3 #include <apt-pkg/cmndline.h>
4 #include <apt-pkg/configuration.h>
5 #include <apt-pkg/error.h>
6 #include <apt-pkg/fileutl.h>
7 #include <apt-pkg/strutl.h>
11 #include <netinet/in.h>
18 #include <sys/socket.h>
30 static std::string
httpcodeToStr(int const httpcode
) /*{{{*/
35 case 100: return _config
->Find("aptwebserver::httpcode::100", "100 Continue");
36 case 101: return _config
->Find("aptwebserver::httpcode::101", "101 Switching Protocols");
38 case 200: return _config
->Find("aptwebserver::httpcode::200", "200 OK");
39 case 201: return _config
->Find("aptwebserver::httpcode::201", "201 Created");
40 case 202: return _config
->Find("aptwebserver::httpcode::202", "202 Accepted");
41 case 203: return _config
->Find("aptwebserver::httpcode::203", "203 Non-Authoritative Information");
42 case 204: return _config
->Find("aptwebserver::httpcode::204", "204 No Content");
43 case 205: return _config
->Find("aptwebserver::httpcode::205", "205 Reset Content");
44 case 206: return _config
->Find("aptwebserver::httpcode::206", "206 Partial Content");
46 case 300: return _config
->Find("aptwebserver::httpcode::300", "300 Multiple Choices");
47 case 301: return _config
->Find("aptwebserver::httpcode::301", "301 Moved Permanently");
48 case 302: return _config
->Find("aptwebserver::httpcode::302", "302 Found");
49 case 303: return _config
->Find("aptwebserver::httpcode::303", "303 See Other");
50 case 304: return _config
->Find("aptwebserver::httpcode::304", "304 Not Modified");
51 case 305: return _config
->Find("aptwebserver::httpcode::305", "305 Use Proxy");
52 case 307: return _config
->Find("aptwebserver::httpcode::307", "307 Temporary Redirect");
54 case 400: return _config
->Find("aptwebserver::httpcode::400", "400 Bad Request");
55 case 401: return _config
->Find("aptwebserver::httpcode::401", "401 Unauthorized");
56 case 402: return _config
->Find("aptwebserver::httpcode::402", "402 Payment Required");
57 case 403: return _config
->Find("aptwebserver::httpcode::403", "403 Forbidden");
58 case 404: return _config
->Find("aptwebserver::httpcode::404", "404 Not Found");
59 case 405: return _config
->Find("aptwebserver::httpcode::405", "405 Method Not Allowed");
60 case 406: return _config
->Find("aptwebserver::httpcode::406", "406 Not Acceptable");
61 case 407: return _config
->Find("aptwebserver::httpcode::407", "407 Proxy Authentication Required");
62 case 408: return _config
->Find("aptwebserver::httpcode::408", "408 Request Time-out");
63 case 409: return _config
->Find("aptwebserver::httpcode::409", "409 Conflict");
64 case 410: return _config
->Find("aptwebserver::httpcode::410", "410 Gone");
65 case 411: return _config
->Find("aptwebserver::httpcode::411", "411 Length Required");
66 case 412: return _config
->Find("aptwebserver::httpcode::412", "412 Precondition Failed");
67 case 413: return _config
->Find("aptwebserver::httpcode::413", "413 Request Entity Too Large");
68 case 414: return _config
->Find("aptwebserver::httpcode::414", "414 Request-URI Too Large");
69 case 415: return _config
->Find("aptwebserver::httpcode::415", "415 Unsupported Media Type");
70 case 416: return _config
->Find("aptwebserver::httpcode::416", "416 Requested range not satisfiable");
71 case 417: return _config
->Find("aptwebserver::httpcode::417", "417 Expectation Failed");
72 case 418: return _config
->Find("aptwebserver::httpcode::418", "418 I'm a teapot");
74 case 500: return _config
->Find("aptwebserver::httpcode::500", "500 Internal Server Error");
75 case 501: return _config
->Find("aptwebserver::httpcode::501", "501 Not Implemented");
76 case 502: return _config
->Find("aptwebserver::httpcode::502", "502 Bad Gateway");
77 case 503: return _config
->Find("aptwebserver::httpcode::503", "503 Service Unavailable");
78 case 504: return _config
->Find("aptwebserver::httpcode::504", "504 Gateway Time-out");
79 case 505: return _config
->Find("aptwebserver::httpcode::505", "505 HTTP Version not supported");
84 static bool chunkedTransferEncoding(std::list
<std::string
> const &headers
) {
85 if (std::find(headers
.begin(), headers
