633
|
1
|
|
2 /*
|
|
3 * Copyright (C) Igor Sysoev
|
|
4 */
|
|
5
|
|
6
|
|
7 #include <ngx_config.h>
|
|
8 #include <ngx_core.h>
|
|
9 #include <ngx_http.h>
|
|
10
|
|
11
|
|
12 #define NGX_HTTP_DAV_OFF 2
|
|
13
|
|
14 typedef struct {
|
|
15 ngx_uint_t methods;
|
637
|
16 ngx_flag_t create_full_put_path;
|
669
|
17 ngx_uint_t access;
|
633
|
18 } ngx_http_dav_loc_conf_t;
|
|
19
|
|
20
|
|
21 static ngx_int_t ngx_http_dav_handler(ngx_http_request_t *r);
|
|
22 static void ngx_http_dav_put_handler(ngx_http_request_t *r);
|
637
|
23 static ngx_int_t ngx_http_dav_error(ngx_http_request_t *, ngx_err_t err,
|
|
24 ngx_int_t not_found, char *failed, u_char *path);
|
|
25 static ngx_int_t ngx_http_dav_location(ngx_http_request_t *r, u_char *path);
|
669
|
26 static char *ngx_http_dav_access(ngx_conf_t *cf, ngx_command_t *cmd,
|
|
27 void *conf);
|
633
|
28 static void *ngx_http_dav_create_loc_conf(ngx_conf_t *cf);
|
|
29 static char *ngx_http_dav_merge_loc_conf(ngx_conf_t *cf,
|
|
30 void *parent, void *child);
|
681
|
31 static ngx_int_t ngx_http_dav_init(ngx_conf_t *cf);
|
633
|
32
|
|
33
|
|
34 static ngx_conf_bitmask_t ngx_http_dav_methods_mask[] = {
|
|
35 { ngx_string("off"), NGX_HTTP_DAV_OFF },
|
|
36 { ngx_string("put"), NGX_HTTP_PUT },
|
|
37 { ngx_string("delete"), NGX_HTTP_DELETE },
|
637
|
38 { ngx_string("mkcol"), NGX_HTTP_MKCOL },
|
633
|
39 { ngx_null_string, 0 }
|
|
40 };
|
|
41
|
|
42
|
|
43 static ngx_command_t ngx_http_dav_commands[] = {
|
|
44
|
|
45 { ngx_string("dav_methods"),
|
|
46 NGX_HTTP_MAIN_CONF|NGX_HTTP_SRV_CONF|NGX_HTTP_LOC_CONF|NGX_CONF_1MORE,
|
|
47 ngx_conf_set_bitmask_slot,
|
|
48 NGX_HTTP_LOC_CONF_OFFSET,
|
|
49 offsetof(ngx_http_dav_loc_conf_t, methods),
|
|
50 &ngx_http_dav_methods_mask },
|
|
51
|
637
|
52 { ngx_string("create_full_put_path"),
|
|
53 NGX_HTTP_MAIN_CONF|NGX_HTTP_SRV_CONF|NGX_HTTP_LOC_CONF|NGX_CONF_FLAG,
|
|
54 ngx_conf_set_flag_slot,
|
|
55 NGX_HTTP_LOC_CONF_OFFSET,
|
|
56 offsetof(ngx_http_dav_loc_conf_t, create_full_put_path),
|
|
57 NULL },
|
|
58
|
669
|
59 { ngx_string("dav_access"),
|
675
|
60 NGX_HTTP_MAIN_CONF|NGX_HTTP_SRV_CONF|NGX_HTTP_LOC_CONF|NGX_CONF_TAKE123,
|
669
|
61 ngx_http_dav_access,
|
|
62 NGX_HTTP_LOC_CONF_OFFSET,
|
|
63 0,
|
|
64 NULL },
|
|
65
|
633
|
66 ngx_null_command
|
|
67 };
|
|
68
|
|
69
|
667
|
70 static ngx_http_module_t ngx_http_dav_module_ctx = {
|
633
|
71 NULL, /* preconfiguration */
|
681
|
72 ngx_http_dav_init, /* postconfiguration */
|
633
|
73
|
|
74 NULL, /* create main configuration */
|
|
75 NULL, /* init main configuration */
|
|
76
|
|
77 NULL, /* create server configuration */
|
|
78 NULL, /* merge server configuration */
|
|
79
|
|
