]>
Commit | Line | Data |
---|---|---|
6680878b DM |
1 | use std::future::Future; |
2 | use std::pin::Pin; | |
3 | ||
f7d4e4b5 | 4 | use anyhow::{bail, Error}; |
e76ac3a4 | 5 | use futures::*; |
7fa9a37c DM |
6 | use http::request::Parts; |
7 | use http::Response; | |
608806e8 DM |
8 | use hyper::{Body, Method, StatusCode}; |
9 | use http::HeaderMap; | |
e76ac3a4 | 10 | |
6ef1b649 WB |
11 | use proxmox_lang::try_block; |
12 | use proxmox_router::{RpcEnvironmentType, UserInformation}; | |
fd6d2438 | 13 | use proxmox::tools::fs::CreateOptions; |
e76ac3a4 | 14 | |
608806e8 | 15 | use proxmox_rest_server::{daemon, AuthError, ApiConfig, RestServer, RestEnvironment, ServerAdapter}; |
8bca935f | 16 | |
608806e8 | 17 | use proxmox_backup::server::auth::check_pbs_auth; |
6c30068e | 18 | use proxmox_backup::auth_helpers::*; |
a8f268af | 19 | use proxmox_backup::config; |
886e5ce8 | 20 | |
d973aa82 | 21 | fn main() { |
ac7513e3 DM |
22 | proxmox_backup::tools::setup_safe_path_env(); |
23 | ||
9a1b24b6 | 24 | if let Err(err) = proxmox_async::runtime::main(run()) { |
aa5a4060 DM |
25 | eprintln!("Error: {}", err); |
26 | std::process::exit(-1); | |
27 | } | |
28 | } | |
29 | ||
608806e8 | 30 | struct ProxmoxBackupApiAdapter; |
7fa9a37c | 31 | |
608806e8 | 32 | impl ServerAdapter for ProxmoxBackupApiAdapter { |
7fa9a37c | 33 | |
608806e8 DM |
34 | fn get_index( |
35 | &self, | |
36 | _env: RestEnvironment, | |
37 | _parts: Parts, | |
38 | ) -> Pin<Box<dyn Future<Output = Response<Body>> + Send>> { | |
39 | Box::pin(async move { | |
40 | ||
41 | let index = "<center><h1>Proxmox Backup API Server</h1></center>"; | |
42 | ||
43 | Response::builder() | |
44 | .status(StatusCode::OK) | |
45 | .header(hyper::header::CONTENT_TYPE, "text/html") | |
46 | .body(index.into()) | |
47 | .unwrap() | |
48 | }) | |
49 | } | |
50 | ||
51 | fn check_auth<'a>( | |
52 | &'a self, | |
53 | headers: &'a HeaderMap, | |
54 | method: &'a Method, | |
55 | ) -> Pin<Box<dyn Future<Output = Result<(String, Box<dyn UserInformation + Sync + Send>), AuthError>> + Send + 'a>> { | |
56 | Box::pin(async move { | |
57 | check_pbs_auth(headers, method).await | |
58 | }) | |
59 | } | |
7fa9a37c DM |
60 | } |
61 | ||
e76ac3a4 | 62 | async fn run() -> Result<(), Error> { |
d96d8273 DM |
63 | if let Err(err) = syslog::init( |
64 | syslog::Facility::LOG_DAEMON, | |
65 | log::LevelFilter::Info, | |
66 | Some("proxmox-backup-api")) { | |
aa5a4060 | 67 | bail!("unable to inititialize syslog - {}", err); |
a8f268af DM |
68 | } |
69 | ||
70 | config::create_configdir()?; | |
d96d8273 | 71 | |
22be470d DM |
72 | config::update_self_signed_cert(false)?; |
73 | ||
6c76aa43 | 74 | proxmox_backup::server::create_run_dir()?; |
bf013be1 | 75 | proxmox_backup::server::create_state_dir()?; |
1298618a | 76 | proxmox_backup::server::jobstate::create_jobstate_dir()?; |
cafd51bf | 77 | proxmox_backup::tape::create_tape_status_dir()?; |
cd44fb8d DM |
78 | proxmox_backup::tape::create_drive_state_dir()?; |
79 | proxmox_backup::tape::create_changer_state_dir()?; | |
a0cd0f9c | 80 | proxmox_backup::tape::create_drive_lock_dir()?; |
eaeda365 | 81 | |
39a90ca6 | 82 | if let Err(err) = generate_auth_key() { |
aa5a4060 | 83 | bail!("unable to generate auth key - {}", err); |
8d04280b | 84 | } |
d01e2420 | 85 | let _ = private_auth_key(); // load with lazy_static |
