2 * uhttpd - Tiny single-threaded httpd
4 * Copyright (C) 2010-2013 Jo-Philipp Wich <xm@subsignal.org>
5 * Copyright (C) 2013 Felix Fietkau <nbd@openwrt.org>
7 * Permission to use, copy, modify, and/or distribute this software for any
8 * purpose with or without fee is hereby granted, provided that the above
9 * copyright notice and this permission notice appear in all copies.
11 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
12 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
13 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
14 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
15 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
16 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
17 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
22 #define _XOPEN_SOURCE 700
23 #include <sys/types.h>
24 #include <sys/socket.h>
25 #include <netinet/in.h>
32 #include <libubox/usock.h>
39 static int run_server(void)
43 uh_plugin_post_init();
49 static void uh_config_parse(void)
51 const char *path = conf.file;
59 path = "/etc/httpd.conf";
65 memset(line, 0, sizeof(line));
67 while (fgets(line, sizeof(line) - 1, c)) {
68 if ((line[0] == '/') && (strchr(line, ':') != NULL)) {
69 if (!(col1 = strchr(line, ':')) || (*col1++ = 0) ||
70 !(col2 = strchr(col1, ':')) || (*col2++ = 0) ||
71 !(eol = strchr(col2, '\n')) || (*eol++ = 0))
74 uh_auth_add(line, col1, col2);
75 } else if (!strncmp(line, "I:", 2)) {
76 if (!(col1 = strchr(line, ':')) || (*col1++ = 0) ||
77 !(eol = strchr(col1, '\n')) || (*eol++ = 0))
80 uh_index_add(strdup(col1));
81 } else if (!strncmp(line, "E404:", 5)) {
82 if (!(col1 = strchr(line, ':')) || (*col1++ = 0) ||
83 !(eol = strchr(col1, '\n')) || (*eol++ = 0))
86 conf.error_handler = strdup(col1);
88 else if ((line[0] == '*') && (strchr(line, ':') != NULL)) {
89 if (!(col1 = strchr(line, '*')) || (*col1++ = 0) ||
90 !(col2 = strchr(col1, ':')) || (*col2++ = 0) ||
91 !(eol = strchr(col2, '\n')) || (*eol++ = 0))
94 uh_interpreter_add(col1, col2);
101 static int add_listener_arg(char *arg, bool tls)
108 s = strrchr(arg, ':');
115 if (host && *host == '[') {
123 return uh_socket_bind(host, port, tls);
126 static int usage(const char *name)
129 "Usage: %s -p [addr:]port -h docroot\n"
130 " -f Do not fork to background\n"
131 " -c file Configuration file, default is '/etc/httpd.conf'\n"
132 " -p [addr:]port Bind to specified address and port, multiple allowed\n"
134 " -s [addr:]port Like -p but provide HTTPS on this port\n"
135 " -C file ASN.1 server certificate file\n"
136 " -K file ASN.1 server private key file\n"
137 " -q Redirect all HTTP requests to HTTPS\n"
139 " -h directory Specify the document root, default is '.'\n"
140 " -E string Use given virtual URL as 404 error handler\n"
141 " -I string Use given filename as index for directories, multiple allowed\n"
142 " -S Do not follow symbolic links outside of the docroot\n"
143 " -D Do not allow directory listings, send 403 instead\n"
144 " -R Enable RFC1918 filter\n"
145 " -n count Maximum allowed number of concurrent script requests\n"
146 " -N count Maximum allowed number of concurrent connections\n"
148 " -l string URL prefix for Lua handler, default is '/lua'\n"
149 " -L file Lua handler script, omit to disable Lua\n"
152 " -u string URL prefix for UBUS via JSON-RPC handler\n"
153 " -U file Override ubus socket path\n"
154 " -a Do not authenticate JSON-RPC requests against UBUS session api\n"
155 " -X Enable CORS HTTP headers on JSON-RPC api\n"
157 " -x string URL prefix for CGI handler, default is '/cgi-bin'\n"
158 " -y alias[=path] URL alias handle\n"
159 " -i .ext=path Use interpreter at path for files with the given extension\n"
160 " -t seconds CGI, Lua and UBUS script timeout in seconds, default is 60\n"
161 " -T seconds Network timeout in seconds, default is 30\n"
162 " -k seconds HTTP keepalive timeout\n"
163 " -d string URL decode given string\n"
164 " -r string Specify basic auth realm\n"
165 " -m string MD5 crypt given string\n"
171 static void init_defaults_pre(void)
173 conf.script_timeout = 60;
