2023-08-14 23:33:21 +00:00

362 lines
20 KiB
HTML
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

<!DOCTYPE html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width, initial-scale=1.0"><meta name="generator" content="rustdoc"><meta name="description" content="Source of the Rust file `src/handlers/other_handlers.rs`."><title>other_handlers.rs - source</title><link rel="preload" as="font" type="font/woff2" crossorigin href="../../../static.files/SourceSerif4-Regular-46f98efaafac5295.ttf.woff2"><link rel="preload" as="font" type="font/woff2" crossorigin href="../../../static.files/FiraSans-Regular-018c141bf0843ffd.woff2"><link rel="preload" as="font" type="font/woff2" crossorigin href="../../../static.files/FiraSans-Medium-8f9a781e4970d388.woff2"><link rel="preload" as="font" type="font/woff2" crossorigin href="../../../static.files/SourceCodePro-Regular-562dcc5011b6de7d.ttf.woff2"><link rel="preload" as="font" type="font/woff2" crossorigin href="../../../static.files/SourceSerif4-Bold-a2c9cd1067f8b328.ttf.woff2"><link rel="preload" as="font" type="font/woff2" crossorigin href="../../../static.files/SourceCodePro-Semibold-d899c5a5c4aeb14a.ttf.woff2"><link rel="stylesheet" href="../../../static.files/normalize-76eba96aa4d2e634.css"><link rel="stylesheet" href="../../../static.files/rustdoc-ba5701c5741a7b69.css" id="mainThemeStyle"><script id="default-settings"
data-theme="ayu"
data-use_system_theme="false"></script><div id="rustdoc-vars" data-root-path="../../../" data-static-root-path="../../../static.files/" data-current-crate="docserver" data-themes="" data-resource-suffix="" data-rustdoc-version="1.70.0 (90c541806 2023-05-31)" data-search-js="search-e077946657036a58.js" data-settings-js="settings-298e1ea74db45b39.js" data-settings-css="settings-7bfb4c59cc6bc502.css" data-theme-light-css="light-0f8c037637f9eb3e.css" data-theme-dark-css="dark-1097f8e92a01e3cf.css" data-theme-ayu-css="ayu-614652228113ac93.css" ></div><script src="../../../static.files/storage-62ce34ea385b278a.js"></script><script defer src="../../../static.files/source-script-905937fbbdc8e9ea.js"></script><script defer src="../../../source-files.js"></script><script defer src="../../../static.files/main-f61008743c98d196.js"></script><noscript><link rel="stylesheet" media="(prefers-color-scheme:light)" href="../../../static.files/light-0f8c037637f9eb3e.css"><link rel="stylesheet" media="(prefers-color-scheme:dark)" href="../../../static.files/dark-1097f8e92a01e3cf.css"><link rel="stylesheet" href="../../../static.files/noscript-13285aec31fa243e.css"></noscript><link rel="stylesheet" href="../../../theme.css"><link rel="alternate icon" type="image/png" href="../../../static.files/favicon-16x16-8b506e7a72182f1c.png"><link rel="alternate icon" type="image/png" href="../../../static.files/favicon-32x32-422f7d1d52889060.png"><link rel="icon" type="image/svg+xml" href="../../../static.files/favicon-2c020d218678b618.svg">
</head><body class="rustdoc source"><!--[if lte IE 11]><div class="warning">This old browser is unsupported and will most likely display funky things.</div><![endif]--><script>
let doc_state=false;
</script>
<nav class="sidebar"></nav><main><nav class="sub"><a class="sub-logo-container" href="../../../docserver/index.html"><img src="../images/docserver.svg" alt="logo"></a><form class="search-form"><span></span><input class="search-input" name="search" aria-label="Run search in the documentation" autocomplete="off" spellcheck="false" placeholder="Click or press S to search, ? for more options…" type="search"><div id="help-button" title="help" tabindex="-1"><a href="../../../help.html">?</a></div><div id="settings-menu" tabindex="-1"><a href="../../../settings.html" title="settings"><img width="22" height="22" alt="Change settings" src="../../../static.files/wheel-7b819b6101059cd0.svg"></a></div></form></nav><section id="main-content" class="content"><div class="example-wrap"><div data-nosnippet><pre class="src-line-numbers"><a href="#1" id="1">1</a>
