hosts.go 40 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298
  1. package controller
  2. import (
  3. "encoding/json"
  4. "errors"
  5. "fmt"
  6. "net/http"
  7. "time"
  8. "github.com/google/uuid"
  9. "github.com/gorilla/mux"
  10. "github.com/gravitl/netmaker/database"
  11. "github.com/gravitl/netmaker/db"
  12. "github.com/gravitl/netmaker/logger"
  13. "github.com/gravitl/netmaker/logic"
  14. "github.com/gravitl/netmaker/logic/hostactions"
  15. "github.com/gravitl/netmaker/models"
  16. "github.com/gravitl/netmaker/mq"
  17. "github.com/gravitl/netmaker/schema"
  18. "github.com/gravitl/netmaker/servercfg"
  19. "golang.org/x/crypto/bcrypt"
  20. "golang.org/x/exp/slog"
  21. )
  22. func hostHandlers(r *mux.Router) {
  23. r.HandleFunc("/api/hosts", logic.SecurityCheck(true, http.HandlerFunc(getHosts))).
  24. Methods(http.MethodGet)
  25. r.HandleFunc("/api/hosts/keys", logic.SecurityCheck(true, http.HandlerFunc(updateAllKeys))).
  26. Methods(http.MethodPut)
  27. r.HandleFunc("/api/hosts/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHosts))).
  28. Methods(http.MethodPost)
  29. r.HandleFunc("/api/hosts/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHosts))).
  30. Methods(http.MethodPost)
  31. r.HandleFunc("/api/hosts/{hostid}/keys", logic.SecurityCheck(true, http.HandlerFunc(updateKeys))).
  32. Methods(http.MethodPut)
  33. r.HandleFunc("/api/hosts/{hostid}/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHost))).
  34. Methods(http.MethodPost)
  35. r.HandleFunc("/api/hosts/{hostid}", logic.SecurityCheck(true, http.HandlerFunc(updateHost))).
  36. Methods(http.MethodPut)
  37. r.HandleFunc("/api/hosts/{hostid}", Authorize(true, false, "all", http.HandlerFunc(deleteHost))).
  38. Methods(http.MethodDelete)
  39. r.HandleFunc("/api/hosts/{hostid}/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHost))).
  40. Methods(http.MethodPut)
  41. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(addHostToNetwork))).
  42. Methods(http.MethodPost)
  43. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(deleteHostFromNetwork))).
  44. Methods(http.MethodDelete)
  45. r.HandleFunc("/api/hosts/adm/authenticate", authenticateHost).Methods(http.MethodPost)
  46. r.HandleFunc("/api/v1/host", Authorize(true, false, "host", http.HandlerFunc(pull))).
  47. Methods(http.MethodGet)
  48. r.HandleFunc("/api/v1/host/{hostid}/signalpeer", Authorize(true, false, "host", http.HandlerFunc(signalPeer))).
  49. Methods(http.MethodPost)
  50. r.HandleFunc("/api/v1/fallback/host/{hostid}", Authorize(true, false, "host", http.HandlerFunc(hostUpdateFallback))).
  51. Methods(http.MethodPut)
  52. r.HandleFunc("/api/v1/host/{hostid}/peer_info", Authorize(true, false, "host", http.HandlerFunc(getHostPeerInfo))).
  53. Methods(http.MethodGet)
  54. r.HandleFunc("/api/v1/pending_hosts", logic.SecurityCheck(true, http.HandlerFunc(getPendingHosts))).
  55. Methods(http.MethodGet)
  56. r.HandleFunc("/api/v1/pending_hosts/approve/{id}", logic.SecurityCheck(true, http.HandlerFunc(approvePendingHost))).
  57. Methods(http.MethodPost)
  58. r.HandleFunc("/api/v1/pending_hosts/reject/{id}", logic.SecurityCheck(true, http.HandlerFunc(rejectPendingHost))).
  59. Methods(http.MethodPost)
  60. r.HandleFunc("/api/emqx/hosts", logic.SecurityCheck(true, http.HandlerFunc(delEmqxHosts))).
  61. Methods(http.MethodDelete)
  62. r.HandleFunc("/api/v1/auth-register/host", socketHandler)
  63. }
  64. // @Summary Requests all the hosts to upgrade their version
  65. // @Router /api/hosts/upgrade [post]
  66. // @Tags Hosts
  67. // @Security oauth
  68. // @Param force query bool false "Force upgrade"
  69. // @Success 200 {string} string "upgrade all hosts request received"
  70. func upgradeHosts(w http.ResponseWriter, r *http.Request) {
  71. w.Header().Set("Content-Type", "application/json")
  72. action := models.Upgrade
  73. if r.URL.Query().Get("force") == "true" {
  74. action = models.ForceUpgrade
  75. }
  76. user := r.Header.Get("user")
  77. go func() {
  78. slog.Info("requesting all hosts to upgrade", "user", user)
  79. hosts, err := logic.GetAllHosts()
  80. if err != nil {
  81. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  82. return
  83. }
  84. for _, host := range hosts {
  85. go func(host models.Host) {
  86. hostUpdate := models.HostUpdate{
  87. Action: action,
  88. Host: host,
  89. }
  90. if err = mq.HostUpdate(&hostUpdate); err != nil {
  91. slog.Error("failed to request host to upgrade", "user", user, "host", host.ID.String(), "error", err)
  92. } else {
  93. slog.Info("host upgrade requested", "user", user, "host", host.ID.String())
  94. }
  95. }(host)
  96. }
  97. }()
  98. logic.LogEvent(&models.Event{
  99. Action: models.UpgradeAll,
  100. Source: models.Subject{
  101. ID: r.Header.Get("user"),
  102. Name: r.Header.Get("user"),
  103. Type: models.UserSub,
  104. },
  105. TriggeredBy: r.Header.Get("user"),
  106. Target: models.Subject{
  107. ID: "All Hosts",
  108. Name: "All Hosts",
  109. Type: models.DeviceSub,
  110. },
  111. Origin: models.Dashboard,
  112. })
  113. slog.Info("upgrade all hosts request received", "user", user)
  114. logic.ReturnSuccessResponse(w, r, "upgrade all hosts request received")
  115. }
  116. // @Summary Upgrade a host
  117. // @Router /api/hosts/{hostid}/upgrade [put]
  118. // @Tags Hosts
  119. // @Security oauth
  120. // @Param hostid path string true "Host ID"
  121. // @Param force query bool false "Force upgrade"
  122. // @Success 200 {string} string "passed message to upgrade host"
  123. // @Failure 500 {object} models.ErrorResponse
  124. // upgrade host is a handler to send upgrade message to a host
