common.go 9.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375
  1. package functions
  2. import (
  3. "bytes"
  4. "encoding/json"
  5. "errors"
  6. "fmt"
  7. "io"
  8. "log"
  9. "net"
  10. "net/http"
  11. "os"
  12. "strings"
  13. "github.com/gravitl/netmaker/logger"
  14. "github.com/gravitl/netmaker/models"
  15. "github.com/gravitl/netmaker/netclient/config"
  16. "github.com/gravitl/netmaker/netclient/daemon"
  17. "github.com/gravitl/netmaker/netclient/local"
  18. "github.com/gravitl/netmaker/netclient/ncutils"
  19. "github.com/gravitl/netmaker/netclient/wireguard"
  20. "golang.zx2c4.com/wireguard/wgctrl"
  21. )
  22. // LINUX_APP_DATA_PATH - linux path
  23. const LINUX_APP_DATA_PATH = "/etc/netmaker"
  24. // ListPorts - lists ports of WireGuard devices
  25. func ListPorts() error {
  26. wgclient, err := wgctrl.New()
  27. if err != nil {
  28. return err
  29. }
  30. defer wgclient.Close()
  31. devices, err := wgclient.Devices()
  32. if err != nil {
  33. return err
  34. }
  35. fmt.Println("Here are your ports:")
  36. for _, i := range devices {
  37. fmt.Println(i.ListenPort)
  38. }
  39. return err
  40. }
  41. func getPrivateAddr() (string, error) {
  42. var local string
  43. conn, err := net.Dial("udp", "8.8.8.8:80")
  44. if err == nil {
  45. defer conn.Close()
  46. localAddr := conn.LocalAddr().(*net.UDPAddr)
  47. localIP := localAddr.IP
  48. local = localIP.String()
  49. }
  50. if local == "" {
  51. local, err = getPrivateAddrBackup()
  52. }
  53. if local == "" {
  54. err = errors.New("could not find local ip")
  55. }
  56. return local, err
  57. }
  58. func getPrivateAddrBackup() (string, error) {
  59. ifaces, err := net.Interfaces()
  60. if err != nil {
  61. return "", err
  62. }
  63. var local string
  64. found := false
  65. for _, i := range ifaces {
  66. if i.Flags&net.FlagUp == 0 {
  67. continue // interface down
  68. }
  69. if i.Flags&net.FlagLoopback != 0 {
  70. continue // loopback interface
  71. }
  72. addrs, err := i.Addrs()
  73. if err != nil {
  74. return "", err
  75. }
  76. for _, addr := range addrs {
  77. var ip net.IP
  78. switch v := addr.(type) {
  79. case *net.IPNet:
  80. if !found {
  81. ip = v.IP
  82. local = ip.String()
  83. found = true
  84. }
  85. case *net.IPAddr:
  86. if !found {
  87. ip = v.IP
  88. local = ip.String()
  89. found = true
  90. }
  91. }
  92. }
  93. }
  94. if !found {
  95. err := errors.New("local ip address not found")
  96. return "", err
  97. }
  98. return local, err
  99. }
  100. // GetNode - gets node locally
  101. func GetNode(network string) models.Node {
  102. modcfg, err := config.ReadConfig(network)
  103. if err != nil {
  104. log.Fatalf("Error: %v", err)
  105. }
  106. return modcfg.Node
  107. }
  108. // Uninstall - uninstalls networks from client
  109. func Uninstall() error {
  110. networks, err := ncutils.GetSystemNetworks()
  111. if err != nil {
  112. logger.Log(1, "unable to retrieve networks: ", err.Error())
  113. logger.Log(1, "continuing uninstall without leaving networks")
  114. } else {
  115. for _, network := range networks {
  116. err = LeaveNetwork(network, true)
  117. if err != nil {
  118. logger.Log(1, "Encounter issue leaving network ", network, ": ", err.Error())
  119. }
  120. }
  121. }
  122. err = nil
  123. // clean up OS specific stuff
  124. if ncutils.IsWindows() {
  125. daemon.CleanupWindows()
  126. } else if ncutils.IsMac() {
  127. daemon.CleanupMac()
  128. } else if ncutils.IsLinux() {
  129. daemon.CleanupLinux()
  130. } else if ncutils.IsFreeBSD() {
  131. daemon.CleanupFreebsd()
  132. } else if !ncutils.IsKernel() {
  133. logger.Log(1, "manual cleanup required")
  134. }
  135. return err
  136. }
  137. // LeaveNetwork - client exits a network
  138. func LeaveNetwork(network string, force bool) error {
