1
0

start.go 8.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323
  1. package main
  2. import (
  3. "log"
  4. "net/http"
  5. "os"
  6. "runtime"
  7. "strconv"
  8. "strings"
  9. "time"
  10. "imuslab.com/zoraxy/mod/access"
  11. "imuslab.com/zoraxy/mod/acme"
  12. "imuslab.com/zoraxy/mod/auth"
  13. "imuslab.com/zoraxy/mod/auth/sso"
  14. "imuslab.com/zoraxy/mod/database"
  15. "imuslab.com/zoraxy/mod/dockerux"
  16. "imuslab.com/zoraxy/mod/dynamicproxy/loadbalance"
  17. "imuslab.com/zoraxy/mod/dynamicproxy/redirection"
  18. "imuslab.com/zoraxy/mod/forwardproxy"
  19. "imuslab.com/zoraxy/mod/ganserv"
  20. "imuslab.com/zoraxy/mod/geodb"
  21. "imuslab.com/zoraxy/mod/info/logger"
  22. "imuslab.com/zoraxy/mod/info/logviewer"
  23. "imuslab.com/zoraxy/mod/mdns"
  24. "imuslab.com/zoraxy/mod/netstat"
  25. "imuslab.com/zoraxy/mod/pathrule"
  26. "imuslab.com/zoraxy/mod/sshprox"
  27. "imuslab.com/zoraxy/mod/statistic"
  28. "imuslab.com/zoraxy/mod/statistic/analytic"
  29. "imuslab.com/zoraxy/mod/streamproxy"
  30. "imuslab.com/zoraxy/mod/tlscert"
  31. "imuslab.com/zoraxy/mod/webserv"
  32. )
  33. /*
  34. Startup Sequence
  35. This function starts the startup sequence of all
  36. required modules
  37. */
  38. var (
  39. /*
  40. MDNS related
  41. */
  42. previousmdnsScanResults = []*mdns.NetworkHost{}
  43. mdnsTickerStop chan bool
  44. )
  45. func startupSequence() {
  46. //Start a system wide logger and log viewer
  47. l, err := logger.NewLogger("zr", "./log")
  48. if err == nil {
  49. SystemWideLogger = l
  50. } else {
  51. panic(err)
  52. }
  53. LogViewer = logviewer.NewLogViewer(&logviewer.ViewerOption{
  54. RootFolder: "./log",
  55. Extension: ".log",
  56. })
  57. //Create database
  58. db, err := database.NewDatabase("sys.db", false)
  59. if err != nil {
  60. log.Fatal(err)
  61. }
  62. sysdb = db
  63. //Create tables for the database
  64. sysdb.NewTable("settings")
  65. //Create tmp folder and conf folder
  66. os.MkdirAll("./tmp", 0775)
  67. os.MkdirAll("./conf/proxy/", 0775)
  68. //Create an auth agent
  69. sessionKey, err := auth.GetSessionKey(sysdb, SystemWideLogger)
  70. if err != nil {
  71. log.Fatal(err)
  72. }
  73. authAgent = auth.NewAuthenticationAgent(name, []byte(sessionKey), sysdb, true, SystemWideLogger, func(w http.ResponseWriter, r *http.Request) {
  74. //Not logged in. Redirecting to login page
  75. http.Redirect(w, r, ppf("/login.html"), http.StatusTemporaryRedirect)
  76. })
  77. //Create a TLS certificate manager
  78. tlsCertManager, err = tlscert.NewManager("./conf/certs", development, SystemWideLogger)
  79. if err != nil {
  80. panic(err)
  81. }
  82. //Create a redirection rule table
  83. db.NewTable("redirect")
  84. redirectAllowRegexp := false
  85. db.Read("redirect", "regex", &redirectAllowRegexp)
  86. redirectTable, err = redirection.NewRuleTable("./conf/redirect", redirectAllowRegexp, SystemWideLogger)
  87. if err != nil {
  88. panic(err)
  89. }
  90. //Create a geodb store
  91. geodbStore, err = geodb.NewGeoDb(sysdb, &geodb.StoreOptions{
  92. AllowSlowIpv4LookUp: !*enableHighSpeedGeoIPLookup,
  93. AllowSloeIpv6Lookup: !*enableHighSpeedGeoIPLookup,
  94. })
  95. if err != nil {
