123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638 |
- package logic
- import (
- "encoding/json"
- "errors"
- "fmt"
- "sort"
- "strings"
- "time"
- "github.com/go-playground/validator/v10"
- "github.com/google/uuid"
- "github.com/gravitl/netmaker/database"
- "github.com/gravitl/netmaker/logger"
- "github.com/gravitl/netmaker/models"
- "github.com/gravitl/netmaker/servercfg"
- "github.com/gravitl/netmaker/validation"
- "golang.org/x/crypto/bcrypt"
- )
- // GetNetworkNodes - gets the nodes of a network
- func GetNetworkNodes(network string) ([]models.Node, error) {
- var nodes []models.Node
- allnodes, err := GetAllNodes()
- if err != nil {
- return []models.Node{}, err
- }
- for _, node := range allnodes {
- if node.Network == network {
- nodes = append(nodes, node)
- }
- }
- return nodes, nil
- }
- // GetSortedNetworkServerNodes - gets nodes of a network, except sorted by update time
- func GetSortedNetworkServerNodes(network string) ([]models.Node, error) {
- var nodes []models.Node
- collection, err := database.FetchRecords(database.NODES_TABLE_NAME)
- if err != nil {
- if database.IsEmptyRecord(err) {
- return []models.Node{}, nil
- }
- return nodes, err
- }
- for _, value := range collection {
- var node models.Node
- err := json.Unmarshal([]byte(value), &node)
- if err != nil {
- continue
- }
- if node.Network == network && node.IsServer == "yes" {
- nodes = append(nodes, node)
- }
- }
- sort.Sort(models.NodesArray(nodes))
- return nodes, nil
- }
- // GetServerNodes - gets the server nodes of a network
- func GetServerNodes(network string) []models.Node {
- var serverNodes = make([]models.Node, 0)
- var nodes, err = GetNetworkNodes(network)
- if err != nil {
- return serverNodes
- }
- for _, node := range nodes {
- if node.IsServer == "yes" {
- serverNodes = append(serverNodes, node)
- }
- }
- return serverNodes
- }
- // UncordonNode - approves a node to join a network
- func UncordonNode(nodeid string) (models.Node, error) {
- node, err := GetNodeByID(nodeid)
- if err != nil {
- return models.Node{}, err
- }
- node.SetLastModified()
- node.IsPending = "no"
- node.PullChanges = "yes"
- data, err := json.Marshal(&node)
- if err != nil {
- return node, err
- }
- err = database.Insert(node.ID, string(data), database.NODES_TABLE_NAME)
- return node, err
- }
- // GetPeers - gets the peers of a given server node
- func GetPeers(node *models.Node) ([]models.Node, error) {
- if IsLeader(node) {
- setNetworkServerPeers(node)
- }
- excludeIsRelayed := node.IsRelay != "yes"
- var relayedNode string
- if node.IsRelayed == "yes" {
- relayedNode = node.Address
- }
- peers, err := GetPeersList(node.Network, excludeIsRelayed, relayedNode)
- if err != nil {
- return nil, err
- }
- return peers, nil
- }
- // SetIfLeader - gets the peers of a given server node
- func SetPeersIfLeader(node *models.Node) {
- if IsLeader(node) {
- setNetworkServerPeers(node)
- }
- }
- // IsLeader - determines if a given server node is a leader
- func IsLeader(node *models.Node) bool {
- nodes, err := GetSortedNetworkServerNodes(node.Network)
- if err != nil {
- logger.Log(0, "ERROR: COULD NOT RETRIEVE SERVER NODES. THIS WILL BREAK HOLE PUNCHING.")
