2
0

hosts.go 41 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314
  1. package controller
  2. import (
  3. "encoding/json"
  4. "errors"
  5. "fmt"
  6. "net/http"
  7. "time"
  8. "github.com/google/uuid"
  9. "github.com/gorilla/mux"
  10. "github.com/gravitl/netmaker/database"
  11. "github.com/gravitl/netmaker/db"
  12. "github.com/gravitl/netmaker/logger"
  13. "github.com/gravitl/netmaker/logic"
  14. "github.com/gravitl/netmaker/models"
  15. "github.com/gravitl/netmaker/mq"
  16. "github.com/gravitl/netmaker/schema"
  17. "github.com/gravitl/netmaker/servercfg"
  18. "golang.org/x/crypto/bcrypt"
  19. "golang.org/x/exp/slog"
  20. )
  21. func hostHandlers(r *mux.Router) {
  22. r.HandleFunc("/api/hosts", logic.SecurityCheck(true, http.HandlerFunc(getHosts))).
  23. Methods(http.MethodGet)
  24. r.HandleFunc("/api/hosts/keys", logic.SecurityCheck(true, http.HandlerFunc(updateAllKeys))).
  25. Methods(http.MethodPut)
  26. r.HandleFunc("/api/hosts/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHosts))).
  27. Methods(http.MethodPost)
  28. r.HandleFunc("/api/hosts/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHosts))).
  29. Methods(http.MethodPost)
  30. r.HandleFunc("/api/hosts/{hostid}/keys", logic.SecurityCheck(true, http.HandlerFunc(updateKeys))).
  31. Methods(http.MethodPut)
  32. r.HandleFunc("/api/hosts/{hostid}/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHost))).
  33. Methods(http.MethodPost)
  34. r.HandleFunc("/api/hosts/{hostid}", logic.SecurityCheck(true, http.HandlerFunc(updateHost))).
  35. Methods(http.MethodPut)
  36. r.HandleFunc("/api/hosts/{hostid}", Authorize(true, false, "all", http.HandlerFunc(deleteHost))).
  37. Methods(http.MethodDelete)
  38. r.HandleFunc("/api/hosts/{hostid}/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHost))).
  39. Methods(http.MethodPut)
  40. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(addHostToNetwork))).
  41. Methods(http.MethodPost)
  42. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(deleteHostFromNetwork))).
  43. Methods(http.MethodDelete)
  44. r.HandleFunc("/api/hosts/adm/authenticate", authenticateHost).Methods(http.MethodPost)
  45. r.HandleFunc("/api/v1/host", Authorize(true, false, "host", http.HandlerFunc(pull))).
  46. Methods(http.MethodGet)
  47. r.HandleFunc("/api/v1/host/{hostid}/signalpeer", Authorize(true, false, "host", http.HandlerFunc(signalPeer))).
  48. Methods(http.MethodPost)
  49. r.HandleFunc("/api/v1/fallback/host/{hostid}", Authorize(true, false, "host", http.HandlerFunc(hostUpdateFallback))).
  50. Methods(http.MethodPut)
  51. r.HandleFunc("/api/v1/host/{hostid}/peer_info", Authorize(true, false, "host", http.HandlerFunc(getHostPeerInfo))).
  52. Methods(http.MethodGet)
  53. r.HandleFunc("/api/v1/pending_hosts", logic.SecurityCheck(true, http.HandlerFunc(getPendingHosts))).
  54. Methods(http.MethodGet)
  55. r.HandleFunc("/api/v1/pending_hosts/approve/{id}", logic.SecurityCheck(true, http.HandlerFunc(approvePendingHost))).
  56. Methods(http.MethodPost)
  57. r.HandleFunc("/api/v1/pending_hosts/reject/{id}", logic.SecurityCheck(true, http.HandlerFunc(rejectPendingHost))).
  58. Methods(http.MethodPost)
  59. r.HandleFunc("/api/emqx/hosts", logic.SecurityCheck(true, http.HandlerFunc(delEmqxHosts))).
  60. Methods(http.MethodDelete)
  61. r.HandleFunc("/api/v1/auth-register/host", socketHandler)
  62. }
  63. // @Summary Requests all the hosts to upgrade their version
  64. // @Router /api/hosts/upgrade [post]
  65. // @Tags Hosts
  66. // @Security oauth
  67. // @Param force query bool false "Force upgrade"
  68. // @Success 200 {string} string "upgrade all hosts request received"
  69. func upgradeHosts(w http.ResponseWriter, r *http.Request) {
  70. w.Header().Set("Content-Type", "application/json")
  71. action := models.Upgrade
  72. if r.URL.Query().Get("force") == "true" {
  73. action = models.ForceUpgrade
  74. }
  75. user := r.Header.Get("user")
  76. go func() {
  77. slog.Info("requesting all hosts to upgrade", "user", user)
  78. hosts, err := logic.GetAllHosts()
  79. if err != nil {
  80. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  81. return
  82. }
  83. for _, host := range hosts {
  84. go func(host models.Host) {
  85. hostUpdate := models.HostUpdate{
  86. Action: action,
  87. Host: host,
  88. }
  89. if err = mq.HostUpdate(&hostUpdate); err != nil {
  90. slog.Error("failed to request host to upgrade", "user", user, "host", host.ID.String(), "error", err)
  91. } else {
  92. slog.Info("host upgrade requested", "user", user, "host", host.ID.String())
  93. }
  94. }(host)
  95. }
  96. }()
  97. logic.LogEvent(&models.Event{
  98. Action: models.UpgradeAll,
  99. Source: models.Subject{
  100. ID: r.Header.Get("user"),
  101. Name: r.Header.Get("user"),
  102. Type: models.UserSub,
  103. },
  104. TriggeredBy: r.Header.Get("user"),
  105. Target: models.Subject{
  106. ID: "All Hosts",
  107. Name: "All Hosts",
  108. Type: models.DeviceSub,
  109. },
  110. Origin: models.Dashboard,
  111. })
  112. slog.Info("upgrade all hosts request received", "user", user)
  113. logic.ReturnSuccessResponse(w, r, "upgrade all hosts request received")
  114. }
  115. // @Summary Upgrade a host
  116. // @Router /api/hosts/{hostid}/upgrade [put]
  117. // @Tags Hosts
  118. // @Security oauth
  119. // @Param hostid path string true "Host ID"
  120. // @Param force query bool false "Force upgrade"
  121. // @Success 200 {string} string "passed message to upgrade host"
  122. // @Failure 500 {object} models.ErrorResponse
  123. // upgrade host is a handler to send upgrade message to a host
  124. func upgradeHost(w http.ResponseWriter, r *http.Request) {
  125. host, err := logic.GetHost(mux.Vars(r)["hostid"])
  126. if err != nil {
