hosts.go 41 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339
  1. package controller
  2. import (
  3. "encoding/json"
  4. "errors"
  5. "fmt"
  6. "net/http"
  7. "time"
  8. "github.com/google/uuid"
  9. "github.com/gorilla/mux"
  10. "github.com/gravitl/netmaker/database"
  11. "github.com/gravitl/netmaker/db"
  12. "github.com/gravitl/netmaker/logger"
  13. "github.com/gravitl/netmaker/logic"
  14. "github.com/gravitl/netmaker/models"
  15. "github.com/gravitl/netmaker/mq"
  16. "github.com/gravitl/netmaker/schema"
  17. "github.com/gravitl/netmaker/servercfg"
  18. "golang.org/x/crypto/bcrypt"
  19. "golang.org/x/exp/slog"
  20. )
  21. func hostHandlers(r *mux.Router) {
  22. r.HandleFunc("/api/hosts", logic.SecurityCheck(true, http.HandlerFunc(getHosts))).
  23. Methods(http.MethodGet)
  24. r.HandleFunc("/api/hosts/keys", logic.SecurityCheck(true, http.HandlerFunc(updateAllKeys))).
  25. Methods(http.MethodPut)
  26. r.HandleFunc("/api/hosts/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHosts))).
  27. Methods(http.MethodPost)
  28. r.HandleFunc("/api/hosts/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHosts))).
  29. Methods(http.MethodPost)
  30. r.HandleFunc("/api/hosts/{hostid}/keys", logic.SecurityCheck(true, http.HandlerFunc(updateKeys))).
  31. Methods(http.MethodPut)
  32. r.HandleFunc("/api/hosts/{hostid}/sync", logic.SecurityCheck(true, http.HandlerFunc(syncHost))).
  33. Methods(http.MethodPost)
  34. r.HandleFunc("/api/hosts/{hostid}", logic.SecurityCheck(true, http.HandlerFunc(updateHost))).
  35. Methods(http.MethodPut)
  36. r.HandleFunc("/api/hosts/{hostid}", Authorize(true, false, "all", http.HandlerFunc(deleteHost))).
  37. Methods(http.MethodDelete)
  38. r.HandleFunc("/api/hosts/{hostid}/upgrade", logic.SecurityCheck(true, http.HandlerFunc(upgradeHost))).
  39. Methods(http.MethodPut)
  40. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(addHostToNetwork))).
  41. Methods(http.MethodPost)
  42. r.HandleFunc("/api/hosts/{hostid}/networks/{network}", logic.SecurityCheck(true, http.HandlerFunc(deleteHostFromNetwork))).
  43. Methods(http.MethodDelete)
  44. r.HandleFunc("/api/hosts/adm/authenticate", authenticateHost).Methods(http.MethodPost)
  45. r.HandleFunc("/api/v1/host", Authorize(true, false, "host", http.HandlerFunc(pull))).
  46. Methods(http.MethodGet)
  47. r.HandleFunc("/api/v1/host/{hostid}/signalpeer", Authorize(true, false, "host", http.HandlerFunc(signalPeer))).
  48. Methods(http.MethodPost)
  49. r.HandleFunc("/api/v1/fallback/host/{hostid}", Authorize(true, false, "host", http.HandlerFunc(hostUpdateFallback))).
  50. Methods(http.MethodPut)
  51. r.HandleFunc("/api/v1/host/{hostid}/peer_info", Authorize(true, false, "host", http.HandlerFunc(getHostPeerInfo))).
  52. Methods(http.MethodGet)
  53. r.HandleFunc("/api/v1/pending_hosts", logic.SecurityCheck(true, http.HandlerFunc(getPendingHosts))).
  54. Methods(http.MethodGet)
  55. r.HandleFunc("/api/v1/pending_hosts/approve/{id}", logic.SecurityCheck(true, http.HandlerFunc(approvePendingHost))).
  56. Methods(http.MethodPost)
  57. r.HandleFunc("/api/v1/pending_hosts/reject/{id}", logic.SecurityCheck(true, http.HandlerFunc(rejectPendingHost))).
  58. Methods(http.MethodPost)
  59. r.HandleFunc("/api/emqx/hosts", logic.SecurityCheck(true, http.HandlerFunc(delEmqxHosts))).
  60. Methods(http.MethodDelete)
  61. r.HandleFunc("/api/v1/auth-register/host", socketHandler)
  62. }
  63. // @Summary Requests all the hosts to upgrade their version
  64. // @Router /api/hosts/upgrade [post]
  65. // @Tags Hosts
  66. // @Security oauth
  67. // @Param force query bool false "Force upgrade"
  68. // @Success 200 {string} string "upgrade all hosts request received"
  69. func upgradeHosts(w http.ResponseWriter, r *http.Request) {
  70. w.Header().Set("Content-Type", "application/json")
  71. action := models.Upgrade
  72. if r.URL.Query().Get("force") == "true" {
  73. action = models.ForceUpgrade
  74. }
  75. user := r.Header.Get("user")
  76. go func() {
  77. slog.Info("requesting all hosts to upgrade", "user", user)
  78. hosts, err := logic.GetAllHosts()
  79. if err != nil {
  80. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  81. return
  82. }
  83. for _, host := range hosts {
  84. go func(host models.Host) {
  85. hostUpdate := models.HostUpdate{
  86. Action: action,
  87. Host: host,
  88. }
  89. if err = mq.HostUpdate(&hostUpdate); err != nil {
  90. slog.Error("failed to request host to upgrade", "user", user, "host", host.ID.String(), "error", err)
  91. } else {
  92. slog.Info("host upgrade requested", "user", user, "host", host.ID.String())
  93. }
  94. }(host)
  95. }
  96. }()
  97. logic.LogEvent(&models.Event{
  98. Action: models.UpgradeAll,
  99. Source: models.Subject{
  100. ID: r.Header.Get("user"),
  101. Name: r.Header.Get("user"),
  102. Type: models.UserSub,
  103. },
  104. TriggeredBy: r.Header.Get("user"),
  105. Target: models.Subject{
  106. ID: "All Hosts",
  107. Name: "All Hosts",
  108. Type: models.DeviceSub,
  109. },
  110. Origin: models.Dashboard,
  111. })
  112. slog.Info("upgrade all hosts request received", "user", user)
  113. logic.ReturnSuccessResponse(w, r, "upgrade all hosts request received")
  114. }
  115. // @Summary Upgrade a host
  116. // @Router /api/hosts/{hostid}/upgrade [put]
  117. // @Tags Hosts
  118. // @Security oauth
  119. // @Param hostid path string true "Host ID"
  120. // @Param force query bool false "Force upgrade"
  121. // @Success 200 {string} string "passed message to upgrade host"
  122. // @Failure 500 {object} models.ErrorResponse
  123. // upgrade host is a handler to send upgrade message to a host
  124. func upgradeHost(w http.ResponseWriter, r *http.Request) {
  125. host, err := logic.GetHost(mux.Vars(r)["hostid"])
  126. if err != nil {
  127. slog.Error("failed to find host", "error", err)