.end(), "Transfer-Encoding: chunked") != headers
.end())
87 if (_config
->FindB("aptwebserver::chunked-transfer-encoding", false) == true)
91 static void addFileHeaders(std::list
<std::string
> &headers
, FileFd
&data
)/*{{{*/
93 if (chunkedTransferEncoding(headers
) == false)
95 std::ostringstream contentlength
;
96 contentlength
<< "Content-Length: " << data
.FileSize();
97 headers
.push_back(contentlength
.str());
99 if (_config
->FindB("aptwebserver::support::last-modified", true) == true)
101 std::string
lastmodified("Last-Modified: ");
102 lastmodified
.append(TimeRFC1123(data
.ModificationTime(), false));
103 headers
.push_back(lastmodified
);
107 static void addDataHeaders(std::list
<std::string
> &headers
, std::string
&data
)/*{{{*/
109 if (chunkedTransferEncoding(headers
) == false)
111 std::ostringstream contentlength
;
112 contentlength
<< "Content-Length: " << data
.size();
113 headers
.push_back(contentlength
.str());
117 static bool sendHead(int const client
, int const httpcode
, std::list
<std::string
> &headers
)/*{{{*/
119 std::string
response("HTTP/1.1 ");
120 response
.append(httpcodeToStr(httpcode
));
121 headers
.push_front(response
);
122 _config
->Set("APTWebserver::Last-Status-Code", httpcode
);
124 std::stringstream buffer
;
125 auto const empties
= _config
->FindVector("aptwebserver::empty-response-header");
126 for (auto && e
: empties
)
127 buffer
<< e
<< ":" << std::endl
;
128 _config
->Dump(buffer
, "aptwebserver::response-header", "%t: %v%n", false);
129 std::vector
<std::string
> addheaders
= VectorizeString(buffer
.str(), '\n');
130 for (std::vector
<std::string
>::const_iterator h
= addheaders
.begin(); h
!= addheaders
.end(); ++h
)
131 headers
.push_back(*h
);
133 std::string
date("Date: ");
134 date
.append(TimeRFC1123(time(NULL
), false));
135 headers
.push_back(date
);
137 if (chunkedTransferEncoding(headers
) == true)
138 headers
.push_back("Transfer-Encoding: chunked");
140 std::clog
<< ">>> RESPONSE to " << client
<< " >>>" << std::endl
;
142 for (std::list
<std::string
>::const_iterator h
= headers
.begin();
143 Success
== true && h
!= headers
.end(); ++h
)
145 Success
&= FileFd::Write(client
, h
->c_str(), h
->size());
147 Success
&= FileFd::Write(client
, "\r\n", 2);
148 std::clog
<< *h
<< std::endl
;
151 Success
&= FileFd::Write(client
, "\r\n", 2);
152 std::clog
<< "<<<<<<<<<<<<<<<<" << std::endl
;
156 static bool sendFile(int const client
, std::list
<std::string
> const &headers
, FileFd
&data
)/*{{{*/
159 bool const chunked
= chunkedTransferEncoding(headers
);
161 unsigned long long actual
= 0;
162 while ((Success
&= data
.Read(buffer
, sizeof(buffer
), &actual
)) == true)
170 strprintf(size
, "%llX\r\n", actual
);
171 Success
&= FileFd::Write(client
, size
.c_str(), size
.size());
172 Success
&= FileFd::Write(client
, buffer
, actual
);
173 Success
&= FileFd::Write(client
, "\r\n", strlen("\r\n"));
176 Success
&= FileFd::Write(client
, buffer
, actual
);
180 char const * const finish
= "0\r\n\r\n";
181 Success
&= FileFd::Write(client
, finish
, strlen(finish
));
183 if (Success
== false)
184 std::cerr
<< "SENDFILE:" << (chunked
? " CHUNKED" : "") << " READ/WRITE ERROR to " << client
<< std::endl
;
188 static bool sendData(int const client
, std::list
<std::string
> const &headers
, std::string
const &data
)/*{{{*/
190 if (chunkedTransferEncoding(headers
) == true)
192 unsigned long long const ullsize
= data
.length();
194 strprintf(size
, "%llX\r\n", ullsize
);
195 char const * const finish
= "\r\n0\r\n\r\n";
196 if (FileFd::Write(client
, size
.c_str(), size
.length()) == false ||
197 FileFd::Write(client
, data
.c_str(), ullsize
) == false ||
198 FileFd::Write(client
, finish
, strlen(finish
)) == false)
200 std::cerr
<< "SENDDATA: CHUNK WRITE ERROR to " << client
<< std::endl
;
204 else if (FileFd::Write(client
, data
.c_str(), data
.size()) == false)
206 std::cerr
<< "SENDDATA: WRITE ERROR to " << client
<< std::endl
;
212 static void sendError(int const client
, int const httpcode
, std::string
const &request
,/*{{{*/
213 bool const content
, std::string