<a href="#2" id="2">2</a>
<a href="#3" id="3">3</a>
<a href="#4" id="4">4</a>
<a href="#5" id="5">5</a>
<a href="#6" id="6">6</a>
<a href="#7" id="7">7</a>
<a href="#8" id="8">8</a>
<a href="#9" id="9">9</a>
<a href="#10" id="10">10</a>
<a href="#11" id="11">11</a>
<a href="#12" id="12">12</a>
<a href="#13" id="13">13</a>
<a href="#14" id="14">14</a>
<a href="#15" id="15">15</a>
<a href="#16" id="16">16</a>
<a href="#17" id="17">17</a>
<a href="#18" id="18">18</a>
<a href="#19" id="19">19</a>
<a href="#20" id="20">20</a>
<a href="#21" id="21">21</a>
<a href="#22" id="22">22</a>
<a href="#23" id="23">23</a>
<a href="#24" id="24">24</a>
<a href="#25" id="25">25</a>
<a href="#26" id="26">26</a>
<a href="#27" id="27">27</a>
<a href="#28" id="28">28</a>
<a href="#29" id="29">29</a>
<a href="#30" id="30">30</a>
<a href="#31" id="31">31</a>
<a href="#32" id="32">32</a>
<a href="#33" id="33">33</a>
<a href="#34" id="34">34</a>
<a href="#35" id="35">35</a>
<a href="#36" id="36">36</a>
<a href="#37" id="37">37</a>
<a href="#38" id="38">38</a>
<a href="#39" id="39">39</a>
<a href="#40" id="40">40</a>
<a href="#41" id="41">41</a>
<a href="#42" id="42">42</a>
<a href="#43" id="43">43</a>
<a href="#44" id="44">44</a>
<a href="#45" id="45">45</a>
<a href="#46" id="46">46</a>
<a href="#47" id="47">47</a>
<a href="#48" id="48">48</a>
<a href="#49" id="49">49</a>
<a href="#50" id="50">50</a>
<a href="#51" id="51">51</a>
<a href="#52" id="52">52</a>
<a href="#53" id="53">53</a>
<a href="#54" id="54">54</a>
<a href="#55" id="55">55</a>
<a href="#56" id="56">56</a>
<a href="#57" id="57">57</a>
<a href="#58" id="58">58</a>
<a href="#59" id="59">59</a>
<a href="#60" id="60">60</a>
<a href="#61" id="61">61</a>
<a href="#62" id="62">62</a>
<a href="#63" id="63">63</a>
<a href="#64" id="64">64</a>
<a href="#65" id="65">65</a>
<a href="#66" id="66">66</a>
<a href="#67" id="67">67</a>
<a href="#68" id="68">68</a>
<a href="#69" id="69">69</a>
<a href="#70" id="70">70</a>
<a href="#71" id="71">71</a>
<a href="#72" id="72">72</a>
<a href="#73" id="73">73</a>
<a href="#74" id="74">74</a>
<a href="#75" id="75">75</a>
<a href="#76" id="76">76</a>
<a href="#77" id="77">77</a>
<a href="#78" id="78">78</a>
<a href="#79" id="79">79</a>
<a href="#80" id="80">80</a>
<a href="#81" id="81">81</a>
<a href="#82" id="82">82</a>
<a href="#83" id="83">83</a>
<a href="#84" id="84">84</a>
<a href="#85" id="85">85</a>
<a href="#86" id="86">86</a>
<a href="#87" id="87">87</a>
<a href="#88" id="88">88</a>
<a href="#89" id="89">89</a>
<a href="#90" id="90">90</a>
<a href="#91" id="91">91</a>
<a href="#92" id="92">92</a>
<a href="#93" id="93">93</a>
<a href="#94" id="94">94</a>
<a href="#95" id="95">95</a>
<a href="#96" id="96">96</a>
<a href="#97" id="97">97</a>
<a href="#98" id="98">98</a>
<a href="#99" id="99">99</a>
<a href="#100" id="100">100</a>
<a href="#101" id="101">101</a>
<a href="#102" id="102">102</a>
<a href="#103" id="103">103</a>
<a href="#104" id="104">104</a>
<a href="#105" id="105">105</a>
<a href="#106" id="106">106</a>
<a href="#107" id="107">107</a>
<a href="#108" id="108">108</a>
<a href="#109" id="109">109</a>
<a href="#110" id="110">110</a>
<a href="#111" id="111">111</a>
<a href="#112" id="112">112</a>
<a href="#113" id="113">113</a>
<a href="#114" id="114">114</a>
<a href="#115" id="115">115</a>
<a href="#116" id="116">116</a>
<a href="#117" id="117">117</a>
<a href="#118" id="118">118</a>
<a href="#119" id="119">119</a>
<a href="#120" id="120">120</a>
<a href="#121" id="121">121</a>
<a href="#122" id="122">122</a>
<a href="#123" id="123">123</a>
<a href="#124" id="124">124</a>
<a href="#125" id="125">125</a>
<a href="#126" id="126">126</a>
<a href="#127" id="127">127</a>