  125. func upgradeHost(w http.ResponseWriter, r *http.Request) {
  126. host, err := logic.GetHost(mux.Vars(r)["hostid"])
  127. if err != nil {
  128. slog.Error("failed to find host", "error", err)
  129. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "notfound"))
  130. return
  131. }
  132. action := models.Upgrade
  133. if r.URL.Query().Get("force") == "true" {
  134. action = models.ForceUpgrade
  135. }
  136. if err := mq.HostUpdate(&models.HostUpdate{Action: action, Host: *host}); err != nil {
  137. slog.Error("failed to upgrade host", "error", err)
  138. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  139. return
  140. }
  141. logic.ReturnSuccessResponse(w, r, "passed message to upgrade host")
  142. }
  143. // @Summary List all hosts
  144. // @Router /api/hosts [get]
  145. // @Tags Hosts
  146. // @Security oauth
  147. // @Success 200 {array} models.ApiHost
  148. // @Failure 500 {object} models.ErrorResponse
  149. func getHosts(w http.ResponseWriter, r *http.Request) {
  150. w.Header().Set("Content-Type", "application/json")
  151. currentHosts, err := logic.GetAllHosts()
  152. if err != nil {
  153. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  154. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  155. return
  156. }
  157. apiHosts := logic.GetAllHostsAPI(currentHosts[:])
  158. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  159. logic.SortApiHosts(apiHosts[:])
  160. w.WriteHeader(http.StatusOK)
  161. json.NewEncoder(w).Encode(apiHosts)
  162. }
  163. // @Summary Used by clients for "pull" command
  164. // @Router /api/v1/host [get]
  165. // @Tags Hosts
  166. // @Security oauth
  167. // @Success 200 {object} models.HostPull
  168. // @Failure 500 {object} models.ErrorResponse
  169. func pull(w http.ResponseWriter, r *http.Request) {
  170. hostID := r.Header.Get(hostIDHeader) // return JSON/API formatted keys
  171. if len(hostID) == 0 {
  172. logger.Log(0, "no host authorized to pull")
  173. logic.ReturnErrorResponse(
  174. w,
  175. r,
  176. logic.FormatError(fmt.Errorf("no host authorized to pull"), "internal"),
  177. )
  178. return
  179. }
  180. host, err := logic.GetHost(hostID)
  181. if err != nil {
  182. logger.Log(0, "no host found during pull", hostID)
  183. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  184. return
  185. }
  186. sendPeerUpdate := false
  187. for _, nodeID := range host.Nodes {
  188. node, err := logic.GetNodeByID(nodeID)
  189. if err != nil {
  190. slog.Error("failed to get node:", "id", node.ID, "error", err)
  191. continue
  192. }
  193. if node.FailedOverBy != uuid.Nil && r.URL.Query().Get("reset_failovered") == "true" {
  194. logic.ResetFailedOverPeer(&node)
  195. sendPeerUpdate = true
  196. }
  197. }
  198. if sendPeerUpdate {
  199. if err := mq.PublishPeerUpdate(false); err != nil {
  200. logger.Log(0, "fail to publish peer update: ", err.Error())
  201. }
  202. }
  203. allNodes, err := logic.GetAllNodes()
  204. if err != nil {
  205. logger.Log(0, "failed to get nodes: ", hostID)
  206. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  207. return
  208. }
  209. hPU, err := logic.GetPeerUpdateForHost("", host, allNodes, nil, nil)
  210. if err != nil {
  211. logger.Log(0, "could not pull peers for host", hostID, err.Error())
  212. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  213. return
  214. }
  215. serverConf := logic.GetServerInfo()
  216. key, keyErr := logic.RetrievePublicTrafficKey()
  217. if keyErr != nil {
  218. logger.Log(0, "error retrieving key:", keyErr.Error())
  219. logic.ReturnErrorResponse(w, r, logic.FormatError(keyErr, "internal"))
  220. return
  221. }
  222. _ = logic.CheckHostPorts(host)
  223. serverConf.TrafficKey = key
  224. response := models.HostPull{
  225. Host: *host,
  226. Nodes: logic.GetHostNodes(host),
  227. ServerConfig: serverConf,
  228. Peers: hPU.Peers,
  229. PeerIDs: hPU.PeerIDs,
  230. HostNetworkInfo: hPU.HostNetworkInfo,
  231. EgressRoutes: hPU.EgressRoutes,
  232. FwUpdate: hPU.FwUpdate,
  233. ChangeDefaultGw: hPU.ChangeDefaultGw,
  234. DefaultGwIp: hPU.DefaultGwIp,
  235. IsInternetGw: hPU.IsInternetGw,
  236. EndpointDetection: logic.IsEndpointDetectionEnabled(),
  237. DnsNameservers: hPU.DnsNameservers,
  238. }
  239. logger.Log(1, hostID, "completed a pull")
  240. w.WriteHeader(http.StatusOK)
  241. json.NewEncoder(w).Encode(&response)
  242. }
  243. // @Summary Updates a Netclient host on Netmaker server
  244. // @Router /api/hosts/{hostid} [put]
  245. // @Tags Hosts
  246. // @Security oauth
  247. // @Param hostid path string true "Host ID"
  248. // @Param body body models.ApiHost true "New host data"
  249. // @Success 200 {object} models.ApiHost
  250. // @Failure 500 {object} models.ErrorResponse
  251. func updateHost(w http.ResponseWriter, r *http.Request) {
  252. var newHostData models.ApiHost
  253. err := json.NewDecoder(r.Body).Decode(&newHostData)
  254. if err != nil {
  255. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  256. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  257. return
  258. }
  259. // confirm host exists
  260. currHost, err := logic.GetHost(newHostData.ID)
  261. if err != nil {
  262. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  263. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  264. return
  265. }
  266. newHost := newHostData.ConvertAPIHostToNMHost(currHost)
  267. logic.UpdateHost(newHost, currHost) // update the in memory struct values
  268. if err = logic.UpsertHost(newHost); err != nil {
  269. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  270. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  271. return
  272. }
  273. // publish host update through MQ
