1 |
use Coro; |
2 |
use Coro::Semaphore; |
3 |
use Coro::Event; |
4 |
use Coro::Socket; |
5 |
|
6 |
no utf8; |
7 |
use bytes; |
8 |
|
9 |
# at least on my machine, this thingy serves files |
10 |
# quite a bit faster than apache, ;) |
11 |
# and quite a bit slower than thttpd :( |
12 |
|
13 |
$SIG{PIPE} = 'IGNORE'; |
14 |
|
15 |
sub slog { |
16 |
my $level = shift; |
17 |
my $format = shift; |
18 |
printf "---: $format\n", @_; |
19 |
} |
20 |
|
21 |
my $connections = new Coro::Semaphore $MAX_CONNECTS; |
22 |
|
23 |
my @fh; |
24 |
my @pool; |
25 |
|
26 |
# one "execution thread" |
27 |
sub handler { |
28 |
while () { |
29 |
my $fh = pop @fh; |
30 |
if ($fh) { |
31 |
eval { |
32 |
conn->new($fh)->handle; |
33 |
}; |
34 |
close $fh; |
35 |
slog 1, "$@" if $@ && !ref $@; |
36 |
$connections->up; |
37 |
} else { |
38 |
last if @pool >= $MAX_POOL; |
39 |
push @pool, $Coro::current; |
40 |
schedule; |
41 |
} |
42 |
} |
43 |
} |
44 |
|
45 |
my $http_port = new Coro::Socket |
46 |
LocalAddr => $SERVER_HOST, |
47 |
LocalPort => $SERVER_PORT, |
48 |
ReuseAddr => 1, |
49 |
Listen => 1, |
50 |
or die "unable to start server"; |
51 |
|
52 |
push @listen_sockets, $http_port; |
53 |
|
54 |
# the "main thread" |
55 |
async { |
56 |
slog 1, "accepting connections"; |
57 |
while () { |
58 |
$connections->down; |
59 |
push @fh, $http_port->accept; |
60 |
#slog 3, "accepted @$connections ".scalar(@pool); |
61 |
$::NOW = time; |
62 |
if (@pool) { |
63 |
(pop @pool)->ready; |
64 |
} else { |
65 |
async \&handler; |
66 |
} |
67 |
|
68 |
} |
69 |
}; |
70 |
|
71 |
package conn; |
72 |
|
73 |
use Socket; |
74 |
use HTTP::Date; |
75 |
use Convert::Scalar 'weaken'; |
76 |
|
77 |
our %conn; # $conn{ip}{fh} => connobj |
78 |
our %blocked; |
79 |
|
80 |
sub new { |
81 |
my $class = shift; |
82 |
my $fh = shift; |
83 |
my $self = bless { fh => $fh }, $class; |
84 |
my (undef, $iaddr) = unpack_sockaddr_in $fh->getpeername |
85 |
or $self->err(500, "unable to get peername"); |
86 |
$self->{remote_addr} = inet_ntoa $iaddr; |
87 |
|
88 |
# enter ourselves into various lists |
89 |
weaken ($conn{$self->{remote_addr}}{$self*1} = $self); |
90 |
|
91 |
$self; |
92 |
} |
93 |
|
94 |
sub DESTROY { |
95 |
my $self = shift; |
96 |
delete $conn{$self->{remote_addr}}{$self*1}; |
97 |
delete $uri{$self->{uri}}{$self*1}; |
98 |
} |
99 |
|
100 |
sub slog { |
101 |
my $self = shift; |
102 |
main::slog($_[0], "$self->{remote_addr}> $_[1]"); |
103 |
} |
104 |
|
105 |
sub response { |
106 |
my ($self, $code, $msg, $hdr, $content) = @_; |
107 |
my $res = "HTTP/1.0 $code $msg\015\012"; |
108 |
|
109 |
$res .= "Connection: close\015\012"; |
110 |
$res .= "Date: ".(time2str $::NOW)."\015\012"; # slow? nah. :( |
111 |
|
112 |
while (my ($h, $v) = each %$hdr) { |
113 |
$res .= "$h: $v\015\012" |
114 |
} |
115 |
