blob: e903a986d209676990818376546e637e82b3d41a [file] [log] [blame]
Jonathan Hart501f7882018-07-24 14:39:57 -07001/*
2 * Copyright 2018-present Open Networking Foundation
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package org.opencord.kafka.integrations;
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070018
Jonathan Hart501f7882018-07-24 14:39:57 -070019import com.fasterxml.jackson.databind.JsonNode;
20import com.fasterxml.jackson.databind.ObjectMapper;
21import com.fasterxml.jackson.databind.node.ObjectNode;
Shubham Sharma4cf37602019-06-20 07:16:08 +000022import java.time.Instant;
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070023import org.onosproject.net.AnnotationKeys;
24import org.onosproject.net.device.DeviceService;
Jonathan Hart501f7882018-07-24 14:39:57 -070025import org.opencord.aaa.AuthenticationEvent;
26import org.opencord.aaa.AuthenticationEventListener;
27import org.opencord.aaa.AuthenticationService;
kartikey dubey6e903092019-05-22 13:35:28 +000028import org.opencord.aaa.AuthenticationStatisticsEvent;
29import org.opencord.aaa.AuthenticationStatisticsEventListener;
30import org.opencord.aaa.AuthenticationStatisticsService;
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070031import org.opencord.kafka.EventBusService;
32import org.osgi.service.component.annotations.Activate;
33import org.osgi.service.component.annotations.Component;
34import org.osgi.service.component.annotations.Deactivate;
35import org.osgi.service.component.annotations.Reference;
36import org.osgi.service.component.annotations.ReferenceCardinality;
37import org.osgi.service.component.annotations.ReferencePolicy;
Jonathan Hart501f7882018-07-24 14:39:57 -070038
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070039import java.util.concurrent.atomic.AtomicReference;
Jonathan Hart2aad7792018-07-31 15:09:17 -040040
Jonathan Hart501f7882018-07-24 14:39:57 -070041/**
42 * Listens for AAA events and pushes them on a Kafka bus.
43 */
44@Component(immediate = true)
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070045public class AaaKafkaIntegration extends AbstractKafkaIntegration {
Jonathan Hart501f7882018-07-24 14:39:57 -070046
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070047 @Reference(cardinality = ReferenceCardinality.MANDATORY)
Jonathan Hart501f7882018-07-24 14:39:57 -070048 protected EventBusService eventBusService;
49
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070050 @Reference(cardinality = ReferenceCardinality.MANDATORY)
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070051 protected DeviceService deviceService;
52
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070053 @Reference(cardinality = ReferenceCardinality.OPTIONAL,
Matteo Scandolod50a4d32019-04-24 12:10:21 -070054 policy = ReferencePolicy.DYNAMIC,
Matteo Scandolo03f13c12019-03-20 14:38:12 -070055 bind = "bindAuthenticationService",
56 unbind = "unbindAuthenticationService")
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070057 protected volatile AuthenticationService ignore;
58 private final AtomicReference<AuthenticationService> authServiceRef = new AtomicReference<>();
59 @Reference(cardinality = ReferenceCardinality.OPTIONAL,
kartikey dubey6e903092019-05-22 13:35:28 +000060 policy = ReferencePolicy.DYNAMIC,
61 bind = "bindAuthenticationStatService",
62 unbind = "unbindAuthenticationStatService")
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070063 protected volatile AuthenticationStatisticsService ignore2;
64 private final AtomicReference<AuthenticationStatisticsService> authStatServiceRef = new AtomicReference<>();
Jonathan Hart501f7882018-07-24 14:39:57 -070065