  274. if err := mq.HostUpdate(&models.HostUpdate{
  275. Action: models.UpdateHost,
  276. Host: *newHost,
  277. }); err != nil {
  278. logger.Log(
  279. 0,
  280. r.Header.Get("user"),
  281. "failed to send host update: ",
  282. currHost.ID.String(),
  283. err.Error(),
  284. )
  285. }
  286. go func() {
  287. if err := mq.PublishPeerUpdate(false); err != nil {
  288. logger.Log(0, "fail to publish peer update: ", err.Error())
  289. }
  290. if newHost.Name != currHost.Name {
  291. if servercfg.IsDNSMode() {
  292. logic.SetDNS()
  293. }
  294. }
  295. }()
  296. logic.LogEvent(&models.Event{
  297. Action: models.Update,
  298. Source: models.Subject{
  299. ID: r.Header.Get("user"),
  300. Name: r.Header.Get("user"),
  301. Type: models.UserSub,
  302. },
  303. TriggeredBy: r.Header.Get("user"),
  304. Target: models.Subject{
  305. ID: currHost.ID.String(),
  306. Name: newHost.Name,
  307. Type: models.DeviceSub,
  308. },
  309. Diff: models.Diff{
  310. Old: currHost,
  311. New: newHost,
  312. },
  313. Origin: models.Dashboard,
  314. })
  315. apiHostData := newHost.ConvertNMHostToAPI()
  316. logger.Log(2, r.Header.Get("user"), "updated host", newHost.ID.String())
  317. w.WriteHeader(http.StatusOK)
  318. json.NewEncoder(w).Encode(apiHostData)
  319. }
  320. // @Summary Updates a Netclient host on Netmaker server
  321. // @Router /api/v1/fallback/host/{hostid} [put]
  322. // @Tags Hosts
  323. // @Security oauth
  324. // @Param hostid path string true "Host ID"
  325. // @Param body body models.HostUpdate true "Host update data"
  326. // @Success 200 {string} string "updated host data"
  327. // @Failure 500 {object} models.ErrorResponse
  328. func hostUpdateFallback(w http.ResponseWriter, r *http.Request) {
  329. var params = mux.Vars(r)
  330. hostid := params["hostid"]
  331. currentHost, err := logic.GetHost(hostid)
  332. if err != nil {
  333. slog.Error("error getting host", "id", hostid, "error", err)
  334. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  335. return
  336. }
  337. var sendPeerUpdate bool
  338. var replacePeers bool
  339. var hostUpdate models.HostUpdate
  340. err = json.NewDecoder(r.Body).Decode(&hostUpdate)
  341. if err != nil {
  342. slog.Error("failed to update a host:", "user", r.Header.Get("user"), "error", err.Error(), "host", currentHost.Name)
  343. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  344. return
  345. }
  346. slog.Info("recieved host update", "name", hostUpdate.Host.Name, "id", hostUpdate.Host.ID, "action", hostUpdate.Action)
  347. switch hostUpdate.Action {
  348. case models.CheckIn:
  349. sendPeerUpdate = mq.HandleHostCheckin(&hostUpdate.Host, currentHost)
  350. case models.UpdateHost:
  351. if hostUpdate.Host.PublicKey != currentHost.PublicKey {
  352. //remove old peer entry
  353. replacePeers = true
  354. }
  355. sendPeerUpdate = logic.UpdateHostFromClient(&hostUpdate.Host, currentHost)
  356. err := logic.UpsertHost(currentHost)
  357. if err != nil {
  358. slog.Error("failed to update host", "id", currentHost.ID, "error", err)
  359. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  360. return
  361. }
  362. case models.UpdateMetrics:
  363. mq.UpdateMetricsFallBack(hostUpdate.Node.ID.String(), hostUpdate.NewMetrics)
  364. }
  365. if sendPeerUpdate {
  366. err := mq.PublishPeerUpdate(replacePeers)
  367. if err != nil {
  368. slog.Error("failed to publish peer update", "error", err)
  369. }
  370. }
  371. logic.ReturnSuccessResponse(w, r, "updated host data")
  372. }
  373. // @Summary Deletes a Netclient host from Netmaker server
  374. // @Router /api/hosts/{hostid} [delete]
  375. // @Tags Hosts
  376. // @Security oauth
  377. // @Param hostid path string true "Host ID"
  378. // @Param force query bool false "Force delete"
  379. // @Success 200 {object} models.ApiHost
  380. // @Failure 500 {object} models.ErrorResponse
  381. func deleteHost(w http.ResponseWriter, r *http.Request) {
  382. var params = mux.Vars(r)
  383. hostid := params["hostid"]
  384. forceDelete := r.URL.Query().Get("force") == "true"
  385. // confirm host exists
  386. currHost, err := logic.GetHost(hostid)
  387. if err != nil {
  388. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  389. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  390. return
  391. }
  392. for _, nodeID := range currHost.Nodes {
  393. node, err := logic.GetNodeByID(nodeID)
  394. if err != nil {
  395. slog.Error("failed to get node", "nodeid", nodeID, "error", err)
  396. continue
  397. }
  398. var gwClients []models.ExtClient
  399. if node.IsIngressGateway {
  400. gwClients = logic.GetGwExtclients(node.ID.String(), node.Network)
  401. }
  402. go mq.PublishMqUpdatesForDeletedNode(node, false, gwClients)
  403. }
  404. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  405. // delete EMQX credentials for host
  406. if err := mq.GetEmqxHandler().DeleteEmqxUser(currHost.ID.String()); err != nil {
  407. slog.Error(
  408. "failed to remove host credentials from EMQX",
  409. "id",
  410. currHost.ID,
  411. "error",
  412. err,
  413. )
  414. }
  415. }
  416. if err = mq.HostUpdate(&models.HostUpdate{
  417. Action: models.DeleteHost,
  418. Host: *currHost,
  419. }); err != nil {
  420. logger.Log(
  421. 0,
  422. r.Header.Get("user"),
  423. "failed to send delete host update: ",
  424. currHost.ID.String(),
  425. err.Error(),
  426. )
  427. }
  428. if err = logic.RemoveHost(currHost, forceDelete); err != nil {
  429. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  430. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  431. return
  432. }
  433. // delete if any pending reqs
  434. (&schema.PendingHost{
