global.go 5.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199
  1. // Copyright 2015 CoreOS, Inc.
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package command
  15. import (
  16. "crypto/tls"
  17. "errors"
  18. "io"
  19. "io/ioutil"
  20. "time"
  21. "github.com/coreos/etcd/clientv3"
  22. "github.com/coreos/etcd/pkg/flags"
  23. "github.com/coreos/etcd/pkg/transport"
  24. "github.com/spf13/cobra"
  25. )
  26. // GlobalFlags are flags that defined globally
  27. // and are inherited to all sub-commands.
  28. type GlobalFlags struct {
  29. Insecure bool
  30. InsecureSkipVerify bool
  31. Endpoints []string
  32. DialTimeout time.Duration
  33. CommandTimeOut time.Duration
  34. TLS transport.TLSInfo
  35. OutputFormat string
  36. IsHex bool
  37. }
  38. type secureCfg struct {
  39. cert string
  40. key string
  41. cacert string
  42. insecureTransport bool
  43. insecureSkipVerify bool
  44. }
  45. var display printer = &simplePrinter{}
  46. func mustClientFromCmd(cmd *cobra.Command) *clientv3.Client {
  47. flags.SetPflagsFromEnv("ETCDCTL", cmd.InheritedFlags())
  48. endpoints, err := cmd.Flags().GetStringSlice("endpoints")
  49. if err != nil {
  50. ExitWithError(ExitError, err)
  51. }
  52. dialTimeout := dialTimeoutFromCmd(cmd)
  53. sec := secureCfgFromCmd(cmd)
  54. return mustClient(endpoints, dialTimeout, sec)
  55. }
  56. func mustClient(endpoints []string, dialTimeout time.Duration, scfg *secureCfg) *clientv3.Client {
  57. cfg, err := newClientCfg(endpoints, dialTimeout, scfg)
  58. if err != nil {
  59. ExitWithError(ExitBadArgs, err)
  60. }
  61. client, err := clientv3.New(*cfg)
  62. if err != nil {
  63. ExitWithError(ExitBadConnection, err)
  64. }
  65. return client
  66. }
  67. func newClientCfg(endpoints []string, dialTimeout time.Duration, scfg *secureCfg) (*clientv3.Config, error) {
  68. // set tls if any one tls option set
  69. var cfgtls *transport.TLSInfo
  70. tlsinfo := transport.TLSInfo{}
  71. if scfg.cert != "" {
  72. tlsinfo.CertFile = scfg.cert
  73. cfgtls = &tlsinfo
  74. }
  75. if scfg.key != "" {
  76. tlsinfo.KeyFile = scfg.key
  77. cfgtls = &tlsinfo
  78. }
  79. if scfg.cacert != "" {
  80. tlsinfo.CAFile = scfg.cacert
  81. cfgtls = &tlsinfo
  82. }
  83. cfg := &clientv3.Config{
  84. Endpoints: endpoints,
  85. DialTimeout: dialTimeout,
  86. }
  87. if cfgtls != nil {
  88. clientTLS, err := cfgtls.ClientConfig()
  89. if err != nil {
  90. return nil, err
  91. }
  92. cfg.TLS = clientTLS
  93. }
  94. // if key/cert is not given but user wants secure connection, we
  95. // should still setup an empty tls configuration for gRPC to setup
  96. // secure connection.
  97. if cfg.TLS == nil && !scfg.insecureTransport {
  98. cfg.TLS = &tls.Config{}
  99. }
  100. // If the user wants to skip TLS verification then we should set
  101. // the InsecureSkipVerify flag in tls configuration.
  102. if scfg.insecureSkipVerify && cfg.TLS != nil {
  103. cfg.TLS.InsecureSkipVerify = true
  104. }
  105. return cfg, nil
  106. }
  107. func argOrStdin(args []string, stdin io.Reader, i int) (string, error) {
  108. if i < len(args) {
  109. return args[i], nil
  110. }
  111. bytes, err := ioutil.ReadAll(stdin)
  112. if string(bytes) == "" || err != nil {
  113. return "", errors.New("no available argument and stdin")
  114. }
  115. return string(bytes), nil
  116. }
  117. func dialTimeoutFromCmd(cmd *cobra.Command) time.Duration {
  118. dialTimeout, err := cmd.Flags().GetDuration("dial-timeout")
  119. if err != nil {
  120. ExitWithError(ExitError, err)
  121. }
  122. return dialTimeout
  123. }
  124. func secureCfgFromCmd(cmd *cobra.Command) *secureCfg {
  125. cert, key, cacert := keyAndCertFromCmd(cmd)
  126. insecureTr := insecureTransportFromCmd(cmd)
  127. skipVerify := insecureSkipVerifyFromCmd(cmd)
  128. return &secureCfg{
  129. cert: cert,
  130. key: key,
  131. cacert: cacert,
  132. insecureTransport: insecureTr,
  133. insecureSkipVerify: skipVerify,
  134. }
  135. }
  136. func insecureTransportFromCmd(cmd *cobra.Command) bool {
  137. insecureTr, err := cmd.Flags().GetBool("insecure-transport")
  138. if err != nil {
  139. ExitWithError(ExitError, err)
  140. }
  141. return insecureTr
  142. }
  143. func insecureSkipVerifyFromCmd(cmd *cobra.Command) bool {
  144. skipVerify, err := cmd.Flags().GetBool("insecure-skip-tls-verify")
  145. if err != nil {
  146. ExitWithError(ExitError, err)
  147. }
  148. return skipVerify
  149. }
  150. func keyAndCertFromCmd(cmd *cobra.Command) (cert, key, cacert string) {
  151. var err error
  152. if cert, err = cmd.Flags().GetString("cert"); err != nil {
  153. ExitWithError(ExitBadArgs, err)
  154. } else if cert == "" && cmd.Flags().Changed("cert") {
  155. ExitWithError(ExitBadArgs, errors.New("empty string is passed to --cert option"))
  156. }
  157. if key, err = cmd.Flags().GetString("key"); err != nil {
  158. ExitWithError(ExitBadArgs, err)
  159. } else if key == "" && cmd.Flags().Changed("key") {
  160. ExitWithError(ExitBadArgs, errors.New("empty string is passed to --key option"))
  161. }
  162. if cacert, err = cmd.Flags().GetString("cacert"); err != nil {
  163. ExitWithError(ExitBadArgs, err)
  164. } else if cacert == "" && cmd.Flags().Changed("cacert") {
  165. ExitWithError(ExitBadArgs, errors.New("empty string is passed to --cacert option"))
  166. }
  167. return cert, key, cacert
  168. }