2
0

serverconf.go 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613
  1. package servercfg
  2. import (
  3. "errors"
  4. "io"
  5. "net/http"
  6. "os"
  7. "strconv"
  8. "strings"
  9. "time"
  10. "github.com/gravitl/netmaker/config"
  11. "github.com/gravitl/netmaker/models"
  12. )
  13. var (
  14. Version = "dev"
  15. Is_EE = false
  16. )
  17. // SetHost - sets the host ip
  18. func SetHost() error {
  19. remoteip, err := GetPublicIP()
  20. if err != nil {
  21. return err
  22. }
  23. os.Setenv("SERVER_HOST", remoteip)
  24. return nil
  25. }
  26. // GetServerConfig - gets the server config into memory from file or env
  27. func GetServerConfig() config.ServerConfig {
  28. var cfg config.ServerConfig
  29. cfg.APIConnString = GetAPIConnString()
  30. cfg.CoreDNSAddr = GetCoreDNSAddr()
  31. cfg.APIHost = GetAPIHost()
  32. cfg.APIPort = GetAPIPort()
  33. cfg.MQPort = GetMQPort()
  34. cfg.MasterKey = "(hidden)"
  35. cfg.DNSKey = "(hidden)"
  36. cfg.AllowedOrigin = GetAllowedOrigin()
  37. cfg.RestBackend = "off"
  38. cfg.NodeID = GetNodeID()
  39. cfg.StunHost = GetStunAddr()
  40. cfg.StunPort = GetStunPort()
  41. if IsRestBackend() {
  42. cfg.RestBackend = "on"
  43. }
  44. cfg.DNSMode = "off"
  45. if IsDNSMode() {
  46. cfg.DNSMode = "on"
  47. }
  48. cfg.DisplayKeys = "off"
  49. if IsDisplayKeys() {
  50. cfg.DisplayKeys = "on"
  51. }
  52. cfg.DisableRemoteIPCheck = "off"
  53. if DisableRemoteIPCheck() {
  54. cfg.DisableRemoteIPCheck = "on"
  55. }
  56. cfg.Database = GetDB()
  57. cfg.Platform = GetPlatform()
  58. cfg.Version = GetVersion()
  59. // == auth config ==
  60. var authInfo = GetAuthProviderInfo()
  61. cfg.AuthProvider = authInfo[0]
  62. cfg.ClientID = authInfo[1]
  63. cfg.ClientSecret = authInfo[2]
  64. cfg.FrontendURL = GetFrontendURL()
  65. cfg.Telemetry = Telemetry()
  66. cfg.Server = GetServer()
  67. cfg.Verbosity = GetVerbosity()
  68. cfg.IsEE = "no"
  69. if Is_EE {
  70. cfg.IsEE = "yes"
  71. }
  72. return cfg
  73. }
  74. // GetServerConfig - gets the server config into memory from file or env
  75. func GetServerInfo() models.ServerConfig {
  76. var cfg models.ServerConfig
  77. cfg.Server = GetServer()
  78. cfg.Broker = GetBroker()
  79. cfg.MQUserName = GetMqUserName()
  80. cfg.MQPassword = GetMqPassword()
  81. cfg.API = GetAPIConnString()
  82. cfg.CoreDNSAddr = GetCoreDNSAddr()
  83. cfg.APIPort = GetAPIPort()
  84. cfg.MQPort = GetMQPort()
  85. cfg.DNSMode = "off"
  86. if IsDNSMode() {
  87. cfg.DNSMode = "on"
  88. }
  89. cfg.Version = GetVersion()
  90. cfg.Is_EE = Is_EE
  91. cfg.StunHost = GetStunAddr()
  92. cfg.StunPort = GetStunPort()
  93. return cfg
  94. }
  95. // GetFrontendURL - gets the frontend url
  96. func GetFrontendURL() string {
  97. var frontend = ""
  98. if os.Getenv("FRONTEND_URL") != "" {
  99. frontend = os.Getenv("FRONTEND_URL")
  100. } else if config.Config.Server.FrontendURL != "" {
  101. frontend = config.Config.Server.FrontendURL
  102. }
  103. return frontend
  104. }
  105. // GetAPIConnString - gets the api connections string
  106. func GetAPIConnString() string {
  107. conn := ""
  108. if os.Getenv("SERVER_API_CONN_STRING") != "" {
  109. conn = os.Getenv("SERVER_API_CONN_STRING")
  110. } else if config.Config.Server.APIConnString != "" {
  111. conn = config.Config.Server.APIConnString
  112. }
  113. return conn
  114. }
  115. // SetVersion - set version of netmaker
  116. func SetVersion(v string) {
  117. Version = v
  118. }
  119. // GetVersion - version of netmaker
