 65517f3b7f
			
		
	
	65517f3b7f
	
	
	
		
			
			* prepare client auth with inbuilt server Signed-off-by: Jens Langhammer <jens@goauthentik.io> * introduce better IPC auth Signed-off-by: Jens Langhammer <jens@goauthentik.io> * init Signed-off-by: Jens Langhammer <jens@goauthentik.io> * start stage Signed-off-by: Jens Langhammer <jens@goauthentik.io> * only allow trusted proxies to set MTLS headers Signed-off-by: Jens Langhammer <jens@goauthentik.io> * more stage progress Signed-off-by: Jens Langhammer <jens@goauthentik.io> * dont fail if ipc_key doesn't exist Signed-off-by: Jens Langhammer <jens@goauthentik.io> * actually install app Signed-off-by: Jens Langhammer <jens@goauthentik.io> * fix Signed-off-by: Jens Langhammer <jens@goauthentik.io> * add some tests Signed-off-by: Jens Langhammer <jens@goauthentik.io> * update API Signed-off-by: Jens Langhammer <jens@goauthentik.io> * fix unquote Signed-off-by: Jens Langhammer <jens@goauthentik.io> * fix int serial number not jsonable Signed-off-by: Jens Langhammer <jens@goauthentik.io> * init ui Signed-off-by: Jens Langhammer <jens@goauthentik.io> * add UI Signed-off-by: Jens Langhammer <jens@goauthentik.io> * unrelated: fix git pull in makefile Signed-off-by: Jens Langhammer <jens@goauthentik.io> * fix parse helper Signed-off-by: Jens Langhammer <jens@goauthentik.io> * add test for outpost Signed-off-by: Jens Langhammer <jens@goauthentik.io> * more tests and improvements Signed-off-by: Jens Langhammer <jens@goauthentik.io> * improve labels Signed-off-by: Jens Langhammer <jens@goauthentik.io> * add support for multiple CAs on brand Signed-off-by: Jens Langhammer <jens@goauthentik.io> * add support for multiple CAs to MTLS stage Signed-off-by: Jens Langhammer <jens@goauthentik.io> * dont log ipcuser secret views Signed-off-by: Jens Langhammer <jens@goauthentik.io> * fix go mod Signed-off-by: Jens Langhammer <jens@goauthentik.io> --------- Signed-off-by: Jens Langhammer <jens@goauthentik.io>
		
			
				
	
	
		
			59 lines
		
	
	
		
			1.8 KiB
		
	
	
	
		
			Go
		
	
	
	
	
	
			
		
		
	
	
			59 lines
		
	
	
		
			1.8 KiB
		
	
	
	
		
			Go
		
	
	
	
	
	
| package web
 | |
| 
 | |
| import (
 | |
| 	"fmt"
 | |
| 	"io"
 | |
| 	"net/http"
 | |
| 
 | |
| 	"github.com/gorilla/mux"
 | |
| 	"github.com/prometheus/client_golang/prometheus"
 | |
| 	"github.com/prometheus/client_golang/prometheus/promauto"
 | |
| 	"github.com/prometheus/client_golang/prometheus/promhttp"
 | |
| 	log "github.com/sirupsen/logrus"
 | |
| 	"goauthentik.io/internal/config"
 | |
| 	"goauthentik.io/internal/utils/sentry"
 | |
| )
 | |
| 
 | |
| var Requests = promauto.NewHistogramVec(prometheus.HistogramOpts{
 | |
| 	Name: "authentik_main_request_duration_seconds",
 | |
| 	Help: "API request latencies in seconds",
 | |
| }, []string{"dest"})
 | |
| 
 | |
| func (ws *WebServer) runMetricsServer() {
 | |
| 	l := log.WithField("logger", "authentik.router.metrics")
 | |
| 
 | |
| 	m := mux.NewRouter()
 | |
| 	m.Use(sentry.SentryNoSampleMiddleware)
 | |
| 	m.Path("/metrics").HandlerFunc(func(rw http.ResponseWriter, r *http.Request) {
 | |
| 		promhttp.InstrumentMetricHandler(
 | |
| 			prometheus.DefaultRegisterer, promhttp.HandlerFor(prometheus.DefaultGatherer, promhttp.HandlerOpts{
 | |
| 				DisableCompression: true,
 | |
| 			}),
 | |
| 		).ServeHTTP(rw, r)
 | |
| 
 | |
| 		// Get upstream metrics
 | |
| 		re, err := http.NewRequest("GET", fmt.Sprintf("%s%s-/metrics/", ws.upstreamURL.String(), config.Get().Web.Path), nil)
 | |
| 		if err != nil {
 | |
| 			l.WithError(err).Warning("failed to get upstream metrics")
 | |
| 			return
 | |
| 		}
 | |
| 		re.Header.Set("Authorization", fmt.Sprintf("Bearer %s", ws.metricsKey))
 | |
| 		res, err := ws.upstreamHttpClient().Do(re)
 | |
| 		if err != nil {
 | |
| 			l.WithError(err).Warning("failed to get upstream metrics")
 | |
| 			return
 | |
| 		}
 | |
| 		_, err = io.Copy(rw, res.Body)
 | |
| 		if err != nil {
 | |
| 			l.WithError(err).Warning("failed to get upstream metrics")
 | |
| 			return
 | |
| 		}
 | |
| 	})
 | |
| 	l.WithField("listen", config.Get().Listen.Metrics).Info("Starting Metrics server")
 | |
| 	err := http.ListenAndServe(config.Get().Listen.Metrics, m)
 | |
| 	if err != nil {
 | |
| 		l.WithError(err).Warning("Failed to start metrics server")
 | |
| 	}
 | |
| 	l.WithField("listen", config.Get().Listen.Metrics).Info("Stopping Metrics server")
 | |
| }
 |