mysql.go 33 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780
  1. // Copyright (C) 2019-2022 Nicola Murino
  2. //
  3. // This program is free software: you can redistribute it and/or modify
  4. // it under the terms of the GNU Affero General Public License as published
  5. // by the Free Software Foundation, version 3.
  6. //
  7. // This program is distributed in the hope that it will be useful,
  8. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  9. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  10. // GNU Affero General Public License for more details.
  11. //
  12. // You should have received a copy of the GNU Affero General Public License
  13. // along with this program. If not, see <https://www.gnu.org/licenses/>.
  14. //go:build !nomysql
  15. // +build !nomysql
  16. package dataprovider
  17. import (
  18. "context"
  19. "crypto/tls"
  20. "crypto/x509"
  21. "database/sql"
  22. "errors"
  23. "fmt"
  24. "os"
  25. "path/filepath"
  26. "strings"
  27. "time"
  28. "github.com/go-sql-driver/mysql"
  29. "github.com/drakkan/sftpgo/v2/internal/logger"
  30. "github.com/drakkan/sftpgo/v2/internal/version"
  31. "github.com/drakkan/sftpgo/v2/internal/vfs"
  32. )
  33. const (
  34. mysqlResetSQL = "DROP TABLE IF EXISTS `{{api_keys}}` CASCADE;" +
  35. "DROP TABLE IF EXISTS `{{folders_mapping}}` CASCADE;" +
  36. "DROP TABLE IF EXISTS `{{users_folders_mapping}}` CASCADE;" +
  37. "DROP TABLE IF EXISTS `{{users_groups_mapping}}` CASCADE;" +
  38. "DROP TABLE IF EXISTS `{{groups_folders_mapping}}` CASCADE;" +
  39. "DROP TABLE IF EXISTS `{{admins}}` CASCADE;" +
  40. "DROP TABLE IF EXISTS `{{folders}}` CASCADE;" +
  41. "DROP TABLE IF EXISTS `{{shares}}` CASCADE;" +
  42. "DROP TABLE IF EXISTS `{{users}}` CASCADE;" +
  43. "DROP TABLE IF EXISTS `{{groups}}` CASCADE;" +
  44. "DROP TABLE IF EXISTS `{{defender_events}}` CASCADE;" +
  45. "DROP TABLE IF EXISTS `{{defender_hosts}}` CASCADE;" +
  46. "DROP TABLE IF EXISTS `{{active_transfers}}` CASCADE;" +
  47. "DROP TABLE IF EXISTS `{{shared_sessions}}` CASCADE;" +
  48. "DROP TABLE IF EXISTS `{{rules_actions_mapping}}` CASCADE;" +
  49. "DROP TABLE IF EXISTS `{{events_actions}}` CASCADE;" +
  50. "DROP TABLE IF EXISTS `{{events_rules}}` CASCADE;" +
  51. "DROP TABLE IF EXISTS `{{tasks}}` CASCADE;" +
  52. "DROP TABLE IF EXISTS `{{schema_version}}` CASCADE;"
  53. mysqlInitialSQL = "CREATE TABLE `{{schema_version}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, `version` integer NOT NULL);" +
  54. "CREATE TABLE `{{admins}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, `username` varchar(255) NOT NULL UNIQUE, " +
  55. "`description` varchar(512) NULL, `password` varchar(255) NOT NULL, `email` varchar(255) NULL, `status` integer NOT NULL, " +
  56. "`permissions` longtext NOT NULL, `filters` longtext NULL, `additional_info` longtext NULL, `last_login` bigint NOT NULL, " +
  57. "`created_at` bigint NOT NULL, `updated_at` bigint NOT NULL);" +
  58. "CREATE TABLE `{{active_transfers}}` (`id` bigint AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  59. "`connection_id` varchar(100) NOT NULL, `transfer_id` bigint NOT NULL, `transfer_type` integer NOT NULL, " +
  60. "`username` varchar(255) NOT NULL, `folder_name` varchar(255) NULL, `ip` varchar(50) NOT NULL, " +
  61. "`truncated_size` bigint NOT NULL, `current_ul_size` bigint NOT NULL, `current_dl_size` bigint NOT NULL, " +
  62. "`created_at` bigint NOT NULL, `updated_at` bigint NOT NULL);" +
  63. "CREATE TABLE `{{defender_hosts}}` (`id` bigint AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  64. "`ip` varchar(50) NOT NULL UNIQUE, `ban_time` bigint NOT NULL, `updated_at` bigint NOT NULL);" +
  65. "CREATE TABLE `{{defender_events}}` (`id` bigint AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  66. "`date_time` bigint NOT NULL, `score` integer NOT NULL, `host_id` bigint NOT NULL);" +
  67. "ALTER TABLE `{{defender_events}}` ADD CONSTRAINT `{{prefix}}defender_events_host_id_fk_defender_hosts_id` " +
  68. "FOREIGN KEY (`host_id`) REFERENCES `{{defender_hosts}}` (`id`) ON DELETE CASCADE;" +
  69. "CREATE TABLE `{{folders}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, `name` varchar(255) NOT NULL UNIQUE, " +
  70. "`description` varchar(512) NULL, `path` longtext NULL, `used_quota_size` bigint NOT NULL, " +
  71. "`used_quota_files` integer NOT NULL, `last_quota_update` bigint NOT NULL, `filesystem` longtext NULL);" +
  72. "CREATE TABLE `{{groups}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  73. "`name` varchar(255) NOT NULL UNIQUE, `description` varchar(512) NULL, `created_at` bigint NOT NULL, " +
  74. "`updated_at` bigint NOT NULL, `user_settings` longtext NULL);" +
