blob: 2ee8366e441659c8509f01549f270587cf2ae753 [file] [log] [blame]
Jonathan Hart501f7882018-07-24 14:39:57 -07001/*
2 * Copyright 2018-present Open Networking Foundation
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package org.opencord.kafka.integrations;
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070018
Jonathan Hart501f7882018-07-24 14:39:57 -070019import com.fasterxml.jackson.databind.JsonNode;
20import com.fasterxml.jackson.databind.ObjectMapper;
21import com.fasterxml.jackson.databind.node.ObjectNode;
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070022import org.onosproject.net.AnnotationKeys;
23import org.onosproject.net.device.DeviceService;
Jonathan Hart501f7882018-07-24 14:39:57 -070024import org.opencord.aaa.AuthenticationEvent;
25import org.opencord.aaa.AuthenticationEventListener;
26import org.opencord.aaa.AuthenticationService;
kartikey dubey6e903092019-05-22 13:35:28 +000027import org.opencord.aaa.AuthenticationStatisticsEvent;
28import org.opencord.aaa.AuthenticationStatisticsEventListener;
29import org.opencord.aaa.AuthenticationStatisticsService;
Shubham Sharmaab296ff2019-06-27 12:31:01 +000030import org.opencord.aaa.RadiusOperationalStatusEvent;
31import org.opencord.aaa.RadiusOperationalStatusEventListener;
32import org.opencord.aaa.RadiusOperationalStatusService;
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070033import org.opencord.kafka.EventBusService;
34import org.osgi.service.component.annotations.Activate;
35import org.osgi.service.component.annotations.Component;
36import org.osgi.service.component.annotations.Deactivate;
37import org.osgi.service.component.annotations.Reference;
38import org.osgi.service.component.annotations.ReferenceCardinality;
39import org.osgi.service.component.annotations.ReferencePolicy;
Jonathan Hart501f7882018-07-24 14:39:57 -070040
Shubham Sharmaab296ff2019-06-27 12:31:01 +000041import java.time.Instant;
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070042import java.util.concurrent.atomic.AtomicReference;
Jonathan Hart2aad7792018-07-31 15:09:17 -040043
Jonathan Hart501f7882018-07-24 14:39:57 -070044/**
45 * Listens for AAA events and pushes them on a Kafka bus.
46 */
47@Component(immediate = true)
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070048public class AaaKafkaIntegration extends AbstractKafkaIntegration {
Jonathan Hart501f7882018-07-24 14:39:57 -070049
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070050 @Reference(cardinality = ReferenceCardinality.MANDATORY)
Jonathan Hart501f7882018-07-24 14:39:57 -070051 protected EventBusService eventBusService;
52
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070053 @Reference(cardinality = ReferenceCardinality.MANDATORY)
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070054 protected DeviceService deviceService;
55
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070056 @Reference(cardinality = ReferenceCardinality.OPTIONAL,
Matteo Scandolod50a4d32019-04-24 12:10:21 -070057 policy = ReferencePolicy.DYNAMIC,
Matteo Scandolo03f13c12019-03-20 14:38:12 -070058 bind = "bindAuthenticationService",
59 unbind = "unbindAuthenticationService")
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070060 protected volatile AuthenticationService ignore;
61 private final AtomicReference<AuthenticationService> authServiceRef = new AtomicReference<>();
62 @Reference(cardinality = ReferenceCardinality.OPTIONAL,
kartikey dubey6e903092019-05-22 13:35:28 +000063 policy = ReferencePolicy.DYNAMIC,
