api.go 33 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120
  1. package docker
  2. import (
  3. "bufio"
  4. "bytes"
  5. "code.google.com/p/go.net/websocket"
  6. "encoding/base64"
  7. "encoding/json"
  8. "expvar"
  9. "fmt"
  10. "github.com/dotcloud/docker/auth"
  11. "github.com/dotcloud/docker/engine"
  12. "github.com/dotcloud/docker/pkg/systemd"
  13. "github.com/dotcloud/docker/utils"
  14. "github.com/gorilla/mux"
  15. "io"
  16. "io/ioutil"
  17. "log"
  18. "mime"
  19. "net"
  20. "net/http"
  21. "net/http/pprof"
  22. "os"
  23. "regexp"
  24. "strconv"
  25. "strings"
  26. )
  27. const (
  28. APIVERSION = 1.9
  29. DEFAULTHTTPHOST = "127.0.0.1"
  30. DEFAULTHTTPPORT = 4243
  31. DEFAULTUNIXSOCKET = "/var/run/docker.sock"
  32. )
  33. type HttpApiFunc func(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error
  34. func hijackServer(w http.ResponseWriter) (io.ReadCloser, io.Writer, error) {
  35. conn, _, err := w.(http.Hijacker).Hijack()
  36. if err != nil {
  37. return nil, nil, err
  38. }
  39. // Flush the options to make sure the client sets the raw mode
  40. conn.Write([]byte{})
  41. return conn, conn, nil
  42. }
  43. //If we don't do this, POST method without Content-type (even with empty body) will fail
  44. func parseForm(r *http.Request) error {
  45. if r == nil {
  46. return nil
  47. }
  48. if err := r.ParseForm(); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  49. return err
  50. }
  51. return nil
  52. }
  53. func parseMultipartForm(r *http.Request) error {
  54. if err := r.ParseMultipartForm(4096); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  55. return err
  56. }
  57. return nil
  58. }
  59. func httpError(w http.ResponseWriter, err error) {
  60. statusCode := http.StatusInternalServerError
  61. // FIXME: this is brittle and should not be necessary.
  62. // If we need to differentiate between different possible error types, we should
  63. // create appropriate error types with clearly defined meaning.
  64. if strings.Contains(err.Error(), "No such") {
  65. statusCode = http.StatusNotFound
  66. } else if strings.Contains(err.Error(), "Bad parameter") {
  67. statusCode = http.StatusBadRequest
  68. } else if strings.Contains(err.Error(), "Conflict") {
  69. statusCode = http.StatusConflict
  70. } else if strings.Contains(err.Error(), "Impossible") {
  71. statusCode = http.StatusNotAcceptable
  72. } else if strings.Contains(err.Error(), "Wrong login/password") {
  73. statusCode = http.StatusUnauthorized
  74. } else if strings.Contains(err.Error(), "hasn't been activated") {
  75. statusCode = http.StatusForbidden
  76. }
  77. if err != nil {
  78. utils.Errorf("HTTP Error: statusCode=%d %s", statusCode, err.Error())
  79. http.Error(w, err.Error(), statusCode)
  80. }
  81. }
  82. func writeJSON(w http.ResponseWriter, code int, v interface{}) error {
  83. b, err := json.Marshal(v)
  84. if err != nil {
  85. return err
  86. }
  87. w.Header().Set("Content-Type", "application/json")
  88. w.WriteHeader(code)
  89. w.Write(b)
  90. return nil
  91. }
  92. func getBoolParam(value string) (bool, error) {
  93. if value == "" {
  94. return false, nil
  95. }
  96. ret, err := strconv.ParseBool(value)
  97. if err != nil {
  98. return false, fmt.Errorf("Bad parameter")
  99. }
  100. return ret, nil
  101. }
  102. func matchesContentType(contentType, expectedType string) bool {
  103. mimetype, _, err := mime.ParseMediaType(contentType)
  104. if err != nil {
  105. utils.Errorf("Error parsing media type: %s error: %s", contentType, err.Error())
  106. }
  107. return err == nil && mimetype == expectedType
  108. }
  109. func postAuth(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  110. var (
  111. authConfig, err = ioutil.ReadAll(r.Body)
  112. job = srv.Eng.Job("auth")
  113. status string
  114. )
  115. if err != nil {
  116. return err
  117. }
  118. job.Setenv("authConfig", string(authConfig))
  119. job.Stdout.AddString(&status)
  120. if err = job.Run(); err != nil {
  121. return err
  122. }
  123. if status != "" {
  124. var env engine.Env
  125. env.Set("Status", status)