66 private final AuthenticationEventListener listener = new InternalAuthenticationListener();
kartikey dubey6e903092019-05-22 13:35:28 +000067 private final AuthenticationStatisticsEventListener authenticationStatisticsEventListener =
Shubham Sharma4cf37602019-06-20 07:16:08 +000068 new InternalAuthenticationStatisticsListner();
Jonathan Hart501f7882018-07-24 14:39:57 -070069
kartikey dubey6e903092019-05-22 13:35:28 +000070 // topics
Jonathan Hart501f7882018-07-24 14:39:57 -070071 private static final String TOPIC = "authentication.events";
kartikey dubey6e903092019-05-22 13:35:28 +000072 private static final String AUTHENTICATION_STATISTICS_TOPIC = "onos.aaa.stats.kpis";
Jonathan Hart501f7882018-07-24 14:39:57 -070073
kartikey dubey6e903092019-05-22 13:35:28 +000074 // auth event params
Jonathan Hart2aad7792018-07-31 15:09:17 -040075 private static final String TIMESTAMP = "timestamp";
Jonathan Hartf54e5ba2018-07-31 14:57:22 -040076 private static final String DEVICE_ID = "deviceId";
77 private static final String PORT_NUMBER = "portNumber";
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070078 private static final String SERIAL_NUMBER = "serialNumber";
Jonathan Hartf54e5ba2018-07-31 14:57:22 -040079 private static final String AUTHENTICATION_STATE = "authenticationState";
Jonathan Hart501f7882018-07-24 14:39:57 -070080
kartikey dubey6e903092019-05-22 13:35:28 +000081 // auth stats event params
82 private static final String ACCEPT_RESPONSES_RX = "acceptResponsesRx";
83 private static final String REJECT_RESPONSES_RX = "rejectResponsesRx";
84 private static final String CHALLENGE_RESPONSES_RX = "challengeResponsesRx";
85 private static final String ACCESS_REQUESTS_TX = "accessRequestsTx";
86 private static final String INVALID_VALIDATORS_RX = "invalidValidatorsRx";
87 private static final String UNKNOWN_TYPE_RX = "unknownTypeRx";
88 private static final String PENDING_REQUESTS = "pendingRequests";
89 private static final String DROPPED_RESPONSES_RX = "droppedResponsesRx";
90 private static final String MALFORMED_RESPONSES_RX = "malformedResponsesRx";
91 private static final String UNKNOWN_SERVER_RX = "unknownServerRx";
92 private static final String REQUEST_RTT_MILLIS = "requestRttMillis";
93 private static final String REQUEST_RE_TX = "requestReTx";
Shubham Sharma4cf37602019-06-20 07:16:08 +000094 private static final String TIMED_OUT_PACKETS = "timedOutPackets";
Shubham Sharma51207a32019-08-09 06:54:22 +000095 private static final String EAPOL_LOGOFF_RX = "eapolLogoffRx";
96 private static final String EAPOL_RES_IDENTITY_MSG_TRANS = "eapolResIdentityMsgTrans";
97 private static final String EAPOL_AUTH_SUCCESS_TRANS = "eapolAuthSuccessTrans";
98 private static final String EAPOL_AUTH_FAILURE_TRANS = "eapolAuthFailureTrans";
99 private static final String EAPOL_START_REQ_TRANS = "eapolStartReqTrans";
100 private static final String EAP_PKT_TX_AUTH_CHOOSE_EAP = "eapPktTxauthChooseEap";
101 private static final String EAPOL_TRANS_RESP_NOT_NAK = "eapolTransRespNotNak";
Shubham Sharma22a3e4f2019-09-16 10:07:02 +0000102 private static final String EAPOL_FRAMES_TX = "eapolFramesTx";
103 private static final String AUTH_STATE_IDLE = "authStateIdle";
104 private static final String REQUEST_ID_FRAMES_TX = "requestIdFramesTx";
105 private static final String REQUEST_EAP_FRAMES_TX = "requestEapFramesTx";
106 private static final String INVALID_PKT_TYPE = "invalidPktType";
107 private static final String INVALID_BODY_LENGTH = "invalidBodyLength";
108 private static final String VALID_EAPOL_FRAMES_RX = "validEapolFramesRx";
109 private static final String PENDING_RES_SUPPLICANT = "pendingResSupplicant";
