Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 1 | """Unittests for the various HTTPServer modules. |
| 2 | |
| 3 | Written by Cody A.W. Somerville <cody-somerville@ubuntu.com>, |
| 4 | Josip Dzolonga, and Michael Otteneder for the 2007/08 GHOP contest. |
| 5 | """ |
| 6 | |
Georg Brandl | 2442015 | 2008-05-26 16:32:26 +0000 | [diff] [blame] | 7 | from http.server import BaseHTTPRequestHandler, HTTPServer, \ |
| 8 | SimpleHTTPRequestHandler, CGIHTTPRequestHandler |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 9 | from http import server, HTTPStatus |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 10 | |
| 11 | import os |
| 12 | import sys |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 13 | import re |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 14 | import base64 |
Martin Panter | d274b3f | 2016-04-18 03:45:18 +0000 | [diff] [blame] | 15 | import ntpath |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 16 | import shutil |
Jeremy Hylton | 1afc169 | 2008-06-18 20:49:58 +0000 | [diff] [blame] | 17 | import urllib.parse |
Serhiy Storchaka | cb5bc40 | 2014-08-17 08:22:11 +0300 | [diff] [blame] | 18 | import html |
Georg Brandl | 2442015 | 2008-05-26 16:32:26 +0000 | [diff] [blame] | 19 | import http.client |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 20 | import tempfile |
Berker Peksag | 04bc5b9 | 2016-03-14 06:06:03 +0200 | [diff] [blame] | 21 | import time |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 22 | from io import BytesIO |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 23 | |
| 24 | import unittest |
| 25 | from test import support |
Victor Stinner | 45df820 | 2010-04-28 22:31:17 +0000 | [diff] [blame] | 26 | threading = support.import_module('threading') |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 27 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 28 | class NoLogRequestHandler: |
| 29 | def log_message(self, *args): |
| 30 | # don't write log messages to stderr |
| 31 | pass |
| 32 | |
Barry Warsaw | 820c120 | 2008-06-12 04:06:45 +0000 | [diff] [blame] | 33 | def read(self, n=None): |
| 34 | return '' |
| 35 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 36 | |
| 37 | class TestServerThread(threading.Thread): |
| 38 | def __init__(self, test_object, request_handler): |
| 39 | threading.Thread.__init__(self) |
| 40 | self.request_handler = request_handler |
| 41 | self.test_object = test_object |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 42 | |
| 43 | def run(self): |
Antoine Pitrou | cb34218 | 2011-03-21 00:26:51 +0100 | [diff] [blame] | 44 | self.server = HTTPServer(('localhost', 0), self.request_handler) |
| 45 | self.test_object.HOST, self.test_object.PORT = self.server.socket.getsockname() |
Antoine Pitrou | 08911bd | 2010-04-25 22:19:43 +0000 | [diff] [blame] | 46 | self.test_object.server_started.set() |
| 47 | self.test_object = None |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 48 | try: |
Antoine Pitrou | 08911bd | 2010-04-25 22:19:43 +0000 | [diff] [blame] | 49 | self.server.serve_forever(0.05) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 50 | finally: |
| 51 | self.server.server_close() |
| 52 | |
| 53 | def stop(self): |
| 54 | self.server.shutdown() |
| 55 | |
| 56 | |
| 57 | class BaseTestCase(unittest.TestCase): |
| 58 | def setUp(self): |
Antoine Pitrou | 45ebeb8 | 2009-10-27 18:52:30 +0000 | [diff] [blame] | 59 | self._threads = support.threading_setup() |
Nick Coghlan | 6ead552 | 2009-10-18 13:19:33 +0000 | [diff] [blame] | 60 | os.environ = support.EnvironmentVarGuard() |
Antoine Pitrou | 08911bd | 2010-04-25 22:19:43 +0000 | [diff] [blame] | 61 | self.server_started = threading.Event() |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 62 | self.thread = TestServerThread(self, self.request_handler) |
| 63 | self.thread.start() |
Antoine Pitrou | 08911bd | 2010-04-25 22:19:43 +0000 | [diff] [blame] | 64 | self.server_started.wait() |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 65 | |
| 66 | def tearDown(self): |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 67 | self.thread.stop() |
Antoine Pitrou | f727082 | 2012-09-30 01:05:30 +0200 | [diff] [blame] | 68 | self.thread = None |
Nick Coghlan | 6ead552 | 2009-10-18 13:19:33 +0000 | [diff] [blame] | 69 | os.environ.__exit__() |
Antoine Pitrou | 45ebeb8 | 2009-10-27 18:52:30 +0000 | [diff] [blame] | 70 | support.threading_cleanup(*self._threads) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 71 | |
| 72 | def request(self, uri, method='GET', body=None, headers={}): |
Antoine Pitrou | cb34218 | 2011-03-21 00:26:51 +0100 | [diff] [blame] | 73 | self.connection = http.client.HTTPConnection(self.HOST, self.PORT) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 74 | self.connection.request(method, uri, body, headers) |
| 75 | return self.connection.getresponse() |
| 76 | |
| 77 | |
| 78 | class BaseHTTPServerTestCase(BaseTestCase): |
| 79 | class request_handler(NoLogRequestHandler, BaseHTTPRequestHandler): |
| 80 | protocol_version = 'HTTP/1.1' |
| 81 | default_request_version = 'HTTP/1.1' |
| 82 | |
| 83 | def do_TEST(self): |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 84 | self.send_response(HTTPStatus.NO_CONTENT) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 85 | self.send_header('Content-Type', 'text/html') |
| 86 | self.send_header('Connection', 'close') |
| 87 | self.end_headers() |
| 88 | |
| 89 | def do_KEEP(self): |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 90 | self.send_response(HTTPStatus.NO_CONTENT) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 91 | self.send_header('Content-Type', 'text/html') |
| 92 | self.send_header('Connection', 'keep-alive') |
| 93 | self.end_headers() |
| 94 | |
| 95 | def do_KEYERROR(self): |
| 96 | self.send_error(999) |
| 97 | |
Senthil Kumaran | 52d2720 | 2012-10-10 23:16:21 -0700 | [diff] [blame] | 98 | def do_NOTFOUND(self): |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 99 | self.send_error(HTTPStatus.NOT_FOUND) |
Senthil Kumaran | 52d2720 | 2012-10-10 23:16:21 -0700 | [diff] [blame] | 100 | |
Senthil Kumaran | 2688644 | 2013-03-15 07:53:21 -0700 | [diff] [blame] | 101 | def do_EXPLAINERROR(self): |
| 102 | self.send_error(999, "Short Message", |
| 103 | "This is a long \n explaination") |
| 104 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 105 | def do_CUSTOM(self): |
| 106 | self.send_response(999) |
| 107 | self.send_header('Content-Type', 'text/html') |
| 108 | self.send_header('Connection', 'close') |
| 109 | self.end_headers() |
| 110 | |
Armin Ronacher | 8d96d77 | 2011-01-22 13:13:05 +0000 | [diff] [blame] | 111 | def do_LATINONEHEADER(self): |
| 112 | self.send_response(999) |
| 113 | self.send_header('X-Special', 'Dängerous Mind') |
Armin Ronacher | 5953128 | 2011-01-22 13:44:22 +0000 | [diff] [blame] | 114 | self.send_header('Connection', 'close') |
Armin Ronacher | 8d96d77 | 2011-01-22 13:13:05 +0000 | [diff] [blame] | 115 | self.end_headers() |
Armin Ronacher | 5953128 | 2011-01-22 13:44:22 +0000 | [diff] [blame] | 116 | body = self.headers['x-special-incoming'].encode('utf-8') |
| 117 | self.wfile.write(body) |
Armin Ronacher | 8d96d77 | 2011-01-22 13:13:05 +0000 | [diff] [blame] | 118 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 119 | def setUp(self): |
| 120 | BaseTestCase.setUp(self) |
Antoine Pitrou | cb34218 | 2011-03-21 00:26:51 +0100 | [diff] [blame] | 121 | self.con = http.client.HTTPConnection(self.HOST, self.PORT) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 122 | self.con.connect() |
