Blame


1 9df487d7 2003-11-23 devnull #include <u.h>
2 9df487d7 2003-11-23 devnull #include <libc.h>
3 9df487d7 2003-11-23 devnull #include <bin.h>
4 9df487d7 2003-11-23 devnull #include <httpd.h>
5 9df487d7 2003-11-23 devnull
6 9df487d7 2003-11-23 devnull typedef struct Strings Strings;
7 9df487d7 2003-11-23 devnull
8 9df487d7 2003-11-23 devnull struct Strings
9 9df487d7 2003-11-23 devnull {
10 9df487d7 2003-11-23 devnull char *s1;
11 9df487d7 2003-11-23 devnull char *s2;
12 9df487d7 2003-11-23 devnull };
13 9df487d7 2003-11-23 devnull
14 9df487d7 2003-11-23 devnull static char* abspath(HConnect *cc, char *origpath, char *curdir);
15 9df487d7 2003-11-23 devnull static int getc(HConnect*);
16 9df487d7 2003-11-23 devnull static char* getword(HConnect*);
17 9df487d7 2003-11-23 devnull static Strings parseuri(HConnect *c, char*);
18 9df487d7 2003-11-23 devnull static Strings stripsearch(char*);
19 9df487d7 2003-11-23 devnull
20 9df487d7 2003-11-23 devnull /*
21 9df487d7 2003-11-23 devnull * parse the next request line
22 9df487d7 2003-11-23 devnull * returns:
23 9df487d7 2003-11-23 devnull * 1 ok
24 9df487d7 2003-11-23 devnull * 0 eof
25 9df487d7 2003-11-23 devnull * -1 error
26 9df487d7 2003-11-23 devnull */
27 9df487d7 2003-11-23 devnull int
28 9df487d7 2003-11-23 devnull hparsereq(HConnect *c, int timeout)
29 9df487d7 2003-11-23 devnull {
30 9df487d7 2003-11-23 devnull Strings ss;
31 9df487d7 2003-11-23 devnull char *vs, *v, *search, *uri, *origuri, *extra;
32 9df487d7 2003-11-23 devnull
33 9df487d7 2003-11-23 devnull if(c->bin != nil){
34 9df487d7 2003-11-23 devnull hfail(c, HInternal);
35 9df487d7 2003-11-23 devnull return -1;
36 9df487d7 2003-11-23 devnull }
37 9df487d7 2003-11-23 devnull
38 9df487d7 2003-11-23 devnull /*
39 9df487d7 2003-11-23 devnull * serve requests until a magic request.
40 9df487d7 2003-11-23 devnull * later requests have to come quickly.
41 9df487d7 2003-11-23 devnull * only works for http/1.1 or later.
42 9df487d7 2003-11-23 devnull */
43 9df487d7 2003-11-23 devnull alarm(timeout);
44 9df487d7 2003-11-23 devnull if(!hgethead(c, 0))
45 9df487d7 2003-11-23 devnull return 0;
46 9df487d7 2003-11-23 devnull alarm(0);
47 9df487d7 2003-11-23 devnull c->reqtime = time(nil);
48 9df487d7 2003-11-23 devnull c->req.meth = getword(c);
49 9df487d7 2003-11-23 devnull if(c->req.meth == nil){
50 9df487d7 2003-11-23 devnull hfail(c, HSyntax);
51 9df487d7 2003-11-23 devnull return -1;
52 9df487d7 2003-11-23 devnull }
53 9df487d7 2003-11-23 devnull uri = getword(c);
54 9df487d7 2003-11-23 devnull if(uri == nil || strlen(uri) == 0){
55 9df487d7 2003-11-23 devnull hfail(c, HSyntax);
56 9df487d7 2003-11-23 devnull return -1;
57 9df487d7 2003-11-23 devnull }
58 9df487d7 2003-11-23 devnull v = getword(c);
59 9df487d7 2003-11-23 devnull if(v == nil){
