server.go 35 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223
  1. package api
  2. import (
  3. "bufio"
  4. "bytes"
  5. "code.google.com/p/go.net/websocket"
  6. "encoding/base64"
  7. "encoding/json"
  8. "expvar"
  9. "fmt"
  10. "github.com/dotcloud/docker/auth"
  11. "github.com/dotcloud/docker/engine"
  12. "github.com/dotcloud/docker/pkg/listenbuffer"
  13. "github.com/dotcloud/docker/pkg/systemd"
  14. "github.com/dotcloud/docker/pkg/user"
  15. "github.com/dotcloud/docker/pkg/version"
  16. "github.com/dotcloud/docker/utils"
  17. "github.com/gorilla/mux"
  18. "io"
  19. "io/ioutil"
  20. "log"
  21. "net"
  22. "net/http"
  23. "net/http/pprof"
  24. "os"
  25. "strconv"
  26. "strings"
  27. "syscall"
  28. "time"
  29. )
  30. var (
  31. activationLock chan struct{}
  32. )
  33. type HttpApiFunc func(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error
  34. func hijackServer(w http.ResponseWriter) (io.ReadCloser, io.Writer, error) {
  35. conn, _, err := w.(http.Hijacker).Hijack()
  36. if err != nil {
  37. return nil, nil, err
  38. }
  39. // Flush the options to make sure the client sets the raw mode
  40. conn.Write([]byte{})
  41. return conn, conn, nil
  42. }
  43. //If we don't do this, POST method without Content-type (even with empty body) will fail
  44. func parseForm(r *http.Request) error {
  45. if r == nil {
  46. return nil
  47. }
  48. if err := r.ParseForm(); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  49. return err
  50. }
  51. return nil
  52. }
  53. func parseMultipartForm(r *http.Request) error {
  54. if err := r.ParseMultipartForm(4096); err != nil && !strings.HasPrefix(err.Error(), "mime:") {
  55. return err
  56. }
  57. return nil
  58. }
  59. func httpError(w http.ResponseWriter, err error) {
  60. statusCode := http.StatusInternalServerError
  61. // FIXME: this is brittle and should not be necessary.
  62. // If we need to differentiate between different possible error types, we should
  63. // create appropriate error types with clearly defined meaning.
  64. if strings.Contains(err.Error(), "No such") {
  65. statusCode = http.StatusNotFound
  66. } else if strings.Contains(err.Error(), "Bad parameter") {
  67. statusCode = http.StatusBadRequest
  68. } else if strings.Contains(err.Error(), "Conflict") {
  69. statusCode = http.StatusConflict
  70. } else if strings.Contains(err.Error(), "Impossible") {
  71. statusCode = http.StatusNotAcceptable
  72. } else if strings.Contains(err.Error(), "Wrong login/password") {
  73. statusCode = http.StatusUnauthorized
  74. } else if strings.Contains(err.Error(), "hasn't been activated") {
  75. statusCode = http.StatusForbidden
  76. }
  77. if err != nil {
  78. utils.Errorf("HTTP Error: statusCode=%d %s", statusCode, err.Error())
  79. http.Error(w, err.Error(), statusCode)
  80. }
  81. }
  82. func writeJSON(w http.ResponseWriter, code int, v engine.Env) error {
  83. w.Header().Set("Content-Type", "application/json")
  84. w.WriteHeader(code)
  85. return v.Encode(w)
  86. }
  87. func streamJSON(job *engine.Job, w http.ResponseWriter, flush bool) {
  88. w.Header().Set("Content-Type", "application/json")
  89. if flush {
  90. job.Stdout.Add(utils.NewWriteFlusher(w))
  91. } else {
  92. job.Stdout.Add(w)
  93. }
  94. }
  95. func getBoolParam(value string) (bool, error) {
  96. if value == "" {
  97. return false, nil
  98. }
  99. ret, err := strconv.ParseBool(value)
  100. if err != nil {
  101. return false, fmt.Errorf("Bad parameter")
  102. }
  103. return ret, nil
  104. }
  105. func postAuth(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  106. var (
  107. authConfig, err = ioutil.ReadAll(r.Body)
  108. job = eng.Job("auth")
  109. status string
  110. )
  111. if err != nil {
  112. return err
  113. }
  114. job.Setenv("authConfig", string(authConfig))
  115. job.Stdout.AddString(&status)
  116. if err = job.Run(); err != nil {
  117. return err
  118. }
  119. if status != "" {
  120. var env engine.Env
  121. env.Set("Status", status)
  122. return writeJSON(w, http.StatusOK, env)
  123. }
  124. w.WriteHeader(http.StatusNoContent)
  125. return nil
  126. }
  127. func getVersion(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  128. w.Header().Set("Content-Type", "application/json")
  129. eng.ServeHTTP(w, r)
  130. return nil
  131. }
  132. func postContainersKill(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  133. if vars == nil {
  134. return fmt.Errorf("Missing parameter")
  135. }
  136. if err := parseForm(r); err != nil {
  137. return err
  138. }
  139. job := eng.Job("kill", vars["name"])
  140. if sig := r.Form.Get("signal"); sig != "" {
  141. job.Args = append(job.Args, sig)
  142. }
  143. if err := job.Run(); err != nil {
  144. return err
  145. }
  146. w.WriteHeader(http.StatusNoContent)
  147. return nil
  148. }
  149. func getContainersExport(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  150. if vars == nil {
  151. return fmt.Errorf("Missing parameter")
  152. }
  153. job := eng.Job("export", vars["name"])
  154. job.Stdout.Add(w)