| 123 | |
| 124 | def test_command(self): |
| 125 | self.con.request('GET', '/') |
| 126 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 127 | self.assertEqual(res.status, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 128 | |
| 129 | def test_request_line_trimming(self): |
| 130 | self.con._http_vsn_str = 'HTTP/1.1\n' |
R David Murray | 14199f9 | 2014-06-24 16:39:49 -0400 | [diff] [blame] | 131 | self.con.putrequest('XYZBOGUS', '/') |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 132 | self.con.endheaders() |
| 133 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 134 | self.assertEqual(res.status, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 135 | |
| 136 | def test_version_bogus(self): |
| 137 | self.con._http_vsn_str = 'FUBAR' |
| 138 | self.con.putrequest('GET', '/') |
| 139 | self.con.endheaders() |
| 140 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 141 | self.assertEqual(res.status, HTTPStatus.BAD_REQUEST) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 142 | |
| 143 | def test_version_digits(self): |
| 144 | self.con._http_vsn_str = 'HTTP/9.9.9' |
| 145 | self.con.putrequest('GET', '/') |
| 146 | self.con.endheaders() |
| 147 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 148 | self.assertEqual(res.status, HTTPStatus.BAD_REQUEST) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 149 | |
| 150 | def test_version_none_get(self): |
| 151 | self.con._http_vsn_str = '' |
| 152 | self.con.putrequest('GET', '/') |
| 153 | self.con.endheaders() |
| 154 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 155 | self.assertEqual(res.status, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 156 | |
| 157 | def test_version_none(self): |
R David Murray | 14199f9 | 2014-06-24 16:39:49 -0400 | [diff] [blame] | 158 | # Test that a valid method is rejected when not HTTP/1.x |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 159 | self.con._http_vsn_str = '' |
R David Murray | 14199f9 | 2014-06-24 16:39:49 -0400 | [diff] [blame] | 160 | self.con.putrequest('CUSTOM', '/') |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 161 | self.con.endheaders() |
| 162 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 163 | self.assertEqual(res.status, HTTPStatus.BAD_REQUEST) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 164 | |
| 165 | def test_version_invalid(self): |
| 166 | self.con._http_vsn = 99 |
| 167 | self.con._http_vsn_str = 'HTTP/9.9' |
| 168 | self.con.putrequest('GET', '/') |
| 169 | self.con.endheaders() |
| 170 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 171 | self.assertEqual(res.status, HTTPStatus.HTTP_VERSION_NOT_SUPPORTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 172 | |
| 173 | def test_send_blank(self): |
| 174 | self.con._http_vsn_str = '' |
| 175 | self.con.putrequest('', '') |
| 176 | self.con.endheaders() |
| 177 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 178 | self.assertEqual(res.status, HTTPStatus.BAD_REQUEST) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 179 | |
| 180 | def test_header_close(self): |
| 181 | self.con.putrequest('GET', '/') |
| 182 | self.con.putheader('Connection', 'close') |
| 183 | self.con.endheaders() |
| 184 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 185 | self.assertEqual(res.status, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 186 | |
| 187 | def test_head_keep_alive(self): |
| 188 | self.con._http_vsn_str = 'HTTP/1.1' |
| 189 | self.con.putrequest('GET', '/') |
| 190 | self.con.putheader('Connection', 'keep-alive') |
| 191 | self.con.endheaders() |
| 192 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 193 | self.assertEqual(res.status, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 194 | |
| 195 | def test_handler(self): |
| 196 | self.con.request('TEST', '/') |
| 197 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 198 | self.assertEqual(res.status, HTTPStatus.NO_CONTENT) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 199 | |
| 200 | def test_return_header_keep_alive(self): |
| 201 | self.con.request('KEEP', '/') |
| 202 | res = self.con.getresponse() |
Florent Xicluna | 9b86b9a | 2010-03-19 19:00:44 +0000 | [diff] [blame] | 203 | self.assertEqual(res.getheader('Connection'), 'keep-alive') |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 204 | self.con.request('TEST', '/') |
Brian Curtin | 61d0d60 | 2010-10-31 00:34:23 +0000 | [diff] [blame] | 205 | self.addCleanup(self.con.close) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 206 | |
| 207 | def test_internal_key_error(self): |
| 208 | self.con.request('KEYERROR', '/') |
| 209 | res = self.con.getresponse() |
Florent Xicluna | 9b86b9a | 2010-03-19 19:00:44 +0000 | [diff] [blame] | 210 | self.assertEqual(res.status, 999) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 211 | |
| 212 | def test_return_custom_status(self): |
| 213 | self.con.request('CUSTOM', '/') |
| 214 | res = self.con.getresponse() |
Florent Xicluna | 9b86b9a | 2010-03-19 19:00:44 +0000 | [diff] [blame] | 215 | self.assertEqual(res.status, 999) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 216 | |
Senthil Kumaran | 2688644 | 2013-03-15 07:53:21 -0700 | [diff] [blame] | 217 | def test_return_explain_error(self): |
| 218 | self.con.request('EXPLAINERROR', '/') |
| 219 | res = self.con.getresponse() |
| 220 | self.assertEqual(res.status, 999) |
| 221 | self.assertTrue(int(res.getheader('Content-Length'))) |
| 222 | |
Armin Ronacher | 8d96d77 | 2011-01-22 13:13:05 +0000 | [diff] [blame] | 223 | def test_latin1_header(self): |
Armin Ronacher | 5953128 | 2011-01-22 13:44:22 +0000 | [diff] [blame] | 224 | self.con.request('LATINONEHEADER', '/', headers={ |
| 225 | 'X-Special-Incoming': 'Ärger mit Unicode' |
| 226 | }) |
Armin Ronacher | 8d96d77 | 2011-01-22 13:13:05 +0000 | [diff] [blame] | 227 | res = self.con.getresponse() |
| 228 | self.assertEqual(res.getheader('X-Special'), 'Dängerous Mind') |
Armin Ronacher | 5953128 | 2011-01-22 13:44:22 +0000 | [diff] [blame] | 229 | self.assertEqual(res.read(), 'Ärger mit Unicode'.encode('utf-8')) |
Armin Ronacher | 8d96d77 | 2011-01-22 13:13:05 +0000 | [diff] [blame] | 230 | |
Senthil Kumaran | 52d2720 | 2012-10-10 23:16:21 -0700 | [diff] [blame] | 231 | def test_error_content_length(self): |
| 232 | # Issue #16088: standard error responses should have a content-length |
| 233 | self.con.request('NOTFOUND', '/') |
| 234 | res = self.con.getresponse() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 235 | self.assertEqual(res.status, HTTPStatus.NOT_FOUND) |
| 236 | |
Senthil Kumaran | 52d2720 | 2012-10-10 23:16:21 -0700 | [diff] [blame] | 237 | data = res.read() |
Senthil Kumaran | 52d2720 | 2012-10-10 23:16:21 -0700 | [diff] [blame] | 238 | self.assertEqual(int(res.getheader('Content-Length')), len(data)) |
| 239 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 240 | |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 241 | class RequestHandlerLoggingTestCase(BaseTestCase): |
| 242 | class request_handler(BaseHTTPRequestHandler): |
| 243 | protocol_version = 'HTTP/1.1' |
| 244 | default_request_version = 'HTTP/1.1' |
| 245 | |
| 246 | def do_GET(self): |
| 247 | self.send_response(HTTPStatus.OK) |
| 248 | self.end_headers() |
| 249 | |
| 250 | def do_ERROR(self): |
| 251 | self.send_error(HTTPStatus.NOT_FOUND, 'File not found') |
| 252 | |
| 253 | def test_get(self): |
| 254 | self.con = http.client.HTTPConnection(self.HOST, self.PORT) |
