mqpublish.go 5.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187
  1. package functions
  2. import (
  3. "context"
  4. "encoding/json"
  5. "errors"
  6. "fmt"
  7. "net"
  8. "os"
  9. "sync"
  10. "time"
  11. "github.com/cloverstd/tcping/ping"
  12. "github.com/gravitl/netmaker/logger"
  13. "github.com/gravitl/netmaker/netclient/auth"
  14. "github.com/gravitl/netmaker/netclient/config"
  15. "github.com/gravitl/netmaker/netclient/ncutils"
  16. "github.com/gravitl/netmaker/tls"
  17. )
  18. // Checkin -- go routine that checks for public or local ip changes, publishes changes
  19. // if there are no updates, simply "pings" the server as a checkin
  20. func Checkin(ctx context.Context, wg *sync.WaitGroup) {
  21. defer wg.Done()
  22. for {
  23. select {
  24. case <-ctx.Done():
  25. logger.Log(0, "checkin routine closed")
  26. return
  27. //delay should be configuraable -> use cfg.Node.NetworkSettings.DefaultCheckInInterval ??
  28. case <-time.After(time.Second * 60):
  29. // logger.Log(0, "Checkin running")
  30. //read latest config
  31. networks, err := ncutils.GetSystemNetworks()
  32. if err != nil {
  33. return
  34. }
  35. for _, network := range networks {
  36. var nodeCfg config.ClientConfig
  37. nodeCfg.Network = network
  38. nodeCfg.ReadConfig()
  39. if nodeCfg.Node.IsStatic != "yes" {
  40. extIP, err := ncutils.GetPublicIP()
  41. if err != nil {
  42. logger.Log(1, "error encountered checking public ip addresses: ", err.Error())
  43. }
  44. if nodeCfg.Node.Endpoint != extIP && extIP != "" {
  45. logger.Log(1, "endpoint has changed from ", nodeCfg.Node.Endpoint, " to ", extIP)
  46. nodeCfg.Node.Endpoint = extIP
  47. if err := PublishNodeUpdate(&nodeCfg); err != nil {
  48. logger.Log(0, "could not publish endpoint change")
  49. }
  50. }
  51. intIP, err := getPrivateAddr()
  52. if err != nil {
  53. logger.Log(1, "error encountered checking private ip addresses: ", err.Error())
  54. }
  55. if nodeCfg.Node.LocalAddress != intIP && intIP != "" {
  56. logger.Log(1, "local Address has changed from ", nodeCfg.Node.LocalAddress, " to ", intIP)
  57. nodeCfg.Node.LocalAddress = intIP
  58. if err := PublishNodeUpdate(&nodeCfg); err != nil {
  59. logger.Log(0, "could not publish local address change")
  60. }
  61. }
  62. _ = UpdateLocalListenPort(&nodeCfg)
  63. } else if nodeCfg.Node.IsLocal == "yes" && nodeCfg.Node.LocalRange != "" {
  64. localIP, err := ncutils.GetLocalIP(nodeCfg.Node.LocalRange)
  65. if err != nil {
  66. logger.Log(1, "error encountered checking local ip addresses: ", err.Error())
  67. }
  68. if nodeCfg.Node.Endpoint != localIP && localIP != "" {
  69. logger.Log(1, "endpoint has changed from "+nodeCfg.Node.Endpoint+" to ", localIP)
  70. nodeCfg.Node.Endpoint = localIP
  71. if err := PublishNodeUpdate(&nodeCfg); err != nil {
  72. logger.Log(0, "could not publish localip change")
  73. }
  74. }
  75. }
  76. Hello(&nodeCfg)
  77. checkCertExpiry(&nodeCfg)
  78. }
  79. }
  80. }
  81. }
  82. // PublishNodeUpdates -- saves node and pushes changes to broker
  83. func PublishNodeUpdate(nodeCfg *config.ClientConfig) error {
  84. if err := config.Write(nodeCfg, nodeCfg.Network); err != nil {
  85. return err
  86. }
  87. data, err := json.Marshal(nodeCfg.Node)
  88. if err != nil {