  127. slog.Error("failed to find host", "error", err)
  128. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "notfound"))
  129. return
  130. }
  131. action := models.Upgrade
  132. if r.URL.Query().Get("force") == "true" {
  133. action = models.ForceUpgrade
  134. }
  135. if err := mq.HostUpdate(&models.HostUpdate{Action: action, Host: *host}); err != nil {
  136. slog.Error("failed to upgrade host", "error", err)
  137. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  138. return
  139. }
  140. logic.ReturnSuccessResponse(w, r, "passed message to upgrade host")
  141. }
  142. // @Summary List all hosts
  143. // @Router /api/hosts [get]
  144. // @Tags Hosts
  145. // @Security oauth
  146. // @Success 200 {array} models.ApiHost
  147. // @Failure 500 {object} models.ErrorResponse
  148. func getHosts(w http.ResponseWriter, r *http.Request) {
  149. w.Header().Set("Content-Type", "application/json")
  150. currentHosts, err := logic.GetAllHosts()
  151. if err != nil {
  152. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  153. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  154. return
  155. }
  156. apiHosts := logic.GetAllHostsAPI(currentHosts[:])
  157. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  158. logic.SortApiHosts(apiHosts[:])
  159. w.WriteHeader(http.StatusOK)
  160. json.NewEncoder(w).Encode(apiHosts)
  161. }
  162. // @Summary Used by clients for "pull" command
  163. // @Router /api/v1/host [get]
  164. // @Tags Hosts
  165. // @Security oauth
  166. // @Success 200 {object} models.HostPull
  167. // @Failure 500 {object} models.ErrorResponse
  168. func pull(w http.ResponseWriter, r *http.Request) {
  169. hostID := r.Header.Get(hostIDHeader) // return JSON/API formatted keys
  170. if len(hostID) == 0 {
  171. logger.Log(0, "no host authorized to pull")
  172. logic.ReturnErrorResponse(
  173. w,
  174. r,
  175. logic.FormatError(fmt.Errorf("no host authorized to pull"), "internal"),
  176. )
  177. return
  178. }
  179. host, err := logic.GetHost(hostID)
  180. if err != nil {
  181. logger.Log(0, "no host found during pull", hostID)
  182. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  183. return
  184. }
  185. sendPeerUpdate := false
  186. for _, nodeID := range host.Nodes {
  187. node, err := logic.GetNodeByID(nodeID)
  188. if err != nil {
  189. //slog.Error("failed to get node:", "id", node.ID, "error", err)
  190. continue
  191. }
  192. if r.URL.Query().Get("reset_failovered") == "true" {
  193. logic.ResetFailedOverPeer(&node)
  194. logic.ResetAutoRelayedPeer(&node)
  195. sendPeerUpdate = true
  196. }
  197. }
  198. if sendPeerUpdate {
  199. if err := mq.PublishPeerUpdate(false); err != nil {
  200. logger.Log(0, "fail to publish peer update: ", err.Error())
  201. }
  202. }
  203. allNodes, err := logic.GetAllNodes()
  204. if err != nil {
  205. logger.Log(0, "failed to get nodes: ", hostID)
  206. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  207. return
  208. }
  209. hPU, err := logic.GetPeerUpdateForHost("", host, allNodes, nil, nil)
  210. if err != nil {
  211. logger.Log(0, "could not pull peers for host", hostID, err.Error())
  212. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  213. return
  214. }
  215. _ = logic.CheckHostPorts(host)
  216. response := models.HostPull{
  217. Host: *host,
  218. Nodes: logic.GetHostNodes(host),
  219. ServerConfig: hPU.ServerConfig,
  220. Peers: hPU.Peers,
  221. PeerIDs: hPU.PeerIDs,
  222. HostNetworkInfo: hPU.HostNetworkInfo,
  223. EgressRoutes: hPU.EgressRoutes,
  224. FwUpdate: hPU.FwUpdate,
  225. ChangeDefaultGw: hPU.ChangeDefaultGw,
  226. DefaultGwIp: hPU.DefaultGwIp,
  227. IsInternetGw: hPU.IsInternetGw,
  228. NameServers: hPU.NameServers,
  229. EgressWithDomains: hPU.EgressWithDomains,
  230. EndpointDetection: logic.IsEndpointDetectionEnabled(),
  231. DnsNameservers: hPU.DnsNameservers,
  232. ReplacePeers: hPU.ReplacePeers,
  233. AutoRelayNodes: hPU.AutoRelayNodes,
  234. GwNodes: hPU.GwNodes,
  235. }
  236. logger.Log(1, hostID, host.Name, "completed a pull")
  237. w.WriteHeader(http.StatusOK)
  238. json.NewEncoder(w).Encode(&response)
  239. }
  240. // @Summary Updates a Netclient host on Netmaker server
  241. // @Router /api/hosts/{hostid} [put]
  242. // @Tags Hosts
  243. // @Security oauth
  244. // @Param hostid path string true "Host ID"
  245. // @Param body body models.ApiHost true "New host data"
  246. // @Success 200 {object} models.ApiHost
  247. // @Failure 500 {object} models.ErrorResponse
  248. func updateHost(w http.ResponseWriter, r *http.Request) {
  249. var newHostData models.ApiHost
  250. err := json.NewDecoder(r.Body).Decode(&newHostData)
  251. if err != nil {
  252. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  253. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  254. return
  255. }
  256. // confirm host exists
  257. currHost, err := logic.GetHost(newHostData.ID)
  258. if err != nil {
  259. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  260. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  261. return
  262. }
  263. newHost := newHostData.ConvertAPIHostToNMHost(currHost)
  264. logic.UpdateHost(newHost, currHost) // update the in memory struct values
  265. if err = logic.UpsertHost(newHost); err != nil {
  266. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  267. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  268. return
  269. }
  270. // publish host update through MQ
  271. if err := mq.HostUpdate(&models.HostUpdate{
  272. Action: models.UpdateHost,
  273. Host: *newHost,
  274. }); err != nil {
  275. logger.Log(
  276. 0,
  277. r.Header.Get("user"),
  278. "failed to send host update: ",
  279. currHost.ID.String(),
  280. err.Error(),
  281. )
  282. }
