handlers.go 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334
  1. package mq
  2. import (
  3. "encoding/json"
  4. "fmt"
  5. mqtt "github.com/eclipse/paho.mqtt.golang"
  6. "github.com/google/uuid"
  7. "github.com/gravitl/netmaker/database"
  8. "github.com/gravitl/netmaker/logic"
  9. "github.com/gravitl/netmaker/logic/hostactions"
  10. "github.com/gravitl/netmaker/models"
  11. "github.com/gravitl/netmaker/netclient/ncutils"
  12. "github.com/gravitl/netmaker/servercfg"
  13. "golang.org/x/exp/slog"
  14. "golang.zx2c4.com/wireguard/wgctrl/wgtypes"
  15. )
  16. // UpdateMetrics message Handler -- handles updates from client nodes for metrics
  17. var UpdateMetrics = func(client mqtt.Client, msg mqtt.Message) {
  18. }
  19. // DefaultHandler default message queue handler -- NOT USED
  20. func DefaultHandler(client mqtt.Client, msg mqtt.Message) {
  21. slog.Info("mqtt default handler", "topic", msg.Topic(), "message", msg.Payload())
  22. }
  23. // UpdateNode message Handler -- handles updates from client nodes
  24. func UpdateNode(client mqtt.Client, msg mqtt.Message) {
  25. id, err := GetID(msg.Topic())
  26. if err != nil {
  27. slog.Error("error getting node.ID ", "topic", msg.Topic(), "error", err)
  28. return
  29. }
  30. currentNode, err := logic.GetNodeByID(id)
  31. if err != nil {
  32. slog.Error("error getting node", "id", id, "error", err)
  33. return
  34. }
  35. decrypted, decryptErr := DecryptMsg(&currentNode, msg.Payload())
  36. if decryptErr != nil {
  37. slog.Error("failed to decrypt message for node", "id", id, "error", decryptErr)
  38. return
  39. }
  40. var newNode models.Node
  41. if err := json.Unmarshal(decrypted, &newNode); err != nil {
  42. slog.Error("error unmarshaling payload", "error", err)
  43. return
  44. }
  45. ifaceDelta := logic.IfaceDelta(&currentNode, &newNode)
  46. if servercfg.IsPro && ifaceDelta {
  47. if err = logic.EnterpriseResetAllPeersFailovers(currentNode.ID, currentNode.Network); err != nil {
  48. slog.Warn("failed to reset failover list during node update", "nodeid", currentNode.ID, "network", currentNode.Network)
  49. }
  50. }
  51. newNode.SetLastCheckIn()
  52. if err := logic.UpdateNode(&currentNode, &newNode); err != nil {
  53. slog.Error("error saving node", "id", id, "error", err)
  54. return
  55. }
  56. if ifaceDelta { // reduce number of unneeded updates, by only sending on iface changes
  57. if !newNode.Connected {
  58. err = PublishDeletedNodePeerUpdate(&newNode)
  59. host, err := logic.GetHost(newNode.HostID.String())
  60. if err != nil {
  61. slog.Error("failed to get host for the node", "nodeid", newNode.ID.String(), "error", err)
  62. return
  63. }
  64. allNodes, err := logic.GetAllNodes()
  65. if err == nil {
  66. PublishSingleHostPeerUpdate(host, allNodes, nil, nil)
  67. }
  68. } else {
  69. err = PublishPeerUpdate()
  70. }
  71. if err != nil {
  72. slog.Warn("error updating peers when node informed the server of an interface change", "nodeid", currentNode.ID, "error", err)
  73. }
  74. }
  75. slog.Info("updated node", "id", id, "newnodeid", newNode.ID)
  76. }
  77. // UpdateHost message Handler -- handles host updates from clients
  78. func UpdateHost(client mqtt.Client, msg mqtt.Message) {
  79. id, err := GetID(msg.Topic())
  80. if err != nil {
  81. slog.Error("error getting host.ID sent on ", "topic", msg.Topic(), "error", err)
  82. return
  83. }
  84. currentHost, err := logic.GetHost(id)
  85. if err != nil {
  86. slog.Error("error getting host", "id", id, "error", err)
  87. return
  88. }
  89. decrypted, decryptErr := decryptMsgWithHost(currentHost, msg.Payload())
  90. if decryptErr != nil {
  91. slog.Error("failed to decrypt message for host", "id", id, "error", decryptErr)
  92. return
  93. }
  94. var hostUpdate models.HostUpdate
  95. if err := json.Unmarshal(decrypted, &hostUpdate); err != nil {
  96. slog.Error("error unmarshaling payload", "error", err)
  97. return
  98. }
  99. slog.Info("recieved host update", "name", hostUpdate.Host.Name, "id", hostUpdate.Host.ID)
  100. var sendPeerUpdate bool
  101. switch hostUpdate.Action {
  102. case models.CheckIn:
