server_twilio.go 6.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189
  1. package server
  2. import (
  3. "bytes"
  4. "encoding/xml"
  5. "fmt"
  6. "github.com/prometheus/client_golang/prometheus"
  7. "heckel.io/ntfy/log"
  8. "heckel.io/ntfy/user"
  9. "heckel.io/ntfy/util"
  10. "io"
  11. "net/http"
  12. "net/url"
  13. "strings"
  14. )
  15. const (
  16. twilioMessageFooterFormat = "This message was sent by %s via %s"
  17. twilioCallEndpoint = "Calls.json"
  18. twilioCallFormat = `
  19. <Response>
  20. <Pause length="1"/>
  21. <Say>You have a message from notify on topic %s. Message:</Say>
  22. <Pause length="1"/>
  23. <Say>%s</Say>
  24. <Pause length="1"/>
  25. <Say>End message.</Say>
  26. <Pause length="1"/>
  27. <Say>%s</Say>
  28. <Pause length="1"/>
  29. </Response>`
  30. )
  31. func (s *Server) convertPhoneNumber(u *user.User, phoneNumber string) (string, error) {
  32. if u == nil {
  33. return "", fmt.Errorf("user is nil")
  34. }
  35. if s.config.TwilioPhoneNumberConverter == nil {
  36. return phoneNumber, nil
  37. }
  38. return s.config.TwilioPhoneNumberConverter(u, phoneNumber)
  39. }
  40. func (s *Server) callPhone(v *visitor, r *http.Request, m *message, to string) {
  41. body := fmt.Sprintf(twilioCallFormat, xmlEscapeText(m.Topic), xmlEscapeText(m.Message), xmlEscapeText(s.messageFooter(v.User(), m)))
  42. data := url.Values{}
  43. data.Set("From", s.config.TwilioFromNumber)
  44. data.Set("To", to)
  45. data.Set("Twiml", body)
  46. s.twilioMessagingRequest(v, r, m, metricCallsMadeSuccess, metricCallsMadeFailure, twilioCallEndpoint, to, body, data)
  47. }
  48. func (s *Server) verifyPhone(v *visitor, r *http.Request, phoneNumber string) error {
  49. logvr(v, r).Tag(tagTwilio).Field("twilio_to", phoneNumber).Debug("Sending phone verification")
  50. data := url.Values{}
  51. data.Set("To", phoneNumber)
  52. data.Set("Channel", "sms")
  53. requestURL := fmt.Sprintf("%s/v2/Services/%s/Verifications", s.config.TwilioVerifyBaseURL, s.config.TwilioVerifyService)
  54. req, err := http.NewRequest(http.MethodPost, requestURL, strings.NewReader(data.Encode()))
  55. if err != nil {
  56. return err
  57. }
  58. req.Header.Set("Authorization", util.BasicAuth(s.config.TwilioAccount, s.config.TwilioAuthToken))
  59. req.Header.Add("Content-Type", "application/x-www-form-urlencoded")
  60. resp, err := http.DefaultClient.Do(req)
  61. if err != nil {
  62. return err
  63. }
  64. response, err := io.ReadAll(resp.Body)
  65. ev := logvr(v, r).Tag(tagTwilio)
  66. if err != nil {
  67. ev.Err(err).Warn("Error sending Twilio phone verification request")
  68. return err
  69. }
  70. if ev.IsTrace() {
  71. ev.Field("twilio_response", string(response)).Trace("Received successful Twilio phone verification response")
  72. } else if ev.IsDebug() {
  73. ev.Debug("Received successful Twilio phone verification response")
  74. }
  75. return nil
  76. }
  77. func (s *Server) checkVerifyPhone(v *visitor, r *http.Request, phoneNumber, code string) error {
  78. logvr(v, r).Tag(tagTwilio).Field("twilio_to", phoneNumber).Debug("Checking phone verification")
  79. data := url.Values{}
  80. data.Set("To", phoneNumber)
  81. data.Set("Code", code)
  82. requestURL := fmt.Sprintf("%s/v2/Services/%s/VerificationCheck", s.config.TwilioVerifyBaseURL, s.config.TwilioVerifyService)
  83. req, err := http.NewRequest(http.MethodPost, requestURL, strings.NewReader(data.Encode()))
  84. if err != nil {
  85. return err
  86. }
  87. req.Header.Set("Authorization", util.BasicAuth(s.config.TwilioAccount, s.config.TwilioAuthToken))
  88. req.Header.Add("Content-Type", "application/x-www-form-urlencoded")
  89. log.Fields(httpContext(req)).Field("http_body", data.Encode()).Info("Twilio call")
  90. ev := logvr(v, r).
