issue.go 3.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157
  1. package certificate
  2. import (
  3. "net/http"
  4. "github.com/0xJacky/Nginx-UI/internal/cert"
  5. "github.com/0xJacky/Nginx-UI/model"
  6. "github.com/0xJacky/Nginx-UI/query"
  7. "github.com/gin-gonic/gin"
  8. "github.com/go-acme/lego/v4/certcrypto"
  9. "github.com/gorilla/websocket"
  10. "github.com/uozi-tech/cosy/logger"
  11. "gorm.io/gen/field"
  12. )
  13. const (
  14. Success = "success"
  15. Info = "info"
  16. Error = "error"
  17. )
  18. type IssueCertResponse struct {
  19. Status string `json:"status"`
  20. Message string `json:"message"`
  21. SSLCertificate string `json:"ssl_certificate,omitempty"`
  22. SSLCertificateKey string `json:"ssl_certificate_key,omitempty"`
  23. KeyType certcrypto.KeyType `json:"key_type"`
  24. }
  25. func handleIssueCertLogChan(conn *websocket.Conn, log *cert.Logger, logChan chan string) {
  26. defer func() {
  27. if err := recover(); err != nil {
  28. logger.Error(err)
  29. }
  30. }()
  31. for logString := range logChan {
  32. log.Info(logString)
  33. err := conn.WriteJSON(IssueCertResponse{
  34. Status: Info,
  35. Message: logString,
  36. })
  37. if err != nil {
  38. logger.Error(err)
  39. return
  40. }
  41. }
  42. }
  43. func IssueCert(c *gin.Context) {
  44. name := c.Param("name")
  45. var upGrader = websocket.Upgrader{
  46. CheckOrigin: func(r *http.Request) bool {
  47. return true
  48. },
  49. }
  50. // upgrade http to websocket
  51. ws, err := upGrader.Upgrade(c.Writer, c.Request, nil)
  52. if err != nil {
  53. logger.Error(err)
  54. return
  55. }
  56. defer func(ws *websocket.Conn) {
  57. _ = ws.Close()
  58. }(ws)
  59. // read
  60. payload := &cert.ConfigPayload{}
  61. err = ws.ReadJSON(payload)
  62. if err != nil {
  63. logger.Error(err)
  64. return
  65. }
  66. certModel, err := model.FirstOrInit(name, payload.GetKeyType())
  67. if err != nil {
  68. logger.Error(err)
  69. return
  70. }
  71. if certModel.SSLCertificatePath != "" {
  72. certInfo, _ := cert.GetCertInfo(certModel.SSLCertificatePath)
  73. if certInfo != nil {
  74. payload.Resource = certModel.Resource
  75. payload.NotBefore = certInfo.NotBefore
  76. }
  77. }
  78. logChan := make(chan string, 1)
  79. errChan := make(chan error, 1)
  80. log := &cert.Logger{}
  81. log.SetCertModel(&certModel)
  82. go cert.IssueCert(payload, logChan, errChan)
  83. go handleIssueCertLogChan(ws, log, logChan)
  84. // block, until errChan closes
  85. for err = range errChan {
  86. log.Error(err)
  87. // Save logs to db
  88. log.Exit()
  89. err = ws.WriteJSON(IssueCertResponse{
  90. Status: Error,
  91. Message: err.Error(),
  92. })
  93. if err != nil {
  94. logger.Error(err)
  95. return
  96. }
  97. return
  98. }
  99. cert := query.Cert
  100. _, err = cert.Where(cert.Name.Eq(name), cert.Filename.Eq(name), cert.KeyType.Eq(string(payload.KeyType))).
  101. Assign(field.Attrs(&model.Cert{
  102. Domains: payload.ServerName,
  103. SSLCertificatePath: payload.GetCertificatePath(),
  104. SSLCertificateKeyPath: payload.GetCertificateKeyPath(),
  105. AutoCert: model.AutoCertEnabled,
  106. ChallengeMethod: payload.ChallengeMethod,
  107. DnsCredentialID: payload.DNSCredentialID,
  108. Resource: payload.Resource,
  109. MustStaple: payload.MustStaple,
  110. LegoDisableCNAMESupport: payload.LegoDisableCNAMESupport,
  111. Log: log.ToString(),
  112. })).FirstOrCreate()
  113. if err != nil {
  114. logger.Error(err)
  115. _ = ws.WriteJSON(IssueCertResponse{
  116. Status: Error,
  117. Message: err.Error(),
  118. })
  119. return
  120. }
  121. // Save logs to db
  122. log.Exit()
  123. err = ws.WriteJSON(IssueCertResponse{
  124. Status: Success,
  125. Message: "Issued certificate successfully",
  126. SSLCertificate: payload.GetCertificatePath(),
  127. SSLCertificateKey: payload.GetCertificateKeyPath(),
  128. KeyType: payload.GetKeyType(),
  129. })
  130. if err != nil {
  131. logger.Error(err)
  132. return
  133. }
  134. }