server.go 47 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593
  1. package server
  2. import (
  3. "bufio"
  4. "bytes"
  5. "encoding/base64"
  6. "encoding/json"
  7. "expvar"
  8. "fmt"
  9. "io"
  10. "io/ioutil"
  11. "net"
  12. "net/http"
  13. "net/http/pprof"
  14. "os"
  15. "strconv"
  16. "strings"
  17. "crypto/tls"
  18. "crypto/x509"
  19. "code.google.com/p/go.net/websocket"
  20. "github.com/docker/libcontainer/user"
  21. "github.com/gorilla/mux"
  22. log "github.com/Sirupsen/logrus"
  23. "github.com/docker/docker/api"
  24. "github.com/docker/docker/api/types"
  25. "github.com/docker/docker/daemon/networkdriver/portallocator"
  26. "github.com/docker/docker/engine"
  27. "github.com/docker/docker/pkg/listenbuffer"
  28. "github.com/docker/docker/pkg/parsers"
  29. "github.com/docker/docker/pkg/stdcopy"
  30. "github.com/docker/docker/pkg/version"
  31. "github.com/docker/docker/registry"
  32. "github.com/docker/docker/utils"
  33. )
  34. var (
  35. activationLock chan struct{}
  36. )
  37. type HttpServer struct {
  38. srv *http.Server
  39. l net.Listener
  40. }
  41. func (s *HttpServer) Serve() error {
  42. return s.srv.Serve(s.l)
  43. }
  44. func (s *HttpServer) Close() error {
  45. return s.l.Close()
  46. }
  47. type HttpApiFunc func(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error
  48. func hijackServer(w http.ResponseWriter) (io.ReadCloser, io.Writer, error) {
  49. conn, _, err := w.(http.Hijacker).Hijack()
  50. if err != nil {
  51. return nil, nil, err
  52. }
  53. // Flush the options to make sure the client sets the raw mode
  54. conn.Write([]byte{})
  55. return conn, conn, nil
  56. }
  57. func closeStreams(streams ...interface{}) {
  58. for _, stream := range streams {
  59. if tcpc, ok := stream.(interface {
  60. CloseWrite() error
  61. }); ok {
  62. tcpc.CloseWrite()
  63. } else if closer, ok := stream.(io.Closer); ok {
  64. closer.Close()
  65. }
  66. }
  67. }
  68. // Check to make sure request's Content-Type is application/json
  69. func checkForJson(r *http.Request) error {
  70. ct := r.Header.Get("Content-Type")
  71. // No Content-Type header is ok as long as there's no Body
  72. if ct == "" {
  73. if r.Body == nil || r.ContentLength == 0 {
  74. return nil
  75. }
  76. }
  77. // Otherwise it better be json
  78. if api.MatchesContentType(ct, "application/json") {
  79. return nil
  80. }
  81. return fmt.Errorf("Content-Type specified (%s) must be 'application/json'", ct)
  82. }
  83. //If we don't do this, POST method without Content-type (even with empty body) will fail
  84. func parseForm(r *http.Request) error {
  85. if r == nil {
  86. return nil
  87. }
  88. if err := r.ParseForm(); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  89. return err
  90. }
  91. return nil
  92. }
  93. func parseMultipartForm(r *http.Request) error {
  94. if err := r.ParseMultipartForm(4096); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  95. return err
  96. }
  97. return nil
  98. }
  99. func httpError(w http.ResponseWriter, err error) {
  100. statusCode := http.StatusInternalServerError
  101. // FIXME: this is brittle and should not be necessary.
  102. // If we need to differentiate between different possible error types, we should
  103. // create appropriate error types with clearly defined meaning.
  104. errStr := strings.ToLower(err.Error())
  105. if strings.Contains(errStr, "no such") {
  106. statusCode = http.StatusNotFound
  107. } else if strings.Contains(errStr, "bad parameter") {
  108. statusCode = http.StatusBadRequest
  109. } else if strings.Contains(errStr, "conflict") {
  110. statusCode = http.StatusConflict
  111. } else if strings.Contains(errStr, "impossible") {
  112. statusCode = http.StatusNotAcceptable
  113. } else if strings.Contains(errStr, "wrong login/password") {
  114. statusCode = http.StatusUnauthorized
  115. } else if strings.Contains(errStr, "hasn't been activated") {
  116. statusCode = http.StatusForbidden
  117. }
  118. if err != nil {
  119. log.Errorf("HTTP Error: statusCode=%d %v", statusCode, err)
  120. http.Error(w, err.Error(), statusCode)
  121. }
  122. }
  123. // writeJSONEnv writes the engine.Env values to the http response stream as a
  124. // json encoded body.
  125. func writeJSONEnv(w http.ResponseWriter, code int, v engine.Env) error {
  126. w.Header().Set("Content-Type", "application/json")
  127. w.WriteHeader(code)
  128. return v.Encode(w)
  129. }
  130. // writeJSON writes the value v to the http response stream as json with standard
  131. // json encoding.
  132. func writeJSON(w http.ResponseWriter, code int, v interface{}) error {
  133. w.Header().Set("Content-Type", "application/json")
  134. w.WriteHeader(code)
  135. return json.NewEncoder(w).Encode(v)
  136. }
  137. func streamJSON(job *engine.Job, w http.ResponseWriter, flush bool) {
  138. w.Header().Set("Content-Type", "application/json")
  139. if flush {
  140. job.Stdout.Add(utils.NewWriteFlusher(w))
  141. } else {
  142. job.Stdout.Add(w)
  143. }
  144. }
  145. func getBoolParam(value string) (bool, error) {
  146. if value == "" {
  147. return false, nil
  148. }
  149. ret, err := strconv.ParseBool(value)
  150. if err != nil {
  151. return false, fmt.Errorf("Bad parameter")
  152. }
  153. return ret, nil
  154. }
  155. func postAuth(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  156. var (
  157. authConfig, err = ioutil.ReadAll(r.Body)
  158. job = eng.Job("auth")
  159. stdoutBuffer = bytes.NewBuffer(nil)
  160. )
  161. if err != nil {
  162. return err
  163. }
  164. job.Setenv("authConfig", string(authConfig))
  165. job.Stdout.Add(stdoutBuffer)
  166. if err = job.Run(); err != nil {
  167. return err
  168. }
  169. if status := engine.Tail(stdoutBuffer, 1); status != "" {
  170. var env engine.Env
  171. env.Set("Status", status)
  172. return writeJSONEnv(w, http.StatusOK, env)
  173. }
  174. w.WriteHeader(http.StatusNoContent)
  175. return nil
  176. }
  177. func getVersion(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  178. w.Header().Set("Content-Type", "application/json")
  179. eng.ServeHTTP(w, r)
  180. return nil
  181. }
  182. func postContainersKill(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  183. if vars == nil {
  184. return fmt.Errorf("Missing parameter")
  185. }
  186. if err := parseForm(r); err != nil {
  187. return err
  188. }
  189. job := eng.Job("kill", vars["name"])
  190. if sig := r.Form.Get("signal"); sig != "" {
  191. job.Args = append(job.Args, sig)
  192. }
  193. if err := job.Run(); err != nil {
  194. return err
  195. }
  196. w.WriteHeader(http.StatusNoContent)
  197. return nil
  198. }
  199. func postContainersPause(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  200. if vars == nil {
  201. return fmt.Errorf("Missing parameter")
  202. }
  203. if err := parseForm(r); err != nil {
  204. return err
  205. }
  206. job := eng.Job("pause", vars["name"])
  207. if err := job.Run(); err != nil {
  208. return err
  209. }
  210. w.WriteHeader(http.StatusNoContent)
  211. return nil
  212. }