  435. HostID: currHost.ID.String(),
  436. }).DeleteAllPendingHosts(db.WithContext(r.Context()))
  437. logic.LogEvent(&models.Event{
  438. Action: models.Delete,
  439. Source: models.Subject{
  440. ID: r.Header.Get("user"),
  441. Name: r.Header.Get("user"),
  442. Type: models.UserSub,
  443. },
  444. TriggeredBy: r.Header.Get("user"),
  445. Target: models.Subject{
  446. ID: currHost.ID.String(),
  447. Name: currHost.Name,
  448. Type: models.DeviceSub,
  449. },
  450. Origin: models.Dashboard,
  451. })
  452. apiHostData := currHost.ConvertNMHostToAPI()
  453. logger.Log(2, r.Header.Get("user"), "removed host", currHost.Name)
  454. w.WriteHeader(http.StatusOK)
  455. json.NewEncoder(w).Encode(apiHostData)
  456. }
  457. // @Summary To Add Host To Network
  458. // @Router /api/hosts/{hostid}/networks/{network} [post]
  459. // @Tags Hosts
  460. // @Security oauth
  461. // @Param hostid path string true "Host ID"
  462. // @Param network path string true "Network name"
  463. // @Success 200 {string} string "OK"
  464. // @Failure 500 {object} models.ErrorResponse
  465. func addHostToNetwork(w http.ResponseWriter, r *http.Request) {
  466. var params = mux.Vars(r)
  467. hostid := params["hostid"]
  468. network := params["network"]
  469. if hostid == "" || network == "" {
  470. logic.ReturnErrorResponse(
  471. w,
  472. r,
  473. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  474. )
  475. return
  476. }
  477. // confirm host exists
  478. currHost, err := logic.GetHost(hostid)
  479. if err != nil {
  480. logger.Log(0, r.Header.Get("user"), "failed to find host:", hostid, err.Error())
  481. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  482. return
  483. }
  484. newNode, err := logic.UpdateHostNetwork(currHost, network, true)
  485. if err != nil {
  486. logger.Log(
  487. 0,
  488. r.Header.Get("user"),
  489. "failed to add host to network:",
  490. hostid,
  491. network,
  492. err.Error(),
  493. )
  494. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  495. return
  496. }
  497. logger.Log(1, "added new node", newNode.ID.String(), "to host", currHost.Name)
  498. if currHost.IsDefault {
  499. // make host failover
  500. logic.CreateFailOver(*newNode)
  501. // make host remote access gateway
  502. logic.CreateIngressGateway(network, newNode.ID.String(), models.IngressRequest{})
  503. logic.CreateRelay(models.RelayRequest{
  504. NodeID: newNode.ID.String(),
  505. NetID: network,
  506. })
  507. }
  508. go func() {
  509. mq.HostUpdate(&models.HostUpdate{
  510. Action: models.JoinHostToNetwork,
  511. Host: *currHost,
  512. Node: *newNode,
  513. })
  514. mq.PublishPeerUpdate(false)
  515. if servercfg.IsDNSMode() {
  516. logic.SetDNS()
  517. }
  518. }()
  519. logger.Log(
  520. 2,
  521. r.Header.Get("user"),
  522. fmt.Sprintf("added host %s to network %s", currHost.Name, network),
  523. )
  524. logic.LogEvent(&models.Event{
  525. Action: models.JoinHostToNet,
  526. Source: models.Subject{
  527. ID: r.Header.Get("user"),
  528. Name: r.Header.Get("user"),
  529. Type: models.UserSub,
  530. },
  531. TriggeredBy: r.Header.Get("user"),
  532. Target: models.Subject{
  533. ID: currHost.ID.String(),
  534. Name: currHost.Name,
  535. Type: models.DeviceSub,
  536. },
  537. NetworkID: models.NetworkID(network),
  538. Origin: models.Dashboard,
  539. })
  540. w.WriteHeader(http.StatusOK)
  541. }
  542. // @Summary To Remove Host from Network
  543. // @Router /api/hosts/{hostid}/networks/{network} [delete]
  544. // @Tags Hosts
  545. // @Security oauth
  546. // @Param hostid path string true "Host ID"
  547. // @Param network path string true "Network name"
  548. // @Param force query bool false "Force delete"
  549. // @Success 200 {string} string "OK"
  550. // @Failure 500 {object} models.ErrorResponse
  551. func deleteHostFromNetwork(w http.ResponseWriter, r *http.Request) {
  552. var params = mux.Vars(r)
  553. hostid := params["hostid"]
  554. network := params["network"]
  555. forceDelete := r.URL.Query().Get("force") == "true"
  556. if hostid == "" || network == "" {
  557. logic.ReturnErrorResponse(
  558. w,
  559. r,
  560. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  561. )
  562. return
  563. }
  564. // confirm host exists
  565. currHost, err := logic.GetHost(hostid)
  566. if err != nil {
  567. if database.IsEmptyRecord(err) {
  568. // check if there is any daemon nodes that needs to be deleted
  569. node, err := logic.GetNodeByHostRef(hostid, network)
  570. if err != nil {
  571. slog.Error(
  572. "couldn't get node for host",
  573. "hostid",
  574. hostid,
  575. "network",
  576. network,
  577. "error",
  578. err,
  579. )
  580. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  581. return
  582. }
  583. if err = logic.DeleteNodeByID(&node); err != nil {
  584. slog.Error("failed to force delete daemon node",
  585. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  586. logic.ReturnErrorResponse(
  587. w,
  588. r,
  589. logic.FormatError(
  590. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  591. "internal",
  592. ),
  593. )
  594. return
  595. }
  596. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  597. return
  598. }
  599. logger.Log(0, r.Header.Get("user"), "failed to find host:", err.Error())
  600. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  601. return
  602. }
  603. node, err := logic.UpdateHostNetwork(currHost, network, false)
  604. if err != nil {
  605. if node == nil && forceDelete {
  606. // force cleanup the node
  607. node, err := logic.GetNodeByHostRef(hostid, network)
  608. if err != nil {
  609. slog.Error(
  610. "couldn't get node for host",
