2
0

hosts.go 41 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311
  1. package controller
  2. import (
  3. "encoding/json"
  4. "errors"
  5. "fmt"
  6. "net/http"
  7. "time"
  8. "github.com/google/uuid"
  9. "github.com/gorilla/mux"
  10. "github.com/gravitl/netmaker/database"
  11. "github.com/gravitl/netmaker/db"
  12. "github.com/gravitl/netmaker/logger"
  13. "github.com/gravitl/netmaker/logic"
  14. "github.com/gravitl/netmaker/logic/hostactions"
  15. "github.com/gravitl/netmaker/models"
  16. "github.com/gravitl/netmaker/mq"
  17. "github.com/gravitl/netmaker/schema"
  18. "github.com/gravitl/netmaker/servercfg"
  19. "golang.org/x/crypto/bcrypt"
  20. "golang.org/x/exp/slog"
  21. )
  22. func hostHandlers(r *mux.Router) {
  23. r.HandleFunc("/api/hosts", logic.SecurityCheck(true, http.HandlerFunc(getHosts))).
  24. Methods(http.MethodGet)
  25. r.HandleFunc("/api/hosts/keys", logic.SecurityCheck(true, http.HandlerFunc(updateAllKeys))).
  26. Methods(http.MethodPut)
  27. r.HandleFunc("/api/hosts/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHosts))).
  28. Methods(http.MethodPost)
  29. r.HandleFunc("/api/hosts/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHosts))).
  30. Methods(http.MethodPost)
  31. r.HandleFunc("/api/hosts/{hostid}/keys", logic.SecurityCheck(true, http.HandlerFunc(updateKeys))).
  32. Methods(http.MethodPut)
  33. r.HandleFunc("/api/hosts/{hostid}/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHost))).
  34. Methods(http.MethodPost)
  35. r.HandleFunc("/api/hosts/{hostid}", logic.SecurityCheck(true, http.HandlerFunc(updateHost))).
  36. Methods(http.MethodPut)
  37. r.HandleFunc("/api/hosts/{hostid}", Authorize(true, false, "all", http.HandlerFunc(deleteHost))).
  38. Methods(http.MethodDelete)
  39. r.HandleFunc("/api/hosts/{hostid}/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHost))).
  40. Methods(http.MethodPut)
  41. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(addHostToNetwork))).
  42. Methods(http.MethodPost)
  43. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(deleteHostFromNetwork))).
  44. Methods(http.MethodDelete)
  45. r.HandleFunc("/api/hosts/adm/authenticate", authenticateHost).Methods(http.MethodPost)
  46. r.HandleFunc("/api/v1/host", Authorize(true, false, "host", http.HandlerFunc(pull))).
  47. Methods(http.MethodGet)
  48. r.HandleFunc("/api/v1/host/{hostid}/signalpeer", Authorize(true, false, "host", http.HandlerFunc(signalPeer))).
  49. Methods(http.MethodPost)
  50. r.HandleFunc("/api/v1/fallback/host/{hostid}", Authorize(true, false, "host", http.HandlerFunc(hostUpdateFallback))).
  51. Methods(http.MethodPut)
  52. r.HandleFunc("/api/v1/host/{hostid}/peer_info", Authorize(true, false, "host", http.HandlerFunc(getHostPeerInfo))).
  53. Methods(http.MethodGet)
  54. r.HandleFunc("/api/v1/pending_hosts", logic.SecurityCheck(true, http.HandlerFunc(getPendingHosts))).
  55. Methods(http.MethodGet)
  56. r.HandleFunc("/api/v1/pending_hosts/approve/{id}", logic.SecurityCheck(true, http.HandlerFunc(approvePendingHost))).
  57. Methods(http.MethodPost)
  58. r.HandleFunc("/api/v1/pending_hosts/reject/{id}", logic.SecurityCheck(true, http.HandlerFunc(rejectPendingHost))).
  59. Methods(http.MethodPost)
  60. r.HandleFunc("/api/emqx/hosts", logic.SecurityCheck(true, http.HandlerFunc(delEmqxHosts))).
  61. Methods(http.MethodDelete)
  62. r.HandleFunc("/api/v1/auth-register/host", socketHandler)
  63. }
  64. // @Summary Requests all the hosts to upgrade their version
  65. // @Router /api/hosts/upgrade [post]
  66. // @Tags Hosts
  67. // @Security oauth
  68. // @Param force query bool false "Force upgrade"
  69. // @Success 200 {string} string "upgrade all hosts request received"
  70. func upgradeHosts(w http.ResponseWriter, r *http.Request) {
  71. w.Header().Set("Content-Type", "application/json")
  72. action := models.Upgrade
  73. if r.URL.Query().Get("force") == "true" {
  74. action = models.ForceUpgrade
  75. }
  76. user := r.Header.Get("user")
  77. go func() {
  78. slog.Info("requesting all hosts to upgrade", "user", user)
  79. hosts, err := logic.GetAllHosts()
  80. if err != nil {
  81. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  82. return
  83. }
  84. for _, host := range hosts {
  85. go func(host models.Host) {
  86. hostUpdate := models.HostUpdate{
  87. Action: action,
  88. Host: host,
  89. }
  90. if err = mq.HostUpdate(&hostUpdate); err != nil {
  91. slog.Error("failed to request host to upgrade", "user", user, "host", host.ID.String(), "error", err)
  92. } else {
  93. slog.Info("host upgrade requested", "user", user, "host", host.ID.String())
  94. }
  95. }(host)
  96. }
  97. }()
  98. logic.LogEvent(&models.Event{
  99. Action: models.UpgradeAll,
  100. Source: models.Subject{
  101. ID: r.Header.Get("user"),
  102. Name: r.Header.Get("user"),
  103. Type: models.UserSub,
  104. },
  105. TriggeredBy: r.Header.Get("user"),
  106. Target: models.Subject{
  107. ID: "All Hosts",
  108. Name: "All Hosts",
  109. Type: models.DeviceSub,
  110. },
  111. Origin: models.Dashboard,
  112. })
  113. slog.Info("upgrade all hosts request received", "user", user)
  114. logic.ReturnSuccessResponse(w, r, "upgrade all hosts request received")
  115. }
  116. // @Summary Upgrade a host
  117. // @Router /api/hosts/{hostid}/upgrade [put]
  118. // @Tags Hosts
  119. // @Security oauth
  120. // @Param hostid path string true "Host ID"
  121. // @Param force query bool false "Force upgrade"
  122. // @Success 200 {string} string "passed message to upgrade host"
  123. // @Failure 500 {object} models.ErrorResponse
  124. // upgrade host is a handler to send upgrade message to a host
  125. func upgradeHost(w http.ResponseWriter, r *http.Request) {
