2023-05-21 19:37:59 +03:00
|
|
|
package db
|
2021-02-28 00:58:09 +01:00
|
|
|
|
|
|
|
import (
|
2021-06-24 15:44:19 +02:00
|
|
|
"errors"
|
2021-02-28 00:58:09 +01:00
|
|
|
|
2023-05-21 19:37:59 +03:00
|
|
|
"github.com/juanfont/headscale/hscontrol/types"
|
2023-05-11 09:09:18 +02:00
|
|
|
"github.com/juanfont/headscale/hscontrol/util"
|
2021-08-05 18:23:02 +01:00
|
|
|
"github.com/rs/zerolog/log"
|
2021-06-24 15:44:19 +02:00
|
|
|
"gorm.io/gorm"
|
2021-02-28 00:58:09 +01:00
|
|
|
)
|
|
|
|
|
2023-05-11 09:09:18 +02:00
|
|
|
var (
|
|
|
|
ErrUserExists = errors.New("user already exists")
|
|
|
|
ErrUserNotFound = errors.New("user not found")
|
|
|
|
ErrUserStillHasNodes = errors.New("user not empty: node(s) found")
|
2021-11-04 22:15:17 +00:00
|
|
|
)
|
2021-05-09 11:12:05 -04:00
|
|
|
|
2023-05-21 19:37:59 +03:00
|
|
|
func (hsdb *HSDatabase) CreateUser(name string) (*types.User, error) {
|
2024-02-08 17:28:19 +01:00
|
|
|
return Write(hsdb.DB, func(tx *gorm.DB) (*types.User, error) {
|
|
|
|
return CreateUser(tx, name)
|
|
|
|
})
|
|
|
|
}
|
2023-07-17 13:35:05 +02:00
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
// CreateUser creates a new User. Returns error if could not be created
|
|
|
|
// or another user already exists.
|
|
|
|
func CreateUser(tx *gorm.DB, name string) (*types.User, error) {
|
2023-05-21 19:37:59 +03:00
|
|
|
err := util.CheckForFQDNRules(name)
|
2022-02-22 12:45:50 +01:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
2023-05-21 19:37:59 +03:00
|
|
|
user := types.User{}
|
2024-02-08 17:28:19 +01:00
|
|
|
if err := tx.Where("name = ?", name).First(&user).Error; err == nil {
|
2023-01-17 17:43:44 +01:00
|
|
|
return nil, ErrUserExists
|
2021-02-28 00:58:09 +01:00
|
|
|
}
|
2023-01-17 17:43:44 +01:00
|
|
|
user.Name = name
|
2024-02-08 17:28:19 +01:00
|
|
|
if err := tx.Create(&user).Error; err != nil {
|
2021-08-05 18:23:02 +01:00
|
|
|
log.Error().
|
2023-01-17 17:43:44 +01:00
|
|
|
Str("func", "CreateUser").
|
2021-08-05 18:23:02 +01:00
|
|
|
Err(err).
|
|
|
|
Msg("Could not create row")
|
2021-11-14 16:46:09 +01:00
|
|
|
|
2021-02-28 00:58:09 +01:00
|
|
|
return nil, err
|
|
|
|
}
|
2021-11-14 16:46:09 +01:00
|
|
|
|
2023-01-17 17:43:44 +01:00
|
|
|
return &user, nil
|
2021-02-28 00:58:09 +01:00
|
|
|
}
|
|
|
|
|
2023-05-11 09:09:18 +02:00
|
|
|
func (hsdb *HSDatabase) DestroyUser(name string) error {
|
2024-02-08 17:28:19 +01:00
|
|
|
return hsdb.Write(func(tx *gorm.DB) error {
|
|
|
|
return DestroyUser(tx, name)
|
|
|
|
})
|
|
|
|
}
|
2023-07-17 13:35:05 +02:00
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
// DestroyUser destroys a User. Returns error if the User does
|
|
|
|
// not exist or if there are nodes associated with it.