|
116 |
$res .= "\015\012$content" if defined $content; |
117 |
|
118 |
print STDERR "$self->{remote_addr} \"$self->{uri}\" $code ".$hdr->{"Content-Length"}." \"$self->{h}{referer}\"\n";#d# |
119 |
|
120 |
print {$self->{fh}} $res; |
121 |
} |
122 |
|
123 |
sub err { |
124 |
my $self = shift; |
125 |
my ($code, $msg, $hdr, $content) = @_; |
126 |
|
127 |
unless (defined $content) { |
128 |
$content = "$code $msg"; |
129 |
$hdr->{"Content-Type"} = "text/plain"; |
130 |
$hdr->{"Content-Length"} = length $content; |
131 |
} |
132 |
|
133 |
$self->response($code, $msg, $hdr, $content); |
134 |
|
135 |
die bless {}, err::; |
136 |
} |
137 |
|
138 |
sub err_blocked { |
139 |
my $self = shift; |
140 |
my $ip = $self->{remote_addr}; |
141 |
my $time = time2str $blocked{$ip} = $::NOW + $::BLOCKTIME; |
142 |
$self->err(403, "too many connections", |
143 |
{ |
144 |
"Content-Type" => "text/html", |
145 |
"Retry-After" => $::BLOCKTIME |
146 |
}, |
147 |
<<EOF); |
148 |
<html><p> |
149 |
You have been blocked because you opened too many connections. You |
150 |
may retry at</p> |
151 |
|
152 |
<p><blockquote>$time.</blockquote></p> |
153 |
|
154 |
<p>Until then, each new access will renew the block. You might want to have a |
155 |
look at the <a href="http://www.goof.com/pcg/marc/animefaq.html">FAQ</a>.</p> |
156 |
</html> |
157 |
EOF |
158 |
} |
159 |
|
160 |
sub handle { |
161 |
my $self = shift; |
162 |
my $fh = $self->{fh}; |
163 |
|
164 |
#while() { |
165 |
$self->{h} = {}; |
166 |
|
167 |
# read request and parse first line |
168 |
$fh->timeout($::REQ_TIMEOUT); |
169 |
my $req = $fh->readline("\015\012\015\012"); |
170 |
$fh->timeout($::RES_TIMEOUT); |
171 |
|
172 |
defined $req or |
173 |
$self->err(408, "request timeout"); |
174 |
|
175 |
my $ip = $self->{remote_addr}; |
176 |
|
177 |
if ($blocked{$ip}) { |
178 |
$self->err_blocked($blocked{$ip}) |
179 |
if $blocked{$ip} > $::NOW; |
180 |
|
181 |
delete $blocked{$ip}; |
182 |
} |
183 |
|
184 |
if (%{$conn{$ip}} > $::MAX_CONN_IP) { |
185 |
$self->slog("blocked ip $ip"); |
186 |
$self->err_blocked; |
187 |
} |
188 |
|
189 |
$req =~ /^(?:\015\012)? |
190 |
(GET|HEAD) \040+ |
191 |
([^\040]+) \040+ |
192 |
HTTP\/([0-9]+\.[0-9]+) |
193 |
\015\012/gx |
194 |
or $self->err(403, "method not allowed", { Allow => "GET,HEAD" }); |
195 |
|
196 |
$2 ne "1.0" |
197 |
or $self->err(506, "http protocol version not supported"); |
198 |
|
199 |
$self->{method} = $1; |
200 |
$self->{uri} = $2; |
201 |
|
202 |
# parse headers |
203 |
{ |
204 |
my (%hdr, $h, $v); |
205 |
|
206 |
$hdr{lc $1} .= ",$2" |
207 |
while $req =~ /\G |
208 |
([^:\000-\040]+): |
209 |
[\008\040]* |
210 |
((?: [^\015\012]+ | \015\012[\008\040] )*) |
211 |
\015\012 |
212 |
/gxc; |
213 |
|
214 |
$req =~ /\G\015\012$/ |
215 |
or $self->err(400, "bad request"); |
