2
0

hosts.go 41 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318
  1. package controller
  2. import (
  3. "encoding/json"
  4. "errors"
  5. "fmt"
  6. "net/http"
  7. "time"
  8. "github.com/google/uuid"
  9. "github.com/gorilla/mux"
  10. "github.com/gravitl/netmaker/database"
  11. "github.com/gravitl/netmaker/db"
  12. "github.com/gravitl/netmaker/logger"
  13. "github.com/gravitl/netmaker/logic"
  14. "github.com/gravitl/netmaker/logic/hostactions"
  15. "github.com/gravitl/netmaker/models"
  16. "github.com/gravitl/netmaker/mq"
  17. "github.com/gravitl/netmaker/schema"
  18. "github.com/gravitl/netmaker/servercfg"
  19. "golang.org/x/crypto/bcrypt"
  20. "golang.org/x/exp/slog"
  21. )
  22. func hostHandlers(r *mux.Router) {
  23. r.HandleFunc("/api/hosts", logic.SecurityCheck(true, http.HandlerFunc(getHosts))).
  24. Methods(http.MethodGet)
  25. r.HandleFunc("/api/hosts/keys", logic.SecurityCheck(true, http.HandlerFunc(updateAllKeys))).
  26. Methods(http.MethodPut)
  27. r.HandleFunc("/api/hosts/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHosts))).
  28. Methods(http.MethodPost)
  29. r.HandleFunc("/api/hosts/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHosts))).
  30. Methods(http.MethodPost)
  31. r.HandleFunc("/api/hosts/{hostid}/keys", logic.SecurityCheck(true, http.HandlerFunc(updateKeys))).
  32. Methods(http.MethodPut)
  33. r.HandleFunc("/api/hosts/{hostid}/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHost))).
  34. Methods(http.MethodPost)
  35. r.HandleFunc("/api/hosts/{hostid}", logic.SecurityCheck(true, http.HandlerFunc(updateHost))).
  36. Methods(http.MethodPut)
  37. r.HandleFunc("/api/hosts/{hostid}", Authorize(true, false, "all", http.HandlerFunc(deleteHost))).
  38. Methods(http.MethodDelete)
  39. r.HandleFunc("/api/hosts/{hostid}/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHost))).
  40. Methods(http.MethodPut)
  41. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(addHostToNetwork))).
  42. Methods(http.MethodPost)
  43. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(deleteHostFromNetwork))).
  44. Methods(http.MethodDelete)
  45. r.HandleFunc("/api/hosts/adm/authenticate", authenticateHost).Methods(http.MethodPost)
  46. r.HandleFunc("/api/v1/host", Authorize(true, false, "host", http.HandlerFunc(pull))).
  47. Methods(http.MethodGet)
  48. r.HandleFunc("/api/v1/host/{hostid}/signalpeer", Authorize(true, false, "host", http.HandlerFunc(signalPeer))).
  49. Methods(http.MethodPost)
  50. r.HandleFunc("/api/v1/fallback/host/{hostid}", Authorize(true, false, "host", http.HandlerFunc(hostUpdateFallback))).
  51. Methods(http.MethodPut)
  52. r.HandleFunc("/api/v1/host/{hostid}/peer_info", Authorize(true, false, "host", http.HandlerFunc(getHostPeerInfo))).
  53. Methods(http.MethodGet)
  54. r.HandleFunc("/api/v1/pending_hosts", logic.SecurityCheck(true, http.HandlerFunc(getPendingHosts))).
  55. Methods(http.MethodGet)
  56. r.HandleFunc("/api/v1/pending_hosts/approve/{id}", logic.SecurityCheck(true, http.HandlerFunc(approvePendingHost))).
  57. Methods(http.MethodPost)
  58. r.HandleFunc("/api/v1/pending_hosts/reject/{id}", logic.SecurityCheck(true, http.HandlerFunc(rejectPendingHost))).
  59. Methods(http.MethodPost)
  60. r.HandleFunc("/api/emqx/hosts", logic.SecurityCheck(true, http.HandlerFunc(delEmqxHosts))).
  61. Methods(http.MethodDelete)
  62. r.HandleFunc("/api/v1/auth-register/host", socketHandler)
  63. }
  64. // @Summary Requests all the hosts to upgrade their version
  65. // @Router /api/hosts/upgrade [post]
  66. // @Tags Hosts
  67. // @Security oauth
  68. // @Param force query bool false "Force upgrade"
  69. // @Success 200 {string} string "upgrade all hosts request received"
  70. func upgradeHosts(w http.ResponseWriter, r *http.Request) {
  71. w.Header().Set("Content-Type", "application/json")
  72. action := models.Upgrade
  73. if r.URL.Query().Get("force") == "true" {
  74. action = models.ForceUpgrade
  75. }
  76. user := r.Header.Get("user")
  77. go func() {
  78. slog.Info("requesting all hosts to upgrade", "user", user)
  79. hosts, err := logic.GetAllHosts()
  80. if err != nil {
  81. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  82. return
  83. }
  84. for _, host := range hosts {
  85. go func(host models.Host) {
  86. hostUpdate := models.HostUpdate{
  87. Action: action,
  88. Host: host,
  89. }
  90. if err = mq.HostUpdate(&hostUpdate); err != nil {
  91. slog.Error("failed to request host to upgrade", "user", user, "host", host.ID.String(), "error", err)
  92. } else {
  93. slog.Info("host upgrade requested", "user", user, "host", host.ID.String())
  94. }
  95. }(host)
  96. }
  97. }()
  98. logic.LogEvent(&models.Event{
  99. Action: models.UpgradeAll,
  100. Source: models.Subject{
  101. ID: r.Header.Get("user"),
  102. Name: r.Header.Get("user"),
  103. Type: models.UserSub,
  104. },
  105. TriggeredBy: r.Header.Get("user"),
  106. Target: models.Subject{
  107. ID: "All Hosts",
  108. Name: "All Hosts",
  109. Type: models.DeviceSub,
  110. },
  111. Origin: models.Dashboard,
  112. })
  113. slog.Info("upgrade all hosts request received", "user", user)
  114. logic.ReturnSuccessResponse(w, r, "upgrade all hosts request received")
  115. }
  116. // @Summary Upgrade a host
  117. // @Router /api/hosts/{hostid}/upgrade [put]
  118. // @Tags Hosts
  119. // @Security oauth
  120. // @Param hostid path string true "Host ID"
  121. // @Param force query bool false "Force upgrade"
  122. // @Success 200 {string} string "passed message to upgrade host"
  123. // @Failure 500 {object} models.ErrorResponse
  124. // upgrade host is a handler to send upgrade message to a host
  125. func upgradeHost(w http.ResponseWriter, r *http.Request) {
  126. host, err := logic.GetHost(mux.Vars(r)["hostid"])