  103. sendPeerUpdate = handleHostCheckin(&hostUpdate.Host, currentHost)
  104. case models.Acknowledgement:
  105. hu := hostactions.GetAction(currentHost.ID.String())
  106. if hu != nil {
  107. if err = HostUpdate(hu); err != nil {
  108. slog.Error("failed to send new node to host", "name", hostUpdate.Host.Name, "id", currentHost.ID, "error", err)
  109. return
  110. } else {
  111. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  112. if err = AppendNodeUpdateACL(hu.Host.ID.String(), hu.Node.Network, hu.Node.ID.String(), servercfg.GetServer()); err != nil {
  113. slog.Error("failed to add ACLs for EMQX node", "error", err)
  114. return
  115. }
  116. }
  117. nodes, err := logic.GetAllNodes()
  118. if err != nil {
  119. return
  120. }
  121. if err = PublishSingleHostPeerUpdate(currentHost, nodes, nil, nil); err != nil {
  122. slog.Error("failed peers publish after join acknowledged", "name", hostUpdate.Host.Name, "id", currentHost.ID, "error", err)
  123. return
  124. }
  125. if err = HandleNewNodeDNS(&hu.Host, &hu.Node); err != nil {
  126. slog.Error("failed to send dns update after node added to host", "name", hostUpdate.Host.Name, "id", currentHost.ID, "error", err)
  127. return
  128. }
  129. }
  130. }
  131. case models.UpdateHost:
  132. if hostUpdate.Host.PublicKey != currentHost.PublicKey {
  133. //remove old peer entry
  134. peerUpdate := models.HostPeerUpdate{
  135. ServerVersion: servercfg.GetVersion(),
  136. Peers: []wgtypes.PeerConfig{
  137. {
  138. PublicKey: currentHost.PublicKey,
  139. Remove: true,
  140. },
  141. },
  142. }
  143. data, err := json.Marshal(&peerUpdate)
  144. if err != nil {
  145. slog.Error("failed to marshal peer update", "error", err)
  146. }
  147. hosts := logic.GetRelatedHosts(hostUpdate.Host.ID.String())
  148. server := servercfg.GetServer()
  149. for _, host := range hosts {
  150. publish(&host, fmt.Sprintf("peers/host/%s/%s", host.ID.String(), server), data)
  151. }
  152. }
  153. sendPeerUpdate = logic.UpdateHostFromClient(&hostUpdate.Host, currentHost)
  154. err := logic.UpsertHost(currentHost)
  155. if err != nil {
  156. slog.Error("failed to update host", "id", currentHost.ID, "error", err)
  157. return
  158. }
  159. case models.DeleteHost:
  160. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  161. // delete EMQX credentials for host
  162. if err := DeleteEmqxUser(currentHost.ID.String()); err != nil {
  163. slog.Error("failed to remove host credentials from EMQX", "id", currentHost.ID, "error", err)
  164. return
  165. }
  166. }
  167. // notify of deleted peer change
  168. go func(host models.Host) {
  169. for _, nodeID := range host.Nodes {
  170. node, err := logic.GetNodeByID(nodeID)
  171. if err == nil {
  172. var gwClients []models.ExtClient
  173. if node.IsIngressGateway {
  174. gwClients = logic.GetGwExtclients(node.ID.String(), node.Network)
  175. }
  176. go PublishMqUpdatesForDeletedNode(node, false, gwClients)
  177. }
  178. }
  179. }(*currentHost)
  180. if err := logic.DisassociateAllNodesFromHost(currentHost.ID.String()); err != nil {
  181. slog.Error("failed to delete all nodes of host", "id", currentHost.ID, "error", err)
  182. return
  183. }
  184. if err := logic.RemoveHostByID(currentHost.ID.String()); err != nil {
  185. slog.Error("failed to delete host", "id", currentHost.ID, "error", err)
  186. return
  187. }
  188. sendPeerUpdate = true
  189. case models.RegisterWithTurn:
  190. if servercfg.IsUsingTurn() {
  191. err = logic.RegisterHostWithTurn(hostUpdate.Host.ID.String(), hostUpdate.Host.HostPass)
  192. if err != nil {
  193. slog.Error("failed to register host with turn server", "id", currentHost.ID, "error", err)
  194. return
  195. }
  196. }
  197. }
  198. if sendPeerUpdate {
  199. err := PublishPeerUpdate()
  200. if err != nil {
  201. slog.Error("failed to publish peer update", "error", err)
  202. }
  203. }
  204. }
  205. // ClientPeerUpdate message handler -- handles updating peers after signal from client nodes
  206. func ClientPeerUpdate(client mqtt.Client, msg mqtt.Message) {
  207. id, err := GetID(msg.Topic())
  208. if err != nil {
