blob: 7549b90e99fd2639de9f928f86c2d833c6703454 [file] [log] [blame]
Jian Li091d8d22018-02-20 10:42:06 +09001/*
2 * Copyright 2018-present Open Networking Foundation
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16package org.onosproject.openstacknetworking.util;
17
Daniel Park2ff66b42018-08-01 11:52:45 +090018import com.fasterxml.jackson.core.JsonParseException;
19import com.fasterxml.jackson.core.JsonProcessingException;
20import com.fasterxml.jackson.databind.JsonMappingException;
Jian Li091d8d22018-02-20 10:42:06 +090021import com.fasterxml.jackson.databind.JsonNode;
22import com.fasterxml.jackson.databind.ObjectMapper;
Jian Li1951db72020-05-11 13:05:47 +090023import com.fasterxml.jackson.databind.node.ArrayNode;
Jian Lieb9f77d2018-02-20 11:25:45 +090024import com.fasterxml.jackson.databind.node.ObjectNode;
Daniel Parka73c2362018-09-17 17:43:25 +090025import com.google.common.base.Charsets;
Jian Li24ec59f2018-05-23 19:01:25 +090026import com.google.common.base.Strings;
Daniel Parka73c2362018-09-17 17:43:25 +090027import com.google.common.collect.Lists;
Jian Li63430202018-08-30 16:24:09 +090028import org.apache.commons.codec.binary.Hex;
Jian Li51728702019-05-17 18:38:56 +090029import org.apache.commons.lang3.StringUtils;
Jian Li6a1bcfd2020-01-30 17:41:26 +090030import org.apache.commons.net.util.SubnetUtils;
Jian Li63430202018-08-30 16:24:09 +090031import org.apache.http.HttpException;
32import org.apache.http.HttpRequest;
33import org.apache.http.HttpResponse;
34import org.apache.http.impl.io.DefaultHttpRequestParser;
35import org.apache.http.impl.io.DefaultHttpRequestWriter;
36import org.apache.http.impl.io.DefaultHttpResponseParser;
37import org.apache.http.impl.io.DefaultHttpResponseWriter;
38import org.apache.http.impl.io.HttpTransportMetricsImpl;
39import org.apache.http.impl.io.SessionInputBufferImpl;
40import org.apache.http.impl.io.SessionOutputBufferImpl;
41import org.apache.http.io.HttpMessageWriter;
Daniel Parka73c2362018-09-17 17:43:25 +090042import org.apache.sshd.client.SshClient;
43import org.apache.sshd.client.channel.ClientChannel;
44import org.apache.sshd.client.channel.ClientChannelEvent;
45import org.apache.sshd.client.future.OpenFuture;
46import org.apache.sshd.client.session.ClientSession;
47import org.apache.sshd.common.util.io.NoCloseInputStream;
Jian Li7b8c3682019-05-12 13:57:15 +090048import org.glassfish.jersey.client.authentication.HttpAuthenticationFeature;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090049import org.onlab.packet.ARP;
50import org.onlab.packet.Ethernet;
51import org.onlab.packet.Ip4Address;
Daniel Parka73c2362018-09-17 17:43:25 +090052import org.onlab.packet.IpAddress;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090053import org.onlab.packet.MacAddress;
54import org.onlab.packet.VlanId;
Jian Li7f70bb72018-07-06 23:35:30 +090055import org.onosproject.cfg.ConfigProperty;
Jian Li1064e4f2018-05-29 16:16:53 +090056import org.onosproject.net.DeviceId;
Jian Li2d68c192018-12-13 15:52:59 +090057import org.onosproject.net.PortNumber;
Daniel Park95f73312018-07-31 15:48:34 +090058import org.onosproject.net.device.DeviceService;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090059import org.onosproject.net.flow.DefaultTrafficTreatment;
60import org.onosproject.net.flow.TrafficTreatment;
Jian Lid5727622019-09-11 11:15:16 +090061import org.onosproject.net.group.DefaultGroupKey;
62import org.onosproject.net.group.GroupKey;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090063import org.onosproject.net.packet.DefaultOutboundPacket;
64import org.onosproject.net.packet.PacketService;
Daniel Park7e8c4d82018-08-13 23:47:49 +090065import org.onosproject.openstacknetworking.api.Constants.VnicType;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090066import org.onosproject.openstacknetworking.api.ExternalPeerRouter;
Jian Lia171a432018-06-11 11:52:11 +090067import org.onosproject.openstacknetworking.api.InstancePort;
Jian Li7b8c3682019-05-12 13:57:15 +090068import org.onosproject.openstacknetworking.api.OpenstackHaService;
SONA Project6bc5c4a2018-12-14 23:49:52 +090069import org.onosproject.openstacknetworking.api.OpenstackNetwork.Type;
Jian Li24ec59f2018-05-23 19:01:25 +090070import org.onosproject.openstacknetworking.api.OpenstackNetworkService;
Jian Li7f70bb72018-07-06 23:35:30 +090071import org.onosproject.openstacknetworking.api.OpenstackRouterAdminService;
Jian Liebde74d2018-11-14 00:18:57 +090072import org.onosproject.openstacknetworking.api.OpenstackRouterService;
Jian Liec5c32b2018-07-13 14:28:58 +090073import org.onosproject.openstacknetworking.impl.DefaultInstancePort;
Jian Li51b844c2018-05-31 10:59:03 +090074import org.onosproject.openstacknode.api.OpenstackAuth;
75import org.onosproject.openstacknode.api.OpenstackAuth.Perspective;
Jian Li1064e4f2018-05-29 16:16:53 +090076import org.onosproject.openstacknode.api.OpenstackNode;
Daniel Parka73c2362018-09-17 17:43:25 +090077import org.onosproject.openstacknode.api.OpenstackSshAuth;
Jian Li51728702019-05-17 18:38:56 +090078import org.onosproject.ovsdb.controller.OvsdbClientService;
79import org.onosproject.ovsdb.controller.OvsdbController;
80import org.onosproject.ovsdb.controller.OvsdbNodeId;
Jian Li51b844c2018-05-31 10:59:03 +090081import org.openstack4j.api.OSClient;
82import org.openstack4j.api.client.IOSClientBuilder;
83import org.openstack4j.api.exceptions.AuthenticationException;
84import org.openstack4j.api.types.Facing;
85import org.openstack4j.core.transport.Config;
Jian Li091d8d22018-02-20 10:42:06 +090086import org.openstack4j.core.transport.ObjectMapperSingleton;
87import org.openstack4j.model.ModelEntity;
Jian Li51b844c2018-05-31 10:59:03 +090088import org.openstack4j.model.common.Identifier;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090089import org.openstack4j.model.network.ExternalGateway;
Jian Li40f032a2019-10-02 20:36:09 +090090import org.openstack4j.model.network.IP;
Jian Li24ec59f2018-05-23 19:01:25 +090091import org.openstack4j.model.network.NetFloatingIP;
92import org.openstack4j.model.network.Network;
Jian Lia171a432018-06-11 11:52:11 +090093import org.openstack4j.model.network.Port;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090094import org.openstack4j.model.network.Router;
Jian Li0b564282018-06-20 00:50:53 +090095import org.openstack4j.model.network.RouterInterface;
Jian Li40f032a2019-10-02 20:36:09 +090096import org.openstack4j.model.network.SecurityGroup;
Daniel Park4fa1f5e2018-10-17 12:41:52 +090097import org.openstack4j.model.network.Subnet;
Jian Li51b844c2018-05-31 10:59:03 +090098import org.openstack4j.openstack.OSFactory;
Jian Li1951db72020-05-11 13:05:47 +090099import org.openstack4j.openstack.networking.domain.NeutronPort;
Jian Li0b564282018-06-20 00:50:53 +0900100import org.openstack4j.openstack.networking.domain.NeutronRouterInterface;
Jian Li091d8d22018-02-20 10:42:06 +0900101import org.slf4j.Logger;
102import org.slf4j.LoggerFactory;
103
Jian Li63430202018-08-30 16:24:09 +0900104import javax.crypto.Mac;
105import javax.crypto.spec.SecretKeySpec;
Jian Li51b844c2018-05-31 10:59:03 +0900106import javax.net.ssl.HostnameVerifier;
107import javax.net.ssl.HttpsURLConnection;
108import javax.net.ssl.SSLContext;
109import javax.net.ssl.TrustManager;
110import javax.net.ssl.X509TrustManager;
Jian Li7b8c3682019-05-12 13:57:15 +0900111import javax.ws.rs.client.Client;
112import javax.ws.rs.client.ClientBuilder;
113import javax.ws.rs.client.Entity;
114import javax.ws.rs.client.WebTarget;
115import javax.ws.rs.core.Response;
Jian Li63430202018-08-30 16:24:09 +0900116import java.io.ByteArrayInputStream;
117import java.io.ByteArrayOutputStream;
Jian Li0b564282018-06-20 00:50:53 +0900118import java.io.IOException;
Jian Li091d8d22018-02-20 10:42:06 +0900119import java.io.InputStream;
Daniel Parka73c2362018-09-17 17:43:25 +0900120import java.io.OutputStream;
Daniel Park4fa1f5e2018-10-17 12:41:52 +0900121import java.nio.ByteBuffer;
Jian Li51b844c2018-05-31 10:59:03 +0900122import java.security.cert.X509Certificate;
Daniel Parka73c2362018-09-17 17:43:25 +0900123import java.util.Collection;
Jian Li1064e4f2018-05-29 16:16:53 +0900124import java.util.HashMap;
125import java.util.Iterator;
Jian Li40f032a2019-10-02 20:36:09 +0900126import java.util.List;
Jian Li1064e4f2018-05-29 16:16:53 +0900127import java.util.Map;
Daniel Park95f73312018-07-31 15:48:34 +0900128import java.util.Objects;
Jian Li7f70bb72018-07-06 23:35:30 +0900129import java.util.Optional;
Jian Li1064e4f2018-05-29 16:16:53 +0900130import java.util.Set;