<a href="#128" id="128">128</a>
<a href="#129" id="129">129</a>
<a href="#130" id="130">130</a>
<a href="#131" id="131">131</a>
<a href="#132" id="132">132</a>
<a href="#133" id="133">133</a>
<a href="#134" id="134">134</a>
<a href="#135" id="135">135</a>
<a href="#136" id="136">136</a>
<a href="#137" id="137">137</a>
<a href="#138" id="138">138</a>
<a href="#139" id="139">139</a>
<a href="#140" id="140">140</a>
<a href="#141" id="141">141</a>
<a href="#142" id="142">142</a>
<a href="#143" id="143">143</a>
<a href="#144" id="144">144</a>
<a href="#145" id="145">145</a>
<a href="#146" id="146">146</a>
<a href="#147" id="147">147</a>
<a href="#148" id="148">148</a>
<a href="#149" id="149">149</a>
<a href="#150" id="150">150</a>
<a href="#151" id="151">151</a>
<a href="#152" id="152">152</a>
<a href="#153" id="153">153</a>
<a href="#154" id="154">154</a>
<a href="#155" id="155">155</a>
<a href="#156" id="156">156</a>
<a href="#157" id="157">157</a>
<a href="#158" id="158">158</a>
<a href="#159" id="159">159</a>
<a href="#160" id="160">160</a>
<a href="#161" id="161">161</a>
<a href="#162" id="162">162</a>
<a href="#163" id="163">163</a>
<a href="#164" id="164">164</a>
<a href="#165" id="165">165</a>
<a href="#166" id="166">166</a>
<a href="#167" id="167">167</a>
<a href="#168" id="168">168</a>
</pre></div><pre class="rust"><code><span class="kw">use </span>std::sync::Arc;
<span class="kw">use </span>casbin::CoreApi;
<span class="kw">use </span>axum::{
extract::Request,
http::{
StatusCode,
},
Extension,
response::{IntoResponse,Response,Redirect},
middleware::Next,
};
<span class="kw">use </span>tower_cookies::{Cookie, Cookies};
<span class="kw">use crate</span>::{
USER_AGENT,
SESSION_COOKIE_NAME,
defs::{
AppDBs,
ServPath,
AuthState,
SessionStoreDB,
},
};
<span class="comment">/* // OLD get_cookie from Request
pub fn get_cookie(req: &amp;Request) -&gt; Option&lt;u128&gt; {
req
.headers()
.get_all(&quot;Cookie&quot;)
.iter()
.filter_map(|cookie| {
cookie
.to_str()
.ok()
.and_then(|cookie| cookie.parse::&lt;Cookie&gt;().ok())
})
.find_map(|cookie| {
(cookie.name() == SESSION_COOKIE_NAME).then(move || cookie.value().to_owned())
})
.and_then(|cookie_value| cookie_value.parse::&lt;u128&gt;().ok())
}
*/
</span><span class="kw">pub async fn </span>add_session_cookie(make: bool, cookies: <span class="kw-2">&amp;</span>Cookies, session_token: <span class="kw-2">&amp;</span>str, user_data: <span class="kw-2">&amp;</span>str, expire: u64, app_dbs: <span class="kw-2">&amp;</span>AppDBs, cookie_path: <span class="kw-2">&amp;</span>str) -&gt; String {
<span class="kw">if </span>make {
cookies.remove(Cookie::new(SESSION_COOKIE_NAME, <span class="string">&quot;&quot;</span>));
}
<span class="kw">let </span>result_store = SessionStoreDB::store_session_data(<span class="kw-2">&amp;</span>session_token,<span class="kw-2">&amp;</span>user_data, expire, <span class="kw-2">&amp;</span>app_dbs).<span class="kw">await</span>;
<span class="kw">if </span>result_store.is_empty() {
<span class="macro">eprintln!</span>(<span class="string">&quot;Unable to store session {}&quot;</span>, <span class="kw-2">&amp;</span>app_dbs.config.session_store_uri);
} <span class="kw">else </span>{
<span class="kw">let </span>cookie = Cookie::build(SESSION_COOKIE_NAME, result_store.to_owned())
<span class="comment">// .domain(domain)
</span>.path(<span class="macro">format!</span>(<span class="string">&quot;{}&quot;</span>,cookie_path))
.secure(<span class="bool-val">true</span>)
.http_only(<span class="bool-val">true</span>)
.finish();
<span class="kw">if </span>make {
cookies.add(cookie);
}
}
result_store
}
<span class="kw">pub async fn </span>get_auth_state(update: bool, cookies: <span class="kw-2">&amp;</span>Cookies, app_dbs: <span class="kw-2">&amp;</span>AppDBs) -&gt; AuthState {
<span class="kw">if let </span><span class="prelude-val">Some</span>(s_cookie) = cookies.get(SESSION_COOKIE_NAME) {