- return false
- }
- for _, n := range nodes {
- if n.LastModified > time.Now().Add(-1*time.Minute).Unix() {
- return n.Address == node.Address
- }
- }
- return len(nodes) <= 1 || nodes[1].Address == node.Address
- }
- // == DB related functions ==
- // UpdateNode - takes a node and updates another node with it's values
- func UpdateNode(currentNode *models.Node, newNode *models.Node) error {
- if newNode.Address != currentNode.Address {
- if network, err := GetParentNetwork(newNode.Network); err == nil {
- if !IsAddressInCIDR(newNode.Address, network.AddressRange) {
- return fmt.Errorf("invalid address provided; out of network range for node %s", newNode.ID)
- }
- }
- }
- newNode.Fill(currentNode)
- if currentNode.IsServer == "yes" && !validateServer(currentNode, newNode) {
- return fmt.Errorf("this operation is not supported on server nodes")
- }
- // check for un-settable server values
- if err := ValidateNode(newNode, true); err != nil {
- return err
- }
- if newNode.ID == currentNode.ID {
- newNode.SetLastModified()
- if data, err := json.Marshal(newNode); err != nil {
- return err
- } else {
- return database.Insert(newNode.ID, string(data), database.NODES_TABLE_NAME)
- }
- }
- return fmt.Errorf("failed to update node " + newNode.MacAddress + ", cannot change macaddress.")
- }
- // IsNodeIDUnique - checks if node id is unique
- func IsNodeIDUnique(node *models.Node) (bool, error) {
- _, err := database.FetchRecord(database.NODES_TABLE_NAME, node.ID)
- return database.IsEmptyRecord(err), err
- }
- // ValidateNode - validates node values
- func ValidateNode(node *models.Node, isUpdate bool) error {
- v := validator.New()
- _ = v.RegisterValidation("macaddress_unique", func(fl validator.FieldLevel) bool {
- if isUpdate {
- return true
- }
- isFieldUnique, _ := IsNodeIDUnique(node)
- return isFieldUnique
- })
- _ = v.RegisterValidation("network_exists", func(fl validator.FieldLevel) bool {
- _, err := GetNetworkByNode(node)
- return err == nil
- })
- _ = v.RegisterValidation("in_charset", func(fl validator.FieldLevel) bool {
- isgood := node.NameInNodeCharSet()
- return isgood
- })
- _ = v.RegisterValidation("checkyesorno", func(fl validator.FieldLevel) bool {
- return validation.CheckYesOrNo(fl)
- })
- err := v.Struct(node)
- return err
- }
- // CreateNode - creates a node in database
- func CreateNode(node *models.Node) error {
- //encrypt that password so we never see it
- hash, err := bcrypt.GenerateFromPassword([]byte(node.Password), 5)
- if err != nil {
- return err
- }
- //set password to encrypted password
- node.Password = string(hash)
- if node.Name == models.NODE_SERVER_NAME {
- node.IsServer = "yes"
- }
- if node.DNSOn == "" {
- if servercfg.IsDNSMode() {
- node.DNSOn = "yes"
- } else {
- node.DNSOn = "no"
- }
- }
- SetNodeDefaults(node)
- if node.IsServer == "yes" {
- if node.Address, err = UniqueAddressServer(node.Network); err != nil {
- return err
- }
- } else if node.Address == "" {
- if node.Address, err = UniqueAddress(node.Network); err != nil {
- return err
- }
- } else if !IsIPUnique(node.Network, node.Address, database.NODES_TABLE_NAME, false) {
- return fmt.Errorf("invalid address: ipv4 " + node.Address + " is not unique")
- }
- if node.Address6 == "" {
- if node.Address6, err = UniqueAddress6(node.Network); err != nil {
- return err
- }
- } else if !IsIPUnique(node.Network, node.Address6, database.NODES_TABLE_NAME, true) {
- return fmt.Errorf("invalid address: ipv6 " + node.Address6 + " is not unique")
- }
- // TODO: This covers legacy nodes, eventually want to remove legacy check
- if node.IsServer == "yes" {
- node.ID = uuid.NewString()
- } else if node.IsServer != "yes" || (node.ID == "" || strings.Contains(node.ID, "###")) {
- node.ID = uuid.NewString()
- }
- //Create a JWT for the node
- tokenString, _ := CreateJWT(node.ID, node.MacAddress, node.Network)
- if tokenString == "" {
- //returnErrorResponse(w, r, errorResponse)
- return err
- }
- err = ValidateNode(node, false)
- if err != nil {