131import java.util.TreeMap;
Daniel Parka73c2362018-09-17 17:43:25 +0900132import java.util.concurrent.TimeUnit;
Jian Li40f032a2019-10-02 20:36:09 +0900133import java.util.stream.Collectors;
Jian Li091d8d22018-02-20 10:42:06 +0900134
135import static com.fasterxml.jackson.databind.SerializationFeature.INDENT_OUTPUT;
Daniel Park95f73312018-07-31 15:48:34 +0900136import static com.google.common.base.Preconditions.checkNotNull;
Jian Li7f024de2018-07-07 03:51:02 +0900137import static com.google.common.base.Strings.isNullOrEmpty;
Jian Li7b8c3682019-05-12 13:57:15 +0900138import static javax.ws.rs.core.MediaType.APPLICATION_JSON_TYPE;
139import static org.apache.commons.io.IOUtils.toInputStream;
Jian Li5ecfd1a2018-12-10 11:41:03 +0900140import static org.onlab.packet.Ip4Address.valueOf;
Daniel Park95f73312018-07-31 15:48:34 +0900141import static org.onosproject.net.AnnotationKeys.PORT_NAME;
Daniel Parka73c2362018-09-17 17:43:25 +0900142import static org.onosproject.openstacknetworking.api.Constants.DEFAULT_GATEWAY_MAC_STR;
Jian Licda74c82019-10-31 22:24:17 +0900143import static org.onosproject.openstacknetworking.api.Constants.DIRECT;
Jian Li40f032a2019-10-02 20:36:09 +0900144import static org.onosproject.openstacknetworking.api.Constants.FLOATING_IP_FORMAT;
145import static org.onosproject.openstacknetworking.api.Constants.NETWORK_FORMAT;
Jian Li7b8c3682019-05-12 13:57:15 +0900146import static org.onosproject.openstacknetworking.api.Constants.OPENSTACK_NETWORKING_REST_PATH;
Daniel Parkc4d06402018-05-28 15:57:37 +0900147import static org.onosproject.openstacknetworking.api.Constants.PCISLOT;
148import static org.onosproject.openstacknetworking.api.Constants.PCI_VENDOR_INFO;
Jian Li40f032a2019-10-02 20:36:09 +0900149import static org.onosproject.openstacknetworking.api.Constants.PORT_FORMAT;
Daniel Park7e8c4d82018-08-13 23:47:49 +0900150import static org.onosproject.openstacknetworking.api.Constants.PORT_NAME_PREFIX_VM;
151import static org.onosproject.openstacknetworking.api.Constants.PORT_NAME_VHOST_USER_PREFIX_VM;
Jian Li7b8c3682019-05-12 13:57:15 +0900152import static org.onosproject.openstacknetworking.api.Constants.REST_PASSWORD;
153import static org.onosproject.openstacknetworking.api.Constants.REST_PORT;
154import static org.onosproject.openstacknetworking.api.Constants.REST_USER;
155import static org.onosproject.openstacknetworking.api.Constants.REST_UTF8;
Jian Li40f032a2019-10-02 20:36:09 +0900156import static org.onosproject.openstacknetworking.api.Constants.ROUTER_FORMAT;
157import static org.onosproject.openstacknetworking.api.Constants.ROUTER_INTF_FORMAT;
158import static org.onosproject.openstacknetworking.api.Constants.SECURITY_GROUP_FORMAT;
159import static org.onosproject.openstacknetworking.api.Constants.SUBNET_FORMAT;
Daniel Parkec9d1132018-08-19 11:18:03 +0900160import static org.onosproject.openstacknetworking.api.Constants.UNSUPPORTED_VENDOR;
Ray Milkey9dc57392018-06-08 08:52:31 -0700161import static org.onosproject.openstacknetworking.api.Constants.portNamePrefixMap;
Jian Li0b564282018-06-20 00:50:53 +0900162import static org.openstack4j.core.transport.ObjectMapperSingleton.getContext;
Jian Li091d8d22018-02-20 10:42:06 +0900163
164/**
165 * An utility that used in openstack networking app.
166 */
Jian Lidea0fdb2018-04-02 19:02:48 +0900167public final class OpenstackNetworkingUtil {
Jian Li091d8d22018-02-20 10:42:06 +0900168
Daniel Park95985382018-07-23 11:38:07 +0900169 private static final Logger log = LoggerFactory.getLogger(OpenstackNetworkingUtil.class);
Jian Li091d8d22018-02-20 10:42:06 +0900170
Daniel Parkc4d06402018-05-28 15:57:37 +0900171 private static final int HEX_RADIX = 16;
Jian Li51b844c2018-05-31 10:59:03 +0900172 private static final String ZERO_FUNCTION_NUMBER = "0";
Daniel Parkc4d06402018-05-28 15:57:37 +0900173 private static final String PREFIX_DEVICE_NUMBER = "s";
174 private static final String PREFIX_FUNCTION_NUMBER = "f";
175
Jian Li51b844c2018-05-31 10:59:03 +0900176 // keystone endpoint related variables
177 private static final String DOMAIN_DEFAULT = "default";
178 private static final String KEYSTONE_V2 = "v2.0";
179 private static final String KEYSTONE_V3 = "v3";
Jian Li51b844c2018-05-31 10:59:03 +0900180 private static final String SSL_TYPE = "SSL";
181
Jian Li7f024de2018-07-07 03:51:02 +0900182 private static final String PROXY_MODE = "proxy";
183 private static final String BROADCAST_MODE = "broadcast";
184
Jian Licad36c72018-09-13 17:44:54 +0900185 private static final String ENABLE = "enable";
186 private static final String DISABLE = "disable";
187
Jian Li63430202018-08-30 16:24:09 +0900188 private static final int HTTP_PAYLOAD_BUFFER = 8 * 1024;
189
190 private static final String HMAC_SHA256 = "HmacSHA256";
191
Jian Li24ec59f2018-05-23 19:01:25 +0900192 private static final String ERR_FLOW = "Failed set flows for floating IP %s: ";
193
Daniel Parka73c2362018-09-17 17:43:25 +0900194 private static final String DL_DST = "dl_dst=";
195 private static final String NW_DST = "nw_dst=";
196 private static final String DEFAULT_REQUEST_STRING = "sudo ovs-appctl ofproto/trace br-int ip";
197 private static final String IN_PORT = "in_port=";
198 private static final String NW_SRC = "nw_src=";
199 private static final String COMMA = ",";
200 private static final String TUN_ID = "tun_id=";
201
Jian Li40f032a2019-10-02 20:36:09 +0900202 private static final String DEVICE_OWNER_GW = "network:router_gateway";
203 private static final String DEVICE_OWNER_IFACE = "network:router_interface";
204
205 private static final String NOT_AVAILABLE = "N/A";
206
Daniel Parka73c2362018-09-17 17:43:25 +0900207 private static final long TIMEOUT_MS = 5000;
208 private static final long WAIT_OUTPUT_STREAM_SECOND = 2;
209 private static final int SSH_PORT = 22;
210
Jian Li51728702019-05-17 18:38:56 +0900211 private static final int TAP_PORT_LENGTH = 11;
Jian Lia271b3c2019-09-03 23:10:20 +0900212 private static final int PORT_NAME_MAX_LENGTH = 15;
Jian Li51728702019-05-17 18:38:56 +0900213
Jian Li091d8d22018-02-20 10:42:06 +0900214 /**
215 * Prevents object instantiation from external.
216 */
Jian Lidea0fdb2018-04-02 19:02:48 +0900217 private OpenstackNetworkingUtil() {
Jian Li091d8d22018-02-20 10:42:06 +0900218 }
219
220 /**
221 * Interprets JSON string to corresponding openstack model entity object.
222 *
Jian Li7b8c3682019-05-12 13:57:15 +0900223 * @param inputStr JSON string
Jian Li091d8d22018-02-20 10:42:06 +0900224 * @param entityClazz openstack model entity class
225 * @return openstack model entity object
226 */
Jian Li7b8c3682019-05-12 13:57:15 +0900227 public static ModelEntity jsonToModelEntity(String inputStr, Class entityClazz) {
Jian Li091d8d22018-02-20 10:42:06 +0900228 ObjectMapper mapper = new ObjectMapper();
229 try {
Jian Li7b8c3682019-05-12 13:57:15 +0900230 InputStream input = toInputStream(inputStr, REST_UTF8);
Jian Li091d8d22018-02-20 10:42:06 +0900231 JsonNode jsonTree = mapper.enable(INDENT_OUTPUT).readTree(input);
232 log.trace(new ObjectMapper().writeValueAsString(jsonTree));
233 return ObjectMapperSingleton.getContext(entityClazz)
234 .readerFor(entityClazz)
235 .readValue(jsonTree);
236 } catch (Exception e) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900237 log.error("Exception occurred because of {}", e);
Jian Li091d8d22018-02-20 10:42:06 +0900238 throw new IllegalArgumentException();
239 }
240 }
Jian Lieb9f77d2018-02-20 11:25:45 +0900241
242 /**
243 * Converts openstack model entity object into JSON object.
244 *
245 * @param entity openstack model entity object
246 * @param entityClazz openstack model entity class
247 * @return JSON object
248 */
249 public static ObjectNode modelEntityToJson(ModelEntity entity, Class entityClazz) {
250 ObjectMapper mapper = new ObjectMapper();
251 try {
252 String strModelEntity = ObjectMapperSingleton.getContext(entityClazz)
253 .writerFor(entityClazz)
254 .writeValueAsString(entity);
255 log.trace(strModelEntity);
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900256 return (ObjectNode) mapper.readTree(strModelEntity.getBytes(Charsets.UTF_8));
Daniel Park95985382018-07-23 11:38:07 +0900257 } catch (IOException e) {
258 log.error("IOException occurred because of {}", e.toString());
Jian Lieb9f77d2018-02-20 11:25:45 +0900259 throw new IllegalStateException();
260 }
261 }
Jian Li1064e4f2018-05-29 16:16:53 +0900262
263 /**
Jian Li24ec59f2018-05-23 19:01:25 +0900264 * Obtains a floating IP associated with the given instance port.
