mirror of
https://github.com/grafana/grafana.git
synced 2025-01-09 15:43:23 -06:00
f689b60426
* update go-redis lib from v2 -> v5 * add ssl option to the redis connection string fixes #18498
119 lines
3.2 KiB
Go
119 lines
3.2 KiB
Go
package remotecache
|
|
|
|
import (
|
|
"crypto/tls"
|
|
"fmt"
|
|
"strconv"
|
|
"strings"
|
|
"time"
|
|
|
|
"github.com/grafana/grafana/pkg/setting"
|
|
"github.com/grafana/grafana/pkg/util/errutil"
|
|
redis "gopkg.in/redis.v5"
|
|
)
|
|
|
|
const redisCacheType = "redis"
|
|
|
|
type redisStorage struct {
|
|
c *redis.Client
|
|
}
|
|
|
|
// parseRedisConnStr parses k=v pairs in csv and builds a redis Options object
|
|
func parseRedisConnStr(connStr string) (*redis.Options, error) {
|
|
keyValueCSV := strings.Split(connStr, ",")
|
|
options := &redis.Options{Network: "tcp"}
|
|
setTLSIsTrue := false
|
|
for _, rawKeyValue := range keyValueCSV {
|
|
keyValueTuple := strings.SplitN(rawKeyValue, "=", 2)
|
|
if len(keyValueTuple) != 2 {
|
|
if strings.HasPrefix(rawKeyValue, "password") {
|
|
// don't log the password
|
|
rawKeyValue = "password******"
|
|
}
|
|
return nil, fmt.Errorf("incorrect redis connection string format detected for '%v', format is key=value,key=value", rawKeyValue)
|
|
}
|
|
connKey := keyValueTuple[0]
|
|
connVal := keyValueTuple[1]
|
|
switch connKey {
|
|
case "addr":
|
|
options.Addr = connVal
|
|
case "password":
|
|
options.Password = connVal
|
|
case "db":
|
|
i, err := strconv.Atoi(connVal)
|
|
if err != nil {
|
|
return nil, errutil.Wrap("value for db in redis connection string must be a number", err)
|
|
}
|
|
options.DB = i
|
|
case "pool_size":
|
|
i, err := strconv.Atoi(connVal)
|
|
if err != nil {
|
|
return nil, errutil.Wrap("value for pool_size in redis connection string must be a number", err)
|
|
}
|
|
options.PoolSize = i
|
|
case "ssl":
|
|
if connVal != "true" && connVal != "false" && connVal != "insecure" {
|
|
return nil, fmt.Errorf("ssl must be set to 'true', 'false', or 'insecure' when present")
|
|
}
|
|
if connVal == "true" {
|
|
setTLSIsTrue = true // Needs addr already parsed, so set later
|
|
}
|
|
if connVal == "insecure" {
|
|
options.TLSConfig = &tls.Config{InsecureSkipVerify: true}
|
|
}
|
|
default:
|
|
return nil, fmt.Errorf("unrecognized option '%v' in redis connection string", connKey)
|
|
}
|
|
}
|
|
if setTLSIsTrue {
|
|
// Get hostname from the Addr property and set it on the configuration for TLS
|
|
sp := strings.Split(options.Addr, ":")
|
|
if len(sp) < 1 {
|
|
return nil, fmt.Errorf("unable to get hostname from the addr field, expected host:port, got '%v'", options.Addr)
|
|
}
|
|
options.TLSConfig = &tls.Config{ServerName: sp[0]}
|
|
}
|
|
return options, nil
|
|
}
|
|
|
|
func newRedisStorage(opts *setting.RemoteCacheOptions) (*redisStorage, error) {
|
|
opt, err := parseRedisConnStr(opts.ConnStr)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
return &redisStorage{c: redis.NewClient(opt)}, nil
|
|
}
|
|
|
|
// Set sets value to given key in session.
|
|
func (s *redisStorage) Set(key string, val interface{}, expires time.Duration) error {
|
|
item := &cachedItem{Val: val}
|
|
value, err := encodeGob(item)
|
|
if err != nil {
|
|
return err
|
|
}
|
|
status := s.c.Set(key, string(value), expires)
|
|
return status.Err()
|
|
}
|
|
|
|
// Get gets value by given key in session.
|
|
func (s *redisStorage) Get(key string) (interface{}, error) {
|
|
v := s.c.Get(key)
|
|
|
|
item := &cachedItem{}
|
|
err := decodeGob([]byte(v.Val()), item)
|
|
|
|
if err == nil {
|
|
return item.Val, nil
|
|
}
|
|
if err.Error() == "EOF" {
|
|
return nil, ErrCacheItemNotFound
|
|
}
|
|
return nil, err
|
|
}
|
|
|
|
// Delete delete a key from session.
|
|
func (s *redisStorage) Delete(key string) error {
|
|
cmd := s.c.Del(key)
|
|
return cmd.Err()
|
|
}
|