  139. cfg, err := config.ReadConfig(network)
  140. if err != nil {
  141. return err
  142. }
  143. node := cfg.Node
  144. if node.IsServer != "yes" {
  145. token, err := Authenticate(cfg)
  146. if err != nil {
  147. logger.Log(0, "unable to authenticate: "+err.Error())
  148. } else {
  149. url := "https://" + cfg.Server.API + "/api/nodes/" + cfg.Network + "/" + cfg.Node.ID
  150. response, err := API("", http.MethodDelete, url, token)
  151. if err != nil {
  152. logger.Log(0, "error deleting node on server: "+err.Error())
  153. } else {
  154. if response.StatusCode == http.StatusOK {
  155. logger.Log(0, "deleted node", cfg.Node.Name, " on network ", cfg.Network)
  156. } else {
  157. bodybytes, _ := io.ReadAll(response.Body)
  158. defer response.Body.Close()
  159. logger.Log(0, fmt.Sprintf("error deleting node on server %s %s", response.Status, string(bodybytes)))
  160. }
  161. }
  162. }
  163. }
  164. wgClient, wgErr := wgctrl.New()
  165. if wgErr == nil {
  166. removeIface := cfg.Node.Interface
  167. queryAddr := cfg.Node.PrimaryAddress()
  168. if ncutils.IsMac() {
  169. var macIface string
  170. macIface, wgErr = local.GetMacIface(queryAddr)
  171. if wgErr == nil && removeIface != "" {
  172. removeIface = macIface
  173. }
  174. wgErr = nil
  175. }
  176. dev, devErr := wgClient.Device(removeIface)
  177. if devErr == nil {
  178. local.FlushPeerRoutes(removeIface, queryAddr, dev.Peers[:])
  179. _, cidr, cidrErr := net.ParseCIDR(cfg.NetworkSettings.AddressRange)
  180. if cidrErr == nil {
  181. local.RemoveCIDRRoute(removeIface, queryAddr, cidr)
  182. }
  183. } else {
  184. logger.Log(1, "could not flush peer routes when leaving network, ", cfg.Node.Network)
  185. }
  186. }
  187. err = WipeLocal(node.Network)
  188. if err != nil {
  189. logger.Log(1, "unable to wipe local config")
  190. } else {
  191. logger.Log(1, "removed ", node.Network, " network locally")
  192. }
  193. currentNets, err := ncutils.GetSystemNetworks()
  194. if err != nil || len(currentNets) <= 1 {
  195. daemon.Stop() // stop system daemon if last network
  196. return RemoveLocalInstance(cfg, network)
  197. }
  198. return daemon.Restart()
  199. }
  200. // RemoveLocalInstance - remove all netclient files locally for a network
  201. func RemoveLocalInstance(cfg *config.ClientConfig, networkName string) error {
  202. if cfg.Daemon != "off" {
  203. if ncutils.IsWindows() {
  204. // TODO: Remove job?
  205. } else if ncutils.IsMac() {
  206. //TODO: Delete mac daemon
  207. } else if ncutils.IsFreeBSD() {
  208. daemon.RemoveFreebsdDaemon()
  209. } else {
  210. daemon.RemoveSystemDServices()
  211. }
  212. }
  213. return nil
  214. }
  215. // DeleteInterface - delete an interface of a network
  216. func DeleteInterface(ifacename string, postdown string) error {
  217. return wireguard.RemoveConf(ifacename, true)
  218. }
  219. // WipeLocal - wipes local instance
  220. func WipeLocal(network string) error {
  221. cfg, err := config.ReadConfig(network)
  222. if err != nil {
  223. return err
  224. }
  225. nodecfg := cfg.Node
  226. ifacename := nodecfg.Interface
  227. if ifacename != "" {
  228. if err = wireguard.RemoveConf(ifacename, true); err == nil {
  229. logger.Log(1, "removed WireGuard interface: ", ifacename)
  230. } else if strings.Contains(err.Error(), "does not exist") {
  231. err = nil
  232. }
  233. }
  234. home := ncutils.GetNetclientPathSpecific()
  235. if ncutils.FileExists(home + "netconfig-" + network) {
  236. err = os.Remove(home + "netconfig-" + network)
  237. if err != nil {
  238. log.Println("error removing netconfig:")
  239. log.Println(err.Error())
  240. }
  241. }
  242. if ncutils.FileExists(home + "backup.netconfig-" + network) {
  243. err = os.Remove(home + "backup.netconfig-" + network)
  244. if err != nil {
