uhttpd: move Lua and TLS support into loadable plugins
[project/luci.git] / contrib / package / uhttpd / src / uhttpd.c
1 /*
2  * uhttpd - Tiny single-threaded httpd - Main component
3  *
4  *   Copyright (C) 2010 Jo-Philipp Wich <xm@subsignal.org>
5  *
6  *  Licensed under the Apache License, Version 2.0 (the "License");
7  *  you may not use this file except in compliance with the License.
8  *  You may obtain a copy of the License at
9  *
10  *      http://www.apache.org/licenses/LICENSE-2.0
11  *
12  *  Unless required by applicable law or agreed to in writing, software
13  *  distributed under the License is distributed on an "AS IS" BASIS,
14  *  WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
15  *  See the License for the specific language governing permissions and
16  *  limitations under the License.
17  */
18
19 #define _XOPEN_SOURCE 500       /* crypt() */
20
21 #include "uhttpd.h"
22 #include "uhttpd-utils.h"
23 #include "uhttpd-file.h"
24
25 #ifdef HAVE_CGI
26 #include "uhttpd-cgi.h"
27 #endif
28
29 #ifdef HAVE_LUA
30 #include "uhttpd-lua.h"
31 #endif
32
33 #ifdef HAVE_TLS
34 #include "uhttpd-tls.h"
35 #endif
36
37
38 static int run = 1;
39
40 static void uh_sigterm(int sig)
41 {
42         run = 0;
43 }
44
45 static void uh_config_parse(const char *path)
46 {
47         FILE *c;
48         char line[512];
49         char *user = NULL;
50         char *pass = NULL;
51         char *eol  = NULL;
52
53         if( (c = fopen(path ? path : "/etc/httpd.conf", "r")) != NULL )
54         {
55                 memset(line, 0, sizeof(line));
56
57                 while( fgets(line, sizeof(line) - 1, c) )
58                 {
59                         if( (line[0] == '/') && (strchr(line, ':') != NULL) )
60                         {
61                                 if( !(user = strchr(line, ':')) || (*user++ = 0) ||
62                                     !(pass = strchr(user, ':')) || (*pass++ = 0) ||
63                                         !(eol = strchr(pass, '\n')) || (*eol++  = 0) )
64                                                 continue;
65
66                                 if( !uh_auth_add(line, user, pass) )
67                                 {
68                                         fprintf(stderr,
69                                                 "Can not manage more than %i basic auth realms, "
70                                                 "will skip the rest\n", UH_LIMIT_AUTHREALMS
71                                         );
72
73                                         break;
74                                 } 
75                         }
76                 }
77
78                 fclose(c);
79         }
80 }
81
82 static int uh_socket_bind(
83         fd_set *serv_fds, int *max_fd, const char *host, const char *port,
84         struct addrinfo *hints, int do_tls, struct config *conf
85 ) {
86         int sock = -1;
87         int yes = 1;
88         int status;
89         int bound = 0;
90
91         struct listener *l = NULL;
92         struct addrinfo *addrs = NULL, *p = NULL;
93
94         if( (status = getaddrinfo(host, port, hints, &addrs)) != 0 )
95         {
96                 fprintf(stderr, "getaddrinfo(): %s\n", gai_strerror(status));
97         }
98
99         /* try to bind a new socket to each found address */
100         for( p = addrs; p; p = p->ai_next )
101         {
102                 /* get the socket */
103                 if( (sock = socket(p->ai_family, p->ai_socktype, p->ai_protocol)) == -1 )
104                 {
105                         perror("socket()");
106                         goto error;
107                 }
108
109                 /* "address already in use" */
110                 if( setsockopt(sock, SOL_SOCKET, SO_REUSEADDR, &yes, sizeof(yes)) == -1 )
111                 {
112                         perror("setsockopt()");
113                         goto error;
114                 }
115
116                 /* required to get parallel v4 + v6 working */
117                 if( p->ai_family == AF_INET6 )
118                 {
119                         if( setsockopt(sock, IPPROTO_IPV6, IPV6_V6ONLY, &yes, sizeof(yes)) == -1 )
120                         {
121                                 perror("setsockopt()");
122                                 goto error;
123                         }
124                 }
125
126                 /* bind */
127                 if( bind(sock, p->ai_addr, p->ai_addrlen) == -1 )
128                 {
129                         perror("bind()");
130                         goto error;
131                 }
132
133                 /* listen */
134                 if( listen(sock, UH_LIMIT_CLIENTS) == -1 )
135                 {
136                         perror("listen()");
137                         goto error;
138                 }
139
140                 /* add listener to global list */
141                 if( ! (l = uh_listener_add(sock, conf)) )
142                 {
143                         fprintf(stderr,
144                                 "uh_listener_add(): Can not create more than "
145                                 "%i listen sockets\n", UH_LIMIT_LISTENERS
146                         );
147
