]>
Commit | Line | Data |
---|---|---|
1 | package PVE::Network::SDN; | |
2 | ||
3 | use strict; | |
4 | use warnings; | |
5 | ||
6 | use Data::Dumper; | |
7 | use JSON; | |
8 | ||
9 | use PVE::Tools qw(extract_param dir_glob_regex run_command); | |
10 | use PVE::Cluster qw(cfs_read_file cfs_write_file cfs_lock_file); | |
11 | use PVE::Network::SDN::Plugin; | |
12 | use PVE::Network::SDN::VnetPlugin; | |
13 | use PVE::Network::SDN::VlanPlugin; | |
14 | use PVE::Network::SDN::VxlanPlugin; | |
15 | use PVE::Network::SDN::FrrPlugin; | |
16 | ||
17 | PVE::Network::SDN::VnetPlugin->register(); | |
18 | PVE::Network::SDN::VlanPlugin->register(); | |
19 | PVE::Network::SDN::VxlanPlugin->register(); | |
20 | PVE::Network::SDN::FrrPlugin->register(); | |
21 | PVE::Network::SDN::Plugin->init(); | |
22 | ||
23 | ||
24 | sub sdn_config { | |
25 | my ($cfg, $sdnid, $noerr) = @_; | |
26 | ||
27 | die "no sdn ID specified\n" if !$sdnid; | |
28 | ||
29 | my $scfg = $cfg->{ids}->{$sdnid}; | |
30 | die "sdn '$sdnid' does not exists\n" if (!$noerr && !$scfg); | |
31 | ||
32 | return $scfg; | |
33 | } | |
34 | ||
35 | sub config { | |
36 | my $config = cfs_read_file("sdn.cfg.new"); | |
37 | $config = cfs_read_file("sdn.cfg") if !keys %{$config->{ids}}; | |
38 | return $config; | |
39 | } | |
40 | ||
41 | sub write_config { | |
42 | my ($cfg) = @_; | |
43 | ||
44 | cfs_write_file("sdn.cfg.new", $cfg); | |
45 | } | |
46 | ||
47 | sub lock_sdn_config { | |
48 | my ($code, $errmsg) = @_; | |
49 | ||
50 | cfs_lock_file("sdn.cfg.new", undef, $code); | |
51 | if (my $err = $@) { | |
52 | $errmsg ? die "$errmsg: $err" : die $err; | |
53 | } | |
54 | } | |
55 | ||
56 | sub sdn_ids { | |
57 | my ($cfg) = @_; | |
58 | ||
59 | return keys %{$cfg->{ids}}; | |
60 | } | |
61 | ||
62 | sub complete_sdn { | |
63 | my ($cmdname, $pname, $cvalue) = @_; | |
64 | ||
65 | my $cfg = PVE::Network::SDN::config(); | |
66 | ||
67 | return $cmdname eq 'add' ? [] : [ PVE::Network::SDN::sdn_ids($cfg) ]; | |
68 | } | |
69 | ||
70 | sub ifquery_check { | |
71 | ||
72 | my $cmd = ['ifquery', '-a', '-c', '-o','json']; | |
73 | ||
74 | my $result = ''; | |
75 | my $reader = sub { $result .= shift }; | |
76 | ||
77 | eval { | |
78 | run_command($cmd, outfunc => $reader); | |
79 | }; | |
80 | ||
81 | my $resultjson = decode_json($result); | |
82 | my $interfaces = {}; | |
83 | ||
84 | foreach my $interface (@$resultjson) { | |
85 | my $name = $interface->{name}; | |
86 | $interfaces->{$name} = { | |
87 | status => $interface->{status}, | |
88 | config => $interface->{config}, | |
89 | config_status => $interface->{config_status}, | |
90 | }; | |
91 | } | |
92 | ||
93 | return $interfaces; | |
94 | } | |
95 | ||
96 | ||
97 | sub generate_etc_network_config { | |
98 | ||
99 | my $sdn_cfg = PVE::Cluster::cfs_read_file('sdn.cfg'); | |
100 | return if !$sdn_cfg; | |
101 | ||
102 | #read main config for physical interfaces | |
103 | my $current_config_file = "/etc/network/interfaces"; | |
104 | my $fh = IO::File->new($current_config_file); | |
105 | my $interfaces_config = PVE::INotify::read_etc_network_interfaces(1,$fh); | |
106 | $fh->close(); | |
107 | ||
108 | #check uplinks | |
109 | my $uplinks = {}; | |
110 | foreach my $id (keys %{$interfaces_config->{ifaces}}) { | |
