|
|
| version 1.41, 2009/09/10 09:44:07 | version 1.52, 2011/02/18 06:03:53 |
|---|---|
| Line 194 static void timeout_handler(int /*sig*/) | Line 194 static void timeout_handler(int /*sig*/) |
| } | } |
| #endif | #endif |
| static size_t file_untaint(const char* str, size_t len) { | |
| // untaint file from L_FILE_POST encoding | |
| char* j=(char *)str; | |
| const char* end=str+len-1; | |
| for(const char* i=str; i<=end; i++, j++){ | |
| if(*i=='\\' && i!=end){ | |
| switch(*(i+1)){ | |
| case '0': | |
| *j='\0'; | |
| i++; | |
| continue; | |
| case '\\': | |
| *j='\\'; | |
| i++; | |
| continue; | |
| } | |
| } | |
| if(i!=j) | |
| *j=*i; | |
| } | |
| return j-str; // new length | |
| } | |
| static int http_request(char*& response, size_t& response_size, | static int http_request(char*& response, size_t& response_size, |
| const char* host, short port, | const char* host, short port, |
| const char* request, size_t request_size, | const char* request, size_t request_size, |
| Line 318 struct Http_pass_header_info { | Line 295 struct Http_pass_header_info { |
| bool* content_type_url_encoded; | bool* content_type_url_encoded; |
| }; | }; |
| #endif | #endif |
| char *pa_http_safe_header_name(const char *name) { | |
| char *result=pa_strdup(name); | |
| char *n=result; | |
| if(!pa_isalpha((unsigned char)*n)) | |
| *n++ = '_'; | |
| for(; *n; ++n) { | |
| if (!pa_isalnum((unsigned char)*n) && *n != '-' && *n != '_') | |
| *n = '_'; | |
| } | |
| return result; | |
| } | |
| static void http_pass_header(HashStringValue::key_type aname, | static void http_pass_header(HashStringValue::key_type aname, |
| HashStringValue::value_type avalue, | HashStringValue::value_type avalue, |
| Http_pass_header_info *info) { | Http_pass_header_info *info) { |
| const char* name_cstr=aname.cstr(); | const char* name_cstr=aname.cstr(); |
| String name=String(capitalize(name_cstr), String::L_URI); | |
| if(strcasecmp(name_cstr, HTTP_CONTENT_LENGTH)==0) | if(strcasecmp(name_cstr, HTTP_CONTENT_LENGTH)==0) |
| return; | return; |
| String value=attributed_meaning_to_string(*avalue, String::L_URI, false); | String name=String(pa_http_safe_header_name(capitalize(name_cstr)), String::L_AS_IS); |
| String value=attributed_meaning_to_string(*avalue, String::L_HTTP_HEADER, true); | |
| *info->request << name << ": " << value << CRLF; | *info->request << name << ": " << value << CRLF; |
| Line 406 static void form_value2string( | Line 395 static void form_value2string( |
| const char* pa_form2string(HashStringValue& form, Request_charsets& charsets) { | const char* pa_form2string(HashStringValue& form, Request_charsets& charsets) { |
| String string; | String string; |
| form.for_each<String*>(form_value2string, &string); | form.for_each<String*>(form_value2string, &string); |
| return string.transcode_and_untaint_cstr(String::L_URI, &charsets); | return string.untaint_and_transcode_cstr(String::L_URI, &charsets); |
| } | } |
| struct FormPart { | struct FormPart { |
| Request* r; | Request* r; |
| const char* boundary; | const char* boundary; |
| String string; | String* string; |
| Form_table_value2string_info* info; | Form_table_value2string_info* info; |
| struct BinaryBlock{ | |
| const char* ptr; | |
| size_t length; | |
| BinaryBlock(String* astring, Request* r): ptr(astring->untaint_and_transcode_cstr(String::L_AS_IS, &r->charsets)), length(strlen(ptr)){} | |
| BinaryBlock(const char* aptr, size_t alength): ptr(aptr), length(alength){} | |
| }; | |
| Array<BinaryBlock> blocks; | |
| FormPart(Request* ar, const char* aboundary): r(ar), boundary(aboundary), string(new String()){} | |
| const char *post(size_t &length){ | |
| if(blocks.count()){ | |
| blocks+=BinaryBlock(string, r); | |
| length=0; | |
| for(size_t i=0; i<blocks.count(); i++) | |
| length+=blocks[i].length; | |
| char *result=(char *)pa_malloc_atomic(length); | |
| char *ptr=result; | |
| for(size_t i=0; i<blocks.count(); i++){ | |
| memcpy(ptr, blocks[i].ptr, blocks[i].length); | |
| ptr+=blocks[i].length; | |
| } | |
| return result; | |
| } else { | |
| BinaryBlock result(string, r); | |
