]>
Commit | Line | Data |
---|---|---|
f5eabba0 AD |
1 | package PVE::Network::SDN::Zones; |
2 | ||
3 | use strict; | |
4 | use warnings; | |
5 | ||
6 | use Data::Dumper; | |
7 | use JSON; | |
8 | ||
9 | use PVE::Tools qw(extract_param dir_glob_regex run_command); | |
10 | use PVE::Cluster qw(cfs_read_file cfs_write_file cfs_lock_file); | |
eb1549e7 | 11 | use PVE::Network; |
f5eabba0 AD |
12 | |
13 | use PVE::Network::SDN::Vnets; | |
14 | use PVE::Network::SDN::Zones::VlanPlugin; | |
15 | use PVE::Network::SDN::Zones::QinQPlugin; | |
16 | use PVE::Network::SDN::Zones::VxlanPlugin; | |
17 | use PVE::Network::SDN::Zones::EvpnPlugin; | |
18 | use PVE::Network::SDN::Zones::FaucetPlugin; | |
19 | use PVE::Network::SDN::Zones::Plugin; | |
20 | ||
21 | PVE::Network::SDN::Zones::VlanPlugin->register(); | |
22 | PVE::Network::SDN::Zones::QinQPlugin->register(); | |
23 | PVE::Network::SDN::Zones::VxlanPlugin->register(); | |
24 | PVE::Network::SDN::Zones::EvpnPlugin->register(); | |
25 | PVE::Network::SDN::Zones::FaucetPlugin->register(); | |
26 | PVE::Network::SDN::Zones::Plugin->init(); | |
27 | ||
0814c9a9 | 28 | my $local_network_sdn_file = "/etc/network/interfaces.d/sdn"; |
f5eabba0 AD |
29 | |
30 | sub sdn_zones_config { | |
31 | my ($cfg, $id, $noerr) = @_; | |
32 | ||
33 | die "no sdn zone ID specified\n" if !$id; | |
34 | ||
35 | my $scfg = $cfg->{ids}->{$id}; | |
b2d83056 | 36 | die "sdn '$id' does not exist\n" if (!$noerr && !$scfg); |
f5eabba0 AD |
37 | |
38 | return $scfg; | |
39 | } | |
40 | ||
41 | sub config { | |
f703d2ae | 42 | my $config = cfs_read_file("sdn/zones.cfg"); |
f5eabba0 AD |
43 | return $config; |
44 | } | |
45 | ||
41d40fb1 TL |
46 | sub get_plugin_config { |
47 | my ($vnet) = @_; | |
48 | my $zoneid = $vnet->{zone}; | |
49 | my $zone_cfg = PVE::Network::SDN::Zones::config(); | |
50 | return $zone_cfg->{ids}->{$zoneid}; | |
51 | } | |
52 | ||
f5eabba0 AD |
53 | sub write_config { |
54 | my ($cfg) = @_; | |
55 | ||
f703d2ae | 56 | cfs_write_file("sdn/zones.cfg", $cfg); |
f5eabba0 AD |
57 | } |
58 | ||
f5eabba0 AD |
59 | sub sdn_zones_ids { |
60 | my ($cfg) = @_; | |
61 | ||
62 | return keys %{$cfg->{ids}}; | |
63 | } | |
64 | ||
65 | sub complete_sdn_zone { | |
66 | my ($cmdname, $pname, $cvalue) = @_; | |
67 | ||
68 | my $cfg = PVE::Network::SDN::config(); | |
69 | ||
70 | return $cmdname eq 'add' ? [] : [ PVE::Network::SDN::sdn_zones_ids($cfg) ]; | |
71 | } | |
72 | ||
73 | ||
74 | sub generate_etc_network_config { | |
75 | ||
0814c9a9 | 76 | my $version = PVE::Cluster::cfs_read_file('sdn/.version'); |
f5eabba0 | 77 | my $vnet_cfg = PVE::Cluster::cfs_read_file('sdn/vnets.cfg'); |
56cdcac9 | 78 | my $zone_cfg = PVE::Cluster::cfs_read_file('sdn/zones.cfg'); |
4405f2de | 79 | my $controller_cfg = PVE::Cluster::cfs_read_file('sdn/controllers.cfg'); |