64 bind = "bindAuthenticationStatService",
65 unbind = "unbindAuthenticationStatService")
Carmelo Cascone7e73fa12019-07-15 18:29:01 -070066 protected volatile AuthenticationStatisticsService ignore2;
67 private final AtomicReference<AuthenticationStatisticsService> authStatServiceRef = new AtomicReference<>();
Jonathan Hart501f7882018-07-24 14:39:57 -070068
Shubham Sharmaab296ff2019-06-27 12:31:01 +000069 @Reference(cardinality = ReferenceCardinality.OPTIONAL,
70 policy = ReferencePolicy.DYNAMIC,
71 bind = "bindRadiusOperationalStatusService",
72 unbind = "unbindRadiusOperationalStatusService")
73 protected volatile RadiusOperationalStatusService ignore3;
74 protected final AtomicReference<RadiusOperationalStatusService> radiusOperationalStatusServiceRef
75 = new AtomicReference<>();
76
Jonathan Hart501f7882018-07-24 14:39:57 -070077 private final AuthenticationEventListener listener = new InternalAuthenticationListener();
kartikey dubey6e903092019-05-22 13:35:28 +000078 private final AuthenticationStatisticsEventListener authenticationStatisticsEventListener =
Shubham Sharma4cf37602019-06-20 07:16:08 +000079 new InternalAuthenticationStatisticsListner();
Shubham Sharmaab296ff2019-06-27 12:31:01 +000080 private final RadiusOperationalStatusEventListener radiusOperationalStatusEventListener =
81 new InternalRadiusOperationalStatusEventListener();
Jonathan Hart501f7882018-07-24 14:39:57 -070082
kartikey dubey6e903092019-05-22 13:35:28 +000083 // topics
Jonathan Hart501f7882018-07-24 14:39:57 -070084 private static final String TOPIC = "authentication.events";
kartikey dubey6e903092019-05-22 13:35:28 +000085 private static final String AUTHENTICATION_STATISTICS_TOPIC = "onos.aaa.stats.kpis";
Shubham Sharmaab296ff2019-06-27 12:31:01 +000086 private static final String RADIUS_OPERATION_STATUS_TOPIC = "radiusOperationalStatus.events";
kartikey dubey6e903092019-05-22 13:35:28 +000087 // auth event params
Jonathan Hart2aad7792018-07-31 15:09:17 -040088 private static final String TIMESTAMP = "timestamp";
Jonathan Hartf54e5ba2018-07-31 14:57:22 -040089 private static final String DEVICE_ID = "deviceId";
90 private static final String PORT_NUMBER = "portNumber";
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070091 private static final String SERIAL_NUMBER = "serialNumber";
Jonathan Hartf54e5ba2018-07-31 14:57:22 -040092 private static final String AUTHENTICATION_STATE = "authenticationState";
Jonathan Hart501f7882018-07-24 14:39:57 -070093
kartikey dubey6e903092019-05-22 13:35:28 +000094 // auth stats event params
95 private static final String ACCEPT_RESPONSES_RX = "acceptResponsesRx";
96 private static final String REJECT_RESPONSES_RX = "rejectResponsesRx";
97 private static final String CHALLENGE_RESPONSES_RX = "challengeResponsesRx";
98 private static final String ACCESS_REQUESTS_TX = "accessRequestsTx";
99 private static final String INVALID_VALIDATORS_RX = "invalidValidatorsRx";
100 private static final String UNKNOWN_TYPE_RX = "unknownTypeRx";
101 private static final String PENDING_REQUESTS = "pendingRequests";
102 private static final String DROPPED_RESPONSES_RX = "droppedResponsesRx";
103 private static final String MALFORMED_RESPONSES_RX = "malformedResponsesRx";
104 private static final String UNKNOWN_SERVER_RX = "unknownServerRx";
105 private static final String REQUEST_RTT_MILLIS = "requestRttMillis";
106 private static final String REQUEST_RE_TX = "requestReTx";
