| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | package kubernetes
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 
 | 
					
						
							|  |  |  | import (
 | 
					
						
							| 
									
										
										
										
											2016-08-05 18:19:51 -07:00
										 |  |  | 	"errors"
 | 
					
						
							| 
									
										
										
										
											2016-08-08 14:30:04 -07:00
										 |  |  | 	"fmt"
 | 
					
						
							| 
									
										
										
										
											2017-08-27 01:32:46 +01:00
										 |  |  | 	"strconv"
 | 
					
						
							| 
									
										
										
										
											2016-07-07 01:40:58 -07:00
										 |  |  | 	"strings"
 | 
					
						
							| 
									
										
										
										
											2016-08-05 18:19:51 -07:00
										 |  |  | 	"time"
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-02-21 22:51:47 -08:00
										 |  |  | 	"github.com/coredns/coredns/core/dnsserver"
 | 
					
						
							|  |  |  | 	"github.com/coredns/coredns/middleware"
 | 
					
						
							| 
									
										
										
										
											2017-05-30 08:20:39 -04:00
										 |  |  | 	"github.com/coredns/coredns/middleware/pkg/dnsutil"
 | 
					
						
							|  |  |  | 	"github.com/coredns/coredns/middleware/proxy"
 | 
					
						
							| 
									
										
										
										
											2017-06-28 18:44:30 -04:00
										 |  |  | 	"github.com/miekg/dns"
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | 
 | 
					
						
							|  |  |  | 	"github.com/mholt/caddy"
 | 
					
						
							| 
									
										
										
										
											2016-11-05 07:57:08 -04:00
										 |  |  | 	unversionedapi "k8s.io/client-go/1.5/pkg/api/unversioned"
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | )
 | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | func init() {
 | 
					
						
							|  |  |  | 	caddy.RegisterPlugin("kubernetes", caddy.Plugin{
 | 
					
						
							|  |  |  | 		ServerType: "dns",
 | 
					
						
							|  |  |  | 		Action:     setup,
 | 
					
						
							|  |  |  | 	})
 | 
					
						
							|  |  |  | }
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | func setup(c *caddy.Controller) error {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 	kubernetes, initOpts, err := kubernetesParse(c)
 | 
					
						
							| 
									
										
										
										
											2016-08-05 18:19:51 -07:00
										 |  |  | 	if err != nil {
 | 
					
						
							| 
									
										
										
										
											2016-09-10 09:16:25 +01:00
										 |  |  | 		return middleware.Error("kubernetes", err)
 | 
					
						
							| 
									
										
										
										
											2016-08-05 18:19:51 -07:00
										 |  |  | 	}
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 	err = kubernetes.initKubeCache(initOpts)
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 	if err != nil {
 | 
					
						
							| 
									
										
										
										
											2016-09-10 09:16:25 +01:00
										 |  |  | 		return middleware.Error("kubernetes", err)
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 	}
 | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | 	// Register KubeCache start and stop functions with Caddy
 | 
					
						
							|  |  |  | 	c.OnStartup(func() error {
 | 
					
						
							|  |  |  | 		go kubernetes.APIConn.Run()
 | 
					
						
							| 
									
										
										
										
											2017-08-10 17:14:56 -07:00
										 |  |  | 		if kubernetes.APIProxy != nil {
 | 
					
						
							|  |  |  | 			go kubernetes.APIProxy.Run()
 | 
					
						
							|  |  |  | 		}
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | 		return nil
 | 
					
						
							|  |  |  | 	})
 | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 	c.OnShutdown(func() error {
 | 
					
						
							| 
									
										
										
										
											2017-08-10 17:14:56 -07:00
										 |  |  | 		if kubernetes.APIProxy != nil {
 | 
					
						
							|  |  |  | 			kubernetes.APIProxy.Stop()
 | 
					
						
							|  |  |  | 		}
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | 		return kubernetes.APIConn.Stop()
 | 
					
						
							|  |  |  | 	})
 | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2016-09-19 11:26:00 +01:00
										 |  |  | 	dnsserver.GetConfig(c).AddMiddleware(func(next middleware.Handler) middleware.Handler {
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 		kubernetes.Next = next
 | 
					
						
							|  |  |  | 		return kubernetes
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | 	})
 | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 	return nil
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | }
 | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | func kubernetesParse(c *caddy.Controller) (*Kubernetes, dnsControlOpts, error) {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 20:44:42 +01:00
										 |  |  | 	k8s := New([]string{""})
 | 
					
						
							|  |  |  | 	k8s.interfaceAddrsFunc = localPodIP
 | 
					
						
							|  |  |  | 	k8s.autoPathSearch = searchFromResolvConf()
 | 
					
						
							| 
									
										
										