110 private static final String RES_ID_EAP_FRAMES_RX = "resIdEapFramesRx";
kartikey dubey6e903092019-05-22 13:35:28 +0000111
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700112 protected void bindAuthenticationService(AuthenticationService incomingService) {
113 bindAndAddListener(incomingService, authServiceRef, listener);
Matteo Scandolo03f13c12019-03-20 14:38:12 -0700114 }
115
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700116 protected void unbindAuthenticationService(AuthenticationService outgoingService) {
117 unbindAndRemoveListener(outgoingService, authServiceRef, listener);
Matteo Scandolo03f13c12019-03-20 14:38:12 -0700118 }
119
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700120 protected void bindAuthenticationStatService(AuthenticationStatisticsService incomingService) {
121 bindAndAddListener(incomingService, authStatServiceRef, authenticationStatisticsEventListener);
kartikey dubey6e903092019-05-22 13:35:28 +0000122 }
123
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700124 protected void unbindAuthenticationStatService(AuthenticationStatisticsService outgoingService) {
125 unbindAndRemoveListener(outgoingService, authStatServiceRef, authenticationStatisticsEventListener);
kartikey dubey6e903092019-05-22 13:35:28 +0000126 }
127
Jonathan Hart501f7882018-07-24 14:39:57 -0700128 @Activate
129 public void activate() {
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700130 log.info("Started AaaKafkaIntegration");
Jonathan Hart501f7882018-07-24 14:39:57 -0700131 }
132
133 @Deactivate
134 public void deactivate() {
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700135 unbindAuthenticationService(authServiceRef.get());
136 unbindAuthenticationStatService(authStatServiceRef.get());
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700137 log.info("Stopped AaaKafkaIntegration");
Jonathan Hart501f7882018-07-24 14:39:57 -0700138 }
139
140 private void handle(AuthenticationEvent event) {
141 eventBusService.send(TOPIC, serialize(event));
142 }
143
kartikey dubey6e903092019-05-22 13:35:28 +0000144 private void handleStat(AuthenticationStatisticsEvent event) {
145 eventBusService.send(AUTHENTICATION_STATISTICS_TOPIC, serializeStat(event));
Matteo Scandolo29d3f7b2019-11-25 10:42:04 -0700146 log.trace("AuthenticationStatisticsEvent sent successfully");
kartikey dubey6e903092019-05-22 13:35:28 +0000147 }
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700148
kartikey dubey6e903092019-05-22 13:35:28 +0000149 private JsonNode serialize(AuthenticationEvent event) {
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700150 String sn = deviceService.getPort(event.subject()).annotations().value(AnnotationKeys.PORT_NAME);
151
Jonathan Hart501f7882018-07-24 14:39:57 -0700152 ObjectMapper mapper = new ObjectMapper();
153 ObjectNode authEvent = mapper.createObjectNode();
Jonathan Hart2aad7792018-07-31 15:09:17 -0400154 authEvent.put(TIMESTAMP, Instant.now().toString());
Jonathan Hart501f7882018-07-24 14:39:57 -0700155 authEvent.put(DEVICE_ID, event.subject().deviceId().toString());
156 authEvent.put(PORT_NUMBER, event.subject().port().toString());
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700157 authEvent.put(SERIAL_NUMBER, sn);
Jonathan Hart501f7882018-07-24 14:39:57 -0700158 authEvent.put(AUTHENTICATION_STATE, event.type().toString());
159 return authEvent;
160 }
161
kartikey dubey6e903092019-05-22 13:35:28 +0000162 private JsonNode serializeStat(AuthenticationStatisticsEvent event) {
Matteo Scandolo29d3f7b2019-11-25 10:42:04 -0700163 log.trace("Serializing AuthenticationStatisticsEvent");