  126. return writeJSON(w, http.StatusOK, env)
  127. }
  128. w.WriteHeader(http.StatusNoContent)
  129. return nil
  130. }
  131. func getVersion(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  132. w.Header().Set("Content-Type", "application/json")
  133. srv.Eng.ServeHTTP(w, r)
  134. return nil
  135. }
  136. func postContainersKill(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  137. if vars == nil {
  138. return fmt.Errorf("Missing parameter")
  139. }
  140. if err := parseForm(r); err != nil {
  141. return err
  142. }
  143. job := srv.Eng.Job("kill", vars["name"])
  144. if sig := r.Form.Get("signal"); sig != "" {
  145. job.Args = append(job.Args, sig)
  146. }
  147. if err := job.Run(); err != nil {
  148. return err
  149. }
  150. w.WriteHeader(http.StatusNoContent)
  151. return nil
  152. }
  153. func getContainersExport(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  154. if vars == nil {
  155. return fmt.Errorf("Missing parameter")
  156. }
  157. job := srv.Eng.Job("export", vars["name"])
  158. job.Stdout.Add(w)
  159. if err := job.Run(); err != nil {
  160. return err
  161. }
  162. return nil
  163. }
  164. func getImagesJSON(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  165. if err := parseForm(r); err != nil {
  166. return err
  167. }
  168. var (
  169. err error
  170. outs *engine.Table
  171. job = srv.Eng.Job("images")
  172. )
  173. job.Setenv("filter", r.Form.Get("filter"))
  174. job.Setenv("all", r.Form.Get("all"))
  175. if version > 1.8 {
  176. job.Stdout.Add(w)
  177. } else if outs, err = job.Stdout.AddListTable(); err != nil {
  178. return err
  179. }
  180. if err := job.Run(); err != nil {
  181. return err
  182. }
  183. if version < 1.8 && outs != nil { // Convert to legacy format
  184. outsLegacy := engine.NewTable("Created", 0)
  185. for _, out := range outs.Data {
  186. for _, repoTag := range out.GetList("RepoTags") {
  187. parts := strings.Split(repoTag, ":")
  188. outLegacy := &engine.Env{}
  189. outLegacy.Set("Repository", parts[0])
  190. outLegacy.Set("Tag", parts[1])
  191. outLegacy.Set("ID", out.Get("ID"))
  192. outLegacy.SetInt64("Created", out.GetInt64("Created"))
  193. outLegacy.SetInt64("Size", out.GetInt64("Size"))
  194. outLegacy.SetInt64("VirtualSize", out.GetInt64("VirtualSize"))
  195. outsLegacy.Add(outLegacy)
  196. }
  197. }
  198. if _, err := outsLegacy.WriteListTo(w); err != nil {
  199. return err
  200. }
  201. }
  202. return nil
  203. }
  204. func getImagesViz(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  205. if version > 1.6 {
  206. w.WriteHeader(http.StatusNotFound)
  207. return fmt.Errorf("This is now implemented in the client.")
  208. }
  209. srv.Eng.ServeHTTP(w, r)
  210. return nil
  211. }
  212. func getInfo(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  213. w.Header().Set("Content-Type", "application/json")
  214. srv.Eng.ServeHTTP(w, r)
  215. return nil
  216. }
  217. func getEvents(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  218. if err := parseForm(r); err != nil {
  219. return err
  220. }
  221. w.Header().Set("Content-Type", "application/json")
  222. var job = srv.Eng.Job("events", r.RemoteAddr)
  223. job.Stdout.Add(utils.NewWriteFlusher(w))
  224. job.Setenv("since", r.Form.Get("since"))
  225. return job.Run()
  226. }
  227. func getImagesHistory(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  228. if vars == nil {
  229. return fmt.Errorf("Missing parameter")
  230. }
  231. var job = srv.Eng.Job("history", vars["name"])
  232. job.Stdout.Add(w)
  233. if err := job.Run(); err != nil {
  234. return err
  235. }
  236. return nil
  237. }
  238. func getContainersChanges(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  239. if vars == nil {
  240. return fmt.Errorf("Missing parameter")
  241. }
  242. var job = srv.Eng.Job("changes", vars["name"])
  243. job.Stdout.Add(w)
  244. return job.Run()
  245. }
  246. func getContainersTop(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  247. if version < 1.4 {
  248. return fmt.Errorf("top was improved a lot since 1.3, Please upgrade your docker client.")
