Blame


1 9df487d7 2003-11-23 devnull #include <u.h>
2 9df487d7 2003-11-23 devnull #include <libc.h>
3 9df487d7 2003-11-23 devnull #include <bin.h>
4 9df487d7 2003-11-23 devnull #include <httpd.h>
5 9df487d7 2003-11-23 devnull
6 9df487d7 2003-11-23 devnull typedef struct Strings Strings;
7 9df487d7 2003-11-23 devnull
8 9df487d7 2003-11-23 devnull struct Strings
9 9df487d7 2003-11-23 devnull {
10 9df487d7 2003-11-23 devnull char *s1;
11 9df487d7 2003-11-23 devnull char *s2;
12 9df487d7 2003-11-23 devnull };
13 9df487d7 2003-11-23 devnull
14 9df487d7 2003-11-23 devnull static char* abspath(HConnect *cc, char *origpath, char *curdir);
15 9df487d7 2003-11-23 devnull static int getc(HConnect*);
16 9df487d7 2003-11-23 devnull static char* getword(HConnect*);
17 9df487d7 2003-11-23 devnull static Strings parseuri(HConnect *c, char*);
18 9df487d7 2003-11-23 devnull static Strings stripmagic(char*);
19 9df487d7 2003-11-23 devnull static Strings stripsearch(char*);
20 9df487d7 2003-11-23 devnull
21 9df487d7 2003-11-23 devnull /*
22 9df487d7 2003-11-23 devnull * parse the next request line
23 9df487d7 2003-11-23 devnull * returns:
24 9df487d7 2003-11-23 devnull * 1 ok
25 9df487d7 2003-11-23 devnull * 0 eof
26 9df487d7 2003-11-23 devnull * -1 error
27 9df487d7 2003-11-23 devnull */
28 9df487d7 2003-11-23 devnull int
29 9df487d7 2003-11-23 devnull hparsereq(HConnect *c, int timeout)
30 9df487d7 2003-11-23 devnull {
31 9df487d7 2003-11-23 devnull Strings ss;
32 9df487d7 2003-11-23 devnull char *vs, *v, *search, *uri, *origuri, *extra;
33 9df487d7 2003-11-23 devnull
34 9df487d7 2003-11-23 devnull if(c->bin != nil){
35 9df487d7 2003-11-23 devnull hfail(c, HInternal);
36 9df487d7 2003-11-23 devnull return -1;
37 9df487d7 2003-11-23 devnull }
38 9df487d7 2003-11-23 devnull
39 9df487d7 2003-11-23 devnull /*
40 9df487d7 2003-11-23 devnull * serve requests until a magic request.
41 9df487d7 2003-11-23 devnull * later requests have to come quickly.
42 9df487d7 2003-11-23 devnull * only works for http/1.1 or later.
