]> git.tdb.fi Git - libs/net.git/blob - source/http/server.cpp
Reject requests with a relative path
[libs/net.git] / source / http / server.cpp
1 #include <exception>
2 #include <msp/core/maputils.h>
3 #include <msp/core/refptr.h>
4 #include <msp/net/inet.h>
5 #include <msp/net/resolve.h>
6 #include <msp/net/streamsocket.h>
7 #include <msp/strings/format.h>
8 #include "request.h"
9 #include "response.h"
10 #include "server.h"
11
12 using namespace std;
13
14 namespace Msp {
15 namespace Http {
16
17 Server::Server(unsigned port):
18         sock(Net::INET),
19         event_disp(0)
20 {
21         sock.signal_data_available.connect(sigc::mem_fun(this, &Server::data_available));
22         RefPtr<Net::SockAddr> addr = Net::resolve("*", format("%d", port));
23         sock.listen(*addr, 8);
24 }
25
26 unsigned Server::get_port() const
27 {
28         const Net::SockAddr &addr = sock.get_local_address();
29         if(addr.get_family()==Net::INET)
30                 return static_cast<const Net::InetAddr &>(addr).get_port();
31         return 0;
32 }
33
34 void Server::use_event_dispatcher(IO::EventDispatcher *ed)
35 {
36         if(event_disp)
37         {
38                 event_disp->remove(sock);
39                 for(list<Client>::iterator i=clients.begin(); i!=clients.end(); ++i)
40                         event_disp->remove(*i->sock);
41         }
42         event_disp = ed;
43         if(event_disp)
44         {
45                 event_disp->add(sock);
46                 for(list<Client>::iterator i=clients.begin(); i!=clients.end(); ++i)
47                         event_disp->add(*i->sock);
48         }
49 }
50
51 void Server::delay_response(Response &resp)
52 {
53         get_client_by_response(resp).async = true;
54 }
55
56 void Server::submit_response(Response &resp)
57 {
58         Client &cl = get_client_by_response(resp);
59         if(cl.async)
60         {
61                 cl.sock->write(resp.str());
62                 cl.stale = true;
63         }
64 }
65
66 void Server::data_available()
67 {
68         Net::StreamSocket *csock = sock.accept();
69         clients.push_back(Client(csock));
70         csock->signal_data_available.connect(sigc::bind(sigc::mem_fun(this, &Server::client_data_available), sigc::ref(clients.back())));
71         csock->signal_end_of_file.connect(sigc::bind(sigc::mem_fun(this, &Server::client_end_of_file), sigc::ref(clients.back())));
72         if(event_disp)
73                 event_disp->add(*csock);
74 }
75
76 void Server::client_data_available(Client &cl)
77 {
78         for(list<Client>::iterator i=clients.begin(); i!=clients.end(); ++i)
79                 if(i->stale && &*i!=&cl)
80                 {
81                         clients.erase(i);
82                         break;
83                 }
84
85         char rbuf[4096];
86         unsigned len = cl.sock->read(rbuf, sizeof(rbuf));
87         if(cl.stale)
88                 return;
89         cl.in_buf.append(rbuf, len);
90
91         RefPtr<Response> response;
92         if(!cl.request)
93         {
94                 if(cl.in_buf.find("\r\n\r\n")!=string::npos || cl.in_buf.find("\n\n")!=string::npos)
95                 {
96                         try
97                         {
98                                 cl.request = new Request(Request::parse(cl.in_buf));
99
100                                 string addr_str = cl.sock->get_peer_address().str();
101                                 unsigned colon = addr_str.find(':');
102                                 cl.request->set_header("-Client-Host", addr_str.substr(0, colon));
103
104                                 if(cl.request->get_method()!="GET" && cl.request->get_method()!="POST")
105                                 {
106                                         response = new Response(NOT_IMPLEMENTED);
107                                         response->add_content("Method not implemented\n");
108                                 }
109                                 else if(cl.request->get_path()[0]!='/')
110                                 {
111                                         response = new Response(BAD_REQUEST);
112                                         response->add_content("Path must be absolute\n");
113                                 }
114                         }
115                         catch(const exception &e)
116                         {
117                                 response = new Response(BAD_REQUEST);
118                                 response->add_content(e.what());
119                         }
120                         cl.in_buf = string();
121                 }
122         }
123         else
124         {
125                 len = cl.request->parse_content(cl.in_buf);
126                 cl.in_buf.erase(0, len);
127         }
128
129         bool keepalive = false;
130         if(cl.request && cl.request->is_complete() && !response)
131         {
132                 if(cl.request->has_header("Connection"))
133                         keepalive = (cl.request->get_header("Connection")=="keep-alive");
134
135                 response = new Response(NONE);
136                 try
137                 {
138                         cl.response = response.get();
139                         responses[cl.response] = &cl;
140                         signal_request.emit(*cl.request, *response);
141                         if(cl.async)
142                                 response.release();
143                         else
144                         {
145                                 responses.erase(cl.response);
146                                 cl.response = 0;
147                                 if(response->get_status()==NONE)
148                                 {
149                                         response = new Response(NOT_FOUND);
150                                         response->add_content("The requested resource was not found\n");
151                                 }
152                         }
153                 }
154                 catch(const exception &e)
155                 {
156                         responses.erase(cl.response);
157                         cl.response = 0;
158                         response = new Response(INTERNAL_ERROR);
159                         response->add_content(e.what());
160                 }
161         }
162
163         if(response)
164         {
165                 cl.sock->write(response->str());
166                 if(keepalive)
167                 {
168                         delete cl.request;
169                         cl.request = 0;
170                         delete cl.response;
171                         cl.response = 0;
172                 }
173                 else
174                 {
175                         cl.sock->shutdown(IO::M_WRITE);
176                         cl.stale = true;
177                 }
178         }
179 }
180
181 void Server::client_end_of_file(Client &cl)
182 {
183         cl.stale = true;
184 }
185
186 Server::Client &Server::get_client_by_response(Response &resp)
187 {
188         return *get_item(responses, &resp);
189 }
190
191
192 Server::Client::Client(RefPtr<Net::StreamSocket> s):
193         sock(s),
194         request(0),
195         response(0),
196         async(false),
197         stale(false)
198 { }
199
200 Server::Client::~Client()
201 {
202         delete request;
203         delete response;
204 }
205
206 } // namespace Http
207 } // namespace Msp