  126. host, err := logic.GetHost(mux.Vars(r)["hostid"])
  127. if err != nil {
  128. slog.Error("failed to find host", "error", err)
  129. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "notfound"))
  130. return
  131. }
  132. action := models.Upgrade
  133. if r.URL.Query().Get("force") == "true" {
  134. action = models.ForceUpgrade
  135. }
  136. if err := mq.HostUpdate(&models.HostUpdate{Action: action, Host: *host}); err != nil {
  137. slog.Error("failed to upgrade host", "error", err)
  138. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  139. return
  140. }
  141. logic.ReturnSuccessResponse(w, r, "passed message to upgrade host")
  142. }
  143. // @Summary List all hosts
  144. // @Router /api/hosts [get]
  145. // @Tags Hosts
  146. // @Security oauth
  147. // @Success 200 {array} models.ApiHost
  148. // @Failure 500 {object} models.ErrorResponse
  149. func getHosts(w http.ResponseWriter, r *http.Request) {
  150. w.Header().Set("Content-Type", "application/json")
  151. currentHosts, err := logic.GetAllHosts()
  152. if err != nil {
  153. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  154. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  155. return
  156. }
  157. apiHosts := logic.GetAllHostsAPI(currentHosts[:])
  158. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  159. logic.SortApiHosts(apiHosts[:])
  160. w.WriteHeader(http.StatusOK)
  161. json.NewEncoder(w).Encode(apiHosts)
  162. }
  163. // @Summary Used by clients for "pull" command
  164. // @Router /api/v1/host [get]
  165. // @Tags Hosts
  166. // @Security oauth
  167. // @Success 200 {object} models.HostPull
  168. // @Failure 500 {object} models.ErrorResponse
  169. func pull(w http.ResponseWriter, r *http.Request) {
  170. hostID := r.Header.Get(hostIDHeader) // return JSON/API formatted keys
  171. if len(hostID) == 0 {
  172. logger.Log(0, "no host authorized to pull")
  173. logic.ReturnErrorResponse(
  174. w,
  175. r,
  176. logic.FormatError(fmt.Errorf("no host authorized to pull"), "internal"),
  177. )
  178. return
  179. }
  180. host, err := logic.GetHost(hostID)
  181. if err != nil {
  182. logger.Log(0, "no host found during pull", hostID)
  183. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  184. return
  185. }
  186. sendPeerUpdate := false
  187. for _, nodeID := range host.Nodes {
  188. node, err := logic.GetNodeByID(nodeID)
  189. if err != nil {
  190. slog.Error("failed to get node:", "id", node.ID, "error", err)
  191. continue
  192. }
  193. if node.FailedOverBy != uuid.Nil && r.URL.Query().Get("reset_failovered") == "true" {
  194. logic.ResetFailedOverPeer(&node)
  195. sendPeerUpdate = true
  196. }
  197. }
  198. if sendPeerUpdate {
  199. if err := mq.PublishPeerUpdate(false); err != nil {
  200. logger.Log(0, "fail to publish peer update: ", err.Error())
  201. }
  202. }
  203. allNodes, err := logic.GetAllNodes()
  204. if err != nil {
  205. logger.Log(0, "failed to get nodes: ", hostID)
  206. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  207. return
  208. }
  209. hPU, err := logic.GetPeerUpdateForHost("", host, allNodes, nil, nil)
  210. if err != nil {
  211. logger.Log(0, "could not pull peers for host", hostID, err.Error())
  212. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  213. return
  214. }
  215. serverConf := logic.GetServerInfo()
  216. key, keyErr := logic.RetrievePublicTrafficKey()
  217. if keyErr != nil {
  218. logger.Log(0, "error retrieving key:", keyErr.Error())
  219. logic.ReturnErrorResponse(w, r, logic.FormatError(keyErr, "internal"))
  220. return
  221. }
  222. _ = logic.CheckHostPorts(host)
  223. serverConf.TrafficKey = key
  224. response := models.HostPull{
  225. Host: *host,
  226. Nodes: logic.GetHostNodes(host),
  227. ServerConfig: serverConf,
  228. Peers: hPU.Peers,
  229. PeerIDs: hPU.PeerIDs,
  230. HostNetworkInfo: hPU.HostNetworkInfo,
  231. EgressRoutes: hPU.EgressRoutes,
  232. FwUpdate: hPU.FwUpdate,
  233. ChangeDefaultGw: hPU.ChangeDefaultGw,
  234. DefaultGwIp: hPU.DefaultGwIp,
  235. IsInternetGw: hPU.IsInternetGw,
  236. NameServers: hPU.NameServers,
  237. EgressWithDomains: hPU.EgressWithDomains,
  238. EndpointDetection: logic.IsEndpointDetectionEnabled(),
  239. DnsNameservers: hPU.DnsNameservers,
  240. }
  241. logger.Log(1, hostID, host.Name, "completed a pull")
  242. w.WriteHeader(http.StatusOK)
  243. json.NewEncoder(w).Encode(&response)
  244. }
  245. // @Summary Updates a Netclient host on Netmaker server
  246. // @Router /api/hosts/{hostid} [put]
  247. // @Tags Hosts
  248. // @Security oauth
  249. // @Param hostid path string true "Host ID"
  250. // @Param body body models.ApiHost true "New host data"
  251. // @Success 200 {object} models.ApiHost
  252. // @Failure 500 {object} models.ErrorResponse
  253. func updateHost(w http.ResponseWriter, r *http.Request) {
  254. var newHostData models.ApiHost
  255. err := json.NewDecoder(r.Body).Decode(&newHostData)
  256. if err != nil {
  257. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  258. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  259. return
  260. }
  261. // confirm host exists
  262. currHost, err := logic.GetHost(newHostData.ID)
  263. if err != nil {
  264. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  265. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  266. return
  267. }
  268. newHost := newHostData.ConvertAPIHostToNMHost(currHost)
  269. logic.UpdateHost(newHost, currHost) // update the in memory struct values
  270. if err = logic.UpsertHost(newHost); err != nil {
  271. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  272. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  273. return
  274. }
  275. // publish host update through MQ
  276. if err := mq.HostUpdate(&models.HostUpdate{
