1758447cfSAndreas Gohr<?php 2*d4f83172SAndreas Gohr 3758447cfSAndreas Gohr/** 4758447cfSAndreas Gohr * Utilities for handling HTTP related tasks 5758447cfSAndreas Gohr * 6758447cfSAndreas Gohr * @license GPL 2 (http://www.gnu.org/licenses/gpl.html) 7758447cfSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org> 8758447cfSAndreas Gohr */ 9758447cfSAndreas Gohr 10758447cfSAndreas Gohrdefine('HTTP_MULTIPART_BOUNDARY', 'D0KuW1K1B0uNDARY'); 11758447cfSAndreas Gohrdefine('HTTP_HEADER_LF', "\r\n"); 12758447cfSAndreas Gohrdefine('HTTP_CHUNK_SIZE', 16 * 1024); 13758447cfSAndreas Gohr 14758447cfSAndreas Gohr/** 15758447cfSAndreas Gohr * Checks and sets HTTP headers for conditional HTTP requests 16758447cfSAndreas Gohr * 1793b2e677SMichael Hamann * @param int $timestamp lastmodified time of the cache file 18758447cfSAndreas Gohr * @returns void or exits with previously header() commands executed 1924870174SAndreas Gohr * @link http://simonwillison.net/2003/Apr/23/conditionalGet/ 2024870174SAndreas Gohr * 2124870174SAndreas Gohr * @author Simon Willison <swillison@gmail.com> 22758447cfSAndreas Gohr */ 2324870174SAndreas Gohrfunction http_conditionalRequest($timestamp) 2424870174SAndreas Gohr{ 252b9be456SAndreas Gohr global $INPUT; 262b9be456SAndreas Gohr 27758447cfSAndreas Gohr // A PHP implementation of conditional get, see 2823a96c41SElan Ruusamäe // http://fishbowl.pastiche.org/2002/10/21/http_conditional_get_for_rss_hackers/ 29758447cfSAndreas Gohr $last_modified = substr(gmdate('r', $timestamp), 0, -5) . 'GMT'; 30758447cfSAndreas Gohr $etag = '"' . md5($last_modified) . '"'; 31758447cfSAndreas Gohr // Send the headers 32758447cfSAndreas Gohr header("Last-Modified: $last_modified"); 33758447cfSAndreas Gohr header("ETag: $etag"); 34758447cfSAndreas Gohr // See if the client has provided the required headers 352b9be456SAndreas Gohr $if_modified_since = $INPUT->server->filter('stripslashes')->str('HTTP_IF_MODIFIED_SINCE', false); 362b9be456SAndreas Gohr $if_none_match = $INPUT->server->filter('stripslashes')->str('HTTP_IF_NONE_MATCH', false); 37758447cfSAndreas Gohr 38758447cfSAndreas Gohr if (!$if_modified_since && !$if_none_match) { 39758447cfSAndreas Gohr return; 40758447cfSAndreas Gohr } 41758447cfSAndreas Gohr 42758447cfSAndreas Gohr // At least one of the headers is there - check them 43758447cfSAndreas Gohr if ($if_none_match && $if_none_match != $etag) { 44758447cfSAndreas Gohr return; // etag is there but doesn't match 45758447cfSAndreas Gohr } 46758447cfSAndreas Gohr 47758447cfSAndreas Gohr if ($if_modified_since && $if_modified_since != $last_modified) { 48758447cfSAndreas Gohr return; // if-modified-since is there but doesn't match 49758447cfSAndreas Gohr } 50758447cfSAndreas Gohr 51758447cfSAndreas Gohr // Nothing has changed since their last request - serve a 304 and exit 52758447cfSAndreas Gohr header('HTTP/1.0 304 Not Modified'); 53758447cfSAndreas