publishers.go 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588
  1. package mq
  2. import (
  3. "context"
  4. "encoding/json"
  5. "errors"
  6. "fmt"
  7. "net"
  8. "time"
  9. "github.com/gravitl/netmaker/logger"
  10. "github.com/gravitl/netmaker/logic"
  11. "github.com/gravitl/netmaker/logic/acls/nodeacls"
  12. "github.com/gravitl/netmaker/models"
  13. "github.com/gravitl/netmaker/servercfg"
  14. "golang.org/x/exp/slog"
  15. "golang.zx2c4.com/wireguard/wgctrl/wgtypes"
  16. )
  17. // PublishPeerUpdate --- determines and publishes a peer update to all the hosts
  18. func PublishPeerUpdate() error {
  19. if !servercfg.IsMessageQueueBackend() {
  20. return nil
  21. }
  22. hosts, err := logic.GetAllHosts()
  23. if err != nil {
  24. logger.Log(1, "err getting all hosts", err.Error())
  25. return err
  26. }
  27. logic.ResetPeerUpdateContext()
  28. for _, host := range hosts {
  29. host := host
  30. if err = PublishSingleHostPeerUpdate(logic.PeerUpdateCtx, &host, nil, nil); err != nil {
  31. logger.Log(1, "failed to publish peer update to host", host.ID.String(), ": ", err.Error())
  32. }
  33. }
  34. return err
  35. }
  36. // PublishDeletedNodePeerUpdate --- determines and publishes a peer update
  37. // to all the hosts with a deleted node to account for
  38. func PublishDeletedNodePeerUpdate(delNode *models.Node) error {
  39. if !servercfg.IsMessageQueueBackend() {
  40. return nil
  41. }
  42. hosts, err := logic.GetAllHosts()
  43. if err != nil {
  44. logger.Log(1, "err getting all hosts", err.Error())
  45. return err
  46. }
  47. logic.ResetPeerUpdateContext()
  48. for _, host := range hosts {
  49. host := host
  50. if err = PublishSingleHostPeerUpdate(logic.PeerUpdateCtx, &host, delNode, nil); err != nil {
  51. logger.Log(1, "failed to publish peer update to host", host.ID.String(), ": ", err.Error())
  52. }
  53. }
  54. return err
  55. }
  56. // PublishDeletedClientPeerUpdate --- determines and publishes a peer update
  57. // to all the hosts with a deleted ext client to account for
  58. func PublishDeletedClientPeerUpdate(delClient *models.ExtClient) error {
  59. if !servercfg.IsMessageQueueBackend() {
  60. return nil
  61. }
  62. hosts, err := logic.GetAllHosts()
  63. if err != nil {
  64. logger.Log(1, "err getting all hosts", err.Error())
  65. return err
  66. }
  67. logic.ResetPeerUpdateContext()
  68. for _, host := range hosts {
  69. host := host
  70. if err = PublishSingleHostPeerUpdate(logic.PeerUpdateCtx, &host, nil, []models.ExtClient{*delClient}); err != nil {
  71. logger.Log(1, "failed to publish peer update to host", host.ID.String(), ": ", err.Error())
  72. }
  73. }
  74. return err
  75. }
  76. // PublishSingleHostPeerUpdate --- determines and publishes a peer update to one host
  77. func PublishSingleHostPeerUpdate(ctx context.Context, host *models.Host, deletedNode *models.Node, deletedClients []models.ExtClient) error {
  78. peerUpdate, err := logic.GetPeerUpdateForHost(ctx, "", host, deletedNode, deletedClients)
  79. if err != nil {
  80. return err
  81. }
  82. if len(peerUpdate.Peers) == 0 { // no peers to send
  83. return nil
  84. }
  85. proxyUpdate, err := logic.GetProxyUpdateForHost(ctx, host)
  86. if err != nil {
  87. return err
  88. }
  89. proxyUpdate.Server = servercfg.GetServer()
  90. if host.ProxyEnabled {
  91. proxyUpdate.Action = models.ProxyUpdate
  92. } else {
  93. proxyUpdate.Action = models.NoProxy
  94. }
  95. peerUpdate.ProxyUpdate = proxyUpdate
  96. data, err := json.Marshal(&peerUpdate)
  97. if err != nil {
  98. return err
  99. }
  100. return publish(host, fmt.Sprintf("peers/host/%s/%s", host.ID.String(), servercfg.GetServer()), data)
  101. }
  102. // FlushNetworkPeersToHost - sends all the peers in the network to the host.
