test_server.py 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353
  1. # Copyright 2018 New Vector Ltd
  2. #
  3. # Licensed under the Apache License, Version 2.0 (the "License");
  4. # you may not use this file except in compliance with the License.
  5. # You may obtain a copy of the License at
  6. #
  7. # http://www.apache.org/licenses/LICENSE-2.0
  8. #
  9. # Unless required by applicable law or agreed to in writing, software
  10. # distributed under the License is distributed on an "AS IS" BASIS,
  11. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. # See the License for the specific language governing permissions and
  13. # limitations under the License.
  14. import re
  15. from twisted.internet.defer import Deferred
  16. from twisted.web.resource import Resource
  17. from synapse.api.errors import Codes, RedirectException, SynapseError
  18. from synapse.config.server import parse_listener_def
  19. from synapse.http.server import DirectServeHtmlResource, JsonResource, OptionsResource
  20. from synapse.http.site import SynapseSite
  21. from synapse.logging.context import make_deferred_yieldable
  22. from synapse.util import Clock
  23. from tests import unittest
  24. from tests.server import (
  25. ThreadedMemoryReactorClock,
  26. make_request,
  27. render,
  28. setup_test_homeserver,
  29. )
  30. class JsonResourceTests(unittest.TestCase):
  31. def setUp(self):
  32. self.reactor = ThreadedMemoryReactorClock()
  33. self.hs_clock = Clock(self.reactor)
  34. self.homeserver = setup_test_homeserver(
  35. self.addCleanup, http_client=None, clock=self.hs_clock, reactor=self.reactor
  36. )
  37. def test_handler_for_request(self):
  38. """
  39. JsonResource.handler_for_request gives correctly decoded URL args to
  40. the callback, while Twisted will give the raw bytes of URL query
  41. arguments.
  42. """
  43. got_kwargs = {}
  44. def _callback(request, **kwargs):
  45. got_kwargs.update(kwargs)
  46. return 200, kwargs
  47. res = JsonResource(self.homeserver)
  48. res.register_paths(
  49. "GET",
  50. [re.compile("^/_matrix/foo/(?P<room_id>[^/]*)$")],
  51. _callback,
  52. "test_servlet",
  53. )
  54. request, channel = make_request(
  55. self.reactor, b"GET", b"/_matrix/foo/%E2%98%83?a=%E2%98%83"
  56. )
  57. render(request, res, self.reactor)
  58. self.assertEqual(request.args, {b"a": ["\N{SNOWMAN}".encode("utf8")]})
  59. self.assertEqual(got_kwargs, {"room_id": "\N{SNOWMAN}"})
  60. def test_callback_direct_exception(self):
  61. """
  62. If the web callback raises an uncaught exception, it will be translated
  63. into a 500.
  64. """
  65. def _callback(request, **kwargs):
  66. raise Exception("boo")
  67. res = JsonResource(self.homeserver)
  68. res.register_paths(
  69. "GET", [re.compile("^/_matrix/foo$")], _callback, "test_servlet"
  70. )
  71. request, channel = make_request(self.reactor, b"GET", b"/_matrix/foo")
  72. render(request, res, self.reactor)
  73. self.assertEqual(channel.result["code"], b"500")
  74. def test_callback_indirect_exception(self):
  75. """
  76. If the web callback raises an uncaught exception in a Deferred, it will
  77. be translated into a 500.
  78. """
  79. def _throw(*args):
  80. raise Exception("boo")
  81. def _callback(request, **kwargs):
  82. d = Deferred()
  83. d.addCallback(_throw)
  84. self.reactor.callLater(1, d.callback, True)
  85. return make_deferred_yieldable(d)
  86. res = JsonResource(self.homeserver)
  87. res.register_paths(
  88. "GET", [re.compile("^/_matrix/foo$")], _callback, "test_servlet"
  89. )
  90. request, channel = make_request(self.reactor, b"GET", b"/_matrix/foo")
  91. render(request, res, self.reactor)
  92. self.assertEqual(channel.result["code"], b"500")
  93. def test_callback_synapseerror(self):
  94. """
  95. If the web callback raises a SynapseError, it returns the appropriate
  96. status code and message set in it.
