api.go 35 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240
  1. package api
  2. import (
  3. "bufio"
  4. "bytes"
  5. "code.google.com/p/go.net/websocket"
  6. "encoding/base64"
  7. "encoding/json"
  8. "expvar"
  9. "fmt"
  10. "github.com/dotcloud/docker/auth"
  11. "github.com/dotcloud/docker/engine"
  12. "github.com/dotcloud/docker/pkg/listenbuffer"
  13. "github.com/dotcloud/docker/pkg/systemd"
  14. "github.com/dotcloud/docker/utils"
  15. "github.com/gorilla/mux"
  16. "io"
  17. "io/ioutil"
  18. "log"
  19. "mime"
  20. "net"
  21. "net/http"
  22. "net/http/pprof"
  23. "os"
  24. "regexp"
  25. "strconv"
  26. "strings"
  27. "syscall"
  28. "time"
  29. )
  30. // FIXME: move code common to client and server to common.go
  31. const (
  32. APIVERSION = 1.9
  33. DEFAULTHTTPHOST = "127.0.0.1"
  34. DEFAULTUNIXSOCKET = "/var/run/docker.sock"
  35. )
  36. var (
  37. activationLock chan struct{}
  38. )
  39. func ValidateHost(val string) (string, error) {
  40. host, err := utils.ParseHost(DEFAULTHTTPHOST, DEFAULTUNIXSOCKET, val)
  41. if err != nil {
  42. return val, err
  43. }
  44. return host, nil
  45. }
  46. type HttpApiFunc func(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error
  47. func init() {
  48. engine.Register("serveapi", ServeApi)
  49. engine.Register("acceptconnections", AcceptConnections)
  50. }
  51. func hijackServer(w http.ResponseWriter) (io.ReadCloser, io.Writer, error) {
  52. conn, _, err := w.(http.Hijacker).Hijack()
  53. if err != nil {
  54. return nil, nil, err
  55. }
  56. // Flush the options to make sure the client sets the raw mode
  57. conn.Write([]byte{})
  58. return conn, conn, nil
  59. }
  60. //If we don't do this, POST method without Content-type (even with empty body) will fail
  61. func parseForm(r *http.Request) error {
  62. if r == nil {
  63. return nil
  64. }
  65. if err := r.ParseForm(); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  66. return err
  67. }
  68. return nil
  69. }
  70. func parseMultipartForm(r *http.Request) error {
  71. if err := r.ParseMultipartForm(4096); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  72. return err
  73. }
  74. return nil
  75. }
  76. func httpError(w http.ResponseWriter, err error) {
  77. statusCode := http.StatusInternalServerError
  78. // FIXME: this is brittle and should not be necessary.
  79. // If we need to differentiate between different possible error types, we should
  80. // create appropriate error types with clearly defined meaning.
  81. if strings.Contains(err.Error(), "No such") {
  82. statusCode = http.StatusNotFound
  83. } else if strings.Contains(err.Error(), "Bad parameter") {
  84. statusCode = http.StatusBadRequest
  85. } else if strings.Contains(err.Error(), "Conflict") {
  86. statusCode = http.StatusConflict
  87. } else if strings.Contains(err.Error(), "Impossible") {
  88. statusCode = http.StatusNotAcceptable
  89. } else if strings.Contains(err.Error(), "Wrong login/password") {
  90. statusCode = http.StatusUnauthorized
  91. } else if strings.Contains(err.Error(), "hasn't been activated") {
  92. statusCode = http.StatusForbidden
  93. }
  94. if err != nil {
  95. utils.Errorf("HTTP Error: statusCode=%d %s", statusCode, err.Error())
  96. http.Error(w, err.Error(), statusCode)
  97. }
  98. }
  99. func writeJSON(w http.ResponseWriter, code int, v engine.Env) error {
  100. w.Header().Set("Content-Type", "application/json")
  101. w.WriteHeader(code)
  102. return v.Encode(w)
  103. }
  104. func streamJSON(job *engine.Job, w http.ResponseWriter, flush bool) {
  105. w.Header().Set("Content-Type", "application/json")
  106. if flush {
  107. job.Stdout.Add(utils.NewWriteFlusher(w))
  108. } else {
  109. job.Stdout.Add(w)
  110. }
  111. }
  112. func getBoolParam(value string) (bool, error) {
  113. if value == "" {
  114. return false, nil
  115. }
  116. ret, err := strconv.ParseBool(value)
  117. if err != nil {
  118. return false, fmt.Errorf("Bad parameter")
  119. }
  120. return ret, nil
  121. }
  122. //TODO remove, used on < 1.5 in getContainersJSON
  123. func displayablePorts(ports *engine.Table) string {
  124. result := []string{}
  125. for _, port := range ports.Data {
  126. if port.Get("IP") == "" {
  127. result = append(result, fmt.Sprintf("%d/%s", port.GetInt("PublicPort"), port.Get("Type")))
  128. } else {
  129. result = append(result, fmt.Sprintf("%s:%d->%d/%s", port.Get("IP"), port.GetInt("PublicPort"), port.GetInt("PrivatePort"), port.Get("Type")))
  130. }
  131. }
  132. return strings.Join(result, ", ")
  133. }
  134. func MatchesContentType(contentType, expectedType string) bool {
  135. mimetype, _, err := mime.ParseMediaType(contentType)
  136. if err != nil {
