__init__.py 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293
  1. # -*- coding: utf-8 -*-
  2. #
  3. # This file is part of Radicale Server - Calendar Server
  4. # Copyright © 2008-2011 Guillaume Ayoub
  5. # Copyright © 2008 Nicolas Kandel
  6. # Copyright © 2008 Pascal Halter
  7. #
  8. # This library is free software: you can redistribute it and/or modify
  9. # it under the terms of the GNU General Public License as published by
  10. # the Free Software Foundation, either version 3 of the License, or
  11. # (at your option) any later version.
  12. #
  13. # This library is distributed in the hope that it will be useful,
  14. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  15. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  16. # GNU General Public License for more details.
  17. #
  18. # You should have received a copy of the GNU General Public License
  19. # along with Radicale. If not, see <http://www.gnu.org/licenses/>.
  20. """
  21. Radicale Server module.
  22. This module offers 3 useful classes:
  23. - ``HTTPServer`` is a simple HTTP server;
  24. - ``HTTPSServer`` is a HTTPS server, wrapping the HTTP server in a socket
  25. managing SSL connections;
  26. - ``CalendarHTTPHandler`` is a CalDAV request handler for HTTP(S) servers.
  27. To use this module, you should take a look at the file ``radicale.py`` that
  28. should have been included in this package.
  29. """
  30. import os
  31. import posixpath
  32. import base64
  33. import socket
  34. # Manage Python2/3 different modules
  35. # pylint: disable=F0401
  36. try:
  37. from http import client, server
  38. except ImportError:
  39. import httplib as client
  40. import BaseHTTPServer as server
  41. # pylint: enable=F0401
  42. from radicale import acl, config, ical, xmlutils, log
  43. VERSION = "git"
  44. def _check(request, function):
  45. """Check if user has sufficient rights for performing ``request``."""
  46. log.log(10, "Check if user has sufficient rights for performing ``request`` %s." % (request.command))
  47. # ``_check`` decorator can access ``request`` protected functions
  48. # pylint: disable=W0212
  49. # If we have no calendar, don't check rights
  50. if not request._calendar:
  51. return function(request)
  52. authorization = request.headers.get("Authorization", None)
  53. if authorization:
  54. challenge = authorization.lstrip("Basic").strip().encode("ascii")
  55. plain = request._decode(base64.b64decode(challenge))
  56. user, password = plain.split(":")
  57. else:
  58. user = password = None
  59. if request.server.acl.has_right(request._calendar.owner, user, password):
  60. log.log(20, "Sufficient rights for performing ``request`` %s." % (request.command))
  61. function(request)
  62. else:
  63. log.log(40, "No sufficient rights for performing ``request``.")
  64. request.send_response(client.UNAUTHORIZED)
  65. request.send_header(
  66. "WWW-Authenticate",
  67. "Basic realm=\"Radicale Server - Password Required\"")
  68. request.end_headers()
  69. # pylint: enable=W0212
  70. class HTTPServer(server.HTTPServer):
  71. """HTTP server."""
  72. PROTOCOL = "http"
  73. # Maybe a Pylint bug, ``__init__`` calls ``server.HTTPServer.__init__``
  74. # pylint: disable=W0231
  75. def __init__(self, address, handler):
  76. """Create server."""
  77. log.log(10, "Create HTTP server.")
  78. server.HTTPServer.__init__(self, address, handler)
  79. self.acl = acl.load()
  80. # pylint: enable=W0231
  81. class HTTPSServer(HTTPServer):
  82. """HTTPS server."""
  83. PROTOCOL = "https"
  84. def __init__(self, address, handler):
  85. """Create server by wrapping HTTP socket in an SSL socket."""
  86. log.log(10, "Create server by wrapping HTTP socket in an SSL socket.")
  87. # Fails with Python 2.5, import if needed
  88. # pylint: disable=F0401
  89. import ssl
  90. # pylint: enable=F0401
  91. HTTPServer.__init__(self, address, handler)
  92. self.socket = ssl.wrap_socket(
  93. socket.socket(self.address_family, self.socket_type),
  94. server_side=True,
  95. certfile=config.get("server", "certificate"),
  96. keyfile=config.get("server", "key"),
  97. ssl_version=ssl.PROTOCOL_SSLv23)
  98. self.server_bind()
  99. self.server_activate()
  100. class CalendarHTTPHandler(server.BaseHTTPRequestHandler):
  101. """HTTP requests handler for calendars."""
  102. log.log(10, "HTTP requests handler for calendars.")
  103. _encoding = config.get("encoding", "request")
  104. # Decorator checking rights before performing request
  105. check_rights = lambda function: lambda request: _check(request, function)
  106. @property
  107. def _calendar(self):
  108. """The ``ical.Calendar`` object corresponding to the given path."""
  109. log.log(10, "The ``ical.Calendar`` object corresponding to the given path. (%s)" % (self.path))
  110. # ``self.path`` must be something like a posix path
  111. # ``normpath`` should clean malformed and malicious request paths
  112. attributes = posixpath.normpath(self.path.strip("/")).split("/")
  113. if len(attributes) >= 2:
  114. path = "%s/%s" % (attributes[0], attributes[1])
  115. return ical.Calendar(path)
  116. def _decode(self, text):
  117. """Try to decode text according to various parameters."""
  118. log.log(10, "Try to decode text according to various parameters.")
