Annotation of parser3/src/classes/file.C, revision 1.144
1.17 paf 1: /** @file
2: Parser: @b file parser class.
3:
1.136 paf 4: Copyright (c) 2001-2005 ArtLebedev Group (http://www.artlebedev.com)
1.72 paf 5: Author: Alexandr Petrosian <paf@design.ru> (http://paf.design.ru)
1.91 paf 6: */
1.17 paf 7:
1.144 ! paf 8: static const char * const IDENT_FILE_C="$Date: 2006/04/09 13:38:46 $";
1.47 parser 9:
10: #include "pa_config_includes.h"
11:
12: #include "pcre.h"
1.1 paf 13:
1.35 paf 14: #include "classes.h"
1.111 paf 15: #include "pa_vmethod_frame.h"
16:
1.1 paf 17: #include "pa_request.h"
18: #include "pa_vfile.h"
1.11 paf 19: #include "pa_table.h"
1.21 paf 20: #include "pa_vint.h"
1.24 paf 21: #include "pa_exec.h"
1.40 parser 22: #include "pa_vdate.h"
1.47 parser 23: #include "pa_dir.h"
24: #include "pa_vtable.h"
1.67 paf 25: #include "pa_charset.h"
1.109 paf 26: #include "pa_charsets.h"
1.121 paf 27: #include "pa_sql_connection.h"
1.1 paf 28:
1.32 paf 29: // defines
30:
1.48 parser 31: #define TEXT_MODE_NAME "text"
1.125 paf 32: #define BINARY_MODE_NAME "binary"
1.90 paf 33: #define STDIN_EXEC_PARAM_NAME "stdin"
1.109 paf 34: #define CHARSET_EXEC_PARAM_NAME "charset"
1.48 parser 35:
1.131 paf 36: #define NAME_NAME "name"
37:
1.132 paf 38: // externs
39:
40: extern String sql_limit_name;
41: extern String sql_offset_name;
42:
1.111 paf 43: // class
44:
45: class MFile: public Methoded {
46: public: // VStateless_class
47:
1.134 paf 48: Value* create_new_value(Pool&, HashStringValue&) { return new VFile(); }
1.111 paf 49:
50: public: // Methoded
51: bool used_directly() { return true; }
52:
53: public:
54: MFile();
55:
56: };
57:
58: // global variable
59:
60: DECLARE_CLASS_VAR(file, new MFile, 0);
61:
1.83 paf 62: // consts
63:
64: /// from apache-1.3|src|support|suexec.c
1.111 paf 65: static const char* suexec_safe_env_lst[]={
1.83 paf 66: "AUTH_TYPE",
67: "CONTENT_LENGTH",
68: "CONTENT_TYPE",
69: "DATE_GMT",
70: "DATE_LOCAL",
71: "DOCUMENT_NAME",
72: "DOCUMENT_PATH_INFO",
73: "DOCUMENT_ROOT",
74: "DOCUMENT_URI",
75: "FILEPATH_INFO",
76: "GATEWAY_INTERFACE",
77: "LAST_MODIFIED",
78: "PATH_INFO",
79: "PATH_TRANSLATED",
80: "QUERY_STRING",
81: "QUERY_STRING_UNESCAPED",
82: "REMOTE_ADDR",
83: "REMOTE_HOST",
84: "REMOTE_IDENT",
85: "REMOTE_PORT",
86: "REMOTE_USER",
87: "REDIRECT_QUERY_STRING",
88: "REDIRECT_STATUS",
89: "REDIRECT_URL",
90: "REQUEST_METHOD",
91: "REQUEST_URI",
92: "SCRIPT_FILENAME",
93: "SCRIPT_NAME",
94: "SCRIPT_URI",
95: "SCRIPT_URL",
96: "SERVER_ADMIN",
97: "SERVER_NAME",
98: "SERVER_ADDR",
99: "SERVER_PORT",
100: "SERVER_PROTOCOL",
101: "SERVER_SOFTWARE",
102: "UNIQUE_ID",
103: "USER_NAME",
104: "TZ",
105: NULL
106: };
107:
1.111 paf 108: // statics
1.33 paf 109:
1.112 paf 110: static const String::Body adate_name("adate");
111: static const String::Body mdate_name("mdate");
112: static const String::Body cdate_name("cdate");
1.32 paf 113:
1.1 paf 114: // methods
115:
1.125 paf 116: static bool is_text_mode(const String& mode) {
117: if(mode==TEXT_MODE_NAME)
118: return true;
119: if(mode==BINARY_MODE_NAME)
120: return false;
121: throw Exception("parser.runtime",
122: &mode,
123: "is invalid mode, must be either '"TEXT_MODE_NAME"' or '"BINARY_MODE_NAME"'");
124: }
125:
1.111 paf 126: static void _save(Request& r, MethodParams& params) {
127: Value& vmode_name=params. as_no_junction(0, "mode must not be code");
128: Value& vfile_name=params.as_no_junction(1, "file name must not be code");
1.4 paf 129:
1.7 paf 130: // save
1.111 paf 131: GET_SELF(r, VFile).save(r.absolute(vfile_name.as_string()),
1.125 paf 132: is_text_mode(vmode_name.as_string()));
1.7 paf 133: }
134:
1.111 paf 135: static void _delete(Request& r, MethodParams& params) {
