2023-10-26 05:52:43 +02:00
|
|
|
package awsses
|
|
|
|
|
|
|
|
import (
|
2024-12-17 02:32:13 +01:00
|
|
|
"errors"
|
2023-10-26 05:52:43 +02:00
|
|
|
"fmt"
|
2024-02-08 02:09:45 +01:00
|
|
|
"strings"
|
|
|
|
|
2023-10-26 05:52:43 +02:00
|
|
|
"github.com/TwiN/gatus/v5/alerting/alert"
|
2024-05-10 04:56:16 +02:00
|
|
|
"github.com/TwiN/gatus/v5/config/endpoint"
|
2024-12-17 02:32:13 +01:00
|
|
|
"github.com/TwiN/logr"
|
2023-10-26 05:52:43 +02:00
|
|
|
"github.com/aws/aws-sdk-go/aws"
|
|
|
|
"github.com/aws/aws-sdk-go/aws/awserr"
|
|
|
|
"github.com/aws/aws-sdk-go/aws/credentials"
|
|
|
|
"github.com/aws/aws-sdk-go/aws/session"
|
|
|
|
"github.com/aws/aws-sdk-go/service/ses"
|
2024-12-17 02:32:13 +01:00
|
|
|
"gopkg.in/yaml.v3"
|
2023-10-26 05:52:43 +02:00
|
|
|
)
|
|
|
|
|
|
|
|
const (
|
|
|
|
CharSet = "UTF-8"
|
|
|
|
)
|
|
|
|
|
2024-12-17 02:32:13 +01:00
|
|
|
var (
|
|
|
|
ErrDuplicateGroupOverride = errors.New("duplicate group override")
|
|
|
|
ErrMissingFromOrToFields = errors.New("from and to fields are required")
|
|
|
|
ErrInvalidAWSAuthConfig = errors.New("either both or neither of access-key-id and secret-access-key must be specified")
|
|
|
|
)
|
|
|
|
|
|
|
|
type Config struct {
|
2023-10-26 05:52:43 +02:00
|
|
|
AccessKeyID string `yaml:"access-key-id"`
|
|
|
|
SecretAccessKey string `yaml:"secret-access-key"`
|
|
|
|
Region string `yaml:"region"`
|
|
|
|
|
|
|
|
From string `yaml:"from"`
|
|
|
|
To string `yaml:"to"`
|
2024-12-17 02:32:13 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
func (cfg *Config) Validate() error {
|
|
|
|
if len(cfg.From) == 0 || len(cfg.To) == 0 {
|
|
|
|
return ErrMissingFromOrToFields
|
|
|
|
}
|
|
|
|
if !((len(cfg.AccessKeyID) == 0 && len(cfg.SecretAccessKey) == 0) || (len(cfg.AccessKeyID) > 0 && len(cfg.SecretAccessKey) > 0)) {
|
|
|
|
// if both AccessKeyID and SecretAccessKey are specified, we'll use these to authenticate,
|
|
|
|
// otherwise if neither are specified, then we'll fall back on IAM authentication.
|
|
|
|
return ErrInvalidAWSAuthConfig
|
|
|
|
}
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
|
|
|
func (cfg *Config) Merge(override *Config) {
|
|
|
|
if len(override.AccessKeyID) > 0 {
|
|
|
|
cfg.AccessKeyID = override.AccessKeyID
|
|
|
|
}
|
|
|
|
if len(override.SecretAccessKey) > 0 {
|
|
|
|
cfg.SecretAccessKey = override.SecretAccessKey
|
|
|
|
}
|
|
|
|
if len(override.Region) > 0 {
|
|
|
|
cfg.Region = override.Region
|
|
|
|
}
|
|
|
|
if len(override.From) > 0 {
|
|
|
|
cfg.From = override.From
|
|
|
|
}
|
|
|
|
if len(override.To) > 0 {
|
|
|
|
cfg.To = override.To
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
// AlertProvider is the configuration necessary for sending an alert using AWS Simple Email Service
|
|
|
|
type AlertProvider struct {
|
|
|
|
DefaultConfig Config `yaml:",inline"`
|
2023-10-26 05:52:43 +02:00
|
|
|
|
|
|
|
// DefaultAlert is the default alert configuration to use for endpoints with an alert of the appropriate type
|
|
|
|
DefaultAlert *alert.Alert `yaml:"default-alert,omitempty"`
|
|
|
|
|
|
|
|
// Overrides is a list of Override that may be prioritized over the default configuration
|
|
|
|
Overrides []Override `yaml:"overrides,omitempty"`
|
|
|
|
}
|
|
|
|
|
|
|
|
