nodes.go 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867
  1. package logic
  2. import (
  3. "context"
  4. "encoding/json"
  5. "errors"
  6. "fmt"
  7. "maps"
  8. "net"
  9. "slices"
  10. "sort"
  11. "sync"
  12. "time"
  13. validator "github.com/go-playground/validator/v10"
  14. "github.com/google/uuid"
  15. "github.com/gravitl/netmaker/database"
  16. "github.com/gravitl/netmaker/logger"
  17. "github.com/gravitl/netmaker/logic/acls"
  18. "github.com/gravitl/netmaker/logic/acls/nodeacls"
  19. "github.com/gravitl/netmaker/models"
  20. "github.com/gravitl/netmaker/servercfg"
  21. "github.com/gravitl/netmaker/validation"
  22. "github.com/seancfoley/ipaddress-go/ipaddr"
  23. "golang.org/x/exp/slog"
  24. )
  25. var (
  26. nodeCacheMutex = &sync.RWMutex{}
  27. nodeNetworkCacheMutex = &sync.RWMutex{}
  28. nodesCacheMap = make(map[string]models.Node)
  29. nodesNetworkCacheMap = make(map[string]map[string]models.Node)
  30. )
  31. func getNodeFromCache(nodeID string) (node models.Node, ok bool) {
  32. nodeCacheMutex.RLock()
  33. node, ok = nodesCacheMap[nodeID]
  34. nodeCacheMutex.RUnlock()
  35. return
  36. }
  37. func getNodesFromCache() (nodes []models.Node) {
  38. nodeCacheMutex.RLock()
  39. for _, node := range nodesCacheMap {
  40. nodes = append(nodes, node)
  41. }
  42. nodeCacheMutex.RUnlock()
  43. return
  44. }
  45. func deleteNodeFromCache(nodeID string) {
  46. nodeCacheMutex.Lock()
  47. delete(nodesCacheMap, nodeID)
  48. nodeCacheMutex.Unlock()
  49. }
  50. func deleteNodeFromNetworkCache(nodeID string, network string) {
  51. nodeNetworkCacheMutex.Lock()
  52. delete(nodesNetworkCacheMap[network], nodeID)
  53. nodeNetworkCacheMutex.Unlock()
  54. }
  55. func storeNodeInNetworkCache(node models.Node, network string) {
  56. nodeNetworkCacheMutex.Lock()
  57. if nodesNetworkCacheMap[network] == nil {
  58. nodesNetworkCacheMap[network] = make(map[string]models.Node)
  59. }
  60. nodesNetworkCacheMap[network][node.ID.String()] = node
  61. nodeNetworkCacheMutex.Unlock()
  62. }
  63. func storeNodeInCache(node models.Node) {
  64. nodeCacheMutex.Lock()
  65. nodesCacheMap[node.ID.String()] = node
  66. nodeCacheMutex.Unlock()
  67. }
  68. func loadNodesIntoNetworkCache(nMap map[string]models.Node) {
  69. nodeNetworkCacheMutex.Lock()
  70. for _, v := range nMap {
  71. network := v.Network
  72. if nodesNetworkCacheMap[network] == nil {
  73. nodesNetworkCacheMap[network] = make(map[string]models.Node)
  74. }
  75. nodesNetworkCacheMap[network][v.ID.String()] = v
  76. }
  77. nodeNetworkCacheMutex.Unlock()
  78. }
  79. func loadNodesIntoCache(nMap map[string]models.Node) {
  80. nodeCacheMutex.Lock()
  81. nodesCacheMap = nMap
  82. nodeCacheMutex.Unlock()
  83. }
  84. func ClearNodeCache() {
  85. nodeCacheMutex.Lock()
  86. nodesCacheMap = make(map[string]models.Node)
  87. nodesNetworkCacheMap = make(map[string]map[string]models.Node)
  88. nodeCacheMutex.Unlock()
  89. }
  90. const (
  91. // RELAY_NODE_ERR - error to return if relay node is unfound
  92. RELAY_NODE_ERR = "could not find relay for node"
  93. // NodePurgeTime time to wait for node to response to a NODE_DELETE actions
  94. NodePurgeTime = time.Second * 10
  95. // NodePurgeCheckTime is how often to check nodes for Pending Delete
  96. NodePurgeCheckTime = time.Second * 30
  97. )
  98. // GetNetworkNodes - gets the nodes of a network
  99. func GetNetworkNodes(network string) ([]models.Node, error) {
  100. if networkNodes, ok := nodesNetworkCacheMap[network]; ok {
  101. nodeNetworkCacheMutex.Lock()
  102. defer nodeNetworkCacheMutex.Unlock()
  103. return slices.Collect(maps.Values(networkNodes)), nil
  104. }
  105. allnodes, err := GetAllNodes()
