common.go 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530
  1. package controller
  2. import (
  3. "context"
  4. "fmt"
  5. "log"
  6. "net"
  7. "time"
  8. "github.com/gravitl/netmaker/functions"
  9. "github.com/gravitl/netmaker/models"
  10. "github.com/gravitl/netmaker/mongoconn"
  11. "go.mongodb.org/mongo-driver/bson"
  12. "go.mongodb.org/mongo-driver/mongo/options"
  13. "golang.org/x/crypto/bcrypt"
  14. "gopkg.in/go-playground/validator.v9"
  15. )
  16. func GetPeersList(networkName string) ([]models.PeersResponse, error) {
  17. var peers []models.PeersResponse
  18. //Connection mongoDB with mongoconn class
  19. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  20. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  21. //Get all nodes in the relevant network which are NOT in pending state
  22. filter := bson.M{"network": networkName, "ispending": false}
  23. cur, err := collection.Find(ctx, filter)
  24. if err != nil {
  25. return peers, err
  26. }
  27. // Close the cursor once finished and cancel if it takes too long
  28. defer cancel()
  29. for cur.Next(context.TODO()) {
  30. var peer models.PeersResponse
  31. err := cur.Decode(&peer)
  32. if err != nil {
  33. log.Fatal(err)
  34. }
  35. // add the node to our node array
  36. //maybe better to just return this? But then that's just GetNodes...
  37. peers = append(peers, peer)
  38. }
  39. //Uh oh, fatal error! This needs some better error handling
  40. //TODO: needs appropriate error handling so the server doesnt shut down.
  41. if err := cur.Err(); err != nil {
  42. log.Fatal(err)
  43. }
  44. return peers, err
  45. }
  46. func ValidateNodeCreate(networkName string, node models.Node) error {
  47. v := validator.New()
  48. _ = v.RegisterValidation("address_check", func(fl validator.FieldLevel) bool {
  49. isIpv4 := functions.IsIpv4Net(node.Address)
  50. empty := node.Address == ""
  51. return (empty || isIpv4)
  52. })
  53. _ = v.RegisterValidation("endpoint_check", func(fl validator.FieldLevel) bool {
  54. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  55. isIpv4 := functions.IsIpv4Net(node.Endpoint)
  56. notEmptyCheck := node.Endpoint != ""
  57. return (notEmptyCheck && isIpv4)
  58. })
  59. _ = v.RegisterValidation("localaddress_check", func(fl validator.FieldLevel) bool {
  60. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  61. isIpv4 := functions.IsIpv4Net(node.LocalAddress)
  62. empty := node.LocalAddress == ""
  63. return (empty || isIpv4)
  64. })
  65. _ = v.RegisterValidation("macaddress_unique", func(fl validator.FieldLevel) bool {
  66. var isFieldUnique bool = functions.IsFieldUnique(networkName, "macaddress", node.MacAddress)
  67. return isFieldUnique
  68. })
  69. _ = v.RegisterValidation("macaddress_valid", func(fl validator.FieldLevel) bool {
  70. _, err := net.ParseMAC(node.MacAddress)
  71. return err == nil
  72. })
  73. _ = v.RegisterValidation("name_valid", func(fl validator.FieldLevel) bool {
  74. isvalid := functions.NameInNodeCharSet(node.Name)
  75. return isvalid
  76. })
  77. _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
  78. _, err := node.GetNetwork()
  79. return err == nil
  80. })
  81. _ = v.RegisterValidation("pubkey_check", func(fl validator.FieldLevel) bool {
  82. notEmptyCheck := node.PublicKey != ""
  83. isBase64 := functions.IsBase64(node.PublicKey)
  84. return (notEmptyCheck && isBase64)
  85. })
  86. _ = v.RegisterValidation("password_check", func(fl validator.FieldLevel) bool {
  87. notEmptyCheck := node.Password != ""
  88. goodLength := len(node.Password) > 5
  89. return (notEmptyCheck && goodLength)
  90. })
  91. err := v.Struct(node)
  92. if err != nil {
  93. for _, e := range err.(validator.ValidationErrors) {
  94. fmt.Println(e)
  95. }
  96. }
  97. return err
  98. }
  99. func ValidateNodeUpdate(networkName string, node models.Node) error {
  100. v := validator.New()
  101. _ = v.RegisterValidation("address_check", func(fl validator.FieldLevel) bool {
  102. isIpv4 := functions.IsIpv4Net(node.Address)
  103. empty := node.Address == ""
  104. return (empty || isIpv4)
  105. })
  106. _ = v.RegisterValidation("endpoint_check", func(fl validator.FieldLevel) bool {