56cdcac9 | 80 | return if !$vnet_cfg && !$zone_cfg; |
f5eabba0 | 81 | |
ba7ac021 | 82 | my $interfaces_config = PVE::INotify::read_file('interfaces'); |
f5eabba0 AD |
83 | |
84 | #generate configuration | |
85 | my $config = {}; | |
c2b9c173 AD |
86 | my $nodename = PVE::INotify::nodename(); |
87 | ||
e0c19383 | 88 | for my $id (sort keys %{$vnet_cfg->{ids}}) { |
f5eabba0 | 89 | my $vnet = $vnet_cfg->{ids}->{$id}; |
3fd3e917 | 90 | my $zone = $vnet->{zone}; |
f5eabba0 | 91 | |
e0c19383 TL |
92 | if (!$zone) { |
93 | warn "can't generate vnet '$id': no zone assigned!\n"; | |
f5eabba0 AD |
94 | next; |
95 | } | |
96 | ||
56cdcac9 | 97 | my $plugin_config = $zone_cfg->{ids}->{$zone}; |
f5eabba0 AD |
98 | |
99 | if (!defined($plugin_config)) { | |
e0c19383 | 100 | warn "can't generate vnet '$id': zone $zone don't exist\n"; |
f5eabba0 AD |
101 | next; |
102 | } | |
103 | ||
c2b9c173 AD |
104 | next if defined($plugin_config->{nodes}) && !$plugin_config->{nodes}->{$nodename}; |
105 | ||
e0c19383 TL |
106 | my $controller; |
107 | if (my $controllerid = $plugin_config->{controller}) { | |
108 | $controller = $controller_cfg->{ids}->{$controllerid}; | |
4405f2de AD |
109 | } |
110 | ||
f5eabba0 | 111 | my $plugin = PVE::Network::SDN::Zones::Plugin->lookup($plugin_config->{type}); |
ae3f4de8 AD |
112 | eval { |
113 | $plugin->generate_sdn_config($plugin_config, $zone, $id, $vnet, $controller, $interfaces_config, $config); | |
114 | }; | |
cd01a0c0 TL |
115 | if (my $err = $@) { |
116 | warn "zone $zone : vnet $id : $err\n"; | |
ae3f4de8 AD |
117 | next; |
118 | } | |
f5eabba0 AD |
119 | } |
120 | ||
0814c9a9 | 121 | my $raw_network_config = "\#version:$version\n"; |
2d4c068e | 122 | foreach my $iface (sort keys %$config) { |
f5eabba0 AD |
123 | $raw_network_config .= "\n"; |
124 | $raw_network_config .= "auto $iface\n"; | |
125 | $raw_network_config .= "iface $iface\n"; | |
126 | foreach my $option (@{$config->{$iface}}) { | |
127 | $raw_network_config .= "\t$option\n"; | |
128 | } | |
129 | } | |
130 | ||
131 | return $raw_network_config; | |
132 | } | |
133 | ||
134 | sub write_etc_network_config { | |
135 | my ($rawconfig) = @_; | |
136 | ||
137 | return if !$rawconfig; | |
f5eabba0 | 138 | |
0814c9a9 | 139 | my $writefh = IO::File->new($local_network_sdn_file,">"); |
f5eabba0 AD |
140 | print $writefh $rawconfig; |
141 | $writefh->close(); | |
142 | } | |
143 | ||
0814c9a9 AD |
144 | sub read_etc_network_config_version { |
145 | my $versionstr = PVE::Tools::file_read_firstline($local_network_sdn_file); | |
06c87086 SI |
146 | |
147 | return if !defined($versionstr); | |
148 | ||
0814c9a9 AD |
149 | if ($versionstr =~ m/^\#version:(\d+)$/) { |
150 | return $1; | |
151 | } | |
152 | } | |
153 | ||
f5eabba0 AD |
154 | sub ifquery_check { |
155 | ||
156 | my $cmd = ['ifquery', '-a', '-c', '-o','json']; | |
157 | ||