  245. log.Println("error removing backup netconfig:")
  246. log.Println(err.Error())
  247. }
  248. }
  249. if ncutils.FileExists(home + "nettoken-" + network) {
  250. err = os.Remove(home + "nettoken-" + network)
  251. if err != nil {
  252. log.Println("error removing nettoken:")
  253. log.Println(err.Error())
  254. }
  255. }
  256. if ncutils.FileExists(home + "secret-" + network) {
  257. err = os.Remove(home + "secret-" + network)
  258. if err != nil {
  259. log.Println("error removing secret:")
  260. log.Println(err.Error())
  261. }
  262. }
  263. if ncutils.FileExists(home + "traffic-" + network) {
  264. err = os.Remove(home + "traffic-" + network)
  265. if err != nil {
  266. log.Println("error removing traffic key:")
  267. log.Println(err.Error())
  268. }
  269. }
  270. if ncutils.FileExists(home + "wgkey-" + network) {
  271. err = os.Remove(home + "wgkey-" + network)
  272. if err != nil {
  273. log.Println("error removing wgkey:")
  274. log.Println(err.Error())
  275. }
  276. }
  277. if ncutils.FileExists(home + ifacename + ".conf") {
  278. err = os.Remove(home + ifacename + ".conf")
  279. if err != nil {
  280. log.Println("error removing .conf:")
  281. log.Println(err.Error())
  282. }
  283. }
  284. err = removeHostDNS(ifacename, ncutils.IsWindows())
  285. if err != nil {
  286. logger.Log(0, "failed to delete dns entries for", ifacename, err.Error())
  287. }
  288. return err
  289. }
  290. // GetNetmakerPath - gets netmaker path locally
  291. func GetNetmakerPath() string {
  292. return LINUX_APP_DATA_PATH
  293. }
  294. //API function to interact with netmaker api endpoints. response from endpoint is returned
  295. func API(data any, method, url, authorization string) (*http.Response, error) {
  296. var request *http.Request
  297. var err error
  298. if data != "" {
  299. payload, err := json.Marshal(data)
  300. if err != nil {
  301. return nil, fmt.Errorf("error encoding data %w", err)
  302. }
  303. request, err = http.NewRequest(method, url, bytes.NewBuffer(payload))
  304. if err != nil {
  305. return nil, fmt.Errorf("error creating http request %w", err)
  306. }
  307. request.Header.Set("Content-Type", "application/json")
  308. } else {
  309. request, err = http.NewRequest(method, url, nil)
  310. if err != nil {
  311. return nil, fmt.Errorf("error creating http request %w", err)
  312. }
  313. }
  314. if authorization != "" {
  315. request.Header.Set("authorization", "Bearer "+authorization)
  316. }
  317. client := http.Client{}
  318. return client.Do(request)
  319. }
  320. // Authenticate authenticates with api to permit subsequent interactions with the api
  321. func Authenticate(cfg *config.ClientConfig) (string, error) {
  322. pass, err := os.ReadFile(ncutils.GetNetclientPathSpecific() + "secret-" + cfg.Network)
  323. if err != nil {
  324. return "", fmt.Errorf("could not read secrets file %w", err)
  325. }
  326. data := models.AuthParams{
  327. MacAddress: cfg.Node.MacAddress,
  328. ID: cfg.Node.ID,
  329. Password: string(pass),
  330. }
  331. url := "https://" + cfg.Server.API + "/api/nodes/adm/" + cfg.Network + "/authenticate"
  332. response, err := API(data, http.MethodPost, url, "")
  333. if err != nil {
  334. return "", err
  335. }
  336. defer response.Body.Close()
  337. if response.StatusCode != http.StatusOK {
  338. bodybytes, _ := io.ReadAll(response.Body)
  339. return "", fmt.Errorf("failed to authenticate %s %s", response.Status, string(bodybytes))
  340. }
  341. resp := models.SuccessResponse{}
  342. if err := json.NewDecoder(response.Body).Decode(&resp); err != nil {
  343. return "", fmt.Errorf("error decoding respone %w", err)
  344. }
  345. tokenData := resp.Response.(map[string]interface{})
  346. token := tokenData["AuthToken"]
  347. return token.(string), nil
  348. }