cert.go 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164
  1. package api
  2. import (
  3. "crypto/tls"
  4. "encoding/json"
  5. "github.com/0xJacky/Nginx-UI/server/tool"
  6. "github.com/gin-gonic/gin"
  7. "github.com/gorilla/websocket"
  8. "io"
  9. "log"
  10. "net/http"
  11. "os"
  12. )
  13. func CertInfo(c *gin.Context) {
  14. domain := c.Param("domain")
  15. ts := &http.Transport{
  16. TLSClientConfig: &tls.Config{InsecureSkipVerify: true},
  17. }
  18. client := &http.Client{Transport: ts}
  19. response, err := client.Get("https://" + domain)
  20. if err != nil {
  21. ErrorHandler(c, err)
  22. return
  23. }
  24. defer func(Body io.ReadCloser) {
  25. err = Body.Close()
  26. if err != nil {
  27. ErrorHandler(c, err)
  28. return
  29. }
  30. }(response.Body)
  31. key := response.TLS.PeerCertificates[0]
  32. c.JSON(http.StatusOK, gin.H{
  33. "subject_name": key.Subject.CommonName,
  34. "issuer_name": key.Issuer.CommonName,
  35. "not_after": key.NotAfter,
  36. "not_before": key.NotBefore,
  37. })
  38. }
  39. func IssueCert(c *gin.Context) {
  40. domain := c.Param("domain")
  41. var upGrader = websocket.Upgrader{
  42. CheckOrigin: func(r *http.Request) bool {
  43. return true
  44. },
  45. }
  46. // upgrade http to websocket
  47. ws, err := upGrader.Upgrade(c.Writer, c.Request, nil)
  48. if err != nil {
  49. return
  50. }
  51. defer ws.Close()
  52. for {
  53. // read
  54. mt, message, err := ws.ReadMessage()
  55. if err != nil {
  56. break
  57. }
  58. if string(message) == "go" {
  59. var m []byte
  60. err = tool.IssueCert(domain)
  61. if err != nil {
  62. m, err = json.Marshal(gin.H{
  63. "status": "error",
  64. "message": err.Error(),
  65. })
  66. if err != nil {
  67. log.Println(err)
  68. return
  69. }
  70. err = ws.WriteMessage(mt, m)
  71. if err != nil {
  72. log.Println(err)
  73. return
  74. }
  75. log.Println(err)
  76. return
  77. }
  78. sslCertificatePath := tool.GetNginxConfPath("ssl/" + domain + "/fullchain.cer")
  79. _, err = os.Stat(sslCertificatePath)
  80. if err != nil {
  81. log.Println(err)
  82. return
  83. }
  84. log.Println("[found]", "fullchain.cer")
  85. m, err = json.Marshal(gin.H{
  86. "status": "success",
  87. "message": "[found] fullchain.cer",
  88. })
  89. if err != nil {
  90. log.Println(err)
  91. return
  92. }
  93. err = ws.WriteMessage(mt, m)
  94. if err != nil {
  95. log.Println(err)
  96. return
  97. }
  98. sslCertificateKeyPath := tool.GetNginxConfPath("ssl/" + domain + "/" + domain + ".key")
  99. _, err = os.Stat(sslCertificateKeyPath)
  100. if err != nil {
  101. log.Println(err)
  102. return
  103. }
  104. log.Println("[found]", "cert key")
  105. m, err = json.Marshal(gin.H{
  106. "status": "success",
  107. "message": "[found] cert key",
  108. })
  109. if err != nil {
  110. log.Println(err)
  111. }
  112. err = ws.WriteMessage(mt, m)
  113. if err != nil {
  114. log.Println(err)
  115. }
  116. log.Println("申请成功")
  117. m, err = json.Marshal(gin.H{
  118. "status": "success",
  119. "message": "申请成功",
  120. "ssl_certificate": sslCertificatePath,
  121. "ssl_certificate_key": sslCertificateKeyPath,
  122. })
  123. if err != nil {
  124. log.Println(err)
  125. }
  126. err = ws.WriteMessage(mt, m)
  127. if err != nil {
  128. log.Println(err)
  129. }
  130. }
  131. }
  132. }