nodes.go 4.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167
  1. package logic
  2. import (
  3. "errors"
  4. "fmt"
  5. "net"
  6. "github.com/gravitl/netmaker/logic"
  7. "github.com/gravitl/netmaker/models"
  8. "golang.org/x/exp/slog"
  9. )
  10. const (
  11. IPv4Network = "0.0.0.0/0"
  12. IPv6Network = "::/0"
  13. )
  14. func ValidateInetGwReq(inetNode models.Node, req models.InetNodeReq, update bool) error {
  15. inetHost, err := logic.GetHost(inetNode.HostID.String())
  16. if err != nil {
  17. return err
  18. }
  19. if inetHost.FirewallInUse == models.FIREWALL_NONE {
  20. return errors.New("iptables or nftables needs to be installed")
  21. }
  22. if inetNode.InternetGwID != "" {
  23. return fmt.Errorf("node %s is using a internet gateway already", inetHost.Name)
  24. }
  25. if inetNode.IsRelayed {
  26. return fmt.Errorf("node %s is being relayed", inetHost.Name)
  27. }
  28. for _, clientNodeID := range req.InetNodeClientIDs {
  29. clientNode, err := logic.GetNodeByID(clientNodeID)
  30. if err != nil {
  31. return err
  32. }
  33. clientHost, err := logic.GetHost(clientNode.HostID.String())
  34. if err != nil {
  35. return err
  36. }
  37. if clientHost.OS != models.OS_Types.Linux && clientHost.OS != models.OS_Types.Windows {
  38. return errors.New("can only attach linux or windows machine to a internet gateway")
  39. }
  40. if clientNode.IsInternetGateway {
  41. return fmt.Errorf("node %s acting as internet gateway cannot use another internet gateway", clientHost.Name)
  42. }
  43. if update {
  44. if clientNode.InternetGwID != "" && clientNode.InternetGwID != inetNode.ID.String() {
  45. return fmt.Errorf("node %s is already using a internet gateway", clientHost.Name)
  46. }
  47. } else {
  48. if clientNode.InternetGwID != "" {
  49. return fmt.Errorf("node %s is already using a internet gateway", clientHost.Name)
  50. }
  51. }
  52. if clientNode.IsRelayed {
  53. return fmt.Errorf("node %s is being relayed", clientHost.Name)
  54. }
  55. for _, nodeID := range clientHost.Nodes {
  56. node, err := logic.GetNodeByID(nodeID)
  57. if err != nil {
  58. continue
  59. }
  60. if node.InternetGwID != "" && node.InternetGwID != inetNode.ID.String() {
  61. return errors.New("nodes on same host cannot use different internet gateway")
  62. }
  63. }
  64. }
  65. return nil
  66. }
  67. // SetInternetGw - sets the node as internet gw based on flag bool
  68. func SetInternetGw(node *models.Node, req models.InetNodeReq) {
  69. node.IsInternetGateway = true
  70. node.InetNodeReq = req
  71. for _, clientNodeID := range req.InetNodeClientIDs {
  72. clientNode, err := logic.GetNodeByID(clientNodeID)
  73. if err != nil {
  74. continue
  75. }
  76. clientNode.InternetGwID = node.ID.String()
  77. logic.UpsertNode(&clientNode)
  78. }
  79. }
  80. func UnsetInternetGw(node *models.Node) {
  81. nodes, err := logic.GetNetworkNodes(node.Network)
  82. if err != nil {
  83. slog.Error("failed to get network nodes", "network", node.Network, "error", err)
  84. return
  85. }
  86. for _, clientNode := range nodes {
  87. if node.ID.String() == clientNode.InternetGwID {
  88. clientNode.InternetGwID = ""
  89. logic.UpsertNode(&clientNode)
  90. }
  91. }
  92. node.IsInternetGateway = false
  93. node.InetNodeReq = models.InetNodeReq{}
  94. }
  95. func SetDefaultGwForRelayedUpdate(relayed, relay models.Node, peerUpdate models.HostPeerUpdate) models.HostPeerUpdate {
  96. if relay.InternetGwID != "" {
  97. peerUpdate.ChangeDefaultGw = true
  98. peerUpdate.DefaultGwIp = relay.Address.IP
  99. if peerUpdate.DefaultGwIp == nil {
  100. peerUpdate.DefaultGwIp = relay.Address6.IP
  101. }
  102. }
  103. return peerUpdate
  104. }
  105. func SetDefaultGw(node models.Node, peerUpdate models.HostPeerUpdate) models.HostPeerUpdate {
  106. if node.InternetGwID != "" {
  107. inetNode, err := logic.GetNodeByID(node.InternetGwID)
  108. if err != nil {
  109. return peerUpdate
  110. }
  111. peerUpdate.ChangeDefaultGw = true
  112. peerUpdate.DefaultGwIp = inetNode.Address.IP
  113. if peerUpdate.DefaultGwIp == nil {
  114. peerUpdate.DefaultGwIp = inetNode.Address6.IP
  115. }
  116. }
  117. return peerUpdate
  118. }
  119. // GetNetworkIngresses - gets the gateways of a network
  120. func GetNetworkIngresses(network string) ([]models.Node, error) {
  121. var ingresses []models.Node
  122. netNodes, err := logic.GetNetworkNodes(network)
  123. if err != nil {
  124. return []models.Node{}, err
  125. }
  126. for i := range netNodes {
  127. if netNodes[i].IsIngressGateway {
  128. ingresses = append(ingresses, netNodes[i])
  129. }
  130. }
  131. return ingresses, nil
  132. }
  133. // GetAllowedIpsForInet - get inet cidr for node using a inet gw
  134. func GetAllowedIpForInetNodeClient(node, peer *models.Node) []net.IPNet {
  135. var allowedips = []net.IPNet{}
  136. if peer.Address.IP != nil {
  137. _, ipnet, _ := net.ParseCIDR(IPv4Network)
  138. allowedips = append(allowedips, *ipnet)
  139. return allowedips
  140. }
  141. if peer.Address6.IP != nil {
  142. _, ipnet, _ := net.ParseCIDR(IPv6Network)
  143. allowedips = append(allowedips, *ipnet)
  144. }
  145. return allowedips
  146. }