  75. "CREATE TABLE `{{shared_sessions}}` (`key` varchar(128) NOT NULL PRIMARY KEY, " +
  76. "`data` longtext NOT NULL, `type` integer NOT NULL, `timestamp` bigint NOT NULL);" +
  77. "CREATE TABLE `{{users}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, `username` varchar(255) NOT NULL UNIQUE, " +
  78. "`status` integer NOT NULL, `expiration_date` bigint NOT NULL, `description` varchar(512) NULL, `password` longtext NULL, " +
  79. "`public_keys` longtext NULL, `home_dir` longtext NOT NULL, `uid` bigint NOT NULL, `gid` bigint NOT NULL, " +
  80. "`max_sessions` integer NOT NULL, `quota_size` bigint NOT NULL, `quota_files` integer NOT NULL, " +
  81. "`permissions` longtext NOT NULL, `used_quota_size` bigint NOT NULL, `used_quota_files` integer NOT NULL, " +
  82. "`last_quota_update` bigint NOT NULL, `upload_bandwidth` integer NOT NULL, `download_bandwidth` integer NOT NULL, " +
  83. "`last_login` bigint NOT NULL, `filters` longtext NULL, `filesystem` longtext NULL, `additional_info` longtext NULL, " +
  84. "`created_at` bigint NOT NULL, `updated_at` bigint NOT NULL, `email` varchar(255) NULL, " +
  85. "`upload_data_transfer` integer NOT NULL, `download_data_transfer` integer NOT NULL, " +
  86. "`total_data_transfer` integer NOT NULL, `used_upload_data_transfer` integer NOT NULL, " +
  87. "`used_download_data_transfer` integer NOT NULL);" +
  88. "CREATE TABLE `{{groups_folders_mapping}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  89. "`group_id` integer NOT NULL, `folder_id` integer NOT NULL, " +
  90. "`virtual_path` longtext NOT NULL, `quota_size` bigint NOT NULL, `quota_files` integer NOT NULL);" +
  91. "CREATE TABLE `{{users_groups_mapping}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  92. "`user_id` integer NOT NULL, `group_id` integer NOT NULL, `group_type` integer NOT NULL);" +
  93. "CREATE TABLE `{{users_folders_mapping}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, `virtual_path` longtext NOT NULL, " +
  94. "`quota_size` bigint NOT NULL, `quota_files` integer NOT NULL, `folder_id` integer NOT NULL, `user_id` integer NOT NULL);" +
  95. "ALTER TABLE `{{users_folders_mapping}}` ADD CONSTRAINT `{{prefix}}unique_user_folder_mapping` " +
  96. "UNIQUE (`user_id`, `folder_id`);" +
  97. "ALTER TABLE `{{users_folders_mapping}}` ADD CONSTRAINT `{{prefix}}users_folders_mapping_user_id_fk_users_id` " +
  98. "FOREIGN KEY (`user_id`) REFERENCES `{{users}}` (`id`) ON DELETE CASCADE;" +
  99. "ALTER TABLE `{{users_folders_mapping}}` ADD CONSTRAINT `{{prefix}}users_folders_mapping_folder_id_fk_folders_id` " +
  100. "FOREIGN KEY (`folder_id`) REFERENCES `{{folders}}` (`id`) ON DELETE CASCADE;" +
  101. "ALTER TABLE `{{users_groups_mapping}}` ADD CONSTRAINT `{{prefix}}unique_user_group_mapping` UNIQUE (`user_id`, `group_id`);" +
  102. "ALTER TABLE `{{groups_folders_mapping}}` ADD CONSTRAINT `{{prefix}}unique_group_folder_mapping` UNIQUE (`group_id`, `folder_id`);" +
  103. "ALTER TABLE `{{users_groups_mapping}}` ADD CONSTRAINT `{{prefix}}users_groups_mapping_group_id_fk_groups_id` " +
  104. "FOREIGN KEY (`group_id`) REFERENCES `{{groups}}` (`id`) ON DELETE NO ACTION;" +
  105. "ALTER TABLE `{{users_groups_mapping}}` ADD CONSTRAINT `{{prefix}}users_groups_mapping_user_id_fk_users_id` " +
  106. "FOREIGN KEY (`user_id`) REFERENCES `{{users}}` (`id`) ON DELETE CASCADE;" +
  107. "ALTER TABLE `{{groups_folders_mapping}}` ADD CONSTRAINT `{{prefix}}groups_folders_mapping_folder_id_fk_folders_id` " +
  108. "FOREIGN KEY (`folder_id`) REFERENCES `{{folders}}` (`id`) ON DELETE CASCADE;" +
  109. "ALTER TABLE `{{groups_folders_mapping}}` ADD CONSTRAINT `{{prefix}}groups_folders_mapping_group_id_fk_groups_id` " +
  110. "FOREIGN KEY (`group_id`) REFERENCES `{{groups}}` (`id`) ON DELETE CASCADE;" +
  111. "CREATE TABLE `{{shares}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  112. "`share_id` varchar(60) NOT NULL UNIQUE, `name` varchar(255) NOT NULL, `description` varchar(512) NULL, " +
  113. "`scope` integer NOT NULL, `paths` longtext NOT NULL, `created_at` bigint NOT NULL, " +
  114. "`updated_at` bigint NOT NULL, `last_use_at` bigint NOT NULL, `expires_at` bigint NOT NULL, " +
  115. "`password` longtext NULL, `max_tokens` integer NOT NULL, `used_tokens` integer NOT NULL, " +
  116. "`allow_from` longtext NULL, `user_id` integer NOT NULL);" +
  117. "ALTER TABLE `{{shares}}` ADD CONSTRAINT `{{prefix}}shares_user_id_fk_users_id` " +
  118. "FOREIGN KEY (`user_id`) REFERENCES `{{users}}` (`id`) ON DELETE CASCADE;" +
  119. "CREATE TABLE `{{api_keys}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, `name` varchar(255) NOT NULL, `key_id` varchar(50) NOT NULL UNIQUE," +
  120. "`api_key` varchar(255) NOT NULL UNIQUE, `scope` integer NOT NULL, `created_at` bigint NOT NULL, `updated_at` bigint NOT NULL, `last_use_at` bigint NOT NULL, " +
