15
15
# along with this program; if not, write to the Free Software
16
16
# Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
19
# Author: Matt Giuca, Tom Conway
18
# Author: Matt Giuca, Tom Conway, Will Grant
20
'''Python console RPC service.
22
Provides an HTTP RPC interface to a Python console process.
29
from common import (util, studpath)
32
trampoline_path = os.path.join(conf.ivle_install_dir, "bin/trampoline")
33
python_path = "/usr/bin/python" # Within jail
34
console_dir = "/opt/ivle/console" # Within jail
35
console_path = "/opt/ivle/console/python-console" # Within jail
38
"""Handler for the Console Service AJAX backend application."""
39
if len(req.path) > 0 and req.path[-1] == os.sep:
43
# The path determines which "command" we are receiving
44
if req.path == "start":
46
elif req.path == "chat":
49
req.throw_error(req.HTTP_BAD_REQUEST)
51
def handle_start(req):
52
jail_path = os.path.join(conf.jail_base, req.username)
53
working_dir = os.path.join("/home", req.username) # Within jail
55
# Get the UID of the logged-in user
57
(_,_,uid,_,_,_,_) = pwd.getpwnam(req.username)
59
# The user does not exist. This should have already failed the
61
req.throw_error(req.HTTP_INTERNAL_SERVER_ERROR)
63
# Set request attributes
64
req.content_type = "text/plain"
65
req.write_html_head_foot = False
67
# TODO: Figure out the host name the console server is running on.
70
# Find an available port on the server.
78
# Start the console server (port, magic)
79
# trampoline usage: tramp uid jail_dir working_dir script_path args
80
# console usage: python-console port magic
81
# TODO: Cleanup (don't use os.system)
82
# TODO: Pass working_dir as argument, let console cd to it
83
# Use "&" to run as a background process
84
cmd = ' '.join([trampoline_path, str(uid), jail_path, console_dir,
85
python_path, console_path, str(port), str(magic), "&"])
86
#req.write(cmd + '\n')
90
req.write(cjson.encode({"host": host, "port": port, "magic": magic}))
93
# The request *should* have the following four fields:
94
# host, port: Host and port where the console server apparently lives
95
# digest, text: Fields to pass along to the console server
96
# It simply acts as a proxy to the console server
97
if req.method != "POST":
98
req.throw_error(req.HTTP_BAD_REQUEST)
99
fields = req.get_fieldstorage()
101
host = fields.getfirst("host").value
102
port = fields.getfirst("port").value
103
digest = fields.getfirst("digest").value
104
text = fields.getfirst("text").value
105
except AttributeError:
106
# Any of the getfirsts returned None
107
req.throw_error(req.HTTP_BAD_REQUEST)
109
# Open an HTTP connection
110
url = ("http://" + urllib.quote(host) + ":" + urllib.quote(port)
112
body = ("digest=" + urllib.quote(digest)
113
+ "&text=" + urllib.quote(text) + '\n\n')
114
headers = {"Content-Type": "application/x-www-form-urlencoded"}
116
conn = httplib.HTTPConnection(host, port)
117
conn.request("POST", url, body, headers)
119
response = conn.getresponse()
121
req.status = response.status
122
# NOTE: Ignoring arbitrary headers returned by the server
123
# Probably not necessary to proxy them
124
req.content_type = response.getheader("Content-Type", "text/plain")
125
req.write(response.read())
128
req.throw_error(req.HTTP_BAD_REQUEST)
32
import simplejson as json
38
from ivle.webapp.base.rest import JSONRESTView, write_operation
39
from ivle.webapp.errors import BadRequest
41
# XXX: Should be RPC view, with actions in URL?
42
class ConsoleServiceRESTView(JSONRESTView):
43
'''An RPC interface to a Python console.'''
44
def get_permissions(self, user, config):
50
@write_operation('use')
51
def start(self, req, cwd=''):
52
working_dir = os.path.join("/home", req.user.login, cwd)
55
jail_path = os.path.join(req.config['paths']['jails']['mounts'],
57
cons = ivle.console.Console(req.config, req.user, jail_path,
60
# Assemble the key and return it. Yes, it is double-encoded.
61
return {'key': json.dumps({"host": cons.host,
63
"magic": cons.magic}).encode('hex')}
65
@write_operation('use')
66
def chat(self, req, key, text='', cwd='', kind="chat"):
67
# The request *should* have the following four fields:
68
# key: Hex JSON dict of host and port where the console server lives,
69
# and the secret to use to digitally sign the communication with the
71
# text: Fields to pass along to the console server
72
# It simply acts as a proxy to the console server
75
keydict = json.loads(key.decode('hex'))
76
host = keydict['host']
77
port = keydict['port']
78
magic = keydict['magic']
80
raise BadRequest("Invalid console key.")
82
jail_path = os.path.join(req.config['paths']['jails']['mounts'],
85
working_dir = os.path.join("/home", req.user.login, cwd)
87
# XXX: JSONRESTView should do this for us.
88
text = text.decode('utf-8')
90
msg = {'cmd':kind, 'text':text}
93
json_response = ivle.chat.chat(host, port, msg, magic,decode=False)
94
# Snoop the response from python-console to check that it's valid
95
response = json.loads(json_response)
96
except (ValueError, ivle.chat.ProtocolError):
97
# Could not decode the reply from the python-console server
98
response = {"terminate":
100
if "terminate" in response:
101
response = restart_console(req.config, req.user, jail_path,
102
working_dir, response["terminate"])
103
except socket.error, (enumber, estring):
104
if enumber == errno.ECONNREFUSED:
105
# Timeout: Restart the session
106
response = restart_console(req.config, req.user, jail_path,
108
"Timed out due to inactivity")
109
elif enumber == errno.ECONNRESET:
110
# Communication issue: Restart the session
111
response = restart_console(req.config, req.user, jail_path,
115
# Some other error - probably serious
116
raise socket.error, (enumber, estring)
120
def restart_console(config, user, jail_path, working_dir, reason):
121
"""Tells the client that it must be issued a new console since the old
122
console is no longer availible. The client must accept the new key.
123
Returns the JSON response to be given to the client.
125
# Start a new console server console
126
cons = ivle.console.Console(config, user, jail_path, working_dir)
128
# Make a JSON object to tell the browser to restart its console client
129
new_key = json.dumps(
130
{"host": cons.host, "port": cons.port, "magic": cons.magic})
132
return {"restart": reason, "key": new_key.encode("hex")}