  209. slog.Error("error getting node.ID sent on ", "topic", msg.Topic(), "error", err)
  210. return
  211. }
  212. currentNode, err := logic.GetNodeByID(id)
  213. if err != nil {
  214. slog.Error("error getting node", "id", id, "error", err)
  215. return
  216. }
  217. decrypted, decryptErr := DecryptMsg(&currentNode, msg.Payload())
  218. if decryptErr != nil {
  219. slog.Error("failed to decrypt message for node", "id", id, "error", decryptErr)
  220. return
  221. }
  222. switch decrypted[0] {
  223. case ncutils.ACK:
  224. // do we still need this
  225. case ncutils.DONE:
  226. if err = PublishPeerUpdate(); err != nil {
  227. slog.Error("error publishing peer update for node", "id", currentNode.ID, "error", err)
  228. return
  229. }
  230. }
  231. slog.Info("sent peer updates after signal received from", "id", id)
  232. }
  233. func HandleNewNodeDNS(host *models.Host, node *models.Node) error {
  234. dns := models.DNSUpdate{
  235. Action: models.DNSInsert,
  236. Name: host.Name + "." + node.Network,
  237. }
  238. if node.Address.IP != nil {
  239. dns.Address = node.Address.IP.String()
  240. if err := PublishDNSUpdate(node.Network, dns); err != nil {
  241. return err
  242. }
  243. } else if node.Address6.IP != nil {
  244. dns.Address = node.Address6.IP.String()
  245. if err := PublishDNSUpdate(node.Network, dns); err != nil {
  246. return err
  247. }
  248. }
  249. if err := PublishAllDNS(node); err != nil {
  250. return err
  251. }
  252. return nil
  253. }
  254. func handleHostCheckin(h, currentHost *models.Host) bool {
  255. if h == nil {
  256. return false
  257. }
  258. for i := range currentHost.Nodes {
  259. currNodeID := currentHost.Nodes[i]
  260. node, err := logic.GetNodeByID(currNodeID)
  261. if err != nil {
  262. if database.IsEmptyRecord(err) {
  263. fakeNode := models.Node{}
  264. fakeNode.ID, _ = uuid.Parse(currNodeID)
  265. fakeNode.Action = models.NODE_DELETE
  266. fakeNode.PendingDelete = true
  267. if err := NodeUpdate(&fakeNode); err != nil {
  268. slog.Warn("failed to inform host to remove node", "host", currentHost.Name, "hostid", currentHost.ID, "nodeid", currNodeID, "error", err)
  269. }
  270. }
  271. continue
  272. }
  273. if err := logic.UpdateNodeCheckin(&node); err != nil {
  274. slog.Warn("failed to update node on checkin", "nodeid", node.ID, "error", err)
  275. }
  276. }
  277. for i := range h.Interfaces {
  278. h.Interfaces[i].AddressString = h.Interfaces[i].Address.String()
  279. }
  280. /// version or firewall in use change does not require a peerUpdate
  281. if h.Version != currentHost.Version || h.FirewallInUse != currentHost.FirewallInUse {
  282. currentHost.FirewallInUse = h.FirewallInUse
  283. currentHost.Version = h.Version
  284. if err := logic.UpsertHost(currentHost); err != nil {
  285. slog.Error("failed to update host after check-in", "name", h.Name, "id", h.ID, "error", err)
  286. return false
  287. }
  288. }
  289. ifaceDelta := len(h.Interfaces) != len(currentHost.Interfaces) ||
  290. !h.EndpointIP.Equal(currentHost.EndpointIP) ||
  291. (len(h.NatType) > 0 && h.NatType != currentHost.NatType) ||
  292. h.DefaultInterface != currentHost.DefaultInterface ||
  293. (h.ListenPort != 0 && h.ListenPort != currentHost.ListenPort) || (h.WgPublicListenPort != 0 && h.WgPublicListenPort != currentHost.WgPublicListenPort)
  294. if ifaceDelta { // only save if something changes
  295. currentHost.EndpointIP = h.EndpointIP
  296. currentHost.Interfaces = h.Interfaces
  297. currentHost.DefaultInterface = h.DefaultInterface
  298. currentHost.NatType = h.NatType
  299. if h.ListenPort != 0 {
  300. currentHost.ListenPort = h.ListenPort
  301. }
  302. if h.WgPublicListenPort != 0 {
  303. currentHost.WgPublicListenPort = h.WgPublicListenPort
  304. }
  305. if err := logic.UpsertHost(currentHost); err != nil {
  306. slog.Error("failed to update host after check-in", "name", h.Name, "id", h.ID, "error", err)
  307. return false
  308. }
  309. slog.Info("updated host after check-in", "name", currentHost.Name, "id", currentHost.ID)
  310. }
  311. slog.Info("check-in processed for host", "name", h.Name, "id", h.ID)
  312. return ifaceDelta
  313. }