  127. if err != nil {
  128. slog.Error("failed to find host", "error", err)
  129. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "notfound"))
  130. return
  131. }
  132. action := models.Upgrade
  133. if r.URL.Query().Get("force") == "true" {
  134. action = models.ForceUpgrade
  135. }
  136. if err := mq.HostUpdate(&models.HostUpdate{Action: action, Host: *host}); err != nil {
  137. slog.Error("failed to upgrade host", "error", err)
  138. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  139. return
  140. }
  141. logic.ReturnSuccessResponse(w, r, "passed message to upgrade host")
  142. }
  143. // @Summary List all hosts
  144. // @Router /api/hosts [get]
  145. // @Tags Hosts
  146. // @Security oauth
  147. // @Success 200 {array} models.ApiHost
  148. // @Failure 500 {object} models.ErrorResponse
  149. func getHosts(w http.ResponseWriter, r *http.Request) {
  150. w.Header().Set("Content-Type", "application/json")
  151. currentHosts, err := logic.GetAllHosts()
  152. if err != nil {
  153. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  154. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  155. return
  156. }
  157. apiHosts := logic.GetAllHostsAPI(currentHosts[:])
  158. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  159. logic.SortApiHosts(apiHosts[:])
  160. w.WriteHeader(http.StatusOK)
  161. json.NewEncoder(w).Encode(apiHosts)
  162. }
  163. // @Summary Used by clients for "pull" command
  164. // @Router /api/v1/host [get]
  165. // @Tags Hosts
  166. // @Security oauth
  167. // @Success 200 {object} models.HostPull
  168. // @Failure 500 {object} models.ErrorResponse
  169. func pull(w http.ResponseWriter, r *http.Request) {
  170. hostID := r.Header.Get(hostIDHeader) // return JSON/API formatted keys
  171. if len(hostID) == 0 {
  172. logger.Log(0, "no host authorized to pull")
  173. logic.ReturnErrorResponse(
  174. w,
  175. r,
  176. logic.FormatError(fmt.Errorf("no host authorized to pull"), "internal"),
  177. )
  178. return
  179. }
  180. host, err := logic.GetHost(hostID)
  181. if err != nil {
  182. logger.Log(0, "no host found during pull", hostID)
  183. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  184. return
  185. }
  186. sendPeerUpdate := false
  187. for _, nodeID := range host.Nodes {
  188. node, err := logic.GetNodeByID(nodeID)
  189. if err != nil {
  190. //slog.Error("failed to get node:", "id", node.ID, "error", err)
  191. continue
  192. }
  193. if r.URL.Query().Get("reset_failovered") == "true" {
  194. logic.ResetFailedOverPeer(&node)
  195. sendPeerUpdate = true
  196. }
  197. }
  198. if sendPeerUpdate {
  199. if err := mq.PublishPeerUpdate(false); err != nil {
  200. logger.Log(0, "fail to publish peer update: ", err.Error())
  201. }
  202. }
  203. allNodes, err := logic.GetAllNodes()
  204. if err != nil {
  205. logger.Log(0, "failed to get nodes: ", hostID)
  206. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  207. return
  208. }
  209. hPU, err := logic.GetPeerUpdateForHost("", host, allNodes, nil, nil)
  210. if err != nil {
  211. logger.Log(0, "could not pull peers for host", hostID, err.Error())
  212. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  213. return
  214. }
  215. _ = logic.CheckHostPorts(host)
  216. response := models.HostPull{
  217. Host: *host,
  218. Nodes: logic.GetHostNodes(host),
  219. ServerConfig: hPU.ServerConfig,
  220. Peers: hPU.Peers,
  221. PeerIDs: hPU.PeerIDs,
  222. HostNetworkInfo: hPU.HostNetworkInfo,
  223. EgressRoutes: hPU.EgressRoutes,
  224. FwUpdate: hPU.FwUpdate,
  225. ChangeDefaultGw: hPU.ChangeDefaultGw,
  226. DefaultGwIp: hPU.DefaultGwIp,
  227. IsInternetGw: hPU.IsInternetGw,
  228. NameServers: hPU.NameServers,
  229. EgressWithDomains: hPU.EgressWithDomains,
  230. EndpointDetection: logic.IsEndpointDetectionEnabled(),
  231. DnsNameservers: hPU.DnsNameservers,
  232. ReplacePeers: hPU.ReplacePeers,
  233. }
  234. logger.Log(1, hostID, host.Name, "completed a pull")
  235. w.WriteHeader(http.StatusOK)
  236. json.NewEncoder(w).Encode(&response)
  237. }
  238. // @Summary Updates a Netclient host on Netmaker server
  239. // @Router /api/hosts/{hostid} [put]
  240. // @Tags Hosts
  241. // @Security oauth
  242. // @Param hostid path string true "Host ID"
  243. // @Param body body models.ApiHost true "New host data"
  244. // @Success 200 {object} models.ApiHost
  245. // @Failure 500 {object} models.ErrorResponse
  246. func updateHost(w http.ResponseWriter, r *http.Request) {
  247. var newHostData models.ApiHost
  248. err := json.NewDecoder(r.Body).Decode(&newHostData)
  249. if err != nil {
  250. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  251. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  252. return
  253. }
  254. // confirm host exists
  255. currHost, err := logic.GetHost(newHostData.ID)
  256. if err != nil {
  257. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  258. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  259. return
  260. }
  261. newHost := newHostData.ConvertAPIHostToNMHost(currHost)
  262. logic.UpdateHost(newHost, currHost) // update the in memory struct values
  263. if err = logic.UpsertHost(newHost); err != nil {
  264. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  265. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  266. return
  267. }
  268. // publish host update through MQ
  269. if err := mq.HostUpdate(&models.HostUpdate{
  270. Action: models.UpdateHost,
  271. Host: *newHost,
  272. }); err != nil {
  273. logger.Log(
  274. 0,
  275. r.Header.Get("user"),
  276. "failed to send host update: ",
  277. currHost.ID.String(),
  278. err.Error(),
  279. )
  280. }
  281. go func() {
  282. if err := mq.PublishPeerUpdate(false); err != nil {
  283. logger.Log(0, "fail to publish peer update: ", err.Error())