Gohr 54758447cfSAndreas Gohr // don't produce output, even if compression is on 55c66972f2SAdrian Lang @ob_end_clean(); 56758447cfSAndreas Gohr exit; 57758447cfSAndreas Gohr} 58758447cfSAndreas Gohr 59758447cfSAndreas Gohr/** 60b051e974SChristopher Smith * Let the webserver send the given file via x-sendfile method 61758447cfSAndreas Gohr * 6240e0b444SDominik Eckelmann * @param string $file absolute path of file to send 63f327a5f0SChristopher Smith * @returns void or exits with previous header() commands executed 6424870174SAndreas Gohr * @author Chris Smith <chris@jalakai.co.uk> 6524870174SAndreas Gohr * 66758447cfSAndreas Gohr */ 6724870174SAndreas Gohrfunction http_sendfile($file) 6824870174SAndreas Gohr{ 69758447cfSAndreas Gohr global $conf; 70758447cfSAndreas Gohr 71758447cfSAndreas Gohr //use x-sendfile header to pass the delivery to compatible web servers 72758447cfSAndreas Gohr if ($conf['xsendfile'] == 1) { 73758447cfSAndreas Gohr header("X-LIGHTTPD-send-file: $file"); 74758447cfSAndreas Gohr ob_end_clean(); 75758447cfSAndreas Gohr exit; 76758447cfSAndreas Gohr } elseif ($conf['xsendfile'] == 2) { 77758447cfSAndreas Gohr header("X-Sendfile: $file"); 78758447cfSAndreas Gohr ob_end_clean(); 79758447cfSAndreas Gohr exit; 80758447cfSAndreas Gohr } elseif ($conf['xsendfile'] == 3) { 81446b5b59SDominik Eckelmann // FS#2388 nginx just needs the relative path. 82446b5b59SDominik Eckelmann $file = DOKU_REL . substr($file, strlen(fullpath(DOKU_INC)) + 1); 83758447cfSAndreas Gohr header("X-Accel-Redirect: $file"); 84758447cfSAndreas Gohr ob_end_clean(); 85758447cfSAndreas Gohr exit; 86758447cfSAndreas Gohr } 87758447cfSAndreas Gohr} 88758447cfSAndreas Gohr 89758447cfSAndreas Gohr/** 90758447cfSAndreas Gohr * Send file contents supporting rangeRequests 91758447cfSAndreas Gohr * 92758447cfSAndreas Gohr * This function exits the running script 93758447cfSAndreas Gohr * 9490124802SGerrit Uitslag * @param resource $fh - file handle for an already open file 95758447cfSAndreas Gohr * @param int $size - size of the whole file 96758447cfSAndreas Gohr * @param int $mime - MIME type of the file 97758447cfSAndreas Gohr * 98758447cfSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org> 99758447cfSAndreas Gohr */ 10024870174SAndreas Gohrfunction http_rangeRequest($fh, $size, $mime) 10124870174SAndreas Gohr{ 1022b9be456SAndreas Gohr global $INPUT; 1032b9be456SAndreas Gohr 10424870174SAndreas Gohr $ranges = []; 105758447cfSAndreas Gohr $isrange = false; 106758447cfSAndreas Gohr 107758447cfSAndreas Gohr header('Accept-Ranges: bytes'); 108758447cfSAndreas Gohr 1092b9be456SAndreas Gohr if (!$INPUT->server->has('HTTP_RANGE')) { 110758447cfSAndreas Gohr // no range requested - send the whole file 11124870174SAndreas Gohr $ranges[] = [0, $size, $size]; 112758447cfSAndreas Gohr } else { 1132b9be456SAndreas Gohr $t = explode('=', $INPUT->server->str('HTTP_RANGE')); 114758447cfSAndreas Gohr if (!