extpeers.go 8.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305
  1. package logic
  2. import (
  3. "encoding/json"
  4. "fmt"
  5. "reflect"
  6. "sync"
  7. "time"
  8. "github.com/gravitl/netmaker/database"
  9. "github.com/gravitl/netmaker/models"
  10. "golang.org/x/exp/slog"
  11. "golang.zx2c4.com/wireguard/wgctrl/wgtypes"
  12. )
  13. var (
  14. extClientCacheMutex = &sync.RWMutex{}
  15. extClientCacheMap = make(map[string]models.ExtClient)
  16. )
  17. func getAllExtClientsFromCache() (extClients []models.ExtClient) {
  18. extClientCacheMutex.RLock()
  19. for _, extclient := range extClientCacheMap {
  20. extClients = append(extClients, extclient)
  21. }
  22. extClientCacheMutex.RUnlock()
  23. return
  24. }
  25. func deleteExtClientFromCache(key string) {
  26. extClientCacheMutex.Lock()
  27. delete(extClientCacheMap, key)
  28. extClientCacheMutex.Unlock()
  29. }
  30. func getExtClientFromCache(key string) (extclient models.ExtClient, ok bool) {
  31. extClientCacheMutex.RLock()
  32. extclient, ok = extClientCacheMap[key]
  33. extClientCacheMutex.RUnlock()
  34. return
  35. }
  36. func storeExtClientInCache(key string, extclient models.ExtClient) {
  37. extClientCacheMutex.Lock()
  38. extClientCacheMap[key] = extclient
  39. extClientCacheMutex.Unlock()
  40. }
  41. // ExtClient.GetEgressRangesOnNetwork - returns the egress ranges on network of ext client
  42. func GetEgressRangesOnNetwork(client *models.ExtClient) ([]string, error) {
  43. var result []string
  44. networkNodes, err := GetNetworkNodes(client.Network)
  45. if err != nil {
  46. return []string{}, err
  47. }
  48. for _, currentNode := range networkNodes {
  49. if currentNode.Network != client.Network {
  50. continue
  51. }
  52. if currentNode.IsEgressGateway { // add the egress gateway range(s) to the result
  53. if len(currentNode.EgressGatewayRanges) > 0 {
  54. result = append(result, currentNode.EgressGatewayRanges...)
  55. }
  56. }
  57. }
  58. return result, nil
  59. }
  60. // DeleteExtClient - deletes an existing ext client
  61. func DeleteExtClient(network string, clientid string) error {
  62. key, err := GetRecordKey(clientid, network)
  63. if err != nil {
  64. return err
  65. }
  66. err = database.DeleteRecord(database.EXT_CLIENT_TABLE_NAME, key)
  67. if err != nil {
  68. return err
  69. }
  70. deleteExtClientFromCache(key)
  71. return nil
  72. }
  73. // GetNetworkExtClients - gets the ext clients of given network
  74. func GetNetworkExtClients(network string) ([]models.ExtClient, error) {
  75. var extclients []models.ExtClient
  76. allextclients := getAllExtClientsFromCache()
  77. if len(allextclients) != 0 {
  78. for _, extclient := range allextclients {
  79. if extclient.Network == network {
  80. extclients = append(extclients, extclient)
  81. }
  82. }
  83. return extclients, nil
  84. }
  85. records, err := database.FetchRecords(database.EXT_CLIENT_TABLE_NAME)
  86. if err != nil {
  87. if database.IsEmptyRecord(err) {
  88. return extclients, nil
  89. }
  90. return extclients, err
  91. }
  92. for _, value := range records {
  93. var extclient models.ExtClient
  94. err = json.Unmarshal([]byte(value), &extclient)
  95. if err != nil {
  96. continue
  97. }
  98. key, err := GetRecordKey(extclient.ClientID, network)
  99. if err == nil {
  100. storeExtClientInCache(key, extclient)
  101. }
  102. if extclient.Network == network {
  103. extclients = append(extclients, extclient)
  104. }
  105. }
  106. return extclients, err
  107. }
  108. // GetExtClient - gets a single ext client on a network
  109. func GetExtClient(clientid string, network string) (models.ExtClient, error) {
  110. var extclient models.ExtClient
  111. key, err := GetRecordKey(clientid, network)
  112. if err != nil {
  113. return extclient, err
  114. }
  115. if extclient, ok := getExtClientFromCache(key); ok {
  116. return extclient, nil
  117. }
  118. data, err := database.FetchRecord(database.EXT_CLIENT_TABLE_NAME, key)
  119. if err != nil {
  120. return extclient, err
  121. }
  122. err = json.Unmarshal([]byte(data), &extclient)
  123. storeExtClientInCache(key, extclient)
  124. return extclient, err
  125. }
  126. // GetExtClient - gets a single ext client on a network
  127. func GetExtClientByPubKey(publicKey string, network string) (*models.ExtClient, error) {
  128. netClients, err := GetNetworkExtClients(network)
  129. if err != nil {
  130. return nil, err
  131. }
  132. for i := range netClients {
  133. ec := netClients[i]
  134. if ec.PublicKey == publicKey {
  135. return &ec, nil
  136. }
  137. }
  138. return nil, fmt.Errorf("no client found")
  139. }
  140. // CreateExtClient - creates and saves an extclient
  141. func CreateExtClient(extclient *models.ExtClient) error {
  142. // lock because we may need unique IPs and having it concurrent makes parallel calls result in same "unique" IPs