  120. func GetVersion() string {
  121. return Version
  122. }
  123. // GetDB - gets the database type
  124. func GetDB() string {
  125. database := "sqlite"
  126. if os.Getenv("DATABASE") != "" {
  127. database = os.Getenv("DATABASE")
  128. } else if config.Config.Server.Database != "" {
  129. database = config.Config.Server.Database
  130. }
  131. return database
  132. }
  133. // GetAPIHost - gets the api host
  134. func GetAPIHost() string {
  135. serverhost := "127.0.0.1"
  136. remoteip, _ := GetPublicIP()
  137. if os.Getenv("SERVER_HTTP_HOST") != "" {
  138. serverhost = os.Getenv("SERVER_HTTP_HOST")
  139. } else if config.Config.Server.APIHost != "" {
  140. serverhost = config.Config.Server.APIHost
  141. } else if os.Getenv("SERVER_HOST") != "" {
  142. serverhost = os.Getenv("SERVER_HOST")
  143. } else {
  144. if remoteip != "" {
  145. serverhost = remoteip
  146. }
  147. }
  148. return serverhost
  149. }
  150. // GetAPIPort - gets the api port
  151. func GetAPIPort() string {
  152. apiport := "8081"
  153. if os.Getenv("API_PORT") != "" {
  154. apiport = os.Getenv("API_PORT")
  155. } else if config.Config.Server.APIPort != "" {
  156. apiport = config.Config.Server.APIPort
  157. }
  158. return apiport
  159. }
  160. // GetStunAddr - gets the stun host address
  161. func GetStunAddr() string {
  162. stunAddr := ""
  163. if os.Getenv("STUN_DOMAIN") != "" {
  164. stunAddr = os.Getenv("STUN_DOMAIN")
  165. } else if config.Config.Server.StunHost != "" {
  166. stunAddr = config.Config.Server.StunHost
  167. }
  168. return stunAddr
  169. }
  170. // GetCoreDNSAddr - gets the core dns address
  171. func GetCoreDNSAddr() string {
  172. addr, _ := GetPublicIP()
  173. if os.Getenv("COREDNS_ADDR") != "" {
  174. addr = os.Getenv("COREDNS_ADDR")
  175. } else if config.Config.Server.CoreDNSAddr != "" {
  176. addr = config.Config.Server.CoreDNSAddr
  177. }
  178. return addr
  179. }
  180. // GetMQPort - gets the mq port
  181. func GetMQPort() string {
  182. port := "8883" //default
  183. if os.Getenv("MQ_PORT") != "" {
  184. port = os.Getenv("MQ_PORT")
  185. } else if config.Config.Server.MQPort != "" {
  186. port = config.Config.Server.MQPort
  187. }
  188. return port
  189. }
  190. // GetMessageQueueEndpoint - gets the message queue endpoint
  191. func GetMessageQueueEndpoint() (string, bool) {
  192. host, _ := GetPublicIP()
  193. if os.Getenv("MQ_HOST") != "" {
  194. host = os.Getenv("MQ_HOST")
  195. } else if config.Config.Server.MQHOST != "" {
  196. host = config.Config.Server.MQHOST
  197. }
  198. secure := strings.Contains(host, "wss") || strings.Contains(host, "ssl")
  199. if secure {
  200. host = "wss://" + host
  201. } else {
  202. host = "ws://" + host
  203. }
  204. return host + ":" + GetMQServerPort(), secure
  205. }
  206. // GetMasterKey - gets the configured master key of server
  207. func GetMasterKey() string {
  208. key := ""
  209. if os.Getenv("MASTER_KEY") != "" {
  210. key = os.Getenv("MASTER_KEY")
  211. } else if config.Config.Server.MasterKey != "" {
  212. key = config.Config.Server.MasterKey
  213. }
  214. return key
  215. }
  216. // GetDNSKey - gets the configured dns key of server
  217. func GetDNSKey() string {
  218. key := "secretkey"
  219. if os.Getenv("DNS_KEY") != "" {
  220. key = os.Getenv("DNS_KEY")
  221. } else if config.Config.Server.DNSKey != "" {
  222. key = config.Config.Server.DNSKey
  223. }
  224. return key
  225. }
  226. // GetAllowedOrigin - get the allowed origin