  137. utils.Errorf("Error parsing media type: %s error: %s", contentType, err.Error())
  138. }
  139. return err == nil && mimetype == expectedType
  140. }
  141. func postAuth(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  142. var (
  143. authConfig, err = ioutil.ReadAll(r.Body)
  144. job = eng.Job("auth")
  145. status string
  146. )
  147. if err != nil {
  148. return err
  149. }
  150. job.Setenv("authConfig", string(authConfig))
  151. job.Stdout.AddString(&status)
  152. if err = job.Run(); err != nil {
  153. return err
  154. }
  155. if status != "" {
  156. var env engine.Env
  157. env.Set("Status", status)
  158. return writeJSON(w, http.StatusOK, env)
  159. }
  160. w.WriteHeader(http.StatusNoContent)
  161. return nil
  162. }
  163. func getVersion(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  164. w.Header().Set("Content-Type", "application/json")
  165. eng.ServeHTTP(w, r)
  166. return nil
  167. }
  168. func postContainersKill(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  169. if vars == nil {
  170. return fmt.Errorf("Missing parameter")
  171. }
  172. if err := parseForm(r); err != nil {
  173. return err
  174. }
  175. job := eng.Job("kill", vars["name"])
  176. if sig := r.Form.Get("signal"); sig != "" {
  177. job.Args = append(job.Args, sig)
  178. }
  179. if err := job.Run(); err != nil {
  180. return err
  181. }
  182. w.WriteHeader(http.StatusNoContent)
  183. return nil
  184. }
  185. func getContainersExport(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  186. if vars == nil {
  187. return fmt.Errorf("Missing parameter")
  188. }
  189. job := eng.Job("export", vars["name"])
  190. job.Stdout.Add(w)
  191. if err := job.Run(); err != nil {
  192. return err
  193. }
  194. return nil
  195. }
  196. func getImagesJSON(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  197. if err := parseForm(r); err != nil {
  198. return err
  199. }
  200. var (
  201. err error
  202. outs *engine.Table
  203. job = eng.Job("images")
  204. )
  205. job.Setenv("filter", r.Form.Get("filter"))
  206. job.Setenv("all", r.Form.Get("all"))
  207. if version >= 1.7 {
  208. streamJSON(job, w, false)
  209. } else if outs, err = job.Stdout.AddListTable(); err != nil {
  210. return err
  211. }
  212. if err := job.Run(); err != nil {
  213. return err
  214. }
  215. if version < 1.7 && outs != nil { // Convert to legacy format
  216. outsLegacy := engine.NewTable("Created", 0)
  217. for _, out := range outs.Data {
  218. for _, repoTag := range out.GetList("RepoTags") {
  219. parts := strings.Split(repoTag, ":")
  220. outLegacy := &engine.Env{}
  221. outLegacy.Set("Repository", parts[0])
  222. outLegacy.Set("Tag", parts[1])
  223. outLegacy.Set("Id", out.Get("Id"))
  224. outLegacy.SetInt64("Created", out.GetInt64("Created"))
  225. outLegacy.SetInt64("Size", out.GetInt64("Size"))
  226. outLegacy.SetInt64("VirtualSize", out.GetInt64("VirtualSize"))
  227. outsLegacy.Add(outLegacy)
  228. }
  229. }
  230. w.Header().Set("Content-Type", "application/json")
  231. if _, err := outsLegacy.WriteListTo(w); err != nil {
  232. return err
  233. }
  234. }
  235. return nil
  236. }
  237. func getImagesViz(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  238. if version > 1.6 {
  239. w.WriteHeader(http.StatusNotFound)
  240. return fmt.Errorf("This is now implemented in the client.")
  241. }
  242. eng.ServeHTTP(w, r)
  243. return nil
  244. }
  245. func getInfo(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  246. w.Header().Set("Content-Type", "application/json")
  247. eng.ServeHTTP(w, r)
  248. return nil
  249. }
  250. func getEvents(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  251. if err := parseForm(r); err != nil {
  252. return err
  253. }
  254. var job = eng.Job("events", r.RemoteAddr)
  255. streamJSON(job, w, true)
  256. job.Setenv("since", r.Form.Get("since"))
  257. return job.Run()
  258. }
  259. func getImagesHistory(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  260. if vars == nil {
  261. return fmt.Errorf("Missing parameter")
  262. }
  263. var job = eng.Job("history", vars["name"])
  264. streamJSON(job, w, false)
  265. if err := job.Run(); err != nil {
  266. return err
  267. }
  268. return nil
  269. }
  270. func getContainersChanges(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  271. if vars == nil {
  272. return fmt.Errorf("Missing parameter")
  273. }
  274. var job = eng.Job("changes", vars["name"])
  275. streamJSON(job, w, false)
  276. return job.Run()
  277. }
  278. func getContainersTop(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  279. if version < 1.4 {
  280. return fmt.Errorf("top was improved a lot since 1.3, Please upgrade your docker client.")