  249. }
  250. if vars == nil {
  251. return fmt.Errorf("Missing parameter")
  252. }
  253. if err := parseForm(r); err != nil {
  254. return err
  255. }
  256. job := srv.Eng.Job("top", vars["name"], r.Form.Get("ps_args"))
  257. job.Stdout.Add(w)
  258. return job.Run()
  259. }
  260. func getContainersJSON(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  261. if err := parseForm(r); err != nil {
  262. return err
  263. }
  264. var (
  265. err error
  266. outs *engine.Table
  267. job = srv.Eng.Job("containers")
  268. )
  269. job.Setenv("all", r.Form.Get("all"))
  270. job.Setenv("size", r.Form.Get("size"))
  271. job.Setenv("since", r.Form.Get("since"))
  272. job.Setenv("before", r.Form.Get("before"))
  273. job.Setenv("limit", r.Form.Get("limit"))
  274. if version > 1.5 {
  275. job.Stdout.Add(w)
  276. } else if outs, err = job.Stdout.AddTable(); err != nil {
  277. return err
  278. }
  279. if err = job.Run(); err != nil {
  280. return err
  281. }
  282. if version < 1.5 { // Convert to legacy format
  283. for _, out := range outs.Data {
  284. ports := engine.NewTable("", 0)
  285. ports.ReadListFrom([]byte(out.Get("Ports")))
  286. out.Set("Ports", displayablePorts(ports))
  287. }
  288. if _, err = outs.WriteListTo(w); err != nil {
  289. return err
  290. }
  291. }
  292. return nil
  293. }
  294. func postImagesTag(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  295. if err := parseForm(r); err != nil {
  296. return err
  297. }
  298. if vars == nil {
  299. return fmt.Errorf("Missing parameter")
  300. }
  301. job := srv.Eng.Job("tag", vars["name"], r.Form.Get("repo"), r.Form.Get("tag"))
  302. job.Setenv("force", r.Form.Get("force"))
  303. if err := job.Run(); err != nil {
  304. return err
  305. }
  306. w.WriteHeader(http.StatusCreated)
  307. return nil
  308. }
  309. func postCommit(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  310. if err := parseForm(r); err != nil {
  311. return err
  312. }
  313. config := &Config{}
  314. if err := json.NewDecoder(r.Body).Decode(config); err != nil && err != io.EOF {
  315. utils.Errorf("%s", err)
  316. }
  317. job := srv.Eng.Job("commit", r.Form.Get("container"))
  318. job.Setenv("repo", r.Form.Get("repo"))
  319. job.Setenv("tag", r.Form.Get("tag"))
  320. job.Setenv("author", r.Form.Get("author"))
  321. job.Setenv("comment", r.Form.Get("comment"))
  322. job.SetenvJson("config", config)
  323. var id string
  324. job.Stdout.AddString(&id)
  325. if err := job.Run(); err != nil {
  326. return err
  327. }
  328. return writeJSON(w, http.StatusCreated, &APIID{id})
  329. }
  330. // Creates an image from Pull or from Import
  331. func postImagesCreate(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  332. if err := parseForm(r); err != nil {
  333. return err
  334. }
  335. var (
  336. image = r.Form.Get("fromImage")
  337. tag = r.Form.Get("tag")
  338. job *engine.Job
  339. )
  340. authEncoded := r.Header.Get("X-Registry-Auth")
  341. authConfig := &auth.AuthConfig{}
  342. if authEncoded != "" {
  343. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  344. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  345. // for a pull it is not an error if no auth was given
  346. // to increase compatibility with the existing api it is defaulting to be empty
  347. authConfig = &auth.AuthConfig{}
  348. }
  349. }
  350. if version > 1.0 {
  351. w.Header().Set("Content-Type", "application/json")
  352. }
  353. if image != "" { //pull
  354. metaHeaders := map[string][]string{}
  355. for k, v := range r.Header {
  356. if strings.HasPrefix(k, "X-Meta-") {
  357. metaHeaders[k] = v
  358. }
  359. }
  360. job = srv.Eng.Job("pull", r.Form.Get("fromImage"), tag)
  361. job.SetenvBool("parallel", version > 1.3)
  362. job.SetenvJson("metaHeaders", metaHeaders)
  363. job.SetenvJson("authConfig", authConfig)
  364. } else { //import
  365. job = srv.Eng.Job("import", r.Form.Get("fromSrc"), r.Form.Get("repo"), tag)
  366. job.Stdin.Add(r.Body)
  367. }
  368. job.SetenvBool("json", version > 1.0)
  369. job.Stdout.Add(utils.NewWriteFlusher(w))
  370. if err := job.Run(); err != nil {
  371. if !job.Stdout.Used() {
  372. return err
  373. }
  374. sf := utils.NewStreamFormatter(version > 1.0)
  375. w.Write(sf.FormatError(err))
  376. }
  377. return nil
  378. }
  379. func getImagesSearch(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  380. if err := parseForm(r); err != nil {
  381. return err
  382. }
  383. var (
  384. authEncoded = r.Header.Get("X-Registry-Auth")
  385. authConfig = &auth.AuthConfig{}
  386. metaHeaders = map[string][]string{}
  387. )
  388. if authEncoded != "" {
  389. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  390. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  391. // for a search it is not an error if no auth was given
  392. // to increase compatibility with the existing api it is defaulting to be empty
  393. authConfig = &auth.AuthConfig{}
  394. }
  395. }
  396. for k, v := range r.Header {
  397. if strings.HasPrefix(k, "X-Meta-") {
