2019-10-07 22:47:56 -07:00
|
|
|
/*
|
|
|
|
* MinIO Cloud Storage, (C) 2019 MinIO, Inc.
|
|
|
|
*
|
|
|
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
* you may not use this file except in compliance with the License.
|
|
|
|
* You may obtain a copy of the License at
|
|
|
|
*
|
|
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
*
|
|
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
|
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
* See the License for the specific language governing permissions and
|
|
|
|
* limitations under the License.
|
|
|
|
*/
|
|
|
|
|
|
|
|
package logger
|
|
|
|
|
|
|
|
import (
|
|
|
|
"strings"
|
|
|
|
|
2019-10-22 22:59:13 -07:00
|
|
|
"github.com/minio/minio/cmd/config"
|
2019-10-07 22:47:56 -07:00
|
|
|
"github.com/minio/minio/pkg/env"
|
|
|
|
)
|
|
|
|
|
|
|
|
// Console logger target
|
|
|
|
type Console struct {
|
|
|
|
Enabled bool `json:"enabled"`
|
|
|
|
}
|
|
|
|
|
|
|
|
// HTTP logger target
|
|
|
|
type HTTP struct {
|
2019-10-22 22:59:13 -07:00
|
|
|
Enabled bool `json:"enabled"`
|
|
|
|
Endpoint string `json:"endpoint"`
|
|
|
|
AuthToken string `json:"authToken"`
|
2019-10-07 22:47:56 -07:00
|
|
|
}
|
|
|
|
|
|
|
|
// Config console and http logger targets
|
|
|
|
type Config struct {
|
|
|
|
Console Console `json:"console"`
|
|
|
|
HTTP map[string]HTTP `json:"http"`
|
|
|
|
Audit map[string]HTTP `json:"audit"`
|
|
|
|
}
|
|
|
|
|
|
|
|
// HTTP endpoint logger
|
|
|
|
const (
|
2019-10-22 22:59:13 -07:00
|
|
|
Endpoint = "endpoint"
|
|
|
|
AuthToken = "auth_token"
|
|
|
|
|
2019-11-13 17:38:05 -08:00
|
|
|
EnvLoggerWebhookEndpoint = "MINIO_LOGGER_WEBHOOK_ENDPOINT"
|
|
|
|
EnvLoggerWebhookAuthToken = "MINIO_LOGGER_WEBHOOK_AUTH_TOKEN"
|
2019-10-22 22:59:13 -07:00
|
|
|
|
2019-11-13 17:38:05 -08:00
|
|
|
EnvAuditWebhookEndpoint = "MINIO_AUDIT_WEBHOOK_ENDPOINT"
|
|
|
|
EnvAuditWebhookAuthToken = "MINIO_AUDIT_WEBHOOK_AUTH_TOKEN"
|
2019-10-07 22:47:56 -07:00
|
|
|
)
|
|
|
|
|
2019-10-22 22:59:13 -07:00
|
|
|
// Default KVS for loggerHTTP and loggerAuditHTTP
|
|
|
|
var (
|
|
|
|
DefaultKVS = config.KVS{
|
|
|
|
config.State: config.StateOff,
|
|
|
|
config.Comment: "This is a default HTTP logging configuration",
|
|
|
|
Endpoint: "",
|
|
|
|
AuthToken: "",
|
|
|
|
}
|
|
|
|
DefaultAuditKVS = config.KVS{
|
|
|
|
config.State: config.StateOff,
|
|
|
|
config.Comment: "This is a default HTTP Audit logging configuration",
|
|
|
|
Endpoint: "",
|
|
|
|
AuthToken: "",
|
|
|
|
}
|
2019-10-07 22:47:56 -07:00
|
|
|
)
|
|
|
|
|
2019-10-08 23:11:15 -07:00
|
|
|
// NewConfig - initialize new logger config.
|
|
|
|
func NewConfig() Config {
|
|
|
|
cfg := Config{
|
|
|
|
// Console logging is on by default
|
|
|
|
Console: Console{
|
|
|
|
Enabled: true,
|
|
|
|
},
|
|
|
|
HTTP: make(map[string]HTTP),
|
|
|
|
Audit: make(map[string]HTTP),
|
|
|
|
}
|
|
|
|
|
|
|
|
// Create an example HTTP logger
|
2019-10-22 22:59:13 -07:00
|
|
|
cfg.HTTP[config.Default] = HTTP{
|
2019-10-08 23:11:15 -07:00
|
|
|
Endpoint: "https://username:password@example.com/api",
|
|
|
|
}
|
|
|
|
|
|
|
|
// Create an example Audit logger
|
2019-10-22 22:59:13 -07:00
|
|
|
cfg.Audit[config.Default] = HTTP{
|
2019-10-08 23:11:15 -07:00
|
|
|
Endpoint: "https://username:password@example.com/api/audit",
|
|
|
|
}
|
|
|
|
|
|
|
|
return cfg
|
|
|
|
}
|
|
|
|
|
2019-10-07 22:47:56 -07:00
|
|
|
// LookupConfig - lookup logger config, override with ENVs if set.
