func main() { var err error defer func() { if e := recover(); e != nil { fmt.Fprintf(os.Stderr, "FATAL: %v\n", e) } }() homedir := client.FindHomedir() // command line options var config = flag.String("c", homedir+"/.migrc", "Load configuration from file") var quiet = flag.Bool("q", false, "don't display banners and prompts") var showversion = flag.Bool("V", false, "show build version and exit") flag.Parse() if *showversion { fmt.Println(version) os.Exit(0) } // silence extra output out := os.Stdout if *quiet { out.Close() out, err = os.Open(os.DevNull) if err != nil { panic(err) } } defer out.Close() fmt.Fprintf(out, "\x1b[32;1m"+banner+"\x1b[0m") // append a space after completion readline.CompletionAppendChar = 0x20 // load history historyfile := homedir + "/.mig_history" fi, err := os.Stat(historyfile) if err == nil && fi.Size() > 0 { err = readline.LoadHistory(historyfile) if err != nil { fmt.Fprintf(os.Stderr, "failed to load history from %s\n", historyfile) } } // instanciate an API client conf, err := client.ReadConfiguration(*config) if err != nil { panic(err) } cli, err := client.NewClient(conf, "console-"+version) if err != nil { panic(err) } // print platform status err = printStatus(cli) if err != nil { log.Fatal(err) } fmt.Fprintf(out, "\nConnected to %s. Exit with \x1b[32;1mctrl+d\x1b[0m. Type \x1b[32;1mhelp\x1b[0m for help.\n", cli.Conf.API.URL) for { // completion var symbols = []string{"action", "agent", "create", "command", "help", "history", "exit", "showcfg", "status", "investigator", "search", "where", "and"} readline.Completer = func(query, ctx string) []string { var res []string for _, sym := range symbols { if strings.HasPrefix(sym, query) { res = append(res, sym) } } return res } input, err := readline.String("\x1b[32;1mmig>\x1b[0m ") if err == io.EOF { break } if err != nil { fmt.Println("error: ", err) break } orders := strings.Split(strings.TrimSpace(input), " ") switch orders[0] { case "action": if len(orders) == 2 { err = actionReader(input, cli) if err != nil { log.Println(err) } } else { fmt.Println("error: missing action id in 'action <id>'") } case "agent": err = agentReader(input, cli) if err != nil { log.Println(err) } case "create": if len(orders) == 2 { switch orders[1] { case "action": var a mig.Action err = actionLauncher(a, cli) case "investigator": err = investigatorCreator(cli) default: fmt.Printf("unknown order 'create %s'\n", orders[1]) } if err != nil { log.Println(err) } } else { fmt.Println("error: missing order, must be 'create <action|investigator>'") } case "command": err = commandReader(input, cli) if err != nil { log.Println(err) } case "exit": fmt.Printf("exit\n") goto exit case "help": fmt.Printf(`The following orders are available: action <id> enter interactive action reader mode for action <id> agent <id> enter interactive agent reader mode for agent <id> create action create a new action create investigator create a new investigator, will prompt for name and public key command <id> enter command reader mode for command <id> exit leave help show this help history <count> print last <count> entries in history. count=10 by default. investigator <id> enter interactive investigator management mode for investigator <id> search perform a search. see "search help" for more information. showcfg display running configuration status display platform status: connected agents, latest actions, ... `) case "history": var count int64 = 10 if len(orders) > 1 { count, err = strconv.ParseInt(orders[1], 10, 64) if err != nil { log.Println(err) break } } for i := readline.HistorySize(); i > 0 && count > 0; i, count = i-1, count-1 { fmt.Println(readline.GetHistory(i - 1)) } case "investigator": err = investigatorReader(input, cli) if err != nil { log.Println(err) } case "search": err = search(input, cli) if err != nil { log.Println(err) } case "showcfg": fmt.Printf("homedir = %s\n[api]\n url = %s\n[gpg]\n home = %s\n keyid = %s\n", cli.Conf.API.URL, cli.Conf.Homedir, cli.Conf.GPG.Home, cli.Conf.GPG.KeyID) case "status": err = printStatus(cli) if err != nil { log.Println(err) } case "": break default: fmt.Printf("Unknown order '%s'\n", orders[0]) } readline.AddHistory(input) } exit: fmt.Fprintf(out, footer) err = readline.SaveHistory(historyfile) if err != nil { fmt.Fprintf(os.Stderr, "failed to save history to %s\n", historyfile) } }