43 9df487d7 2003-11-23 devnull */
44 9df487d7 2003-11-23 devnull alarm(timeout);
45 9df487d7 2003-11-23 devnull if(!hgethead(c, 0))
46 9df487d7 2003-11-23 devnull return 0;
47 9df487d7 2003-11-23 devnull alarm(0);
48 9df487d7 2003-11-23 devnull c->reqtime = time(nil);
49 9df487d7 2003-11-23 devnull c->req.meth = getword(c);
50 9df487d7 2003-11-23 devnull if(c->req.meth == nil){
51 9df487d7 2003-11-23 devnull hfail(c, HSyntax);
52 9df487d7 2003-11-23 devnull return -1;
53 9df487d7 2003-11-23 devnull }
54 9df487d7 2003-11-23 devnull uri = getword(c);
55 9df487d7 2003-11-23 devnull if(uri == nil || strlen(uri) == 0){
56 9df487d7 2003-11-23 devnull hfail(c, HSyntax);
57 9df487d7 2003-11-23 devnull return -1;
58 9df487d7 2003-11-23 devnull }
59 9df487d7 2003-11-23 devnull v = getword(c);
60 9df487d7 2003-11-23 devnull if(v == nil){
61 9df487d7 2003-11-23 devnull if(strcmp(c->req.meth, "GET") != 0){
62 9df487d7 2003-11-23 devnull hfail(c, HUnimp, c->req.meth);
63 9df487d7 2003-11-23 devnull return -1;
64 9df487d7 2003-11-23 devnull }
65 9df487d7 2003-11-23 devnull c->req.vermaj = 0;
66 9df487d7 2003-11-23 devnull c->req.vermin = 9;
67 9df487d7 2003-11-23 devnull }else{
68 9df487d7 2003-11-23 devnull vs = v;
69 9df487d7 2003-11-23 devnull if(strncmp(vs, "HTTP/", 5) != 0){
70 9df487d7 2003-11-23 devnull hfail(c, HUnkVers, vs);
71 9df487d7 2003-11-23 devnull return -1;
72 9df487d7 2003-11-23 devnull }
73 9df487d7 2003-11-23 devnull vs += 5;
74 9df487d7 2003-11-23 devnull c->req.vermaj = strtoul(vs, &vs, 10);
75 9df487d7 2003-11-23 devnull if(*vs != '.' || c->req.vermaj != 1){
76 9df487d7 2003-11-23 devnull hfail(c, HUnkVers, vs);
77 9df487d7 2003-11-23 devnull return -1;
78 9df487d7 2003-11-23 devnull }
79 9df487d7 2003-11-23 devnull vs++;
80 9df487d7 2003-11-23 devnull c->req.vermin = strtoul(vs, &vs, 10);
81 9df487d7 2003-11-23 devnull if(*vs != '\0'){
82 9df487d7 2003-11-23 devnull hfail(c, HUnkVers, vs);
83 9df487d7 2003-11-23 devnull return -1;
84 9df487d7 2003-11-23 devnull }
85 9df487d7 2003-11-23 devnull
86 9df487d7 2003-11-23 devnull extra = getword(c);
87 9df487d7 2003-11-23 devnull if(extra != nil){
88 9df487d7 2003-11-23 devnull hfail(c, HSyntax);
89 9df487d7 2003-11-23 devnull return -1;
90 9df487d7 2003-11-23 devnull }
91 9df487d7 2003-11-23 devnull }
92 9df487d7 2003-11-23 devnull
93 9df487d7 2003-11-23 devnull /*
94 9df487d7 2003-11-23 devnull * the fragment is not supposed to be sent
95 9df487d7 2003-11-23 devnull * strip it 'cause some clients send it
96 9df487d7 2003-11-23 devnull */
97 9df487d7 2003-11-23 devnull origuri = uri;
98 9df487d7 2003-11-23 devnull uri = strchr(origuri, '#');
99 9df487d7 2003-11-23 devnull if(uri != nil)
100 9df487d7 2003-11-23 devnull *uri = 0;
101 9df487d7 2003-11-23 devnull
102 9df487d7 2003-11-23 devnull /*
103 9df487d7 2003-11-23 devnull * http/1.1 requires the server to accept absolute
104 9df487d7 2003-11-23 devnull * or relative uri's. convert to relative with an absolute path