| 255 | self.con.connect() |
| 256 | |
| 257 | with support.captured_stderr() as err: |
| 258 | self.con.request('GET', '/') |
| 259 | self.con.getresponse() |
| 260 | |
| 261 | self.assertTrue( |
| 262 | err.getvalue().endswith('"GET / HTTP/1.1" 200 -\n')) |
| 263 | |
| 264 | def test_err(self): |
| 265 | self.con = http.client.HTTPConnection(self.HOST, self.PORT) |
| 266 | self.con.connect() |
| 267 | |
| 268 | with support.captured_stderr() as err: |
| 269 | self.con.request('ERROR', '/') |
| 270 | self.con.getresponse() |
| 271 | |
| 272 | lines = err.getvalue().split('\n') |
| 273 | self.assertTrue(lines[0].endswith('code 404, message File not found')) |
| 274 | self.assertTrue(lines[1].endswith('"ERROR / HTTP/1.1" 404 -')) |
| 275 | |
| 276 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 277 | class SimpleHTTPServerTestCase(BaseTestCase): |
| 278 | class request_handler(NoLogRequestHandler, SimpleHTTPRequestHandler): |
| 279 | pass |
| 280 | |
| 281 | def setUp(self): |
| 282 | BaseTestCase.setUp(self) |
| 283 | self.cwd = os.getcwd() |
| 284 | basetempdir = tempfile.gettempdir() |
| 285 | os.chdir(basetempdir) |
| 286 | self.data = b'We are the knights who say Ni!' |
| 287 | self.tempdir = tempfile.mkdtemp(dir=basetempdir) |
| 288 | self.tempdir_name = os.path.basename(self.tempdir) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 289 | self.base_url = '/' + self.tempdir_name |
Brett Cannon | 105df5d | 2010-10-29 23:43:42 +0000 | [diff] [blame] | 290 | with open(os.path.join(self.tempdir, 'test'), 'wb') as temp: |
| 291 | temp.write(self.data) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 292 | |
| 293 | def tearDown(self): |
| 294 | try: |
| 295 | os.chdir(self.cwd) |
| 296 | try: |
| 297 | shutil.rmtree(self.tempdir) |
| 298 | except: |
| 299 | pass |
| 300 | finally: |
| 301 | BaseTestCase.tearDown(self) |
| 302 | |
| 303 | def check_status_and_reason(self, response, status, data=None): |
Berker Peksag | b575432 | 2015-07-22 19:25:37 +0300 | [diff] [blame] | 304 | def close_conn(): |
| 305 | """Don't close reader yet so we can check if there was leftover |
| 306 | buffered input""" |
| 307 | nonlocal reader |
| 308 | reader = response.fp |
| 309 | response.fp = None |
| 310 | reader = None |
| 311 | response._close_conn = close_conn |
| 312 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 313 | body = response.read() |
Benjamin Peterson | c9c0f20 | 2009-06-30 23:06:06 +0000 | [diff] [blame] | 314 | self.assertTrue(response) |
Florent Xicluna | 9b86b9a | 2010-03-19 19:00:44 +0000 | [diff] [blame] | 315 | self.assertEqual(response.status, status) |
| 316 | self.assertIsNotNone(response.reason) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 317 | if data: |
| 318 | self.assertEqual(data, body) |
Berker Peksag | b575432 | 2015-07-22 19:25:37 +0300 | [diff] [blame] | 319 | # Ensure the server has not set up a persistent connection, and has |
| 320 | # not sent any extra data |
| 321 | self.assertEqual(response.version, 10) |
| 322 | self.assertEqual(response.msg.get("Connection", "close"), "close") |
| 323 | self.assertEqual(reader.read(30), b'', 'Connection should be closed') |
| 324 | |
| 325 | reader.close() |
Serhiy Storchaka | cb5bc40 | 2014-08-17 08:22:11 +0300 | [diff] [blame] | 326 | return body |
| 327 | |
Ned Deily | 1418320 | 2015-01-05 01:02:30 -0800 | [diff] [blame] | 328 | @support.requires_mac_ver(10, 5) |
Serhiy Storchaka | cb5bc40 | 2014-08-17 08:22:11 +0300 | [diff] [blame] | 329 | @unittest.skipUnless(support.TESTFN_UNDECODABLE, |
| 330 | 'need support.TESTFN_UNDECODABLE') |
| 331 | def test_undecodable_filename(self): |
Serhiy Storchaka | a64ce5d | 2014-08-17 12:20:02 +0300 | [diff] [blame] | 332 | enc = sys.getfilesystemencoding() |
Serhiy Storchaka | cb5bc40 | 2014-08-17 08:22:11 +0300 | [diff] [blame] | 333 | filename = os.fsdecode(support.TESTFN_UNDECODABLE) + '.txt' |
| 334 | with open(os.path.join(self.tempdir, filename), 'wb') as f: |
| 335 | f.write(support.TESTFN_UNDECODABLE) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 336 | response = self.request(self.base_url + '/') |
Serhiy Storchaka | d9e9528 | 2014-08-17 16:57:39 +0300 | [diff] [blame] | 337 | if sys.platform == 'darwin': |
| 338 | # On Mac OS the HFS+ filesystem replaces bytes that aren't valid |
| 339 | # UTF-8 into a percent-encoded value. |
| 340 | for name in os.listdir(self.tempdir): |
| 341 | if name != 'test': # Ignore a filename created in setUp(). |
| 342 | filename = name |
| 343 | break |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 344 | body = self.check_status_and_reason(response, HTTPStatus.OK) |
Serhiy Storchaka | cb5bc40 | 2014-08-17 08:22:11 +0300 | [diff] [blame] | 345 | quotedname = urllib.parse.quote(filename, errors='surrogatepass') |
| 346 | self.assertIn(('href="%s"' % quotedname) |
Serhiy Storchaka | a64ce5d | 2014-08-17 12:20:02 +0300 | [diff] [blame] | 347 | .encode(enc, 'surrogateescape'), body) |
Martin Panter | da3bb38 | 2016-04-11 00:40:08 +0000 | [diff] [blame] | 348 | self.assertIn(('>%s<' % html.escape(filename, quote=False)) |
Serhiy Storchaka | a64ce5d | 2014-08-17 12:20:02 +0300 | [diff] [blame] | 349 | .encode(enc, 'surrogateescape'), body) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 350 | response = self.request(self.base_url + '/' + quotedname) |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 351 | self.check_status_and_reason(response, HTTPStatus.OK, |
Serhiy Storchaka | cb5bc40 | 2014-08-17 08:22:11 +0300 | [diff] [blame] | 352 | data=support.TESTFN_UNDECODABLE) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 353 | |
| 354 | def test_get(self): |
| 355 | #constructs the path relative to the root directory of the HTTPServer |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 356 | response = self.request(self.base_url + '/test') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 357 | self.check_status_and_reason(response, HTTPStatus.OK, data=self.data) |
Senthil Kumaran | 72c238e | 2013-09-13 00:21:18 -0700 | [diff] [blame] | 358 | # check for trailing "/" which should return 404. See Issue17324 |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 359 | response = self.request(self.base_url + '/test/') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 360 | self.check_status_and_reason(response, HTTPStatus.NOT_FOUND) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 361 | response = self.request(self.base_url + '/') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 362 | self.check_status_and_reason(response, HTTPStatus.OK) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 363 | response = self.request(self.base_url) |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 364 | self.check_status_and_reason(response, HTTPStatus.MOVED_PERMANENTLY) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 365 | response = self.request(self.base_url + '/?hi=2') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 366 | self.check_status_and_reason(response, HTTPStatus.OK) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 367 | response = self.request(self.base_url + '?hi=1') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 368 | self.check_status_and_reason(response, HTTPStatus.MOVED_PERMANENTLY) |