  121. "`expires_at` bigint NOT NULL, `description` longtext NULL, `admin_id` integer NULL, `user_id` integer NULL);" +
  122. "ALTER TABLE `{{api_keys}}` ADD CONSTRAINT `{{prefix}}api_keys_admin_id_fk_admins_id` FOREIGN KEY (`admin_id`) REFERENCES `{{admins}}` (`id`) ON DELETE CASCADE;" +
  123. "ALTER TABLE `{{api_keys}}` ADD CONSTRAINT `{{prefix}}api_keys_user_id_fk_users_id` FOREIGN KEY (`user_id`) REFERENCES `{{users}}` (`id`) ON DELETE CASCADE;" +
  124. "CREATE INDEX `{{prefix}}users_updated_at_idx` ON `{{users}}` (`updated_at`);" +
  125. "CREATE INDEX `{{prefix}}defender_hosts_updated_at_idx` ON `{{defender_hosts}}` (`updated_at`);" +
  126. "CREATE INDEX `{{prefix}}defender_hosts_ban_time_idx` ON `{{defender_hosts}}` (`ban_time`);" +
  127. "CREATE INDEX `{{prefix}}defender_events_date_time_idx` ON `{{defender_events}}` (`date_time`);" +
  128. "CREATE INDEX `{{prefix}}active_transfers_connection_id_idx` ON `{{active_transfers}}` (`connection_id`);" +
  129. "CREATE INDEX `{{prefix}}active_transfers_transfer_id_idx` ON `{{active_transfers}}` (`transfer_id`);" +
  130. "CREATE INDEX `{{prefix}}active_transfers_updated_at_idx` ON `{{active_transfers}}` (`updated_at`);" +
  131. "CREATE INDEX `{{prefix}}groups_updated_at_idx` ON `{{groups}}` (`updated_at`);" +
  132. "CREATE INDEX `{{prefix}}shared_sessions_type_idx` ON `{{shared_sessions}}` (`type`);" +
  133. "CREATE INDEX `{{prefix}}shared_sessions_timestamp_idx` ON `{{shared_sessions}}` (`timestamp`);" +
  134. "INSERT INTO {{schema_version}} (version) VALUES (19);"
  135. mysqlV20SQL = "CREATE TABLE `{{events_rules}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  136. "`name` varchar(255) NOT NULL UNIQUE, `description` varchar(512) NULL, `created_at` bigint NOT NULL, " +
  137. "`updated_at` bigint NOT NULL, `trigger` integer NOT NULL, `conditions` longtext NOT NULL, `deleted_at` bigint NOT NULL);" +
  138. "CREATE TABLE `{{events_actions}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  139. "`name` varchar(255) NOT NULL UNIQUE, `description` varchar(512) NULL, `type` integer NOT NULL, " +
  140. "`options` longtext NOT NULL);" +
  141. "CREATE TABLE `{{rules_actions_mapping}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, " +
  142. "`rule_id` integer NOT NULL, `action_id` integer NOT NULL, `order` integer NOT NULL, `options` longtext NOT NULL);" +
  143. "CREATE TABLE `{{tasks}}` (`id` integer AUTO_INCREMENT NOT NULL PRIMARY KEY, `name` varchar(255) NOT NULL UNIQUE, " +
  144. "`updated_at` bigint NOT NULL, `version` bigint NOT NULL);" +
  145. "ALTER TABLE `{{rules_actions_mapping}}` ADD CONSTRAINT `{{prefix}}unique_rule_action_mapping` UNIQUE (`rule_id`, `action_id`);" +
  146. "ALTER TABLE `{{rules_actions_mapping}}` ADD CONSTRAINT `{{prefix}}rules_actions_mapping_rule_id_fk_events_rules_id` " +
  147. "FOREIGN KEY (`rule_id`) REFERENCES `{{events_rules}}` (`id`) ON DELETE CASCADE;" +
  148. "ALTER TABLE `{{rules_actions_mapping}}` ADD CONSTRAINT `{{prefix}}rules_actions_mapping_action_id_fk_events_targets_id` " +
  149. "FOREIGN KEY (`action_id`) REFERENCES `{{events_actions}}` (`id`) ON DELETE NO ACTION;" +
  150. "ALTER TABLE `{{users}}` ADD COLUMN `deleted_at` bigint DEFAULT 0 NOT NULL;" +
  151. "ALTER TABLE `{{users}}` ALTER COLUMN `deleted_at` DROP DEFAULT;" +
  152. "CREATE INDEX `{{prefix}}events_rules_updated_at_idx` ON `{{events_rules}}` (`updated_at`);" +
  153. "CREATE INDEX `{{prefix}}events_rules_deleted_at_idx` ON `{{events_rules}}` (`deleted_at`);" +
  154. "CREATE INDEX `{{prefix}}events_rules_trigger_idx` ON `{{events_rules}}` (`trigger`);" +
  155. "CREATE INDEX `{{prefix}}rules_actions_mapping_order_idx` ON `{{rules_actions_mapping}}` (`order`);" +
  156. "CREATE INDEX `{{prefix}}users_deleted_at_idx` ON `{{users}}` (`deleted_at`);"
  157. mysqlV20DownSQL = "DROP TABLE `{{rules_actions_mapping}}` CASCADE;" +
  158. "DROP TABLE `{{events_rules}}` CASCADE;" +
  159. "DROP TABLE `{{events_actions}}` CASCADE;" +
  160. "DROP TABLE `{{tasks}}` CASCADE;" +
  161. "ALTER TABLE `{{users}}` DROP COLUMN `deleted_at`;"
  162. mysqlV21SQL = "ALTER TABLE `{{users}}` ADD COLUMN `first_download` bigint DEFAULT 0 NOT NULL; " +
  163. "ALTER TABLE `{{users}}` ALTER COLUMN `first_download` DROP DEFAULT; " +
  164. "ALTER TABLE `{{users}}` ADD COLUMN `first_upload` bigint DEFAULT 0 NOT NULL; " +
  165. "ALTER TABLE `{{users}}` ALTER COLUMN `first_upload` DROP DEFAULT;"
  166. mysqlV21DownSQL = "ALTER TABLE `{{users}}` DROP COLUMN `first_upload`; " +
  167. "ALTER TABLE `{{users}}` DROP COLUMN `first_download`;"
  168. )
  169. // MySQLProvider defines the auth provider for MySQL/MariaDB database
  170. type MySQLProvider struct {