158 | my $result = ''; | |
159 | my $reader = sub { $result .= shift }; | |
160 | ||
161 | eval { | |
162 | run_command($cmd, outfunc => $reader); | |
163 | }; | |
164 | ||
165 | my $resultjson = decode_json($result); | |
166 | my $interfaces = {}; | |
167 | ||
168 | foreach my $interface (@$resultjson) { | |
169 | my $name = $interface->{name}; | |
170 | $interfaces->{$name} = { | |
171 | status => $interface->{status}, | |
172 | config => $interface->{config}, | |
173 | config_status => $interface->{config_status}, | |
174 | }; | |
175 | } | |
176 | ||
177 | return $interfaces; | |
178 | } | |
179 | ||
9ddc4a6f | 180 | my $warned_about_reload; |
4d7cc94f | 181 | |
f5eabba0 AD |
182 | sub status { |
183 | ||
f5eabba0 AD |
184 | my $err_config = undef; |
185 | ||
6f4d0610 AD |
186 | my $local_version = PVE::Network::SDN::Zones::read_etc_network_config_version(); |
187 | my $sdn_version = PVE::Cluster::cfs_read_file('sdn/.version'); | |
f5eabba0 | 188 | |
6f4d0610 | 189 | return if !$sdn_version; |
3709a203 | 190 | |
6f4d0610 | 191 | if (!$local_version) { |
3709a203 | 192 | $err_config = "local sdn network configuration is not yet generated, please reload"; |
9ddc4a6f TL |
193 | if (!$warned_about_reload) { |
194 | $warned_about_reload = 1; | |
195 | warn "$err_config\n"; | |
196 | } | |
6f4d0610 AD |
197 | } elsif ($local_version < $sdn_version) { |
198 | $err_config = "local sdn network configuration is too old, please reload"; | |
9ddc4a6f TL |
199 | if (!$warned_about_reload) { |
200 | $warned_about_reload = 1; | |
201 | warn "$err_config\n"; | |
202 | } | |
203 | } else { | |
204 | $warned_about_reload = 0; | |
f5eabba0 AD |
205 | } |
206 | ||
207 | my $status = ifquery_check(); | |
208 | ||
209 | my $vnet_cfg = PVE::Cluster::cfs_read_file('sdn/vnets.cfg'); | |
c2b9c173 AD |
210 | my $zone_cfg = PVE::Cluster::cfs_read_file('sdn/zones.cfg'); |
211 | my $nodename = PVE::INotify::nodename(); | |
f5eabba0 | 212 | |
0f700635 | 213 | my $vnet_status = {}; |
56cdcac9 | 214 | my $zone_status = {}; |
f5eabba0 | 215 | |
fc197ef2 TL |
216 | for my $id (sort keys %{$zone_cfg->{ids}}) { |
217 | $zone_status->{$id}->{status} = $err_config ? 'pending' : 'available'; | |
4d7cc94f AD |
218 | } |
219 | ||
70da0442 TL |
220 | foreach my $id (sort keys %{$vnet_cfg->{ids}}) { |
221 | my $vnet = $vnet_cfg->{ids}->{$id}; | |
222 | my $zone = $vnet->{zone}; | |
627b1694 | 223 | next if !$zone; |
627b1694 | 224 | |
70da0442 TL |
225 | my $plugin_config = $zone_cfg->{ids}->{$zone}; |
226 | next if defined($plugin_config->{nodes}) && !$plugin_config->{nodes}->{$nodename}; | |
227 | ||
4d7cc94f AD |
228 | $vnet_status->{$id}->{zone} = $zone; |
229 | $vnet_status->{$id}->{status} = 'available'; | |
230 | ||
fc197ef2 | 231 | if ($err_config) { |
4d7cc94f AD |
232 | $vnet_status->{$id}->{status} = 'pending'; |