  128. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "notfound"))
  129. return
  130. }
  131. action := models.Upgrade
  132. if r.URL.Query().Get("force") == "true" {
  133. action = models.ForceUpgrade
  134. }
  135. if err := mq.HostUpdate(&models.HostUpdate{Action: action, Host: *host}); err != nil {
  136. slog.Error("failed to upgrade host", "error", err)
  137. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  138. return
  139. }
  140. logic.ReturnSuccessResponse(w, r, "passed message to upgrade host")
  141. }
  142. // @Summary List all hosts
  143. // @Router /api/hosts [get]
  144. // @Tags Hosts
  145. // @Security oauth
  146. // @Success 200 {array} models.ApiHost
  147. // @Failure 500 {object} models.ErrorResponse
  148. func getHosts(w http.ResponseWriter, r *http.Request) {
  149. w.Header().Set("Content-Type", "application/json")
  150. currentHosts, err := logic.GetAllHosts()
  151. if err != nil {
  152. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  153. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  154. return
  155. }
  156. apiHosts := logic.GetAllHostsAPI(currentHosts[:])
  157. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  158. logic.SortApiHosts(apiHosts[:])
  159. w.WriteHeader(http.StatusOK)
  160. json.NewEncoder(w).Encode(apiHosts)
  161. }
  162. // @Summary Used by clients for "pull" command
  163. // @Router /api/v1/host [get]
  164. // @Tags Hosts
  165. // @Security oauth
  166. // @Success 200 {object} models.HostPull
  167. // @Failure 500 {object} models.ErrorResponse
  168. func pull(w http.ResponseWriter, r *http.Request) {
  169. hostID := r.Header.Get(hostIDHeader) // return JSON/API formatted keys
  170. if len(hostID) == 0 {
  171. logger.Log(0, "no host authorized to pull")
  172. logic.ReturnErrorResponse(
  173. w,
  174. r,
  175. logic.FormatError(fmt.Errorf("no host authorized to pull"), "internal"),
  176. )
  177. return
  178. }
  179. host, err := logic.GetHost(hostID)
  180. if err != nil {
  181. logger.Log(0, "no host found during pull", hostID)
  182. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  183. return
  184. }
  185. sendPeerUpdate := false
  186. for _, nodeID := range host.Nodes {
  187. node, err := logic.GetNodeByID(nodeID)
  188. if err != nil {
  189. //slog.Error("failed to get node:", "id", node.ID, "error", err)
  190. continue
  191. }
  192. if r.URL.Query().Get("reset_failovered") == "true" {
  193. logic.ResetFailedOverPeer(&node)
  194. logic.ResetAutoRelayedPeer(&node)
  195. sendPeerUpdate = true
  196. }
  197. }
  198. if sendPeerUpdate {
  199. if err := mq.PublishPeerUpdate(false); err != nil {
  200. logger.Log(0, "fail to publish peer update: ", err.Error())
  201. }
  202. }
  203. allNodes, err := logic.GetAllNodes()
  204. if err != nil {
  205. logger.Log(0, "failed to get nodes: ", hostID)
  206. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  207. return
  208. }
  209. hPU, err := logic.GetPeerUpdateForHost("", host, allNodes, nil, nil)
  210. if err != nil {
  211. logger.Log(0, "could not pull peers for host", hostID, err.Error())
  212. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  213. return
  214. }
  215. portChanged := logic.CheckHostPorts(host)
  216. if portChanged {
  217. // Save the port change to database immediately to prevent conflicts
  218. if err := logic.UpsertHost(host); err != nil {
  219. slog.Error("failed to save host port change", "host", host.Name, "error", err)
  220. }
  221. }
  222. response := models.HostPull{
  223. Host: *host,
  224. Nodes: logic.GetHostNodes(host),
  225. ServerConfig: hPU.ServerConfig,
  226. Peers: hPU.Peers,
  227. PeerIDs: hPU.PeerIDs,
  228. HostNetworkInfo: hPU.HostNetworkInfo,
  229. EgressRoutes: hPU.EgressRoutes,
  230. FwUpdate: hPU.FwUpdate,
  231. ChangeDefaultGw: hPU.ChangeDefaultGw,
  232. DefaultGwIp: hPU.DefaultGwIp,
  233. IsInternetGw: hPU.IsInternetGw,
  234. NameServers: hPU.NameServers,
  235. EgressWithDomains: hPU.EgressWithDomains,
  236. EndpointDetection: logic.IsEndpointDetectionEnabled(),
  237. DnsNameservers: hPU.DnsNameservers,
  238. ReplacePeers: hPU.ReplacePeers,
  239. AutoRelayNodes: hPU.AutoRelayNodes,
  240. GwNodes: hPU.GwNodes,
  241. }
  242. logger.Log(1, hostID, host.Name, "completed a pull")
  243. w.WriteHeader(http.StatusOK)
  244. json.NewEncoder(w).Encode(&response)
  245. }
  246. // @Summary Updates a Netclient host on Netmaker server
  247. // @Router /api/hosts/{hostid} [put]
  248. // @Tags Hosts
  249. // @Security oauth
  250. // @Param hostid path string true "Host ID"
  251. // @Param body body models.ApiHost true "New host data"
  252. // @Success 200 {object} models.ApiHost
  253. // @Failure 500 {object} models.ErrorResponse
  254. func updateHost(w http.ResponseWriter, r *http.Request) {
  255. var newHostData models.ApiHost
  256. err := json.NewDecoder(r.Body).Decode(&newHostData)
  257. if err != nil {
  258. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  259. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  260. return
  261. }
  262. // confirm host exists
  263. currHost, err := logic.GetHost(newHostData.ID)
  264. if err != nil {
  265. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  266. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  267. return
  268. }
  269. newHost := newHostData.ConvertAPIHostToNMHost(currHost)
  270. logic.UpdateHost(newHost, currHost) // update the in memory struct values
  271. if newHost.DNS != "yes" {
  272. // check if any node is internet gw
  273. for _, nodeID := range newHost.Nodes {
  274. node, err := logic.GetNodeByID(nodeID)
  275. if err != nil {
  276. continue
  277. }
  278. if node.IsInternetGateway {
  279. newHost.DNS = "yes"
  280. break
  281. }
  282. }
  283. }
  284. if err = logic.UpsertHost(newHost); err != nil {
  285. logger.Log(0, r.Header.Get("user"), "failed to update a host:", err.Error())