  155. if err := job.Run(); err != nil {
  156. return err
  157. }
  158. return nil
  159. }
  160. func getImagesJSON(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  161. if err := parseForm(r); err != nil {
  162. return err
  163. }
  164. var (
  165. err error
  166. outs *engine.Table
  167. job = eng.Job("images")
  168. )
  169. job.Setenv("filter", r.Form.Get("filter"))
  170. job.Setenv("all", r.Form.Get("all"))
  171. if version.GreaterThanOrEqualTo("1.7") {
  172. streamJSON(job, w, false)
  173. } else if outs, err = job.Stdout.AddListTable(); err != nil {
  174. return err
  175. }
  176. if err := job.Run(); err != nil {
  177. return err
  178. }
  179. if version.LessThan("1.7") && outs != nil { // Convert to legacy format
  180. outsLegacy := engine.NewTable("Created", 0)
  181. for _, out := range outs.Data {
  182. for _, repoTag := range out.GetList("RepoTags") {
  183. parts := strings.Split(repoTag, ":")
  184. outLegacy := &engine.Env{}
  185. outLegacy.Set("Repository", parts[0])
  186. outLegacy.Set("Tag", parts[1])
  187. outLegacy.Set("Id", out.Get("Id"))
  188. outLegacy.SetInt64("Created", out.GetInt64("Created"))
  189. outLegacy.SetInt64("Size", out.GetInt64("Size"))
  190. outLegacy.SetInt64("VirtualSize", out.GetInt64("VirtualSize"))
  191. outsLegacy.Add(outLegacy)
  192. }
  193. }
  194. w.Header().Set("Content-Type", "application/json")
  195. if _, err := outsLegacy.WriteListTo(w); err != nil {
  196. return err
  197. }
  198. }
  199. return nil
  200. }
  201. func getImagesViz(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  202. if version.GreaterThan("1.6") {
  203. w.WriteHeader(http.StatusNotFound)
  204. return fmt.Errorf("This is now implemented in the client.")
  205. }
  206. eng.ServeHTTP(w, r)
  207. return nil
  208. }
  209. func getInfo(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  210. w.Header().Set("Content-Type", "application/json")
  211. eng.ServeHTTP(w, r)
  212. return nil
  213. }
  214. func getEvents(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  215. if err := parseForm(r); err != nil {
  216. return err
  217. }
  218. var job = eng.Job("events", r.RemoteAddr)
  219. streamJSON(job, w, true)
  220. job.Setenv("since", r.Form.Get("since"))
  221. return job.Run()
  222. }
  223. func getImagesHistory(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  224. if vars == nil {
  225. return fmt.Errorf("Missing parameter")
  226. }
  227. var job = eng.Job("history", vars["name"])
  228. streamJSON(job, w, false)
  229. if err := job.Run(); err != nil {
  230. return err
  231. }
  232. return nil
  233. }
  234. func getContainersChanges(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  235. if vars == nil {
  236. return fmt.Errorf("Missing parameter")
  237. }
  238. var job = eng.Job("changes", vars["name"])
  239. streamJSON(job, w, false)
  240. return job.Run()
  241. }
  242. func getContainersTop(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  243. if version.LessThan("1.4") {
  244. return fmt.Errorf("top was improved a lot since 1.3, Please upgrade your docker client.")
  245. }
  246. if vars == nil {
  247. return fmt.Errorf("Missing parameter")
  248. }
  249. if err := parseForm(r); err != nil {
  250. return err
  251. }
  252. job := eng.Job("top", vars["name"], r.Form.Get("ps_args"))
  253. streamJSON(job, w, false)
  254. return job.Run()
  255. }
  256. func getContainersJSON(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  257. if err := parseForm(r); err != nil {
  258. return err
  259. }
  260. var (
  261. err error
  262. outs *engine.Table
  263. job = eng.Job("containers")
  264. )
  265. job.Setenv("all", r.Form.Get("all"))
  266. job.Setenv("size", r.Form.Get("size"))
  267. job.Setenv("since", r.Form.Get("since"))
  268. job.Setenv("before", r.Form.Get("before"))
  269. job.Setenv("limit", r.Form.Get("limit"))
  270. if version.GreaterThanOrEqualTo("1.5") {
  271. streamJSON(job, w, false)
  272. } else if outs, err = job.Stdout.AddTable(); err != nil {
  273. return err
  274. }
  275. if err = job.Run(); err != nil {
  276. return err
  277. }
  278. if version.LessThan("1.5") { // Convert to legacy format
  279. for _, out := range outs.Data {
  280. ports := engine.NewTable("", 0)
  281. ports.ReadListFrom([]byte(out.Get("Ports")))
  282. out.Set("Ports", displayablePorts(ports))
  283. }
  284. w.Header().Set("Content-Type", "application/json")
  285. if _, err = outs.WriteListTo(w); err != nil {
  286. return err
  287. }
  288. }
  289. return nil
  290. }
  291. func postImagesTag(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  292. if err := parseForm(r); err != nil {
  293. return err
  294. }
  295. if vars == nil {
  296. return fmt.Errorf("Missing parameter")
  297. }
  298. job := eng.Job("tag", vars["name"], r.Form.Get("repo"), r.Form.Get("tag"))
  299. job.Setenv("force", r.Form.Get("force"))
  300. if err := job.Run(); err != nil {
  301. return err
  302. }
  303. w.WriteHeader(http.StatusCreated)
  304. return nil
  305. }
  306. func postCommit(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  307. if err := parseForm(r); err != nil {