265 *
266 * @param port instance port
267 * @param fips a collection of floating IPs
268 * @return associated floating IP
269 */
270 public static NetFloatingIP associatedFloatingIp(InstancePort port,
271 Set<NetFloatingIP> fips) {
Daniel Park2ff66b42018-08-01 11:52:45 +0900272 for (NetFloatingIP fip : fips) {
273 if (Strings.isNullOrEmpty(fip.getFixedIpAddress())) {
274 continue;
Jian Li24ec59f2018-05-23 19:01:25 +0900275 }
Daniel Park2ff66b42018-08-01 11:52:45 +0900276 if (Strings.isNullOrEmpty(fip.getFloatingIpAddress())) {
277 continue;
278 }
Jian Li6bc29d92018-10-02 13:55:05 +0900279 if (fip.getFixedIpAddress().equals(port.ipAddress().toString()) &&
280 fip.getPortId().equals(port.portId())) {
Daniel Park2ff66b42018-08-01 11:52:45 +0900281 return fip;
282 }
Jian Li24ec59f2018-05-23 19:01:25 +0900283 }
Daniel Park2ff66b42018-08-01 11:52:45 +0900284
Jian Li24ec59f2018-05-23 19:01:25 +0900285 return null;
286 }
287
288 /**
289 * Checks whether the given floating IP is associated with a VM.
290 *
291 * @param service openstack network service
292 * @param fip floating IP
293 * @return true if the given floating IP associated with a VM, false otherwise
294 */
295 public static boolean isAssociatedWithVM(OpenstackNetworkService service,
296 NetFloatingIP fip) {
297 Port osPort = service.port(fip.getPortId());
298 if (osPort == null) {
299 return false;
300 }
301
302 if (!Strings.isNullOrEmpty(osPort.getDeviceId())) {
303 Network osNet = service.network(osPort.getNetworkId());
304 if (osNet == null) {
305 final String errorFormat = ERR_FLOW + "no network(%s) exists";
306 final String error = String.format(errorFormat,
307 fip.getFloatingIpAddress(), osPort.getNetworkId());
308 throw new IllegalStateException(error);
309 }
310 return true;
311 } else {
312 return false;
313 }
314 }
315
316 /**
Jian Lia171a432018-06-11 11:52:11 +0900317 * Obtains the gateway node by instance port.
318 *
319 * @param gateways a collection of gateway nodes
320 * @param instPort instance port
321 * @return a gateway node
322 */
323 public static OpenstackNode getGwByInstancePort(Set<OpenstackNode> gateways,
324 InstancePort instPort) {
325 OpenstackNode gw = null;
326 if (instPort != null && instPort.deviceId() != null) {
327 gw = getGwByComputeDevId(gateways, instPort.deviceId());
328 }
329 return gw;
330 }
331
332 /**
Jian Li1064e4f2018-05-29 16:16:53 +0900333 * Obtains the gateway node by device in compute node. Note that the gateway
334 * node is determined by device's device identifier.
335 *
336 * @param gws a collection of gateway nodes
337 * @param deviceId device identifier
338 * @return a gateway node
339 */
Jian Li5ecfd1a2018-12-10 11:41:03 +0900340 public static OpenstackNode getGwByComputeDevId(Set<OpenstackNode> gws,
341 DeviceId deviceId) {
Jian Li1064e4f2018-05-29 16:16:53 +0900342 int numOfGw = gws.size();
343
344 if (numOfGw == 0) {
345 return null;
346 }
347
348 int gwIndex = Math.abs(deviceId.hashCode()) % numOfGw;
349
350 return getGwByIndex(gws, gwIndex);
351 }
352
Jian Li51b844c2018-05-31 10:59:03 +0900353 /**
354 * Obtains a connected openstack client.
355 *
356 * @param osNode openstack node
357 * @return a connected openstack client
358 */
359 public static OSClient getConnectedClient(OpenstackNode osNode) {
Jian Lic704b672018-09-04 18:52:53 +0900360 OpenstackAuth auth = osNode.keystoneConfig().authentication();
Jian Li51b844c2018-05-31 10:59:03 +0900361 String endpoint = buildEndpoint(osNode);
362 Perspective perspective = auth.perspective();
Jian Li1064e4f2018-05-29 16:16:53 +0900363
Jian Li51b844c2018-05-31 10:59:03 +0900364 Config config = getSslConfig();
Jian Li1064e4f2018-05-29 16:16:53 +0900365
Jian Li51b844c2018-05-31 10:59:03 +0900366 try {
367 if (endpoint.contains(KEYSTONE_V2)) {
368 IOSClientBuilder.V2 builder = OSFactory.builderV2()
369 .endpoint(endpoint)
370 .tenantName(auth.project())
371 .credentials(auth.username(), auth.password())
372 .withConfig(config);
373
374 if (perspective != null) {
375 builder.perspective(getFacing(perspective));
376 }
377
378 return builder.authenticate();
379 } else if (endpoint.contains(KEYSTONE_V3)) {
380
381 Identifier project = Identifier.byName(auth.project());
382 Identifier domain = Identifier.byName(DOMAIN_DEFAULT);
383
384 IOSClientBuilder.V3 builder = OSFactory.builderV3()
385 .endpoint(endpoint)
386 .credentials(auth.username(), auth.password(), domain)
387 .scopeToProject(project, domain)
388 .withConfig(config);
389
390 if (perspective != null) {
391 builder.perspective(getFacing(perspective));
392 }
393
394 return builder.authenticate();
395 } else {
396 log.warn("Unrecognized keystone version type");
397 return null;
Jian Li1064e4f2018-05-29 16:16:53 +0900398 }
Jian Li51b844c2018-05-31 10:59:03 +0900399 } catch (AuthenticationException e) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900400 log.error("Authentication failed due to {}", e);
Jian Li51b844c2018-05-31 10:59:03 +0900401 return null;
Jian Li1064e4f2018-05-29 16:16:53 +0900402 }
Jian Li1064e4f2018-05-29 16:16:53 +0900403 }
Daniel Parkc4d06402018-05-28 15:57:37 +0900404
405 /**
Jian Licda74c82019-10-31 22:24:17 +0900406 * Checks whether the given openstack port is smart NIC capable.
407 *
408 * @param port openstack port
409 * @return true if the given port is smart NIC capable, false otherwise
410 */
411 public static boolean isSmartNicCapable(Port port) {
412 if (port.getProfile() != null && port.getvNicType().equals(DIRECT)) {
413 String vendorInfo = String.valueOf(port.getProfile().get(PCI_VENDOR_INFO));
414 if (portNamePrefixMap().containsKey(vendorInfo)) {
415 log.debug("Port {} is a Smart NIC capable port.", port.getId());
416 return true;
417 }
418 return false;
419 }
420 return false;
421 }
422
423 /**
Daniel Parkc4d06402018-05-28 15:57:37 +0900424 * Extract the interface name with the supplied port.
425 *
426 * @param port port
427 * @return interface name
428 */
429 public static String getIntfNameFromPciAddress(Port port) {
Daniel Parkff178ba2018-11-23 15:57:24 +0900430 String intfName;
431
Daniel Park95985382018-07-23 11:38:07 +0900432 if (port.getProfile() == null || port.getProfile().isEmpty()) {
Jian Li51b844c2018-05-31 10:59:03 +0900433 log.error("Port profile is not found");
434 return null;
435 }
436
Daniel Park95985382018-07-23 11:38:07 +0900437 if (!port.getProfile().containsKey(PCISLOT) ||
438 Strings.isNullOrEmpty(port.getProfile().get(PCISLOT).toString())) {
Jian Li5ecfd1a2018-12-10 11:41:03 +0900439 log.error("Failed to retrieve the interface name because of no " +
440 "pci_slot information from the port");
Daniel Parkc4d06402018-05-28 15:57:37 +0900441 return null;
442 }
Jian Li51b844c2018-05-31 10:59:03 +0900443
Daniel Parkff178ba2018-11-23 15:57:24 +0900444 String vendorInfoForPort = String.valueOf(port.getProfile().get(PCI_VENDOR_INFO));
445
446 if (!portNamePrefixMap().containsKey(vendorInfoForPort)) {
447 log.debug("{} is an non-smart NIC prefix.", vendorInfoForPort);
448 return UNSUPPORTED_VENDOR;
449 }
450
451 String portNamePrefix = portNamePrefixMap().get(vendorInfoForPort);
452
Daniel Parkc4d06402018-05-28 15:57:37 +0900453 String busNumHex = port.getProfile().get(PCISLOT).toString().split(":")[1];
454 String busNumDecimal = String.valueOf(Integer.parseInt(busNumHex, HEX_RADIX));
455
456 String deviceNumHex = port.getProfile().get(PCISLOT).toString()
457 .split(":")[2]
458 .split("\\.")[0];
459 String deviceNumDecimal = String.valueOf(Integer.parseInt(deviceNumHex, HEX_RADIX));
460
461 String functionNumHex = port.getProfile().get(PCISLOT).toString()
462 .split(":")[2]
463 .split("\\.")[1];
464 String functionNumDecimal = String.valueOf(Integer.parseInt(functionNumHex, HEX_RADIX));
465
Daniel Parkc4d06402018-05-28 15:57:37 +0900466 if (functionNumDecimal.equals(ZERO_FUNCTION_NUMBER)) {
467 intfName = portNamePrefix + busNumDecimal + PREFIX_DEVICE_NUMBER + deviceNumDecimal;
468 } else {
469 intfName = portNamePrefix + busNumDecimal + PREFIX_DEVICE_NUMBER + deviceNumDecimal
470 + PREFIX_FUNCTION_NUMBER + functionNumDecimal;
471 }
472
473 return intfName;
474 }
Jian Li51b844c2018-05-31 10:59:03 +0900475
476 /**
Daniel Park95f73312018-07-31 15:48:34 +0900477 * Check if the given interface is added to the given device or not.