60 9df487d7 2003-11-23 devnull if(strcmp(c->req.meth, "GET") != 0){
61 9df487d7 2003-11-23 devnull hfail(c, HUnimp, c->req.meth);
62 9df487d7 2003-11-23 devnull return -1;
63 9df487d7 2003-11-23 devnull }
64 9df487d7 2003-11-23 devnull c->req.vermaj = 0;
65 9df487d7 2003-11-23 devnull c->req.vermin = 9;
66 9df487d7 2003-11-23 devnull }else{
67 9df487d7 2003-11-23 devnull vs = v;
68 9df487d7 2003-11-23 devnull if(strncmp(vs, "HTTP/", 5) != 0){
69 9df487d7 2003-11-23 devnull hfail(c, HUnkVers, vs);
70 9df487d7 2003-11-23 devnull return -1;
71 9df487d7 2003-11-23 devnull }
72 9df487d7 2003-11-23 devnull vs += 5;
73 9df487d7 2003-11-23 devnull c->req.vermaj = strtoul(vs, &vs, 10);
74 9df487d7 2003-11-23 devnull if(*vs != '.' || c->req.vermaj != 1){
75 9df487d7 2003-11-23 devnull hfail(c, HUnkVers, vs);
76 9df487d7 2003-11-23 devnull return -1;
77 9df487d7 2003-11-23 devnull }
78 9df487d7 2003-11-23 devnull vs++;
79 9df487d7 2003-11-23 devnull c->req.vermin = strtoul(vs, &vs, 10);
80 9df487d7 2003-11-23 devnull if(*vs != '\0'){
81 9df487d7 2003-11-23 devnull hfail(c, HUnkVers, vs);
82 9df487d7 2003-11-23 devnull return -1;
83 9df487d7 2003-11-23 devnull }
84 9df487d7 2003-11-23 devnull
85 9df487d7 2003-11-23 devnull extra = getword(c);
86 9df487d7 2003-11-23 devnull if(extra != nil){
87 9df487d7 2003-11-23 devnull hfail(c, HSyntax);
88 9df487d7 2003-11-23 devnull return -1;
89 9df487d7 2003-11-23 devnull }
90 9df487d7 2003-11-23 devnull }
91 9df487d7 2003-11-23 devnull
92 9df487d7 2003-11-23 devnull /*
93 9df487d7 2003-11-23 devnull * the fragment is not supposed to be sent
94 9df487d7 2003-11-23 devnull * strip it 'cause some clients send it
95 9df487d7 2003-11-23 devnull */
96 9df487d7 2003-11-23 devnull origuri = uri;
97 9df487d7 2003-11-23 devnull uri = strchr(origuri, '#');
98 9df487d7 2003-11-23 devnull if(uri != nil)
99 9df487d7 2003-11-23 devnull *uri = 0;
100 9df487d7 2003-11-23 devnull
101 9df487d7 2003-11-23 devnull /*
102 9df487d7 2003-11-23 devnull * http/1.1 requires the server to accept absolute
103 9df487d7 2003-11-23 devnull * or relative uri's. convert to relative with an absolute path
104 9df487d7 2003-11-23 devnull */
105 9df487d7 2003-11-23 devnull if(http11(c)){
106 9df487d7 2003-11-23 devnull ss = parseuri(c, origuri);
107 9df487d7 2003-11-23 devnull uri = ss.s1;
108 9df487d7 2003-11-23 devnull c->req.urihost = ss.s2;
109 9df487d7 2003-11-23 devnull if(uri == nil){
110 9df487d7 2003-11-23 devnull hfail(c, HBadReq, uri);
111 9df487d7 2003-11-23 devnull return -1;
112 9df487d7 2003-11-23 devnull }
113 9df487d7 2003-11-23 devnull origuri = uri;
114 9df487d7 2003-11-23 devnull }
115 9df487d7 2003-11-23 devnull
116 9df487d7 2003-11-23 devnull /*
117 9df487d7 2003-11-23 devnull * munge uri for search, protection, and magic
