networks.go 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695
  1. package logic
  2. import (
  3. "encoding/json"
  4. "errors"
  5. "fmt"
  6. "net"
  7. "os/exec"
  8. "strings"
  9. "github.com/c-robinson/iplib"
  10. "github.com/go-playground/validator/v10"
  11. "github.com/gravitl/netmaker/database"
  12. "github.com/gravitl/netmaker/logger"
  13. "github.com/gravitl/netmaker/logic/acls/nodeacls"
  14. "github.com/gravitl/netmaker/models"
  15. "github.com/gravitl/netmaker/netclient/ncutils"
  16. "github.com/gravitl/netmaker/validation"
  17. )
  18. // GetNetworks - returns all networks from database
  19. func GetNetworks() ([]models.Network, error) {
  20. var networks []models.Network
  21. collection, err := database.FetchRecords(database.NETWORKS_TABLE_NAME)
  22. if err != nil {
  23. return networks, err
  24. }
  25. for _, value := range collection {
  26. var network models.Network
  27. if err := json.Unmarshal([]byte(value), &network); err != nil {
  28. return networks, err
  29. }
  30. // add network our array
  31. networks = append(networks, network)
  32. }
  33. return networks, err
  34. }
  35. // DeleteNetwork - deletes a network
  36. func DeleteNetwork(network string) error {
  37. // remove ACL for network
  38. err := nodeacls.DeleteACLContainer(nodeacls.NetworkID(network))
  39. if err != nil {
  40. logger.Log(1, "failed to remove the node acls during network delete for network,", network)
  41. }
  42. nodeCount, err := GetNetworkNonServerNodeCount(network)
  43. if nodeCount == 0 || database.IsEmptyRecord(err) {
  44. // delete server nodes first then db records
  45. servers, err := GetSortedNetworkServerNodes(network)
  46. if err == nil {
  47. for _, s := range servers {
  48. if err = DeleteNodeByID(&s, true); err != nil {
  49. logger.Log(2, "could not removed server", s.Name, "before deleting network", network)
  50. } else {
  51. logger.Log(2, "removed server", s.Name, "before deleting network", network)
  52. }
  53. }
  54. } else {
  55. logger.Log(1, "could not remove servers before deleting network", network)
  56. }
  57. return database.DeleteRecord(database.NETWORKS_TABLE_NAME, network)
  58. }
  59. return errors.New("node check failed. All nodes must be deleted before deleting network")
  60. }
  61. // CreateNetwork - creates a network in database
  62. func CreateNetwork(network models.Network) (models.Network, error) {
  63. network.SetDefaults()
  64. network.SetNodesLastModified()
  65. network.SetNetworkLastModified()
  66. err := ValidateNetwork(&network, false)
  67. if err != nil {
  68. //returnErrorResponse(w, r, formatError(err, "badrequest"))
  69. return models.Network{}, err
  70. }
  71. data, err := json.Marshal(&network)
  72. if err != nil {
  73. return models.Network{}, err
  74. }
  75. if err = database.Insert(network.NetID, string(data), database.NETWORKS_TABLE_NAME); err != nil {
  76. return models.Network{}, err
  77. }
  78. return network, nil
  79. }
  80. // GetNetworkNonServerNodeCount - get number of network non server nodes
  81. func GetNetworkNonServerNodeCount(networkName string) (int, error) {
  82. collection, err := database.FetchRecords(database.NODES_TABLE_NAME)
  83. count := 0
  84. if err != nil && !database.IsEmptyRecord(err) {
  85. return count, err
  86. }
  87. for _, value := range collection {
  88. var node models.Node
  89. if err = json.Unmarshal([]byte(value), &node); err != nil {
  90. return count, err
  91. } else {
  92. if node.Network == networkName && node.IsServer != "yes" {
  93. count++
  94. }
  95. }
  96. }
  97. return count, nil
  98. }
  99. // GetParentNetwork - get parent network
  100. func GetParentNetwork(networkname string) (models.Network, error) {
  101. var network models.Network
  102. networkData, err := database.FetchRecord(database.NETWORKS_TABLE_NAME, networkname)
  103. if err != nil {
  104. return network, err
  105. }
  106. if err = json.Unmarshal([]byte(networkData), &network); err != nil {
  107. return models.Network{}, err
  108. }
  109. return network, nil