Benjamin Peterson | 94cb7a2 | 2014-12-26 10:53:43 -0600 | [diff] [blame] | 369 | self.assertEqual(response.getheader("Location"), |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 370 | self.base_url + "/?hi=1") |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 371 | response = self.request('/ThisDoesNotExist') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 372 | self.check_status_and_reason(response, HTTPStatus.NOT_FOUND) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 373 | response = self.request('/' + 'ThisDoesNotExist' + '/') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 374 | self.check_status_and_reason(response, HTTPStatus.NOT_FOUND) |
Berker Peksag | b575432 | 2015-07-22 19:25:37 +0300 | [diff] [blame] | 375 | |
| 376 | data = b"Dummy index file\r\n" |
| 377 | with open(os.path.join(self.tempdir_name, 'index.html'), 'wb') as f: |
| 378 | f.write(data) |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 379 | response = self.request(self.base_url + '/') |
Berker Peksag | b575432 | 2015-07-22 19:25:37 +0300 | [diff] [blame] | 380 | self.check_status_and_reason(response, HTTPStatus.OK, data) |
| 381 | |
| 382 | # chmod() doesn't work as expected on Windows, and filesystem |
| 383 | # permissions are ignored by root on Unix. |
| 384 | if os.name == 'posix' and os.geteuid() != 0: |
| 385 | os.chmod(self.tempdir, 0) |
| 386 | try: |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 387 | response = self.request(self.base_url + '/') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 388 | self.check_status_and_reason(response, HTTPStatus.NOT_FOUND) |
Berker Peksag | b575432 | 2015-07-22 19:25:37 +0300 | [diff] [blame] | 389 | finally: |
Brett Cannon | 105df5d | 2010-10-29 23:43:42 +0000 | [diff] [blame] | 390 | os.chmod(self.tempdir, 0o755) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 391 | |
| 392 | def test_head(self): |
| 393 | response = self.request( |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 394 | self.base_url + '/test', method='HEAD') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 395 | self.check_status_and_reason(response, HTTPStatus.OK) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 396 | self.assertEqual(response.getheader('content-length'), |
| 397 | str(len(self.data))) |
| 398 | self.assertEqual(response.getheader('content-type'), |
| 399 | 'application/octet-stream') |
| 400 | |
| 401 | def test_invalid_requests(self): |
| 402 | response = self.request('/', method='FOO') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 403 | self.check_status_and_reason(response, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 404 | # requests must be case sensitive,so this should fail too |
Terry Jan Reedy | dd09efd | 2014-10-18 17:10:09 -0400 | [diff] [blame] | 405 | response = self.request('/', method='custom') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 406 | self.check_status_and_reason(response, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 407 | response = self.request('/', method='GETs') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 408 | self.check_status_and_reason(response, HTTPStatus.NOT_IMPLEMENTED) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 409 | |
Martin Panter | fc475a9 | 2016-04-09 04:56:10 +0000 | [diff] [blame] | 410 | def test_path_without_leading_slash(self): |
| 411 | response = self.request(self.tempdir_name + '/test') |
| 412 | self.check_status_and_reason(response, HTTPStatus.OK, data=self.data) |
| 413 | response = self.request(self.tempdir_name + '/test/') |
| 414 | self.check_status_and_reason(response, HTTPStatus.NOT_FOUND) |
| 415 | response = self.request(self.tempdir_name + '/') |
| 416 | self.check_status_and_reason(response, HTTPStatus.OK) |
| 417 | response = self.request(self.tempdir_name) |
| 418 | self.check_status_and_reason(response, HTTPStatus.MOVED_PERMANENTLY) |
| 419 | response = self.request(self.tempdir_name + '/?hi=2') |
| 420 | self.check_status_and_reason(response, HTTPStatus.OK) |
| 421 | response = self.request(self.tempdir_name + '?hi=1') |
| 422 | self.check_status_and_reason(response, HTTPStatus.MOVED_PERMANENTLY) |
| 423 | self.assertEqual(response.getheader("Location"), |
| 424 | self.tempdir_name + "/?hi=1") |
| 425 | |
Martin Panter | da3bb38 | 2016-04-11 00:40:08 +0000 | [diff] [blame] | 426 | def test_html_escape_filename(self): |
| 427 | filename = '<test&>.txt' |
| 428 | fullpath = os.path.join(self.tempdir, filename) |
| 429 | |
| 430 | try: |
| 431 | open(fullpath, 'w').close() |
| 432 | except OSError: |
| 433 | raise unittest.SkipTest('Can not create file %s on current file ' |
| 434 | 'system' % filename) |
| 435 | |
| 436 | try: |
| 437 | response = self.request(self.base_url + '/') |
| 438 | body = self.check_status_and_reason(response, HTTPStatus.OK) |
| 439 | enc = response.headers.get_content_charset() |
| 440 | finally: |
| 441 | os.unlink(fullpath) # avoid affecting test_undecodable_filename |
| 442 | |
| 443 | self.assertIsNotNone(enc) |
| 444 | html_text = '>%s<' % html.escape(filename, quote=False) |
| 445 | self.assertIn(html_text.encode(enc), body) |
| 446 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 447 | |
| 448 | cgi_file1 = """\ |
| 449 | #!%s |
| 450 | |
| 451 | print("Content-type: text/html") |
| 452 | print() |
| 453 | print("Hello World") |
| 454 | """ |
| 455 | |
| 456 | cgi_file2 = """\ |
| 457 | #!%s |
| 458 | import cgi |
| 459 | |
| 460 | print("Content-type: text/html") |
| 461 | print() |
| 462 | |
| 463 | form = cgi.FieldStorage() |
Florent Xicluna | 9b86b9a | 2010-03-19 19:00:44 +0000 | [diff] [blame] | 464 | print("%%s, %%s, %%s" %% (form.getfirst("spam"), form.getfirst("eggs"), |
| 465 | form.getfirst("bacon"))) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 466 | """ |
| 467 | |
Martin Panter | a02e18a | 2015-10-03 05:38:07 +0000 | [diff] [blame] | 468 | cgi_file4 = """\ |
| 469 | #!%s |
| 470 | import os |
| 471 | |
| 472 | print("Content-type: text/html") |
| 473 | print() |
| 474 | |
| 475 | print(os.environ["%s"]) |
| 476 | """ |
| 477 | |
Charles-François Natali | f7ed9fc | 2011-11-02 19:35:14 +0100 | [diff] [blame] | 478 | |
| 479 | @unittest.skipIf(hasattr(os, 'geteuid') and os.geteuid() == 0, |
| 480 | "This test can't be run reliably as root (issue #13308).") |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 481 | class CGIHTTPServerTestCase(BaseTestCase): |
| 482 | class request_handler(NoLogRequestHandler, CGIHTTPRequestHandler): |
| 483 | pass |
| 484 | |
Antoine Pitrou | e768c39 | 2012-08-05 14:52:45 +0200 | [diff] [blame] | 485 | linesep = os.linesep.encode('ascii') |
| 486 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 487 | def setUp(self): |
| 488 | BaseTestCase.setUp(self) |
Victor Stinner | 0b0ca0c | 2010-10-17 19:46:36 +0000 | [diff] [blame] | 489 | self.cwd = os.getcwd() |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 490 | self.parent_dir = tempfile.mkdtemp() |
| 491 | self.cgi_dir = os.path.join(self.parent_dir, 'cgi-bin') |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 492 | self.cgi_child_dir = os.path.join(self.cgi_dir, 'child-dir') |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 493 | os.mkdir(self.cgi_dir) |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 494 | os.mkdir(self.cgi_child_dir) |
Benjamin Peterson | 35aca89 | 2013-10-30 12:48:59 -0400 | [diff] [blame] | 495 | self.nocgi_path = None |
Victor Stinner | 0b0ca0c | 2010-10-17 19:46:36 +0000 | [diff] [blame] | 496 | self.file1_path = None |
| 497 | self.file2_path = None |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 498 | self.file3_path = None |
Martin Panter | a02e18a | 2015-10-03 05:38:07 +0000 | [diff] [blame] | 499 | self.file4_path = None |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 500 | |