  103. func FlushNetworkPeersToHost(host *models.Host, hNode *models.Node, networkNodes []models.Node) error {
  104. logger.Log(0, "flushing network peers to host: ", host.ID.String(), hNode.Network)
  105. addPeerAction := models.PeerAction{
  106. Action: models.AddPeer,
  107. Peers: []wgtypes.PeerConfig{},
  108. }
  109. rmPeerAction := models.PeerAction{
  110. Action: models.RemovePeer,
  111. Peers: []wgtypes.PeerConfig{},
  112. }
  113. for _, node := range networkNodes {
  114. if node.ID == hNode.ID {
  115. // skip self
  116. continue
  117. }
  118. peerHost, err := logic.GetHost(node.HostID.String())
  119. if err != nil {
  120. continue
  121. }
  122. if !nodeacls.AreNodesAllowed(nodeacls.NetworkID(node.Network), nodeacls.NodeID(hNode.ID.String()), nodeacls.NodeID(node.ID.String())) ||
  123. hNode.Action == models.NODE_DELETE || hNode.PendingDelete || !hNode.Connected {
  124. // remove peer if not allowed
  125. rmPeerAction.Peers = append(rmPeerAction.Peers, wgtypes.PeerConfig{
  126. PublicKey: peerHost.PublicKey,
  127. Remove: true,
  128. })
  129. continue
  130. }
  131. peerCfg := wgtypes.PeerConfig{
  132. PublicKey: peerHost.PublicKey,
  133. Endpoint: &net.UDPAddr{
  134. IP: peerHost.EndpointIP,
  135. Port: logic.GetPeerListenPort(peerHost),
  136. },
  137. PersistentKeepaliveInterval: &node.PersistentKeepalive,
  138. ReplaceAllowedIPs: true,
  139. AllowedIPs: logic.GetAllowedIPs(hNode, &node, nil),
  140. }
  141. addPeerAction.Peers = append(addPeerAction.Peers, peerCfg)
  142. }
  143. if hNode.IsIngressGateway {
  144. extPeers, _, err := logic.GetExtPeers(hNode)
  145. if err == nil {
  146. addPeerAction.Peers = append(addPeerAction.Peers, extPeers...)
