// Package config loads application configuration from environment variables. package config import ( "errors" "fmt" "log/slog" "os" "strconv" "strings" "time" "go.uber.org/fx" "sneak.berlin/go/webhooker/internal/globals" "sneak.berlin/go/webhooker/internal/logger" // Populates the environment from a ./.env file automatically for // development configuration. Kept in one place only (here). _ "github.com/joho/godotenv/autoload" ) const ( // EnvironmentDev represents development environment. EnvironmentDev = "dev" // EnvironmentProd represents production environment. EnvironmentProd = "prod" // defaultPort is the default HTTP listen port. defaultPort = 8080 // defaultRetentionSweepInterval is how often the retention // reaper deletes events older than each webhook's RetentionDays. defaultRetentionSweepInterval = time.Hour // defaultReceiverRateLimit is the default number of requests // per minute each client IP may send to a single webhook // receiver entrypoint. Generous for legitimate webhook // senders while bounding abuse of the one unauthenticated, // internet-exposed endpoint. defaultReceiverRateLimit = 120 ) // ErrInvalidEnvironment is returned when WEBHOOKER_ENVIRONMENT // contains an unrecognised value. var ErrInvalidEnvironment = errors.New("invalid environment") // ErrNonPositiveValue is returned when an environment variable that // requires a positive integer is set to zero or a negative number. var ErrNonPositiveValue = errors.New("value must be positive") //nolint:revive // ConfigParams is a standard fx naming convention. type ConfigParams struct { fx.In Globals *globals.Globals Logger *logger.Logger } // Config holds all application configuration loaded from // environment variables. type Config struct { DataDir string Debug bool MaintenanceMode bool Environment string MetricsPassword string MetricsUsername string Port int SentryDSN string // RetentionSweepInterval is how often the retention reaper runs. RetentionSweepInterval time.Duration // ReceiverRateLimit is the number of requests per minute each // client IP may send to a single webhook receiver entrypoint. ReceiverRateLimit int params *ConfigParams log *slog.Logger } // IsDev returns true if running in development environment. func (c *Config) IsDev() bool { return c.Environment == EnvironmentDev } // IsProd returns true if running in production environment. func (c *Config) IsProd() bool { return c.Environment == EnvironmentProd } // envString returns the value of the named environment variable, // or an empty string if not set. func envString(key string) string { return os.Getenv(key) } // envBool returns the value of the named environment variable // parsed as a boolean. Returns defaultValue if not set. func envBool(key string, defaultValue bool) bool { if v := os.Getenv(key); v != "" { return strings.EqualFold(v, "true") || v == "1" } return defaultValue } // envInt returns the value of the named environment variable // parsed as an integer. Returns defaultValue if not set or // unparseable. func envInt(key string, defaultValue int) int { if v := os.Getenv(key); v != "" { i, err := strconv.Atoi(v) if err == nil { return i } } return defaultValue } // envPositiveInt returns the value of the named environment variable // parsed as a positive integer. Returns defaultValue if not set. If // the variable is set but cannot be parsed, or parses to less than // one, it returns a wrapped error naming the key and the bad value, // so startup fails loudly rather than silently falling back to the // default. func envPositiveInt( key string, defaultValue int, ) (int, error) { v := os.Getenv(key) if v == "" { return defaultValue, nil } i, err := strconv.Atoi(v) if err != nil { return 0, fmt.Errorf( "invalid integer for %s: %q: %w", key, v, err, ) } if i < 1 { return 0, fmt.Errorf( "%w: %s must be at least 1, got %q", ErrNonPositiveValue, key, v, ) } return i, nil } // envDuration returns the value of the named environment variable // parsed as a Go duration (e.g. "1h", "30m"). Returns defaultValue if // not set. If the variable is set but cannot be parsed, it returns a // wrapped error naming the key and the bad value, so startup fails // loudly rather than silently falling back to the default. func envDuration( key string, defaultValue time.Duration, ) (time.Duration, error) { v := os.Getenv(key) if v == "" { return defaultValue, nil } d, err := time.ParseDuration(v) if err != nil { return 0, fmt.Errorf( "invalid duration for %s: %q: %w", key, v, err, ) } return d, nil } // resolveEnvironment reads WEBHOOKER_ENVIRONMENT, defaulting to // dev, and rejects unrecognised values. func resolveEnvironment() (string, error) { environment := os.Getenv("WEBHOOKER_ENVIRONMENT") if environment == "" { environment = EnvironmentDev } if environment != EnvironmentDev && environment != EnvironmentProd { return "", fmt.Errorf( "%w: WEBHOOKER_ENVIRONMENT must be '%s' or '%s', got '%s'", ErrInvalidEnvironment, EnvironmentDev, EnvironmentProd, environment, ) } return environment, nil } // New creates a Config by reading environment variables. // //nolint:revive // lc parameter is required by fx even if unused. func New(lc fx.Lifecycle, params ConfigParams) (*Config, error) { log := params.Logger.Get() environment, err := resolveEnvironment() if err != nil { return nil, err } // Parse the retention sweep interval; a set-but-unparseable value // is a hard error so fx aborts startup rather than silently using // the default. retentionSweepInterval, err := envDuration( "RETENTION_SWEEP_INTERVAL", defaultRetentionSweepInterval, ) if err != nil { return nil, err } // Parse the receiver rate limit; a set-but-unparseable or // non-positive value is a hard error so fx aborts startup // rather than silently using the default. receiverRateLimit, err := envPositiveInt( "RECEIVER_RATE_LIMIT", defaultReceiverRateLimit, ) if err != nil { return nil, err } // Load configuration values from environment variables s := &Config{ DataDir: envString("DATA_DIR"), Debug: envBool("DEBUG", false), MaintenanceMode: envBool("MAINTENANCE_MODE", false), Environment: environment, MetricsUsername: envString("METRICS_USERNAME"), MetricsPassword: envString("METRICS_PASSWORD"), Port: envInt("PORT", defaultPort), SentryDSN: envString("SENTRY_DSN"), RetentionSweepInterval: retentionSweepInterval, ReceiverRateLimit: receiverRateLimit, log: log, params: ¶ms, } // Set default DataDir. All SQLite databases (main application // DB and per-webhook event DBs) live here. The same default is // used regardless of environment; override with DATA_DIR if // needed. if s.DataDir == "" { s.DataDir = "/var/lib/webhooker" } if s.Debug { params.Logger.EnableDebugLogging() } // Log configuration summary (without secrets) log.Info("Configuration loaded", "environment", s.Environment, "port", s.Port, "debug", s.Debug, "maintenanceMode", s.MaintenanceMode, "dataDir", s.DataDir, "retentionSweepInterval", s.RetentionSweepInterval.String(), "receiverRateLimit", s.ReceiverRateLimit, "hasSentryDSN", s.SentryDSN != "", "hasMetricsAuth", s.MetricsUsername != "" && s.MetricsPassword != "", ) return s, nil }