  286. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  287. return
  288. }
  289. // publish host update through MQ
  290. if err := mq.HostUpdate(&models.HostUpdate{
  291. Action: models.UpdateHost,
  292. Host: *newHost,
  293. }); err != nil {
  294. logger.Log(
  295. 0,
  296. r.Header.Get("user"),
  297. "failed to send host update: ",
  298. currHost.ID.String(),
  299. err.Error(),
  300. )
  301. }
  302. go func() {
  303. if err := mq.PublishPeerUpdate(false); err != nil {
  304. logger.Log(0, "fail to publish peer update: ", err.Error())
  305. }
  306. if newHost.Name != currHost.Name {
  307. if servercfg.IsDNSMode() {
  308. logic.SetDNS()
  309. }
  310. }
  311. }()
  312. logic.LogEvent(&models.Event{
  313. Action: models.Update,
  314. Source: models.Subject{
  315. ID: r.Header.Get("user"),
  316. Name: r.Header.Get("user"),
  317. Type: models.UserSub,
  318. },
  319. TriggeredBy: r.Header.Get("user"),
  320. Target: models.Subject{
  321. ID: currHost.ID.String(),
  322. Name: newHost.Name,
  323. Type: models.DeviceSub,
  324. },
  325. Diff: models.Diff{
  326. Old: currHost,
  327. New: newHost,
  328. },
  329. Origin: models.Dashboard,
  330. })
  331. apiHostData := newHost.ConvertNMHostToAPI()
  332. logger.Log(2, r.Header.Get("user"), "updated host", newHost.ID.String())
  333. w.WriteHeader(http.StatusOK)
  334. json.NewEncoder(w).Encode(apiHostData)
  335. }
  336. // @Summary Updates a Netclient host on Netmaker server
  337. // @Router /api/v1/fallback/host/{hostid} [put]
  338. // @Tags Hosts
  339. // @Security oauth
  340. // @Param hostid path string true "Host ID"
  341. // @Param body body models.HostUpdate true "Host update data"
  342. // @Success 200 {string} string "updated host data"
  343. // @Failure 500 {object} models.ErrorResponse
  344. func hostUpdateFallback(w http.ResponseWriter, r *http.Request) {
  345. var params = mux.Vars(r)
  346. hostid := params["hostid"]
  347. currentHost, err := logic.GetHost(hostid)
  348. if err != nil {
  349. slog.Error("error getting host", "id", hostid, "error", err)
  350. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  351. return
  352. }
  353. var sendPeerUpdate, sendDeletedNodeUpdate, replacePeers bool
  354. var hostUpdate models.HostUpdate
  355. err = json.NewDecoder(r.Body).Decode(&hostUpdate)
  356. if err != nil {
  357. slog.Error("failed to update a host:", "user", r.Header.Get("user"), "error", err.Error(), "host", currentHost.Name)
  358. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  359. return
  360. }
  361. slog.Info("recieved host update", "name", hostUpdate.Host.Name, "id", hostUpdate.Host.ID, "action", hostUpdate.Action)
  362. switch hostUpdate.Action {
  363. case models.CheckIn:
  364. sendPeerUpdate = mq.HandleHostCheckin(&hostUpdate.Host, currentHost)
  365. changed := logic.CheckHostPorts(currentHost)
  366. if changed {
  367. mq.HostUpdate(&models.HostUpdate{Action: models.UpdateHost, Host: *currentHost})
  368. }
  369. case models.UpdateHost:
  370. if hostUpdate.Host.PublicKey != currentHost.PublicKey {
  371. //remove old peer entry
  372. replacePeers = true
  373. }
  374. sendPeerUpdate = logic.UpdateHostFromClient(&hostUpdate.Host, currentHost)
  375. err := logic.UpsertHost(currentHost)
  376. if err != nil {
  377. slog.Error("failed to update host", "id", currentHost.ID, "error", err)
  378. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.Internal))
  379. return
  380. }
  381. case models.UpdateNode:
  382. sendDeletedNodeUpdate, sendPeerUpdate = logic.UpdateHostNode(&hostUpdate.Host, &hostUpdate.Node)
  383. case models.UpdateMetrics:
  384. mq.UpdateMetricsFallBack(hostUpdate.Node.ID.String(), hostUpdate.NewMetrics)
  385. case models.EgressUpdate:
  386. e := schema.Egress{ID: hostUpdate.EgressDomain.ID}
  387. err = e.Get(db.WithContext(r.Context()))
  388. if err != nil {
  389. logic.ReturnErrorResponse(w, r, logic.FormatError(err, logic.BadReq))
  390. return
  391. }
  392. if len(hostUpdate.Node.EgressGatewayRanges) > 0 {
  393. e.DomainAns = hostUpdate.Node.EgressGatewayRanges
  394. e.Update(db.WithContext(r.Context()))
  395. }
  396. sendPeerUpdate = true
  397. case models.SignalHost:
  398. mq.SignalPeer(hostUpdate.Signal)
  399. case models.DeleteHost:
  400. go mq.DeleteAndCleanupHost(currentHost)
  401. }
  402. go func() {
  403. if sendDeletedNodeUpdate {
  404. mq.PublishDeletedNodePeerUpdate(&hostUpdate.Node)
  405. }
  406. if sendPeerUpdate {
  407. err := mq.PublishPeerUpdate(replacePeers)
  408. if err != nil {
  409. slog.Error("failed to publish peer update", "error", err)
  410. }
  411. }
  412. }()
  413. logic.ReturnSuccessResponse(w, r, "updated host data")
  414. }
  415. // @Summary Deletes a Netclient host from Netmaker server
  416. // @Router /api/hosts/{hostid} [delete]
  417. // @Tags Hosts
  418. // @Security oauth
  419. // @Param hostid path string true "Host ID"
  420. // @Param force query bool false "Force delete"
  421. // @Success 200 {object} models.ApiHost
  422. // @Failure 500 {object} models.ErrorResponse
  423. func deleteHost(w http.ResponseWriter, r *http.Request) {
  424. var params = mux.Vars(r)
  425. hostid := params["hostid"]
  426. forceDelete := r.URL.Query().Get("force") == "true"
  427. // confirm host exists
  428. currHost, err := logic.GetHost(hostid)
  429. if err != nil {
  430. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  431. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  432. return
  433. }
  434. for _, nodeID := range currHost.Nodes {
  435. node, err := logic.GetNodeByID(nodeID)
  436. if err != nil {
  437. slog.Error("failed to get node", "nodeid", nodeID, "error", err)
  438. continue
  439. }
  440. go mq.PublishMqUpdatesForDeletedNode(node, false)
  441. }
  442. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  443. // delete EMQX credentials for host
