2020-06-09 14:13:17 +01:00
|
|
|
use crate::{utils, Error};
|
2020-04-11 19:03:22 +01:00
|
|
|
use log::warn;
|
2020-04-03 16:27:08 +01:00
|
|
|
use rocket::{
|
2020-04-06 16:37:13 +01:00
|
|
|
data::{Data, FromData, FromDataFuture, Transform, TransformFuture, Transformed},
|
2020-04-03 16:27:08 +01:00
|
|
|
http::Status,
|
2020-04-04 19:50:01 +01:00
|
|
|
response::{self, Responder},
|
2020-04-03 16:27:08 +01:00
|
|
|
Outcome::*,
|
|
|
|
Request, State,
|
|
|
|
};
|
2020-06-05 17:19:26 +01:00
|
|
|
use ruma::{api::Endpoint, identifiers::UserId};
|
2020-04-25 10:47:32 +01:00
|
|
|
use std::{convert::TryInto, io::Cursor, ops::Deref};
|
2020-04-04 19:50:01 +01:00
|
|
|
use tokio::io::AsyncReadExt;
|
2020-02-15 21:42:21 +00:00
|
|
|
|
2020-05-18 16:53:34 +01:00
|
|
|
const MESSAGE_LIMIT: u64 = 20 * 1024 * 1024; // 20 MB
|
2020-02-15 21:42:21 +00:00
|
|
|
|
2020-03-28 22:08:59 +00:00
|
|
|
/// This struct converts rocket requests into ruma structs by converting them into http requests
|
|
|
|
/// first.
|
2020-04-23 13:27:50 +01:00
|
|
|
pub struct Ruma<T> {
|
2020-05-23 10:20:00 +01:00
|
|
|
pub body: T,
|
2020-03-29 20:05:20 +01:00
|
|
|
pub user_id: Option<UserId>,
|
2020-05-10 17:30:12 +01:00
|
|
|
pub device_id: Option<String>,
|
2020-05-23 10:20:00 +01:00
|
|
|
pub json_body: Option<Box<serde_json::value::RawValue>>, // This is None when body is not a valid string
|
2020-03-28 17:50:02 +00:00
|
|
|
}
|
2020-03-28 22:08:59 +00:00
|
|
|
|
2020-04-25 10:47:32 +01:00
|
|
|
impl<'a, T: Endpoint> FromData<'a> for Ruma<T> {
|
2020-03-29 20:05:20 +01:00
|
|
|
type Error = (); // TODO: Better error handling
|
2020-04-04 19:50:01 +01:00
|
|
|
type Owned = Data;
|
|
|
|
type Borrowed = Self::Owned;
|
2020-02-15 21:42:21 +00:00
|
|
|
|
2020-04-06 16:37:13 +01:00
|
|
|
fn transform<'r>(
|
2020-05-03 16:25:31 +01:00
|
|
|
_req: &'r Request<'_>,
|
2020-04-06 16:37:13 +01:00
|
|
|
data: Data,
|
|
|
|
) -> TransformFuture<'r, Self::Owned, Self::Error> {
|
2020-04-04 19:50:01 +01:00
|
|
|
Box::pin(async move { Transform::Owned(Success(data)) })
|
|
|
|
}
|
|
|
|
|
|
|
|
fn from_data(
|
2020-05-03 16:25:31 +01:00
|
|
|
request: &'a Request<'_>,
|
2020-04-04 19:50:01 +01:00
|
|
|
outcome: Transformed<'a, Self>,
|
|
|
|
) -> FromDataFuture<'a, Self, Self::Error> {
|
|
|
|
Box::pin(async move {
|
|
|
|
let data = rocket::try_outcome!(outcome.owned());
|
|
|
|
|
2020-05-10 17:30:12 +01:00
|
|
|
let (user_id, device_id) = if T::METADATA.requires_authentication {
|
2020-06-09 14:13:17 +01:00
|
|
|
let db = request.guard::<State<'_, crate::Database>>().await.expect("database was loaded");
|
2020-04-04 19:50:01 +01:00
|
|
|
|
|
|
|
// Get token from header or query value
|
|
|
|
let token = match request
|
|
|
|
.headers()
|
|
|
|
.get_one("Authorization")
|
2020-04-07 12:21:05 +01:00
|
|
|
.map(|s| s[7..].to_owned()) // Split off "Bearer "
|
2020-04-04 19:50:01 +01:00
|
|
|
.or_else(|| request.get_query_value("access_token").and_then(|r| r.ok()))
|
|
|
|
{
|
|
|
|
// TODO: M_MISSING_TOKEN
|
|
|
|
None => return Failure((Status::Unauthorized, ())),
|
|
|
|
Some(token) => token,
|
|
|
|
};
|
|
|
|
|
|
|
|
// Check if token is valid
|
2020-05-03 16:25:31 +01:00
|
|
|
match db.users.find_from_token(&token).unwrap() {
|
2020-04-04 19:50:01 +01:00
|
|
|
// TODO: M_UNKNOWN_TOKEN
|
|
|
|
None => return Failure((Status::Unauthorized, ())),
|
2020-05-10 17:30:12 +01:00
|
|
|
Some((user_id, device_id)) => (Some(user_id), Some(device_id)),
|
2020-04-04 19:50:01 +01:00
|
|
|
}
|
|
|
|
} else {
|
2020-05-10 17:30:12 +01:00
|
|
|
(None, None)
|
2020-03-29 20:05:20 +01:00
|
|
|
};
|
|
|
|
|
2020-04-04 19:50:01 +01:00
|
|
|
let mut http_request = http::Request::builder()
|
|
|
|
.uri(request.uri().to_string())
|
|
|
|
.method(&*request.method().to_string());
|
|
|
|
for header in request.headers().iter() {
|
|
|
|