Florent Xicluna | fd1b093 | 2010-03-28 00:25:02 +0000 | [diff] [blame] | 501 | # The shebang line should be pure ASCII: use symlink if possible. |
| 502 | # See issue #7668. |
Brian Curtin | 3b4499c | 2010-12-28 14:31:47 +0000 | [diff] [blame] | 503 | if support.can_symlink(): |
Florent Xicluna | fd1b093 | 2010-03-28 00:25:02 +0000 | [diff] [blame] | 504 | self.pythonexe = os.path.join(self.parent_dir, 'python') |
| 505 | os.symlink(sys.executable, self.pythonexe) |
| 506 | else: |
| 507 | self.pythonexe = sys.executable |
| 508 | |
Victor Stinner | 3218c31 | 2010-10-17 20:13:36 +0000 | [diff] [blame] | 509 | try: |
| 510 | # The python executable path is written as the first line of the |
| 511 | # CGI Python script. The encoding cookie cannot be used, and so the |
| 512 | # path should be encodable to the default script encoding (utf-8) |
| 513 | self.pythonexe.encode('utf-8') |
| 514 | except UnicodeEncodeError: |
| 515 | self.tearDown() |
Serhiy Storchaka | 0b4591e | 2013-02-04 15:45:00 +0200 | [diff] [blame] | 516 | self.skipTest("Python executable path is not encodable to utf-8") |
Victor Stinner | 3218c31 | 2010-10-17 20:13:36 +0000 | [diff] [blame] | 517 | |
Benjamin Peterson | 04e9de4 | 2013-10-30 12:43:09 -0400 | [diff] [blame] | 518 | self.nocgi_path = os.path.join(self.parent_dir, 'nocgi.py') |
| 519 | with open(self.nocgi_path, 'w') as fp: |
| 520 | fp.write(cgi_file1 % self.pythonexe) |
| 521 | os.chmod(self.nocgi_path, 0o777) |
| 522 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 523 | self.file1_path = os.path.join(self.cgi_dir, 'file1.py') |
Victor Stinner | 6fb4575 | 2010-10-17 20:17:41 +0000 | [diff] [blame] | 524 | with open(self.file1_path, 'w', encoding='utf-8') as file1: |
Florent Xicluna | fd1b093 | 2010-03-28 00:25:02 +0000 | [diff] [blame] | 525 | file1.write(cgi_file1 % self.pythonexe) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 526 | os.chmod(self.file1_path, 0o777) |
| 527 | |
| 528 | self.file2_path = os.path.join(self.cgi_dir, 'file2.py') |
Victor Stinner | 6fb4575 | 2010-10-17 20:17:41 +0000 | [diff] [blame] | 529 | with open(self.file2_path, 'w', encoding='utf-8') as file2: |
Florent Xicluna | fd1b093 | 2010-03-28 00:25:02 +0000 | [diff] [blame] | 530 | file2.write(cgi_file2 % self.pythonexe) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 531 | os.chmod(self.file2_path, 0o777) |
| 532 | |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 533 | self.file3_path = os.path.join(self.cgi_child_dir, 'file3.py') |
| 534 | with open(self.file3_path, 'w', encoding='utf-8') as file3: |
| 535 | file3.write(cgi_file1 % self.pythonexe) |
| 536 | os.chmod(self.file3_path, 0o777) |
| 537 | |
Martin Panter | a02e18a | 2015-10-03 05:38:07 +0000 | [diff] [blame] | 538 | self.file4_path = os.path.join(self.cgi_dir, 'file4.py') |
| 539 | with open(self.file4_path, 'w', encoding='utf-8') as file4: |
| 540 | file4.write(cgi_file4 % (self.pythonexe, 'QUERY_STRING')) |
| 541 | os.chmod(self.file4_path, 0o777) |
| 542 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 543 | os.chdir(self.parent_dir) |
| 544 | |
| 545 | def tearDown(self): |
| 546 | try: |
| 547 | os.chdir(self.cwd) |
Florent Xicluna | fd1b093 | 2010-03-28 00:25:02 +0000 | [diff] [blame] | 548 | if self.pythonexe != sys.executable: |
| 549 | os.remove(self.pythonexe) |
Benjamin Peterson | 35aca89 | 2013-10-30 12:48:59 -0400 | [diff] [blame] | 550 | if self.nocgi_path: |
| 551 | os.remove(self.nocgi_path) |
Victor Stinner | 0b0ca0c | 2010-10-17 19:46:36 +0000 | [diff] [blame] | 552 | if self.file1_path: |
| 553 | os.remove(self.file1_path) |
| 554 | if self.file2_path: |
| 555 | os.remove(self.file2_path) |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 556 | if self.file3_path: |
| 557 | os.remove(self.file3_path) |
Martin Panter | a02e18a | 2015-10-03 05:38:07 +0000 | [diff] [blame] | 558 | if self.file4_path: |
| 559 | os.remove(self.file4_path) |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 560 | os.rmdir(self.cgi_child_dir) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 561 | os.rmdir(self.cgi_dir) |
| 562 | os.rmdir(self.parent_dir) |
| 563 | finally: |
| 564 | BaseTestCase.tearDown(self) |
| 565 | |
Senthil Kumaran | d70846b | 2012-04-12 02:34:32 +0800 | [diff] [blame] | 566 | def test_url_collapse_path(self): |
| 567 | # verify tail is the last portion and head is the rest on proper urls |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 568 | test_vectors = { |
Senthil Kumaran | d70846b | 2012-04-12 02:34:32 +0800 | [diff] [blame] | 569 | '': '//', |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 570 | '..': IndexError, |
| 571 | '/.//..': IndexError, |
Senthil Kumaran | d70846b | 2012-04-12 02:34:32 +0800 | [diff] [blame] | 572 | '/': '//', |
| 573 | '//': '//', |
| 574 | '/\\': '//\\', |
| 575 | '/.//': '//', |
| 576 | 'cgi-bin/file1.py': '/cgi-bin/file1.py', |
| 577 | '/cgi-bin/file1.py': '/cgi-bin/file1.py', |
| 578 | 'a': '//a', |
| 579 | '/a': '//a', |
| 580 | '//a': '//a', |
| 581 | './a': '//a', |
| 582 | './C:/': '/C:/', |
| 583 | '/a/b': '/a/b', |
| 584 | '/a/b/': '/a/b/', |
| 585 | '/a/b/.': '/a/b/', |
| 586 | '/a/b/c/..': '/a/b/', |
| 587 | '/a/b/c/../d': '/a/b/d', |
| 588 | '/a/b/c/../d/e/../f': '/a/b/d/f', |
| 589 | '/a/b/c/../d/e/../../f': '/a/b/f', |
| 590 | '/a/b/c/../d/e/.././././..//f': '/a/b/f', |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 591 | '../a/b/c/../d/e/.././././..//f': IndexError, |
Senthil Kumaran | d70846b | 2012-04-12 02:34:32 +0800 | [diff] [blame] | 592 | '/a/b/c/../d/e/../../../f': '/a/f', |
| 593 | '/a/b/c/../d/e/../../../../f': '//f', |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 594 | '/a/b/c/../d/e/../../../../../f': IndexError, |
Senthil Kumaran | d70846b | 2012-04-12 02:34:32 +0800 | [diff] [blame] | 595 | '/a/b/c/../d/e/../../../../f/..': '//', |
| 596 | '/a/b/c/../d/e/../../../../f/../.': '//', |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 597 | } |
| 598 | for path, expected in test_vectors.items(): |
| 599 | if isinstance(expected, type) and issubclass(expected, Exception): |
| 600 | self.assertRaises(expected, |
Senthil Kumaran | d70846b | 2012-04-12 02:34:32 +0800 | [diff] [blame] | 601 | server._url_collapse_path, path) |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 602 | else: |
Senthil Kumaran | d70846b | 2012-04-12 02:34:32 +0800 | [diff] [blame] | 603 | actual = server._url_collapse_path(path) |
Florent Xicluna | 9b86b9a | 2010-03-19 19:00:44 +0000 | [diff] [blame] | 604 | self.assertEqual(expected, actual, |
| 605 | msg='path = %r\nGot: %r\nWanted: %r' % |
| 606 | (path, actual, expected)) |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 607 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 608 | def test_headers_and_content(self): |
| 609 | res = self.request('/cgi-bin/file1.py') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 610 | self.assertEqual( |
| 611 | (res.read(), res.getheader('Content-type'), res.status), |
| 612 | (b'Hello World' + self.linesep, 'text/html', HTTPStatus.OK)) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 613 | |
Benjamin Peterson | 04e9de4 | 2013-10-30 12:43:09 -0400 | [diff] [blame] | 614 | def test_issue19435(self): |
| 615 | res = self.request('///////////nocgi.py/../cgi-bin/nothere.sh') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 616 | self.assertEqual(res.status, HTTPStatus.NOT_FOUND) |