|
|
|
|
func DestroyUser(tx *gorm.DB, name string) error {
|
|
|
|
user, err := GetUser(tx, name)
|
2021-05-09 11:12:05 -04:00
|
|
|
if err != nil {
|
2023-01-17 17:43:44 +01:00
|
|
|
return ErrUserNotFound
|
2021-05-09 11:12:05 -04:00
|
|
|
}
|
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
nodes, err := ListNodesByUser(tx, name)
|
2021-05-09 11:12:05 -04:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2023-09-24 13:42:05 +02:00
|
|
|
if len(nodes) > 0 {
|
2023-01-17 17:43:44 +01:00
|
|
|
return ErrUserStillHasNodes
|
2021-11-13 14:01:05 -05:00
|
|
|
}
|
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
keys, err := ListPreAuthKeys(tx, name)
|
2021-11-13 14:01:05 -05:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2021-11-14 20:32:03 +01:00
|
|
|
for _, key := range keys {
|
2024-02-08 17:28:19 +01:00
|
|
|
err = DestroyPreAuthKey(tx, key)
|
2021-11-13 15:24:32 -05:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2021-05-09 11:12:05 -04:00
|
|
|
}
|
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
if result := tx.Unscoped().Delete(&user); result.Error != nil {
|
2021-10-16 11:14:37 -04:00
|
|
|
return result.Error
|
2021-05-09 11:12:05 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2023-05-11 09:09:18 +02:00
|
|
|
func (hsdb *HSDatabase) RenameUser(oldName, newName string) error {
|
2024-02-08 17:28:19 +01:00
|
|
|
return hsdb.Write(func(tx *gorm.DB) error {
|
|
|
|
return RenameUser(tx, oldName, newName)
|
|
|
|
})
|
|
|
|
}
|
2023-07-17 13:35:05 +02:00
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
// RenameUser renames a User. Returns error if the User does
|
|
|
|
// not exist or if another User exists with the new name.
|
|
|
|
func RenameUser(tx *gorm.DB, oldName, newName string) error {
|
2022-02-22 12:45:50 +01:00
|
|
|
var err error
|
2024-02-08 17:28:19 +01:00
|
|
|
oldUser, err := GetUser(tx, oldName)
|
2021-10-16 11:20:06 -04:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2023-05-21 19:37:59 +03:00
|
|
|
err = util.CheckForFQDNRules(newName)
|
2022-02-22 12:45:50 +01:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2024-02-08 17:28:19 +01:00
|
|
|
_, err = GetUser(tx, newName)
|
2021-10-16 11:20:06 -04:00
|
|
|
if err == nil {
|
2023-01-17 17:43:44 +01:00
|
|
|
return ErrUserExists
|
2021-10-16 11:20:06 -04:00
|
|
|
}
|
2023-01-17 17:43:44 +01:00
|
|
|
if !errors.Is(err, ErrUserNotFound) {
|
2021-10-16 11:20:06 -04:00
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
2023-01-17 17:43:44 +01:00
|
|
|
oldUser.Name = newName
|
2021-10-16 11:20:06 -04:00
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
if result := tx.Save(&oldUser); result.Error != nil {
|
2021-10-16 11:20:06 -04:00
|
|
|
return result.Error
|
|
|
|
}
|
|
|
|
|
2021-05-09 11:12:05 -04:00
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2023-05-21 19:37:59 +03:00
|
|
|
func (hsdb *HSDatabase) GetUser(name string) (*types.User, error) {
|
2024-02-08 17:28:19 +01:00
|
|
|
return Read(hsdb.DB, func(rx *gorm.DB) (*types.User, error) {
|
|
|
|
return GetUser(rx, name)
|
|
|
|
})
|
2023-07-17 13:35:05 +02:00
|
|
|
}
|
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
func GetUser(tx *gorm.DB, name string) (*types.User, error) {
|
2023-05-21 19:37:59 +03:00
|
|
|
user := types.User{}
|
2024-02-08 17:28:19 +01:00
|
|
|
if result := tx.First(&user, "name = ?", name); errors.Is(
|
2021-11-13 08:36:45 +00:00
|
|
|
result.Error,
|
|
|
|
gorm.ErrRecordNotFound,
|
|
|
|
) {
|
2023-01-17 17:43:44 +01:00
|
|
|
return nil, ErrUserNotFound
|
2021-02-28 00:58:09 +01:00
|
|
|
}
|
2021-11-14 16:46:09 +01:00
|
|
|
|
2023-01-17 17:43:44 +01:00
|
|
|
return &user, nil
|
2021-02-28 00:58:09 +01:00
|
|
|
}
|
|
|
|
|
2023-05-21 19:37:59 +03:00
|
|
|
func (hsdb *HSDatabase) ListUsers() ([]types.User, error) {
|
2024-02-08 17:28:19 +01:00
|
|
|
return Read(hsdb.DB, func(rx *gorm.DB) ([]types.User, error) {
|
|
|
|
return ListUsers(rx)
|
|
|
|
})
|
2023-07-17 13:35:05 +02:00
|
|
|
}
|
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
// ListUsers gets all the existing users.