  171. dbHandle *sql.DB
  172. }
  173. func init() {
  174. version.AddFeature("+mysql")
  175. }
  176. func initializeMySQLProvider() error {
  177. var err error
  178. connString, err := getMySQLConnectionString(false)
  179. if err != nil {
  180. return err
  181. }
  182. redactedConnString, err := getMySQLConnectionString(true)
  183. if err != nil {
  184. return err
  185. }
  186. dbHandle, err := sql.Open("mysql", connString)
  187. if err == nil {
  188. providerLog(logger.LevelDebug, "mysql database handle created, connection string: %#v, pool size: %v",
  189. redactedConnString, config.PoolSize)
  190. dbHandle.SetMaxOpenConns(config.PoolSize)
  191. if config.PoolSize > 0 {
  192. dbHandle.SetMaxIdleConns(config.PoolSize)
  193. } else {
  194. dbHandle.SetMaxIdleConns(2)
  195. }
  196. dbHandle.SetConnMaxLifetime(240 * time.Second)
  197. provider = &MySQLProvider{dbHandle: dbHandle}
  198. } else {
  199. providerLog(logger.LevelError, "error creating mysql database handler, connection string: %#v, error: %v",
  200. redactedConnString, err)
  201. }
  202. return err
  203. }
  204. func getMySQLConnectionString(redactedPwd bool) (string, error) {
  205. var connectionString string
  206. if config.ConnectionString == "" {
  207. password := config.Password
  208. if redactedPwd && password != "" {
  209. password = "[redacted]"
  210. }
  211. sslMode := getSSLMode()
  212. if sslMode == "custom" && !redactedPwd {
  213. if err := registerMySQLCustomTLSConfig(); err != nil {
  214. return "", err
  215. }
  216. }
  217. connectionString = fmt.Sprintf("%v:%v@tcp([%v]:%v)/%v?charset=utf8mb4&interpolateParams=true&timeout=10s&parseTime=true&tls=%v&writeTimeout=60s&readTimeout=60s",
  218. config.Username, password, config.Host, config.Port, config.Name, sslMode)
  219. } else {
  220. connectionString = config.ConnectionString
  221. }
  222. return connectionString, nil
  223. }
  224. func registerMySQLCustomTLSConfig() error {
  225. tlsConfig := &tls.Config{}
  226. if config.RootCert != "" {
  227. rootCAs, err := x509.SystemCertPool()
  228. if err != nil {
  229. rootCAs = x509.NewCertPool()
  230. }
  231. rootCrt, err := os.ReadFile(config.RootCert)
  232. if err != nil {
  233. return fmt.Errorf("unable to load root certificate %#v: %v", config.RootCert, err)
  234. }
  235. if !rootCAs.AppendCertsFromPEM(rootCrt) {
  236. return fmt.Errorf("unable to parse root certificate %#v", config.RootCert)
  237. }
  238. tlsConfig.RootCAs = rootCAs
  239. }
  240. if config.ClientCert != "" && config.ClientKey != "" {
  241. clientCert := make([]tls.Certificate, 0, 1)
  242. tlsCert, err := tls.LoadX509KeyPair(config.ClientCert, config.ClientKey)
  243. if err != nil {
  244. return fmt.Errorf("unable to load key pair %#v, %#v: %v", config.ClientCert, config.ClientKey, err)
  245. }
  246. clientCert = append(clientCert, tlsCert)
  247. tlsConfig.Certificates = clientCert
  248. }
  249. if config.SSLMode == 2 || config.SSLMode == 3 {
  250. tlsConfig.InsecureSkipVerify = true
  251. }
  252. if !filepath.IsAbs(config.Host) && !config.DisableSNI {
  253. tlsConfig.ServerName = config.Host
  254. }
  255. providerLog(logger.LevelInfo, "registering custom TLS config, root cert %#v, client cert %#v, client key %#v, disable SNI? %v",
  256. config.RootCert, config.ClientCert, config.ClientKey, config.DisableSNI)
  257. if err := mysql.RegisterTLSConfig("custom", tlsConfig); err != nil {
  258. return fmt.Errorf("unable to register tls config: %v", err)
  259. }
  260. return nil
  261. }
  262. func (p *MySQLProvider) checkAvailability() error {
  263. return sqlCommonCheckAvailability(p.dbHandle)
  264. }
  265. func (p *MySQLProvider) validateUserAndPass(username, password, ip, protocol string) (User, error) {
  266. return sqlCommonValidateUserAndPass(username, password, ip, protocol, p.dbHandle)
  267. }
  268. func (p *MySQLProvider) validateUserAndTLSCert(username, protocol string, tlsCert *x509.Certificate) (User, error) {
  269. return sqlCommonValidateUserAndTLSCertificate(username, protocol, tlsCert, p.dbHandle)
  270. }
  271. func (p *MySQLProvider) validateUserAndPubKey(username string, publicKey []byte, isSSHCert bool) (User, string, error) {
  272. return sqlCommonValidateUserAndPubKey(username, publicKey, isSSHCert, p.dbHandle)
  273. }
  274. func (p *MySQLProvider) updateTransferQuota(username string, uploadSize, downloadSize int64, reset bool) error {
  275. return sqlCommonUpdateTransferQuota(username, uploadSize, downloadSize, reset, p.dbHandle)
  276. }
  277. func (p *MySQLProvider) updateQuota(username string, filesAdd int, sizeAdd int64, reset bool) error {
  278. return sqlCommonUpdateQuota(username, filesAdd, sizeAdd, reset, p.dbHandle)