233 | $vnet_status->{$id}->{statusmsg} = $err_config; | |
234 | next; | |
235 | } | |
236 | ||
70da0442 | 237 | my $plugin = PVE::Network::SDN::Zones::Plugin->lookup($plugin_config->{type}); |
4d7cc94f AD |
238 | my $err_msg = $plugin->status($plugin_config, $zone, $id, $vnet, $status); |
239 | if (@{$err_msg} > 0) { | |
240 | $vnet_status->{$id}->{status} = 'error'; | |
241 | $vnet_status->{$id}->{statusmsg} = join(',', @{$err_msg}); | |
242 | $zone_status->{$id}->{status} = 'error'; | |
0f700635 | 243 | } |
f5eabba0 | 244 | } |
627b1694 | 245 | |
fc197ef2 | 246 | return ($zone_status, $vnet_status); |
f5eabba0 AD |
247 | } |
248 | ||
eb1549e7 AD |
249 | sub tap_create { |
250 | my ($iface, $bridge) = @_; | |
251 | ||
252 | my $vnet = PVE::Network::SDN::Vnets::get_vnet($bridge); | |
a1ef0eb9 | 253 | if (!$vnet) { # fallback for classic bridge |
eb1549e7 | 254 | PVE::Network::tap_create($iface, $bridge); |
a1ef0eb9 | 255 | return; |
eb1549e7 AD |
256 | } |
257 | ||
41d40fb1 | 258 | my $plugin_config = get_plugin_config($vnet); |
eb1549e7 AD |
259 | my $plugin = PVE::Network::SDN::Zones::Plugin->lookup($plugin_config->{type}); |
260 | $plugin->tap_create($plugin_config, $vnet, $iface, $bridge); | |
261 | } | |
262 | ||
263 | sub veth_create { | |
264 | my ($veth, $vethpeer, $bridge, $hwaddr) = @_; | |
265 | ||
266 | my $vnet = PVE::Network::SDN::Vnets::get_vnet($bridge); | |
a1ef0eb9 | 267 | if (!$vnet) { # fallback for classic bridge |
eb1549e7 | 268 | PVE::Network::veth_create($veth, $vethpeer, $bridge, $hwaddr); |
a1ef0eb9 | 269 | return; |
eb1549e7 AD |
270 | } |
271 | ||
41d40fb1 | 272 | my $plugin_config = get_plugin_config($vnet); |
eb1549e7 AD |
273 | my $plugin = PVE::Network::SDN::Zones::Plugin->lookup($plugin_config->{type}); |
274 | $plugin->veth_create($plugin_config, $vnet, $veth, $vethpeer, $bridge, $hwaddr); | |
275 | } | |
276 | ||
277 | sub tap_plug { | |
278 | my ($iface, $bridge, $tag, $firewall, $trunks, $rate) = @_; | |
279 | ||
280 | my $vnet = PVE::Network::SDN::Vnets::get_vnet($bridge); | |
a1ef0eb9 | 281 | if (!$vnet) { # fallback for classic bridge |
eb1549e7 AD |
282 | PVE::Network::tap_plug($iface, $bridge, $tag, $firewall, $trunks, $rate); |
283 | return; | |
284 | } | |
285 | ||
41d40fb1 | 286 | my $plugin_config = get_plugin_config($vnet); |
eb1549e7 AD |
287 | my $nodename = PVE::INotify::nodename(); |
288 | ||
41d40fb1 TL |
289 | die "vnet $bridge is not allowed on this node\n" |
290 | if $plugin_config->{nodes} && !defined($plugin_config->{nodes}->{$nodename}); | |
2ba9613b | 291 | |
2ba9613b | 292 | my $plugin = PVE::Network::SDN::Zones::Plugin->lookup($plugin_config->{type}); |
912fb443 | 293 | $plugin->tap_plug($plugin_config, $vnet, $tag, $iface, $bridge, $firewall, $trunks, $rate); |
2ba9613b AD |
294 | } |
295 | ||
f5eabba0 AD |
296 | 1; |
297 |