  283. go func() {
  284. if err := mq.PublishPeerUpdate(false); err != nil {
  285. logger.Log(0, "fail to publish peer update: ", err.Error())
  286. }
  287. if newHost.Name != currHost.Name {
  288. if servercfg.IsDNSMode() {
  289. logic.SetDNS()
  290. }
  291. }
  292. }()
  293. logic.LogEvent(&models.Event{
  294. Action: models.Update,
  295. Source: models.Subject{
  296. ID: r.Header.Get("user"),
  297. Name: r.Header.Get("user"),
  298. Type: models.UserSub,
  299. },
  300. TriggeredBy: r.Header.Get("user"),
  301. Target: models.Subject{
  302. ID: currHost.ID.String(),
  303. Name: newHost.Name,
  304. Type: models.DeviceSub,
  305. },
  306. Diff: models.Diff{
  307. Old: currHost,
  308. New: newHost,
  309. },
  310. Origin: models.Dashboard,
  311. })
  312. apiHostData := newHost.ConvertNMHostToAPI()
  313. logger.Log(2, r.Header.Get("user"), "updated host", newHost.ID.String())
  314. w.WriteHeader(http.StatusOK)
  315. json.NewEncoder(w).Encode(apiHostData)
  316. }
  317. // @Summary Updates a Netclient host on Netmaker server
  318. // @Router /api/v1/fallback/host/{hostid} [put]
  319. // @Tags Hosts
  320. // @Security oauth
  321. // @Param hostid path string true "Host ID"
  322. // @Param body body models.HostUpdate true "Host update data"
  323. // @Success 200 {string} string "updated host data"
  324. // @Failure 500 {object} models.ErrorResponse
  325. func hostUpdateFallback(w http.ResponseWriter, r *http.Request) {
  326. var params = mux.Vars(r)
  327. hostid := params["hostid"]
  328. currentHost, err := logic.GetHost(hostid)
  329. if err != nil {
  330. slog.Error("error getting host", "id", hostid, "error", err)
  331. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  332. return
  333. }
  334. var sendPeerUpdate, sendDeletedNodeUpdate, replacePeers bool
  335. var hostUpdate models.HostUpdate
  336. err = json.NewDecoder(r.Body).Decode(&hostUpdate)
  337. if err != nil {
  338. slog.Error("failed to update a host:", "user", r.Header.Get("user"), "error", err.Error(), "host", currentHost.Name)
  339. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  340. return
  341. }
  342. slog.Info("recieved host update", "name", hostUpdate.Host.Name, "id", hostUpdate.Host.ID, "action", hostUpdate.Action)
  343. switch hostUpdate.Action {
  344. case models.CheckIn:
  345. sendPeerUpdate = mq.HandleHostCheckin(&hostUpdate.Host, currentHost)
  346. changed := logic.CheckHostPorts(currentHost)
  347. if changed {
  348. mq.HostUpdate(&models.HostUpdate{Action: models.UpdateHost, Host: *currentHost})
  349. }
  350. case models.UpdateHost:
  351. if hostUpdate.Host.PublicKey != currentHost.PublicKey {
  352. //remove old peer entry
  353. replacePeers = true
  354. }
  355. sendPeerUpdate = logic.UpdateHostFromClient(&hostUpdate.Host, currentHost)
  356. err := logic.UpsertHost(currentHost)
  357. if err != nil {
  358. slog.Error("failed to update host", "id", currentHost.ID, "error", err)
  359. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.Internal))
  360. return
  361. }
  362. case models.UpdateNode:
  363. sendDeletedNodeUpdate, sendPeerUpdate = logic.UpdateHostNode(&hostUpdate.Host, &hostUpdate.Node)
  364. case models.UpdateMetrics:
  365. mq.UpdateMetricsFallBack(hostUpdate.Node.ID.String(), hostUpdate.NewMetrics)
  366. case models.EgressUpdate:
  367. e := schema.Egress{ID: hostUpdate.EgressDomain.ID}
  368. err = e.Get(db.WithContext(r.Context()))
  369. if err != nil {
  370. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.BadReq))
  371. return
  372. }
  373. if len(hostUpdate.Node.EgressGatewayRanges) > 0 {
  374. e.DomainAns = hostUpdate.Node.EgressGatewayRanges
  375. e.Update(db.WithContext(r.Context()))
  376. }
  377. sendPeerUpdate = true
  378. case models.SignalHost:
  379. mq.SignalPeer(hostUpdate.Signal)
  380. case models.DeleteHost:
  381. go mq.DeleteAndCleanupHost(currentHost)
  382. }
  383. go func() {
  384. if sendDeletedNodeUpdate {
  385. mq.PublishDeletedNodePeerUpdate(&hostUpdate.Node)
  386. }
  387. if sendPeerUpdate {
  388. err := mq.PublishPeerUpdate(replacePeers)
  389. if err != nil {
  390. slog.Error("failed to publish peer update", "error", err)
  391. }
  392. }
  393. }()
  394. logic.ReturnSuccessResponse(w, r, "updated host data")
  395. }
  396. // @Summary Deletes a Netclient host from Netmaker server
  397. // @Router /api/hosts/{hostid} [delete]
  398. // @Tags Hosts
  399. // @Security oauth
  400. // @Param hostid path string true "Host ID"
  401. // @Param force query bool false "Force delete"
  402. // @Success 200 {object} models.ApiHost
  403. // @Failure 500 {object} models.ErrorResponse
  404. func deleteHost(w http.ResponseWriter, r *http.Request) {
  405. var params = mux.Vars(r)
  406. hostid := params["hostid"]
  407. forceDelete := r.URL.Query().Get("force") == "true"
  408. // confirm host exists
  409. currHost, err := logic.GetHost(hostid)
  410. if err != nil {
  411. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  412. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  413. return
  414. }
  415. for _, nodeID := range currHost.Nodes {
  416. node, err := logic.GetNodeByID(nodeID)
  417. if err != nil {
  418. slog.Error("failed to get node", "nodeid", nodeID, "error", err)
  419. continue
  420. }
  421. go mq.PublishMqUpdatesForDeletedNode(node, false)
  422. }
  423. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  424. // delete EMQX credentials for host
  425. if err := mq.GetEmqxHandler().DeleteEmqxUser(currHost.ID.String()); err != nil {
  426. slog.Error(
  427. "failed to remove host credentials from EMQX",
  428. "id",
  429. currHost.ID,
  430. "error",
  431. err,
  432. )
  433. }
  434. }
  435. if err = mq.HostUpdate(&models.HostUpdate{
  436. Action: models.DeleteHost,