136: Value& vfile_name=params.as_no_junction(0, "file name must not be code");
1.7 paf 137:
138: // unlink
1.68 paf 139: file_delete(r.absolute(vfile_name.as_string()));
1.1 paf 140: }
141:
1.111 paf 142: static void _move(Request& r, MethodParams& params) {
143: Value& vfrom_file_name=params.as_no_junction(0, "from file name must not be code");
144: Value& vto_file_name=params.as_no_junction(1, "to file name must not be code");
1.45 parser 145:
1.51 parser 146: // move
1.68 paf 147: file_move(
1.45 parser 148: r.absolute(vfrom_file_name.as_string()),
149: r.absolute(vto_file_name.as_string()));
150: }
151:
1.111 paf 152: static void _load_pass_param(
153: HashStringValue::key_type key,
154: HashStringValue::value_type value,
155: HashStringValue *dest) {
156: dest->put(key, value);
157: }
158: static void _load(Request& r, MethodParams& params) {
159: Value& vmode_name=params. as_no_junction(0, "mode must not be code");
160: const String& lfile_name=r.absolute(params.as_no_junction(1, "file name must not be code").as_string());
161: Value* third_param=params.count()>2?¶ms.as_no_junction(2, "filename or options must not be code")
162: :0;
163: HashStringValue* third_param_hash=third_param?third_param->get_hash():0;
164: size_t alt_filename_param_index=2;
1.104 paf 165: if(third_param_hash)
166: alt_filename_param_index++;
1.9 paf 167:
1.132 paf 168: HashStringValue* options=third_param_hash;
169: size_t offset=0;
170: size_t limit=0;
171: if(options) {
172: options=new HashStringValue(*options);
173: if(Value *voffset=(Value *)options->get(sql_offset_name)) {
174: offset=r.process_to_value(*voffset).as_int();
175: }
176: if(Value *vlimit=(Value *)options->get(sql_limit_name)) {
177: limit=r.process_to_value(*vlimit).as_int();
178: }
179: // no check on options count here, see file_read
180: }
1.111 paf 181: File_read_result file=file_read(r.charsets, lfile_name,
1.125 paf 182: is_text_mode(vmode_name.as_string()),
1.132 paf 183: options, true, 0, offset, limit
1.104 paf 184: );
1.9 paf 185:
1.111 paf 186: const char *user_file_name=params.count()>alt_filename_param_index?
187: params.as_string(alt_filename_param_index, "filename must be string").cstr()
188: :lfile_name.cstr(String::L_FILE_SPEC);
189:
190: Value* vcontent_type=0;
191: if(file.headers)
1.129 paf 192: {
193: if(Value* remote_content_type=file.headers->get("CONTENT-TYPE"))
194: vcontent_type=new VString(*new String(remote_content_type->as_string().cstr()));
195: }
1.104 paf 196: if(!vcontent_type)
1.111 paf 197: vcontent_type=new VString(r.mime_type_of(user_file_name));
1.10 paf 198:
1.111 paf 199: VFile& self=GET_SELF(r, VFile);
200: self.set(true/*tainted*/, file.str, file.length, user_file_name, vcontent_type);
201: if(file.headers)
1.143 paf 202: file.headers->for_each<HashStringValue*>(_load_pass_param, &self.fields());
1.9 paf 203: }
204:
1.138 paf 205: static void _create(Request& r, MethodParams& params) {
206: Value& vmode_name=params. as_no_junction(0, "mode must not be code");
207: if(!is_text_mode(vmode_name.as_string()))
208: throw Exception("parser.runtime",
209: 0,
210: "only text mode is currently supported");
211:
212: const char* user_file_name_cstr=r.absolute(
213: params.as_no_junction(1, "file name must not be code").as_string()).cstr(String::L_FILE_SPEC);
214:
215: const String& content=params.as_string(2, "content must be string");
216: const char* content_cstr=content.cstr(String::L_UNSPECIFIED); // explode content, honor tainting changes
217:
218: VString* vcontent_type=new VString(r.mime_type_of(user_file_name_cstr));
219:
220: VFile& self=GET_SELF(r, VFile);
221: self.set(true/*tainted*/, content_cstr, strlen(content_cstr), user_file_name_cstr, vcontent_type);
222: }