478 *
479 * @param deviceId device ID
480 * @param intfName interface name
481 * @param deviceService device service
482 * @return true if the given interface is added to the given device or false otherwise
483 */
Jian Li5ecfd1a2018-12-10 11:41:03 +0900484 public static boolean hasIntfAleadyInDevice(DeviceId deviceId,
485 String intfName,
486 DeviceService deviceService) {
Daniel Park95f73312018-07-31 15:48:34 +0900487 checkNotNull(deviceId);
488 checkNotNull(intfName);
489
Jian Li5ecfd1a2018-12-10 11:41:03 +0900490 return deviceService.getPorts(deviceId).stream().anyMatch(port ->
491 Objects.equals(port.annotations().value(PORT_NAME), intfName));
Daniel Park95f73312018-07-31 15:48:34 +0900492 }
493
494 /**
Jian Li0b564282018-06-20 00:50:53 +0900495 * Adds router interfaces to openstack admin service.
Jian Li0b564282018-06-20 00:50:53 +0900496 *
497 * @param osPort port
498 * @param adminService openstack admin service
499 */
Jian Li5ecfd1a2018-12-10 11:41:03 +0900500 public static void addRouterIface(Port osPort,
501 OpenstackRouterAdminService adminService) {
Jian Li0b564282018-06-20 00:50:53 +0900502 osPort.getFixedIps().forEach(p -> {
503 JsonNode jsonTree = new ObjectMapper().createObjectNode()
504 .put("id", osPort.getDeviceId())
505 .put("tenant_id", osPort.getTenantId())
506 .put("subnet_id", p.getSubnetId())
507 .put("port_id", osPort.getId());
508 try {
509 RouterInterface rIface = getContext(NeutronRouterInterface.class)
510 .readerFor(NeutronRouterInterface.class)
511 .readValue(jsonTree);
512 if (adminService.routerInterface(rIface.getPortId()) != null) {
513 adminService.updateRouterInterface(rIface);
514 } else {
515 adminService.addRouterInterface(rIface);
516 }
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900517 } catch (IOException e) {
518 log.error("IOException occurred because of {}", e);
Jian Li0b564282018-06-20 00:50:53 +0900519 }
520 });
521 }
522
523 /**
Jian Li40f032a2019-10-02 20:36:09 +0900524 * Prints openstack security group.
525 *
526 * @param osSg openstack security group
527 */
528 public static void printSecurityGroup(SecurityGroup osSg) {
529 print(SECURITY_GROUP_FORMAT, osSg.getId(), osSg.getName());
530 }
531
532 /**
533 * Prints openstack network.
534 *
535 * @param osNet openstack network
536 */
537 public static void printNetwork(Network osNet) {
538 final String strNet = String.format(NETWORK_FORMAT,
539 osNet.getId(),
540 osNet.getName(),
541 osNet.getProviderSegID(),
542 osNet.getSubnets());
543 print(strNet);
544 }
545
546 /**
547 * Prints openstack subnet.
548 *
549 * @param osSubnet openstack subnet
550 * @param osNetService openstack network service
551 */
552 public static void printSubnet(Subnet osSubnet,
553 OpenstackNetworkService osNetService) {
554 final Network network = osNetService.network(osSubnet.getNetworkId());
555 final String netName = network == null ? NOT_AVAILABLE : network.getName();
556 final String strSubnet = String.format(SUBNET_FORMAT,
557 osSubnet.getId(),
558 netName,
559 osSubnet.getCidr());
560 print(strSubnet);
561 }
562
563 /**
564 * Prints openstack port.
565 *
566 * @param osPort openstack port
567 * @param osNetService openstack network service
568 */
569 public static void printPort(Port osPort,
570 OpenstackNetworkService osNetService) {
571 List<String> fixedIps = osPort.getFixedIps().stream()
572 .map(IP::getIpAddress)
573 .collect(Collectors.toList());
574 final Network network = osNetService.network(osPort.getNetworkId());
575 final String netName = network == null ? NOT_AVAILABLE : network.getName();
576 final String strPort = String.format(PORT_FORMAT,
577 osPort.getId(),
578 netName,
579 osPort.getMacAddress(),
580 fixedIps.isEmpty() ? "" : fixedIps);
581 print(strPort);
582 }
583
584 /**
585 * Prints openstack router.
586 *
587 * @param osRouter openstack router
588 * @param osNetService openstack network service
589 */
590 public static void printRouter(Router osRouter,
591 OpenstackNetworkService osNetService) {
592 List<String> externals = osNetService.ports().stream()
593 .filter(osPort -> Objects.equals(osPort.getDeviceId(), osRouter.getId()) &&
594 Objects.equals(osPort.getDeviceOwner(), DEVICE_OWNER_GW))
595 .flatMap(osPort -> osPort.getFixedIps().stream())
596 .map(IP::getIpAddress)
597 .collect(Collectors.toList());
598
599 List<String> internals = osNetService.ports().stream()
600 .filter(osPort -> Objects.equals(osPort.getDeviceId(), osRouter.getId()) &&
601 Objects.equals(osPort.getDeviceOwner(), DEVICE_OWNER_IFACE))
602 .flatMap(osPort -> osPort.getFixedIps().stream())
603 .map(IP::getIpAddress)
604 .collect(Collectors.toList());
605
606 final String strRouter = String.format(ROUTER_FORMAT,
607 osRouter.getId(),
608 osRouter.getName(),
609 externals.isEmpty() ? "" : externals,
610 internals.isEmpty() ? "" : internals);
611 print(strRouter);
612 }
613
614 /**
615 * Prints openstack router interface.
616 *
617 * @param osRouterIntf openstack router interface
618 */
619 public static void printRouterIntf(RouterInterface osRouterIntf) {
620 final String strRouterIntf = String.format(ROUTER_INTF_FORMAT,
621 osRouterIntf.getId(),
622 osRouterIntf.getTenantId(),
623 osRouterIntf.getSubnetId());
624 print(strRouterIntf);
625 }
626
627 /**
628 * Prints openstack floating IP.
629 *
630 * @param floatingIp floating IP
631 */
632 public static void printFloatingIp(NetFloatingIP floatingIp) {
633 final String strFloating = String.format(FLOATING_IP_FORMAT,
634 floatingIp.getId(),
635 floatingIp.getFloatingIpAddress(),
636 Strings.isNullOrEmpty(floatingIp.getFixedIpAddress()) ?
637 "" : floatingIp.getFixedIpAddress());
638 print(strFloating);
639 }
640
641 /**
Jian Li7f70bb72018-07-06 23:35:30 +0900642 * Obtains the property value with specified property key name.
643 *
644 * @param properties a collection of properties
645 * @param name key name
646 * @return mapping value
647 */
Jian Li5ecfd1a2018-12-10 11:41:03 +0900648 public static String getPropertyValue(Set<ConfigProperty> properties,
649 String name) {
Jian Li7f70bb72018-07-06 23:35:30 +0900650 Optional<ConfigProperty> property =
651 properties.stream().filter(p -> p.name().equals(name)).findFirst();
652 return property.map(ConfigProperty::value).orElse(null);
653 }
654
655 /**
Jian Li9d35bd62018-10-13 01:43:24 +0900656 * Obtains the boolean property value with specified property key name.
657 *
658 * @param properties a collection of properties
659 * @param name key name
660 * @return mapping value
661 */
Jian Li5ecfd1a2018-12-10 11:41:03 +0900662 public static boolean getPropertyValueAsBoolean(Set<ConfigProperty> properties,
663 String name) {
Jian Li9d35bd62018-10-13 01:43:24 +0900664 Optional<ConfigProperty> property =
665 properties.stream().filter(p -> p.name().equals(name)).findFirst();
666
667 return property.map(ConfigProperty::asBoolean).orElse(false);
668 }
669
670 /**
Jian Lif1efbe52018-07-17 23:20:16 +0900671 * Prints out the JSON string in pretty format.
672 *
673 * @param mapper Object mapper
674 * @param jsonString JSON string
675 * @return pretty formatted JSON string
676 */
677 public static String prettyJson(ObjectMapper mapper, String jsonString) {
678 try {
679 Object jsonObject = mapper.readValue(jsonString, Object.class);
680 return mapper.writerWithDefaultPrettyPrinter().writeValueAsString(jsonObject);
Daniel Park2ff66b42018-08-01 11:52:45 +0900681 } catch (JsonParseException e) {
682 log.debug("JsonParseException caused by {}", e);
683 } catch (JsonMappingException e) {
684 log.debug("JsonMappingException caused by {}", e);
685 } catch (JsonProcessingException e) {
686 log.debug("JsonProcessingException caused by {}", e);
Jian Lif1efbe52018-07-17 23:20:16 +0900687 }
688 return null;
689 }
690
691 /**
Jian Li7f024de2018-07-07 03:51:02 +0900692 * Checks the validity of ARP mode.
693 *
694 * @param arpMode ARP mode
695 * @return returns true if the ARP mode is valid, false otherwise
696 */
697 public static boolean checkArpMode(String arpMode) {
698
699 if (isNullOrEmpty(arpMode)) {
700 return false;
701 } else {
702 return arpMode.equals(PROXY_MODE) || arpMode.equals(BROADCAST_MODE);
703 }
704 }
705
706 /**
Jian Licad36c72018-09-13 17:44:54 +0900707 * Checks the validity of activation flag.
