issue.go 3.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135
  1. package certificate
  2. import (
  3. "net/http"
  4. "github.com/0xJacky/Nginx-UI/internal/cert"
  5. "github.com/0xJacky/Nginx-UI/internal/helper"
  6. "github.com/0xJacky/Nginx-UI/internal/translation"
  7. "github.com/0xJacky/Nginx-UI/model"
  8. "github.com/0xJacky/Nginx-UI/query"
  9. "github.com/gin-gonic/gin"
  10. "github.com/go-acme/lego/v4/certcrypto"
  11. "github.com/gorilla/websocket"
  12. "github.com/uozi-tech/cosy/logger"
  13. "gorm.io/gen/field"
  14. )
  15. const (
  16. Success = "success"
  17. Info = "info"
  18. Error = "error"
  19. )
  20. type IssueCertResponse struct {
  21. Status string `json:"status"`
  22. Message string `json:"message"`
  23. SSLCertificate string `json:"ssl_certificate,omitempty"`
  24. SSLCertificateKey string `json:"ssl_certificate_key,omitempty"`
  25. KeyType certcrypto.KeyType `json:"key_type"`
  26. }
  27. func IssueCert(c *gin.Context) {
  28. name := c.Param("name")
  29. var upGrader = websocket.Upgrader{
  30. CheckOrigin: func(r *http.Request) bool {
  31. return true
  32. },
  33. }
  34. // upgrade http to websocket
  35. ws, err := upGrader.Upgrade(c.Writer, c.Request, nil)
  36. if err != nil {
  37. logger.Error(err)
  38. return
  39. }
  40. defer ws.Close()
  41. // read
  42. payload := &cert.ConfigPayload{}
  43. err = ws.ReadJSON(payload)
  44. if err != nil {
  45. logger.Error(err)
  46. return
  47. }
  48. certModel, err := model.FirstOrInit(name, payload.GetKeyType())
  49. if err != nil {
  50. logger.Error(err)
  51. return
  52. }
  53. payload.CertID = certModel.ID
  54. if certModel.SSLCertificatePath != "" {
  55. certInfo, _ := cert.GetCertInfo(certModel.SSLCertificatePath)
  56. if certInfo != nil {
  57. payload.Resource = certModel.Resource
  58. payload.NotBefore = certInfo.NotBefore
  59. }
  60. }
  61. errChan := make(chan error, 1)
  62. log := cert.NewLogger()
  63. log.SetCertModel(&certModel)
  64. log.SetWebSocket(ws)
  65. defer log.Close()
  66. go cert.IssueCert(payload, log, errChan)
  67. // block, until errChan closes
  68. if err := <-errChan; err != nil {
  69. log.Error(err)
  70. err = ws.WriteJSON(IssueCertResponse{
  71. Status: Error,
  72. Message: err.Error(),
  73. })
  74. if err != nil {
  75. if helper.IsUnexpectedWebsocketError(err) {
  76. logger.Error(err)
  77. }
  78. return
  79. }
  80. }
  81. cert := query.Cert
  82. _, err = cert.Where(cert.Name.Eq(name), cert.Filename.Eq(name), cert.KeyType.Eq(string(payload.KeyType))).
  83. Assign(field.Attrs(&model.Cert{
  84. Domains: payload.ServerName,
  85. SSLCertificatePath: payload.GetCertificatePath(),
  86. SSLCertificateKeyPath: payload.GetCertificateKeyPath(),
  87. AutoCert: model.AutoCertEnabled,
  88. ChallengeMethod: payload.ChallengeMethod,
  89. DnsCredentialID: payload.DNSCredentialID,
  90. Resource: payload.Resource,
  91. MustStaple: payload.MustStaple,
  92. LegoDisableCNAMESupport: payload.LegoDisableCNAMESupport,
  93. Log: log.ToString(),
  94. RevokeOld: payload.RevokeOld,
  95. })).FirstOrCreate()
  96. if err != nil {
  97. logger.Error(err)
  98. _ = ws.WriteJSON(IssueCertResponse{
  99. Status: Error,
  100. Message: err.Error(),
  101. })
  102. return
  103. }
  104. err = ws.WriteJSON(IssueCertResponse{
  105. Status: Success,
  106. Message: translation.C("[Nginx UI] Issued certificate successfully").ToString(),
  107. SSLCertificate: payload.GetCertificatePath(),
  108. SSLCertificateKey: payload.GetCertificateKeyPath(),
  109. KeyType: payload.GetKeyType(),
  110. })
  111. if err != nil {
  112. if helper.IsUnexpectedWebsocketError(err) {
  113. logger.Error(err)
  114. }
  115. return
  116. }
  117. }