2021-04-20 21:31:37 +00:00
|
|
|
// Package bootstrap deals with the creation of bootstrap files
|
|
|
|
package bootstrap
|
|
|
|
|
|
|
|
import (
|
2022-10-11 19:24:53 +00:00
|
|
|
"cryptic-net/garage"
|
2021-04-20 21:31:37 +00:00
|
|
|
"cryptic-net/tarutil"
|
2022-10-15 14:28:03 +00:00
|
|
|
"cryptic-net/yamlutil"
|
2022-10-15 16:41:07 +00:00
|
|
|
"crypto/sha512"
|
2021-04-20 21:31:37 +00:00
|
|
|
"fmt"
|
|
|
|
"io"
|
|
|
|
"io/fs"
|
2022-10-15 14:28:03 +00:00
|
|
|
"os"
|
2022-10-15 16:41:07 +00:00
|
|
|
"path/filepath"
|
|
|
|
"sort"
|
2022-10-15 14:28:03 +00:00
|
|
|
"strings"
|
2022-10-15 16:41:07 +00:00
|
|
|
|
|
|
|
"gopkg.in/yaml.v3"
|
2021-04-20 21:31:37 +00:00
|
|
|
)
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
// Paths within the bootstrap FS which for general data.
|
|
|
|
const (
|
2022-10-15 16:41:07 +00:00
|
|
|
hostNamePath = "hostname"
|
2022-10-15 14:28:03 +00:00
|
|
|
)
|
2021-04-20 21:31:37 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
// Bootstrap is used for accessing all information contained within a
|
|
|
|
// bootstrap.tgz file.
|
|
|
|
//
|
|
|
|
// An instance of Bootstrap is read-only, the creator sub-package should be used
|
|
|
|
// to create new instances.
|
|
|
|
type Bootstrap struct {
|
|
|
|
Hosts map[string]Host
|
|
|
|
HostName string
|
|
|
|
|
|
|
|
NebulaCertsCACert string
|
|
|
|
NebulaCertsHostCert string
|
|
|
|
NebulaCertsHostKey string
|
|
|
|
|
|
|
|
GarageRPCSecret string
|
|
|
|
GarageGlobalBucketS3APICredentials garage.S3APICredentials
|
|
|
|
}
|
2021-04-20 21:31:37 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
// FromFS loads a Boostrap instance from the given fs.FS, which presumably
|
|
|
|
// represents the file structure of a bootstrap.tgz file.
|
|
|
|
func FromFS(bootstrapFS fs.FS) (Bootstrap, error) {
|
2021-04-20 21:31:37 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
var (
|
|
|
|
b Bootstrap
|
|
|
|
err error
|
|
|
|
)
|
2021-04-20 21:31:37 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
if b.Hosts, err = loadHosts(bootstrapFS); err != nil {
|
|
|
|
return Bootstrap{}, fmt.Errorf("loading hosts info from fs: %w", err)
|
2021-04-20 21:31:37 +00:00
|
|
|
}
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
if err = yamlutil.LoadYamlFSFile(
|
|
|
|
&b.GarageGlobalBucketS3APICredentials,
|
|
|
|
bootstrapFS,
|
2022-10-15 16:41:07 +00:00
|
|
|
garageGlobalBucketKeyYmlPath,
|
2022-10-15 14:28:03 +00:00
|
|
|
); err != nil {
|
|
|
|
return Bootstrap{}, fmt.Errorf("loading %q from fs: %w", b.GarageGlobalBucketS3APICredentials, err)
|
|
|
|
}
|
2022-10-11 19:24:53 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
filesToLoadAsString := []struct {
|
|
|
|
into *string
|
|
|
|
path string
|
2022-10-11 19:24:53 +00:00
|
|
|
}{
|
2022-10-15 16:41:07 +00:00
|
|
|
{&b.HostName, hostNamePath},
|
|
|
|
{&b.NebulaCertsCACert, nebulaCertsCACertPath},
|
|
|
|
{&b.NebulaCertsHostCert, nebulaCertsHostCertPath},
|
|
|
|
{&b.NebulaCertsHostKey, nebulaCertsHostKeyPath},
|
|
|
|
{&b.GarageRPCSecret, garageRPCSecretPath},
|
2022-10-11 19:24:53 +00:00
|
|
|
}
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
for _, f := range filesToLoadAsString {
|
|
|
|
body, err := fs.ReadFile(bootstrapFS, f.path)
|
|
|
|
if err != nil {
|
|
|
|
return Bootstrap{}, fmt.Errorf("loading %q from fs: %w", f.path, err)
|
|
|
|
}
|
|
|
|
*f.into = string(body)
|
|
|
|
}
|
2022-10-11 19:24:53 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
// TODO confirm if this is necessary
|
|
|
|
b.GarageRPCSecret = strings.TrimSpace(b.GarageRPCSecret)
|
2022-10-11 19:24:53 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
return b, nil
|
2022-10-11 19:24:53 +00:00
|
|
|
}
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
// FromReader reads a bootstrap.tgz file from the given io.Reader.
|
|
|
|
func FromReader(r io.Reader) (Bootstrap, error) {
|
2022-10-11 19:24:53 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
fs, err := tarutil.FSFromReader(r)
|
2022-10-11 19:24:53 +00:00
|
|
|
if err != nil {
|
2022-10-15 14:28:03 +00:00
|
|
|
return Bootstrap{}, fmt.Errorf("reading bootstrap.tgz: %w", err)
|
2022-10-11 19:24:53 +00:00
|
|
|
}
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
return FromFS(fs)
|
2022-10-11 19:24:53 +00:00
|
|
|
}
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
// FromFile reads a bootstrap.tgz from a file at the given path.
