mirror of https://github.com/portainer/portainer
54 lines
2.0 KiB
Go
54 lines
2.0 KiB
Go
|
package endpointproxy
|
||
|
|
||
|
import (
|
||
|
"strconv"
|
||
|
|
||
|
"github.com/portainer/portainer"
|
||
|
httperror "github.com/portainer/portainer/http/error"
|
||
|
"github.com/portainer/portainer/http/request"
|
||
|
"github.com/portainer/portainer/http/security"
|
||
|
|
||
|
"net/http"
|
||
|
)
|
||
|
|
||
|
func (handler *Handler) proxyRequestsToAzureAPI(w http.ResponseWriter, r *http.Request) *httperror.HandlerError {
|
||
|
endpointID, err := request.RetrieveNumericRouteVariableValue(r, "id")
|
||
|
if err != nil {
|
||
|
return &httperror.HandlerError{http.StatusBadRequest, "Invalid endpoint identifier route variable", err}
|
||
|
}
|
||
|
|
||
|
endpoint, err := handler.EndpointService.Endpoint(portainer.EndpointID(endpointID))
|
||
|
if err == portainer.ErrEndpointNotFound {
|
||
|
return &httperror.HandlerError{http.StatusNotFound, "Unable to find an endpoint with the specified identifier inside the database", err}
|
||
|
} else if err != nil {
|
||
|
return &httperror.HandlerError{http.StatusInternalServerError, "Unable to find an endpoint with the specified identifier inside the database", err}
|
||
|
}
|
||
|
|
||
|
tokenData, err := security.RetrieveTokenData(r)
|
||
|
if err != nil {
|
||
|
return &httperror.HandlerError{http.StatusInternalServerError, "Unable to retrieve user authentication token", err}
|
||
|
}
|
||
|
|
||
|
if tokenData.Role != portainer.AdministratorRole {
|
||
|
err = handler.checkEndpointAccess(endpoint, tokenData.ID)
|
||
|
if err != nil && err == portainer.ErrEndpointAccessDenied {
|
||
|
return &httperror.HandlerError{http.StatusForbidden, "Permission denied to access endpoint", portainer.ErrEndpointAccessDenied}
|
||
|
} else if err != nil {
|
||
|
return &httperror.HandlerError{http.StatusInternalServerError, "Unable to verify permission to access endpoint", err}
|
||
|
}
|
||
|
}
|
||
|
|
||
|
var proxy http.Handler
|
||
|
proxy = handler.ProxyManager.GetProxy(string(endpointID))
|
||
|
if proxy == nil {
|
||
|
proxy, err = handler.ProxyManager.CreateAndRegisterProxy(endpoint)
|
||
|
if err != nil {
|
||
|
return &httperror.HandlerError{http.StatusInternalServerError, "Unable to create proxy", err}
|
||
|
}
|
||
|
}
|
||
|
|
||
|
id := strconv.Itoa(endpointID)
|
||
|
http.StripPrefix("/"+id+"/azure", proxy).ServeHTTP(w, r)
|
||
|
return nil
|
||
|
}
|