  281. }
  282. if vars == nil {
  283. return fmt.Errorf("Missing parameter")
  284. }
  285. if err := parseForm(r); err != nil {
  286. return err
  287. }
  288. job := eng.Job("top", vars["name"], r.Form.Get("ps_args"))
  289. streamJSON(job, w, false)
  290. return job.Run()
  291. }
  292. func getContainersJSON(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  293. if err := parseForm(r); err != nil {
  294. return err
  295. }
  296. var (
  297. err error
  298. outs *engine.Table
  299. job = eng.Job("containers")
  300. )
  301. job.Setenv("all", r.Form.Get("all"))
  302. job.Setenv("size", r.Form.Get("size"))
  303. job.Setenv("since", r.Form.Get("since"))
  304. job.Setenv("before", r.Form.Get("before"))
  305. job.Setenv("limit", r.Form.Get("limit"))
  306. if version >= 1.5 {
  307. streamJSON(job, w, false)
  308. } else if outs, err = job.Stdout.AddTable(); err != nil {
  309. return err
  310. }
  311. if err = job.Run(); err != nil {
  312. return err
  313. }
  314. if version < 1.5 { // Convert to legacy format
  315. for _, out := range outs.Data {
  316. ports := engine.NewTable("", 0)
  317. ports.ReadListFrom([]byte(out.Get("Ports")))
  318. out.Set("Ports", displayablePorts(ports))
  319. }
  320. w.Header().Set("Content-Type", "application/json")
  321. if _, err = outs.WriteListTo(w); err != nil {
  322. return err
  323. }
  324. }
  325. return nil
  326. }
  327. func postImagesTag(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  328. if err := parseForm(r); err != nil {
  329. return err
  330. }
  331. if vars == nil {
  332. return fmt.Errorf("Missing parameter")
  333. }
  334. job := eng.Job("tag", vars["name"], r.Form.Get("repo"), r.Form.Get("tag"))
  335. job.Setenv("force", r.Form.Get("force"))
  336. if err := job.Run(); err != nil {
  337. return err
  338. }
  339. w.WriteHeader(http.StatusCreated)
  340. return nil
  341. }
  342. func postCommit(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  343. if err := parseForm(r); err != nil {
  344. return err
  345. }
  346. var (
  347. config engine.Env
  348. env engine.Env
  349. job = eng.Job("commit", r.Form.Get("container"))
  350. )
  351. if err := config.Decode(r.Body); err != nil {
  352. utils.Errorf("%s", err)
  353. }
  354. job.Setenv("repo", r.Form.Get("repo"))
  355. job.Setenv("tag", r.Form.Get("tag"))
  356. job.Setenv("author", r.Form.Get("author"))
  357. job.Setenv("comment", r.Form.Get("comment"))
  358. job.SetenvSubEnv("config", &config)
  359. var id string
  360. job.Stdout.AddString(&id)
  361. if err := job.Run(); err != nil {
  362. return err
  363. }
  364. env.Set("Id", id)
  365. return writeJSON(w, http.StatusCreated, env)
  366. }
  367. // Creates an image from Pull or from Import
  368. func postImagesCreate(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  369. if err := parseForm(r); err != nil {
  370. return err
  371. }
  372. var (
  373. image = r.Form.Get("fromImage")
  374. tag = r.Form.Get("tag")
  375. job *engine.Job
  376. )
  377. authEncoded := r.Header.Get("X-Registry-Auth")
  378. authConfig := &auth.AuthConfig{}
  379. if authEncoded != "" {
  380. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  381. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  382. // for a pull it is not an error if no auth was given
  383. // to increase compatibility with the existing api it is defaulting to be empty
  384. authConfig = &auth.AuthConfig{}
  385. }
  386. }
  387. if version > 1.0 {
  388. w.Header().Set("Content-Type", "application/json")
  389. }
  390. if image != "" { //pull
  391. metaHeaders := map[string][]string{}
  392. for k, v := range r.Header {
  393. if strings.HasPrefix(k, "X-Meta-") {
  394. metaHeaders[k] = v
  395. }
  396. }
  397. job = eng.Job("pull", r.Form.Get("fromImage"), tag)
  398. job.SetenvBool("parallel", version > 1.3)
  399. job.SetenvJson("metaHeaders", metaHeaders)
  400. job.SetenvJson("authConfig", authConfig)
  401. } else { //import
  402. job = eng.Job("import", r.Form.Get("fromSrc"), r.Form.Get("repo"), tag)
  403. job.Stdin.Add(r.Body)
  404. }
  405. if version > 1.0 {
  406. job.SetenvBool("json", true)
  407. streamJSON(job, w, true)
  408. } else {
  409. job.Stdout.Add(utils.NewWriteFlusher(w))
  410. }
  411. if err := job.Run(); err != nil {
  412. if !job.Stdout.Used() {
  413. return err
  414. }
  415. sf := utils.NewStreamFormatter(version > 1.0)
  416. w.Write(sf.FormatError(err))
  417. }
  418. return nil
  419. }
  420. func getImagesSearch(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  421. if err := parseForm(r); err != nil {
  422. return err
  423. }
  424. var (
  425. authEncoded = r.Header.Get("X-Registry-Auth")
  426. authConfig = &auth.AuthConfig{}
  427. metaHeaders = map[string][]string{}
  428. )
  429. if authEncoded != "" {
  430. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  431. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  432. // for a search it is not an error if no auth was given
  433. // to increase compatibility with the existing api it is defaulting to be empty
  434. authConfig = &auth.AuthConfig{}
  435. }
  436. }
  437. for k, v := range r.Header {
  438. if strings.HasPrefix(k, "X-Meta-") {
  439. metaHeaders[k] = v
  440. }
  441. }
  442. var job = eng.Job("search", r.Form.Get("term"))
  443. job.SetenvJson("metaHeaders", metaHeaders)
  444. job.SetenvJson("authConfig", authConfig)
  445. streamJSON(job, w, false)
  446. return job.Run()
  447. }
  448. func postImagesInsert(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  449. if err := parseForm(r); err != nil {