const &error
, std::list
<std::string
> &headers
)
215 std::string
response("<!doctype html><html><head><title>");
216 response
.append(httpcodeToStr(httpcode
)).append("</title><meta charset=\"utf-8\" /></head>");
217 response
.append("<body><h1>").append(httpcodeToStr(httpcode
)).append("</h1>");
219 response
.append("<p><em>Error</em>: ");
221 response
.append("<p><em>Success</em>: ");
222 if (error
.empty() == false)
223 response
.append(error
);
225 response
.append(httpcodeToStr(httpcode
));
227 response
.append("</p>This error is a result of the request: <pre>");
229 response
.append("The successfully executed operation was requested by: <pre>");
230 response
.append(request
).append("</pre></body></html>");
233 if (_config
->FindB("aptwebserver::closeOnError", false) == true)
234 headers
.push_back("Connection: close");
236 addDataHeaders(headers
, response
);
237 sendHead(client
, httpcode
, headers
);
239 sendData(client
, headers
, response
);
241 static void sendSuccess(int const client
, std::string
const &request
,
242 bool const content
, std::string
const &error
, std::list
<std::string
> &headers
)
244 sendError(client
, 200, request
, content
, error
, headers
);
247 static void sendRedirect(int const client
, int const httpcode
, std::string
const &uri
,/*{{{*/
248 std::string
const &request
, bool content
)
250 std::list
<std::string
> headers
;
251 std::string
response("<!doctype html><html><head><title>");
252 response
.append(httpcodeToStr(httpcode
)).append("</title><meta charset=\"utf-8\" /></head>");
253 response
.append("<body><h1>").append(httpcodeToStr(httpcode
)).append("</h1");
254 response
.append("<p>You should be redirected to <em>").append(uri
).append("</em></p>");
255 response
.append("This page is a result of the request: <pre>");
256 response
.append(request
).append("</pre></body></html>");
257 addDataHeaders(headers
, response
);
258 std::string
location("Location: ");
259 if (strncmp(uri
.c_str(), "http://", 7) != 0 && strncmp(uri
.c_str(), "https://", 8) != 0)
261 std::string
const host
= LookupTag(request
, "Host");
262 unsigned int const httpsport
= _config
->FindI("aptwebserver::port::https", 4433);
263 std::string hosthttpsport
;
264 strprintf(hosthttpsport
, ":%u", httpsport
);
265 if (host
.find(hosthttpsport
) != std::string::npos
)
266 location
.append("https://");
268 location
.append("http://");
269 location
.append(host
).append("/");
270 if (strncmp("/home/", uri
.c_str(), strlen("/home/")) == 0 && uri
.find("/public_html/") != std::string::npos
)
272 std::string homeuri
= SubstVar(uri
, "/home/", "~");
273 homeuri
= SubstVar(homeuri
, "/public_html/", "/");
274 location
.append(homeuri
);
277 location
.append(uri
);
280 location
.append(uri
);
281 headers
.push_back(location
);
282 sendHead(client
, httpcode
, headers
);
284 sendData(client
, headers
, response
);
287 static int filter_hidden_files(const struct dirent
*a
) /*{{{*/
289 if (a
->d_name
[0] == '.')
291 #ifdef _DIRENT_HAVE_D_TYPE
292 // if we have the d_type check that only files and dirs will be included
293 if (a
->d_type
!= DT_UNKNOWN
&&
294 a
->d_type
!= DT_REG
&&
295 a
->d_type
!= DT_LNK
&& // this includes links to regular files
301 static int grouped_alpha_case_sort(const struct dirent
**a
, const struct dirent
**b
) {
302 #ifdef _DIRENT_HAVE_D_TYPE
303 if ((*a
)->d_type
== DT_DIR
&& (*b
)->d_type
== DT_DIR
);
304 else if ((*a
)->d_type
== DT_DIR
&& (*b
)->d_type
== DT_REG
)
306 else if ((*b
)->d_type
== DT_DIR
&& (*a
)->d_type
== DT_REG
)
311 struct stat f_prop
; //File's property
312 stat((*a
)->d_name
, &f_prop
);
313 int const amode
= f_prop
.st_mode
;
314 stat((*b
)->d_name
, &f_prop
);
315 int const bmode
= f_prop
.st_mode
;
316 if (S_ISDIR(amode
) && S_ISDIR(bmode
));
317 else if (S_ISDIR(amode
))
319 else if (S_ISDIR(bmode
))
322 return strcasecmp((*a
)->d_name
, (*b
)->d_name
);
325 static void sendDirectoryListing(int const client
, std::string
const &dir
,/*{{{*/
326 std::string
const &request
, bool content
, std::list
<std::string
> &headers
)
328 std::ostringstream listing
;
330 struct dirent
