1
0

start.go 8.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330
  1. package main
  2. import (
  3. "log"
  4. "net/http"
  5. "os"
  6. "runtime"
  7. "strconv"
  8. "strings"
  9. "time"
  10. "imuslab.com/zoraxy/mod/access"
  11. "imuslab.com/zoraxy/mod/acme"
  12. "imuslab.com/zoraxy/mod/auth"
  13. "imuslab.com/zoraxy/mod/auth/sso"
  14. "imuslab.com/zoraxy/mod/database"
  15. "imuslab.com/zoraxy/mod/dockerux"
  16. "imuslab.com/zoraxy/mod/dynamicproxy/loadbalance"
  17. "imuslab.com/zoraxy/mod/dynamicproxy/redirection"
  18. "imuslab.com/zoraxy/mod/forwardproxy"
  19. "imuslab.com/zoraxy/mod/ganserv"
  20. "imuslab.com/zoraxy/mod/geodb"
  21. "imuslab.com/zoraxy/mod/info/logger"
  22. "imuslab.com/zoraxy/mod/info/logviewer"
  23. "imuslab.com/zoraxy/mod/mdns"
  24. "imuslab.com/zoraxy/mod/netstat"
  25. "imuslab.com/zoraxy/mod/pathrule"
  26. "imuslab.com/zoraxy/mod/sshprox"
  27. "imuslab.com/zoraxy/mod/statistic"
  28. "imuslab.com/zoraxy/mod/statistic/analytic"
  29. "imuslab.com/zoraxy/mod/streamproxy"
  30. "imuslab.com/zoraxy/mod/tlscert"
  31. "imuslab.com/zoraxy/mod/webserv"
  32. )
  33. /*
  34. Startup Sequence
  35. This function starts the startup sequence of all
  36. required modules. Their startup sequences are inter-dependent
  37. and must be started in a specific order.
  38. Don't touch this function unless you know what you are doing
  39. */
  40. var (
  41. /*
  42. MDNS related
  43. */
  44. previousmdnsScanResults = []*mdns.NetworkHost{}
  45. mdnsTickerStop chan bool
  46. )
  47. func startupSequence() {
  48. //Start a system wide logger and log viewer
  49. l, err := logger.NewLogger("zr", "./log")
  50. if err == nil {
  51. SystemWideLogger = l
  52. } else {
  53. panic(err)
  54. }
  55. LogViewer = logviewer.NewLogViewer(&logviewer.ViewerOption{
  56. RootFolder: "./log",
  57. Extension: ".log",
  58. })
  59. //Create database
  60. db, err := database.NewDatabase("sys.db", false)
  61. if err != nil {
  62. log.Fatal(err)
  63. }
  64. sysdb = db
  65. //Create tables for the database
  66. sysdb.NewTable("settings")
  67. //Create tmp folder and conf folder
  68. os.MkdirAll("./tmp", 0775)
  69. os.MkdirAll("./conf/proxy/", 0775)
  70. //Create an auth agent
  71. sessionKey, err := auth.GetSessionKey(sysdb, SystemWideLogger)
  72. if err != nil {
  73. log.Fatal(err)
  74. }
  75. authAgent = auth.NewAuthenticationAgent(name, []byte(sessionKey), sysdb, true, SystemWideLogger, func(w http.ResponseWriter, r *http.Request) {
  76. //Not logged in. Redirecting to login page
  77. http.Redirect(w, r, ppf("/login.html"), http.StatusTemporaryRedirect)
  78. })
  79. //Create a TLS certificate manager
  80. tlsCertManager, err = tlscert.NewManager("./conf/certs", development, SystemWideLogger)
  81. if err != nil {
  82. panic(err)
  83. }
  84. //Create a redirection rule table
  85. db.NewTable("redirect")
  86. redirectAllowRegexp := false
  87. db.Read("redirect", "regex", &redirectAllowRegexp)
  88. redirectTable, err = redirection.NewRuleTable("./conf/redirect", redirectAllowRegexp, SystemWideLogger)
  89. if err != nil {
  90. panic(err)
  91. }
  92. //Create a geodb store
  93. geodbStore, err = geodb.NewGeoDb(sysdb, &geodb.StoreOptions{
  94. AllowSlowIpv4LookUp: !*enableHighSpeedGeoIPLookup,
  95. AllowSloeIpv6Lookup: !*enableHighSpeedGeoIPLookup,