func main() { var err error var Usage = func() { fmt.Fprintf(os.Stderr, "Mozilla InvestiGator Action Verifier\n"+ "usage: %s <-a action file> <-c command file>\n\n"+ "Command line to verify an action *or* command.\n"+ "Options:\n", os.Args[0]) flag.PrintDefaults() } hasaction := false hascommand := false homedir := client.FindHomedir() // command line options var actionfile = flag.String("a", "/path/to/action", "Load action from file") var commandfile = flag.String("c", "/path/to/command", "Load command from file") var config = flag.String("conf", homedir+"/.migrc", "Load configuration from file") flag.Parse() conf, err := client.ReadConfiguration(*config) if err != nil { panic(err) } // if a file is defined, load action from that if *actionfile != "/path/to/action" { hasaction = true } if *commandfile != "/path/to/command" { hascommand = true } if (hasaction && hascommand) || (!hasaction && !hascommand) { fmt.Println("[error] either an action file or a command file must be provided") Usage() os.Exit(1) } var a mig.Action if hasaction { a, err = mig.ActionFromFile(*actionfile) if err != nil { panic(err) } } else { c, err := mig.CmdFromFile(*commandfile) if err != nil { panic(err) } a = c.Action } err = a.Validate() if err != nil { fmt.Println(err) } pubringFile, err := os.Open(conf.GPG.Home + "/pubring.gpg") if err != nil { panic(err) } defer pubringFile.Close() // syntax checking err = a.VerifySignatures(pubringFile) if err != nil { fmt.Println("[error]", err) } else { fmt.Println("Valid signature") } }
func main() { var err error defer func() { if e := recover(); e != nil { fmt.Printf("FATAL: %v\n", e) } }() homedir := client.FindHomedir() var Usage = func() { fmt.Fprintf(os.Stderr, "Mozilla InvestiGator Action Generator\n"+ "usage: %s -i <input file>\n\n"+ "Command line to generate and sign MIG Actions.\n"+ "Configuration is read from ~/.migrc by default.\n\n"+ "Options:\n", os.Args[0]) flag.PrintDefaults() } // command line options var config = flag.String("c", homedir+"/.migrc", "Load configuration from file") var pretty = flag.Bool("p", false, "Print signed action in pretty JSON format") var urlencode = flag.Bool("urlencode", false, "URL Encode marshalled JSON before printing it (implies '-p')") var file = flag.String("i", "/path/to/file", "Load action from file") var target = flag.String("t", "some.target.example.net", "Set the target of the action") var validfrom = flag.String("validfrom", "now", "(optional) set an ISO8601 date the action will be valid from. If unset, use 'now'.") var expireafter = flag.String("expireafter", "30m", "(optional) set a validity duration for the action. If unset, use '30m'.") var nolaunch = flag.Bool("nolaunch", false, "Don't launch the action. Print it and exit. (implies '-p')") var showversion = flag.Bool("V", false, "Show build version and exit") flag.Parse() if *showversion { fmt.Println(version) os.Exit(0) } if *nolaunch { *pretty = true } // instanciate an API client conf, err := client.ReadConfiguration(*config) if err != nil { panic(err) } cli, err := client.NewClient(conf, "generator-"+version) if err != nil { panic(err) } // We need a file to load the action from if *file == "/path/to/file" { fmt.Println("ERROR: Missing action file") Usage() os.Exit(1) } a, err := mig.ActionFromFile(*file) if err != nil { panic(err) } // set the dates if *validfrom == "now" { // for immediate execution, set validity one minute in the past a.ValidFrom = time.Now().Add(-60 * time.Second).UTC() } else { a.ValidFrom, err = time.Parse(time.RFC3339, *validfrom) if err != nil { panic(err) } } period, err := time.ParseDuration(*expireafter) if err != nil { log.Fatal(err) } a.ExpireAfter = a.ValidFrom.Add(period) if *target != "some.target.example.net" { a.Target = *target } asig, err := cli.SignAction(a) if err != nil { panic(err) } a = asig // if asked, pretty print the action var jsonAction []byte if *pretty { jsonAction, err = json.MarshalIndent(a, "", "\t") fmt.Printf("%s\n", jsonAction) } else { jsonAction, err = json.Marshal(a) } if err != nil { panic(err) } // if asked, url encode the action before marshaling it actionstr := string(jsonAction) if *urlencode { strJsonAction := string(jsonAction) actionstr = url.QueryEscape(strJsonAction) if *pretty { fmt.Println(actionstr) } } if !*nolaunch { a2, err := cli.PostAction(a) if err != nil { panic(err) } fmt.Printf("Successfully launched action %.0f\n", a2.ID) } }