  277. Action: models.UpdateHost,
  278. Host: *newHost,
  279. }); err != nil {
  280. logger.Log(
  281. 0,
  282. r.Header.Get("user"),
  283. "failed to send host update: ",
  284. currHost.ID.String(),
  285. err.Error(),
  286. )
  287. }
  288. go func() {
  289. if err := mq.PublishPeerUpdate(false); err != nil {
  290. logger.Log(0, "fail to publish peer update: ", err.Error())
  291. }
  292. if newHost.Name != currHost.Name {
  293. if servercfg.IsDNSMode() {
  294. logic.SetDNS()
  295. }
  296. }
  297. }()
  298. logic.LogEvent(&models.Event{
  299. Action: models.Update,
  300. Source: models.Subject{
  301. ID: r.Header.Get("user"),
  302. Name: r.Header.Get("user"),
  303. Type: models.UserSub,
  304. },
  305. TriggeredBy: r.Header.Get("user"),
  306. Target: models.Subject{
  307. ID: currHost.ID.String(),
  308. Name: newHost.Name,
  309. Type: models.DeviceSub,
  310. },
  311. Diff: models.Diff{
  312. Old: currHost,
  313. New: newHost,
  314. },
  315. Origin: models.Dashboard,
  316. })
  317. apiHostData := newHost.ConvertNMHostToAPI()
  318. logger.Log(2, r.Header.Get("user"), "updated host", newHost.ID.String())
  319. w.WriteHeader(http.StatusOK)
  320. json.NewEncoder(w).Encode(apiHostData)
  321. }
  322. // @Summary Updates a Netclient host on Netmaker server
  323. // @Router /api/v1/fallback/host/{hostid} [put]
  324. // @Tags Hosts
  325. // @Security oauth
  326. // @Param hostid path string true "Host ID"
  327. // @Param body body models.HostUpdate true "Host update data"
  328. // @Success 200 {string} string "updated host data"
  329. // @Failure 500 {object} models.ErrorResponse
  330. func hostUpdateFallback(w http.ResponseWriter, r *http.Request) {
  331. var params = mux.Vars(r)
  332. hostid := params["hostid"]
  333. currentHost, err := logic.GetHost(hostid)
  334. if err != nil {
  335. slog.Error("error getting host", "id", hostid, "error", err)
  336. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  337. return
  338. }
  339. var sendPeerUpdate bool
  340. var replacePeers bool
  341. var hostUpdate models.HostUpdate
  342. err = json.NewDecoder(r.Body).Decode(&hostUpdate)
  343. if err != nil {
  344. slog.Error("failed to update a host:", "user", r.Header.Get("user"), "error", err.Error(), "host", currentHost.Name)
  345. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  346. return
  347. }
  348. slog.Info("recieved host update", "name", hostUpdate.Host.Name, "id", hostUpdate.Host.ID, "action", hostUpdate.Action)
  349. switch hostUpdate.Action {
  350. case models.CheckIn:
  351. sendPeerUpdate = mq.HandleHostCheckin(&hostUpdate.Host, currentHost)
  352. case models.UpdateHost:
  353. if hostUpdate.Host.PublicKey != currentHost.PublicKey {
  354. //remove old peer entry
  355. replacePeers = true
  356. }
  357. sendPeerUpdate = logic.UpdateHostFromClient(&hostUpdate.Host, currentHost)
  358. err := logic.UpsertHost(currentHost)
  359. if err != nil {
  360. slog.Error("failed to update host", "id", currentHost.ID, "error", err)
  361. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.Internal))
  362. return
  363. }
  364. case models.UpdateMetrics:
  365. mq.UpdateMetricsFallBack(hostUpdate.Node.ID.String(), hostUpdate.NewMetrics)
  366. case models.EgressUpdate:
  367. e := schema.Egress{ID: hostUpdate.EgressDomain.ID}
  368. err = e.Get(db.WithContext(r.Context()))
  369. if err != nil {
  370. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.BadReq))
  371. return
  372. }
  373. if len(hostUpdate.Node.EgressGatewayRanges) > 0 {
  374. e.DomainAns = hostUpdate.Node.EgressGatewayRanges
  375. e.Update(db.WithContext(r.Context()))
  376. }
  377. sendPeerUpdate = true
  378. }
  379. if sendPeerUpdate {
  380. err := mq.PublishPeerUpdate(replacePeers)
  381. if err != nil {
  382. slog.Error("failed to publish peer update", "error", err)
  383. }
  384. }
  385. logic.ReturnSuccessResponse(w, r, "updated host data")
  386. }
  387. // @Summary Deletes a Netclient host from Netmaker server
  388. // @Router /api/hosts/{hostid} [delete]
  389. // @Tags Hosts
  390. // @Security oauth
  391. // @Param hostid path string true "Host ID"
  392. // @Param force query bool false "Force delete"
  393. // @Success 200 {object} models.ApiHost
  394. // @Failure 500 {object} models.ErrorResponse
  395. func deleteHost(w http.ResponseWriter, r *http.Request) {
  396. var params = mux.Vars(r)
  397. hostid := params["hostid"]
  398. forceDelete := r.URL.Query().Get("force") == "true"
  399. // confirm host exists
  400. currHost, err := logic.GetHost(hostid)
  401. if err != nil {
  402. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  403. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  404. return
  405. }
  406. for _, nodeID := range currHost.Nodes {
  407. node, err := logic.GetNodeByID(nodeID)
  408. if err != nil {
  409. slog.Error("failed to get node", "nodeid", nodeID, "error", err)
  410. continue
  411. }
  412. var gwClients []models.ExtClient
  413. if node.IsIngressGateway {
  414. gwClients = logic.GetGwExtclients(node.ID.String(), node.Network)
  415. }
  416. go mq.PublishMqUpdatesForDeletedNode(node, false, gwClients)
  417. }
  418. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  419. // delete EMQX credentials for host
  420. if err := mq.GetEmqxHandler().DeleteEmqxUser(currHost.ID.String()); err != nil {
  421. slog.Error(
  422. "failed to remove host credentials from EMQX",
  423. "id",
  424. currHost.ID,
  425. "error",
  426. err,
  427. )
  428. }
  429. }
  430. if err = mq.HostUpdate(&models.HostUpdate{
  431. Action: models.DeleteHost,
  432. Host: *currHost,
  433. }); err != nil {
  434. logger.Log(
  435. 0,
  436. r.Header.Get("user"),
  437. "failed to send delete host update: ",
