]>
Commit | Line | Data |
---|---|---|
1 | package PVE::Network::SDN::Subnets; | |
2 | ||
3 | use strict; | |
4 | use warnings; | |
5 | ||
6 | use Net::Subnet qw(subnet_matcher); | |
7 | use Net::IP; | |
8 | use NetAddr::IP qw(:lower); | |
9 | ||
10 | use PVE::Cluster qw(cfs_read_file cfs_write_file cfs_lock_file); | |
11 | use PVE::Network::SDN::Dns; | |
12 | use PVE::Network::SDN::Ipams; | |
13 | ||
14 | use PVE::Network::SDN::SubnetPlugin; | |
15 | PVE::Network::SDN::SubnetPlugin->register(); | |
16 | PVE::Network::SDN::SubnetPlugin->init(); | |
17 | ||
18 | sub sdn_subnets_config { | |
19 | my ($cfg, $id, $noerr) = @_; | |
20 | ||
21 | die "no sdn subnet ID specified\n" if !$id; | |
22 | ||
23 | my $scfg = $cfg->{ids}->{$id}; | |
24 | die "sdn subnet '$id' does not exist\n" if (!$noerr && !$scfg); | |
25 | ||
26 | if($scfg) { | |
27 | my ($zone, $network, $mask) = split(/-/, $id); | |
28 | $scfg->{cidr} = "$network/$mask"; | |
29 | $scfg->{zone} = $zone; | |
30 | $scfg->{network} = $network; | |
31 | $scfg->{mask} = $mask; | |
32 | } | |
33 | ||
34 | return $scfg; | |
35 | } | |
36 | ||
37 | sub config { | |
38 | my $config = cfs_read_file("sdn/subnets.cfg"); | |
39 | } | |
40 | ||
41 | sub write_config { | |
42 | my ($cfg) = @_; | |
43 | ||
44 | cfs_write_file("sdn/subnets.cfg", $cfg); | |
45 | } | |
46 | ||
47 | sub sdn_subnets_ids { | |
48 | my ($cfg) = @_; | |
49 | ||
50 | return sort keys %{$cfg->{ids}}; | |
51 | } | |
52 | ||
53 | sub complete_sdn_subnet { | |
54 | my ($cmdname, $pname, $cvalue) = @_; | |
55 | ||
56 | my $cfg = PVE::Network::SDN::Subnets::config(); | |
57 | ||
58 | return $cmdname eq 'add' ? [] : [ PVE::Network::SDN::Subnets::sdn_subnets_ids($cfg) ]; | |
59 | } | |
60 | ||
61 | sub get_subnet { | |
62 | my ($subnetid, $running) = @_; | |
63 | ||
64 | my $cfg = {}; | |
65 | if($running) { | |
66 | my $cfg = PVE::Network::SDN::config(); | |
67 | $cfg = $cfg->{subnets}; | |
68 | } else { | |
69 | $cfg = PVE::Network::SDN::Subnets::config(); | |
70 | } | |
71 | ||
72 | my $subnet = PVE::Network::SDN::Subnets::sdn_subnets_config($cfg, $subnetid, 1); | |
73 | return $subnet; | |
74 | } | |
75 | ||
76 | sub find_ip_subnet { | |
77 | my ($ip, $mask, $subnets) = @_; | |
78 | ||
79 | my $subnet = undef; | |
80 | my $subnetid = undef; | |
81 | ||
82 | foreach my $id (sort keys %{$subnets}) { | |
83 | ||
84 | next if $mask ne $subnets->{$id}->{mask}; | |
85 | my $cidr = $subnets->{$id}->{cidr}; | |
86 | my $subnet_matcher = subnet_matcher($cidr); | |
87 | next if !$subnet_matcher->($ip); | |
88 | $subnet = $subnets->{$id}; | |
89 | $subnetid = $id; | |
90 | last; | |
91 | } | |
92 | die "can't find any subnet for ip $ip" if !$subnet; | |
93 | ||
94 | return ($subnetid, $subnet); | |
95 | } | |
96 | ||
97 | my $verify_dns_zone = sub { | |
98 | my ($zone, $dns) = @_; | |
99 | ||
100 | return if !$zone || !$dns; | |
101 | ||
102 | my $dns_cfg = PVE::Network::SDN::Dns::config(); | |
103 | my $plugin_config = $dns_cfg->{ids}->{$dns}; | |
104 | my $plugin = PVE::Network::SDN::Dns::Plugin->lookup($plugin_config->{type}); | |
105 | $plugin->verify_zone($plugin_config, $zone); | |
106 | }; | |
107 | ||
108 | my $get_reversedns_zone = sub { | |
109 | my ($subnetid, $subnet, $dns, $ip) = @_; | |
110 | ||
111 | return if !$subnetid || !$dns || !$ip; | |
112 | ||
113 | my $dns_cfg = PVE::Network::SDN::Dns::config(); | |