func main() { var ( conf client.Configuration cli client.Client err error op mig.Operation a mig.Action migrc, show, render, target, expiration, afile string modargs []string modRunner interface{} ) defer func() { if e := recover(); e != nil { fmt.Fprintf(os.Stderr, "%v\n", e) } }() homedir := client.FindHomedir() fs := flag.NewFlagSet("mig flag", flag.ContinueOnError) fs.Usage = continueOnFlagError fs.StringVar(&migrc, "c", homedir+"/.migrc", "alternative configuration file") fs.StringVar(&show, "show", "found", "type of results to show") fs.StringVar(&render, "render", "text", "results rendering mode") fs.StringVar(&target, "t", fmt.Sprintf("status='%s' AND mode='daemon'", mig.AgtStatusOnline), "action target") fs.StringVar(&expiration, "e", "300s", "expiration") fs.StringVar(&afile, "i", "/path/to/file", "Load action from file") // if first argument is missing, or is help, print help // otherwise, pass the remainder of the arguments to the module for parsing // this client is agnostic to module parameters if len(os.Args) < 2 || os.Args[1] == "help" || os.Args[1] == "-h" || os.Args[1] == "--help" { usage() } if len(os.Args) < 2 || os.Args[1] == "-V" { fmt.Println(version) os.Exit(0) } // when reading the action from a file, go directly to launch if os.Args[1] == "-i" { err = fs.Parse(os.Args[1:]) if err != nil { panic(err) } if afile == "/path/to/file" { panic("-i flag must take an action file path as argument") } a, err = mig.ActionFromFile(afile) if err != nil { panic(err) } fmt.Fprintf(os.Stderr, "[info] launching action from file, all flags are ignored\n") goto readytolaunch } // arguments parsing works as follow: // * os.Args[1] must contain the name of the module to launch. we first verify // that a module exist for this name and then continue parsing // * os.Args[2:] contains both global options and module parameters. We parse the // whole []string to extract global options, and module parameters will be left // unparsed in fs.Args() // * fs.Args() with the module parameters is passed as a string to the module parser // which will return a module operation to store in the action op.Module = os.Args[1] if _, ok := modules.Available[op.Module]; !ok { panic("Unknown module " + op.Module) } // -- Ugly hack Warning -- // Parse() will fail on the first flag that is not defined, but in our case module flags // are defined in the module packages and not in this program. Therefore, the flag parse error // is expected. Unfortunately, Parse() writes directly to stderr and displays the error to // the user, which confuses them. The right fix would be to prevent Parse() from writing to // stderr, since that's really the job of the calling program, but in the meantime we work around // it by redirecting stderr to null before calling Parse(), and put it back to normal afterward. // for ref, issue is at https://github.com/golang/go/blob/master/src/flag/flag.go#L793 fs.SetOutput(os.NewFile(uintptr(87592), os.DevNull)) err = fs.Parse(os.Args[2:]) fs.SetOutput(nil) if err != nil { // ignore the flag not defined error, which is expected because // module parameters are defined in modules and not in main if len(err.Error()) > 30 && err.Error()[0:29] == "flag provided but not defined" { // requeue the parameter that failed modargs = append(modargs, err.Error()[31:]) } else { // if it's another error, panic panic(err) } } for _, arg := range fs.Args() { modargs = append(modargs, arg) } modRunner = modules.Available[op.Module].Runner() if _, ok := modRunner.(modules.HasParamsParser); !ok { fmt.Fprintf(os.Stderr, "[error] module '%s' does not support command line invocation\n", op.Module) os.Exit(2) } op.Parameters, err = modRunner.(modules.HasParamsParser).ParamsParser(modargs) if err != nil || op.Parameters == nil { panic(err) } a.Operations = append(a.Operations, op) for _, arg := range os.Args[1:] { a.Name += arg + " " } a.Target = target readytolaunch: // instanciate an API client conf, err = client.ReadConfiguration(migrc) if err != nil { panic(err) } cli, err = client.NewClient(conf, "cmd-"+version) if err != nil { panic(err) } // set the validity 60 second in the past to deal with clock skew a.ValidFrom = time.Now().Add(-60 * time.Second).UTC() period, err := time.ParseDuration(expiration) if err != nil { panic(err) } a.ExpireAfter = a.ValidFrom.Add(period) // add extra 60 seconds taken for clock skew a.ExpireAfter = a.ExpireAfter.Add(60 * time.Second).UTC() asig, err := cli.SignAction(a) if err != nil { panic(err) } a = asig // evaluate target before launch, give a change to cancel before going out to agents agents, err := cli.EvaluateAgentTarget(a.Target) if err != nil { panic(err) } fmt.Fprintf(os.Stderr, "\x1b[33m%d agents will be targeted. ctrl+c to cancel. launching in \x1b[0m", len(agents)) for i := 5; i > 0; i-- { time.Sleep(1 * time.Second) fmt.Fprintf(os.Stderr, "\x1b[33m%d\x1b[0m ", i) } fmt.Fprintf(os.Stderr, "\x1b[33mGO\n\x1b[0m") // launch and follow a, err = cli.PostAction(a) if err != nil { panic(err) } c := make(chan os.Signal, 1) done := make(chan bool, 1) signal.Notify(c, os.Interrupt) go func() { err = cli.FollowAction(a) if err != nil { panic(err) } done <- true }() select { case <-c: fmt.Fprintf(os.Stderr, "stop following action. agents may still be running. printing available results:\n") goto printresults case <-done: goto printresults } printresults: err = cli.PrintActionResults(a, show, render) if err != nil { panic(err) } }