  398. metaHeaders[k] = v
  399. }
  400. }
  401. var job = srv.Eng.Job("search", r.Form.Get("term"))
  402. job.SetenvJson("metaHeaders", metaHeaders)
  403. job.SetenvJson("authConfig", authConfig)
  404. job.Stdout.Add(w)
  405. return job.Run()
  406. }
  407. func postImagesInsert(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  408. if err := parseForm(r); err != nil {
  409. return err
  410. }
  411. if vars == nil {
  412. return fmt.Errorf("Missing parameter")
  413. }
  414. if version > 1.0 {
  415. w.Header().Set("Content-Type", "application/json")
  416. }
  417. job := srv.Eng.Job("insert", vars["name"], r.Form.Get("url"), r.Form.Get("path"))
  418. job.SetenvBool("json", version > 1.0)
  419. job.Stdout.Add(w)
  420. if err := job.Run(); err != nil {
  421. if !job.Stdout.Used() {
  422. return err
  423. }
  424. sf := utils.NewStreamFormatter(version > 1.0)
  425. w.Write(sf.FormatError(err))
  426. }
  427. return nil
  428. }
  429. func postImagesPush(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  430. if vars == nil {
  431. return fmt.Errorf("Missing parameter")
  432. }
  433. metaHeaders := map[string][]string{}
  434. for k, v := range r.Header {
  435. if strings.HasPrefix(k, "X-Meta-") {
  436. metaHeaders[k] = v
  437. }
  438. }
  439. if err := parseForm(r); err != nil {
  440. return err
  441. }
  442. authConfig := &auth.AuthConfig{}
  443. authEncoded := r.Header.Get("X-Registry-Auth")
  444. if authEncoded != "" {
  445. // the new format is to handle the authConfig as a header
  446. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  447. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  448. // to increase compatibility to existing api it is defaulting to be empty
  449. authConfig = &auth.AuthConfig{}
  450. }
  451. } else {
  452. // the old format is supported for compatibility if there was no authConfig header
  453. if err := json.NewDecoder(r.Body).Decode(authConfig); err != nil {
  454. return err
  455. }
  456. }
  457. if version > 1.0 {
  458. w.Header().Set("Content-Type", "application/json")
  459. }
  460. job := srv.Eng.Job("push", vars["name"])
  461. job.SetenvJson("metaHeaders", metaHeaders)
  462. job.SetenvJson("authConfig", authConfig)
  463. job.SetenvBool("json", version > 1.0)
  464. job.Stdout.Add(utils.NewWriteFlusher(w))
  465. if err := job.Run(); err != nil {
  466. if !job.Stdout.Used() {
  467. return err
  468. }
  469. sf := utils.NewStreamFormatter(version > 1.0)
  470. w.Write(sf.FormatError(err))
  471. }
  472. return nil
  473. }
  474. func getImagesGet(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  475. if vars == nil {
  476. return fmt.Errorf("Missing parameter")
  477. }
  478. if version > 1.0 {
  479. w.Header().Set("Content-Type", "application/x-tar")
  480. }
  481. job := srv.Eng.Job("image_export", vars["name"])
  482. job.Stdout.Add(w)
  483. return job.Run()
  484. }
  485. func postImagesLoad(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  486. job := srv.Eng.Job("load")
  487. job.Stdin.Add(r.Body)
  488. return job.Run()
  489. }
  490. func postContainersCreate(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  491. if err := parseForm(r); err != nil {
  492. return nil
  493. }
  494. out := &APIRun{}
  495. job := srv.Eng.Job("create", r.Form.Get("name"))
  496. if err := job.DecodeEnv(r.Body); err != nil {
  497. return err
  498. }
  499. resolvConf, err := utils.GetResolvConf()
  500. if err != nil {
  501. return err
  502. }
  503. if !job.GetenvBool("NetworkDisabled") && len(job.Getenv("Dns")) == 0 && len(srv.runtime.config.Dns) == 0 && utils.CheckLocalDns(resolvConf) {
  504. out.Warnings = append(out.Warnings, fmt.Sprintf("Docker detected local DNS server on resolv.conf. Using default external servers: %v", defaultDns))
  505. job.SetenvList("Dns", defaultDns)
  506. }
  507. // Read container ID from the first line of stdout
  508. job.Stdout.AddString(&out.ID)
  509. // Read warnings from stderr
  510. warnings := &bytes.Buffer{}
  511. job.Stderr.Add(warnings)
  512. if err := job.Run(); err != nil {
  513. return err
  514. }
  515. // Parse warnings from stderr
  516. scanner := bufio.NewScanner(warnings)
  517. for scanner.Scan() {
  518. out.Warnings = append(out.Warnings, scanner.Text())
  519. }
  520. if job.GetenvInt("Memory") > 0 && !srv.runtime.sysInfo.MemoryLimit {
  521. log.Println("WARNING: Your kernel does not support memory limit capabilities. Limitation discarded.")
  522. out.Warnings = append(out.Warnings, "Your kernel does not support memory limit capabilities. Limitation discarded.")
  523. }
  524. if job.GetenvInt("Memory") > 0 && !srv.runtime.sysInfo.SwapLimit {
  525. log.Println("WARNING: Your kernel does not support swap limit capabilities. Limitation discarded.")
  526. out.Warnings = append(out.Warnings, "Your kernel does not support memory swap capabilities. Limitation discarded.")
  527. }
  528. if !job.GetenvBool("NetworkDisabled") && srv.runtime.sysInfo.IPv4ForwardingDisabled {
  529. log.Println("Warning: IPv4 forwarding is disabled.")