105 9df487d7 2003-11-23 devnull */
106 9df487d7 2003-11-23 devnull if(http11(c)){
107 9df487d7 2003-11-23 devnull ss = parseuri(c, origuri);
108 9df487d7 2003-11-23 devnull uri = ss.s1;
109 9df487d7 2003-11-23 devnull c->req.urihost = ss.s2;
110 9df487d7 2003-11-23 devnull if(uri == nil){
111 9df487d7 2003-11-23 devnull hfail(c, HBadReq, uri);
112 9df487d7 2003-11-23 devnull return -1;
113 9df487d7 2003-11-23 devnull }
114 9df487d7 2003-11-23 devnull origuri = uri;
115 9df487d7 2003-11-23 devnull }
116 9df487d7 2003-11-23 devnull
117 9df487d7 2003-11-23 devnull /*
118 9df487d7 2003-11-23 devnull * munge uri for search, protection, and magic
119 9df487d7 2003-11-23 devnull */
120 9df487d7 2003-11-23 devnull ss = stripsearch(origuri);
121 9df487d7 2003-11-23 devnull origuri = ss.s1;
122 9df487d7 2003-11-23 devnull search = ss.s2;
123 9df487d7 2003-11-23 devnull uri = hurlunesc(c, origuri);
124 9df487d7 2003-11-23 devnull uri = abspath(c, uri, "/");
125 9df487d7 2003-11-23 devnull if(uri == nil || uri[0] == '\0'){
126 9df487d7 2003-11-23 devnull hfail(c, HNotFound, "no object specified");
127 9df487d7 2003-11-23 devnull return -1;
128 9df487d7 2003-11-23 devnull }
129 9df487d7 2003-11-23 devnull
130 9df487d7 2003-11-23 devnull c->req.uri = uri;
131 9df487d7 2003-11-23 devnull c->req.search = search;
132 9df487d7 2003-11-23 devnull
133 9df487d7 2003-11-23 devnull return 1;
134 9df487d7 2003-11-23 devnull }
135 9df487d7 2003-11-23 devnull
136 9df487d7 2003-11-23 devnull static Strings
137 9df487d7 2003-11-23 devnull parseuri(HConnect *c, char *uri)
138 9df487d7 2003-11-23 devnull {
139 9df487d7 2003-11-23 devnull Strings ss;
140 9df487d7 2003-11-23 devnull char *urihost, *p;
141 9df487d7 2003-11-23 devnull
142 9df487d7 2003-11-23 devnull urihost = nil;
143 9df487d7 2003-11-23 devnull if(uri[0] != '/'){
144 9df487d7 2003-11-23 devnull if(cistrncmp(uri, "http://", 7) != 0){
145 9df487d7 2003-11-23 devnull ss.s1 = nil;
146 9df487d7 2003-11-23 devnull ss.s2 = nil;
147 9df487d7 2003-11-23 devnull return ss;
148 9df487d7 2003-11-23 devnull }
149 9df487d7 2003-11-23 devnull uri += 5; /* skip http: */
150 9df487d7 2003-11-23 devnull }
151 9df487d7 2003-11-23 devnull
152 9df487d7 2003-11-23 devnull /*
153 9df487d7 2003-11-23 devnull * anything starting with // is a host name or number
154 9df487d7 2003-11-23 devnull * hostnames constists of letters, digits, - and .
155 9df487d7 2003-11-23 devnull * for now, just ignore any port given
156 9df487d7 2003-11-23 devnull */
157 9df487d7 2003-11-23 devnull if(uri[0] == '/' && uri[1] == '/'){
158 9df487d7 2003-11-23 devnull urihost = uri + 2;
159 9df487d7 2003-11-23 devnull p = strchr(urihost, '/');
160 9df487d7 2003-11-23 devnull if(p == nil)
161 9df487d7 2003-11-23 devnull uri = hstrdup(c, "/");
162 9df487d7 2003-11-23 devnull else{
163 9df487d7 2003-11-23 devnull uri = hstrdup(c, p);
164 9df487d7 2003-11-23 devnull *p = '\0';
165 9df487d7 2003-11-23 devnull }
166 9df487d7 2003-11-23 devnull p = strchr(urihost, ':');