  611. "hostid",
  612. hostid,
  613. "network",
  614. network,
  615. "error",
  616. err,
  617. )
  618. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  619. return
  620. }
  621. if err = logic.DeleteNodeByID(&node); err != nil {
  622. slog.Error("failed to force delete daemon node",
  623. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  624. logic.ReturnErrorResponse(
  625. w,
  626. r,
  627. logic.FormatError(
  628. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  629. "internal",
  630. ),
  631. )
  632. return
  633. }
  634. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  635. return
  636. }
  637. logger.Log(
  638. 0,
  639. r.Header.Get("user"),
  640. "failed to remove host from network:",
  641. hostid,
  642. network,
  643. err.Error(),
  644. )
  645. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  646. return
  647. }
  648. var gwClients []models.ExtClient
  649. if node.IsIngressGateway {
  650. gwClients = logic.GetGwExtclients(node.ID.String(), node.Network)
  651. }
  652. logger.Log(1, "deleting node", node.ID.String(), "from host", currHost.Name)
  653. if err := logic.DeleteNode(node, forceDelete); err != nil {
  654. logic.ReturnErrorResponse(
  655. w,
  656. r,
  657. logic.FormatError(fmt.Errorf("failed to delete node"), "internal"),
  658. )
  659. return
  660. }
  661. go func() {
  662. mq.PublishMqUpdatesForDeletedNode(*node, true, gwClients)
  663. if servercfg.IsDNSMode() {
  664. logic.SetDNS()
  665. }
  666. }()
  667. logic.LogEvent(&models.Event{
  668. Action: models.RemoveHostFromNet,
  669. Source: models.Subject{
  670. ID: r.Header.Get("user"),
  671. Name: r.Header.Get("user"),
  672. Type: models.UserSub,
  673. },
  674. TriggeredBy: r.Header.Get("user"),
  675. Target: models.Subject{
  676. ID: currHost.ID.String(),
  677. Name: currHost.Name,
  678. Type: models.DeviceSub,
  679. },
  680. NetworkID: models.NetworkID(network),
  681. Origin: models.Dashboard,
  682. })
  683. logger.Log(
  684. 2,
  685. r.Header.Get("user"),
  686. fmt.Sprintf("removed host %s from network %s", currHost.Name, network),
  687. )
  688. w.WriteHeader(http.StatusOK)
  689. }
  690. // @Summary To Fetch Auth Token for a Host
  691. // @Router /api/hosts/adm/authenticate [post]
  692. // @Tags Auth
  693. // @Accept json
  694. // @Param body body models.AuthParams true "Authentication parameters"
  695. // @Success 200 {object} models.SuccessResponse
  696. // @Failure 400 {object} models.ErrorResponse
  697. // @Failure 401 {object} models.ErrorResponse
  698. // @Failure 500 {object} models.ErrorResponse
  699. func authenticateHost(response http.ResponseWriter, request *http.Request) {
  700. var authRequest models.AuthParams
  701. var errorResponse = models.ErrorResponse{
  702. Code: http.StatusInternalServerError, Message: "W1R3: It's not you it's me.",
  703. }
  704. decoder := json.NewDecoder(request.Body)
  705. decoderErr := decoder.Decode(&authRequest)
  706. defer request.Body.Close()
  707. if decoderErr != nil {
  708. errorResponse.Code = http.StatusBadRequest
  709. errorResponse.Message = decoderErr.Error()
  710. logger.Log(0, request.Header.Get("user"), "error decoding request body: ",
  711. decoderErr.Error())
  712. logic.ReturnErrorResponse(response, request, errorResponse)
  713. return
  714. }
  715. errorResponse.Code = http.StatusBadRequest
  716. if authRequest.ID == "" {
  717. errorResponse.Message = "W1R3: ID can't be empty"
  718. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  719. logic.ReturnErrorResponse(response, request, errorResponse)
  720. return
  721. } else if authRequest.Password == "" {
  722. errorResponse.Message = "W1R3: Password can't be empty"
  723. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  724. logic.ReturnErrorResponse(response, request, errorResponse)
  725. return
  726. }
  727. host, err := logic.GetHost(authRequest.ID)
  728. if err != nil {
  729. errorResponse.Code = http.StatusBadRequest
  730. errorResponse.Message = err.Error()
  731. logger.Log(0, request.Header.Get("user"),
  732. "error retrieving host: ", authRequest.ID, err.Error())
  733. logic.ReturnErrorResponse(response, request, errorResponse)
  734. return
  735. }
  736. err = bcrypt.CompareHashAndPassword([]byte(host.HostPass), []byte(authRequest.Password))
  737. if err != nil {
  738. errorResponse.Code = http.StatusUnauthorized
  739. errorResponse.Message = "unauthorized"
  740. logger.Log(0, request.Header.Get("user"),
  741. "error validating user password: ", err.Error())
  742. logic.ReturnErrorResponse(response, request, errorResponse)
  743. return
  744. }
  745. tokenString, err := logic.CreateJWT(authRequest.ID, authRequest.MacAddress, "")
  746. if tokenString == "" {
  747. errorResponse.Code = http.StatusUnauthorized
  748. errorResponse.Message = "unauthorized"
  749. logger.Log(0, request.Header.Get("user"),
  750. fmt.Sprintf("%s: %v", errorResponse.Message, err))
  751. logic.ReturnErrorResponse(response, request, errorResponse)
  752. return
  753. }
  754. var successResponse = models.SuccessResponse{
  755. Code: http.StatusOK,
  756. Message: "W1R3: Host " + authRequest.ID + " Authorized",
  757. Response: models.SuccessfulLoginResponse{
  758. AuthToken: tokenString,
  759. ID: authRequest.ID,
  760. },
  761. }
  762. successJSONResponse, jsonError := json.Marshal(successResponse)
  763. if jsonError != nil {
  764. errorResponse.Code = http.StatusBadRequest
  765. errorResponse.Message = err.Error()
  766. logger.Log(0, request.Header.Get("user"),
  767. "error marshalling resp: ", err.Error())
  768. logic.ReturnErrorResponse(response, request, errorResponse)
  769. return