  110. }
  111. // GetParentNetwork - get parent network
  112. func GetNetworkSettings(networkname string) (models.Network, error) {
  113. var network models.Network
  114. networkData, err := database.FetchRecord(database.NETWORKS_TABLE_NAME, networkname)
  115. if err != nil {
  116. return network, err
  117. }
  118. if err = json.Unmarshal([]byte(networkData), &network); err != nil {
  119. return models.Network{}, err
  120. }
  121. network.AccessKeys = []models.AccessKey{}
  122. return network, nil
  123. }
  124. // UniqueAddress - see if address is unique
  125. func UniqueAddress(networkName string, reverse bool) (string, error) {
  126. var network models.Network
  127. network, err := GetParentNetwork(networkName)
  128. if err != nil {
  129. logger.Log(0, "UniqueAddressServer encountered an error")
  130. return "666", err
  131. }
  132. if network.IsIPv4 == "no" {
  133. return "", fmt.Errorf("IPv4 not active on network " + networkName)
  134. }
  135. //ensure AddressRange is valid
  136. if _, _, err := net.ParseCIDR(network.AddressRange); err != nil {
  137. logger.Log(0, "UniqueAddress encountered an error")
  138. return "666", err
  139. }
  140. net4 := iplib.Net4FromStr(network.AddressRange)
  141. newAddrs := net4.FirstAddress()
  142. if reverse {
  143. newAddrs = net4.LastAddress()
  144. }
  145. for {
  146. if IsIPUnique(networkName, newAddrs.String(), database.NODES_TABLE_NAME, false) &&
  147. IsIPUnique(networkName, newAddrs.String(), database.EXT_CLIENT_TABLE_NAME, false) {
  148. return newAddrs.String(), nil
  149. }
  150. if reverse {
  151. newAddrs, err = net4.PreviousIP(newAddrs)
  152. } else {
  153. newAddrs, err = net4.NextIP(newAddrs)
  154. }
  155. if err != nil {
  156. break
  157. }
  158. }
  159. return "W1R3: NO UNIQUE ADDRESSES AVAILABLE", errors.New("ERROR: No unique addresses available. Check network subnet")
  160. }
  161. // IsIPUnique - checks if an IP is unique
  162. func IsIPUnique(network string, ip string, tableName string, isIpv6 bool) bool {
  163. isunique := true
  164. collection, err := database.FetchRecords(tableName)
  165. if err != nil {
  166. return isunique
  167. }
  168. for _, value := range collection { // filter
  169. var node models.Node
  170. if err = json.Unmarshal([]byte(value), &node); err != nil {
  171. continue
  172. }
  173. if isIpv6 {
  174. if node.Address6 == ip && node.Network == network {
  175. return false
  176. }
  177. } else {
  178. if node.Address == ip && node.Network == network {
  179. return false
  180. }
  181. }
  182. }
  183. return isunique
  184. }
  185. // UniqueAddress6 - see if ipv6 address is unique
  186. func UniqueAddress6(networkName string, reverse bool) (string, error) {
  187. var network models.Network
  188. network, err := GetParentNetwork(networkName)
  189. if err != nil {
  190. fmt.Println("Network Not Found")
  191. return "", err
  192. }
  193. if network.IsIPv6 == "no" {
  194. return "", fmt.Errorf("IPv6 not active on network " + networkName)
  195. }
  196. //ensure AddressRange is valid
  197. if _, _, err := net.ParseCIDR(network.AddressRange6); err != nil {
  198. return "666", err
  199. }
  200. net6 := iplib.Net6FromStr(network.AddressRange6)
  201. newAddrs := net6.FirstAddress()
  202. if reverse {
  203. newAddrs = net6.LastAddress()
  204. }
  205. for {
  206. if IsIPUnique(networkName, newAddrs.String(), database.NODES_TABLE_NAME, true) &&
  207. IsIPUnique(networkName, newAddrs.String(), database.EXT_CLIENT_TABLE_NAME, true) {
  208. return newAddrs.String(), nil
  209. }
  210. if reverse {
  211. newAddrs, err = net6.PreviousIP(newAddrs)
  212. } else {
  213. newAddrs, err = net6.NextIP(newAddrs)
  214. }
  215. if err != nil {
  216. break
  217. }
  218. }
  219. return "W1R3: NO UNIQUE ADDRESSES AVAILABLE", errors.New("ERROR: No unique IPv6 addresses available. Check network subnet")
  220. }
  221. // GetLocalIP - gets the local ip
  222. func GetLocalIP(node models.Node) string {
  223. var local string
  224. ifaces, err := net.Interfaces()
  225. if err != nil {