174 conf.network_timeout = 30;
175 conf.http_keepalive = 20;
176 conf.max_script_requests = 3;
177 conf.max_connections = 100;
178 conf.realm = "Protected Area";
179 conf.cgi_prefix = "/cgi-bin";
180 conf.cgi_path = "/sbin:/usr/sbin:/bin:/usr/bin";
181 INIT_LIST_HEAD(&conf.cgi_alias);
184 static void init_defaults_post(void)
186 uh_index_add("index.html");
187 uh_index_add("index.htm");
188 uh_index_add("default.html");
189 uh_index_add("default.htm");
191 if (conf.cgi_prefix) {
192 char *str = malloc(strlen(conf.docroot) + strlen(conf.cgi_prefix) + 1);
194 strcpy(str, conf.docroot);
195 strcat(str, conf.cgi_prefix);
196 conf.cgi_docroot_path = str;
197 conf.cgi_prefix_len = strlen(conf.cgi_prefix);
201 static void fixup_prefix(char *str)
208 len = strlen(str) - 1;
210 while (len >= 0 && str[len] == '/')
216 int main(int argc, char **argv)
226 const char *tls_key = NULL, *tls_crt = NULL;
229 BUILD_BUG_ON(sizeof(uh_buf) < PATH_MAX);
231 uh_dispatch_add(&cgi_dispatch);
233 signal(SIGPIPE, SIG_IGN);
235 while ((ch = getopt(argc, argv, "A:aC:c:Dd:E:fh:H:I:i:K:k:L:l:m:N:n:p:qRr:Ss:T:t:U:u:Xx:y:")) != -1) {
247 conf.tls_redirect = 1;
258 fprintf(stderr, "uhttpd: TLS support not compiled, "
259 "ignoring -%c\n", ch);
263 optarg = strdup(optarg);
264 bound += add_listener_arg(optarg, (ch == 's'));
268 if (!realpath(optarg, uh_buf)) {
269 fprintf(stderr, "Error: Invalid directory %s: %s\n",
270 optarg, strerror(errno));
273 conf.docroot = strdup(uh_buf);
277 if (uh_handler_add(optarg)) {
278 fprintf(stderr, "Error: Failed to load handler script %s\n",
285 if (optarg[0] != '/') {
286 fprintf(stderr, "Error: Invalid error handler: %s\n",
290 conf.error_handler = optarg;
294 if (optarg[0] == '/') {
295 fprintf(stderr, "Error: Invalid index page: %s\n",
299 uh_index_add(optarg);
303 conf.no_symlinks = 1;
307 conf.no_dirlists = 1;
311 conf.rfc1918_filter = 1;
315 conf.max_script_requests = atoi(optarg);
319 conf.max_connections = atoi(optarg);
323 fixup_prefix(optarg);
324 conf.cgi_prefix = optarg;
328 alias = calloc(1, sizeof(*alias));
330 fprintf(stderr, "Error: failed to allocate alias\n");
333 alias->alias = strdup(optarg);
334 alias->path = strchr(alias->alias, '=');
337 list_add(&alias->list, &conf.cgi_alias);
341 optarg = strdup(optarg);
342 port = strchr(optarg, '=');
343 if (optarg[0] != '.' || !port) {
344 fprintf(stderr, "Error: Invalid interpreter: %s\n",
350 uh_interpreter_add(optarg, port);
354 conf.script_timeout = atoi(optarg);
358 conf.network_timeout = atoi(optarg);
362 conf.http_keepalive = atoi(optarg);
366 conf.tcp_keepalive = atoi(optarg);
374 optarg = strdup(optarg);
375 port = alloca(strlen(optarg) + 1);
379 /* "decode" plus to space to retain compat */
380 for (opt = 0; optarg[opt]; opt++)
381 if (optarg[opt] == '+')
384 /* opt now contains strlen(optarg) -- no need to re-scan */
385 if (uh_urldecode(port, opt, optarg, opt) < 0) {
386 fprintf(stderr, "uhttpd: invalid encoding\n");
394 /* basic auth realm */
401 printf("%s\n", crypt(optarg, "$1$"));
412 conf.lua_prefix = optarg;
416 conf.lua_handler = optarg;
421 fprintf(stderr, "uhttpd: Lua support not compiled, "
422 "ignoring -%c\n", ch);
427 conf.ubus_noauth = 1;
431 conf.ubus_prefix = optarg;
435 conf.ubus_socket = optarg;
446 fprintf(stderr, "uhttpd: UBUS support not compiled, "
447 "ignoring -%c\n", ch);
451 return usage(argv[0]);
458 if (!realpath(".", uh_buf)) {
459 fprintf(stderr, "Error: Unable to determine work dir\n");
462 conf.docroot = strdup(uh_buf);
465 init_defaults_post();
468 fprintf(stderr, "Error: No sockets bound, unable to continue\n");
474 if (!tls_crt || !tls_key) {
475 fprintf(stderr, "Please specify a certificate and "
476 "a key file to enable SSL support\n");
480 if (uh_tls_init(tls_key, tls_crt))
486 if (conf.lua_handler || conf.lua_prefix) {
487 if (!conf.lua_handler || !conf.lua_prefix) {
488 fprintf(stderr, "Need handler and prefix to enable Lua support\n");
491 if (uh_plugin_init("uhttpd_lua.so"))
496 if (conf.ubus_prefix && uh_plugin_init("uhttpd_ubus.so"))
500 /* fork (if not disabled) */
512 cur_fd = open("/dev/null", O_WRONLY);