  530. out.Warnings = append(out.Warnings, "IPv4 forwarding is disabled.")
  531. }
  532. return writeJSON(w, http.StatusCreated, out)
  533. }
  534. func postContainersRestart(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  535. if err := parseForm(r); err != nil {
  536. return err
  537. }
  538. if vars == nil {
  539. return fmt.Errorf("Missing parameter")
  540. }
  541. job := srv.Eng.Job("restart", vars["name"])
  542. job.Setenv("t", r.Form.Get("t"))
  543. if err := job.Run(); err != nil {
  544. return err
  545. }
  546. w.WriteHeader(http.StatusNoContent)
  547. return nil
  548. }
  549. func deleteContainers(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  550. if err := parseForm(r); err != nil {
  551. return err
  552. }
  553. if vars == nil {
  554. return fmt.Errorf("Missing parameter")
  555. }
  556. job := srv.Eng.Job("container_delete", vars["name"])
  557. job.Setenv("removeVolume", r.Form.Get("v"))
  558. job.Setenv("removeLink", r.Form.Get("link"))
  559. if err := job.Run(); err != nil {
  560. return err
  561. }
  562. w.WriteHeader(http.StatusNoContent)
  563. return nil
  564. }
  565. func deleteImages(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  566. if err := parseForm(r); err != nil {
  567. return err
  568. }
  569. if vars == nil {
  570. return fmt.Errorf("Missing parameter")
  571. }
  572. var job = srv.Eng.Job("image_delete", vars["name"])
  573. job.Stdout.Add(w)
  574. job.SetenvBool("autoPrune", version > 1.1)
  575. return job.Run()
  576. }
  577. func postContainersStart(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  578. if vars == nil {
  579. return fmt.Errorf("Missing parameter")
  580. }
  581. name := vars["name"]
  582. job := srv.Eng.Job("start", name)
  583. // allow a nil body for backwards compatibility
  584. if r.Body != nil {
  585. if matchesContentType(r.Header.Get("Content-Type"), "application/json") {
  586. if err := job.DecodeEnv(r.Body); err != nil {
  587. return err
  588. }
  589. }
  590. }
  591. if err := job.Run(); err != nil {
  592. return err
  593. }
  594. w.WriteHeader(http.StatusNoContent)
  595. return nil
  596. }
  597. func postContainersStop(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  598. if err := parseForm(r); err != nil {
  599. return err
  600. }
  601. if vars == nil {
  602. return fmt.Errorf("Missing parameter")
  603. }
  604. job := srv.Eng.Job("stop", vars["name"])
  605. job.Setenv("t", r.Form.Get("t"))
  606. if err := job.Run(); err != nil {
  607. return err
  608. }
  609. w.WriteHeader(http.StatusNoContent)
  610. return nil
  611. }
  612. func postContainersWait(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  613. if vars == nil {
  614. return fmt.Errorf("Missing parameter")
  615. }
  616. job := srv.Eng.Job("wait", vars["name"])
  617. var statusStr string
  618. job.Stdout.AddString(&statusStr)
  619. if err := job.Run(); err != nil {
  620. return err
  621. }
  622. // Parse a 16-bit encoded integer to map typical unix exit status.
  623. status, err := strconv.ParseInt(statusStr, 10, 16)
  624. if err != nil {
  625. return err
  626. }
  627. return writeJSON(w, http.StatusOK, &APIWait{StatusCode: int(status)})
  628. }
  629. func postContainersResize(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  630. if err := parseForm(r); err != nil {
  631. return err
  632. }
  633. if vars == nil {
  634. return fmt.Errorf("Missing parameter")
  635. }
  636. if err := srv.Eng.Job("resize", vars["name"], r.Form.Get("h"), r.Form.Get("w")).Run(); err != nil {
  637. return err
  638. }
  639. return nil
  640. }
  641. func postContainersAttach(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  642. if err := parseForm(r); err != nil {
  643. return err
  644. }
  645. if vars == nil {
  646. return fmt.Errorf("Missing parameter")
  647. }
  648. // TODO: replace the buffer by job.AddEnv()
  649. var (
  650. job = srv.Eng.Job("inspect", vars["name"], "container")
  651. buffer = bytes.NewBuffer(nil)
  652. c Container
  653. )
