settings.py 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344
  1. import logging
  2. import os
  3. import socket
  4. import sys
  5. import warnings
  6. from django.contrib.messages import constants as messages
  7. from django.core.exceptions import ImproperlyConfigured
  8. # Django 2.1 requires Python 3.5+
  9. if sys.version_info < (3, 5):
  10. raise RuntimeError(
  11. "NetBox requires Python 3.5 or higher (current: Python {})".format(sys.version.split()[0])
  12. )
  13. # Check for configuration file
  14. try:
  15. from netbox import configuration
  16. except ImportError:
  17. raise ImproperlyConfigured(
  18. "Configuration file is not present. Please define netbox/netbox/configuration.py per the documentation."
  19. )
  20. VERSION = '2.5.8-dev'
  21. BASE_DIR = os.path.dirname(os.path.dirname(os.path.abspath(__file__)))
  22. # Import required configuration parameters
  23. ALLOWED_HOSTS = DATABASE = SECRET_KEY = None
  24. for setting in ['ALLOWED_HOSTS', 'DATABASE', 'SECRET_KEY']:
  25. try:
  26. globals()[setting] = getattr(configuration, setting)
  27. except AttributeError:
  28. raise ImproperlyConfigured(
  29. "Mandatory setting {} is missing from configuration.py.".format(setting)
  30. )
  31. # Import optional configuration parameters
  32. ADMINS = getattr(configuration, 'ADMINS', [])
  33. BANNER_BOTTOM = getattr(configuration, 'BANNER_BOTTOM', '')
  34. BANNER_LOGIN = getattr(configuration, 'BANNER_LOGIN', '')
  35. BANNER_TOP = getattr(configuration, 'BANNER_TOP', '')
  36. BASE_PATH = getattr(configuration, 'BASE_PATH', '')
  37. if BASE_PATH:
  38. BASE_PATH = BASE_PATH.strip('/') + '/' # Enforce trailing slash only
  39. CHANGELOG_RETENTION = getattr(configuration, 'CHANGELOG_RETENTION', 90)
  40. CORS_ORIGIN_ALLOW_ALL = getattr(configuration, 'CORS_ORIGIN_ALLOW_ALL', False)
  41. CORS_ORIGIN_REGEX_WHITELIST = getattr(configuration, 'CORS_ORIGIN_REGEX_WHITELIST', [])
  42. CORS_ORIGIN_WHITELIST = getattr(configuration, 'CORS_ORIGIN_WHITELIST', [])
  43. DATE_FORMAT = getattr(configuration, 'DATE_FORMAT', 'N j, Y')
  44. DATETIME_FORMAT = getattr(configuration, 'DATETIME_FORMAT', 'N j, Y g:i a')
  45. DEBUG = getattr(configuration, 'DEBUG', False)
  46. ENFORCE_GLOBAL_UNIQUE = getattr(configuration, 'ENFORCE_GLOBAL_UNIQUE', False)
  47. EMAIL = getattr(configuration, 'EMAIL', {})
  48. LOGGING = getattr(configuration, 'LOGGING', {})
  49. LOGIN_REQUIRED = getattr(configuration, 'LOGIN_REQUIRED', False)
  50. LOGIN_TIMEOUT = getattr(configuration, 'LOGIN_TIMEOUT', None)
  51. MAINTENANCE_MODE = getattr(configuration, 'MAINTENANCE_MODE', False)
  52. MAX_PAGE_SIZE = getattr(configuration, 'MAX_PAGE_SIZE', 1000)
  53. MEDIA_ROOT = getattr(configuration, 'MEDIA_ROOT', os.path.join(BASE_DIR, 'media')).rstrip('/')
  54. NAPALM_USERNAME = getattr(configuration, 'NAPALM_USERNAME', '')
  55. NAPALM_PASSWORD = getattr(configuration, 'NAPALM_PASSWORD', '')
  56. NAPALM_TIMEOUT = getattr(configuration, 'NAPALM_TIMEOUT', 30)
  57. NAPALM_ARGS = getattr(configuration, 'NAPALM_ARGS', {})