  106. if err != nil {
  107. return []models.Node{}, err
  108. }
  109. return GetNetworkNodesMemory(allnodes, network), nil
  110. }
  111. // GetHostNodes - fetches all nodes part of the host
  112. func GetHostNodes(host *models.Host) []models.Node {
  113. nodes := []models.Node{}
  114. for _, nodeID := range host.Nodes {
  115. node, err := GetNodeByID(nodeID)
  116. if err == nil {
  117. nodes = append(nodes, node)
  118. }
  119. }
  120. return nodes
  121. }
  122. // GetNetworkNodesMemory - gets all nodes belonging to a network from list in memory
  123. func GetNetworkNodesMemory(allNodes []models.Node, network string) []models.Node {
  124. if networkNodes, ok := nodesNetworkCacheMap[network]; ok {
  125. nodeNetworkCacheMutex.Lock()
  126. defer nodeNetworkCacheMutex.Unlock()
  127. return slices.Collect(maps.Values(networkNodes))
  128. }
  129. var nodes = []models.Node{}
  130. for i := range allNodes {
  131. node := allNodes[i]
  132. if node.Network == network {
  133. nodes = append(nodes, node)
  134. }
  135. }
  136. return nodes
  137. }
  138. // UpdateNodeCheckin - updates the checkin time of a node
  139. func UpdateNodeCheckin(node *models.Node) error {
  140. node.SetLastCheckIn()
  141. data, err := json.Marshal(node)
  142. if err != nil {
  143. return err
  144. }
  145. err = database.Insert(node.ID.String(), string(data), database.NODES_TABLE_NAME)
  146. if err != nil {
  147. return err
  148. }
  149. if servercfg.CacheEnabled() {
  150. storeNodeInCache(*node)
  151. storeNodeInNetworkCache(*node, node.Network)
  152. }
  153. return nil
  154. }
  155. // UpsertNode - updates node in the DB
  156. func UpsertNode(newNode *models.Node) error {
  157. newNode.SetLastModified()
  158. data, err := json.Marshal(newNode)
  159. if err != nil {
  160. return err
  161. }
  162. err = database.Insert(newNode.ID.String(), string(data), database.NODES_TABLE_NAME)
  163. if err != nil {
  164. return err
  165. }
  166. if servercfg.CacheEnabled() {
  167. storeNodeInCache(*newNode)
  168. storeNodeInNetworkCache(*newNode, newNode.Network)
  169. }
  170. return nil
  171. }
  172. // UpdateNode - takes a node and updates another node with it's values
  173. func UpdateNode(currentNode *models.Node, newNode *models.Node) error {
  174. if newNode.Address.IP.String() != currentNode.Address.IP.String() {
  175. if network, err := GetParentNetwork(newNode.Network); err == nil {
  176. if !IsAddressInCIDR(newNode.Address.IP, network.AddressRange) {
  177. return fmt.Errorf("invalid address provided; out of network range for node %s", newNode.ID)
  178. }
  179. }
  180. }
  181. nodeACLDelta := currentNode.DefaultACL != newNode.DefaultACL
  182. newNode.Fill(currentNode, servercfg.IsPro)
  183. // check for un-settable server values
  184. if err := ValidateNode(newNode, true); err != nil {
  185. return err
  186. }
  187. if newNode.ID == currentNode.ID {
  188. if nodeACLDelta {
  189. if err := UpdateProNodeACLs(newNode); err != nil {
  190. logger.Log(1, "failed to apply node level ACLs during creation of node", newNode.ID.String(), "-", err.Error())
  191. return err
  192. }
  193. }
  194. newNode.SetLastModified()
  195. if data, err := json.Marshal(newNode); err != nil {
  196. return err
  197. } else {
  198. err = database.Insert(newNode.ID.String(), string(data), database.NODES_TABLE_NAME)
  199. if err != nil {
  200. return err
  201. }
  202. if servercfg.CacheEnabled() {
  203. storeNodeInCache(*newNode)
  204. storeNodeInNetworkCache(*newNode, newNode.Network)
  205. }
  206. return nil
  207. }
  208. }
  209. return fmt.Errorf("failed to update node " + currentNode.ID.String() + ", cannot change ID.")