  284. }
  285. if newHost.Name != currHost.Name {
  286. if servercfg.IsDNSMode() {
  287. logic.SetDNS()
  288. }
  289. }
  290. }()
  291. logic.LogEvent(&models.Event{
  292. Action: models.Update,
  293. Source: models.Subject{
  294. ID: r.Header.Get("user"),
  295. Name: r.Header.Get("user"),
  296. Type: models.UserSub,
  297. },
  298. TriggeredBy: r.Header.Get("user"),
  299. Target: models.Subject{
  300. ID: currHost.ID.String(),
  301. Name: newHost.Name,
  302. Type: models.DeviceSub,
  303. },
  304. Diff: models.Diff{
  305. Old: currHost,
  306. New: newHost,
  307. },
  308. Origin: models.Dashboard,
  309. })
  310. apiHostData := newHost.ConvertNMHostToAPI()
  311. logger.Log(2, r.Header.Get("user"), "updated host", newHost.ID.String())
  312. w.WriteHeader(http.StatusOK)
  313. json.NewEncoder(w).Encode(apiHostData)
  314. }
  315. // @Summary Updates a Netclient host on Netmaker server
  316. // @Router /api/v1/fallback/host/{hostid} [put]
  317. // @Tags Hosts
  318. // @Security oauth
  319. // @Param hostid path string true "Host ID"
  320. // @Param body body models.HostUpdate true "Host update data"
  321. // @Success 200 {string} string "updated host data"
  322. // @Failure 500 {object} models.ErrorResponse
  323. func hostUpdateFallback(w http.ResponseWriter, r *http.Request) {
  324. var params = mux.Vars(r)
  325. hostid := params["hostid"]
  326. currentHost, err := logic.GetHost(hostid)
  327. if err != nil {
  328. slog.Error("error getting host", "id", hostid, "error", err)
  329. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  330. return
  331. }
  332. var sendPeerUpdate, sendDeletedNodeUpdate, replacePeers bool
  333. var hostUpdate models.HostUpdate
  334. err = json.NewDecoder(r.Body).Decode(&hostUpdate)
  335. if err != nil {
  336. slog.Error("failed to update a host:", "user", r.Header.Get("user"), "error", err.Error(), "host", currentHost.Name)
  337. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  338. return
  339. }
  340. slog.Info("recieved host update", "name", hostUpdate.Host.Name, "id", hostUpdate.Host.ID, "action", hostUpdate.Action)
  341. switch hostUpdate.Action {
  342. case models.CheckIn:
  343. sendPeerUpdate = mq.HandleHostCheckin(&hostUpdate.Host, currentHost)
  344. changed := logic.CheckHostPorts(currentHost)
  345. if changed {
  346. mq.HostUpdate(&models.HostUpdate{Action: models.UpdateHost, Host: *currentHost})
  347. }
  348. case models.UpdateHost:
  349. if hostUpdate.Host.PublicKey != currentHost.PublicKey {
  350. //remove old peer entry
  351. replacePeers = true
  352. }
  353. sendPeerUpdate = logic.UpdateHostFromClient(&hostUpdate.Host, currentHost)
  354. err := logic.UpsertHost(currentHost)
  355. if err != nil {
  356. slog.Error("failed to update host", "id", currentHost.ID, "error", err)
  357. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.Internal))
  358. return
  359. }
  360. case models.UpdateNode:
  361. sendDeletedNodeUpdate, sendPeerUpdate = logic.UpdateHostNode(&hostUpdate.Host, &hostUpdate.Node)
  362. case models.UpdateMetrics:
  363. mq.UpdateMetricsFallBack(hostUpdate.Node.ID.String(), hostUpdate.NewMetrics)
  364. case models.EgressUpdate:
  365. e := schema.Egress{ID: hostUpdate.EgressDomain.ID}
  366. err = e.Get(db.WithContext(r.Context()))
  367. if err != nil {
  368. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.BadReq))
  369. return
  370. }
  371. if len(hostUpdate.Node.EgressGatewayRanges) > 0 {
  372. e.DomainAns = hostUpdate.Node.EgressGatewayRanges
  373. e.Update(db.WithContext(r.Context()))
  374. }
  375. sendPeerUpdate = true
  376. case models.SignalHost:
  377. mq.SignalPeer(hostUpdate.Signal)
  378. case models.DeleteHost:
  379. mq.DeleteAndCleanupHost(currentHost)
  380. sendPeerUpdate = true
  381. }
  382. go func() {
  383. if sendDeletedNodeUpdate {
  384. mq.PublishDeletedNodePeerUpdate(&hostUpdate.Node)
  385. }
  386. if sendPeerUpdate {
  387. err := mq.PublishPeerUpdate(replacePeers)
  388. if err != nil {
  389. slog.Error("failed to publish peer update", "error", err)
  390. }
  391. }
  392. }()
  393. logic.ReturnSuccessResponse(w, r, "updated host data")
  394. }
  395. // @Summary Deletes a Netclient host from Netmaker server
  396. // @Router /api/hosts/{hostid} [delete]
  397. // @Tags Hosts
  398. // @Security oauth
  399. // @Param hostid path string true "Host ID"
  400. // @Param force query bool false "Force delete"
  401. // @Success 200 {object} models.ApiHost
  402. // @Failure 500 {object} models.ErrorResponse
  403. func deleteHost(w http.ResponseWriter, r *http.Request) {
  404. var params = mux.Vars(r)
  405. hostid := params["hostid"]
  406. forceDelete := r.URL.Query().Get("force") == "true"
  407. // confirm host exists
  408. currHost, err := logic.GetHost(hostid)
  409. if err != nil {
  410. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  411. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  412. return
  413. }
  414. for _, nodeID := range currHost.Nodes {
  415. node, err := logic.GetNodeByID(nodeID)
  416. if err != nil {
  417. slog.Error("failed to get node", "nodeid", nodeID, "error", err)
  418. continue
  419. }
  420. var gwClients []models.ExtClient
  421. if node.IsIngressGateway {
  422. gwClients = logic.GetGwExtclients(node.ID.String(), node.Network)
  423. }
  424. go mq.PublishMqUpdatesForDeletedNode(node, false, gwClients)
  425. }
  426. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  427. // delete EMQX credentials for host
  428. if err := mq.GetEmqxHandler().DeleteEmqxUser(currHost.ID.String()); err != nil {
  429. slog.Error(
  430. "failed to remove host credentials from EMQX",
  431. "id",
  432. currHost.ID,
  433. "error",
  434. err,
  435. )
  436. }
  437. }
  438. if err = mq.HostUpdate(&models.HostUpdate{