  213. func postContainersUnpause(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  214. if vars == nil {
  215. return fmt.Errorf("Missing parameter")
  216. }
  217. if err := parseForm(r); err != nil {
  218. return err
  219. }
  220. job := eng.Job("unpause", vars["name"])
  221. if err := job.Run(); err != nil {
  222. return err
  223. }
  224. w.WriteHeader(http.StatusNoContent)
  225. return nil
  226. }
  227. func getContainersExport(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  228. if vars == nil {
  229. return fmt.Errorf("Missing parameter")
  230. }
  231. job := eng.Job("export", vars["name"])
  232. job.Stdout.Add(w)
  233. if err := job.Run(); err != nil {
  234. return err
  235. }
  236. return nil
  237. }
  238. func getImagesJSON(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  239. if err := parseForm(r); err != nil {
  240. return err
  241. }
  242. var (
  243. err error
  244. outs *engine.Table
  245. job = eng.Job("images")
  246. )
  247. job.Setenv("filters", r.Form.Get("filters"))
  248. // FIXME this parameter could just be a match filter
  249. job.Setenv("filter", r.Form.Get("filter"))
  250. job.Setenv("all", r.Form.Get("all"))
  251. if version.GreaterThanOrEqualTo("1.7") {
  252. streamJSON(job, w, false)
  253. } else if outs, err = job.Stdout.AddListTable(); err != nil {
  254. return err
  255. }
  256. if err := job.Run(); err != nil {
  257. return err
  258. }
  259. if version.LessThan("1.7") && outs != nil { // Convert to legacy format
  260. outsLegacy := engine.NewTable("Created", 0)
  261. for _, out := range outs.Data {
  262. for _, repoTag := range out.GetList("RepoTags") {
  263. repo, tag := parsers.ParseRepositoryTag(repoTag)
  264. outLegacy := &engine.Env{}
  265. outLegacy.Set("Repository", repo)
  266. outLegacy.SetJson("Tag", tag)
  267. outLegacy.Set("Id", out.Get("Id"))
  268. outLegacy.SetInt64("Created", out.GetInt64("Created"))
  269. outLegacy.SetInt64("Size", out.GetInt64("Size"))
  270. outLegacy.SetInt64("VirtualSize", out.GetInt64("VirtualSize"))
  271. outsLegacy.Add(outLegacy)
  272. }
  273. }
  274. w.Header().Set("Content-Type", "application/json")
  275. if _, err := outsLegacy.WriteListTo(w); err != nil {
  276. return err
  277. }
  278. }
  279. return nil
  280. }
  281. func getImagesViz(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  282. if version.GreaterThan("1.6") {
  283. w.WriteHeader(http.StatusNotFound)
  284. return fmt.Errorf("This is now implemented in the client.")
  285. }
  286. eng.ServeHTTP(w, r)
  287. return nil
  288. }
  289. func getInfo(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  290. w.Header().Set("Content-Type", "application/json")
  291. eng.ServeHTTP(w, r)
  292. return nil
  293. }
  294. func getEvents(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  295. if err := parseForm(r); err != nil {
  296. return err
  297. }
  298. var job = eng.Job("events")
  299. streamJSON(job, w, true)
  300. job.Setenv("since", r.Form.Get("since"))
  301. job.Setenv("until", r.Form.Get("until"))
  302. job.Setenv("filters", r.Form.Get("filters"))
  303. return job.Run()
  304. }
  305. func getImagesHistory(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  306. if vars == nil {
  307. return fmt.Errorf("Missing parameter")
  308. }
  309. var job = eng.Job("history", vars["name"])
  310. streamJSON(job, w, false)
  311. if err := job.Run(); err != nil {
  312. return err
  313. }
  314. return nil
  315. }
  316. func getContainersChanges(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  317. if vars == nil {
  318. return fmt.Errorf("Missing parameter")
  319. }
  320. var job = eng.Job("container_changes", vars["name"])
  321. streamJSON(job, w, false)
  322. return job.Run()
  323. }
  324. func getContainersTop(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  325. if version.LessThan("1.4") {
  326. return fmt.Errorf("top was improved a lot since 1.3, Please upgrade your docker client.")
  327. }
  328. if vars == nil {
  329. return fmt.Errorf("Missing parameter")
  330. }
  331. if err := parseForm(r); err != nil {
  332. return err
  333. }
  334. job := eng.Job("top", vars["name"], r.Form.Get("ps_args"))
  335. streamJSON(job, w, false)
  336. return job.Run()
  337. }
  338. func getContainersJSON(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  339. if err := parseForm(r); err != nil {
  340. return err
  341. }
  342. var (
  343. err error
  344. outs *engine.Table
  345. job = eng.Job("containers")
  346. )
  347. job.Setenv("all", r.Form.Get("all"))
  348. job.Setenv("size", r.Form.Get("size"))
  349. job.Setenv("since", r.Form.Get("since"))
  350. job.Setenv("before", r.Form.Get("before"))
  351. job.Setenv("limit", r.Form.Get("limit"))
  352. job.Setenv("filters", r.Form.Get("filters"))
  353. if version.GreaterThanOrEqualTo("1.5") {
  354. streamJSON(job, w, false)
  355. } else if outs, err = job.Stdout.AddTable(); err != nil {
  356. return err
  357. }
  358. if err = job.Run(); err != nil {
  359. return err
  360. }
  361. if version.LessThan("1.5") { // Convert to legacy format
  362. for _, out := range outs.Data {
  363. ports := engine.NewTable("", 0)
  364. ports.ReadListFrom([]byte(out.Get("Ports")))
  365. out.Set("Ports", api.DisplayablePorts(ports))
  366. }
  367. w.Header().Set("Content-Type", "application/json")
  368. if _, err = outs.WriteListTo(w); err != nil {
  369. return err
  370. }
  371. }
  372. return nil
  373. }
  374. func getContainersStats(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  375. if err := parseForm(r); err != nil {
  376. return err
  377. }
  378. if vars == nil {
  379. return fmt.Errorf("Missing parameter")
  380. }
  381. name := vars["name"]
  382. job := eng.Job("container_stats", name)
  383. streamJSON(job, w, true)
  384. return job.Run()
  385. }
  386. func getContainersLogs(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  387. if err := parseForm(r); err != nil {
  388. return err
  389. }
  390. if vars == nil {
  391. return fmt.Errorf("Missing parameter")
  392. }
  393. var (
  394. inspectJob = eng.Job("container_inspect", vars["name"])
  395. logsJob = eng.Job("logs", vars["name"])
  396. c, err = inspectJob.Stdout.AddEnv()
  397. )
  398. if err != nil {
  399. return err
  400. }
  401. logsJob.Setenv("follow", r.Form.Get("follow"))
  402. logsJob.Setenv("tail", r.Form.Get("tail"))
  403. logsJob.Setenv("stdout", r.Form.Get("stdout"))
  404. logsJob.Setenv("stderr", r.Form.Get("stderr"))
  405. logsJob.Setenv("timestamps", r.Form.Get("timestamps"))
  406. // Validate args here, because we can't return not StatusOK after job.Run() call
  407. stdout, stderr := logsJob.GetenvBool("stdout"), logsJob.GetenvBool("stderr")
  408. if !(stdout || stderr) {
  409. return fmt.Errorf("Bad parameters: you must choose at least one stream")
  410. }
  411. if err = inspectJob.Run(); err != nil {
  412. return err
  413. }
  414. var outStream, errStream io.Writer
  415. outStream = utils.NewWriteFlusher(w)
  416. if c.GetSubEnv("Config") != nil && !c.GetSubEnv("Config").GetBool("Tty") && version.GreaterThanOrEqualTo("1.6") {
  417. errStream = stdcopy.NewStdWriter(outStream, stdcopy.Stderr)