223:
1.111 paf 224: static void _stat(Request& r, MethodParams& params) {
225: Value& vfile_name=params.as_no_junction(0, "file name must not be code");
1.25 paf 226:
227: const String& lfile_name=vfile_name.as_string();
228:
1.40 parser 229: size_t size;
230: time_t atime, mtime, ctime;
231: file_stat(r.absolute(lfile_name),
232: size,
233: atime, mtime, ctime);
1.25 paf 234:
1.111 paf 235: VFile& self=GET_SELF(r, VFile);
236: self.set(true/*tainted*/, 0/*no bytes*/, size);
237: HashStringValue& ff=self.fields();
238: ff.put(adate_name, new VDate(atime));
239: ff.put(mdate_name, new VDate(mtime));
240: ff.put(cdate_name, new VDate(ctime));
241: ff.put(content_type_name, new VString(r.mime_type_of(lfile_name.cstr(String::L_FILE_SPEC))));
1.25 paf 242: }
243:
1.111 paf 244: static bool is_safe_env_key(const char* key) {
245: for(const char* validator=key; *validator; validator++) {
246: char c=*validator;
247: if(!(c>='A' && c<='Z' || c>='0' && c<='9' || c=='_' || c=='-'))
248: return false;
249: }
1.88 paf 250: if(strncasecmp(key, "HTTP_", 5)==0)
1.83 paf 251: return true;
1.87 paf 252: if(strncasecmp(key, "CGI_", 4)==0)
1.83 paf 253: return true;
254: for(int i=0; suexec_safe_env_lst[i]; i++) {
1.87 paf 255: if(strcasecmp(key, suexec_safe_env_lst[i])==0)
1.83 paf 256: return true;
257: }
258: return false;
259: }
1.90 paf 260: #ifndef DOXYGEN
261: struct Append_env_pair_info {
1.141 paf 262: Request_charsets* charsets;
1.111 paf 263: HashStringString* env;
1.100 paf 264: Value* vstdin;
1.90 paf 265: };
266: #endif
1.111 paf 267: static void append_env_pair(
268: HashStringValue::key_type akey,
269: HashStringValue::value_type avalue,
270: Append_env_pair_info *info) {
271: if(akey==STDIN_EXEC_PARAM_NAME) {
272: info->vstdin=avalue;
273: } else if(akey==CHARSET_EXEC_PARAM_NAME) {
1.141 paf 274: // ignore, already processed
1.90 paf 275: } else {
1.111 paf 276: if(!is_safe_env_key(akey.cstr()))
1.90 paf 277: throw Exception("parser.runtime",
1.111 paf 278: new String(akey, String::L_TAINTED),
1.90 paf 279: "not safe environment variable");
1.141 paf 280: info->env->put(akey, avalue->as_string().cstr_to_string_body(String::L_UNSPECIFIED, 0, info->charsets));
1.90 paf 281: }
1.22 paf 282: }
1.94 paf 283: #ifndef DOXYGEN
284: struct Pass_cgi_header_attribute_info {
1.111 paf 285: Charset* charset;
286: HashStringValue* fields;
287: Value* content_type;
1.94 paf 288: };
289: #endif
1.111 paf 290: static void pass_cgi_header_attribute(
291: ArrayString::element_type astring,
292: Pass_cgi_header_attribute_info* info) {
293: size_t colon_pos=astring->pos(':');
1.130 paf 294: if(colon_pos!=STRING_NOT_FOUND) {
1.111 paf 295: const String& key=astring->mid(0, colon_pos).change_case(
296: *info->charset, String::CC_UPPER);
1.130 paf 297: Value* value=new VString(astring->mid(colon_pos+1, astring->length()).trim());
1.111 paf 298: info->fields->put(key, value);
1.94 paf 299: if(key=="CONTENT-TYPE")
1.111 paf 300: info->content_type=value;
1.94 paf 301: }
1.29 paf 302: }
1.90 paf 303: /// @todo fix `` in perl - they produced flipping consoles and no output to perl
1.111 paf 304: static void _exec_cgi(Request& r, MethodParams& params,
1.41 parser 305: bool cgi) {
1.21 paf 306:
1.111 paf 307: Value& vfile_name=params.as_no_junction(0, "file name must not be code");
1.21 paf 308:
1.23 paf 309: const String& script_name=r.absolute(vfile_name.as_string());
310:
1.111 paf 311: HashStringString env;
1.62 paf 312: #define ECSTR(name, value_cstr) \
1.111 paf 313: if(value_cstr) \
314: env.put( \
1.112 paf 315: String::Body(#name), \
316: String::Body(value_cstr, 0)); \
1.82 paf 317: // passing SAPI::environment
1.111 paf 318: if(const char *const *pairs=SAPI::environment(r.sapi_info)) {
