opts.go 5.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212
  1. package swarm
  2. import (
  3. "encoding/csv"
  4. "errors"
  5. "fmt"
  6. "strings"
  7. "time"
  8. "github.com/docker/docker/api/types/swarm"
  9. "github.com/docker/docker/opts"
  10. "github.com/spf13/pflag"
  11. )
  12. const (
  13. defaultListenAddr = "0.0.0.0:2377"
  14. flagCertExpiry = "cert-expiry"
  15. flagDispatcherHeartbeat = "dispatcher-heartbeat"
  16. flagListenAddr = "listen-addr"
  17. flagAdvertiseAddr = "advertise-addr"
  18. flagQuiet = "quiet"
  19. flagRotate = "rotate"
  20. flagToken = "token"
  21. flagTaskHistoryLimit = "task-history-limit"
  22. flagExternalCA = "external-ca"
  23. flagMaxSnapshots = "max-snapshots"
  24. flagSnapshotInterval = "snapshot-interval"
  25. flagLockKey = "lock-key"
  26. flagAutolock = "autolock"
  27. flagAvailability = "availability"
  28. )
  29. type swarmOptions struct {
  30. taskHistoryLimit int64
  31. dispatcherHeartbeat time.Duration
  32. nodeCertExpiry time.Duration
  33. externalCA ExternalCAOption
  34. maxSnapshots uint64
  35. snapshotInterval uint64
  36. autolock bool
  37. }
  38. // NodeAddrOption is a pflag.Value for listening addresses
  39. type NodeAddrOption struct {
  40. addr string
  41. }
  42. // String prints the representation of this flag
  43. func (a *NodeAddrOption) String() string {
  44. return a.Value()
  45. }
  46. // Set the value for this flag
  47. func (a *NodeAddrOption) Set(value string) error {
  48. addr, err := opts.ParseTCPAddr(value, a.addr)
  49. if err != nil {
  50. return err
  51. }
  52. a.addr = addr
  53. return nil
  54. }
  55. // Type returns the type of this flag
  56. func (a *NodeAddrOption) Type() string {
  57. return "node-addr"
  58. }
  59. // Value returns the value of this option as addr:port
  60. func (a *NodeAddrOption) Value() string {
  61. return strings.TrimPrefix(a.addr, "tcp://")
  62. }
  63. // NewNodeAddrOption returns a new node address option
  64. func NewNodeAddrOption(addr string) NodeAddrOption {
  65. return NodeAddrOption{addr}
  66. }
  67. // NewListenAddrOption returns a NodeAddrOption with default values
  68. func NewListenAddrOption() NodeAddrOption {
  69. return NewNodeAddrOption(defaultListenAddr)
  70. }
  71. // ExternalCAOption is a Value type for parsing external CA specifications.
  72. type ExternalCAOption struct {
  73. values []*swarm.ExternalCA
  74. }
  75. // Set parses an external CA option.
  76. func (m *ExternalCAOption) Set(value string) error {
  77. parsed, err := parseExternalCA(value)
  78. if err != nil {
  79. return err
  80. }
  81. m.values = append(m.values, parsed)
  82. return nil
  83. }
  84. // Type returns the type of this option.
  85. func (m *ExternalCAOption) Type() string {
  86. return "external-ca"
  87. }
  88. // String returns a string repr of this option.
  89. func (m *ExternalCAOption) String() string {
  90. externalCAs := []string{}
  91. for _, externalCA := range m.values {
  92. repr := fmt.Sprintf("%s: %s", externalCA.Protocol, externalCA.URL)
  93. externalCAs = append(externalCAs, repr)
  94. }
  95. return strings.Join(externalCAs, ", ")
  96. }
  97. // Value returns the external CAs
  98. func (m *ExternalCAOption) Value() []*swarm.ExternalCA {
  99. return m.values
  100. }
  101. // parseExternalCA parses an external CA specification from the command line,
  102. // such as protocol=cfssl,url=https://example.com.