  308. return err
  309. }
  310. var (
  311. config engine.Env
  312. env engine.Env
  313. job = eng.Job("commit", r.Form.Get("container"))
  314. )
  315. if err := config.Decode(r.Body); err != nil {
  316. utils.Errorf("%s", err)
  317. }
  318. job.Setenv("repo", r.Form.Get("repo"))
  319. job.Setenv("tag", r.Form.Get("tag"))
  320. job.Setenv("author", r.Form.Get("author"))
  321. job.Setenv("comment", r.Form.Get("comment"))
  322. job.SetenvSubEnv("config", &config)
  323. var id string
  324. job.Stdout.AddString(&id)
  325. if err := job.Run(); err != nil {
  326. return err
  327. }
  328. env.Set("Id", id)
  329. return writeJSON(w, http.StatusCreated, env)
  330. }
  331. // Creates an image from Pull or from Import
  332. func postImagesCreate(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  333. if err := parseForm(r); err != nil {
  334. return err
  335. }
  336. var (
  337. image = r.Form.Get("fromImage")
  338. tag = r.Form.Get("tag")
  339. job *engine.Job
  340. )
  341. authEncoded := r.Header.Get("X-Registry-Auth")
  342. authConfig := &auth.AuthConfig{}
  343. if authEncoded != "" {
  344. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  345. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  346. // for a pull it is not an error if no auth was given
  347. // to increase compatibility with the existing api it is defaulting to be empty
  348. authConfig = &auth.AuthConfig{}
  349. }
  350. }
  351. if image != "" { //pull
  352. metaHeaders := map[string][]string{}
  353. for k, v := range r.Header {
  354. if strings.HasPrefix(k, "X-Meta-") {
  355. metaHeaders[k] = v
  356. }
  357. }
  358. job = eng.Job("pull", r.Form.Get("fromImage"), tag)
  359. job.SetenvBool("parallel", version.GreaterThan("1.3"))
  360. job.SetenvJson("metaHeaders", metaHeaders)
  361. job.SetenvJson("authConfig", authConfig)
  362. } else { //import
  363. job = eng.Job("import", r.Form.Get("fromSrc"), r.Form.Get("repo"), tag)
  364. job.Stdin.Add(r.Body)
  365. }
  366. if version.GreaterThan("1.0") {
  367. job.SetenvBool("json", true)
  368. streamJSON(job, w, true)
  369. } else {
  370. job.Stdout.Add(utils.NewWriteFlusher(w))
  371. }
  372. if err := job.Run(); err != nil {
  373. if !job.Stdout.Used() {
  374. return err
  375. }
  376. sf := utils.NewStreamFormatter(version.GreaterThan("1.0"))
  377. w.Write(sf.FormatError(err))
  378. }
  379. return nil
  380. }
  381. func getImagesSearch(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  382. if err := parseForm(r); err != nil {
  383. return err
  384. }
  385. var (
  386. authEncoded = r.Header.Get("X-Registry-Auth")
  387. authConfig = &auth.AuthConfig{}
  388. metaHeaders = map[string][]string{}
  389. )
  390. if authEncoded != "" {
  391. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  392. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  393. // for a search it is not an error if no auth was given
  394. // to increase compatibility with the existing api it is defaulting to be empty
  395. authConfig = &auth.AuthConfig{}
  396. }
  397. }
  398. for k, v := range r.Header {
  399. if strings.HasPrefix(k, "X-Meta-") {
  400. metaHeaders[k] = v
  401. }
  402. }
  403. var job = eng.Job("search", r.Form.Get("term"))
  404. job.SetenvJson("metaHeaders", metaHeaders)
  405. job.SetenvJson("authConfig", authConfig)
  406. streamJSON(job, w, false)
  407. return job.Run()
  408. }
  409. func postImagesInsert(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  410. if err := parseForm(r); err != nil {
  411. return err
  412. }
  413. if vars == nil {
  414. return fmt.Errorf("Missing parameter")
  415. }
  416. job := eng.Job("insert", vars["name"], r.Form.Get("url"), r.Form.Get("path"))
  417. if version.GreaterThan("1.0") {
  418. job.SetenvBool("json", true)
  419. streamJSON(job, w, false)
  420. } else {
  421. job.Stdout.Add(w)
  422. }
  423. if err := job.Run(); err != nil {
  424. if !job.Stdout.Used() {
  425. return err
  426. }
  427. sf := utils.NewStreamFormatter(version.GreaterThan("1.0"))
  428. w.Write(sf.FormatError(err))
  429. }
  430. return nil
  431. }
  432. func postImagesPush(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  433. if vars == nil {
  434. return fmt.Errorf("Missing parameter")
  435. }
  436. metaHeaders := map[string][]string{}
  437. for k, v := range r.Header {
  438. if strings.HasPrefix(k, "X-Meta-") {
  439. metaHeaders[k] = v
  440. }
  441. }
  442. if err := parseForm(r); err != nil {
  443. return err
  444. }
  445. authConfig := &auth.AuthConfig{}
  446. authEncoded := r.Header.Get("X-Registry-Auth")
  447. if authEncoded != "" {
  448. // the new format is to handle the authConfig as a header
  449. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  450. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  451. // to increase compatibility to existing api it is defaulting to be empty
  452. authConfig = &auth.AuthConfig{}
  453. }
  454. } else {
  455. // the old format is supported for compatibility if there was no authConfig header