kartikey dubey6e903092019-05-22 13:35:28 +0000164 ObjectMapper mapper = new ObjectMapper();
165 ObjectNode authMetricsEvent = mapper.createObjectNode();
166 authMetricsEvent.put(TIMESTAMP, Instant.now().toString());
167 authMetricsEvent.put(ACCEPT_RESPONSES_RX, event.subject().getAcceptResponsesRx());
168 authMetricsEvent.put(REJECT_RESPONSES_RX, event.subject().getRejectResponsesRx());
169 authMetricsEvent.put(CHALLENGE_RESPONSES_RX, event.subject().getChallengeResponsesRx());
170 authMetricsEvent.put(ACCESS_REQUESTS_TX, event.subject().getAccessRequestsTx());
171 authMetricsEvent.put(INVALID_VALIDATORS_RX, event.subject().getInvalidValidatorsRx());
172 authMetricsEvent.put(UNKNOWN_TYPE_RX, event.subject().getUnknownTypeRx());
173 authMetricsEvent.put(PENDING_REQUESTS, event.subject().getPendingRequests());
174 authMetricsEvent.put(DROPPED_RESPONSES_RX, event.subject().getDroppedResponsesRx());
175 authMetricsEvent.put(MALFORMED_RESPONSES_RX, event.subject().getMalformedResponsesRx());
176 authMetricsEvent.put(UNKNOWN_SERVER_RX, event.subject().getUnknownServerRx());
177 authMetricsEvent.put(REQUEST_RTT_MILLIS, event.subject().getRequestRttMilis());
178 authMetricsEvent.put(REQUEST_RE_TX, event.subject().getRequestReTx());
Shubham Sharma4cf37602019-06-20 07:16:08 +0000179 authMetricsEvent.put(TIMED_OUT_PACKETS, event.subject().getTimedOutPackets());
Shubham Sharma51207a32019-08-09 06:54:22 +0000180 authMetricsEvent.put(EAPOL_LOGOFF_RX, event.subject().getEapolLogoffRx());
181 authMetricsEvent.put(EAPOL_RES_IDENTITY_MSG_TRANS, event.subject().getEapolResIdentityMsgTrans());
182 authMetricsEvent.put(EAPOL_AUTH_SUCCESS_TRANS, event.subject().getEapolAuthSuccessTrans());
183 authMetricsEvent.put(EAPOL_AUTH_FAILURE_TRANS, event.subject().getEapolAuthFailureTrans());
184 authMetricsEvent.put(EAPOL_START_REQ_TRANS, event.subject().getEapolStartReqTrans());
185 authMetricsEvent.put(EAP_PKT_TX_AUTH_CHOOSE_EAP, event.subject().getEapPktTxauthChooseEap());
186 authMetricsEvent.put(EAPOL_TRANS_RESP_NOT_NAK, event.subject().getEapolTransRespNotNak());
Shubham Sharma22a3e4f2019-09-16 10:07:02 +0000187 authMetricsEvent.put(EAPOL_FRAMES_TX, event.subject().getEapolFramesTx());
188 authMetricsEvent.put(AUTH_STATE_IDLE, event.subject().getAuthStateIdle());
189 authMetricsEvent.put(REQUEST_ID_FRAMES_TX, event.subject().getRequestIdFramesTx());
190 authMetricsEvent.put(REQUEST_EAP_FRAMES_TX, event.subject().getReqEapFramesTx());
191 authMetricsEvent.put(INVALID_PKT_TYPE, event.subject().getInvalidPktType());
192 authMetricsEvent.put(INVALID_BODY_LENGTH, event.subject().getInvalidBodyLength());
193 authMetricsEvent.put(VALID_EAPOL_FRAMES_RX, event.subject().getValidEapolFramesRx());
194 authMetricsEvent.put(PENDING_RES_SUPPLICANT, event.subject().getPendingResSupp());
195 authMetricsEvent.put(RES_ID_EAP_FRAMES_RX, event.subject().getEapolattrIdentity());
kartikey dubey6e903092019-05-22 13:35:28 +0000196 return authMetricsEvent;
197 }
198
Jonathan Hart501f7882018-07-24 14:39:57 -0700199 private class InternalAuthenticationListener implements
Shubham Sharma4cf37602019-06-20 07:16:08 +0000200 AuthenticationEventListener {
Jonathan Hart501f7882018-07-24 14:39:57 -0700201 @Override
202 public void event(AuthenticationEvent authenticationEvent) {
203 handle(authenticationEvent);
204 }
205 }
kartikey dubey6e903092019-05-22 13:35:28 +0000206
207 private class InternalAuthenticationStatisticsListner implements
208 AuthenticationStatisticsEventListener {
209 @Override
210 public void event(AuthenticationStatisticsEvent authenticationStatisticsEvent) {
211 handleStat(authenticationStatisticsEvent);
212 }
213 }
Shubham Sharma22a3e4f2019-09-16 10:07:02 +0000214}