  439. Action: models.DeleteHost,
  440. Host: *currHost,
  441. }); err != nil {
  442. logger.Log(
  443. 0,
  444. r.Header.Get("user"),
  445. "failed to send delete host update: ",
  446. currHost.ID.String(),
  447. err.Error(),
  448. )
  449. }
  450. if err = logic.RemoveHost(currHost, forceDelete); err != nil {
  451. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  452. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  453. return
  454. }
  455. // delete if any pending reqs
  456. (&schema.PendingHost{
  457. HostID: currHost.ID.String(),
  458. }).DeleteAllPendingHosts(db.WithContext(r.Context()))
  459. logic.LogEvent(&models.Event{
  460. Action: models.Delete,
  461. Source: models.Subject{
  462. ID: r.Header.Get("user"),
  463. Name: r.Header.Get("user"),
  464. Type: models.UserSub,
  465. },
  466. TriggeredBy: r.Header.Get("user"),
  467. Target: models.Subject{
  468. ID: currHost.ID.String(),
  469. Name: currHost.Name,
  470. Type: models.DeviceSub,
  471. },
  472. Origin: models.Dashboard,
  473. })
  474. apiHostData := currHost.ConvertNMHostToAPI()
  475. logger.Log(2, r.Header.Get("user"), "removed host", currHost.Name)
  476. w.WriteHeader(http.StatusOK)
  477. json.NewEncoder(w).Encode(apiHostData)
  478. }
  479. // @Summary To Add Host To Network
  480. // @Router /api/hosts/{hostid}/networks/{network} [post]
  481. // @Tags Hosts
  482. // @Security oauth
  483. // @Param hostid path string true "Host ID"
  484. // @Param network path string true "Network name"
  485. // @Success 200 {string} string "OK"
  486. // @Failure 500 {object} models.ErrorResponse
  487. func addHostToNetwork(w http.ResponseWriter, r *http.Request) {
  488. var params = mux.Vars(r)
  489. hostid := params["hostid"]
  490. network := params["network"]
  491. if hostid == "" || network == "" {
  492. logic.ReturnErrorResponse(
  493. w,
  494. r,
  495. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  496. )
  497. return
  498. }
  499. // confirm host exists
  500. currHost, err := logic.GetHost(hostid)
  501. if err != nil {
  502. logger.Log(0, r.Header.Get("user"), "failed to find host:", hostid, err.Error())
  503. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  504. return
  505. }
  506. newNode, err := logic.UpdateHostNetwork(currHost, network, true)
  507. if err != nil {
  508. logger.Log(
  509. 0,
  510. r.Header.Get("user"),
  511. "failed to add host to network:",
  512. hostid,
  513. network,
  514. err.Error(),
  515. )
  516. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  517. return
  518. }
  519. logger.Log(1, "added new node", newNode.ID.String(), "to host", currHost.Name)
  520. if currHost.IsDefault {
  521. // make host failover
  522. logic.CreateFailOver(*newNode)
  523. // make host remote access gateway
  524. logic.CreateIngressGateway(network, newNode.ID.String(), models.IngressRequest{})
  525. logic.CreateRelay(models.RelayRequest{
  526. NodeID: newNode.ID.String(),
  527. NetID: network,
  528. })
  529. }
  530. go func() {
  531. mq.HostUpdate(&models.HostUpdate{
  532. Action: models.JoinHostToNetwork,
  533. Host: *currHost,
  534. Node: *newNode,
  535. })
  536. mq.PublishPeerUpdate(false)
  537. if servercfg.IsDNSMode() {
  538. logic.SetDNS()
  539. }
  540. }()
  541. logger.Log(
  542. 2,
  543. r.Header.Get("user"),
  544. fmt.Sprintf("added host %s to network %s", currHost.Name, network),
  545. )
  546. logic.LogEvent(&models.Event{
  547. Action: models.JoinHostToNet,
  548. Source: models.Subject{
  549. ID: r.Header.Get("user"),
  550. Name: r.Header.Get("user"),
  551. Type: models.UserSub,
  552. },
  553. TriggeredBy: r.Header.Get("user"),
  554. Target: models.Subject{
  555. ID: currHost.ID.String(),
  556. Name: currHost.Name,
  557. Type: models.DeviceSub,
  558. },
  559. NetworkID: models.NetworkID(network),
  560. Origin: models.Dashboard,
  561. })
  562. w.WriteHeader(http.StatusOK)
  563. }
  564. // @Summary To Remove Host from Network
  565. // @Router /api/hosts/{hostid}/networks/{network} [delete]
  566. // @Tags Hosts
  567. // @Security oauth
  568. // @Param hostid path string true "Host ID"
  569. // @Param network path string true "Network name"
  570. // @Param force query bool false "Force delete"
  571. // @Success 200 {string} string "OK"
  572. // @Failure 500 {object} models.ErrorResponse
  573. func deleteHostFromNetwork(w http.ResponseWriter, r *http.Request) {
  574. var params = mux.Vars(r)
  575. hostid := params["hostid"]
  576. network := params["network"]
  577. forceDelete := r.URL.Query().Get("force") == "true"
  578. if hostid == "" || network == "" {
  579. logic.ReturnErrorResponse(
  580. w,
  581. r,
  582. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  583. )
  584. return
  585. }
  586. // confirm host exists
  587. currHost, err := logic.GetHost(hostid)
  588. if err != nil {
  589. if database.IsEmptyRecord(err) {
  590. // check if there is any daemon nodes that needs to be deleted
  591. node, err := logic.GetNodeByHostRef(hostid, network)
  592. if err != nil {
  593. slog.Error(
  594. "couldn't get node for host",
  595. "hostid",
  596. hostid,
  597. "network",
  598. network,
  599. "error",
  600. err,
  601. )
  602. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  603. return
  604. }
  605. if err = logic.DeleteNodeByID(&node); err != nil {
  606. slog.Error("failed to force delete daemon node",
  607. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  608. logic.ReturnErrorResponse(
  609. w,
  610. r,
  611. logic.FormatError(
  612. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  613. "internal",
  614. ),
  615. )
  616. return
  617. }
  618. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  619. return
  620. }