**namelist
;
331 int const counter
= scandir(dir
.c_str(), &namelist
, filter_hidden_files
, grouped_alpha_case_sort
);
334 sendError(client
, 500, request
, content
, "scandir failed", headers
);
338 listing
<< "<!doctype html><html><head><title>Index of " << dir
<< "</title><meta charset=\"utf-8\" />"
339 << "<style type=\"text/css\"><!-- td {padding: 0.02em 0.5em 0.02em 0.5em;}"
340 << "tr:nth-child(even){background-color:#dfdfdf;}"
341 << "h1, td:nth-child(3){text-align:center;}"
342 << "table {margin-left:auto;margin-right:auto;} --></style>"
343 << "</head>" << std::endl
344 << "<body><h1>Index of " << dir
<< "</h1>" << std::endl
345 << "<table><tr><th>#</th><th>Name</th><th>Size</th><th>Last-Modified</th></tr>" << std::endl
;
347 listing
<< "<tr><td>d</td><td><a href=\"..\">Parent Directory</a></td><td>-</td><td>-</td></tr>";
348 for (int i
= 0; i
< counter
; ++i
) {
350 std::string
filename(dir
);
351 filename
.append("/").append(namelist
[i
]->d_name
);
352 stat(filename
.c_str(), &fs
);
353 if (S_ISDIR(fs
.st_mode
))
355 listing
<< "<tr><td>d</td>"
356 << "<td><a href=\"" << namelist
[i
]->d_name
<< "/\">" << namelist
[i
]->d_name
<< "</a></td>"
361 listing
<< "<tr><td>f</td>"
362 << "<td><a href=\"" << namelist
[i
]->d_name
<< "\">" << namelist
[i
]->d_name
<< "</a></td>"
363 << "<td>" << SizeToStr(fs
.st_size
) << "B</td>";
365 listing
<< "<td>" << TimeRFC1123(fs
.st_mtime
, true) << "</td></tr>" << std::endl
;
367 listing
<< "</table></body></html>" << std::endl
;
369 std::string
response(listing
.str());
370 addDataHeaders(headers
, response
);
371 sendHead(client
, 200, headers
);
373 sendData(client
, headers
, response
);
376 static bool parseFirstLine(int const client
, std::string
const &request
,/*{{{*/
377 std::string
&filename
, std::string
¶ms
, bool &sendContent
,
378 bool &closeConnection
, std::list
<std::string
> &headers
)
380 if (strncmp(request
.c_str(), "HEAD ", 5) == 0)
382 if (strncmp(request
.c_str(), "GET ", 4) != 0)
384 sendError(client
, 501, request
, true, "", headers
);
388 size_t const lineend
= request
.find('\n');
389 size_t filestart
= request
.find(' ');
390 for (; request
[filestart
] == ' '; ++filestart
);
391 size_t fileend
= request
.rfind(' ', lineend
);
392 if (lineend
== std::string::npos
|| filestart
== std::string::npos
||
393 fileend
== std::string::npos
|| filestart
== fileend
)
395 sendError(client
, 500, request
, sendContent
, "Filename can't be extracted", headers
);
399 size_t httpstart
= fileend
;
400 for (; request
[httpstart
] == ' '; ++httpstart
);
401 if (strncmp(request
.c_str() + httpstart
, "HTTP/1.1\r", 9) == 0)
402 closeConnection
= strcasecmp(LookupTag(request
, "Connection", "Keep-Alive").c_str(), "Keep-Alive") != 0;
403 else if (strncmp(request
.c_str() + httpstart
, "HTTP/1.0\r", 9) == 0)
404 closeConnection
= strcasecmp(LookupTag(request
, "Connection", "Keep-Alive").c_str(), "close") == 0;
407 sendError(client
, 500, request
, sendContent
, "Not a HTTP/1.{0,1} request", headers
);
411 filename
= request
.substr(filestart
, fileend
- filestart
);
412 if (filename
.find(' ') != std::string::npos
)
414 sendError(client
, 500, request
, sendContent
, "Filename contains an unencoded space", headers
);
418 std::string host
= LookupTag(request
, "Host", "");
419 if (host
.empty() == true)
421 // RFC 2616 §14.23 requires Host
422 sendError(client
, 400, request
, sendContent
, "Host header is required", headers
);
425 host
= "http://" + host
;
427 // Proxies require absolute uris, so this is a simple proxy-fake option
428 std::string
const absolute
= _config
->Find("aptwebserver::request::absolute", "uri,path");
429 if (strncmp(host
.c_str(), filename
.c_str(), host
.length()) == 0 && APT::String::Startswith(filename
, "/_config/") == false)
431 if (absolute
.find("uri") == std::string::npos
)
433 sendError(client
, 400, request
, sendContent
, "Request is absoluteURI, but configured to not accept that", headers
);
437 // strip the host from the request to make it an absolute path
438 filename
.erase(0, host
.length());
440 std::string