  418. outStream = stdcopy.NewStdWriter(outStream, stdcopy.Stdout)
  419. } else {
  420. errStream = outStream
  421. }
  422. logsJob.Stdout.Add(outStream)
  423. logsJob.Stderr.Set(errStream)
  424. if err := logsJob.Run(); err != nil {
  425. fmt.Fprintf(outStream, "Error running logs job: %s\n", err)
  426. }
  427. return nil
  428. }
  429. func postImagesTag(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  430. if err := parseForm(r); err != nil {
  431. return err
  432. }
  433. if vars == nil {
  434. return fmt.Errorf("Missing parameter")
  435. }
  436. job := eng.Job("tag", vars["name"], r.Form.Get("repo"), r.Form.Get("tag"))
  437. job.Setenv("force", r.Form.Get("force"))
  438. if err := job.Run(); err != nil {
  439. return err
  440. }
  441. w.WriteHeader(http.StatusCreated)
  442. return nil
  443. }
  444. func postCommit(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  445. if err := parseForm(r); err != nil {
  446. return err
  447. }
  448. var (
  449. config engine.Env
  450. env engine.Env
  451. job = eng.Job("commit", r.Form.Get("container"))
  452. stdoutBuffer = bytes.NewBuffer(nil)
  453. )
  454. if err := checkForJson(r); err != nil {
  455. return err
  456. }
  457. if err := config.Decode(r.Body); err != nil {
  458. log.Errorf("%s", err)
  459. }
  460. if r.FormValue("pause") == "" && version.GreaterThanOrEqualTo("1.13") {
  461. job.Setenv("pause", "1")
  462. } else {
  463. job.Setenv("pause", r.FormValue("pause"))
  464. }
  465. job.Setenv("repo", r.Form.Get("repo"))
  466. job.Setenv("tag", r.Form.Get("tag"))
  467. job.Setenv("author", r.Form.Get("author"))
  468. job.Setenv("comment", r.Form.Get("comment"))
  469. job.SetenvList("changes", r.Form["changes"])
  470. job.SetenvSubEnv("config", &config)
  471. job.Stdout.Add(stdoutBuffer)
  472. if err := job.Run(); err != nil {
  473. return err
  474. }
  475. env.Set("Id", engine.Tail(stdoutBuffer, 1))
  476. return writeJSONEnv(w, http.StatusCreated, env)
  477. }
  478. // Creates an image from Pull or from Import
  479. func postImagesCreate(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  480. if err := parseForm(r); err != nil {
  481. return err
  482. }
  483. var (
  484. image = r.Form.Get("fromImage")
  485. repo = r.Form.Get("repo")
  486. tag = r.Form.Get("tag")
  487. job *engine.Job
  488. )
  489. authEncoded := r.Header.Get("X-Registry-Auth")
  490. authConfig := &registry.AuthConfig{}
  491. if authEncoded != "" {
  492. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  493. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  494. // for a pull it is not an error if no auth was given
  495. // to increase compatibility with the existing api it is defaulting to be empty
  496. authConfig = &registry.AuthConfig{}
  497. }
  498. }
  499. if image != "" { //pull
  500. if tag == "" {
  501. image, tag = parsers.ParseRepositoryTag(image)
  502. }
  503. metaHeaders := map[string][]string{}
  504. for k, v := range r.Header {
  505. if strings.HasPrefix(k, "X-Meta-") {
  506. metaHeaders[k] = v
  507. }
  508. }
  509. job = eng.Job("pull", image, tag)
  510. job.SetenvBool("parallel", version.GreaterThan("1.3"))
  511. job.SetenvJson("metaHeaders", metaHeaders)
  512. job.SetenvJson("authConfig", authConfig)
  513. } else { //import
  514. if tag == "" {
  515. repo, tag = parsers.ParseRepositoryTag(repo)
  516. }
  517. job = eng.Job("import", r.Form.Get("fromSrc"), repo, tag)
  518. job.Stdin.Add(r.Body)
  519. job.SetenvList("changes", r.Form["changes"])
  520. }
  521. if version.GreaterThan("1.0") {
  522. job.SetenvBool("json", true)
  523. streamJSON(job, w, true)
  524. } else {
  525. job.Stdout.Add(utils.NewWriteFlusher(w))
  526. }
  527. if err := job.Run(); err != nil {
  528. if !job.Stdout.Used() {
  529. return err
  530. }
  531. sf := utils.NewStreamFormatter(version.GreaterThan("1.0"))
  532. w.Write(sf.FormatError(err))
  533. }
  534. return nil
  535. }
  536. func getImagesSearch(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  537. if err := parseForm(r); err != nil {
  538. return err
  539. }
  540. var (
  541. authEncoded = r.Header.Get("X-Registry-Auth")
  542. authConfig = &registry.AuthConfig{}
  543. metaHeaders = map[string][]string{}
  544. )
  545. if authEncoded != "" {
  546. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  547. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  548. // for a search it is not an error if no auth was given
  549. // to increase compatibility with the existing api it is defaulting to be empty
  550. authConfig = &registry.AuthConfig{}
  551. }
  552. }
  553. for k, v := range r.Header {
  554. if strings.HasPrefix(k, "X-Meta-") {
  555. metaHeaders[k] = v
  556. }
  557. }
  558. var job = eng.Job("search", r.Form.Get("term"))
  559. job.SetenvJson("metaHeaders", metaHeaders)
  560. job.SetenvJson("authConfig", authConfig)
  561. streamJSON(job, w, false)
  562. return job.Run()
  563. }
  564. func postImagesPush(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  565. if vars == nil {
  566. return fmt.Errorf("Missing parameter")
  567. }
  568. metaHeaders := map[string][]string{}
  569. for k, v := range r.Header {
  570. if strings.HasPrefix(k, "X-Meta-") {
  571. metaHeaders[k] = v
  572. }
  573. }
  574. if err := parseForm(r); err != nil {
  575. return err
  576. }
  577. authConfig := &registry.AuthConfig{}
  578. authEncoded := r.Header.Get("X-Registry-Auth")
  579. if authEncoded != "" {
  580. // the new format is to handle the authConfig as a header
  581. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  582. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  583. // to increase compatibility to existing api it is defaulting to be empty
  584. authConfig = &registry.AuthConfig{}
  585. }
  586. } else {
  587. // the old format is supported for compatibility if there was no authConfig header
  588. if err := json.NewDecoder(r.Body).Decode(authConfig); err != nil {
  589. return err
  590. }
  591. }
  592. job := eng.Job("push", vars["name"])
  593. job.SetenvJson("metaHeaders", metaHeaders)
  594. job.SetenvJson("authConfig", authConfig)
  595. job.Setenv("tag", r.Form.Get("tag"))
  596. if version.GreaterThan("1.0") {
  597. job.SetenvBool("json", true)
  598. streamJSON(job, w, true)
  599. } else {
  600. job.Stdout.Add(utils.NewWriteFlusher(w))
  601. }
  602. if err := job.Run(); err != nil {
  603. if !job.Stdout.Used() {
  604. return err
  605. }
  606. sf := utils.NewStreamFormatter(version.GreaterThan("1.0"))
  607. w.Write(sf.FormatError(err))
  608. }
  609. return nil
  610. }
  611. func getImagesGet(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  612. if vars == nil {
  613. return fmt.Errorf("Missing parameter")
  614. }
  615. if err := parseForm(r); err != nil {
  616. return err
  617. }
  618. if version.GreaterThan("1.0") {
  619. w.Header().Set("Content-Type", "application/x-tar")
  620. }
  621. var job *engine.Job
  622. if name, ok := vars["name"]; ok {
  623. job = eng.Job("image_export", name)
  624. } else {
  625. job = eng.Job("image_export", r.Form["names"]...)