319: while(const char* pair=*pairs++)
320: if(const char* eq_at=strchr(pair, '='))
321: if(eq_at[1]) // has value
322: env.put(
323: pa_strdup(pair, eq_at-pair),
324: pa_strdup(eq_at+1, 0));
1.82 paf 325: }
326:
1.23 paf 327: // const
1.63 paf 328: ECSTR(GATEWAY_INTERFACE, "CGI/1.1");
1.23 paf 329: // from Request.info
1.111 paf 330: ECSTR(DOCUMENT_ROOT, r.request_info.document_root);
331: ECSTR(PATH_TRANSLATED, r.request_info.path_translated);
332: ECSTR(REQUEST_METHOD, r.request_info.method);
333: ECSTR(QUERY_STRING, r.request_info.query_string);
334: ECSTR(REQUEST_URI, r.request_info.uri);
335: ECSTR(CONTENT_TYPE, r.request_info.content_type);
1.23 paf 336: char content_length_cstr[MAX_NUMBER];
1.111 paf 337: snprintf(content_length_cstr, MAX_NUMBER, "%u", r.request_info.content_length);
338: //String content_length(content_length_cstr);
1.62 paf 339: ECSTR(CONTENT_LENGTH, content_length_cstr);
1.82 paf 340: // SCRIPT_*
1.119 paf 341: env.put(String::Body("SCRIPT_NAME"), script_name);
342: //env.put(String::Body("SCRIPT_FILENAME"), ??&script_name);
1.23 paf 343:
1.111 paf 344: bool stdin_specified=false;
1.90 paf 345: // environment & stdin from param
1.111 paf 346: String *in=new String();
1.109 paf 347: Charset *charset=0; // default script works raw_in 'source' charset = no transcoding needed
1.111 paf 348: if(params.count()>1) {
349: Value& venv=params.as_no_junction(1, "env must not be code");
350: if(HashStringValue* user_env=venv.get_hash()) {
1.141 paf 351: // $.charset [previewing to handle URI pieces]
352: if(Value* vcharset=user_env->get(CHARSET_EXEC_PARAM_NAME))
353: charset=&charsets.get(vcharset->as_string()
354: .change_case(r.charsets.source(), String::CC_UPPER));
355:
356: // $.others
357: Append_env_pair_info info={&r.charsets, &env, 0};
358: {
1.144 ! paf 359: // influence tainting
! 360: // main target -- $.QUERY_STRING -- URLencoding of tainted pieces to String::L_URI lang
1.141 paf 361: Temp_client_charset temp(r.charsets, charset? *charset: r.charsets.source());
1.143 paf 362: user_env->for_each<Append_env_pair_info*>(append_env_pair, &info);
1.141 paf 363: }
1.109 paf 364: // $.stdin
1.103 paf 365: if(info.vstdin) {
1.111 paf 366: stdin_specified=true;
367: if(const String* sstdin=info.vstdin->get_string()) {
368: in->append(*sstdin, String::L_CLEAN, true);
1.103 paf 369: } else
1.111 paf 370: if(VFile* vfile=static_cast<VFile *>(info.vstdin->as("file", false)))
371: in->append_know_length((const char* )vfile->value_ptr(), vfile->value_size(), String::L_TAINTED);
1.100 paf 372: else
373: throw Exception("parser.runtime",
1.111 paf 374: 0,
1.100 paf 375: STDIN_EXEC_PARAM_NAME " parameter must be string or file");
1.103 paf 376: }
1.90 paf 377: }
1.21 paf 378: }
379:
1.90 paf 380: // argv from params
1.111 paf 381: ArrayString argv;
382: if(params.count()>2) {
1.144 ! paf 383: // influence tainting
! 384: // main target -- URLencoding of tainted pieces to String::L_URI lang
! 385: Temp_client_charset temp(r.charsets, charset? *charset: r.charsets.source());
! 386: for(size_t i=2; i<params.count(); i++) {
! 387: const String& param=params.as_string(i, "parameter must be string");
! 388: argv+=new String(param.cstr_to_string_body(String::L_UNSPECIFIED, 0, &r.charsets), String::L_AS_IS);
! 389: }
1.21 paf 390: }
1.90 paf 391:
1.109 paf 392: // transcode if necessary
393: if(charset) {
1.111 paf 394: Charset::transcode(env, r.charsets.source(), *charset);
395: Charset::transcode(argv, r.charsets.source(), *charset);
396: in=&Charset::transcode(*in, r.charsets.source(), *charset);
397: }
398: // @todo
399: // ifdef WIN32 do OEM->ANSI transcode on some(.cmd?) programs to
400: // match silent conversion in OS
401:
402: // exec!