Shubham Sharma4cf37602019-06-20 07:16:08 +0000107 private static final String TIMED_OUT_PACKETS = "timedOutPackets";
Shubham Sharma51207a32019-08-09 06:54:22 +0000108 private static final String EAPOL_LOGOFF_RX = "eapolLogoffRx";
109 private static final String EAPOL_RES_IDENTITY_MSG_TRANS = "eapolResIdentityMsgTrans";
110 private static final String EAPOL_AUTH_SUCCESS_TRANS = "eapolAuthSuccessTrans";
111 private static final String EAPOL_AUTH_FAILURE_TRANS = "eapolAuthFailureTrans";
112 private static final String EAPOL_START_REQ_TRANS = "eapolStartReqTrans";
113 private static final String EAP_PKT_TX_AUTH_CHOOSE_EAP = "eapPktTxauthChooseEap";
114 private static final String EAPOL_TRANS_RESP_NOT_NAK = "eapolTransRespNotNak";
Shubham Sharma22a3e4f2019-09-16 10:07:02 +0000115 private static final String EAPOL_FRAMES_TX = "eapolFramesTx";
116 private static final String AUTH_STATE_IDLE = "authStateIdle";
117 private static final String REQUEST_ID_FRAMES_TX = "requestIdFramesTx";
118 private static final String REQUEST_EAP_FRAMES_TX = "requestEapFramesTx";
119 private static final String INVALID_PKT_TYPE = "invalidPktType";
120 private static final String INVALID_BODY_LENGTH = "invalidBodyLength";
121 private static final String VALID_EAPOL_FRAMES_RX = "validEapolFramesRx";
122 private static final String PENDING_RES_SUPPLICANT = "pendingResSupplicant";
123 private static final String RES_ID_EAP_FRAMES_RX = "resIdEapFramesRx";
kartikey dubey6e903092019-05-22 13:35:28 +0000124
Shubham Sharmaab296ff2019-06-27 12:31:01 +0000125 private static final String OPERATIONAL_STATUS = "radiusOperationalStatus";
126
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700127 protected void bindAuthenticationService(AuthenticationService incomingService) {
128 bindAndAddListener(incomingService, authServiceRef, listener);
Matteo Scandolo03f13c12019-03-20 14:38:12 -0700129 }
130
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700131 protected void unbindAuthenticationService(AuthenticationService outgoingService) {
132 unbindAndRemoveListener(outgoingService, authServiceRef, listener);
Matteo Scandolo03f13c12019-03-20 14:38:12 -0700133 }
134
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700135 protected void bindAuthenticationStatService(AuthenticationStatisticsService incomingService) {
136 bindAndAddListener(incomingService, authStatServiceRef, authenticationStatisticsEventListener);
kartikey dubey6e903092019-05-22 13:35:28 +0000137 }
138
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700139 protected void unbindAuthenticationStatService(AuthenticationStatisticsService outgoingService) {
140 unbindAndRemoveListener(outgoingService, authStatServiceRef, authenticationStatisticsEventListener);
kartikey dubey6e903092019-05-22 13:35:28 +0000141 }
142
Shubham Sharmaab296ff2019-06-27 12:31:01 +0000143 protected void bindRadiusOperationalStatusService(
144 RadiusOperationalStatusService radiusOperationalStatusService) {
145 bindAndAddListener(radiusOperationalStatusService, radiusOperationalStatusServiceRef,
146 radiusOperationalStatusEventListener);
147 }
148
149 protected void unbindRadiusOperationalStatusService(RadiusOperationalStatusService radiusOperationalStatusService) {
150 unbindAndRemoveListener(radiusOperationalStatusService, radiusOperationalStatusServiceRef,
151 radiusOperationalStatusEventListener);
152 }
153
Jonathan Hart501f7882018-07-24 14:39:57 -0700154 @Activate
155 public void activate() {
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700156 log.info("Started AaaKafkaIntegration");
