blob: fe7051b11b3f49d567cd4acc33e722fb656eba80 [file] [log] [blame]
Jonathan Hart501f7882018-07-24 14:39:57 -07001/*
2 * Copyright 2018-present Open Networking Foundation
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package org.opencord.kafka.integrations;
Shubham Sharma9188dde2019-06-20 07:16:08 +000018import java.time.Instant;
19
Jonathan Hart501f7882018-07-24 14:39:57 -070020import org.apache.felix.scr.annotations.Activate;
21import org.apache.felix.scr.annotations.Component;
22import org.apache.felix.scr.annotations.Deactivate;
23import org.apache.felix.scr.annotations.Reference;
24import org.apache.felix.scr.annotations.ReferenceCardinality;
Matteo Scandolod50a4d32019-04-24 12:10:21 -070025import org.apache.felix.scr.annotations.ReferencePolicy;
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070026import org.onosproject.net.AnnotationKeys;
27import org.onosproject.net.device.DeviceService;
Jonathan Hart501f7882018-07-24 14:39:57 -070028import org.opencord.aaa.AuthenticationEvent;
29import org.opencord.aaa.AuthenticationEventListener;
30import org.opencord.aaa.AuthenticationService;
kartikey dubey6e903092019-05-22 13:35:28 +000031import org.opencord.aaa.AuthenticationStatisticsEvent;
32import org.opencord.aaa.AuthenticationStatisticsEventListener;
33import org.opencord.aaa.AuthenticationStatisticsService;
Shubham Sharma9188dde2019-06-20 07:16:08 +000034import org.opencord.kafka.EventBusService;
Jonathan Hart501f7882018-07-24 14:39:57 -070035import org.slf4j.Logger;
36import org.slf4j.LoggerFactory;
37
Shubham Sharma9188dde2019-06-20 07:16:08 +000038import com.fasterxml.jackson.databind.JsonNode;
39import com.fasterxml.jackson.databind.ObjectMapper;
40import com.fasterxml.jackson.databind.node.ObjectNode;
Jonathan Hart2aad7792018-07-31 15:09:17 -040041
Jonathan Hart501f7882018-07-24 14:39:57 -070042/**
43 * Listens for AAA events and pushes them on a Kafka bus.
44 */
45@Component(immediate = true)
46public class AaaKafkaIntegration {
47
48 public Logger log = LoggerFactory.getLogger(getClass());
49
50 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
51 protected EventBusService eventBusService;
52
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070053 @Reference(cardinality = ReferenceCardinality.MANDATORY_UNARY)
54 protected DeviceService deviceService;
55
Matteo Scandolo03f13c12019-03-20 14:38:12 -070056 @Reference(cardinality = ReferenceCardinality.OPTIONAL_UNARY,
Matteo Scandolod50a4d32019-04-24 12:10:21 -070057 policy = ReferencePolicy.DYNAMIC,
Matteo Scandolo03f13c12019-03-20 14:38:12 -070058 bind = "bindAuthenticationService",
59 unbind = "unbindAuthenticationService")
Jonathan Hart501f7882018-07-24 14:39:57 -070060 protected AuthenticationService authenticationService;
kartikey dubey6e903092019-05-22 13:35:28 +000061 @Reference(cardinality = ReferenceCardinality.OPTIONAL_UNARY,
62 policy = ReferencePolicy.DYNAMIC,
63 bind = "bindAuthenticationStatService",
64 unbind = "unbindAuthenticationStatService")
65 protected AuthenticationStatisticsService authenticationStatisticsService;
Jonathan Hart501f7882018-07-24 14:39:57 -070066
67 private final AuthenticationEventListener listener = new InternalAuthenticationListener();
kartikey dubey6e903092019-05-22 13:35:28 +000068 private final AuthenticationStatisticsEventListener authenticationStatisticsEventListener =
Shubham Sharma9188dde2019-06-20 07:16:08 +000069 new InternalAuthenticationStatisticsListner();
Jonathan Hart501f7882018-07-24 14:39:57 -070070
kartikey dubey6e903092019-05-22 13:35:28 +000071 // topics
Jonathan Hart501f7882018-07-24 14:39:57 -070072 private static final String TOPIC = "authentication.events";
kartikey dubey6e903092019-05-22 13:35:28 +000073 private static final String AUTHENTICATION_STATISTICS_TOPIC = "onos.aaa.stats.kpis";