  97. """
  98. def _callback(request, **kwargs):
  99. raise SynapseError(403, "Forbidden!!one!", Codes.FORBIDDEN)
  100. res = JsonResource(self.homeserver)
  101. res.register_paths(
  102. "GET", [re.compile("^/_matrix/foo$")], _callback, "test_servlet"
  103. )
  104. request, channel = make_request(self.reactor, b"GET", b"/_matrix/foo")
  105. render(request, res, self.reactor)
  106. self.assertEqual(channel.result["code"], b"403")
  107. self.assertEqual(channel.json_body["error"], "Forbidden!!one!")
  108. self.assertEqual(channel.json_body["errcode"], "M_FORBIDDEN")
  109. def test_no_handler(self):
  110. """
  111. If there is no handler to process the request, Synapse will return 400.
  112. """
  113. def _callback(request, **kwargs):
  114. """
  115. Not ever actually called!
  116. """
  117. self.fail("shouldn't ever get here")
  118. res = JsonResource(self.homeserver)
  119. res.register_paths(
  120. "GET", [re.compile("^/_matrix/foo$")], _callback, "test_servlet"
  121. )
  122. request, channel = make_request(self.reactor, b"GET", b"/_matrix/foobar")
  123. render(request, res, self.reactor)
  124. self.assertEqual(channel.result["code"], b"400")
  125. self.assertEqual(channel.json_body["error"], "Unrecognized request")
  126. self.assertEqual(channel.json_body["errcode"], "M_UNRECOGNIZED")
  127. def test_head_request(self):
  128. """
  129. JsonResource.handler_for_request gives correctly decoded URL args to
  130. the callback, while Twisted will give the raw bytes of URL query
  131. arguments.
  132. """
  133. def _callback(request, **kwargs):
  134. return 200, {"result": True}
  135. res = JsonResource(self.homeserver)
  136. res.register_paths(
  137. "GET", [re.compile("^/_matrix/foo$")], _callback, "test_servlet",
  138. )
  139. # The path was registered as GET, but this is a HEAD request.
  140. request, channel = make_request(self.reactor, b"HEAD", b"/_matrix/foo")
  141. render(request, res, self.reactor)
  142. self.assertEqual(channel.result["code"], b"200")
  143. self.assertNotIn("body", channel.result)
  144. self.assertEqual(channel.headers.getRawHeaders(b"Content-Length"), [b"15"])
  145. class OptionsResourceTests(unittest.TestCase):
  146. def setUp(self):
  147. self.reactor = ThreadedMemoryReactorClock()
  148. class DummyResource(Resource):
  149. isLeaf = True
  150. def render(self, request):
  151. return request.path
  152. # Setup a resource with some children.
  153. self.resource = OptionsResource()
  154. self.resource.putChild(b"res", DummyResource())
  155. def _make_request(self, method, path):
  156. """Create a request from the method/path and return a channel with the response."""
  157. request, channel = make_request(self.reactor, method, path, shorthand=False)
  158. request.prepath = [] # This doesn't get set properly by make_request.
  159. # Create a site and query for the resource.
  160. site = SynapseSite(
  161. "test",
  162. "site_tag",
  163. parse_listener_def({"type": "http", "port": 0}),
  164. self.resource,
  165. "1.0",
  166. )
  167. request.site = site
  168. resource = site.getResourceFor(request)
  169. # Finally, render the resource and return the channel.
  170. render(request, resource, self.reactor)
  171. return channel
  172. def test_unknown_options_request(self):
  173. """An OPTIONS requests to an unknown URL still returns 204 No Content."""
  174. channel = self._make_request(b"OPTIONS", b"/foo/")
  175. self.assertEqual(channel.result["code"], b"204")
  176. self.assertNotIn("body", channel.result)
  177. # Ensure the correct CORS headers have been added
  178. self.assertTrue(
  179. channel.headers.hasHeader(b"Access-Control-Allow-Origin"),
  180. "has CORS Origin header",
  181. )
  182. self.assertTrue(
  183. channel.headers.hasHeader(b"Access-Control-Allow-Methods"),
  184. "has CORS Methods header",
  185. )
  186. self.assertTrue(
  187. channel.headers.hasHeader(b"Access-Control-Allow-Headers"),
  188. "has CORS Headers header",
  189. )
  190. def test_known_options_request(self):
  191. """An OPTIONS requests to an known URL still returns 204 No Content."""