80 ngx_http_dav_create_loc_conf, /* create location configuration */
|
|
81 ngx_http_dav_merge_loc_conf /* merge location configuration */
|
|
82 };
|
|
83
|
|
84
|
|
85 ngx_module_t ngx_http_dav_module = {
|
|
86 NGX_MODULE_V1,
|
|
87 &ngx_http_dav_module_ctx, /* module context */
|
|
88 ngx_http_dav_commands, /* module directives */
|
|
89 NGX_HTTP_MODULE, /* module type */
|
|
90 NULL, /* init master */
|
681
|
91 NULL, /* init module */
|
633
|
92 NULL, /* init process */
|
|
93 NULL, /* init thread */
|
|
94 NULL, /* exit thread */
|
|
95 NULL, /* exit process */
|
|
96 NULL, /* exit master */
|
|
97 NGX_MODULE_V1_PADDING
|
|
98 };
|
|
99
|
|
100
|
|
101 static ngx_int_t
|
|
102 ngx_http_dav_handler(ngx_http_request_t *r)
|
|
103 {
|
637
|
104 char *failed;
|
773
|
105 size_t root;
|
633
|
106 ngx_int_t rc;
|
|
107 ngx_str_t path;
|
637
|
108 ngx_file_info_t fi;
|
633
|
109 ngx_http_dav_loc_conf_t *dlcf;
|
|
110
|
|
111 /* TODO: Win32 */
|
|
112 if (r->zero_in_uri) {
|
|
113 return NGX_DECLINED;
|
|
114 }
|
|
115
|
|
116 dlcf = ngx_http_get_module_loc_conf(r, ngx_http_dav_module);
|
|
117
|
|
118 if (!(r->method & dlcf->methods)) {
|
|
119 return NGX_DECLINED;
|
|
120 }
|
|
121
|
|
122 switch (r->method) {
|
|
123
|
|
124 case NGX_HTTP_PUT:
|
|
125
|
|
126 if (r->uri.data[r->uri.len - 1] == '/') {
|
|
127 return NGX_DECLINED;
|
|
128 }
|
|
129
|
|
130 r->request_body_in_file_only = 1;
|
|
131 r->request_body_in_persistent_file = 1;
|
|
132 r->request_body_delete_incomplete_file = 1;
|
|
133 r->request_body_file_group_access = 1;
|
637
|
134 r->request_body_file_log_level = 0;
|
633
|
135
|
|
136 rc = ngx_http_read_client_request_body(r, ngx_http_dav_put_handler);
|
|
137
|
|
138 if (rc >= NGX_HTTP_SPECIAL_RESPONSE) {
|
|
139 return rc;
|
|
140 }
|
|
141
|
|
142 return NGX_DONE;
|
|
143
|
|
144 case NGX_HTTP_DELETE:
|
|
145
|
637
|
146 if (r->headers_in.content_length_n > 0) {
|
|
147 return NGX_HTTP_UNSUPPORTED_MEDIA_TYPE;
|
|
148 }
|
|
149
|
|
150 rc = ngx_http_discard_body(r);
|
|
151
|
|
152 if (rc != NGX_OK && rc != NGX_AGAIN) {
|
|
153 return rc;
|
633
|
154 }
|
|
155
|
773
|
156 ngx_http_map_uri_to_path(r, &path, &root, 0);
|
633
|
157
|
|
158 ngx_log_debug1(NGX_LOG_DEBUG_HTTP, r->connection->log, 0,
|
|
159 "http delete filename: \"%s\"", path.data);
|
|
160
|
637
|
161 if (ngx_file_info(path.data, &fi) != -1) {
|
|
162
|
|
163 if (ngx_is_dir(&fi)) {
|
|
164
|
|
165 if (r->uri.data[r->uri.len - 1] != '/'
|
|
166 || r->headers_in.depth == NULL
|
|
167 || r->headers_in.depth->value.len != sizeof("infinity") - 1
|
|
168 || ngx_strcmp(r->headers_in.depth->value.data, "infinity")
|
|
169 != 0)
|
|
170 {
|
|
171 return NGX_HTTP_BAD_REQUEST;
|
|
172 }
|
|
173
|
|