$t[0] == 'bytes') { 115758447cfSAndreas Gohr // we only understand byte ranges - send the whole file 11624870174SAndreas Gohr $ranges[] = [0, $size, $size]; 117758447cfSAndreas Gohr } else { 118758447cfSAndreas Gohr $isrange = true; 119758447cfSAndreas Gohr // handle multiple ranges 120758447cfSAndreas Gohr $r = explode(',', $t[1]); 121758447cfSAndreas Gohr foreach ($r as $x) { 122758447cfSAndreas Gohr $p = explode('-', $x); 123758447cfSAndreas Gohr $start = (int)$p[0]; 124758447cfSAndreas Gohr $end = (int)$p[1]; 125758447cfSAndreas Gohr if (!$end) $end = $size - 1; 126758447cfSAndreas Gohr if ($start > $end || $start > $size || $end > $size) { 127758447cfSAndreas Gohr header('HTTP/1.1 416 Requested Range Not Satisfiable'); 12826dfc232SAndreas Gohr echo 'Bad Range Request!'; 129758447cfSAndreas Gohr exit; 130758447cfSAndreas Gohr } 131758447cfSAndreas Gohr $len = $end - $start + 1; 13224870174SAndreas Gohr $ranges[] = [$start, $end, $len]; 133758447cfSAndreas Gohr } 134758447cfSAndreas Gohr } 135758447cfSAndreas Gohr } 136758447cfSAndreas Gohr $parts = count($ranges); 137758447cfSAndreas Gohr 138758447cfSAndreas Gohr // now send the type and length headers 139758447cfSAndreas Gohr if (!$isrange) { 140758447cfSAndreas Gohr header("Content-Type: $mime", true); 141758447cfSAndreas Gohr } else { 142758447cfSAndreas Gohr header('HTTP/1.1 206 Partial Content'); 143758447cfSAndreas Gohr if ($parts == 1) { 144758447cfSAndreas Gohr header("Content-Type: $mime", true); 145758447cfSAndreas Gohr } else { 146758447cfSAndreas Gohr header('Content-Type: multipart/byteranges; boundary=' . HTTP_MULTIPART_BOUNDARY, true); 147758447cfSAndreas Gohr } 148758447cfSAndreas Gohr } 149758447cfSAndreas Gohr 150758447cfSAndreas Gohr // send all ranges 151758447cfSAndreas Gohr for ($i = 0; $i < $parts; $i++) { 15224870174SAndreas Gohr [$start, $end, $len] = $ranges[$i]; 153758447cfSAndreas Gohr 154758447cfSAndreas Gohr // multipart or normal headers 155758447cfSAndreas Gohr if ($parts > 1) { 156758447cfSAndreas Gohr echo HTTP_HEADER_LF . '--' . HTTP_MULTIPART_BOUNDARY . HTTP_HEADER_LF; 157758447cfSAndreas Gohr echo "Content-Type: $mime" . HTTP_HEADER_LF; 158758447cfSAndreas Gohr echo "Content-Range: bytes $start-$end/$size" . HTTP_HEADER_LF; 159b8b5563eSAndreas Gohr echo HTTP_HEADER_LF; 160758447cfSAndreas Gohr } else { 161758447cfSAndreas Gohr header("Content-Length: $len"); 162758447cfSAndreas Gohr if ($isrange) { 163758447cfSAndreas Gohr header("Content-Range: bytes $start-$end/$size"); 164758447cfSAndreas Gohr } 165758447cfSAndreas Gohr } 166758447cfSAndreas Gohr 167758447cfSAndreas Gohr // send file content 168758447cfSAndreas Gohr fseek($fh, $start); //seek to start of range 169758447cfSAndreas Gohr $chunk = ($len > HTTP_CHUNK_SIZE) ? HTTP_CHUNK_SIZE : $len; 170758447cfSAndreas Gohr while (!feof($fh) && $chunk > 0) { 171758447cfSAndreas Gohr @set_time_limit(30); // large