  654. job.Stdout.Add(buffer)
  655. if err := job.Run(); err != nil {
  656. return err
  657. }
  658. if err := json.Unmarshal(buffer.Bytes(), &c); err != nil {
  659. return err
  660. }
  661. inStream, outStream, err := hijackServer(w)
  662. if err != nil {
  663. return err
  664. }
  665. defer func() {
  666. if tcpc, ok := inStream.(*net.TCPConn); ok {
  667. tcpc.CloseWrite()
  668. } else {
  669. inStream.Close()
  670. }
  671. }()
  672. defer func() {
  673. if tcpc, ok := outStream.(*net.TCPConn); ok {
  674. tcpc.CloseWrite()
  675. } else if closer, ok := outStream.(io.Closer); ok {
  676. closer.Close()
  677. }
  678. }()
  679. var errStream io.Writer
  680. fmt.Fprintf(outStream, "HTTP/1.1 200 OK\r\nContent-Type: application/vnd.docker.raw-stream\r\n\r\n")
  681. if !c.Config.Tty && version >= 1.6 {
  682. errStream = utils.NewStdWriter(outStream, utils.Stderr)
  683. outStream = utils.NewStdWriter(outStream, utils.Stdout)
  684. } else {
  685. errStream = outStream
  686. }
  687. job = srv.Eng.Job("attach", vars["name"])
  688. job.Setenv("logs", r.Form.Get("logs"))
  689. job.Setenv("stream", r.Form.Get("stream"))
  690. job.Setenv("stdin", r.Form.Get("stdin"))
  691. job.Setenv("stdout", r.Form.Get("stdout"))
  692. job.Setenv("stderr", r.Form.Get("stderr"))
  693. job.Stdin.Add(inStream)
  694. job.Stdout.Add(outStream)
  695. job.Stderr.Set(errStream)
  696. if err := job.Run(); err != nil {
  697. fmt.Fprintf(outStream, "Error: %s\n", err)
  698. }
  699. return nil
  700. }
  701. func wsContainersAttach(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  702. if err := parseForm(r); err != nil {
  703. return err
  704. }
  705. if vars == nil {
  706. return fmt.Errorf("Missing parameter")
  707. }
  708. if err := srv.Eng.Job("inspect", vars["name"], "container").Run(); err != nil {
  709. return err
  710. }
  711. h := websocket.Handler(func(ws *websocket.Conn) {
  712. defer ws.Close()
  713. job := srv.Eng.Job("attach", vars["name"])
  714. job.Setenv("logs", r.Form.Get("logs"))
  715. job.Setenv("stream", r.Form.Get("stream"))
  716. job.Setenv("stdin", r.Form.Get("stdin"))
  717. job.Setenv("stdout", r.Form.Get("stdout"))
  718. job.Setenv("stderr", r.Form.Get("stderr"))
  719. job.Stdin.Add(ws)
  720. job.Stdout.Add(ws)
  721. job.Stderr.Set(ws)
  722. if err := job.Run(); err != nil {
  723. utils.Errorf("Error: %s", err)
  724. }
  725. })
  726. h.ServeHTTP(w, r)
  727. return nil
  728. }
  729. func getContainersByName(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  730. if vars == nil {
  731. return fmt.Errorf("Missing parameter")
  732. }
  733. var job = srv.Eng.Job("inspect", vars["name"], "container")
  734. job.Stdout.Add(w)
  735. job.SetenvBool("conflict", true) //conflict=true to detect conflict between containers and images in the job
  736. return job.Run()
  737. }
  738. func getImagesByName(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  739. if vars == nil {
  740. return fmt.Errorf("Missing parameter")
  741. }
  742. var job = srv.Eng.Job("inspect", vars["name"], "image")
  743. job.Stdout.Add(w)
  744. job.SetenvBool("conflict", true) //conflict=true to detect conflict between containers and images in the job
  745. return job.Run()
  746. }
  747. func postBuild(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  748. if version < 1.3 {
  749. return fmt.Errorf("Multipart upload for build is no longer supported. Please upgrade your docker client.")
  750. }
  751. var (
  752. authEncoded = r.Header.Get("X-Registry-Auth")
  753. authConfig = &auth.AuthConfig{}
  754. configFileEncoded = r.Header.Get("X-Registry-Config")
  755. configFile = &auth.ConfigFile{}
  756. job = srv.Eng.Job("build")
  757. )
  758. // This block can be removed when API versions prior to 1.9 are deprecated.
  759. // Both headers will be parsed and sent along to the daemon, but if a non-empty
  760. // ConfigFile is present, any value provided as an AuthConfig directly will
  761. // be overridden. See BuildFile::CmdFrom for details.