  438. currHost.ID.String(),
  439. err.Error(),
  440. )
  441. }
  442. if err = logic.RemoveHost(currHost, forceDelete); err != nil {
  443. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  444. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  445. return
  446. }
  447. // delete if any pending reqs
  448. (&schema.PendingHost{
  449. HostID: currHost.ID.String(),
  450. }).DeleteAllPendingHosts(db.WithContext(r.Context()))
  451. logic.LogEvent(&models.Event{
  452. Action: models.Delete,
  453. Source: models.Subject{
  454. ID: r.Header.Get("user"),
  455. Name: r.Header.Get("user"),
  456. Type: models.UserSub,
  457. },
  458. TriggeredBy: r.Header.Get("user"),
  459. Target: models.Subject{
  460. ID: currHost.ID.String(),
  461. Name: currHost.Name,
  462. Type: models.DeviceSub,
  463. },
  464. Origin: models.Dashboard,
  465. })
  466. apiHostData := currHost.ConvertNMHostToAPI()
  467. logger.Log(2, r.Header.Get("user"), "removed host", currHost.Name)
  468. w.WriteHeader(http.StatusOK)
  469. json.NewEncoder(w).Encode(apiHostData)
  470. }
  471. // @Summary To Add Host To Network
  472. // @Router /api/hosts/{hostid}/networks/{network} [post]
  473. // @Tags Hosts
  474. // @Security oauth
  475. // @Param hostid path string true "Host ID"
  476. // @Param network path string true "Network name"
  477. // @Success 200 {string} string "OK"
  478. // @Failure 500 {object} models.ErrorResponse
  479. func addHostToNetwork(w http.ResponseWriter, r *http.Request) {
  480. var params = mux.Vars(r)
  481. hostid := params["hostid"]
  482. network := params["network"]
  483. if hostid == "" || network == "" {
  484. logic.ReturnErrorResponse(
  485. w,
  486. r,
  487. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  488. )
  489. return
  490. }
  491. // confirm host exists
  492. currHost, err := logic.GetHost(hostid)
  493. if err != nil {
  494. logger.Log(0, r.Header.Get("user"), "failed to find host:", hostid, err.Error())
  495. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  496. return
  497. }
  498. newNode, err := logic.UpdateHostNetwork(currHost, network, true)
  499. if err != nil {
  500. logger.Log(
  501. 0,
  502. r.Header.Get("user"),
  503. "failed to add host to network:",
  504. hostid,
  505. network,
  506. err.Error(),
  507. )
  508. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  509. return
  510. }
  511. logger.Log(1, "added new node", newNode.ID.String(), "to host", currHost.Name)
  512. if currHost.IsDefault {
  513. // make host failover
  514. logic.CreateFailOver(*newNode)
  515. // make host remote access gateway
  516. logic.CreateIngressGateway(network, newNode.ID.String(), models.IngressRequest{})
  517. logic.CreateRelay(models.RelayRequest{
  518. NodeID: newNode.ID.String(),
  519. NetID: network,
  520. })
  521. }
  522. go func() {
  523. mq.HostUpdate(&models.HostUpdate{
  524. Action: models.JoinHostToNetwork,
  525. Host: *currHost,
  526. Node: *newNode,
  527. })
  528. mq.PublishPeerUpdate(false)
  529. if servercfg.IsDNSMode() {
  530. logic.SetDNS()
  531. }
  532. }()
  533. logger.Log(
  534. 2,
  535. r.Header.Get("user"),
  536. fmt.Sprintf("added host %s to network %s", currHost.Name, network),
  537. )
  538. logic.LogEvent(&models.Event{
  539. Action: models.JoinHostToNet,
  540. Source: models.Subject{
  541. ID: r.Header.Get("user"),
  542. Name: r.Header.Get("user"),
  543. Type: models.UserSub,
  544. },
  545. TriggeredBy: r.Header.Get("user"),
  546. Target: models.Subject{
  547. ID: currHost.ID.String(),
  548. Name: currHost.Name,
  549. Type: models.DeviceSub,
  550. },
  551. NetworkID: models.NetworkID(network),
  552. Origin: models.Dashboard,
  553. })
  554. w.WriteHeader(http.StatusOK)
  555. }
  556. // @Summary To Remove Host from Network
  557. // @Router /api/hosts/{hostid}/networks/{network} [delete]
  558. // @Tags Hosts
  559. // @Security oauth
  560. // @Param hostid path string true "Host ID"
  561. // @Param network path string true "Network name"
  562. // @Param force query bool false "Force delete"
  563. // @Success 200 {string} string "OK"
  564. // @Failure 500 {object} models.ErrorResponse
  565. func deleteHostFromNetwork(w http.ResponseWriter, r *http.Request) {
  566. var params = mux.Vars(r)
  567. hostid := params["hostid"]
  568. network := params["network"]
  569. forceDelete := r.URL.Query().Get("force") == "true"
  570. if hostid == "" || network == "" {
  571. logic.ReturnErrorResponse(
  572. w,
  573. r,
  574. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  575. )
  576. return
  577. }
  578. // confirm host exists
  579. currHost, err := logic.GetHost(hostid)
  580. if err != nil {
  581. if database.IsEmptyRecord(err) {
  582. // check if there is any daemon nodes that needs to be deleted
  583. node, err := logic.GetNodeByHostRef(hostid, network)
  584. if err != nil {
  585. slog.Error(
  586. "couldn't get node for host",
  587. "hostid",
  588. hostid,
  589. "network",
  590. network,
  591. "error",
  592. err,
  593. )
  594. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  595. return
  596. }
  597. if err = logic.DeleteNodeByID(&node); err != nil {
  598. slog.Error("failed to force delete daemon node",
  599. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  600. logic.ReturnErrorResponse(
  601. w,
  602. r,
  603. logic.FormatError(
  604. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  605. "internal",
  606. ),
  607. )
  608. return
  609. }
  610. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  611. return
  612. }
  613. logger.Log(0, r.Header.Get("user"), "failed to find host:", err.Error())
  614. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  615. return
  616. }