  437. Host: *currHost,
  438. }); err != nil {
  439. logger.Log(
  440. 0,
  441. r.Header.Get("user"),
  442. "failed to send delete host update: ",
  443. currHost.ID.String(),
  444. err.Error(),
  445. )
  446. }
  447. if err = logic.RemoveHost(currHost, forceDelete); err != nil {
  448. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  449. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  450. return
  451. }
  452. // delete if any pending reqs
  453. (&schema.PendingHost{
  454. HostID: currHost.ID.String(),
  455. }).DeleteAllPendingHosts(db.WithContext(r.Context()))
  456. logic.LogEvent(&models.Event{
  457. Action: models.Delete,
  458. Source: models.Subject{
  459. ID: r.Header.Get("user"),
  460. Name: r.Header.Get("user"),
  461. Type: models.UserSub,
  462. },
  463. TriggeredBy: r.Header.Get("user"),
  464. Target: models.Subject{
  465. ID: currHost.ID.String(),
  466. Name: currHost.Name,
  467. Type: models.DeviceSub,
  468. },
  469. Origin: models.Dashboard,
  470. })
  471. apiHostData := currHost.ConvertNMHostToAPI()
  472. logger.Log(2, r.Header.Get("user"), "removed host", currHost.Name)
  473. w.WriteHeader(http.StatusOK)
  474. json.NewEncoder(w).Encode(apiHostData)
  475. }
  476. // @Summary To Add Host To Network
  477. // @Router /api/hosts/{hostid}/networks/{network} [post]
  478. // @Tags Hosts
  479. // @Security oauth
  480. // @Param hostid path string true "Host ID"
  481. // @Param network path string true "Network name"
  482. // @Success 200 {string} string "OK"
  483. // @Failure 500 {object} models.ErrorResponse
  484. func addHostToNetwork(w http.ResponseWriter, r *http.Request) {
  485. var params = mux.Vars(r)
  486. hostid := params["hostid"]
  487. network := params["network"]
  488. if hostid == "" || network == "" {
  489. logic.ReturnErrorResponse(
  490. w,
  491. r,
  492. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  493. )
  494. return
  495. }
  496. // confirm host exists
  497. currHost, err := logic.GetHost(hostid)
  498. if err != nil {
  499. logger.Log(0, r.Header.Get("user"), "failed to find host:", hostid, err.Error())
  500. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  501. return
  502. }
  503. newNode, err := logic.UpdateHostNetwork(currHost, network, true)
  504. if err != nil {
  505. logger.Log(
  506. 0,
  507. r.Header.Get("user"),
  508. "failed to add host to network:",
  509. hostid,
  510. network,
  511. err.Error(),
  512. )
  513. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  514. return
  515. }
  516. logger.Log(1, "added new node", newNode.ID.String(), "to host", currHost.Name)
  517. if currHost.IsDefault {
  518. // make host failover
  519. logic.CreateFailOver(*newNode)
  520. // make host remote access gateway
  521. logic.CreateIngressGateway(network, newNode.ID.String(), models.IngressRequest{})
  522. logic.CreateRelay(models.RelayRequest{
  523. NodeID: newNode.ID.String(),
  524. NetID: network,
  525. })
  526. }
  527. go func() {
  528. mq.HostUpdate(&models.HostUpdate{
  529. Action: models.JoinHostToNetwork,
  530. Host: *currHost,
  531. Node: *newNode,
  532. })
  533. mq.PublishPeerUpdate(false)
  534. if servercfg.IsDNSMode() {
  535. logic.SetDNS()
  536. }
  537. }()
  538. logger.Log(
  539. 2,
  540. r.Header.Get("user"),
  541. fmt.Sprintf("added host %s to network %s", currHost.Name, network),
  542. )
  543. logic.LogEvent(&models.Event{
  544. Action: models.JoinHostToNet,
  545. Source: models.Subject{
  546. ID: r.Header.Get("user"),
  547. Name: r.Header.Get("user"),
  548. Type: models.UserSub,
  549. },
  550. TriggeredBy: r.Header.Get("user"),
  551. Target: models.Subject{
  552. ID: currHost.ID.String(),
  553. Name: currHost.Name,
  554. Type: models.DeviceSub,
  555. },
  556. NetworkID: models.NetworkID(network),
  557. Origin: models.Dashboard,
  558. })
  559. w.WriteHeader(http.StatusOK)
  560. }
  561. // @Summary To Remove Host from Network
  562. // @Router /api/hosts/{hostid}/networks/{network} [delete]
  563. // @Tags Hosts
  564. // @Security oauth
  565. // @Param hostid path string true "Host ID"
  566. // @Param network path string true "Network name"
  567. // @Param force query bool false "Force delete"
  568. // @Success 200 {string} string "OK"
  569. // @Failure 500 {object} models.ErrorResponse
  570. func deleteHostFromNetwork(w http.ResponseWriter, r *http.Request) {
  571. var params = mux.Vars(r)
  572. hostid := params["hostid"]
  573. network := params["network"]
  574. forceDelete := r.URL.Query().Get("force") == "true"
  575. if hostid == "" || network == "" {
  576. logic.ReturnErrorResponse(
  577. w,
  578. r,
  579. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  580. )
  581. return
  582. }
  583. // confirm host exists
  584. currHost, err := logic.GetHost(hostid)
  585. if err != nil {
  586. if database.IsEmptyRecord(err) {
  587. // check if there is any daemon nodes that needs to be deleted
  588. node, err := logic.GetNodeByHostRef(hostid, network)
  589. if err != nil {
  590. slog.Error(
  591. "couldn't get node for host",
  592. "hostid",
  593. hostid,
  594. "network",
  595. network,
  596. "error",
  597. err,
  598. )
  599. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  600. return
  601. }
  602. if err = logic.DeleteNodeByID(&node); err != nil {
  603. slog.Error("failed to force delete daemon node",
  604. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  605. logic.ReturnErrorResponse(
  606. w,
  607. r,
  608. logic.FormatError(
  609. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  610. "internal",
  611. ),
  612. )
  613. return
  614. }
  615. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  616. return
  617. }
  618. logger.Log(0, r.Header.Get("user"), "failed to find host:", err.Error())
