serverconf.go 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591
  1. package servercfg
  2. import (
  3. "errors"
  4. "io"
  5. "net/http"
  6. "os"
  7. "strconv"
  8. "strings"
  9. "time"
  10. "github.com/gravitl/netmaker/config"
  11. "github.com/gravitl/netmaker/models"
  12. )
  13. var (
  14. Version = "dev"
  15. )
  16. // SetHost - sets the host ip
  17. func SetHost() error {
  18. remoteip, err := GetPublicIP()
  19. if err != nil {
  20. return err
  21. }
  22. os.Setenv("SERVER_HOST", remoteip)
  23. return nil
  24. }
  25. // GetServerConfig - gets the server config into memory from file or env
  26. func GetServerConfig() config.ServerConfig {
  27. var cfg config.ServerConfig
  28. cfg.APIConnString = GetAPIConnString()
  29. cfg.CoreDNSAddr = GetCoreDNSAddr()
  30. cfg.APIHost = GetAPIHost()
  31. cfg.APIPort = GetAPIPort()
  32. cfg.MQPort = GetMQPort()
  33. cfg.MasterKey = "(hidden)"
  34. cfg.DNSKey = "(hidden)"
  35. cfg.AllowedOrigin = GetAllowedOrigin()
  36. cfg.RestBackend = "off"
  37. cfg.NodeID = GetNodeID()
  38. if IsRestBackend() {
  39. cfg.RestBackend = "on"
  40. }
  41. cfg.AgentBackend = "off"
  42. if IsAgentBackend() {
  43. cfg.AgentBackend = "on"
  44. }
  45. cfg.ClientMode = "off"
  46. if IsClientMode() != "off" {
  47. cfg.ClientMode = IsClientMode()
  48. }
  49. cfg.DNSMode = "off"
  50. if IsDNSMode() {
  51. cfg.DNSMode = "on"
  52. }
  53. cfg.DisplayKeys = "off"
  54. if IsDisplayKeys() {
  55. cfg.DisplayKeys = "on"
  56. }
  57. cfg.DisableRemoteIPCheck = "off"
  58. if DisableRemoteIPCheck() {
  59. cfg.DisableRemoteIPCheck = "on"
  60. }
  61. cfg.Database = GetDB()
  62. cfg.Platform = GetPlatform()
  63. cfg.Version = GetVersion()
  64. // == auth config ==
  65. var authInfo = GetAuthProviderInfo()
  66. cfg.AuthProvider = authInfo[0]
  67. cfg.ClientID = authInfo[1]
  68. cfg.ClientSecret = authInfo[2]
  69. cfg.FrontendURL = GetFrontendURL()
  70. if GetRce() {
  71. cfg.RCE = "on"
  72. } else {
  73. cfg.RCE = "off"
  74. }
  75. cfg.Telemetry = Telemetry()
  76. cfg.ManageIPTables = ManageIPTables()
  77. services := strings.Join(GetPortForwardServiceList(), ",")
  78. cfg.PortForwardServices = services
  79. cfg.Server = GetServer()
  80. cfg.Verbosity = GetVerbosity()
  81. return cfg
  82. }
  83. // GetServerConfig - gets the server config into memory from file or env
  84. func GetServerInfo() models.ServerConfig {
  85. var cfg models.ServerConfig
  86. cfg.API = GetAPIConnString()
  87. cfg.CoreDNSAddr = GetCoreDNSAddr()
  88. cfg.APIPort = GetAPIPort()
  89. cfg.MQPort = GetMQPort()
  90. cfg.DNSMode = "off"
  91. if IsDNSMode() {
  92. cfg.DNSMode = "on"
  93. }
  94. cfg.Version = GetVersion()
  95. cfg.Server = GetServer()
  96. return cfg
  97. }
  98. // GetFrontendURL - gets the frontend url
  99. func GetFrontendURL() string {
  100. var frontend = ""
  101. if os.Getenv("FRONTEND_URL") != "" {
  102. frontend = os.Getenv("FRONTEND_URL")
  103. } else if config.Config.Server.FrontendURL != "" {
  104. frontend = config.Config.Server.FrontendURL
  105. }
  106. return frontend
  107. }
  108. // GetAPIConnString - gets the api connections string
  109. func GetAPIConnString() string {
  110. conn := ""
  111. if os.Getenv("SERVER_API_CONN_STRING") != "" {
  112. conn = os.Getenv("SERVER_API_CONN_STRING")
  113. } else if config.Config.Server.APIConnString != "" {
  114. conn = config.Config.Server.APIConnString
  115. }
  116. return conn
  117. }
  118. // SetVersion - set version of netmaker
  119. func SetVersion(v string) {
  120. Version = v
  121. }
  122. // GetVersion - version of netmaker
  123. func GetVersion() string {
  124. return Version
  125. }
  126. // GetDB - gets the database type