files can take a lot of time 17226dfc232SAndreas Gohr echo fread($fh, $chunk); 173758447cfSAndreas Gohr flush(); 174758447cfSAndreas Gohr $len -= $chunk; 175758447cfSAndreas Gohr $chunk = ($len > HTTP_CHUNK_SIZE) ? HTTP_CHUNK_SIZE : $len; 176758447cfSAndreas Gohr } 177758447cfSAndreas Gohr } 178758447cfSAndreas Gohr if ($parts > 1) { 179758447cfSAndreas Gohr echo HTTP_HEADER_LF . '--' . HTTP_MULTIPART_BOUNDARY . '--' . HTTP_HEADER_LF; 180758447cfSAndreas Gohr } 181758447cfSAndreas Gohr 182b051e974SChristopher Smith // everything should be done here, exit (or return if testing) 183b051e974SChristopher Smith if (defined('SIMPLE_TEST')) return; 184758447cfSAndreas Gohr exit; 185758447cfSAndreas Gohr} 186758447cfSAndreas Gohr 187758447cfSAndreas Gohr/** 188758447cfSAndreas Gohr * Check for a gzipped version and create if necessary 189758447cfSAndreas Gohr * 190758447cfSAndreas Gohr * return true if there exists a gzip version of the uncompressed file 191758447cfSAndreas Gohr * (samepath/samefilename.sameext.gz) created after the uncompressed file 192758447cfSAndreas Gohr * 19342ea7f44SGerrit Uitslag * @param string $uncompressed_file 19442ea7f44SGerrit Uitslag * @return bool 19524870174SAndreas Gohr * @author Chris Smith <chris.eureka@jalakai.co.uk> 19624870174SAndreas Gohr * 197758447cfSAndreas Gohr */ 19824870174SAndreas Gohrfunction http_gzip_valid($uncompressed_file) 19924870174SAndreas Gohr{ 20013c37900SAndreas Gohr if (!DOKU_HAS_GZIP) return false; 20113c37900SAndreas Gohr 202758447cfSAndreas Gohr $gzip = $uncompressed_file . '.gz'; 203758447cfSAndreas Gohr if (filemtime($gzip) < filemtime($uncompressed_file)) { // filemtime returns false (0) if file doesn't exist 204758447cfSAndreas Gohr return copy($uncompressed_file, 'compress.zlib://' . $gzip); 205758447cfSAndreas Gohr } 206758447cfSAndreas Gohr 207758447cfSAndreas Gohr return true; 208758447cfSAndreas Gohr} 2096619f42eSAdrian Lang 2106619f42eSAdrian Lang/** 2116619f42eSAdrian Lang * Set HTTP headers and echo cachefile, if useable 2126619f42eSAdrian Lang * 2136619f42eSAdrian Lang * This function handles output of cacheable resource files. It ses the needed 2146619f42eSAdrian Lang * HTTP headers. If a useable cache is present, it is passed to the web server 21590124802SGerrit Uitslag * and the script is terminated. 21642ea7f44SGerrit Uitslag * 21742ea7f44SGerrit Uitslag * @param string $cache cache file name 21842ea7f44SGerrit Uitslag * @param bool $cache_ok if cache can be used 2196619f42eSAdrian Lang */ 22024870174SAndreas Gohrfunction http_cached($cache, $cache_ok) 22124870174SAndreas Gohr{ 2226619f42eSAdrian Lang global $conf; 2236619f42eSAdrian Lang 2246619f42eSAdrian Lang // check cache age & handle conditional request 2256619f42eSAdrian Lang // since the resource files are timestamped, we can use a long max age: 1 year 2266619f42eSAdrian Lang header('Cache-Control: public, max-age=31536000'); 