114 | my $plugin_config = $dns_cfg->{ids}->{$dns}; | |
115 | my $plugin = PVE::Network::SDN::Dns::Plugin->lookup($plugin_config->{type}); | |
116 | $plugin->get_reversedns_zone($plugin_config, $subnetid, $subnet, $ip); | |
117 | }; | |
118 | ||
119 | my $add_dns_record = sub { | |
120 | my ($zone, $dns, $hostname, $ip) = @_; | |
121 | return if !$zone || !$dns || !$hostname || !$ip; | |
122 | ||
123 | my $dns_cfg = PVE::Network::SDN::Dns::config(); | |
124 | my $plugin_config = $dns_cfg->{ids}->{$dns}; | |
125 | my $plugin = PVE::Network::SDN::Dns::Plugin->lookup($plugin_config->{type}); | |
126 | $plugin->add_a_record($plugin_config, $zone, $hostname, $ip); | |
127 | ||
128 | }; | |
129 | ||
130 | my $add_dns_ptr_record = sub { | |
131 | my ($reversezone, $zone, $dns, $hostname, $ip) = @_; | |
132 | ||
133 | return if !$zone || !$reversezone || !$dns || !$hostname || !$ip; | |
134 | ||
135 | $hostname .= ".$zone"; | |
136 | my $dns_cfg = PVE::Network::SDN::Dns::config(); | |
137 | my $plugin_config = $dns_cfg->{ids}->{$dns}; | |
138 | my $plugin = PVE::Network::SDN::Dns::Plugin->lookup($plugin_config->{type}); | |
139 | $plugin->add_ptr_record($plugin_config, $reversezone, $hostname, $ip); | |
140 | }; | |
141 | ||
142 | my $del_dns_record = sub { | |
143 | my ($zone, $dns, $hostname, $ip) = @_; | |
144 | ||
145 | return if !$zone || !$dns || !$hostname || !$ip; | |
146 | ||
147 | my $dns_cfg = PVE::Network::SDN::Dns::config(); | |
148 | my $plugin_config = $dns_cfg->{ids}->{$dns}; | |
149 | my $plugin = PVE::Network::SDN::Dns::Plugin->lookup($plugin_config->{type}); | |
150 | $plugin->del_a_record($plugin_config, $zone, $hostname, $ip); | |
151 | }; | |
152 | ||
153 | my $del_dns_ptr_record = sub { | |
154 | my ($reversezone, $dns, $ip) = @_; | |
155 | ||
156 | return if !$reversezone || !$dns || !$ip; | |
157 | ||
158 | my $dns_cfg = PVE::Network::SDN::Dns::config(); | |
159 | my $plugin_config = $dns_cfg->{ids}->{$dns}; | |
160 | my $plugin = PVE::Network::SDN::Dns::Plugin->lookup($plugin_config->{type}); | |
161 | $plugin->del_ptr_record($plugin_config, $reversezone, $ip); | |
162 | }; | |
163 | ||
164 | sub next_free_ip { | |
165 | my ($zone, $subnetid, $subnet, $hostname, $mac, $description) = @_; | |
166 | ||
167 | my $cidr = undef; | |
168 | my $ip = undef; | |
169 | $description = '' if !$description; | |
170 | ||
171 | my $ipamid = $zone->{ipam}; | |
172 | my $dns = $zone->{dns}; | |
173 | my $dnszone = $zone->{dnszone}; | |
174 | my $reversedns = $zone->{reversedns}; | |
175 | my $dnszoneprefix = $subnet->{dnszoneprefix}; | |
176 | ||
177 | $hostname .= ".$dnszoneprefix" if $dnszoneprefix; | |
178 | ||
179 | #verify dns zones before ipam | |
180 | &$verify_dns_zone($dnszone, $dns); | |
181 | ||
182 | if($ipamid) { | |
183 | my $ipam_cfg = PVE::Network::SDN::Ipams::config(); | |
184 | my $plugin_config = $ipam_cfg->{ids}->{$ipamid}; | |
185 | my $plugin = PVE::Network::SDN::Ipams::Plugin->lookup($plugin_config->{type}); | |
186 | eval { | |
187 | $cidr = $plugin->add_next_freeip($plugin_config, $subnetid, $subnet, $hostname, $mac, $description); | |
188 | ($ip, undef) = split(/\//, $cidr); | |
189 | }; | |
190 | die $@ if $@; | |
191 | } | |
192 | ||
193 | eval { | |
194 | my $reversednszone = &$get_reversedns_zone($subnetid, $subnet, $reversedns, $ip); | |
195 | ||
196 | #add dns | |
