summaryrefslogtreecommitdiffstats
path: root/src/main/java/org/openslx/imagemaster/ftp/MasterFtpServer.java
blob: c24b31894e6d654b68c9aa8900aa2f3fb5d95549 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
package org.openslx.imagemaster.ftp;

import java.io.File;
import java.sql.Timestamp;
import java.util.ArrayList;
import java.util.HashMap;
import java.util.Iterator;
import java.util.List;

import org.apache.ftpserver.FtpServer;
import org.apache.ftpserver.FtpServerFactory;
import org.apache.ftpserver.ftplet.Authority;
import org.apache.ftpserver.ftplet.FtpException;
import org.apache.ftpserver.ftplet.Ftplet;
import org.apache.ftpserver.ftplet.UserManager;
import org.apache.ftpserver.impl.FtpIoSession;
import org.apache.ftpserver.listener.Listener;
import org.apache.ftpserver.listener.ListenerFactory;
import org.apache.ftpserver.ssl.SslConfigurationFactory;
import org.apache.ftpserver.usermanager.PropertiesUserManagerFactory;
import org.apache.ftpserver.usermanager.SaltedPasswordEncryptor;
import org.apache.ftpserver.usermanager.impl.BaseUser;
import org.apache.ftpserver.usermanager.impl.WritePermission;
import org.apache.log4j.Logger;
import org.openslx.imagemaster.Globals;
import org.openslx.imagemaster.Globals.PropString;
import org.openslx.imagemaster.db.DbFtpUser;
import org.openslx.imagemaster.thrift.iface.FtpCredentials;
import org.openslx.imagemaster.util.RandomString;
import org.openslx.imagemaster.util.Util;

public class MasterFtpServer implements Runnable
{

	private static Logger log = Logger.getLogger( MasterFtpServer.class );
	private FtpServer server;
	private UserManager userManager;
	private Listener listener;
	// key: ftpUsername, value: infos
	public final HashMap<String, Infos> users = new HashMap<>();
	private boolean ini = false;

	public enum Mode
	{
		UPLOADING, DOWNLOADING;
		
		@Override
		public String toString() {
			if (this == UPLOADING) {
				return "uploading";
			} else if (this == DOWNLOADING) {
				return "downloading";
			} else {
				return "";
			}
		}
	}

	/**
	 * Class to hold infos of a ftp user.
	 * 
	 * @author nils
	 * 
	 */
	public class Infos
	{
		private final Long createTime;
		private final Mode mode;
		private final String fileName;
		private final String serverSessionId;

		public Infos(Long createTime, Mode mode, String fileName, String serverSessionId)
		{
			this.createTime = createTime;
			this.mode = mode;
			this.fileName = fileName;
			this.serverSessionId = serverSessionId;
		}

		public Long getCreateTime()
		{
			return this.createTime;
		}

		public Mode getMode()
		{
			return this.mode;
		}
		
		public String getFileName()
		{
			return this.fileName;
		}
		
		public String getServerSessionId() {
			return this.serverSessionId;
		}
	}

	public void init( int port )
	{
		if ( ini )
			return;

		FtpServerFactory serverFactory = new FtpServerFactory();
		ListenerFactory factory = new ListenerFactory();

		// config ssl
		SslConfigurationFactory sslConfigFactory = new SslConfigurationFactory();
		sslConfigFactory.setKeystoreFile( new File( Globals.getPropertyString( PropString.FTPKEYSTOREFILE ) ) );
		sslConfigFactory.setKeyAlias( Globals.getPropertyString( PropString.FTPKEYSTOREALIAS ) );
		sslConfigFactory.setKeystorePassword( Globals.getPropertyString( PropString.FTPKEYSTOREPASSWORD ) );

		// set the port of the listener
		factory.setPort( port );
		factory.setSslConfiguration( sslConfigFactory.createSslConfiguration() );
		factory.setImplicitSsl( true );

		// replace the default listener
		listener = factory.createListener();
		serverFactory.addListener( "default", listener );

		// create user manager
		PropertiesUserManagerFactory userManagerFactory = new PropertiesUserManagerFactory();
		File userFile = new File( "ftp.properties" );
		userManagerFactory.setFile( userFile );
		userManagerFactory.setPasswordEncryptor( new SaltedPasswordEncryptor() );
		userManager = userManagerFactory.createUserManager();
		serverFactory.setUserManager( userManager );

		// add the Ftplet
		HashMap<String, Ftplet> map = new HashMap<String, Ftplet>();
		map.put( "Ftplet1", new MasterFtplet() );
		serverFactory.setFtplets( map );

		// start the server
		server = serverFactory.createServer();
		ini = true;
	}
	
	/**
	 * Add a user with username and password.
	 * @param username
	 * @param password
	 * @param mode
	 * @param fileName the filename of the file, that is allowed to access (if downloading)
	 * @param add user to db
	 * @return
	 */
	public boolean addUser( String serverSessionId, String username, String password, Mode mode, String fileName, boolean toDb)
	{
		String dir = Globals.getPropertyString( Globals.PropString.FTPBASEDIR ) + "/" + username + "/";
		