  127. func GetDB() string {
  128. database := "sqlite"
  129. if os.Getenv("DATABASE") != "" {
  130. database = os.Getenv("DATABASE")
  131. } else if config.Config.Server.Database != "" {
  132. database = config.Config.Server.Database
  133. }
  134. return database
  135. }
  136. // GetAPIHost - gets the api host
  137. func GetAPIHost() string {
  138. serverhost := "127.0.0.1"
  139. remoteip, _ := GetPublicIP()
  140. if os.Getenv("SERVER_HTTP_HOST") != "" {
  141. serverhost = os.Getenv("SERVER_HTTP_HOST")
  142. } else if config.Config.Server.APIHost != "" {
  143. serverhost = config.Config.Server.APIHost
  144. } else if os.Getenv("SERVER_HOST") != "" {
  145. serverhost = os.Getenv("SERVER_HOST")
  146. } else {
  147. if remoteip != "" {
  148. serverhost = remoteip
  149. }
  150. }
  151. return serverhost
  152. }
  153. // GetPodIP - get the pod's ip
  154. func GetPodIP() string {
  155. podip := "127.0.0.1"
  156. if os.Getenv("POD_IP") != "" {
  157. podip = os.Getenv("POD_IP")
  158. }
  159. return podip
  160. }
  161. // GetAPIPort - gets the api port
  162. func GetAPIPort() string {
  163. apiport := "8081"
  164. if os.Getenv("API_PORT") != "" {
  165. apiport = os.Getenv("API_PORT")
  166. } else if config.Config.Server.APIPort != "" {
  167. apiport = config.Config.Server.APIPort
  168. }
  169. return apiport
  170. }
  171. // GetDefaultNodeLimit - get node limit if one is set
  172. func GetDefaultNodeLimit() int32 {
  173. var limit int32
  174. limit = 999999999
  175. envlimit, err := strconv.Atoi(os.Getenv("DEFAULT_NODE_LIMIT"))
  176. if err == nil && envlimit != 0 {
  177. limit = int32(envlimit)
  178. } else if config.Config.Server.DefaultNodeLimit != 0 {
  179. limit = config.Config.Server.DefaultNodeLimit
  180. }
  181. return limit
  182. }
  183. // GetCoreDNSAddr - gets the core dns address
  184. func GetCoreDNSAddr() string {
  185. addr, _ := GetPublicIP()
  186. if os.Getenv("COREDNS_ADDR") != "" {
  187. addr = os.Getenv("COREDNS_ADDR")
  188. } else if config.Config.Server.CoreDNSAddr != "" {
  189. addr = config.Config.Server.CoreDNSAddr
  190. }
  191. return addr
  192. }
  193. // GetMQPort - gets the mq port
  194. func GetMQPort() string {
  195. port := "8883" //default
  196. if os.Getenv("MQ_PORT") != "" {
  197. port = os.Getenv("MQ_PORT")
  198. } else if config.Config.Server.MQPort != "" {
  199. port = config.Config.Server.MQPort
  200. }
  201. return port
  202. }
  203. // GetMessageQueueEndpoint - gets the message queue endpoint
  204. func GetMessageQueueEndpoint() (string, bool) {
  205. host, _ := GetPublicIP()
  206. if os.Getenv("MQ_HOST") != "" {
  207. host = os.Getenv("MQ_HOST")
  208. } else if config.Config.Server.MQHOST != "" {
  209. host = config.Config.Server.MQHOST
  210. }
  211. secure := strings.Contains(host, "mqtts") || strings.Contains(host, "ssl")
  212. return host + ":" + GetMQServerPort(), secure
  213. }
  214. // GetMasterKey - gets the configured master key of server
  215. func GetMasterKey() string {
  216. key := ""
  217. if os.Getenv("MASTER_KEY") != "" {
  218. key = os.Getenv("MASTER_KEY")
  219. } else if config.Config.Server.MasterKey != "" {
  220. key = config.Config.Server.MasterKey
  221. }
  222. return key
  223. }
  224. // GetDNSKey - gets the configured dns key of server
  225. func GetDNSKey() string {
  226. key := "secretkey"
  227. if os.Getenv("DNS_KEY") != "" {
  228. key = os.Getenv("DNS_KEY")
  229. } else if config.Config.Server.DNSKey != "" {
  230. key = config.Config.Server.DNSKey
  231. }
  232. return key
  233. }
  234. // GetAllowedOrigin - get the allowed origin
  235. func GetAllowedOrigin() string {
  236. allowedorigin := "*"
  237. if os.Getenv("CORS_ALLOWED_ORIGIN") != "" {