  147. }
  148. }
  149. if len(rmPeerAction.Peers) > 0 {
  150. data, err := json.Marshal(rmPeerAction)
  151. if err != nil {
  152. return err
  153. }
  154. publish(host, fmt.Sprintf("peer/host/%s/%s", host.ID.String(), servercfg.GetServer()), data)
  155. }
  156. if len(addPeerAction.Peers) > 0 {
  157. data, err := json.Marshal(addPeerAction)
  158. if err != nil {
  159. return err
  160. }
  161. publish(host, fmt.Sprintf("peer/host/%s/%s", host.ID.String(), servercfg.GetServer()), data)
  162. }
  163. // send fw update if gw host
  164. if hNode.IsIngressGateway || hNode.IsEgressGateway {
  165. f, err := logic.GetFwUpdate(host)
  166. if err == nil {
  167. PublishFwUpdate(host, &f)
  168. }
  169. }
  170. return nil
  171. }
  172. // BroadcastAclUpdate - sends new acl updates to peers
  173. func BroadcastAclUpdate(network string) error {
  174. nodes, err := logic.GetNetworkNodes(network)
  175. if err != nil {
  176. return err
  177. }
  178. for _, nodeI := range nodes {
  179. nodeI := nodeI
  180. h, err := logic.GetHost(nodeI.HostID.String())
  181. if err == nil {
  182. go FlushNetworkPeersToHost(h, &nodeI, nodes)
  183. }
  184. }
  185. return err
  186. }
  187. // NodeUpdate -- publishes a node update
  188. func NodeUpdate(node *models.Node) error {
  189. host, err := logic.GetHost(node.HostID.String())
  190. if err != nil {
  191. return nil
  192. }
  193. if !servercfg.IsMessageQueueBackend() {
  194. return nil
  195. }
  196. logger.Log(3, "publishing node update to "+node.ID.String())
  197. //if len(node.NetworkSettings.AccessKeys) > 0 {
  198. //node.NetworkSettings.AccessKeys = []models.AccessKey{} // not to be sent (don't need to spread access keys around the network; we need to know how to reach other nodes, not become them)
  199. //}
  200. data, err := json.Marshal(node)
  201. if err != nil {
  202. logger.Log(2, "error marshalling node update ", err.Error())
  203. return err
  204. }
  205. if err = publish(host, fmt.Sprintf("node/update/%s/%s", node.Network, node.ID), data); err != nil {
  206. logger.Log(2, "error publishing node update to peer ", node.ID.String(), err.Error())
  207. return err
  208. }
  209. return nil
  210. }
  211. // HostUpdate -- publishes a host update to clients
  212. func HostUpdate(hostUpdate *models.HostUpdate) error {
  213. if !servercfg.IsMessageQueueBackend() {
  214. return nil
  215. }
  216. logger.Log(3, "publishing host update to "+hostUpdate.Host.ID.String())
  217. data, err := json.Marshal(hostUpdate)
  218. if err != nil {
  219. logger.Log(2, "error marshalling node update ", err.Error())
  220. return err
  221. }
  222. if err = publish(&hostUpdate.Host, fmt.Sprintf("host/update/%s/%s", hostUpdate.Host.ID.String(), servercfg.GetServer()), data); err != nil {
  223. logger.Log(2, "error publishing host update to", hostUpdate.Host.ID.String(), err.Error())
  224. return err
  225. }
  226. return nil
  227. }
  228. // ServerStartNotify - notifies all non server nodes to pull changes after a restart
  229. func ServerStartNotify() error {
  230. nodes, err := logic.GetAllNodes()
  231. if err != nil {
  232. return err
  233. }
  234. for i := range nodes {
  235. nodes[i].Action = models.NODE_FORCE_UPDATE
  236. if err = NodeUpdate(&nodes[i]); err != nil {
  237. logger.Log(1, "error when notifying node", nodes[i].ID.String(), "of a server startup")
  238. }
  239. }
  240. return nil
  241. }
  242. // PublishDNSUpdate publishes a dns update to all nodes on a network
  243. func PublishDNSUpdate(network string, dns models.DNSUpdate) error {
  244. nodes, err := logic.GetNetworkNodes(network)
  245. if err != nil {
  246. return err
  247. }
  248. for _, node := range nodes {
  249. host, err := logic.GetHost(node.HostID.String())
  250. if err != nil {
  251. logger.Log(0, "error retrieving host for dns update", host.ID.String(), err.Error())
  252. continue
  253. }
  254. data, err := json.Marshal(dns)
  255. if err != nil {
  256. logger.Log(0, "failed to encode dns data for node", node.ID.String(), err.Error())
  257. }
  258. if err := publish(host, "dns/update/"+host.ID.String()+"/"+servercfg.GetServer(), data); err != nil {
  259. logger.Log(0, "error publishing dns update to host", host.ID.String(), err.Error())
  260. continue
  261. }
  262. logger.Log(3, "published dns update to host", host.ID.String())
  263. }
  264. return nil
  265. }
  266. // PublishAllDNS publishes an array of dns updates (ip / host.network) for each peer to a node joining a network
  267. func PublishAllDNS(newnode *models.Node) error {
  268. alldns := []models.DNSUpdate{}
  269. newnodeHost, err := logic.GetHost(newnode.HostID.String())
  270. if err != nil {
  271. return fmt.Errorf("error retrieving host for dns update %w", err)
  272. }
  273. alldns = append(alldns, getNodeDNS(newnode.Network)...)
