nodes.go 4.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180
  1. package logic
  2. import (
  3. "errors"
  4. "fmt"
  5. "net"
  6. "github.com/google/uuid"
  7. "github.com/gravitl/netmaker/logic"
  8. "github.com/gravitl/netmaker/models"
  9. "golang.org/x/exp/slog"
  10. )
  11. const (
  12. IPv4Network = "0.0.0.0/0"
  13. IPv6Network = "::/0"
  14. )
  15. func ValidateInetGwReq(inetNode models.Node, req models.InetNodeReq, update bool) error {
  16. inetHost, err := logic.GetHost(inetNode.HostID.String())
  17. if err != nil {
  18. return err
  19. }
  20. if inetHost.FirewallInUse == models.FIREWALL_NONE {
  21. return errors.New("iptables or nftables needs to be installed")
  22. }
  23. if inetNode.InternetGwID != "" {
  24. return fmt.Errorf("node %s is using a internet gateway already", inetHost.Name)
  25. }
  26. if inetNode.IsRelayed {
  27. return fmt.Errorf("node %s is being relayed", inetHost.Name)
  28. }
  29. for _, clientNodeID := range req.InetNodeClientIDs {
  30. clientNode, err := logic.GetNodeByID(clientNodeID)
  31. if err != nil {
  32. return err
  33. }
  34. clientHost, err := logic.GetHost(clientNode.HostID.String())
  35. if err != nil {
  36. return err
  37. }
  38. if clientHost.OS != models.OS_Types.Linux && clientHost.OS != models.OS_Types.Windows {
  39. return errors.New("can only attach linux or windows machine to a internet gateway")
  40. }
  41. if clientNode.IsInternetGateway {
  42. return fmt.Errorf("node %s acting as internet gateway cannot use another internet gateway", clientHost.Name)
  43. }
  44. if update {
  45. if clientNode.InternetGwID != "" && clientNode.InternetGwID != inetNode.ID.String() {
  46. return fmt.Errorf("node %s is already using a internet gateway", clientHost.Name)
  47. }
  48. } else {
  49. if clientNode.InternetGwID != "" {
  50. return fmt.Errorf("node %s is already using a internet gateway", clientHost.Name)
  51. }
  52. }
  53. if clientNode.FailedOverBy != uuid.Nil {
  54. ResetFailedOverPeer(&clientNode)
  55. }
  56. if clientNode.IsRelayed && clientNode.RelayedBy != inetNode.ID.String() {
  57. return fmt.Errorf("node %s is being relayed", clientHost.Name)
  58. }
  59. for _, nodeID := range clientHost.Nodes {
  60. node, err := logic.GetNodeByID(nodeID)
  61. if err != nil {
  62. continue
  63. }
  64. if node.InternetGwID != "" && node.InternetGwID != inetNode.ID.String() {
  65. return errors.New("nodes on same host cannot use different internet gateway")
  66. }
  67. }
  68. }
  69. return nil
  70. }
  71. // SetInternetGw - sets the node as internet gw based on flag bool
  72. func SetInternetGw(node *models.Node, req models.InetNodeReq) {
  73. node.IsInternetGateway = true
  74. node.InetNodeReq = req
  75. for _, clientNodeID := range req.InetNodeClientIDs {
  76. clientNode, err := logic.GetNodeByID(clientNodeID)
  77. if err != nil {
  78. continue
  79. }
  80. clientNode.InternetGwID = node.ID.String()
  81. logic.UpsertNode(&clientNode)
  82. }
  83. }
  84. func UnsetInternetGw(node *models.Node) {
  85. nodes, err := logic.GetNetworkNodes(node.Network)
  86. if err != nil {
  87. slog.Error("failed to get network nodes", "network", node.Network, "error", err)
  88. return
  89. }
  90. for _, clientNode := range nodes {
  91. if node.ID.String() == clientNode.InternetGwID {
  92. clientNode.InternetGwID = ""
  93. logic.UpsertNode(&clientNode)
  94. }
  95. }
  96. node.IsInternetGateway = false
  97. node.InetNodeReq = models.InetNodeReq{}
  98. }
  99. func SetDefaultGwForRelayedUpdate(relayed, relay models.Node, peerUpdate models.HostPeerUpdate) models.HostPeerUpdate {
  100. if relay.InternetGwID != "" {
  101. relayedHost, err := logic.GetHost(relayed.HostID.String())
  102. if err != nil {
  103. return peerUpdate
  104. }
  105. peerUpdate.ChangeDefaultGw = true
  106. peerUpdate.DefaultGwIp = relay.Address.IP
  107. if peerUpdate.DefaultGwIp == nil || relayedHost.EndpointIP == nil {
  108. peerUpdate.DefaultGwIp = relay.Address6.IP
  109. }
  110. }
  111. return peerUpdate
  112. }
  113. func SetDefaultGw(node models.Node, peerUpdate models.HostPeerUpdate) models.HostPeerUpdate {
  114. if node.InternetGwID != "" {
  115. inetNode, err := logic.GetNodeByID(node.InternetGwID)
  116. if err != nil {
  117. return peerUpdate
  118. }
  119. host, err := logic.GetHost(node.HostID.String())
  120. if err != nil {
  121. return peerUpdate
  122. }
  123. peerUpdate.ChangeDefaultGw = true
  124. peerUpdate.DefaultGwIp = inetNode.Address.IP
  125. if peerUpdate.DefaultGwIp == nil || host.EndpointIP == nil {
  126. peerUpdate.DefaultGwIp = inetNode.Address6.IP
  127. }
  128. }
  129. return peerUpdate
  130. }
  131. // GetNetworkIngresses - gets the gateways of a network
  132. func GetNetworkIngresses(network string) ([]models.Node, error) {
  133. var ingresses []models.Node
  134. netNodes, err := logic.GetNetworkNodes(network)
  135. if err != nil {
  136. return []models.Node{}, err
  137. }
  138. for i := range netNodes {
  139. if netNodes[i].IsIngressGateway {
  140. ingresses = append(ingresses, netNodes[i])
  141. }
  142. }
  143. return ingresses, nil
  144. }
  145. // GetAllowedIpForInetNodeClient - get inet cidr for node using a inet gw
  146. func GetAllowedIpForInetNodeClient(node, peer *models.Node) []net.IPNet {
  147. var allowedips = []net.IPNet{}
  148. if peer.Address.IP != nil {
  149. _, ipnet, _ := net.ParseCIDR(IPv4Network)
  150. allowedips = append(allowedips, *ipnet)
  151. }
  152. if peer.Address6.IP != nil {
  153. _, ipnet, _ := net.ParseCIDR(IPv6Network)
  154. allowedips = append(allowedips, *ipnet)
  155. }
  156. return allowedips
  157. }