167 9df487d7 2003-11-23 devnull if(p != nil)
168 9df487d7 2003-11-23 devnull *p = '\0';
169 9df487d7 2003-11-23 devnull }
170 9df487d7 2003-11-23 devnull
171 9df487d7 2003-11-23 devnull if(uri[0] != '/' || uri[1] == '/'){
172 9df487d7 2003-11-23 devnull ss.s1 = nil;
173 9df487d7 2003-11-23 devnull ss.s2 = nil;
174 9df487d7 2003-11-23 devnull return ss;
175 9df487d7 2003-11-23 devnull }
176 9df487d7 2003-11-23 devnull
177 9df487d7 2003-11-23 devnull ss.s1 = uri;
178 9df487d7 2003-11-23 devnull ss.s2 = hlower(urihost);
179 9df487d7 2003-11-23 devnull return ss;
180 9df487d7 2003-11-23 devnull }
181 9df487d7 2003-11-23 devnull static Strings
182 9df487d7 2003-11-23 devnull stripsearch(char *uri)
183 9df487d7 2003-11-23 devnull {
184 9df487d7 2003-11-23 devnull Strings ss;
185 9df487d7 2003-11-23 devnull char *search;
186 9df487d7 2003-11-23 devnull
187 9df487d7 2003-11-23 devnull search = strchr(uri, '?');
188 9df487d7 2003-11-23 devnull if(search != nil)
189 9df487d7 2003-11-23 devnull *search++ = 0;
190 9df487d7 2003-11-23 devnull ss.s1 = uri;
191 9df487d7 2003-11-23 devnull ss.s2 = search;
192 9df487d7 2003-11-23 devnull return ss;
193 9df487d7 2003-11-23 devnull }
194 9df487d7 2003-11-23 devnull
195 9df487d7 2003-11-23 devnull /*
196 9df487d7 2003-11-23 devnull * to circumscribe the accessible files we have to eliminate ..'s
197 9df487d7 2003-11-23 devnull * and resolve all names from the root.
198 9df487d7 2003-11-23 devnull */
199 9df487d7 2003-11-23 devnull static char*
200 9df487d7 2003-11-23 devnull abspath(HConnect *cc, char *origpath, char *curdir)
201 9df487d7 2003-11-23 devnull {
202 9df487d7 2003-11-23 devnull char *p, *sp, *path, *work, *rpath;
203 9df487d7 2003-11-23 devnull int len, n, c;
204 9df487d7 2003-11-23 devnull
205 9df487d7 2003-11-23 devnull if(curdir == nil)
206 9df487d7 2003-11-23 devnull curdir = "/";
207 9df487d7 2003-11-23 devnull if(origpath == nil)
208 9df487d7 2003-11-23 devnull origpath = "";
209 9df487d7 2003-11-23 devnull work = hstrdup(cc, origpath);
210 9df487d7 2003-11-23 devnull path = work;
211 9df487d7 2003-11-23 devnull
212 9df487d7 2003-11-23 devnull /*
213 9df487d7 2003-11-23 devnull * remove any really special characters
214 9df487d7 2003-11-23 devnull */
215 9df487d7 2003-11-23 devnull for(sp = "`;| "; *sp; sp++){
216 9df487d7 2003-11-23 devnull p = strchr(path, *sp);
217 9df487d7 2003-11-23 devnull if(p)
218 9df487d7 2003-11-23 devnull *p = 0;
219 9df487d7 2003-11-23 devnull }
220 9df487d7 2003-11-23 devnull
221 9df487d7 2003-11-23 devnull len = strlen(curdir) + strlen(path) + 2 + UTFmax;
222 9df487d7 2003-11-23 devnull if(len < 10)
223 9df487d7 2003-11-23 devnull len = 10;
224 9df487d7 2003-11-23 devnull rpath = halloc(cc, len);
225 9df487d7 2003-11-23 devnull if(*path == '/')
226 9df487d7 2003-11-23 devnull rpath[0] = 0;
227 9df487d7 2003-11-23 devnull else
228 9df487d7 2003-11-23 devnull strcpy(rpath, curdir);
229 9df487d7 2003-11-23 devnull n = strlen(rpath);
230 9df487d7 2003-11-23 devnull