|
|
|
|
func FromFile(path string) (Bootstrap, error) {
|
2022-10-11 19:24:53 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
f, err := os.Open(path)
|
2022-10-11 19:24:53 +00:00
|
|
|
if err != nil {
|
2022-10-15 14:28:03 +00:00
|
|
|
return Bootstrap{}, fmt.Errorf("opening file: %w", err)
|
2022-10-11 19:24:53 +00:00
|
|
|
}
|
2022-10-15 14:28:03 +00:00
|
|
|
defer f.Close()
|
2022-10-11 19:24:53 +00:00
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
return FromReader(f)
|
|
|
|
}
|
2022-10-11 19:24:53 +00:00
|
|
|
|
2022-10-15 16:41:07 +00:00
|
|
|
// WriteTo writes the Bootstrap as a new bootstrap.tgz to the given io.Writer.
|
|
|
|
func (b Bootstrap) WriteTo(into io.Writer) error {
|
|
|
|
|
|
|
|
w := tarutil.NewTGZWriter(into)
|
|
|
|
|
|
|
|
filesToWriteAsString := []struct {
|
|
|
|
value string
|
|
|
|
path string
|
|
|
|
}{
|
|
|
|
{b.HostName, hostNamePath},
|
|
|
|
{b.NebulaCertsCACert, nebulaCertsCACertPath},
|
|
|
|
{b.NebulaCertsHostCert, nebulaCertsHostCertPath},
|
|
|
|
{b.NebulaCertsHostKey, nebulaCertsHostKeyPath},
|
|
|
|
{b.GarageRPCSecret, garageRPCSecretPath},
|
|
|
|
}
|
|
|
|
|
|
|
|
for _, f := range filesToWriteAsString {
|
|
|
|
w.WriteFileBytes(f.path, []byte(f.value))
|
|
|
|
}
|
|
|
|
|
|
|
|
garageGlobalBucketKeyB, err := yaml.Marshal(b.GarageGlobalBucketS3APICredentials)
|
|
|
|
if err != nil {
|
|
|
|
return fmt.Errorf("yaml encoding garage global bucket creds: %w", err)
|
|
|
|
}
|
|
|
|
|
|
|
|
w.WriteFileBytes(garageGlobalBucketKeyYmlPath, garageGlobalBucketKeyB)
|
|
|
|
|
|
|
|
for _, host := range b.Hosts {
|
|
|
|
|
|
|
|
hostB, err := yaml.Marshal(host)
|
|
|
|
if err != nil {
|
|
|
|
return fmt.Errorf("yaml encoding host %#v: %w", host, err)
|
|
|
|
}
|
|
|
|
|
|
|
|
path := filepath.Join(hostsDirPath, host.Name+".yml")
|
|
|
|
|
|
|
|
w.WriteFileBytes(path, hostB)
|
|
|
|
}
|
|
|
|
|
|
|
|
return w.Close()
|
|
|
|
}
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
// ThisHost is a shortcut for b.Hosts[b.HostName], but will panic if the
|
|
|
|
// HostName isn't found in the Hosts map.
|
|
|
|
func (b Bootstrap) ThisHost() Host {
|
|
|
|
|
|
|
|
host, ok := b.Hosts[b.HostName]
|
|
|
|
if !ok {
|
|
|
|
panic(fmt.Sprintf("hostname %q not defined in bootstrap's hosts", b.HostName))
|
2022-10-11 19:24:53 +00:00
|
|
|
}
|
|
|
|
|
2022-10-15 14:28:03 +00:00
|
|
|
return host
|
2022-10-11 19:24:53 +00:00
|
|
|
}
|
2022-10-15 16:41:07 +00:00
|
|
|
|
|
|
|
// Hash returns a deterministic hash of the given hosts map.
|
|
|
|
func HostsHash(hostsMap map[string]Host) ([]byte, error) {
|
|
|
|
|
|
|
|
hosts := make([]Host, 0, len(hostsMap))
|
|
|
|
for _, host := range hostsMap {
|
|
|
|
hosts = append(hosts, host)
|
|
|
|
}
|
|
|
|
|
|
|
|
sort.Slice(hosts, func(i, j int) bool { return hosts[i].Name < hosts[j].Name })
|
|
|
|
|
|
|
|
h := sha512.New()
|
|
|
|
|
|
|
|
if err := yaml.NewEncoder(h).Encode(hosts); err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
|
|
|
|
return h.Sum(nil), nil
|
|
|
|
}
|
|
|
|
|
|
|
|
// WithHosts returns a copy of the Bootstrap with the given set of Hosts applied
|
|
|
|
// to it. It will _not_ overwrite the Host for _this_ host, however.
|
|
|
|
func (b Bootstrap) WithHosts(hosts map[string]Host) Bootstrap {
|
|
|
|
|
|
|
|
hostsCopy := make(map[string]Host, len(hosts))
|
|
|
|
|
|
|
|
for name, host := range hosts {
|
|
|
|
hostsCopy[name] = host
|
|
|
|
}
|
|
|
|
|
|
|
|
hostsCopy[b.HostName] = b.ThisHost()
|
|
|
|
|
|
|
|
b.Hosts = hostsCopy
|
|
|
|
return b
|
|
|
|
}
|