Jonathan Hart501f7882018-07-24 14:39:57 -070074
kartikey dubey6e903092019-05-22 13:35:28 +000075 // auth event params
Jonathan Hart2aad7792018-07-31 15:09:17 -040076 private static final String TIMESTAMP = "timestamp";
Jonathan Hartf54e5ba2018-07-31 14:57:22 -040077 private static final String DEVICE_ID = "deviceId";
78 private static final String PORT_NUMBER = "portNumber";
Matteo Scandolo580fb7f2019-04-17 15:33:15 -070079 private static final String SERIAL_NUMBER = "serialNumber";
Jonathan Hartf54e5ba2018-07-31 14:57:22 -040080 private static final String AUTHENTICATION_STATE = "authenticationState";
Jonathan Hart501f7882018-07-24 14:39:57 -070081
kartikey dubey6e903092019-05-22 13:35:28 +000082 // auth stats event params
83 private static final String ACCEPT_RESPONSES_RX = "acceptResponsesRx";
84 private static final String REJECT_RESPONSES_RX = "rejectResponsesRx";
85 private static final String CHALLENGE_RESPONSES_RX = "challengeResponsesRx";
86 private static final String ACCESS_REQUESTS_TX = "accessRequestsTx";
87 private static final String INVALID_VALIDATORS_RX = "invalidValidatorsRx";
88 private static final String UNKNOWN_TYPE_RX = "unknownTypeRx";
89 private static final String PENDING_REQUESTS = "pendingRequests";
90 private static final String DROPPED_RESPONSES_RX = "droppedResponsesRx";
91 private static final String MALFORMED_RESPONSES_RX = "malformedResponsesRx";
92 private static final String UNKNOWN_SERVER_RX = "unknownServerRx";
93 private static final String REQUEST_RTT_MILLIS = "requestRttMillis";
94 private static final String REQUEST_RE_TX = "requestReTx";
Shubham Sharma9188dde2019-06-20 07:16:08 +000095 private static final String TIMED_OUT_PACKETS = "timedOutPackets";
Shubham Sharma0357efb2019-08-09 06:54:22 +000096 private static final String EAPOL_LOGOFF_RX = "eapolLogoffRx";
97 private static final String EAPOL_RES_IDENTITY_MSG_TRANS = "eapolResIdentityMsgTrans";
98 private static final String EAPOL_AUTH_SUCCESS_TRANS = "eapolAuthSuccessTrans";
99 private static final String EAPOL_AUTH_FAILURE_TRANS = "eapolAuthFailureTrans";
100 private static final String EAPOL_START_REQ_TRANS = "eapolStartReqTrans";
101 private static final String EAP_PKT_TX_AUTH_CHOOSE_EAP = "eapPktTxauthChooseEap";
102 private static final String EAPOL_TRANS_RESP_NOT_NAK = "eapolTransRespNotNak";
Shubham Sharmaabe0a262019-09-16 10:07:02 +0000103 private static final String EAPOL_FRAMES_TX = "eapolFramesTx";
104 private static final String AUTH_STATE_IDLE = "authStateIdle";
105 private static final String REQUEST_ID_FRAMES_TX = "requestIdFramesTx";
106 private static final String REQUEST_EAP_FRAMES_TX = "requestEapFramesTx";
107 private static final String INVALID_PKT_TYPE = "invalidPktType";
108 private static final String INVALID_BODY_LENGTH = "invalidBodyLength";
109 private static final String VALID_EAPOL_FRAMES_RX = "validEapolFramesRx";
110 private static final String PENDING_RES_SUPPLICANT = "pendingResSupplicant";
111 private static final String RES_ID_EAP_FRAMES_RX = "resIdEapFramesRx";
kartikey dubey6e903092019-05-22 13:35:28 +0000112
Matteo Scandolo03f13c12019-03-20 14:38:12 -0700113 protected void bindAuthenticationService(AuthenticationService authenticationService) {
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700114 log.info("bindAuthenticationService");
Matteo Scandolo03f13c12019-03-20 14:38:12 -0700115 if (this.authenticationService == null) {
116 log.info("Binding AuthenticationService");
117 this.authenticationService = authenticationService;
118 log.info("Adding listener on AuthenticationService");
119 authenticationService.addListener(listener);
120 } else {
121 log.warn("Trying to bind AuthenticationService but it is already bound");
122 }
123 }
124
125 protected void unbindAuthenticationService(AuthenticationService authenticationService) {