const authConf
= _config
->Find("aptwebserver::proxy-authorization", "");
441 std::string auth
= LookupTag(request
, "Proxy-Authorization", "");
442 if (authConf
.empty() != auth
.empty())
445 sendError(client
, 407, request
, sendContent
, "Proxy requires authentication", headers
);
447 sendError(client
, 407, request
, sendContent
, "Client wants to authenticate to proxy, but proxy doesn't need it", headers
);
450 if (authConf
.empty() == false)
452 char const * const basic
= "Basic ";
453 if (strncmp(auth
.c_str(), basic
, strlen(basic
)) == 0)
455 auth
.erase(0, strlen(basic
));
456 if (auth
!= authConf
)
458 sendError(client
, 407, request
, sendContent
, "Proxy-Authentication doesn't match", headers
);
464 std::list
<std::string
> headers
;
465 headers
.push_back("Proxy-Authenticate: Basic");
466 sendError(client
, 407, request
, sendContent
, "Unsupported Proxy-Authentication Scheme", headers
);
471 else if (absolute
.find("path") == std::string::npos
&& APT::String::Startswith(filename
, "/_config/") == false)
473 sendError(client
, 400, request
, sendContent
, "Request is absolutePath, but configured to not accept that", headers
);
477 if (APT::String::Startswith(filename
, "/_config/") == false)
479 std::string
const authConf
= _config
->Find("aptwebserver::authorization", "");
480 std::string auth
= LookupTag(request
, "Authorization", "");
481 if (authConf
.empty() != auth
.empty())
484 sendError(client
, 401, request
, sendContent
, "Server requires authentication", headers
);
486 sendError(client
, 401, request
, sendContent
, "Client wants to authenticate to server, but server doesn't need it", headers
);
489 if (authConf
.empty() == false)
491 char const * const basic
= "Basic ";
492 if (strncmp(auth
.c_str(), basic
, strlen(basic
)) == 0)
494 auth
.erase(0, strlen(basic
));
495 if (auth
!= authConf
)
497 sendError(client
, 401, request
, sendContent
, "Authentication doesn't match", headers
);
503 headers
.push_back("WWW-Authenticate: Basic");
504 sendError(client
, 401, request
, sendContent
, "Unsupported Authentication Scheme", headers
);
510 size_t paramspos
= filename
.find('?');
511 if (paramspos
!= std::string::npos
)
513 params
= filename
.substr(paramspos
+ 1);
514 filename
.erase(paramspos
);
517 filename
= DeQuoteString(filename
);
519 // this is not a secure server, but at least prevent the obvious …
520 if (filename
.empty() == true || filename
[0] != '/' ||
521 strncmp(filename
.c_str(), "//", 2) == 0 ||
522 filename
.find_first_of("\r\n\t\f\v") != std::string::npos
||
523 filename
.find("/../") != std::string::npos
)
525 std::list
<std::string
> headers
;
526 sendError(client
, 400, request
, sendContent
, "Filename contains illegal character (sequence)", headers
);
530 // nuke the first character which is a / as we assured above
531 filename
.erase(0, 1);
532 if (filename
.empty() == true)
534 // support ~user/ uris to refer to /home/user/public_html/ as a kind-of special directory
535 else if (filename
[0] == '~')
537 // /home/user is actually not entirely correct, but good enough for now
538 size_t dashpos
= filename
.find('/');
539 if (dashpos
!= std::string::npos
)
541 std::string home
= filename
.substr(1, filename
.find('/') - 1);
542 std::string pubhtml
= filename
.substr(filename
.find('/') + 1);
543 filename
= "/home/" + home
+ "/public_html/" + pubhtml
;
546 filename
= "/home/" + filename
.substr(1) + "/public_html/";
549 // if no filename is given, but a valid directory see if we can use an index or
550 // have to resort to a autogenerated directory listing later on
551 if (DirectoryExists(filename
) == true)
553 std::string
const directoryIndex
= _config
->Find("aptwebserver::directoryindex");
554 if (directoryIndex
.empty() == false && directoryIndex
== flNotDir(directoryIndex
) &&
555 RealFileExists(filename
+ directoryIndex
) == true)
556 filename
+= directoryIndex
;
562 static bool handleOnTheFlyReconfiguration(int const client
, std::string
const &request
,/*{{{*/
563 std::vector
<std::string
> parts
, std::list
<std::string
> &headers
)
565 size_t const pcount
= parts
.size();
