-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathm2mconfig.js
171 lines (141 loc) · 4.73 KB
/
m2mconfig.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
//var Blipp = require('blipp');
var Hapi = require('hapi');
var Good = require('good');
var fs = require('fs');
var activevpn = {
mac:'',
vpn:'down'
}
//**** Server metrics pm2-> keymetrics
var pmx = require('pmx');
pmx.init();
var probe = pmx.probe();
var counter = probe.counter({
name : 'starts'
});
var errors = probe.counter({
name : 'errors'
});
//***** end metrics
var server = new Hapi.Server();
server.connection({ port: 80 });
// auto update of firmware and config files. the node is fetching the json file and compares if new versions exist. if so, it
// downloads the files and resets the device
// TODO: ssl
server.route({
method: 'GET',
path: '/config',
handler: function (request, reply) {
var config = JSON.parse(fs.readFileSync('/home/update-server/config.json', 'utf8'));
reply (JSON.stringify(config));
}
});
server.route({
method: 'GET',
path: '/tconfig',
handler: function (request, reply) {
var config = JSON.parse(fs.readFileSync('/home/update-server/config.json', 'utf8'));
var res = {};
try {res.mac = request.query.mac.toUpperCase();} catch(err) {res.mac = '00:00:00:00:00:00';}
if (res.mac != '00:00:00:00:00:00') { // default config to be set
} else {
var sid = 'id_'+res.mac;
config[1].config = config[1].others[sid].config;
config[1].configdesc = config[1].others[sid].configdesc;
}
reply (JSON.stringify(config));
}
});
server.route({
method: 'GET',
path: '/setconfig',
handler: function (request, reply) {
var config = JSON.parse(fs.readFileSync('/home/update-server/config.json', 'utf8'));
var res = {};
try {res.mac = request.query.mac.toUpperCase();} catch(err) {res.mac = '00:00:00:00:00:00';}
try {res.configdesc = request.query.configdesc;} catch(err) {res.configdesc = 'generic update';}
try {res.config = request.query.config;} catch(err) {res.config="config-carambola/config-9d0889530629335e52abac6cca0af49e-201504030633.tar.gz";}
if (res.mac == '00:00:00:00:00:00') { // default config to be set
config[1].config = 'config-carambola/'+res.config;
config[1].configdesc = res.configdesc;
} else { // default config to be set
var sid = 'id_'+res.mac;
msid = {};
msid.config = res.config;
msid.configdesc = res.configdesc;
config[1].others = {};
config[1].others[sid] = msid;
}
res.result = 'accepted';
console.log(JSON.stringify(res));
fs.writeFileSync('/home/update-server/config.json',JSON.stringify(config,null,2));
reply ((config));
}
});
// node is sending this request to ask server if a vpn connection shall be opened between server and node. server replys ok if yes
//otherwise it replys "no" and node stays on its own. This is used for manual service request and remote access to the router
// TODO: this is a backdoor and must be ssl and authenticated too.
server.route({
method: 'GET',
path:'/vpnrequest',
handler: function (request, reply) {
var res = {mac:'2332323', vpn:'down'};
res.mac = request.query.mac.toUpperCase();
if (res.mac == activevpn.mac) {
res.mac = activevpn.mac;
res.vpn = activevpn.vpn;
}
console.log(JSON.stringify(res));
reply(JSON.stringify(res));
}
});
server.route({
method: 'GET',
path:'/vpnconfigure',
handler: function (request, reply) {
var res = {mac:'???', vpn:'down', res:'ok'};
if (request.query.mac) {
activevpn.mac = request.query.mac.toUpperCase();
activevpn.vpn = request.query.vpn;
res.mac = activevpn.mac;
res.vpn = activevpn.vpn;
} else {
res.res = 'bad request';
}
console.log(JSON.stringify(res));
reply(JSON.stringify(res));
}
});
// serve a read only repository for config files and firmware
// TODO: use ssl and authentication to prevent theft. The trick must be that if someone hacks client he cannot get access to it either.
// possible solution is, if the device is altered the server finds out and can bann the device, so the password is useless for that
// hacked client.
server.route({
method: 'GET',
path: '/{param*}',
handler: {
directory: {
path: '/home/data',
listing: true
}
}
});
server.register({
register: Good,
options: {
reporters: [{
opsInterval:60000,
reporter: require('good-console'),
args:[{ log: '*' , error:'*'}]
}]
}
}, function (err) {
if (err) {
errors.inc();
throw err; // something bad happened loading the plugin
}
server.start(function () {
counter.inc();
server.log('info', 'Server running at: ' + server.info.uri);
});
});