serverctl.go 5.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185
  1. package serverctl
  2. import (
  3. "errors"
  4. "net"
  5. "os"
  6. "strings"
  7. "time"
  8. "github.com/gravitl/netmaker/database"
  9. "github.com/gravitl/netmaker/logger"
  10. "github.com/gravitl/netmaker/logic"
  11. "github.com/gravitl/netmaker/logic/acls"
  12. "github.com/gravitl/netmaker/logic/acls/nodeacls"
  13. "github.com/gravitl/netmaker/models"
  14. "github.com/gravitl/netmaker/netclient/ncutils"
  15. "github.com/gravitl/netmaker/servercfg"
  16. )
  17. // COMMS_NETID - name of the comms network
  18. var COMMS_NETID string
  19. const (
  20. // NETMAKER_BINARY_NAME - name of netmaker binary
  21. NETMAKER_BINARY_NAME = "netmaker"
  22. )
  23. // InitializeCommsNetwork - Check if comms network exists (for MQ, DNS, SSH traffic), if not, create
  24. func InitializeCommsNetwork() error {
  25. setCommsID()
  26. commsNetwork, err := logic.GetNetwork(COMMS_NETID)
  27. if err != nil {
  28. var network models.Network
  29. network.NetID = COMMS_NETID
  30. network.AddressRange = servercfg.GetCommsCIDR()
  31. network.IsPointToSite = "yes"
  32. network.DefaultUDPHolePunch = "yes"
  33. network.IsComms = "yes"
  34. logger.Log(1, "comms net does not exist, creating with ID,", network.NetID, "and CIDR,", network.AddressRange)
  35. _, err = logic.CreateNetwork(network)
  36. return err
  37. } else if commsNetwork.DefaultACL == "" {
  38. commsNetwork.DefaultACL = "yes"
  39. if err = logic.SaveNetwork(&commsNetwork); err != nil {
  40. logger.Log(1, "comms net default acl is set incorrectly, please manually adjust to \"yes\",", COMMS_NETID)
  41. }
  42. }
  43. // gracefully check for comms interface
  44. gracefulCommsWait()
  45. return nil
  46. }
  47. func gracefulCommsWait() {
  48. output, _ := ncutils.RunCmd("wg", false)
  49. starttime := time.Now()
  50. ifaceReady := strings.Contains(output, COMMS_NETID)
  51. for !ifaceReady && !(time.Now().After(starttime.Add(time.Second << 4))) {
  52. output, _ = ncutils.RunCmd("wg", false)
  53. SyncServerNetwork(COMMS_NETID)
  54. time.Sleep(time.Second)
  55. ifaceReady = strings.Contains(output, COMMS_NETID)
  56. }
  57. logger.Log(1, "comms network", COMMS_NETID, "ready")
  58. }
  59. // SetJWTSecret - sets the jwt secret on server startup
  60. func setCommsID() {
  61. currentid, idErr := logic.FetchCommsNetID()
  62. if idErr != nil {
  63. commsid := logic.RandomString(8)
  64. if err := logic.StoreCommsNetID(commsid); err != nil {
  65. logger.FatalLog("something went wrong when configuring comms id")
  66. }
  67. COMMS_NETID = commsid
  68. servercfg.SetCommsID(COMMS_NETID)
  69. return
  70. }
  71. COMMS_NETID = currentid
  72. servercfg.SetCommsID(COMMS_NETID)
  73. }
  74. // InitServerNetclient - intializes the server netclient
  75. // 1. Check if config directory exists, if not attempt to make
  76. // 2. Check current networks and run pull to get interface up to date in case of restart
  77. func InitServerNetclient() error {
  78. netclientDir := ncutils.GetNetclientPath()
  79. _, err := os.Stat(netclientDir + "/config")
  80. if os.IsNotExist(err) {
  81. os.MkdirAll(netclientDir+"/config", 0700)
  82. } else if err != nil {
  83. logger.Log(1, "could not find or create", netclientDir)
  84. return err
  85. }
  86. var networks, netsErr = logic.GetNetworks()
  87. if netsErr == nil || database.IsEmptyRecord(netsErr) {
  88. for _, network := range networks {
  89. var currentServerNode, nodeErr = logic.GetNetworkServerLocal(network.NetID)
  90. if nodeErr == nil {
  91. if err = logic.ServerPull(&currentServerNode, true); err != nil {
  92. logger.Log(1, "failed pull for network", network.NetID, ", on server node", currentServerNode.ID)
  93. }
  94. }
  95. }
  96. }
  97. return nil
  98. }
  99. // SyncServerNetwork - ensures a wg interface and node exists for server
  100. func SyncServerNetwork(network string) error {
  101. serverNetworkSettings, err := logic.GetNetwork(network)
  102. if err != nil {
  103. return err
  104. }
  105. localnets, err := net.Interfaces()
  106. if err != nil {
  107. return err
  108. }
  109. ifaceExists := false
  110. for _, localnet := range localnets {
  111. if serverNetworkSettings.DefaultInterface == localnet.Name {
  112. ifaceExists = true
  113. }
  114. }
  115. serverNode, err := logic.GetNetworkServerLocal(network)
  116. if !ifaceExists && (err == nil && serverNode.ID != "") {
  117. return logic.ServerUpdate(&serverNode, true)
  118. } else if !ifaceExists {
  119. _, err := logic.ServerJoin(&serverNetworkSettings)
  120. if err != nil {
  121. if err == nil {
  122. err = errors.New("network add failed for " + serverNetworkSettings.NetID)
  123. }
  124. if !strings.Contains(err.Error(), "macaddress_unique") { // ignore macaddress unique error throws
  125. logger.Log(1, "error adding network", serverNetworkSettings.NetID, "during sync:", err.Error())
  126. }
  127. }
  128. }
  129. // remove networks locally that do not exist in database
  130. /*
  131. for _, localnet := range localnets {
  132. if strings.Contains(localnet.Name, "nm-") {
  133. var exists = ""
  134. if serverNetworkSettings.DefaultInterface == localnet.Name {
  135. exists = serverNetworkSettings.NetID
  136. }
  137. if exists == "" {
  138. err := logic.DeleteNodeByID(serverNode, true)
  139. if err != nil {
  140. if err == nil {
  141. err = errors.New("network delete failed for " + exists)
  142. }
  143. logger.Log(1, "error removing network", exists, "during sync", err.Error())
  144. }
  145. }
  146. }
  147. }
  148. */
  149. return nil
  150. }
  151. // SetDefaultACLS - runs through each network to see if ACL's are set. If not, goes through each node in network and adds the default ACL
  152. func SetDefaultACLS() error {
  153. // upgraded systems will not have ACL's set, which is why we need this function
  154. nodes, err := logic.GetAllNodes()
  155. if err != nil {
  156. return err
  157. }
  158. for i := range nodes {
  159. currentNodeACL, err := nodeacls.FetchNodeACL(nodeacls.NetworkID(nodes[i].Network), nodeacls.NodeID(nodes[i].ID))
  160. if (err != nil && (database.IsEmptyRecord(err) || strings.Contains(err.Error(), "no node ACL present"))) || currentNodeACL == nil {
  161. if _, err = nodeacls.CreateNodeACL(nodeacls.NetworkID(nodes[i].Network), nodeacls.NodeID(nodes[i].ID), acls.Allowed); err != nil {
  162. logger.Log(1, "could not create a default ACL for node", nodes[i].ID)
  163. }
  164. }
  165. }
  166. return nil
  167. }