  619. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  620. return
  621. }
  622. node, err := logic.UpdateHostNetwork(currHost, network, false)
  623. if err != nil {
  624. if node == nil && forceDelete {
  625. // force cleanup the node
  626. node, err := logic.GetNodeByHostRef(hostid, network)
  627. if err != nil {
  628. slog.Error(
  629. "couldn't get node for host",
  630. "hostid",
  631. hostid,
  632. "network",
  633. network,
  634. "error",
  635. err,
  636. )
  637. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  638. return
  639. }
  640. if err = logic.DeleteNodeByID(&node); err != nil {
  641. slog.Error("failed to force delete daemon node",
  642. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  643. logic.ReturnErrorResponse(
  644. w,
  645. r,
  646. logic.FormatError(
  647. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  648. "internal",
  649. ),
  650. )
  651. return
  652. }
  653. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  654. return
  655. }
  656. logger.Log(
  657. 0,
  658. r.Header.Get("user"),
  659. "failed to remove host from network:",
  660. hostid,
  661. network,
  662. err.Error(),
  663. )
  664. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  665. return
  666. }
  667. logger.Log(1, "deleting node", node.ID.String(), "from host", currHost.Name)
  668. if err := logic.DeleteNode(node, forceDelete); err != nil {
  669. logic.ReturnErrorResponse(
  670. w,
  671. r,
  672. logic.FormatError(fmt.Errorf("failed to delete node"), "internal"),
  673. )
  674. return
  675. }
  676. go func() {
  677. mq.PublishMqUpdatesForDeletedNode(*node, true)
  678. if servercfg.IsDNSMode() {
  679. logic.SetDNS()
  680. }
  681. }()
  682. logic.LogEvent(&models.Event{
  683. Action: models.RemoveHostFromNet,
  684. Source: models.Subject{
  685. ID: r.Header.Get("user"),
  686. Name: r.Header.Get("user"),
  687. Type: models.UserSub,
  688. },
  689. TriggeredBy: r.Header.Get("user"),
  690. Target: models.Subject{
  691. ID: currHost.ID.String(),
  692. Name: currHost.Name,
  693. Type: models.DeviceSub,
  694. },
  695. NetworkID: models.NetworkID(network),
  696. Origin: models.Dashboard,
  697. })
  698. logger.Log(
  699. 2,
  700. r.Header.Get("user"),
  701. fmt.Sprintf("removed host %s from network %s", currHost.Name, network),
  702. )
  703. w.WriteHeader(http.StatusOK)
  704. }
  705. // @Summary To Fetch Auth Token for a Host
  706. // @Router /api/hosts/adm/authenticate [post]
  707. // @Tags Auth
  708. // @Accept json
  709. // @Param body body models.AuthParams true "Authentication parameters"
  710. // @Success 200 {object} models.SuccessResponse
  711. // @Failure 400 {object} models.ErrorResponse
  712. // @Failure 401 {object} models.ErrorResponse
  713. // @Failure 500 {object} models.ErrorResponse
  714. func authenticateHost(response http.ResponseWriter, request *http.Request) {
  715. var authRequest models.AuthParams
  716. var errorResponse = models.ErrorResponse{
  717. Code: http.StatusInternalServerError, Message: "W1R3: It's not you it's me.",
  718. }
  719. decoder := json.NewDecoder(request.Body)
  720. decoderErr := decoder.Decode(&authRequest)
  721. defer request.Body.Close()
  722. if decoderErr != nil {
  723. errorResponse.Code = http.StatusBadRequest
  724. errorResponse.Message = decoderErr.Error()
  725. logger.Log(0, request.Header.Get("user"), "error decoding request body: ",
  726. decoderErr.Error())
  727. logic.ReturnErrorResponse(response, request, errorResponse)
  728. return
  729. }
  730. errorResponse.Code = http.StatusBadRequest
  731. if authRequest.ID == "" {
  732. errorResponse.Message = "W1R3: ID can't be empty"
  733. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  734. logic.ReturnErrorResponse(response, request, errorResponse)
  735. return
  736. } else if authRequest.Password == "" {
  737. errorResponse.Message = "W1R3: Password can't be empty"
  738. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  739. logic.ReturnErrorResponse(response, request, errorResponse)
  740. return
  741. }
  742. host, err := logic.GetHost(authRequest.ID)
  743. if err != nil {
  744. errorResponse.Code = http.StatusBadRequest
  745. errorResponse.Message = err.Error()
  746. logger.Log(0, request.Header.Get("user"),
  747. "error retrieving host: ", authRequest.ID, err.Error())
  748. logic.ReturnErrorResponse(response, request, errorResponse)
  749. return
  750. }
  751. err = bcrypt.CompareHashAndPassword([]byte(host.HostPass), []byte(authRequest.Password))
  752. if err != nil {
  753. errorResponse.Code = http.StatusUnauthorized
  754. errorResponse.Message = "unauthorized"
  755. logger.Log(0, request.Header.Get("user"),
  756. "error validating user password: ", err.Error())
  757. logic.ReturnErrorResponse(response, request, errorResponse)
  758. return
  759. }
  760. tokenString, err := logic.CreateJWT(authRequest.ID, authRequest.MacAddress, "")
  761. if tokenString == "" {
  762. errorResponse.Code = http.StatusUnauthorized
  763. errorResponse.Message = "unauthorized"
  764. logger.Log(0, request.Header.Get("user"),
  765. fmt.Sprintf("%s: %v", errorResponse.Message, err))
  766. logic.ReturnErrorResponse(response, request, errorResponse)
  767. return
  768. }
  769. var successResponse = models.SuccessResponse{
  770. Code: http.StatusOK,
  771. Message: "W1R3: Host " + authRequest.ID + " Authorized",
  772. Response: models.SuccessfulLoginResponse{
  773. AuthToken: tokenString,
  774. ID: authRequest.ID,
  775. },
  776. }
  777. successJSONResponse, jsonError := json.Marshal(successResponse)
  778. if jsonError != nil {
  779. errorResponse.Code = http.StatusBadRequest
  780. errorResponse.Message = err.Error()
  781. logger.Log(0, request.Header.Get("user"),