  238. allowedorigin = os.Getenv("CORS_ALLOWED_ORIGIN")
  239. } else if config.Config.Server.AllowedOrigin != "" {
  240. allowedorigin = config.Config.Server.AllowedOrigin
  241. }
  242. return allowedorigin
  243. }
  244. // IsRestBackend - checks if rest is on or off
  245. func IsRestBackend() bool {
  246. isrest := true
  247. if os.Getenv("REST_BACKEND") != "" {
  248. if os.Getenv("REST_BACKEND") == "off" {
  249. isrest = false
  250. }
  251. } else if config.Config.Server.RestBackend != "" {
  252. if config.Config.Server.RestBackend == "off" {
  253. isrest = false
  254. }
  255. }
  256. return isrest
  257. }
  258. // IsAgentBackend - checks if agent backed is on or off
  259. func IsAgentBackend() bool {
  260. isagent := true
  261. if os.Getenv("AGENT_BACKEND") != "" {
  262. if os.Getenv("AGENT_BACKEND") == "off" {
  263. isagent = false
  264. }
  265. } else if config.Config.Server.AgentBackend != "" {
  266. if config.Config.Server.AgentBackend == "off" {
  267. isagent = false
  268. }
  269. }
  270. return isagent
  271. }
  272. // IsMessageQueueBackend - checks if message queue is on or off
  273. func IsMessageQueueBackend() bool {
  274. ismessagequeue := true
  275. if os.Getenv("MESSAGEQUEUE_BACKEND") != "" {
  276. if os.Getenv("MESSAGEQUEUE_BACKEND") == "off" {
  277. ismessagequeue = false
  278. }
  279. } else if config.Config.Server.MessageQueueBackend != "" {
  280. if config.Config.Server.MessageQueueBackend == "off" {
  281. ismessagequeue = false
  282. }
  283. }
  284. return ismessagequeue
  285. }
  286. // IsClientMode - checks if it should run in client mode
  287. func IsClientMode() string {
  288. isclient := "on"
  289. if os.Getenv("CLIENT_MODE") == "off" {
  290. isclient = "off"
  291. }
  292. if config.Config.Server.ClientMode == "off" {
  293. isclient = "off"
  294. }
  295. return isclient
  296. }
  297. // Telemetry - checks if telemetry data should be sent
  298. func Telemetry() string {
  299. telemetry := "on"
  300. if os.Getenv("TELEMETRY") == "off" {
  301. telemetry = "off"
  302. }
  303. if config.Config.Server.Telemetry == "off" {
  304. telemetry = "off"
  305. }
  306. return telemetry
  307. }
  308. // ManageIPTables - checks if iptables should be manipulated on host
  309. func ManageIPTables() string {
  310. manage := "on"
  311. if os.Getenv("MANAGE_IPTABLES") == "off" {
  312. manage = "off"
  313. }
  314. if config.Config.Server.ManageIPTables == "off" {
  315. manage = "off"
  316. }
  317. return manage
  318. }
  319. // GetServer - gets the server name
  320. func GetServer() string {
  321. server := ""
  322. if os.Getenv("SERVER_NAME") != "" {
  323. server = os.Getenv("SERVER_NAME")
  324. } else if config.Config.Server.Server != "" {
  325. server = config.Config.Server.Server
  326. }
  327. return server
  328. }
  329. func GetVerbosity() int32 {
  330. var verbosity = 0
  331. var err error
  332. if os.Getenv("VERBOSITY") != "" {
  333. verbosity, err = strconv.Atoi(os.Getenv("VERBOSITY"))
  334. if err != nil {
  335. verbosity = 0
  336. }
  337. } else if config.Config.Server.Verbosity != 0 {
  338. verbosity = int(config.Config.Server.Verbosity)
  339. }
  340. if verbosity < 0 || verbosity > 4 {
  341. verbosity = 0
  342. }
  343. return int32(verbosity)
  344. }
  345. // IsDNSMode - should it run with DNS
  346. func IsDNSMode() bool {
  347. isdns := true
  348. if os.Getenv("DNS_MODE") != "" {
  349. if os.Getenv("DNS_MODE") == "off" {
  350. isdns = false
  351. }
  352. } else if config.Config.Server.DNSMode != "" {
  353. if config.Config.Server.DNSMode == "off" {
  354. isdns = false
  355. }
  356. }
  357. return isdns
  358. }
  359. // IsDisplayKeys - should server be able to display keys?