										
											2016-07-07 01:40:58 -07:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 	opts := dnsControlOpts{
 | 
					
						
							|  |  |  | 		resyncPeriod: defaultResyncPeriod,
 | 
					
						
							|  |  |  | 	}
 | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 	for c.Next() {
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 		zones := c.RemainingArgs()
 | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 		if len(zones) != 0 {
 | 
					
						
							|  |  |  | 			k8s.Zones = zones
 | 
					
						
							| 
									
										
										
										
											2017-08-16 07:29:46 +01:00
										 |  |  | 			for i := 0; i < len(k8s.Zones); i++ {
 | 
					
						
							|  |  |  | 				k8s.Zones[i] = middleware.Host(k8s.Zones[i]).Normalize()
 | 
					
						
							|  |  |  | 			}
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 		} else {
 | 
					
						
							|  |  |  | 			k8s.Zones = make([]string, len(c.ServerBlockKeys))
 | 
					
						
							|  |  |  | 			for i := 0; i < len(c.ServerBlockKeys); i++ {
 | 
					
						
							|  |  |  | 				k8s.Zones[i] = middleware.Host(c.ServerBlockKeys[i]).Normalize()
 | 
					
						
							| 
									
										
										
										
											2016-11-14 19:31:08 +00:00
										 |  |  | 			}
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 		}
 | 
					
						
							| 
									
										
										
										
											2016-11-14 19:31:08 +00:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 		k8s.primaryZoneIndex = -1
 | 
					
						
							|  |  |  | 		for i, z := range k8s.Zones {
 | 
					
						
							|  |  |  | 			if strings.HasSuffix(z, "in-addr.arpa.") || strings.HasSuffix(z, "ip6.arpa.") {
 | 
					
						
							|  |  |  | 				continue
 | 
					
						
							| 
									
										
										
										
											2016-11-14 19:31:08 +00:00
										 |  |  | 			}
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			k8s.primaryZoneIndex = i
 | 
					
						
							|  |  |  | 			break
 | 
					
						
							|  |  |  | 		}
 | 
					
						
							| 
									
										
										
										
											2016-11-14 19:31:08 +00:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 		if k8s.primaryZoneIndex == -1 {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 			return nil, opts, errors.New("non-reverse zone name must be used")
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 		}
 | 
					
						
							| 
									
										
										
										
											2017-02-01 12:56:10 -05:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 		for c.NextBlock() {
 | 
					
						
							|  |  |  | 			switch c.Val() {
 | 
					
						
							|  |  |  | 			case "pods":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) == 1 {
 | 
					
						
							|  |  |  | 					switch args[0] {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 22:11:48 +01:00
										 |  |  | 					case podModeDisabled, podModeInsecure, podModeVerified:
 | 
					
						
							|  |  |  | 						k8s.podMode = args[0]
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 					default:
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 						return nil, opts, fmt.Errorf("wrong value for pods: %s,  must be one of: disabled, verified, insecure", args[0])
 | 
					
						
							| 
									
										
										
										
											2017-04-19 16:08:30 -04:00
										 |  |  | 					}
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 					continue
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			case "namespaces":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) > 0 {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 20:44:42 +01:00
										 |  |  | 					for _, a := range args {
 | 
					
						
							|  |  |  | 						k8s.Namespaces[a] = true
 | 
					
						
							|  |  |  | 					}
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 					continue
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			case "endpoint":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) > 0 {
 | 
					
						
							|  |  |  | 					for _, endpoint := range strings.Split(args[0], ",") {
 | 
					
						
							|  |  |  | 						k8s.APIServerList = append(k8s.APIServerList, strings.TrimSpace(endpoint))
 | 
					
						
							| 
									
										
										