| length=result.length; | |
| return result.ptr; | |
| } | |
| } | |
| }; | }; |
| static void form_part_boundary_header(FormPart& part, String::Body name, const char* file_name=0){ | static void form_part_boundary_header(FormPart& part, String::Body name, const char* file_name=0){ |
| part.string << "--" << part.boundary | *part.string << "--" << part.boundary |
| << CRLF CONTENT_DISPOSITION_CAPITALIZED ": form-data; name=\"" | << CRLF CONTENT_DISPOSITION_CAPITALIZED ": form-data; name=\"" |
| << Charset::transcode(name, part.r->charsets.source(), part.r->charsets.client()) | << name |
| << "\""; | << "\""; |
| if(file_name){ | if(file_name){ |
| if(strcmp(file_name, NONAME_DAT)!=0) | if(strcmp(file_name, NONAME_DAT)!=0) |
| part.string << "; filename=\"" << file_name << "\""; | *part.string << "; filename=\"" << file_name << "\""; |
| part.string << CRLF HTTP_CONTENT_TYPE_CAPITALIZED ": " << part.r->mime_type_of(file_name); | *part.string << CRLF HTTP_CONTENT_TYPE_CAPITALIZED ": " << part.r->mime_type_of(file_name); |
| } | } |
| part.string << CRLF CRLF; | *part.string << CRLF CRLF; |
| } | } |
| static void form_string_value2part( | static void form_string_value2part( |
| Line 435 static void form_string_value2part( | Line 460 static void form_string_value2part( |
| FormPart& part) | FormPart& part) |
| { | { |
| form_part_boundary_header(part, key); | form_part_boundary_header(part, key); |
| part.string << Charset::transcode(value, part.r->charsets.source(), part.r->charsets.client()) << CRLF; | *part.string << value << CRLF; |
| } | } |
| static void form_file_value2part( | static void form_file_value2part( |
| Line 444 static void form_file_value2part( | Line 469 static void form_file_value2part( |
| FormPart& part) | FormPart& part) |
| { | { |
| form_part_boundary_header(part, key, vfile.fields().get(name_name)->as_string().cstr()); | form_part_boundary_header(part, key, vfile.fields().get(name_name)->as_string().cstr()); |
| part.string.append_know_length(vfile.value_ptr(), vfile.value_size(), String::L_FILE_POST); | part.blocks+=FormPart::BinaryBlock(part.string, part.r); |
| part.string << CRLF; | part.blocks+=FormPart::BinaryBlock(vfile.value_ptr(), vfile.value_size()); |
| part.string=new String(); | |
| *part.string << CRLF; | |
| } | } |
| static void form_table_value2part(Table::element_type row, FormPart* part) { | static void form_table_value2part(Table::element_type row, FormPart* part) { |
| Line 460 static void form_value2part( | Line 487 static void form_value2part( |
| if(const String* svalue=value->get_string()) | if(const String* svalue=value->get_string()) |
| form_string_value2part(key, *svalue, part); | form_string_value2part(key, *svalue, part); |
| else if(Table* tvalue=value->get_table()) { | else if(Table* tvalue=value->get_table()) { |
| Form_table_value2string_info info(key, part.string); | Form_table_value2string_info info(key, *part.string); |
| part.info = &info; | part.info = &info; |
| tvalue->for_each(form_table_value2part, &part); | tvalue->for_each(form_table_value2part, &part); |
| } else if(VFile* vfile=static_cast<VFile *>(value->as("file"))){ | } else if(VFile* vfile=static_cast<VFile *>(value->as("file"))){ |
| Line 472 static void form_value2part( | Line 499 static void form_value2part( |
| } | } |
| const char* pa_form2string_multipart(HashStringValue& form, Request& r, const char* boundary, size_t& post_size){ | const char* pa_form2string_multipart(HashStringValue& form, Request& r, const char* boundary, size_t& post_size){ |
| FormPart formpart; | FormPart formpart(&r, boundary); |
| formpart.r=&r; | |
| formpart.boundary=boundary; | |
| formpart.info=NULL; | |
| form.for_each<FormPart&>(form_value2part, formpart); | form.for_each<FormPart&>(form_value2part, formpart); |
| formpart.string << "--" << boundary << "--"; | *formpart.string << "--" << boundary << "--"; |
| post_size=formpart.string.length(); // very surprizing, but it calculates correct post_size even with binary files! | // @todo: return binary blocks here to save memory in pa_internal_file_read_http |