|
2019-10-22 22:59:13 -07:00
|
|
|
func LookupConfig(scfg config.Config) (Config, error) {
|
|
|
|
cfg := NewConfig()
|
|
|
|
|
2019-11-13 17:38:05 -08:00
|
|
|
envs := env.List(EnvLoggerWebhookEndpoint)
|
2019-10-22 22:59:13 -07:00
|
|
|
var loggerTargets []string
|
2019-10-11 18:21:04 -07:00
|
|
|
for _, k := range envs {
|
2019-11-13 17:38:05 -08:00
|
|
|
target := strings.TrimPrefix(k, EnvLoggerWebhookEndpoint+config.Default)
|
|
|
|
if target == EnvLoggerWebhookEndpoint {
|
2019-10-22 22:59:13 -07:00
|
|
|
target = config.Default
|
2019-10-07 22:47:56 -07:00
|
|
|
}
|
2019-10-22 22:59:13 -07:00
|
|
|
loggerTargets = append(loggerTargets, target)
|
|
|
|
}
|
|
|
|
|
|
|
|
var loggerAuditTargets []string
|
2019-11-13 17:38:05 -08:00
|
|
|
envs = env.List(EnvAuditWebhookEndpoint)
|
2019-10-22 22:59:13 -07:00
|
|
|
for _, k := range envs {
|
2019-11-13 17:38:05 -08:00
|
|
|
target := strings.TrimPrefix(k, EnvAuditWebhookEndpoint+config.Default)
|
|
|
|
if target == EnvAuditWebhookEndpoint {
|
2019-10-22 22:59:13 -07:00
|
|
|
target = config.Default
|
2019-10-07 22:47:56 -07:00
|
|
|
}
|
2019-10-22 22:59:13 -07:00
|
|
|
loggerAuditTargets = append(loggerAuditTargets, target)
|
2019-10-07 22:47:56 -07:00
|
|
|
}
|
2019-10-22 22:59:13 -07:00
|
|
|
|
|
|
|
// List legacy ENVs if any.
|
|
|
|
envs = env.List(EnvAuditLoggerHTTPEndpoint)
|
|
|
|
for _, k := range envs {
|
|
|
|
target := strings.TrimPrefix(k, EnvAuditLoggerHTTPEndpoint+config.Default)
|
2019-10-11 18:21:04 -07:00
|
|
|
if target == EnvAuditLoggerHTTPEndpoint {
|
2019-10-22 22:59:13 -07:00
|
|
|
target = config.Default
|
|
|
|
}
|
|
|
|
loggerAuditTargets = append(loggerAuditTargets, target)
|
|
|
|
}
|
|
|
|
|
2019-11-13 17:38:05 -08:00
|
|
|
for starget, kv := range scfg[config.LoggerWebhookSubSys] {
|
|
|
|
subSysTarget := config.LoggerWebhookSubSys
|
2019-10-22 22:59:13 -07:00
|
|
|
if starget != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
subSysTarget = config.LoggerWebhookSubSys + config.SubSystemSeparator + starget
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
|
|
|
if err := config.CheckValidKeys(subSysTarget, kv, DefaultKVS); err != nil {
|
|
|
|
return cfg, err
|
|
|
|
}
|
|
|
|
|
|
|
|
enabled, err := config.ParseBool(kv.Get(config.State))
|
|
|
|
if err != nil {
|
|
|
|
return cfg, err
|
2019-10-07 22:47:56 -07:00
|
|
|
}
|
2019-10-22 22:59:13 -07:00
|
|
|
if !enabled {
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv := EnvLoggerWebhookEndpoint
|
2019-10-22 22:59:13 -07:00
|
|
|
if starget != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv = EnvLoggerWebhookEndpoint + config.Default + starget
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv := EnvLoggerWebhookAuthToken
|
2019-10-22 22:59:13 -07:00
|
|
|
if starget != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv = EnvLoggerWebhookAuthToken + config.Default + starget
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
|
|
|
cfg.HTTP[starget] = HTTP{
|
|
|
|
Enabled: true,
|
|
|
|
Endpoint: env.Get(endpointEnv, kv.Get(Endpoint)),
|
|
|
|
AuthToken: env.Get(authTokenEnv, kv.Get(AuthToken)),
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2019-11-13 17:38:05 -08:00
|
|
|
for starget, kv := range scfg[config.AuditWebhookSubSys] {
|
|
|
|
subSysTarget := config.AuditWebhookSubSys
|
2019-10-22 22:59:13 -07:00
|
|
|
if starget != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
subSysTarget = config.AuditWebhookSubSys + config.SubSystemSeparator + starget
