serverctl.go 5.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189
  1. package serverctl
  2. import (
  3. "errors"
  4. "net"
  5. "os"
  6. "strings"
  7. "time"
  8. "github.com/gravitl/netmaker/database"
  9. "github.com/gravitl/netmaker/logger"
  10. "github.com/gravitl/netmaker/logic"
  11. "github.com/gravitl/netmaker/logic/acls"
  12. "github.com/gravitl/netmaker/logic/acls/nodeacls"
  13. "github.com/gravitl/netmaker/models"
  14. "github.com/gravitl/netmaker/netclient/ncutils"
  15. "github.com/gravitl/netmaker/servercfg"
  16. )
  17. // COMMS_NETID - name of the comms network
  18. var COMMS_NETID string
  19. const (
  20. // NETMAKER_BINARY_NAME - name of netmaker binary
  21. NETMAKER_BINARY_NAME = "netmaker"
  22. )
  23. // InitializeCommsNetwork - Check if comms network exists (for MQ, DNS, SSH traffic), if not, create
  24. func InitializeCommsNetwork() error {
  25. setCommsID()
  26. commsNetwork, err := logic.GetNetwork(COMMS_NETID)
  27. if err != nil {
  28. var network models.Network
  29. network.NetID = COMMS_NETID
  30. network.AddressRange = servercfg.GetCommsCIDR()
  31. network.IsPointToSite = "yes"
  32. network.DefaultUDPHolePunch = "yes"
  33. network.IsComms = "yes"
  34. logger.Log(1, "comms net does not exist, creating with ID,", network.NetID, "and CIDR,", network.AddressRange)
  35. _, err = logic.CreateNetwork(network)
  36. return err
  37. } else if commsNetwork.DefaultACL == "" {
  38. commsNetwork.DefaultACL = "yes"
  39. if err = logic.SaveNetwork(&commsNetwork); err != nil {
  40. logger.Log(1, "comms net default acl is set incorrectly, please manually adjust to \"yes\",", COMMS_NETID)
  41. }
  42. }
  43. // gracefully check for comms interface
  44. gracefulCommsWait()
  45. return nil
  46. }
  47. func gracefulCommsWait() {
  48. output, _ := ncutils.RunCmd("wg", false)
  49. starttime := time.Now()
  50. ifaceReady := strings.Contains(output, COMMS_NETID)
  51. for !ifaceReady && !(time.Now().After(starttime.Add(time.Second << 4))) {
  52. output, _ = ncutils.RunCmd("wg", false)
  53. SyncServerNetwork(COMMS_NETID)
  54. time.Sleep(time.Second)
  55. ifaceReady = strings.Contains(output, COMMS_NETID)
  56. }
  57. logger.Log(1, "comms network", COMMS_NETID, "ready")
  58. }
  59. // SetJWTSecret - sets the jwt secret on server startup
  60. func setCommsID() {
  61. currentid, idErr := logic.FetchCommsNetID()
  62. if idErr != nil {
  63. commsid := logic.RandomString(8)
  64. if err := logic.StoreCommsNetID(commsid); err != nil {
  65. logger.FatalLog("something went wrong when configuring comms id")
  66. }
  67. COMMS_NETID = commsid
  68. servercfg.SetCommsID(COMMS_NETID)
  69. return
  70. }
  71. COMMS_NETID = currentid
  72. servercfg.SetCommsID(COMMS_NETID)
  73. }
  74. // InitServerNetclient - intializes the server netclient
  75. // 1. Check if config directory exists, if not attempt to make
  76. // 2. Check current networks and run pull to get interface up to date in case of restart
  77. func InitServerNetclient() error {
  78. netclientDir := ncutils.GetNetclientPath()
  79. _, err := os.Stat(netclientDir + "/config")
  80. if os.IsNotExist(err) {
  81. os.MkdirAll(netclientDir+"/config", 0700)
  82. } else if err != nil {
  83. logger.Log(1, "could not find or create", netclientDir)
  84. return err
  85. }
  86. var networks, netsErr = logic.GetNetworks()