2276619f42eSAdrian Lang header('Pragma: public'); 2286619f42eSAdrian Lang if ($cache_ok) { 2296619f42eSAdrian Lang http_conditionalRequest(filemtime($cache)); 2306619f42eSAdrian Lang if ($conf['allowdebug']) header("X-CacheUsed: $cache"); 2316619f42eSAdrian Lang 2326619f42eSAdrian Lang // finally send output 2336619f42eSAdrian Lang if ($conf['gzip_output'] && http_gzip_valid($cache)) { 2346619f42eSAdrian Lang header('Vary: Accept-Encoding'); 2356619f42eSAdrian Lang header('Content-Encoding: gzip'); 2366619f42eSAdrian Lang readfile($cache . ".gz"); 2376619f42eSAdrian Lang } else { 23840e0b444SDominik Eckelmann http_sendfile($cache); 23940e0b444SDominik Eckelmann readfile($cache); 2406619f42eSAdrian Lang } 2416619f42eSAdrian Lang exit; 2426619f42eSAdrian Lang } 2436619f42eSAdrian Lang 2446619f42eSAdrian Lang http_conditionalRequest(time()); 2456619f42eSAdrian Lang} 2466619f42eSAdrian Lang 2476619f42eSAdrian Lang/** 2486619f42eSAdrian Lang * Cache content and print it 24942ea7f44SGerrit Uitslag * 25042ea7f44SGerrit Uitslag * @param string $file file name 25142ea7f44SGerrit Uitslag * @param string $content 2526619f42eSAdrian Lang */ 25324870174SAndreas Gohrfunction http_cached_finish($file, $content) 25424870174SAndreas Gohr{ 2556619f42eSAdrian Lang global $conf; 2566619f42eSAdrian Lang 2576619f42eSAdrian Lang // save cache file 2586619f42eSAdrian Lang io_saveFile($file, $content); 25913c37900SAndreas Gohr if (DOKU_HAS_GZIP) io_saveFile("$file.gz", $content); 2606619f42eSAdrian Lang 2616619f42eSAdrian Lang // finally send output 26213c37900SAndreas Gohr if ($conf['gzip_output'] && DOKU_HAS_GZIP) { 2636619f42eSAdrian Lang header('Vary: Accept-Encoding'); 2646619f42eSAdrian Lang header('Content-Encoding: gzip'); 26526dfc232SAndreas Gohr echo gzencode($content, 9, FORCE_GZIP); 2666619f42eSAdrian Lang } else { 26726dfc232SAndreas Gohr echo $content; 2686619f42eSAdrian Lang } 2696619f42eSAdrian Lang} 27096946cc9SDominik Eckelmann 2719d2e1be6SAndreas Gohr/** 2729d2e1be6SAndreas Gohr * Fetches raw, unparsed POST data 2739d2e1be6SAndreas Gohr * 2749d2e1be6SAndreas Gohr * @return string 2759d2e1be6SAndreas Gohr */ 27624870174SAndreas Gohrfunction http_get_raw_post_data() 27724870174SAndreas Gohr{ 27896946cc9SDominik Eckelmann static $postData = null; 27996946cc9SDominik Eckelmann if ($postData === null) { 28096946cc9SDominik Eckelmann $postData = file_get_contents('php://input'); 28196946cc9SDominik Eckelmann } 28296946cc9SDominik Eckelmann return $postData; 28396946cc9SDominik Eckelmann} 2849d2e1be6SAndreas Gohr 2859d2e1be6SAndreas Gohr/** 2869d2e1be6SAndreas Gohr * Set the HTTP response status and takes care of the used PHP SAPI 2879d2e1be6SAndreas Gohr * 2889d2e1be6SAndreas Gohr * Inspired by CodeIgniter's set_status_header function 2899d2e1be6SAndreas Gohr * 2909d2e1be6SAndreas Gohr * @param int $code 2919d2e1be6SAndreas Gohr * @param string $text 