708 *
709 * @param activationFlag activation flag
710 * @return returns true if the activation flag is valid, false otherwise
711 */
712 public static boolean checkActivationFlag(String activationFlag) {
713
714 switch (activationFlag) {
715 case ENABLE:
716 return true;
717 case DISABLE:
718 return false;
719 default:
720 throw new IllegalArgumentException("The given activation flag is not valid!");
721 }
722 }
723
724 /**
Jian Liec5c32b2018-07-13 14:28:58 +0900725 * Swaps current location with old location info.
726 * The revised instance port will be used to mod the flow rules after migration.
727 *
728 * @param instPort instance port
729 * @return location swapped instance port
730 */
731 public static InstancePort swapStaleLocation(InstancePort instPort) {
732 return DefaultInstancePort.builder()
733 .deviceId(instPort.oldDeviceId())
734 .portNumber(instPort.oldPortNumber())
735 .state(instPort.state())
736 .ipAddress(instPort.ipAddress())
737 .macAddress(instPort.macAddress())
738 .networkId(instPort.networkId())
739 .portId(instPort.portId())
740 .build();
741 }
742
743 /**
Daniel Park2ff66b42018-08-01 11:52:45 +0900744 * Compares two router interfaces are equal.
745 * Will be remove this after Openstack4j implements equals.
746 *
747 * @param routerInterface1 router interface
748 * @param routerInterface2 router interface
749 * @return returns true if two router interfaces are equal, false otherwise
750 */
Jian Li63430202018-08-30 16:24:09 +0900751 public static boolean routerInterfacesEquals(RouterInterface routerInterface1,
752 RouterInterface routerInterface2) {
Daniel Park2ff66b42018-08-01 11:52:45 +0900753 return Objects.equals(routerInterface1.getId(), routerInterface2.getId()) &&
754 Objects.equals(routerInterface1.getPortId(), routerInterface2.getPortId()) &&
755 Objects.equals(routerInterface1.getSubnetId(), routerInterface2.getSubnetId()) &&
756 Objects.equals(routerInterface1.getTenantId(), routerInterface2.getTenantId());
757 }
758
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900759 /**
760 * Returns the vnic type of given port.
761 *
762 * @param portName port name
763 * @return vnit type
764 */
Daniel Park7e8c4d82018-08-13 23:47:49 +0900765 public static VnicType vnicType(String portName) {
766 if (portName.startsWith(PORT_NAME_PREFIX_VM) ||
767 portName.startsWith(PORT_NAME_VHOST_USER_PREFIX_VM)) {
768 return VnicType.NORMAL;
769 } else if (isDirectPort(portName)) {
770 return VnicType.DIRECT;
771 } else {
772 return VnicType.UNSUPPORTED;
773 }
774 }
775
Jian Li63430202018-08-30 16:24:09 +0900776 /**
777 * Deserializes raw payload into HttpRequest object.
778 *
779 * @param rawData raw http payload
780 * @return HttpRequest object
781 */
782 public static HttpRequest parseHttpRequest(byte[] rawData) {
783 SessionInputBufferImpl sessionInputBuffer =
784 new SessionInputBufferImpl(
785 new HttpTransportMetricsImpl(), HTTP_PAYLOAD_BUFFER);
786 sessionInputBuffer.bind(new ByteArrayInputStream(rawData));
Jian Li5ecfd1a2018-12-10 11:41:03 +0900787 DefaultHttpRequestParser requestParser =
788 new DefaultHttpRequestParser(sessionInputBuffer);
Jian Li63430202018-08-30 16:24:09 +0900789 try {
790 return requestParser.parse();
791 } catch (IOException | HttpException e) {
792 log.warn("Failed to parse HttpRequest, due to {}", e);
793 }
794
795 return null;
796 }
797
798 /**
799 * Serializes HttpRequest object to byte array.
800 *
801 * @param request http request object
802 * @return byte array
803 */
804 public static byte[] unparseHttpRequest(HttpRequest request) {
805 try {
806 SessionOutputBufferImpl sessionOutputBuffer =
807 new SessionOutputBufferImpl(
808 new HttpTransportMetricsImpl(), HTTP_PAYLOAD_BUFFER);
809
810 ByteArrayOutputStream baos = new ByteArrayOutputStream();
811 sessionOutputBuffer.bind(baos);
812
Jian Li5ecfd1a2018-12-10 11:41:03 +0900813 HttpMessageWriter<HttpRequest> requestWriter =
814 new DefaultHttpRequestWriter(sessionOutputBuffer);
Jian Li63430202018-08-30 16:24:09 +0900815 requestWriter.write(request);
816 sessionOutputBuffer.flush();
817
818 return baos.toByteArray();
819 } catch (HttpException | IOException e) {
820 log.warn("Failed to unparse HttpRequest, due to {}", e);
821 }
822
823 return null;
824 }
825
826 /**
827 * Deserializes raw payload into HttpResponse object.
828 *
829 * @param rawData raw http payload
830 * @return HttpResponse object
831 */
832 public static HttpResponse parseHttpResponse(byte[] rawData) {
833 SessionInputBufferImpl sessionInputBuffer =
834 new SessionInputBufferImpl(
835 new HttpTransportMetricsImpl(), HTTP_PAYLOAD_BUFFER);
836 sessionInputBuffer.bind(new ByteArrayInputStream(rawData));
Jian Li5ecfd1a2018-12-10 11:41:03 +0900837 DefaultHttpResponseParser responseParser =
838 new DefaultHttpResponseParser(sessionInputBuffer);
Jian Li63430202018-08-30 16:24:09 +0900839 try {
840 return responseParser.parse();
841 } catch (IOException | HttpException e) {
842 log.warn("Failed to parse HttpResponse, due to {}", e);
843 }
844
845 return null;
846 }
847
848 /**
849 * Serializes HttpResponse header to byte array.
850 *
851 * @param response http response object
852 * @return byte array
853 */
854 public static byte[] unparseHttpResponseHeader(HttpResponse response) {
855 try {
856 SessionOutputBufferImpl sessionOutputBuffer =
857 new SessionOutputBufferImpl(
858 new HttpTransportMetricsImpl(), HTTP_PAYLOAD_BUFFER);
859
860 ByteArrayOutputStream headerBaos = new ByteArrayOutputStream();
861 sessionOutputBuffer.bind(headerBaos);
862
863 HttpMessageWriter<HttpResponse> responseWriter =
864 new DefaultHttpResponseWriter(sessionOutputBuffer);
865 responseWriter.write(response);
866 sessionOutputBuffer.flush();
867
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900868 log.debug(headerBaos.toString(Charsets.UTF_8.name()));
Jian Li63430202018-08-30 16:24:09 +0900869
870 return headerBaos.toByteArray();
871 } catch (IOException | HttpException e) {
872 log.warn("Failed to unparse HttpResponse headers, due to {}", e);
873 }
874
875 return null;
876 }
877
878 /**
879 * Serializes HttpResponse object to byte array.
880 *
881 * @param response http response object
882 * @return byte array
883 */
884 public static byte[] unparseHttpResponseBody(HttpResponse response) {
885 try {
886 ByteArrayOutputStream baos = new ByteArrayOutputStream();
887 response.getEntity().writeTo(baos);
888
889 log.debug(response.toString());
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900890 log.debug(baos.toString(Charsets.UTF_8.name()));
Jian Li63430202018-08-30 16:24:09 +0900891
892 return baos.toByteArray();
893 } catch (IOException e) {
894 log.warn("Failed to unparse HttpResponse, due to {}", e);
895 }
896
897 return null;
898 }
899
900 /**
901 * Encodes the given data using HmacSHA256 encryption method with given secret key.
902 *
903 * @param key secret key
904 * @param data data to be encrypted
905 * @return Hmac256 encrypted data
906 */
907 public static String hmacEncrypt(String key, String data) {
908 try {
909 Mac sha256Hmac = Mac.getInstance(HMAC_SHA256);
910 SecretKeySpec secretKey = new SecretKeySpec(key.getBytes("UTF-8"), HMAC_SHA256);
911 sha256Hmac.init(secretKey);
912 return Hex.encodeHexString(sha256Hmac.doFinal(data.getBytes("UTF-8")));
913 } catch (Exception e) {
914 log.warn("Failed to encrypt data {} using key {}, due to {}", data, key, e);
915 }
916 return null;
917 }
918
Daniel Parka73c2362018-09-17 17:43:25 +0900919 /**
920 * Creates flow trace request string.