| return formpart.string.untaint_cstr(String::L_AS_IS); // without transcoding | return formpart.post(post_size); |
| } | } |
| static void find_headers_end(char* p, | static void find_headers_end(char* p, |
| Line 510 File_read_http_result pa_internal_file_r | Line 534 File_read_http_result pa_internal_file_r |
| File_read_http_result result; | File_read_http_result result; |
| char host[MAX_STRING]; | char host[MAX_STRING]; |
| const char* uri; | const char* uri; |
| short port; | short port=80; |
| const char* method="GET"; | const char* method="GET"; |
| bool method_is_get=true; | bool method_is_get=true; |
| HashStringValue* form=0; | HashStringValue* form=0; |
| const char* body_cstr=0; | |
| int timeout_secs=2; | int timeout_secs=2; |
| bool fail_on_status_ne_200=true; | bool fail_on_status_ne_200=true; |
| bool omit_post_charset=false; | bool omit_post_charset=false; |
| Line 578 File_read_http_result pa_internal_file_r | Line 601 File_read_http_result pa_internal_file_r |
| } | } |
| if(valid_options!=options->count()) | if(valid_options!=options->count()) |
| throw Exception(PARSER_RUNTIME, | throw Exception(PARSER_RUNTIME, 0, CALLED_WITH_INVALID_OPTION); |
| 0, | |
| INVALID_OPTION_PASSED); | |
| } | } |
| if(!asked_remote_charset) // defaulting to $request:charset | if(!asked_remote_charset) // defaulting to $request:charset |
| asked_remote_charset=&(r.charsets).source(); | asked_remote_charset=&(r.charsets).source(); |
| Line 614 File_read_http_result pa_internal_file_r | Line 635 File_read_http_result pa_internal_file_r |
| //preparing request | //preparing request |
| String& connect_string=*new String(file_spec); | String& connect_string=*new String(file_spec); |
| String request_head_and_body; | const char* request; |
| size_t request_size; | |
| { | { |
| // influence URLencoding of tainted pieces to String::L_URI lang | // influence URLencoding of tainted pieces to String::L_URI lang |
| Temp_client_charset temp(r.charsets, *asked_remote_charset); | Temp_client_charset temp(r.charsets, *asked_remote_charset); |
| const char* connect_string_cstr=connect_string.transcode_and_untaint_cstr(String::L_URI, &(r.charsets)); | const char* connect_string_cstr=connect_string.untaint_and_transcode_cstr(String::L_URI, &(r.charsets)); |
| const char* current=connect_string_cstr; | const char* current=connect_string_cstr; |
| if(strncmp(current, "http://", 7)!=0) | if(strncmp(current, "http://", 7)!=0) |
| Line 632 File_read_http_result pa_internal_file_r | Line 654 File_read_http_result pa_internal_file_r |
| char* host_uri=lsplit(host, '/'); | char* host_uri=lsplit(host, '/'); |
| uri=host_uri?current+(host_uri-1-host):"/"; | uri=host_uri?current+(host_uri-1-host):"/"; |
| char* port_cstr=lsplit(host, ':'); | char* port_cstr=lsplit(host, ':'); |
| char* error_pos=0; | |
| port=port_cstr?(short)strtol(port_cstr, &error_pos, 0):80; | if (port_cstr){ |
| char* error_pos=0; | |
| port=(short)strtol(port_cstr, &error_pos, 10); | |
| if(port==0 || *error_pos) | |
| throw Exception(PARSER_RUNTIME, &connect_string, "invalid port number '%s'", port_cstr); | |
| } | |
| // making request head | // making request head |
| String head; | String head; |
| Line 641 File_read_http_result pa_internal_file_r | Line 668 File_read_http_result pa_internal_file_r |
| if(method_is_get && form) | if(method_is_get && form) |
| head << (strchr(uri, '?')!=0?"&":"?") << pa_form2string(*form, r.charsets); | head << (strchr(uri, '?')!=0?"&":"?") << pa_form2string(*form, r.charsets); |
| head <<" HTTP/1.0" CRLF "Host: "<< host << CRLF; | head <<" HTTP/1.0" CRLF "Host: "<< host; |
| if (port != 80) | |
| head << ":" << port_cstr; | |
| head << CRLF; | |
| char* boundary=0; | char* boundary=0; |
| Line 676 File_read_http_result pa_internal_file_r | Line 706 File_read_http_result pa_internal_file_r |
| "headers param must be hash"); | "headers param must be hash"); |
| }; | }; |
| const char* request_body=0; | |
| size_t post_size=0; | size_t post_size=0; |
| if(form && !method_is_get) { | if(form && !method_is_get) { |