216 |
|
217 |
$self->{h}{$h} = substr $v, 1 |
218 |
while ($h, $v) = each %hdr; |
219 |
} |
220 |
|
221 |
$self->{server_port} = $self->{h}{host} =~ s/:([0-9]+)$// ? $1 : 80; |
222 |
|
223 |
weaken ($uri{$self->{uri}}{$self*1} = $self); |
224 |
|
225 |
$self->map_uri; |
226 |
$self->respond; |
227 |
#} |
228 |
} |
229 |
|
230 |
# uri => path mapping |
231 |
sub map_uri { |
232 |
my $self = shift; |
233 |
my $host = $self->{h}{host} || "default"; |
234 |
my $uri = $self->{uri}; |
235 |
|
236 |
# some massaging, also makes it more secure |
237 |
$uri =~ s/%([0-9a-fA-F][0-9a-fA-F])/chr hex $1/ge; |
238 |
$uri =~ s%//+%/%g; |
239 |
$uri =~ s%/\.(?=/|$)%%g; |
240 |
1 while $uri =~ s%/[^/]+/\.\.(?=/|$)%%; |
241 |
|
242 |
$uri =~ m%^/?\.\.(?=/|$)% |
243 |
and $self->err(400, "bad request"); |
244 |
|
245 |
$self->{name} = $uri; |
246 |
|
247 |
# now do the path mapping |
248 |
$self->{path} = "$::DOCROOT/$host$uri"; |
249 |
} |
250 |
|
251 |
sub server_address { |
252 |
my $self = shift; |
253 |
my ($port, $iaddr) = unpack_sockaddr_in $self->{fh}->getsockname |
254 |
or $self->err(500, "unable to get socket name"); |
255 |
((inet_ntoa $iaddr), $port); |
256 |
} |
257 |
|
258 |
sub server_host { |
259 |
my $self = shift; |
260 |
if (exists $self->{h}{host}) { |
261 |
return $self->{h}{host}; |
262 |
} else { |
263 |
return (($self->server_address)[0]); |
264 |
} |
265 |
} |
266 |
|
267 |
sub server_hostport { |
268 |
my $self = shift; |
269 |
my ($host, $port); |
270 |
if (exists $self->{h}{host}) { |
271 |
($host, $port) = ($self->{h}{host}, $self->{server_port}); |
272 |
} else { |
273 |
($host, $port) = $self->server_address; |
274 |
} |
275 |
$port = $port == 80 ? "" : ":$port"; |
276 |
$host.$port; |
277 |
} |
278 |
|
279 |
sub _cgi { |
280 |
my $self = shift; |
281 |
my $path = shift; |
282 |
my $fh; |
283 |
|
284 |
# no two-way xxx supported |
285 |
if (0 == fork) { |
286 |
open STDOUT, ">&".fileno($self->{fh}); |
287 |
if (chdir $::DOCROOT) { |
288 |
$ENV{SERVER_SOFTWARE} = "thttpd-myhttpd"; # we are thttpd-alike |
289 |
$ENV{HTTP_HOST} = $self->server_host; |
290 |
$ENV{HTTP_PORT} = $self->{server_host}; |
291 |
$ENV{SCRIPT_NAME} = $self->{name}; |
292 |
exec $::INDEXPROG; |
293 |
} |
294 |
Coro::State::_exit(0); |
295 |
} else { |
296 |
} |
297 |
} |
298 |
|
299 |
sub respond { |
300 |
my $self = shift; |
301 |
my $path = $self->{path}; |
302 |
|
303 |
stat $path |
304 |
or $self->err(404, "not found"); |
305 |
|
306 |
# idiotic netscape sends idiotic headers AGAIN |
307 |
my $ims = $self->{h}{"if-modified-since"} =~ /^([^;]+)/ |
308 |
? str2time $1 : 0; |
309 |
|
310 |
if (-d _ && -r _) { |
311 |
# directory |
312 |
if ($path !~ /\/$/) { |
313 |
# create a redirect to get the trailing "/" |
314 |
my $host = $self->server_hostport; |
315 |