  770. }
  771. go func() {
  772. // Create EMQX creds
  773. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  774. if err := mq.GetEmqxHandler().CreateEmqxUser(host.ID.String(), authRequest.Password); err != nil {
  775. slog.Error("failed to create host credentials for EMQX: ", err.Error())
  776. }
  777. }
  778. }()
  779. response.WriteHeader(http.StatusOK)
  780. response.Header().Set("Content-Type", "application/json")
  781. response.Write(successJSONResponse)
  782. }
  783. // @Summary Send signal to peer
  784. // @Router /api/v1/host/{hostid}/signalpeer [post]
  785. // @Tags Hosts
  786. // @Security oauth
  787. // @Param hostid path string true "Host ID"
  788. // @Param body body models.Signal true "Signal data"
  789. // @Success 200 {object} models.Signal
  790. // @Failure 400 {object} models.ErrorResponse
  791. func signalPeer(w http.ResponseWriter, r *http.Request) {
  792. var params = mux.Vars(r)
  793. hostid := params["hostid"]
  794. // confirm host exists
  795. _, err := logic.GetHost(hostid)
  796. if err != nil {
  797. logger.Log(0, r.Header.Get("user"), "failed to get host:", err.Error())
  798. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  799. return
  800. }
  801. var signal models.Signal
  802. w.Header().Set("Content-Type", "application/json")
  803. err = json.NewDecoder(r.Body).Decode(&signal)
  804. if err != nil {
  805. logger.Log(0, r.Header.Get("user"), "error decoding request body: ", err.Error())
  806. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  807. return
  808. }
  809. if signal.ToHostPubKey == "" {
  810. msg := "insufficient data to signal peer"
  811. logger.Log(0, r.Header.Get("user"), msg)
  812. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New(msg), "badrequest"))
  813. return
  814. }
  815. signal.IsPro = servercfg.IsPro
  816. peerHost, err := logic.GetHost(signal.ToHostID)
  817. if err != nil {
  818. logic.ReturnErrorResponse(
  819. w,
  820. r,
  821. logic.FormatError(errors.New("failed to signal, peer not found"), "badrequest"),
  822. )
  823. return
  824. }
  825. err = mq.HostUpdate(&models.HostUpdate{
  826. Action: models.SignalHost,
  827. Host: *peerHost,
  828. Signal: signal,
  829. })
  830. if err != nil {
  831. logic.ReturnErrorResponse(
  832. w,
  833. r,
  834. logic.FormatError(
  835. errors.New("failed to publish signal to peer: "+err.Error()),
  836. "badrequest",
  837. ),
  838. )
  839. return
  840. }
  841. w.WriteHeader(http.StatusOK)
  842. json.NewEncoder(w).Encode(signal)
  843. }
  844. // @Summary Update keys for all hosts
  845. // @Router /api/hosts/keys [put]
  846. // @Tags Hosts
  847. // @Security oauth
  848. // @Success 200 {string} string "OK"
  849. // @Failure 400 {object} models.ErrorResponse
  850. func updateAllKeys(w http.ResponseWriter, r *http.Request) {
  851. var errorResponse = models.ErrorResponse{}
  852. w.Header().Set("Content-Type", "application/json")
  853. hosts, err := logic.GetAllHosts()
  854. if err != nil {
  855. errorResponse.Code = http.StatusBadRequest
  856. errorResponse.Message = err.Error()
  857. logger.Log(0, r.Header.Get("user"),
  858. "error retrieving hosts ", err.Error())
  859. logic.ReturnErrorResponse(w, r, errorResponse)
  860. return
  861. }
  862. go func() {
  863. hostUpdate := models.HostUpdate{}
  864. hostUpdate.Action = models.UpdateKeys
  865. for _, host := range hosts {
  866. hostUpdate.Host = host
  867. logger.Log(2, "updating host", host.ID.String(), " for a key update")
  868. if err = mq.HostUpdate(&hostUpdate); err != nil {
  869. logger.Log(
  870. 0,
  871. "failed to send update to node during a network wide key update",
  872. host.ID.String(),
  873. err.Error(),
  874. )
  875. }
  876. }
  877. }()
  878. logic.LogEvent(&models.Event{
  879. Action: models.RefreshAllKeys,
  880. Source: models.Subject{
  881. ID: r.Header.Get("user"),
  882. Name: r.Header.Get("user"),
  883. Type: models.UserSub,
  884. },
  885. TriggeredBy: r.Header.Get("user"),
  886. Target: models.Subject{
  887. ID: "All Devices",
  888. Name: "All Devices",
  889. Type: models.DeviceSub,
  890. },
  891. Origin: models.Dashboard,
  892. })
  893. logger.Log(2, r.Header.Get("user"), "updated keys for all hosts")
  894. w.WriteHeader(http.StatusOK)
  895. }
  896. // @Summary Update keys for a host
  897. // @Router /api/hosts/{hostid}/keys [put]
  898. // @Tags Hosts
  899. // @Security oauth
  900. // @Param hostid path string true "Host ID"
  901. // @Success 200 {string} string "OK"
  902. // @Failure 400 {object} models.ErrorResponse
  903. func updateKeys(w http.ResponseWriter, r *http.Request) {
  904. var errorResponse = models.ErrorResponse{}
  905. w.Header().Set("Content-Type", "application/json")
  906. var params = mux.Vars(r)
  907. hostid := params["hostid"]
  908. host, err := logic.GetHost(hostid)
  909. if err != nil {
  910. logger.Log(0, "failed to retrieve host", hostid, err.Error())
  911. errorResponse.Code = http.StatusBadRequest
  912. errorResponse.Message = err.Error()
  913. logger.Log(0, r.Header.Get("user"),
  914. "error retrieving hosts ", err.Error())
  915. logic.ReturnErrorResponse(w, r, errorResponse)
  916. return
  917. }
  918. go func() {
  919. hostUpdate := models.HostUpdate{
  920. Action: models.UpdateKeys,
  921. Host: *host,
  922. }
  923. if err = mq.HostUpdate(&hostUpdate); err != nil {
  924. logger.Log(0, "failed to send host key update", host.ID.String(), err.Error())
  925. }
  926. }()
  927. logic.LogEvent(&models.Event{
  928. Action: models.RefreshKey,
  929. Source: models.Subject{
  930. ID: r.Header.Get("user"),
  931. Name: r.Header.Get("user"),
  932. Type: models.UserSub,
  933. },