  210. }
  211. // DeleteNode - marks node for deletion (and adds to zombie list) if called by UI or deletes node if called by node
  212. func DeleteNode(node *models.Node, purge bool) error {
  213. alreadyDeleted := node.PendingDelete || node.Action == models.NODE_DELETE
  214. node.Action = models.NODE_DELETE
  215. //delete ext clients if node is ingress gw
  216. if node.IsIngressGateway {
  217. if err := DeleteGatewayExtClients(node.ID.String(), node.Network); err != nil {
  218. slog.Error("failed to delete ext clients", "nodeid", node.ID.String(), "error", err.Error())
  219. }
  220. }
  221. if node.IsRelayed {
  222. // cleanup node from relayednodes on relay node
  223. relayNode, err := GetNodeByID(node.RelayedBy)
  224. if err == nil {
  225. relayedNodes := []string{}
  226. for _, relayedNodeID := range relayNode.RelayedNodes {
  227. if relayedNodeID == node.ID.String() {
  228. continue
  229. }
  230. relayedNodes = append(relayedNodes, relayedNodeID)
  231. }
  232. relayNode.RelayedNodes = relayedNodes
  233. UpsertNode(&relayNode)
  234. }
  235. }
  236. if node.FailedOverBy != uuid.Nil {
  237. ResetFailedOverPeer(node)
  238. }
  239. if node.IsRelay {
  240. // unset all the relayed nodes
  241. SetRelayedNodes(false, node.ID.String(), node.RelayedNodes)
  242. }
  243. if node.InternetGwID != "" {
  244. inetNode, err := GetNodeByID(node.InternetGwID)
  245. if err == nil {
  246. clientNodeIDs := []string{}
  247. for _, inetNodeClientID := range inetNode.InetNodeReq.InetNodeClientIDs {
  248. if inetNodeClientID == node.ID.String() {
  249. continue
  250. }
  251. clientNodeIDs = append(clientNodeIDs, inetNodeClientID)
  252. }
  253. inetNode.InetNodeReq.InetNodeClientIDs = clientNodeIDs
  254. UpsertNode(&inetNode)
  255. }
  256. }
  257. if node.IsInternetGateway {
  258. UnsetInternetGw(node)
  259. }
  260. if !purge && !alreadyDeleted {
  261. newnode := *node
  262. newnode.PendingDelete = true
  263. if err := UpdateNode(node, &newnode); err != nil {
  264. return err
  265. }
  266. newZombie <- node.ID
  267. return nil
  268. }
  269. if alreadyDeleted {
  270. logger.Log(1, "forcibly deleting node", node.ID.String())
  271. }
  272. host, err := GetHost(node.HostID.String())
  273. if err != nil {
  274. logger.Log(1, "no host found for node", node.ID.String(), "deleting..")
