| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 1 | package installer |
| 2 | |
| 3 | import ( |
| 4 | "bytes" |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 5 | "encoding/json" |
| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 6 | "errors" |
| 7 | "fmt" |
| 8 | "io" |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 9 | "net" |
| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 10 | "net/http" |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 11 | "net/url" |
| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 12 | ) |
| 13 | |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 14 | type VPNAPIClient interface { |
| 15 | GenerateAuthKey(username string) (string, error) |
| 16 | ExpireKey(username, key string) error |
| 17 | ExpireNode(username, node string) error |
| 18 | RemoveNode(username, node string) error |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 19 | GetNodeIP(username, node string) (net.IP, error) |
| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 20 | } |
| 21 | |
| 22 | type headscaleAPIClient struct { |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 23 | c *http.Client |
| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 24 | apiAddr string |
| 25 | } |
| 26 | |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 27 | func NewHeadscaleAPIClient(apiAddr string) VPNAPIClient { |
| 28 | return &headscaleAPIClient{ |
| 29 | &http.Client{}, |
| 30 | apiAddr, |
| 31 | } |
| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 32 | } |
| 33 | |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 34 | func (g *headscaleAPIClient) GenerateAuthKey(username string) (string, error) { |
| gio | 36b23b3 | 2024-08-25 12:20:54 +0400 | [diff] [blame] | 35 | resp, err := http.Post(fmt.Sprintf("%s/user/%s/preauthkey", g.apiAddr, username), "application/json", nil) |
| 36 | if err != nil { |
| 37 | return "", err |
| 38 | } |
| 39 | var buf bytes.Buffer |
| 40 | io.Copy(&buf, resp.Body) |
| 41 | if resp.StatusCode != http.StatusOK { |
| 42 | return "", errors.New(buf.String()) |
| 43 | } |
| 44 | return buf.String(), nil |
| 45 | } |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 46 | |
| 47 | type expirePreAuthKeyReq struct { |
| 48 | AuthKey string `json:"authKey"` |
| 49 | } |
| 50 | |
| 51 | func (g *headscaleAPIClient) ExpireKey(username, key string) error { |
| 52 | addr, err := url.Parse(fmt.Sprintf("%s/user/%s/preauthkey", g.apiAddr, username)) |
| 53 | if err != nil { |
| 54 | return err |
| 55 | } |
| 56 | var buf bytes.Buffer |
| 57 | if err := json.NewEncoder(&buf).Encode(expirePreAuthKeyReq{key}); err != nil { |
| 58 | return err |
| 59 | } |
| 60 | resp, err := g.c.Do(&http.Request{ |
| 61 | URL: addr, |
| 62 | Method: http.MethodDelete, |
| 63 | Body: io.NopCloser(&buf), |
| 64 | }) |
| 65 | if err != nil { |
| 66 | return err |
| 67 | } |
| gio | 92116ca | 2024-10-06 13:55:46 +0400 | [diff] [blame] | 68 | if resp.StatusCode == http.StatusOK { |
| 69 | return nil |
| 70 | } |
| 71 | if resp.StatusCode == http.StatusNotFound { |
| 72 | return ErrorNotFound |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 73 | } |
| 74 | return nil |
| 75 | } |
| 76 | |
| 77 | func (g *headscaleAPIClient) ExpireNode(username, node string) error { |
| 78 | resp, err := g.c.Post( |
| 79 | fmt.Sprintf("%s/user/%s/node/%s/expire", g.apiAddr, username, node), |
| 80 | "text/plain", |
| 81 | nil, |
| 82 | ) |
| 83 | if err != nil { |
| 84 | return err |
| 85 | } |
| gio | 92116ca | 2024-10-06 13:55:46 +0400 | [diff] [blame] | 86 | if resp.StatusCode == http.StatusOK { |
| 87 | return nil |
| 88 | } |
| 89 | if resp.StatusCode == http.StatusNotFound { |
| 90 | return ErrorNotFound |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 91 | } |
| 92 | return nil |
| 93 | } |
| 94 | |
| 95 | func (g *headscaleAPIClient) RemoveNode(username, node string) error { |
| 96 | addr, err := url.Parse(fmt.Sprintf("%s/user/%s/node/%s", g.apiAddr, username, node)) |
| 97 | if err != nil { |
| 98 | return err |
| 99 | } |
| 100 | resp, err := g.c.Do(&http.Request{ |
| 101 | URL: addr, |
| 102 | Method: http.MethodDelete, |
| 103 | Body: nil, |
| 104 | }) |
| 105 | if err != nil { |
| 106 | return err |
| 107 | } |
| gio | 92116ca | 2024-10-06 13:55:46 +0400 | [diff] [blame] | 108 | if resp.StatusCode == http.StatusOK { |
| 109 | return nil |
| 110 | } |
| 111 | if resp.StatusCode == http.StatusNotFound { |
| 112 | return ErrorNotFound |
| gio | 864b433 | 2024-09-05 13:56:47 +0400 | [diff] [blame] | 113 | } |
| 114 | return nil |
| 115 | } |
| gio | f6ad298 | 2024-08-23 17:42:49 +0400 | [diff] [blame] | 116 | |
| 117 | func (g *headscaleAPIClient) GetNodeIP(username, node string) (net.IP, error) { |
| 118 | addr, err := url.Parse(fmt.Sprintf("%s/user/%s/node/%s/ip", g.apiAddr, username, node)) |
| 119 | if err != nil { |
| 120 | return nil, err |
| 121 | } |
| 122 | resp, err := g.c.Do(&http.Request{ |
| 123 | URL: addr, |
| 124 | Method: http.MethodGet, |
| 125 | Body: nil, |
| 126 | }) |
| 127 | if err != nil { |
| 128 | return nil, err |
| 129 | } |
| 130 | var buf bytes.Buffer |
| 131 | if _, err := io.Copy(&buf, resp.Body); err != nil { |
| 132 | return nil, err |
| 133 | } |
| 134 | bufS := buf.String() |
| 135 | if resp.StatusCode == http.StatusNotFound { |
| 136 | return nil, ErrorNotFound |
| 137 | } |
| 138 | if resp.StatusCode != http.StatusOK { |
| 139 | return nil, errors.New(bufS) |
| 140 | } |
| 141 | ip := net.ParseIP(bufS) |
| 142 | if ip == nil { |
| 143 | return nil, fmt.Errorf("invalid ip") |
| 144 | } |
| 145 | return ip, nil |
| 146 | } |