  450. return err
  451. }
  452. if vars == nil {
  453. return fmt.Errorf("Missing parameter")
  454. }
  455. if version > 1.0 {
  456. w.Header().Set("Content-Type", "application/json")
  457. }
  458. job := eng.Job("insert", vars["name"], r.Form.Get("url"), r.Form.Get("path"))
  459. if version > 1.0 {
  460. job.SetenvBool("json", true)
  461. streamJSON(job, w, false)
  462. } else {
  463. job.Stdout.Add(w)
  464. }
  465. if err := job.Run(); err != nil {
  466. if !job.Stdout.Used() {
  467. return err
  468. }
  469. sf := utils.NewStreamFormatter(version > 1.0)
  470. w.Write(sf.FormatError(err))
  471. }
  472. return nil
  473. }
  474. func postImagesPush(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  475. if vars == nil {
  476. return fmt.Errorf("Missing parameter")
  477. }
  478. metaHeaders := map[string][]string{}
  479. for k, v := range r.Header {
  480. if strings.HasPrefix(k, "X-Meta-") {
  481. metaHeaders[k] = v
  482. }
  483. }
  484. if err := parseForm(r); err != nil {
  485. return err
  486. }
  487. authConfig := &auth.AuthConfig{}
  488. authEncoded := r.Header.Get("X-Registry-Auth")
  489. if authEncoded != "" {
  490. // the new format is to handle the authConfig as a header
  491. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  492. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  493. // to increase compatibility to existing api it is defaulting to be empty
  494. authConfig = &auth.AuthConfig{}
  495. }
  496. } else {
  497. // the old format is supported for compatibility if there was no authConfig header
  498. if err := json.NewDecoder(r.Body).Decode(authConfig); err != nil {
  499. return err
  500. }
  501. }
  502. if version > 1.0 {
  503. w.Header().Set("Content-Type", "application/json")
  504. }
  505. job := eng.Job("push", vars["name"])
  506. job.SetenvJson("metaHeaders", metaHeaders)
  507. job.SetenvJson("authConfig", authConfig)
  508. if version > 1.0 {
  509. job.SetenvBool("json", true)
  510. streamJSON(job, w, true)
  511. } else {
  512. job.Stdout.Add(utils.NewWriteFlusher(w))
  513. }
  514. if err := job.Run(); err != nil {
  515. if !job.Stdout.Used() {
  516. return err
  517. }
  518. sf := utils.NewStreamFormatter(version > 1.0)
  519. w.Write(sf.FormatError(err))
  520. }
  521. return nil
  522. }
  523. func getImagesGet(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  524. if vars == nil {
  525. return fmt.Errorf("Missing parameter")
  526. }
  527. if version > 1.0 {
  528. w.Header().Set("Content-Type", "application/x-tar")
  529. }
  530. job := eng.Job("image_export", vars["name"])
  531. job.Stdout.Add(w)
  532. return job.Run()
  533. }
  534. func postImagesLoad(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  535. job := eng.Job("load")
  536. job.Stdin.Add(r.Body)
  537. return job.Run()
  538. }
  539. func postContainersCreate(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  540. if err := parseForm(r); err != nil {
  541. return nil
  542. }
  543. var (
  544. out engine.Env
  545. job = eng.Job("create", r.Form.Get("name"))
  546. outWarnings []string
  547. outId string
  548. warnings = bytes.NewBuffer(nil)
  549. )
  550. if err := job.DecodeEnv(r.Body); err != nil {
  551. return err
  552. }
  553. // Read container ID from the first line of stdout
  554. job.Stdout.AddString(&outId)
  555. // Read warnings from stderr
  556. job.Stderr.Add(warnings)
  557. if err := job.Run(); err != nil {
  558. return err
  559. }
  560. // Parse warnings from stderr
  561. scanner := bufio.NewScanner(warnings)
  562. for scanner.Scan() {
  563. outWarnings = append(outWarnings, scanner.Text())
  564. }
  565. out.Set("Id", outId)
  566. out.SetList("Warnings", outWarnings)
  567. return writeJSON(w, http.StatusCreated, out)
  568. }
  569. func postContainersRestart(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  570. if err := parseForm(r); err != nil {
  571. return err
  572. }
  573. if vars == nil {
  574. return fmt.Errorf("Missing parameter")
  575. }
  576. job := eng.Job("restart", vars["name"])
  577. job.Setenv("t", r.Form.Get("t"))
  578. if err := job.Run(); err != nil {
  579. return err
  580. }
  581. w.WriteHeader(http.StatusNoContent)
  582. return nil
  583. }
  584. func deleteContainers(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  585. if err := parseForm(r); err != nil {
  586. return err
  587. }
  588. if vars == nil {
  589. return fmt.Errorf("Missing parameter")
  590. }
  591. job := eng.Job("container_delete", vars["name"])
  592. job.Setenv("removeVolume", r.Form.Get("v"))
  593. job.Setenv("removeLink", r.Form.Get("link"))
  594. if err := job.Run(); err != nil {
  595. return err
  596. }
  597. w.WriteHeader(http.StatusNoContent)
  598. return nil
  599. }
  600. func deleteImages(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  601. if err := parseForm(r); err != nil {
  602. return err
  603. }
  604. if vars == nil {
  605. return fmt.Errorf("Missing parameter")
  606. }
  607. var job = eng.Job("image_delete", vars["name"])
  608. streamJSON(job, w, false)
  609. job.SetenvBool("autoPrune", version > 1.1)
  610. return job.Run()
  611. }
  612. func postContainersStart(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  613. if vars == nil {
  614. return fmt.Errorf("Missing parameter")
  615. }
  616. name := vars["name"]
  617. job := eng.Job("start", name)
  618. // allow a nil body for backwards compatibility
  619. if r.Body != nil {