| head << "Content-Type: " << (multipart ? HTTP_CONTENT_TYPE_MULTIPART_FORMDATA : HTTP_CONTENT_TYPE_FORM_URLENCODED); | head << "Content-Type: " << (multipart ? HTTP_CONTENT_TYPE_MULTIPART_FORMDATA : HTTP_CONTENT_TYPE_FORM_URLENCODED); |
| Line 685 File_read_http_result pa_internal_file_r | Line 716 File_read_http_result pa_internal_file_r |
| if(multipart) { | if(multipart) { |
| head << "; boundary=" << boundary; | head << "; boundary=" << boundary; |
| body_cstr=pa_form2string_multipart(*form, r/*charsets & mime_type needed*/, boundary, post_size/*correct post_size returned here*/); | request_body=pa_form2string_multipart(*form, r/*charsets & mime_type needed*/, boundary, post_size/*correct post_size returned here*/); |
| } else { | } else { |
| body_cstr=pa_form2string(*form, r.charsets); | request_body=pa_form2string(*form, r.charsets); |
| post_size=strlen(body_cstr); | post_size=strlen(request_body); |
| } | } |
| head << CRLF; | head << CRLF; |
| } else if(vbody) { | } else if(vbody) { |
| // $.body was specified | // $.body was specified |
| if(content_type_url_encoded){ | if(content_type_url_encoded){ |
| // transcode + url-encode | // transcode + url-encode |
| body_cstr=vbody->as_string().transcode_and_untaint_cstr(String::L_URI, &(r.charsets)); | request_body=vbody->as_string().untaint_and_transcode_cstr(String::L_URI, &(r.charsets)); |
| } else { | } else { |
| // content-type != application/x-www-form-urlencoded -> transcode only, don't url-encode! | // content-type != application/x-www-form-urlencoded -> transcode only, don't url-encode! |
| body_cstr=Charset::transcode( | request_body=Charset::transcode( |
| String::C(vbody->as_string().cstr(), vbody->as_string().length()), | String::C(vbody->as_string().cstr(), vbody->as_string().length()), |
| r.charsets.source(), | r.charsets.source(), |
| *asked_remote_charset | *asked_remote_charset |
| ); | ); |
| } | } |
| post_size=strlen(body_cstr); | post_size=strlen(request_body); |
| } | } |
| // http://www.ietf.org/rfc/rfc2617.txt | // http://www.ietf.org/rfc/rfc2617.txt |
| Line 730 File_read_http_result pa_internal_file_r | Line 761 File_read_http_result pa_internal_file_r |
| } else | } else |
| throw Exception(PARSER_RUNTIME, | throw Exception(PARSER_RUNTIME, |
| 0, | 0, |
| "cookies param must be hash"); | "cookies param must be hash"); |
| } | } |
| if(body_cstr) | if(request_body) |
| head << "Content-Length: " << format(post_size, "%u") << CRLF; | head << "Content-Length: " << format(post_size, "%u") << CRLF; |
| head << CRLF; | |
| const char *request_head=head.untaint_and_transcode_cstr(String::L_URI, &(r.charsets)); | |
| // head + end of header | if(request_body){ |
| request_head_and_body << head.transcode_and_untaint_cstr(String::L_URI, &(r.charsets)) << CRLF; | size_t head_size = strlen(request_head); |
| request_size=post_size + head_size; | |
| // body | char *ptr=(char *)pa_malloc_atomic(request_size); |
| if(body_cstr) | memcpy(ptr, request_head, head_size); |
| request_head_and_body << body_cstr; | memcpy(ptr+head_size, request_body, post_size); |
| request=ptr; | |
| } else { | |
| request_size=strlen(request_head); | |
| request=request_head; | |
| } | |
| } | } |
| const char* request_cstr=request_head_and_body.cstr(); | |
| size_t request_size=strlen(request_cstr); | |
| if(multipart) | |
| request_size=file_untaint(request_cstr, request_size); | |
| char* response; | char* response; |
| size_t response_size; | size_t response_size; |
| // sending request | // sending request |
| int status_code=http_request(response, response_size, | int status_code=http_request(response, response_size, |
| host, port, request_cstr, request_size, | host, port, request, request_size, |
| timeout_secs, fail_on_status_ne_200); | timeout_secs, fail_on_status_ne_200); |
| // processing results | // processing results |
| Line 826 File_read_http_result pa_internal_file_r | Line 860 File_read_http_result pa_internal_file_r |
| // skip UTF-8 signature (BOM code) | // skip UTF-8 signature (BOM code) |
| raw_body+=3; | raw_body+=3; |
| raw_body_size-=3; | raw_body_size-=3; |
| if(!real_remote_charset) | |
| real_remote_charset=&UTF8_charset; | |
| } | } |
| // output response | // output response |