  107. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  108. isIpv4 := functions.IsIpv4Net(node.Endpoint)
  109. empty := node.Endpoint == ""
  110. return (empty || isIpv4)
  111. })
  112. _ = v.RegisterValidation("localaddress_check", func(fl validator.FieldLevel) bool {
  113. //var isFieldUnique bool = functions.IsFieldUnique(networkName, "endpoint", node.Endpoint)
  114. isIpv4 := functions.IsIpv4Net(node.LocalAddress)
  115. empty := node.LocalAddress == ""
  116. return (empty || isIpv4)
  117. })
  118. _ = v.RegisterValidation("macaddress_unique", func(fl validator.FieldLevel) bool {
  119. return true
  120. })
  121. _ = v.RegisterValidation("macaddress_valid", func(fl validator.FieldLevel) bool {
  122. _, err := net.ParseMAC(node.MacAddress)
  123. return err == nil
  124. })
  125. _ = v.RegisterValidation("name_valid", func(fl validator.FieldLevel) bool {
  126. isvalid := functions.NameInNodeCharSet(node.Name)
  127. return isvalid
  128. })
  129. _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
  130. _, err := node.GetNetwork()
  131. return err == nil
  132. })
  133. _ = v.RegisterValidation("pubkey_check", func(fl validator.FieldLevel) bool {
  134. empty := node.PublicKey == ""
  135. isBase64 := functions.IsBase64(node.PublicKey)
  136. return (empty || isBase64)
  137. })
  138. _ = v.RegisterValidation("password_check", func(fl validator.FieldLevel) bool {
  139. empty := node.Password == ""
  140. goodLength := len(node.Password) > 5
  141. return (empty || goodLength)
  142. })
  143. err := v.Struct(node)
  144. if err != nil {
  145. for _, e := range err.(validator.ValidationErrors) {
  146. fmt.Println(e)
  147. }
  148. }
  149. return err
  150. }
  151. func UpdateNode(nodechange models.Node, node models.Node) (models.Node, error) {
  152. //Question: Is there a better way of doing this than a bunch of "if" statements? probably...
  153. //Eventually, lets have a better way to check if any of the fields are filled out...
  154. queryMac := node.MacAddress
  155. queryNetwork := node.Network
  156. notifynetwork := false
  157. if nodechange.Address != "" {
  158. node.Address = nodechange.Address
  159. notifynetwork = true
  160. }
  161. if nodechange.Name != "" {
  162. node.Name = nodechange.Name
  163. }
  164. if nodechange.LocalAddress != "" {
  165. node.LocalAddress = nodechange.LocalAddress
  166. }
  167. if nodechange.ListenPort != 0 {
  168. node.ListenPort = nodechange.ListenPort
  169. }
  170. if nodechange.ExpirationDateTime != 0 {
  171. node.ExpirationDateTime = nodechange.ExpirationDateTime
  172. }
  173. if nodechange.PostDown != "" {
  174. node.PostDown = nodechange.PostDown
  175. }
  176. if nodechange.Interface != "" {
  177. node.Interface = nodechange.Interface
  178. }
  179. if nodechange.PostUp != "" {
  180. node.PostUp = nodechange.PostUp
  181. }
  182. if nodechange.AccessKey != "" {
  183. node.AccessKey = nodechange.AccessKey
  184. }
  185. if nodechange.Endpoint != "" {
  186. node.Endpoint = nodechange.Endpoint
  187. notifynetwork = true
  188. }
  189. if nodechange.SaveConfig != nil {
  190. node.SaveConfig = nodechange.SaveConfig
  191. }
  192. if nodechange.PersistentKeepalive != 0 {
  193. node.PersistentKeepalive = nodechange.PersistentKeepalive
  194. }
  195. if nodechange.Password != "" {
  196. err := bcrypt.CompareHashAndPassword([]byte(nodechange.Password), []byte(node.Password))
  197. if err != nil && nodechange.Password != node.Password {
  198. hash, err := bcrypt.GenerateFromPassword([]byte(nodechange.Password), 5)
  199. if err != nil {
  200. return node, err
  201. }
  202. nodechange.Password = string(hash)
  203. node.Password = nodechange.Password
  204. }
  205. }
  206. if nodechange.MacAddress != "" {
  207. node.MacAddress = nodechange.MacAddress
  208. }
  209. if nodechange.PublicKey != "" {
  210. node.PublicKey = nodechange.PublicKey
  211. node.KeyUpdateTimeStamp = time.Now().Unix()
  212. notifynetwork = true
  213. }
  214. //collection := mongoconn.ConnectDB()
  215. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  216. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  217. // Create filter
  218. filter := bson.M{"macaddress": queryMac, "network": queryNetwork}
  219. node.SetLastModified()
  220. // prepare update model.