  274. alldns = append(alldns, getExtClientDNS(newnode.Network)...)
  275. alldns = append(alldns, getCustomDNS(newnode.Network)...)
  276. data, err := json.Marshal(alldns)
  277. if err != nil {
  278. return fmt.Errorf("error encoding dns data %w", err)
  279. }
  280. if err := publish(newnodeHost, "dns/all/"+newnodeHost.ID.String()+"/"+servercfg.GetServer(), data); err != nil {
  281. return fmt.Errorf("error publishing full dns update to %s, %w", newnodeHost.ID.String(), err)
  282. }
  283. logger.Log(3, "published full dns update to %s", newnodeHost.ID.String())
  284. return nil
  285. }
  286. // PublishDNSDelete publish a dns update deleting a node to all hosts on a network
  287. func PublishDNSDelete(node *models.Node, host *models.Host) error {
  288. dns := models.DNSUpdate{
  289. Action: models.DNSDeleteByIP,
  290. Name: host.Name + "." + node.Network,
  291. }
  292. if node.Address.IP != nil {
  293. dns.Address = node.Address.IP.String()
  294. if err := PublishDNSUpdate(node.Network, dns); err != nil {
  295. return fmt.Errorf("dns update node deletion %w", err)
  296. }
  297. }
  298. if node.Address6.IP != nil {
  299. dns.Address = node.Address6.IP.String()
  300. if err := PublishDNSUpdate(node.Network, dns); err != nil {
  301. return fmt.Errorf("dns update node deletion %w", err)
  302. }
  303. }
  304. return nil
  305. }
  306. // PublishReplaceDNS publish a dns update to replace a dns entry on all hosts in network
  307. func PublishReplaceDNS(oldNode, newNode *models.Node, host *models.Host) error {
  308. dns := models.DNSUpdate{
  309. Action: models.DNSReplaceIP,
  310. Name: host.Name + "." + oldNode.Network,
  311. }
  312. if !oldNode.Address.IP.Equal(newNode.Address.IP) {
  313. dns.Address = oldNode.Address.IP.String()
  314. dns.NewAddress = newNode.Address.IP.String()
  315. if err := PublishDNSUpdate(oldNode.Network, dns); err != nil {
  316. return err
  317. }
  318. }
  319. if !oldNode.Address6.IP.Equal(newNode.Address6.IP) {
  320. dns.Address = oldNode.Address6.IP.String()
  321. dns.NewAddress = newNode.Address6.IP.String()
  322. if err := PublishDNSUpdate(oldNode.Network, dns); err != nil {
  323. return err
  324. }
  325. }
  326. return nil
  327. }
  328. // PublishExtClientDNS publish dns update for new extclient
  329. func PublishExtCLientDNS(client *models.ExtClient) error {
  330. errMsgs := models.DNSError{}
  331. dns := models.DNSUpdate{
  332. Action: models.DNSInsert,
  333. Name: client.ClientID + "." + client.Network,
  334. Address: client.Address,
  335. }
  336. if client.Address != "" {
  337. dns.Address = client.Address
  338. if err := PublishDNSUpdate(client.Network, dns); err != nil {
  339. errMsgs.ErrorStrings = append(errMsgs.ErrorStrings, err.Error())
  340. }
  341. }
  342. if client.Address6 != "" {
  343. dns.Address = client.Address6
  344. if err := PublishDNSUpdate(client.Network, dns); err != nil {
  345. errMsgs.ErrorStrings = append(errMsgs.ErrorStrings, err.Error())
  346. }
  347. }
  348. if len(errMsgs.ErrorStrings) > 0 {
  349. return errMsgs
  350. }
  351. return nil
  352. }
  353. // PublishExtClientDNSUpdate update for extclient name change
  354. func PublishExtClientDNSUpdate(old, new models.ExtClient, network string) error {
  355. dns := models.DNSUpdate{
  356. Action: models.DNSReplaceName,