$self->err(301, "moved permanently", { Location => "http://$host$self->{uri}/" }); |
316 |
} else { |
317 |
$ims < (stat _)[9] |
318 |
or $self->err(304, "not modified"); |
319 |
|
320 |
if ($self->{method} eq "GET") { |
321 |
if (-r "$path/index.html") { |
322 |
$self->{path} .= "/index.html"; |
323 |
$self->handle_file; |
324 |
} else { |
325 |
$self->handle_dir; |
326 |
} |
327 |
} |
328 |
} |
329 |
} elsif (-f _ && -r _) { |
330 |
-x _ and $self->err(403, "forbidden"); |
331 |
$self->handle_file; |
332 |
} else { |
333 |
$self->err(404, "not found"); |
334 |
} |
335 |
} |
336 |
|
337 |
sub handle_dir { |
338 |
my $self = shift; |
339 |
$self->_cgi($::INDEXPROG); |
340 |
} |
341 |
|
342 |
sub handle_file { |
343 |
my $self = shift; |
344 |
my $length = -s _; |
345 |
my $hdr = { |
346 |
"Last-Modified" => time2str ((stat _)[9]), |
347 |
}; |
348 |
|
349 |
my @code = (200, "ok"); |
350 |
my ($l, $h); |
351 |
|
352 |
if ($self->{h}{range} =~ /^bytes=(.*)$/) { |
353 |
for (split /,/, $1) { |
354 |
if (/^-(\d+)$/) { |
355 |
($l, $h) = ($length - $1, $length - 1); |
356 |
} elsif (/^(\d+)-(\d*)$/) { |
357 |
($l, $h) = ($1, ($2 ne "" || $2 >= $length) ? $2 : $length - 1); |
358 |
} else { |
359 |
($l, $h) = (0, $length - 1); |
360 |
goto ignore; |
361 |
} |
362 |
goto satisfiable if $l >= 0 && $l < $length && $h >= 0 && $h > $l; |
363 |
} |
364 |
$hdr->{"Content-Range"} = "bytes */$length"; |
365 |
$self->err(416, "not satisfiable", $hdr); |
366 |
|
367 |
satisfiable: |
368 |
# check for segmented downloads |
369 |
if ($l && $NO_SEGMENTED) { |
370 |
if (%{$uri{$self->{uri}}} > 1) { |
371 |
$self->slog("segmented download refused\n"); |
372 |
$self->err(400, "segmented downloads are not allowed"); |
373 |
} |
374 |
} |
375 |
|
376 |
$hdr->{"Content-Range"} = "bytes $l-$h/$length"; |
377 |
@code = (206, "partial content"); |
378 |
$length = $h - $l + 1; |
379 |
|
380 |
ignore: |
381 |
} else { |
382 |
($l, $h) = (0, $length - 1); |
383 |
} |
384 |
|
385 |
if ($self->{path} =~ /\.html$/) { |
386 |
$hdr->{"Content-Type"} = "text/html"; |
387 |
} else { |
388 |
$hdr->{"Content-Type"} = "application/octet-stream"; |
389 |
} |
390 |
|
391 |
$hdr->{"Content-Length"} = $length; |
392 |
|
393 |
$self->response(@code, $hdr, ""); |
394 |
|
395 |
if ($self->{method} eq "GET") { |
396 |
my ($fh, $buf); |
397 |
open $fh, "<", $self->{path} |
398 |
or die "$self->{path}: late open failure ($!)"; |
399 |
|
400 |
if ($l) { |
401 |
sysseek $fh, $l, 0 |
402 |
or die "$self->{path}: cannot seek to $l ($!)"; |
403 |
} |
404 |
|
405 |
$h -= $l - 1; |
406 |
|
407 |
while ($h > 0) { |
408 |
$h -= sysread $fh, $buf, $h > $::BUFSIZE ? $::BUFSIZE : $h; |
409 |
$self->{fh}->syswrite($buf) |
410 |
or last; |
411 |
} |
412 |
} |
413 |
|
414 |
close $fh; |
415 |
} |
416 |
|
417 |
1; |