  620. if MatchesContentType(r.Header.Get("Content-Type"), "application/json") {
  621. if err := job.DecodeEnv(r.Body); err != nil {
  622. return err
  623. }
  624. }
  625. }
  626. if err := job.Run(); err != nil {
  627. return err
  628. }
  629. w.WriteHeader(http.StatusNoContent)
  630. return nil
  631. }
  632. func postContainersStop(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  633. if err := parseForm(r); err != nil {
  634. return err
  635. }
  636. if vars == nil {
  637. return fmt.Errorf("Missing parameter")
  638. }
  639. job := eng.Job("stop", vars["name"])
  640. job.Setenv("t", r.Form.Get("t"))
  641. if err := job.Run(); err != nil {
  642. return err
  643. }
  644. w.WriteHeader(http.StatusNoContent)
  645. return nil
  646. }
  647. func postContainersWait(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  648. if vars == nil {
  649. return fmt.Errorf("Missing parameter")
  650. }
  651. var (
  652. env engine.Env
  653. status string
  654. job = eng.Job("wait", vars["name"])
  655. )
  656. job.Stdout.AddString(&status)
  657. if err := job.Run(); err != nil {
  658. return err
  659. }
  660. // Parse a 16-bit encoded integer to map typical unix exit status.
  661. _, err := strconv.ParseInt(status, 10, 16)
  662. if err != nil {
  663. return err
  664. }
  665. env.Set("StatusCode", status)
  666. return writeJSON(w, http.StatusOK, env)
  667. }
  668. func postContainersResize(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  669. if err := parseForm(r); err != nil {
  670. return err
  671. }
  672. if vars == nil {
  673. return fmt.Errorf("Missing parameter")
  674. }
  675. if err := eng.Job("resize", vars["name"], r.Form.Get("h"), r.Form.Get("w")).Run(); err != nil {
  676. return err
  677. }
  678. return nil
  679. }
  680. func postContainersAttach(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  681. if err := parseForm(r); err != nil {
  682. return err
  683. }
  684. if vars == nil {
  685. return fmt.Errorf("Missing parameter")
  686. }
  687. var (
  688. job = eng.Job("inspect", vars["name"], "container")
  689. c, err = job.Stdout.AddEnv()
  690. )
  691. if err != nil {
  692. return err
  693. }
  694. if err = job.Run(); err != nil {
  695. return err
  696. }
  697. inStream, outStream, err := hijackServer(w)
  698. if err != nil {
  699. return err
  700. }
  701. defer func() {
  702. if tcpc, ok := inStream.(*net.TCPConn); ok {
  703. tcpc.CloseWrite()
  704. } else {
  705. inStream.Close()
  706. }
  707. }()
  708. defer func() {
  709. if tcpc, ok := outStream.(*net.TCPConn); ok {
  710. tcpc.CloseWrite()
  711. } else if closer, ok := outStream.(io.Closer); ok {
  712. closer.Close()
  713. }
  714. }()
  715. var errStream io.Writer
  716. fmt.Fprintf(outStream, "HTTP/1.1 200 OK\r\nContent-Type: application/vnd.docker.raw-stream\r\n\r\n")
  717. if c.GetSubEnv("Config") != nil && !c.GetSubEnv("Config").GetBool("Tty") && version >= 1.6 {
  718. errStream = utils.NewStdWriter(outStream, utils.Stderr)
  719. outStream = utils.NewStdWriter(outStream, utils.Stdout)
  720. } else {
  721. errStream = outStream
  722. }
  723. job = eng.Job("attach", vars["name"])
  724. job.Setenv("logs", r.Form.Get("logs"))
  725. job.Setenv("stream", r.Form.Get("stream"))
  726. job.Setenv("stdin", r.Form.Get("stdin"))
  727. job.Setenv("stdout", r.Form.Get("stdout"))
  728. job.Setenv("stderr", r.Form.Get("stderr"))
  729. job.Stdin.Add(inStream)
  730. job.Stdout.Add(outStream)
  731. job.Stderr.Set(errStream)
  732. if err := job.Run(); err != nil {
  733. fmt.Fprintf(outStream, "Error: %s\n", err)
  734. }
  735. return nil
  736. }
  737. func wsContainersAttach(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  738. if err := parseForm(r); err != nil {
  739. return err
  740. }
  741. if vars == nil {
  742. return fmt.Errorf("Missing parameter")
  743. }
  744. if err := eng.Job("inspect", vars["name"], "container").Run(); err != nil {
  745. return err
  746. }
  747. h := websocket.Handler(func(ws *websocket.Conn) {
  748. defer ws.Close()
  749. job := eng.Job("attach", vars["name"])
  750. job.Setenv("logs", r.Form.Get("logs"))
  751. job.Setenv("stream", r.Form.Get("stream"))
  752. job.Setenv("stdin", r.Form.Get("stdin"))
  753. job.Setenv("stdout", r.Form.Get("stdout"))
  754. job.Setenv("stderr", r.Form.Get("stderr"))
  755. job.Stdin.Add(ws)
  756. job.Stdout.Add(ws)
  757. job.Stderr.Set(ws)
  758. if err := job.Run(); err != nil {
  759. utils.Errorf("Error: %s", err)
  760. }
  761. })
  762. h.ServeHTTP(w, r)
  763. return nil
  764. }
  765. func getContainersByName(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  766. if vars == nil {
  767. return fmt.Errorf("Missing parameter")
  768. }
  769. var job = eng.Job("inspect", vars["name"], "container")
  770. streamJSON(job, w, false)
  771. job.SetenvBool("conflict", true) //conflict=true to detect conflict between containers and images in the job
  772. return job.Run()
  773. }
  774. func getImagesByName(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  775. if vars == nil {
  776. return fmt.Errorf("Missing parameter")
  777. }
  778. var job = eng.Job("inspect", vars["name"], "image")
  779. streamJSON(job, w, false)
  780. job.SetenvBool("conflict", true) //conflict=true to detect conflict between containers and images in the job
  781. return job.Run()
  782. }
  783. func postBuild(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  784. if version < 1.3 {
  785. return fmt.Errorf("Multipart upload for build is no longer supported. Please upgrade your docker client.")