  782. "error marshalling resp: ", err.Error())
  783. logic.ReturnErrorResponse(response, request, errorResponse)
  784. return
  785. }
  786. go func() {
  787. // Create EMQX creds
  788. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  789. if err := mq.GetEmqxHandler().CreateEmqxUser(host.ID.String(), authRequest.Password); err != nil {
  790. slog.Error("failed to create host credentials for EMQX: ", err.Error())
  791. }
  792. }
  793. }()
  794. response.WriteHeader(http.StatusOK)
  795. response.Header().Set("Content-Type", "application/json")
  796. response.Write(successJSONResponse)
  797. }
  798. // @Summary Send signal to peer
  799. // @Router /api/v1/host/{hostid}/signalpeer [post]
  800. // @Tags Hosts
  801. // @Security oauth
  802. // @Param hostid path string true "Host ID"
  803. // @Param body body models.Signal true "Signal data"
  804. // @Success 200 {object} models.Signal
  805. // @Failure 400 {object} models.ErrorResponse
  806. func signalPeer(w http.ResponseWriter, r *http.Request) {
  807. var params = mux.Vars(r)
  808. hostid := params["hostid"]
  809. // confirm host exists
  810. _, err := logic.GetHost(hostid)
  811. if err != nil {
  812. logger.Log(0, r.Header.Get("user"), "failed to get host:", err.Error())
  813. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  814. return
  815. }
  816. var signal models.Signal
  817. w.Header().Set("Content-Type", "application/json")
  818. err = json.NewDecoder(r.Body).Decode(&signal)
  819. if err != nil {
  820. logger.Log(0, r.Header.Get("user"), "error decoding request body: ", err.Error())
  821. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  822. return
  823. }
  824. if signal.ToHostPubKey == "" {
  825. msg := "insufficient data to signal peer"
  826. logger.Log(0, r.Header.Get("user"), msg)
  827. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New(msg), "badrequest"))
  828. return
  829. }
  830. signal.IsPro = servercfg.IsPro
  831. peerHost, err := logic.GetHost(signal.ToHostID)
  832. if err != nil {
  833. logic.ReturnErrorResponse(
  834. w,
  835. r,
  836. logic.FormatError(errors.New("failed to signal, peer not found"), "badrequest"),
  837. )
  838. return
  839. }
  840. err = mq.HostUpdate(&models.HostUpdate{
  841. Action: models.SignalHost,
  842. Host: *peerHost,
  843. Signal: signal,
  844. })
  845. if err != nil {
  846. logic.ReturnErrorResponse(
  847. w,
  848. r,
  849. logic.FormatError(
  850. errors.New("failed to publish signal to peer: "+err.Error()),
  851. "badrequest",
  852. ),
  853. )
  854. return
  855. }
  856. w.WriteHeader(http.StatusOK)
  857. json.NewEncoder(w).Encode(signal)
  858. }
  859. // @Summary Update keys for all hosts
  860. // @Router /api/hosts/keys [put]
  861. // @Tags Hosts
  862. // @Security oauth
  863. // @Success 200 {string} string "OK"
  864. // @Failure 400 {object} models.ErrorResponse
  865. func updateAllKeys(w http.ResponseWriter, r *http.Request) {
  866. var errorResponse = models.ErrorResponse{}
  867. w.Header().Set("Content-Type", "application/json")
  868. hosts, err := logic.GetAllHosts()
  869. if err != nil {
  870. errorResponse.Code = http.StatusBadRequest
  871. errorResponse.Message = err.Error()
  872. logger.Log(0, r.Header.Get("user"),
  873. "error retrieving hosts ", err.Error())
  874. logic.ReturnErrorResponse(w, r, errorResponse)
  875. return
  876. }
  877. go func() {
  878. hostUpdate := models.HostUpdate{}
  879. hostUpdate.Action = models.UpdateKeys
  880. for _, host := range hosts {
  881. hostUpdate.Host = host
  882. logger.Log(2, "updating host", host.ID.String(), " for a key update")
  883. if err = mq.HostUpdate(&hostUpdate); err != nil {
  884. logger.Log(
  885. 0,
  886. "failed to send update to node during a network wide key update",
  887. host.ID.String(),
  888. err.Error(),
  889. )
  890. }
  891. }
  892. }()
  893. logic.LogEvent(&models.Event{
  894. Action: models.RefreshAllKeys,
  895. Source: models.Subject{
  896. ID: r.Header.Get("user"),
  897. Name: r.Header.Get("user"),
  898. Type: models.UserSub,
  899. },
  900. TriggeredBy: r.Header.Get("user"),
  901. Target: models.Subject{
  902. ID: "All Devices",
  903. Name: "All Devices",
  904. Type: models.DeviceSub,
  905. },
  906. Origin: models.Dashboard,
  907. })
  908. logger.Log(2, r.Header.Get("user"), "updated keys for all hosts")
  909. w.WriteHeader(http.StatusOK)
  910. }
  911. // @Summary Update keys for a host
  912. // @Router /api/hosts/{hostid}/keys [put]
  913. // @Tags Hosts
  914. // @Security oauth
  915. // @Param hostid path string true "Host ID"
  916. // @Success 200 {string} string "OK"
  917. // @Failure 400 {object} models.ErrorResponse
  918. func updateKeys(w http.ResponseWriter, r *http.Request) {
  919. var errorResponse = models.ErrorResponse{}
  920. w.Header().Set("Content-Type", "application/json")
  921. var params = mux.Vars(r)
  922. hostid := params["hostid"]
  923. host, err := logic.GetHost(hostid)
  924. if err != nil {
  925. logger.Log(0, "failed to retrieve host", hostid, err.Error())
  926. errorResponse.Code = http.StatusBadRequest
  927. errorResponse.Message = err.Error()
  928. logger.Log(0, r.Header.Get("user"),
  929. "error retrieving hosts ", err.Error())
  930. logic.ReturnErrorResponse(w, r, errorResponse)
  931. return
  932. }
  933. go func() {
  934. hostUpdate := models.HostUpdate{
  935. Action: models.UpdateKeys,
  936. Host: *host,
  937. }
  938. if err = mq.HostUpdate(&hostUpdate); err != nil {
  939. logger.Log(0, "failed to send host key update", host.ID.String(), err.Error())
  940. }
  941. }()
  942. logic.LogEvent(&models.Event{
  943. Action: models.RefreshKey,
  944. Source: models.Subject{
  945. ID: r.Header.Get("user"),