  357. Name: old.ClientID + "." + network,
  358. NewName: new.ClientID + "." + network,
  359. }
  360. if err := PublishDNSUpdate(network, dns); err != nil {
  361. return err
  362. }
  363. return nil
  364. }
  365. // PublishDeleteExtClientDNS publish dns update to delete extclient entry
  366. func PublishDeleteExtClientDNS(client *models.ExtClient) error {
  367. dns := models.DNSUpdate{
  368. Action: models.DNSDeleteByName,
  369. Name: client.ClientID + "." + client.Network,
  370. }
  371. if err := PublishDNSUpdate(client.Network, dns); err != nil {
  372. return err
  373. }
  374. return nil
  375. }
  376. // PublishCustomDNS publish dns update for new custom dns entry
  377. func PublishCustomDNS(entry *models.DNSEntry) error {
  378. dns := models.DNSUpdate{
  379. Action: models.DNSInsert,
  380. Name: entry.Name + "." + entry.Network,
  381. //entry.Address6 is never used
  382. Address: entry.Address,
  383. }
  384. if err := PublishDNSUpdate(entry.Network, dns); err != nil {
  385. return err
  386. }
  387. return nil
  388. }
  389. // PublishHostDNSUpdate publishes dns update on host name change
  390. func PublishHostDNSUpdate(old, new *models.Host, networks []string) error {
  391. errMsgs := models.DNSError{}
  392. for _, network := range networks {
  393. dns := models.DNSUpdate{
  394. Action: models.DNSReplaceName,
  395. Name: old.Name + "." + network,
  396. NewName: new.Name + "." + network,
  397. }
  398. if err := PublishDNSUpdate(network, dns); err != nil {
  399. errMsgs.ErrorStrings = append(errMsgs.ErrorStrings, err.Error())
  400. }
  401. }
  402. if len(errMsgs.ErrorStrings) > 0 {
  403. return errMsgs
  404. }
  405. return nil
  406. }
  407. // PublishFwUpdate - publishes fw update to host
  408. func PublishFwUpdate(gwHost *models.Host, f *models.FwUpdate) error {
  409. data, err := json.Marshal(f)
  410. if err != nil {
  411. return err
  412. }
  413. return publish(gwHost, fmt.Sprintf("fw/host/%s/%s", gwHost.ID.String(), servercfg.GetServer()), data)
  414. }
  415. func pushMetricsToExporter(metrics models.Metrics) error {
  416. logger.Log(2, "----> Pushing metrics to exporter")
  417. data, err := json.Marshal(metrics)
  418. if err != nil {
  419. return errors.New("failed to marshal metrics: " + err.Error())
  420. }
  421. if token := mqclient.Publish("metrics_exporter", 2, true, data); !token.WaitTimeout(MQ_TIMEOUT*time.Second) || token.Error() != nil {
  422. var err error
  423. if token.Error() == nil {
  424. err = errors.New("connection timeout")
  425. } else {
  426. err = token.Error()
  427. }
  428. return err
  429. }
  430. return nil
  431. }
  432. func getNodeDNS(network string) []models.DNSUpdate {
  433. alldns := []models.DNSUpdate{}
  434. dns := models.DNSUpdate{}
  435. nodes, err := logic.GetNetworkNodes(network)
  436. if err != nil {
  437. logger.Log(0, "error retreiving network nodes for network", network, err.Error())
  438. }
  439. for _, node := range nodes {
  440. host, err := logic.GetHost(node.HostID.String())
  441. if err != nil {
  442. logger.Log(0, "error retrieving host for dns update", host.ID.String(), err.Error())
  443. continue
  444. }
  445. dns.Action = models.DNSInsert
  446. dns.Name = host.Name + "." + node.Network
  447. if node.Address.IP != nil {