  119. # List of charsets to try
  120. charsets = []
  121. # First append content charset given in the request
  122. content_type = self.headers.get("Content-Type", None)
  123. if content_type and "charset=" in content_type:
  124. charsets.append(content_type.split("charset=")[1].strip())
  125. # Then append default Radicale charset
  126. charsets.append(self._encoding)
  127. # Then append various fallbacks
  128. charsets.append("utf-8")
  129. charsets.append("iso8859-1")
  130. # Try to decode
  131. for charset in charsets:
  132. try:
  133. return text.decode(charset)
  134. except UnicodeDecodeError:
  135. pass
  136. raise UnicodeDecodeError
  137. # Naming methods ``do_*`` is OK here
  138. # pylint: disable=C0103
  139. def do_GET(self):
  140. """Manage GET request."""
  141. log.log(10, "Manage GET request.")
  142. self.do_HEAD()
  143. if self._answer:
  144. self.wfile.write(self._answer)
  145. @check_rights
  146. def do_HEAD(self):
  147. """Manage HEAD request."""
  148. log.log(10, "Manage HEAD request.")
  149. item_name = xmlutils.name_from_path(self.path)
  150. if item_name:
  151. # Get calendar item
  152. item = self._calendar.get_item(item_name)
  153. if item:
  154. items = self._calendar.timezones
  155. items.append(item)
  156. answer_text = ical.serialize(
  157. headers=self._calendar.headers, items=items)
  158. etag = item.etag
  159. else:
  160. self._answer = None
  161. self.send_response(client.GONE)
  162. return
  163. else:
  164. # Get whole calendar
  165. answer_text = self._calendar.text
  166. etag = self._calendar.etag
  167. self._answer = answer_text.encode(self._encoding)
  168. self.send_response(client.OK)
  169. self.send_header("Content-Length", len(self._answer))
  170. self.send_header("Content-Type", "text/calendar")
  171. self.send_header("Last-Modified", self._calendar.last_modified)
  172. self.send_header("ETag", etag)
  173. self.end_headers()
  174. @check_rights
  175. def do_DELETE(self):
  176. """Manage DELETE request."""
  177. log.log(10, "Manage DELETE request.")
  178. item = self._calendar.get_item(xmlutils.name_from_path(self.path))
  179. if item and self.headers.get("If-Match", item.etag) == item.etag:
  180. # No ETag precondition or precondition verified, delete item
  181. self._answer = xmlutils.delete(self.path, self._calendar)
  182. self.send_response(client.NO_CONTENT)
  183. self.send_header("Content-Length", len(self._answer))
  184. self.end_headers()
  185. self.wfile.write(self._answer)
  186. else:
  187. # No item or ETag precondition not verified, do not delete item
  188. self.send_response(client.PRECONDITION_FAILED)
  189. @check_rights
  190. def do_MKCALENDAR(self):
  191. """Manage MKCALENDAR request."""
  192. self.send_response(client.CREATED)
  193. self.end_headers()
  194. def do_OPTIONS(self):
  195. """Manage OPTIONS request."""
  196. log.log(10, "Manage OPTIONS request.")
  197. self.send_response(client.OK)
  198. self.send_header(
  199. "Allow", "DELETE, HEAD, GET, MKCALENDAR, "
  200. "OPTIONS, PROPFIND, PUT, REPORT")
  201. self.send_header("DAV", "1, calendar-access")
  202. self.end_headers()
  203. def do_PROPFIND(self):
  204. """Manage PROPFIND request."""
  205. log.log(10, "Manage PROPFIND request.")
  206. xml_request = self.rfile.read(int(self.headers["Content-Length"]))
  207. self._answer = xmlutils.propfind(
  208. self.path, xml_request, self._calendar,
  209. self.headers.get("depth", "infinity"))
  210. self.send_response(client.MULTI_STATUS)
  211. self.send_header("DAV", "1, calendar-access")
  212. self.send_header("Content-Length", len(self._answer))
  213. self.send_header("Content-Type", "text/xml")
  214. self.end_headers()
  215. self.wfile.write(self._answer)
  216. @check_rights
  217. def do_PUT(self):
  218. """Manage PUT request."""
  219. log.log(10, "Manage PUT request.")
  220. item_name = xmlutils.name_from_path(self.path)
  221. item = self._calendar.get_item(item_name)
  222. if (not item and not self.headers.get("If-Match")) or \
  223. (item and self.headers.get("If-Match", item.etag) == item.etag):
  224. # PUT allowed in 3 cases
  225. # Case 1: No item and no ETag precondition: Add new item
  226. # Case 2: Item and ETag precondition verified: Modify item
  227. # Case 3: Item and no Etag precondition: Force modifying item
  228. ical_request = self._decode(
  229. self.rfile.read(int(self.headers["Content-Length"])))
  230. xmlutils.put(self.path, ical_request, self._calendar)
  231. etag = self._calendar.get_item(item_name).etag
  232. self.send_response(client.CREATED)
  233. self.send_header("ETag", etag)
  234. self.end_headers()
  235. else:
  236. # PUT rejected in all other cases
  237. self.send_response(client.PRECONDITION_FAILED)
  238. @check_rights
  239. def do_REPORT(self):
  240. """Manage REPORT request."""
  241. log.log(10, "Manage REPORT request.")
  242. xml_request = self.rfile.read(int(self.headers["Content-Length"]))
  243. self._answer = xmlutils.report(self.path, xml_request, self._calendar)
  244. self.send_response(client.MULTI_STATUS)
  245. self.send_header("Content-Length", len(self._answer))
  246. self.end_headers()
  247. self.wfile.write(self._answer)
  248. def log_message(self, format, *args):
  249. log.log(10, format % (args))
  250. # pylint: enable=C0103