174 if (ngx_delete_dir(path.data) != NGX_FILE_ERROR) {
|
|
175 return NGX_HTTP_NO_CONTENT;
|
|
176 }
|
|
177
|
|
178 failed = ngx_delete_dir_n;
|
|
179
|
|
180 } else {
|
633
|
181
|
637
|
182 if (r->uri.data[r->uri.len - 1] == '/') {
|
|
183 return NGX_HTTP_BAD_REQUEST;
|
|
184 }
|
|
185
|
|
186 if (r->headers_in.depth
|
|
187 && r->headers_in.depth->value.len == 1
|
|
188 && r->headers_in.depth->value.data[0] == '1')
|
|
189 {
|
|
190 return NGX_HTTP_BAD_REQUEST;
|
|
191 }
|
|
192
|
|
193 if (ngx_delete_file(path.data) != NGX_FILE_ERROR) {
|
|
194 return NGX_HTTP_NO_CONTENT;
|
|
195 }
|
|
196
|
|
197 failed = ngx_delete_file_n;
|
|
198 }
|
|
199
|
|
200 } else {
|
|
201 failed = ngx_file_info_n;
|
633
|
202 }
|
|
203
|
637
|
204 return ngx_http_dav_error(r, ngx_errno, NGX_HTTP_NOT_FOUND, failed,
|
|
205 path.data);
|
|
206
|
|
207 case NGX_HTTP_MKCOL:
|
|
208
|
|
209 if (r->uri.data[r->uri.len - 1] != '/') {
|
|
210 return NGX_DECLINED;
|
|
211 }
|
|
212
|
|
213 if (r->headers_in.content_length_n > 0) {
|
|
214 return NGX_HTTP_UNSUPPORTED_MEDIA_TYPE;
|
|
215 }
|
|
216
|
|
217 rc = ngx_http_discard_body(r);
|
|
218
|
|
219 if (rc != NGX_OK && rc != NGX_AGAIN) {
|
|
220 return rc;
|
|
221 }
|
|
222
|
773
|
223 ngx_http_map_uri_to_path(r, &path, &root, 0);
|
637
|
224
|
|
225 ngx_log_debug1(NGX_LOG_DEBUG_HTTP, r->connection->log, 0,
|
|
226 "http mkcol path: \"%s\"", path.data);
|
|
227
|
669
|
228 if (ngx_create_dir(path.data, dlcf->access) != NGX_FILE_ERROR) {
|
637
|
229 if (ngx_http_dav_location(r, path.data) != NGX_OK) {
|
|
230 return NGX_HTTP_INTERNAL_SERVER_ERROR;
|
|
231 }
|
|
232
|
|
233 return NGX_HTTP_CREATED;
|
|
234 }
|
|
235
|
|
236 return ngx_http_dav_error(r, ngx_errno, NGX_HTTP_CONFLICT,
|
|
237 ngx_create_dir_n, path.data);
|
633
|
238 }
|
|
239
|
|
240 return NGX_DECLINED;
|
|
241 }
|
|
242
|
|
243
|
|
244 static void
|
|
245 ngx_http_dav_put_handler(ngx_http_request_t *r)
|
|
246 {
|
669
|
247 char *failed;
|
|
248 u_char *name;
|
773
|
249 size_t root;
|
681
|
250 time_t date;
|
637
|
251 ngx_err_t err;
|
|
252 ngx_str_t *temp, path;
|
|
253 ngx_uint_t status;
|
|
254 ngx_file_info_t fi;
|
|
255 ngx_http_dav_loc_conf_t *dlcf;
|
633
|
256
|
773
|
257 ngx_http_map_uri_to_path(r, &path, &root, 0);
|
633
|
258
|
|
259 ngx_log_debug1(NGX_LOG_DEBUG_HTTP, r->connection->log, 0,
|
|
260 "http put filename: \"%s\"", path.data);
|
|
261
|
|
262 temp = &r->request_body->temp_file->file.name;
|
|
263
|
|
264 if (ngx_file_info(path.data, &fi) == -1) {
|
|
265 status = NGX_HTTP_CREATED;
|
|
266
|
|
267 } else {
|
|
268 status = NGX_HTTP_NO_CONTENT;
|
663
|
269
|
|
270 if (ngx_is_dir(&fi)) {
|
|
271 ngx_log_error(NGX_LOG_ERR, r->connection->log, NGX_EISDIR,
|
|