  227. func GetAllowedOrigin() string {
  228. allowedorigin := "*"
  229. if os.Getenv("CORS_ALLOWED_ORIGIN") != "" {
  230. allowedorigin = os.Getenv("CORS_ALLOWED_ORIGIN")
  231. } else if config.Config.Server.AllowedOrigin != "" {
  232. allowedorigin = config.Config.Server.AllowedOrigin
  233. }
  234. return allowedorigin
  235. }
  236. // IsRestBackend - checks if rest is on or off
  237. func IsRestBackend() bool {
  238. isrest := true
  239. if os.Getenv("REST_BACKEND") != "" {
  240. if os.Getenv("REST_BACKEND") == "off" {
  241. isrest = false
  242. }
  243. } else if config.Config.Server.RestBackend != "" {
  244. if config.Config.Server.RestBackend == "off" {
  245. isrest = false
  246. }
  247. }
  248. return isrest
  249. }
  250. // IsMetricsExporter - checks if metrics exporter is on or off
  251. func IsMetricsExporter() bool {
  252. export := false
  253. if os.Getenv("METRICS_EXPORTER") != "" {
  254. if os.Getenv("METRICS_EXPORTER") == "on" {
  255. export = true
  256. }
  257. } else if config.Config.Server.MetricsExporter != "" {
  258. if config.Config.Server.MetricsExporter == "on" {
  259. export = true
  260. }
  261. }
  262. return export
  263. }
  264. // IsMessageQueueBackend - checks if message queue is on or off
  265. func IsMessageQueueBackend() bool {
  266. ismessagequeue := true
  267. if os.Getenv("MESSAGEQUEUE_BACKEND") != "" {
  268. if os.Getenv("MESSAGEQUEUE_BACKEND") == "off" {
  269. ismessagequeue = false
  270. }
  271. } else if config.Config.Server.MessageQueueBackend != "" {
  272. if config.Config.Server.MessageQueueBackend == "off" {
  273. ismessagequeue = false
  274. }
  275. }
  276. return ismessagequeue
  277. }
  278. // Telemetry - checks if telemetry data should be sent
  279. func Telemetry() string {
  280. telemetry := "on"
  281. if os.Getenv("TELEMETRY") == "off" {
  282. telemetry = "off"
  283. }
  284. if config.Config.Server.Telemetry == "off" {
  285. telemetry = "off"
  286. }
  287. return telemetry
  288. }
  289. // GetServer - gets the server name
  290. func GetServer() string {
  291. server := ""
  292. if os.Getenv("SERVER_NAME") != "" {
  293. server = os.Getenv("SERVER_NAME")
  294. } else if config.Config.Server.Server != "" {
  295. server = config.Config.Server.Server
  296. }
  297. return server
  298. }
  299. // GetBroker - gets the broker name
  300. func GetBroker() string {
  301. server := ""
  302. if os.Getenv("BROKER_NAME") != "" {
  303. server = os.Getenv("BROKER_NAME")
  304. } else if config.Config.Server.Broker != "" {
  305. server = config.Config.Server.Broker
  306. }
  307. return server
  308. }
  309. func GetVerbosity() int32 {
  310. var verbosity = 0
  311. var err error
  312. if os.Getenv("VERBOSITY") != "" {
  313. verbosity, err = strconv.Atoi(os.Getenv("VERBOSITY"))
  314. if err != nil {
  315. verbosity = 0
  316. }
  317. } else if config.Config.Server.Verbosity != 0 {
  318. verbosity = int(config.Config.Server.Verbosity)
  319. }
  320. if verbosity < 0 || verbosity > 4 {
  321. verbosity = 0
  322. }
  323. return int32(verbosity)
  324. }
  325. // IsDNSMode - should it run with DNS
  326. func IsDNSMode() bool {
  327. isdns := true
  328. if os.Getenv("DNS_MODE") != "" {
  329. if os.Getenv("DNS_MODE") == "off" {
  330. isdns = false
  331. }
  332. } else if config.Config.Server.DNSMode != "" {
  333. if config.Config.Server.DNSMode == "off" {
  334. isdns = false
  335. }
  336. }
  337. return isdns
  338. }
  339. // IsDisplayKeys - should server be able to display keys?