  58. PAGINATE_COUNT = getattr(configuration, 'PAGINATE_COUNT', 50)
  59. PREFER_IPV4 = getattr(configuration, 'PREFER_IPV4', False)
  60. REPORTS_ROOT = getattr(configuration, 'REPORTS_ROOT', os.path.join(BASE_DIR, 'reports')).rstrip('/')
  61. REDIS = getattr(configuration, 'REDIS', {})
  62. SESSION_FILE_PATH = getattr(configuration, 'SESSION_FILE_PATH', None)
  63. SHORT_DATE_FORMAT = getattr(configuration, 'SHORT_DATE_FORMAT', 'Y-m-d')
  64. SHORT_DATETIME_FORMAT = getattr(configuration, 'SHORT_DATETIME_FORMAT', 'Y-m-d H:i')
  65. SHORT_TIME_FORMAT = getattr(configuration, 'SHORT_TIME_FORMAT', 'H:i:s')
  66. TIME_FORMAT = getattr(configuration, 'TIME_FORMAT', 'g:i a')
  67. TIME_ZONE = getattr(configuration, 'TIME_ZONE', 'UTC')
  68. WEBHOOKS_ENABLED = getattr(configuration, 'WEBHOOKS_ENABLED', False)
  69. CSRF_TRUSTED_ORIGINS = ALLOWED_HOSTS
  70. # Attempt to import LDAP configuration if it has been defined
  71. LDAP_IGNORE_CERT_ERRORS = False
  72. try:
  73. from netbox.ldap_config import *
  74. LDAP_CONFIGURED = True
  75. except ImportError:
  76. LDAP_CONFIGURED = False
  77. # LDAP configuration (optional)
  78. if LDAP_CONFIGURED:
  79. try:
  80. import ldap
  81. import django_auth_ldap
  82. # Prepend LDAPBackend to the default ModelBackend
  83. AUTHENTICATION_BACKENDS = [
  84. 'django_auth_ldap.backend.LDAPBackend',
  85. 'django.contrib.auth.backends.ModelBackend',
  86. ]
  87. # Optionally disable strict certificate checking
  88. if LDAP_IGNORE_CERT_ERRORS:
  89. ldap.set_option(ldap.OPT_X_TLS_REQUIRE_CERT, ldap.OPT_X_TLS_NEVER)
  90. # Enable logging for django_auth_ldap
  91. ldap_logger = logging.getLogger('django_auth_ldap')
  92. ldap_logger.addHandler(logging.StreamHandler())
  93. ldap_logger.setLevel(logging.DEBUG)
  94. except ImportError:
  95. raise ImproperlyConfigured(
  96. "LDAP authentication has been configured, but django-auth-ldap is not installed. You can remove "
  97. "netbox/ldap_config.py to disable LDAP."
  98. )
  99. # Database
  100. configuration.DATABASE.update({'ENGINE': 'django.db.backends.postgresql'})
  101. DATABASES = {
  102. 'default': configuration.DATABASE,
  103. }
  104. # Sessions
  105. if LOGIN_TIMEOUT is not None:
  106. if type(LOGIN_TIMEOUT) is not int or LOGIN_TIMEOUT < 0:
  107. raise ImproperlyConfigured(
  108. "LOGIN_TIMEOUT must be a positive integer (value: {})".format(LOGIN_TIMEOUT)
  109. )
  110. # Django default is 1209600 seconds (14 days)
  111. SESSION_COOKIE_AGE = LOGIN_TIMEOUT
  112. if SESSION_FILE_PATH is not None:
  113. SESSION_ENGINE = 'django.contrib.sessions.backends.file'
  114. # Redis
  115. REDIS_HOST = REDIS.get('HOST', 'localhost')
  116. REDIS_PORT = REDIS.get('PORT', 6379)
  117. REDIS_PASSWORD = REDIS.get('PASSWORD', '')
  118. REDIS_DATABASE = REDIS.get('DATABASE', 0)
  119. REDIS_DEFAULT_TIMEOUT = REDIS.get('DEFAULT_TIMEOUT', 300)
  120. # Email
  121. EMAIL_HOST = EMAIL.get('SERVER')
  122. EMAIL_PORT = EMAIL.get('PORT', 25)
  123. EMAIL_HOST_USER = EMAIL.get('USERNAME')
  124. EMAIL_HOST_PASSWORD = EMAIL.get('PASSWORD')