  786. }
  787. var (
  788. authEncoded = r.Header.Get("X-Registry-Auth")
  789. authConfig = &auth.AuthConfig{}
  790. configFileEncoded = r.Header.Get("X-Registry-Config")
  791. configFile = &auth.ConfigFile{}
  792. job = eng.Job("build")
  793. )
  794. // This block can be removed when API versions prior to 1.9 are deprecated.
  795. // Both headers will be parsed and sent along to the daemon, but if a non-empty
  796. // ConfigFile is present, any value provided as an AuthConfig directly will
  797. // be overridden. See BuildFile::CmdFrom for details.
  798. if version < 1.9 && authEncoded != "" {
  799. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  800. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  801. // for a pull it is not an error if no auth was given
  802. // to increase compatibility with the existing api it is defaulting to be empty
  803. authConfig = &auth.AuthConfig{}
  804. }
  805. }
  806. if configFileEncoded != "" {
  807. configFileJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(configFileEncoded))
  808. if err := json.NewDecoder(configFileJson).Decode(configFile); err != nil {
  809. // for a pull it is not an error if no auth was given
  810. // to increase compatibility with the existing api it is defaulting to be empty
  811. configFile = &auth.ConfigFile{}
  812. }
  813. }
  814. if version >= 1.8 {
  815. job.SetenvBool("json", true)
  816. streamJSON(job, w, true)
  817. } else {
  818. job.Stdout.Add(utils.NewWriteFlusher(w))
  819. }
  820. job.Stdin.Add(r.Body)
  821. job.Setenv("remote", r.FormValue("remote"))
  822. job.Setenv("t", r.FormValue("t"))
  823. job.Setenv("q", r.FormValue("q"))
  824. job.Setenv("nocache", r.FormValue("nocache"))
  825. job.Setenv("rm", r.FormValue("rm"))
  826. if err := job.Run(); err != nil {
  827. if !job.Stdout.Used() {
  828. return err
  829. }
  830. sf := utils.NewStreamFormatter(version >= 1.8)
  831. w.Write(sf.FormatError(err))
  832. }
  833. return nil
  834. }
  835. func postContainersCopy(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  836. if vars == nil {
  837. return fmt.Errorf("Missing parameter")
  838. }
  839. var copyData engine.Env
  840. if contentType := r.Header.Get("Content-Type"); contentType == "application/json" {
  841. if err := copyData.Decode(r.Body); err != nil {
  842. return err
  843. }
  844. } else {
  845. return fmt.Errorf("Content-Type not supported: %s", contentType)
  846. }
  847. if copyData.Get("Resource") == "" {
  848. return fmt.Errorf("Path cannot be empty")
  849. }
  850. if copyData.Get("Resource")[0] == '/' {
  851. copyData.Set("Resource", copyData.Get("Resource")[1:])
  852. }
  853. job := eng.Job("container_copy", vars["name"], copyData.Get("Resource"))
  854. streamJSON(job, w, false)
  855. if err := job.Run(); err != nil {
  856. utils.Errorf("%s", err.Error())
  857. }
  858. return nil
  859. }
  860. func optionsHandler(eng *engine.Engine, version float64, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  861. w.WriteHeader(http.StatusOK)
  862. return nil
  863. }
  864. func writeCorsHeaders(w http.ResponseWriter, r *http.Request) {
  865. w.Header().Add("Access-Control-Allow-Origin", "*")
  866. w.Header().Add("Access-Control-Allow-Headers", "Origin, X-Requested-With, Content-Type, Accept")
  867. w.Header().Add("Access-Control-Allow-Methods", "GET, POST, DELETE, PUT, OPTIONS")
  868. }
  869. func makeHttpHandler(eng *engine.Engine, logging bool, localMethod string, localRoute string, handlerFunc HttpApiFunc, enableCors bool, dockerVersion string) http.HandlerFunc {
  870. return func(w http.ResponseWriter, r *http.Request) {
  871. // log the request
  872. utils.Debugf("Calling %s %s", localMethod, localRoute)
  873. if logging {
  874. log.Println(r.Method, r.RequestURI)
  875. }
  876. if strings.Contains(r.Header.Get("User-Agent"), "Docker-Client/") {
  877. userAgent := strings.Split(r.Header.Get("User-Agent"), "/")
  878. if len(userAgent) == 2 && userAgent[1] != dockerVersion {
  879. utils.Debugf("Warning: client and server don't have the same version (client: %s, server: %s)", userAgent[1], dockerVersion)
  880. }
  881. }
  882. version, err := strconv.ParseFloat(mux.Vars(r)["version"], 64)
  883. if err != nil {
  884. version = APIVERSION
  885. }
  886. if enableCors {
  887. writeCorsHeaders(w, r)
  888. }
  889. if version == 0 || version > APIVERSION {
  890. http.Error(w, fmt.Errorf("client and server don't have same version (client : %g, server: %g)", version, APIVERSION).Error(), http.StatusNotFound)
  891. return
  892. }
  893. if err := handlerFunc(eng, version, w, r, mux.Vars(r)); err != nil {
  894. utils.Errorf("Error: %s", err)
  895. httpError(w, err)
  896. }
  897. }
  898. }
  899. // Replicated from expvar.go as not public.