272 "\"%s\" could not be created", path.data);
|
633
|
273
|
663
|
274 if (ngx_delete_file(temp->data) == NGX_FILE_ERROR) {
|
|
275 ngx_log_error(NGX_LOG_CRIT, r->connection->log, ngx_errno,
|
|
276 ngx_delete_file_n " \"%s\" failed",
|
|
277 temp->data);
|
|
278 }
|
|
279
|
|
280 ngx_http_finalize_request(r, NGX_HTTP_CONFLICT);
|
|
281 return;
|
661
|
282 }
|
637
|
283 }
|
|
284
|
669
|
285 dlcf = ngx_http_get_module_loc_conf(r, ngx_http_dav_module);
|
|
286
|
|
287 #if !(NGX_WIN32)
|
|
288
|
|
289 if (ngx_change_file_access(temp->data, dlcf->access & ~0111)
|
|
290 == NGX_FILE_ERROR)
|
|
291 {
|
|
292 err = ngx_errno;
|
|
293 failed = ngx_change_file_access_n;
|
|
294 name = temp->data;
|
|
295
|
|
296 goto failed;
|
|
297 }
|
|
298
|
|
299 #endif
|
|
300
|
681
|
301 if (r->headers_in.date) {
|
|
302 date = ngx_http_parse_time(r->headers_in.date->value.data,
|
|
303 r->headers_in.date->value.len);
|
|
304
|
|
305 if (date != NGX_ERROR) {
|
|
306 if (ngx_set_file_time(temp->data,
|
|
307 r->request_body->temp_file->file.fd, date)
|
|
308 != NGX_OK)
|
|
309 {
|
|
310 err = ngx_errno;
|
|
311 failed = ngx_set_file_time_n;
|
|
312 name = temp->data;
|
|
313
|
|
314 goto failed;
|
|
315 }
|
|
316 }
|
|
317 }
|
|
318
|
669
|
319 failed = ngx_rename_file_n;
|
|
320 name = path.data;
|
|
321
|
633
|
322 if (ngx_rename_file(temp->data, path.data) != NGX_FILE_ERROR) {
|
|
323 goto ok;
|
|
324 }
|
|
325
|
|
326 err = ngx_errno;
|
|
327
|
637
|
328 if (err == NGX_ENOENT) {
|
|
329
|
|
330 if (dlcf->create_full_put_path) {
|
669
|
331 err = ngx_create_full_path(path.data, dlcf->access);
|
637
|
332
|
|
333 if (err == 0) {
|
|
334 if (ngx_rename_file(temp->data, path.data) != NGX_FILE_ERROR) {
|
|
335 goto ok;
|
|
336 }
|
|
337
|
|
338 err = ngx_errno;
|
|
339 }
|
|
340 }
|
|
341 }
|
|
342
|
633
|
343 #if (NGX_WIN32)
|
|
344
|
|
345 if (err == NGX_EEXIST) {
|
|
346 if (ngx_win32_rename_file(temp, &path, r->pool) != NGX_ERROR) {
|
|
347
|
|
348 if (ngx_rename_file(temp->data, path.data) != NGX_FILE_ERROR) {
|
|
349 goto ok;
|
|
350 }
|
|
351 }
|
|
352
|
|
353 err = ngx_errno;
|
|
354 }
|
|
355
|
681
|
356 #endif
|
669
|
357
|
|
358 failed:
|
|
359
|
661
|
360 if (ngx_delete_file(temp->data) == NGX_FILE_ERROR) {
|
|
361 ngx_log_error(NGX_LOG_CRIT, r->connection->log, ngx_errno,
|
|
362 ngx_delete_file_n " \"%s\" failed",
|
|
363 temp->data);
|
|
364 }
|
|
365
|
669
|
366 ngx_http_finalize_request(r,
|
|
367 ngx_http_dav_error(r, err, NGX_HTTP_CONFLICT, failed, name));
|
|
368
|
633
|
369 return;
|
|
370
|
|
371 ok:
|
|
372
|
|
373 if (status == NGX_HTTP_CREATED) {
|
637
|
374 if (ngx_http_dav_location(r, path.data) != NGX_OK) {
|
633
|
375 ngx_http_finalize_request(r, NGX_HTTP_INTERNAL_SERVER_ERROR);