  226. return local
  227. }
  228. _, localrange, err := net.ParseCIDR(node.LocalRange)
  229. if err != nil {
  230. return local
  231. }
  232. found := false
  233. for _, i := range ifaces {
  234. if i.Flags&net.FlagUp == 0 {
  235. continue // interface down
  236. }
  237. if i.Flags&net.FlagLoopback != 0 {
  238. continue // loopback interface
  239. }
  240. addrs, err := i.Addrs()
  241. if err != nil {
  242. return local
  243. }
  244. for _, addr := range addrs {
  245. var ip net.IP
  246. switch v := addr.(type) {
  247. case *net.IPNet:
  248. if !found {
  249. ip = v.IP
  250. local = ip.String()
  251. if node.IsLocal == "yes" {
  252. found = localrange.Contains(ip)
  253. } else {
  254. found = true
  255. }
  256. }
  257. case *net.IPAddr:
  258. if !found {
  259. ip = v.IP
  260. local = ip.String()
  261. if node.IsLocal == "yes" {
  262. found = localrange.Contains(ip)
  263. } else {
  264. found = true
  265. }
  266. }
  267. }
  268. }
  269. }
  270. return local
  271. }
  272. // UpdateNetworkLocalAddresses - updates network localaddresses
  273. func UpdateNetworkLocalAddresses(networkName string) error {
  274. collection, err := database.FetchRecords(database.NODES_TABLE_NAME)
  275. if err != nil {
  276. return err
  277. }
  278. for _, value := range collection {
  279. var node models.Node
  280. err := json.Unmarshal([]byte(value), &node)
  281. if err != nil {
  282. fmt.Println("error in node address assignment!")
  283. return err
  284. }
  285. if node.Network == networkName {
  286. var ipaddr string
  287. var iperr error
  288. if node.IsServer == "yes" {
  289. ipaddr, iperr = UniqueAddress(networkName, true)
  290. } else {
  291. ipaddr, iperr = UniqueAddress(networkName, false)
  292. }
  293. if iperr != nil {
  294. fmt.Println("error in node address assignment!")
  295. return iperr
  296. }
  297. node.Address = ipaddr
  298. newNodeData, err := json.Marshal(&node)
  299. if err != nil {
  300. logger.Log(1, "error in node address assignment!")
  301. return err
  302. }
  303. database.Insert(node.ID, string(newNodeData), database.NODES_TABLE_NAME)
  304. }
  305. }
  306. return nil
  307. }
  308. // UpdateNetworkLocalAddresses - updates network localaddresses
  309. func UpdateNetworkHolePunching(networkName string, holepunch string) error {
  310. nodes, err := GetNetworkNodes(networkName)
  311. if err != nil {
  312. return err
  313. }
  314. for _, node := range nodes {
  315. if node.IsServer != "yes" {
  316. node.UDPHolePunch = holepunch
  317. newNodeData, err := json.Marshal(&node)
  318. if err != nil {
  319. logger.Log(1, "error in node hole punch assignment")
  320. return err
  321. }
  322. database.Insert(node.ID, string(newNodeData), database.NODES_TABLE_NAME)
  323. }
  324. }
  325. return nil
  326. }
  327. // RemoveNetworkNodeIPv6Addresses - removes network node IPv6 addresses
  328. func RemoveNetworkNodeIPv6Addresses(networkName string) error {
  329. collections, err := database.FetchRecords(database.NODES_TABLE_NAME)
  330. if err != nil {
  331. return err
  332. }
  333. for _, value := range collections {
  334. var node models.Node
  335. err := json.Unmarshal([]byte(value), &node)
  336. if err != nil {
  337. fmt.Println("error in node address assignment!")
  338. return err
  339. }
  340. if node.Network == networkName {
  341. node.Address6 = ""
  342. data, err := json.Marshal(&node)
  343. if err != nil {
  344. return err
  345. }
  346. database.Insert(node.ID, string(data), database.NODES_TABLE_NAME)
  347. }
  348. }
  349. return nil
  350. }
  351. // UpdateNetworkNodeAddresses - updates network node addresses
  352. func UpdateNetworkNodeAddresses(networkName string) error {
  353. collections, err := database.FetchRecords(database.NODES_TABLE_NAME)
  354. if err != nil {
  355. return err
  356. }
  357. for _, value := range collections {
  358. var node models.Node
  359. err := json.Unmarshal([]byte(value), &node)
  360. if err != nil {
  361. logger.Log(1, "error in node ipv4 address assignment!")