  946. Name: r.Header.Get("user"),
  947. Type: models.UserSub,
  948. },
  949. TriggeredBy: r.Header.Get("user"),
  950. Target: models.Subject{
  951. ID: host.ID.String(),
  952. Name: host.Name,
  953. Type: models.DeviceSub,
  954. },
  955. Origin: models.Dashboard,
  956. })
  957. logger.Log(2, r.Header.Get("user"), "updated key on host", host.Name)
  958. w.WriteHeader(http.StatusOK)
  959. }
  960. // @Summary Requests all the hosts to pull
  961. // @Router /api/hosts/sync [post]
  962. // @Tags Hosts
  963. // @Security oauth
  964. // @Success 200 {string} string "sync all hosts request received"
  965. func syncHosts(w http.ResponseWriter, r *http.Request) {
  966. w.Header().Set("Content-Type", "application/json")
  967. user := r.Header.Get("user")
  968. go func() {
  969. slog.Info("requesting all hosts to sync", "user", user)
  970. hosts, err := logic.GetAllHosts()
  971. if err != nil {
  972. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  973. return
  974. }
  975. for _, host := range hosts {
  976. go func(host models.Host) {
  977. hostUpdate := models.HostUpdate{
  978. Action: models.RequestPull,
  979. Host: host,
  980. }
  981. if err = mq.HostUpdate(&hostUpdate); err != nil {
  982. slog.Error("failed to request host to sync", "user", user, "host", host.ID.String(), "error", err)
  983. } else {
  984. slog.Info("host sync requested", "user", user, "host", host.ID.String())
  985. }
  986. }(host)
  987. time.Sleep(time.Millisecond * 100)
  988. }
  989. }()
  990. logic.LogEvent(&models.Event{
  991. Action: models.SyncAll,
  992. Source: models.Subject{
  993. ID: r.Header.Get("user"),
  994. Name: r.Header.Get("user"),
  995. Type: models.UserSub,
  996. },
  997. TriggeredBy: r.Header.Get("user"),
  998. Target: models.Subject{
  999. ID: "All Devices",
  1000. Name: "All Devices",
  1001. Type: models.DeviceSub,
  1002. },
  1003. Origin: models.Dashboard,
  1004. })
  1005. slog.Info("sync all hosts request received", "user", user)
  1006. logic.ReturnSuccessResponse(w, r, "sync all hosts request received")
  1007. }
  1008. // @Summary Requests a host to pull
  1009. // @Router /api/hosts/{hostid}/sync [post]
  1010. // @Tags Hosts
  1011. // @Security oauth
  1012. // @Param hostid path string true "Host ID"
  1013. // @Success 200 {string} string "OK"
  1014. // @Failure 400 {object} models.ErrorResponse
  1015. func syncHost(w http.ResponseWriter, r *http.Request) {
  1016. hostId := mux.Vars(r)["hostid"]
  1017. var errorResponse = models.ErrorResponse{}
  1018. w.Header().Set("Content-Type", "application/json")
  1019. host, err := logic.GetHost(hostId)
  1020. if err != nil {
  1021. slog.Error("failed to retrieve host", "user", r.Header.Get("user"), "error", err)
  1022. errorResponse.Code = http.StatusBadRequest
  1023. errorResponse.Message = err.Error()
  1024. logic.ReturnErrorResponse(w, r, errorResponse)
  1025. return
  1026. }
  1027. go func() {
  1028. hostUpdate := models.HostUpdate{
  1029. Action: models.RequestPull,
  1030. Host: *host,
  1031. }
  1032. if err = mq.HostUpdate(&hostUpdate); err != nil {
  1033. slog.Error("failed to send host pull request", "host", host.ID.String(), "error", err)
  1034. }
  1035. }()
  1036. logic.LogEvent(&models.Event{
  1037. Action: models.Sync,
  1038. Source: models.Subject{
  1039. ID: r.Header.Get("user"),
  1040. Name: r.Header.Get("user"),
  1041. Type: models.UserSub,
  1042. },
  1043. TriggeredBy: r.Header.Get("user"),
  1044. Target: models.Subject{
  1045. ID: host.ID.String(),
  1046. Name: host.Name,
  1047. Type: models.DeviceSub,
  1048. },
  1049. Origin: models.Dashboard,
  1050. })
  1051. slog.Info("requested host pull", "user", r.Header.Get("user"), "host", host.ID.String())
  1052. w.WriteHeader(http.StatusOK)
  1053. }
  1054. // @Summary Deletes all EMQX hosts
  1055. // @Router /api/emqx/hosts [delete]
  1056. // @Tags Hosts
  1057. // @Security oauth
  1058. // @Success 200 {string} string "deleted hosts data on emqx"
  1059. // @Failure 500 {object} models.ErrorResponse
  1060. func delEmqxHosts(w http.ResponseWriter, r *http.Request) {
  1061. currentHosts, err := logic.GetAllHosts()
  1062. if err != nil {
  1063. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  1064. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  1065. return
  1066. }
  1067. for _, host := range currentHosts {
  1068. // delete EMQX credentials for host
  1069. if err := mq.GetEmqxHandler().DeleteEmqxUser(host.ID.String()); err != nil {
  1070. slog.Error("failed to remove host credentials from EMQX", "id", host.ID, "error", err)
  1071. }
  1072. }
  1073. err = mq.GetEmqxHandler().DeleteEmqxUser(servercfg.GetMqUserName())
  1074. if err != nil {
  1075. slog.Error(
  1076. "failed to remove server credentials from EMQX",
  1077. "user",
  1078. servercfg.GetMqUserName(),
  1079. "error",
  1080. err,
  1081. )
  1082. }
  1083. logic.ReturnSuccessResponse(w, r, "deleted hosts data on emqx")
  1084. }
  1085. // @Summary Fetches host peerinfo
  1086. // @Router /api/host/{hostid}/peer_info [get]
  1087. // @Tags Hosts
  1088. // @Security oauth
  1089. // @Param hostid path string true "Host ID"
  1090. // @Success 200 {object} models.SuccessResponse
  1091. // @Failure 500 {object} models.ErrorResponse
  1092. func getHostPeerInfo(w http.ResponseWriter, r *http.Request) {
  1093. hostId := mux.Vars(r)["hostid"]
  1094. var errorResponse = models.ErrorResponse{}
  1095. host, err := logic.GetHost(hostId)
  1096. if err != nil {
  1097. slog.Error("failed to retrieve host", "error", err)
  1098. errorResponse.Code = http.StatusBadRequest
  1099. errorResponse.Message = err.Error()
  1100. logic.ReturnErrorResponse(w, r, errorResponse)
  1101. return
  1102. }
  1103. peerInfo, err := logic.GetHostPeerInfo(host)
