| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 1 | package main |
| 2 | |
| 3 | import ( |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 4 | "bytes" |
| 5 | "encoding/json" |
| gio | b36178f | 2024-08-23 18:59:15 +0400 | [diff] [blame] | 6 | "errors" |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 7 | "fmt" |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 8 | "net" |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 9 | "os/exec" |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 10 | "strconv" |
| Giorgi Lekveishvili | 027ef43 | 2023-06-16 12:31:25 +0400 | [diff] [blame] | 11 | "strings" |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 12 | ) |
| 13 | |
| gio | b36178f | 2024-08-23 18:59:15 +0400 | [diff] [blame] | 14 | var ErrorAlreadyExists = errors.New("already exists") |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 15 | var ErrorNotFound = errors.New("not found") |
| gio | b36178f | 2024-08-23 18:59:15 +0400 | [diff] [blame] | 16 | |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 17 | type client struct { |
| 18 | config string |
| 19 | } |
| 20 | |
| 21 | func newClient(config string) *client { |
| 22 | return &client{ |
| 23 | config: fmt.Sprintf("--config=%s", config), |
| 24 | } |
| 25 | } |
| 26 | |
| gio | 6439d44 | 2025-08-03 06:18:15 +0400 | [diff] [blame] | 27 | func (c *client) run(cc ...string) (string, error) { |
| 28 | // TODO(giolekva): make expiration configurable, and auto-refresh |
| 29 | cc = append(cc, c.config) |
| 30 | cmd := exec.Command("headscale", cc...) |
| 31 | out, err := cmd.Output() |
| 32 | if err != nil { |
| 33 | return "", err |
| 34 | } |
| 35 | return string(out), nil |
| 36 | |
| 37 | } |
| 38 | |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 39 | func (c *client) createUser(name string) error { |
| 40 | cmd := exec.Command("headscale", c.config, "users", "create", name) |
| 41 | out, err := cmd.Output() |
| gio | b36178f | 2024-08-23 18:59:15 +0400 | [diff] [blame] | 42 | outStr := string(out) |
| 43 | if err != nil && strings.Contains(outStr, "User already exists") { |
| 44 | return ErrorAlreadyExists |
| 45 | } |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 46 | return err |
| 47 | } |
| 48 | |
| 49 | func (c *client) createPreAuthKey(user string) (string, error) { |
| 50 | // TODO(giolekva): make expiration configurable, and auto-refresh |
| 51 | cmd := exec.Command("headscale", c.config, "--user", user, "preauthkeys", "create", "--reusable", "--expiration", "365d") |
| 52 | out, err := cmd.Output() |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 53 | fmt.Println(string(out)) |
| Giorgi Lekveishvili | 027ef43 | 2023-06-16 12:31:25 +0400 | [diff] [blame] | 54 | if err != nil { |
| 55 | return "", err |
| 56 | } |
| Giorgi Lekveishvili | 027ef43 | 2023-06-16 12:31:25 +0400 | [diff] [blame] | 57 | return extractLastLine(string(out)) |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 58 | } |
| 59 | |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 60 | func (c *client) expirePreAuthKey(user, authKey string) error { |
| 61 | cmd := exec.Command("headscale", c.config, "--user", user, "preauthkeys", "expire", authKey) |
| 62 | out, err := cmd.Output() |
| 63 | fmt.Println(string(out)) |
| 64 | if err != nil { |
| 65 | return err |
| 66 | } |
| 67 | return nil |
| 68 | } |
| 69 | |
| 70 | func (c *client) expireUserNode(user, node string) error { |
| 71 | id, err := c.getNodeId(user, node) |
| 72 | if err != nil { |
| 73 | return err |
| 74 | } |
| 75 | cmd := exec.Command("headscale", c.config, "node", "expire", "--identifier", id) |
| 76 | out, err := cmd.Output() |
| 77 | fmt.Println(string(out)) |
| 78 | if err != nil { |
| 79 | return err |
| 80 | } |
| 81 | return nil |
| 82 | } |
| 83 | |
| 84 | func (c *client) removeUserNode(user, node string) error { |
| 85 | id, err := c.getNodeId(user, node) |
| 86 | if err != nil { |