  103. func parseExternalCA(caSpec string) (*swarm.ExternalCA, error) {
  104. csvReader := csv.NewReader(strings.NewReader(caSpec))
  105. fields, err := csvReader.Read()
  106. if err != nil {
  107. return nil, err
  108. }
  109. externalCA := swarm.ExternalCA{
  110. Options: make(map[string]string),
  111. }
  112. var (
  113. hasProtocol bool
  114. hasURL bool
  115. )
  116. for _, field := range fields {
  117. parts := strings.SplitN(field, "=", 2)
  118. if len(parts) != 2 {
  119. return nil, fmt.Errorf("invalid field '%s' must be a key=value pair", field)
  120. }
  121. key, value := parts[0], parts[1]
  122. switch strings.ToLower(key) {
  123. case "protocol":
  124. hasProtocol = true
  125. if strings.ToLower(value) == string(swarm.ExternalCAProtocolCFSSL) {
  126. externalCA.Protocol = swarm.ExternalCAProtocolCFSSL
  127. } else {
  128. return nil, fmt.Errorf("unrecognized external CA protocol %s", value)
  129. }
  130. case "url":
  131. hasURL = true
  132. externalCA.URL = value
  133. default:
  134. externalCA.Options[key] = value
  135. }
  136. }
  137. if !hasProtocol {
  138. return nil, errors.New("the external-ca option needs a protocol= parameter")
  139. }
  140. if !hasURL {
  141. return nil, errors.New("the external-ca option needs a url= parameter")
  142. }
  143. return &externalCA, nil
  144. }
  145. func addSwarmFlags(flags *pflag.FlagSet, opts *swarmOptions) {
  146. flags.Int64Var(&opts.taskHistoryLimit, flagTaskHistoryLimit, 5, "Task history retention limit")
  147. flags.DurationVar(&opts.dispatcherHeartbeat, flagDispatcherHeartbeat, time.Duration(5*time.Second), "Dispatcher heartbeat period (ns|us|ms|s|m|h)")
  148. flags.DurationVar(&opts.nodeCertExpiry, flagCertExpiry, time.Duration(90*24*time.Hour), "Validity period for node certificates (ns|us|ms|s|m|h)")
  149. flags.Var(&opts.externalCA, flagExternalCA, "Specifications of one or more certificate signing endpoints")
  150. flags.Uint64Var(&opts.maxSnapshots, flagMaxSnapshots, 0, "Number of additional Raft snapshots to retain")
  151. flags.SetAnnotation(flagMaxSnapshots, "version", []string{"1.25"})
  152. flags.Uint64Var(&opts.snapshotInterval, flagSnapshotInterval, 10000, "Number of log entries between Raft snapshots")
  153. flags.SetAnnotation(flagSnapshotInterval, "version", []string{"1.25"})
  154. }
  155. func (opts *swarmOptions) mergeSwarmSpec(spec *swarm.Spec, flags *pflag.FlagSet) {
  156. if flags.Changed(flagTaskHistoryLimit) {
  157. spec.Orchestration.TaskHistoryRetentionLimit = &opts.taskHistoryLimit
  158. }
  159. if flags.Changed(flagDispatcherHeartbeat) {
  160. spec.Dispatcher.HeartbeatPeriod = opts.dispatcherHeartbeat
  161. }
  162. if flags.Changed(flagCertExpiry) {
  163. spec.CAConfig.NodeCertExpiry = opts.nodeCertExpiry
  164. }
  165. if flags.Changed(flagExternalCA) {
  166. spec.CAConfig.ExternalCAs = opts.externalCA.Value()
  167. }
  168. if flags.Changed(flagMaxSnapshots) {
  169. spec.Raft.KeepOldSnapshots = &opts.maxSnapshots
  170. }
  171. if flags.Changed(flagSnapshotInterval) {
  172. spec.Raft.SnapshotInterval = opts.snapshotInterval
  173. }
  174. if flags.Changed(flagAutolock) {
  175. spec.EncryptionConfig.AutoLockManagers = opts.autolock
  176. }
  177. }
  178. func (opts *swarmOptions) ToSpec(flags *pflag.FlagSet) swarm.Spec {
  179. var spec swarm.Spec
  180. opts.mergeSwarmSpec(&spec, flags)
  181. return spec
  182. }