566 for (size_t i
= 0; i
< pcount
; ++i
)
567 parts
[i
] = DeQuoteString(parts
[i
]);
568 if (pcount
== 4 && parts
[1] == "set")
570 _config
->Set(parts
[2], parts
[3]);
571 sendSuccess(client
, request
, true, "Option '" + parts
[2] + "' was set to '" + parts
[3] + "'!", headers
);
574 else if (pcount
== 4 && parts
[1] == "find")
576 std::string response
= _config
->Find(parts
[2], parts
[3]);
577 addDataHeaders(headers
, response
);
578 sendHead(client
, 200, headers
);
579 sendData(client
, headers
, response
);
582 else if (pcount
== 3 && parts
[1] == "find")
584 if (_config
->Exists(parts
[2]) == true)
586 std::string response
= _config
->Find(parts
[2]);
587 addDataHeaders(headers
, response
);
588 sendHead(client
, 200, headers
);
589 sendData(client
, headers
, response
);
592 sendError(client
, 404, request
, true, "Requested Configuration option doesn't exist", headers
);
595 else if (pcount
== 3 && parts
[1] == "clear")
597 _config
->Clear(parts
[2]);
598 sendSuccess(client
, request
, true, "Option '" + parts
[2] + "' was cleared.", headers
);
602 sendError(client
, 400, request
, true, "Unknown on-the-fly configuration request", headers
);
606 static void * handleClient(void * voidclient
) /*{{{*/
608 int client
= *((int*)(voidclient
));
609 std::clog
<< "ACCEPT client " << client
<< std::endl
;
610 bool closeConnection
= false;
611 while (closeConnection
== false)
613 std::vector
<std::string
> messages
;
614 if (ReadMessages(client
, messages
) == false)
617 std::list
<std::string
> headers
;
618 for (std::vector
<std::string
>::const_iterator m
= messages
.begin();
619 m
!= messages
.end() && closeConnection
== false; ++m
) {
620 // if we announced a closing in previous response, do the close now
621 if (std::find(headers
.begin(), headers
.end(), std::string("Connection: close")) != headers
.end())
623 closeConnection
= true;
628 std::clog
<< ">>> REQUEST from " << client
<< " >>>" << std::endl
<< *m
629 << std::endl
<< "<<<<<<<<<<<<<<<<" << std::endl
;
630 std::string filename
;
632 bool sendContent
= true;
633 if (parseFirstLine(client
, *m
, filename
, params
, sendContent
, closeConnection
, headers
) == false)
636 // special webserver command request
637 if (filename
.length() > 1 && filename
[0] == '_')
639 std::vector
<std::string
> parts
= VectorizeString(filename
, '/');
640 if (parts
[0] == "_config")
642 handleOnTheFlyReconfiguration(client
, *m
, parts
, headers
);
647 // string replacements in the requested filename
648 ::Configuration::Item
const *Replaces
= _config
->Tree("aptwebserver::redirect::replace");
649 if (Replaces
!= NULL
)
651 std::string redirect
= "/" + filename
;
652 for (::Configuration::Item
*I
= Replaces
->Child
; I
!= NULL
; I
= I
->Next
)
653 redirect
= SubstVar(redirect
, I
->Tag
, I
->Value
);
654 if (redirect
.empty() == false && redirect
[0] == '/')
656 if (redirect
!= filename
)
658 sendRedirect(client
, _config
->FindI("aptwebserver::redirect::httpcode", 301), redirect
, *m
, sendContent
);
663 ::Configuration::Item
const *Overwrite
= _config
->Tree("aptwebserver::overwrite");
664 if (Overwrite
!= NULL
)
666 for (::Configuration::Item
*I
= Overwrite
->Child
; I
!= NULL
; I
= I
->Next
)
668 regex_t
*pattern
= new regex_t
;
669 int const res
= regcomp(pattern
, I
->Tag
.c_str(), REG_EXTENDED
| REG_ICASE
| REG_NOSUB
);
673 regerror(res
, pattern
, error
, sizeof(error
));
674 sendError(client
, 500, *m
, sendContent
, error
, headers
);
677 if (regexec(pattern
, filename
.c_str(), 0, 0, 0) == 0)
679 filename
= _config
->Find("aptwebserver::overwrite::" + I
->Tag
+ "::filename", filename
);
680 if (filename
[0] == '/')
689 // deal with the request
690 unsigned int const httpsport
= _config
->FindI("aptwebserver::port::https", 4433);
691 std::string hosthttpsport
;
692 strprintf(hosthttpsport
, ":%u", httpsport
);
693 if (_config
->FindB("aptwebserver::support::http", true) == false &&
694 LookupTag(*m
, "Host").find(hosthttpsport
) == std::string::npos
)
696 sendError(client
, 400, *m
, sendContent
, "HTTP disabled, all requests must be HTTPS", headers
);