  91. Tag(tagTwilio).
  92. Field("twilio_to", phoneNumber)
  93. resp, err := http.DefaultClient.Do(req)
  94. if err != nil {
  95. return err
  96. } else if resp.StatusCode != http.StatusOK {
  97. if ev.IsTrace() {
  98. response, err := io.ReadAll(resp.Body)
  99. if err != nil {
  100. return err
  101. }
  102. ev.Field("twilio_response", string(response))
  103. }
  104. ev.Warn("Twilio phone verification failed with status code %d", resp.StatusCode)
  105. if resp.StatusCode == http.StatusNotFound {
  106. return errHTTPGonePhoneVerificationExpired
  107. }
  108. return errHTTPInternalError
  109. }
  110. response, err := io.ReadAll(resp.Body)
  111. if err != nil {
  112. return err
  113. }
  114. if ev.IsTrace() {
  115. ev.Field("twilio_response", string(response)).Trace("Received successful Twilio phone verification response")
  116. } else if ev.IsDebug() {
  117. ev.Debug("Received successful Twilio phone verification response")
  118. }
  119. return nil
  120. }
  121. func (s *Server) twilioMessagingRequest(v *visitor, r *http.Request, m *message, msuccess, mfailure prometheus.Counter, endpoint, to, body string, data url.Values) {
  122. logContext := log.Context{
  123. "twilio_from": s.config.TwilioFromNumber,
  124. "twilio_to": to,
  125. }
  126. ev := logvrm(v, r, m).Tag(tagTwilio).Fields(logContext)
  127. if ev.IsTrace() {
  128. ev.Field("twilio_body", body).Trace("Sending Twilio request")
  129. } else if ev.IsDebug() {
  130. ev.Debug("Sending Twilio request")
  131. }
  132. response, err := s.performTwilioMessagingRequestInternal(endpoint, data)
  133. if err != nil {
  134. ev.
  135. Field("twilio_body", body).
  136. Field("twilio_response", response).
  137. Err(err).
  138. Warn("Error sending Twilio request")
  139. minc(mfailure)
  140. return
  141. }
  142. if ev.IsTrace() {
  143. ev.Field("twilio_response", response).Trace("Received successful Twilio response")
  144. } else if ev.IsDebug() {
  145. ev.Debug("Received successful Twilio response")
  146. }
  147. minc(msuccess)
  148. }
  149. func (s *Server) performTwilioMessagingRequestInternal(endpoint string, data url.Values) (string, error) {
  150. requestURL := fmt.Sprintf("%s/2010-04-01/Accounts/%s/%s", s.config.TwilioMessagingBaseURL, s.config.TwilioAccount, endpoint)
  151. req, err := http.NewRequest(http.MethodPost, requestURL, strings.NewReader(data.Encode()))
  152. if err != nil {
  153. return "", err
  154. }
  155. req.Header.Set("Authorization", util.BasicAuth(s.config.TwilioAccount, s.config.TwilioAuthToken))
  156. req.Header.Add("Content-Type", "application/x-www-form-urlencoded")
  157. resp, err := http.DefaultClient.Do(req)
  158. if err != nil {
  159. return "", err
  160. }
  161. response, err := io.ReadAll(resp.Body)
  162. if err != nil {
  163. return "", err
  164. }
  165. return string(response), nil
  166. }
  167. func (s *Server) messageFooter(u *user.User, m *message) string { // u may be nil!
  168. topicURL := s.config.BaseURL + "/" + m.Topic
  169. sender := m.Sender.String()
  170. if u != nil {
  171. sender = fmt.Sprintf("%s (%s)", u.Name, m.Sender)
  172. }
  173. return fmt.Sprintf(twilioMessageFooterFormat, sender, util.ShortTopicURL(topicURL))
  174. }
  175. func xmlEscapeText(text string) string {
  176. var buf bytes.Buffer
  177. _ = xml.EscapeText(&buf, []byte(text))
  178. return buf.String()
  179. }