// Override is a case under which the default integration is overridden
|
|
|
|
type Override struct {
|
2024-12-17 02:32:13 +01:00
|
|
|
Group string `yaml:"group"`
|
|
|
|
Config `yaml:",inline"`
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
|
2024-12-17 02:32:13 +01:00
|
|
|
// Validate the provider's configuration
|
|
|
|
func (provider *AlertProvider) Validate() error {
|
2023-10-26 05:52:43 +02:00
|
|
|
registeredGroups := make(map[string]bool)
|
|
|
|
if provider.Overrides != nil {
|
|
|
|
for _, override := range provider.Overrides {
|
|
|
|
if isAlreadyRegistered := registeredGroups[override.Group]; isAlreadyRegistered || override.Group == "" || len(override.To) == 0 {
|
2024-12-17 02:32:13 +01:00
|
|
|
return ErrDuplicateGroupOverride
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
registeredGroups[override.Group] = true
|
|
|
|
}
|
|
|
|
}
|
2024-12-17 02:32:13 +01:00
|
|
|
return provider.DefaultConfig.Validate()
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
// Send an alert using the provider
|
2024-05-10 04:56:16 +02:00
|
|
|
func (provider *AlertProvider) Send(ep *endpoint.Endpoint, alert *alert.Alert, result *endpoint.Result, resolved bool) error {
|
2024-12-17 02:32:13 +01:00
|
|
|
cfg, err := provider.GetConfig(ep.Group, alert)
|
2023-10-26 05:52:43 +02:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2024-12-17 02:32:13 +01:00
|
|
|
awsSession, err := provider.createSession(cfg)
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
svc := ses.New(awsSession)
|
2024-05-10 04:56:16 +02:00
|
|
|
subject, body := provider.buildMessageSubjectAndBody(ep, alert, result, resolved)
|
2024-12-17 02:32:13 +01:00
|
|
|
emails := strings.Split(cfg.To, ",")
|
2023-10-26 05:52:43 +02:00
|
|
|
|
|
|
|
input := &ses.SendEmailInput{
|
|
|
|
Destination: &ses.Destination{
|
|
|
|
ToAddresses: aws.StringSlice(emails),
|
|
|
|
},
|
|
|
|
Message: &ses.Message{
|
|
|
|
Body: &ses.Body{
|
|
|
|
Text: &ses.Content{
|
|
|
|
Charset: aws.String(CharSet),
|
|
|
|
Data: aws.String(body),
|
|
|
|
},
|
|
|
|
},
|
|
|
|
Subject: &ses.Content{
|
|
|
|
Charset: aws.String(CharSet),
|
|
|
|
Data: aws.String(subject),
|
|
|
|
},
|
|
|
|
},
|
2024-12-17 02:32:13 +01:00
|
|
|
Source: aws.String(cfg.From),
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
2024-12-17 02:32:13 +01:00
|
|
|
if _, err = svc.SendEmail(input); err != nil {
|
2023-10-26 05:52:43 +02:00
|
|
|
if aerr, ok := err.(awserr.Error); ok {
|
|
|
|
switch aerr.Code() {
|
|
|
|
case ses.ErrCodeMessageRejected:
|
2024-12-17 02:32:13 +01:00
|
|
|
logr.Error(ses.ErrCodeMessageRejected + ": " + aerr.Error())
|
2023-10-26 05:52:43 +02:00
|
|
|
case ses.ErrCodeMailFromDomainNotVerifiedException:
|
2024-12-17 02:32:13 +01:00
|
|
|
logr.Error(ses.ErrCodeMailFromDomainNotVerifiedException + ": " + aerr.Error())
|
2023-10-26 05:52:43 +02:00
|
|
|
case ses.ErrCodeConfigurationSetDoesNotExistException:
|
2024-12-17 02:32:13 +01:00
|
|
|
logr.Error(ses.ErrCodeConfigurationSetDoesNotExistException + ": " + aerr.Error())
|
2023-10-26 05:52:43 +02:00
|
|
|
default:
|
2024-12-17 02:32:13 +01:00
|
|
|
logr.Error(aerr.Error())
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
} else {
|
|
|
|
// Print the error, cast err to awserr.Error to get the Code and
|
|
|
|
// Message from an error.