  617. node, err := logic.UpdateHostNetwork(currHost, network, false)
  618. if err != nil {
  619. if node == nil && forceDelete {
  620. // force cleanup the node
  621. node, err := logic.GetNodeByHostRef(hostid, network)
  622. if err != nil {
  623. slog.Error(
  624. "couldn't get node for host",
  625. "hostid",
  626. hostid,
  627. "network",
  628. network,
  629. "error",
  630. err,
  631. )
  632. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  633. return
  634. }
  635. if err = logic.DeleteNodeByID(&node); err != nil {
  636. slog.Error("failed to force delete daemon node",
  637. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  638. logic.ReturnErrorResponse(
  639. w,
  640. r,
  641. logic.FormatError(
  642. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  643. "internal",
  644. ),
  645. )
  646. return
  647. }
  648. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  649. return
  650. }
  651. logger.Log(
  652. 0,
  653. r.Header.Get("user"),
  654. "failed to remove host from network:",
  655. hostid,
  656. network,
  657. err.Error(),
  658. )
  659. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  660. return
  661. }
  662. var gwClients []models.ExtClient
  663. if node.IsIngressGateway {
  664. gwClients = logic.GetGwExtclients(node.ID.String(), node.Network)
  665. }
  666. logger.Log(1, "deleting node", node.ID.String(), "from host", currHost.Name)
  667. if err := logic.DeleteNode(node, forceDelete); err != nil {
  668. logic.ReturnErrorResponse(
  669. w,
  670. r,
  671. logic.FormatError(fmt.Errorf("failed to delete node"), "internal"),
  672. )
  673. return
  674. }
  675. go func() {
  676. mq.PublishMqUpdatesForDeletedNode(*node, true, gwClients)
  677. if servercfg.IsDNSMode() {
  678. logic.SetDNS()
  679. }
  680. }()
  681. logic.LogEvent(&models.Event{
  682. Action: models.RemoveHostFromNet,
  683. Source: models.Subject{
  684. ID: r.Header.Get("user"),
  685. Name: r.Header.Get("user"),
  686. Type: models.UserSub,
  687. },
  688. TriggeredBy: r.Header.Get("user"),
  689. Target: models.Subject{
  690. ID: currHost.ID.String(),
  691. Name: currHost.Name,
  692. Type: models.DeviceSub,
  693. },
  694. NetworkID: models.NetworkID(network),
  695. Origin: models.Dashboard,
  696. })
  697. logger.Log(
  698. 2,
  699. r.Header.Get("user"),
  700. fmt.Sprintf("removed host %s from network %s", currHost.Name, network),
  701. )
  702. w.WriteHeader(http.StatusOK)
  703. }
  704. // @Summary To Fetch Auth Token for a Host
  705. // @Router /api/hosts/adm/authenticate [post]
  706. // @Tags Auth
  707. // @Accept json
  708. // @Param body body models.AuthParams true "Authentication parameters"
  709. // @Success 200 {object} models.SuccessResponse
  710. // @Failure 400 {object} models.ErrorResponse
  711. // @Failure 401 {object} models.ErrorResponse
  712. // @Failure 500 {object} models.ErrorResponse
  713. func authenticateHost(response http.ResponseWriter, request *http.Request) {
  714. var authRequest models.AuthParams
  715. var errorResponse = models.ErrorResponse{
  716. Code: http.StatusInternalServerError, Message: "W1R3: It's not you it's me.",
  717. }
  718. decoder := json.NewDecoder(request.Body)
  719. decoderErr := decoder.Decode(&authRequest)
  720. defer request.Body.Close()
  721. if decoderErr != nil {
  722. errorResponse.Code = http.StatusBadRequest
  723. errorResponse.Message = decoderErr.Error()
  724. logger.Log(0, request.Header.Get("user"), "error decoding request body: ",
  725. decoderErr.Error())
  726. logic.ReturnErrorResponse(response, request, errorResponse)
  727. return
  728. }
  729. errorResponse.Code = http.StatusBadRequest
  730. if authRequest.ID == "" {
  731. errorResponse.Message = "W1R3: ID can't be empty"
  732. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  733. logic.ReturnErrorResponse(response, request, errorResponse)
  734. return
  735. } else if authRequest.Password == "" {
  736. errorResponse.Message = "W1R3: Password can't be empty"
  737. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  738. logic.ReturnErrorResponse(response, request, errorResponse)
  739. return
  740. }
  741. host, err := logic.GetHost(authRequest.ID)
  742. if err != nil {
  743. errorResponse.Code = http.StatusBadRequest
  744. errorResponse.Message = err.Error()
  745. logger.Log(0, request.Header.Get("user"),
  746. "error retrieving host: ", authRequest.ID, err.Error())
  747. logic.ReturnErrorResponse(response, request, errorResponse)
  748. return
  749. }
  750. err = bcrypt.CompareHashAndPassword([]byte(host.HostPass), []byte(authRequest.Password))
  751. if err != nil {
  752. errorResponse.Code = http.StatusUnauthorized
  753. errorResponse.Message = "unauthorized"
  754. logger.Log(0, request.Header.Get("user"),
  755. "error validating user password: ", err.Error())
  756. logic.ReturnErrorResponse(response, request, errorResponse)
  757. return
  758. }
  759. tokenString, err := logic.CreateJWT(authRequest.ID, authRequest.MacAddress, "")
  760. if tokenString == "" {
  761. errorResponse.Code = http.StatusUnauthorized
  762. errorResponse.Message = "unauthorized"
  763. logger.Log(0, request.Header.Get("user"),
  764. fmt.Sprintf("%s: %v", errorResponse.Message, err))
  765. logic.ReturnErrorResponse(response, request, errorResponse)
  766. return
  767. }
  768. var successResponse = models.SuccessResponse{
  769. Code: http.StatusOK,
  770. Message: "W1R3: Host " + authRequest.ID + " Authorized",
  771. Response: models.SuccessfulLoginResponse{
  772. AuthToken: tokenString,
  773. ID: authRequest.ID,
  774. },
  775. }
  776. successJSONResponse, jsonError := json.Marshal(successResponse)
  777. if jsonError != nil {
  778. errorResponse.Code = http.StatusBadRequest