  626. }
  627. job.Stdout.Add(w)
  628. return job.Run()
  629. }
  630. func postImagesLoad(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  631. job := eng.Job("load")
  632. job.Stdin.Add(r.Body)
  633. return job.Run()
  634. }
  635. func postContainersCreate(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  636. if err := parseForm(r); err != nil {
  637. return nil
  638. }
  639. if err := checkForJson(r); err != nil {
  640. return err
  641. }
  642. var (
  643. job = eng.Job("create", r.Form.Get("name"))
  644. outWarnings []string
  645. stdoutBuffer = bytes.NewBuffer(nil)
  646. warnings = bytes.NewBuffer(nil)
  647. )
  648. if err := job.DecodeEnv(r.Body); err != nil {
  649. return err
  650. }
  651. // Read container ID from the first line of stdout
  652. job.Stdout.Add(stdoutBuffer)
  653. // Read warnings from stderr
  654. job.Stderr.Add(warnings)
  655. if err := job.Run(); err != nil {
  656. return err
  657. }
  658. // Parse warnings from stderr
  659. scanner := bufio.NewScanner(warnings)
  660. for scanner.Scan() {
  661. outWarnings = append(outWarnings, scanner.Text())
  662. }
  663. return writeJSON(w, http.StatusCreated, &types.ContainerCreateResponse{
  664. ID: engine.Tail(stdoutBuffer, 1),
  665. Warnings: outWarnings,
  666. })
  667. }
  668. func postContainersRestart(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  669. if err := parseForm(r); err != nil {
  670. return err
  671. }
  672. if vars == nil {
  673. return fmt.Errorf("Missing parameter")
  674. }
  675. job := eng.Job("restart", vars["name"])
  676. job.Setenv("t", r.Form.Get("t"))
  677. if err := job.Run(); err != nil {
  678. return err
  679. }
  680. w.WriteHeader(http.StatusNoContent)
  681. return nil
  682. }
  683. func postContainerRename(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  684. if err := parseForm(r); err != nil {
  685. return err
  686. }
  687. if vars == nil {
  688. return fmt.Errorf("Missing parameter")
  689. }
  690. newName := r.URL.Query().Get("name")
  691. job := eng.Job("container_rename", vars["name"], newName)
  692. job.Setenv("t", r.Form.Get("t"))
  693. if err := job.Run(); err != nil {
  694. return err
  695. }
  696. w.WriteHeader(http.StatusNoContent)
  697. return nil
  698. }
  699. func deleteContainers(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  700. if err := parseForm(r); err != nil {
  701. return err
  702. }
  703. if vars == nil {
  704. return fmt.Errorf("Missing parameter")
  705. }
  706. job := eng.Job("rm", vars["name"])
  707. job.Setenv("forceRemove", r.Form.Get("force"))
  708. job.Setenv("removeVolume", r.Form.Get("v"))
  709. job.Setenv("removeLink", r.Form.Get("link"))
  710. if err := job.Run(); err != nil {
  711. return err
  712. }
  713. w.WriteHeader(http.StatusNoContent)
  714. return nil
  715. }
  716. func deleteImages(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  717. if err := parseForm(r); err != nil {
  718. return err
  719. }
  720. if vars == nil {
  721. return fmt.Errorf("Missing parameter")
  722. }
  723. var job = eng.Job("image_delete", vars["name"])
  724. streamJSON(job, w, false)
  725. job.Setenv("force", r.Form.Get("force"))
  726. job.Setenv("noprune", r.Form.Get("noprune"))
  727. return job.Run()
  728. }
  729. func postContainersStart(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  730. if vars == nil {
  731. return fmt.Errorf("Missing parameter")
  732. }
  733. var (
  734. name = vars["name"]
  735. job = eng.Job("start", name)
  736. )
  737. // If contentLength is -1, we can assumed chunked encoding
  738. // or more technically that the length is unknown
  739. // http://golang.org/src/pkg/net/http/request.go#L139
  740. // net/http otherwise seems to swallow any headers related to chunked encoding
  741. // including r.TransferEncoding
  742. // allow a nil body for backwards compatibility
  743. if r.Body != nil && (r.ContentLength > 0 || r.ContentLength == -1) {
  744. if err := checkForJson(r); err != nil {
  745. return err
  746. }
  747. if err := job.DecodeEnv(r.Body); err != nil {
  748. return err
  749. }
  750. }
  751. if err := job.Run(); err != nil {
  752. if err.Error() == "Container already started" {
  753. w.WriteHeader(http.StatusNotModified)
  754. return nil
  755. }
  756. return err
  757. }
  758. w.WriteHeader(http.StatusNoContent)
  759. return nil
  760. }
  761. func postContainersStop(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  762. if err := parseForm(r); err != nil {
  763. return err
  764. }
  765. if vars == nil {
  766. return fmt.Errorf("Missing parameter")
  767. }
  768. job := eng.Job("stop", vars["name"])
  769. job.Setenv("t", r.Form.Get("t"))
  770. if err := job.Run(); err != nil {
  771. if err.Error() == "Container already stopped" {
  772. w.WriteHeader(http.StatusNotModified)
  773. return nil
  774. }
  775. return err
  776. }
  777. w.WriteHeader(http.StatusNoContent)
  778. return nil
  779. }
  780. func postContainersWait(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  781. if vars == nil {
  782. return fmt.Errorf("Missing parameter")
  783. }
  784. var (
  785. env engine.Env
  786. stdoutBuffer = bytes.NewBuffer(nil)