  279. }
  280. func (p *MySQLProvider) getUsedQuota(username string) (int, int64, int64, int64, error) {
  281. return sqlCommonGetUsedQuota(username, p.dbHandle)
  282. }
  283. func (p *MySQLProvider) setUpdatedAt(username string) {
  284. sqlCommonSetUpdatedAt(username, p.dbHandle)
  285. }
  286. func (p *MySQLProvider) updateLastLogin(username string) error {
  287. return sqlCommonUpdateLastLogin(username, p.dbHandle)
  288. }
  289. func (p *MySQLProvider) updateAdminLastLogin(username string) error {
  290. return sqlCommonUpdateAdminLastLogin(username, p.dbHandle)
  291. }
  292. func (p *MySQLProvider) userExists(username string) (User, error) {
  293. return sqlCommonGetUserByUsername(username, p.dbHandle)
  294. }
  295. func (p *MySQLProvider) addUser(user *User) error {
  296. return sqlCommonAddUser(user, p.dbHandle)
  297. }
  298. func (p *MySQLProvider) updateUser(user *User) error {
  299. return sqlCommonUpdateUser(user, p.dbHandle)
  300. }
  301. func (p *MySQLProvider) deleteUser(user User, softDelete bool) error {
  302. return sqlCommonDeleteUser(user, softDelete, p.dbHandle)
  303. }
  304. func (p *MySQLProvider) updateUserPassword(username, password string) error {
  305. return sqlCommonUpdateUserPassword(username, password, p.dbHandle)
  306. }
  307. func (p *MySQLProvider) dumpUsers() ([]User, error) {
  308. return sqlCommonDumpUsers(p.dbHandle)
  309. }
  310. func (p *MySQLProvider) getRecentlyUpdatedUsers(after int64) ([]User, error) {
  311. return sqlCommonGetRecentlyUpdatedUsers(after, p.dbHandle)
  312. }
  313. func (p *MySQLProvider) getUsers(limit int, offset int, order string) ([]User, error) {
  314. return sqlCommonGetUsers(limit, offset, order, p.dbHandle)
  315. }
  316. func (p *MySQLProvider) getUsersForQuotaCheck(toFetch map[string]bool) ([]User, error) {
  317. return sqlCommonGetUsersForQuotaCheck(toFetch, p.dbHandle)
  318. }
  319. func (p *MySQLProvider) dumpFolders() ([]vfs.BaseVirtualFolder, error) {
  320. return sqlCommonDumpFolders(p.dbHandle)
  321. }
  322. func (p *MySQLProvider) getFolders(limit, offset int, order string, minimal bool) ([]vfs.BaseVirtualFolder, error) {
  323. return sqlCommonGetFolders(limit, offset, order, minimal, p.dbHandle)
  324. }
  325. func (p *MySQLProvider) getFolderByName(name string) (vfs.BaseVirtualFolder, error) {
  326. ctx, cancel := context.WithTimeout(context.Background(), defaultSQLQueryTimeout)
  327. defer cancel()
  328. return sqlCommonGetFolderByName(ctx, name, p.dbHandle)
  329. }
  330. func (p *MySQLProvider) addFolder(folder *vfs.BaseVirtualFolder) error {
  331. return sqlCommonAddFolder(folder, p.dbHandle)
  332. }
  333. func (p *MySQLProvider) updateFolder(folder *vfs.BaseVirtualFolder) error {
  334. return sqlCommonUpdateFolder(folder, p.dbHandle)
  335. }
  336. func (p *MySQLProvider) deleteFolder(folder vfs.BaseVirtualFolder) error {
  337. return sqlCommonDeleteFolder(folder, p.dbHandle)
  338. }
  339. func (p *MySQLProvider) updateFolderQuota(name string, filesAdd int, sizeAdd int64, reset bool) error {
  340. return sqlCommonUpdateFolderQuota(name, filesAdd, sizeAdd, reset, p.dbHandle)
  341. }
  342. func (p *MySQLProvider) getUsedFolderQuota(name string) (int, int64, error) {
  343. return sqlCommonGetFolderUsedQuota(name, p.dbHandle)
  344. }
  345. func (p *MySQLProvider) getGroups(limit, offset int, order string, minimal bool) ([]Group, error) {
  346. return sqlCommonGetGroups(limit, offset, order, minimal, p.dbHandle)
  347. }
  348. func (p *MySQLProvider) getGroupsWithNames(names []string) ([]Group, error) {
  349. return sqlCommonGetGroupsWithNames(names, p.dbHandle)
  350. }
  351. func (p *MySQLProvider) getUsersInGroups(names []string) ([]string, error) {
  352. return sqlCommonGetUsersInGroups(names, p.dbHandle)
  353. }
  354. func (p *MySQLProvider) groupExists(name string) (Group, error) {
  355. return sqlCommonGetGroupByName(name, p.dbHandle)
  356. }
  357. func (p *MySQLProvider) addGroup(group *Group) error {
  358. return sqlCommonAddGroup(group, p.dbHandle)
  359. }
  360. func (p *MySQLProvider) updateGroup(group *Group) error {
  361. return sqlCommonUpdateGroup(group, p.dbHandle)
  362. }
  363. func (p *MySQLProvider) deleteGroup(group Group) error {
  364. return sqlCommonDeleteGroup(group, p.dbHandle)
  365. }
  366. func (p *MySQLProvider) dumpGroups() ([]Group, error) {
  367. return sqlCommonDumpGroups(p.dbHandle)
  368. }
  369. func (p *MySQLProvider) adminExists(username string) (Admin, error) {
  370. return sqlCommonGetAdminByUsername(username, p.dbHandle)
  371. }
  372. func (p *MySQLProvider) addAdmin(admin *Admin) error {
  373. return sqlCommonAddAdmin(admin, p.dbHandle)
  374. }