  89. return err
  90. }
  91. if err = publish(nodeCfg, fmt.Sprintf("update/%s", nodeCfg.Node.ID), data, 1); err != nil {
  92. return err
  93. }
  94. logger.Log(0, "sent a node update to server for node", nodeCfg.Node.Name, ", ", nodeCfg.Node.ID)
  95. return nil
  96. }
  97. // Hello -- ping the broker to let server know node it's alive and well
  98. func Hello(nodeCfg *config.ClientConfig) {
  99. if err := publish(nodeCfg, fmt.Sprintf("ping/%s", nodeCfg.Node.ID), []byte(ncutils.Version), 0); err != nil {
  100. logger.Log(0, fmt.Sprintf("error publishing ping, %v", err))
  101. logger.Log(0, "running pull on "+nodeCfg.Node.Network+" to reconnect")
  102. _, err := Pull(nodeCfg.Node.Network, true)
  103. if err != nil {
  104. logger.Log(0, "could not run pull on "+nodeCfg.Node.Network+", error: "+err.Error())
  105. }
  106. }
  107. logger.Log(3, "server checkin complete")
  108. }
  109. // node cfg is required in order to fetch the traffic keys of that node for encryption
  110. func publish(nodeCfg *config.ClientConfig, dest string, msg []byte, qos byte) error {
  111. // setup the keys
  112. trafficPrivKey, err := auth.RetrieveTrafficKey(nodeCfg.Node.Network)
  113. if err != nil {
  114. return err
  115. }
  116. serverPubKey, err := ncutils.ConvertBytesToKey(nodeCfg.Node.TrafficKeys.Server)
  117. if err != nil {
  118. return err
  119. }
  120. client := setupMQTT(nodeCfg, true)
  121. defer client.Disconnect(250)
  122. encrypted, err := ncutils.Chunk(msg, serverPubKey, trafficPrivKey)
  123. if err != nil {
  124. return err
  125. }
  126. if token := client.Publish(dest, qos, false, encrypted); !token.WaitTimeout(30*time.Second) || token.Error() != nil {
  127. logger.Log(0, "could not connect to broker at "+nodeCfg.Server.Server+":8883")
  128. var err error
  129. if token.Error() == nil {
  130. err = errors.New("connection timeout")
  131. } else {
  132. err = token.Error()
  133. }
  134. if err != nil {
  135. checkBroker(nodeCfg.Server.Server)
  136. return err
  137. }
  138. }
  139. return nil
  140. }
  141. func checkCertExpiry(cfg *config.ClientConfig) error {
  142. cert, err := tls.ReadCert(ncutils.GetNetclientServerPath(cfg.Server.Server) + ncutils.GetSeparator() + "client.pem")
  143. //if cert doesn't exist or will expire within 10 days
  144. if errors.Is(err, os.ErrNotExist) || cert.NotAfter.Before(time.Now().Add(time.Hour*24*10)) {
  145. key, err := tls.ReadKey(ncutils.GetNetclientPath() + ncutils.GetSeparator() + "client.key")
  146. if err != nil {
  147. return err
  148. }
  149. return RegisterWithServer(key, cfg)
  150. }
  151. if err != nil {
  152. return err
  153. }
  154. return nil
  155. }
  156. func checkBroker(broker string) {
  157. _, err := net.LookupIP(broker)
  158. if err != nil {
  159. logger.FatalLog("nslookup failed for broker ... check dns records")
  160. }
  161. pinger := ping.NewTCPing()
  162. pinger.SetTarget(&ping.Target{
  163. Protocol: ping.TCP,
  164. Host: broker,
  165. Port: 8883,
  166. Counter: 3,
  167. Interval: 1 * time.Second,
  168. Timeout: 2 * time.Second,
  169. })
  170. pingerDone := pinger.Start()
  171. <-pingerDone
  172. if pinger.Result().SuccessCounter == 0 {
  173. logger.FatalLog("unable to connect to broker port ... check firewalls")
  174. }
  175. }