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
|
|
|
if err := config.CheckValidKeys(subSysTarget, kv, DefaultAuditKVS); err != nil {
|
|
|
|
return cfg, err
|
|
|
|
}
|
|
|
|
|
|
|
|
enabled, err := config.ParseBool(kv.Get(config.State))
|
|
|
|
if err != nil {
|
|
|
|
return cfg, err
|
|
|
|
}
|
|
|
|
if !enabled {
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv := EnvAuditWebhookEndpoint
|
2019-10-22 22:59:13 -07:00
|
|
|
if starget != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv = EnvAuditWebhookEndpoint + config.Default + starget
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
|
|
|
legacyEndpointEnv := EnvAuditLoggerHTTPEndpoint
|
|
|
|
if starget != config.Default {
|
|
|
|
legacyEndpointEnv = EnvAuditLoggerHTTPEndpoint + config.Default + starget
|
|
|
|
}
|
|
|
|
endpoint := env.Get(legacyEndpointEnv, "")
|
|
|
|
if endpoint == "" {
|
|
|
|
endpoint = env.Get(endpointEnv, kv.Get(Endpoint))
|
|
|
|
}
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv := EnvAuditWebhookAuthToken
|
2019-10-22 22:59:13 -07:00
|
|
|
if starget != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv = EnvAuditWebhookAuthToken + config.Default + starget
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
2019-11-11 18:42:10 -08:00
|
|
|
cfg.Audit[starget] = HTTP{
|
2019-10-22 22:59:13 -07:00
|
|
|
Enabled: true,
|
|
|
|
Endpoint: endpoint,
|
|
|
|
AuthToken: env.Get(authTokenEnv, kv.Get(AuthToken)),
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
for _, target := range loggerTargets {
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv := EnvLoggerWebhookEndpoint
|
2019-10-22 22:59:13 -07:00
|
|
|
if target != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv = EnvLoggerWebhookEndpoint + config.Default + target
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv := EnvLoggerWebhookAuthToken
|
2019-10-22 22:59:13 -07:00
|
|
|
if target != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv = EnvLoggerWebhookAuthToken + config.Default + target
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
|
|
|
cfg.HTTP[target] = HTTP{
|
|
|
|
Enabled: true,
|
|
|
|
Endpoint: env.Get(endpointEnv, ""),
|
|
|
|
AuthToken: env.Get(authTokenEnv, ""),
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
for _, target := range loggerAuditTargets {
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv := EnvLoggerWebhookEndpoint
|
2019-10-22 22:59:13 -07:00
|
|
|
if target != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
endpointEnv = EnvLoggerWebhookEndpoint + config.Default + target
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
|
|
|
legacyEndpointEnv := EnvAuditLoggerHTTPEndpoint
|
|
|
|
if target != config.Default {
|
|
|
|
legacyEndpointEnv = EnvAuditLoggerHTTPEndpoint + config.Default + target
|
|
|
|
}
|
|
|
|
endpoint := env.Get(legacyEndpointEnv, "")
|
|
|
|
if endpoint == "" {
|
|
|
|
endpoint = env.Get(endpointEnv, "")
|
|
|
|
}
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv := EnvLoggerWebhookAuthToken
|
2019-10-22 22:59:13 -07:00
|
|
|
if target != config.Default {
|
2019-11-13 17:38:05 -08:00
|
|
|
authTokenEnv = EnvLoggerWebhookAuthToken + config.Default + target
|
2019-10-22 22:59:13 -07:00
|
|
|
}
|
2019-11-11 12:01:21 -08:00
|
|
|
cfg.Audit[target] = HTTP{
|
2019-10-22 22:59:13 -07:00
|
|
|
Enabled: true,
|
|
|
|
Endpoint: endpoint,
|
|
|
|
AuthToken: env.Get(authTokenEnv, ""),
|
2019-10-07 22:47:56 -07:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
return cfg, nil
|
|
|
|
}
|