148                         goto error;
149                 }
150
151 #ifdef HAVE_TLS
152                 /* init TLS */
153                 l->tls = do_tls ? conf->tls : NULL;
154 #endif
155
156                 /* add socket to server fd set */
157                 FD_SET(sock, serv_fds);
158                 *max_fd = max(*max_fd, sock);
159
160                 bound++;
161                 continue;
162
163                 error:
164                 if( sock > 0 )
165                         close(sock);
166         }
167
168         freeaddrinfo(addrs);
169
170         return bound;
171 }
172
173 static struct http_request * uh_http_header_parse(struct client *cl, char *buffer, int buflen)
174 {
175         char *method  = &buffer[0];
176         char *path    = NULL;
177         char *version = NULL;
178
179         char *headers = NULL;
180         char *hdrname = NULL;
181         char *hdrdata = NULL;
182
183         int i;
184         int hdrcount = 0;
185
186         static struct http_request req;
187
188         memset(&req, 0, sizeof(req));
189
190
191         /* terminate initial header line */
192         if( (headers = strfind(buffer, buflen, "\r\n", 2)) != NULL )
193         {
194                 buffer[buflen-1] = 0;
195
196                 *headers++ = 0;
197                 *headers++ = 0;
198
199                 /* find request path */
200                 if( (path = strchr(buffer, ' ')) != NULL )
201                         *path++ = 0;
202
203                 /* find http version */
204                 if( (path != NULL) && ((version = strchr(path, ' ')) != NULL) )
205                         *version++ = 0;
206
207
208                 /* check method */
209                 if( strcmp(method, "GET") && strcmp(method, "HEAD") && strcmp(method, "POST") )
210                 {
211                         /* invalid method */
212                         uh_http_response(cl, 405, "Method Not Allowed");
213                         return NULL;
214                 }
215                 else
216                 {
217                         switch(method[0])
218                         {
219                                 case 'G':
220                                         req.method = UH_HTTP_MSG_GET;
221                                         break;
222
223                                 case 'H':
224                                         req.method = UH_HTTP_MSG_HEAD;
225                                         break;
226
227                                 case 'P':
228                                         req.method = UH_HTTP_MSG_POST;
229                                         break;
230                         }
231                 }
232
233                 /* check path */
234                 if( !path || !strlen(path) )
235                 {
236                         /* malformed request */
237                         uh_http_response(cl, 400, "Bad Request");
238                         return NULL;
239                 }
240                 else
241                 {
242                         req.url = path;
243                 }
244
245                 /* check version */
246                 if( strcmp(version, "HTTP/0.9") && strcmp(version, "HTTP/1.0") && strcmp(version, "HTTP/1.1") )
247                 {
248                         /* unsupported version */
249                         uh_http_response(cl, 400, "Bad Request");
250                         return NULL;
251                 }
252                 else
253                 {
254                         req.version = strtof(&version[5], NULL);
255                 }
256
257
258                 /* process header fields */
259                 for( i = (int)(headers - buffer); i < buflen; i++ )
260                 {
261                         /* found eol and have name + value, push out header tuple */
262                         if( hdrname && hdrdata && (buffer[i] == '\r' || buffer[i] == '\n') )
263                         {
264                                 buffer[i] = 0;
265
266                                 /* store */
267                                 if( (hdrcount + 1) < array_size(req.headers) )
268                                 {
269                                         req.headers[hdrcount++] = hdrname;
270                                         req.headers[hdrcount++] = hdrdata;
271
272                                         hdrname = hdrdata = NULL;
273                                 }
274
275                                 /* too large */
276                                 else
277                                 {
278                                         uh_http_response(cl, 413, "Request Entity Too Large");
279                                         return NULL;
280                                 }
281                         }
282
283                         /* have name but no value and found a colon, start of value */
284                         else if( hdrname && !hdrdata && ((i+2) < buflen) &&
285                                 (buffer[i] == ':') && (buffer[i+1] == ' ')
286                         ) {
287                                 buffer[i] = 0;
288                                 hdrdata = &buffer[i+2];
289                         }