  762. if version < 1.9 && authEncoded != "" {
  763. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  764. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  765. // for a pull it is not an error if no auth was given
  766. // to increase compatibility with the existing api it is defaulting to be empty
  767. authConfig = &auth.AuthConfig{}
  768. }
  769. }
  770. if configFileEncoded != "" {
  771. configFileJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(configFileEncoded))
  772. if err := json.NewDecoder(configFileJson).Decode(configFile); err != nil {
  773. // for a pull it is not an error if no auth was given
  774. // to increase compatibility with the existing api it is defaulting to be empty
  775. configFile = &auth.ConfigFile{}
  776. }
  777. }
  778. if version >= 1.8 {
  779. w.Header().Set("Content-Type", "application/json")
  780. job.SetenvBool("json", true)
  781. }
  782. job.Stdout.Add(utils.NewWriteFlusher(w))
  783. job.Stdin.Add(r.Body)
  784. job.Setenv("remote", r.FormValue("remote"))
  785. job.Setenv("t", r.FormValue("t"))
  786. job.Setenv("q", r.FormValue("q"))
  787. job.Setenv("nocache", r.FormValue("nocache"))
  788. job.Setenv("rm", r.FormValue("rm"))
  789. if err := job.Run(); err != nil {
  790. if !job.Stdout.Used() {
  791. return err
  792. }
  793. sf := utils.NewStreamFormatter(version >= 1.8)
  794. w.Write(sf.FormatError(err))
  795. }
  796. return nil
  797. }
  798. func postContainersCopy(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  799. if vars == nil {
  800. return fmt.Errorf("Missing parameter")
  801. }
  802. copyData := &APICopy{}
  803. contentType := r.Header.Get("Content-Type")
  804. if contentType == "application/json" {
  805. if err := json.NewDecoder(r.Body).Decode(copyData); err != nil {
  806. return err
  807. }
  808. } else {
  809. return fmt.Errorf("Content-Type not supported: %s", contentType)
  810. }
  811. if copyData.Resource == "" {
  812. return fmt.Errorf("Path cannot be empty")
  813. }
  814. if copyData.Resource[0] == '/' {
  815. copyData.Resource = copyData.Resource[1:]
  816. }
  817. job := srv.Eng.Job("container_copy", vars["name"], copyData.Resource)
  818. job.Stdout.Add(w)
  819. if err := job.Run(); err != nil {
  820. utils.Errorf("%s", err.Error())
  821. }
  822. return nil
  823. }
  824. func optionsHandler(srv *Server, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  825. w.WriteHeader(http.StatusOK)
  826. return nil
  827. }
  828. func writeCorsHeaders(w http.ResponseWriter, r *http.Request) {
  829. w.Header().Add("Access-Control-Allow-Origin", "*")
  830. w.Header().Add("Access-Control-Allow-Headers", "Origin, X-Requested-With, Content-Type, Accept")
  831. w.Header().Add("Access-Control-Allow-Methods", "GET, POST, DELETE, PUT, OPTIONS")
  832. }
  833. func makeHttpHandler(srv *Server, logging bool, localMethod string, localRoute string, handlerFunc HttpApiFunc) http.HandlerFunc {
  834. return func(w http.ResponseWriter, r *http.Request) {
  835. // log the request
  836. utils.Debugf("Calling %s %s", localMethod, localRoute)
  837. if logging {
  838. log.Println(r.Method, r.RequestURI)
  839. }
  840. if strings.Contains(r.Header.Get("User-Agent"), "Docker-Client/") {
  841. userAgent := strings.Split(r.Header.Get("User-Agent"), "/")
  842. if len(userAgent) == 2 && userAgent[1] != VERSION {
  843. utils.Debugf("Warning: client and server don't have the same version (client: %s, server: %s)", userAgent[1], VERSION)
  844. }
  845. }
  846. version, err := strconv.ParseFloat(mux.Vars(r)["version"], 64)
  847. if err != nil {
  848. version = APIVERSION
  849. }
  850. if srv.runtime.config.EnableCors {
  851. writeCorsHeaders(w, r)
  852. }
  853. if version == 0 || version > APIVERSION {
  854. http.Error(w, fmt.Errorf("client and server don't have same version (client : %g, server: %g)", version, APIVERSION).Error(), http.StatusNotFound)
  855. return
  856. }
  857. if err := handlerFunc(srv, version, w, r, mux.Vars(r)); err != nil {
  858. utils.Errorf("Error: %s", err)
  859. httpError(w, err)
  860. }
  861. }
  862. }
  863. // Replicated from expvar.go as not public.
  864. func expvarHandler(w http.ResponseWriter, r *http.Request) {
  865. w.Header().Set("Content-Type", "application/json; charset=utf-8")
  866. fmt.Fprintf(w, "{\n")
  867. first := true
  868. expvar.Do(func(kv expvar.KeyValue) {
  869. if !first {
  870. fmt.Fprintf(w, ",\n")
  871. }
  872. first = false
  873. fmt.Fprintf(w, "%q: %s", kv.Key, kv.Value)
  874. })
  875. fmt.Fprintf(w, "\n}\n")
  876. }
  877. func AttachProfiler(router *mux.Router) {
  878. router.HandleFunc("/debug/vars", expvarHandler)
  879. router.HandleFunc("/debug/pprof/", pprof.Index)
  880. router.HandleFunc("/debug/pprof/cmdline", pprof.Cmdline)
  881. router.HandleFunc("/debug/pprof/profile", pprof.Profile)