  275. if delErr := DeleteNodeByID(node); delErr != nil {
  276. logger.Log(0, "failed to delete node", node.ID.String(), delErr.Error())
  277. }
  278. return err
  279. }
  280. if err := DissasociateNodeFromHost(node, host); err != nil {
  281. return err
  282. }
  283. return nil
  284. }
  285. // GetNodeByHostRef - gets the node by host id and network
  286. func GetNodeByHostRef(hostid, network string) (node models.Node, err error) {
  287. nodes, err := GetNetworkNodes(network)
  288. if err != nil {
  289. return models.Node{}, err
  290. }
  291. for _, node := range nodes {
  292. if node.HostID.String() == hostid && node.Network == network {
  293. return node, nil
  294. }
  295. }
  296. return models.Node{}, errors.New("node not found")
  297. }
  298. // DeleteNodeByID - deletes a node from database
  299. func DeleteNodeByID(node *models.Node) error {
  300. var err error
  301. var key = node.ID.String()
  302. if err = database.DeleteRecord(database.NODES_TABLE_NAME, key); err != nil {
  303. if !database.IsEmptyRecord(err) {
  304. return err
  305. }
  306. }
  307. if servercfg.CacheEnabled() {
  308. deleteNodeFromCache(node.ID.String())
  309. deleteNodeFromNetworkCache(node.ID.String(), node.Network)
  310. }
  311. if servercfg.IsDNSMode() {
  312. SetDNS()
  313. }
  314. _, err = nodeacls.RemoveNodeACL(nodeacls.NetworkID(node.Network), nodeacls.NodeID(node.ID.String()))
  315. if err != nil {
  316. // ignoring for now, could hit a nil pointer if delete called twice
  317. logger.Log(2, "attempted to remove node ACL for node", node.ID.String())
  318. }
  319. // removeZombie <- node.ID
  320. if err = DeleteMetrics(node.ID.String()); err != nil {
  321. logger.Log(1, "unable to remove metrics from DB for node", node.ID.String(), err.Error())
  322. }
  323. //recycle ip address
  324. if node.Address.IP != nil {
  325. RemoveIpFromAllocatedIpMap(node.Network, node.Address.IP.String())
  326. }
  327. if node.Address6.IP != nil {
  328. RemoveIpFromAllocatedIpMap(node.Network, node.Address6.IP.String())
  329. }
  330. return nil
  331. }
  332. // IsNodeIDUnique - checks if node id is unique
  333. func IsNodeIDUnique(node *models.Node) (bool, error) {
  334. _, err := database.FetchRecord(database.NODES_TABLE_NAME, node.ID.String())
  335. return database.IsEmptyRecord(err), err
  336. }
  337. // ValidateNode - validates node values
  338. func ValidateNode(node *models.Node, isUpdate bool) error {
  339. v := validator.New()
  340. _ = v.RegisterValidation("id_unique", func(fl validator.FieldLevel) bool {
  341. if isUpdate {
  342. return true
  343. }
  344. isFieldUnique, _ := IsNodeIDUnique(node)
  345. return isFieldUnique
  346. })
  347. _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
  348. _, err := GetNetworkByNode(node)
  349. return err == nil
  350. })
  351. _ = v.RegisterValidation("checkyesornoorunset", func(f1 validator.FieldLevel) bool {
  352. return validation.CheckYesOrNoOrUnset(f1)
  353. })
  354. err := v.Struct(node)
  355. return err
  356. }
  357. // GetAllNodes - returns all nodes in the DB
  358. func GetAllNodes() ([]models.Node, error) {
  359. var nodes []models.Node
  360. if servercfg.CacheEnabled() {
  361. nodes = getNodesFromCache()
  362. if len(nodes) != 0 {
  363. return nodes, nil
  364. }
  365. }
  366. nodesMap := make(map[string]models.Node)
  367. if servercfg.CacheEnabled() {
  368. defer loadNodesIntoCache(nodesMap)
  369. defer loadNodesIntoNetworkCache(nodesMap)
  370. }
  371. collection, err := database.FetchRecords(database.NODES_TABLE_NAME)
  372. if err != nil {
  373. if database.IsEmptyRecord(err) {
  374. return []models.Node{}, nil
  375. }
  376. return []models.Node{}, err
  377. }
  378. for _, value := range collection {
  379. var node models.Node
  380. // ignore legacy nodes in database
  381. if err := json.Unmarshal([]byte(value), &node); err != nil {
  382. logger.Log(3, "legacy node detected: ", err.Error())
  383. continue
  384. }
  385. // add node to our array
  386. nodes = append(nodes, node)
  387. nodesMap[node.ID.String()] = node
  388. }
  389. return nodes, nil
  390. }
  391. func AddStaticNodestoList(nodes []models.Node) []models.Node {
  392. netMap := make(map[string]struct{})
  393. for _, node := range nodes {
  394. if _, ok := netMap[node.Network]; ok {
  395. continue
  396. }
  397. if node.IsIngressGateway {
  398. nodes = append(nodes, GetStaticNodesByNetwork(models.NetworkID(node.Network), false)...)