  340. func IsDisplayKeys() bool {
  341. isdisplay := true
  342. if os.Getenv("DISPLAY_KEYS") != "" {
  343. if os.Getenv("DISPLAY_KEYS") == "off" {
  344. isdisplay = false
  345. }
  346. } else if config.Config.Server.DisplayKeys != "" {
  347. if config.Config.Server.DisplayKeys == "off" {
  348. isdisplay = false
  349. }
  350. }
  351. return isdisplay
  352. }
  353. // DisableRemoteIPCheck - disable the remote ip check
  354. func DisableRemoteIPCheck() bool {
  355. disabled := false
  356. if os.Getenv("DISABLE_REMOTE_IP_CHECK") != "" {
  357. if os.Getenv("DISABLE_REMOTE_IP_CHECK") == "on" {
  358. disabled = true
  359. }
  360. } else if config.Config.Server.DisableRemoteIPCheck != "" {
  361. if config.Config.Server.DisableRemoteIPCheck == "on" {
  362. disabled = true
  363. }
  364. }
  365. return disabled
  366. }
  367. // GetPublicIP - gets public ip
  368. func GetPublicIP() (string, error) {
  369. endpoint := ""
  370. var err error
  371. iplist := []string{"https://ip.server.gravitl.com", "https://ifconfig.me", "https://api.ipify.org", "https://ipinfo.io/ip"}
  372. publicIpService := os.Getenv("PUBLIC_IP_SERVICE")
  373. if publicIpService != "" {
  374. // prepend the user-specified service so it's checked first
  375. iplist = append([]string{publicIpService}, iplist...)
  376. } else if config.Config.Server.PublicIPService != "" {
  377. publicIpService = config.Config.Server.PublicIPService
  378. // prepend the user-specified service so it's checked first
  379. iplist = append([]string{publicIpService}, iplist...)
  380. }
  381. for _, ipserver := range iplist {
  382. client := &http.Client{
  383. Timeout: time.Second * 10,
  384. }
  385. resp, err := client.Get(ipserver)
  386. if err != nil {
  387. continue
  388. }
  389. defer resp.Body.Close()
  390. if resp.StatusCode == http.StatusOK {
  391. bodyBytes, err := io.ReadAll(resp.Body)
  392. if err != nil {
  393. continue
  394. }
  395. endpoint = string(bodyBytes)
  396. break
  397. }
  398. }
  399. if err == nil && endpoint == "" {
  400. err = errors.New("public address not found")
  401. }
  402. return endpoint, err
  403. }
  404. // GetPlatform - get the system type of server
  405. func GetPlatform() string {
  406. platform := "linux"
  407. if os.Getenv("PLATFORM") != "" {
  408. platform = os.Getenv("PLATFORM")
  409. } else if config.Config.Server.Platform != "" {
  410. platform = config.Config.Server.Platform
  411. }
  412. return platform
  413. }
  414. // GetSQLConn - get the sql connection string
  415. func GetSQLConn() string {
  416. sqlconn := "http://"
  417. if os.Getenv("SQL_CONN") != "" {
  418. sqlconn = os.Getenv("SQL_CONN")
  419. } else if config.Config.Server.SQLConn != "" {
  420. sqlconn = config.Config.Server.SQLConn
  421. }
  422. return sqlconn
  423. }
  424. // GetNodeID - gets the node id
  425. func GetNodeID() string {
  426. var id string
  427. var err error
  428. // id = getMacAddr()
  429. if os.Getenv("NODE_ID") != "" {
  430. id = os.Getenv("NODE_ID")
  431. } else if config.Config.Server.NodeID != "" {
  432. id = config.Config.Server.NodeID
  433. } else {
  434. id, err = os.Hostname()
  435. if err != nil {
  436. return ""
  437. }
  438. }
  439. return id
  440. }
  441. func SetNodeID(id string) {
  442. config.Config.Server.NodeID = id
  443. }
  444. // GetAuthProviderInfo = gets the oauth provider info
  445. func GetAuthProviderInfo() (pi []string) {
  446. var authProvider = ""
  447. defer func() {
  448. if authProvider == "oidc" {
  449. if os.Getenv("OIDC_ISSUER") != "" {
  450. pi = append(pi, os.Getenv("OIDC_ISSUER"))
  451. } else if config.Config.Server.OIDCIssuer != "" {
  452. pi = append(pi, config.Config.Server.OIDCIssuer)
  453. } else {
  454. pi = []string{"", "", ""}
  455. }
  456. }
  457. }()
  458. if os.Getenv("AUTH_PROVIDER") != "" && os.Getenv("CLIENT_ID") != "" && os.Getenv("CLIENT_SECRET") != "" {
