update-dns-tool.py 8.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221
  1. #!/usr/bin/env python3
  2. #
  3. # Copyright (c) 2017-2020 Joe Clarke <jclarke@cisco.com>
  4. # All rights reserved.
  5. #
  6. # Redistribution and use in source and binary forms, with or without
  7. # modification, are permitted provided that the following conditions
  8. # are met:
  9. # 1. Redistributions of source code must retain the above copyright
  10. # notice, this list of conditions and the following disclaimer.
  11. # 2. Redistributions in binary form must reproduce the above copyright
  12. # notice, this list of conditions and the following disclaimer in the
  13. # documentation and/or other materials provided with the distribution.
  14. #
  15. # THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
  16. # ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  17. # IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
  18. # ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
  19. # FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
  20. # DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
  21. # OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
  22. # HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
  23. # LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
  24. # OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
  25. # SUCH DAMAGE.
  26. from __future__ import print_function
  27. from builtins import str
  28. import requests
  29. from requests.packages.urllib3.exceptions import InsecureRequestWarning
  30. requests.packages.urllib3.disable_warnings(InsecureRequestWarning)
  31. import json
  32. import sys
  33. import re
  34. import os
  35. import argparse
  36. import CLEUCreds
  37. from cleu.config import Config as C
  38. CNR_HEADERS = {"authorization": CLEUCreds.JCLARKE_BASIC, "accept": "application/json", "content-type": "application/json"}
  39. CACHE_FILE = "dns_records.dat"
  40. def get_devs():
  41. url = "http://{}/get/switches/json".format(C.TOOL)
  42. devices = []
  43. response = requests.request("GET", url)
  44. code = response.status_code
  45. if code == 200:
  46. j = response.json()
  47. for dev in j:
  48. dev_dic = {}
  49. if dev["IPAddress"] == "0.0.0.0":
  50. continue
  51. if not re.search(r"^0", dev["Hostname"]):
  52. continue
  53. dev_dic["name"] = dev["Hostname"]
  54. dev_dic["aliases"] = [str("{}.{}.".format(dev["Name"], C.DNS_DOMAIN)), str("{}.{}.".format(dev["AssetTag"], C.DNS_DOMAIN))]
  55. dev_dic["ip"] = dev["IPAddress"]
  56. devices.append(dev_dic)
  57. return devices
  58. def add_entry(url, hname, dev):
  59. global CNR_HEADERS
  60. try:
  61. rrset = [
  62. "IN 0 A {}".format(dev["ip"]),
  63. ]
  64. rrset_obj = {"name": hname, "rrs": {"stringItem": rrset}, "zoneOrigin": C.DNS_DOMAIN}
  65. response = requests.request("PUT", url, headers=CNR_HEADERS, json=rrset_obj, verify=False)
  66. response.raise_for_status()
  67. print("Added entry for {} ==> {}".format(hname, dev["ip"]))
  68. except Exception as e:
  69. sys.stderr.write("Error adding entry for {}: {}\n".format(hname, e))
  70. return
  71. for alias in dev["aliases"]:
  72. aname = alias.split(".")[0]
  73. alias_rrset_obj = {
  74. "name": aname,
  75. "rrs": {"stringItem": ["IN 0 CNAME {}.{}.".format(hname, C.DNS_DOMAIN)]},
  76. "zoneOrigin": C.DNS_DOMAIN,
  77. }
  78. url = C.DNS_BASE + "CCMRRSet" + "/{}".format(aname)
  79. try:
  80. response = requests.request("PUT", url, headers=CNR_HEADERS, json=alias_rrset_obj, verify=False)
  81. response.raise_for_status()
  82. print("Added CNAME entry {} ==> {}".format(alias, hname))
  83. except Exception as e:
  84. sys.stderr.write("Error adding CNAME {} for {}: {}\n".format(alias, hname, e))
  85. try:
  86. ptr_rrset = ["IN 0 PTR {}.{}.".format(hname, C.DNS_DOMAIN)]
  87. rip = ".".join(dev["ip"].split(".")[::-1][0:3])
  88. ptr_rrset_obj = {"name": rip, "rrs": {"stringItem": ptr_rrset}, "zoneOrigin": "10.in-addr.arpa."}
  89. url = C.DNS_BASE + "CCMRRSet" + "/{}".format(rip)
  90. response = requests.request("PUT", url, headers=CNR_HEADERS, json=ptr_rrset_obj, verify=False)