  779. errorResponse.Message = err.Error()
  780. logger.Log(0, request.Header.Get("user"),
  781. "error marshalling resp: ", err.Error())
  782. logic.ReturnErrorResponse(response, request, errorResponse)
  783. return
  784. }
  785. go func() {
  786. // Create EMQX creds
  787. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  788. if err := mq.GetEmqxHandler().CreateEmqxUser(host.ID.String(), authRequest.Password); err != nil {
  789. slog.Error("failed to create host credentials for EMQX: ", err.Error())
  790. }
  791. }
  792. }()
  793. response.WriteHeader(http.StatusOK)
  794. response.Header().Set("Content-Type", "application/json")
  795. response.Write(successJSONResponse)
  796. }
  797. // @Summary Send signal to peer
  798. // @Router /api/v1/host/{hostid}/signalpeer [post]
  799. // @Tags Hosts
  800. // @Security oauth
  801. // @Param hostid path string true "Host ID"
  802. // @Param body body models.Signal true "Signal data"
  803. // @Success 200 {object} models.Signal
  804. // @Failure 400 {object} models.ErrorResponse
  805. func signalPeer(w http.ResponseWriter, r *http.Request) {
  806. var params = mux.Vars(r)
  807. hostid := params["hostid"]
  808. // confirm host exists
  809. _, err := logic.GetHost(hostid)
  810. if err != nil {
  811. logger.Log(0, r.Header.Get("user"), "failed to get host:", err.Error())
  812. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  813. return
  814. }
  815. var signal models.Signal
  816. w.Header().Set("Content-Type", "application/json")
  817. err = json.NewDecoder(r.Body).Decode(&signal)
  818. if err != nil {
  819. logger.Log(0, r.Header.Get("user"), "error decoding request body: ", err.Error())
  820. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  821. return
  822. }
  823. if signal.ToHostPubKey == "" {
  824. msg := "insufficient data to signal peer"
  825. logger.Log(0, r.Header.Get("user"), msg)
  826. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New(msg), "badrequest"))
  827. return
  828. }
  829. signal.IsPro = servercfg.IsPro
  830. peerHost, err := logic.GetHost(signal.ToHostID)
  831. if err != nil {
  832. logic.ReturnErrorResponse(
  833. w,
  834. r,
  835. logic.FormatError(errors.New("failed to signal, peer not found"), "badrequest"),
  836. )
  837. return
  838. }
  839. err = mq.HostUpdate(&models.HostUpdate{
  840. Action: models.SignalHost,
  841. Host: *peerHost,
  842. Signal: signal,
  843. })
  844. if err != nil {
  845. logic.ReturnErrorResponse(
  846. w,
  847. r,
  848. logic.FormatError(
  849. errors.New("failed to publish signal to peer: "+err.Error()),
  850. "badrequest",
  851. ),
  852. )
  853. return
  854. }
  855. w.WriteHeader(http.StatusOK)
  856. json.NewEncoder(w).Encode(signal)
  857. }
  858. // @Summary Update keys for all hosts
  859. // @Router /api/hosts/keys [put]
  860. // @Tags Hosts
  861. // @Security oauth
  862. // @Success 200 {string} string "OK"
  863. // @Failure 400 {object} models.ErrorResponse
  864. func updateAllKeys(w http.ResponseWriter, r *http.Request) {
  865. var errorResponse = models.ErrorResponse{}
  866. w.Header().Set("Content-Type", "application/json")
  867. hosts, err := logic.GetAllHosts()
  868. if err != nil {
  869. errorResponse.Code = http.StatusBadRequest
  870. errorResponse.Message = err.Error()
  871. logger.Log(0, r.Header.Get("user"),
  872. "error retrieving hosts ", err.Error())
  873. logic.ReturnErrorResponse(w, r, errorResponse)
  874. return
  875. }
  876. go func() {
  877. hostUpdate := models.HostUpdate{}
  878. hostUpdate.Action = models.UpdateKeys
  879. for _, host := range hosts {
  880. hostUpdate.Host = host
  881. logger.Log(2, "updating host", host.ID.String(), " for a key update")
  882. if err = mq.HostUpdate(&hostUpdate); err != nil {
  883. logger.Log(
  884. 0,
  885. "failed to send update to node during a network wide key update",
  886. host.ID.String(),
  887. err.Error(),
  888. )
  889. }
  890. }
  891. }()
  892. logic.LogEvent(&models.Event{
  893. Action: models.RefreshAllKeys,
  894. Source: models.Subject{
  895. ID: r.Header.Get("user"),
  896. Name: r.Header.Get("user"),
  897. Type: models.UserSub,
  898. },
  899. TriggeredBy: r.Header.Get("user"),
  900. Target: models.Subject{
  901. ID: "All Devices",
  902. Name: "All Devices",
  903. Type: models.DeviceSub,
  904. },
  905. Origin: models.Dashboard,
  906. })
  907. logger.Log(2, r.Header.Get("user"), "updated keys for all hosts")
  908. w.WriteHeader(http.StatusOK)
  909. }
  910. // @Summary Update keys for a host
  911. // @Router /api/hosts/{hostid}/keys [put]
  912. // @Tags Hosts
  913. // @Security oauth
  914. // @Param hostid path string true "Host ID"
  915. // @Success 200 {string} string "OK"
  916. // @Failure 400 {object} models.ErrorResponse
  917. func updateKeys(w http.ResponseWriter, r *http.Request) {
  918. var errorResponse = models.ErrorResponse{}
  919. w.Header().Set("Content-Type", "application/json")
  920. var params = mux.Vars(r)
  921. hostid := params["hostid"]
  922. host, err := logic.GetHost(hostid)
  923. if err != nil {
  924. logger.Log(0, "failed to retrieve host", hostid, err.Error())
  925. errorResponse.Code = http.StatusBadRequest
  926. errorResponse.Message = err.Error()
  927. logger.Log(0, r.Header.Get("user"),
  928. "error retrieving hosts ", err.Error())
  929. logic.ReturnErrorResponse(w, r, errorResponse)
  930. return
  931. }
  932. go func() {
  933. hostUpdate := models.HostUpdate{
  934. Action: models.UpdateKeys,
  935. Host: *host,
  936. }
  937. if err = mq.HostUpdate(&hostUpdate); err != nil {
  938. logger.Log(0, "failed to send host key update", host.ID.String(), err.Error())
  939. }
  940. }()
  941. logic.LogEvent(&models.Event{
  942. Action: models.RefreshKey,
