2
0

auth.go 2.6 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798
  1. package auth
  2. import (
  3. "encoding/json"
  4. "fmt"
  5. "os"
  6. "github.com/gravitl/netmaker/models"
  7. "github.com/gravitl/netmaker/netclient/config"
  8. "github.com/gravitl/netmaker/netclient/ncutils"
  9. // "os"
  10. "context"
  11. nodepb "github.com/gravitl/netmaker/grpc"
  12. "google.golang.org/grpc/codes"
  13. "google.golang.org/grpc/metadata"
  14. "google.golang.org/grpc/status"
  15. )
  16. // SetJWT func will used to create the JWT while signing in and signing out
  17. func SetJWT(client nodepb.NodeServiceClient, network string) (context.Context, error) {
  18. home := ncutils.GetNetclientPathSpecific()
  19. tokentext, err := os.ReadFile(home + "nettoken-" + network)
  20. if err != nil {
  21. err = AutoLogin(client, network)
  22. if err != nil {
  23. return nil, status.Errorf(codes.Unauthenticated, fmt.Sprintf("Something went wrong with Auto Login: %v", err))
  24. }
  25. tokentext, err = os.ReadFile(home + "nettoken-" + network)
  26. if err != nil {
  27. return nil, status.Errorf(codes.Unauthenticated, fmt.Sprintf("Something went wrong: %v", err))
  28. }
  29. }
  30. token := string(tokentext)
  31. // Anything linked to this variable will transmit request headers.
  32. md := metadata.New(map[string]string{"authorization": token})
  33. ctx := context.Background()
  34. ctx = metadata.NewOutgoingContext(ctx, md)
  35. return ctx, nil
  36. }
  37. // AutoLogin - auto logins whenever client needs to request from server
  38. func AutoLogin(client nodepb.NodeServiceClient, network string) error {
  39. home := ncutils.GetNetclientPathSpecific()
  40. cfg, err := config.ReadConfig(network)
  41. if err != nil {
  42. return err
  43. }
  44. pass, err := RetrieveSecret(network)
  45. if err != nil {
  46. return err
  47. }
  48. node := models.Node{
  49. Password: pass,
  50. MacAddress: cfg.Node.MacAddress,
  51. Network: network,
  52. }
  53. data, err := json.Marshal(&node)
  54. if err != nil {
  55. return nil
  56. }
  57. login := &nodepb.Object{
  58. Data: string(data),
  59. }
  60. // RPC call
  61. res, err := client.Login(context.TODO(), login)
  62. if err != nil {
  63. return err
  64. }
  65. tokenstring := []byte(res.Data)
  66. err = os.WriteFile(home+"nettoken-"+network, tokenstring, 0644) // TODO: Proper permissions?
  67. if err != nil {
  68. return err
  69. }
  70. return err
  71. }
  72. // StoreSecret - stores auth secret locally
  73. func StoreSecret(key string, network string) error {
  74. d1 := []byte(key)
  75. err := os.WriteFile(ncutils.GetNetclientPathSpecific()+"secret-"+network, d1, 0644)
  76. return err
  77. }
  78. // RetrieveSecret - fetches secret locally
  79. func RetrieveSecret(network string) (string, error) {
  80. dat, err := os.ReadFile(ncutils.GetNetclientPathSpecific() + "secret-" + network)
  81. return string(dat), err
  82. }
  83. // Configuraion - struct for mac and pass
  84. type Configuration struct {
  85. MacAddress string
  86. Password string
  87. }