403: PA_exec_result execution=
404: pa_exec(false/*forced_allow*/, script_name, &env, argv, *in);
405:
406: String *real_out=&execution.out;
407: String *real_err=&execution.err;
408: // transcode if necessary
409: if(charset) {
410: real_out=&Charset::transcode(*real_out, *charset, r.charsets.source());
411: real_err=&Charset::transcode(*real_err, *charset, r.charsets.source());
1.109 paf 412: }
413:
1.111 paf 414: VFile& self=GET_SELF(r, VFile);
1.109 paf 415:
1.111 paf 416: const String* body=real_out; // ^file:exec
417: const char* eol_marker=0; size_t eol_marker_size;
418: const String* header=0;
1.41 parser 419: if(cgi) { // ^file:cgi
1.111 paf 420: // construct with 'out' body and header
421: size_t dos_pos=real_out->pos("\r\n\r\n", 4);
422: size_t unix_pos=real_out->pos("\n\n", 2);
423:
424: bool unix_header_break;
425: switch((dos_pos!=STRING_NOT_FOUND?10:00) + (unix_pos!=STRING_NOT_FOUND?01:00)) {
426: case 10: // dos
427: unix_header_break=false;
428: break;
429: case 01: // unix
430: unix_header_break=true;
431: break;
432: case 11: // dos & unix
433: unix_header_break=unix_pos<dos_pos;
434: break;
435: default: // 00
436: unix_header_break=false; // calm down, compiler
1.74 paf 437: throw Exception(0,
1.111 paf 438: 0,
1.90 paf 439: "output does not contain CGI header; "
440: "exit status=%d; stdoutsize=%u; stdout: \"%s\"; stderrsize=%u; stderr: \"%s\"",
1.111 paf 441: execution.status,
442: (uint)real_out->length(), real_out->cstr(),
443: (uint)real_err->length(), real_err->cstr());
444: break; //never reached
445: }
446:
447: int header_break_pos;
448: if(unix_header_break) {
449: header_break_pos=unix_pos;
450: eol_marker="\n"; eol_marker_size=1;
451: } else {
452: header_break_pos=dos_pos;
453: eol_marker="\r\n"; eol_marker_size=2;
454: }
1.21 paf 455:
1.109 paf 456: header=&real_out->mid(0, header_break_pos);
1.111 paf 457: body=&real_out->mid(header_break_pos+eol_marker_size*2, real_out->length());
1.29 paf 458: }
1.41 parser 459: // body
1.111 paf 460: self.set(false/*not tainted*/, body->cstr(), body->length());
1.94 paf 461:
462: // $fields << header
1.98 paf 463: if(header && eol_marker) {
1.111 paf 464: ArrayString rows;
465: size_t pos_after=0;
466: header->split(rows, pos_after, eol_marker);
1.116 paf 467: Pass_cgi_header_attribute_info info={0, 0, 0};
1.111 paf 468: info.charset=&r.charsets.source();
469: info.fields=&self.fields();
1.94 paf 470: rows.for_each(pass_cgi_header_attribute, &info);
471: if(info.content_type)
1.111 paf 472: self.fields().put(content_type_name, info.content_type);
1.94 paf 473: }
1.21 paf 474:
1.42 parser 475: // $status
1.111 paf 476: self.fields().put(file_status_name, new VInt(execution.status));
1.21 paf 477:
478: // $stderr
1.111 paf 479: if(real_err->length())
1.21 paf 480: self.fields().put(
1.119 paf 481: String::Body("stderr"),
1.111 paf 482: new VString(*real_err));
1.21 paf 483: }
1.111 paf 484: static void _exec(Request& r, MethodParams& params) {
485: _exec_cgi(r, params, false);
1.41 parser 486: }
1.111 paf 487: static void _cgi(Request& r, MethodParams& params) {
488: _exec_cgi(r, params, true);
1.41 parser 489: }
490:
1.111 paf 491: static void _list(Request& r, MethodParams& params) {
492: Value& relative_path=params.as_no_junction(0, "path must not be code");
1.47 parser 493:
1.111 paf 494: const String* regexp;
1.47 parser 495: pcre *regexp_code;
1.81 paf 496: const int ovecsize=(1/*match*/)*3;
497: int ovector[ovecsize];
1.111 paf 498: if(params.count()>1) {
499: regexp=¶ms.as_no_junction(1, "regexp must not be code").as_string();
1.47 parser 500:
1.111 paf 501: const char* pattern=regexp->cstr();
502: const char* errptr;
1.47 parser 503: int erroffset;
504: regexp_code=pcre_compile(pattern, PCRE_EXTRA | PCRE_DOTALL,
505: &errptr, &erroffset,
1.111 paf 506: r.charsets.source().pcre_tables);
1.47 parser 507:
508: if(!regexp_code)
1.74 paf 509: throw Exception(0,
1.111 paf 510: ®exp->mid(erroffset, regexp->length()),
1.47 parser 511: "regular expression syntax error - %s", errptr);
1.114 paf 512: } else {
513: regexp=0; // not used, just to calm down compiler
1.47 parser 514: regexp_code=0;
1.114 paf 515: }
1.47 parser 516:
517:
1.111 paf 518: const char* absolute_path_cstr=r.absolute(relative_path.as_string()).cstr(String::L_FILE_SPEC);
1.47 parser 519:
1.111 paf 520: Table::columns_type columns(new ArrayString);
521: *columns+=new String("name");
522: Table& table=*new Table(columns);
1.47 parser 523:
524: LOAD_DIR(absolute_path_cstr,
1.111 paf 525: const char* file_name_cstr=ffblk.ff_name;
526: size_t file_name_size=strlen(file_name_cstr);
1.47 parser 527: bool suits=true;
528: if(regexp_code) {
529: int exec_result=pcre_exec(regexp_code, 0,
530: ffblk.ff_name, file_name_size, 0,