290
291                         /* have no name and found [A-Z], start of name */
292                         else if( !hdrname && isalpha(buffer[i]) && isupper(buffer[i]) )
293                         {
294                                 hdrname = &buffer[i];
295                         }
296                 }
297
298                 /* valid enough */
299                 return &req;
300         }
301
302         /* Malformed request */
303         uh_http_response(cl, 400, "Bad Request");
304         return NULL;
305 }
306
307
308 static struct http_request * uh_http_header_recv(struct client *cl)
309 {
310         static char buffer[UH_LIMIT_MSGHEAD];
311         char *bufptr = &buffer[0];
312         char *idxptr = NULL;
313
314         struct timeval timeout;
315
316         fd_set reader;
317
318         ssize_t blen = sizeof(buffer)-1;
319         ssize_t rlen = 0;
320
321
322         memset(buffer, 0, sizeof(buffer));
323
324         while( blen > 0 )
325         {
326                 FD_ZERO(&reader);
327                 FD_SET(cl->socket, &reader);
328
329                 /* fail after 0.1s */
330                 timeout.tv_sec  = 0;
331                 timeout.tv_usec = 100000;
332
333                 /* check whether fd is readable */
334                 if( select(cl->socket + 1, &reader, NULL, NULL, &timeout) > 0 )
335                 {
336                         /* receive data */
337                         rlen = uh_tcp_peek(cl, bufptr, blen);
338
339                         if( rlen > 0 )
340                         {
341                                 if( (idxptr = strfind(buffer, sizeof(buffer), "\r\n\r\n", 4)) )
342                                 {
343                                         blen -= uh_tcp_recv(cl, bufptr, (int)(idxptr - bufptr) + 4);
344
345                                         /* header read complete ... */
346                                         return uh_http_header_parse(cl, buffer, sizeof(buffer) - blen - 1);
347                                 }
348                                 else
349                                 {
350                                         rlen = uh_tcp_recv(cl, bufptr, rlen);
351                                         blen -= rlen;
352                                         bufptr += rlen;
353                                 }
354                         }
355                         else
356                         {
357                                 /* invalid request (unexpected eof/timeout) */
358                                 uh_http_response(cl, 408, "Request Timeout");
359                                 return NULL;
360                         }
361                 }
362                 else
363                 {
364                         /* invalid request (unexpected eof/timeout) */
365                         uh_http_response(cl, 408, "Request Timeout");
366                         return NULL;
367                 }
368         }
369
370         /* request entity too large */
371         uh_http_response(cl, 413, "Request Entity Too Large");
372         return NULL;
373 }
374
375 static int uh_path_match(const char *prefix, const char *url)
376 {
377         if( (strstr(url, prefix) == url) &&
378             ((prefix[strlen(prefix)-1] == '/') ||
379                  (strlen(url) == strlen(prefix))   ||
380                  (url[strlen(prefix)] == '/'))
381         ) {
382                 return 1;
383         }
384
385         return 0;
386 }
387
388
389 int main (int argc, char **argv)
390 {
391 #ifdef HAVE_LUA
392         /* Lua runtime */
393         lua_State *L = NULL;
394 #endif
395
396         /* master file descriptor list */
397         fd_set used_fds, serv_fds, read_fds;
398
399         /* working structs */
400         struct addrinfo hints;
401         struct http_request *req;
402         struct path_info *pin;
403         struct client *cl;
404         struct sigaction sa;
405         struct config conf;
406
407         /* maximum file descriptor number */
408         int new_fd, cur_fd, max_fd = 0;
409
410         int tls = 0;
411         int keys = 0;
412         int bound = 0;
413         int nofork = 0;
414
415         /* args */
416         char opt;
417         char bind[128];
418         char *port = NULL;
419
420         /* library handles */
421         void *tls_lib;
422         void *lua_lib;
423
424         /* clear the master and temp sets */
425         FD_ZERO(&used_fds);
426         FD_ZERO(&serv_fds);
427         FD_ZERO(&read_fds);
428
429         /* handle SIGPIPE, SIGCHILD */
430         sa.sa_flags = 0;
431         sigemptyset(&sa.sa_mask);
432
433         sa.sa_handler = SIG_IGN;
434         sigaction(SIGPIPE, &sa, NULL);
435         sigaction(SIGCHLD, &sa, NULL);
436
437         sa.sa_handler = uh_sigterm;
438         sigaction(SIGINT,  &sa, NULL);
439         sigaction(SIGTERM, &sa, NULL);
440
441         /* prepare addrinfo hints */
442         memset(&hints, 0, sizeof(hints));
443         hints.ai_family   = AF_UNSPEC;
444         hints.ai_socktype = SOCK_STREAM;
445         hints.ai_flags    = AI_PASSIVE;
446
447         /* parse args */
448         memset(&conf, 0, sizeof(conf));
449         memset(bind, 0, sizeof(bind));