  882. router.HandleFunc("/debug/pprof/symbol", pprof.Symbol)
  883. router.HandleFunc("/debug/pprof/heap", pprof.Handler("heap").ServeHTTP)
  884. router.HandleFunc("/debug/pprof/goroutine", pprof.Handler("goroutine").ServeHTTP)
  885. router.HandleFunc("/debug/pprof/threadcreate", pprof.Handler("threadcreate").ServeHTTP)
  886. }
  887. func createRouter(srv *Server, logging bool) (*mux.Router, error) {
  888. r := mux.NewRouter()
  889. if os.Getenv("DEBUG") != "" {
  890. AttachProfiler(r)
  891. }
  892. m := map[string]map[string]HttpApiFunc{
  893. "GET": {
  894. "/events": getEvents,
  895. "/info": getInfo,
  896. "/version": getVersion,
  897. "/images/json": getImagesJSON,
  898. "/images/viz": getImagesViz,
  899. "/images/search": getImagesSearch,
  900. "/images/{name:.*}/get": getImagesGet,
  901. "/images/{name:.*}/history": getImagesHistory,
  902. "/images/{name:.*}/json": getImagesByName,
  903. "/containers/ps": getContainersJSON,
  904. "/containers/json": getContainersJSON,
  905. "/containers/{name:.*}/export": getContainersExport,
  906. "/containers/{name:.*}/changes": getContainersChanges,
  907. "/containers/{name:.*}/json": getContainersByName,
  908. "/containers/{name:.*}/top": getContainersTop,
  909. "/containers/{name:.*}/attach/ws": wsContainersAttach,
  910. },
  911. "POST": {
  912. "/auth": postAuth,
  913. "/commit": postCommit,
  914. "/build": postBuild,
  915. "/images/create": postImagesCreate,
  916. "/images/{name:.*}/insert": postImagesInsert,
  917. "/images/load": postImagesLoad,
  918. "/images/{name:.*}/push": postImagesPush,
  919. "/images/{name:.*}/tag": postImagesTag,
  920. "/containers/create": postContainersCreate,
  921. "/containers/{name:.*}/kill": postContainersKill,
  922. "/containers/{name:.*}/restart": postContainersRestart,
  923. "/containers/{name:.*}/start": postContainersStart,
  924. "/containers/{name:.*}/stop": postContainersStop,
  925. "/containers/{name:.*}/wait": postContainersWait,
  926. "/containers/{name:.*}/resize": postContainersResize,
  927. "/containers/{name:.*}/attach": postContainersAttach,
  928. "/containers/{name:.*}/copy": postContainersCopy,
  929. },
  930. "DELETE": {
  931. "/containers/{name:.*}": deleteContainers,
  932. "/images/{name:.*}": deleteImages,
  933. },
  934. "OPTIONS": {
  935. "": optionsHandler,
  936. },
  937. }
  938. for method, routes := range m {
  939. for route, fct := range routes {
  940. utils.Debugf("Registering %s, %s", method, route)
  941. // NOTE: scope issue, make sure the variables are local and won't be changed
  942. localRoute := route
  943. localFct := fct
  944. localMethod := method
  945. // build the handler function
  946. f := makeHttpHandler(srv, logging, localMethod, localRoute, localFct)
  947. // add the new route
  948. if localRoute == "" {
  949. r.Methods(localMethod).HandlerFunc(f)
  950. } else {
  951. r.Path("/v{version:[0-9.]+}" + localRoute).Methods(localMethod).HandlerFunc(f)
  952. r.Path(localRoute).Methods(localMethod).HandlerFunc(f)
  953. }
  954. }
  955. }
  956. return r, nil
  957. }
  958. // ServeRequest processes a single http request to the docker remote api.
  959. // FIXME: refactor this to be part of Server and not require re-creating a new
  960. // router each time. This requires first moving ListenAndServe into Server.
  961. func ServeRequest(srv *Server, apiversion float64, w http.ResponseWriter, req *http.Request) error {
  962. router, err := createRouter(srv, false)
  963. if err != nil {
  964. return err
  965. }
  966. // Insert APIVERSION into the request as a convenience
  967. req.URL.Path = fmt.Sprintf("/v%g%s", apiversion, req.URL.Path)
  968. router.ServeHTTP(w, req)
  969. return nil
  970. }
  971. func ListenAndServe(proto, addr string, srv *Server, logging bool) error {
  972. r, err := createRouter(srv, logging)
  973. if err != nil {
  974. return err
  975. }
  976. l, e := net.Listen(proto, addr)
  977. if e != nil {
  978. return e
  979. }
  980. if proto == "unix" {
  981. if err := os.Chmod(addr, 0660); err != nil {
  982. return err
  983. }
  984. groups, err := ioutil.ReadFile("/etc/group")
  985. if err != nil {
  986. return err
  987. }
  988. re := regexp.MustCompile("(^|\n)docker:.*?:([0-9]+)")
  989. if gidMatch := re.FindStringSubmatch(string(groups)); gidMatch != nil {
  990. gid, err := strconv.Atoi(gidMatch[2])
  991. if err != nil {
  992. return err
  993. }
  994. utils.Debugf("docker group found. gid: %d", gid)
  995. if err := os.Chown(addr, 0, gid); err != nil {
  996. return err
  997. }
  998. }
  999. }
  1000. httpSrv := http.Server{Addr: addr, Handler: r}
  1001. log.Printf("Listening for HTTP on %s (%s)\n", addr, proto)
  1002. // Tell the init daemon we are accepting requests
  1003. go systemd.SdNotify("READY=1")
  1004. return httpSrv.Serve(l)
  1005. }