Jonathan Hart501f7882018-07-24 14:39:57 -0700157 }
158
159 @Deactivate
160 public void deactivate() {
Carmelo Cascone7e73fa12019-07-15 18:29:01 -0700161 unbindAuthenticationService(authServiceRef.get());
162 unbindAuthenticationStatService(authStatServiceRef.get());
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700163 log.info("Stopped AaaKafkaIntegration");
Jonathan Hart501f7882018-07-24 14:39:57 -0700164 }
165
166 private void handle(AuthenticationEvent event) {
167 eventBusService.send(TOPIC, serialize(event));
168 }
169
kartikey dubey6e903092019-05-22 13:35:28 +0000170 private void handleStat(AuthenticationStatisticsEvent event) {
171 eventBusService.send(AUTHENTICATION_STATISTICS_TOPIC, serializeStat(event));
Matteo Scandolo29d3f7b2019-11-25 10:42:04 -0700172 log.trace("AuthenticationStatisticsEvent sent successfully");
kartikey dubey6e903092019-05-22 13:35:28 +0000173 }
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700174
Shubham Sharmaab296ff2019-06-27 12:31:01 +0000175 private void handleOperationalStatus(RadiusOperationalStatusEvent event) {
176 eventBusService.send(RADIUS_OPERATION_STATUS_TOPIC, serializeOperationalStatus(event));
177 log.info("RadiusOperationalStatusEvent sent successfully");
178 }
179
kartikey dubey6e903092019-05-22 13:35:28 +0000180 private JsonNode serialize(AuthenticationEvent event) {
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700181 String sn = deviceService.getPort(event.subject()).annotations().value(AnnotationKeys.PORT_NAME);
182
Jonathan Hart501f7882018-07-24 14:39:57 -0700183 ObjectMapper mapper = new ObjectMapper();
184 ObjectNode authEvent = mapper.createObjectNode();
Jonathan Hart2aad7792018-07-31 15:09:17 -0400185 authEvent.put(TIMESTAMP, Instant.now().toString());
Jonathan Hart501f7882018-07-24 14:39:57 -0700186 authEvent.put(DEVICE_ID, event.subject().deviceId().toString());
187 authEvent.put(PORT_NUMBER, event.subject().port().toString());
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700188 authEvent.put(SERIAL_NUMBER, sn);
Jonathan Hart501f7882018-07-24 14:39:57 -0700189 authEvent.put(AUTHENTICATION_STATE, event.type().toString());
190 return authEvent;
191 }
192
kartikey dubey6e903092019-05-22 13:35:28 +0000193 private JsonNode serializeStat(AuthenticationStatisticsEvent event) {
Matteo Scandolo29d3f7b2019-11-25 10:42:04 -0700194 log.trace("Serializing AuthenticationStatisticsEvent");
kartikey dubey6e903092019-05-22 13:35:28 +0000195 ObjectMapper mapper = new ObjectMapper();
196 ObjectNode authMetricsEvent = mapper.createObjectNode();
197 authMetricsEvent.put(TIMESTAMP, Instant.now().toString());
198 authMetricsEvent.put(ACCEPT_RESPONSES_RX, event.subject().getAcceptResponsesRx());
199 authMetricsEvent.put(REJECT_RESPONSES_RX, event.subject().getRejectResponsesRx());
200 authMetricsEvent.put(CHALLENGE_RESPONSES_RX, event.subject().getChallengeResponsesRx());
201 authMetricsEvent.put(ACCESS_REQUESTS_TX, event.subject().getAccessRequestsTx());
202 authMetricsEvent.put(INVALID_VALIDATORS_RX, event.subject().getInvalidValidatorsRx());
203 authMetricsEvent.put(UNKNOWN_TYPE_RX, event.subject().getUnknownTypeRx());
204 authMetricsEvent.put(PENDING_REQUESTS, event.subject().getPendingRequests());
205 authMetricsEvent.put(DROPPED_RESPONSES_RX, event.subject().getDroppedResponsesRx());
206 authMetricsEvent.put(MALFORMED_RESPONSES_RX, event.subject().getMalformedResponsesRx());
207 authMetricsEvent.put(UNKNOWN_SERVER_RX, event.subject().getUnknownServerRx());