921 *
922 * @param srcIp src ip address
923 * @param dstIp dst ip address
924 * @param srcInstancePort src instance port
925 * @param osNetService openstack networking service
Daniel Park5aef9822018-09-20 18:04:18 +0900926 * @param uplink true if this request is for uplink
Daniel Parka73c2362018-09-17 17:43:25 +0900927 * @return flow trace request string
928 */
929 public static String traceRequestString(String srcIp,
930 String dstIp,
931 InstancePort srcInstancePort,
Jian Li5ecfd1a2018-12-10 11:41:03 +0900932 OpenstackNetworkService osNetService,
933 boolean uplink) {
Daniel Parka73c2362018-09-17 17:43:25 +0900934
935 StringBuilder requestStringBuilder = new StringBuilder(DEFAULT_REQUEST_STRING);
936
937 if (uplink) {
938
939 requestStringBuilder.append(COMMA)
940 .append(IN_PORT)
941 .append(srcInstancePort.portNumber().toString())
942 .append(COMMA)
943 .append(NW_SRC)
944 .append(srcIp)
945 .append(COMMA);
946
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900947 String modifiedDstIp = dstIp;
Jian Li621f73c2018-12-15 01:49:22 +0900948 Type netType = osNetService.networkType(srcInstancePort.networkId());
949 if (netType == Type.VXLAN || netType == Type.GRE ||
950 netType == Type.VLAN || netType == Type.GENEVE) {
Daniel Parka73c2362018-09-17 17:43:25 +0900951 if (srcIp.equals(dstIp)) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900952 modifiedDstIp = osNetService.gatewayIp(srcInstancePort.portId());
Daniel Parka73c2362018-09-17 17:43:25 +0900953 requestStringBuilder.append(DL_DST)
954 .append(DEFAULT_GATEWAY_MAC_STR).append(COMMA);
Jian Li5ecfd1a2018-12-10 11:41:03 +0900955 } else if (!osNetService.ipPrefix(srcInstancePort.portId()).contains(
956 IpAddress.valueOf(dstIp))) {
Daniel Parka73c2362018-09-17 17:43:25 +0900957 requestStringBuilder.append(DL_DST)
958 .append(DEFAULT_GATEWAY_MAC_STR)
959 .append(COMMA);
960 }
961 } else {
962 if (srcIp.equals(dstIp)) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900963 modifiedDstIp = osNetService.gatewayIp(srcInstancePort.portId());
Daniel Parka73c2362018-09-17 17:43:25 +0900964 }
965 }
966
967 requestStringBuilder.append(NW_DST)
Daniel Parka3ffbdb2018-11-28 13:51:39 +0900968 .append(modifiedDstIp)
Daniel Parka73c2362018-09-17 17:43:25 +0900969 .append("\n");
970 } else {
971 requestStringBuilder.append(COMMA)
972 .append(NW_SRC)
973 .append(dstIp)
974 .append(COMMA);
975
Jian Li621f73c2018-12-15 01:49:22 +0900976 Type netType = osNetService.networkType(srcInstancePort.networkId());
977
978 if (netType == Type.VXLAN || netType == Type.GRE ||
979 netType == Type.VLAN || netType == Type.GENEVE) {
Daniel Parka73c2362018-09-17 17:43:25 +0900980 requestStringBuilder.append(TUN_ID)
981 .append(osNetService.segmentId(srcInstancePort.networkId()))
982 .append(COMMA);
983 }
984 requestStringBuilder.append(NW_DST)
985 .append(srcIp)
986 .append("\n");
Daniel Parka73c2362018-09-17 17:43:25 +0900987 }
988
989 return requestStringBuilder.toString();
990 }
991
992 /**
993 * Sends flow trace string to node.
994 *
995 * @param requestString reqeust string
996 * @param node src node
997 * @return flow trace result in string format
998 */
999 public static String sendTraceRequestToNode(String requestString,
1000 OpenstackNode node) {
1001 String traceResult = null;
1002 OpenstackSshAuth sshAuth = node.sshAuthInfo();
1003
1004 try (SshClient client = SshClient.setUpDefaultClient()) {
1005 client.start();
1006
1007 try (ClientSession session = client
1008 .connect(sshAuth.id(), node.managementIp().getIp4Address().toString(), SSH_PORT)
1009 .verify(TIMEOUT_MS, TimeUnit.SECONDS).getSession()) {
1010 session.addPasswordIdentity(sshAuth.password());
1011 session.auth().verify(TIMEOUT_MS, TimeUnit.SECONDS);
1012
1013
1014 try (ClientChannel channel = session.createChannel(ClientChannel.CHANNEL_SHELL)) {
1015
1016 log.debug("requestString: {}", requestString);
1017 final InputStream inputStream =
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001018 new ByteArrayInputStream(requestString.getBytes(Charsets.UTF_8));
Daniel Parka73c2362018-09-17 17:43:25 +09001019
Jian Li5ecfd1a2018-12-10 11:41:03 +09001020 ByteArrayOutputStream outputStream = new ByteArrayOutputStream();
Daniel Parka73c2362018-09-17 17:43:25 +09001021 OutputStream errStream = new ByteArrayOutputStream();
1022
1023 channel.setIn(new NoCloseInputStream(inputStream));
1024 channel.setErr(errStream);
1025 channel.setOut(outputStream);
1026
1027 Collection<ClientChannelEvent> eventList = Lists.newArrayList();
1028 eventList.add(ClientChannelEvent.OPENED);
1029
1030 OpenFuture channelFuture = channel.open();
1031
1032 if (channelFuture.await(TIMEOUT_MS, TimeUnit.SECONDS)) {
1033
1034 long timeoutExpiredMs = System.currentTimeMillis() + TIMEOUT_MS;
1035
1036 while (!channelFuture.isOpened()) {
1037 if ((timeoutExpiredMs - System.currentTimeMillis()) <= 0) {
1038 log.error("Failed to open channel");
1039 return null;
1040 }
1041 }
1042 TimeUnit.SECONDS.sleep(WAIT_OUTPUT_STREAM_SECOND);
1043
Jian Li5ecfd1a2018-12-10 11:41:03 +09001044 traceResult = outputStream.toString(Charsets.UTF_8.name());
Daniel Parka73c2362018-09-17 17:43:25 +09001045
1046 channel.close();
1047 }
1048 } finally {
1049 session.close();
1050 }
1051 } finally {
1052 client.stop();
1053 }
1054
1055 } catch (Exception e) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001056 log.error("Exception occurred because of {}", e);
Daniel Parka73c2362018-09-17 17:43:25 +09001057 }
1058
1059 return traceResult;
1060 }
1061
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001062 /**
1063 * Returns the floating ip with supplied instance port.
1064 *
1065 * @param instancePort instance port
1066 * @param osRouterAdminService openstack router admin service
1067 * @return floating ip
1068 */
1069 public static NetFloatingIP floatingIpByInstancePort(InstancePort instancePort,
Jian Li5ecfd1a2018-12-10 11:41:03 +09001070 OpenstackRouterAdminService
1071 osRouterAdminService) {
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001072 return osRouterAdminService.floatingIps().stream()
1073 .filter(netFloatingIP -> netFloatingIP.getPortId() != null)
1074 .filter(netFloatingIP -> netFloatingIP.getPortId().equals(instancePort.portId()))
1075 .findAny().orElse(null);
1076 }
1077
1078 /**
1079 * Sends GARP packet with supplied floating ip information.
1080 *
1081 * @param floatingIP floating ip
1082 * @param instancePort instance port
1083 * @param vlanId vlain id
1084 * @param gatewayNode gateway node
1085 * @param packetService packet service
1086 */
Jian Li32b03622018-11-06 17:54:24 +09001087 public static void processGarpPacketForFloatingIp(NetFloatingIP floatingIP,
1088 InstancePort instancePort,
1089 VlanId vlanId,
1090 OpenstackNode gatewayNode,
1091 PacketService packetService) {
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001092 Ethernet ethernet = buildGratuitousArpPacket(floatingIP, instancePort, vlanId);
1093
1094 TrafficTreatment treatment = DefaultTrafficTreatment.builder()
1095 .setOutput(gatewayNode.uplinkPortNum()).build();
1096
1097 packetService.emit(new DefaultOutboundPacket(gatewayNode.intgBridge(), treatment,
1098 ByteBuffer.wrap(ethernet.serialize())));
1099 }
1100
1101 /**
1102 * Returns the external peer router with supplied network information.
1103 *
1104 * @param network network
1105 * @param osNetworkService openstack network service
1106 * @param osRouterAdminService openstack router admin service
1107 * @return external peer router
1108 */
1109 public static ExternalPeerRouter externalPeerRouterForNetwork(Network network,
Jian Li5ecfd1a2018-12-10 11:41:03 +09001110 OpenstackNetworkService
1111 osNetworkService,
1112 OpenstackRouterAdminService
1113 osRouterAdminService) {
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001114 if (network == null) {
1115 return null;
1116 }
1117
Jian Lie6e609f2019-05-14 17:45:54 +09001118 Subnet subnet = osNetworkService.subnets(network.getId())
1119 .stream().findAny().orElse(null);
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001120
1121 if (subnet == null) {
1122 return null;
1123 }
1124
1125 RouterInterface osRouterIface = osRouterAdminService.routerInterfaces().stream()
1126 .filter(i -> Objects.equals(i.getSubnetId(), subnet.getId()))
1127 .findAny().orElse(null);
1128 if (osRouterIface == null) {
1129 return null;
1130 }
1131
1132 Router osRouter = osRouterAdminService.router(osRouterIface.getId());
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001133 if (osRouter == null || osRouter.getExternalGatewayInfo() == null) {
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001134 return null;
1135 }
1136
1137 ExternalGateway exGatewayInfo = osRouter.getExternalGatewayInfo();
1138 return osNetworkService.externalPeerRouter(exGatewayInfo);
1139
1140 }
1141
Jian Liebde74d2018-11-14 00:18:57 +09001142 /**
1143 * Returns the external peer router with specified subnet information.
1144 *
1145 * @param subnet openstack subnet
1146 * @param osRouterService openstack router service
1147 * @param osNetworkService openstack network service
1148 * @return external peer router
1149 */
Jian Li5ecfd1a2018-12-10 11:41:03 +09001150 public static ExternalPeerRouter externalPeerRouterFromSubnet(Subnet subnet,
1151 OpenstackRouterService
1152 osRouterService,
1153 OpenstackNetworkService
1154 osNetworkService) {
Jian Liebde74d2018-11-14 00:18:57 +09001155 Router osRouter = getRouterFromSubnet(subnet, osRouterService);
1156 if (osRouter == null) {
1157 return null;
1158 }
1159 if (osRouter.getExternalGatewayInfo() == null) {
1160 // this router does not have external connectivity
1161 log.trace("router({}) has no external gateway",
1162 osRouter.getName());
1163 return null;
1164 }
1165
1166 return osNetworkService.externalPeerRouter(osRouter.getExternalGatewayInfo());
1167 }
1168
1169 /**
Jian Lifa62b372020-02-24 16:42:24 +09001170 * Returns the external gateway IP address with specified router information.