8d04280b | 86 | |
39a90ca6 | 87 | if let Err(err) = generate_csrf_key() { |
aa5a4060 | 88 | bail!("unable to generate csrf key - {}", err); |
39a90ca6 | 89 | } |
d01e2420 | 90 | let _ = csrf_secret(); // load with lazy_static |
39a90ca6 | 91 | |
fd6d2438 | 92 | let mut config = ApiConfig::new( |
af06decd | 93 | pbs_buildcfg::JS_DIR, |
26858dba SR |
94 | &proxmox_backup::api2::ROUTER, |
95 | RpcEnvironmentType::PRIVILEGED, | |
608806e8 | 96 | ProxmoxBackupApiAdapter, |
26858dba | 97 | )?; |
eaeda365 | 98 | |
fd6d2438 | 99 | let backup_user = pbs_config::backup_user()?; |
49e25688 | 100 | let mut commando_sock = proxmox_rest_server::CommandSocket::new(proxmox_rest_server::our_ctrl_sock(), backup_user.gid); |
a68768cf | 101 | |
fd6d2438 DM |
102 | let dir_opts = CreateOptions::new().owner(backup_user.uid).group(backup_user.gid); |
103 | let file_opts = CreateOptions::new().owner(backup_user.uid).group(backup_user.gid); | |
104 | ||
0d5d15c9 | 105 | config.enable_access_log( |
fd6d2438 | 106 | pbs_buildcfg::API_ACCESS_LOG_FN, |
36b7085e DM |
107 | Some(dir_opts.clone()), |
108 | Some(file_opts.clone()), | |
109 | &mut commando_sock, | |
110 | )?; | |
111 | ||
112 | config.enable_auth_log( | |
113 | pbs_buildcfg::API_AUTH_LOG_FN, | |
0a33fba4 DM |
114 | Some(dir_opts.clone()), |
115 | Some(file_opts.clone()), | |
fd6d2438 DM |
116 | &mut commando_sock, |
117 | )?; | |
8e7e2223 | 118 | |
36b7085e | 119 | |
9bc17e8d | 120 | let rest_server = RestServer::new(config); |
b9700a9f | 121 | proxmox_rest_server::init_worker_tasks(pbs_buildcfg::PROXMOX_BACKUP_LOG_DIR_M!().into(), file_opts.clone())?; |
886e5ce8 | 122 | |
5e7bc50a | 123 | // http server future: |
a690ecac WB |
124 | let server = daemon::create_daemon( |
125 | ([127,0,0,1], 82).into(), | |
d2654200 | 126 | move |listener| { |
6f0565fa DC |
127 | let incoming = hyper::server::conn::AddrIncoming::from_listener(listener)?; |
128 | ||
d2654200 DM |
129 | Ok(async { |
130 | daemon::systemd_notify(daemon::SystemdNotify::Ready)?; | |
131 | ||
132 | hyper::Server::builder(incoming) | |
083ff3fd | 133 | .serve(rest_server) |
fd6d2438 | 134 | .with_graceful_shutdown(proxmox_rest_server::shutdown_future()) |
083ff3fd | 135 | .map_err(Error::from) |
d2654200 DM |
136 | .await |
137 | }) | |
5e7bc50a | 138 | }, |
083ff3fd | 139 | ); |
5e7bc50a | 140 | |
b9700a9f | 141 | proxmox_rest_server::write_pid(pbs_buildcfg::PROXMOX_BACKUP_API_PID_FN)?; |
d98c9a7a | 142 | |
e76ac3a4 | 143 | let init_result: Result<(), Error> = try_block!({ |
b9700a9f | 144 | proxmox_rest_server::register_task_control_commands(&mut commando_sock)?; |
a68768cf | 145 | commando_sock.spawn()?; |
fd1b65cc DM |
146 | proxmox_rest_server::catch_shutdown_signal()?; |
147 | proxmox_rest_server::catch_reload_signal()?; | |
e76ac3a4 WB |
148 | Ok(()) |
149 | }); | |
e3f41f21 | 150 | |
e76ac3a4 WB |
151 | if let Err(err) = init_result { |
152 | bail!("unable to start daemon - {}", err); | |
153 | } | |
d607b886 | 154 | |
083ff3fd | 155 | server.await?; |
a546a8a0 | 156 | log::info!("server shutting down, waiting for active workers to complete"); |
fd6d2438 | 157 | proxmox_rest_server::last_worker_future().await?; |
e3f41f21 | 158 | |
e76ac3a4 | 159 | log::info!("done - exit server"); |
eaeda365 | 160 | |
aa5a4060 | 161 | Ok(()) |
d8d978eb | 162 | } |