  444. if err := mq.GetEmqxHandler().DeleteEmqxUser(currHost.ID.String()); err != nil {
  445. slog.Error(
  446. "failed to remove host credentials from EMQX",
  447. "id",
  448. currHost.ID,
  449. "error",
  450. err,
  451. )
  452. }
  453. }
  454. if err = mq.HostUpdate(&models.HostUpdate{
  455. Action: models.DeleteHost,
  456. Host: *currHost,
  457. }); err != nil {
  458. logger.Log(
  459. 0,
  460. r.Header.Get("user"),
  461. "failed to send delete host update: ",
  462. currHost.ID.String(),
  463. err.Error(),
  464. )
  465. }
  466. if err = logic.RemoveHost(currHost, forceDelete); err != nil {
  467. logger.Log(0, r.Header.Get("user"), "failed to delete a host:", err.Error())
  468. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  469. return
  470. }
  471. // delete if any pending reqs
  472. (&schema.PendingHost{
  473. HostID: currHost.ID.String(),
  474. }).DeleteAllPendingHosts(db.WithContext(r.Context()))
  475. logic.LogEvent(&models.Event{
  476. Action: models.Delete,
  477. Source: models.Subject{
  478. ID: r.Header.Get("user"),
  479. Name: r.Header.Get("user"),
  480. Type: models.UserSub,
  481. },
  482. TriggeredBy: r.Header.Get("user"),
  483. Target: models.Subject{
  484. ID: currHost.ID.String(),
  485. Name: currHost.Name,
  486. Type: models.DeviceSub,
  487. },
  488. Origin: models.Dashboard,
  489. Diff: models.Diff{
  490. Old: currHost,
  491. New: nil,
  492. },
  493. })
  494. apiHostData := currHost.ConvertNMHostToAPI()
  495. logger.Log(2, r.Header.Get("user"), "removed host", currHost.Name)
  496. w.WriteHeader(http.StatusOK)
  497. json.NewEncoder(w).Encode(apiHostData)
  498. }
  499. // @Summary To Add Host To Network
  500. // @Router /api/hosts/{hostid}/networks/{network} [post]
  501. // @Tags Hosts
  502. // @Security oauth
  503. // @Param hostid path string true "Host ID"
  504. // @Param network path string true "Network name"
  505. // @Success 200 {string} string "OK"
  506. // @Failure 500 {object} models.ErrorResponse
  507. func addHostToNetwork(w http.ResponseWriter, r *http.Request) {
  508. var params = mux.Vars(r)
  509. hostid := params["hostid"]
  510. network := params["network"]
  511. if hostid == "" || network == "" {
  512. logic.ReturnErrorResponse(
  513. w,
  514. r,
  515. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  516. )
  517. return
  518. }
  519. // confirm host exists
  520. currHost, err := logic.GetHost(hostid)
  521. if err != nil {
  522. logger.Log(0, r.Header.Get("user"), "failed to find host:", hostid, err.Error())
  523. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  524. return
  525. }
  526. newNode, err := logic.UpdateHostNetwork(currHost, network, true)
  527. if err != nil {
  528. logger.Log(
  529. 0,
  530. r.Header.Get("user"),
  531. "failed to add host to network:",
  532. hostid,
  533. network,
  534. err.Error(),
  535. )
  536. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  537. return
  538. }
  539. logger.Log(1, "added new node", newNode.ID.String(), "to host", currHost.Name)
  540. if currHost.IsDefault {
  541. // make host failover
  542. logic.CreateFailOver(*newNode)
  543. // make host remote access gateway
  544. logic.CreateIngressGateway(network, newNode.ID.String(), models.IngressRequest{})
  545. logic.CreateRelay(models.RelayRequest{
  546. NodeID: newNode.ID.String(),
  547. NetID: network,
  548. })
  549. }
  550. go func() {
  551. mq.HostUpdate(&models.HostUpdate{
  552. Action: models.JoinHostToNetwork,
  553. Host: *currHost,
  554. Node: *newNode,
  555. })
  556. mq.PublishPeerUpdate(false)
  557. if servercfg.IsDNSMode() {
  558. logic.SetDNS()
  559. }
  560. }()
  561. logger.Log(
  562. 2,
  563. r.Header.Get("user"),
  564. fmt.Sprintf("added host %s to network %s", currHost.Name, network),
  565. )
  566. logic.LogEvent(&models.Event{
  567. Action: models.JoinHostToNet,
  568. Source: models.Subject{
  569. ID: r.Header.Get("user"),
  570. Name: r.Header.Get("user"),
  571. Type: models.UserSub,
  572. },
  573. TriggeredBy: r.Header.Get("user"),
  574. Target: models.Subject{
  575. ID: currHost.ID.String(),
  576. Name: currHost.Name,
  577. Type: models.DeviceSub,
  578. },
  579. NetworkID: models.NetworkID(network),
  580. Origin: models.Dashboard,
  581. })
  582. w.WriteHeader(http.StatusOK)
  583. }
  584. // @Summary To Remove Host from Network
  585. // @Router /api/hosts/{hostid}/networks/{network} [delete]
  586. // @Tags Hosts
  587. // @Security oauth
  588. // @Param hostid path string true "Host ID"
  589. // @Param network path string true "Network name"
  590. // @Param force query bool false "Force delete"
  591. // @Success 200 {string} string "OK"
  592. // @Failure 500 {object} models.ErrorResponse
  593. func deleteHostFromNetwork(w http.ResponseWriter, r *http.Request) {
  594. var params = mux.Vars(r)
  595. hostid := params["hostid"]
  596. network := params["network"]
  597. forceDelete := r.URL.Query().Get("force") == "true"
  598. if hostid == "" || network == "" {
  599. logic.ReturnErrorResponse(
  600. w,
  601. r,
  602. logic.FormatError(errors.New("hostid or network cannot be empty"), "badrequest"),
  603. )
  604. return
  605. }
  606. // confirm host exists
  607. currHost, err := logic.GetHost(hostid)
  608. if err != nil {
  609. if database.IsEmptyRecord(err) {
  610. // check if there is any daemon nodes that needs to be deleted
  611. node, err := logic.GetNodeByHostRef(hostid, network)
  612. if err != nil {
  613. slog.Error(
  614. "couldn't get node for host",
  615. "hostid",
  616. hostid,
  617. "network",
  618. network,
  619. "error",
  620. err,
  621. )
  622. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  623. return
  624. }
  625. if err = logic.DeleteNodeByID(&node); err != nil {
  626. slog.Error("failed to force delete daemon node",
  627. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  628. logic.ReturnErrorResponse(
  629. w,
