HttpRequest.cpp 5.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205
  1. /*
  2. * Copyright (c) 2018-2020, Andreas Kling <kling@serenityos.org>
  3. * Copyright (c) 2022, the SerenityOS developers.
  4. *
  5. * SPDX-License-Identifier: BSD-2-Clause
  6. */
  7. #include <AK/Base64.h>
  8. #include <AK/StringBuilder.h>
  9. #include <LibHTTP/HttpRequest.h>
  10. #include <LibHTTP/Job.h>
  11. namespace HTTP {
  12. String HttpRequest::method_name() const
  13. {
  14. switch (m_method) {
  15. case Method::GET:
  16. return "GET";
  17. case Method::HEAD:
  18. return "HEAD";
  19. case Method::POST:
  20. return "POST";
  21. default:
  22. VERIFY_NOT_REACHED();
  23. }
  24. }
  25. ByteBuffer HttpRequest::to_raw_request() const
  26. {
  27. StringBuilder builder;
  28. builder.append(method_name());
  29. builder.append(' ');
  30. // NOTE: The percent_encode is so that e.g. spaces are properly encoded.
  31. auto path = m_url.path();
  32. VERIFY(!path.is_empty());
  33. builder.append(URL::percent_encode(m_url.path(), URL::PercentEncodeSet::EncodeURI));
  34. if (!m_url.query().is_empty()) {
  35. builder.append('?');
  36. builder.append(URL::percent_encode(m_url.query(), URL::PercentEncodeSet::EncodeURI));
  37. }
  38. builder.append(" HTTP/1.1\r\nHost: ");
  39. builder.append(m_url.host());
  40. builder.append("\r\n");
  41. for (auto& header : m_headers) {
  42. builder.append(header.name);
  43. builder.append(": ");
  44. builder.append(header.value);
  45. builder.append("\r\n");
  46. }
  47. if (!m_body.is_empty()) {
  48. builder.appendff("Content-Length: {}\r\n\r\n", m_body.size());
  49. builder.append((char const*)m_body.data(), m_body.size());
  50. }
  51. builder.append("\r\n");
  52. return builder.to_byte_buffer();
  53. }
  54. Optional<HttpRequest> HttpRequest::from_raw_request(ReadonlyBytes raw_request)
  55. {
  56. enum class State {
  57. InMethod,
  58. InResource,
  59. InProtocol,
  60. InHeaderName,
  61. InHeaderValue,
  62. };
  63. State state { State::InMethod };
  64. size_t index = 0;
  65. auto peek = [&](int offset = 0) -> u8 {
  66. if (index + offset >= raw_request.size())
  67. return 0;
  68. return raw_request[index + offset];
  69. };
  70. auto consume = [&]() -> u8 {
  71. VERIFY(index < raw_request.size());
  72. return raw_request[index++];
  73. };
  74. Vector<u8, 256> buffer;
  75. String method;
  76. String resource;
  77. String protocol;
  78. Vector<Header> headers;
  79. Header current_header;
  80. auto commit_and_advance_to = [&](auto& output, State new_state) {
  81. output = String::copy(buffer);
  82. buffer.clear();
  83. state = new_state;
  84. };
  85. while (index < raw_request.size()) {
  86. // FIXME: Figure out what the appropriate limitations should be.
  87. if (buffer.size() > 65536)
  88. return {};
  89. switch (state) {
  90. case State::InMethod:
  91. if (peek() == ' ') {
  92. consume();
  93. commit_and_advance_to(method, State::InResource);
  94. break;
  95. }
  96. buffer.append(consume());
  97. break;
  98. case State::InResource:
  99. if (peek() == ' ') {
  100. consume();
  101. commit_and_advance_to(resource, State::InProtocol);
  102. break;
  103. }
  104. buffer.append(consume());
  105. break;
  106. case State::InProtocol:
  107. if (peek(0) == '\r' && peek(1) == '\n') {
  108. consume();
  109. consume();
  110. commit_and_advance_to(protocol, State::InHeaderName);
  111. break;
  112. }
  113. buffer.append(consume());
  114. break;
  115. case State::InHeaderName:
  116. if (peek(0) == ':' && peek(1) == ' ') {
  117. consume();
  118. consume();
  119. commit_and_advance_to(current_header.name, State::InHeaderValue);
  120. break;
  121. }
  122. buffer.append(consume());
  123. break;
  124. case State::InHeaderValue:
  125. if (peek(0) == '\r' && peek(1) == '\n') {
  126. consume();
  127. consume();
  128. commit_and_advance_to(current_header.value, State::InHeaderName);
  129. headers.append(move(current_header));
  130. break;
  131. }
  132. buffer.append(consume());
  133. break;
  134. }
  135. }
  136. HttpRequest request;
  137. if (method == "GET")
  138. request.m_method = Method::GET;
  139. else if (method == "HEAD")
  140. request.m_method = Method::HEAD;
  141. else if (method == "POST")
  142. request.m_method = Method::POST;
  143. else
  144. return {};
  145. request.m_resource = URL::percent_decode(resource);
  146. request.m_headers = move(headers);
  147. return request;
  148. }
  149. void HttpRequest::set_headers(HashMap<String, String> const& headers)
  150. {
  151. for (auto& it : headers)
  152. m_headers.append({ it.key, it.value });
  153. }
  154. Optional<HttpRequest::Header> HttpRequest::get_http_basic_authentication_header(URL const& url)
  155. {
  156. if (!url.includes_credentials())
  157. return {};
  158. StringBuilder builder;
  159. builder.append(url.username());
  160. builder.append(':');
  161. builder.append(url.password());
  162. auto token = encode_base64(builder.to_string().bytes());
  163. builder.clear();
  164. builder.append("Basic ");
  165. builder.append(token);
  166. return Header { "Authorization", builder.to_string() };
  167. }
  168. Optional<HttpRequest::BasicAuthenticationCredentials> HttpRequest::parse_http_basic_authentication_header(String const& value)
  169. {
  170. if (!value.starts_with("Basic ", AK::CaseSensitivity::CaseInsensitive))
  171. return {};
  172. auto token = value.substring_view(6);
  173. if (token.is_empty())
  174. return {};
  175. auto decoded_token_bb = decode_base64(token);
  176. if (decoded_token_bb.is_error())
  177. return {};
  178. auto decoded_token = String::copy(decoded_token_bb.value());
  179. auto colon_index = decoded_token.find(':');
  180. if (!colon_index.has_value())
  181. return {};
  182. auto username = decoded_token.substring_view(0, colon_index.value());
  183. auto password = decoded_token.substring_view(colon_index.value() + 1);
  184. return BasicAuthenticationCredentials { username, password };
  185. }
  186. }