  456. if err := json.NewDecoder(r.Body).Decode(authConfig); err != nil {
  457. return err
  458. }
  459. }
  460. job := eng.Job("push", vars["name"])
  461. job.SetenvJson("metaHeaders", metaHeaders)
  462. job.SetenvJson("authConfig", authConfig)
  463. if version.GreaterThan("1.0") {
  464. job.SetenvBool("json", true)
  465. streamJSON(job, w, true)
  466. } else {
  467. job.Stdout.Add(utils.NewWriteFlusher(w))
  468. }
  469. if err := job.Run(); err != nil {
  470. if !job.Stdout.Used() {
  471. return err
  472. }
  473. sf := utils.NewStreamFormatter(version.GreaterThan("1.0"))
  474. w.Write(sf.FormatError(err))
  475. }
  476. return nil
  477. }
  478. func getImagesGet(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  479. if vars == nil {
  480. return fmt.Errorf("Missing parameter")
  481. }
  482. if version.GreaterThan("1.0") {
  483. w.Header().Set("Content-Type", "application/x-tar")
  484. }
  485. job := eng.Job("image_export", vars["name"])
  486. job.Stdout.Add(w)
  487. return job.Run()
  488. }
  489. func postImagesLoad(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  490. job := eng.Job("load")
  491. job.Stdin.Add(r.Body)
  492. return job.Run()
  493. }
  494. func postContainersCreate(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  495. if err := parseForm(r); err != nil {
  496. return nil
  497. }
  498. var (
  499. out engine.Env
  500. job = eng.Job("create", r.Form.Get("name"))
  501. outWarnings []string
  502. outId string
  503. warnings = bytes.NewBuffer(nil)
  504. )
  505. if err := job.DecodeEnv(r.Body); err != nil {
  506. return err
  507. }
  508. // Read container ID from the first line of stdout
  509. job.Stdout.AddString(&outId)
  510. // Read warnings from stderr
  511. job.Stderr.Add(warnings)
  512. if err := job.Run(); err != nil {
  513. return err
  514. }
  515. // Parse warnings from stderr
  516. scanner := bufio.NewScanner(warnings)
  517. for scanner.Scan() {
  518. outWarnings = append(outWarnings, scanner.Text())
  519. }
  520. out.Set("Id", outId)
  521. out.SetList("Warnings", outWarnings)
  522. return writeJSON(w, http.StatusCreated, out)
  523. }
  524. func postContainersRestart(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  525. if err := parseForm(r); err != nil {
  526. return err
  527. }
  528. if vars == nil {
  529. return fmt.Errorf("Missing parameter")
  530. }
  531. job := eng.Job("restart", vars["name"])
  532. job.Setenv("t", r.Form.Get("t"))
  533. if err := job.Run(); err != nil {
  534. return err
  535. }
  536. w.WriteHeader(http.StatusNoContent)
  537. return nil
  538. }
  539. func deleteContainers(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  540. if err := parseForm(r); err != nil {
  541. return err
  542. }
  543. if vars == nil {
  544. return fmt.Errorf("Missing parameter")
  545. }
  546. job := eng.Job("container_delete", vars["name"])
  547. job.Setenv("removeVolume", r.Form.Get("v"))
  548. job.Setenv("removeLink", r.Form.Get("link"))
  549. job.Setenv("forceRemove", r.Form.Get("force"))
  550. if err := job.Run(); err != nil {
  551. return err
  552. }
  553. w.WriteHeader(http.StatusNoContent)
  554. return nil
  555. }
  556. func deleteImages(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  557. if err := parseForm(r); err != nil {
  558. return err
  559. }
  560. if vars == nil {
  561. return fmt.Errorf("Missing parameter")
  562. }
  563. var job = eng.Job("image_delete", vars["name"])
  564. streamJSON(job, w, false)
  565. job.Setenv("force", r.Form.Get("force"))
  566. return job.Run()
  567. }
  568. func postContainersStart(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  569. if vars == nil {
  570. return fmt.Errorf("Missing parameter")
  571. }
  572. name := vars["name"]
  573. job := eng.Job("start", name)
  574. // allow a nil body for backwards compatibility
  575. if r.Body != nil {
  576. if MatchesContentType(r.Header.Get("Content-Type"), "application/json") {
  577. if err := job.DecodeEnv(r.Body); err != nil {
  578. return err
  579. }
  580. }
  581. }
  582. if err := job.Run(); err != nil {
  583. return err
  584. }
  585. w.WriteHeader(http.StatusNoContent)
  586. return nil
  587. }
  588. func postContainersStop(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  589. if err := parseForm(r); err != nil {
  590. return err
  591. }
  592. if vars == nil {
  593. return fmt.Errorf("Missing parameter")
  594. }
  595. job := eng.Job("stop", vars["name"])
  596. job.Setenv("t", r.Form.Get("t"))
  597. if err := job.Run(); err != nil {
  598. return err
  599. }
  600. w.WriteHeader(http.StatusNoContent)
  601. return nil
  602. }
  603. func postContainersWait(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  604. if vars == nil {
  605. return fmt.Errorf("Missing parameter")
  606. }
  607. var (
  608. env engine.Env
  609. status string
  610. job = eng.Job("wait", vars["name"])
  611. )
  612. job.Stdout.AddString(&status)
  613. if err := job.Run(); err != nil {
  614. return err
  615. }
  616. // Parse a 16-bit encoded integer to map typical unix exit status.