Jian Liebde74d2018-11-14 00:18:57 +09001171 *
1172 * @param router openstack router
1173 * @param osNetworkService openstack network service
Jian Lifa62b372020-02-24 16:42:24 +09001174 * @return external IP address
Jian Liebde74d2018-11-14 00:18:57 +09001175 */
Jian Lifa62b372020-02-24 16:42:24 +09001176 public static IpAddress externalGatewayIp(Router router,
1177 OpenstackNetworkService osNetworkService) {
1178 return externalGatewayIpBase(router, false, osNetworkService);
1179 }
Jian Liebde74d2018-11-14 00:18:57 +09001180
Jian Lifa62b372020-02-24 16:42:24 +09001181 /**
1182 * Returns the external gateway IP address (SNAT enabled) with specified router information.
1183 *
1184 * @param router openstack router
1185 * @param osNetworkService openstack network service
1186 * @return external IP address
1187 */
1188 public static IpAddress externalGatewayIpSnatEnabled(Router router,
1189 OpenstackNetworkService osNetworkService) {
1190 return externalGatewayIpBase(router, true, osNetworkService);
Jian Liebde74d2018-11-14 00:18:57 +09001191 }
1192
Jian Li2d68c192018-12-13 15:52:59 +09001193 /**
1194 * Returns the tunnel port number with specified net ID and openstack node.
1195 *
1196 * @param netId network ID
1197 * @param netService network service
1198 * @param osNode openstack node
1199 * @return tunnel port number
1200 */
1201 public static PortNumber tunnelPortNumByNetId(String netId,
1202 OpenstackNetworkService netService,
1203 OpenstackNode osNode) {
SONA Project6bc5c4a2018-12-14 23:49:52 +09001204 Type netType = netService.networkType(netId);
Jian Li2d68c192018-12-13 15:52:59 +09001205
1206 if (netType == null) {
1207 return null;
1208 }
1209
1210 return tunnelPortNumByNetType(netType, osNode);
1211 }
1212
1213 /**
1214 * Returns the tunnel port number with specified net type and openstack node.
1215 *
1216 * @param netType network type
1217 * @param osNode openstack node
1218 * @return tunnel port number
1219 */
SONA Project6bc5c4a2018-12-14 23:49:52 +09001220 public static PortNumber tunnelPortNumByNetType(Type netType, OpenstackNode osNode) {
Jian Li2d68c192018-12-13 15:52:59 +09001221 switch (netType) {
1222 case VXLAN:
1223 return osNode.vxlanTunnelPortNum();
1224 case GRE:
1225 return osNode.greTunnelPortNum();
Jian Li621f73c2018-12-15 01:49:22 +09001226 case GENEVE:
1227 return osNode.geneveTunnelPortNum();
Jian Li2d68c192018-12-13 15:52:59 +09001228 default:
1229 return null;
1230 }
1231 }
1232
Jian Li7b8c3682019-05-12 13:57:15 +09001233 /**
1234 * Returns the REST URL of active node.
1235 *
1236 * @param haService openstack HA service
1237 * @return REST URL of active node
1238 */
1239 public static String getActiveUrl(OpenstackHaService haService) {
1240 return "http://" + haService.getActiveIp().toString() + ":" +
1241 REST_PORT + "/" + OPENSTACK_NETWORKING_REST_PATH + "/";
1242 }
1243
1244 /**
1245 * Returns the REST client instance with given resource path.
1246 *
1247 * @param haService openstack HA service
1248 * @param resourcePath resource path
1249 * @return REST client instance
1250 */
1251 public static WebTarget getActiveClient(OpenstackHaService haService,
1252 String resourcePath) {
1253 HttpAuthenticationFeature feature =
1254 HttpAuthenticationFeature.universal(REST_USER, REST_PASSWORD);
1255 Client client = ClientBuilder.newClient().register(feature);
1256 return client.target(getActiveUrl(haService)).path(resourcePath);
1257 }
1258
1259 /**
1260 * Returns the post response from the active node.
1261 *
1262 * @param haService openstack HA service
1263 * @param resourcePath resource path
1264 * @param input input
1265 * @return post response
1266 */
1267 public static Response syncPost(OpenstackHaService haService,
1268 String resourcePath,
1269 String input) {
1270
1271 log.debug("Sync POST request with {} on {}",
1272 haService.getActiveIp().toString(), resourcePath);
1273
1274 return getActiveClient(haService, resourcePath)
1275 .request(APPLICATION_JSON_TYPE)
1276 .post(Entity.json(input));
1277 }
1278
1279 /**
1280 * Returns the put response from the active node.
1281 *
1282 * @param haService openstack HA service
1283 * @param resourcePath resource path
1284 * @param id resource identifier
1285 * @param input input
1286 * @return put response
1287 */
1288 public static Response syncPut(OpenstackHaService haService,
1289 String resourcePath,
1290 String id, String input) {
1291 return syncPut(haService, resourcePath, null, id, input);
1292 }
1293
1294 /**
1295 * Returns the put response from the active node.
1296 *
1297 * @param haService openstack HA service
1298 * @param resourcePath resource path
1299 * @param id resource identifier
1300 * @param suffix resource suffix
1301 * @param input input
1302 * @return put response
1303 */
1304 public static Response syncPut(OpenstackHaService haService,
1305 String resourcePath,
1306 String suffix,
1307 String id, String input) {
1308
1309 log.debug("Sync PUT request with {} on {}",
1310 haService.getActiveIp().toString(), resourcePath);
1311
1312 String pathStr = "/" + id;
1313
1314 if (suffix != null) {
1315 pathStr += "/" + suffix;
1316 }
1317
1318 return getActiveClient(haService, resourcePath)
1319 .path(pathStr)
1320 .request(APPLICATION_JSON_TYPE)
1321 .put(Entity.json(input));
1322 }
1323
1324 /**
1325 * Returns the delete response from the active node.
1326 *
1327 * @param haService openstack HA service
1328 * @param resourcePath resource path
1329 * @param id resource identifier
1330 * @return delete response
1331 */
1332 public static Response syncDelete(OpenstackHaService haService,
1333 String resourcePath,
1334 String id) {
1335
1336 log.debug("Sync DELETE request with {} on {}",
1337 haService.getActiveIp().toString(), resourcePath);
1338
1339 return getActiveClient(haService, resourcePath)
1340 .path("/" + id)
1341 .request(APPLICATION_JSON_TYPE)
1342 .delete();
1343 }
1344
Jian Li51728702019-05-17 18:38:56 +09001345 /**
1346 * Gets the ovsdb client with supplied openstack node.
1347 *
1348 * @param node openstack node
1349 * @param ovsdbPort openvswitch DB port number
1350 * @param controller openvswitch DB controller instance
1351 * @return ovsdb client instance
1352 */
1353 public static OvsdbClientService getOvsdbClient(OpenstackNode node, int ovsdbPort,
1354 OvsdbController controller) {
1355 OvsdbNodeId ovsdb = new OvsdbNodeId(node.managementIp(), ovsdbPort);
1356 return controller.getOvsdbClient(ovsdb);
1357 }
1358
1359 /**
1360 * Obtains the name of interface attached to the openstack VM.
1361 *
1362 * @param portId openstack port identifier
1363 * @return name of interface
1364 */
1365 public static String ifaceNameFromOsPortId(String portId) {
1366 if (portId != null) {
1367 return PORT_NAME_PREFIX_VM + StringUtils.substring(portId, 0, TAP_PORT_LENGTH);
1368 }
1369
1370 return null;
1371 }
1372
Jian Lifa62b372020-02-24 16:42:24 +09001373 /**
1374 * Return the router associated with the given subnet.
1375 *
1376 * @param subnet openstack subnet
1377 * @param osRouterService openstack router service
1378 * @return router
1379 */
1380 public static Router getRouterFromSubnet(Subnet subnet,
1381 OpenstackRouterService osRouterService) {
Jian Liebde74d2018-11-14 00:18:57 +09001382 RouterInterface osRouterIface = osRouterService.routerInterfaces().stream()
1383 .filter(i -> Objects.equals(i.getSubnetId(), subnet.getId()))
1384 .findAny().orElse(null);
1385 if (osRouterIface == null) {
1386 return null;
1387 }
1388
1389 return osRouterService.router(osRouterIface.getId());
1390 }
1391
Daniel Park7e8c4d82018-08-13 23:47:49 +09001392 private static boolean isDirectPort(String portName) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001393 return portNamePrefixMap().values().stream().anyMatch(portName::startsWith);
Daniel Park7e8c4d82018-08-13 23:47:49 +09001394 }
1395
Daniel Park2ff66b42018-08-01 11:52:45 +09001396 /**
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001397 * Returns GARP packet with supplied floating ip and instance port information.
1398 *
1399 * @param floatingIP floating ip
1400 * @param instancePort instance port
1401 * @param vlanId vlan id
1402 * @return GARP packet
1403 */
1404 private static Ethernet buildGratuitousArpPacket(NetFloatingIP floatingIP,
1405 InstancePort instancePort,
1406 VlanId vlanId) {
1407 Ethernet ethernet = new Ethernet();
1408 ethernet.setDestinationMACAddress(MacAddress.BROADCAST);
1409 ethernet.setSourceMACAddress(instancePort.macAddress());
1410 ethernet.setEtherType(Ethernet.TYPE_ARP);
1411 ethernet.setVlanID(vlanId.id());
1412
1413 ARP arp = new ARP();
1414 arp.setOpCode(ARP.OP_REPLY);
1415 arp.setProtocolType(ARP.PROTO_TYPE_IP);
1416 arp.setHardwareType(ARP.HW_TYPE_ETHERNET);
1417
1418 arp.setProtocolAddressLength((byte) Ip4Address.BYTE_LENGTH);
1419 arp.setHardwareAddressLength((byte) Ethernet.DATALAYER_ADDRESS_LENGTH);
1420
1421 arp.setSenderHardwareAddress(instancePort.macAddress().toBytes());
1422 arp.setTargetHardwareAddress(MacAddress.BROADCAST.toBytes());
1423
Jian Li5ecfd1a2018-12-10 11:41:03 +09001424 arp.setSenderProtocolAddress(valueOf(floatingIP.getFloatingIpAddress()).toInt());
1425 arp.setTargetProtocolAddress(valueOf(floatingIP.getFloatingIpAddress()).toInt());
Daniel Park4fa1f5e2018-10-17 12:41:52 +09001426
1427 ethernet.setPayload(arp);
1428
1429 return ethernet;
1430 }
1431
1432 /**
Jian Lia271b3c2019-09-03 23:10:20 +09001433 * Re-structures the OVS port name.