|
|
376 return;
|
|
377 }
|
639
|
378
|
|
379 r->headers_out.content_length_n = 0;
|
633
|
380 }
|
|
381
|
|
382 r->headers_out.status = status;
|
|
383 r->header_only = 1;
|
|
384
|
|
385 ngx_http_finalize_request(r, ngx_http_send_header(r));
|
|
386 return;
|
|
387 }
|
|
388
|
|
389
|
637
|
390 static ngx_int_t
|
|
391 ngx_http_dav_error(ngx_http_request_t *r, ngx_err_t err, ngx_int_t not_found,
|
|
392 char *failed, u_char *path)
|
|
393 {
|
|
394 ngx_int_t rc;
|
|
395 ngx_uint_t level;
|
|
396
|
|
397 if (err == NGX_ENOENT || err == NGX_ENOTDIR || err == NGX_ENAMETOOLONG) {
|
|
398 level = NGX_LOG_ERR;
|
|
399 rc = not_found;
|
|
400
|
|
401 } else if (err == NGX_EACCES || err == NGX_EPERM) {
|
|
402 level = NGX_LOG_ERR;
|
|
403 rc = NGX_HTTP_FORBIDDEN;
|
|
404
|
|
405 } else if (err == NGX_EEXIST) {
|
|
406 level = NGX_LOG_ERR;
|
|
407 rc = NGX_HTTP_NOT_ALLOWED;
|
|
408
|
|
409 } else if (err == NGX_ENOSPC) {
|
|
410 level = NGX_LOG_CRIT;
|
|
411 rc = NGX_HTTP_INSUFFICIENT_STORAGE;
|
|
412
|
|
413 } else {
|
|
414 level = NGX_LOG_CRIT;
|
|
415 rc = NGX_HTTP_INTERNAL_SERVER_ERROR;
|
|
416 }
|
|
417
|
|
418 ngx_log_error(level, r->connection->log, err,
|
|
419 "%s \"%s\" failed", failed, path);
|
|
420
|
|
421 return rc;
|
|
422 }
|
|
423
|
|
424
|
|
425 static ngx_int_t
|
|
426 ngx_http_dav_location(ngx_http_request_t *r, u_char *path)
|
|
427 {
|
|
428 u_char *location;
|
|
429 ngx_http_core_loc_conf_t *clcf;
|
|
430
|
|
431 r->headers_out.location = ngx_palloc(r->pool, sizeof(ngx_table_elt_t));
|
|
432 if (r->headers_out.location == NULL) {
|
|
433 return NGX_ERROR;
|
|
434 }
|
|
435
|
|
436 clcf = ngx_http_get_module_loc_conf(r, ngx_http_core_module);
|
|
437
|
|
438 if (!clcf->alias && clcf->root_lengths == NULL) {
|
|
439 location = path + clcf->root.len;
|
|
440
|
|
441 } else {
|
|
442 location = ngx_palloc(r->pool, r->uri.len);
|
|
443 if (location == NULL) {
|
|
444 return NGX_ERROR;
|
|
445 }
|
|
446
|
|
447 ngx_memcpy(location, r->uri.data, r->uri.len);
|
|
448 }
|
|
449
|
|
450 /*
|
|
451 * we do not need to set the r->headers_out.location->hash and
|
|
452 * r->headers_out.location->key fields
|
|
453 */
|
|
454
|
|
455 r->headers_out.location->value.len = r->uri.len;
|
|
456 r->headers_out.location->value.data = location;
|
|
457
|
|
458 return NGX_OK;
|
|
459 }
|
|
460
|
|
461
|
669
|
462 static char *
|
|
463 ngx_http_dav_access(ngx_conf_t *cf, ngx_command_t *cmd, void *conf)
|
|
464 {
|
|
465 ngx_http_dav_loc_conf_t *lcf = conf;
|
|
466
|
|
467 u_char *p;
|
|
468 ngx_str_t *value;
|
|
469 ngx_uint_t i, right, shift;
|
|
470
|
|
471 if (lcf->access != NGX_CONF_UNSET_UINT) {
|
|
472 return "is duplicate";
|
|
