15
15
# along with this program; if not, write to the Free Software
16
16
# Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
19
# Author: Matt Giuca, Tom Conway
18
# Author: Matt Giuca, Tom Conway, Will Grant
20
'''Python console RPC service.
22
Provides an HTTP RPC interface to a Python console process.
35
from common import (util, studpath, chat)
38
trampoline_path = os.path.join(conf.ivle_install_dir, "bin/trampoline")
39
python_path = "/usr/bin/python" # Within jail
40
console_dir = "/opt/ivle/scripts" # Within jail
41
console_path = "/opt/ivle/scripts/python-console" # Within jail
44
"""Handler for the Console Service AJAX backend application."""
45
if len(req.path) > 0 and req.path[-1] == os.sep:
49
# The path determines which "command" we are receiving
50
if req.path == "start":
52
elif req.path == "chat":
54
elif req.path == "block":
55
handle_chat(req, kind="block")
57
req.throw_error(req.HTTP_BAD_REQUEST)
59
def handle_start(req):
60
jail_path = os.path.join(conf.jail_base, req.username)
61
working_dir = os.path.join("/home", req.username) # Within jail
63
# Get the UID of the logged-in user
65
(_,_,uid,_,_,_,_) = pwd.getpwnam(req.username)
67
# The user does not exist. This should have already failed the
69
req.throw_error(req.HTTP_INTERNAL_SERVER_ERROR)
71
# Set request attributes
72
req.content_type = "text/plain"
73
req.write_html_head_foot = False
75
# TODO: Figure out the host name the console server is running on.
76
host = socket.gethostname()
80
magic = md5.new(uuid.uuid4().bytes).digest().encode('hex')
82
# Try to find a free port on the server.
83
# Just try some random ports in the range [3000,8000)
84
# until we either succeed, or give up. If you think this
85
# sounds risky, it isn't:
86
# For N ports (e.g. 5000) with k (e.g. 100) in use, the
87
# probability of failing to find a free port in t (e.g. 5) tries
88
# is (k / N) ** t (e.g. 3.2*10e-9).
92
port = int(random.uniform(3000, 8000))
94
# Start the console server (port, magic)
95
# trampoline usage: tramp uid jail_dir working_dir script_path args
96
# console usage: python-console port magic
97
# TODO: Pass working_dir as argument, let console cd to it
98
cmd = ' '.join([trampoline_path, str(uid), jail_path,
99
console_dir, python_path, console_path,
100
str(port), str(magic)])
102
# print >> sys.stderr, cmd
104
# print >> sys.stderr, res
113
raise Exception, "unable to find a free port!"
115
# Assemble the key and return it.
116
key = cjson.encode({"host": host, "port": port, "magic": magic})
117
req.write(cjson.encode(key.encode("hex")))
119
def handle_chat(req, kind = "chat"):
120
# The request *should* have the following four fields:
121
# host, port, magic: Host and port where the console server lives,
122
# and the secret to use to digitally sign the communication with the
124
# text: Fields to pass along to the console server
125
# It simply acts as a proxy to the console server
126
if req.method != "POST":
127
req.throw_error(req.HTTP_BAD_REQUEST)
128
fields = req.get_fieldstorage()
130
key = cjson.decode(fields.getfirst("key").value.decode("hex"))
134
except AttributeError:
135
# Any of the getfirsts returned None
136
req.throw_error(req.HTTP_BAD_REQUEST)
137
# If text is None, it was probably just an empty line
139
text = fields.getfirst("text").value
140
except AttributeError:
143
msg = {'cmd':kind, 'text':text}
144
response = chat.chat(host, port, msg, magic, decode = False)
145
print >> open("/tmp/wibble","w"), repr(msg), repr(response)
146
req.content_type = "text/plain"
34
from ivle.webapp.base.rest import JSONRESTView, named_operation
35
from ivle.webapp.errors import BadRequest
37
# XXX: Should be RPC view, with actions in URL?
38
class ConsoleServiceRESTView(JSONRESTView):
39
'''An RPC interface to a Python console.'''
40
def get_permissions(self, user, config):
46
@named_operation('use')
47
def start(self, req, cwd=''):
48
working_dir = os.path.join("/home", req.user.login, cwd)
51
jail_path = os.path.join(req.config['paths']['jails']['mounts'],
53
cons = ivle.console.Console(req.config, req.user, jail_path,
56
# Assemble the key and return it. Yes, it is double-encoded.
57
return {'key': cjson.encode({"host": cons.host,
59
"magic": cons.magic}).encode('hex')}
61
@named_operation('use')
62
def chat(self, req, key, text='', cwd='', kind="chat"):
63
# The request *should* have the following four fields:
64
# key: Hex JSON dict of host and port where the console server lives,
65
# and the secret to use to digitally sign the communication with the
67
# text: Fields to pass along to the console server
68
# It simply acts as a proxy to the console server
71
keydict = cjson.decode(key.decode('hex'))
72
host = keydict['host']
73
port = keydict['port']
74
magic = keydict['magic']
76
raise BadRequest("Invalid console key.")
78
jail_path = os.path.join(req.config['paths']['jails']['mounts'],
81
working_dir = os.path.join("/home", req.user.login, cwd)
83
# XXX: JSONRESTView should do this for us.
84
text = text.decode('utf-8')
86
msg = {'cmd':kind, 'text':text}
89
json_response = ivle.chat.chat(host, port, msg, magic,decode=False)
90
# Snoop the response from python-console to check that it's valid
91
response = cjson.decode(json_response)
92
except (cjson.DecodeError, ivle.chat.ProtocolError):
93
# Could not decode the reply from the python-console server
94
response = {"terminate":
96
if "terminate" in response:
97
response = restart_console(req.config, req.user, jail_path,
98
working_dir, response["terminate"])
99
except socket.error, (enumber, estring):
100
if enumber == errno.ECONNREFUSED:
101
# Timeout: Restart the session
102
response = restart_console(req.config, req.user, jail_path,
104
"Timed out due to inactivity")
105
elif enumber == errno.ECONNRESET:
106
# Communication issue: Restart the session
107
response = restart_console(req.config, req.user, jail_path,
111
# Some other error - probably serious
112
raise socket.error, (enumber, estring)
116
def restart_console(config, user, jail_path, working_dir, reason):
117
"""Tells the client that it must be issued a new console since the old
118
console is no longer availible. The client must accept the new key.
119
Returns the JSON response to be given to the client.
121
# Start a new console server console
122
cons = ivle.console.Console(config, user, jail_path, working_dir)
124
# Make a JSON object to tell the browser to restart its console client
125
new_key = cjson.encode(
126
{"host": cons.host, "port": cons.port, "magic": cons.magic})
128
return {"restart": reason, "key": new_key.encode("hex")}