  787. job = eng.Job("wait", vars["name"])
  788. )
  789. job.Stdout.Add(stdoutBuffer)
  790. if err := job.Run(); err != nil {
  791. return err
  792. }
  793. env.Set("StatusCode", engine.Tail(stdoutBuffer, 1))
  794. return writeJSONEnv(w, http.StatusOK, env)
  795. }
  796. func postContainersResize(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  797. if err := parseForm(r); err != nil {
  798. return err
  799. }
  800. if vars == nil {
  801. return fmt.Errorf("Missing parameter")
  802. }
  803. if err := eng.Job("resize", vars["name"], r.Form.Get("h"), r.Form.Get("w")).Run(); err != nil {
  804. return err
  805. }
  806. return nil
  807. }
  808. func postContainersAttach(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  809. if err := parseForm(r); err != nil {
  810. return err
  811. }
  812. if vars == nil {
  813. return fmt.Errorf("Missing parameter")
  814. }
  815. var (
  816. job = eng.Job("container_inspect", vars["name"])
  817. c, err = job.Stdout.AddEnv()
  818. )
  819. if err != nil {
  820. return err
  821. }
  822. if err = job.Run(); err != nil {
  823. return err
  824. }
  825. inStream, outStream, err := hijackServer(w)
  826. if err != nil {
  827. return err
  828. }
  829. defer closeStreams(inStream, outStream)
  830. var errStream io.Writer
  831. if _, ok := r.Header["Upgrade"]; ok {
  832. fmt.Fprintf(outStream, "HTTP/1.1 101 UPGRADED\r\nContent-Type: application/vnd.docker.raw-stream\r\nConnection: Upgrade\r\nUpgrade: tcp\r\n\r\n")
  833. } else {
  834. fmt.Fprintf(outStream, "HTTP/1.1 200 OK\r\nContent-Type: application/vnd.docker.raw-stream\r\n\r\n")
  835. }
  836. if c.GetSubEnv("Config") != nil && !c.GetSubEnv("Config").GetBool("Tty") && version.GreaterThanOrEqualTo("1.6") {
  837. errStream = stdcopy.NewStdWriter(outStream, stdcopy.Stderr)
  838. outStream = stdcopy.NewStdWriter(outStream, stdcopy.Stdout)
  839. } else {
  840. errStream = outStream
  841. }
  842. job = eng.Job("attach", vars["name"])
  843. job.Setenv("logs", r.Form.Get("logs"))
  844. job.Setenv("stream", r.Form.Get("stream"))
  845. job.Setenv("stdin", r.Form.Get("stdin"))
  846. job.Setenv("stdout", r.Form.Get("stdout"))
  847. job.Setenv("stderr", r.Form.Get("stderr"))
  848. job.Stdin.Add(inStream)
  849. job.Stdout.Add(outStream)
  850. job.Stderr.Set(errStream)
  851. if err := job.Run(); err != nil {
  852. fmt.Fprintf(outStream, "Error attaching: %s\n", err)
  853. }
  854. return nil
  855. }
  856. func wsContainersAttach(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  857. if err := parseForm(r); err != nil {
  858. return err
  859. }
  860. if vars == nil {
  861. return fmt.Errorf("Missing parameter")
  862. }
  863. if err := eng.Job("container_inspect", vars["name"]).Run(); err != nil {
  864. return err
  865. }
  866. h := websocket.Handler(func(ws *websocket.Conn) {
  867. defer ws.Close()
  868. job := eng.Job("attach", vars["name"])
  869. job.Setenv("logs", r.Form.Get("logs"))
  870. job.Setenv("stream", r.Form.Get("stream"))
  871. job.Setenv("stdin", r.Form.Get("stdin"))
  872. job.Setenv("stdout", r.Form.Get("stdout"))
  873. job.Setenv("stderr", r.Form.Get("stderr"))
  874. job.Stdin.Add(ws)
  875. job.Stdout.Add(ws)
  876. job.Stderr.Set(ws)
  877. if err := job.Run(); err != nil {
  878. log.Errorf("Error attaching websocket: %s", err)
  879. }
  880. })
  881. h.ServeHTTP(w, r)
  882. return nil
  883. }
  884. func getContainersByName(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  885. if vars == nil {
  886. return fmt.Errorf("Missing parameter")
  887. }
  888. var job = eng.Job("container_inspect", vars["name"])
  889. if version.LessThan("1.12") {
  890. job.SetenvBool("raw", true)
  891. }
  892. streamJSON(job, w, false)
  893. return job.Run()
  894. }
  895. func getExecByID(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  896. if vars == nil {
  897. return fmt.Errorf("Missing parameter 'id'")
  898. }
  899. var job = eng.Job("execInspect", vars["id"])
  900. streamJSON(job, w, false)
  901. return job.Run()
  902. }
  903. func getImagesByName(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  904. if vars == nil {
  905. return fmt.Errorf("Missing parameter")
  906. }
  907. var job = eng.Job("image_inspect", vars["name"])
  908. if version.LessThan("1.12") {
  909. job.SetenvBool("raw", true)
  910. }
  911. streamJSON(job, w, false)
  912. return job.Run()
  913. }
  914. func postBuild(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  915. if version.LessThan("1.3") {
  916. return fmt.Errorf("Multipart upload for build is no longer supported. Please upgrade your docker client.")
  917. }
  918. var (
  919. authEncoded = r.Header.Get("X-Registry-Auth")
  920. authConfig = &registry.AuthConfig{}
  921. configFileEncoded = r.Header.Get("X-Registry-Config")
  922. configFile = &registry.ConfigFile{}
  923. job = eng.Job("build")
  924. )
  925. // This block can be removed when API versions prior to 1.9 are deprecated.
  926. // Both headers will be parsed and sent along to the daemon, but if a non-empty
  927. // ConfigFile is present, any value provided as an AuthConfig directly will
  928. // be overridden. See BuildFile::CmdFrom for details.