		BaseUser user = new BaseUser();
		user.setName( username );
		user.setPassword( password );
		List<Authority> authorities = new ArrayList<Authority>();
		
		String file = "";
		
		if (mode == Mode.UPLOADING) {
			user.setHomeDirectory( dir );
			// uploading satellite is allowed to write
			authorities.add( new WritePermission() );
		} else if (mode == Mode.DOWNLOADING) {
			// the downloading satellite may access the whole dir, but this is restricted in MasterFtplet
			user.setHomeDirectory( Globals.getPropertyString( Globals.PropString.FTPBASEDIR ) );
			// downloading satellite is only allowed to read
			file = fileName;
		}
		
		user.setAuthorities( authorities );
		
		try {
			userManager.save( user );
			synchronized ( users ) {
				users.put( username, new Infos( System.currentTimeMillis(), mode, file, serverSessionId) );
				if (toDb)
					DbFtpUser.addUser( new DbFtpUser( username, password, mode.toString(), fileName, serverSessionId, new Timestamp(System.currentTimeMillis()) ) );
			}
		} catch ( FtpException e ) {
			return false;
		}
		
		return true;
	}

	public FtpCredentials addUser( final String serverSessionId, Mode mode, String fileName )
	{
		FtpCredentials ftpCredentials = null;

		String generatedUser = RandomString.generate( 10, false );
		String generatedPass = RandomString.generate( 16, true );


		BaseUser user = new BaseUser();
		user.setName( generatedUser );
		user.setPassword( generatedPass );
		List<Authority> authorities = new ArrayList<Authority>();
		
		String file = "";
		String dir = "";
		
		if (mode == Mode.UPLOADING) {
			// generate the home dir
			dir = Globals.getPropertyString( Globals.PropString.FTPBASEDIR ) + "/" + generatedUser + "/";
			if ( !new File( dir ).mkdir() ) {
				return null;
			}
			// uploading satellite is allowed to write
			authorities.add( new WritePermission() );
		} else if (mode == Mode.DOWNLOADING) {
			// the downloading satellite may access the whole dir, but this is restricted in MasterFtplet
			dir = Globals.getPropertyString( Globals.PropString.IMAGEDIR );
			// downloading satellite is only allowed to read
			file = fileName;
		}
		
		user.setHomeDirectory( dir );
		user.setAuthorities( authorities );

		try {
			userManager.save( user );
			ftpCredentials = new FtpCredentials( generatedUser, generatedPass, fileName );
			synchronized ( users ) {
				users.put( ftpCredentials.username, new Infos( System.currentTimeMillis(), mode, file, serverSessionId) );
				DbFtpUser.addUser( new DbFtpUser( generatedUser, generatedPass, mode.toString(), fileName, serverSessionId, new Timestamp(System.currentTimeMillis()) ) );
			}
		} catch ( FtpException e ) {
			// TODO: handle this
		}

		log.info( "Generated user/pass: " + generatedUser + "\t"
				+ generatedPass + "\n with home dir: " + dir );

		return ftpCredentials;
	}

	public boolean removeUser( final String username )
	{
		if ( !users.containsKey( username ) )
			return false;

		try {
			// first find active session and close it
			Iterator<FtpIoSession> iter = listener.getActiveSessions().iterator();
			while ( iter.hasNext() ) {
				FtpIoSession session = (FtpIoSession)iter.next();
				if ( session.getUser() == null )
					continue;
				if ( session.getUser().getName() == username ) {
					session.close();
				}
			}
			// afterwards delete user
			userManager.delete( username );
			// remove user from map (cache)
			synchronized ( users ) {
				users.remove( username );
				DbFtpUser.removeUserByName( username );
			}
			// remove his home dir
			try {
				File dir = new File( Globals.getPropertyString( Globals.PropString.FTPBASEDIR ) + "/" + username );
				Util.deleteFolder( dir );
			} catch (Exception e) {
				// don't care because it could be a downloading user
			}
			return true;
		} catch ( FtpException e ) {
			return false;
		}
	}

	@Override
	public void run()
	{
		try {
			//if (!ini) throw new Exception("FTP server needs to be initalized.");
			log.info( "Starting FTP Sever" );
			server.start();
		} catch ( FtpException e1 ) {
			e1.printStackTrace();
		}
	}

	public void addDbFtpUsers()
	{
		List<DbFtpUser> list = DbFtpUser.getAllUsers();
		Iterator<DbFtpUser> iter = list.iterator();
		
		int n = 0;
		
		while (iter.hasNext()) {
			DbFtpUser user = iter.next();
			Mode mode;
			if ( user.mode.equalsIgnoreCase( "downloading" ) )  {
				mode = Mode.DOWNLOADING;
			} else {
				mode = Mode.UPLOADING;
			}
			// don't readd user if it timeouted
			if ( (System.currentTimeMillis() - user.timestamp.getTime()) < FtpCredentialsScheduler.timeout ) {
				this.addUser( user.sessionId, user.username, user.password, mode, user.filename, false );
				n++;
			} else {
				DbFtpUser.removeUserByName( user.username );
			}
		}
		
		log.info( "Added " + n + " FTP users from DB." );
	}
}