  900. func expvarHandler(w http.ResponseWriter, r *http.Request) {
  901. w.Header().Set("Content-Type", "application/json; charset=utf-8")
  902. fmt.Fprintf(w, "{\n")
  903. first := true
  904. expvar.Do(func(kv expvar.KeyValue) {
  905. if !first {
  906. fmt.Fprintf(w, ",\n")
  907. }
  908. first = false
  909. fmt.Fprintf(w, "%q: %s", kv.Key, kv.Value)
  910. })
  911. fmt.Fprintf(w, "\n}\n")
  912. }
  913. func AttachProfiler(router *mux.Router) {
  914. router.HandleFunc("/debug/vars", expvarHandler)
  915. router.HandleFunc("/debug/pprof/", pprof.Index)
  916. router.HandleFunc("/debug/pprof/cmdline", pprof.Cmdline)
  917. router.HandleFunc("/debug/pprof/profile", pprof.Profile)
  918. router.HandleFunc("/debug/pprof/symbol", pprof.Symbol)
  919. router.HandleFunc("/debug/pprof/heap", pprof.Handler("heap").ServeHTTP)
  920. router.HandleFunc("/debug/pprof/goroutine", pprof.Handler("goroutine").ServeHTTP)
  921. router.HandleFunc("/debug/pprof/threadcreate", pprof.Handler("threadcreate").ServeHTTP)
  922. }
  923. func createRouter(eng *engine.Engine, logging, enableCors bool, dockerVersion string) (*mux.Router, error) {
  924. r := mux.NewRouter()
  925. if os.Getenv("DEBUG") != "" {
  926. AttachProfiler(r)
  927. }
  928. m := map[string]map[string]HttpApiFunc{
  929. "GET": {
  930. "/events": getEvents,
  931. "/info": getInfo,
  932. "/version": getVersion,
  933. "/images/json": getImagesJSON,
  934. "/images/viz": getImagesViz,
  935. "/images/search": getImagesSearch,
  936. "/images/{name:.*}/get": getImagesGet,
  937. "/images/{name:.*}/history": getImagesHistory,
  938. "/images/{name:.*}/json": getImagesByName,
  939. "/containers/ps": getContainersJSON,
  940. "/containers/json": getContainersJSON,
  941. "/containers/{name:.*}/export": getContainersExport,
  942. "/containers/{name:.*}/changes": getContainersChanges,
  943. "/containers/{name:.*}/json": getContainersByName,
  944. "/containers/{name:.*}/top": getContainersTop,
  945. "/containers/{name:.*}/attach/ws": wsContainersAttach,
  946. },
  947. "POST": {
  948. "/auth": postAuth,
  949. "/commit": postCommit,
  950. "/build": postBuild,
  951. "/images/create": postImagesCreate,
  952. "/images/{name:.*}/insert": postImagesInsert,
  953. "/images/load": postImagesLoad,
  954. "/images/{name:.*}/push": postImagesPush,
  955. "/images/{name:.*}/tag": postImagesTag,
  956. "/containers/create": postContainersCreate,
  957. "/containers/{name:.*}/kill": postContainersKill,
  958. "/containers/{name:.*}/restart": postContainersRestart,
  959. "/containers/{name:.*}/start": postContainersStart,
  960. "/containers/{name:.*}/stop": postContainersStop,
  961. "/containers/{name:.*}/wait": postContainersWait,
  962. "/containers/{name:.*}/resize": postContainersResize,
  963. "/containers/{name:.*}/attach": postContainersAttach,
  964. "/containers/{name:.*}/copy": postContainersCopy,
  965. },
  966. "DELETE": {
  967. "/containers/{name:.*}": deleteContainers,
  968. "/images/{name:.*}": deleteImages,
  969. },
  970. "OPTIONS": {
  971. "": optionsHandler,
  972. },
  973. }
  974. for method, routes := range m {
  975. for route, fct := range routes {
  976. utils.Debugf("Registering %s, %s", method, route)
  977. // NOTE: scope issue, make sure the variables are local and won't be changed
  978. localRoute := route
  979. localFct := fct
  980. localMethod := method
  981. // build the handler function
  982. f := makeHttpHandler(eng, logging, localMethod, localRoute, localFct, enableCors, dockerVersion)
  983. // add the new route
  984. if localRoute == "" {
  985. r.Methods(localMethod).HandlerFunc(f)
  986. } else {
  987. r.Path("/v{version:[0-9.]+}" + localRoute).Methods(localMethod).HandlerFunc(f)
  988. r.Path(localRoute).Methods(localMethod).HandlerFunc(f)
  989. }
  990. }
  991. }
  992. return r, nil
  993. }
  994. // ServeRequest processes a single http request to the docker remote api.