231 9df487d7 2003-11-23 devnull while(path){
232 9df487d7 2003-11-23 devnull p = strchr(path, '/');
233 9df487d7 2003-11-23 devnull if(p)
234 9df487d7 2003-11-23 devnull *p++ = 0;
235 9df487d7 2003-11-23 devnull if(strcmp(path, "..") == 0){
236 9df487d7 2003-11-23 devnull while(n > 1){
237 9df487d7 2003-11-23 devnull n--;
238 9df487d7 2003-11-23 devnull c = rpath[n];
239 9df487d7 2003-11-23 devnull rpath[n] = 0;
240 9df487d7 2003-11-23 devnull if(c == '/')
241 9df487d7 2003-11-23 devnull break;
242 9df487d7 2003-11-23 devnull }
243 9df487d7 2003-11-23 devnull }else if(strcmp(path, ".") == 0){
244 9df487d7 2003-11-23 devnull ;
245 9df487d7 2003-11-23 devnull }else if(n == 1)
246 9df487d7 2003-11-23 devnull n += snprint(rpath+n, len-n, "%s", path);
247 9df487d7 2003-11-23 devnull else
248 9df487d7 2003-11-23 devnull n += snprint(rpath+n, len-n, "/%s", path);
249 9df487d7 2003-11-23 devnull path = p;
250 9df487d7 2003-11-23 devnull }
251 9df487d7 2003-11-23 devnull
252 9df487d7 2003-11-23 devnull if(strncmp(rpath, "/bin/", 5) == 0)
253 9df487d7 2003-11-23 devnull strcpy(rpath, "/");
254 9df487d7 2003-11-23 devnull return rpath;
255 9df487d7 2003-11-23 devnull }
256 9df487d7 2003-11-23 devnull
257 9df487d7 2003-11-23 devnull static char*
258 9df487d7 2003-11-23 devnull getword(HConnect *c)
259 9df487d7 2003-11-23 devnull {
260 9df487d7 2003-11-23 devnull char *buf;
261 9df487d7 2003-11-23 devnull int ch, n;
262 9df487d7 2003-11-23 devnull
263 9df487d7 2003-11-23 devnull while((ch = getc(c)) == ' ' || ch == '\t' || ch == '\r')
264 9df487d7 2003-11-23 devnull ;
265 9df487d7 2003-11-23 devnull if(ch == '\n')
266 9df487d7 2003-11-23 devnull return nil;
267 9df487d7 2003-11-23 devnull n = 0;
268 9df487d7 2003-11-23 devnull buf = halloc(c, 1);
269 9df487d7 2003-11-23 devnull for(;;){
270 9df487d7 2003-11-23 devnull switch(ch){
271 9df487d7 2003-11-23 devnull case ' ':
272 9df487d7 2003-11-23 devnull case '\t':
273 9df487d7 2003-11-23 devnull case '\r':
274 9df487d7 2003-11-23 devnull case '\n':
275 9df487d7 2003-11-23 devnull buf[n] = '\0';
276 9df487d7 2003-11-23 devnull return hstrdup(c, buf);
277 9df487d7 2003-11-23 devnull }
278 9df487d7 2003-11-23 devnull
279 9df487d7 2003-11-23 devnull if(n < HMaxWord-1){
280 9df487d7 2003-11-23 devnull buf = bingrow(&c->bin, buf, n, n + 1, 0);
281 9df487d7 2003-11-23 devnull if(buf == nil)
282 9df487d7 2003-11-23 devnull return nil;
283 9df487d7 2003-11-23 devnull buf[n++] = ch;
284 9df487d7 2003-11-23 devnull }
285 9df487d7 2003-11-23 devnull ch = getc(c);
286 9df487d7 2003-11-23 devnull }
287 9df487d7 2003-11-23 devnull return nil;
288 9df487d7 2003-11-23 devnull }
289 9df487d7 2003-11-23 devnull
290 9df487d7 2003-11-23 devnull static int
291 9df487d7 2003-11-23 devnull getc(HConnect *c)
292 9df487d7 2003-11-23 devnull {
293 9df487d7 2003-11-23 devnull if(c->hpos < c->hstop)
294 9df487d7 2003-11-23 devnull return *c->hpos++;
295 9df487d7 2003-11-23 devnull return '\n';
296 9df487d7 2003-11-23 devnull }