proxy.go 4.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153
  1. // SPDX-FileCopyrightText: Copyright The Miniflux Authors. All rights reserved.
  2. // SPDX-License-Identifier: Apache-2.0
  3. package ui // import "miniflux.app/v2/internal/ui"
  4. import (
  5. "crypto/hmac"
  6. "crypto/sha256"
  7. "encoding/base64"
  8. "errors"
  9. "fmt"
  10. "log/slog"
  11. "net/http"
  12. "net/url"
  13. "time"
  14. "miniflux.app/v2/internal/config"
  15. "miniflux.app/v2/internal/crypto"
  16. "miniflux.app/v2/internal/http/request"
  17. "miniflux.app/v2/internal/http/response"
  18. "miniflux.app/v2/internal/http/response/html"
  19. )
  20. func (h *handler) mediaProxy(w http.ResponseWriter, r *http.Request) {
  21. // If we receive a "If-None-Match" header, we assume the media is already stored in browser cache.
  22. if r.Header.Get("If-None-Match") != "" {
  23. w.WriteHeader(http.StatusNotModified)
  24. return
  25. }
  26. encodedDigest := request.RouteStringParam(r, "encodedDigest")
  27. encodedURL := request.RouteStringParam(r, "encodedURL")
  28. if encodedURL == "" {
  29. html.BadRequest(w, r, errors.New("no URL provided"))
  30. return
  31. }
  32. decodedDigest, err := base64.URLEncoding.DecodeString(encodedDigest)
  33. if err != nil {
  34. html.BadRequest(w, r, errors.New("unable to decode this digest"))
  35. return
  36. }
  37. decodedURL, err := base64.URLEncoding.DecodeString(encodedURL)
  38. if err != nil {
  39. html.BadRequest(w, r, errors.New("unable to decode this URL"))
  40. return
  41. }
  42. mac := hmac.New(sha256.New, config.Opts.MediaProxyPrivateKey())
  43. mac.Write(decodedURL)
  44. expectedMAC := mac.Sum(nil)
  45. if !hmac.Equal(decodedDigest, expectedMAC) {
  46. html.Forbidden(w, r)
  47. return
  48. }
  49. u, err := url.Parse(string(decodedURL))
  50. if err != nil {
  51. html.BadRequest(w, r, errors.New("invalid URL provided"))
  52. return
  53. }
  54. if u.Scheme != "http" && u.Scheme != "https" {
  55. html.BadRequest(w, r, errors.New("invalid URL provided"))
  56. return
  57. }
  58. if u.Host == "" {
  59. html.BadRequest(w, r, errors.New("invalid URL provided"))
  60. return
  61. }
  62. if !u.IsAbs() {
  63. html.BadRequest(w, r, errors.New("invalid URL provided"))
  64. return
  65. }
  66. mediaURL := string(decodedURL)
  67. slog.Debug("MediaProxy: Fetching remote resource",
  68. slog.String("media_url", mediaURL),
  69. )
  70. req, err := http.NewRequest("GET", mediaURL, nil)
  71. if err != nil {
  72. html.ServerError(w, r, err)
  73. return
  74. }
  75. req.Header.Set("Connection", "close")
  76. forwardedRequestHeader := []string{"Range", "Accept", "Accept-Encoding", "User-Agent"}
  77. for _, requestHeaderName := range forwardedRequestHeader {
  78. if r.Header.Get(requestHeaderName) != "" {
  79. req.Header.Set(requestHeaderName, r.Header.Get(requestHeaderName))
  80. }
  81. }
  82. clt := &http.Client{
  83. Transport: &http.Transport{
  84. IdleConnTimeout: time.Duration(config.Opts.MediaProxyHTTPClientTimeout()) * time.Second,
  85. },
  86. Timeout: time.Duration(config.Opts.MediaProxyHTTPClientTimeout()) * time.Second,
  87. }
  88. resp, err := clt.Do(req)
  89. if err != nil {
  90. slog.Error("MediaProxy: Unable to initialize HTTP client",
  91. slog.String("media_url", mediaURL),
  92. slog.Any("error", err),
  93. )
  94. http.Error(w, http.StatusText(http.StatusInternalServerError), http.StatusInternalServerError)
  95. return
  96. }
  97. defer resp.Body.Close()
  98. if resp.StatusCode == http.StatusRequestedRangeNotSatisfiable {
  99. slog.Warn("MediaProxy: "+http.StatusText(http.StatusRequestedRangeNotSatisfiable),
  100. slog.String("media_url", mediaURL),
  101. slog.Int("status_code", resp.StatusCode),
  102. )
  103. html.RequestedRangeNotSatisfiable(w, r, resp.Header.Get("Content-Range"))
  104. return
  105. }
  106. if resp.StatusCode != http.StatusOK && resp.StatusCode != http.StatusPartialContent {
  107. slog.Warn("MediaProxy: Unexpected response status code",
  108. slog.String("media_url", mediaURL),
  109. slog.Int("status_code", resp.StatusCode),
  110. )
  111. // Forward the status code from the origin.
  112. http.Error(w, fmt.Sprintf("Origin status code is %d", resp.StatusCode), resp.StatusCode)
  113. return
  114. }
  115. etag := crypto.HashFromBytes(decodedURL)
  116. response.New(w, r).WithCaching(etag, 72*time.Hour, func(b *response.Builder) {
  117. b.WithStatus(resp.StatusCode)
  118. b.WithHeader("Content-Security-Policy", `default-src 'self'`)
  119. b.WithHeader("Content-Type", resp.Header.Get("Content-Type"))
  120. forwardedResponseHeader := []string{"Content-Encoding", "Content-Type", "Content-Length", "Accept-Ranges", "Content-Range"}
  121. for _, responseHeaderName := range forwardedResponseHeader {
  122. if resp.Header.Get(responseHeaderName) != "" {
  123. b.WithHeader(responseHeaderName, resp.Header.Get(responseHeaderName))
  124. }
  125. }
  126. b.WithBody(resp.Body)
  127. b.WithoutCompression()
  128. b.Write()
  129. })
  130. }