  995. // FIXME: refactor this to be part of Server and not require re-creating a new
  996. // router each time. This requires first moving ListenAndServe into Server.
  997. func ServeRequest(eng *engine.Engine, apiversion float64, w http.ResponseWriter, req *http.Request) error {
  998. router, err := createRouter(eng, false, true, "")
  999. if err != nil {
  1000. return err
  1001. }
  1002. // Insert APIVERSION into the request as a convenience
  1003. req.URL.Path = fmt.Sprintf("/v%g%s", apiversion, req.URL.Path)
  1004. router.ServeHTTP(w, req)
  1005. return nil
  1006. }
  1007. // ServeFD creates an http.Server and sets it up to serve given a socket activated
  1008. // argument.
  1009. func ServeFd(addr string, handle http.Handler) error {
  1010. ls, e := systemd.ListenFD(addr)
  1011. if e != nil {
  1012. return e
  1013. }
  1014. chErrors := make(chan error, len(ls))
  1015. // Since ListenFD will return one or more sockets we have
  1016. // to create a go func to spawn off multiple serves
  1017. for i := range ls {
  1018. listener := ls[i]
  1019. go func() {
  1020. httpSrv := http.Server{Handler: handle}
  1021. chErrors <- httpSrv.Serve(listener)
  1022. }()
  1023. }
  1024. for i := 0; i < len(ls); i += 1 {
  1025. err := <-chErrors
  1026. if err != nil {
  1027. return err
  1028. }
  1029. }
  1030. return nil
  1031. }
  1032. // ListenAndServe sets up the required http.Server and gets it listening for
  1033. // each addr passed in and does protocol specific checking.
  1034. func ListenAndServe(proto, addr string, eng *engine.Engine, logging, enableCors bool, dockerVersion string) error {
  1035. r, err := createRouter(eng, logging, enableCors, dockerVersion)
  1036. if err != nil {
  1037. return err
  1038. }
  1039. if proto == "fd" {
  1040. return ServeFd(addr, r)
  1041. }
  1042. if proto == "unix" {
  1043. if err := syscall.Unlink(addr); err != nil && !os.IsNotExist(err) {
  1044. return err
  1045. }
  1046. }
  1047. l, err := listenbuffer.NewListenBuffer(proto, addr, activationLock, 15*time.Minute)
  1048. if err != nil {
  1049. return err
  1050. }
  1051. // Basic error and sanity checking
  1052. switch proto {
  1053. case "tcp":
  1054. if !strings.HasPrefix(addr, "127.0.0.1") {
  1055. log.Println("/!\\ DON'T BIND ON ANOTHER IP ADDRESS THAN 127.0.0.1 IF YOU DON'T KNOW WHAT YOU'RE DOING /!\\")
  1056. }
  1057. case "unix":
  1058. if err := os.Chmod(addr, 0660); err != nil {
  1059. return err
  1060. }
  1061. groups, err := ioutil.ReadFile("/etc/group")
  1062. if err != nil {
  1063. return err
  1064. }
  1065. re := regexp.MustCompile("(^|\n)docker:.*?:([0-9]+)")
  1066. if gidMatch := re.FindStringSubmatch(string(groups)); gidMatch != nil {
  1067. gid, err := strconv.Atoi(gidMatch[2])
  1068. if err != nil {
  1069. return err
  1070. }
  1071. utils.Debugf("docker group found. gid: %d", gid)
  1072. if err := os.Chown(addr, 0, gid); err != nil {
  1073. return err
  1074. }
  1075. }
  1076. default:
  1077. return fmt.Errorf("Invalid protocol format.")
  1078. }
  1079. httpSrv := http.Server{Addr: addr, Handler: r}
  1080. return httpSrv.Serve(l)
  1081. }
  1082. // ServeApi loops through all of the protocols sent in to docker and spawns
  1083. // off a go routine to setup a serving http.Server for each.
  1084. func ServeApi(job *engine.Job) engine.Status {
  1085. var (
  1086. protoAddrs = job.Args
  1087. chErrors = make(chan error, len(protoAddrs))
  1088. )
  1089. activationLock = make(chan struct{})
  1090. for _, protoAddr := range protoAddrs {
  1091. protoAddrParts := strings.SplitN(protoAddr, "://", 2)
  1092. go func() {
  1093. log.Printf("Listening for HTTP on %s (%s)\n", protoAddrParts[0], protoAddrParts[1])
  1094. chErrors <- ListenAndServe(protoAddrParts[0], protoAddrParts[1], job.Eng, job.GetenvBool("Logging"), job.GetenvBool("EnableCors"), job.Getenv("Version"))
  1095. }()
  1096. }
  1097. for i := 0; i < len(protoAddrs); i += 1 {
  1098. err := <-chErrors
  1099. if err != nil {
  1100. return job.Error(err)
  1101. }
  1102. }
  1103. return engine.StatusOK
  1104. }
  1105. func AcceptConnections(job *engine.Job) engine.Status {
  1106. // Tell the init daemon we are accepting requests
  1107. go systemd.SdNotify("READY=1")
  1108. // close the lock so the listeners start accepting connections
  1109. close(activationLock)
  1110. return engine.StatusOK
  1111. }