  621. logger.Log(0, r.Header.Get("user"), "failed to find host:", err.Error())
  622. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  623. return
  624. }
  625. node, err := logic.UpdateHostNetwork(currHost, network, false)
  626. if err != nil {
  627. if node == nil && forceDelete {
  628. // force cleanup the node
  629. node, err := logic.GetNodeByHostRef(hostid, network)
  630. if err != nil {
  631. slog.Error(
  632. "couldn't get node for host",
  633. "hostid",
  634. hostid,
  635. "network",
  636. network,
  637. "error",
  638. err,
  639. )
  640. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  641. return
  642. }
  643. if err = logic.DeleteNodeByID(&node); err != nil {
  644. slog.Error("failed to force delete daemon node",
  645. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  646. logic.ReturnErrorResponse(
  647. w,
  648. r,
  649. logic.FormatError(
  650. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  651. "internal",
  652. ),
  653. )
  654. return
  655. }
  656. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  657. return
  658. }
  659. logger.Log(
  660. 0,
  661. r.Header.Get("user"),
  662. "failed to remove host from network:",
  663. hostid,
  664. network,
  665. err.Error(),
  666. )
  667. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  668. return
  669. }
  670. var gwClients []models.ExtClient
  671. if node.IsIngressGateway {
  672. gwClients = logic.GetGwExtclients(node.ID.String(), node.Network)
  673. }
  674. logger.Log(1, "deleting node", node.ID.String(), "from host", currHost.Name)
  675. if err := logic.DeleteNode(node, forceDelete); err != nil {
  676. logic.ReturnErrorResponse(
  677. w,
  678. r,
  679. logic.FormatError(fmt.Errorf("failed to delete node"), "internal"),
  680. )
  681. return
  682. }
  683. go func() {
  684. mq.PublishMqUpdatesForDeletedNode(*node, true, gwClients)
  685. if servercfg.IsDNSMode() {
  686. logic.SetDNS()
  687. }
  688. }()
  689. logic.LogEvent(&models.Event{
  690. Action: models.RemoveHostFromNet,
  691. Source: models.Subject{
  692. ID: r.Header.Get("user"),
  693. Name: r.Header.Get("user"),
  694. Type: models.UserSub,
  695. },
  696. TriggeredBy: r.Header.Get("user"),
  697. Target: models.Subject{
  698. ID: currHost.ID.String(),
  699. Name: currHost.Name,
  700. Type: models.DeviceSub,
  701. },
  702. NetworkID: models.NetworkID(network),
  703. Origin: models.Dashboard,
  704. })
  705. logger.Log(
  706. 2,
  707. r.Header.Get("user"),
  708. fmt.Sprintf("removed host %s from network %s", currHost.Name, network),
  709. )
  710. w.WriteHeader(http.StatusOK)
  711. }
  712. // @Summary To Fetch Auth Token for a Host
  713. // @Router /api/hosts/adm/authenticate [post]
  714. // @Tags Auth
  715. // @Accept json
  716. // @Param body body models.AuthParams true "Authentication parameters"
  717. // @Success 200 {object} models.SuccessResponse
  718. // @Failure 400 {object} models.ErrorResponse
  719. // @Failure 401 {object} models.ErrorResponse
  720. // @Failure 500 {object} models.ErrorResponse
  721. func authenticateHost(response http.ResponseWriter, request *http.Request) {
  722. var authRequest models.AuthParams
  723. var errorResponse = models.ErrorResponse{
  724. Code: http.StatusInternalServerError, Message: "W1R3: It's not you it's me.",
  725. }
  726. decoder := json.NewDecoder(request.Body)
  727. decoderErr := decoder.Decode(&authRequest)
  728. defer request.Body.Close()
  729. if decoderErr != nil {
  730. errorResponse.Code = http.StatusBadRequest
  731. errorResponse.Message = decoderErr.Error()
  732. logger.Log(0, request.Header.Get("user"), "error decoding request body: ",
  733. decoderErr.Error())
  734. logic.ReturnErrorResponse(response, request, errorResponse)
  735. return
  736. }
  737. errorResponse.Code = http.StatusBadRequest
  738. if authRequest.ID == "" {
  739. errorResponse.Message = "W1R3: ID can't be empty"
  740. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  741. logic.ReturnErrorResponse(response, request, errorResponse)
  742. return
  743. } else if authRequest.Password == "" {
  744. errorResponse.Message = "W1R3: Password can't be empty"
  745. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  746. logic.ReturnErrorResponse(response, request, errorResponse)
  747. return
  748. }
  749. host, err := logic.GetHost(authRequest.ID)
  750. if err != nil {
  751. errorResponse.Code = http.StatusBadRequest
  752. errorResponse.Message = err.Error()
  753. logger.Log(0, request.Header.Get("user"),
  754. "error retrieving host: ", authRequest.ID, err.Error())
  755. logic.ReturnErrorResponse(response, request, errorResponse)
  756. return
  757. }
  758. err = bcrypt.CompareHashAndPassword([]byte(host.HostPass), []byte(authRequest.Password))
  759. if err != nil {
  760. errorResponse.Code = http.StatusUnauthorized
  761. errorResponse.Message = "unauthorized"
  762. logger.Log(0, request.Header.Get("user"),
  763. "error validating user password: ", err.Error())
  764. logic.ReturnErrorResponse(response, request, errorResponse)
  765. return
  766. }
  767. tokenString, err := logic.CreateJWT(authRequest.ID, authRequest.MacAddress, "")
  768. if tokenString == "" {
  769. errorResponse.Code = http.StatusUnauthorized
  770. errorResponse.Message = "unauthorized"
  771. logger.Log(0, request.Header.Get("user"),
  772. fmt.Sprintf("%s: %v", errorResponse.Message, err))
  773. logic.ReturnErrorResponse(response, request, errorResponse)
  774. return
  775. }
  776. var successResponse = models.SuccessResponse{
  777. Code: http.StatusOK,
  778. Message: "W1R3: Host " + authRequest.ID + " Authorized",
  779. Response: models.SuccessfulLoginResponse{
  780. AuthToken: tokenString,
  781. ID: authRequest.ID,
  782. },
  783. }
  784. successJSONResponse, jsonError := json.Marshal(successResponse)