|
|
|
|
func ListUsers(tx *gorm.DB) ([]types.User, error) {
|
2023-05-21 19:37:59 +03:00
|
|
|
users := []types.User{}
|
2024-02-08 17:28:19 +01:00
|
|
|
if err := tx.Find(&users).Error; err != nil {
|
2021-02-28 00:58:09 +01:00
|
|
|
return nil, err
|
|
|
|
}
|
2021-11-14 16:46:09 +01:00
|
|
|
|
2023-01-17 17:43:44 +01:00
|
|
|
return users, nil
|
2021-02-28 00:58:09 +01:00
|
|
|
}
|
|
|
|
|
2023-09-24 13:42:05 +02:00
|
|
|
// ListNodesByUser gets all the nodes in a given user.
|
2024-02-08 17:28:19 +01:00
|
|
|
func ListNodesByUser(tx *gorm.DB, name string) (types.Nodes, error) {
|
2023-05-21 19:37:59 +03:00
|
|
|
err := util.CheckForFQDNRules(name)
|
2022-02-22 12:45:50 +01:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
2024-02-08 17:28:19 +01:00
|
|
|
user, err := GetUser(tx, name)
|
2021-02-28 00:58:09 +01:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
|
2023-09-24 13:42:05 +02:00
|
|
|
nodes := types.Nodes{}
|
2024-02-08 17:28:19 +01:00
|
|
|
if err := tx.Preload("AuthKey").Preload("AuthKey.User").Preload("User").Where(&types.Node{UserID: user.ID}).Find(&nodes).Error; err != nil {
|
2021-02-28 00:58:09 +01:00
|
|
|
return nil, err
|
|
|
|
}
|
2021-11-14 16:46:09 +01:00
|
|
|
|
2023-09-24 13:42:05 +02:00
|
|
|
return nodes, nil
|
2021-02-28 00:58:09 +01:00
|
|
|
}
|
|
|
|
|
2023-09-24 13:42:05 +02:00
|
|
|
func (hsdb *HSDatabase) AssignNodeToUser(node *types.Node, username string) error {
|
2024-02-08 17:28:19 +01:00
|
|
|
return hsdb.Write(func(tx *gorm.DB) error {
|
|
|
|
return AssignNodeToUser(tx, node, username)
|
|
|
|
})
|
|
|
|
}
|
2023-07-17 13:35:05 +02:00
|
|
|
|
2024-02-08 17:28:19 +01:00
|
|
|
// AssignNodeToUser assigns a Node to a user.
|
|
|
|
func AssignNodeToUser(tx *gorm.DB, node *types.Node, username string) error {
|
2023-05-21 19:37:59 +03:00
|
|
|
err := util.CheckForFQDNRules(username)
|
2022-02-22 12:45:50 +01:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2024-02-08 17:28:19 +01:00
|
|
|
user, err := GetUser(tx, username)
|
2021-02-28 00:58:09 +01:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2023-09-24 13:42:05 +02:00
|
|
|
node.User = *user
|
2024-02-08 17:28:19 +01:00
|
|
|
if result := tx.Save(&node); result.Error != nil {
|
2022-05-02 13:47:21 +04:00
|
|
|
return result.Error
|
|
|
|
}
|
2021-11-14 16:46:09 +01:00
|
|
|
|
2021-02-28 00:58:09 +01:00
|
|
|
return nil
|
|
|
|
}
|