531: 0, ovector, ovecsize);
532:
533: if(exec_result==PCRE_ERROR_NOMATCH)
534: suits=false;
535: else if(exec_result<0) {
536: (*pcre_free)(regexp_code);
1.74 paf 537: throw Exception(0,
1.47 parser 538: regexp,
539: "regular expression execute (%d)",
540: exec_result);
541: }
542: }
543:
544: if(suits) {
1.111 paf 545: Table::element_type row(new ArrayString);
546: *row+=new String(pa_strdup(file_name_cstr, file_name_size), file_name_size, true);
547: table+=row;
1.47 parser 548: }
549: );
550:
551: if(regexp_code)
1.111 paf 552: pcre_free(regexp_code);
1.47 parser 553:
1.60 parser 554: // write out result
1.111 paf 555: r.write_no_lang(*new VTable(&table));
1.47 parser 556: }
1.21 paf 557:
1.69 paf 558: #ifndef DOXYGEN
559: struct Lock_execute_body_info {
1.111 paf 560: Request* r;
561: Value* body_code;
1.69 paf 562: };
563: #endif
1.111 paf 564: static void lock_execute_body(int , void *ainfo) {
565: Lock_execute_body_info& info=*static_cast<Lock_execute_body_info *>(ainfo);
1.69 paf 566: // execute body
1.78 paf 567: info.r->write_assign_lang(info.r->process(*info.body_code));
1.69 paf 568: };
1.111 paf 569: static void _lock(Request& r, MethodParams& params) {
570: const String& file_spec=r.absolute(params.as_string(0, "file name must be string"));
1.116 paf 571: Lock_execute_body_info info={
572: &r,
1.117 paf 573: ¶ms.as_junction(1, "body must be code")
1.116 paf 574: };
1.69 paf 575:
1.70 paf 576: file_write_action_under_lock(file_spec, "lock", lock_execute_body, &info);
1.69 paf 577: }
578:
1.111 paf 579: static int lastposafter(const String& s, size_t after, const char* substr, size_t substr_size, bool beforelast=false) {
1.114 paf 580: size_t size=0; // just to calm down compiler
1.89 paf 581: if(beforelast)
1.111 paf 582: size=s.length();
1.116 paf 583: size_t at;
1.112 paf 584: while((at=s.pos(String::Body(substr, substr_size), after))!=STRING_NOT_FOUND) {
1.89 paf 585: size_t newafter=at+substr_size/*skip substr*/;
586: if(beforelast && newafter==size)
587: break;
588: after=newafter;
589: }
590:
591: return after;
592: }
593:
1.111 paf 594: static void _find(Request& r, MethodParams& params) {
595: const String& file_name=params.as_no_junction(0, "file name must not be code").as_string();
596: const String* file_spec;
1.90 paf 597: if(file_name.first_char()=='/')
598: file_spec=&file_name;
599: else
1.111 paf 600: file_spec=&r.relative(r.request_info.uri, file_name);
1.90 paf 601:
602: // easy way
1.142 paf 603: if(file_exist(r.absolute(*file_spec))) {
1.96 paf 604: r.write_assign_lang(*file_spec);
1.90 paf 605: return;
606: }
607:
608: // monkey way
609: int after_base_slash=lastposafter(*file_spec, 0, "/", 1);
1.111 paf 610: const String* dirname=&file_spec->mid(0, after_base_slash);
611: const String& basename=file_spec->mid(after_base_slash, file_spec->length());
1.90 paf 612:
613: int after_monkey_slash;
614: while((after_monkey_slash=lastposafter(*dirname, 0, "/", 1, true))>0) {
1.111 paf 615: String test_name;
616: test_name<<*(dirname=&dirname->mid(0, after_monkey_slash));
617: test_name<<basename;
1.142 paf 618: if(file_exist(r.absolute(test_name))) {
1.111 paf 619: r.write_assign_lang(test_name);
1.90 paf 620: return;
621: }
622: }
623:
624: // no way, not found
1.111 paf 625: if(params.count()==2) {
626: Value& not_found_code=params.as_junction(1, "not-found param must be code");
1.90 paf 627: r.write_pass_lang(r.process(not_found_code));
628: }
629: }
630:
1.111 paf 631: static void _dirname(Request& r, MethodParams& params) {
632: const String& file_spec=params.as_string(0, "file name must be string");
1.89 paf 633: // /a/some.tar.gz > /a
634: // /a/b/ > /a
635: int afterslash=lastposafter(file_spec, 0, "/", 1, true);
636: if(afterslash>0)
637: r.write_assign_lang(file_spec.mid(0, afterslash==1?1:afterslash-1));
638: else
1.111 paf 639: r.write_assign_lang(String(".", 1));
1.89 paf 640: }
641:
1.111 paf 642: static void _basename(Request& r, MethodParams& params) {
643: const String& file_spec=params.as_string(0, "file name must be string");
1.89 paf 644: // /a/some.tar.gz > some.tar.gz
645: int afterslash=lastposafter(file_spec, 0, "/", 1);
1.111 paf 646: r.write_assign_lang(file_spec.mid(afterslash, file_spec.length()));
1.89 paf 647: }
648:
1.111 paf 649: static void _justname(Request& r, MethodParams& params) {
650: const String& file_spec=params.as_string(0, "file name must be string");
1.89 paf 651: // /a/some.tar.gz > some.tar
652: int afterslash=lastposafter(file_spec, 0, "/", 1);
653: int afterdot=lastposafter(file_spec, afterslash, ".", 1);
1.111 paf 654: r.write_assign_lang(file_spec.mid(afterslash, afterdot!=afterslash?afterdot-1:file_spec.length()));
1.89 paf 655: }