450
451 #ifdef HAVE_TLS
452         /* load TLS plugin */
453         if( ! (tls_lib = dlopen("uhttpd_tls.so", RTLD_LAZY | RTLD_GLOBAL)) )
454         {
455                 fprintf(stderr,
456                         "Notice: Unable to load TLS plugin - disabling SSL support! "
457                         "(Reason: %s)\n", dlerror()
458                 );
459         }
460         else
461         {
462                 /* resolve functions */
463                 if( !(conf.tls_init   = dlsym(tls_lib, "uh_tls_ctx_init"))      ||
464                     !(conf.tls_cert   = dlsym(tls_lib, "uh_tls_ctx_cert"))      ||
465                     !(conf.tls_key    = dlsym(tls_lib, "uh_tls_ctx_key"))       ||
466                     !(conf.tls_free   = dlsym(tls_lib, "uh_tls_ctx_free"))      ||
467                         !(conf.tls_accept = dlsym(tls_lib, "uh_tls_client_accept")) ||
468                         !(conf.tls_close  = dlsym(tls_lib, "uh_tls_client_close"))  ||
469                         !(conf.tls_recv   = dlsym(tls_lib, "uh_tls_client_recv"))   ||
470                         !(conf.tls_send   = dlsym(tls_lib, "uh_tls_client_send"))
471                 ) {
472                         fprintf(stderr,
473                                 "Error: Failed to lookup required symbols "
474                                 "in TLS plugin: %s\n", dlerror()
475                         );
476                         exit(1);
477                 }
478
479                 /* init SSL context */
480                 if( ! (conf.tls = conf.tls_init()) )
481                 {
482                         fprintf(stderr, "Error: Failed to initalize SSL context\n");
483                         exit(1);
484                 }
485         }
486 #endif
487
488         while( (opt = getopt(argc, argv, "fC:K:p:s:h:c:l:L:d:r:m:x:")) > 0 )
489         {
490                 switch(opt)
491                 {
492                         /* [addr:]port */
493                         case 'p':
494                         case 's':
495                                 if( (port = strrchr(optarg, ':')) != NULL )
496                                 {
497                                         if( (optarg[0] == '[') && (port > optarg) && (port[-1] == ']') )
498                                                 memcpy(bind, optarg + 1,
499                                                         min(sizeof(bind), (int)(port - optarg) - 2));
500                                         else
501                                                 memcpy(bind, optarg,
502                                                         min(sizeof(bind), (int)(port - optarg)));
503
504                                         port++;
505                                 }
506                                 else
507                                 {
508                                         port = optarg;
509                                 }
510
511                                 if( opt == 's' )
512                                 {
513                                         if( !conf.tls )
514                                         {
515                                                 fprintf(stderr,
516                                                         "Notice: TLS support is disabled, "
517                                                         "ignoring '-s %s'\n", optarg
518                                                 );
519                                                 continue;
520                                         }
521
522                                         tls = 1;
523                                 }
524
525                                 /* bind sockets */
526                                 bound += uh_socket_bind(
527                                         &serv_fds, &max_fd, bind[0] ? bind : NULL, port,
528                                         &hints, (opt == 's'), &conf
529                                 );
530
531                                 break;
532
533 #ifdef HAVE_TLS
534                         /* certificate */
535                         case 'C':
536                                 if( conf.tls )
537                                 {
538                                         if( conf.tls_cert(conf.tls, optarg) < 1 )
539                                         {
540                                                 fprintf(stderr,
541                                                         "Error: Invalid certificate file given\n");
542                                                 exit(1);
543                                         }
544
545                                         keys++;
546                                 }
547
548                                 break;
549
550                         /* key */
551                         case 'K':
552                                 if( conf.tls )
553                                 {
554                                         if( conf.tls_key(conf.tls, optarg) < 1 )
555                                         {
556                                                 fprintf(stderr,
557                                                         "Error: Invalid private key file given\n");