<span class="kw">let </span>session_cookie = s_cookie.to_string().replace(<span class="kw-2">&amp;</span><span class="macro">format!</span>(<span class="string">&quot;{}=&quot;</span>,SESSION_COOKIE_NAME),<span class="string">&quot;&quot;</span>);
<span class="kw">let </span><span class="kw-2">mut </span>auth_state = AuthState::from_cookie(session_cookie.to_string(), app_dbs).<span class="kw">await</span>;
<span class="kw">if </span>update {
<span class="kw">let _ </span>= auth_state.expire_in(app_dbs.config.session_expire, <span class="kw-2">&amp;</span>app_dbs).<span class="kw">await</span>;
}
auth_state
} <span class="kw">else </span>{
<span class="comment">// eprintln!(&quot;get_auth_state: No SESSION COOKIE found &quot;);
</span>AuthState::default()
}
}
<span class="kw">pub async fn </span>rewrite_request_uri(
Extension(app_dbs): Extension&lt;Arc&lt;AppDBs&gt;&gt;,
Extension(cookies): Extension&lt;Cookies&gt;,
req: Request, next: Next,
) -&gt; <span class="prelude-ty">Result</span>&lt;<span class="kw">impl </span>IntoResponse, Response&gt; {
<span class="comment">// TODO Trace acccess to log or user session file !!!
</span><span class="kw">let </span>auth_state = get_auth_state(<span class="bool-val">true</span>, <span class="kw-2">&amp;</span>cookies, <span class="kw-2">&amp;</span>app_dbs).<span class="kw">await</span>;
<span class="kw">let </span>uri_path = req.uri().path().to_owned();
<span class="kw">if </span>uri_path == <span class="string">&quot;/&quot; </span>{
<span class="kw">return </span><span class="prelude-val">Ok</span>(next.run(req).<span class="kw">await</span>);
}
<span class="comment">// For long path is better than:
// let arr_root_path: Vec&lt;String&gt; = uri_path.split(&quot;/&quot;).map(|s| s.to_string()).collect();
// let root_path = arr_root_path[1].to_owned();
</span><span class="kw">let </span><span class="kw-2">mut </span>root_path = String::from(<span class="string">&quot;/&quot;</span>);
<span class="kw">for </span>it <span class="kw">in </span>uri_path.split(<span class="string">&quot;/&quot;</span>) {
<span class="kw">if </span>! it.is_empty() {
root_path = <span class="macro">format!</span>(<span class="string">&quot;/{}&quot;</span>,it.to_owned());
<span class="kw">break</span>;
}
}
<span class="kw">let </span>serv_paths: Vec&lt;ServPath&gt; = app_dbs.config.serv_paths.clone().into_iter().filter(
|it| it.is_restricted &amp;&amp; it.url_path == root_path
).collect();
<span class="comment">// Only on First one
</span><span class="kw">if </span>serv_paths.len() &gt; <span class="number">0 </span>{
<span class="kw">let </span>serv_path = serv_paths[<span class="number">0</span>].to_owned();
<span class="kw">let </span>name = auth_state.user_name();
<span class="kw">if </span>name.is_empty() {
<span class="kw">let </span>uri_path = req.uri().path().to_string();
<span class="kw">if </span>uri_path.ends_with(<span class="string">&quot;.html&quot;</span>) {
<span class="macro">eprintln!</span>(<span class="string">&quot;rewrite_request_uri: No user found in session for {}&quot;</span>, <span class="kw-2">&amp;</span>uri_path);
<span class="kw">let </span>new_uri = <span class="macro">format!</span>(<span class="string">&quot;{}?o={}&quot;</span>,<span class="kw-2">&amp;</span>serv_path.not_auth.as_str(),req.uri().path().to_string());
<span class="kw">return </span><span class="prelude-val">Err</span>(
Redirect::temporary( <span class="kw-2">&amp;</span>new_uri).into_response()
);
} <span class="kw">else </span>{
<span class="kw">return </span><span class="prelude-val">Ok</span>(next.run(req).<span class="kw">await</span>);
}
}
<span class="kw">let </span>arr_roles: Vec&lt;String&gt; = auth_state.user_roles().split(<span class="string">&quot;,&quot;</span>).map(|s| s.replace(<span class="string">&quot; &quot;</span>, <span class="string">&quot;&quot;</span>).to_string()).collect();