  399. netMap[node.Network] = struct{}{}
  400. }
  401. }
  402. return nodes
  403. }
  404. // GetNetworkByNode - gets the network model from a node
  405. func GetNetworkByNode(node *models.Node) (models.Network, error) {
  406. var network = models.Network{}
  407. networkData, err := database.FetchRecord(database.NETWORKS_TABLE_NAME, node.Network)
  408. if err != nil {
  409. return network, err
  410. }
  411. if err = json.Unmarshal([]byte(networkData), &network); err != nil {
  412. return models.Network{}, err
  413. }
  414. return network, nil
  415. }
  416. // SetNodeDefaults - sets the defaults of a node to avoid empty fields
  417. func SetNodeDefaults(node *models.Node, resetConnected bool) {
  418. parentNetwork, _ := GetNetworkByNode(node)
  419. _, cidr, err := net.ParseCIDR(parentNetwork.AddressRange)
  420. if err == nil {
  421. node.NetworkRange = *cidr
  422. }
  423. _, cidr, err = net.ParseCIDR(parentNetwork.AddressRange6)
  424. if err == nil {
  425. node.NetworkRange6 = *cidr
  426. }
  427. if node.DefaultACL == "" {
  428. node.DefaultACL = parentNetwork.DefaultACL
  429. }
  430. if node.FailOverPeers == nil {
  431. node.FailOverPeers = make(map[string]struct{})
  432. }
  433. node.SetLastModified()
  434. node.SetLastCheckIn()
  435. if resetConnected {
  436. node.SetDefaultConnected()
  437. }
  438. node.SetExpirationDateTime()
  439. if node.Tags == nil {
  440. node.Tags = make(map[models.TagID]struct{})
  441. }
  442. }
  443. // GetRecordKey - get record key
  444. // depricated
  445. func GetRecordKey(id string, network string) (string, error) {
  446. if id == "" || network == "" {
  447. return "", errors.New("unable to get record key")
  448. }
  449. return id + "###" + network, nil
  450. }
  451. func GetNodeByID(uuid string) (models.Node, error) {
  452. if servercfg.CacheEnabled() {
  453. if node, ok := getNodeFromCache(uuid); ok {
  454. return node, nil
  455. }
  456. }
  457. var record, err = database.FetchRecord(database.NODES_TABLE_NAME, uuid)
  458. if err != nil {
  459. return models.Node{}, err
  460. }
  461. var node models.Node
  462. if err = json.Unmarshal([]byte(record), &node); err != nil {
  463. return models.Node{}, err
  464. }
  465. if servercfg.CacheEnabled() {
  466. storeNodeInCache(node)
  467. storeNodeInNetworkCache(node, node.Network)
  468. }
  469. return node, nil
  470. }
  471. // GetDeletedNodeByID - get a deleted node
  472. func GetDeletedNodeByID(uuid string) (models.Node, error) {
  473. var node models.Node
  474. record, err := database.FetchRecord(database.DELETED_NODES_TABLE_NAME, uuid)
  475. if err != nil {
  476. return models.Node{}, err
  477. }
  478. if err = json.Unmarshal([]byte(record), &node); err != nil {
  479. return models.Node{}, err
  480. }
  481. SetNodeDefaults(&node, true)
  482. return node, nil
  483. }
  484. // FindRelay - returns the node that is the relay for a relayed node
  485. func FindRelay(node *models.Node) *models.Node {
  486. relay, err := GetNodeByID(node.RelayedBy)
  487. if err != nil {
  488. logger.Log(0, "FindRelay: "+err.Error())
  489. return nil
  490. }
  491. return &relay
  492. }
  493. // GetAllNodesAPI - get all nodes for api usage
  494. func GetAllNodesAPI(nodes []models.Node) []models.ApiNode {
  495. apiNodes := []models.ApiNode{}
  496. for i := range nodes {
  497. newApiNode := nodes[i].ConvertToAPINode()
  498. apiNodes = append(apiNodes, *newApiNode)
  499. }