  360. func IsDisplayKeys() bool {
  361. isdisplay := true
  362. if os.Getenv("DISPLAY_KEYS") != "" {
  363. if os.Getenv("DISPLAY_KEYS") == "off" {
  364. isdisplay = false
  365. }
  366. } else if config.Config.Server.DisplayKeys != "" {
  367. if config.Config.Server.DisplayKeys == "off" {
  368. isdisplay = false
  369. }
  370. }
  371. return isdisplay
  372. }
  373. // DisableRemoteIPCheck - disable the remote ip check
  374. func DisableRemoteIPCheck() bool {
  375. disabled := false
  376. if os.Getenv("DISABLE_REMOTE_IP_CHECK") != "" {
  377. if os.Getenv("DISABLE_REMOTE_IP_CHECK") == "on" {
  378. disabled = true
  379. }
  380. } else if config.Config.Server.DisableRemoteIPCheck != "" {
  381. if config.Config.Server.DisableRemoteIPCheck == "on" {
  382. disabled = true
  383. }
  384. }
  385. return disabled
  386. }
  387. // GetPublicIP - gets public ip
  388. func GetPublicIP() (string, error) {
  389. endpoint := ""
  390. var err error
  391. iplist := []string{"https://ip.server.gravitl.com", "https://ifconfig.me", "https://api.ipify.org", "https://ipinfo.io/ip"}
  392. for _, ipserver := range iplist {
  393. client := &http.Client{
  394. Timeout: time.Second * 10,
  395. }
  396. resp, err := client.Get(ipserver)
  397. if err != nil {
  398. continue
  399. }
  400. defer resp.Body.Close()
  401. if resp.StatusCode == http.StatusOK {
  402. bodyBytes, err := io.ReadAll(resp.Body)
  403. if err != nil {
  404. continue
  405. }
  406. endpoint = string(bodyBytes)
  407. break
  408. }
  409. }
  410. if err == nil && endpoint == "" {
  411. err = errors.New("public address not found")
  412. }
  413. return endpoint, err
  414. }
  415. // GetPlatform - get the system type of server
  416. func GetPlatform() string {
  417. platform := "linux"
  418. if os.Getenv("PLATFORM") != "" {
  419. platform = os.Getenv("PLATFORM")
  420. } else if config.Config.Server.Platform != "" {
  421. platform = config.Config.Server.SQLConn
  422. }
  423. return platform
  424. }
  425. // GetIPForwardServiceList - get the list of services that the server should be forwarding
  426. func GetPortForwardServiceList() []string {
  427. //services := "mq,dns,ssh"
  428. services := ""
  429. if os.Getenv("PORT_FORWARD_SERVICES") != "" {
  430. services = os.Getenv("PORT_FORWARD_SERVICES")
  431. } else if config.Config.Server.PortForwardServices != "" {
  432. services = config.Config.Server.PortForwardServices
  433. }
  434. serviceSlice := strings.Split(services, ",")
  435. return serviceSlice
  436. }
  437. // GetSQLConn - get the sql connection string
  438. func GetSQLConn() string {
  439. sqlconn := "http://"
  440. if os.Getenv("SQL_CONN") != "" {
  441. sqlconn = os.Getenv("SQL_CONN")
  442. } else if config.Config.Server.SQLConn != "" {
  443. sqlconn = config.Config.Server.SQLConn
  444. }
  445. return sqlconn
  446. }
  447. // IsHostNetwork - checks if running on host network
  448. func IsHostNetwork() bool {
  449. ishost := false
  450. if os.Getenv("HOST_NETWORK") == "on" {
  451. ishost = true
  452. } else if config.Config.Server.HostNetwork == "on" {
  453. ishost = true
  454. }
  455. return ishost
  456. }
  457. // GetNodeID - gets the node id