  375. func (p *MySQLProvider) updateAdmin(admin *Admin) error {
  376. return sqlCommonUpdateAdmin(admin, p.dbHandle)
  377. }
  378. func (p *MySQLProvider) deleteAdmin(admin Admin) error {
  379. return sqlCommonDeleteAdmin(admin, p.dbHandle)
  380. }
  381. func (p *MySQLProvider) getAdmins(limit int, offset int, order string) ([]Admin, error) {
  382. return sqlCommonGetAdmins(limit, offset, order, p.dbHandle)
  383. }
  384. func (p *MySQLProvider) dumpAdmins() ([]Admin, error) {
  385. return sqlCommonDumpAdmins(p.dbHandle)
  386. }
  387. func (p *MySQLProvider) validateAdminAndPass(username, password, ip string) (Admin, error) {
  388. return sqlCommonValidateAdminAndPass(username, password, ip, p.dbHandle)
  389. }
  390. func (p *MySQLProvider) apiKeyExists(keyID string) (APIKey, error) {
  391. return sqlCommonGetAPIKeyByID(keyID, p.dbHandle)
  392. }
  393. func (p *MySQLProvider) addAPIKey(apiKey *APIKey) error {
  394. return sqlCommonAddAPIKey(apiKey, p.dbHandle)
  395. }
  396. func (p *MySQLProvider) updateAPIKey(apiKey *APIKey) error {
  397. return sqlCommonUpdateAPIKey(apiKey, p.dbHandle)
  398. }
  399. func (p *MySQLProvider) deleteAPIKey(apiKey APIKey) error {
  400. return sqlCommonDeleteAPIKey(apiKey, p.dbHandle)
  401. }
  402. func (p *MySQLProvider) getAPIKeys(limit int, offset int, order string) ([]APIKey, error) {
  403. return sqlCommonGetAPIKeys(limit, offset, order, p.dbHandle)
  404. }
  405. func (p *MySQLProvider) dumpAPIKeys() ([]APIKey, error) {
  406. return sqlCommonDumpAPIKeys(p.dbHandle)
  407. }
  408. func (p *MySQLProvider) updateAPIKeyLastUse(keyID string) error {
  409. return sqlCommonUpdateAPIKeyLastUse(keyID, p.dbHandle)
  410. }
  411. func (p *MySQLProvider) shareExists(shareID, username string) (Share, error) {
  412. return sqlCommonGetShareByID(shareID, username, p.dbHandle)
  413. }
  414. func (p *MySQLProvider) addShare(share *Share) error {
  415. return sqlCommonAddShare(share, p.dbHandle)
  416. }
  417. func (p *MySQLProvider) updateShare(share *Share) error {
  418. return sqlCommonUpdateShare(share, p.dbHandle)
  419. }
  420. func (p *MySQLProvider) deleteShare(share Share) error {
  421. return sqlCommonDeleteShare(share, p.dbHandle)
  422. }
  423. func (p *MySQLProvider) getShares(limit int, offset int, order, username string) ([]Share, error) {
  424. return sqlCommonGetShares(limit, offset, order, username, p.dbHandle)
  425. }
  426. func (p *MySQLProvider) dumpShares() ([]Share, error) {
  427. return sqlCommonDumpShares(p.dbHandle)
  428. }
  429. func (p *MySQLProvider) updateShareLastUse(shareID string, numTokens int) error {
  430. return sqlCommonUpdateShareLastUse(shareID, numTokens, p.dbHandle)
  431. }
  432. func (p *MySQLProvider) getDefenderHosts(from int64, limit int) ([]DefenderEntry, error) {
  433. return sqlCommonGetDefenderHosts(from, limit, p.dbHandle)
  434. }
  435. func (p *MySQLProvider) getDefenderHostByIP(ip string, from int64) (DefenderEntry, error) {
  436. return sqlCommonGetDefenderHostByIP(ip, from, p.dbHandle)
  437. }
  438. func (p *MySQLProvider) isDefenderHostBanned(ip string) (DefenderEntry, error) {
  439. return sqlCommonIsDefenderHostBanned(ip, p.dbHandle)
  440. }
  441. func (p *MySQLProvider) updateDefenderBanTime(ip string, minutes int) error {
  442. return sqlCommonDefenderIncrementBanTime(ip, minutes, p.dbHandle)
  443. }
  444. func (p *MySQLProvider) deleteDefenderHost(ip string) error {
  445. return sqlCommonDeleteDefenderHost(ip, p.dbHandle)
  446. }
  447. func (p *MySQLProvider) addDefenderEvent(ip string, score int) error {
  448. return sqlCommonAddDefenderHostAndEvent(ip, score, p.dbHandle)
  449. }
  450. func (p *MySQLProvider) setDefenderBanTime(ip string, banTime int64) error {
  451. return sqlCommonSetDefenderBanTime(ip, banTime, p.dbHandle)
  452. }
  453. func (p *MySQLProvider) cleanupDefender(from int64) error {
  454. return sqlCommonDefenderCleanup(from, p.dbHandle)
  455. }
  456. func (p *MySQLProvider) addActiveTransfer(transfer ActiveTransfer) error {
  457. return sqlCommonAddActiveTransfer(transfer, p.dbHandle)
  458. }
  459. func (p *MySQLProvider) updateActiveTransferSizes(ulSize, dlSize, transferID int64, connectionID string) error {
  460. return sqlCommonUpdateActiveTransferSizes(ulSize, dlSize, transferID, connectionID, p.dbHandle)
  461. }
  462. func (p *MySQLProvider) removeActiveTransfer(transferID int64, connectionID string) error {
  463. return sqlCommonRemoveActiveTransfer(transferID, connectionID, p.dbHandle)
  464. }
  465. func (p *MySQLProvider) cleanupActiveTransfers(before time.Time) error {
  466. return sqlCommonCleanupActiveTransfers(before, p.dbHandle)
  467. }
  468. func (p *MySQLProvider) getActiveTransfers(from time.Time) ([]ActiveTransfer, error) {