  96. panic(err)
  97. }
  98. //Create a load balancer
  99. loadBalancer = loadbalance.NewLoadBalancer(&loadbalance.Options{
  100. SystemUUID: nodeUUID,
  101. Geodb: geodbStore,
  102. Logger: SystemWideLogger,
  103. })
  104. //Create the access controller
  105. accessController, err = access.NewAccessController(&access.Options{
  106. Database: sysdb,
  107. GeoDB: geodbStore,
  108. ConfigFolder: "./conf/access",
  109. })
  110. if err != nil {
  111. panic(err)
  112. }
  113. //Create a statistic collector
  114. statisticCollector, err = statistic.NewStatisticCollector(statistic.CollectorOption{
  115. Database: sysdb,
  116. })
  117. if err != nil {
  118. panic(err)
  119. }
  120. //Start the static web server
  121. staticWebServer = webserv.NewWebServer(&webserv.WebServerOptions{
  122. Sysdb: sysdb,
  123. Port: "5487", //Default Port
  124. WebRoot: *staticWebServerRoot,
  125. EnableDirectoryListing: true,
  126. EnableWebDirManager: *allowWebFileManager,
  127. Logger: SystemWideLogger,
  128. })
  129. //Restore the web server to previous shutdown state
  130. staticWebServer.RestorePreviousState()
  131. //Create a netstat buffer
  132. netstatBuffers, err = netstat.NewNetStatBuffer(300, SystemWideLogger)
  133. if err != nil {
  134. SystemWideLogger.PrintAndLog("Network", "Failed to load network statistic info", err)
  135. panic(err)
  136. }
  137. /*
  138. Path Rules
  139. This section of starutp script start the path rules where
  140. user can define their own routing logics
  141. */
  142. pathRuleHandler = pathrule.NewPathRuleHandler(&pathrule.Options{
  143. Enabled: false,
  144. ConfigFolder: "./conf/rules/pathrules",
  145. })
  146. /*
  147. MDNS Discovery Service
  148. This discover nearby ArozOS Nodes or other services
  149. that provide mDNS discovery with domain (e.g. Synology NAS)
  150. */
  151. if *allowMdnsScanning {
  152. portInt, err := strconv.Atoi(strings.Split(*webUIPort, ":")[1])
  153. if err != nil {
  154. portInt = 8000
  155. }
  156. hostName := *mdnsName
  157. if hostName == "" {
  158. hostName = "zoraxy_" + nodeUUID
  159. } else {
  160. //Trim off the suffix
  161. hostName = strings.TrimSuffix(hostName, ".local")
  162. }
  163. mdnsScanner, err = mdns.NewMDNS(mdns.NetworkHost{
  164. HostName: hostName,
  165. Port: portInt,
  166. Domain: "zoraxy.arozos.com",
  167. Model: "Network Gateway",
  168. UUID: nodeUUID,
  169. Vendor: "imuslab.com",
  170. BuildVersion: version,
  171. }, "")
  172. if err != nil {
  173. SystemWideLogger.Println("Unable to startup mDNS service. Disabling mDNS services")
  174. } else {
  175. //Start initial scanning
  176. go func() {
  177. hosts := mdnsScanner.Scan(30, "")
  178. previousmdnsScanResults = hosts
  179. SystemWideLogger.Println("mDNS Startup scan completed")
  180. }()
  181. //Create a ticker to update mDNS results every 5 minutes
  182. ticker := time.NewTicker(15 * time.Minute)
  183. stopChan := make(chan bool)
  184. go func() {
  185. for {
  186. select {
  187. case <-stopChan:
  188. ticker.Stop()
  189. case <-ticker.C:
  190. hosts := mdnsScanner.Scan(30, "")
  191. previousmdnsScanResults = hosts
  192. SystemWideLogger.Println("mDNS scan result updated")