699 else if (RealFileExists(filename
) == true)
701 FileFd
data(filename
, FileFd::ReadOnly
);
702 std::string condition
= LookupTag(*m
, "If-Modified-Since", "");
703 if (_config
->FindB("aptwebserver::support::modified-since", true) == true && condition
.empty() == false)
706 if (RFC1123StrToTime(condition
.c_str(), cache
) == true &&
707 cache
>= data
.ModificationTime())
709 sendHead(client
, 304, headers
);
714 if (_config
->FindB("aptwebserver::support::range", true) == true)
715 condition
= LookupTag(*m
, "Range", "");
718 if (condition
.empty() == false && strncmp(condition
.c_str(), "bytes=", 6) == 0)
720 std::string ranges
= ',' + _config
->Find("aptwebserver::response-header::Accept-Ranges") + ',';
721 ranges
.erase(std::remove(ranges
.begin(), ranges
.end(), ' '), ranges
.end());
722 if (ranges
.find(",bytes,") == std::string::npos
)
724 // we handle it as an error here because we are a test server - a real one should just ignore it
725 sendError(client
, 400, *m
, sendContent
, "Client does range requests we don't support", headers
);
731 if (_config
->FindB("aptwebserver::support::if-range", true) == true)
732 ifrange
= LookupTag(*m
, "If-Range", "");
733 bool validrange
= (ifrange
.empty() == true ||
734 (RFC1123StrToTime(ifrange
.c_str(), cache
) == true &&
735 cache
<= data
.ModificationTime()));
737 // FIXME: support multiple byte-ranges (APT clients do not do this)
738 if (condition
.find(',') == std::string::npos
)
741 unsigned long long filestart
= strtoull(condition
.c_str() + start
, NULL
, 10);
742 // FIXME: no support for last-byte-pos being not the end of the file (APT clients do not do this)
743 size_t dash
= condition
.find('-') + 1;
744 unsigned long long fileend
= strtoull(condition
.c_str() + dash
, NULL
, 10);
745 unsigned long long filesize
= data
.FileSize();
746 if ((fileend
== 0 || (fileend
== filesize
&& fileend
>= filestart
)) &&
749 if (filesize
> filestart
)
751 data
.Skip(filestart
);
752 // make sure to send content-range before conent-length
753 // as regression test for LP: #1445239
754 std::ostringstream contentrange
;
755 contentrange
<< "Content-Range: bytes " << filestart
<< "-"
756 << filesize
- 1 << "/" << filesize
;
757 headers
.push_back(contentrange
.str());
758 std::ostringstream contentlength
;
759 contentlength
<< "Content-Length: " << (filesize
- filestart
);
760 headers
.push_back(contentlength
.str());
761 sendHead(client
, 206, headers
);
762 if (sendContent
== true)
763 sendFile(client
, headers
, data
);
768 if (_config
->FindB("aptwebserver::support::content-range", true) == true)
770 std::ostringstream contentrange
;
771 contentrange
<< "Content-Range: bytes */" << filesize
;
772 headers
.push_back(contentrange
.str());
774 sendError(client
, 416, *m
, sendContent
, "", headers
);
781 addFileHeaders(headers
, data
);
782 sendHead(client
, 200, headers
);
783 if (sendContent
== true)
784 sendFile(client
, headers
, data
);
786 else if (DirectoryExists(filename
) == true)
788 if (filename
[filename
.length()-1] == '/')
789 sendDirectoryListing(client
, filename
, *m
, sendContent
, headers
);
791 sendRedirect(client
, 301, filename
.append("/"), *m
, sendContent
);
794 sendError(client
, 404, *m
, sendContent
, "", headers
);
797 // if we announced a closing in the last response, do the close now
798 if (std::find(headers
.begin(), headers
.end(), std::string("Connection: close")) != headers
.end())
799 closeConnection
= true;
801 if (_error
->PendingError() == true)
803 _error
->DumpErrors(std::cerr
);
805 _error
->DumpErrors(std::cerr
);
807 std::clog
<< "CLOSE client " << client
<< std::endl
;
812 int main(int const argc
, const char * argv
[])
814 CommandLine::Args Args
[] = {
815 {0, "port", "aptwebserver::port", CommandLine::HasArg
},
816 {0, "request-absolute", "aptwebserver::request::absolute", CommandLine::HasArg
},
817 {0, "authorization", "aptwebserver::authorization", CommandLine::HasArg
},
818 {0, "proxy-authorization", "aptwebserver::proxy-authorization", CommandLine::HasArg
},
819 {'c',"config-file",0,CommandLine::ConfigFile
},