|
2024-12-17 02:32:13 +01:00
|
|
|
logr.Error(err.Error())
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2024-12-17 02:32:13 +01:00
|
|
|
func (provider *AlertProvider) createSession(cfg *Config) (*session.Session, error) {
|
|
|
|
awsConfig := &aws.Config{
|
|
|
|
Region: aws.String(cfg.Region),
|
|
|
|
}
|
|
|
|
if len(cfg.AccessKeyID) > 0 && len(cfg.SecretAccessKey) > 0 {
|
|
|
|
awsConfig.Credentials = credentials.NewStaticCredentials(cfg.AccessKeyID, cfg.SecretAccessKey, "")
|
|
|
|
}
|
|
|
|
return session.NewSession(awsConfig)
|
|
|
|
}
|
|
|
|
|
2023-10-26 05:52:43 +02:00
|
|
|
// buildMessageSubjectAndBody builds the message subject and body
|
2024-05-10 04:56:16 +02:00
|
|
|
func (provider *AlertProvider) buildMessageSubjectAndBody(ep *endpoint.Endpoint, alert *alert.Alert, result *endpoint.Result, resolved bool) (string, string) {
|
2024-04-11 02:46:17 +02:00
|
|
|
var subject, message string
|
2023-10-26 05:52:43 +02:00
|
|
|
if resolved {
|
2024-05-10 04:56:16 +02:00
|
|
|
subject = fmt.Sprintf("[%s] Alert resolved", ep.DisplayName())
|
|
|
|
message = fmt.Sprintf("An alert for %s has been resolved after passing successfully %d time(s) in a row", ep.DisplayName(), alert.SuccessThreshold)
|
2023-10-26 05:52:43 +02:00
|
|
|
} else {
|
2024-05-10 04:56:16 +02:00
|
|
|
subject = fmt.Sprintf("[%s] Alert triggered", ep.DisplayName())
|
|
|
|
message = fmt.Sprintf("An alert for %s has been triggered due to having failed %d time(s) in a row", ep.DisplayName(), alert.FailureThreshold)
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
2024-04-11 02:46:17 +02:00
|
|
|
var formattedConditionResults string
|
|
|
|
if len(result.ConditionResults) > 0 {
|
|
|
|
formattedConditionResults = "\n\nCondition results:\n"
|
|
|
|
for _, conditionResult := range result.ConditionResults {
|
|
|
|
var prefix string
|
|
|
|
if conditionResult.Success {
|
|
|
|
prefix = "✅"
|
|
|
|
} else {
|
|
|
|
prefix = "❌"
|
|
|
|
}
|
|
|
|
formattedConditionResults += fmt.Sprintf("%s %s\n", prefix, conditionResult.Condition)
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
var description string
|
|
|
|
if alertDescription := alert.GetDescription(); len(alertDescription) > 0 {
|
|
|
|
description = "\n\nAlert description: " + alertDescription
|
|
|
|
}
|
2024-04-11 02:46:17 +02:00
|
|
|
return subject, message + description + formattedConditionResults
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
|
2024-12-17 02:32:13 +01:00
|
|
|
// GetDefaultAlert returns the provider's default alert configuration
|
|
|
|
func (provider *AlertProvider) GetDefaultAlert() *alert.Alert {
|
|
|
|
return provider.DefaultAlert
|
|
|
|
}
|
|
|
|
|
|
|
|
// GetConfig returns the configuration for the provider with the overrides applied
|
|
|
|
func (provider *AlertProvider) GetConfig(group string, alert *alert.Alert) (*Config, error) {
|
|
|
|
cfg := provider.DefaultConfig
|
|
|
|
// Handle group overrides
|
2023-10-26 05:52:43 +02:00
|
|
|
if provider.Overrides != nil {
|
|
|
|
for _, override := range provider.Overrides {
|
|
|
|
if group == override.Group {
|
2024-12-17 02:32:13 +01:00
|
|
|
cfg.Merge(&override.Config)
|
|
|
|
break
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
2024-12-17 02:32:13 +01:00
|
|
|
// Handle alert overrides
|
|
|
|
if len(alert.ProviderOverride) != 0 {
|
|
|
|
overrideConfig := Config{}
|
|
|
|
if err := yaml.Unmarshal(alert.ProviderOverrideAsBytes(), &overrideConfig); err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
|
|
|
cfg.Merge(&overrideConfig)
|
|
|
|
}
|
|
|
|
// Validate the configuration
|
|
|
|
err := cfg.Validate()
|
|
|
|
return &cfg, err
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|
|
|
|
|
2024-12-17 02:32:13 +01:00
|
|
|
// ValidateOverrides validates the alert's provider override and, if present, the group override
|
|
|
|
func (provider *AlertProvider) ValidateOverrides(group string, alert *alert.Alert) error {
|
|
|
|
_, err := provider.GetConfig(group, alert)
|
|
|
|
return err
|
2023-10-26 05:52:43 +02:00
|
|
|
}
|