- return err
- }
- nodebytes, err := json.Marshal(&node)
- if err != nil {
- return err
- }
- err = database.Insert(node.ID, string(nodebytes), database.NODES_TABLE_NAME)
- if err != nil {
- return err
- }
- if node.IsPending != "yes" {
- DecrimentKey(node.Network, node.AccessKey)
- }
- SetNetworkNodesLastModified(node.Network)
- if servercfg.IsDNSMode() {
- err = SetDNS()
- }
- return err
- }
- // IfaceDelta - is there interface changes
- // func IfaceDelta(currentNode *models.Node, newNode *models.Node) bool {
- // SetNodeDefaults(newNode)
- // // single comparison statements
- // if currentNode.IsServer != "yes" {
- // return false
- // }
- // if newNode.Endpoint != currentNode.Endpoint ||
- // newNode.LocalAddress != currentNode.LocalAddress ||
- // newNode.PublicKey != currentNode.PublicKey ||
- // newNode.Address != currentNode.Address ||
- // newNode.IsEgressGateway != currentNode.IsEgressGateway ||
- // newNode.IsIngressGateway != currentNode.IsIngressGateway ||
- // newNode.IsRelay != currentNode.IsRelay ||
- // newNode.UDPHolePunch != currentNode.UDPHolePunch ||
- // newNode.IsPending != currentNode.IsPending ||
- // newNode.PersistentKeepalive != currentNode.PersistentKeepalive ||
- // len(newNode.ExcludedAddrs) != len(currentNode.ExcludedAddrs) ||
- // len(newNode.AllowedIPs) != len(currentNode.AllowedIPs) {
- // return true
- // }
- // // multi-comparison statements
- // if newNode.IsDualStack == "yes" {
- // if newNode.Address6 != currentNode.Address6 {
- // return true
- // }
- // }
- // if newNode.IsEgressGateway == "yes" {
- // if len(currentNode.EgressGatewayRanges) != len(newNode.EgressGatewayRanges) {
- // return true
- // }
- // for _, address := range newNode.EgressGatewayRanges {
- // if !StringSliceContains(currentNode.EgressGatewayRanges, address) {
- // return true
- // }
- // }
- // }
- // if newNode.IsRelay == "yes" {
- // if len(currentNode.RelayAddrs) != len(newNode.RelayAddrs) {
- // return true
- // }
- // for _, address := range newNode.RelayAddrs {
- // if !StringSliceContains(currentNode.RelayAddrs, address) {
- // return true
- // }
- // }
- // }
- // for _, address := range newNode.AllowedIPs {
- // if !StringSliceContains(currentNode.AllowedIPs, address) {
- // return true
- // }
- // }
- // return false
- // }
- // GetAllNodes - returns all nodes in the DB
- func GetAllNodes() ([]models.Node, error) {
- var nodes []models.Node
- collection, err := database.FetchRecords(database.NODES_TABLE_NAME)
- if err != nil {
- if database.IsEmptyRecord(err) {
- return []models.Node{}, nil
- }
- return []models.Node{}, err
- }
- for _, value := range collection {
- var node models.Node
- if err := json.Unmarshal([]byte(value), &node); err != nil {
- return []models.Node{}, err
- }
- // add node to our array
- nodes = append(nodes, node)
- }
- return nodes, nil
- }
- // CheckIsServer - check if a node is the server node
- func CheckIsServer(node *models.Node) bool {
- nodeData, err := database.FetchRecords(database.NODES_TABLE_NAME)
- if err != nil && !database.IsEmptyRecord(err) {
- return false
- }
- for _, value := range nodeData {
- var tmpNode models.Node
- if err := json.Unmarshal([]byte(value), &tmpNode); err != nil {
- continue
- }
- if tmpNode.Network == node.Network && tmpNode.MacAddress != node.MacAddress {
- return false
- }
- }
- return true
- }
- // GetNetworkByNode - gets the network model from a node
- func GetNetworkByNode(node *models.Node) (models.Network, error) {
- var network = models.Network{}
- networkData, err := database.FetchRecord(database.NETWORKS_TABLE_NAME, node.Network)
- if err != nil {
- return network, err
- }
- if err = json.Unmarshal([]byte(networkData), &network); err != nil {
- return models.Network{}, err
- }
- return network, nil
- }
- // SetNodeDefaults - sets the defaults of a node to avoid empty fields
- func SetNodeDefaults(node *models.Node) {
- //TODO: Maybe I should make Network a part of the node struct. Then we can just query the Network object for stuff.