  929. if version.LessThan("1.9") && authEncoded != "" {
  930. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  931. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  932. // for a pull it is not an error if no auth was given
  933. // to increase compatibility with the existing api it is defaulting to be empty
  934. authConfig = &registry.AuthConfig{}
  935. }
  936. }
  937. if configFileEncoded != "" {
  938. configFileJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(configFileEncoded))
  939. if err := json.NewDecoder(configFileJson).Decode(configFile); err != nil {
  940. // for a pull it is not an error if no auth was given
  941. // to increase compatibility with the existing api it is defaulting to be empty
  942. configFile = &registry.ConfigFile{}
  943. }
  944. }
  945. if version.GreaterThanOrEqualTo("1.8") {
  946. job.SetenvBool("json", true)
  947. streamJSON(job, w, true)
  948. } else {
  949. job.Stdout.Add(utils.NewWriteFlusher(w))
  950. }
  951. if r.FormValue("forcerm") == "1" && version.GreaterThanOrEqualTo("1.12") {
  952. job.Setenv("rm", "1")
  953. } else if r.FormValue("rm") == "" && version.GreaterThanOrEqualTo("1.12") {
  954. job.Setenv("rm", "1")
  955. } else {
  956. job.Setenv("rm", r.FormValue("rm"))
  957. }
  958. if r.FormValue("pull") == "1" && version.GreaterThanOrEqualTo("1.16") {
  959. job.Setenv("pull", "1")
  960. }
  961. job.Stdin.Add(r.Body)
  962. job.Setenv("remote", r.FormValue("remote"))
  963. job.Setenv("dockerfile", r.FormValue("dockerfile"))
  964. job.Setenv("t", r.FormValue("t"))
  965. job.Setenv("q", r.FormValue("q"))
  966. job.Setenv("nocache", r.FormValue("nocache"))
  967. job.Setenv("forcerm", r.FormValue("forcerm"))
  968. job.SetenvJson("authConfig", authConfig)
  969. job.SetenvJson("configFile", configFile)
  970. job.Setenv("memswap", r.FormValue("memswap"))
  971. job.Setenv("memory", r.FormValue("memory"))
  972. job.Setenv("cpusetcpus", r.FormValue("cpusetcpus"))
  973. job.Setenv("cpushares", r.FormValue("cpushares"))
  974. if err := job.Run(); err != nil {
  975. if !job.Stdout.Used() {
  976. return err
  977. }
  978. sf := utils.NewStreamFormatter(version.GreaterThanOrEqualTo("1.8"))
  979. w.Write(sf.FormatError(err))
  980. }
  981. return nil
  982. }
  983. func postContainersCopy(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  984. if vars == nil {
  985. return fmt.Errorf("Missing parameter")
  986. }
  987. var copyData engine.Env
  988. if err := checkForJson(r); err != nil {
  989. return err
  990. }
  991. if err := copyData.Decode(r.Body); err != nil {
  992. return err
  993. }
  994. if copyData.Get("Resource") == "" {
  995. return fmt.Errorf("Path cannot be empty")
  996. }
  997. origResource := copyData.Get("Resource")
  998. if copyData.Get("Resource")[0] == '/' {
  999. copyData.Set("Resource", copyData.Get("Resource")[1:])
  1000. }
  1001. job := eng.Job("container_copy", vars["name"], copyData.Get("Resource"))
  1002. job.Stdout.Add(w)
  1003. w.Header().Set("Content-Type", "application/x-tar")
  1004. if err := job.Run(); err != nil {
  1005. log.Errorf("%v", err)
  1006. if strings.Contains(strings.ToLower(err.Error()), "no such id") {
  1007. w.WriteHeader(http.StatusNotFound)
  1008. } else if strings.Contains(err.Error(), "no such file or directory") {
  1009. return fmt.Errorf("Could not find the file %s in container %s", origResource, vars["name"])
  1010. }
  1011. }
  1012. return nil
  1013. }
  1014. func postContainerExecCreate(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  1015. if err := parseForm(r); err != nil {
  1016. return nil
  1017. }
  1018. var (
  1019. out engine.Env
  1020. name = vars["name"]
  1021. job = eng.Job("execCreate", name)
  1022. stdoutBuffer = bytes.NewBuffer(nil)
  1023. )
  1024. if err := job.DecodeEnv(r.Body); err != nil {
  1025. return err
  1026. }
  1027. job.Stdout.Add(stdoutBuffer)
  1028. // Register an instance of Exec in container.
  1029. if err := job.Run(); err != nil {
  1030. fmt.Fprintf(os.Stderr, "Error setting up exec command in container %s: %s\n", name, err)
  1031. return err
  1032. }
  1033. // Return the ID
  1034. out.Set("Id", engine.Tail(stdoutBuffer, 1))
  1035. return writeJSONEnv(w, http.StatusCreated, out)
  1036. }
  1037. // TODO(vishh): Refactor the code to avoid having to specify stream config as part of both create and start.
  1038. func postContainerExecStart(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  1039. if err := parseForm(r); err != nil {
  1040. return nil
  1041. }
  1042. var (
  1043. name = vars["name"]
  1044. job = eng.Job("execStart", name)
  1045. errOut io.Writer = os.Stderr
  1046. )
  1047. if err := job.DecodeEnv(r.Body); err != nil {
  1048. return err
  1049. }
  1050. if !job.GetenvBool("Detach") {
  1051. // Setting up the streaming http interface.
  1052. inStream, outStream, err := hijackServer(w)
  1053. if err != nil {
  1054. return err
  1055. }
  1056. defer closeStreams(inStream, outStream)
  1057. var errStream io.Writer
  1058. if _, ok := r.Header["Upgrade"]; ok {
  1059. fmt.Fprintf(outStream, "HTTP/1.1 101 UPGRADED\r\nContent-Type: application/vnd.docker.raw-stream\r\nConnection: Upgrade\r\nUpgrade: tcp\r\n\r\n")
  1060. } else {
  1061. fmt.Fprintf(outStream, "HTTP/1.1 200 OK\r\nContent-Type: application/vnd.docker.raw-stream\r\n\r\n")
  1062. }
  1063. if !job.GetenvBool("Tty") && version.GreaterThanOrEqualTo("1.6") {
  1064. errStream = stdcopy.NewStdWriter(outStream, stdcopy.Stderr)
  1065. outStream = stdcopy.NewStdWriter(outStream, stdcopy.Stdout)
  1066. } else {
  1067. errStream = outStream
  1068. }
  1069. job.Stdin.Add(inStream)
  1070. job.Stdout.Add(outStream)
  1071. job.Stderr.Set(errStream)
  1072. errOut = outStream
  1073. }
  1074. // Now run the user process in container.
  1075. job.SetCloseIO(false)
  1076. if err := job.Run(); err != nil {
  1077. fmt.Fprintf(errOut, "Error starting exec command in container %s: %s\n", name, err)
  1078. return err
  1079. }
  1080. w.WriteHeader(http.StatusNoContent)
  1081. return nil
  1082. }
  1083. func postContainerExecResize(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  1084. if err := parseForm(r); err != nil {
  1085. return err
  1086. }
  1087. if vars == nil {
  1088. return fmt.Errorf("Missing parameter")
  1089. }
  1090. if err := eng.Job("execResize", vars["name"], r.Form.Get("h"), r.Form.Get("w")).Run(); err != nil {
  1091. return err
  1092. }
  1093. return nil
  1094. }
  1095. func optionsHandler(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  1096. w.WriteHeader(http.StatusOK)
  1097. return nil
  1098. }
  1099. func writeCorsHeaders(w http.ResponseWriter, r *http.Request, corsHeaders string) {
  1100. log.Debugf("CORS header is enabled and set to: %s", corsHeaders)
  1101. w.Header().Add("Access-Control-Allow-Origin", corsHeaders)
  1102. w.Header().Add("Access-Control-Allow-Headers", "Origin, X-Requested-With, Content-Type, Accept, X-Registry-Auth")
  1103. w.Header().Add("Access-Control-Allow-Methods", "GET, POST, DELETE, PUT, OPTIONS")
  1104. }
  1105. func ping(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  1106. _, err := w.Write([]byte{'O', 'K'})
  1107. return err
  1108. }
  1109. func makeHttpHandler(eng *engine.Engine, logging bool, localMethod string, localRoute string, handlerFunc HttpApiFunc, corsHeaders string, dockerVersion version.Version) http.HandlerFunc {
  1110. return func(w http.ResponseWriter, r *http.Request) {
  1111. // log the request
  1112. log.Debugf("Calling %s %s", localMethod, localRoute)
  1113. if logging {
  1114. log.Infof("%s %s", r.Method, r.RequestURI)
  1115. }
  1116. if strings.Contains(r.Header.Get("User-Agent"), "Docker-Client/") {
  1117. userAgent := strings.Split(r.Header.Get("User-Agent"), "/")
  1118. if len(userAgent) == 2 && !dockerVersion.Equal(version.Version(userAgent[1])) {
  1119. log.Debugf("Warning: client and server don't have the same version (client: %s, server: %s)", userAgent[1], dockerVersion)
  1120. }
  1121. }
  1122. version := version.Version(mux.Vars(r)["version"])
  1123. if version == "" {
  1124. version = api.APIVERSION
  1125. }
  1126. if corsHeaders != "" {
  1127. writeCorsHeaders(w, r, corsHeaders)
  1128. }
  1129. if version.GreaterThan(api.APIVERSION) {
  1130. http.Error(w, fmt.Errorf("client and server don't have same version (client : %s, server: %s)", version, api.APIVERSION).Error(), http.StatusNotFound)
  1131. return
  1132. }
  1133. if err := handlerFunc(eng, version, w, r, mux.Vars(r)); err != nil {
  1134. log.Errorf("Handler for %s %s returned error: %s", localMethod, localRoute, err)
  1135. httpError(w, err)
  1136. }
  1137. }
  1138. }
  1139. // Replicated from expvar.go as not public.