118 9df487d7 2003-11-23 devnull */
119 9df487d7 2003-11-23 devnull ss = stripsearch(origuri);
120 9df487d7 2003-11-23 devnull origuri = ss.s1;
121 9df487d7 2003-11-23 devnull search = ss.s2;
122 9df487d7 2003-11-23 devnull uri = hurlunesc(c, origuri);
123 9df487d7 2003-11-23 devnull uri = abspath(c, uri, "/");
124 9df487d7 2003-11-23 devnull if(uri == nil || uri[0] == '\0'){
125 9df487d7 2003-11-23 devnull hfail(c, HNotFound, "no object specified");
126 9df487d7 2003-11-23 devnull return -1;
127 9df487d7 2003-11-23 devnull }
128 9df487d7 2003-11-23 devnull
129 9df487d7 2003-11-23 devnull c->req.uri = uri;
130 9df487d7 2003-11-23 devnull c->req.search = search;
131 9df487d7 2003-11-23 devnull
132 9df487d7 2003-11-23 devnull return 1;
133 9df487d7 2003-11-23 devnull }
134 9df487d7 2003-11-23 devnull
135 9df487d7 2003-11-23 devnull static Strings
136 9df487d7 2003-11-23 devnull parseuri(HConnect *c, char *uri)
137 9df487d7 2003-11-23 devnull {
138 9df487d7 2003-11-23 devnull Strings ss;
139 9df487d7 2003-11-23 devnull char *urihost, *p;
140 9df487d7 2003-11-23 devnull
141 9df487d7 2003-11-23 devnull urihost = nil;
142 9df487d7 2003-11-23 devnull if(uri[0] != '/'){
143 9df487d7 2003-11-23 devnull if(cistrncmp(uri, "http://", 7) != 0){
144 9df487d7 2003-11-23 devnull ss.s1 = nil;
145 9df487d7 2003-11-23 devnull ss.s2 = nil;
146 9df487d7 2003-11-23 devnull return ss;
147 9df487d7 2003-11-23 devnull }
148 9df487d7 2003-11-23 devnull uri += 5; /* skip http: */
149 9df487d7 2003-11-23 devnull }
150 9df487d7 2003-11-23 devnull
151 9df487d7 2003-11-23 devnull /*
152 9df487d7 2003-11-23 devnull * anything starting with // is a host name or number
153 9df487d7 2003-11-23 devnull * hostnames constists of letters, digits, - and .
154 9df487d7 2003-11-23 devnull * for now, just ignore any port given
155 9df487d7 2003-11-23 devnull */
156 9df487d7 2003-11-23 devnull if(uri[0] == '/' && uri[1] == '/'){
157 9df487d7 2003-11-23 devnull urihost = uri + 2;
158 9df487d7 2003-11-23 devnull p = strchr(urihost, '/');
159 9df487d7 2003-11-23 devnull if(p == nil)
160 9df487d7 2003-11-23 devnull uri = hstrdup(c, "/");
161 9df487d7 2003-11-23 devnull else{
162 9df487d7 2003-11-23 devnull uri = hstrdup(c, p);
163 9df487d7 2003-11-23 devnull *p = '\0';
164 9df487d7 2003-11-23 devnull }
165 9df487d7 2003-11-23 devnull p = strchr(urihost, ':');
166 9df487d7 2003-11-23 devnull if(p != nil)
167 9df487d7 2003-11-23 devnull *p = '\0';
168 9df487d7 2003-11-23 devnull }
169 9df487d7 2003-11-23 devnull
170 9df487d7 2003-11-23 devnull if(uri[0] != '/' || uri[1] == '/'){
171 9df487d7 2003-11-23 devnull ss.s1 = nil;
172 9df487d7 2003-11-23 devnull ss.s2 = nil;
173 9df487d7 2003-11-23 devnull return ss;
174 9df487d7 2003-11-23 devnull }
175 9df487d7 2003-11-23 devnull