  125. EMAIL_TIMEOUT = EMAIL.get('TIMEOUT', 10)
  126. SERVER_EMAIL = EMAIL.get('FROM_EMAIL')
  127. EMAIL_SUBJECT_PREFIX = '[NetBox] '
  128. # Installed applications
  129. INSTALLED_APPS = [
  130. 'django.contrib.admin',
  131. 'django.contrib.auth',
  132. 'django.contrib.contenttypes',
  133. 'django.contrib.sessions',
  134. 'django.contrib.messages',
  135. 'django.contrib.staticfiles',
  136. 'django.contrib.humanize',
  137. 'corsheaders',
  138. 'debug_toolbar',
  139. 'django_filters',
  140. 'django_tables2',
  141. 'mptt',
  142. 'rest_framework',
  143. 'taggit',
  144. 'taggit_serializer',
  145. 'timezone_field',
  146. 'circuits',
  147. 'dcim',
  148. 'ipam',
  149. 'extras',
  150. 'secrets',
  151. 'tenancy',
  152. 'users',
  153. 'utilities',
  154. 'virtualization',
  155. 'drf_yasg',
  156. ]
  157. # Only load django-rq if the webhook backend is enabled
  158. if WEBHOOKS_ENABLED:
  159. INSTALLED_APPS.append('django_rq')
  160. # Middleware
  161. MIDDLEWARE = (
  162. 'debug_toolbar.middleware.DebugToolbarMiddleware',
  163. 'corsheaders.middleware.CorsMiddleware',
  164. 'django.contrib.sessions.middleware.SessionMiddleware',
  165. 'django.middleware.common.CommonMiddleware',
  166. 'django.middleware.csrf.CsrfViewMiddleware',
  167. 'django.contrib.auth.middleware.AuthenticationMiddleware',
  168. 'django.contrib.messages.middleware.MessageMiddleware',
  169. 'django.middleware.clickjacking.XFrameOptionsMiddleware',
  170. 'django.middleware.security.SecurityMiddleware',
  171. 'utilities.middleware.ExceptionHandlingMiddleware',
  172. 'utilities.middleware.LoginRequiredMiddleware',
  173. 'utilities.middleware.APIVersionMiddleware',
  174. 'extras.middleware.ObjectChangeMiddleware',
  175. )
  176. ROOT_URLCONF = 'netbox.urls'
  177. TEMPLATES = [
  178. {
  179. 'BACKEND': 'django.template.backends.django.DjangoTemplates',
  180. 'DIRS': [BASE_DIR + '/templates/'],
  181. 'APP_DIRS': True,
  182. 'OPTIONS': {
  183. 'context_processors': [
  184. 'django.template.context_processors.debug',
  185. 'django.template.context_processors.request',
  186. 'django.template.context_processors.media',
  187. 'django.contrib.auth.context_processors.auth',
  188. 'django.contrib.messages.context_processors.messages',
  189. 'utilities.context_processors.settings',
  190. ],
  191. },
  192. },
  193. ]
  194. # WSGI
  195. WSGI_APPLICATION = 'netbox.wsgi.application'
  196. SECURE_PROXY_SSL_HEADER = ('HTTP_X_FORWARDED_PROTO', 'https')
  197. USE_X_FORWARDED_HOST = True
  198. # Internationalization
  199. LANGUAGE_CODE = 'en-us'
  200. USE_I18N = True
  201. USE_TZ = True
  202. # Static files (CSS, JavaScript, Images)
  203. STATIC_ROOT = BASE_DIR + '/static/'
  204. STATIC_URL = '/{}static/'.format(BASE_PATH)
  205. STATICFILES_DIRS = (
  206. os.path.join(BASE_DIR, "project-static"),
  207. )
  208. # Media
  209. MEDIA_URL = '/{}media/'.format(BASE_PATH)
  210. # Disable default limit of 1000 fields per request. Needed for bulk deletion of objects. (Added in Django 1.10.)