  1140. func expvarHandler(w http.ResponseWriter, r *http.Request) {
  1141. w.Header().Set("Content-Type", "application/json; charset=utf-8")
  1142. fmt.Fprintf(w, "{\n")
  1143. first := true
  1144. expvar.Do(func(kv expvar.KeyValue) {
  1145. if !first {
  1146. fmt.Fprintf(w, ",\n")
  1147. }
  1148. first = false
  1149. fmt.Fprintf(w, "%q: %s", kv.Key, kv.Value)
  1150. })
  1151. fmt.Fprintf(w, "\n}\n")
  1152. }
  1153. func AttachProfiler(router *mux.Router) {
  1154. router.HandleFunc("/debug/vars", expvarHandler)
  1155. router.HandleFunc("/debug/pprof/", pprof.Index)
  1156. router.HandleFunc("/debug/pprof/cmdline", pprof.Cmdline)
  1157. router.HandleFunc("/debug/pprof/profile", pprof.Profile)
  1158. router.HandleFunc("/debug/pprof/symbol", pprof.Symbol)
  1159. router.HandleFunc("/debug/pprof/block", pprof.Handler("block").ServeHTTP)
  1160. router.HandleFunc("/debug/pprof/heap", pprof.Handler("heap").ServeHTTP)
  1161. router.HandleFunc("/debug/pprof/goroutine", pprof.Handler("goroutine").ServeHTTP)
  1162. router.HandleFunc("/debug/pprof/threadcreate", pprof.Handler("threadcreate").ServeHTTP)
  1163. }
  1164. // we keep enableCors just for legacy usage, need to be removed in the future
  1165. func createRouter(eng *engine.Engine, logging, enableCors bool, corsHeaders string, dockerVersion string) *mux.Router {
  1166. r := mux.NewRouter()
  1167. if os.Getenv("DEBUG") != "" {
  1168. AttachProfiler(r)
  1169. }
  1170. m := map[string]map[string]HttpApiFunc{
  1171. "GET": {
  1172. "/_ping": ping,
  1173. "/events": getEvents,
  1174. "/info": getInfo,
  1175. "/version": getVersion,
  1176. "/images/json": getImagesJSON,
  1177. "/images/viz": getImagesViz,
  1178. "/images/search": getImagesSearch,
  1179. "/images/get": getImagesGet,
  1180. "/images/{name:.*}/get": getImagesGet,
  1181. "/images/{name:.*}/history": getImagesHistory,
  1182. "/images/{name:.*}/json": getImagesByName,
  1183. "/containers/ps": getContainersJSON,
  1184. "/containers/json": getContainersJSON,
  1185. "/containers/{name:.*}/export": getContainersExport,
  1186. "/containers/{name:.*}/changes": getContainersChanges,
  1187. "/containers/{name:.*}/json": getContainersByName,
  1188. "/containers/{name:.*}/top": getContainersTop,
  1189. "/containers/{name:.*}/logs": getContainersLogs,
  1190. "/containers/{name:.*}/stats": getContainersStats,
  1191. "/containers/{name:.*}/attach/ws": wsContainersAttach,
  1192. "/exec/{id:.*}/json": getExecByID,
  1193. },
  1194. "POST": {
  1195. "/auth": postAuth,
  1196. "/commit": postCommit,
  1197. "/build": postBuild,
  1198. "/images/create": postImagesCreate,
  1199. "/images/load": postImagesLoad,
  1200. "/images/{name:.*}/push": postImagesPush,
  1201. "/images/{name:.*}/tag": postImagesTag,
  1202. "/containers/create": postContainersCreate,
  1203. "/containers/{name:.*}/kill": postContainersKill,
  1204. "/containers/{name:.*}/pause": postContainersPause,
  1205. "/containers/{name:.*}/unpause": postContainersUnpause,
  1206. "/containers/{name:.*}/restart": postContainersRestart,
  1207. "/containers/{name:.*}/start": postContainersStart,
  1208. "/containers/{name:.*}/stop": postContainersStop,
  1209. "/containers/{name:.*}/wait": postContainersWait,
  1210. "/containers/{name:.*}/resize": postContainersResize,
  1211. "/containers/{name:.*}/attach": postContainersAttach,
  1212. "/containers/{name:.*}/copy": postContainersCopy,
  1213. "/containers/{name:.*}/exec": postContainerExecCreate,
  1214. "/exec/{name:.*}/start": postContainerExecStart,
  1215. "/exec/{name:.*}/resize": postContainerExecResize,
  1216. "/containers/{name:.*}/rename": postContainerRename,
  1217. },
  1218. "DELETE": {
  1219. "/containers/{name:.*}": deleteContainers,
  1220. "/images/{name:.*}": deleteImages,
  1221. },
  1222. "OPTIONS": {
  1223. "": optionsHandler,
  1224. },
  1225. }
  1226. // If "api-cors-header" is not given, but "api-enable-cors" is true, we set cors to "*"
  1227. // otherwise, all head values will be passed to HTTP handler
  1228. if corsHeaders == "" && enableCors {
  1229. corsHeaders = "*"
  1230. }
  1231. for method, routes := range m {
  1232. for route, fct := range routes {
  1233. log.Debugf("Registering %s, %s", method, route)
  1234. // NOTE: scope issue, make sure the variables are local and won't be changed
  1235. localRoute := route
  1236. localFct := fct
  1237. localMethod := method
  1238. // build the handler function
  1239. f := makeHttpHandler(eng, logging, localMethod, localRoute, localFct, corsHeaders, version.Version(dockerVersion))
  1240. // add the new route
  1241. if localRoute == "" {
  1242. r.Methods(localMethod).HandlerFunc(f)
  1243. } else {
  1244. r.Path("/v{version:[0-9.]+}" + localRoute).Methods(localMethod).HandlerFunc(f)
  1245. r.Path(localRoute).Methods(localMethod).HandlerFunc(f)
  1246. }
  1247. }
  1248. }
  1249. return r
  1250. }
  1251. // ServeRequest processes a single http request to the docker remote api.
  1252. // FIXME: refactor this to be part of Server and not require re-creating a new
  1253. // router each time. This requires first moving ListenAndServe into Server.