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700126 log.info("unbindAuthenticationService");
Matteo Scandolo03f13c12019-03-20 14:38:12 -0700127 if (this.authenticationService == authenticationService) {
128 log.info("Unbinding AuthenticationService");
129 this.authenticationService = null;
130 log.info("Removing listener on AuthenticationService");
131 authenticationService.removeListener(listener);
132 } else {
133 log.warn("Trying to unbind AuthenticationService but it is already unbound");
134 }
135 }
136
kartikey dubey6e903092019-05-22 13:35:28 +0000137 protected void bindAuthenticationStatService(AuthenticationStatisticsService authenticationStatisticsService) {
138 log.info("bindAuthenticationStatService");
139 if (this.authenticationStatisticsService == null) {
140 log.info("Binding AuthenticationStastService");
141 this.authenticationStatisticsService = authenticationStatisticsService;
142 log.info("Adding listener on AuthenticationStatService");
143 authenticationStatisticsService.addListener(authenticationStatisticsEventListener);
144 } else {
145 log.warn("Trying to bind AuthenticationStatService but it is already bound");
146 }
147 }
148
149 protected void unbindAuthenticationStatService(AuthenticationStatisticsService authenticationStatisticsService) {
150 log.info("unbindAuthenticationStatService");
151 if (this.authenticationStatisticsService == authenticationStatisticsService) {
152 log.info("Unbinding AuthenticationStatService");
153 this.authenticationStatisticsService = null;
154 log.info("Removing listener on AuthenticationStatService");
155 authenticationStatisticsService.removeListener(authenticationStatisticsEventListener);
156 } else {
157 log.warn("Trying to unbind AuthenticationStatService but it is already unbound");
158 }
159 }
160
Jonathan Hart501f7882018-07-24 14:39:57 -0700161 @Activate
162 public void activate() {
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700163 log.info("Started AaaKafkaIntegration");
Jonathan Hart501f7882018-07-24 14:39:57 -0700164 }
165
166 @Deactivate
167 public void deactivate() {
Matteo Scandolod50a4d32019-04-24 12:10:21 -0700168 log.info("Stopped AaaKafkaIntegration");
Jonathan Hart501f7882018-07-24 14:39:57 -0700169 }
170
171 private void handle(AuthenticationEvent event) {
172 eventBusService.send(TOPIC, serialize(event));
173 }
174
kartikey dubey6e903092019-05-22 13:35:28 +0000175 private void handleStat(AuthenticationStatisticsEvent event) {
176 eventBusService.send(AUTHENTICATION_STATISTICS_TOPIC, serializeStat(event));
Matteo Scandoloeba419b2019-11-25 10:42:04 -0700177 log.trace("AuthenticationStatisticsEvent sent successfully");
kartikey dubey6e903092019-05-22 13:35:28 +0000178 }
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700179
kartikey dubey6e903092019-05-22 13:35:28 +0000180 private JsonNode serialize(AuthenticationEvent event) {
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700181 String sn = deviceService.getPort(event.subject()).annotations().value(AnnotationKeys.PORT_NAME);
182
Jonathan Hart501f7882018-07-24 14:39:57 -0700183 ObjectMapper mapper = new ObjectMapper();
184 ObjectNode authEvent = mapper.createObjectNode();
Jonathan Hart2aad7792018-07-31 15:09:17 -0400185 authEvent.put(TIMESTAMP, Instant.now().toString());
Jonathan Hart501f7882018-07-24 14:39:57 -0700186 authEvent.put(DEVICE_ID, event.subject().deviceId().toString());
187 authEvent.put(PORT_NUMBER, event.subject().port().toString());
Matteo Scandolo580fb7f2019-04-17 15:33:15 -0700188 authEvent.put(SERIAL_NUMBER, sn);
Jonathan Hart501f7882018-07-24 14:39:57 -0700189 authEvent.put(AUTHENTICATION_STATE, event.type().toString());
190 return authEvent;
191 }
192
kartikey dubey6e903092019-05-22 13:35:28 +0000193 private JsonNode serializeStat(AuthenticationStatisticsEvent event) {