473 }
|
|
474
|
|
475 value = cf->args->elts;
|
|
476
|
|
477 lcf->access = 0700;
|
|
478
|
|
479 for (i = 1; i < 3; i++) {
|
|
480
|
|
481 p = value[i].data;
|
|
482
|
|
483 if (ngx_strncmp(p, "user:", sizeof("user:") - 1) == 0) {
|
|
484 shift = 6;
|
|
485 p += sizeof("user:") - 1;
|
|
486
|
|
487 } else if (ngx_strncmp(p, "group:", sizeof("group:") - 1) == 0) {
|
|
488 shift = 3;
|
|
489 p += sizeof("group:") - 1;
|
|
490
|
|
491 } else if (ngx_strncmp(p, "all:", sizeof("all:") - 1) == 0) {
|
|
492 shift = 0;
|
|
493 p += sizeof("all:") - 1;
|
|
494
|
|
495 } else {
|
|
496 goto invalid;
|
|
497 }
|
|
498
|
|
499 if (ngx_strcmp(p, "rw") == 0) {
|
|
500 right = 7;
|
|
501
|
|
502 } else if (ngx_strcmp(p, "r") == 0) {
|
|
503 right = 5;
|
|
504
|
|
505 } else {
|
|
506 goto invalid;
|
|
507 }
|
|
508
|
|
509 lcf->access += right << shift;
|
|
510 }
|
|
511
|
|
512 return NGX_CONF_OK;
|
|
513
|
|
514 invalid:
|
|
515
|
|
516 ngx_conf_log_error(NGX_LOG_EMERG, cf, 0,
|
|
517 "invalid value \"%V\"", &value[i]);
|
|
518 return NGX_CONF_ERROR;
|
|
519 }
|
|
520
|
|
521
|
633
|
522 static void *
|
|
523 ngx_http_dav_create_loc_conf(ngx_conf_t *cf)
|
|
524 {
|
|
525 ngx_http_dav_loc_conf_t *conf;
|
|
526
|
|
527 conf = ngx_pcalloc(cf->pool, sizeof(ngx_http_dav_loc_conf_t));
|
|
528 if (conf == NULL) {
|
|
529 return NGX_CONF_ERROR;
|
|
530 }
|
|
531
|
|
532 /*
|
|
533 * set by ngx_pcalloc():
|
|
534 *
|
|
535 * conf->methods = 0;
|
|
536 */
|
|
537
|
637
|
538 conf->create_full_put_path = NGX_CONF_UNSET;
|
669
|
539 conf->access = NGX_CONF_UNSET_UINT;
|
637
|
540
|
633
|
541 return conf;
|
|
542 }
|
|
543
|
|
544
|
|
545 static char *
|
|
546 ngx_http_dav_merge_loc_conf(ngx_conf_t *cf, void *parent, void *child)
|
|
547 {
|
|
548 ngx_http_dav_loc_conf_t *prev = parent;
|
|
549 ngx_http_dav_loc_conf_t *conf = child;
|
|
550
|
|
551 ngx_conf_merge_bitmask_value(conf->methods, prev->methods,
|
637
|
552 (NGX_CONF_BITMASK_SET|NGX_HTTP_DAV_OFF));
|
|
553
|
|
554 ngx_conf_merge_value(conf->create_full_put_path, prev->create_full_put_path,
|
|
555 0);
|
633
|
556
|
669
|
557 ngx_conf_merge_uint_value(conf->access, prev->access, 0600);
|
|
558
|
633
|
559 return NGX_CONF_OK;
|
|
560 }
|
|
561
|
|
562
|
|
563 static ngx_int_t
|
681
|
564 ngx_http_dav_init(ngx_conf_t *cf)
|
633
|
565 {
|
|
566 ngx_http_handler_pt *h;
|
|
567 ngx_http_core_main_conf_t *cmcf;
|
|
568
|
681
|
569 cmcf = ngx_http_conf_get_module_main_conf(cf, ngx_http_core_module);
|
633
|
570
|
|
571 h = ngx_array_push(&cmcf->phases[NGX_HTTP_CONTENT_PHASE].handlers);
|
|
572 if (h == NULL) {
|
|
573 return NGX_ERROR;
|
|
574 }
|
|
575
|
|
576 *h = ngx_http_dav_handler;
|
|
577
|
|
578 return NGX_OK;
|
|
579 }
|