2929d2e1be6SAndreas Gohr */ 29324870174SAndreas Gohrfunction http_status($code = 200, $text = '') 29424870174SAndreas Gohr{ 2952b9be456SAndreas Gohr global $INPUT; 2962b9be456SAndreas Gohr 29724870174SAndreas Gohr static $stati = [ 2989d2e1be6SAndreas Gohr 200 => 'OK', 2999d2e1be6SAndreas Gohr 201 => 'Created', 3009d2e1be6SAndreas Gohr 202 => 'Accepted', 3019d2e1be6SAndreas Gohr 203 => 'Non-Authoritative Information', 3029d2e1be6SAndreas Gohr 204 => 'No Content', 3039d2e1be6SAndreas Gohr 205 => 'Reset Content', 3049d2e1be6SAndreas Gohr 206 => 'Partial Content', 3059d2e1be6SAndreas Gohr 300 => 'Multiple Choices', 3069d2e1be6SAndreas Gohr 301 => 'Moved Permanently', 3079d2e1be6SAndreas Gohr 302 => 'Found', 3089d2e1be6SAndreas Gohr 304 => 'Not Modified', 3099d2e1be6SAndreas Gohr 305 => 'Use Proxy', 3109d2e1be6SAndreas Gohr 307 => 'Temporary Redirect', 3119d2e1be6SAndreas Gohr 400 => 'Bad Request', 3129d2e1be6SAndreas Gohr 401 => 'Unauthorized', 3139d2e1be6SAndreas Gohr 403 => 'Forbidden', 3149d2e1be6SAndreas Gohr 404 => 'Not Found', 3159d2e1be6SAndreas Gohr 405 => 'Method Not Allowed', 3169d2e1be6SAndreas Gohr 406 => 'Not Acceptable', 3179d2e1be6SAndreas Gohr 407 => 'Proxy Authentication Required', 3189d2e1be6SAndreas Gohr 408 => 'Request Timeout', 3199d2e1be6SAndreas Gohr 409 => 'Conflict', 3209d2e1be6SAndreas Gohr 410 => 'Gone', 3219d2e1be6SAndreas Gohr 411 => 'Length Required', 3229d2e1be6SAndreas Gohr 412 => 'Precondition Failed', 3239d2e1be6SAndreas Gohr 413 => 'Request Entity Too Large', 3249d2e1be6SAndreas Gohr 414 => 'Request-URI Too Long', 3259d2e1be6SAndreas Gohr 415 => 'Unsupported Media Type', 3269d2e1be6SAndreas Gohr 416 => 'Requested Range Not Satisfiable', 3279d2e1be6SAndreas Gohr 417 => 'Expectation Failed', 3289d2e1be6SAndreas Gohr 500 => 'Internal Server Error', 3299d2e1be6SAndreas Gohr 501 => 'Not Implemented', 3309d2e1be6SAndreas Gohr 502 => 'Bad Gateway', 3319d2e1be6SAndreas Gohr 503 => 'Service Unavailable', 3329d2e1be6SAndreas Gohr 504 => 'Gateway Timeout', 3339d2e1be6SAndreas Gohr 505 => 'HTTP Version Not Supported' 33424870174SAndreas Gohr ]; 3359d2e1be6SAndreas Gohr 3369d2e1be6SAndreas Gohr if ($text == '' && isset($stati[$code])) { 3379d2e1be6SAndreas Gohr $text = $stati[$code]; 3389d2e1be6SAndreas Gohr } 3399d2e1be6SAndreas Gohr 3402b9be456SAndreas Gohr $server_protocol = $INPUT->server->str('SERVER_PROTOCOL', false); 3419d2e1be6SAndreas Gohr 34224870174SAndreas Gohr if (substr(PHP_SAPI, 0, 3) == 'cgi' || defined('SIMPLE_TEST')) { 3439d2e1be6SAndreas Gohr header("Status: {$code} {$text}", true); 34424870174SAndreas Gohr } elseif ($server_protocol == 'HTTP/1.1' || $server_protocol == 'HTTP/1.0') { 3459d2e1be6SAndreas Gohr header($server_protocol . " {$code} {$text}", true, $code); 3469d2e1be6SAndreas Gohr } else { 3479d2e1be6SAndreas Gohr header("HTTP/1.1 {$code} {$text}", true, $code); 3489d2e1be6SAndreas Gohr } 3499d2e1be6SAndreas Gohr} 350