  617. _, err := strconv.ParseInt(status, 10, 16)
  618. if err != nil {
  619. return err
  620. }
  621. env.Set("StatusCode", status)
  622. return writeJSON(w, http.StatusOK, env)
  623. }
  624. func postContainersResize(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  625. if err := parseForm(r); err != nil {
  626. return err
  627. }
  628. if vars == nil {
  629. return fmt.Errorf("Missing parameter")
  630. }
  631. if err := eng.Job("resize", vars["name"], r.Form.Get("h"), r.Form.Get("w")).Run(); err != nil {
  632. return err
  633. }
  634. return nil
  635. }
  636. func postContainersAttach(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  637. if err := parseForm(r); err != nil {
  638. return err
  639. }
  640. if vars == nil {
  641. return fmt.Errorf("Missing parameter")
  642. }
  643. var (
  644. job = eng.Job("inspect", vars["name"], "container")
  645. c, err = job.Stdout.AddEnv()
  646. )
  647. if err != nil {
  648. return err
  649. }
  650. if err = job.Run(); err != nil {
  651. return err
  652. }
  653. inStream, outStream, err := hijackServer(w)
  654. if err != nil {
  655. return err
  656. }
  657. defer func() {
  658. if tcpc, ok := inStream.(*net.TCPConn); ok {
  659. tcpc.CloseWrite()
  660. } else {
  661. inStream.Close()
  662. }
  663. }()
  664. defer func() {
  665. if tcpc, ok := outStream.(*net.TCPConn); ok {
  666. tcpc.CloseWrite()
  667. } else if closer, ok := outStream.(io.Closer); ok {
  668. closer.Close()
  669. }
  670. }()
  671. var errStream io.Writer
  672. fmt.Fprintf(outStream, "HTTP/1.1 200 OK\r\nContent-Type: application/vnd.docker.raw-stream\r\n\r\n")
  673. if c.GetSubEnv("Config") != nil && !c.GetSubEnv("Config").GetBool("Tty") && version.GreaterThanOrEqualTo("1.6") {
  674. errStream = utils.NewStdWriter(outStream, utils.Stderr)
  675. outStream = utils.NewStdWriter(outStream, utils.Stdout)
  676. } else {
  677. errStream = outStream
  678. }
  679. job = eng.Job("attach", vars["name"])
  680. job.Setenv("logs", r.Form.Get("logs"))
  681. job.Setenv("stream", r.Form.Get("stream"))
  682. job.Setenv("stdin", r.Form.Get("stdin"))
  683. job.Setenv("stdout", r.Form.Get("stdout"))
  684. job.Setenv("stderr", r.Form.Get("stderr"))
  685. job.Stdin.Add(inStream)
  686. job.Stdout.Add(outStream)
  687. job.Stderr.Set(errStream)
  688. if err := job.Run(); err != nil {
  689. fmt.Fprintf(outStream, "Error: %s\n", err)
  690. }
  691. return nil
  692. }
  693. func wsContainersAttach(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  694. if err := parseForm(r); err != nil {
  695. return err
  696. }
  697. if vars == nil {
  698. return fmt.Errorf("Missing parameter")
  699. }
  700. if err := eng.Job("inspect", vars["name"], "container").Run(); err != nil {
  701. return err
  702. }
  703. h := websocket.Handler(func(ws *websocket.Conn) {
  704. defer ws.Close()
  705. job := eng.Job("attach", vars["name"])
  706. job.Setenv("logs", r.Form.Get("logs"))
  707. job.Setenv("stream", r.Form.Get("stream"))
  708. job.Setenv("stdin", r.Form.Get("stdin"))
  709. job.Setenv("stdout", r.Form.Get("stdout"))
  710. job.Setenv("stderr", r.Form.Get("stderr"))
  711. job.Stdin.Add(ws)
  712. job.Stdout.Add(ws)
  713. job.Stderr.Set(ws)
  714. if err := job.Run(); err != nil {
  715. utils.Errorf("Error: %s", err)
  716. }
  717. })
  718. h.ServeHTTP(w, r)
  719. return nil
  720. }
  721. func getContainersByName(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  722. if vars == nil {
  723. return fmt.Errorf("Missing parameter")
  724. }
  725. var job = eng.Job("inspect", vars["name"], "container")
  726. streamJSON(job, w, false)
  727. job.SetenvBool("conflict", true) //conflict=true to detect conflict between containers and images in the job
  728. return job.Run()
  729. }
  730. func getImagesByName(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  731. if vars == nil {
  732. return fmt.Errorf("Missing parameter")
  733. }
  734. var job = eng.Job("inspect", vars["name"], "image")
  735. streamJSON(job, w, false)
  736. job.SetenvBool("conflict", true) //conflict=true to detect conflict between containers and images in the job
  737. return job.Run()
  738. }
  739. func postBuild(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  740. if version.LessThan("1.3") {
  741. return fmt.Errorf("Multipart upload for build is no longer supported. Please upgrade your docker client.")
  742. }
  743. var (
  744. authEncoded = r.Header.Get("X-Registry-Auth")
  745. authConfig = &auth.AuthConfig{}
  746. configFileEncoded = r.Header.Get("X-Registry-Config")
  747. configFile = &auth.ConfigFile{}
  748. job = eng.Job("build")
  749. )
  750. // This block can be removed when API versions prior to 1.9 are deprecated.