<span class="kw">let </span>req_method = req.method().to_string();
<span class="kw">let </span>target_path = serv_path.url_path.to_owned();
<span class="kw">let </span>enforcer = app_dbs.enforcer.clone();
<span class="kw">for </span>role <span class="kw">in </span>arr_roles {
<span class="kw">let </span><span class="kw-2">mut </span>lock = enforcer.write().<span class="kw">await</span>;
<span class="kw">let </span>result = lock.enforce_mut(
<span class="macro">vec!</span>[role,target_path.to_owned(), req_method.to_owned()]
).unwrap_or_else(|e|{
<span class="macro">println!</span>(<span class="string">&quot;Error enforce: {}&quot;</span>,e);
<span class="bool-val">false
</span>});
drop(lock);
<span class="kw">if </span>result { <span class="kw">return </span><span class="prelude-val">Ok</span>(next.run(req).<span class="kw">await</span>); }
}
<span class="comment">// try with email
</span><span class="kw">let </span><span class="kw-2">mut </span>lock = enforcer.write().<span class="kw">await</span>;
<span class="kw">let </span>result = lock.enforce_mut(
<span class="macro">vec!</span>[
name,
target_path.to_owned(),
req_method.to_owned()
]
).unwrap_or_else(|e|{
<span class="macro">println!</span>(<span class="string">&quot;Error enforce: {}&quot;</span>,e);
<span class="bool-val">false
</span>});
drop(lock);
<span class="kw">if </span>result { <span class="kw">return </span><span class="prelude-val">Ok</span>(next.run(req).<span class="kw">await</span>); }
<span class="kw">let </span>new_uri = <span class="macro">format!</span>(<span class="string">&quot;{}&quot;</span>,serv_path.not_auth);
<span class="kw">let </span>agent = <span class="kw">if let </span><span class="prelude-val">Some</span>(user_agent) = req.headers().get(USER_AGENT) {
user_agent.to_str().unwrap_or(<span class="string">&quot;&quot;</span>).to_owned()
} <span class="kw">else </span>{
String::from(<span class="string">&quot;&quot;</span>)
};
<span class="kw">if </span>agent.contains(<span class="string">&quot;curl&quot;</span>) {
<span class="kw">return </span><span class="prelude-val">Ok</span>(
<span class="macro">format!</span>(<span class="string">&quot;Got to {}&quot;</span>,<span class="kw-2">&amp;</span>new_uri).into_response()
);
} <span class="kw">else </span>{
<span class="kw">return </span><span class="prelude-val">Err</span>(
Redirect::temporary(<span class="kw-2">&amp;</span>new_uri).into_response()
);
}
}
<span class="prelude-val">Ok</span>(next.run(req).<span class="kw">await</span>)
}
<span class="kw">pub async fn </span>handle_404(_req: Request) -&gt; (StatusCode, <span class="kw-2">&amp;</span><span class="lifetime">&#39;static </span>str) {
(StatusCode::NOT_FOUND, <span class="string">&quot;Not found&quot;</span>)
}
</code></pre></div></section></main><script>
const add_home_link = () => {
const HOMELINK="/";
const arr_search_form=document.getElementsByTagName('form');
const search_form = arr_search_form && arr_search_form[0] ? arr_search_form[0] : null;
if (search_form && search_form.classList.contains('search-form')) {
const home_span = document.createElement('span');
home_span.id ='home-link';
home_span.innerHTML= `<a href="${HOMELINK}" alt=¨HOME¨><svg xmlns="http://www.w3.org/2000/svg" fill="none" viewBox="0 0 24 24" stroke-width="1.5" stroke="currentColor" style="with:1.5em; height: 1.5em;margin-right: 0.5em;"> <path stroke-linecap="round" stroke-linejoin="round" d="M2.25 12l8.954-8.955c.44-.439 1.152-.439 1.591 0L21.75 12M4.5 9.75v10.125c0 .621.504 1.125 1.125 1.125H9.75v-4.875c0-.621.504-1.125 1.125-1.125h2.25c.621 0 1.125.504 1.125 1.125V21h4.125c.621 0 1.125-.504 1.125-1.125V9.75M8.25 21h8.25" /> </svg></a>`;
search_form.prepend(home_span);
}
};
window.addEventListener('load', () => {
add_home_link();
});
</script>
</body></html>