  785. if jsonError != nil {
  786. errorResponse.Code = http.StatusBadRequest
  787. errorResponse.Message = err.Error()
  788. logger.Log(0, request.Header.Get("user"),
  789. "error marshalling resp: ", err.Error())
  790. logic.ReturnErrorResponse(response, request, errorResponse)
  791. return
  792. }
  793. go func() {
  794. // Create EMQX creds
  795. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  796. if err := mq.GetEmqxHandler().CreateEmqxUser(host.ID.String(), authRequest.Password); err != nil {
  797. slog.Error("failed to create host credentials for EMQX: ", err.Error())
  798. }
  799. }
  800. }()
  801. response.WriteHeader(http.StatusOK)
  802. response.Header().Set("Content-Type", "application/json")
  803. response.Write(successJSONResponse)
  804. }
  805. // @Summary Send signal to peer
  806. // @Router /api/v1/host/{hostid}/signalpeer [post]
  807. // @Tags Hosts
  808. // @Security oauth
  809. // @Param hostid path string true "Host ID"
  810. // @Param body body models.Signal true "Signal data"
  811. // @Success 200 {object} models.Signal
  812. // @Failure 400 {object} models.ErrorResponse
  813. func signalPeer(w http.ResponseWriter, r *http.Request) {
  814. var params = mux.Vars(r)
  815. hostid := params["hostid"]
  816. // confirm host exists
  817. _, err := logic.GetHost(hostid)
  818. if err != nil {
  819. logger.Log(0, r.Header.Get("user"), "failed to get host:", err.Error())
  820. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  821. return
  822. }
  823. var signal models.Signal
  824. w.Header().Set("Content-Type", "application/json")
  825. err = json.NewDecoder(r.Body).Decode(&signal)
  826. if err != nil {
  827. logger.Log(0, r.Header.Get("user"), "error decoding request body: ", err.Error())
  828. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  829. return
  830. }
  831. if signal.ToHostPubKey == "" {
  832. msg := "insufficient data to signal peer"
  833. logger.Log(0, r.Header.Get("user"), msg)
  834. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New(msg), "badrequest"))
  835. return
  836. }
  837. signal.IsPro = servercfg.IsPro
  838. peerHost, err := logic.GetHost(signal.ToHostID)
  839. if err != nil {
  840. logic.ReturnErrorResponse(
  841. w,
  842. r,
  843. logic.FormatError(errors.New("failed to signal, peer not found"), "badrequest"),
  844. )
  845. return
  846. }
  847. err = mq.HostUpdate(&models.HostUpdate{
  848. Action: models.SignalHost,
  849. Host: *peerHost,
  850. Signal: signal,
  851. })
  852. if err != nil {
  853. logic.ReturnErrorResponse(
  854. w,
  855. r,
  856. logic.FormatError(
  857. errors.New("failed to publish signal to peer: "+err.Error()),
  858. "badrequest",
  859. ),
  860. )
  861. return
  862. }
  863. w.WriteHeader(http.StatusOK)
  864. json.NewEncoder(w).Encode(signal)
  865. }
  866. // @Summary Update keys for all hosts
  867. // @Router /api/hosts/keys [put]
  868. // @Tags Hosts
  869. // @Security oauth
  870. // @Success 200 {string} string "OK"
  871. // @Failure 400 {object} models.ErrorResponse
  872. func updateAllKeys(w http.ResponseWriter, r *http.Request) {
  873. var errorResponse = models.ErrorResponse{}
  874. w.Header().Set("Content-Type", "application/json")
  875. hosts, err := logic.GetAllHosts()
  876. if err != nil {
  877. errorResponse.Code = http.StatusBadRequest
  878. errorResponse.Message = err.Error()
  879. logger.Log(0, r.Header.Get("user"),
  880. "error retrieving hosts ", err.Error())
  881. logic.ReturnErrorResponse(w, r, errorResponse)
  882. return
  883. }
  884. go func() {
  885. hostUpdate := models.HostUpdate{}
  886. hostUpdate.Action = models.UpdateKeys
  887. for _, host := range hosts {
  888. hostUpdate.Host = host
  889. logger.Log(2, "updating host", host.ID.String(), " for a key update")
  890. if err = mq.HostUpdate(&hostUpdate); err != nil {
  891. logger.Log(
  892. 0,
  893. "failed to send update to node during a network wide key update",
  894. host.ID.String(),
  895. err.Error(),
  896. )
  897. }
  898. }
  899. }()
  900. logic.LogEvent(&models.Event{
  901. Action: models.RefreshAllKeys,
  902. Source: models.Subject{
  903. ID: r.Header.Get("user"),
  904. Name: r.Header.Get("user"),
  905. Type: models.UserSub,
  906. },
  907. TriggeredBy: r.Header.Get("user"),
  908. Target: models.Subject{
  909. ID: "All Devices",
  910. Name: "All Devices",
  911. Type: models.DeviceSub,
  912. },
  913. Origin: models.Dashboard,
  914. })
  915. logger.Log(2, r.Header.Get("user"), "updated keys for all hosts")
  916. w.WriteHeader(http.StatusOK)
  917. }
  918. // @Summary Update keys for a host
  919. // @Router /api/hosts/{hostid}/keys [put]
  920. // @Tags Hosts
  921. // @Security oauth
  922. // @Param hostid path string true "Host ID"
  923. // @Success 200 {string} string "OK"
  924. // @Failure 400 {object} models.ErrorResponse
  925. func updateKeys(w http.ResponseWriter, r *http.Request) {
  926. var errorResponse = models.ErrorResponse{}
  927. w.Header().Set("Content-Type", "application/json")
  928. var params = mux.Vars(r)
  929. hostid := params["hostid"]
  930. host, err := logic.GetHost(hostid)
  931. if err != nil {
  932. logger.Log(0, "failed to retrieve host", hostid, err.Error())
  933. errorResponse.Code = http.StatusBadRequest
  934. errorResponse.Message = err.Error()
  935. logger.Log(0, r.Header.Get("user"),
  936. "error retrieving hosts ", err.Error())
  937. logic.ReturnErrorResponse(w, r, errorResponse)
  938. return
  939. }
  940. go func() {
  941. hostUpdate := models.HostUpdate{
  942. Action: models.UpdateKeys,
  943. Host: *host,
  944. }
  945. if err = mq.HostUpdate(&hostUpdate); err != nil {
  946. logger.Log(0, "failed to send host key update", host.ID.String(), err.Error())
  947. }
  948. }()