  458. func GetNodeID() string {
  459. var id string
  460. var err error
  461. // id = getMacAddr()
  462. if os.Getenv("NODE_ID") != "" {
  463. id = os.Getenv("NODE_ID")
  464. } else if config.Config.Server.NodeID != "" {
  465. id = config.Config.Server.NodeID
  466. } else {
  467. id, err = os.Hostname()
  468. if err != nil {
  469. return ""
  470. }
  471. }
  472. return id
  473. }
  474. func SetNodeID(id string) {
  475. config.Config.Server.NodeID = id
  476. }
  477. // GetServerCheckinInterval - gets the server check-in time
  478. func GetServerCheckinInterval() int64 {
  479. var t = int64(5)
  480. var envt, _ = strconv.Atoi(os.Getenv("SERVER_CHECKIN_INTERVAL"))
  481. if envt > 0 {
  482. t = int64(envt)
  483. } else if config.Config.Server.ServerCheckinInterval > 0 {
  484. t = config.Config.Server.ServerCheckinInterval
  485. }
  486. return t
  487. }
  488. // GetAuthProviderInfo = gets the oauth provider info
  489. func GetAuthProviderInfo() (pi []string) {
  490. var authProvider = ""
  491. defer func() {
  492. if authProvider == "oidc" {
  493. if os.Getenv("OIDC_ISSUER") != "" {
  494. pi = append(pi, os.Getenv("OIDC_ISSUER"))
  495. } else if config.Config.Server.OIDCIssuer != "" {
  496. pi = append(pi, config.Config.Server.OIDCIssuer)
  497. } else {
  498. pi = []string{"", "", ""}
  499. }
  500. }
  501. }()
  502. if os.Getenv("AUTH_PROVIDER") != "" && os.Getenv("CLIENT_ID") != "" && os.Getenv("CLIENT_SECRET") != "" {
  503. authProvider = strings.ToLower(os.Getenv("AUTH_PROVIDER"))
  504. if authProvider == "google" || authProvider == "azure-ad" || authProvider == "github" || authProvider == "oidc" {
  505. return []string{authProvider, os.Getenv("CLIENT_ID"), os.Getenv("CLIENT_SECRET")}
  506. } else {
  507. authProvider = ""
  508. }
  509. } else if config.Config.Server.AuthProvider != "" && config.Config.Server.ClientID != "" && config.Config.Server.ClientSecret != "" {
  510. authProvider = strings.ToLower(config.Config.Server.AuthProvider)
  511. if authProvider == "google" || authProvider == "azure-ad" || authProvider == "github" || authProvider == "oidc" {
  512. return []string{authProvider, config.Config.Server.ClientID, config.Config.Server.ClientSecret}
  513. }
  514. }
  515. return []string{"", "", ""}
  516. }
  517. // GetAzureTenant - retrieve the azure tenant ID from env variable or config file
  518. func GetAzureTenant() string {
  519. var azureTenant = ""
  520. if os.Getenv("AZURE_TENANT") != "" {
  521. azureTenant = os.Getenv("AZURE_TENANT")
  522. } else if config.Config.Server.AzureTenant != "" {
  523. azureTenant = config.Config.Server.AzureTenant
  524. }
  525. return azureTenant
  526. }
  527. // GetRce - sees if Rce is enabled, off by default
  528. func GetRce() bool {
  529. return os.Getenv("RCE") == "on" || config.Config.Server.RCE == "on"
  530. }
  531. // GetMQServerPort - get mq port for server
  532. func GetMQServerPort() string {
  533. port := "1883" //default
  534. if os.Getenv("MQ_SERVER_PORT") != "" {
  535. port = os.Getenv("MQ_SERVER_PORT")
  536. } else if config.Config.Server.MQServerPort != "" {
  537. port = config.Config.Server.MQServerPort
  538. }
  539. return port
  540. }