*** empty log message ***
[citadel.git] / webcit / groupdav_main.c
1 /*
2  * $Id$
3  *
4  * Entry point for GroupDAV functions
5  *
6  */
7
8 #include <ctype.h>
9 #include <stdlib.h>
10 #include <unistd.h>
11 #include <stdio.h>
12 #include <fcntl.h>
13 #include <signal.h>
14 #include <sys/types.h>
15 #include <sys/wait.h>
16 #include <sys/socket.h>
17 #include <limits.h>
18 #include <string.h>
19 #include <pwd.h>
20 #include <errno.h>
21 #include <stdarg.h>
22 #include <time.h>
23 #include <pthread.h>
24 #include "webcit.h"
25 #include "webserver.h"
26 #include "groupdav.h"
27
28
29 /*
30  * Output HTTP headers which are common to all requests.
31  *
32  * Please observe that we don't use the usual output_headers()
33  * and wDumpContent() functions in the GroupDAV subsystem, so we
34  * do our own header stuff here.
35  *
36  */
37 void groupdav_common_headers(void) {
38         wprintf(
39                 "Server: %s / %s\r\n"
40                 "Connection: close\r\n",
41                 SERVER, serv_info.serv_software
42         );
43 }
44
45
46
47 /*
48  * string conversion function
49  */
50 void euid_escapize(char *target, char *source) {
51         int i;
52         int target_length = 0;
53
54         strcpy(target, "");
55         for (i=0; i<strlen(source); ++i) {
56                 if (isalnum(source[i])) {
57                         target[target_length] = source[i];
58                         target[++target_length] = 0;
59                 }
60                 else if (source[i] == ' ') {
61                         target[target_length] = '_';
62                         target[++target_length] = 0;
63                 }
64                 else if (source[i] == '-') {
65                         target[target_length] = '-';
66                         target[++target_length] = 0;
67                 }
68                 else {
69                         sprintf(&target[target_length], "%%%02X", source[i]);
70                         target_length += 3;
71                 }
72         }
73 }
74
75 /*
76  * string conversion function
77  */
78 void euid_unescapize(char *target, char *source) {
79         int a, b;
80         char hex[3];
81         int target_length = 0;
82
83         strcpy(target, "");
84
85         for (a = 0; a < strlen(source); ++a) {
86                 if (source[a] == '%') {
87                         hex[0] = source[a + 1];
88                         hex[1] = source[a + 2];
89                         hex[2] = 0;
90                         b = 0;
91                         sscanf(hex, "%02x", &b);
92                         target[target_length] = b;
93                         target[++target_length] = 0;
94                         a += 2;
95                 }
96                 else if (source[a] == '_') {
97                         target[target_length] = ' ';
98                         target[++target_length] = 0;
99                 }
100                 else if (source[a] == '-') {
101                         target[target_length] = '-';
102                         target[++target_length] = 0;
103                 }
104                 else {
105                         target[target_length] = source[a];
106                         target[++target_length] = 0;
107                 }
108         }
109 }
110
111
112
113
114 /*
115  * Main entry point for GroupDAV requests
116  */
117 void groupdav_main(struct httprequest *req,
118                         char *dav_content_type,
119                         int dav_content_length,
120                         char *dav_content
121 ) {
122         struct httprequest *rptr;
123         char dav_method[SIZ];
124         char dav_pathname[SIZ];
125         char dav_ifmatch[SIZ];
126         char *ds;
127         int i;
128
129         strcpy(dav_method, "");
130         strcpy(dav_pathname, "");
131         strcpy(dav_ifmatch, "");
132
133         for (rptr=req; rptr!=NULL; rptr=rptr->next) {
134                 /* lprintf(9, "< %s\n", rptr->line); */
135                 if (!strncasecmp(rptr->line, "Host: ", 6)) {
136                         safestrncpy(WC->http_host, &rptr->line[6],
137                                 sizeof WC->http_host);
138                 }
139                 if (!strncasecmp(rptr->line, "If-Match: ", 10)) {
140                         safestrncpy(dav_ifmatch, &rptr->line[10],
141                                 sizeof dav_ifmatch);
142                 }
143         }
144
145         if (!WC->logged_in) {
146                 wprintf("HTTP/1.1 401 Unauthorized\r\n");
147                 groupdav_common_headers();
148                 wprintf("WWW-Authenticate: Basic realm=\"%s\"\r\n",
149                         serv_info.serv_humannode);
150                 wprintf("Content-Length: 0\r\n\r\n");
151                 return;
152         }
153
154         extract_token(dav_method, req->line, 0, ' ', sizeof dav_method);
155         extract_token(dav_pathname, req->line, 1, ' ', sizeof dav_pathname);
156         unescape_input(dav_pathname);
157         
158         /* Remove any stray double-slashes in pathname */
159         while (ds=strstr(dav_pathname, "//"), ds != NULL) {
160                 strcpy(ds, ds+1);
161         }
162
163         /*
164          * If there's an If-Match: header, strip out the quotes if present, and
165          * then if all that's left is an asterisk, make it go away entirely.
166          */
167         if (strlen(dav_ifmatch) > 0) {
168                 striplt(dav_ifmatch);
169                 if (dav_ifmatch[0] == '\"') {
170                         strcpy(dav_ifmatch, &dav_ifmatch[1]);
171                         for (i=0; i<strlen(dav_ifmatch); ++i) {
172                                 if (dav_ifmatch[i] == '\"') {
173                                         dav_ifmatch[i] = 0;
174                                 }
175                         }
176                 }
177                 if (!strcmp(dav_ifmatch, "*")) {
178                         strcpy(dav_ifmatch, "");
179                 }
180         }
181
182         /*
183          * The PROPFIND method is basically used to list all objects in a
184          * room, or to list all relevant rooms on the server.
185          */
186         if (!strcasecmp(dav_method, "PROPFIND")) {
187                 groupdav_propfind(dav_pathname);
188                 return;
189         }
190
191         /*
192          * The GET method is used for fetching individual items.
193          */
194         if (!strcasecmp(dav_method, "GET")) {
195                 groupdav_get(dav_pathname);
196                 return;
197         }
198
199         /*
200          * The PUT method is used to add or modify items.
201          */
202         if (!strcasecmp(dav_method, "PUT")) {
203                 groupdav_put(dav_pathname, dav_ifmatch,
204                                 dav_content_type, dav_content);
205                 return;
206         }
207
208         /*
209          * The DELETE method kills, maims, and destroys.
210          */
211         if (!strcasecmp(dav_method, "DELETE")) {
212                 groupdav_delete(dav_pathname, dav_ifmatch);
213                 return;
214         }
215
216         /*
217          * Couldn't find what we were looking for.  Die in a car fire.
218          */
219         wprintf("HTTP/1.1 501 Method not implemented\r\n");
220         groupdav_common_headers();
221         wprintf("Content-Type: text/plain\r\n"
222                 "\r\n"
223                 "GroupDAV method \"%s\" is not implemented.\r\n",
224                 dav_method
225         );
226 }