  96. })
  97. if err != nil {
  98. panic(err)
  99. }
  100. //Create a load balancer
  101. loadBalancer = loadbalance.NewLoadBalancer(&loadbalance.Options{
  102. SystemUUID: nodeUUID,
  103. Geodb: geodbStore,
  104. Logger: SystemWideLogger,
  105. })
  106. //Create the access controller
  107. accessController, err = access.NewAccessController(&access.Options{
  108. Database: sysdb,
  109. GeoDB: geodbStore,
  110. ConfigFolder: "./conf/access",
  111. })
  112. if err != nil {
  113. panic(err)
  114. }
  115. //Create an SSO handler
  116. ssoHandler, err = sso.NewSSOHandler(&sso.SSOConfig{
  117. SystemUUID: nodeUUID,
  118. PortalServerPort: 5488,
  119. AuthURL: "http://auth.localhost",
  120. Database: sysdb,
  121. Logger: SystemWideLogger,
  122. })
  123. if err != nil {
  124. log.Fatal(err)
  125. }
  126. //Restore the SSO handler to previous state before shutdown
  127. ssoHandler.RestorePreviousRunningState()
  128. //Create a statistic collector
  129. statisticCollector, err = statistic.NewStatisticCollector(statistic.CollectorOption{
  130. Database: sysdb,
  131. })
  132. if err != nil {
  133. panic(err)
  134. }
  135. //Start the static web server
  136. staticWebServer = webserv.NewWebServer(&webserv.WebServerOptions{
  137. Sysdb: sysdb,
  138. Port: "5487", //Default Port
  139. WebRoot: *staticWebServerRoot,
  140. EnableDirectoryListing: true,
  141. EnableWebDirManager: *allowWebFileManager,
  142. Logger: SystemWideLogger,
  143. })
  144. //Restore the web server to previous shutdown state
  145. staticWebServer.RestorePreviousState()
  146. //Create a netstat buffer
  147. netstatBuffers, err = netstat.NewNetStatBuffer(300, SystemWideLogger)
  148. if err != nil {
  149. SystemWideLogger.PrintAndLog("Network", "Failed to load network statistic info", err)
  150. panic(err)
  151. }
  152. /*
  153. Path Rules
  154. This section of starutp script start the path rules where
  155. user can define their own routing logics
  156. */
  157. pathRuleHandler = pathrule.NewPathRuleHandler(&pathrule.Options{
  158. Enabled: false,
  159. ConfigFolder: "./conf/rules/pathrules",
  160. })
  161. /*
  162. MDNS Discovery Service
  163. This discover nearby ArozOS Nodes or other services
  164. that provide mDNS discovery with domain (e.g. Synology NAS)
  165. */
  166. if *allowMdnsScanning {
  167. portInt, err := strconv.Atoi(strings.Split(*webUIPort, ":")[1])
  168. if err != nil {
  169. portInt = 8000
  170. }
  171. hostName := *mdnsName
  172. if hostName == "" {
  173. hostName = "zoraxy_" + nodeUUID
  174. } else {
  175. //Trim off the suffix
  176. hostName = strings.TrimSuffix(hostName, ".local")
  177. }
  178. mdnsScanner, err = mdns.NewMDNS(mdns.NetworkHost{
  179. HostName: hostName,
  180. Port: portInt,
  181. Domain: "zoraxy.aroz.org",
  182. Model: "Network Gateway",
  183. UUID: nodeUUID,
  184. Vendor: "imuslab.com",
  185. BuildVersion: version,
  186. }, "")
  187. if err != nil {
  188. SystemWideLogger.Println("Unable to startup mDNS service. Disabling mDNS services")
  189. } else {
  190. //Start initial scanning
  191. go func() {
  192. hosts := mdnsScanner.Scan(30, "")
  193. previousmdnsScanResults = hosts
  194. SystemWideLogger.Println("mDNS Startup scan completed")
  195. }()