111 | my $interface = $interfaces_config->{ifaces}->{$id}; | |
112 | if (my $uplink = $interface->{'uplink-id'}) { | |
113 | die "uplink-id $uplink is already defined on $uplinks->{$uplink}" if $uplinks->{$uplink}; | |
114 | $interface->{name} = $id; | |
115 | $uplinks->{$interface->{'uplink-id'}} = $interface; | |
116 | } | |
117 | } | |
118 | ||
119 | my $vnet_cfg = undef; | |
120 | my $transport_cfg = undef; | |
121 | ||
122 | foreach my $id (keys %{$sdn_cfg->{ids}}) { | |
123 | if ($sdn_cfg->{ids}->{$id}->{type} eq 'vnet') { | |
124 | $vnet_cfg->{ids}->{$id} = $sdn_cfg->{ids}->{$id}; | |
125 | } else { | |
126 | $transport_cfg->{ids}->{$id} = $sdn_cfg->{ids}->{$id}; | |
127 | } | |
128 | } | |
129 | ||
130 | #generate configuration | |
131 | my $config = {}; | |
132 | foreach my $id (keys %{$vnet_cfg->{ids}}) { | |
133 | my $vnet = $vnet_cfg->{ids}->{$id}; | |
134 | my $zone = $vnet->{transportzone}; | |
135 | ||
136 | if(!$zone) { | |
137 | warn "can't generate vnet $vnet : zone $zone don't exist"; | |
138 | next; | |
139 | } | |
140 | ||
141 | my $plugin_config = $transport_cfg->{ids}->{$zone}; | |
142 | ||
143 | if (!defined($plugin_config)) { | |
144 | warn "can't generate vnet $vnet : zone $zone don't exist"; | |
145 | next; | |
146 | } | |
147 | ||
148 | my $plugin = PVE::Network::SDN::Plugin->lookup($plugin_config->{type}); | |
149 | $plugin->generate_sdn_config($plugin_config, $zone, $id, $vnet, $uplinks, $config); | |
150 | } | |
151 | ||
152 | my $raw_network_config = ""; | |
153 | foreach my $iface (keys %$config) { | |
154 | $raw_network_config .= "\n"; | |
155 | $raw_network_config .= "auto $iface\n"; | |
156 | $raw_network_config .= "iface $iface\n"; | |
157 | foreach my $option (@{$config->{$iface}}) { | |
158 | $raw_network_config .= "\t$option\n"; | |
159 | } | |
160 | } | |
161 | ||
162 | return $raw_network_config; | |
163 | } | |
164 | ||
165 | sub generate_frr_config { | |
166 | ||
167 | my $sdn_cfg = PVE::Cluster::cfs_read_file('sdn.cfg'); | |
168 | return if !$sdn_cfg; | |
169 | ||
170 | #read main config for physical interfaces | |
171 | my $current_config_file = "/etc/network/interfaces"; | |
172 | my $fh = IO::File->new($current_config_file); | |
173 | my $interfaces_config = PVE::INotify::read_etc_network_interfaces(1,$fh); | |
174 | $fh->close(); | |
175 | ||
176 | #check uplinks | |
177 | my $uplinks = {}; | |
178 | foreach my $id (keys %{$interfaces_config->{ifaces}}) { | |
179 | my $interface = $interfaces_config->{ifaces}->{$id}; | |
180 | if (my $uplink = $interface->{'uplink-id'}) { | |
181 | die "uplink-id $uplink is already defined on $uplinks->{$uplink}" if $uplinks->{$uplink}; | |
182 | $interface->{name} = $id; | |
183 | $uplinks->{$interface->{'uplink-id'}} = $interface; | |
184 | } | |
185 | } | |
186 | ||
187 | my $frr_cfg = undef; | |
188 | my $transport_cfg = undef; | |
189 | ||
190 | foreach my $id (keys %{$sdn_cfg->{ids}}) { | |
191 | if ($sdn_cfg->{ids}->{$id}->{type} eq 'frr') { | |
192 | $frr_cfg->{ids}->{$id} = $sdn_cfg->{ids}->{$id}; | |
193 | } elsif ($sdn_cfg->{ids}->{$id}->{type} ne 'vnet') { | |
194 | $transport_cfg->{ids}->{$id} = $sdn_cfg->{ids}->{$id}; | |
195 | } | |
196 | } | |
197 | ||
198 | return undef if !$frr_cfg; | |
199 | ||
200 | #generate configuration | |
201 | my $config = {}; | |