  469. return sqlCommonGetActiveTransfers(from, p.dbHandle)
  470. }
  471. func (p *MySQLProvider) addSharedSession(session Session) error {
  472. return sqlCommonAddSession(session, p.dbHandle)
  473. }
  474. func (p *MySQLProvider) deleteSharedSession(key string) error {
  475. return sqlCommonDeleteSession(key, p.dbHandle)
  476. }
  477. func (p *MySQLProvider) getSharedSession(key string) (Session, error) {
  478. return sqlCommonGetSession(key, p.dbHandle)
  479. }
  480. func (p *MySQLProvider) cleanupSharedSessions(sessionType SessionType, before int64) error {
  481. return sqlCommonCleanupSessions(sessionType, before, p.dbHandle)
  482. }
  483. func (p *MySQLProvider) getEventActions(limit, offset int, order string, minimal bool) ([]BaseEventAction, error) {
  484. return sqlCommonGetEventActions(limit, offset, order, minimal, p.dbHandle)
  485. }
  486. func (p *MySQLProvider) dumpEventActions() ([]BaseEventAction, error) {
  487. return sqlCommonDumpEventActions(p.dbHandle)
  488. }
  489. func (p *MySQLProvider) eventActionExists(name string) (BaseEventAction, error) {
  490. return sqlCommonGetEventActionByName(name, p.dbHandle)
  491. }
  492. func (p *MySQLProvider) addEventAction(action *BaseEventAction) error {
  493. return sqlCommonAddEventAction(action, p.dbHandle)
  494. }
  495. func (p *MySQLProvider) updateEventAction(action *BaseEventAction) error {
  496. return sqlCommonUpdateEventAction(action, p.dbHandle)
  497. }
  498. func (p *MySQLProvider) deleteEventAction(action BaseEventAction) error {
  499. return sqlCommonDeleteEventAction(action, p.dbHandle)
  500. }
  501. func (p *MySQLProvider) getEventRules(limit, offset int, order string) ([]EventRule, error) {
  502. return sqlCommonGetEventRules(limit, offset, order, p.dbHandle)
  503. }
  504. func (p *MySQLProvider) dumpEventRules() ([]EventRule, error) {
  505. return sqlCommonDumpEventRules(p.dbHandle)
  506. }
  507. func (p *MySQLProvider) getRecentlyUpdatedRules(after int64) ([]EventRule, error) {
  508. return sqlCommonGetRecentlyUpdatedRules(after, p.dbHandle)
  509. }
  510. func (p *MySQLProvider) eventRuleExists(name string) (EventRule, error) {
  511. return sqlCommonGetEventRuleByName(name, p.dbHandle)
  512. }
  513. func (p *MySQLProvider) addEventRule(rule *EventRule) error {
  514. return sqlCommonAddEventRule(rule, p.dbHandle)
  515. }
  516. func (p *MySQLProvider) updateEventRule(rule *EventRule) error {
  517. return sqlCommonUpdateEventRule(rule, p.dbHandle)
  518. }
  519. func (p *MySQLProvider) deleteEventRule(rule EventRule, softDelete bool) error {
  520. return sqlCommonDeleteEventRule(rule, softDelete, p.dbHandle)
  521. }
  522. func (p *MySQLProvider) getTaskByName(name string) (Task, error) {
  523. return sqlCommonGetTaskByName(name, p.dbHandle)
  524. }
  525. func (p *MySQLProvider) addTask(name string) error {
  526. return sqlCommonAddTask(name, p.dbHandle)
  527. }
  528. func (p *MySQLProvider) updateTask(name string, version int64) error {
  529. return sqlCommonUpdateTask(name, version, p.dbHandle)
  530. }
  531. func (p *MySQLProvider) updateTaskTimestamp(name string) error {
  532. return sqlCommonUpdateTaskTimestamp(name, p.dbHandle)
  533. }
  534. func (p *MySQLProvider) setFirstDownloadTimestamp(username string) error {
  535. return sqlCommonSetFirstDownloadTimestamp(username, p.dbHandle)
  536. }
  537. func (p *MySQLProvider) setFirstUploadTimestamp(username string) error {
  538. return sqlCommonSetFirstUploadTimestamp(username, p.dbHandle)
  539. }
  540. func (p *MySQLProvider) close() error {
  541. return p.dbHandle.Close()
  542. }
  543. func (p *MySQLProvider) reloadConfig() error {
  544. return nil
  545. }
  546. // initializeDatabase creates the initial database structure
  547. func (p *MySQLProvider) initializeDatabase() error {
  548. dbVersion, err := sqlCommonGetDatabaseVersion(p.dbHandle, false)
  549. if err == nil && dbVersion.Version > 0 {
  550. return ErrNoInitRequired
  551. }
  552. if errors.Is(err, sql.ErrNoRows) {
  553. return errSchemaVersionEmpty
  554. }
  555. logger.InfoToConsole("creating initial database schema, version 19")
  556. providerLog(logger.LevelInfo, "creating initial database schema, version 19")
  557. initialSQL := sqlReplaceAll(mysqlInitialSQL)
  558. return sqlCommonExecSQLAndUpdateDBVersion(p.dbHandle, strings.Split(initialSQL, ";"), 19, true)
  559. }
  560. func (p *MySQLProvider) migrateDatabase() error { //nolint:dupl
  561. dbVersion, err := sqlCommonGetDatabaseVersion(p.dbHandle, true)
  562. if err != nil {
  563. return err
  564. }
  565. switch version := dbVersion.Version; {
  566. case version == sqlDatabaseVersion:
  567. providerLog(logger.LevelDebug, "sql database is up to date, current version: %v", version)
  568. return ErrNoInitRequired
  569. case version < 19:
  570. err = fmt.Errorf("database version %v is too old, please see the upgrading docs", version)
  571. providerLog(logger.LevelError, "%v", err)
  572. logger.ErrorToConsole("%v", err)
  573. return err
  574. case version == 19:
  575. return updateMySQLDatabaseFromV19(p.dbHandle)
  576. case version == 20:
  577. return updateMySQLDatabaseFromV20(p.dbHandle)
  578. default:
  579. if version > sqlDatabaseVersion {
  580. providerLog(logger.LevelError, "database version %v is newer than the supported one: %v", version,
  581. sqlDatabaseVersion)
  582. logger.WarnToConsole("database version %v is newer than the supported one: %v", version,
  583. sqlDatabaseVersion)
  584. return nil
  585. }
  586. return fmt.Errorf("database version not handled: %v", version)
  587. }
  588. }
  589. func (p *MySQLProvider) revertDatabase(targetVersion int) error {
  590. dbVersion, err := sqlCommonGetDatabaseVersion(p.dbHandle, true)
  591. if err != nil {
  592. return err
  593. }
  594. if dbVersion.Version == targetVersion {
  595. return errors.New("current version match target version, nothing to do")
  596. }
  597. switch dbVersion.Version {
  598. case 20:
  599. return downgradeMySQLDatabaseFromV20(p.dbHandle)
  600. case 21:
  601. return downgradeMySQLDatabaseFromV21(p.dbHandle)
  602. default:
  603. return fmt.Errorf("database version not handled: %v", dbVersion.Version)
  604. }
  605. }
  606. func (p *MySQLProvider) resetDatabase() error {
  607. sql := sqlReplaceAll(mysqlResetSQL)
  608. return sqlCommonExecSQLAndUpdateDBVersion(p.dbHandle, strings.Split(sql, ";"), 0, false)
  609. }
  610. func updateMySQLDatabaseFromV19(dbHandle *sql.DB) error {
  611. if err := updateMySQLDatabaseFrom19To20(dbHandle); err != nil {
  612. return err
  613. }
  614. return updateMySQLDatabaseFromV20(dbHandle)
  615. }
  616. func updateMySQLDatabaseFromV20(dbHandle *sql.DB) error {
  617. return updateMySQLDatabaseFrom20To21(dbHandle)
  618. }
  619. func downgradeMySQLDatabaseFromV20(dbHandle *sql.DB) error {
  620. return downgradeMySQLDatabaseFrom20To19(dbHandle)
  621. }
  622. func downgradeMySQLDatabaseFromV21(dbHandle *sql.DB) error {
  623. if err := downgradeMySQLDatabaseFrom21To20(dbHandle); err != nil {
  624. return err
  625. }
  626. return downgradeMySQLDatabaseFromV20(dbHandle)
  627. }
  628. func updateMySQLDatabaseFrom19To20(dbHandle *sql.DB) error {
  629. logger.InfoToConsole("updating database version: 19 -> 20")
  630. providerLog(logger.LevelInfo, "updating database version: 19 -> 20")
  631. sql := strings.ReplaceAll(mysqlV20SQL, "{{events_actions}}", sqlTableEventsActions)
  632. sql = strings.ReplaceAll(sql, "{{events_rules}}", sqlTableEventsRules)
  633. sql = strings.ReplaceAll(sql, "{{rules_actions_mapping}}", sqlTableRulesActionsMapping)
  634. sql = strings.ReplaceAll(sql, "{{users}}", sqlTableUsers)
  635. sql = strings.ReplaceAll(sql, "{{tasks}}", sqlTableTasks)
  636. sql = strings.ReplaceAll(sql, "{{prefix}}", config.SQLTablesPrefix)
  637. return sqlCommonExecSQLAndUpdateDBVersion(dbHandle, strings.Split(sql, ";"), 20, true)
  638. }
  639. func updateMySQLDatabaseFrom20To21(dbHandle *sql.DB) error {
  640. logger.InfoToConsole("updating database version: 20 -> 21")
  641. providerLog(logger.LevelInfo, "updating database version: 20 -> 21")
  642. sql := strings.ReplaceAll(mysqlV21SQL, "{{users}}", sqlTableUsers)
  643. return sqlCommonExecSQLAndUpdateDBVersion(dbHandle, strings.Split(sql, ";"), 21, true)
  644. }
  645. func downgradeMySQLDatabaseFrom20To19(dbHandle *sql.DB) error {
  646. logger.InfoToConsole("downgrading database version: 20 -> 19")
  647. providerLog(logger.LevelInfo, "downgrading database version: 20 -> 19")
  648. sql := strings.ReplaceAll(mysqlV20DownSQL, "{{events_actions}}", sqlTableEventsActions)
  649. sql = strings.ReplaceAll(sql, "{{events_rules}}", sqlTableEventsRules)
  650. sql = strings.ReplaceAll(sql, "{{rules_actions_mapping}}", sqlTableRulesActionsMapping)
  651. sql = strings.ReplaceAll(sql, "{{users}}", sqlTableUsers)
  652. sql = strings.ReplaceAll(sql, "{{tasks}}", sqlTableTasks)
  653. return sqlCommonExecSQLAndUpdateDBVersion(dbHandle, strings.Split(sql, ";"), 19, false)
  654. }
  655. func downgradeMySQLDatabaseFrom21To20(dbHandle *sql.DB) error {
  656. logger.InfoToConsole("downgrading database version: 21 -> 20")
  657. providerLog(logger.LevelInfo, "downgrading database version: 21 -> 20")
  658. sql := strings.ReplaceAll(mysqlV21DownSQL, "{{users}}", sqlTableUsers)
  659. return sqlCommonExecSQLAndUpdateDBVersion(dbHandle, strings.Split(sql, ";"), 20, false)
  660. }