1434 * The length of OVS port name should be not large than 15.
1435 *
1436 * @param portName original port name
1437 * @return re-structured OVS port name
1438 */
1439 public static String structurePortName(String portName) {
1440
1441 // The size of OVS port name should not be larger than 15
1442 if (portName.length() > PORT_NAME_MAX_LENGTH) {
1443 return StringUtils.substring(portName, 0, PORT_NAME_MAX_LENGTH);
1444 }
1445
1446 return portName;
1447 }
1448
1449 /**
Jian Lid5727622019-09-11 11:15:16 +09001450 * Obtains flow group key from the given id.
1451 *
1452 * @param groupId flow group identifier
1453 * @return flow group key
1454 */
1455 public static GroupKey getGroupKey(int groupId) {
1456 return new DefaultGroupKey((Integer.toString(groupId)).getBytes());
1457 }
1458
1459 /**
Jian Li6a1bcfd2020-01-30 17:41:26 +09001460 * Calculate the broadcast address from given IP address and subnet prefix length.
1461 *
1462 * @param ipAddr IP address
1463 * @param prefixLength subnet prefix length
1464 * @return broadcast address
1465 */
1466 public static String getBroadcastAddr(String ipAddr, int prefixLength) {
1467 String subnet = ipAddr + "/" + prefixLength;
1468 SubnetUtils utils = new SubnetUtils(subnet);
1469 return utils.getInfo().getBroadcastAddress();
1470 }
1471
1472 /**
Jian Li1951db72020-05-11 13:05:47 +09001473 * Obtains the DHCP server name from option.
1474 *
1475 * @param port neutron port
1476 * @return server name
1477 */
1478 public static String getDhcpServerName(NeutronPort port) {
1479 return getDhcpOptionValue(port, "server-ip-address");
1480 }
1481
1482 /**
1483 * Obtains the DHCP static boot file name from option.
1484 *
1485 * @param port neutron port
1486 * @return DHCP static boot file name
1487 */
1488 public static String getDhcpStaticBootFileName(NeutronPort port) {
1489 return getDhcpOptionValue(port, "tag:!ipxe,67");
1490 }
1491
1492 /**
1493 * Obtains the DHCP full boot file name from option.
1494 *
1495 * @param port neutron port
1496 * @return DHCP full boot file name
1497 */
1498 public static String getDhcpFullBootFileName(NeutronPort port) {
1499 return getDhcpOptionValue(port, "tag:ipxe,67");
1500 }
1501
1502 private static String getDhcpOptionValue(NeutronPort port, String optionNameStr) {
1503 ObjectNode node = modelEntityToJson(port, NeutronPort.class);
1504
1505 if (node != null) {
1506 JsonNode portJson = node.get("port");
1507 ArrayNode options = (ArrayNode) portJson.get("extra_dhcp_opts");
1508 for (JsonNode option : options) {
1509 String optionName = option.get("optName").asText();
1510 if (StringUtils.equals(optionName, optionNameStr)) {
1511 return option.get("optValue").asText();
1512 }
1513 }
1514 }
1515
1516 return null;
1517 }
1518
1519 /**
Jian Li51b844c2018-05-31 10:59:03 +09001520 * Builds up and a complete endpoint URL from gateway node.
1521 *
1522 * @param node gateway node
1523 * @return a complete endpoint URL
1524 */
1525 private static String buildEndpoint(OpenstackNode node) {
1526
Jian Lic704b672018-09-04 18:52:53 +09001527 OpenstackAuth auth = node.keystoneConfig().authentication();
Jian Li51b844c2018-05-31 10:59:03 +09001528
1529 StringBuilder endpointSb = new StringBuilder();
1530 endpointSb.append(auth.protocol().name().toLowerCase());
1531 endpointSb.append("://");
Jian Lic704b672018-09-04 18:52:53 +09001532 endpointSb.append(node.keystoneConfig().endpoint());
Jian Li51b844c2018-05-31 10:59:03 +09001533 return endpointSb.toString();
1534 }
1535
1536 /**
1537 * Obtains the SSL config without verifying the certification.
1538 *
1539 * @return SSL config
1540 */
1541 private static Config getSslConfig() {
1542 // we bypass the SSL certification verification for now
1543 // TODO: verify server side SSL using a given certification
1544 Config config = Config.newConfig().withSSLVerificationDisabled();
1545
1546 TrustManager[] trustAllCerts = new TrustManager[]{
1547 new X509TrustManager() {
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001548 @Override
Jian Li51b844c2018-05-31 10:59:03 +09001549 public X509Certificate[] getAcceptedIssuers() {
1550 return null;
1551 }
1552
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001553 @Override
Jian Li51b844c2018-05-31 10:59:03 +09001554 public void checkClientTrusted(X509Certificate[] certs,
1555 String authType) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001556 return;
Jian Li51b844c2018-05-31 10:59:03 +09001557 }
1558
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001559 @Override
Jian Li51b844c2018-05-31 10:59:03 +09001560 public void checkServerTrusted(X509Certificate[] certs,
1561 String authType) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001562 return;
Jian Li51b844c2018-05-31 10:59:03 +09001563 }
1564 }
1565 };
1566
1567 HostnameVerifier allHostsValid = (hostname, session) -> true;
1568
1569 try {
1570 SSLContext sc = SSLContext.getInstance(SSL_TYPE);
1571 sc.init(null, trustAllCerts,
1572 new java.security.SecureRandom());
1573 HttpsURLConnection.setDefaultSSLSocketFactory(sc.getSocketFactory());
1574 HttpsURLConnection.setDefaultHostnameVerifier(allHostsValid);
1575
1576 config.withSSLContext(sc);
1577 } catch (Exception e) {
Daniel Parka3ffbdb2018-11-28 13:51:39 +09001578 log.error("Failed to access OpenStack service due to {}", e);
Jian Li51b844c2018-05-31 10:59:03 +09001579 return null;
1580 }
1581
1582 return config;
1583 }
1584
1585 /**
1586 * Obtains the facing object with given openstack perspective.
1587 *
1588 * @param perspective keystone perspective
1589 * @return facing object
1590 */
1591 private static Facing getFacing(Perspective perspective) {
1592
1593 switch (perspective) {
1594 case PUBLIC:
1595 return Facing.PUBLIC;
1596 case ADMIN:
1597 return Facing.ADMIN;
1598 case INTERNAL:
1599 return Facing.INTERNAL;
1600 default:
1601 return null;
1602 }
1603 }
1604
1605 /**
1606 * Obtains gateway instance by giving index number.
1607 *
1608 * @param gws a collection of gateway nodes
1609 * @param index index number
1610 * @return gateway instance
1611 */
1612 private static OpenstackNode getGwByIndex(Set<OpenstackNode> gws, int index) {
1613 Map<String, OpenstackNode> hashMap = new HashMap<>();
1614 gws.forEach(gw -> hashMap.put(gw.hostname(), gw));
1615 TreeMap<String, OpenstackNode> treeMap = new TreeMap<>(hashMap);
1616 Iterator<String> iteratorKey = treeMap.keySet().iterator();
1617
1618 int intIndex = 0;
1619 OpenstackNode gw = null;
1620 while (iteratorKey.hasNext()) {
1621 String key = iteratorKey.next();
1622
1623 if (intIndex == index) {
1624 gw = treeMap.get(key);
1625 }
1626 intIndex++;
1627 }
1628 return gw;
1629 }
Jian Li40f032a2019-10-02 20:36:09 +09001630
Jian Lifa62b372020-02-24 16:42:24 +09001631 /**
1632 * Returns the external gateway IP address with specified router information.
1633 *
1634 * @param router openstack router
1635 * @param snatOnly true for only query SNAT enabled case, false otherwise
1636 * @param osNetworkService openstack network service
1637 * @return external IP address
1638 */
1639 private static IpAddress externalGatewayIpBase(Router router, boolean snatOnly,
1640 OpenstackNetworkService osNetworkService) {
1641 if (router == null) {
1642 return null;
1643 }
1644
1645 ExternalGateway externalGateway = router.getExternalGatewayInfo();
1646 if (externalGateway == null) {
1647 log.info("Failed to get external IP for router {} because no " +
1648 "external gateway is associated with the router",
1649 router.getId());
1650 return null;
1651 }
1652
1653 if (snatOnly) {
1654 if (!externalGateway.isEnableSnat()) {
1655 log.warn("The given router {} SNAT is configured as false", router.getId());
1656 return null;
1657 }
1658 }
1659
1660 // TODO fix openstack4j for ExternalGateway provides external fixed IP list
1661 Port exGatewayPort = osNetworkService.ports(externalGateway.getNetworkId())
1662 .stream()
1663 .filter(port -> Objects.equals(port.getDeviceId(), router.getId()))
1664 .findAny().orElse(null);
1665
1666 if (exGatewayPort == null) {
1667 return null;
1668 }
1669
1670 return IpAddress.valueOf(exGatewayPort.getFixedIps().stream()
1671 .findAny().get().getIpAddress());
1672 }
1673
Jian Li40f032a2019-10-02 20:36:09 +09001674 private static void print(String format, Object... args) {
1675 System.out.println(String.format(format, args));
1676 }
Jian Li63430202018-08-30 16:24:09 +09001677}