelm bool) error {
  430. if updatelm {
  431. node.SetLastModified()
  432. }
  433. if updatecheckin {
  434. node.SetLastCheckIn()
  435. }
  436. if updatepeers {
  437. node.SetLastPeerUpdate()
  438. }
  439. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  440. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  441. // Create filter
  442. filter := bson.M{"macaddress": node.MacAddress, "network": node.Network}
  443. // prepare update model.
  444. update := bson.D{
  445. {"$set", bson.D{
  446. {"lastmodified", node.LastModified},
  447. {"lastpeerupdate", node.LastPeerUpdate},
  448. {"lastcheckin", node.LastCheckIn},
  449. }},
  450. }
  451. var nodeupdate models.Node
  452. err := collection.FindOneAndUpdate(ctx, filter, update).Decode(&nodeupdate)
  453. defer cancel()
  454. return err
  455. }