  362. return err
  363. }
  364. if node.Network == networkName {
  365. var ipaddr string
  366. var iperr error
  367. if node.IsServer == "yes" {
  368. ipaddr, iperr = UniqueAddress(networkName, true)
  369. } else {
  370. ipaddr, iperr = UniqueAddress(networkName, false)
  371. }
  372. if iperr != nil {
  373. logger.Log(1, "error in node ipv4 address assignment!")
  374. return iperr
  375. }
  376. node.Address = ipaddr
  377. data, err := json.Marshal(&node)
  378. if err != nil {
  379. return err
  380. }
  381. database.Insert(node.ID, string(data), database.NODES_TABLE_NAME)
  382. }
  383. }
  384. return nil
  385. }
  386. // UpdateNetworkNodeAddresses6 - updates network node addresses
  387. func UpdateNetworkNodeAddresses6(networkName string) error {
  388. collections, err := database.FetchRecords(database.NODES_TABLE_NAME)
  389. if err != nil {
  390. return err
  391. }
  392. for _, value := range collections {
  393. var node models.Node
  394. err := json.Unmarshal([]byte(value), &node)
  395. if err != nil {
  396. logger.Log(1, "error in node ipv6 address assignment!")
  397. return err
  398. }
  399. if node.Network == networkName {
  400. var ipaddr string
  401. var iperr error
  402. if node.IsServer == "yes" {
  403. ipaddr, iperr = UniqueAddress6(networkName, true)
  404. } else {
  405. ipaddr, iperr = UniqueAddress6(networkName, false)
  406. }
  407. if iperr != nil {
  408. logger.Log(1, "error in node ipv6 address assignment!")
  409. return iperr
  410. }
  411. node.Address6 = ipaddr
  412. data, err := json.Marshal(&node)
  413. if err != nil {
  414. return err
  415. }
  416. database.Insert(node.ID, string(data), database.NODES_TABLE_NAME)
  417. }
  418. }
  419. return nil
  420. }
  421. // IsNetworkNameUnique - checks to see if any other networks have the same name (id)
  422. func IsNetworkNameUnique(network *models.Network) (bool, error) {
  423. isunique := true
  424. dbs, err := GetNetworks()
  425. if err != nil && !database.IsEmptyRecord(err) {
  426. return false, err
  427. }
  428. for i := 0; i < len(dbs); i++ {
  429. if network.NetID == dbs[i].NetID {
  430. isunique = false
  431. }
  432. }
  433. return isunique, nil
  434. }
  435. // UpdateNetwork - updates a network with another network's fields
  436. func UpdateNetwork(currentNetwork *models.Network, newNetwork *models.Network) (bool, bool, bool, bool, error) {
  437. if err := ValidateNetwork(newNetwork, true); err != nil {
  438. return false, false, false, false, err
  439. }
  440. if newNetwork.NetID == currentNetwork.NetID {
  441. hasrangeupdate4 := newNetwork.AddressRange != currentNetwork.AddressRange
  442. hasrangeupdate6 := newNetwork.AddressRange6 != currentNetwork.AddressRange6
  443. localrangeupdate := newNetwork.LocalRange != currentNetwork.LocalRange
  444. hasholepunchupdate := newNetwork.DefaultUDPHolePunch != currentNetwork.DefaultUDPHolePunch
  445. data, err := json.Marshal(newNetwork)
  446. if err != nil {
  447. return false, false, false, false, err
  448. }
  449. newNetwork.SetNetworkLastModified()
  450. err = database.Insert(newNetwork.NetID, string(data), database.NETWORKS_TABLE_NAME)
  451. return hasrangeupdate4, hasrangeupdate6, localrangeupdate, hasholepunchupdate, err
  452. }
  453. // copy values
  454. return false, false, false, false, errors.New("failed to update network " + newNetwork.NetID + ", cannot change netid.")