  143. addressLock.Lock()
  144. defer addressLock.Unlock()
  145. if len(extclient.PublicKey) == 0 {
  146. privateKey, err := wgtypes.GeneratePrivateKey()
  147. if err != nil {
  148. return err
  149. }
  150. extclient.PrivateKey = privateKey.String()
  151. extclient.PublicKey = privateKey.PublicKey().String()
  152. } else if len(extclient.PrivateKey) == 0 && len(extclient.PublicKey) > 0 {
  153. extclient.PrivateKey = "[ENTER PRIVATE KEY]"
  154. }
  155. parentNetwork, err := GetNetwork(extclient.Network)
  156. if err != nil {
  157. return err
  158. }
  159. if extclient.Address == "" {
  160. if parentNetwork.IsIPv4 == "yes" {
  161. newAddress, err := UniqueAddress(extclient.Network, true)
  162. if err != nil {
  163. return err
  164. }
  165. extclient.Address = newAddress.String()
  166. }
  167. }
  168. if extclient.Address6 == "" {
  169. if parentNetwork.IsIPv6 == "yes" {
  170. addr6, err := UniqueAddress6(extclient.Network, true)
  171. if err != nil {
  172. return err
  173. }
  174. extclient.Address6 = addr6.String()
  175. }
  176. }
  177. if extclient.ClientID == "" {
  178. extclient.ClientID = models.GenerateNodeName()
  179. }
  180. extclient.LastModified = time.Now().Unix()
  181. return SaveExtClient(extclient)
  182. }
  183. // SaveExtClient - saves an ext client to database
  184. func SaveExtClient(extclient *models.ExtClient) error {
  185. key, err := GetRecordKey(extclient.ClientID, extclient.Network)
  186. if err != nil {
  187. return err
  188. }
  189. data, err := json.Marshal(&extclient)
  190. if err != nil {
  191. return err
  192. }
  193. if err = database.Insert(key, string(data), database.EXT_CLIENT_TABLE_NAME); err != nil {
  194. return err
  195. }
  196. storeExtClientInCache(key, *extclient)
  197. return SetNetworkNodesLastModified(extclient.Network)
  198. }
  199. // UpdateExtClient - updates an ext client with new values
  200. func UpdateExtClient(old *models.ExtClient, update *models.CustomExtClient) models.ExtClient {
  201. new := *old
  202. new.ClientID = update.ClientID
  203. if update.PublicKey != "" && old.PublicKey != update.PublicKey {
  204. new.PublicKey = update.PublicKey
  205. }
  206. if update.DNS != old.DNS {
  207. new.DNS = update.DNS
  208. }
  209. if update.Enabled != old.Enabled {
  210. new.Enabled = update.Enabled
  211. }
  212. if update.ExtraAllowedIPs != nil && StringDifference(old.ExtraAllowedIPs, update.ExtraAllowedIPs) != nil {
  213. new.ExtraAllowedIPs = update.ExtraAllowedIPs
  214. }
  215. if update.DeniedACLs != nil && !reflect.DeepEqual(old.DeniedACLs, update.DeniedACLs) {
  216. new.DeniedACLs = update.DeniedACLs
  217. }
  218. return new
  219. }
  220. // GetExtClientsByID - gets the clients of attached gateway
  221. func GetExtClientsByID(nodeid, network string) ([]models.ExtClient, error) {
  222. var result []models.ExtClient
  223. currentClients, err := GetNetworkExtClients(network)
  224. if err != nil {
  225. return result, err
  226. }
  227. for i := range currentClients {
  228. if currentClients[i].IngressGatewayID == nodeid {
  229. result = append(result, currentClients[i])
  230. }
  231. }
  232. return result, nil
  233. }
  234. // GetAllExtClients - gets all ext clients from DB
  235. func GetAllExtClients() ([]models.ExtClient, error) {
  236. var clients = []models.ExtClient{}
  237. currentNetworks, err := GetNetworks()
  238. if err != nil && database.IsEmptyRecord(err) {
  239. return clients, nil
  240. } else if err != nil {
  241. return clients, err
  242. }
  243. for i := range currentNetworks {
  244. netName := currentNetworks[i].NetID
  245. netClients, err := GetNetworkExtClients(netName)
  246. if err != nil {
  247. continue
  248. }
  249. clients = append(clients, netClients...)
  250. }
  251. return clients, nil
  252. }
  253. // ToggleExtClientConnectivity - enables or disables an ext client
  254. func ToggleExtClientConnectivity(client *models.ExtClient, enable bool) (models.ExtClient, error) {
  255. update := models.CustomExtClient{
  256. Enabled: enable,
  257. ClientID: client.ClientID,
  258. PublicKey: client.PublicKey,
  259. DNS: client.DNS,
  260. ExtraAllowedIPs: client.ExtraAllowedIPs,
  261. DeniedACLs: client.DeniedACLs,
  262. RemoteAccessClientID: client.RemoteAccessClientID,
  263. }
  264. // update in DB
  265. newClient := UpdateExtClient(client, &update)
  266. if err := DeleteExtClient(client.Network, client.ClientID); err != nil {
  267. slog.Error("failed to delete ext client during update", "id", client.ClientID, "network", client.Network, "error", err)
  268. return newClient, err
  269. }
  270. if err := SaveExtClient(&newClient); err != nil {
  271. slog.Error("failed to save updated ext client during update", "id", newClient.ClientID, "network", newClient.Network, "error", err)
  272. return newClient, err
  273. }
  274. return newClient, nil
  275. }