| 87 | return err |
| 88 | } |
| 89 | cmd := exec.Command("headscale", c.config, "node", "delete", "--identifier", id, "--force") |
| 90 | out, err := cmd.Output() |
| 91 | fmt.Println(string(out)) |
| 92 | if err != nil { |
| 93 | return err |
| 94 | } |
| 95 | return nil |
| 96 | } |
| 97 | |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 98 | func (c *client) enableRoute(id string) error { |
| Giorgi Lekveishvili | 52814d9 | 2023-06-15 19:30:32 +0400 | [diff] [blame] | 99 | cmd := exec.Command("headscale", c.config, "routes", "enable", "-r", id) |
| 100 | out, err := cmd.Output() |
| 101 | fmt.Println(string(out)) |
| 102 | return err |
| 103 | } |
| Giorgi Lekveishvili | 027ef43 | 2023-06-16 12:31:25 +0400 | [diff] [blame] | 104 | |
| gio | 6439d44 | 2025-08-03 06:18:15 +0400 | [diff] [blame] | 105 | type timeInfo struct { |
| 106 | Seconds int `json:"seconds"` |
| 107 | Nanos int `json:"nanos"` |
| 108 | } |
| 109 | |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 110 | type nodeInfo struct { |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 111 | Id int `json:"id"` |
| 112 | Name string `json:"name"` |
| gio | 6439d44 | 2025-08-03 06:18:15 +0400 | [diff] [blame] | 113 | GivenName string `json:"given_name"` |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 114 | IPAddresses []net.IP `json:"ip_addresses"` |
| gio | 6439d44 | 2025-08-03 06:18:15 +0400 | [diff] [blame] | 115 | LastSeen timeInfo `json:"last_seen"` |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 116 | } |
| 117 | |
| gio | 43e0aad | 2025-08-01 16:17:27 +0400 | [diff] [blame] | 118 | func (c *client) getUserNodes(user string) ([]nodeInfo, error) { |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 119 | cmd := exec.Command("headscale", c.config, "--user", user, "node", "list", "-o", "json") |
| 120 | out, err := cmd.Output() |
| 121 | if err != nil { |
| gio | 43e0aad | 2025-08-01 16:17:27 +0400 | [diff] [blame] | 122 | return nil, err |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 123 | } |
| 124 | var nodes []nodeInfo |
| 125 | if err := json.NewDecoder(bytes.NewReader(out)).Decode(&nodes); err != nil { |
| gio | 43e0aad | 2025-08-01 16:17:27 +0400 | [diff] [blame] | 126 | return nil, err |
| 127 | } |
| 128 | return nodes, nil |
| 129 | } |
| 130 | |
| 131 | func (c *client) getNodeId(user, node string) (string, error) { |
| 132 | nodes, err := c.getUserNodes(user) |
| 133 | if err != nil { |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 134 | return "", err |
| 135 | } |
| 136 | for _, n := range nodes { |
| 137 | if n.Name == node { |
| 138 | return strconv.Itoa(n.Id), nil |
| 139 | } |
| 140 | } |
| gio | 92116ca | 2024-10-06 13:55:46 +0400 | [diff] [blame] | 141 | return "", ErrorNotFound |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 142 | } |
| 143 | |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 144 | func (c *client) getNodeAddresses(user, node string) ([]net.IP, error) { |
| 145 | cmd := exec.Command("headscale", c.config, "--user", user, "node", "list", "-o", "json") |
| 146 | out, err := cmd.Output() |
| 147 | if err != nil { |
| 148 | return nil, err |
| 149 | } |
| 150 | var nodes []nodeInfo |
| 151 | if err := json.NewDecoder(bytes.NewReader(out)).Decode(&nodes); err != nil { |
| 152 | return nil, err |
| 153 | } |
| 154 | for _, n := range nodes { |
| 155 | if n.Name == node { |
| 156 | return n.IPAddresses, nil |
| 157 | } |
| 158 | } |
| 159 | return nil, ErrorNotFound |
| 160 | } |
| 161 | |
| Giorgi Lekveishvili | 027ef43 | 2023-06-16 12:31:25 +0400 | [diff] [blame] | 162 | func extractLastLine(s string) (string, error) { |
| 163 | items := strings.Split(s, "\n") |
| 164 | for i := len(items) - 1; i >= 0; i-- { |
| 165 | t := strings.TrimSpace(items[i]) |
| 166 | if t != "" { |
| 167 | return t, nil |
| 168 | } |
| 169 | } |
| 170 | return "", fmt.Errorf("All lines are empty") |
| 171 | } |