558                                                 exit(1);
559                                         }
560
561                                         keys++;
562                                 }
563
564                                 break;
565 #endif
566
567                         /* docroot */
568                         case 'h':
569                                 if( ! realpath(optarg, conf.docroot) )
570                                 {
571                                         fprintf(stderr, "Error: Invalid directory %s: %s\n",
572                                                 optarg, strerror(errno));
573                                         exit(1);
574                                 }
575                                 break;
576
577 #ifdef HAVE_CGI
578                         /* cgi prefix */
579                         case 'x':
580                                 conf.cgi_prefix = optarg;
581                                 break;
582 #endif
583
584 #ifdef HAVE_LUA
585                         /* lua prefix */
586                         case 'l':
587                                 conf.lua_prefix = optarg;
588                                 break;
589
590                         /* lua handler */
591                         case 'L':
592                                 conf.lua_handler = optarg;
593                                 break;
594 #endif
595
596                         /* no fork */
597                         case 'f':
598                                 nofork = 1;
599                                 break;
600
601                         /* urldecode */
602                         case 'd':
603                                 if( (port = malloc(strlen(optarg)+1)) != NULL )
604                                 {
605                                         memset(port, 0, strlen(optarg)+1);
606                                         uh_urldecode(port, strlen(optarg), optarg, strlen(optarg));
607                                         printf("%s", port);
608                                         free(port);
609                                         exit(0);
610                                 }
611                                 break;
612
613                         /* basic auth realm */
614                         case 'r':
615                                 conf.realm = optarg;
616                                 break;
617
618                         /* md5 crypt */
619                         case 'm':
620                                 printf("%s\n", crypt(optarg, "$1$"));
621                                 exit(0);
622                                 break;
623
624                         /* config file */
625                         case 'c':
626                                 conf.file = optarg;
627                                 break;
628
629                         default:
630                                 fprintf(stderr,
631                                         "Usage: %s -p [addr:]port [-h docroot]\n"
632                                         "       -f              Do not fork to background\n"
633                                         "       -c file         Configuration file, default is '/etc/httpd.conf'\n"
634                                         "       -p [addr:]port  Bind to specified address and port, multiple allowed\n"
635 #ifdef HAVE_TLS
636                                         "       -s [addr:]port  Like -p but provide HTTPS on this port\n"
637                                         "       -C file         ASN.1 server certificate file\n"
638                                         "       -K file         ASN.1 server private key file\n"
639 #endif
640                                         "       -h directory    Specify the document root, default is '.'\n"
641 #ifdef HAVE_LUA
642                                         "       -l string       URL prefix for Lua handler, default is '/lua'\n"
643                                         "       -L file         Lua handler script, omit to disable Lua\n"
644 #endif
645 #ifdef HAVE_CGI
646                                         "       -x string       URL prefix for CGI handler, default is '/cgi-bin'\n"
647 #endif
648                                         "       -d string       URL decode given string\n"
649                                         "       -r string       Specify basic auth realm\n"
650                                         "       -m string       MD5 crypt given string\n"
651                                         "\n", argv[0]
652                                 );
653
654                                 exit(1);
655                 }
656         }
657
658 #ifdef HAVE_TLS
659         if( (tls == 1) && (keys < 2) )
660         {
661                 fprintf(stderr, "Error: Missing private key or certificate file\n");
662                 exit(1);
663         }
664 #endif
665
666         if( bound < 1 )
667         {
668                 fprintf(stderr, "Error: No sockets bound, unable to continue\n");
669                 exit(1);
670         }
671
672         /* default docroot */
673         if( !conf.docroot[0] && !realpath(".", conf.docroot) )
674         {