197 | &$add_dns_record($dnszone, $dns, $hostname, $ip); | |
198 | #add reverse dns | |
199 | &$add_dns_ptr_record($reversednszone, $dnszone, $reversedns, $hostname, $ip); | |
200 | }; | |
201 | if ($@) { | |
202 | #rollback | |
203 | my $err = $@; | |
204 | eval { | |
205 | PVE::Network::SDN::Subnets::del_ip($subnetid, $subnet, $ip, $hostname) | |
206 | }; | |
207 | die $err; | |
208 | } | |
209 | return $cidr; | |
210 | } | |
211 | ||
212 | sub add_ip { | |
213 | my ($zone, $subnetid, $subnet, $ip, $hostname, $mac, $description) = @_; | |
214 | ||
215 | return if !$subnet || !$ip; | |
216 | ||
217 | my $ipaddr = new NetAddr::IP($ip); | |
218 | $ip = $ipaddr->canon(); | |
219 | ||
220 | my $ipamid = $zone->{ipam}; | |
221 | my $dns = $zone->{dns}; | |
222 | my $dnszone = $zone->{dnszone}; | |
223 | my $reversedns = $zone->{reversedns}; | |
224 | my $reversednszone = &$get_reversedns_zone($subnetid, $subnet, $reversedns, $ip); | |
225 | my $dnszoneprefix = $subnet->{dnszoneprefix}; | |
226 | ||
227 | $hostname .= ".$dnszoneprefix" if $dnszoneprefix; | |
228 | ||
229 | #verify dns zones before ipam | |
230 | &$verify_dns_zone($dnszone, $dns); | |
231 | &$verify_dns_zone($reversednszone, $reversedns); | |
232 | ||
233 | if ($ipamid) { | |
234 | my $ipam_cfg = PVE::Network::SDN::Ipams::config(); | |
235 | my $plugin_config = $ipam_cfg->{ids}->{$ipamid}; | |
236 | my $plugin = PVE::Network::SDN::Ipams::Plugin->lookup($plugin_config->{type}); | |
237 | eval { | |
238 | $plugin->add_ip($plugin_config, $subnetid, $subnet, $ip, $hostname, $mac, $description); | |
239 | }; | |
240 | die $@ if $@; | |
241 | } | |
242 | ||
243 | eval { | |
244 | #add dns | |
245 | &$add_dns_record($dnszone, $dns, $hostname, $ip); | |
246 | #add reverse dns | |
247 | &$add_dns_ptr_record($reversednszone, $dnszone, $reversedns, $hostname, $ip); | |
248 | }; | |
249 | if ($@) { | |
250 | #rollback | |
251 | my $err = $@; | |
252 | eval { | |
253 | PVE::Network::SDN::Subnets::del_ip($subnetid, $subnet, $ip, $hostname) | |
254 | }; | |
255 | die $err; | |
256 | } | |
257 | } | |
258 | ||
259 | sub del_ip { | |
260 | my ($zone, $subnetid, $subnet, $ip, $hostname) = @_; | |
261 | ||
262 | return if !$subnet || !$ip; | |
263 | ||
264 | my $ipaddr = new NetAddr::IP($ip); | |
265 | $ip = $ipaddr->canon(); | |
266 | ||
267 | my $ipamid = $zone->{ipam}; | |
268 | my $dns = $zone->{dns}; | |
269 | my $dnszone = $zone->{dnszone}; | |
270 | my $reversedns = $zone->{reversedns}; | |
271 | my $reversednszone = &$get_reversedns_zone($subnetid, $subnet, $reversedns, $ip); | |
272 | my $dnszoneprefix = $subnet->{dnszoneprefix}; | |
273 | $hostname .= ".$dnszoneprefix" if $dnszoneprefix; | |
274 | ||
275 | ||
276 | &$verify_dns_zone($dnszone, $dns); | |
277 | &$verify_dns_zone($reversednszone, $reversedns); | |
278 | ||
279 | if ($ipamid) { | |
280 | my $ipam_cfg = PVE::Network::SDN::Ipams::config(); | |
281 | my $plugin_config = $ipam_cfg->{ids}->{$ipamid}; | |
282 | my $plugin = PVE::Network::SDN::Ipams::Plugin->lookup($plugin_config->{type}); | |
283 | $plugin->del_ip($plugin_config, $subnetid, $subnet, $ip); | |
284 | } | |
285 | ||
286 | eval { | |
287 | &$del_dns_record($dnszone, $dns, $hostname, $ip); | |
288 | &$del_dns_ptr_record($reversednszone, $reversedns, $ip); | |
289 | }; | |
290 | if ($@) { | |
291 | warn $@; | |
292 | } | |
293 | } | |
294 | ||
295 | 1; |