]> git.proxmox.com Git - proxmox-backup.git/blob - src/bin/proxmox-backup-api.rs
Set MMAP_THRESHOLD to a fixed value (128K)
[proxmox-backup.git] / src / bin / proxmox-backup-api.rs
1 use std::future::Future;
2 use std::pin::Pin;
3
4 use anyhow::{bail, Error};
5 use futures::*;
6 use http::request::Parts;
7 use http::Response;
8 use hyper::{Body, Method, StatusCode};
9 use http::HeaderMap;
10
11 use proxmox_lang::try_block;
12 use proxmox_router::{RpcEnvironmentType, UserInformation};
13 use proxmox_sys::fs::CreateOptions;
14
15 use proxmox_rest_server::{daemon, AuthError, ApiConfig, RestServer, RestEnvironment, ServerAdapter};
16
17 use proxmox_backup::server::auth::check_pbs_auth;
18 use proxmox_backup::auth_helpers::*;
19 use proxmox_backup::config;
20
21 fn main() {
22 pbs_tools::setup_libc_malloc_opts();
23
24 proxmox_backup::tools::setup_safe_path_env();
25
26 if let Err(err) = proxmox_async::runtime::main(run()) {
27 eprintln!("Error: {}", err);
28 std::process::exit(-1);
29 }
30 }
31
32 struct ProxmoxBackupApiAdapter;
33
34 impl ServerAdapter for ProxmoxBackupApiAdapter {
35
36 fn get_index(
37 &self,
38 _env: RestEnvironment,
39 _parts: Parts,
40 ) -> Pin<Box<dyn Future<Output = Response<Body>> + Send>> {
41 Box::pin(async move {
42
43 let index = "<center><h1>Proxmox Backup API Server</h1></center>";
44
45 Response::builder()
46 .status(StatusCode::OK)
47 .header(hyper::header::CONTENT_TYPE, "text/html")
48 .body(index.into())
49 .unwrap()
50 })
51 }
52
53 fn check_auth<'a>(
54 &'a self,
55 headers: &'a HeaderMap,
56 method: &'a Method,
57 ) -> Pin<Box<dyn Future<Output = Result<(String, Box<dyn UserInformation + Sync + Send>), AuthError>> + Send + 'a>> {
58 Box::pin(async move {
59 check_pbs_auth(headers, method).await
60 })
61 }
62 }
63
64 async fn run() -> Result<(), Error> {
65 if let Err(err) = syslog::init(
66 syslog::Facility::LOG_DAEMON,
67 log::LevelFilter::Info,
68 Some("proxmox-backup-api")) {
69 bail!("unable to inititialize syslog - {}", err);
70 }
71
72 config::create_configdir()?;
73
74 config::update_self_signed_cert(false)?;
75
76 proxmox_backup::server::create_run_dir()?;
77 proxmox_backup::server::create_state_dir()?;
78 proxmox_backup::server::jobstate::create_jobstate_dir()?;
79 proxmox_backup::tape::create_tape_status_dir()?;
80 proxmox_backup::tape::create_drive_state_dir()?;
81 proxmox_backup::tape::create_changer_state_dir()?;
82 proxmox_backup::tape::create_drive_lock_dir()?;
83
84 if let Err(err) = generate_auth_key() {
85 bail!("unable to generate auth key - {}", err);
86 }
87 let _ = private_auth_key(); // load with lazy_static
88
89 if let Err(err) = generate_csrf_key() {
90 bail!("unable to generate csrf key - {}", err);
91 }
92 let _ = csrf_secret(); // load with lazy_static
93
94 let mut config = ApiConfig::new(
95 pbs_buildcfg::JS_DIR,
96 &proxmox_backup::api2::ROUTER,
97 RpcEnvironmentType::PRIVILEGED,
98 ProxmoxBackupApiAdapter,
99 )?;
100
101 let backup_user = pbs_config::backup_user()?;
102 let mut commando_sock = proxmox_rest_server::CommandSocket::new(proxmox_rest_server::our_ctrl_sock(), backup_user.gid);
103
104 let dir_opts = CreateOptions::new().owner(backup_user.uid).group(backup_user.gid);
105 let file_opts = CreateOptions::new().owner(backup_user.uid).group(backup_user.gid);
106
107 config.enable_access_log(
108 pbs_buildcfg::API_ACCESS_LOG_FN,
109 Some(dir_opts.clone()),
110 Some(file_opts.clone()),
111 &mut commando_sock,
112 )?;
113
114 config.enable_auth_log(
115 pbs_buildcfg::API_AUTH_LOG_FN,
116 Some(dir_opts.clone()),
117 Some(file_opts.clone()),
118 &mut commando_sock,
119 )?;
120
121
122 let rest_server = RestServer::new(config);
123 proxmox_rest_server::init_worker_tasks(pbs_buildcfg::PROXMOX_BACKUP_LOG_DIR_M!().into(), file_opts.clone())?;
124
125 // http server future:
126 let server = daemon::create_daemon(
127 ([127,0,0,1], 82).into(),
128 move |listener| {
129 let incoming = hyper::server::conn::AddrIncoming::from_listener(listener)?;
130
131 Ok(async {
132 daemon::systemd_notify(daemon::SystemdNotify::Ready)?;
133
134 hyper::Server::builder(incoming)
135 .serve(rest_server)
136 .with_graceful_shutdown(proxmox_rest_server::shutdown_future())
137 .map_err(Error::from)
138 .await
139 })
140 },
141 );
142
143 proxmox_rest_server::write_pid(pbs_buildcfg::PROXMOX_BACKUP_API_PID_FN)?;
144
145 let init_result: Result<(), Error> = try_block!({
146 proxmox_rest_server::register_task_control_commands(&mut commando_sock)?;
147 commando_sock.spawn()?;
148 proxmox_rest_server::catch_shutdown_signal()?;
149 proxmox_rest_server::catch_reload_signal()?;
150 Ok(())
151 });
152
153 if let Err(err) = init_result {
154 bail!("unable to start daemon - {}", err);
155 }
156
157 server.await?;
158 log::info!("server shutting down, waiting for active workers to complete");
159 proxmox_rest_server::last_worker_future().await?;
160
161 log::info!("done - exit server");
162
163 Ok(())
164 }