675                 fprintf(stderr, "Error: Can not determine default document root: %s\n",
676                         strerror(errno));
677                 exit(1);
678         }
679
680         /* default realm */
681         if( ! conf.realm )
682                 conf.realm = "Protected Area";
683
684         /* config file */
685         uh_config_parse(conf.file);
686
687 #ifdef HAVE_CGI
688         /* default cgi prefix */
689         if( ! conf.cgi_prefix )
690                 conf.cgi_prefix = "/cgi-bin";
691 #endif
692
693 #ifdef HAVE_LUA
694         /* load Lua plugin */
695         if( ! (lua_lib = dlopen("uhttpd_lua.so", RTLD_LAZY | RTLD_GLOBAL)) )
696         {
697                 fprintf(stderr,
698                         "Notice: Unable to load Lua plugin - disabling Lua support! "
699                         "(Reason: %s)\n", dlerror()
700                 );
701         }
702         else
703         {
704                 /* resolve functions */
705                 if( !(conf.lua_init    = dlsym(lua_lib, "uh_lua_init"))    ||
706                     !(conf.lua_close   = dlsym(lua_lib, "uh_lua_close"))   ||
707                     !(conf.lua_request = dlsym(lua_lib, "uh_lua_request"))
708                 ) {
709                         fprintf(stderr,
710                                 "Error: Failed to lookup required symbols "
711                                 "in Lua plugin: %s\n", dlerror()
712                         );
713                         exit(1);
714                 }
715
716                 /* init Lua runtime if handler is specified */
717                 if( conf.lua_handler )
718                 {
719                         /* default lua prefix */
720                         if( ! conf.lua_prefix )
721                                 conf.lua_prefix = "/lua";
722
723                         L = conf.lua_init(conf.lua_handler);
724                 }
725         }
726 #endif
727
728         /* fork (if not disabled) */
729         if( ! nofork )
730         {
731                 switch( fork() )
732                 {
733                         case -1:
734                                 perror("fork()");
735                                 exit(1);
736
737                         case 0:
738                                 /* daemon setup */
739                                 if( chdir("/") )
740                                         perror("chdir()");
741
742                                 if( (cur_fd = open("/dev/null", O_WRONLY)) > -1 )
743                                         dup2(cur_fd, 0);
744
745                                 if( (cur_fd = open("/dev/null", O_RDONLY)) > -1 )
746                                         dup2(cur_fd, 1);
747
748                                 if( (cur_fd = open("/dev/null", O_RDONLY)) > -1 )
749                                         dup2(cur_fd, 2);
750
751                                 break;
752
753                         default:
754                                 exit(0);
755                 }
756         }
757
758         /* backup server descriptor set */
759         used_fds = serv_fds;
760
761         /* loop */
762         while(run)
763         {
764                 /* create a working copy of the used fd set */
765                 read_fds = used_fds;
766
767                 /* sleep until socket activity */
768                 if( select(max_fd + 1, &read_fds, NULL, NULL, NULL) == -1 )
769                 {
770                         perror("select()");
771                         exit(1);
772                 }
773
774                 /* run through the existing connections looking for data to be read */
775                 for( cur_fd = 0; cur_fd <= max_fd; cur_fd++ )
776                 {
777                         /* is a socket managed by us */
778                         if( FD_ISSET(cur_fd, &read_fds) )
779                         {
780                                 /* is one of our listen sockets */
781                                 if( FD_ISSET(cur_fd, &serv_fds) )
782                                 {
783                                         /* handle new connections */
784                                         if( (new_fd = accept(cur_fd, NULL, 0)) != -1 )
785                                         {
786                                                 /* add to global client list */
787                                                 if( (cl = uh_client_add(new_fd, uh_listener_lookup(cur_fd))) != NULL )
788                                                 {
789 #ifdef HAVE_TLS
790                                                         /* setup client tls context */
791                                                         if( conf.tls )
792                                                                 conf.tls_accept(cl);
793 #endif
794
795                                                         /* add client socket to global fdset */
796                                                         FD_SET(new_fd, &used_fds);
797                                                         max_fd = max(max_fd, new_fd);
798                                                 }
799
800                                                 /* insufficient resources */
