util.go 1.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172
  1. package mq
  2. import (
  3. "fmt"
  4. "strings"
  5. "github.com/gravitl/netmaker/logic"
  6. "github.com/gravitl/netmaker/models"
  7. "github.com/gravitl/netmaker/netclient/ncutils"
  8. )
  9. func decryptMsg(node *models.Node, msg []byte) ([]byte, error) {
  10. if len(msg) <= 24 { // make sure message is of appropriate length
  11. return nil, fmt.Errorf("recieved invalid message from broker %v", msg)
  12. }
  13. trafficKey, trafficErr := logic.RetrievePrivateTrafficKey() // get server private key
  14. if trafficErr != nil {
  15. return nil, trafficErr
  16. }
  17. serverPrivTKey, err := ncutils.ConvertBytesToKey(trafficKey)
  18. if err != nil {
  19. return nil, err
  20. }
  21. nodePubTKey, err := ncutils.ConvertBytesToKey(node.TrafficKeys.Mine)
  22. if err != nil {
  23. return nil, err
  24. }
  25. if strings.Contains(node.Version, "0.10.0") {
  26. return ncutils.BoxDecrypt(msg, nodePubTKey, serverPrivTKey)
  27. }
  28. return ncutils.DeChunk(msg, nodePubTKey, serverPrivTKey)
  29. }
  30. func encryptMsg(node *models.Node, msg []byte) ([]byte, error) {
  31. // fetch server public key to be certain hasn't changed in transit
  32. trafficKey, trafficErr := logic.RetrievePrivateTrafficKey()
  33. if trafficErr != nil {
  34. return nil, trafficErr
  35. }
  36. serverPrivKey, err := ncutils.ConvertBytesToKey(trafficKey)
  37. if err != nil {
  38. return nil, err
  39. }
  40. nodePubKey, err := ncutils.ConvertBytesToKey(node.TrafficKeys.Mine)
  41. if err != nil {
  42. return nil, err
  43. }
  44. if strings.Contains(node.Version, "0.10.0") {
  45. return ncutils.BoxEncrypt(msg, nodePubKey, serverPrivKey)
  46. }
  47. return ncutils.Chunk(msg, nodePubKey, serverPrivKey)
  48. }
  49. func publish(node *models.Node, dest string, msg []byte) error {
  50. client := SetupMQTT(true)
  51. defer client.Disconnect(250)
  52. encrypted, encryptErr := encryptMsg(node, msg)
  53. if encryptErr != nil {
  54. return encryptErr
  55. }
  56. if token := client.Publish(dest, 0, true, encrypted); token.Wait() && token.Error() != nil {
  57. return token.Error()
  58. }
  59. return nil
  60. }