main.go 3.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141
  1. package main
  2. import (
  3. "log"
  4. "github.com/porter-dev/porter/api/server/shared/config/envloader"
  5. "github.com/porter-dev/porter/cmd/migrate/keyrotate"
  6. migratelegacyrbac "github.com/porter-dev/porter/cmd/migrate/migrate_legacy_rbac"
  7. "github.com/porter-dev/porter/cmd/migrate/populate_source_config_display_name"
  8. adapter "github.com/porter-dev/porter/internal/adapter"
  9. "github.com/porter-dev/porter/internal/repository/gorm"
  10. lr "github.com/porter-dev/porter/pkg/logger"
  11. "github.com/joeshaw/envdecode"
  12. )
  13. func main() {
  14. logger := lr.NewConsole(true)
  15. logger.Info().Msg("running migrations")
  16. envConf, err := envloader.FromEnv()
  17. if err != nil {
  18. logger.Fatal().Err(err).Msg("could not load env conf")
  19. return
  20. }
  21. db, err := adapter.New(envConf.DBConf)
  22. if err != nil {
  23. logger.Fatal().Err(err).Msg("could not connect to the database")
  24. return
  25. }
  26. err = gorm.AutoMigrate(db, envConf.ServerConf.Debug)
  27. if err != nil {
  28. logger.Fatal().Err(err).Msg("gorm auto-migration failed")
  29. return
  30. }
  31. if err := db.Raw("ALTER TABLE clusters DROP CONSTRAINT IF EXISTS fk_cluster_token_caches").Error; err != nil {
  32. logger.Fatal().Err(err).Msg("failed to drop cluster token cache constraint")
  33. return
  34. }
  35. if err := db.Raw("ALTER TABLE cluster_token_caches DROP CONSTRAINT IF EXISTS fk_clusters_token_cache").Error; err != nil {
  36. logger.Fatal().Err(err).Msg("failed to drop clusters token cache constraint")
  37. return
  38. }
  39. if shouldRotate, oldKeyStr, newKeyStr := shouldKeyRotate(); shouldRotate {
  40. oldKey := [32]byte{}
  41. newKey := [32]byte{}
  42. copy(oldKey[:], []byte(oldKeyStr))
  43. copy(newKey[:], []byte(newKeyStr))
  44. err := keyrotate.Rotate(db, &oldKey, &newKey)
  45. if err != nil {
  46. logger.Fatal().Err(err).Msg("key rotation failed")
  47. }
  48. }
  49. if shouldPopulateSourceConfigDisplayName() {
  50. err := populate_source_config_display_name.PopulateSourceConfigDisplayName(db, logger)
  51. if err != nil {
  52. logger.Fatal().Err(err).Msg("failed to populate source config display name")
  53. }
  54. }
  55. if shouldMigrateFromLegacyRBAC() {
  56. err := migratelegacyrbac.MigrateFromLegacyRBAC(db, logger)
  57. if err != nil {
  58. logger.Fatal().Err(err).Msg("failed to migrate legacy RBAC")
  59. }
  60. }
  61. if err := InstanceMigrate(db, envConf.DBConf); err != nil {
  62. logger.Fatal().Err(err).Msg("vault migration failed")
  63. }
  64. }
  65. type RotateConf struct {
  66. // we add a dummy field to avoid empty struct issue with envdecode
  67. DummyField string `env:"ASDF,default=asdf"`
  68. OldEncryptionKey string `env:"OLD_ENCRYPTION_KEY"`
  69. NewEncryptionKey string `env:"NEW_ENCRYPTION_KEY"`
  70. }
  71. func shouldKeyRotate() (bool, string, string) {
  72. var c RotateConf
  73. if err := envdecode.StrictDecode(&c); err != nil {
  74. log.Fatalf("Failed to decode migration conf: %s", err)
  75. return false, "", ""
  76. }
  77. return c.OldEncryptionKey != "" && c.NewEncryptionKey != "", c.OldEncryptionKey, c.NewEncryptionKey
  78. }
  79. type PopulateSourceConfigDisplayNameConf struct {
  80. // we add a dummy field to avoid empty struct issue with envdecode
  81. DummyField string `env:"ASDF,default=asdf"`
  82. // if true, will populate the display name for all source configs
  83. PopulateSourceConfigDisplayName bool `env:"POPULATE_SOURCE_CONFIG_DISPLAY_NAME"`
  84. }
  85. func shouldPopulateSourceConfigDisplayName() bool {
  86. var c PopulateSourceConfigDisplayNameConf
  87. if err := envdecode.StrictDecode(&c); err != nil {
  88. log.Fatalf("Failed to decode migration conf: %s", err)
  89. return false
  90. }
  91. return c.PopulateSourceConfigDisplayName
  92. }
  93. type MigrateLegacyRBACConf struct {
  94. // we add a dummy field to avoid empty struct issue with envdecode
  95. DummyField string `env:"ASDF,default=asdf"`
  96. // if true, will migrate away from legacy RBAC to advanced RBAC
  97. MigrateLegacyRBAC bool `env:"MIGRATE_LEGACY_RBAC"`
  98. }
  99. func shouldMigrateFromLegacyRBAC() bool {
  100. var c MigrateLegacyRBACConf
  101. if err := envdecode.StrictDecode(&c); err != nil {
  102. log.Fatalf("Failed to decode migration conf: %s", err)
  103. return false
  104. }
  105. return c.MigrateLegacyRBAC
  106. }