  630. r,
  631. logic.FormatError(
  632. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  633. "internal",
  634. ),
  635. )
  636. return
  637. }
  638. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  639. return
  640. }
  641. logger.Log(0, r.Header.Get("user"), "failed to find host:", err.Error())
  642. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  643. return
  644. }
  645. node, err := logic.UpdateHostNetwork(currHost, network, false)
  646. if err != nil {
  647. if node == nil && forceDelete {
  648. // force cleanup the node
  649. node, err := logic.GetNodeByHostRef(hostid, network)
  650. if err != nil {
  651. slog.Error(
  652. "couldn't get node for host",
  653. "hostid",
  654. hostid,
  655. "network",
  656. network,
  657. "error",
  658. err,
  659. )
  660. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  661. return
  662. }
  663. if err = logic.DeleteNodeByID(&node); err != nil {
  664. slog.Error("failed to force delete daemon node",
  665. "nodeid", node.ID.String(), "hostid", hostid, "network", network, "error", err)
  666. logic.ReturnErrorResponse(
  667. w,
  668. r,
  669. logic.FormatError(
  670. fmt.Errorf("failed to force delete daemon node: %s", err.Error()),
  671. "internal",
  672. ),
  673. )
  674. return
  675. }
  676. logic.ReturnSuccessResponse(w, r, "force deleted daemon node successfully")
  677. return
  678. }
  679. logger.Log(
  680. 0,
  681. r.Header.Get("user"),
  682. "failed to remove host from network:",
  683. hostid,
  684. network,
  685. err.Error(),
  686. )
  687. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  688. return
  689. }
  690. logger.Log(1, "deleting node", node.ID.String(), "from host", currHost.Name)
  691. if err := logic.DeleteNode(node, forceDelete); err != nil {
  692. logic.ReturnErrorResponse(
  693. w,
  694. r,
  695. logic.FormatError(fmt.Errorf("failed to delete node"), "internal"),
  696. )
  697. return
  698. }
  699. go func() {
  700. mq.PublishMqUpdatesForDeletedNode(*node, true)
  701. if servercfg.IsDNSMode() {
  702. logic.SetDNS()
  703. }
  704. }()
  705. logic.LogEvent(&models.Event{
  706. Action: models.RemoveHostFromNet,
  707. Source: models.Subject{
  708. ID: r.Header.Get("user"),
  709. Name: r.Header.Get("user"),
  710. Type: models.UserSub,
  711. },
  712. TriggeredBy: r.Header.Get("user"),
  713. Target: models.Subject{
  714. ID: currHost.ID.String(),
  715. Name: currHost.Name,
  716. Type: models.DeviceSub,
  717. },
  718. NetworkID: models.NetworkID(network),
  719. Origin: models.Dashboard,
  720. })
  721. logger.Log(
  722. 2,
  723. r.Header.Get("user"),
  724. fmt.Sprintf("removed host %s from network %s", currHost.Name, network),
  725. )
  726. w.WriteHeader(http.StatusOK)
  727. }
  728. // @Summary To Fetch Auth Token for a Host
  729. // @Router /api/hosts/adm/authenticate [post]
  730. // @Tags Auth
  731. // @Accept json
  732. // @Param body body models.AuthParams true "Authentication parameters"
  733. // @Success 200 {object} models.SuccessResponse
  734. // @Failure 400 {object} models.ErrorResponse
  735. // @Failure 401 {object} models.ErrorResponse
  736. // @Failure 500 {object} models.ErrorResponse
  737. func authenticateHost(response http.ResponseWriter, request *http.Request) {
  738. var authRequest models.AuthParams
  739. var errorResponse = models.ErrorResponse{
  740. Code: http.StatusInternalServerError, Message: "W1R3: It's not you it's me.",
  741. }
  742. decoder := json.NewDecoder(request.Body)
  743. decoderErr := decoder.Decode(&authRequest)
  744. defer request.Body.Close()
  745. if decoderErr != nil {
  746. errorResponse.Code = http.StatusBadRequest
  747. errorResponse.Message = decoderErr.Error()
  748. logger.Log(0, request.Header.Get("user"), "error decoding request body: ",
  749. decoderErr.Error())
  750. logic.ReturnErrorResponse(response, request, errorResponse)
  751. return
  752. }
  753. errorResponse.Code = http.StatusBadRequest
  754. if authRequest.ID == "" {
  755. errorResponse.Message = "W1R3: ID can't be empty"
  756. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  757. logic.ReturnErrorResponse(response, request, errorResponse)
  758. return
  759. } else if authRequest.Password == "" {
  760. errorResponse.Message = "W1R3: Password can't be empty"
  761. logger.Log(0, request.Header.Get("user"), errorResponse.Message)
  762. logic.ReturnErrorResponse(response, request, errorResponse)
  763. return
  764. }
  765. host, err := logic.GetHost(authRequest.ID)
  766. if err != nil {
  767. errorResponse.Code = http.StatusBadRequest
  768. errorResponse.Message = err.Error()
  769. logger.Log(0, request.Header.Get("user"),
  770. "error retrieving host: ", authRequest.ID, err.Error())
  771. logic.ReturnErrorResponse(response, request, errorResponse)
  772. return
  773. }
  774. err = bcrypt.CompareHashAndPassword([]byte(host.HostPass), []byte(authRequest.Password))
  775. if err != nil {
  776. errorResponse.Code = http.StatusUnauthorized
  777. errorResponse.Message = "unauthorized"
  778. logger.Log(0, request.Header.Get("user"),
  779. "error validating user password: ", err.Error())
  780. logic.ReturnErrorResponse(response, request, errorResponse)
  781. return
  782. }
  783. tokenString, err := logic.CreateJWT(authRequest.ID, authRequest.MacAddress, "")
  784. if tokenString == "" {
  785. errorResponse.Code = http.StatusUnauthorized
  786. errorResponse.Message = "unauthorized"
  787. logger.Log(0, request.Header.Get("user"),
  788. fmt.Sprintf("%s: %v", errorResponse.Message, err))
  789. logic.ReturnErrorResponse(response, request, errorResponse)
  790. return
  791. }
  792. var successResponse = models.SuccessResponse{
  793. Code: http.StatusOK,
  794. Message: "W1R3: Host " + authRequest.ID + " Authorized",
  795. Response: models.SuccessfulLoginResponse{
  796. AuthToken: tokenString,
  797. ID: authRequest.ID,