  196. //Create a ticker to update mDNS results every 5 minutes
  197. ticker := time.NewTicker(15 * time.Minute)
  198. stopChan := make(chan bool)
  199. go func() {
  200. for {
  201. select {
  202. case <-stopChan:
  203. ticker.Stop()
  204. case <-ticker.C:
  205. hosts := mdnsScanner.Scan(30, "")
  206. previousmdnsScanResults = hosts
  207. SystemWideLogger.Println("mDNS scan result updated")
  208. }
  209. }
  210. }()
  211. mdnsTickerStop = stopChan
  212. }
  213. }
  214. /*
  215. Global Area Network
  216. Require zerotier token to work
  217. */
  218. usingZtAuthToken := *ztAuthToken
  219. if usingZtAuthToken == "" {
  220. usingZtAuthToken, err = ganserv.TryLoadorAskUserForAuthkey()
  221. if err != nil {
  222. SystemWideLogger.Println("Failed to load ZeroTier controller API authtoken")
  223. }
  224. }
  225. ganManager = ganserv.NewNetworkManager(&ganserv.NetworkManagerOptions{
  226. AuthToken: usingZtAuthToken,
  227. ApiPort: *ztAPIPort,
  228. Database: sysdb,
  229. })
  230. //Create WebSSH Manager
  231. webSshManager = sshprox.NewSSHProxyManager()
  232. //Create TCP Proxy Manager
  233. streamProxyManager, err = streamproxy.NewStreamProxy(&streamproxy.Options{
  234. AccessControlHandler: accessController.DefaultAccessRule.AllowConnectionAccess,
  235. ConfigStore: "./conf/streamproxy",
  236. Logger: SystemWideLogger,
  237. })
  238. if err != nil {
  239. panic(err)
  240. }
  241. //Create WoL MAC storage table
  242. sysdb.NewTable("wolmac")
  243. //Create an email sender if SMTP config exists
  244. sysdb.NewTable("smtp")
  245. EmailSender = loadSMTPConfig()
  246. //Create an analytic loader
  247. AnalyticLoader = analytic.NewDataLoader(sysdb, statisticCollector)
  248. //Create basic forward proxy
  249. sysdb.NewTable("fwdproxy")
  250. fwdProxyEnabled := false
  251. fwdProxyPort := 5587
  252. sysdb.Read("fwdproxy", "port", &fwdProxyPort)
  253. sysdb.Read("fwdproxy", "enabled", &fwdProxyEnabled)
  254. forwardProxy = forwardproxy.NewForwardProxy(sysdb, fwdProxyPort, SystemWideLogger)
  255. if fwdProxyEnabled {
  256. SystemWideLogger.PrintAndLog("Forward Proxy", "HTTP Forward Proxy Listening on :"+strconv.Itoa(forwardProxy.Port), nil)
  257. forwardProxy.Start()
  258. }
  259. /*
  260. ACME API
  261. Obtaining certificates from ACME Server
  262. */
  263. //Create a table just to store acme related preferences
  264. sysdb.NewTable("acmepref")
  265. acmeHandler = initACME()
  266. acmeAutoRenewer, err = acme.NewAutoRenewer(
  267. "./conf/acme_conf.json",
  268. "./conf/certs/",
  269. int64(*acmeAutoRenewInterval),
  270. *acmeCertAutoRenewDays,
  271. acmeHandler,
  272. SystemWideLogger,
  273. )
  274. if err != nil {
  275. log.Fatal(err)
  276. }
  277. /* Docker UX Optimizer */
  278. if runtime.GOOS == "windows" && *runningInDocker {
  279. SystemWideLogger.PrintAndLog("warning", "Invalid start flag combination: docker=true && runtime.GOOS == windows. Running in docker UX development mode.", nil)
  280. }
  281. DockerUXOptimizer = dockerux.NewDockerOptimizer(*runningInDocker, SystemWideLogger)
  282. }
  283. // This sequence start after everything is initialized
  284. func finalSequence() {
  285. //Start ACME renew agent
  286. acmeRegisterSpecialRoutingRule()
  287. //Inject routing rules
  288. registerBuildInRoutingRules()
  289. }