  193. }
  194. }
  195. }()
  196. mdnsTickerStop = stopChan
  197. }
  198. }
  199. /*
  200. Global Area Network
  201. Require zerotier token to work
  202. */
  203. usingZtAuthToken := *ztAuthToken
  204. if usingZtAuthToken == "" {
  205. usingZtAuthToken, err = ganserv.TryLoadorAskUserForAuthkey()
  206. if err != nil {
  207. SystemWideLogger.Println("Failed to load ZeroTier controller API authtoken")
  208. }
  209. }
  210. ganManager = ganserv.NewNetworkManager(&ganserv.NetworkManagerOptions{
  211. AuthToken: usingZtAuthToken,
  212. ApiPort: *ztAPIPort,
  213. Database: sysdb,
  214. })
  215. //Create WebSSH Manager
  216. webSshManager = sshprox.NewSSHProxyManager()
  217. //Create TCP Proxy Manager
  218. streamProxyManager = streamproxy.NewStreamProxy(&streamproxy.Options{
  219. Database: sysdb,
  220. AccessControlHandler: accessController.DefaultAccessRule.AllowConnectionAccess,
  221. })
  222. //Create WoL MAC storage table
  223. sysdb.NewTable("wolmac")
  224. //Create an email sender if SMTP config exists
  225. sysdb.NewTable("smtp")
  226. EmailSender = loadSMTPConfig()
  227. //Create an analytic loader
  228. AnalyticLoader = analytic.NewDataLoader(sysdb, statisticCollector)
  229. //Create basic forward proxy
  230. sysdb.NewTable("fwdproxy")
  231. fwdProxyEnabled := false
  232. fwdProxyPort := 5587
  233. sysdb.Read("fwdproxy", "port", &fwdProxyPort)
  234. sysdb.Read("fwdproxy", "enabled", &fwdProxyEnabled)
  235. forwardProxy = forwardproxy.NewForwardProxy(sysdb, fwdProxyPort, SystemWideLogger)
  236. if fwdProxyEnabled {
  237. SystemWideLogger.PrintAndLog("Forward Proxy", "HTTP Forward Proxy Listening on :"+strconv.Itoa(forwardProxy.Port), nil)
  238. forwardProxy.Start()
  239. }
  240. /*
  241. ACME API
  242. Obtaining certificates from ACME Server
  243. */
  244. //Create a table just to store acme related preferences
  245. sysdb.NewTable("acmepref")
  246. acmeHandler = initACME()
  247. acmeAutoRenewer, err = acme.NewAutoRenewer(
  248. "./conf/acme_conf.json",
  249. "./conf/certs/",
  250. int64(*acmeAutoRenewInterval),
  251. *acmeCertAutoRenewDays,
  252. acmeHandler,
  253. SystemWideLogger,
  254. )
  255. if err != nil {
  256. log.Fatal(err)
  257. }
  258. /* Docker UX Optimizer */
  259. if runtime.GOOS == "windows" && *runningInDocker {
  260. SystemWideLogger.PrintAndLog("warning", "Invalid start flag combination: docker=true && runtime.GOOS == windows. Running in docker UX development mode.", nil)
  261. }
  262. DockerUXOptimizer = dockerux.NewDockerOptimizer(*runningInDocker, SystemWideLogger)
  263. /* Test Code */
  264. //TODO: MOVE THIS INTO DYNAMIC PROXY CORE
  265. ssoHandler, err := sso.NewSSOHandler(&sso.SSOConfig{
  266. SystemUUID: nodeUUID,
  267. PortalServerPort: 5488,
  268. AuthURL: "http://auth.localhost",
  269. Database: sysdb,
  270. Logger: SystemWideLogger,
  271. })
  272. if err != nil {
  273. log.Fatal(err)
  274. }
  275. go ssoHandler.StartSSOPortal()
  276. }
  277. // This sequence start after everything is initialized
  278. func finalSequence() {
  279. //Start ACME renew agent
  280. acmeRegisterSpecialRoutingRule()
  281. //Inject routing rules
  282. registerBuildInRoutingRules()
  283. }