801                                                 else
802                                                 {
803                                                         fprintf(stderr,
804                                                                 "uh_client_add(): Can not manage more than "
805                                                                 "%i client sockets, connection dropped\n",
806                                                                 UH_LIMIT_CLIENTS
807                                                         );
808
809                                                         close(new_fd);
810                                                 }
811                                         }
812                                 }
813
814                                 /* is a client socket */
815                                 else
816                                 {
817                                         if( ! (cl = uh_client_lookup(cur_fd)) )
818                                         {
819                                                 /* this should not happen! */
820                                                 fprintf(stderr,
821                                                         "uh_client_lookup(): No entry for fd %i!\n",
822                                                         cur_fd);
823
824                                                 goto cleanup;
825                                         }
826
827                                         /* parse message header */
828                                         if( (req = uh_http_header_recv(cl)) != NULL )
829                                         {
830 #ifdef HAVE_LUA
831                                                 /* Lua request? */
832                                                 if( L && uh_path_match(conf.lua_prefix, req->url) )
833                                                 {
834                                                         conf.lua_request(cl, req, L);
835                                                 }
836                                                 else
837 #endif
838                                                 /* dispatch request */
839                                                 if( (pin = uh_path_lookup(cl, req->url)) != NULL )
840                                                 {
841                                                         /* auth ok? */
842                                                         if( uh_auth_check(cl, req, pin) )
843                                                         {
844 #ifdef HAVE_CGI
845                                                                 if( uh_path_match(conf.cgi_prefix, pin->name) )
846                                                                 {
847                                                                         uh_cgi_request(cl, req, pin);
848                                                                 }
849                                                                 else
850 #endif
851                                                                 {
852                                                                         uh_file_request(cl, req, pin);
853                                                                 }
854                                                         }
855                                                 }
856
857                                                 /* 404 */
858                                                 else
859                                                 {
860                                                         uh_http_sendhf(cl, 404, "Not Found",
861                                                                 "No such file or directory");
862                                                 }
863                                         }
864
865                                         /* 400 */
866                                         else
867                                         {
868                                                 uh_http_sendhf(cl, 400, "Bad Request",
869                                                         "Malformed request received");
870                                         }
871
872 #ifdef HAVE_TLS
873                                         /* free client tls context */
874                                         if( conf.tls )
875                                                 conf.tls_close(cl);
876 #endif
877
878                                         cleanup:
879
880                                         /* close client socket */
881                                         close(cur_fd);
882                                         FD_CLR(cur_fd, &used_fds);
883
884                                         /* remove from global client list */
885                                         uh_client_remove(cur_fd);
886                                 }
887                         }
888                 }
889         }
890
891 #ifdef HAVE_LUA
892         /* destroy the Lua state */
893         if( L != NULL )
894                 conf.lua_close(L);
895 #endif
896
897         return 0;
898 }
899