database.go 8.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286
  1. package database
  2. import (
  3. "crypto/rand"
  4. "encoding/json"
  5. "errors"
  6. "sync"
  7. "time"
  8. "github.com/google/uuid"
  9. "github.com/gravitl/netmaker/logger"
  10. "github.com/gravitl/netmaker/models"
  11. "github.com/gravitl/netmaker/netclient/ncutils"
  12. "github.com/gravitl/netmaker/servercfg"
  13. "golang.org/x/crypto/nacl/box"
  14. )
  15. const (
  16. // == Table Names ==
  17. // NETWORKS_TABLE_NAME - networks table
  18. NETWORKS_TABLE_NAME = "networks"
  19. // NODES_TABLE_NAME - nodes table
  20. NODES_TABLE_NAME = "nodes"
  21. // DELETED_NODES_TABLE_NAME - deleted nodes table
  22. DELETED_NODES_TABLE_NAME = "deletednodes"
  23. // USERS_TABLE_NAME - users table
  24. USERS_TABLE_NAME = "users"
  25. // USER_PERMISSIONS_TABLE_NAME - user permissions table
  26. USER_PERMISSIONS_TABLE_NAME = "user_permissions"
  27. // CERTS_TABLE_NAME - certificates table
  28. CERTS_TABLE_NAME = "certs"
  29. // DNS_TABLE_NAME - dns table
  30. DNS_TABLE_NAME = "dns"
  31. // EXT_CLIENT_TABLE_NAME - ext client table
  32. EXT_CLIENT_TABLE_NAME = "extclients"
  33. // PEERS_TABLE_NAME - peers table
  34. PEERS_TABLE_NAME = "peers"
  35. // SERVERCONF_TABLE_NAME - stores server conf
  36. SERVERCONF_TABLE_NAME = "serverconf"
  37. // SERVER_UUID_TABLE_NAME - stores unique netmaker server data
  38. SERVER_UUID_TABLE_NAME = "serveruuid"
  39. // SERVER_UUID_RECORD_KEY - telemetry thing
  40. SERVER_UUID_RECORD_KEY = "serveruuid"
  41. // DATABASE_FILENAME - database file name
  42. DATABASE_FILENAME = "netmaker.db"
  43. // GENERATED_TABLE_NAME - stores server generated k/v
  44. GENERATED_TABLE_NAME = "generated"
  45. // NODE_ACLS_TABLE_NAME - stores the node ACL rules
  46. NODE_ACLS_TABLE_NAME = "nodeacls"
  47. // ACLS_TABLE_NAME - table for acls v2
  48. ACLS_TABLE_NAME = "acls"
  49. // SSO_STATE_CACHE - holds sso session information for OAuth2 sign-ins
  50. SSO_STATE_CACHE = "ssostatecache"
  51. // METRICS_TABLE_NAME - stores network metrics
  52. METRICS_TABLE_NAME = "metrics"
  53. // NETWORK_USER_TABLE_NAME - network user table tracks stats for a network user per network
  54. NETWORK_USER_TABLE_NAME = "networkusers"
  55. // USER_GROUPS_TABLE_NAME - table for storing usergroups
  56. USER_GROUPS_TABLE_NAME = "usergroups"
  57. // CACHE_TABLE_NAME - caching table
  58. CACHE_TABLE_NAME = "cache"
  59. // HOSTS_TABLE_NAME - the table name for hosts
  60. HOSTS_TABLE_NAME = "hosts"
  61. // ENROLLMENT_KEYS_TABLE_NAME - table name for enrollmentkeys
  62. ENROLLMENT_KEYS_TABLE_NAME = "enrollmentkeys"
  63. // HOST_ACTIONS_TABLE_NAME - table name for enrollmentkeys
  64. HOST_ACTIONS_TABLE_NAME = "hostactions"
  65. // PENDING_USERS_TABLE_NAME - table name for pending users
  66. PENDING_USERS_TABLE_NAME = "pending_users"
  67. // USER_INVITES - table for user invites
  68. USER_INVITES_TABLE_NAME = "user_invites"
  69. // TAG_TABLE_NAME - table for tags
  70. TAG_TABLE_NAME = "tags"
  71. // PEER_ACK_TABLE - table for failover peer ack
  72. PEER_ACK_TABLE = "peer_ack"
  73. // == ERROR CONSTS ==
  74. // NO_RECORD - no singular result found
  75. NO_RECORD = "no result found"
  76. // NO_RECORDS - no results found