  934. TriggeredBy: r.Header.Get("user"),
  935. Target: models.Subject{
  936. ID: host.ID.String(),
  937. Name: host.Name,
  938. Type: models.DeviceSub,
  939. },
  940. Origin: models.Dashboard,
  941. })
  942. logger.Log(2, r.Header.Get("user"), "updated key on host", host.Name)
  943. w.WriteHeader(http.StatusOK)
  944. }
  945. // @Summary Requests all the hosts to pull
  946. // @Router /api/hosts/sync [post]
  947. // @Tags Hosts
  948. // @Security oauth
  949. // @Success 200 {string} string "sync all hosts request received"
  950. func syncHosts(w http.ResponseWriter, r *http.Request) {
  951. w.Header().Set("Content-Type", "application/json")
  952. user := r.Header.Get("user")
  953. go func() {
  954. slog.Info("requesting all hosts to sync", "user", user)
  955. hosts, err := logic.GetAllHosts()
  956. if err != nil {
  957. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  958. return
  959. }
  960. for _, host := range hosts {
  961. go func(host models.Host) {
  962. hostUpdate := models.HostUpdate{
  963. Action: models.RequestPull,
  964. Host: host,
  965. }
  966. if err = mq.HostUpdate(&hostUpdate); err != nil {
  967. slog.Error("failed to request host to sync", "user", user, "host", host.ID.String(), "error", err)
  968. } else {
  969. slog.Info("host sync requested", "user", user, "host", host.ID.String())
  970. }
  971. }(host)
  972. time.Sleep(time.Millisecond * 100)
  973. }
  974. }()
  975. logic.LogEvent(&models.Event{
  976. Action: models.SyncAll,
  977. Source: models.Subject{
  978. ID: r.Header.Get("user"),
  979. Name: r.Header.Get("user"),
  980. Type: models.UserSub,
  981. },
  982. TriggeredBy: r.Header.Get("user"),
  983. Target: models.Subject{
  984. ID: "All Devices",
  985. Name: "All Devices",
  986. Type: models.DeviceSub,
  987. },
  988. Origin: models.Dashboard,
  989. })
  990. slog.Info("sync all hosts request received", "user", user)
  991. logic.ReturnSuccessResponse(w, r, "sync all hosts request received")
  992. }
  993. // @Summary Requests a host to pull
  994. // @Router /api/hosts/{hostid}/sync [post]
  995. // @Tags Hosts
  996. // @Security oauth
  997. // @Param hostid path string true "Host ID"
  998. // @Success 200 {string} string "OK"
  999. // @Failure 400 {object} models.ErrorResponse
  1000. func syncHost(w http.ResponseWriter, r *http.Request) {
  1001. hostId := mux.Vars(r)["hostid"]
  1002. var errorResponse = models.ErrorResponse{}
  1003. w.Header().Set("Content-Type", "application/json")
  1004. host, err := logic.GetHost(hostId)
  1005. if err != nil {
  1006. slog.Error("failed to retrieve host", "user", r.Header.Get("user"), "error", err)
  1007. errorResponse.Code = http.StatusBadRequest
  1008. errorResponse.Message = err.Error()
  1009. logic.ReturnErrorResponse(w, r, errorResponse)
  1010. return
  1011. }
  1012. go func() {
  1013. hostUpdate := models.HostUpdate{
  1014. Action: models.RequestPull,
  1015. Host: *host,
  1016. }
  1017. if err = mq.HostUpdate(&hostUpdate); err != nil {
  1018. slog.Error("failed to send host pull request", "host", host.ID.String(), "error", err)
  1019. }
  1020. }()
  1021. logic.LogEvent(&models.Event{
  1022. Action: models.Sync,
  1023. Source: models.Subject{
  1024. ID: r.Header.Get("user"),
  1025. Name: r.Header.Get("user"),
  1026. Type: models.UserSub,
  1027. },
  1028. TriggeredBy: r.Header.Get("user"),
  1029. Target: models.Subject{
  1030. ID: host.ID.String(),
  1031. Name: host.Name,
  1032. Type: models.DeviceSub,
  1033. },
  1034. Origin: models.Dashboard,
  1035. })
  1036. slog.Info("requested host pull", "user", r.Header.Get("user"), "host", host.ID.String())
  1037. w.WriteHeader(http.StatusOK)
  1038. }
  1039. // @Summary Deletes all EMQX hosts
  1040. // @Router /api/emqx/hosts [delete]
  1041. // @Tags Hosts
  1042. // @Security oauth
  1043. // @Success 200 {string} string "deleted hosts data on emqx"
  1044. // @Failure 500 {object} models.ErrorResponse
  1045. func delEmqxHosts(w http.ResponseWriter, r *http.Request) {
  1046. currentHosts, err := logic.GetAllHosts()
  1047. if err != nil {
  1048. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  1049. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  1050. return
  1051. }
  1052. for _, host := range currentHosts {
  1053. // delete EMQX credentials for host
  1054. if err := mq.GetEmqxHandler().DeleteEmqxUser(host.ID.String()); err != nil {
  1055. slog.Error("failed to remove host credentials from EMQX", "id", host.ID, "error", err)
  1056. }
  1057. }
  1058. err = mq.GetEmqxHandler().DeleteEmqxUser(servercfg.GetMqUserName())
  1059. if err != nil {
  1060. slog.Error(
  1061. "failed to remove server credentials from EMQX",
  1062. "user",
  1063. servercfg.GetMqUserName(),
  1064. "error",
  1065. err,
  1066. )
  1067. }
  1068. logic.ReturnSuccessResponse(w, r, "deleted hosts data on emqx")
  1069. }
  1070. // @Summary Fetches host peerinfo
  1071. // @Router /api/host/{hostid}/peer_info [get]
  1072. // @Tags Hosts
  1073. // @Security oauth
  1074. // @Param hostid path string true "Host ID"
  1075. // @Success 200 {object} models.SuccessResponse
  1076. // @Failure 500 {object} models.ErrorResponse
  1077. func getHostPeerInfo(w http.ResponseWriter, r *http.Request) {
  1078. hostId := mux.Vars(r)["hostid"]
  1079. var errorResponse = models.ErrorResponse{}
  1080. host, err := logic.GetHost(hostId)
  1081. if err != nil {
  1082. slog.Error("failed to retrieve host", "error", err)
  1083. errorResponse.Code = http.StatusBadRequest
  1084. errorResponse.Message = err.Error()
  1085. logic.ReturnErrorResponse(w, r, errorResponse)
  1086. return
  1087. }
  1088. peerInfo, err := logic.GetHostPeerInfo(host)