  192. channel = self._make_request(b"OPTIONS", b"/res/")
  193. self.assertEqual(channel.result["code"], b"204")
  194. self.assertNotIn("body", channel.result)
  195. # Ensure the correct CORS headers have been added
  196. self.assertTrue(
  197. channel.headers.hasHeader(b"Access-Control-Allow-Origin"),
  198. "has CORS Origin header",
  199. )
  200. self.assertTrue(
  201. channel.headers.hasHeader(b"Access-Control-Allow-Methods"),
  202. "has CORS Methods header",
  203. )
  204. self.assertTrue(
  205. channel.headers.hasHeader(b"Access-Control-Allow-Headers"),
  206. "has CORS Headers header",
  207. )
  208. def test_unknown_request(self):
  209. """A non-OPTIONS request to an unknown URL should 404."""
  210. channel = self._make_request(b"GET", b"/foo/")
  211. self.assertEqual(channel.result["code"], b"404")
  212. def test_known_request(self):
  213. """A non-OPTIONS request to an known URL should query the proper resource."""
  214. channel = self._make_request(b"GET", b"/res/")
  215. self.assertEqual(channel.result["code"], b"200")
  216. self.assertEqual(channel.result["body"], b"/res/")
  217. class WrapHtmlRequestHandlerTests(unittest.TestCase):
  218. class TestResource(DirectServeHtmlResource):
  219. callback = None
  220. async def _async_render_GET(self, request):
  221. await self.callback(request)
  222. def setUp(self):
  223. self.reactor = ThreadedMemoryReactorClock()
  224. def test_good_response(self):
  225. async def callback(request):
  226. request.write(b"response")
  227. request.finish()
  228. res = WrapHtmlRequestHandlerTests.TestResource()
  229. res.callback = callback
  230. request, channel = make_request(self.reactor, b"GET", b"/path")
  231. render(request, res, self.reactor)
  232. self.assertEqual(channel.result["code"], b"200")
  233. body = channel.result["body"]
  234. self.assertEqual(body, b"response")
  235. def test_redirect_exception(self):
  236. """
  237. If the callback raises a RedirectException, it is turned into a 30x
  238. with the right location.
  239. """
  240. async def callback(request, **kwargs):
  241. raise RedirectException(b"/look/an/eagle", 301)
  242. res = WrapHtmlRequestHandlerTests.TestResource()
  243. res.callback = callback
  244. request, channel = make_request(self.reactor, b"GET", b"/path")
  245. render(request, res, self.reactor)
  246. self.assertEqual(channel.result["code"], b"301")
  247. headers = channel.result["headers"]
  248. location_headers = [v for k, v in headers if k == b"Location"]
  249. self.assertEqual(location_headers, [b"/look/an/eagle"])
  250. def test_redirect_exception_with_cookie(self):
  251. """
  252. If the callback raises a RedirectException which sets a cookie, that is
  253. returned too
  254. """
  255. async def callback(request, **kwargs):
  256. e = RedirectException(b"/no/over/there", 304)
  257. e.cookies.append(b"session=yespls")
  258. raise e
  259. res = WrapHtmlRequestHandlerTests.TestResource()
  260. res.callback = callback
  261. request, channel = make_request(self.reactor, b"GET", b"/path")
  262. render(request, res, self.reactor)
  263. self.assertEqual(channel.result["code"], b"304")
  264. headers = channel.result["headers"]
  265. location_headers = [v for k, v in headers if k == b"Location"]
  266. self.assertEqual(location_headers, [b"/no/over/there"])
  267. cookies_headers = [v for k, v in headers if k == b"Set-Cookie"]
  268. self.assertEqual(cookies_headers, [b"session=yespls"])
  269. def test_head_request(self):
  270. """A head request should work by being turned into a GET request."""
  271. async def callback(request):
  272. request.write(b"response")
  273. request.finish()
  274. res = WrapHtmlRequestHandlerTests.TestResource()
  275. res.callback = callback
  276. request, channel = make_request(self.reactor, b"HEAD", b"/path")
  277. render(request, res, self.reactor)
  278. self.assertEqual(channel.result["code"], b"200")
  279. self.assertNotIn("body", channel.result)