208 authMetricsEvent.put(REQUEST_RTT_MILLIS, event.subject().getRequestRttMilis());
209 authMetricsEvent.put(REQUEST_RE_TX, event.subject().getRequestReTx());
Shubham Sharma4cf37602019-06-20 07:16:08 +0000210 authMetricsEvent.put(TIMED_OUT_PACKETS, event.subject().getTimedOutPackets());
Shubham Sharma51207a32019-08-09 06:54:22 +0000211 authMetricsEvent.put(EAPOL_LOGOFF_RX, event.subject().getEapolLogoffRx());
212 authMetricsEvent.put(EAPOL_RES_IDENTITY_MSG_TRANS, event.subject().getEapolResIdentityMsgTrans());
213 authMetricsEvent.put(EAPOL_AUTH_SUCCESS_TRANS, event.subject().getEapolAuthSuccessTrans());
214 authMetricsEvent.put(EAPOL_AUTH_FAILURE_TRANS, event.subject().getEapolAuthFailureTrans());
215 authMetricsEvent.put(EAPOL_START_REQ_TRANS, event.subject().getEapolStartReqTrans());
216 authMetricsEvent.put(EAP_PKT_TX_AUTH_CHOOSE_EAP, event.subject().getEapPktTxauthChooseEap());
217 authMetricsEvent.put(EAPOL_TRANS_RESP_NOT_NAK, event.subject().getEapolTransRespNotNak());
Shubham Sharma22a3e4f2019-09-16 10:07:02 +0000218 authMetricsEvent.put(EAPOL_FRAMES_TX, event.subject().getEapolFramesTx());
219 authMetricsEvent.put(AUTH_STATE_IDLE, event.subject().getAuthStateIdle());
220 authMetricsEvent.put(REQUEST_ID_FRAMES_TX, event.subject().getRequestIdFramesTx());
221 authMetricsEvent.put(REQUEST_EAP_FRAMES_TX, event.subject().getReqEapFramesTx());
222 authMetricsEvent.put(INVALID_PKT_TYPE, event.subject().getInvalidPktType());
223 authMetricsEvent.put(INVALID_BODY_LENGTH, event.subject().getInvalidBodyLength());
224 authMetricsEvent.put(VALID_EAPOL_FRAMES_RX, event.subject().getValidEapolFramesRx());
225 authMetricsEvent.put(PENDING_RES_SUPPLICANT, event.subject().getPendingResSupp());
226 authMetricsEvent.put(RES_ID_EAP_FRAMES_RX, event.subject().getEapolattrIdentity());
kartikey dubey6e903092019-05-22 13:35:28 +0000227 return authMetricsEvent;
228 }
229
Shubham Sharmaab296ff2019-06-27 12:31:01 +0000230 private JsonNode serializeOperationalStatus(RadiusOperationalStatusEvent event) {
231 log.info("Serializing RadiusOperationalStatusEvent");
232 ObjectMapper mapper = new ObjectMapper();
233 ObjectNode authMetricsEvent = mapper.createObjectNode();
234 authMetricsEvent.put(TIMESTAMP, Instant.now().toString());
235 log.info("---OPERATIONAL_STATUS----" + event.subject());
236 authMetricsEvent.put(OPERATIONAL_STATUS, event.subject());
237 return authMetricsEvent;
238 }
239
Jonathan Hart501f7882018-07-24 14:39:57 -0700240 private class InternalAuthenticationListener implements
Shubham Sharma4cf37602019-06-20 07:16:08 +0000241 AuthenticationEventListener {
Jonathan Hart501f7882018-07-24 14:39:57 -0700242 @Override
243 public void event(AuthenticationEvent authenticationEvent) {
244 handle(authenticationEvent);
245 }
246 }
kartikey dubey6e903092019-05-22 13:35:28 +0000247
248 private class InternalAuthenticationStatisticsListner implements
249 AuthenticationStatisticsEventListener {
250 @Override
251 public void event(AuthenticationStatisticsEvent authenticationStatisticsEvent) {
252 handleStat(authenticationStatisticsEvent);
253 }
254 }
Shubham Sharmaab296ff2019-06-27 12:31:01 +0000255
256 private class InternalRadiusOperationalStatusEventListener implements
257 RadiusOperationalStatusEventListener {
258 @Override
259 public void event(RadiusOperationalStatusEvent radiusOperationalStatusEvent) {
260 handleOperationalStatus(radiusOperationalStatusEvent);
261 }
262
263 }
Shubham Sharma22a3e4f2019-09-16 10:07:02 +0000264}