  500. return apiNodes[:]
  501. }
  502. // DeleteExpiredNodes - goroutine which deletes nodes which are expired
  503. func DeleteExpiredNodes(ctx context.Context, peerUpdate chan *models.Node) {
  504. // Delete Expired Nodes Every Hour
  505. ticker := time.NewTicker(time.Hour)
  506. for {
  507. select {
  508. case <-ctx.Done():
  509. ticker.Stop()
  510. return
  511. case <-ticker.C:
  512. allnodes, err := GetAllNodes()
  513. if err != nil {
  514. slog.Error("failed to retrieve all nodes", "error", err.Error())
  515. return
  516. }
  517. for _, node := range allnodes {
  518. node := node
  519. if time.Now().After(node.ExpirationDateTime) {
  520. peerUpdate <- &node
  521. slog.Info("deleting expired node", "nodeid", node.ID.String())
  522. }
  523. }
  524. }
  525. }
  526. }
  527. // createNode - creates a node in database
  528. func createNode(node *models.Node) error {
  529. // lock because we need unique IPs and having it concurrent makes parallel calls result in same "unique" IPs
  530. addressLock.Lock()
  531. defer addressLock.Unlock()
  532. host, err := GetHost(node.HostID.String())
  533. if err != nil {
  534. return err
  535. }
  536. if !node.DNSOn {
  537. if servercfg.IsDNSMode() {
  538. node.DNSOn = true
  539. } else {
  540. node.DNSOn = false
  541. }
  542. }
  543. SetNodeDefaults(node, true)
  544. defaultACLVal := acls.Allowed
  545. parentNetwork, err := GetNetwork(node.Network)
  546. if err == nil {
  547. if parentNetwork.DefaultACL != "yes" {
  548. defaultACLVal = acls.NotAllowed
  549. }
  550. }
  551. if node.DefaultACL == "" {
  552. node.DefaultACL = "unset"
  553. }
  554. if node.Address.IP == nil {
  555. if parentNetwork.IsIPv4 == "yes" {
  556. if node.Address.IP, err = UniqueAddress(node.Network, false); err != nil {
  557. return err
  558. }
  559. _, cidr, err := net.ParseCIDR(parentNetwork.AddressRange)
  560. if err != nil {
  561. return err
  562. }
  563. node.Address.Mask = net.CIDRMask(cidr.Mask.Size())
  564. }
  565. } else if !IsIPUnique(node.Network, node.Address.String(), database.NODES_TABLE_NAME, false) {
  566. return fmt.Errorf("invalid address: ipv4 " + node.Address.String() + " is not unique")
  567. }
  568. if node.Address6.IP == nil {
  569. if parentNetwork.IsIPv6 == "yes" {
  570. if node.Address6.IP, err = UniqueAddress6(node.Network, false); err != nil {
  571. return err
  572. }
  573. _, cidr, err := net.ParseCIDR(parentNetwork.AddressRange6)
  574. if err != nil {
  575. return err
  576. }
  577. node.Address6.Mask = net.CIDRMask(cidr.Mask.Size())
  578. }
  579. } else if !IsIPUnique(node.Network, node.Address6.String(), database.NODES_TABLE_NAME, true) {
  580. return fmt.Errorf("invalid address: ipv6 " + node.Address6.String() + " is not unique")
  581. }
  582. node.ID = uuid.New()
  583. //Create a JWT for the node
  584. tokenString, _ := CreateJWT(node.ID.String(), host.MacAddress.String(), node.Network)
  585. if tokenString == "" {
  586. //logic.ReturnErrorResponse(w, r, errorResponse)
  587. return err
  588. }
  589. err = ValidateNode(node, false)
  590. if err != nil {
  591. return err
  592. }
  593. CheckZombies(node)
  594. nodebytes, err := json.Marshal(&node)
  595. if err != nil {
  596. return err
  597. }
  598. err = database.Insert(node.ID.String(), string(nodebytes), database.NODES_TABLE_NAME)
  599. if err != nil {
  600. return err
  601. }
  602. if servercfg.CacheEnabled() {
  603. storeNodeInCache(*node)