176 9df487d7 2003-11-23 devnull ss.s1 = uri;
177 9df487d7 2003-11-23 devnull ss.s2 = hlower(urihost);
178 9df487d7 2003-11-23 devnull return ss;
179 9df487d7 2003-11-23 devnull }
180 9df487d7 2003-11-23 devnull static Strings
181 9df487d7 2003-11-23 devnull stripsearch(char *uri)
182 9df487d7 2003-11-23 devnull {
183 9df487d7 2003-11-23 devnull Strings ss;
184 9df487d7 2003-11-23 devnull char *search;
185 9df487d7 2003-11-23 devnull
186 9df487d7 2003-11-23 devnull search = strchr(uri, '?');
187 9df487d7 2003-11-23 devnull if(search != nil)
188 9df487d7 2003-11-23 devnull *search++ = 0;
189 9df487d7 2003-11-23 devnull ss.s1 = uri;
190 9df487d7 2003-11-23 devnull ss.s2 = search;
191 9df487d7 2003-11-23 devnull return ss;
192 9df487d7 2003-11-23 devnull }
193 9df487d7 2003-11-23 devnull
194 9df487d7 2003-11-23 devnull /*
195 9df487d7 2003-11-23 devnull * to circumscribe the accessible files we have to eliminate ..'s
196 9df487d7 2003-11-23 devnull * and resolve all names from the root.
197 9df487d7 2003-11-23 devnull */
198 9df487d7 2003-11-23 devnull static char*
199 9df487d7 2003-11-23 devnull abspath(HConnect *cc, char *origpath, char *curdir)
200 9df487d7 2003-11-23 devnull {
201 9df487d7 2003-11-23 devnull char *p, *sp, *path, *work, *rpath;
202 9df487d7 2003-11-23 devnull int len, n, c;
203 9df487d7 2003-11-23 devnull
204 9df487d7 2003-11-23 devnull if(curdir == nil)
205 9df487d7 2003-11-23 devnull curdir = "/";
206 9df487d7 2003-11-23 devnull if(origpath == nil)
207 9df487d7 2003-11-23 devnull origpath = "";
208 9df487d7 2003-11-23 devnull work = hstrdup(cc, origpath);
209 9df487d7 2003-11-23 devnull path = work;
210 9df487d7 2003-11-23 devnull
211 9df487d7 2003-11-23 devnull /*
212 9df487d7 2003-11-23 devnull * remove any really special characters
213 9df487d7 2003-11-23 devnull */
214 9df487d7 2003-11-23 devnull for(sp = "`;| "; *sp; sp++){
215 9df487d7 2003-11-23 devnull p = strchr(path, *sp);
216 9df487d7 2003-11-23 devnull if(p)
217 9df487d7 2003-11-23 devnull *p = 0;
218 9df487d7 2003-11-23 devnull }
219 9df487d7 2003-11-23 devnull
220 9df487d7 2003-11-23 devnull len = strlen(curdir) + strlen(path) + 2 + UTFmax;
221 9df487d7 2003-11-23 devnull if(len < 10)
222 9df487d7 2003-11-23 devnull len = 10;
223 9df487d7 2003-11-23 devnull rpath = halloc(cc, len);
224 9df487d7 2003-11-23 devnull if(*path == '/')
225 9df487d7 2003-11-23 devnull rpath[0] = 0;
226 9df487d7 2003-11-23 devnull else
227 9df487d7 2003-11-23 devnull strcpy(rpath, curdir);
228 9df487d7 2003-11-23 devnull n = strlen(rpath);
229 9df487d7 2003-11-23 devnull
230 9df487d7 2003-11-23 devnull while(path){
231 9df487d7 2003-11-23 devnull p = strchr(path, '/');
232 9df487d7 2003-11-23 devnull if(p)
233 9df487d7 2003-11-23 devnull *p++ = 0;