202 | ||
203 | foreach my $id (keys %{$frr_cfg->{ids}}) { | |
204 | my $plugin_config = $frr_cfg->{ids}->{$id}; | |
205 | my $asn = $plugin_config->{asn}; | |
206 | if ($asn) { | |
207 | my $plugin = PVE::Network::SDN::Plugin->lookup($plugin_config->{type}); | |
208 | $plugin->generate_frr_config($plugin_config, $asn, $id, $uplinks, $config); | |
209 | } | |
210 | } | |
211 | ||
212 | foreach my $id (keys %{$transport_cfg->{ids}}) { | |
213 | my $plugin_config = $transport_cfg->{ids}->{$id}; | |
214 | my $router = $plugin_config->{router}; | |
215 | if ($router) { | |
216 | my $asn = $frr_cfg->{ids}->{$router}->{asn}; | |
217 | if ($asn) { | |
218 | my $plugin = PVE::Network::SDN::Plugin->lookup($plugin_config->{type}); | |
219 | $plugin->generate_frr_config($plugin_config, $asn, $id, $uplinks, $config); | |
220 | } | |
221 | } | |
222 | } | |
223 | ||
224 | my $final_config = []; | |
225 | push @{$final_config}, "log syslog informational"; | |
226 | push @{$final_config}, "!"; | |
227 | ||
228 | generate_frr_recurse($final_config, $config, undef, 0); | |
229 | ||
230 | push @{$final_config}, "!"; | |
231 | push @{$final_config}, "line vty"; | |
232 | push @{$final_config}, "!"; | |
233 | ||
234 | my $raw_frr_config = join("\n", @{$final_config}); | |
235 | return $raw_frr_config; | |
236 | } | |
237 | ||
238 | sub sort_frr_config { | |
239 | my $order = {}; | |
240 | $order->{''} = 0; | |
241 | $order->{'vrf'} = 1; | |
242 | $order->{'ipv4 unicast'} = 1; | |
243 | $order->{'l2vpn evpn'} = 2; | |
244 | ||
245 | my $a_val = 100; | |
246 | my $b_val = 100; | |
247 | ||
248 | $a_val = $order->{$a} if defined($order->{$a}); | |
249 | $b_val = $order->{$b} if defined($order->{$b}); | |
250 | ||
251 | if($a =~ /bgp (\d+)$/) { | |
252 | $a_val = 2; | |
253 | } | |
254 | ||
255 | if($b =~ /bgp (\d+)$/) { | |
256 | $b_val = 2; | |
257 | } | |
258 | ||
259 | return $a_val <=> $b_val; | |
260 | } | |
261 | ||
262 | sub generate_frr_recurse{ | |
263 | my ($final_config, $content, $parentkey, $level) = @_; | |
264 | ||
265 | my $keylist = {}; | |
266 | $keylist->{vrf} = 1; | |
267 | $keylist->{'address-family'} = 1; | |
268 | $keylist->{router} = 1; | |
269 | ||
270 | my $exitkeylist = {}; | |
271 | $exitkeylist->{vrf} = 1; | |
272 | $exitkeylist->{'address-family'} = 1; | |
273 | ||
274 | #fix me, make this generic | |
275 | my $paddinglevel = undef; | |
276 | if($level == 1 || $level == 2) { | |
277 | $paddinglevel = $level - 1; | |
278 | } elsif ($level == 3 || $level == 4) { | |
279 | $paddinglevel = $level - 2; | |
280 | } | |
281 | ||
282 | my $padding = ""; | |
283 | $padding = ' ' x ($paddinglevel) if $paddinglevel; | |
284 | ||
285 | if (ref $content eq ref {}) { | |
286 | foreach my $key (sort sort_frr_config keys %$content) { | |
287 | if ($parentkey && defined($keylist->{$parentkey})) { | |
288 | push @{$final_config}, $padding."!"; | |
289 | push @{$final_config}, $padding."$parentkey $key"; | |
290 | } else { | |
291 | push @{$final_config}, $padding."$key" if $key ne '' && !defined($keylist->{$key}); | |
292 | } | |
293 | ||
294 | my $option = $content->{$key}; | |
295 | generate_frr_recurse($final_config, $option, $key, $level+1); | |
296 | ||
297 | push @{$final_config}, $padding."exit-$parentkey" if $parentkey && defined($exitkeylist->{$parentkey}); | |