  751. // Both headers will be parsed and sent along to the daemon, but if a non-empty
  752. // ConfigFile is present, any value provided as an AuthConfig directly will
  753. // be overridden. See BuildFile::CmdFrom for details.
  754. if version.LessThan("1.9") && authEncoded != "" {
  755. authJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(authEncoded))
  756. if err := json.NewDecoder(authJson).Decode(authConfig); err != nil {
  757. // for a pull it is not an error if no auth was given
  758. // to increase compatibility with the existing api it is defaulting to be empty
  759. authConfig = &auth.AuthConfig{}
  760. }
  761. }
  762. if configFileEncoded != "" {
  763. configFileJson := base64.NewDecoder(base64.URLEncoding, strings.NewReader(configFileEncoded))
  764. if err := json.NewDecoder(configFileJson).Decode(configFile); err != nil {
  765. // for a pull it is not an error if no auth was given
  766. // to increase compatibility with the existing api it is defaulting to be empty
  767. configFile = &auth.ConfigFile{}
  768. }
  769. }
  770. if version.GreaterThanOrEqualTo("1.8") {
  771. job.SetenvBool("json", true)
  772. streamJSON(job, w, true)
  773. } else {
  774. job.Stdout.Add(utils.NewWriteFlusher(w))
  775. }
  776. job.Stdin.Add(r.Body)
  777. job.Setenv("remote", r.FormValue("remote"))
  778. job.Setenv("t", r.FormValue("t"))
  779. job.Setenv("q", r.FormValue("q"))
  780. job.Setenv("nocache", r.FormValue("nocache"))
  781. job.Setenv("rm", r.FormValue("rm"))
  782. job.SetenvJson("authConfig", authConfig)
  783. job.SetenvJson("configFile", configFile)
  784. if err := job.Run(); err != nil {
  785. if !job.Stdout.Used() {
  786. return err
  787. }
  788. sf := utils.NewStreamFormatter(version.GreaterThanOrEqualTo("1.8"))
  789. w.Write(sf.FormatError(err))
  790. }
  791. return nil
  792. }
  793. func postContainersCopy(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  794. if vars == nil {
  795. return fmt.Errorf("Missing parameter")
  796. }
  797. var copyData engine.Env
  798. if contentType := r.Header.Get("Content-Type"); contentType == "application/json" {
  799. if err := copyData.Decode(r.Body); err != nil {
  800. return err
  801. }
  802. } else {
  803. return fmt.Errorf("Content-Type not supported: %s", contentType)
  804. }
  805. if copyData.Get("Resource") == "" {
  806. return fmt.Errorf("Path cannot be empty")
  807. }
  808. if copyData.Get("Resource")[0] == '/' {
  809. copyData.Set("Resource", copyData.Get("Resource")[1:])
  810. }
  811. job := eng.Job("container_copy", vars["name"], copyData.Get("Resource"))
  812. job.Stdout.Add(w)
  813. if err := job.Run(); err != nil {
  814. utils.Errorf("%s", err.Error())
  815. if strings.Contains(err.Error(), "No such container") {
  816. w.WriteHeader(http.StatusNotFound)
  817. }
  818. }
  819. return nil
  820. }
  821. func optionsHandler(eng *engine.Engine, version version.Version, w http.ResponseWriter, r *http.Request, vars map[string]string) error {
  822. w.WriteHeader(http.StatusOK)
  823. return nil
  824. }
  825. func writeCorsHeaders(w http.ResponseWriter, r *http.Request) {
  826. w.Header().Add("Access-Control-Allow-Origin", "*")
  827. w.Header().Add("Access-Control-Allow-Headers", "Origin, X-Requested-With, Content-Type, Accept")
  828. w.Header().Add("Access-Control-Allow-Methods", "GET, POST, DELETE, PUT, OPTIONS")
  829. }
  830. func makeHttpHandler(eng *engine.Engine, logging bool, localMethod string, localRoute string, handlerFunc HttpApiFunc, enableCors bool, dockerVersion version.Version) http.HandlerFunc {
  831. return func(w http.ResponseWriter, r *http.Request) {
  832. // log the request
  833. utils.Debugf("Calling %s %s", localMethod, localRoute)
  834. if logging {
  835. log.Println(r.Method, r.RequestURI)
  836. }
  837. if strings.Contains(r.Header.Get("User-Agent"), "Docker-Client/") {
  838. userAgent := strings.Split(r.Header.Get("User-Agent"), "/")
  839. if len(userAgent) == 2 && !dockerVersion.Equal(userAgent[1]) {
  840. utils.Debugf("Warning: client and server don't have the same version (client: %s, server: %s)", userAgent[1], dockerVersion)
  841. }
  842. }
  843. version := version.Version(mux.Vars(r)["version"])
  844. if version == "" {
  845. version = APIVERSION
  846. }
  847. if enableCors {
  848. writeCorsHeaders(w, r)
  849. }
  850. if version.GreaterThan(APIVERSION) {
  851. http.Error(w, fmt.Errorf("client and server don't have same version (client : %s, server: %s)", version, APIVERSION).Error(), http.StatusNotFound)
  852. return
  853. }
  854. if err := handlerFunc(eng, version, w, r, mux.Vars(r)); err != nil {
  855. utils.Errorf("Error: %s", err)
  856. httpError(w, err)
  857. }
  858. }
  859. }
  860. // Replicated from expvar.go as not public.