Matteo Scandoloeba419b2019-11-25 10:42:04 -0700194 log.trace("Serializing AuthenticationStatisticsEvent");
kartikey dubey6e903092019-05-22 13:35:28 +0000195 ObjectMapper mapper = new ObjectMapper();
196 ObjectNode authMetricsEvent = mapper.createObjectNode();
197 authMetricsEvent.put(TIMESTAMP, Instant.now().toString());
198 authMetricsEvent.put(ACCEPT_RESPONSES_RX, event.subject().getAcceptResponsesRx());
199 authMetricsEvent.put(REJECT_RESPONSES_RX, event.subject().getRejectResponsesRx());
200 authMetricsEvent.put(CHALLENGE_RESPONSES_RX, event.subject().getChallengeResponsesRx());
201 authMetricsEvent.put(ACCESS_REQUESTS_TX, event.subject().getAccessRequestsTx());
202 authMetricsEvent.put(INVALID_VALIDATORS_RX, event.subject().getInvalidValidatorsRx());
203 authMetricsEvent.put(UNKNOWN_TYPE_RX, event.subject().getUnknownTypeRx());
204 authMetricsEvent.put(PENDING_REQUESTS, event.subject().getPendingRequests());
205 authMetricsEvent.put(DROPPED_RESPONSES_RX, event.subject().getDroppedResponsesRx());
206 authMetricsEvent.put(MALFORMED_RESPONSES_RX, event.subject().getMalformedResponsesRx());
207 authMetricsEvent.put(UNKNOWN_SERVER_RX, event.subject().getUnknownServerRx());
208 authMetricsEvent.put(REQUEST_RTT_MILLIS, event.subject().getRequestRttMilis());
209 authMetricsEvent.put(REQUEST_RE_TX, event.subject().getRequestReTx());
Shubham Sharma9188dde2019-06-20 07:16:08 +0000210 authMetricsEvent.put(TIMED_OUT_PACKETS, event.subject().getTimedOutPackets());
Shubham Sharma0357efb2019-08-09 06:54:22 +0000211 authMetricsEvent.put(EAPOL_LOGOFF_RX, event.subject().getEapolLogoffRx());
212 authMetricsEvent.put(EAPOL_RES_IDENTITY_MSG_TRANS, event.subject().getEapolResIdentityMsgTrans());
213 authMetricsEvent.put(EAPOL_AUTH_SUCCESS_TRANS, event.subject().getEapolAuthSuccessTrans());
214 authMetricsEvent.put(EAPOL_AUTH_FAILURE_TRANS, event.subject().getEapolAuthFailureTrans());
215 authMetricsEvent.put(EAPOL_START_REQ_TRANS, event.subject().getEapolStartReqTrans());
216 authMetricsEvent.put(EAP_PKT_TX_AUTH_CHOOSE_EAP, event.subject().getEapPktTxauthChooseEap());
217 authMetricsEvent.put(EAPOL_TRANS_RESP_NOT_NAK, event.subject().getEapolTransRespNotNak());
Shubham Sharmaabe0a262019-09-16 10:07:02 +0000218 authMetricsEvent.put(EAPOL_FRAMES_TX, event.subject().getEapolFramesTx());
219 authMetricsEvent.put(AUTH_STATE_IDLE, event.subject().getAuthStateIdle());
220 authMetricsEvent.put(REQUEST_ID_FRAMES_TX, event.subject().getRequestIdFramesTx());
221 authMetricsEvent.put(REQUEST_EAP_FRAMES_TX, event.subject().getReqEapFramesTx());
222 authMetricsEvent.put(INVALID_PKT_TYPE, event.subject().getInvalidPktType());
223 authMetricsEvent.put(INVALID_BODY_LENGTH, event.subject().getInvalidBodyLength());
224 authMetricsEvent.put(VALID_EAPOL_FRAMES_RX, event.subject().getValidEapolFramesRx());
225 authMetricsEvent.put(PENDING_RES_SUPPLICANT, event.subject().getPendingResSupp());
226 authMetricsEvent.put(RES_ID_EAP_FRAMES_RX, event.subject().getEapolattrIdentity());
kartikey dubey6e903092019-05-22 13:35:28 +0000227 return authMetricsEvent;
228 }
229
Jonathan Hart501f7882018-07-24 14:39:57 -0700230 private class InternalAuthenticationListener implements
Shubham Sharma9188dde2019-06-20 07:16:08 +0000231 AuthenticationEventListener {
Jonathan Hart501f7882018-07-24 14:39:57 -0700232 @Override
233 public void event(AuthenticationEvent authenticationEvent) {
234 handle(authenticationEvent);
235 }
236 }
kartikey dubey6e903092019-05-22 13:35:28 +0000237
238 private class InternalAuthenticationStatisticsListner implements
239 AuthenticationStatisticsEventListener {
240 @Override
241 public void event(AuthenticationStatisticsEvent authenticationStatisticsEvent) {
242 handleStat(authenticationStatisticsEvent);
243 }
244 }
Shubham Sharmaabe0a262019-09-16 10:07:02 +0000245}