- parentNetwork, _ := GetNetworkByNode(node)
- node.ExpirationDateTime = time.Now().Unix() + models.TEN_YEARS_IN_SECONDS
- if node.ListenPort == 0 {
- node.ListenPort = parentNetwork.DefaultListenPort
- }
- if node.SaveConfig == "" {
- if parentNetwork.DefaultSaveConfig != "" {
- node.SaveConfig = parentNetwork.DefaultSaveConfig
- } else {
- node.SaveConfig = "yes"
- }
- }
- if node.Interface == "" {
- node.Interface = parentNetwork.DefaultInterface
- }
- if node.PersistentKeepalive == 0 {
- node.PersistentKeepalive = parentNetwork.DefaultKeepalive
- }
- if node.PostUp == "" {
- postup := parentNetwork.DefaultPostUp
- node.PostUp = postup
- }
- if node.PostDown == "" {
- postdown := parentNetwork.DefaultPostDown
- node.PostDown = postdown
- }
- if node.IsStatic == "" {
- node.IsStatic = "no"
- }
- if node.UDPHolePunch == "" {
- node.UDPHolePunch = parentNetwork.DefaultUDPHolePunch
- if node.UDPHolePunch == "" {
- node.UDPHolePunch = "yes"
- }
- }
- // == Parent Network settings ==
- if node.IsDualStack == "" {
- node.IsDualStack = parentNetwork.IsDualStack
- }
- if node.MTU == 0 {
- node.MTU = parentNetwork.DefaultMTU
- }
- // == node defaults if not set by parent ==
- node.SetIPForwardingDefault()
- node.SetDNSOnDefault()
- node.SetIsLocalDefault()
- node.SetIsDualStackDefault()
- node.SetLastModified()
- node.SetDefaultName()
- node.SetLastCheckIn()
- node.SetLastPeerUpdate()
- node.SetRoamingDefault()
- node.SetPullChangesDefault()
- node.SetDefaultAction()
- node.SetIsServerDefault()
- node.SetIsStaticDefault()
- node.SetDefaultEgressGateway()
- node.SetDefaultIngressGateway()
- node.SetDefaulIsPending()
- node.SetDefaultMTU()
- node.SetDefaultIsRelayed()
- node.SetDefaultIsRelay()
- node.SetDefaultIsDocker()
- node.SetDefaultIsK8S()
- node.KeyUpdateTimeStamp = time.Now().Unix()
- }
- // GetRecordKey - get record key
- // depricated
- func GetRecordKey(id string, network string) (string, error) {
- if id == "" || network == "" {
- return "", errors.New("unable to get record key")
- }
- return id + "###" + network, nil
- }
- // GetNodeByMacAddress - gets a node by mac address
- func GetNodeByMacAddress(network string, macaddress string) (models.Node, error) {
- var node models.Node
- key, err := GetRecordKey(macaddress, network)
- if err != nil {
- return node, err
- }
- record, err := database.FetchRecord(database.NODES_TABLE_NAME, key)
- if err != nil {
- return models.Node{}, err
- }
- if err = json.Unmarshal([]byte(record), &node); err != nil {
- return models.Node{}, err
- }
- SetNodeDefaults(&node)
- return node, nil
- }
- // GetDeletedNodeByMacAddress - get a deleted node
- func GetDeletedNodeByMacAddress(network string, macaddress string) (models.Node, error) {
- var node models.Node
- key, err := GetRecordKey(macaddress, network)
- if err != nil {
- return node, err
- }
- record, err := database.FetchRecord(database.DELETED_NODES_TABLE_NAME, key)
- if err != nil {
- return models.Node{}, err
- }
- if err = json.Unmarshal([]byte(record), &node); err != nil {
- return models.Node{}, err
- }
- SetNodeDefaults(&node)
- return node, nil
- }
- // GetNodeRelay - gets the relay node of a given network
- func GetNodeRelay(network string, relayedNodeAddr string) (models.Node, error) {