  221. update := bson.D{
  222. {"$set", bson.D{
  223. {"address", node.Address},
  224. {"name", node.Name},
  225. {"password", node.Password},
  226. {"listenport", node.ListenPort},
  227. {"publickey", node.PublicKey},
  228. {"keyupdatetimestamp", node.KeyUpdateTimeStamp},
  229. {"expdatetime", node.ExpirationDateTime},
  230. {"endpoint", node.Endpoint},
  231. {"postup", node.PostUp},
  232. {"postdown", node.PostDown},
  233. {"macaddress", node.MacAddress},
  234. {"localaddress", node.LocalAddress},
  235. {"persistentkeepalive", node.PersistentKeepalive},
  236. {"saveconfig", node.SaveConfig},
  237. {"accesskey", node.AccessKey},
  238. {"interface", node.Interface},
  239. {"lastmodified", node.LastModified},
  240. }},
  241. }
  242. var nodeupdate models.Node
  243. errN := collection.FindOneAndUpdate(ctx, filter, update).Decode(&nodeupdate)
  244. if errN != nil {
  245. return nodeupdate, errN
  246. }
  247. if nodechange.MacAddress != "" {
  248. queryMac = nodechange.MacAddress
  249. }
  250. returnnode, errN := GetNode(queryMac, queryNetwork)
  251. defer cancel()
  252. if notifynetwork {
  253. errN = SetNetworkNodesLastModified(queryNetwork)
  254. }
  255. return returnnode, errN
  256. }
  257. func DeleteNode(macaddress string, network string) (bool, error) {
  258. deleted := false
  259. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  260. filter := bson.M{"macaddress": macaddress, "network": network}
  261. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  262. result, err := collection.DeleteOne(ctx, filter)
  263. deletecount := result.DeletedCount
  264. if deletecount > 0 {
  265. deleted = true
  266. }
  267. defer cancel()
  268. err = SetNetworkNodesLastModified(network)
  269. fmt.Println("Deleted node " + macaddress + " from network " + network)
  270. return deleted, err
  271. }
  272. func GetNode(macaddress string, network string) (models.Node, error) {
  273. var node models.Node
  274. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  275. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  276. filter := bson.M{"macaddress": macaddress, "network": network}
  277. err := collection.FindOne(ctx, filter, options.FindOne().SetProjection(bson.M{"_id": 0})).Decode(&node)
  278. defer cancel()
  279. return node, err
  280. }
  281. func CreateNode(node models.Node, networkName string) (models.Node, error) {
  282. //encrypt that password so we never see it again
  283. hash, err := bcrypt.GenerateFromPassword([]byte(node.Password), 5)
  284. if err != nil {
  285. return node, err
  286. }
  287. //set password to encrypted password
  288. node.Password = string(hash)
  289. node.Network = networkName
  290. //node.SetDefaults()
  291. //Umm, why am I doing this again?
  292. //TODO: Why am I using a local function instead of the struct function? I really dont know.
  293. //I think I thought it didn't work but uhhh...idk
  294. //anyways, this sets some sensible variables for unset params.
  295. node.SetDefaults()
  296. //Another DB call here...Inefficient
  297. //Anyways, this scrolls through all the IP Addresses in the network range and checks against nodes
  298. //until one is open and then returns it
  299. node.Address, err = functions.UniqueAddress(networkName)
  300. fmt.Println("Setting node address: " + node.Address)
  301. if err != nil {
  302. return node, err
  303. }
  304. //IDK why these aren't a part of "set defaults. Pretty dumb.
  305. //TODO: This is dumb. Consolidate and fix.
  306. node.SetLastModified()
  307. node.SetDefaultName()
  308. node.SetLastCheckIn()
  309. node.SetLastPeerUpdate()
  310. node.KeyUpdateTimeStamp = time.Now().Unix()
  311. //Create a JWT for the node
  312. tokenString, _ := functions.CreateJWT(node.MacAddress, networkName)
  313. if tokenString == "" {
  314. //returnErrorResponse(w, r, errorResponse)
  315. return node, err
  316. }
  317. // connect db
  318. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  319. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  320. // insert our node to the node db.