  1104. if err != nil {
  1105. slog.Error("failed to retrieve host peerinfo", "error", err)
  1106. errorResponse.Code = http.StatusBadRequest
  1107. errorResponse.Message = err.Error()
  1108. logic.ReturnErrorResponse(w, r, errorResponse)
  1109. return
  1110. }
  1111. logic.ReturnSuccessResponseWithJson(w, r, peerInfo, "fetched host peer info")
  1112. }
  1113. // @Summary List pending hosts in a network
  1114. // @Router /api/v1/pending_hosts [get]
  1115. // @Tags Hosts
  1116. // @Security oauth
  1117. // @Success 200 {array} schema.PendingHost
  1118. // @Failure 500 {object} models.ErrorResponse
  1119. func getPendingHosts(w http.ResponseWriter, r *http.Request) {
  1120. netID := r.URL.Query().Get("network")
  1121. if netID == "" {
  1122. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New("network id param is missing"), "badrequest"))
  1123. return
  1124. }
  1125. pendingHosts, err := (&schema.PendingHost{
  1126. Network: netID,
  1127. }).List(db.WithContext(r.Context()))
  1128. if err != nil {
  1129. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1130. Code: http.StatusBadRequest,
  1131. Message: err.Error(),
  1132. })
  1133. return
  1134. }
  1135. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  1136. logic.ReturnSuccessResponseWithJson(w, r, pendingHosts, "returned pending hosts in "+netID)
  1137. }
  1138. // @Summary approve pending hosts in a network
  1139. // @Router /api/v1/pending_hosts/approve/{id} [post]
  1140. // @Tags Hosts
  1141. // @Security oauth
  1142. // @Success 200 {array} models.ApiNode
  1143. // @Failure 500 {object} models.ErrorResponse
  1144. func approvePendingHost(w http.ResponseWriter, r *http.Request) {
  1145. id := mux.Vars(r)["id"]
  1146. p := &schema.PendingHost{ID: id}
  1147. err := p.Get(db.WithContext(r.Context()))
  1148. if err != nil {
  1149. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1150. Code: http.StatusBadRequest,
  1151. Message: err.Error(),
  1152. })
  1153. return
  1154. }
  1155. h, err := logic.GetHost(p.HostID)
  1156. if err != nil {
  1157. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1158. Code: http.StatusBadRequest,
  1159. Message: err.Error(),
  1160. })
  1161. return
  1162. }
  1163. key := models.EnrollmentKey{}
  1164. json.Unmarshal(p.EnrollmentKey, &key)
  1165. newNode, err := logic.UpdateHostNetwork(h, p.Network, true)
  1166. if err != nil {
  1167. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1168. Code: http.StatusBadRequest,
  1169. Message: err.Error(),
  1170. })
  1171. return
  1172. }
  1173. if key.AutoAssignGateway {
  1174. newNode.AutoAssignGateway = true
  1175. }
  1176. if len(key.Groups) > 0 {
  1177. newNode.Tags = make(map[models.TagID]struct{})
  1178. for _, tagI := range key.Groups {
  1179. newNode.Tags[tagI] = struct{}{}
  1180. }
  1181. logic.UpsertNode(newNode)
  1182. }
  1183. if key.Relay != uuid.Nil && !newNode.IsRelayed {
  1184. // check if relay node exists and acting as relay
  1185. relaynode, err := logic.GetNodeByID(key.Relay.String())
  1186. if err == nil && relaynode.IsGw && relaynode.Network == newNode.Network {
  1187. slog.Error(fmt.Sprintf("adding relayed node %s to relay %s on network %s", newNode.ID.String(), key.Relay.String(), p.Network))
  1188. newNode.IsRelayed = true
  1189. newNode.RelayedBy = key.Relay.String()
  1190. updatedRelayNode := relaynode
  1191. updatedRelayNode.RelayedNodes = append(updatedRelayNode.RelayedNodes, newNode.ID.String())
  1192. logic.UpdateRelayed(&relaynode, &updatedRelayNode)
  1193. if err := logic.UpsertNode(&updatedRelayNode); err != nil {
  1194. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1195. }
  1196. if err := logic.UpsertNode(newNode); err != nil {
  1197. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1198. }
  1199. } else {
  1200. slog.Error("failed to relay node. maybe specified relay node is actually not a relay? Or the relayed node is not in the same network with relay?", "err", err)
  1201. }
  1202. }
  1203. logger.Log(1, "added new node", newNode.ID.String(), "to host", h.Name)
  1204. mq.HostUpdate(&models.HostUpdate{
  1205. Action: models.JoinHostToNetwork,
  1206. Host: *h,
  1207. Node: *newNode,
  1208. })
  1209. if h.IsDefault {
  1210. // make host failover
  1211. logic.CreateFailOver(*newNode)
  1212. // make host remote access gateway
  1213. logic.CreateIngressGateway(p.Network, newNode.ID.String(), models.IngressRequest{})
  1214. logic.CreateRelay(models.RelayRequest{
  1215. NodeID: newNode.ID.String(),
  1216. NetID: p.Network,
  1217. })
  1218. }
  1219. p.Delete(db.WithContext(r.Context()))
  1220. go mq.PublishPeerUpdate(false)
  1221. logic.ReturnSuccessResponseWithJson(w, r, newNode.ConvertToAPINode(), "added pending host to "+p.Network)
  1222. }
  1223. // @Summary reject pending hosts in a network
  1224. // @Router /api/v1/pending_hosts/reject/{id} [post]
  1225. // @Tags Hosts
  1226. // @Security oauth
  1227. // @Success 200 {array} models.ApiNode
  1228. // @Failure 500 {object} models.ErrorResponse
  1229. func rejectPendingHost(w http.ResponseWriter, r *http.Request) {
  1230. id := mux.Vars(r)["id"]
  1231. p := &schema.PendingHost{ID: id}
  1232. err := p.Get(db.WithContext(r.Context()))
  1233. if err != nil {
  1234. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1235. Code: http.StatusBadRequest,
  1236. Message: err.Error(),
  1237. })
  1238. return
  1239. }
  1240. err = p.Delete(db.WithContext(r.Context()))
  1241. if err != nil {
  1242. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1243. Code: http.StatusBadRequest,
  1244. Message: err.Error(),
  1245. })
  1246. return
  1247. }
  1248. logic.ReturnSuccessResponseWithJson(w, r, p, "deleted pending host from "+p.Network)
  1249. }