  1089. if err != nil {
  1090. slog.Error("failed to retrieve host peerinfo", "error", err)
  1091. errorResponse.Code = http.StatusBadRequest
  1092. errorResponse.Message = err.Error()
  1093. logic.ReturnErrorResponse(w, r, errorResponse)
  1094. return
  1095. }
  1096. logic.ReturnSuccessResponseWithJson(w, r, peerInfo, "fetched host peer info")
  1097. }
  1098. // @Summary List pending hosts in a network
  1099. // @Router /api/v1/pending_hosts [get]
  1100. // @Tags Hosts
  1101. // @Security oauth
  1102. // @Success 200 {array} schema.PendingHost
  1103. // @Failure 500 {object} models.ErrorResponse
  1104. func getPendingHosts(w http.ResponseWriter, r *http.Request) {
  1105. netID := r.URL.Query().Get("network")
  1106. if netID == "" {
  1107. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New("network id param is missing"), "badrequest"))
  1108. return
  1109. }
  1110. pendingHosts, err := (&schema.PendingHost{
  1111. Network: netID,
  1112. }).List(db.WithContext(r.Context()))
  1113. if err != nil {
  1114. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1115. Code: http.StatusBadRequest,
  1116. Message: err.Error(),
  1117. })
  1118. return
  1119. }
  1120. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  1121. logic.ReturnSuccessResponseWithJson(w, r, pendingHosts, "returned pending hosts in "+netID)
  1122. }
  1123. // @Summary approve pending hosts in a network
  1124. // @Router /api/v1/pending_hosts/approve/{id} [post]
  1125. // @Tags Hosts
  1126. // @Security oauth
  1127. // @Success 200 {array} models.ApiNode
  1128. // @Failure 500 {object} models.ErrorResponse
  1129. func approvePendingHost(w http.ResponseWriter, r *http.Request) {
  1130. id := mux.Vars(r)["id"]
  1131. p := &schema.PendingHost{ID: id}
  1132. err := p.Get(db.WithContext(r.Context()))
  1133. if err != nil {
  1134. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1135. Code: http.StatusBadRequest,
  1136. Message: err.Error(),
  1137. })
  1138. return
  1139. }
  1140. h, err := logic.GetHost(p.HostID)
  1141. if err != nil {
  1142. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1143. Code: http.StatusBadRequest,
  1144. Message: err.Error(),
  1145. })
  1146. return
  1147. }
  1148. key := models.EnrollmentKey{}
  1149. json.Unmarshal(p.EnrollmentKey, &key)
  1150. newNode, err := logic.UpdateHostNetwork(h, p.Network, true)
  1151. if err != nil {
  1152. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1153. Code: http.StatusBadRequest,
  1154. Message: err.Error(),
  1155. })
  1156. return
  1157. }
  1158. if len(key.Groups) > 0 {
  1159. newNode.Tags = make(map[models.TagID]struct{})
  1160. for _, tagI := range key.Groups {
  1161. newNode.Tags[tagI] = struct{}{}
  1162. }
  1163. logic.UpsertNode(newNode)
  1164. }
  1165. if key.Relay != uuid.Nil && !newNode.IsRelayed {
  1166. // check if relay node exists and acting as relay
  1167. relaynode, err := logic.GetNodeByID(key.Relay.String())
  1168. if err == nil && relaynode.IsGw && relaynode.Network == newNode.Network {
  1169. slog.Error(fmt.Sprintf("adding relayed node %s to relay %s on network %s", newNode.ID.String(), key.Relay.String(), p.Network))
  1170. newNode.IsRelayed = true
  1171. newNode.RelayedBy = key.Relay.String()
  1172. updatedRelayNode := relaynode
  1173. updatedRelayNode.RelayedNodes = append(updatedRelayNode.RelayedNodes, newNode.ID.String())
  1174. logic.UpdateRelayed(&relaynode, &updatedRelayNode)
  1175. if err := logic.UpsertNode(&updatedRelayNode); err != nil {
  1176. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1177. }
  1178. if err := logic.UpsertNode(newNode); err != nil {
  1179. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1180. }
  1181. } else {
  1182. slog.Error("failed to relay node. maybe specified relay node is actually not a relay? Or the relayed node is not in the same network with relay?", "err", err)
  1183. }
  1184. }
  1185. logger.Log(1, "added new node", newNode.ID.String(), "to host", h.Name)
  1186. hostactions.AddAction(models.HostUpdate{
  1187. Action: models.JoinHostToNetwork,
  1188. Host: *h,
  1189. Node: *newNode,
  1190. })
  1191. if h.IsDefault {
  1192. // make host failover
  1193. logic.CreateFailOver(*newNode)
  1194. // make host remote access gateway
  1195. logic.CreateIngressGateway(p.Network, newNode.ID.String(), models.IngressRequest{})
  1196. logic.CreateRelay(models.RelayRequest{
  1197. NodeID: newNode.ID.String(),
  1198. NetID: p.Network,
  1199. })
  1200. }
  1201. p.Delete(db.WithContext(r.Context()))
  1202. go mq.PublishPeerUpdate(false)
  1203. logic.ReturnSuccessResponseWithJson(w, r, newNode.ConvertToAPINode(), "added pending host to "+p.Network)
  1204. }
  1205. // @Summary reject pending hosts in a network
  1206. // @Router /api/v1/pending_hosts/reject/{id} [post]
  1207. // @Tags Hosts
  1208. // @Security oauth
  1209. // @Success 200 {array} models.ApiNode
  1210. // @Failure 500 {object} models.ErrorResponse
  1211. func rejectPendingHost(w http.ResponseWriter, r *http.Request) {
  1212. id := mux.Vars(r)["id"]
  1213. p := &schema.PendingHost{ID: id}
  1214. err := p.Get(db.WithContext(r.Context()))
  1215. if err != nil {
  1216. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1217. Code: http.StatusBadRequest,
  1218. Message: err.Error(),
  1219. })
  1220. return
  1221. }
  1222. err = p.Delete(db.WithContext(r.Context()))
  1223. if err != nil {
  1224. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1225. Code: http.StatusBadRequest,
  1226. Message: err.Error(),
  1227. })
  1228. return
  1229. }
  1230. logic.ReturnSuccessResponseWithJson(w, r, p, "deleted pending host from "+p.Network)
  1231. }