  798. },
  799. }
  800. successJSONResponse, jsonError := json.Marshal(successResponse)
  801. if jsonError != nil {
  802. errorResponse.Code = http.StatusBadRequest
  803. errorResponse.Message = err.Error()
  804. logger.Log(0, request.Header.Get("user"),
  805. "error marshalling resp: ", err.Error())
  806. logic.ReturnErrorResponse(response, request, errorResponse)
  807. return
  808. }
  809. go func() {
  810. // Create EMQX creds
  811. if servercfg.GetBrokerType() == servercfg.EmqxBrokerType {
  812. if err := mq.GetEmqxHandler().CreateEmqxUser(host.ID.String(), authRequest.Password); err != nil {
  813. slog.Error("failed to create host credentials for EMQX: ", err.Error())
  814. }
  815. }
  816. }()
  817. response.WriteHeader(http.StatusOK)
  818. response.Header().Set("Content-Type", "application/json")
  819. response.Write(successJSONResponse)
  820. }
  821. // @Summary Send signal to peer
  822. // @Router /api/v1/host/{hostid}/signalpeer [post]
  823. // @Tags Hosts
  824. // @Security oauth
  825. // @Param hostid path string true "Host ID"
  826. // @Param body body models.Signal true "Signal data"
  827. // @Success 200 {object} models.Signal
  828. // @Failure 400 {object} models.ErrorResponse
  829. func signalPeer(w http.ResponseWriter, r *http.Request) {
  830. var params = mux.Vars(r)
  831. hostid := params["hostid"]
  832. // confirm host exists
  833. _, err := logic.GetHost(hostid)
  834. if err != nil {
  835. logger.Log(0, r.Header.Get("user"), "failed to get host:", err.Error())
  836. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  837. return
  838. }
  839. var signal models.Signal
  840. w.Header().Set("Content-Type", "application/json")
  841. err = json.NewDecoder(r.Body).Decode(&signal)
  842. if err != nil {
  843. logger.Log(0, r.Header.Get("user"), "error decoding request body: ", err.Error())
  844. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "badrequest"))
  845. return
  846. }
  847. if signal.ToHostPubKey == "" {
  848. msg := "insufficient data to signal peer"
  849. logger.Log(0, r.Header.Get("user"), msg)
  850. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New(msg), "badrequest"))
  851. return
  852. }
  853. signal.IsPro = servercfg.IsPro
  854. peerHost, err := logic.GetHost(signal.ToHostID)
  855. if err != nil {
  856. logic.ReturnErrorResponse(
  857. w,
  858. r,
  859. logic.FormatError(errors.New("failed to signal, peer not found"), "badrequest"),
  860. )
  861. return
  862. }
  863. err = mq.HostUpdate(&models.HostUpdate{
  864. Action: models.SignalHost,
  865. Host: *peerHost,
  866. Signal: signal,
  867. })
  868. if err != nil {
  869. logic.ReturnErrorResponse(
  870. w,
  871. r,
  872. logic.FormatError(
  873. errors.New("failed to publish signal to peer: "+err.Error()),
  874. "badrequest",
  875. ),
  876. )
  877. return
  878. }
  879. w.WriteHeader(http.StatusOK)
  880. json.NewEncoder(w).Encode(signal)
  881. }
  882. // @Summary Update keys for all hosts
  883. // @Router /api/hosts/keys [put]
  884. // @Tags Hosts
  885. // @Security oauth
  886. // @Success 200 {string} string "OK"
  887. // @Failure 400 {object} models.ErrorResponse
  888. func updateAllKeys(w http.ResponseWriter, r *http.Request) {
  889. var errorResponse = models.ErrorResponse{}
  890. w.Header().Set("Content-Type", "application/json")
  891. hosts, err := logic.GetAllHosts()
  892. if err != nil {
  893. errorResponse.Code = http.StatusBadRequest
  894. errorResponse.Message = err.Error()
  895. logger.Log(0, r.Header.Get("user"),
  896. "error retrieving hosts ", err.Error())
  897. logic.ReturnErrorResponse(w, r, errorResponse)
  898. return
  899. }
  900. go func() {
  901. hostUpdate := models.HostUpdate{}
  902. hostUpdate.Action = models.UpdateKeys
  903. for _, host := range hosts {
  904. hostUpdate.Host = host
  905. logger.Log(2, "updating host", host.ID.String(), " for a key update")
  906. if err = mq.HostUpdate(&hostUpdate); err != nil {
  907. logger.Log(
  908. 0,
  909. "failed to send update to node during a network wide key update",
  910. host.ID.String(),
  911. err.Error(),
  912. )
  913. }
  914. }
  915. }()
  916. logic.LogEvent(&models.Event{
  917. Action: models.RefreshAllKeys,
  918. Source: models.Subject{
  919. ID: r.Header.Get("user"),
  920. Name: r.Header.Get("user"),
  921. Type: models.UserSub,
  922. },
  923. TriggeredBy: r.Header.Get("user"),
  924. Target: models.Subject{
  925. ID: "All Devices",
  926. Name: "All Devices",
  927. Type: models.DeviceSub,
  928. },
  929. Origin: models.Dashboard,
  930. })
  931. logger.Log(2, r.Header.Get("user"), "updated keys for all hosts")
  932. w.WriteHeader(http.StatusOK)
  933. }
  934. // @Summary Update keys for a host
  935. // @Router /api/hosts/{hostid}/keys [put]
  936. // @Tags Hosts
  937. // @Security oauth
  938. // @Param hostid path string true "Host ID"
  939. // @Success 200 {string} string "OK"
  940. // @Failure 400 {object} models.ErrorResponse
  941. func updateKeys(w http.ResponseWriter, r *http.Request) {
  942. var errorResponse = models.ErrorResponse{}
  943. w.Header().Set("Content-Type", "application/json")
  944. var params = mux.Vars(r)
  945. hostid := params["hostid"]
  946. host, err := logic.GetHost(hostid)
  947. if err != nil {
  948. logger.Log(0, "failed to retrieve host", hostid, err.Error())
  949. errorResponse.Code = http.StatusBadRequest
  950. errorResponse.Message = err.Error()
  951. logger.Log(0, r.Header.Get("user"),
  952. "error retrieving hosts ", err.Error())
  953. logic.ReturnErrorResponse(w, r, errorResponse)
  954. return
  955. }
  956. go func() {
  957. hostUpdate := models.HostUpdate{
  958. Action: models.UpdateKeys,
  959. Host: *host,
  960. }
  961. if err = mq.HostUpdate(&hostUpdate); err != nil {
  962. logger.Log(0, "failed to send host key update", host.ID.String(), err.Error())
  963. }
  964. }()