  943. Source: models.Subject{
  944. ID: r.Header.Get("user"),
  945. Name: r.Header.Get("user"),
  946. Type: models.UserSub,
  947. },
  948. TriggeredBy: r.Header.Get("user"),
  949. Target: models.Subject{
  950. ID: host.ID.String(),
  951. Name: host.Name,
  952. Type: models.DeviceSub,
  953. },
  954. Origin: models.Dashboard,
  955. })
  956. logger.Log(2, r.Header.Get("user"), "updated key on host", host.Name)
  957. w.WriteHeader(http.StatusOK)
  958. }
  959. // @Summary Requests all the hosts to pull
  960. // @Router /api/hosts/sync [post]
  961. // @Tags Hosts
  962. // @Security oauth
  963. // @Success 200 {string} string "sync all hosts request received"
  964. func syncHosts(w http.ResponseWriter, r *http.Request) {
  965. w.Header().Set("Content-Type", "application/json")
  966. user := r.Header.Get("user")
  967. go func() {
  968. slog.Info("requesting all hosts to sync", "user", user)
  969. hosts, err := logic.GetAllHosts()
  970. if err != nil {
  971. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  972. return
  973. }
  974. for _, host := range hosts {
  975. go func(host models.Host) {
  976. hostUpdate := models.HostUpdate{
  977. Action: models.RequestPull,
  978. Host: host,
  979. }
  980. if err = mq.HostUpdate(&hostUpdate); err != nil {
  981. slog.Error("failed to request host to sync", "user", user, "host", host.ID.String(), "error", err)
  982. } else {
  983. slog.Info("host sync requested", "user", user, "host", host.ID.String())
  984. }
  985. }(host)
  986. time.Sleep(time.Millisecond * 100)
  987. }
  988. }()
  989. logic.LogEvent(&models.Event{
  990. Action: models.SyncAll,
  991. Source: models.Subject{
  992. ID: r.Header.Get("user"),
  993. Name: r.Header.Get("user"),
  994. Type: models.UserSub,
  995. },
  996. TriggeredBy: r.Header.Get("user"),
  997. Target: models.Subject{
  998. ID: "All Devices",
  999. Name: "All Devices",
  1000. Type: models.DeviceSub,
  1001. },
  1002. Origin: models.Dashboard,
  1003. })
  1004. slog.Info("sync all hosts request received", "user", user)
  1005. logic.ReturnSuccessResponse(w, r, "sync all hosts request received")
  1006. }
  1007. // @Summary Requests a host to pull
  1008. // @Router /api/hosts/{hostid}/sync [post]
  1009. // @Tags Hosts
  1010. // @Security oauth
  1011. // @Param hostid path string true "Host ID"
  1012. // @Success 200 {string} string "OK"
  1013. // @Failure 400 {object} models.ErrorResponse
  1014. func syncHost(w http.ResponseWriter, r *http.Request) {
  1015. hostId := mux.Vars(r)["hostid"]
  1016. var errorResponse = models.ErrorResponse{}
  1017. w.Header().Set("Content-Type", "application/json")
  1018. host, err := logic.GetHost(hostId)
  1019. if err != nil {
  1020. slog.Error("failed to retrieve host", "user", r.Header.Get("user"), "error", err)
  1021. errorResponse.Code = http.StatusBadRequest
  1022. errorResponse.Message = err.Error()
  1023. logic.ReturnErrorResponse(w, r, errorResponse)
  1024. return
  1025. }
  1026. go func() {
  1027. hostUpdate := models.HostUpdate{
  1028. Action: models.RequestPull,
  1029. Host: *host,
  1030. }
  1031. if err = mq.HostUpdate(&hostUpdate); err != nil {
  1032. slog.Error("failed to send host pull request", "host", host.ID.String(), "error", err)
  1033. }
  1034. }()
  1035. logic.LogEvent(&models.Event{
  1036. Action: models.Sync,
  1037. Source: models.Subject{
  1038. ID: r.Header.Get("user"),
  1039. Name: r.Header.Get("user"),
  1040. Type: models.UserSub,
  1041. },
  1042. TriggeredBy: r.Header.Get("user"),
  1043. Target: models.Subject{
  1044. ID: host.ID.String(),
  1045. Name: host.Name,
  1046. Type: models.DeviceSub,
  1047. },
  1048. Origin: models.Dashboard,
  1049. })
  1050. slog.Info("requested host pull", "user", r.Header.Get("user"), "host", host.ID.String())
  1051. w.WriteHeader(http.StatusOK)
  1052. }
  1053. // @Summary Deletes all EMQX hosts
  1054. // @Router /api/emqx/hosts [delete]
  1055. // @Tags Hosts
  1056. // @Security oauth
  1057. // @Success 200 {string} string "deleted hosts data on emqx"
  1058. // @Failure 500 {object} models.ErrorResponse
  1059. func delEmqxHosts(w http.ResponseWriter, r *http.Request) {
  1060. currentHosts, err := logic.GetAllHosts()
  1061. if err != nil {
  1062. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  1063. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  1064. return
  1065. }
  1066. for _, host := range currentHosts {
  1067. // delete EMQX credentials for host
  1068. if err := mq.GetEmqxHandler().DeleteEmqxUser(host.ID.String()); err != nil {
  1069. slog.Error("failed to remove host credentials from EMQX", "id", host.ID, "error", err)
  1070. }
  1071. }
  1072. err = mq.GetEmqxHandler().DeleteEmqxUser(servercfg.GetMqUserName())
  1073. if err != nil {
  1074. slog.Error(
  1075. "failed to remove server credentials from EMQX",
  1076. "user",
  1077. servercfg.GetMqUserName(),
  1078. "error",
  1079. err,
  1080. )
  1081. }
  1082. logic.ReturnSuccessResponse(w, r, "deleted hosts data on emqx")
  1083. }
  1084. // @Summary Fetches host peerinfo
  1085. // @Router /api/host/{hostid}/peer_info [get]
  1086. // @Tags Hosts
  1087. // @Security oauth
  1088. // @Param hostid path string true "Host ID"
  1089. // @Success 200 {object} models.SuccessResponse
  1090. // @Failure 500 {object} models.ErrorResponse
  1091. func getHostPeerInfo(w http.ResponseWriter, r *http.Request) {
  1092. hostId := mux.Vars(r)["hostid"]
  1093. var errorResponse = models.ErrorResponse{}
  1094. host, err := logic.GetHost(hostId)
  1095. if err != nil {
  1096. slog.Error("failed to retrieve host", "error", err)
  1097. errorResponse.Code = http.StatusBadRequest
  1098. errorResponse.Message = err.Error()
  1099. logic.ReturnErrorResponse(w, r, errorResponse)