Benjamin Peterson | 04e9de4 | 2013-10-30 12:43:09 -0400 | [diff] [blame] | 617 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 618 | def test_post(self): |
Jeremy Hylton | 1afc169 | 2008-06-18 20:49:58 +0000 | [diff] [blame] | 619 | params = urllib.parse.urlencode( |
| 620 | {'spam' : 1, 'eggs' : 'python', 'bacon' : 123456}) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 621 | headers = {'Content-type' : 'application/x-www-form-urlencoded'} |
| 622 | res = self.request('/cgi-bin/file2.py', 'POST', params, headers) |
| 623 | |
Antoine Pitrou | e768c39 | 2012-08-05 14:52:45 +0200 | [diff] [blame] | 624 | self.assertEqual(res.read(), b'1, python, 123456' + self.linesep) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 625 | |
| 626 | def test_invaliduri(self): |
| 627 | res = self.request('/cgi-bin/invalid') |
| 628 | res.read() |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 629 | self.assertEqual(res.status, HTTPStatus.NOT_FOUND) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 630 | |
| 631 | def test_authorization(self): |
| 632 | headers = {b'Authorization' : b'Basic ' + |
| 633 | base64.b64encode(b'username:pass')} |
| 634 | res = self.request('/cgi-bin/file1.py', 'GET', headers=headers) |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 635 | self.assertEqual( |
| 636 | (b'Hello World' + self.linesep, 'text/html', HTTPStatus.OK), |
| 637 | (res.read(), res.getheader('Content-type'), res.status)) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 638 | |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 639 | def test_no_leading_slash(self): |
| 640 | # http://bugs.python.org/issue2254 |
| 641 | res = self.request('cgi-bin/file1.py') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 642 | self.assertEqual( |
| 643 | (b'Hello World' + self.linesep, 'text/html', HTTPStatus.OK), |
| 644 | (res.read(), res.getheader('Content-type'), res.status)) |
Benjamin Peterson | ad71f0f | 2009-04-11 20:12:10 +0000 | [diff] [blame] | 645 | |
Senthil Kumaran | 4271372 | 2010-10-03 17:55:45 +0000 | [diff] [blame] | 646 | def test_os_environ_is_not_altered(self): |
| 647 | signature = "Test CGI Server" |
| 648 | os.environ['SERVER_SOFTWARE'] = signature |
| 649 | res = self.request('/cgi-bin/file1.py') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 650 | self.assertEqual( |
| 651 | (b'Hello World' + self.linesep, 'text/html', HTTPStatus.OK), |
| 652 | (res.read(), res.getheader('Content-type'), res.status)) |
Senthil Kumaran | 4271372 | 2010-10-03 17:55:45 +0000 | [diff] [blame] | 653 | self.assertEqual(os.environ['SERVER_SOFTWARE'], signature) |
| 654 | |
Benjamin Peterson | 73b8b1c | 2014-06-14 18:36:29 -0700 | [diff] [blame] | 655 | def test_urlquote_decoding_in_cgi_check(self): |
| 656 | res = self.request('/cgi-bin%2ffile1.py') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 657 | self.assertEqual( |
| 658 | (b'Hello World' + self.linesep, 'text/html', HTTPStatus.OK), |
| 659 | (res.read(), res.getheader('Content-type'), res.status)) |
Benjamin Peterson | 73b8b1c | 2014-06-14 18:36:29 -0700 | [diff] [blame] | 660 | |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 661 | def test_nested_cgi_path_issue21323(self): |
| 662 | res = self.request('/cgi-bin/child-dir/file3.py') |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 663 | self.assertEqual( |
| 664 | (b'Hello World' + self.linesep, 'text/html', HTTPStatus.OK), |
| 665 | (res.read(), res.getheader('Content-type'), res.status)) |
Ned Deily | 915a30f | 2014-07-12 22:06:26 -0700 | [diff] [blame] | 666 | |
Martin Panter | a02e18a | 2015-10-03 05:38:07 +0000 | [diff] [blame] | 667 | def test_query_with_multiple_question_mark(self): |
| 668 | res = self.request('/cgi-bin/file4.py?a=b?c=d') |
| 669 | self.assertEqual( |
Martin Panter | eb1fee9 | 2015-10-03 06:07:22 +0000 | [diff] [blame] | 670 | (b'a=b?c=d' + self.linesep, 'text/html', HTTPStatus.OK), |
Martin Panter | a02e18a | 2015-10-03 05:38:07 +0000 | [diff] [blame] | 671 | (res.read(), res.getheader('Content-type'), res.status)) |
| 672 | |
Martin Panter | cb29e8c | 2015-10-03 05:55:46 +0000 | [diff] [blame] | 673 | def test_query_with_continuous_slashes(self): |
| 674 | res = self.request('/cgi-bin/file4.py?k=aa%2F%2Fbb&//q//p//=//a//b//') |
| 675 | self.assertEqual( |
| 676 | (b'k=aa%2F%2Fbb&//q//p//=//a//b//' + self.linesep, |
Martin Panter | eb1fee9 | 2015-10-03 06:07:22 +0000 | [diff] [blame] | 677 | 'text/html', HTTPStatus.OK), |
Martin Panter | cb29e8c | 2015-10-03 05:55:46 +0000 | [diff] [blame] | 678 | (res.read(), res.getheader('Content-type'), res.status)) |
| 679 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 680 | |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 681 | class SocketlessRequestHandler(SimpleHTTPRequestHandler): |
| 682 | def __init__(self): |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 683 | self.get_called = False |
| 684 | self.protocol_version = "HTTP/1.1" |
| 685 | |
| 686 | def do_GET(self): |
| 687 | self.get_called = True |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 688 | self.send_response(HTTPStatus.OK) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 689 | self.send_header('Content-Type', 'text/html') |
| 690 | self.end_headers() |
| 691 | self.wfile.write(b'<html><body>Data</body></html>\r\n') |
| 692 | |
| 693 | def log_message(self, format, *args): |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 694 | pass |
| 695 | |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 696 | class RejectingSocketlessRequestHandler(SocketlessRequestHandler): |
| 697 | def handle_expect_100(self): |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 698 | self.send_error(HTTPStatus.EXPECTATION_FAILED) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 699 | return False |
| 700 | |
Senthil Kumaran | c7ae19b | 2011-05-09 23:25:02 +0800 | [diff] [blame] | 701 | |
| 702 | class AuditableBytesIO: |
| 703 | |
| 704 | def __init__(self): |
| 705 | self.datas = [] |
| 706 | |
| 707 | def write(self, data): |
| 708 | self.datas.append(data) |
| 709 | |
| 710 | def getData(self): |
| 711 | return b''.join(self.datas) |
| 712 | |
| 713 | @property |
| 714 | def numWrites(self): |
| 715 | return len(self.datas) |
| 716 | |
| 717 | |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 718 | class BaseHTTPRequestHandlerTestCase(unittest.TestCase): |
Ezio Melotti | 3b3499b | 2011-03-16 11:35:38 +0200 | [diff] [blame] | 719 | """Test the functionality of the BaseHTTPServer. |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 720 | |
| 721 | Test the support for the Expect 100-continue header. |
| 722 | """ |
| 723 | |
| 724 | HTTPResponseMatch = re.compile(b'HTTP/1.[0-9]+ 200 OK') |
| 725 | |
| 726 | def setUp (self): |
| 727 | self.handler = SocketlessRequestHandler() |
| 728 | |
| 729 | def send_typical_request(self, message): |
| 730 | input = BytesIO(message) |
| 731 | output = BytesIO() |
| 732 | self.handler.rfile = input |
| 733 | self.handler.wfile = output |
| 734 | self.handler.handle_one_request() |
| 735 | output.seek(0) |
| 736 | return output.readlines() |
| 737 | |
| 738 | def verify_get_called(self): |
| 739 | self.assertTrue(self.handler.get_called) |
| 740 | |
| 741 | def verify_expected_headers(self, headers): |
| 742 | for fieldName in b'Server: ', b'Date: ', b'Content-Type: ': |
| 743 | self.assertEqual(sum(h.startswith(fieldName) for h in headers), 1) |
| 744 | |
| 745 | def verify_http_server_response(self, response): |