  861. func expvarHandler(w http.ResponseWriter, r *http.Request) {
  862. w.Header().Set("Content-Type", "application/json; charset=utf-8")
  863. fmt.Fprintf(w, "{\n")
  864. first := true
  865. expvar.Do(func(kv expvar.KeyValue) {
  866. if !first {
  867. fmt.Fprintf(w, ",\n")
  868. }
  869. first = false
  870. fmt.Fprintf(w, "%q: %s", kv.Key, kv.Value)
  871. })
  872. fmt.Fprintf(w, "\n}\n")
  873. }
  874. func AttachProfiler(router *mux.Router) {
  875. router.HandleFunc("/debug/vars", expvarHandler)
  876. router.HandleFunc("/debug/pprof/", pprof.Index)
  877. router.HandleFunc("/debug/pprof/cmdline", pprof.Cmdline)
  878. router.HandleFunc("/debug/pprof/profile", pprof.Profile)
  879. router.HandleFunc("/debug/pprof/symbol", pprof.Symbol)
  880. router.HandleFunc("/debug/pprof/heap", pprof.Handler("heap").ServeHTTP)
  881. router.HandleFunc("/debug/pprof/goroutine", pprof.Handler("goroutine").ServeHTTP)
  882. router.HandleFunc("/debug/pprof/threadcreate", pprof.Handler("threadcreate").ServeHTTP)
  883. }
  884. func createRouter(eng *engine.Engine, logging, enableCors bool, dockerVersion string) (*mux.Router, error) {
  885. r := mux.NewRouter()
  886. if os.Getenv("DEBUG") != "" {
  887. AttachProfiler(r)
  888. }
  889. m := map[string]map[string]HttpApiFunc{
  890. "GET": {
  891. "/events": getEvents,
  892. "/info": getInfo,
  893. "/version": getVersion,
  894. "/images/json": getImagesJSON,
  895. "/images/viz": getImagesViz,
  896. "/images/search": getImagesSearch,
  897. "/images/{name:.*}/get": getImagesGet,
  898. "/images/{name:.*}/history": getImagesHistory,
  899. "/images/{name:.*}/json": getImagesByName,
  900. "/containers/ps": getContainersJSON,
  901. "/containers/json": getContainersJSON,
  902. "/containers/{name:.*}/export": getContainersExport,
  903. "/containers/{name:.*}/changes": getContainersChanges,
  904. "/containers/{name:.*}/json": getContainersByName,
  905. "/containers/{name:.*}/top": getContainersTop,
  906. "/containers/{name:.*}/attach/ws": wsContainersAttach,
  907. },
  908. "POST": {
  909. "/auth": postAuth,
  910. "/commit": postCommit,
  911. "/build": postBuild,
  912. "/images/create": postImagesCreate,
  913. "/images/{name:.*}/insert": postImagesInsert,
  914. "/images/load": postImagesLoad,
  915. "/images/{name:.*}/push": postImagesPush,
  916. "/images/{name:.*}/tag": postImagesTag,
  917. "/containers/create": postContainersCreate,
  918. "/containers/{name:.*}/kill": postContainersKill,
  919. "/containers/{name:.*}/restart": postContainersRestart,
  920. "/containers/{name:.*}/start": postContainersStart,
  921. "/containers/{name:.*}/stop": postContainersStop,
  922. "/containers/{name:.*}/wait": postContainersWait,
  923. "/containers/{name:.*}/resize": postContainersResize,
  924. "/containers/{name:.*}/attach": postContainersAttach,
  925. "/containers/{name:.*}/copy": postContainersCopy,
  926. },
  927. "DELETE": {
  928. "/containers/{name:.*}": deleteContainers,
  929. "/images/{name:.*}": deleteImages,
  930. },
  931. "OPTIONS": {
  932. "": optionsHandler,
  933. },
  934. }
  935. for method, routes := range m {
  936. for route, fct := range routes {
  937. utils.Debugf("Registering %s, %s", method, route)
  938. // NOTE: scope issue, make sure the variables are local and won't be changed
  939. localRoute := route
  940. localFct := fct
  941. localMethod := method
  942. // build the handler function
  943. f := makeHttpHandler(eng, logging, localMethod, localRoute, localFct, enableCors, version.Version(dockerVersion))
  944. // add the new route
  945. if localRoute == "" {
  946. r.Methods(localMethod).HandlerFunc(f)
  947. } else {
  948. r.Path("/v{version:[0-9.]+}" + localRoute).Methods(localMethod).HandlerFunc(f)
  949. r.Path(localRoute).Methods(localMethod).HandlerFunc(f)
  950. }
  951. }
  952. }
  953. return r, nil
  954. }
  955. // ServeRequest processes a single http request to the docker remote api.
  956. // FIXME: refactor this to be part of Server and not require re-creating a new
  957. // router each time. This requires first moving ListenAndServe into Server.
  958. func ServeRequest(eng *engine.Engine, apiversion version.Version, w http.ResponseWriter, req *http.Request) error {
  959. router, err := createRouter(eng, false, true, "")
  960. if err != nil {
  961. return err
  962. }
  963. // Insert APIVERSION into the request as a convenience
  964. req.URL.Path = fmt.Sprintf("/v%s%s", apiversion, req.URL.Path)
  965. router.ServeHTTP(w, req)
  966. return nil
  967. }
  968. // ServeFD creates an http.Server and sets it up to serve given a socket activated
  969. // argument.