  1254. func ServeRequest(eng *engine.Engine, apiversion version.Version, w http.ResponseWriter, req *http.Request) {
  1255. router := createRouter(eng, false, true, "", "")
  1256. // Insert APIVERSION into the request as a convenience
  1257. req.URL.Path = fmt.Sprintf("/v%s%s", apiversion, req.URL.Path)
  1258. router.ServeHTTP(w, req)
  1259. }
  1260. func lookupGidByName(nameOrGid string) (int, error) {
  1261. groupFile, err := user.GetGroupPath()
  1262. if err != nil {
  1263. return -1, err
  1264. }
  1265. groups, err := user.ParseGroupFileFilter(groupFile, func(g user.Group) bool {
  1266. return g.Name == nameOrGid || strconv.Itoa(g.Gid) == nameOrGid
  1267. })
  1268. if err != nil {
  1269. return -1, err
  1270. }
  1271. if groups != nil && len(groups) > 0 {
  1272. return groups[0].Gid, nil
  1273. }
  1274. gid, err := strconv.Atoi(nameOrGid)
  1275. if err == nil {
  1276. log.Warnf("Could not find GID %d", gid)
  1277. return gid, nil
  1278. }
  1279. return -1, fmt.Errorf("Group %s not found", nameOrGid)
  1280. }
  1281. func setupTls(cert, key, ca string, l net.Listener) (net.Listener, error) {
  1282. tlsCert, err := tls.LoadX509KeyPair(cert, key)
  1283. if err != nil {
  1284. if os.IsNotExist(err) {
  1285. return nil, fmt.Errorf("Could not load X509 key pair (%s, %s): %v", cert, key, err)
  1286. }
  1287. return nil, fmt.Errorf("Error reading X509 key pair (%s, %s): %q. Make sure the key is encrypted.",
  1288. cert, key, err)
  1289. }
  1290. tlsConfig := &tls.Config{
  1291. NextProtos: []string{"http/1.1"},
  1292. Certificates: []tls.Certificate{tlsCert},
  1293. // Avoid fallback on insecure SSL protocols
  1294. MinVersion: tls.VersionTLS10,
  1295. }
  1296. if ca != "" {
  1297. certPool := x509.NewCertPool()
  1298. file, err := ioutil.ReadFile(ca)
  1299. if err != nil {
  1300. return nil, fmt.Errorf("Could not read CA certificate: %v", err)
  1301. }
  1302. certPool.AppendCertsFromPEM(file)
  1303. tlsConfig.ClientAuth = tls.RequireAndVerifyClientCert
  1304. tlsConfig.ClientCAs = certPool
  1305. }
  1306. return tls.NewListener(l, tlsConfig), nil
  1307. }
  1308. func newListener(proto, addr string, bufferRequests bool) (net.Listener, error) {
  1309. if bufferRequests {
  1310. return listenbuffer.NewListenBuffer(proto, addr, activationLock)
  1311. }
  1312. return net.Listen(proto, addr)
  1313. }
  1314. func changeGroup(addr string, nameOrGid string) error {
  1315. gid, err := lookupGidByName(nameOrGid)
  1316. if err != nil {
  1317. return err
  1318. }
  1319. log.Debugf("%s group found. gid: %d", nameOrGid, gid)
  1320. return os.Chown(addr, 0, gid)
  1321. }
  1322. func setSocketGroup(addr, group string) error {
  1323. if group == "" {
  1324. return nil
  1325. }
  1326. if err := changeGroup(addr, group); err != nil {
  1327. if group != "docker" {
  1328. return err
  1329. }
  1330. log.Debugf("Warning: could not chgrp %s to docker: %v", addr, err)
  1331. }
  1332. return nil
  1333. }
  1334. func allocateDaemonPort(addr string) error {
  1335. host, port, err := net.SplitHostPort(addr)
  1336. if err != nil {
  1337. return err
  1338. }
  1339. intPort, err := strconv.Atoi(port)
  1340. if err != nil {
  1341. return err
  1342. }
  1343. var hostIPs []net.IP
  1344. if parsedIP := net.ParseIP(host); parsedIP != nil {
  1345. hostIPs = append(hostIPs, parsedIP)
  1346. } else if hostIPs, err = net.LookupIP(host); err != nil {
  1347. return fmt.Errorf("failed to lookup %s address in host specification", host)
  1348. }
  1349. for _, hostIP := range hostIPs {
  1350. if _, err := portallocator.RequestPort(hostIP, "tcp", intPort); err != nil {
  1351. return fmt.Errorf("failed to allocate daemon listening port %d (err: %v)", intPort, err)
  1352. }
  1353. }
  1354. return nil
  1355. }
  1356. func setupTcpHttp(addr string, job *engine.Job) (*HttpServer, error) {
  1357. if !job.GetenvBool("TlsVerify") {
  1358. log.Infof("/!\\ DON'T BIND ON ANY IP ADDRESS WITHOUT setting -tlsverify IF YOU DON'T KNOW WHAT YOU'RE DOING /!\\")
  1359. }
  1360. r := createRouter(job.Eng, job.GetenvBool("Logging"), job.GetenvBool("EnableCors"), job.Getenv("CorsHeaders"), job.Getenv("Version"))
  1361. l, err := newListener("tcp", addr, job.GetenvBool("BufferRequests"))
  1362. if err != nil {
  1363. return nil, err
  1364. }
  1365. if err := allocateDaemonPort(addr); err != nil {
  1366. return nil, err
  1367. }
  1368. if job.GetenvBool("Tls") || job.GetenvBool("TlsVerify") {
  1369. var tlsCa string
  1370. if job.GetenvBool("TlsVerify") {
  1371. tlsCa = job.Getenv("TlsCa")
  1372. }
  1373. l, err = setupTls(job.Getenv("TlsCert"), job.Getenv("TlsKey"), tlsCa, l)
  1374. if err != nil {
  1375. return nil, err
  1376. }
  1377. }
  1378. return &HttpServer{&http.Server{Addr: addr, Handler: r}, l}, nil
  1379. }
  1380. type Server interface {
  1381. Serve() error
  1382. Close() error
  1383. }
  1384. // ServeApi loops through all of the protocols sent in to docker and spawns
  1385. // off a go routine to setup a serving http.Server for each.
  1386. func ServeApi(job *engine.Job) engine.Status {
  1387. if len(job.Args) == 0 {
  1388. return job.Errorf("usage: %s PROTO://ADDR [PROTO://ADDR ...]", job.Name)
  1389. }
  1390. var (
  1391. protoAddrs = job.Args
  1392. chErrors = make(chan error, len(protoAddrs))
  1393. )
  1394. activationLock = make(chan struct{})
  1395. for _, protoAddr := range protoAddrs {
  1396. protoAddrParts := strings.SplitN(protoAddr, "://", 2)
  1397. if len(protoAddrParts) != 2 {
  1398. return job.Errorf("usage: %s PROTO://ADDR [PROTO://ADDR ...]", job.Name)
  1399. }
  1400. go func() {
  1401. log.Infof("Listening for HTTP on %s (%s)", protoAddrParts[0], protoAddrParts[1])
  1402. srv, err := NewServer(protoAddrParts[0], protoAddrParts[1], job)
  1403. if err != nil {
  1404. chErrors <- err
  1405. return
  1406. }
  1407. chErrors <- srv.Serve()
  1408. }()
  1409. }
  1410. for i := 0; i < len(protoAddrs); i++ {
  1411. err := <-chErrors
  1412. if err != nil {
  1413. return job.Error(err)
  1414. }
  1415. }
  1416. return engine.StatusOK
  1417. }