  949. logic.LogEvent(&models.Event{
  950. Action: models.RefreshKey,
  951. Source: models.Subject{
  952. ID: r.Header.Get("user"),
  953. Name: r.Header.Get("user"),
  954. Type: models.UserSub,
  955. },
  956. TriggeredBy: r.Header.Get("user"),
  957. Target: models.Subject{
  958. ID: host.ID.String(),
  959. Name: host.Name,
  960. Type: models.DeviceSub,
  961. },
  962. Origin: models.Dashboard,
  963. })
  964. logger.Log(2, r.Header.Get("user"), "updated key on host", host.Name)
  965. w.WriteHeader(http.StatusOK)
  966. }
  967. // @Summary Requests all the hosts to pull
  968. // @Router /api/hosts/sync [post]
  969. // @Tags Hosts
  970. // @Security oauth
  971. // @Success 200 {string} string "sync all hosts request received"
  972. func syncHosts(w http.ResponseWriter, r *http.Request) {
  973. w.Header().Set("Content-Type", "application/json")
  974. user := r.Header.Get("user")
  975. go func() {
  976. slog.Info("requesting all hosts to sync", "user", user)
  977. hosts, err := logic.GetAllHosts()
  978. if err != nil {
  979. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  980. return
  981. }
  982. for _, host := range hosts {
  983. go func(host models.Host) {
  984. hostUpdate := models.HostUpdate{
  985. Action: models.RequestPull,
  986. Host: host,
  987. }
  988. if err = mq.HostUpdate(&hostUpdate); err != nil {
  989. slog.Error("failed to request host to sync", "user", user, "host", host.ID.String(), "error", err)
  990. } else {
  991. slog.Info("host sync requested", "user", user, "host", host.ID.String())
  992. }
  993. }(host)
  994. time.Sleep(time.Millisecond * 100)
  995. }
  996. }()
  997. logic.LogEvent(&models.Event{
  998. Action: models.SyncAll,
  999. Source: models.Subject{
  1000. ID: r.Header.Get("user"),
  1001. Name: r.Header.Get("user"),
  1002. Type: models.UserSub,
  1003. },
  1004. TriggeredBy: r.Header.Get("user"),
  1005. Target: models.Subject{
  1006. ID: "All Devices",
  1007. Name: "All Devices",
  1008. Type: models.DeviceSub,
  1009. },
  1010. Origin: models.Dashboard,
  1011. })
  1012. slog.Info("sync all hosts request received", "user", user)
  1013. logic.ReturnSuccessResponse(w, r, "sync all hosts request received")
  1014. }
  1015. // @Summary Requests a host to pull
  1016. // @Router /api/hosts/{hostid}/sync [post]
  1017. // @Tags Hosts
  1018. // @Security oauth
  1019. // @Param hostid path string true "Host ID"
  1020. // @Success 200 {string} string "OK"
  1021. // @Failure 400 {object} models.ErrorResponse
  1022. func syncHost(w http.ResponseWriter, r *http.Request) {
  1023. hostId := mux.Vars(r)["hostid"]
  1024. var errorResponse = models.ErrorResponse{}
  1025. w.Header().Set("Content-Type", "application/json")
  1026. host, err := logic.GetHost(hostId)
  1027. if err != nil {
  1028. slog.Error("failed to retrieve host", "user", r.Header.Get("user"), "error", err)
  1029. errorResponse.Code = http.StatusBadRequest
  1030. errorResponse.Message = err.Error()
  1031. logic.ReturnErrorResponse(w, r, errorResponse)
  1032. return
  1033. }
  1034. go func() {
  1035. hostUpdate := models.HostUpdate{
  1036. Action: models.RequestPull,
  1037. Host: *host,
  1038. }
  1039. if err = mq.HostUpdate(&hostUpdate); err != nil {
  1040. slog.Error("failed to send host pull request", "host", host.ID.String(), "error", err)
  1041. }
  1042. }()
  1043. logic.LogEvent(&models.Event{
  1044. Action: models.Sync,
  1045. Source: models.Subject{
  1046. ID: r.Header.Get("user"),
  1047. Name: r.Header.Get("user"),
  1048. Type: models.UserSub,
  1049. },
  1050. TriggeredBy: r.Header.Get("user"),
  1051. Target: models.Subject{
  1052. ID: host.ID.String(),
  1053. Name: host.Name,
  1054. Type: models.DeviceSub,
  1055. },
  1056. Origin: models.Dashboard,
  1057. })
  1058. slog.Info("requested host pull", "user", r.Header.Get("user"), "host", host.ID.String())
  1059. w.WriteHeader(http.StatusOK)
  1060. }
  1061. // @Summary Deletes all EMQX hosts
  1062. // @Router /api/emqx/hosts [delete]
  1063. // @Tags Hosts
  1064. // @Security oauth
  1065. // @Success 200 {string} string "deleted hosts data on emqx"
  1066. // @Failure 500 {object} models.ErrorResponse
  1067. func delEmqxHosts(w http.ResponseWriter, r *http.Request) {
  1068. currentHosts, err := logic.GetAllHosts()
  1069. if err != nil {
  1070. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  1071. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  1072. return
  1073. }
  1074. for _, host := range currentHosts {
  1075. // delete EMQX credentials for host
  1076. if err := mq.GetEmqxHandler().DeleteEmqxUser(host.ID.String()); err != nil {
  1077. slog.Error("failed to remove host credentials from EMQX", "id", host.ID, "error", err)
  1078. }
  1079. }
  1080. err = mq.GetEmqxHandler().DeleteEmqxUser(servercfg.GetMqUserName())
  1081. if err != nil {
  1082. slog.Error(
  1083. "failed to remove server credentials from EMQX",
  1084. "user",
  1085. servercfg.GetMqUserName(),
  1086. "error",
  1087. err,
  1088. )
  1089. }
  1090. logic.ReturnSuccessResponse(w, r, "deleted hosts data on emqx")
  1091. }
  1092. // @Summary Fetches host peerinfo
  1093. // @Router /api/host/{hostid}/peer_info [get]
  1094. // @Tags Hosts
  1095. // @Security oauth
  1096. // @Param hostid path string true "Host ID"
  1097. // @Success 200 {object} models.SuccessResponse
  1098. // @Failure 500 {object} models.ErrorResponse
  1099. func getHostPeerInfo(w http.ResponseWriter, r *http.Request) {
  1100. hostId := mux.Vars(r)["hostid"]
  1101. var errorResponse = models.ErrorResponse{}
  1102. host, err := logic.GetHost(hostId)
  1103. if err != nil {
  1104. slog.Error("failed to retrieve host", "error", err)
  1105. errorResponse.Code = http.StatusBadRequest
  1106. errorResponse.Message = err.Error()