  77. NO_RECORDS = "could not find any records"
  78. // == DB Constants ==
  79. // INIT_DB - initialize db
  80. INIT_DB = "init"
  81. // CREATE_TABLE - create table const
  82. CREATE_TABLE = "createtable"
  83. // INSERT - insert into db const
  84. INSERT = "insert"
  85. // INSERT_PEER - insert peer into db const
  86. INSERT_PEER = "insertpeer"
  87. // DELETE - delete db record const
  88. DELETE = "delete"
  89. // DELETE_ALL - delete a table const
  90. DELETE_ALL = "deleteall"
  91. // FETCH_ALL - fetch table contents const
  92. FETCH_ALL = "fetchall"
  93. // CLOSE_DB - graceful close of db const
  94. CLOSE_DB = "closedb"
  95. // isconnected
  96. isConnected = "isconnected"
  97. )
  98. var dbMutex sync.RWMutex
  99. func getCurrentDB() map[string]interface{} {
  100. switch servercfg.GetDB() {
  101. case "rqlite":
  102. return RQLITE_FUNCTIONS
  103. case "sqlite":
  104. return SQLITE_FUNCTIONS
  105. case "postgres":
  106. return PG_FUNCTIONS
  107. default:
  108. return SQLITE_FUNCTIONS
  109. }
  110. }
  111. // InitializeDatabase - initializes database
  112. func InitializeDatabase() error {
  113. logger.Log(0, "connecting to", servercfg.GetDB())
  114. tperiod := time.Now().Add(10 * time.Second)
  115. for {
  116. if err := getCurrentDB()[INIT_DB].(func() error)(); err != nil {
  117. logger.Log(0, "unable to connect to db, retrying . . .")
  118. if time.Now().After(tperiod) {
  119. return err
  120. }
  121. } else {
  122. break
  123. }
  124. time.Sleep(2 * time.Second)
  125. }
  126. createTables()
  127. return initializeUUID()
  128. }
  129. func createTables() {
  130. CreateTable(NETWORKS_TABLE_NAME)
  131. CreateTable(NODES_TABLE_NAME)
  132. CreateTable(CERTS_TABLE_NAME)
  133. CreateTable(DELETED_NODES_TABLE_NAME)
  134. CreateTable(USERS_TABLE_NAME)
  135. CreateTable(DNS_TABLE_NAME)
  136. CreateTable(EXT_CLIENT_TABLE_NAME)
  137. CreateTable(PEERS_TABLE_NAME)
  138. CreateTable(SERVERCONF_TABLE_NAME)
  139. CreateTable(SERVER_UUID_TABLE_NAME)
  140. CreateTable(GENERATED_TABLE_NAME)
  141. CreateTable(NODE_ACLS_TABLE_NAME)
  142. CreateTable(SSO_STATE_CACHE)
  143. CreateTable(METRICS_TABLE_NAME)
  144. CreateTable(NETWORK_USER_TABLE_NAME)
  145. CreateTable(USER_GROUPS_TABLE_NAME)
  146. CreateTable(CACHE_TABLE_NAME)
  147. CreateTable(HOSTS_TABLE_NAME)
  148. CreateTable(ENROLLMENT_KEYS_TABLE_NAME)
  149. CreateTable(HOST_ACTIONS_TABLE_NAME)
  150. CreateTable(PENDING_USERS_TABLE_NAME)
  151. CreateTable(USER_PERMISSIONS_TABLE_NAME)
  152. CreateTable(USER_INVITES_TABLE_NAME)
  153. CreateTable(TAG_TABLE_NAME)
  154. CreateTable(ACLS_TABLE_NAME)
  155. CreateTable(PEER_ACK_TABLE)
  156. }
  157. func CreateTable(tableName string) error {
  158. return getCurrentDB()[CREATE_TABLE].(func(string) error)(tableName)
  159. }
  160. // IsJSONString - checks if valid json
  161. func IsJSONString(value string) bool {
  162. var jsonInt interface{}
  163. var nodeInt models.Node
  164. return json.Unmarshal([]byte(value), &jsonInt) == nil || json.Unmarshal([]byte(value), &nodeInt) == nil
  165. }
  166. // Insert - inserts object into db
  167. func Insert(key string, value string, tableName string) error {
  168. dbMutex.Lock()
  169. defer dbMutex.Unlock()
