2020-03-11 09:46:42 +00:00
|
|
|
"""Onionr - Private P2P Communication.
|
|
|
|
|
|
|
|
LAN transport server thread
|
|
|
|
"""
|
2020-06-19 05:55:13 +00:00
|
|
|
import ipaddress
|
2020-06-19 06:08:39 +00:00
|
|
|
import time
|
2020-06-19 05:55:13 +00:00
|
|
|
from threading import Thread
|
|
|
|
|
2020-03-14 04:47:44 +00:00
|
|
|
from gevent.pywsgi import WSGIServer
|
|
|
|
from flask import Flask
|
2020-03-16 07:28:41 +00:00
|
|
|
from flask import Response
|
2020-03-20 08:51:08 +00:00
|
|
|
from flask import request
|
2020-04-06 13:51:20 +00:00
|
|
|
from flask import abort
|
2020-03-16 07:28:41 +00:00
|
|
|
|
2020-03-19 06:44:44 +00:00
|
|
|
from onionrblocks.onionrblockapi import Block
|
2020-03-16 07:28:41 +00:00
|
|
|
from httpapi.fdsafehandler import FDSafeHandler
|
|
|
|
from netcontroller import get_open_port
|
|
|
|
import config
|
|
|
|
from coredb.blockmetadb import get_block_list
|
2020-06-19 05:55:13 +00:00
|
|
|
from lan.getip import best_ip, lan_ips
|
2020-03-19 06:44:44 +00:00
|
|
|
from onionrutils import stringvalidators
|
2020-03-20 08:51:08 +00:00
|
|
|
from httpapi.miscpublicapi.upload import accept_upload
|
2020-04-06 13:51:20 +00:00
|
|
|
import logger
|
2020-06-19 05:55:13 +00:00
|
|
|
from utils.bettersleep import better_sleep
|
2020-03-11 09:46:42 +00:00
|
|
|
"""
|
|
|
|
This program is free software: you can redistribute it and/or modify
|
|
|
|
it under the terms of the GNU General Public License as published by
|
|
|
|
the Free Software Foundation, either version 3 of the License, or
|
|
|
|
(at your option) any later version.
|
|
|
|
|
|
|
|
This program is distributed in the hope that it will be useful,
|
|
|
|
but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
GNU General Public License for more details.
|
|
|
|
|
|
|
|
You should have received a copy of the GNU General Public License
|
|
|
|
along with this program. If not, see <https://www.gnu.org/licenses/>.
|
|
|
|
"""
|
2020-06-19 05:55:13 +00:00
|
|
|
ports = range(1337, 1340)
|
2020-06-19 06:08:39 +00:00
|
|
|
_start_time = time.time()
|
2020-03-14 04:47:44 +00:00
|
|
|
|
2020-08-26 08:25:43 +00:00
|
|
|
|
2020-03-14 04:47:44 +00:00
|
|
|
class LANServer:
|
|
|
|
def __init__(self, shared_state):
|
|
|
|
app = Flask(__name__)
|
|
|
|
self.app = app
|
2020-03-16 07:28:41 +00:00
|
|
|
self.host = config.get('lan.bind_ip', '')
|
|
|
|
self.server = None
|
|
|
|
if self.host == '':
|
|
|
|
self.host = best_ip
|
|
|
|
self.port = None
|
|
|
|
|
2020-04-06 13:51:20 +00:00
|
|
|
@app.before_request
|
|
|
|
def dns_rebinding_prevention():
|
2020-08-26 08:25:43 +00:00
|
|
|
if request.remote_addr in lan_ips or \
|
|
|
|
ipaddress.ip_address(request.remote_addr).is_loopback:
|
2020-06-21 19:23:46 +00:00
|
|
|
if time.time() - _start_time > 600:
|
2020-06-19 06:08:39 +00:00
|
|
|
abort(403)
|
2020-04-06 13:51:20 +00:00
|
|
|
if request.host != f'{self.host}:{self.port}':
|
|
|
|
logger.warn('Potential DNS rebinding attack on LAN server:')
|
2020-08-26 08:25:43 +00:00
|
|
|
logger.warn(
|
|
|
|
f'Hostname {request.host} was used instead of {self.host}:{self.port}') # noqa
|
2020-04-06 13:51:20 +00:00
|
|
|
abort(403)
|
|
|
|
|
2020-03-16 07:28:41 +00:00
|
|
|
@app.route('/blist/<time>')
|
|
|
|
def get_block_list_for_lan(time):
|
2020-08-21 01:03:11 +00:00
|
|
|
return Response('\n'.join(get_block_list(date_rec=time)))
|
2020-03-19 06:44:44 +00:00
|
|
|
|
|
|
|
@app.route('/get/<block>')
|
|
|
|
def get_block_data(block):
|
|
|
|
if not stringvalidators.validate_hash(block):
|
|
|
|
raise ValueError
|
2020-03-20 08:51:08 +00:00
|
|
|
return Response(
|
|
|
|
Block(block).raw, mimetype='application/octet-stream')
|
2020-03-14 04:47:44 +00:00
|
|
|
|
2020-03-16 07:28:41 +00:00
|
|
|
@app.route("/ping")
|
2020-03-14 04:47:44 +00:00
|
|
|
def ping():
|
2020-04-06 13:51:20 +00:00
|
|
|
return Response("onionr!")
|
2020-03-16 07:28:41 +00:00
|
|
|
|
2020-03-20 08:51:08 +00:00
|
|
|
@app.route('/upload', methods=['POST'])
|
|
|
|
def upload_endpoint():
|
|
|
|
return accept_upload(request)
|
|
|
|
|
2020-03-16 07:28:41 +00:00
|
|
|
def start_server(self):
|
2020-06-19 05:55:13 +00:00
|
|
|
def _show_lan_bind(port):
|
|
|
|
better_sleep(1)
|
|
|
|
if self.server.started and port == self.server.server_port:
|
2020-08-26 08:25:43 +00:00
|
|
|
logger.info(
|
|
|
|
f'Serving to LAN on {self.host}:{self.port}',
|
|
|
|
terminal=True)
|
2020-06-26 04:44:39 +00:00
|
|
|
if self.host == "":
|
2020-08-26 08:25:43 +00:00
|
|
|
logger.info(
|
|
|
|
"Not binding to LAN due to no private network configured.",
|
|
|
|
terminal=True)
|
2020-06-26 04:44:39 +00:00
|
|
|
return
|
2020-06-19 05:55:13 +00:00
|
|
|
for i in ports:
|
|
|
|
self.server = WSGIServer((self.host, i),
|
2020-08-26 08:25:43 +00:00
|
|
|
self.app, log=None,
|
|
|
|
handler_class=FDSafeHandler)
|
2020-06-19 05:55:13 +00:00
|
|
|
self.port = self.server.server_port
|
|
|
|
try:
|
|
|
|
Thread(target=_show_lan_bind, args=[i], daemon=True).start()
|
|
|
|
self.server.serve_forever()
|
|
|
|
except OSError:
|
|
|
|
pass
|
|
|
|
else:
|
|
|
|
break
|
|
|
|
else:
|
2020-08-26 08:25:43 +00:00
|
|
|
logger.warn("Could not bind to any LAN ports " +
|
|
|
|
str(min(ports)) + "-" + str(max(ports)), terminal=True)
|
2020-06-19 05:55:13 +00:00
|
|
|
return
|