  970. func ServeFd(addr string, handle http.Handler) error {
  971. ls, e := systemd.ListenFD(addr)
  972. if e != nil {
  973. return e
  974. }
  975. chErrors := make(chan error, len(ls))
  976. // We don't want to start serving on these sockets until the
  977. // "initserver" job has completed. Otherwise required handlers
  978. // won't be ready.
  979. <-activationLock
  980. // Since ListenFD will return one or more sockets we have
  981. // to create a go func to spawn off multiple serves
  982. for i := range ls {
  983. listener := ls[i]
  984. go func() {
  985. httpSrv := http.Server{Handler: handle}
  986. chErrors <- httpSrv.Serve(listener)
  987. }()
  988. }
  989. for i := 0; i < len(ls); i += 1 {
  990. err := <-chErrors
  991. if err != nil {
  992. return err
  993. }
  994. }
  995. return nil
  996. }
  997. func lookupGidByName(nameOrGid string) (int, error) {
  998. groups, err := user.ParseGroupFilter(func(g *user.Group) bool {
  999. return g.Name == nameOrGid || strconv.Itoa(g.Gid) == nameOrGid
  1000. })
  1001. if err != nil {
  1002. return -1, err
  1003. }
  1004. if groups != nil && len(groups) > 0 {
  1005. return groups[0].Gid, nil
  1006. }
  1007. return -1, fmt.Errorf("Group %s not found", nameOrGid)
  1008. }
  1009. func changeGroup(addr string, nameOrGid string) error {
  1010. gid, err := lookupGidByName(nameOrGid)
  1011. if err != nil {
  1012. return err
  1013. }
  1014. utils.Debugf("%s group found. gid: %d", nameOrGid, gid)
  1015. return os.Chown(addr, 0, gid)
  1016. }
  1017. // ListenAndServe sets up the required http.Server and gets it listening for
  1018. // each addr passed in and does protocol specific checking.
  1019. func ListenAndServe(proto, addr string, eng *engine.Engine, logging, enableCors bool, dockerVersion string, socketGroup string) error {
  1020. r, err := createRouter(eng, logging, enableCors, dockerVersion)
  1021. if err != nil {
  1022. return err
  1023. }
  1024. if proto == "fd" {
  1025. return ServeFd(addr, r)
  1026. }
  1027. if proto == "unix" {
  1028. if err := syscall.Unlink(addr); err != nil && !os.IsNotExist(err) {
  1029. return err
  1030. }
  1031. }
  1032. l, err := listenbuffer.NewListenBuffer(proto, addr, activationLock, 15*time.Minute)
  1033. if err != nil {
  1034. return err
  1035. }
  1036. // Basic error and sanity checking
  1037. switch proto {
  1038. case "tcp":
  1039. if !strings.HasPrefix(addr, "127.0.0.1") {
  1040. log.Println("/!\\ DON'T BIND ON ANOTHER IP ADDRESS THAN 127.0.0.1 IF YOU DON'T KNOW WHAT YOU'RE DOING /!\\")
  1041. }
  1042. case "unix":
  1043. if err := os.Chmod(addr, 0660); err != nil {
  1044. return err
  1045. }
  1046. if socketGroup != "" {
  1047. if err := changeGroup(addr, socketGroup); err != nil {
  1048. if socketGroup == "docker" {
  1049. // if the user hasn't explicitly specified the group ownership, don't fail on errors.
  1050. utils.Debugf("Warning: could not chgrp %s to docker: %s", addr, err.Error())
  1051. } else {
  1052. return err
  1053. }
  1054. }
  1055. }
  1056. default:
  1057. return fmt.Errorf("Invalid protocol format.")
  1058. }
  1059. httpSrv := http.Server{Addr: addr, Handler: r}
  1060. return httpSrv.Serve(l)
  1061. }
  1062. // ServeApi loops through all of the protocols sent in to docker and spawns
  1063. // off a go routine to setup a serving http.Server for each.
  1064. func ServeApi(job *engine.Job) engine.Status {
  1065. var (
  1066. protoAddrs = job.Args
  1067. chErrors = make(chan error, len(protoAddrs))
  1068. )
  1069. activationLock = make(chan struct{})
  1070. if err := job.Eng.Register("acceptconnections", AcceptConnections); err != nil {
  1071. return job.Error(err)
  1072. }
  1073. for _, protoAddr := range protoAddrs {
  1074. protoAddrParts := strings.SplitN(protoAddr, "://", 2)
  1075. go func() {
  1076. log.Printf("Listening for HTTP on %s (%s)\n", protoAddrParts[0], protoAddrParts[1])
  1077. chErrors <- ListenAndServe(protoAddrParts[0], protoAddrParts[1], job.Eng, job.GetenvBool("Logging"), job.GetenvBool("EnableCors"), job.Getenv("Version"), job.Getenv("SocketGroup"))
  1078. }()
  1079. }
  1080. for i := 0; i < len(protoAddrs); i += 1 {
  1081. err := <-chErrors
  1082. if err != nil {
  1083. return job.Error(err)
  1084. }
  1085. }
  1086. return engine.StatusOK
  1087. }
  1088. func AcceptConnections(job *engine.Job) engine.Status {
  1089. // Tell the init daemon we are accepting requests
  1090. go systemd.SdNotify("READY=1")
  1091. // close the lock so the listeners start accepting connections
  1092. close(activationLock)
  1093. return engine.StatusOK
  1094. }