  1107. logic.ReturnErrorResponse(w, r, errorResponse)
  1108. return
  1109. }
  1110. peerInfo, err := logic.GetHostPeerInfo(host)
  1111. if err != nil {
  1112. slog.Error("failed to retrieve host peerinfo", "error", err)
  1113. errorResponse.Code = http.StatusBadRequest
  1114. errorResponse.Message = err.Error()
  1115. logic.ReturnErrorResponse(w, r, errorResponse)
  1116. return
  1117. }
  1118. logic.ReturnSuccessResponseWithJson(w, r, peerInfo, "fetched host peer info")
  1119. }
  1120. // @Summary List pending hosts in a network
  1121. // @Router /api/v1/pending_hosts [get]
  1122. // @Tags Hosts
  1123. // @Security oauth
  1124. // @Success 200 {array} schema.PendingHost
  1125. // @Failure 500 {object} models.ErrorResponse
  1126. func getPendingHosts(w http.ResponseWriter, r *http.Request) {
  1127. netID := r.URL.Query().Get("network")
  1128. if netID == "" {
  1129. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New("network id param is missing"), "badrequest"))
  1130. return
  1131. }
  1132. pendingHosts, err := (&schema.PendingHost{
  1133. Network: netID,
  1134. }).List(db.WithContext(r.Context()))
  1135. if err != nil {
  1136. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1137. Code: http.StatusBadRequest,
  1138. Message: err.Error(),
  1139. })
  1140. return
  1141. }
  1142. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  1143. logic.ReturnSuccessResponseWithJson(w, r, pendingHosts, "returned pending hosts in "+netID)
  1144. }
  1145. // @Summary approve pending hosts in a network
  1146. // @Router /api/v1/pending_hosts/approve/{id} [post]
  1147. // @Tags Hosts
  1148. // @Security oauth
  1149. // @Success 200 {array} models.ApiNode
  1150. // @Failure 500 {object} models.ErrorResponse
  1151. func approvePendingHost(w http.ResponseWriter, r *http.Request) {
  1152. id := mux.Vars(r)["id"]
  1153. p := &schema.PendingHost{ID: id}
  1154. err := p.Get(db.WithContext(r.Context()))
  1155. if err != nil {
  1156. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1157. Code: http.StatusBadRequest,
  1158. Message: err.Error(),
  1159. })
  1160. return
  1161. }
  1162. h, err := logic.GetHost(p.HostID)
  1163. if err != nil {
  1164. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1165. Code: http.StatusBadRequest,
  1166. Message: err.Error(),
  1167. })
  1168. return
  1169. }
  1170. key := models.EnrollmentKey{}
  1171. json.Unmarshal(p.EnrollmentKey, &key)
  1172. newNode, err := logic.UpdateHostNetwork(h, p.Network, true)
  1173. if err != nil {
  1174. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1175. Code: http.StatusBadRequest,
  1176. Message: err.Error(),
  1177. })
  1178. return
  1179. }
  1180. if len(key.Groups) > 0 {
  1181. newNode.Tags = make(map[models.TagID]struct{})
  1182. for _, tagI := range key.Groups {
  1183. newNode.Tags[tagI] = struct{}{}
  1184. }
  1185. logic.UpsertNode(newNode)
  1186. }
  1187. if key.Relay != uuid.Nil && !newNode.IsRelayed {
  1188. // check if relay node exists and acting as relay
  1189. relaynode, err := logic.GetNodeByID(key.Relay.String())
  1190. if err == nil && relaynode.IsGw && relaynode.Network == newNode.Network {
  1191. slog.Error(fmt.Sprintf("adding relayed node %s to relay %s on network %s", newNode.ID.String(), key.Relay.String(), p.Network))
  1192. newNode.IsRelayed = true
  1193. newNode.RelayedBy = key.Relay.String()
  1194. updatedRelayNode := relaynode
  1195. updatedRelayNode.RelayedNodes = append(updatedRelayNode.RelayedNodes, newNode.ID.String())
  1196. logic.UpdateRelayed(&relaynode, &updatedRelayNode)
  1197. if err := logic.UpsertNode(&updatedRelayNode); err != nil {
  1198. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1199. }
  1200. if err := logic.UpsertNode(newNode); err != nil {
  1201. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1202. }
  1203. } else {
  1204. slog.Error("failed to relay node. maybe specified relay node is actually not a relay? Or the relayed node is not in the same network with relay?", "err", err)
  1205. }
  1206. }
  1207. logger.Log(1, "added new node", newNode.ID.String(), "to host", h.Name)
  1208. hostactions.AddAction(models.HostUpdate{
  1209. Action: models.JoinHostToNetwork,
  1210. Host: *h,
  1211. Node: *newNode,
  1212. })
  1213. if h.IsDefault {
  1214. // make host failover
  1215. logic.CreateFailOver(*newNode)
  1216. // make host remote access gateway
  1217. logic.CreateIngressGateway(p.Network, newNode.ID.String(), models.IngressRequest{})
  1218. logic.CreateRelay(models.RelayRequest{
  1219. NodeID: newNode.ID.String(),
  1220. NetID: p.Network,
  1221. })
  1222. }
  1223. p.Delete(db.WithContext(r.Context()))
  1224. go mq.PublishPeerUpdate(false)
  1225. logic.ReturnSuccessResponseWithJson(w, r, newNode.ConvertToAPINode(), "added pending host to "+p.Network)
  1226. }
  1227. // @Summary reject pending hosts in a network
  1228. // @Router /api/v1/pending_hosts/reject/{id} [post]
  1229. // @Tags Hosts
  1230. // @Security oauth
  1231. // @Success 200 {array} models.ApiNode
  1232. // @Failure 500 {object} models.ErrorResponse
  1233. func rejectPendingHost(w http.ResponseWriter, r *http.Request) {
  1234. id := mux.Vars(r)["id"]
  1235. p := &schema.PendingHost{ID: id}
  1236. err := p.Get(db.WithContext(r.Context()))
  1237. if err != nil {
  1238. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1239. Code: http.StatusBadRequest,
  1240. Message: err.Error(),
  1241. })
  1242. return
  1243. }
  1244. err = p.Delete(db.WithContext(r.Context()))
  1245. if err != nil {
  1246. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1247. Code: http.StatusBadRequest,
  1248. Message: err.Error(),
  1249. })
  1250. return
  1251. }
  1252. logic.ReturnSuccessResponseWithJson(w, r, p, "deleted pending host from "+p.Network)
  1253. }