298 | } | |
299 | } | |
300 | ||
301 | if (ref $content eq 'ARRAY') { | |
302 | foreach my $value (@$content) { | |
303 | push @{$final_config}, $padding."$value"; | |
304 | } | |
305 | } | |
306 | } | |
307 | sub write_etc_network_config { | |
308 | my ($rawconfig) = @_; | |
309 | ||
310 | return if !$rawconfig; | |
311 | my $sdn_interfaces_file = "/etc/network/interfaces.d/sdn"; | |
312 | ||
313 | my $writefh = IO::File->new($sdn_interfaces_file,">"); | |
314 | print $writefh $rawconfig; | |
315 | $writefh->close(); | |
316 | } | |
317 | ||
318 | sub write_frr_config { | |
319 | my ($rawconfig) = @_; | |
320 | ||
321 | return if !$rawconfig; | |
322 | return if !-d "/etc/frr"; | |
323 | ||
324 | my $frr_config_file = "/etc/frr/frr.conf"; | |
325 | ||
326 | my $writefh = IO::File->new($frr_config_file,">"); | |
327 | print $writefh $rawconfig; | |
328 | $writefh->close(); | |
329 | } | |
330 | ||
331 | ||
332 | sub status { | |
333 | ||
334 | my $cluster_sdn_file = "/etc/pve/sdn.cfg"; | |
335 | my $local_sdn_file = "/etc/network/interfaces.d/sdn"; | |
336 | my $err_config = undef; | |
337 | ||
338 | return if !-e $cluster_sdn_file; | |
339 | ||
340 | if (!-e $local_sdn_file) { | |
341 | warn "local sdn network configuration is not yet generated, please reload"; | |
342 | $err_config = 'pending'; | |
343 | } else { | |
344 | # fixme : use some kind of versioning info? | |
345 | my $cluster_sdn_timestamp = (stat($cluster_sdn_file))[9]; | |
346 | my $local_sdn_timestamp = (stat($local_sdn_file))[9]; | |
347 | ||
348 | if ($local_sdn_timestamp < $cluster_sdn_timestamp) { | |
349 | warn "local sdn network configuration is too old, please reload"; | |
350 | $err_config = 'unknown'; | |
351 | } | |
352 | } | |
353 | ||
354 | my $status = ifquery_check(); | |
355 | ||
356 | my $network_cfg = PVE::Cluster::cfs_read_file('sdn.cfg'); | |
357 | my $vnet_cfg = undef; | |
358 | my $transport_cfg = undef; | |
359 | ||
360 | my $vnet_status = {}; | |
361 | my $transport_status = {}; | |
362 | ||
363 | foreach my $id (keys %{$network_cfg->{ids}}) { | |
364 | if ($network_cfg->{ids}->{$id}->{type} eq 'vnet') { | |
365 | my $transportzone = $network_cfg->{ids}->{$id}->{transportzone}; | |
366 | $vnet_status->{$id}->{transportzone} = $transportzone; | |
367 | $transport_status->{$transportzone}->{status} = 'available' if !defined($transport_status->{$transportzone}->{status}); | |
368 | ||
369 | if($err_config) { | |
370 | $vnet_status->{$id}->{status} = $err_config; | |
371 | $transport_status->{$transportzone}->{status} = $err_config; | |
372 | } elsif ($status->{$id}->{status} && $status->{$id}->{status} eq 'pass') { | |
373 | $vnet_status->{$id}->{status} = 'available'; | |
374 | my $bridgeport = $status->{$id}->{config}->{'bridge-ports'}; | |
375 | ||
376 | if ($status->{$bridgeport}->{status} && $status->{$bridgeport}->{status} ne 'pass') { | |
377 | $vnet_status->{$id}->{status} = 'error'; | |
378 | $transport_status->{$transportzone}->{status} = 'error'; | |
379 | } | |
380 | } else { | |
381 | $vnet_status->{$id}->{status} = 'error'; | |
382 | $transport_status->{$transportzone}->{status} = 'error'; | |
383 | } | |
384 | } | |
385 | } | |
386 | return($transport_status, $vnet_status); | |
387 | } | |
388 | ||
389 | 1; | |
390 |