  1100. return
  1101. }
  1102. peerInfo, err := logic.GetHostPeerInfo(host)
  1103. if err != nil {
  1104. slog.Error("failed to retrieve host peerinfo", "error", err)
  1105. errorResponse.Code = http.StatusBadRequest
  1106. errorResponse.Message = err.Error()
  1107. logic.ReturnErrorResponse(w, r, errorResponse)
  1108. return
  1109. }
  1110. logic.ReturnSuccessResponseWithJson(w, r, peerInfo, "fetched host peer info")
  1111. }
  1112. // @Summary List pending hosts in a network
  1113. // @Router /api/v1/pending_hosts [get]
  1114. // @Tags Hosts
  1115. // @Security oauth
  1116. // @Success 200 {array} schema.PendingHost
  1117. // @Failure 500 {object} models.ErrorResponse
  1118. func getPendingHosts(w http.ResponseWriter, r *http.Request) {
  1119. netID := r.URL.Query().Get("network")
  1120. if netID == "" {
  1121. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New("network id param is missing"), "badrequest"))
  1122. return
  1123. }
  1124. pendingHosts, err := (&schema.PendingHost{
  1125. Network: netID,
  1126. }).List(db.WithContext(r.Context()))
  1127. if err != nil {
  1128. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1129. Code: http.StatusBadRequest,
  1130. Message: err.Error(),
  1131. })
  1132. return
  1133. }
  1134. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  1135. logic.ReturnSuccessResponseWithJson(w, r, pendingHosts, "returned pending hosts in "+netID)
  1136. }
  1137. // @Summary approve pending hosts in a network
  1138. // @Router /api/v1/pending_hosts/approve/{id} [post]
  1139. // @Tags Hosts
  1140. // @Security oauth
  1141. // @Success 200 {array} models.ApiNode
  1142. // @Failure 500 {object} models.ErrorResponse
  1143. func approvePendingHost(w http.ResponseWriter, r *http.Request) {
  1144. id := mux.Vars(r)["id"]
  1145. p := &schema.PendingHost{ID: id}
  1146. err := p.Get(db.WithContext(r.Context()))
  1147. if err != nil {
  1148. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1149. Code: http.StatusBadRequest,
  1150. Message: err.Error(),
  1151. })
  1152. return
  1153. }
  1154. h, err := logic.GetHost(p.HostID)
  1155. if err != nil {
  1156. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1157. Code: http.StatusBadRequest,
  1158. Message: err.Error(),
  1159. })
  1160. return
  1161. }
  1162. key := models.EnrollmentKey{}
  1163. json.Unmarshal(p.EnrollmentKey, &key)
  1164. newNode, err := logic.UpdateHostNetwork(h, p.Network, true)
  1165. if err != nil {
  1166. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1167. Code: http.StatusBadRequest,
  1168. Message: err.Error(),
  1169. })
  1170. return
  1171. }
  1172. if len(key.Groups) > 0 {
  1173. newNode.Tags = make(map[models.TagID]struct{})
  1174. for _, tagI := range key.Groups {
  1175. newNode.Tags[tagI] = struct{}{}
  1176. }
  1177. logic.UpsertNode(newNode)
  1178. }
  1179. if key.Relay != uuid.Nil && !newNode.IsRelayed {
  1180. // check if relay node exists and acting as relay
  1181. relaynode, err := logic.GetNodeByID(key.Relay.String())
  1182. if err == nil && relaynode.IsGw && relaynode.Network == newNode.Network {
  1183. slog.Error(fmt.Sprintf("adding relayed node %s to relay %s on network %s", newNode.ID.String(), key.Relay.String(), p.Network))
  1184. newNode.IsRelayed = true
  1185. newNode.RelayedBy = key.Relay.String()
  1186. updatedRelayNode := relaynode
  1187. updatedRelayNode.RelayedNodes = append(updatedRelayNode.RelayedNodes, newNode.ID.String())
  1188. logic.UpdateRelayed(&relaynode, &updatedRelayNode)
  1189. if err := logic.UpsertNode(&updatedRelayNode); err != nil {
  1190. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1191. }
  1192. if err := logic.UpsertNode(newNode); err != nil {
  1193. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1194. }
  1195. } else {
  1196. slog.Error("failed to relay node. maybe specified relay node is actually not a relay? Or the relayed node is not in the same network with relay?", "err", err)
  1197. }
  1198. }
  1199. logger.Log(1, "added new node", newNode.ID.String(), "to host", h.Name)
  1200. hostactions.AddAction(models.HostUpdate{
  1201. Action: models.JoinHostToNetwork,
  1202. Host: *h,
  1203. Node: *newNode,
  1204. })
  1205. if h.IsDefault {
  1206. // make host failover
  1207. logic.CreateFailOver(*newNode)
  1208. // make host remote access gateway
  1209. logic.CreateIngressGateway(p.Network, newNode.ID.String(), models.IngressRequest{})
  1210. logic.CreateRelay(models.RelayRequest{
  1211. NodeID: newNode.ID.String(),
  1212. NetID: p.Network,
  1213. })
  1214. }
  1215. p.Delete(db.WithContext(r.Context()))
  1216. go mq.PublishPeerUpdate(false)
  1217. logic.ReturnSuccessResponseWithJson(w, r, newNode.ConvertToAPINode(), "added pending host to "+p.Network)
  1218. }
  1219. // @Summary reject pending hosts in a network
  1220. // @Router /api/v1/pending_hosts/reject/{id} [post]
  1221. // @Tags Hosts
  1222. // @Security oauth
  1223. // @Success 200 {array} models.ApiNode
  1224. // @Failure 500 {object} models.ErrorResponse
  1225. func rejectPendingHost(w http.ResponseWriter, r *http.Request) {
  1226. id := mux.Vars(r)["id"]
  1227. p := &schema.PendingHost{ID: id}
  1228. err := p.Get(db.WithContext(r.Context()))
  1229. if err != nil {
  1230. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1231. Code: http.StatusBadRequest,
  1232. Message: err.Error(),
  1233. })
  1234. return
  1235. }
  1236. err = p.Delete(db.WithContext(r.Context()))
  1237. if err != nil {
  1238. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1239. Code: http.StatusBadRequest,
  1240. Message: err.Error(),
  1241. })
  1242. return
  1243. }
  1244. logic.ReturnSuccessResponseWithJson(w, r, p, "deleted pending host from "+p.Network)
  1245. }