  965. logic.LogEvent(&models.Event{
  966. Action: models.RefreshKey,
  967. Source: models.Subject{
  968. ID: r.Header.Get("user"),
  969. Name: r.Header.Get("user"),
  970. Type: models.UserSub,
  971. },
  972. TriggeredBy: r.Header.Get("user"),
  973. Target: models.Subject{
  974. ID: host.ID.String(),
  975. Name: host.Name,
  976. Type: models.DeviceSub,
  977. },
  978. Origin: models.Dashboard,
  979. })
  980. logger.Log(2, r.Header.Get("user"), "updated key on host", host.Name)
  981. w.WriteHeader(http.StatusOK)
  982. }
  983. // @Summary Requests all the hosts to pull
  984. // @Router /api/hosts/sync [post]
  985. // @Tags Hosts
  986. // @Security oauth
  987. // @Success 200 {string} string "sync all hosts request received"
  988. func syncHosts(w http.ResponseWriter, r *http.Request) {
  989. w.Header().Set("Content-Type", "application/json")
  990. user := r.Header.Get("user")
  991. go func() {
  992. slog.Info("requesting all hosts to sync", "user", user)
  993. hosts, err := logic.GetAllHosts()
  994. if err != nil {
  995. slog.Error("failed to retrieve all hosts", "user", user, "error", err)
  996. return
  997. }
  998. for _, host := range hosts {
  999. go func(host models.Host) {
  1000. hostUpdate := models.HostUpdate{
  1001. Action: models.RequestPull,
  1002. Host: host,
  1003. }
  1004. if err = mq.HostUpdate(&hostUpdate); err != nil {
  1005. slog.Error("failed to request host to sync", "user", user, "host", host.ID.String(), "error", err)
  1006. } else {
  1007. slog.Info("host sync requested", "user", user, "host", host.ID.String())
  1008. }
  1009. }(host)
  1010. time.Sleep(time.Millisecond * 100)
  1011. }
  1012. }()
  1013. logic.LogEvent(&models.Event{
  1014. Action: models.SyncAll,
  1015. Source: models.Subject{
  1016. ID: r.Header.Get("user"),
  1017. Name: r.Header.Get("user"),
  1018. Type: models.UserSub,
  1019. },
  1020. TriggeredBy: r.Header.Get("user"),
  1021. Target: models.Subject{
  1022. ID: "All Devices",
  1023. Name: "All Devices",
  1024. Type: models.DeviceSub,
  1025. },
  1026. Origin: models.Dashboard,
  1027. })
  1028. slog.Info("sync all hosts request received", "user", user)
  1029. logic.ReturnSuccessResponse(w, r, "sync all hosts request received")
  1030. }
  1031. // @Summary Requests a host to pull
  1032. // @Router /api/hosts/{hostid}/sync [post]
  1033. // @Tags Hosts
  1034. // @Security oauth
  1035. // @Param hostid path string true "Host ID"
  1036. // @Success 200 {string} string "OK"
  1037. // @Failure 400 {object} models.ErrorResponse
  1038. func syncHost(w http.ResponseWriter, r *http.Request) {
  1039. hostId := mux.Vars(r)["hostid"]
  1040. var errorResponse = models.ErrorResponse{}
  1041. w.Header().Set("Content-Type", "application/json")
  1042. host, err := logic.GetHost(hostId)
  1043. if err != nil {
  1044. slog.Error("failed to retrieve host", "user", r.Header.Get("user"), "error", err)
  1045. errorResponse.Code = http.StatusBadRequest
  1046. errorResponse.Message = err.Error()
  1047. logic.ReturnErrorResponse(w, r, errorResponse)
  1048. return
  1049. }
  1050. go func() {
  1051. hostUpdate := models.HostUpdate{
  1052. Action: models.RequestPull,
  1053. Host: *host,
  1054. }
  1055. if err = mq.HostUpdate(&hostUpdate); err != nil {
  1056. slog.Error("failed to send host pull request", "host", host.ID.String(), "error", err)
  1057. }
  1058. }()
  1059. logic.LogEvent(&models.Event{
  1060. Action: models.Sync,
  1061. Source: models.Subject{
  1062. ID: r.Header.Get("user"),
  1063. Name: r.Header.Get("user"),
  1064. Type: models.UserSub,
  1065. },
  1066. TriggeredBy: r.Header.Get("user"),
  1067. Target: models.Subject{
  1068. ID: host.ID.String(),
  1069. Name: host.Name,
  1070. Type: models.DeviceSub,
  1071. },
  1072. Origin: models.Dashboard,
  1073. })
  1074. slog.Info("requested host pull", "user", r.Header.Get("user"), "host", host.ID.String())
  1075. w.WriteHeader(http.StatusOK)
  1076. }
  1077. // @Summary Deletes all EMQX hosts
  1078. // @Router /api/emqx/hosts [delete]
  1079. // @Tags Hosts
  1080. // @Security oauth
  1081. // @Success 200 {string} string "deleted hosts data on emqx"
  1082. // @Failure 500 {object} models.ErrorResponse
  1083. func delEmqxHosts(w http.ResponseWriter, r *http.Request) {
  1084. currentHosts, err := logic.GetAllHosts()
  1085. if err != nil {
  1086. logger.Log(0, r.Header.Get("user"), "failed to fetch hosts: ", err.Error())
  1087. logic.ReturnErrorResponse(w, r, logic.FormatError(err, "internal"))
  1088. return
  1089. }
  1090. for _, host := range currentHosts {
  1091. // delete EMQX credentials for host
  1092. if err := mq.GetEmqxHandler().DeleteEmqxUser(host.ID.String()); err != nil {
  1093. slog.Error("failed to remove host credentials from EMQX", "id", host.ID, "error", err)
  1094. }
  1095. }
  1096. err = mq.GetEmqxHandler().DeleteEmqxUser(servercfg.GetMqUserName())
  1097. if err != nil {
  1098. slog.Error(
  1099. "failed to remove server credentials from EMQX",
  1100. "user",
  1101. servercfg.GetMqUserName(),
  1102. "error",
  1103. err,
  1104. )
  1105. }
  1106. logic.ReturnSuccessResponse(w, r, "deleted hosts data on emqx")
  1107. }
  1108. // @Summary Fetches host peerinfo
  1109. // @Router /api/host/{hostid}/peer_info [get]
  1110. // @Tags Hosts
  1111. // @Security oauth
  1112. // @Param hostid path string true "Host ID"
  1113. // @Success 200 {object} models.SuccessResponse
  1114. // @Failure 500 {object} models.ErrorResponse
  1115. func getHostPeerInfo(w http.ResponseWriter, r *http.Request) {
  1116. hostId := mux.Vars(r)["hostid"]
  1117. var errorResponse = models.ErrorResponse{}
  1118. host, err := logic.GetHost(hostId)
  1119. if err != nil {
  1120. slog.Error("failed to retrieve host", "error", err)
  1121. errorResponse.Code = http.StatusBadRequest
  1122. errorResponse.Message = err.Error()