										
											2017-05-30 08:20:39 -04:00
										 |  |  | 					}
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 					continue
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			case "tls": // cert key cacertfile
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) == 3 {
 | 
					
						
							|  |  |  | 					k8s.APIClientCert, k8s.APIClientKey, k8s.APICertAuth = args[0], args[1], args[2]
 | 
					
						
							|  |  |  | 					continue
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			case "resyncperiod":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) > 0 {
 | 
					
						
							|  |  |  | 					rp, err := time.ParseDuration(args[0])
 | 
					
						
							| 
									
										
										
										
											2017-05-30 08:20:39 -04:00
										 |  |  | 					if err != nil {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 						return nil, opts, fmt.Errorf("unable to parse resync duration value: '%v': %v", args[0], err)
 | 
					
						
							| 
									
										
										
										
											2017-05-30 08:20:39 -04:00
										 |  |  | 					}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 					opts.resyncPeriod = rp
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 					continue
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			case "labels":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) > 0 {
 | 
					
						
							|  |  |  | 					labelSelectorString := strings.Join(args, " ")
 | 
					
						
							|  |  |  | 					ls, err := unversionedapi.ParseToLabelSelector(labelSelectorString)
 | 
					
						
							|  |  |  | 					if err != nil {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 						return nil, opts, fmt.Errorf("unable to parse label selector value: '%v': %v", labelSelectorString, err)
 | 
					
						
							| 
									
										
										
										
											2017-06-14 09:38:00 -04:00
										 |  |  | 					}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 					opts.labelSelector = ls
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 					continue
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			case "fallthrough":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) == 0 {
 | 
					
						
							|  |  |  | 					k8s.Fallthrough = true
 | 
					
						
							|  |  |  | 					continue
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			case "upstream":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) == 0 {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 					return nil, opts, c.ArgErr()
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 				}
 | 
					
						
							|  |  |  | 				ups, err := dnsutil.ParseHostPortOrFile(args...)
 | 
					
						
							|  |  |  | 				if err != nil {
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 					return nil, opts, err
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 				}
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 				k8s.Proxy = proxy.NewLookup(ups)
 | 
					
						
							| 
									
										
										
										
											2017-08-27 01:32:46 +01:00
										 |  |  | 			case "ttl":
 | 
					
						
							|  |  |  | 				args := c.RemainingArgs()
 | 
					
						
							|  |  |  | 				if len(args) == 0 {
 | 
					
						
							|  |  |  | 					return nil, opts, c.ArgErr()
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							|  |  |  | 				t, err := strconv.Atoi(args[0])
 | 
					
						
							|  |  |  | 				if err != nil {
 | 
					
						
							|  |  |  | 					return nil, opts, err
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							|  |  |  | 				if t < 5 || t > 3600 {
 | 
					
						
							|  |  |  | 					return nil, opts, c.Errf("ttl must be in range [5, 3600]: %d", t)
 | 
					
						
							|  |  |  | 				}
 | 
					
						
							|  |  |  | 				k8s.ttl = uint32(t)
 | 
					
						
							| 
									
										
										
										
											2017-08-14 08:49:26 +01:00
										 |  |  | 			default:
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 				return nil, opts, c.Errf("unknown property '%s'", c.Val())
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | 			}
 | 
					
						
							|  |  |  | 		}
 | 
					
						
							|  |  |  | 	}
 | 
					
						
							| 
									
										
										
										
											2017-08-22 21:52:18 +01:00
										 |  |  | 	return k8s, opts, nil
 | 
					
						
							| 
									
										
										
										
											2016-06-06 12:49:53 -07:00
										 |  |  | }
 | 
					
						
							| 
									
										
										
										
											2016-08-19 17:14:17 -07:00
										 |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-10 19:26:31 +01:00
										 |  |  | func searchFromResolvConf() []string {
 | 
					
						
							|  |  |  | 	rc, err := dns.ClientConfigFromFile("/etc/resolv.conf")
 | 
					
						
							|  |  |  | 	if err != nil {
 | 
					
						
							|  |  |  | 		return nil
 | 
					
						
							|  |  |  | 	}
 | 
					
						
							|  |  |  | 	middleware.Zones(rc.Search).Normalize()
 | 
					
						
							|  |  |  | 	return rc.Search
 | 
					
						
							|  |  |  | }
 | 
					
						
							|  |  |  | 
 | 
					
						
							| 
									
										
										
										
											2017-08-11 16:21:07 +01:00
										 |  |  | const defaultResyncPeriod = 5 * time.Minute
 |