| 746 | match = self.HTTPResponseMatch.search(response) |
Serhiy Storchaka | 25d8aea | 2014-02-08 14:50:08 +0200 | [diff] [blame] | 747 | self.assertIsNotNone(match) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 748 | |
| 749 | def test_http_1_1(self): |
| 750 | result = self.send_typical_request(b'GET / HTTP/1.1\r\n\r\n') |
| 751 | self.verify_http_server_response(result[0]) |
| 752 | self.verify_expected_headers(result[1:-1]) |
| 753 | self.verify_get_called() |
| 754 | self.assertEqual(result[-1], b'<html><body>Data</body></html>\r\n') |
Benjamin Peterson | 70e2847 | 2015-02-17 21:11:10 -0500 | [diff] [blame] | 755 | self.assertEqual(self.handler.requestline, 'GET / HTTP/1.1') |
| 756 | self.assertEqual(self.handler.command, 'GET') |
| 757 | self.assertEqual(self.handler.path, '/') |
| 758 | self.assertEqual(self.handler.request_version, 'HTTP/1.1') |
| 759 | self.assertSequenceEqual(self.handler.headers.items(), ()) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 760 | |
| 761 | def test_http_1_0(self): |
| 762 | result = self.send_typical_request(b'GET / HTTP/1.0\r\n\r\n') |
| 763 | self.verify_http_server_response(result[0]) |
| 764 | self.verify_expected_headers(result[1:-1]) |
| 765 | self.verify_get_called() |
| 766 | self.assertEqual(result[-1], b'<html><body>Data</body></html>\r\n') |
Benjamin Peterson | 70e2847 | 2015-02-17 21:11:10 -0500 | [diff] [blame] | 767 | self.assertEqual(self.handler.requestline, 'GET / HTTP/1.0') |
| 768 | self.assertEqual(self.handler.command, 'GET') |
| 769 | self.assertEqual(self.handler.path, '/') |
| 770 | self.assertEqual(self.handler.request_version, 'HTTP/1.0') |
| 771 | self.assertSequenceEqual(self.handler.headers.items(), ()) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 772 | |
| 773 | def test_http_0_9(self): |
| 774 | result = self.send_typical_request(b'GET / HTTP/0.9\r\n\r\n') |
| 775 | self.assertEqual(len(result), 1) |
| 776 | self.assertEqual(result[0], b'<html><body>Data</body></html>\r\n') |
| 777 | self.verify_get_called() |
| 778 | |
| 779 | def test_with_continue_1_0(self): |
| 780 | result = self.send_typical_request(b'GET / HTTP/1.0\r\nExpect: 100-continue\r\n\r\n') |
| 781 | self.verify_http_server_response(result[0]) |
| 782 | self.verify_expected_headers(result[1:-1]) |
| 783 | self.verify_get_called() |
| 784 | self.assertEqual(result[-1], b'<html><body>Data</body></html>\r\n') |
Benjamin Peterson | 70e2847 | 2015-02-17 21:11:10 -0500 | [diff] [blame] | 785 | self.assertEqual(self.handler.requestline, 'GET / HTTP/1.0') |
| 786 | self.assertEqual(self.handler.command, 'GET') |
| 787 | self.assertEqual(self.handler.path, '/') |
| 788 | self.assertEqual(self.handler.request_version, 'HTTP/1.0') |
| 789 | headers = (("Expect", "100-continue"),) |
| 790 | self.assertSequenceEqual(self.handler.headers.items(), headers) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 791 | |
| 792 | def test_with_continue_1_1(self): |
| 793 | result = self.send_typical_request(b'GET / HTTP/1.1\r\nExpect: 100-continue\r\n\r\n') |
| 794 | self.assertEqual(result[0], b'HTTP/1.1 100 Continue\r\n') |
Benjamin Peterson | 0442423 | 2014-01-18 21:50:18 -0500 | [diff] [blame] | 795 | self.assertEqual(result[1], b'\r\n') |
| 796 | self.assertEqual(result[2], b'HTTP/1.1 200 OK\r\n') |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 797 | self.verify_expected_headers(result[2:-1]) |
| 798 | self.verify_get_called() |
| 799 | self.assertEqual(result[-1], b'<html><body>Data</body></html>\r\n') |
Benjamin Peterson | 70e2847 | 2015-02-17 21:11:10 -0500 | [diff] [blame] | 800 | self.assertEqual(self.handler.requestline, 'GET / HTTP/1.1') |
| 801 | self.assertEqual(self.handler.command, 'GET') |
| 802 | self.assertEqual(self.handler.path, '/') |
| 803 | self.assertEqual(self.handler.request_version, 'HTTP/1.1') |
| 804 | headers = (("Expect", "100-continue"),) |
| 805 | self.assertSequenceEqual(self.handler.headers.items(), headers) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 806 | |
Senthil Kumaran | c7ae19b | 2011-05-09 23:25:02 +0800 | [diff] [blame] | 807 | def test_header_buffering_of_send_error(self): |
Senthil Kumaran | e4dad4f | 2010-11-21 14:36:14 +0000 | [diff] [blame] | 808 | |
| 809 | input = BytesIO(b'GET / HTTP/1.1\r\n\r\n') |
Senthil Kumaran | c7ae19b | 2011-05-09 23:25:02 +0800 | [diff] [blame] | 810 | output = AuditableBytesIO() |
| 811 | handler = SocketlessRequestHandler() |
| 812 | handler.rfile = input |
| 813 | handler.wfile = output |
| 814 | handler.request_version = 'HTTP/1.1' |
| 815 | handler.requestline = '' |
| 816 | handler.command = None |
Senthil Kumaran | e4dad4f | 2010-11-21 14:36:14 +0000 | [diff] [blame] | 817 | |
Senthil Kumaran | c7ae19b | 2011-05-09 23:25:02 +0800 | [diff] [blame] | 818 | handler.send_error(418) |
| 819 | self.assertEqual(output.numWrites, 2) |
| 820 | |
| 821 | def test_header_buffering_of_send_response_only(self): |
| 822 | |
| 823 | input = BytesIO(b'GET / HTTP/1.1\r\n\r\n') |
| 824 | output = AuditableBytesIO() |
| 825 | handler = SocketlessRequestHandler() |
| 826 | handler.rfile = input |
| 827 | handler.wfile = output |
| 828 | handler.request_version = 'HTTP/1.1' |
| 829 | |
| 830 | handler.send_response_only(418) |
| 831 | self.assertEqual(output.numWrites, 0) |
| 832 | handler.end_headers() |
| 833 | self.assertEqual(output.numWrites, 1) |
| 834 | |
| 835 | def test_header_buffering_of_send_header(self): |
| 836 | |
| 837 | input = BytesIO(b'GET / HTTP/1.1\r\n\r\n') |
| 838 | output = AuditableBytesIO() |
| 839 | handler = SocketlessRequestHandler() |
| 840 | handler.rfile = input |
| 841 | handler.wfile = output |
| 842 | handler.request_version = 'HTTP/1.1' |
| 843 | |
| 844 | handler.send_header('Foo', 'foo') |
| 845 | handler.send_header('bar', 'bar') |
| 846 | self.assertEqual(output.numWrites, 0) |
| 847 | handler.end_headers() |
| 848 | self.assertEqual(output.getData(), b'Foo: foo\r\nbar: bar\r\n\r\n') |
| 849 | self.assertEqual(output.numWrites, 1) |
Senthil Kumaran | e4dad4f | 2010-11-21 14:36:14 +0000 | [diff] [blame] | 850 | |
| 851 | def test_header_unbuffered_when_continue(self): |
| 852 | |
| 853 | def _readAndReseek(f): |
| 854 | pos = f.tell() |
| 855 | f.seek(0) |
| 856 | data = f.read() |
| 857 | f.seek(pos) |
| 858 | return data |
| 859 | |
| 860 | input = BytesIO(b'GET / HTTP/1.1\r\nExpect: 100-continue\r\n\r\n') |
| 861 | output = BytesIO() |
| 862 | self.handler.rfile = input |
| 863 | self.handler.wfile = output |
| 864 | self.handler.request_version = 'HTTP/1.1' |
| 865 | |
| 866 | self.handler.handle_one_request() |
| 867 | self.assertNotEqual(_readAndReseek(output), b'') |
| 868 | result = _readAndReseek(output).split(b'\r\n') |
| 869 | self.assertEqual(result[0], b'HTTP/1.1 100 Continue') |
Benjamin Peterson | 0442423 | 2014-01-18 21:50:18 -0500 | [diff] [blame] | 870 | self.assertEqual(result[1], b'') |
| 871 | self.assertEqual(result[2], b'HTTP/1.1 200 OK') |
Senthil Kumaran | e4dad4f | 2010-11-21 14:36:14 +0000 | [diff] [blame] | 872 | |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 873 | def test_with_continue_rejected(self): |
| 874 | usual_handler = self.handler # Save to avoid breaking any subsequent tests. |
| 875 | self.handler = RejectingSocketlessRequestHandler() |
| 876 | result = self.send_typical_request(b'GET / HTTP/1.1\r\nExpect: 100-continue\r\n\r\n') |
| 877 | self.assertEqual(result[0], b'HTTP/1.1 417 Expectation Failed\r\n') |
| 878 | self.verify_expected_headers(result[1:-1]) |