  211. DATA_UPLOAD_MAX_NUMBER_FIELDS = None
  212. # Messages
  213. MESSAGE_TAGS = {
  214. messages.ERROR: 'danger',
  215. }
  216. # Authentication URLs
  217. LOGIN_URL = '/{}login/'.format(BASE_PATH)
  218. # Secrets
  219. SECRETS_MIN_PUBKEY_SIZE = 2048
  220. # Pagination
  221. PER_PAGE_DEFAULTS = [
  222. 25, 50, 100, 250, 500, 1000
  223. ]
  224. if PAGINATE_COUNT not in PER_PAGE_DEFAULTS:
  225. PER_PAGE_DEFAULTS.append(PAGINATE_COUNT)
  226. PER_PAGE_DEFAULTS = sorted(PER_PAGE_DEFAULTS)
  227. # Django filters
  228. FILTERS_NULL_CHOICE_LABEL = 'None'
  229. FILTERS_NULL_CHOICE_VALUE = 'null'
  230. # Django REST framework (API)
  231. REST_FRAMEWORK_VERSION = VERSION[0:3] # Use major.minor as API version
  232. REST_FRAMEWORK = {
  233. 'ALLOWED_VERSIONS': [REST_FRAMEWORK_VERSION],
  234. 'DEFAULT_AUTHENTICATION_CLASSES': (
  235. 'rest_framework.authentication.SessionAuthentication',
  236. 'netbox.api.TokenAuthentication',
  237. ),
  238. 'DEFAULT_FILTER_BACKENDS': (
  239. 'django_filters.rest_framework.DjangoFilterBackend',
  240. ),
  241. 'DEFAULT_PAGINATION_CLASS': 'netbox.api.OptionalLimitOffsetPagination',
  242. 'DEFAULT_PERMISSION_CLASSES': (
  243. 'netbox.api.TokenPermissions',
  244. ),
  245. 'DEFAULT_RENDERER_CLASSES': (
  246. 'rest_framework.renderers.JSONRenderer',
  247. 'netbox.api.FormlessBrowsableAPIRenderer',
  248. ),
  249. 'DEFAULT_VERSION': REST_FRAMEWORK_VERSION,
  250. 'DEFAULT_VERSIONING_CLASS': 'rest_framework.versioning.AcceptHeaderVersioning',
  251. 'PAGE_SIZE': PAGINATE_COUNT,
  252. 'VIEW_NAME_FUNCTION': 'netbox.api.get_view_name',
  253. }
  254. # Django RQ (Webhooks backend)
  255. RQ_QUEUES = {
  256. 'default': {
  257. 'HOST': REDIS_HOST,
  258. 'PORT': REDIS_PORT,
  259. 'DB': REDIS_DATABASE,
  260. 'PASSWORD': REDIS_PASSWORD,
  261. 'DEFAULT_TIMEOUT': REDIS_DEFAULT_TIMEOUT,
  262. }
  263. }
  264. # drf_yasg settings for Swagger
  265. SWAGGER_SETTINGS = {
  266. 'DEFAULT_AUTO_SCHEMA_CLASS': 'utilities.custom_inspectors.NetBoxSwaggerAutoSchema',
  267. 'DEFAULT_FIELD_INSPECTORS': [
  268. 'utilities.custom_inspectors.NullableBooleanFieldInspector',
  269. 'utilities.custom_inspectors.CustomChoiceFieldInspector',
  270. 'utilities.custom_inspectors.TagListFieldInspector',
  271. 'utilities.custom_inspectors.SerializedPKRelatedFieldInspector',
  272. 'drf_yasg.inspectors.CamelCaseJSONFilter',
  273. 'drf_yasg.inspectors.ReferencingSerializerInspector',
  274. 'drf_yasg.inspectors.RelatedFieldInspector',
  275. 'drf_yasg.inspectors.ChoiceFieldInspector',
  276. 'drf_yasg.inspectors.FileFieldInspector',
  277. 'drf_yasg.inspectors.DictFieldInspector',
  278. 'drf_yasg.inspectors.SimpleFieldInspector',
  279. 'drf_yasg.inspectors.StringDefaultFieldInspector',
  280. ],
  281. 'DEFAULT_FILTER_INSPECTORS': [
  282. 'utilities.custom_inspectors.IdInFilterInspector',
  283. 'drf_yasg.inspectors.CoreAPICompatInspector',
  284. ],
  285. 'DEFAULT_PAGINATOR_INSPECTORS': [
  286. 'utilities.custom_inspectors.NullablePaginatorInspector',
  287. 'drf_yasg.inspectors.DjangoRestResponsePagination',
  288. 'drf_yasg.inspectors.CoreAPICompatInspector',
  289. ],
  290. 'SECURITY_DEFINITIONS': {
  291. 'Bearer': {
  292. 'type': 'apiKey',
  293. 'name': 'Authorization',
  294. 'in': 'header',
  295. }
  296. },
  297. 'VALIDATOR_URL': None,
  298. }
  299. # Django debug toolbar
  300. INTERNAL_IPS = (
  301. '127.0.0.1',
  302. '::1',
  303. )
  304. try:
  305. HOSTNAME = socket.gethostname()
  306. except Exception:
  307. HOSTNAME = 'localhost'