820 {'o',"option",0,CommandLine::ArbItem
},
824 CommandLine
CmdL(Args
, _config
);
825 if(CmdL
.Parse(argc
,argv
) == false)
827 _error
->DumpErrors();
831 // create socket, bind and listen to it {{{
832 // ignore SIGPIPE, this can happen on write() if the socket closes connection
833 signal(SIGPIPE
, SIG_IGN
);
834 // we don't care for our slaves, so ignore their death
835 signal(SIGCHLD
, SIG_IGN
);
837 int sock
= socket(AF_INET6
, SOCK_STREAM
, 0);
840 _error
->Errno("aptwerbserver", "Couldn't create socket");
841 _error
->DumpErrors(std::cerr
);
845 int port
= _config
->FindI("aptwebserver::port", 8080);
847 // ensure that we accept all connections: v4 or v6
848 int const iponly
= 0;
849 setsockopt(sock
, IPPROTO_IPV6
, IPV6_V6ONLY
, &iponly
, sizeof(iponly
));
850 // to not linger on an address
851 int const enable
= 1;
852 setsockopt(sock
, SOL_SOCKET
, SO_REUSEADDR
, &enable
, sizeof(enable
));
854 struct sockaddr_in6 locAddr
;
855 memset(&locAddr
, 0, sizeof(locAddr
));
856 locAddr
.sin6_family
= AF_INET6
;
857 locAddr
.sin6_port
= htons(port
);
858 locAddr
.sin6_addr
= in6addr_any
;
860 if (bind(sock
, (struct sockaddr
*) &locAddr
, sizeof(locAddr
)) < 0)
862 _error
->Errno("aptwerbserver", "Couldn't bind");
863 _error
->DumpErrors(std::cerr
);
869 struct sockaddr_in6 addr
;
870 socklen_t addrlen
= sizeof(sockaddr_in6
);
871 if (getsockname(sock
, (struct sockaddr
*) &addr
, &addrlen
) != 0)
872 _error
->Errno("getsockname", "Could not get chosen port number");
874 port
= ntohs(addr
.sin6_port
);
876 std::string
const portfilename
= _config
->Find("aptwebserver::portfile", "");
877 if (portfilename
.empty() == false)
879 FileFd
portfile(portfilename
, FileFd::WriteOnly
| FileFd::Create
| FileFd::Empty
);
880 std::string portcontent
;
881 strprintf(portcontent
, "%d", port
);
882 portfile
.Write(portcontent
.c_str(), portcontent
.size());
885 _config
->Set("aptwebserver::port::http", port
);
888 if (_config
->FindB("aptwebserver::fork", false) == true)
890 std::string
const pidfilename
= _config
->Find("aptwebserver::pidfile", "aptwebserver.pid");
891 int const pidfilefd
= GetLock(pidfilename
);
892 if (pidfilefd
< 0 || pidfile
.OpenDescriptor(pidfilefd
, FileFd::WriteOnly
) == false)
894 _error
->Errno("aptwebserver", "Couldn't acquire lock on pidfile '%s'", pidfilename
.c_str());
895 _error
->DumpErrors(std::cerr
);
899 pid_t child
= fork();
902 _error
->Errno("aptwebserver", "Forking failed");
903 _error
->DumpErrors(std::cerr
);
908 // successfully forked: ready to serve!
909 std::string pidcontent
;
910 strprintf(pidcontent
, "%d", child
);
911 pidfile
.Write(pidcontent
.c_str(), pidcontent
.size());
913 if (_error
->PendingError() == true)
915 _error
->DumpErrors(std::cerr
);
918 std::cout
<< "Successfully forked as " << child
<< std::endl
;
923 std::clog
<< "Serving ANY file on port: " << port
<< std::endl
;
925 int const slaves
= _config
->FindI("aptwebserver::slaves", SOMAXCONN
);
926 std::cerr
<< "SLAVES: " << slaves
<< std::endl
;
927 listen(sock
, slaves
);
930 _config
->CndSet("aptwebserver::response-header::Server", "APT webserver");
931 _config
->CndSet("aptwebserver::response-header::Accept-Ranges", "bytes");
932 _config
->CndSet("aptwebserver::directoryindex", "index.html");
934 std::list
<int> accepted_clients
;
938 int client
= accept(sock
, NULL
, NULL
);
943 _error
->Errno("accept", "Couldn't accept client on socket %d", sock
);
944 _error
->DumpErrors(std::cerr
);
949 if (pthread_attr_init(&attr
) != 0 || pthread_attr_setdetachstate(&attr
, PTHREAD_CREATE_DETACHED
) != 0)
951 _error
->Errno("pthread_attr", "Couldn't set detach attribute for a fresh thread to handle client %d on socket %d", client
, sock
);
952 _error
->DumpErrors(std::cerr
);
958 // thats rather dirty, but we need to store the client socket somewhere safe
959 accepted_clients
.push_front(client
);
960 if (pthread_create(&tid
, &attr
, &handleClient
, &(*accepted_clients
.begin())) != 0)
962 _error
->Errno("pthread_create", "Couldn't create a fresh thread to handle client %d on socket %d", client
, sock
);
963 _error
->DumpErrors(std::cerr
);