| 879 | # The expect handler should short circuit the usual get method by |
| 880 | # returning false here, so get_called should be false |
| 881 | self.assertFalse(self.handler.get_called) |
| 882 | self.assertEqual(sum(r == b'Connection: close\r\n' for r in result[1:-1]), 1) |
| 883 | self.handler = usual_handler # Restore to avoid breaking any subsequent tests. |
| 884 | |
Antoine Pitrou | c492437 | 2010-12-16 16:48:36 +0000 | [diff] [blame] | 885 | def test_request_length(self): |
| 886 | # Issue #10714: huge request lines are discarded, to avoid Denial |
| 887 | # of Service attacks. |
| 888 | result = self.send_typical_request(b'GET ' + b'x' * 65537) |
| 889 | self.assertEqual(result[0], b'HTTP/1.1 414 Request-URI Too Long\r\n') |
| 890 | self.assertFalse(self.handler.get_called) |
Benjamin Peterson | 70e2847 | 2015-02-17 21:11:10 -0500 | [diff] [blame] | 891 | self.assertIsInstance(self.handler.requestline, str) |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 892 | |
Senthil Kumaran | 5466bf1 | 2010-12-18 16:55:23 +0000 | [diff] [blame] | 893 | def test_header_length(self): |
| 894 | # Issue #6791: same for headers |
| 895 | result = self.send_typical_request( |
| 896 | b'GET / HTTP/1.1\r\nX-Foo: bar' + b'r' * 65537 + b'\r\n\r\n') |
Martin Panter | 50badad | 2016-04-03 01:28:53 +0000 | [diff] [blame] | 897 | self.assertEqual(result[0], b'HTTP/1.1 431 Line too long\r\n') |
Senthil Kumaran | 5466bf1 | 2010-12-18 16:55:23 +0000 | [diff] [blame] | 898 | self.assertFalse(self.handler.get_called) |
Benjamin Peterson | 70e2847 | 2015-02-17 21:11:10 -0500 | [diff] [blame] | 899 | self.assertEqual(self.handler.requestline, 'GET / HTTP/1.1') |
| 900 | |
Martin Panter | acc0319 | 2016-04-03 00:45:46 +0000 | [diff] [blame] | 901 | def test_too_many_headers(self): |
| 902 | result = self.send_typical_request( |
| 903 | b'GET / HTTP/1.1\r\n' + b'X-Foo: bar\r\n' * 101 + b'\r\n') |
| 904 | self.assertEqual(result[0], b'HTTP/1.1 431 Too many headers\r\n') |
| 905 | self.assertFalse(self.handler.get_called) |
| 906 | self.assertEqual(self.handler.requestline, 'GET / HTTP/1.1') |
| 907 | |
Martin Panter | da3bb38 | 2016-04-11 00:40:08 +0000 | [diff] [blame] | 908 | def test_html_escape_on_error(self): |
| 909 | result = self.send_typical_request( |
| 910 | b'<script>alert("hello")</script> / HTTP/1.1') |
| 911 | result = b''.join(result) |
| 912 | text = '<script>alert("hello")</script>' |
| 913 | self.assertIn(html.escape(text, quote=False).encode('ascii'), result) |
| 914 | |
Benjamin Peterson | 70e2847 | 2015-02-17 21:11:10 -0500 | [diff] [blame] | 915 | def test_close_connection(self): |
| 916 | # handle_one_request() should be repeatedly called until |
| 917 | # it sets close_connection |
| 918 | def handle_one_request(): |
| 919 | self.handler.close_connection = next(close_values) |
| 920 | self.handler.handle_one_request = handle_one_request |
| 921 | |
| 922 | close_values = iter((True,)) |
| 923 | self.handler.handle() |
| 924 | self.assertRaises(StopIteration, next, close_values) |
| 925 | |
| 926 | close_values = iter((False, False, True)) |
| 927 | self.handler.handle() |
| 928 | self.assertRaises(StopIteration, next, close_values) |
Senthil Kumaran | 5466bf1 | 2010-12-18 16:55:23 +0000 | [diff] [blame] | 929 | |
Berker Peksag | 04bc5b9 | 2016-03-14 06:06:03 +0200 | [diff] [blame] | 930 | def test_date_time_string(self): |
| 931 | now = time.time() |
| 932 | # this is the old code that formats the timestamp |
| 933 | year, month, day, hh, mm, ss, wd, y, z = time.gmtime(now) |
| 934 | expected = "%s, %02d %3s %4d %02d:%02d:%02d GMT" % ( |
| 935 | self.handler.weekdayname[wd], |
| 936 | day, |
| 937 | self.handler.monthname[month], |
| 938 | year, hh, mm, ss |
| 939 | ) |
| 940 | self.assertEqual(self.handler.date_time_string(timestamp=now), expected) |
| 941 | |
| 942 | |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 943 | class SimpleHTTPRequestHandlerTestCase(unittest.TestCase): |
| 944 | """ Test url parsing """ |
| 945 | def setUp(self): |
| 946 | self.translated = os.getcwd() |
| 947 | self.translated = os.path.join(self.translated, 'filename') |
| 948 | self.handler = SocketlessRequestHandler() |
| 949 | |
| 950 | def test_query_arguments(self): |
| 951 | path = self.handler.translate_path('/filename') |
| 952 | self.assertEqual(path, self.translated) |
| 953 | path = self.handler.translate_path('/filename?foo=bar') |
| 954 | self.assertEqual(path, self.translated) |
| 955 | path = self.handler.translate_path('/filename?a=b&spam=eggs#zot') |
| 956 | self.assertEqual(path, self.translated) |
| 957 | |
| 958 | def test_start_with_double_slash(self): |
| 959 | path = self.handler.translate_path('//filename') |
| 960 | self.assertEqual(path, self.translated) |
| 961 | path = self.handler.translate_path('//filename?foo=bar') |
| 962 | self.assertEqual(path, self.translated) |
| 963 | |
Martin Panter | d274b3f | 2016-04-18 03:45:18 +0000 | [diff] [blame] | 964 | def test_windows_colon(self): |
| 965 | with support.swap_attr(server.os, 'path', ntpath): |
| 966 | path = self.handler.translate_path('c:c:c:foo/filename') |
| 967 | path = path.replace(ntpath.sep, os.sep) |
| 968 | self.assertEqual(path, self.translated) |
| 969 | |
| 970 | path = self.handler.translate_path('\\c:../filename') |
| 971 | path = path.replace(ntpath.sep, os.sep) |
| 972 | self.assertEqual(path, self.translated) |
| 973 | |
| 974 | path = self.handler.translate_path('c:\\c:..\\foo/filename') |
| 975 | path = path.replace(ntpath.sep, os.sep) |
| 976 | self.assertEqual(path, self.translated) |
| 977 | |
| 978 | path = self.handler.translate_path('c:c:foo\\c:c:bar/filename') |
| 979 | path = path.replace(ntpath.sep, os.sep) |
| 980 | self.assertEqual(path, self.translated) |
| 981 | |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 982 | |
Berker Peksag | 366c570 | 2015-02-13 20:48:15 +0200 | [diff] [blame] | 983 | class MiscTestCase(unittest.TestCase): |
| 984 | def test_all(self): |
| 985 | expected = [] |
| 986 | blacklist = {'executable', 'nobody_uid', 'test'} |
| 987 | for name in dir(server): |
| 988 | if name.startswith('_') or name in blacklist: |
| 989 | continue |
| 990 | module_object = getattr(server, name) |
| 991 | if getattr(module_object, '__module__', None) == 'http.server': |
| 992 | expected.append(name) |
| 993 | self.assertCountEqual(server.__all__, expected) |
| 994 | |
| 995 | |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 996 | def test_main(verbose=None): |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 997 | cwd = os.getcwd() |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 998 | try: |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 999 | support.run_unittest( |
Serhiy Storchaka | c0a23e6 | 2015-03-07 11:51:37 +0200 | [diff] [blame] | 1000 | RequestHandlerLoggingTestCase, |
Senthil Kumaran | 0f476d4 | 2010-09-30 06:09:18 +0000 | [diff] [blame] | 1001 | BaseHTTPRequestHandlerTestCase, |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 1002 | BaseHTTPServerTestCase, |
| 1003 | SimpleHTTPServerTestCase, |
| 1004 | CGIHTTPServerTestCase, |
| 1005 | SimpleHTTPRequestHandlerTestCase, |
Berker Peksag | 366c570 | 2015-02-13 20:48:15 +0200 | [diff] [blame] | 1006 | MiscTestCase, |
Georg Brandl | 6fcac0d | 2010-08-02 18:56:54 +0000 | [diff] [blame] | 1007 | ) |
Georg Brandl | b533e26 | 2008-05-25 18:19:30 +0000 | [diff] [blame] | 1008 | finally: |
| 1009 | os.chdir(cwd) |
| 1010 | |
| 1011 | if __name__ == '__main__': |
| 1012 | test_main() |