http_request = http_request.header(header.name.as_str(), &*header.value);
|
2020-03-29 20:05:20 +01:00
|
|
|
}
|
2020-02-15 21:42:21 +00:00
|
|
|
|
2020-04-04 19:50:01 +01:00
|
|
|
let mut handle = data.open().take(MESSAGE_LIMIT);
|
|
|
|
let mut body = Vec::new();
|
|
|
|
handle.read_to_end(&mut body).await.unwrap();
|
|
|
|
|
|
|
|
let http_request = http_request.body(body.clone()).unwrap();
|
|
|
|
log::info!("{:?}", http_request);
|
|
|
|
|
2020-04-23 13:27:50 +01:00
|
|
|
match T::try_from(http_request) {
|
2020-04-04 19:50:01 +01:00
|
|
|
Ok(t) => Success(Ruma {
|
|
|
|
body: t,
|
|
|
|
user_id,
|
2020-05-10 17:30:12 +01:00
|
|
|
device_id,
|
2020-05-18 16:53:34 +01:00
|
|
|
// TODO: Can we avoid parsing it again? (We only need this for append_pdu)
|
2020-05-23 10:20:00 +01:00
|
|
|
json_body: utils::string_from_bytes(&body)
|
|
|
|
.ok()
|
|
|
|
.and_then(|s| serde_json::value::RawValue::from_string(s).ok()),
|
2020-04-04 19:50:01 +01:00
|
|
|
}),
|
|
|
|
Err(e) => {
|
2020-04-11 19:03:22 +01:00
|
|
|
warn!("{:?}", e);
|
2020-05-02 08:24:09 +01:00
|
|
|
Failure((Status::BadRequest, ()))
|
2020-04-04 19:50:01 +01:00
|
|
|
}
|
2020-02-18 21:07:57 +00:00
|
|
|
}
|
2020-04-04 19:50:01 +01:00
|
|
|
})
|
2020-02-15 21:42:21 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2020-04-23 13:27:50 +01:00
|
|
|
impl<T> Deref for Ruma<T> {
|
|
|
|
type Target = T;
|
2020-02-15 21:42:21 +00:00
|
|
|
|
|
|
|
fn deref(&self) -> &Self::Target {
|
2020-03-28 17:50:02 +00:00
|
|
|
&self.body
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2020-03-28 22:08:59 +00:00
|
|
|
/// This struct converts ruma responses into rocket http responses.
|
2020-06-09 14:13:17 +01:00
|
|
|
pub type ConduitResult<T> = std::result::Result<RumaResponse<T>, Error>;
|
2020-04-04 19:50:01 +01:00
|
|
|
|
2020-06-09 14:13:17 +01:00
|
|
|
pub struct RumaResponse<T: TryInto<http::Response<Vec<u8>>>>(pub T);
|
2020-02-18 21:07:57 +00:00
|
|
|
|
2020-06-09 14:13:17 +01:00
|
|
|
impl<T: TryInto<http::Response<Vec<u8>>>> From<T> for RumaResponse<T> {
|
|
|
|
fn from(t: T) -> Self {
|
|
|
|
Self(t)
|
2020-02-18 21:07:57 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2020-04-04 19:50:01 +01:00
|
|
|
#[rocket::async_trait]
|
2020-06-09 14:13:17 +01:00
|
|
|
impl<'r, T> Responder<'r> for RumaResponse<T>
|
2020-04-06 16:37:13 +01:00
|
|
|
where
|
2020-04-08 22:25:19 +01:00
|
|
|
T: Send + TryInto<http::Response<Vec<u8>>>,
|
2020-04-06 16:37:13 +01:00
|
|
|
T::Error: Send,
|
|
|
|
{
|
2020-04-04 19:50:01 +01:00
|
|
|
async fn respond_to(self, _: &'r Request<'_>) -> response::Result<'r> {
|
2020-06-09 14:13:17 +01:00
|
|
|
let http_response: Result<http::Response<_>, _> = self.0.try_into();
|
2020-02-18 21:07:57 +00:00
|
|
|
match http_response {
|
2020-02-15 21:42:21 +00:00
|
|
|
Ok(http_response) => {
|
|
|
|
let mut response = rocket::response::Response::build();
|
|
|
|
|
2020-04-07 12:21:05 +01:00
|
|
|
let status = http_response.status();
|
|
|
|
response.raw_status(status.into(), "");
|
|
|
|
|
2020-02-15 21:42:21 +00:00
|
|
|
for header in http_response.headers() {
|
|
|
|
response
|
|
|
|
.raw_header(header.0.to_string(), header.1.to_str().unwrap().to_owned());
|
|
|
|
}
|
2020-03-28 17:50:02 +00:00
|
|
|
|
2020-05-19 21:56:28 +01:00
|
|
|
response
|
|
|
|
.sized_body(Cursor::new(http_response.into_body()))
|
|
|
|
.await;
|
|
|
|
|
2020-03-28 17:50:02 +00:00
|
|
|
response.raw_header("Access-Control-Allow-Origin", "*");
|
|
|
|
response.raw_header(
|
|
|
|
"Access-Control-Allow-Methods",
|
|
|
|
"GET, POST, PUT, DELETE, OPTIONS",
|
|
|
|
);
|
|
|
|
response.raw_header(
|
|
|
|
"Access-Control-Allow-Headers",
|
|
|
|
"Origin, X-Requested-With, Content-Type, Accept, Authorization",
|
|
|
|
);
|
2020-02-15 21:42:21 +00:00
|
|
|
response.ok()
|
|
|
|
}
|
|
|
|
Err(_) => Err(Status::InternalServerError),
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|