  321. result, err := collection.InsertOne(ctx, node)
  322. _ = result
  323. defer cancel()
  324. if err != nil {
  325. return node, err
  326. }
  327. //return response for if node is pending
  328. if !node.IsPending {
  329. functions.DecrimentKey(node.Network, node.AccessKey)
  330. }
  331. SetNetworkNodesLastModified(node.Network)
  332. return node, err
  333. }
  334. func NodeCheckIn(node models.Node, networkName string) (models.CheckInResponse, error) {
  335. var response models.CheckInResponse
  336. parentnetwork, err := functions.GetParentNetwork(networkName)
  337. if err != nil {
  338. err = fmt.Errorf("%w; Couldnt retrieve Network "+networkName+": ", err)
  339. return response, err
  340. }
  341. parentnode, err := functions.GetNodeByMacAddress(networkName, node.MacAddress)
  342. if err != nil {
  343. err = fmt.Errorf("%w; Couldnt Get Node "+node.MacAddress, err)
  344. return response, err
  345. }
  346. if parentnode.IsPending {
  347. err = fmt.Errorf("%w; Node checking in is still pending: "+node.MacAddress, err)
  348. response.IsPending = true
  349. return response, err
  350. }
  351. networklm := parentnetwork.NetworkLastModified
  352. peerslm := parentnetwork.NodesLastModified
  353. gkeyupdate := parentnetwork.KeyUpdateTimeStamp
  354. nkeyupdate := parentnode.KeyUpdateTimeStamp
  355. peerlistlm := parentnode.LastPeerUpdate
  356. parentnodelm := parentnode.LastModified
  357. parentnodelastcheckin := parentnode.LastCheckIn
  358. if parentnodelastcheckin < parentnodelm {
  359. response.NeedConfigUpdate = true
  360. }
  361. if parentnodelm < networklm {
  362. response.NeedConfigUpdate = true
  363. }
  364. if peerlistlm < peerslm {
  365. response.NeedPeerUpdate = true
  366. }
  367. if nkeyupdate < gkeyupdate {
  368. response.NeedKeyUpdate = true
  369. }
  370. if time.Now().Unix() > parentnode.ExpirationDateTime {
  371. response.NeedDelete = true
  372. _, err = DeleteNode(node.MacAddress, networkName)
  373. } else {
  374. err = TimestampNode(parentnode, true, false, false)
  375. if err != nil {
  376. err = fmt.Errorf("%w; Couldnt Timestamp Node: ", err)
  377. return response, err
  378. }
  379. }
  380. response.Success = true
  381. return response, err
  382. }
  383. func SetNetworkNodesLastModified(networkName string) error {
  384. timestamp := time.Now().Unix()
  385. collection := mongoconn.Client.Database("netmaker").Collection("networks")
  386. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  387. // Create filter
  388. filter := bson.M{"netid": networkName}
  389. // prepare update model.
  390. update := bson.D{
  391. {"$set", bson.D{
  392. {"nodeslastmodified", timestamp},
  393. }},
  394. }
  395. result := collection.FindOneAndUpdate(ctx, filter, update)
  396. defer cancel()
  397. if result.Err() != nil {
  398. return result.Err()
  399. }
  400. return nil
  401. }
  402. func TimestampNode(node models.Node, updatecheckin bool, updatepeers bool, updatelm bool) error {
  403. if updatelm {
  404. node.SetLastModified()
  405. }
  406. if updatecheckin {
  407. node.SetLastCheckIn()
  408. }
  409. if updatepeers {
  410. node.SetLastPeerUpdate()
  411. }
  412. collection := mongoconn.Client.Database("netmaker").Collection("nodes")
  413. ctx, cancel := context.WithTimeout(context.Background(), 10*time.Second)
  414. // Create filter
  415. filter := bson.M{"macaddress": node.MacAddress, "network": node.Network}
  416. // prepare update model.
  417. update := bson.D{
  418. {"$set", bson.D{
  419. {"lastmodified", node.LastModified},
  420. {"lastpeerupdate", node.LastPeerUpdate},
  421. {"lastcheckin", node.LastCheckIn},
  422. }},
  423. }
  424. var nodeupdate models.Node
  425. err := collection.FindOneAndUpdate(ctx, filter, update).Decode(&nodeupdate)
  426. defer cancel()
  427. return err
  428. }