  455. }
  456. // GetNetwork - gets a network from database
  457. func GetNetwork(networkname string) (models.Network, error) {
  458. var network models.Network
  459. networkData, err := database.FetchRecord(database.NETWORKS_TABLE_NAME, networkname)
  460. if err != nil {
  461. return network, err
  462. }
  463. if err = json.Unmarshal([]byte(networkData), &network); err != nil {
  464. return models.Network{}, err
  465. }
  466. return network, nil
  467. }
  468. // NetIDInNetworkCharSet - checks if a netid of a network uses valid characters
  469. func NetIDInNetworkCharSet(network *models.Network) bool {
  470. charset := "abcdefghijklmnopqrstuvwxyz1234567890-_"
  471. for _, char := range network.NetID {
  472. if !strings.Contains(charset, string(char)) {
  473. return false
  474. }
  475. }
  476. return true
  477. }
  478. // Validate - validates fields of an network struct
  479. func ValidateNetwork(network *models.Network, isUpdate bool) error {
  480. v := validator.New()
  481. _ = v.RegisterValidation("netid_valid", func(fl validator.FieldLevel) bool {
  482. inCharSet := NetIDInNetworkCharSet(network)
  483. if isUpdate {
  484. return inCharSet
  485. }
  486. isFieldUnique, _ := IsNetworkNameUnique(network)
  487. return isFieldUnique && inCharSet
  488. })
  489. //
  490. _ = v.RegisterValidation("checkyesorno", func(fl validator.FieldLevel) bool {
  491. return validation.CheckYesOrNo(fl)
  492. })
  493. err := v.Struct(network)
  494. if err != nil {
  495. for _, e := range err.(validator.ValidationErrors) {
  496. fmt.Println(e)
  497. }
  498. }
  499. return err
  500. }
  501. // ParseNetwork - parses a network into a model
  502. func ParseNetwork(value string) (models.Network, error) {
  503. var network models.Network
  504. err := json.Unmarshal([]byte(value), &network)
  505. return network, err
  506. }
  507. // KeyUpdate - updates keys on network
  508. func KeyUpdate(netname string) (models.Network, error) {
  509. err := networkNodesUpdateAction(netname, models.NODE_UPDATE_KEY)
  510. if err != nil {
  511. return models.Network{}, err
  512. }
  513. return models.Network{}, nil
  514. }
  515. // SaveNetwork - save network struct to database
  516. func SaveNetwork(network *models.Network) error {
  517. data, err := json.Marshal(network)
  518. if err != nil {
  519. return err
  520. }
  521. if err := database.Insert(network.NetID, string(data), database.NETWORKS_TABLE_NAME); err != nil {
  522. return err
  523. }
  524. return nil
  525. }
  526. // == Private ==
  527. func networkNodesUpdateAction(networkName string, action string) error {
  528. collections, err := database.FetchRecords(database.NODES_TABLE_NAME)
  529. if err != nil {
  530. if database.IsEmptyRecord(err) {
  531. return nil
  532. }
  533. return err
  534. }
  535. for _, value := range collections {
  536. var node models.Node
  537. err := json.Unmarshal([]byte(value), &node)
  538. if err != nil {
  539. fmt.Println("error in node address assignment!")
  540. return err
  541. }
  542. if action == models.NODE_UPDATE_KEY {
  543. continue
  544. }
  545. if node.Network == networkName {
  546. node.Action = action
  547. data, err := json.Marshal(&node)
  548. if err != nil {
  549. return err
  550. }
  551. database.Insert(node.ID, string(data), database.NODES_TABLE_NAME)
  552. }
  553. }
  554. return nil
  555. }
  556. func deleteInterface(ifacename string, postdown string) error {
  557. var err error
  558. if !ncutils.IsKernel() {
  559. err = RemoveConf(ifacename, true)
  560. } else {
  561. ipExec, errN := exec.LookPath("ip")
  562. err = errN
  563. if err != nil {
  564. logger.Log(1, err.Error())
  565. }
  566. _, err = ncutils.RunCmd(ipExec+" link del "+ifacename, false)
  567. if postdown != "" {
  568. _, err = ncutils.RunCmd(postdown, false)
  569. }
  570. }
  571. return err
  572. }
  573. func isInterfacePresent(iface string, address string) (string, bool) {
  574. var interfaces []net.Interface
  575. var err error
  576. interfaces, err = net.Interfaces()
  577. if err != nil {
  578. logger.Log(0, "ERROR: could not read interfaces")
  579. return "", true
  580. }
  581. for _, currIface := range interfaces {
  582. var currAddrs []net.Addr
  583. currAddrs, err = currIface.Addrs()
  584. if err != nil || len(currAddrs) == 0 {
  585. continue
  586. }
  587. for _, addr := range currAddrs {
  588. if strings.Contains(addr.String(), address) && currIface.Name != iface {
  589. // logger.Log(2, "found iface", addr.String(), currIface.Name)
  590. interfaces = nil
  591. currAddrs = nil
  592. return currIface.Name, false
  593. }
  594. }
  595. currAddrs = nil
  596. }
  597. interfaces = nil
  598. // logger.Log(2, "failed to find iface", iface)
  599. return "", true
  600. }