  91. response.raise_for_status()
  92. print("Added PTR entry {} ==> {}".format(rip, hname))
  93. except Exception as e:
  94. sys.stderr.write("Error adding PTR entry for {}: {}\n".format(rip, e))
  95. if __name__ == "__main__":
  96. parser = argparse.ArgumentParser(description="Usage:")
  97. # script arguments
  98. parser.add_argument("--purge", help="Purge previous records", action="store_true")
  99. args = parser.parse_args()
  100. prev_records = []
  101. if os.path.exists(CACHE_FILE):
  102. fd = open(CACHE_FILE, "r")
  103. prev_records = json.load(fd)
  104. fd.close()
  105. devs = get_devs()
  106. for record in prev_records:
  107. found_record = False
  108. for dev in devs:
  109. hname = dev["name"].replace(".{}".format(C.DNS_DOMAIN), "")
  110. if record == hname:
  111. found_record = True
  112. break
  113. if found_record:
  114. continue
  115. url = C.DNS_BASE + "CCMHost" + "/{}".format(record)
  116. try:
  117. response = requests.request("DELETE", url, headers=CNR_HEADERS, params={"zoneOrigin": C.DNS_DOMAIN}, verify=False)
  118. response.raise_for_status()
  119. except Exception as e:
  120. sys.stderr.write("Failed to delete entry for {}\n".format(record))
  121. records = []
  122. for dev in devs:
  123. hname = dev["name"].replace(".{}".format(C.DNS_DOMAIN), "")
  124. records.append(hname)
  125. url = C.DNS_BASE + "CCMHost" + "/{}".format(hname)
  126. response = requests.request("GET", url, headers=CNR_HEADERS, params={"zoneOrigin": C.DNS_DOMAIN}, verify=False)
  127. url = C.DNS_BASE + "CCMRRSet" + "/{}".format(hname)
  128. if response.status_code == 404:
  129. iurl = C.DNS_BASE + "CCMHost"
  130. response = requests.request(
  131. "GET", iurl, params={"zoneOrigin": C.DNS_DOMAIN, "addrs": dev["ip"] + "$"}, headers=CNR_HEADERS, verify=False
  132. )
  133. cur_entry = []
  134. if response.status_code != 404:
  135. cur_entry = response.json()
  136. if len(cur_entry) > 0:
  137. print("Found entry for {}: {}".format(dev["ip"], response.status_code))
  138. cur_entry = response.json()
  139. if len(cur_entry) > 1:
  140. print("ERROR: Found multiple entries for IP {}".format(dev["ip"]))
  141. continue
  142. print("Found old entry for IP {} => {}".format(dev["ip"], cur_entry[0]["name"]))
  143. durl = C.DNS_BASE + "CCMHost" + "/{}".format(cur_entry[0]["name"])
  144. try:
  145. response = requests.request("DELETE", durl, params={"zoneOrigin": C.DNS_DOMAIN}, headers=CNR_HEADERS, verify=False)
  146. response.raise_for_status()
  147. except Exception as e:
  148. sys.stderr.write("Failed to delete stale entry for {} ({})\n".format(cur_entry[0]["name"], dev["ip"]))
  149. continue
  150. add_entry(url, hname, dev)
  151. else:
  152. cur_entry = response.json()
  153. create_new = True
  154. if not args.purge:
  155. for addr in cur_entry["addrs"]["stringItem"]:
  156. if addr == dev["ip"]:
  157. if "aliases" in dev and "aliases" in cur_entry:
  158. if (len(dev["aliases"]) > 0 and "stringItem" not in cur_entry["aliases"]) or (
  159. len(dev["aliases"]) != len(cur_entry["aliases"]["stringItem"])
  160. ):
  161. break
  162. common = set(dev["aliases"]) & set(cur_entry["aliases"]["stringItem"])
  163. if len(common) != len(dev["aliases"]):
  164. break
  165. create_new = False
  166. break
  167. elif ("aliases" in dev and "aliases" not in cur_entry) or ("aliases" in cur_entry and "aliases" not in dev):
  168. break
  169. else:
  170. create_new = False
  171. break
  172. if create_new:
  173. print("Deleting entry for {}".format(hname))
  174. try:
  175. response = requests.request("DELETE", url, headers=CNR_HEADERS, params={"zoneOrigin": C.DNS_DOMAIN}, verify=False)
  176. response.raise_for_status()
  177. except Exception as e:
  178. sys.stderr.write("Error deleting entry for {}: {}\n".format(hname, e))
  179. add_entry(url, hname, dev)
  180. else:
  181. # print("Not creating a new entry for {} as it already exists".format(dev["name"]))
  182. pass
  183. fd = open(CACHE_FILE, "w")
  184. json.dump(records, fd, indent=4)
  185. fd.close()