  604. storeNodeInNetworkCache(*node, node.Network)
  605. }
  606. if _, ok := allocatedIpMap[node.Network]; ok {
  607. if node.Address.IP != nil {
  608. AddIpToAllocatedIpMap(node.Network, node.Address.IP)
  609. }
  610. if node.Address6.IP != nil {
  611. AddIpToAllocatedIpMap(node.Network, node.Address6.IP)
  612. }
  613. }
  614. _, err = nodeacls.CreateNodeACL(nodeacls.NetworkID(node.Network), nodeacls.NodeID(node.ID.String()), defaultACLVal)
  615. if err != nil {
  616. logger.Log(1, "failed to create node ACL for node,", node.ID.String(), "err:", err.Error())
  617. return err
  618. }
  619. if err = UpdateProNodeACLs(node); err != nil {
  620. logger.Log(1, "failed to apply node level ACLs during creation of node", node.ID.String(), "-", err.Error())
  621. return err
  622. }
  623. if err = UpdateMetrics(node.ID.String(), &models.Metrics{Connectivity: make(map[string]models.Metric)}); err != nil {
  624. logger.Log(1, "failed to initialize metrics for node", node.ID.String(), err.Error())
  625. }
  626. SetNetworkNodesLastModified(node.Network)
  627. if servercfg.IsDNSMode() {
  628. err = SetDNS()
  629. }
  630. return err
  631. }
  632. // SortApiNodes - Sorts slice of ApiNodes by their ID alphabetically with numbers first
  633. func SortApiNodes(unsortedNodes []models.ApiNode) {
  634. sort.Slice(unsortedNodes, func(i, j int) bool {
  635. return unsortedNodes[i].ID < unsortedNodes[j].ID
  636. })
  637. }
  638. func ValidateParams(nodeid, netid string) (models.Node, error) {
  639. node, err := GetNodeByID(nodeid)
  640. if err != nil {
  641. slog.Error("error fetching node", "node", nodeid, "error", err.Error())
  642. return node, fmt.Errorf("error fetching node during parameter validation: %v", err)
  643. }
  644. if node.Network != netid {
  645. slog.Error("network url param does not match node id", "url nodeid", netid, "node", node.Network)
  646. return node, fmt.Errorf("network url param does not match node network")
  647. }
  648. return node, nil
  649. }
  650. func ValidateEgressRange(gateway models.EgressGatewayRequest) error {
  651. network, err := GetNetworkSettings(gateway.NetID)
  652. if err != nil {
  653. slog.Error("error getting network with netid", "error", gateway.NetID, err.Error)
  654. return errors.New("error getting network with netid: " + gateway.NetID + " " + err.Error())
  655. }
  656. ipv4Net := network.AddressRange
  657. ipv6Net := network.AddressRange6
  658. for _, v := range gateway.Ranges {
  659. if ipv4Net != "" {
  660. if ContainsCIDR(ipv4Net, v) {
  661. slog.Error("egress range should not be the same as or contained in the netmaker network address", "error", v, ipv4Net)
  662. return errors.New("egress range should not be the same as or contained in the netmaker network address" + v + " " + ipv4Net)
  663. }
  664. }
  665. if ipv6Net != "" {
  666. if ContainsCIDR(ipv6Net, v) {
  667. slog.Error("egress range should not be the same as or contained in the netmaker network address", "error", v, ipv6Net)
  668. return errors.New("egress range should not be the same as or contained in the netmaker network address" + v + " " + ipv6Net)
  669. }
  670. }
  671. }
  672. return nil
  673. }
  674. func ContainsCIDR(net1, net2 string) bool {
  675. one, two := ipaddr.NewIPAddressString(net1),
  676. ipaddr.NewIPAddressString(net2)
  677. return one.Contains(two) || two.Contains(one)
  678. }
  679. // GetAllFailOvers - gets all the nodes that are failovers