234 9df487d7 2003-11-23 devnull if(strcmp(path, "..") == 0){
235 9df487d7 2003-11-23 devnull while(n > 1){
236 9df487d7 2003-11-23 devnull n--;
237 9df487d7 2003-11-23 devnull c = rpath[n];
238 9df487d7 2003-11-23 devnull rpath[n] = 0;
239 9df487d7 2003-11-23 devnull if(c == '/')
240 9df487d7 2003-11-23 devnull break;
241 9df487d7 2003-11-23 devnull }
242 9df487d7 2003-11-23 devnull }else if(strcmp(path, ".") == 0){
243 9df487d7 2003-11-23 devnull ;
244 9df487d7 2003-11-23 devnull }else if(n == 1)
245 9df487d7 2003-11-23 devnull n += snprint(rpath+n, len-n, "%s", path);
246 9df487d7 2003-11-23 devnull else
247 9df487d7 2003-11-23 devnull n += snprint(rpath+n, len-n, "/%s", path);
248 9df487d7 2003-11-23 devnull path = p;
249 9df487d7 2003-11-23 devnull }
250 9df487d7 2003-11-23 devnull
251 9df487d7 2003-11-23 devnull if(strncmp(rpath, "/bin/", 5) == 0)
252 9df487d7 2003-11-23 devnull strcpy(rpath, "/");
253 9df487d7 2003-11-23 devnull return rpath;
254 9df487d7 2003-11-23 devnull }
255 9df487d7 2003-11-23 devnull
256 9df487d7 2003-11-23 devnull static char*
257 9df487d7 2003-11-23 devnull getword(HConnect *c)
258 9df487d7 2003-11-23 devnull {
259 9df487d7 2003-11-23 devnull char *buf;
260 9df487d7 2003-11-23 devnull int ch, n;
261 9df487d7 2003-11-23 devnull
262 9df487d7 2003-11-23 devnull while((ch = getc(c)) == ' ' || ch == '\t' || ch == '\r')
263 9df487d7 2003-11-23 devnull ;
264 9df487d7 2003-11-23 devnull if(ch == '\n')
265 9df487d7 2003-11-23 devnull return nil;
266 9df487d7 2003-11-23 devnull n = 0;
267 9df487d7 2003-11-23 devnull buf = halloc(c, 1);
268 9df487d7 2003-11-23 devnull for(;;){
269 9df487d7 2003-11-23 devnull switch(ch){
270 9df487d7 2003-11-23 devnull case ' ':
271 9df487d7 2003-11-23 devnull case '\t':
272 9df487d7 2003-11-23 devnull case '\r':
273 9df487d7 2003-11-23 devnull case '\n':
274 9df487d7 2003-11-23 devnull buf[n] = '\0';
275 9df487d7 2003-11-23 devnull return hstrdup(c, buf);
276 9df487d7 2003-11-23 devnull }
277 9df487d7 2003-11-23 devnull
278 9df487d7 2003-11-23 devnull if(n < HMaxWord-1){
279 9df487d7 2003-11-23 devnull buf = bingrow(&c->bin, buf, n, n + 1, 0);
280 9df487d7 2003-11-23 devnull if(buf == nil)
281 9df487d7 2003-11-23 devnull return nil;
282 9df487d7 2003-11-23 devnull buf[n++] = ch;
283 9df487d7 2003-11-23 devnull }
284 9df487d7 2003-11-23 devnull ch = getc(c);
285 9df487d7 2003-11-23 devnull }
286 9df487d7 2003-11-23 devnull return nil;
287 9df487d7 2003-11-23 devnull }
288 9df487d7 2003-11-23 devnull
289 9df487d7 2003-11-23 devnull static int
290 9df487d7 2003-11-23 devnull getc(HConnect *c)
291 9df487d7 2003-11-23 devnull {
292 9df487d7 2003-11-23 devnull if(c->hpos < c->hstop)
293 9df487d7 2003-11-23 devnull return *c->hpos++;
294 9df487d7 2003-11-23 devnull return '\n';
295 9df487d7 2003-11-23 devnull }