  448. dns.Address = node.Address.IP.String()
  449. alldns = append(alldns, dns)
  450. }
  451. if node.Address6.IP != nil {
  452. dns.Address = node.Address6.IP.String()
  453. alldns = append(alldns, dns)
  454. }
  455. }
  456. return alldns
  457. }
  458. func getExtClientDNS(network string) []models.DNSUpdate {
  459. alldns := []models.DNSUpdate{}
  460. dns := models.DNSUpdate{}
  461. clients, err := logic.GetNetworkExtClients(network)
  462. if err != nil {
  463. logger.Log(0, "error retrieving extclients", err.Error())
  464. }
  465. for _, client := range clients {
  466. dns.Action = models.DNSInsert
  467. dns.Name = client.ClientID + "." + client.Network
  468. if client.Address != "" {
  469. dns.Address = client.Address
  470. alldns = append(alldns, dns)
  471. }
  472. if client.Address6 != "" {
  473. dns.Address = client.Address
  474. alldns = append(alldns, dns)
  475. }
  476. }
  477. return alldns
  478. }
  479. func getCustomDNS(network string) []models.DNSUpdate {
  480. alldns := []models.DNSUpdate{}
  481. dns := models.DNSUpdate{}
  482. customdns, err := logic.GetCustomDNS(network)
  483. if err != nil {
  484. logger.Log(0, "error retrieving custom dns entries", err.Error())
  485. }
  486. for _, custom := range customdns {
  487. dns.Action = models.DNSInsert
  488. dns.Address = custom.Address
  489. dns.Name = custom.Name + "." + custom.Network
  490. alldns = append(alldns, dns)
  491. }
  492. return alldns
  493. }
  494. // sendPeers - retrieve networks, send peer ports to all peers
  495. func sendPeers() {
  496. hosts, err := logic.GetAllHosts()
  497. if err != nil && len(hosts) > 0 {
  498. logger.Log(1, "error retrieving networks for keepalive", err.Error())
  499. }
  500. var force bool
  501. peer_force_send++
  502. if peer_force_send == 5 {
  503. servercfg.SetHost()
  504. force = true
  505. peer_force_send = 0
  506. err := logic.TimerCheckpoint() // run telemetry & log dumps if 24 hours has passed..
  507. if err != nil {
  508. logger.Log(3, "error occurred on timer,", err.Error())
  509. }
  510. //collectServerMetrics(networks[:])
  511. }
  512. if force {
  513. logic.ResetPeerUpdateContext()
  514. for _, host := range hosts {
  515. host := host
  516. logger.Log(2, "sending scheduled peer update (5 min)")
  517. if err = PublishSingleHostPeerUpdate(logic.PeerUpdateCtx, &host, nil, nil); err != nil {
  518. logger.Log(1, "error publishing peer updates for host: ", host.ID.String(), " Err: ", err.Error())
  519. }
  520. }
  521. }
  522. }
  523. // PubPeerUpdateToHost - publishes a full peer update to a host
  524. func PubPeerUpdateToHost(host *models.Host) {
  525. update := models.PeerAction{
  526. Peers: logic.GetPeerUpdate(host),
  527. }
  528. if len(update.Peers) == 0 {
  529. slog.Info("no peer update for host", "host", host.Name)
  530. return
  531. }
  532. data, err := json.Marshal(update)
  533. if err != nil {
  534. slog.Error("error mashalling peer update for", "host", host.Name, "err", err)
  535. return
  536. }
  537. if err = publish(host, fmt.Sprintf("peer/host/%s/%s", host.ID.String(), servercfg.GetServer()), data); err != nil {
  538. slog.Error("error publishing peer update to host", "host", host.Name, "err", err)
  539. return
  540. }
  541. slog.Info("published peer update to host", "host", host.Name)
  542. }