package knotserver import ( "context" "fmt" "log/slog" "net/http" "runtime/debug" "github.com/go-chi/chi/v5" "tangled.sh/tangled.sh/core/idresolver" "tangled.sh/tangled.sh/core/jetstream" "tangled.sh/tangled.sh/core/knotserver/config" "tangled.sh/tangled.sh/core/knotserver/db" "tangled.sh/tangled.sh/core/knotserver/xrpc" tlog "tangled.sh/tangled.sh/core/log" "tangled.sh/tangled.sh/core/notifier" "tangled.sh/tangled.sh/core/rbac" "tangled.sh/tangled.sh/core/xrpc/serviceauth" ) type Knot struct { c *config.Config db *db.DB jc *jetstream.JetstreamClient e *rbac.Enforcer l *slog.Logger n *notifier.Notifier resolver *idresolver.Resolver } func Setup(ctx context.Context, c *config.Config, db *db.DB, e *rbac.Enforcer, jc *jetstream.JetstreamClient, l *slog.Logger, n *notifier.Notifier) (http.Handler, error) { r := chi.NewRouter() h := Knot{ c: c, db: db, e: e, l: l, jc: jc, n: n, resolver: idresolver.DefaultResolver(), } err := e.AddKnot(rbac.ThisServer) if err != nil { return nil, fmt.Errorf("failed to setup enforcer: %w", err) } // configure owner if err = h.configureOwner(); err != nil { return nil, err } h.l.Info("owner set", "did", h.c.Server.Owner) h.jc.AddDid(h.c.Server.Owner) // configure known-dids in jetstream consumer dids, err := h.db.GetAllDids() if err != nil { return nil, fmt.Errorf("failed to get all dids: %w", err) } for _, d := range dids { jc.AddDid(d) } err = h.jc.StartJetstream(ctx, h.processMessages) if err != nil { return nil, fmt.Errorf("failed to start jetstream: %w", err) } r.Get("/", func(w http.ResponseWriter, r *http.Request) { w.Write([]byte("This is a knot server. More info at https://tangled.sh")) }) owner := func(w http.ResponseWriter, r *http.Request) { w.Write([]byte(h.c.Server.Owner)) } // Deprecated: the sh.tangled.knot.owner xrpc call should be used instead r.Get("/owner", owner) r.Route("/{did}", func(r chi.Router) { r.Route("/{name}", func(r chi.Router) { // routes for git operations r.Get("/info/refs", h.InfoRefs) r.Post("/git-upload-pack", h.UploadPack) r.Post("/git-receive-pack", h.ReceivePack) }) }) // xrpc apis r.Route("/xrpc", func(r chi.Router) { r.Get("/_health", h.Version) r.Get("/sh.tangled.knot.owner", owner) r.Mount("/", h.XrpcRouter()) }) // Socket that streams git oplogs r.Get("/events", h.Events) return r, nil } func (h *Knot) XrpcRouter() http.Handler { logger := tlog.New("knots") serviceAuth := serviceauth.NewServiceAuth(h.l, h.resolver, h.c.Server.Did().String()) xrpc := &xrpc.Xrpc{ Config: h.c, Db: h.db, Ingester: h.jc, Enforcer: h.e, Logger: logger, Notifier: h.n, Resolver: h.resolver, ServiceAuth: serviceAuth, } return xrpc.Router() } // version is set during build time. var version string func (h *Knot) Version(w http.ResponseWriter, r *http.Request) { if version == "" { info, ok := debug.ReadBuildInfo() if !ok { http.Error(w, "failed to read build info", http.StatusInternalServerError) return } var modVer string var sha string var modified bool for _, mod := range info.Deps { if mod.Path == "tangled.sh/tangled.sh/knotserver" { modVer = mod.Version break } } for _, setting := range info.Settings { switch setting.Key { case "vcs.revision": sha = setting.Value case "vcs.modified": modified = setting.Value == "true" } } if modVer == "" { modVer = "unknown" } if sha == "" { version = modVer } else if modified { version = fmt.Sprintf("%s (%s with modifications)", modVer, sha) } else { version = fmt.Sprintf("%s (%s)", modVer, sha) } } w.Header().Set("Content-Type", "text/plain; charset=utf-8") fmt.Fprintf(w, "knotserver/%s", version) } func (h *Knot) configureOwner() error { cfgOwner := h.c.Server.Owner rbacDomain := "thisserver" existing, err := h.e.GetKnotUsersByRole("server:owner", rbacDomain) if err != nil { return err } switch len(existing) { case 0: // no owner configured, continue case 1: // find existing owner existingOwner := existing[0] // no ownership change, this is okay if existingOwner == h.c.Server.Owner { break } // remove existing owner if err = h.db.RemoveDid(existingOwner); err != nil { return err } if err = h.e.RemoveKnotOwner(rbacDomain, existingOwner); err != nil { return err } default: return fmt.Errorf("more than one owner in DB, try deleting %q and starting over", h.c.Server.DBPath) } if err = h.db.AddDid(cfgOwner); err != nil { return fmt.Errorf("failed to add owner to DB: %w", err) } if err := h.e.AddKnotOwner(rbacDomain, cfgOwner); err != nil { return fmt.Errorf("failed to add owner to RBAC: %w", err) } return nil }