  459. authProvider = strings.ToLower(os.Getenv("AUTH_PROVIDER"))
  460. if authProvider == "google" || authProvider == "azure-ad" || authProvider == "github" || authProvider == "oidc" {
  461. return []string{authProvider, os.Getenv("CLIENT_ID"), os.Getenv("CLIENT_SECRET")}
  462. } else {
  463. authProvider = ""
  464. }
  465. } else if config.Config.Server.AuthProvider != "" && config.Config.Server.ClientID != "" && config.Config.Server.ClientSecret != "" {
  466. authProvider = strings.ToLower(config.Config.Server.AuthProvider)
  467. if authProvider == "google" || authProvider == "azure-ad" || authProvider == "github" || authProvider == "oidc" {
  468. return []string{authProvider, config.Config.Server.ClientID, config.Config.Server.ClientSecret}
  469. }
  470. }
  471. return []string{"", "", ""}
  472. }
  473. // GetAzureTenant - retrieve the azure tenant ID from env variable or config file
  474. func GetAzureTenant() string {
  475. var azureTenant = ""
  476. if os.Getenv("AZURE_TENANT") != "" {
  477. azureTenant = os.Getenv("AZURE_TENANT")
  478. } else if config.Config.Server.AzureTenant != "" {
  479. azureTenant = config.Config.Server.AzureTenant
  480. }
  481. return azureTenant
  482. }
  483. // GetMQServerPort - get mq port for server
  484. func GetMQServerPort() string {
  485. port := "1883" //default
  486. if os.Getenv("MQ_SERVER_PORT") != "" {
  487. port = os.Getenv("MQ_SERVER_PORT")
  488. } else if config.Config.Server.MQServerPort != "" {
  489. port = config.Config.Server.MQServerPort
  490. }
  491. return port
  492. }
  493. // GetMqPassword - fetches the MQ password
  494. func GetMqPassword() string {
  495. password := ""
  496. if os.Getenv("MQ_PASSWORD") != "" {
  497. password = os.Getenv("MQ_PASSWORD")
  498. } else if config.Config.Server.MQPassword != "" {
  499. password = config.Config.Server.MQPassword
  500. }
  501. return password
  502. }
  503. // GetMqUserName - fetches the MQ username
  504. func GetMqUserName() string {
  505. password := ""
  506. if os.Getenv("MQ_USERNAME") != "" {
  507. password = os.Getenv("MQ_USERNAME")
  508. } else if config.Config.Server.MQUserName != "" {
  509. password = config.Config.Server.MQUserName
  510. }
  511. return password
  512. }
  513. // IsBasicAuthEnabled - checks if basic auth has been configured to be turned off
  514. func IsBasicAuthEnabled() bool {
  515. var enabled = true //default
  516. if os.Getenv("BASIC_AUTH") != "" {
  517. enabled = os.Getenv("BASIC_AUTH") == "yes"
  518. } else if config.Config.Server.BasicAuth != "" {
  519. enabled = config.Config.Server.BasicAuth == "yes"
  520. }
  521. return enabled
  522. }
  523. // GetLicenseKey - retrieves pro license value from env or conf files
  524. func GetLicenseKey() string {
  525. licenseKeyValue := os.Getenv("LICENSE_KEY")
  526. if licenseKeyValue == "" {
  527. licenseKeyValue = config.Config.Server.LicenseValue
  528. }
  529. return licenseKeyValue
  530. }
  531. // GetNetmakerAccountID - get's the associated, Netmaker, account ID to verify ownership
  532. func GetNetmakerAccountID() string {
  533. netmakerAccountID := os.Getenv("NETMAKER_ACCOUNT_ID")
  534. if netmakerAccountID == "" {
  535. netmakerAccountID = config.Config.Server.NetmakerAccountID
  536. }
  537. return netmakerAccountID
  538. }
  539. func GetStunPort() int {
  540. port := 3478 //default
  541. if os.Getenv("STUN_PORT") != "" {
  542. portInt, err := strconv.Atoi(os.Getenv("STUN_PORT"))
  543. if err == nil {
  544. port = portInt
  545. }
  546. } else if config.Config.Server.StunPort != 0 {
  547. port = config.Config.Server.StunPort
  548. }
  549. return port
  550. }
  551. func IsProxyEnabled() bool {
  552. var enabled = false //default
  553. if os.Getenv("PROXY") != "" {
  554. enabled = os.Getenv("PROXY") == "on"
  555. } else if config.Config.Server.Proxy != "" {
  556. enabled = config.Config.Server.Proxy == "on"
  557. }
  558. return enabled
  559. }