1.111 paf 656: static void _justext(Request& r, MethodParams& params) {
657: const String& file_spec=params.as_string(0, "file name must be string");
1.89 paf 658: // /a/some.tar.gz > gz
659: int afterdot=lastposafter(file_spec, 0, ".", 1);
660: if(afterdot>0)
1.111 paf 661: r.write_assign_lang(file_spec.mid(afterdot, file_spec.length()));
1.89 paf 662: }
663:
1.111 paf 664: static void _fullpath(Request& r, MethodParams& params) {
665: const String& file_spec=params.as_string(0, "file name must be string");
666: const String* result;
1.102 paf 667: if(file_spec.first_char()=='/')
668: result=&file_spec;
669: else {
670: // /some/page.html: ^file:fullpath[a.gif] => /some/a.gif
671: const String& full_disk_path=r.absolute(file_spec);
1.111 paf 672: size_t document_root_length=strlen(r.request_info.document_root);
1.106 paf 673:
674: if(document_root_length>0) {
1.111 paf 675: char last_char=r.request_info.document_root[document_root_length-1];
1.106 paf 676: if(last_char == '/' || last_char == '\\')
677: --document_root_length;
678: }
1.111 paf 679: result=&full_disk_path.mid(document_root_length, full_disk_path.length());
1.102 paf 680: }
681: r.write_assign_lang(*result);
682: }
683:
1.121 paf 684: static void _sql_string(Request& r, MethodParams&) {
685: VFile& self=GET_SELF(r, VFile);
686:
687: const char *quoted=r.connection()->quote(self.value_ptr(), self.value_size());
688: r.write_assign_lang(*new String(quoted));
689: }
1.89 paf 690:
1.122 paf 691: #ifndef DOXYGEN
692: class File_sql_event_handlers: public SQL_Driver_query_event_handlers {
693: const String& statement_string; const char* statement_cstr;
694: int got_columns;
695: int got_cells;
696: public:
697: String::C value;
1.131 paf 698: const String* user_file_name;
699: const String* user_content_type;
1.122 paf 700: public:
701: File_sql_event_handlers(
702: const String& astatement_string, const char* astatement_cstr):
703: statement_string(astatement_string), statement_cstr(astatement_cstr),
704: got_columns(0),
705: got_cells(0),
706: user_file_name(0),
707: user_content_type(0) {}
708:
709: bool add_column(SQL_Error& error, const char* /*str*/, size_t /*length*/) {
710: if(got_columns++==3) {
711: error=SQL_Error("parser.runtime", "result must contain not more then 3 columns");
712: return true;
713: }
714: return false;
715: }
716: bool before_rows(SQL_Error& /*error*/ ) { /* ignore */ return false; }
717: bool add_row(SQL_Error& /*error*/) { /* ignore */ return false; }
718: bool add_row_cell(SQL_Error& error, const char* str, size_t length) {
719: try {
720: switch(got_cells++) {
721: case 0:
722: value=String::C(str, length);
723: break;
724: case 1:
1.131 paf 725: if(!user_file_name) // user not specified?
726: user_file_name=new String(str, length, true);
1.122 paf 727: break;
728: case 2:
1.131 paf 729: if(!user_content_type) // user not specified?
730: user_content_type=new String(str, length, true);
1.122 paf 731: break;
732: default:
733: error=SQL_Error("parser.runtime", "result must not contain more then one row, three rows");
734: return true;
735: }
736: return false;
737: } catch(...) {
738: error=SQL_Error("exception occured in File_sql_event_handlers::add_row_cell");
739: return true;
740: }
741: }
742: };
743: #endif
744: static void _sql(Request& r, MethodParams& params) {
1.131 paf 745: Value& statement=params.as_junction(0, "statement must be code");
1.122 paf 746:
747: Temp_lang temp_lang(r, String::L_SQL);
748: const String& statement_string=r.process_to_string(statement);
749: const char* statement_cstr=
750: statement_string.cstr(String::L_UNSPECIFIED, r.connection());
751: File_sql_event_handlers handlers(statement_string, statement_cstr);
1.131 paf 752:
753: if(params.count()>1)
754: if(HashStringValue* options=
755: params.as_no_junction(1, "param must not be code").get_hash()) {
756: int valid_options=0;
757: if(Value* vfilename=options->get(NAME_NAME)) {
758: valid_options++;
759: handlers.user_file_name=&vfilename->as_string();
760: }
761: if(Value* vcontent_type=options->get(CONTENT_TYPE_NAME)) {
762: valid_options++;
763: handlers.user_content_type=&vcontent_type->as_string();
764: }
765: if(valid_options!=options->count())
766: throw Exception("parser.runtime",
767: 0,
768: "called with invalid option");
769: }
770:
771:
1.122 paf 772: r.connection()->query(
1.123 paf 773: statement_cstr,
774: 0, 0,
775: 0, 0,
1.122 paf 776: handlers,
777: statement_string);
778:
779: if(!handlers.value)
780: throw Exception("parser.runtime",
781: 0,
782: "produced no result");
783:
1.131 paf 784: const char* user_file_name_cstr=handlers.user_file_name? handlers.user_file_name->cstr(): 0;
1.122 paf 785:
786: VString* vcontent_type=handlers.user_content_type?