- collection, err := database.FetchRecords(database.NODES_TABLE_NAME)
- var relay models.Node
- if err != nil {
- if database.IsEmptyRecord(err) {
- return relay, nil
- }
- logger.Log(2, err.Error())
- return relay, err
- }
- for _, value := range collection {
- err := json.Unmarshal([]byte(value), &relay)
- if err != nil {
- logger.Log(2, err.Error())
- continue
- }
- if relay.IsRelay == "yes" {
- for _, addr := range relay.RelayAddrs {
- if addr == relayedNodeAddr {
- return relay, nil
- }
- }
- }
- }
- return relay, errors.New("could not find relay for node " + relayedNodeAddr)
- }
- // GetNodeByIDorMacAddress - gets the node, if a mac address exists, but not id, then it should delete it and recreate in DB with new ID
- /*
- func GetNodeByIDorMacAddress(uuid string, macaddress string, network string) (models.Node, error) {
- var node models.Node
- var err error
- node, err = GetNodeByID(uuid)
- if err != nil && macaddress != "" && network != "" {
- node, err = GetNodeByMacAddress(network, macaddress)
- if err != nil {
- return models.Node{}, err
- }
- err = DeleteNodeByMacAddress(&node, true) // remove node
- if err != nil {
- return models.Node{}, err
- }
- err = CreateNode(&node)
- if err != nil {
- return models.Node{}, err
- }
- logger.Log(2, "rewriting legacy node data; node now has id,", node.ID)
- node.PullChanges = "yes"
- }
- return node, err
- }
- */
- // GetNodeByID - get node by uuid, should have been set by create
- func GetNodeByID(uuid string) (models.Node, error) {
- var record, err = database.FetchRecord(database.NODES_TABLE_NAME, uuid)
- if err != nil {
- return models.Node{}, err
- }
- var node models.Node
- if err = json.Unmarshal([]byte(record), &node); err != nil {
- return models.Node{}, err
- }
- return node, nil
- }
- // GetDeletedNodeByID - get a deleted node
- func GetDeletedNodeByID(uuid string) (models.Node, error) {
- var node models.Node
- record, err := database.FetchRecord(database.DELETED_NODES_TABLE_NAME, uuid)
- if err != nil {
- return models.Node{}, err
- }
- if err = json.Unmarshal([]byte(record), &node); err != nil {
- return models.Node{}, err
- }
- SetNodeDefaults(&node)
- return node, nil
- }
- // GetNetworkServerNodeID - get network server node ID if exists
- func GetNetworkServerNodeID(network string) (string, error) {
- var nodes, err = GetNetworkNodes(network)
- if err != nil {
- return "", err
- }
- for _, node := range nodes {
- if node.IsServer == "yes" {
- if servercfg.GetNodeID() != "" {
- if servercfg.GetNodeID() == node.MacAddress {
- if strings.Contains(node.ID, "###") {
- DeleteNodeByMacAddress(&node, true)
- logger.Log(1, "deleted legacy server node on network "+node.Network)
- return "", errors.New("deleted legacy server node on network " + node.Network)
- }
- return node.ID, nil
- }
- continue
- }
- return node.ID, nil
- }
- }
- return "", errors.New("could not find server node")
- }
- // validateServer - make sure servers dont change port or address
- func validateServer(currentNode, newNode *models.Node) bool {
- return (newNode.Address == currentNode.Address &&
- newNode.ListenPort == currentNode.ListenPort &&
- newNode.IsServer == "yes")
- }
|