  87. if netsErr == nil || database.IsEmptyRecord(netsErr) {
  88. for _, network := range networks {
  89. var currentServerNode, nodeErr = logic.GetNetworkServerLocal(network.NetID)
  90. if nodeErr == nil {
  91. if currentServerNode.Version != servercfg.Version {
  92. currentServerNode.Version = servercfg.Version
  93. logic.UpdateNode(&currentServerNode, &currentServerNode)
  94. }
  95. if err = logic.ServerPull(&currentServerNode, true); err != nil {
  96. logger.Log(1, "failed pull for network", network.NetID, ", on server node", currentServerNode.ID)
  97. }
  98. }
  99. }
  100. }
  101. return nil
  102. }
  103. // SyncServerNetwork - ensures a wg interface and node exists for server
  104. func SyncServerNetwork(network string) error {
  105. serverNetworkSettings, err := logic.GetNetwork(network)
  106. if err != nil {
  107. return err
  108. }
  109. localnets, err := net.Interfaces()
  110. if err != nil {
  111. return err
  112. }
  113. ifaceExists := false
  114. for _, localnet := range localnets {
  115. if serverNetworkSettings.DefaultInterface == localnet.Name {
  116. ifaceExists = true
  117. }
  118. }
  119. serverNode, err := logic.GetNetworkServerLocal(network)
  120. if !ifaceExists && (err == nil && serverNode.ID != "") {
  121. return logic.ServerUpdate(&serverNode, true)
  122. } else if !ifaceExists {
  123. _, err := logic.ServerJoin(&serverNetworkSettings)
  124. if err != nil {
  125. if err == nil {
  126. err = errors.New("network add failed for " + serverNetworkSettings.NetID)
  127. }
  128. if !strings.Contains(err.Error(), "macaddress_unique") { // ignore macaddress unique error throws
  129. logger.Log(1, "error adding network", serverNetworkSettings.NetID, "during sync:", err.Error())
  130. }
  131. }
  132. }
  133. // remove networks locally that do not exist in database
  134. /*
  135. for _, localnet := range localnets {
  136. if strings.Contains(localnet.Name, "nm-") {
  137. var exists = ""
  138. if serverNetworkSettings.DefaultInterface == localnet.Name {
  139. exists = serverNetworkSettings.NetID
  140. }
  141. if exists == "" {
  142. err := logic.DeleteNodeByID(serverNode, true)
  143. if err != nil {
  144. if err == nil {
  145. err = errors.New("network delete failed for " + exists)
  146. }
  147. logger.Log(1, "error removing network", exists, "during sync", err.Error())
  148. }
  149. }
  150. }
  151. }
  152. */
  153. return nil
  154. }
  155. // SetDefaultACLS - runs through each network to see if ACL's are set. If not, goes through each node in network and adds the default ACL
  156. func SetDefaultACLS() error {
  157. // upgraded systems will not have ACL's set, which is why we need this function
  158. nodes, err := logic.GetAllNodes()
  159. if err != nil {
  160. return err
  161. }
  162. for i := range nodes {
  163. currentNodeACL, err := nodeacls.FetchNodeACL(nodeacls.NetworkID(nodes[i].Network), nodeacls.NodeID(nodes[i].ID))
  164. if (err != nil && (database.IsEmptyRecord(err) || strings.Contains(err.Error(), "no node ACL present"))) || currentNodeACL == nil {
  165. if _, err = nodeacls.CreateNodeACL(nodeacls.NetworkID(nodes[i].Network), nodeacls.NodeID(nodes[i].ID), acls.Allowed); err != nil {
  166. logger.Log(1, "could not create a default ACL for node", nodes[i].ID)
  167. }
  168. }
  169. }
  170. return nil
  171. }