  680. func GetAllFailOvers() ([]models.Node, error) {
  681. nodes, err := GetAllNodes()
  682. if err != nil {
  683. return nil, err
  684. }
  685. igs := make([]models.Node, 0)
  686. for _, node := range nodes {
  687. if node.IsFailOver {
  688. igs = append(igs, node)
  689. }
  690. }
  691. return igs, nil
  692. }
  693. func GetTagMapWithNodes() (tagNodesMap map[models.TagID][]models.Node) {
  694. tagNodesMap = make(map[models.TagID][]models.Node)
  695. nodes, _ := GetAllNodes()
  696. for _, nodeI := range nodes {
  697. if nodeI.Tags == nil {
  698. continue
  699. }
  700. for nodeTagID := range nodeI.Tags {
  701. tagNodesMap[nodeTagID] = append(tagNodesMap[nodeTagID], nodeI)
  702. }
  703. }
  704. return
  705. }
  706. func GetTagMapWithNodesByNetwork(netID models.NetworkID) (tagNodesMap map[models.TagID][]models.Node) {
  707. tagNodesMap = make(map[models.TagID][]models.Node)
  708. nodes, _ := GetNetworkNodes(netID.String())
  709. for _, nodeI := range nodes {
  710. if nodeI.Tags == nil {
  711. continue
  712. }
  713. for nodeTagID := range nodeI.Tags {
  714. tagNodesMap[nodeTagID] = append(tagNodesMap[nodeTagID], nodeI)
  715. }
  716. }
  717. return AddTagMapWithStaticNodes(netID, tagNodesMap)
  718. }
  719. func AddTagMapWithStaticNodes(netID models.NetworkID,
  720. tagNodesMap map[models.TagID][]models.Node) map[models.TagID][]models.Node {
  721. extclients, err := GetNetworkExtClients(netID.String())
  722. if err != nil {
  723. return tagNodesMap
  724. }
  725. for _, extclient := range extclients {
  726. if extclient.Tags == nil || extclient.RemoteAccessClientID != "" {
  727. continue
  728. }
  729. for tagID := range extclient.Tags {
  730. tagNodesMap[tagID] = append(tagNodesMap[tagID], models.Node{
  731. IsStatic: true,
  732. StaticNode: extclient,
  733. })
  734. }
  735. }
  736. return tagNodesMap
  737. }
  738. func GetNodesWithTag(tagID models.TagID) map[string]models.Node {
  739. nMap := make(map[string]models.Node)
  740. tag, err := GetTag(tagID)
  741. if err != nil {
  742. return nMap
  743. }
  744. nodes, _ := GetNetworkNodes(tag.Network.String())
  745. for _, nodeI := range nodes {
  746. if nodeI.Tags == nil {
  747. continue
  748. }
  749. if _, ok := nodeI.Tags[tagID]; ok {
  750. nMap[nodeI.ID.String()] = nodeI
  751. }
  752. }
  753. return AddStaticNodesWithTag(tag, nMap)
  754. }
  755. func AddStaticNodesWithTag(tag models.Tag, nMap map[string]models.Node) map[string]models.Node {
  756. extclients, err := GetNetworkExtClients(tag.Network.String())
  757. if err != nil {
  758. return nMap
  759. }
  760. for _, extclient := range extclients {
  761. if extclient.RemoteAccessClientID != "" {
  762. continue
  763. }
  764. if _, ok := extclient.Tags[tag.ID]; ok {
  765. nMap[extclient.ClientID] = models.Node{
  766. IsStatic: true,
  767. StaticNode: extclient,
  768. }
  769. }
  770. }
  771. return nMap
  772. }
  773. func GetStaticNodeWithTag(tagID models.TagID) map[string]models.Node {
  774. nMap := make(map[string]models.Node)
  775. tag, err := GetTag(tagID)
  776. if err != nil {
  777. return nMap
  778. }
  779. extclients, err := GetNetworkExtClients(tag.Network.String())
  780. if err != nil {
  781. return nMap
  782. }
  783. for _, extclient := range extclients {
  784. nMap[extclient.ClientID] = models.Node{
  785. IsStatic: true,
  786. StaticNode: extclient,
  787. }
  788. }
  789. return nMap
  790. }