  170. if key != "" && value != "" && IsJSONString(value) {
  171. return getCurrentDB()[INSERT].(func(string, string, string) error)(key, value, tableName)
  172. } else {
  173. return errors.New("invalid insert " + key + " : " + value)
  174. }
  175. }
  176. // InsertPeer - inserts peer into db
  177. func InsertPeer(key string, value string) error {
  178. dbMutex.Lock()
  179. defer dbMutex.Unlock()
  180. if key != "" && value != "" && IsJSONString(value) {
  181. return getCurrentDB()[INSERT_PEER].(func(string, string) error)(key, value)
  182. } else {
  183. return errors.New("invalid peer insert " + key + " : " + value)
  184. }
  185. }
  186. // DeleteRecord - deletes a record from db
  187. func DeleteRecord(tableName string, key string) error {
  188. dbMutex.Lock()
  189. defer dbMutex.Unlock()
  190. return getCurrentDB()[DELETE].(func(string, string) error)(tableName, key)
  191. }
  192. // DeleteAllRecords - removes a table and remakes
  193. func DeleteAllRecords(tableName string) error {
  194. dbMutex.Lock()
  195. defer dbMutex.Unlock()
  196. err := getCurrentDB()[DELETE_ALL].(func(string) error)(tableName)
  197. if err != nil {
  198. return err
  199. }
  200. err = CreateTable(tableName)
  201. if err != nil {
  202. return err
  203. }
  204. return nil
  205. }
  206. // FetchRecord - fetches a record
  207. func FetchRecord(tableName string, key string) (string, error) {
  208. results, err := FetchRecords(tableName)
  209. if err != nil {
  210. return "", err
  211. }
  212. if results[key] == "" {
  213. return "", errors.New(NO_RECORD)
  214. }
  215. return results[key], nil
  216. }
  217. // FetchRecords - fetches all records in given table
  218. func FetchRecords(tableName string) (map[string]string, error) {
  219. dbMutex.RLock()
  220. defer dbMutex.RUnlock()
  221. return getCurrentDB()[FETCH_ALL].(func(string) (map[string]string, error))(tableName)
  222. }
  223. // initializeUUID - create a UUID record for server if none exists
  224. func initializeUUID() error {
  225. records, err := FetchRecords(SERVER_UUID_TABLE_NAME)
  226. if err != nil {
  227. if !IsEmptyRecord(err) {
  228. return err
  229. }
  230. } else if len(records) > 0 {
  231. return nil
  232. }
  233. // setup encryption keys
  234. var trafficPubKey, trafficPrivKey, errT = box.GenerateKey(rand.Reader) // generate traffic keys
  235. if errT != nil {
  236. return errT
  237. }
  238. tPriv, err := ncutils.ConvertKeyToBytes(trafficPrivKey)
  239. if err != nil {
  240. return err
  241. }
  242. tPub, err := ncutils.ConvertKeyToBytes(trafficPubKey)
  243. if err != nil {
  244. return err
  245. }
  246. telemetry := models.Telemetry{
  247. UUID: uuid.NewString(),
  248. TrafficKeyPriv: tPriv,
  249. TrafficKeyPub: tPub,
  250. }
  251. telJSON, err := json.Marshal(&telemetry)
  252. if err != nil {
  253. return err
  254. }
  255. return Insert(SERVER_UUID_RECORD_KEY, string(telJSON), SERVER_UUID_TABLE_NAME)
  256. }
  257. // CloseDB - closes a database gracefully
  258. func CloseDB() {
  259. getCurrentDB()[CLOSE_DB].(func())()
  260. }
  261. // IsConnected - tell if the database is connected or not
  262. func IsConnected() bool {
  263. return getCurrentDB()[isConnected].(func() bool)()
  264. }