  1123. logic.ReturnErrorResponse(w, r, errorResponse)
  1124. return
  1125. }
  1126. peerInfo, err := logic.GetHostPeerInfo(host)
  1127. if err != nil {
  1128. slog.Error("failed to retrieve host peerinfo", "error", err)
  1129. errorResponse.Code = http.StatusBadRequest
  1130. errorResponse.Message = err.Error()
  1131. logic.ReturnErrorResponse(w, r, errorResponse)
  1132. return
  1133. }
  1134. logic.ReturnSuccessResponseWithJson(w, r, peerInfo, "fetched host peer info")
  1135. }
  1136. // @Summary List pending hosts in a network
  1137. // @Router /api/v1/pending_hosts [get]
  1138. // @Tags Hosts
  1139. // @Security oauth
  1140. // @Success 200 {array} schema.PendingHost
  1141. // @Failure 500 {object} models.ErrorResponse
  1142. func getPendingHosts(w http.ResponseWriter, r *http.Request) {
  1143. netID := r.URL.Query().Get("network")
  1144. if netID == "" {
  1145. logic.ReturnErrorResponse(w, r, logic.FormatError(errors.New("network id param is missing"), "badrequest"))
  1146. return
  1147. }
  1148. pendingHosts, err := (&schema.PendingHost{
  1149. Network: netID,
  1150. }).List(db.WithContext(r.Context()))
  1151. if err != nil {
  1152. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1153. Code: http.StatusBadRequest,
  1154. Message: err.Error(),
  1155. })
  1156. return
  1157. }
  1158. logger.Log(2, r.Header.Get("user"), "fetched all hosts")
  1159. logic.ReturnSuccessResponseWithJson(w, r, pendingHosts, "returned pending hosts in "+netID)
  1160. }
  1161. // @Summary approve pending hosts in a network
  1162. // @Router /api/v1/pending_hosts/approve/{id} [post]
  1163. // @Tags Hosts
  1164. // @Security oauth
  1165. // @Success 200 {array} models.ApiNode
  1166. // @Failure 500 {object} models.ErrorResponse
  1167. func approvePendingHost(w http.ResponseWriter, r *http.Request) {
  1168. id := mux.Vars(r)["id"]
  1169. p := &schema.PendingHost{ID: id}
  1170. err := p.Get(db.WithContext(r.Context()))
  1171. if err != nil {
  1172. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1173. Code: http.StatusBadRequest,
  1174. Message: err.Error(),
  1175. })
  1176. return
  1177. }
  1178. h, err := logic.GetHost(p.HostID)
  1179. if err != nil {
  1180. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1181. Code: http.StatusBadRequest,
  1182. Message: err.Error(),
  1183. })
  1184. return
  1185. }
  1186. key := models.EnrollmentKey{}
  1187. json.Unmarshal(p.EnrollmentKey, &key)
  1188. newNode, err := logic.UpdateHostNetwork(h, p.Network, true)
  1189. if err != nil {
  1190. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1191. Code: http.StatusBadRequest,
  1192. Message: err.Error(),
  1193. })
  1194. return
  1195. }
  1196. if key.AutoAssignGateway {
  1197. newNode.AutoAssignGateway = true
  1198. }
  1199. if len(key.Groups) > 0 {
  1200. newNode.Tags = make(map[models.TagID]struct{})
  1201. for _, tagI := range key.Groups {
  1202. newNode.Tags[tagI] = struct{}{}
  1203. }
  1204. logic.UpsertNode(newNode)
  1205. }
  1206. if key.Relay != uuid.Nil && !newNode.IsRelayed {
  1207. // check if relay node exists and acting as relay
  1208. relaynode, err := logic.GetNodeByID(key.Relay.String())
  1209. if err == nil && relaynode.IsGw && relaynode.Network == newNode.Network {
  1210. slog.Error(fmt.Sprintf("adding relayed node %s to relay %s on network %s", newNode.ID.String(), key.Relay.String(), p.Network))
  1211. newNode.IsRelayed = true
  1212. newNode.RelayedBy = key.Relay.String()
  1213. updatedRelayNode := relaynode
  1214. updatedRelayNode.RelayedNodes = append(updatedRelayNode.RelayedNodes, newNode.ID.String())
  1215. logic.UpdateRelayed(&relaynode, &updatedRelayNode)
  1216. if err := logic.UpsertNode(&updatedRelayNode); err != nil {
  1217. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1218. }
  1219. if err := logic.UpsertNode(newNode); err != nil {
  1220. slog.Error("failed to update node", "nodeid", key.Relay.String())
  1221. }
  1222. } else {
  1223. slog.Error("failed to relay node. maybe specified relay node is actually not a relay? Or the relayed node is not in the same network with relay?", "err", err)
  1224. }
  1225. }
  1226. logger.Log(1, "added new node", newNode.ID.String(), "to host", h.Name)
  1227. mq.HostUpdate(&models.HostUpdate{
  1228. Action: models.JoinHostToNetwork,
  1229. Host: *h,
  1230. Node: *newNode,
  1231. })
  1232. if h.IsDefault {
  1233. // make host failover
  1234. logic.CreateFailOver(*newNode)
  1235. // make host remote access gateway
  1236. logic.CreateIngressGateway(p.Network, newNode.ID.String(), models.IngressRequest{})
  1237. logic.CreateRelay(models.RelayRequest{
  1238. NodeID: newNode.ID.String(),
  1239. NetID: p.Network,
  1240. })
  1241. }
  1242. p.Delete(db.WithContext(r.Context()))
  1243. go mq.PublishPeerUpdate(false)
  1244. logic.ReturnSuccessResponseWithJson(w, r, newNode.ConvertToAPINode(), "added pending host to "+p.Network)
  1245. }
  1246. // @Summary reject pending hosts in a network
  1247. // @Router /api/v1/pending_hosts/reject/{id} [post]
  1248. // @Tags Hosts
  1249. // @Security oauth
  1250. // @Success 200 {array} models.ApiNode
  1251. // @Failure 500 {object} models.ErrorResponse
  1252. func rejectPendingHost(w http.ResponseWriter, r *http.Request) {
  1253. id := mux.Vars(r)["id"]
  1254. p := &schema.PendingHost{ID: id}
  1255. err := p.Get(db.WithContext(r.Context()))
  1256. if err != nil {
  1257. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1258. Code: http.StatusBadRequest,
  1259. Message: err.Error(),
  1260. })
  1261. return
  1262. }
  1263. err = p.Delete(db.WithContext(r.Context()))
  1264. if err != nil {
  1265. logic.ReturnErrorResponse(w, r, models.ErrorResponse{
  1266. Code: http.StatusBadRequest,
  1267. Message: err.Error(),
  1268. })
  1269. return
  1270. }
  1271. logic.ReturnSuccessResponseWithJson(w, r, p, "deleted pending host from "+p.Network)
  1272. }