787: new VString(*handlers.user_content_type)
788: : user_file_name_cstr?
789: new VString(r.mime_type_of(user_file_name_cstr))
790: : 0;
791: VFile& self=GET_SELF(r, VFile);
792: self.set(true/*tainted*/, handlers.value.str, handlers.value.length, user_file_name_cstr, vcontent_type);
793: }
1.140 paf 794:
1.139 paf 795: static void _base64(Request& r, MethodParams& params) {
1.140 paf 796: VFile& self=GET_SELF(r, VFile);
1.139 paf 797: if(params.count()) {
1.140 paf 798: // decode
1.139 paf 799: const char* cstr=params.as_string(0, "parameter must be string").cstr();
1.140 paf 800: char* decoded_cstr=0;
1.139 paf 801: size_t decoded_size=0;
802: pa_base64_decode(cstr, strlen(cstr), decoded_cstr, decoded_size);
803: if(decoded_cstr && decoded_size)
1.140 paf 804: self.set(true/*tainted*/, decoded_cstr, decoded_size);
805: } else {
806: // encode
807: const char* encoded=pa_base64_encode(self.value_ptr(), self.value_size());
808: r.write_assign_lang(*new String(encoded, 0, true/*once ?param=base64(something) was needed*/));
1.139 paf 809: }
810: }
1.140 paf 811:
1.32 paf 812: // constructor
813:
1.111 paf 814: MFile::MFile(): Methoded("file") {
1.138 paf 815: // ^create[text;user-name;string]
816: // ^create[binary;user-name;SOMEDAY SOMETHING]
817: add_native_method("create", Method::CT_DYNAMIC, _create, 3, 3);
818:
1.48 parser 819: // ^save[mode;file-name]
820: add_native_method("save", Method::CT_DYNAMIC, _save, 2, 2);
1.7 paf 821:
822: // ^delete[file-name]
1.32 paf 823: add_native_method("delete", Method::CT_STATIC, _delete, 1, 1);
1.45 parser 824:
825: // ^move[from-file-name;to-file-name]
826: add_native_method("move", Method::CT_STATIC, _move, 2, 2);
1.8 paf 827:
1.48 parser 828: // ^load[mode;disk-name]
829: // ^load[mode;disk-name;user-name]
830: add_native_method("load", Method::CT_DYNAMIC, _load, 2, 3);
1.25 paf 831:
832: // ^stat[disk-name]
1.32 paf 833: add_native_method("stat", Method::CT_DYNAMIC, _stat, 1, 1);
1.21 paf 834:
1.36 paf 835: // ^cgi[file-name]
836: // ^cgi[file-name;env hash]
837: // ^cgi[file-name;env hash;1cmd;2line;3ar;4g;5s]
1.135 paf 838: add_native_method("cgi", Method::CT_DYNAMIC, _cgi, 1, 2+50);
1.41 parser 839:
840: // ^exec[file-name]
841: // ^exec[file-name;env hash]
842: // ^exec[file-name;env hash;1cmd;2line;3ar;4g;5s]
1.135 paf 843: add_native_method("exec", Method::CT_DYNAMIC, _exec, 1, 2+50);
1.47 parser 844:
845: // ^file:list[path]
846: // ^file:list[path][regexp]
847: add_native_method("list", Method::CT_STATIC, _list, 1, 2);
1.69 paf 848:
849: // ^file:lock[path]{code}
850: add_native_method("lock", Method::CT_STATIC, _lock, 2, 2);
1.90 paf 851:
852: // ^find[file-name]
853: // ^find[file-name]{when-not-found}
854: add_native_method("find", Method::CT_STATIC, _find, 1, 2);
1.47 parser 855:
1.89 paf 856: // ^file:dirname[/a/some.tar.gz]=/a
857: // ^file:dirname[/a/b/]=/a
858: add_native_method("dirname", Method::CT_STATIC, _dirname, 1, 1);
859: // ^file:basename[/a/some.tar.gz]=some.tar.gz
860: add_native_method("basename", Method::CT_STATIC, _basename, 1, 1);
861: // ^file:justname[/a/some.tar.gz]=some.tar
862: add_native_method("justname", Method::CT_STATIC, _justname, 1, 1);
863: // ^file:justext[/a/some.tar.gz]=gz
864: add_native_method("justext", Method::CT_STATIC, _justext, 1, 1);
1.102 paf 865: // /some/page.html: ^file:fullpath[a.gif] => /some/a.gif
866: add_native_method("fullpath", Method::CT_STATIC, _fullpath, 1, 1);
1.121 paf 867:
868: // ^file.sql-string[]
869: add_native_method("sql-string", Method::CT_DYNAMIC, _sql_string, 0, 0);
1.122 paf 870:
871: // ^file::sql[[alt_name]]{}
872: add_native_method("sql", Method::CT_DYNAMIC, _sql, 1, 2);
1.139 paf 873:
874: // ^file.base64[] << encode
875: // ^file::base64[string] << decode
1.140 paf 876: add_native_method("base64", Method::CT_DYNAMIC, _base64, 0, 1);
1.1 paf 877: }
E-mail: