Files
continuwuity/src/api/server/send_join.rs
T

Ignoring revisions in .git-blame-ignore-revs. Click here to bypass and see the normal blame view.

324 lines
8.3 KiB
Rust
Raw Normal View History

2024-06-05 04:32:58 +00:00
#![allow(deprecated)]
2024-11-30 08:09:51 +00:00
use std::{borrow::Borrow, collections::HashMap};
2024-06-05 04:32:58 +00:00
2024-07-16 08:05:25 +00:00
use axum::extract::State;
2024-12-04 00:00:40 +00:00
use conduit::{
err,
pdu::gen_event_id_canonical_json,
utils::stream::{IterStream, TryBroadbandExt},
warn, Error, Result,
};
2024-08-08 17:18:30 +00:00
use futures::{FutureExt, StreamExt, TryStreamExt};
2024-06-05 04:32:58 +00:00
use ruma::{
api::{client::error::ErrorKind, federation::membership::create_join_event},
events::{
room::member::{MembershipState, RoomMemberEventContent},
StateEventType,
},
2024-11-30 08:09:51 +00:00
CanonicalJsonValue, OwnedEventId, OwnedServerName, OwnedUserId, RoomId, ServerName,
2024-06-05 04:32:58 +00:00
};
use serde_json::value::{to_raw_value, RawValue as RawJsonValue};
2024-07-22 07:43:51 +00:00
use service::Services;
2024-06-05 04:32:58 +00:00
2024-07-03 21:05:24 +00:00
use crate::Ruma;
2024-06-05 04:32:58 +00:00
/// helper method for /send_join v1 and v2
async fn create_join_event(
2024-07-16 08:05:25 +00:00
services: &Services, origin: &ServerName, room_id: &RoomId, pdu: &RawJsonValue,
2024-06-05 04:32:58 +00:00
) -> Result<create_join_event::v1::RoomState> {
2024-08-08 17:18:30 +00:00
if !services.rooms.metadata.exists(room_id).await {
2024-06-05 04:32:58 +00:00
return Err(Error::BadRequest(ErrorKind::NotFound, "Room is unknown to this server."));
}
// ACL check origin server
2024-08-08 17:18:30 +00:00
services
.rooms
.event_handler
.acl_check(origin, room_id)
.await?;
2024-06-05 04:32:58 +00:00
// We need to return the state prior to joining, let's keep a reference to that
// here
2024-07-16 08:05:25 +00:00
let shortstatehash = services
2024-06-05 04:32:58 +00:00
.rooms
.state
2024-08-08 17:18:30 +00:00
.get_room_shortstatehash(room_id)
.await
.map_err(|_| err!(Request(NotFound("Event state not found."))))?;
2024-06-05 04:32:58 +00:00
// We do not add the event_id field to the pdu here because of signature and
// hashes checks
2024-08-08 17:18:30 +00:00
let room_version_id = services.rooms.state.get_room_version(room_id).await?;
2024-06-05 04:32:58 +00:00
let Ok((event_id, mut value)) = gen_event_id_canonical_json(pdu, &room_version_id) else {
// Event could not be converted to canonical json
return Err(Error::BadRequest(
ErrorKind::InvalidParam,
"Could not convert event to canonical json.",
));
};
let event_type: StateEventType = serde_json::from_value(
value
.get("type")
.ok_or_else(|| Error::BadRequest(ErrorKind::InvalidParam, "Event missing type property."))?
.clone()
.into(),
)
.map_err(|_| Error::BadRequest(ErrorKind::InvalidParam, "Event has invalid event type."))?;
if event_type != StateEventType::RoomMember {
return Err(Error::BadRequest(
ErrorKind::InvalidParam,
"Not allowed to send non-membership state event to join endpoint.",
));
}
let content: RoomMemberEventContent = serde_json::from_value(
value
.get("content")
.ok_or_else(|| Error::BadRequest(ErrorKind::InvalidParam, "Event missing content property"))?
2024-06-05 04:32:58 +00:00
.clone()
.into(),
)
.map_err(|_| Error::BadRequest(ErrorKind::InvalidParam, "Event content is empty or invalid"))?;
2024-06-05 04:32:58 +00:00
if content.membership != MembershipState::Join {
2024-06-05 04:32:58 +00:00
return Err(Error::BadRequest(
ErrorKind::InvalidParam,
"Not allowed to send a non-join membership event to join endpoint.",
));
}
// ACL check sender server name
let sender: OwnedUserId = serde_json::from_value(
value
.get("sender")
.ok_or_else(|| Error::BadRequest(ErrorKind::InvalidParam, "Event missing sender property."))?
.clone()
.into(),
)
.map_err(|_| Error::BadRequest(ErrorKind::BadJson, "sender is not a valid user ID."))?;
2024-07-16 08:05:25 +00:00
services
2024-06-05 04:32:58 +00:00
.rooms
.event_handler
2024-08-08 17:18:30 +00:00
.acl_check(sender.server_name(), room_id)
.await?;
2024-06-05 04:32:58 +00:00
// check if origin server is trying to send for another server
if sender.server_name() != origin {
return Err(Error::BadRequest(
ErrorKind::InvalidParam,
"Not allowed to join on behalf of another server.",
));
}
let state_key: OwnedUserId = serde_json::from_value(
value
.get("state_key")
.ok_or_else(|| Error::BadRequest(ErrorKind::InvalidParam, "Event missing state_key property."))?
.clone()
.into(),
)
.map_err(|_| Error::BadRequest(ErrorKind::BadJson, "state_key is invalid or not a user ID."))?;
if state_key != sender {
return Err(Error::BadRequest(
ErrorKind::InvalidParam,
"State key does not match sender user",
));
};
2024-06-05 04:32:58 +00:00
if content
.join_authorized_via_users_server
2024-07-22 07:43:51 +00:00
.is_some_and(|user| services.globals.user_is_local(&user))
2024-08-08 17:18:30 +00:00
&& super::user_can_perform_restricted_join(services, &sender, room_id, &room_version_id)
.await
.unwrap_or_default()
{
services
.server_keys
.hash_and_sign_event(&mut value, &room_version_id)
.map_err(|e| err!(Request(InvalidParam("Failed to sign event: {e}"))))?;
}
2024-06-05 04:32:58 +00:00
let origin: OwnedServerName = serde_json::from_value(
serde_json::to_value(
value
.get("origin")
.ok_or_else(|| Error::BadRequest(ErrorKind::InvalidParam, "Event missing origin property."))?,
)
.expect("CanonicalJson is valid json value"),
)
.map_err(|_| Error::BadRequest(ErrorKind::InvalidParam, "origin is not a server name."))?;
2024-07-16 08:05:25 +00:00
let mutex_lock = services
.rooms
.event_handler
.mutex_federation
2024-06-14 21:39:37 +00:00
.lock(room_id)
.await;
2024-08-08 17:18:30 +00:00
2024-11-02 06:12:54 +00:00
let pdu_id = services
2024-06-05 04:32:58 +00:00
.rooms
.event_handler
.handle_incoming_pdu(&origin, room_id, &event_id, value.clone(), true)
2024-12-04 00:00:40 +00:00
.boxed()
2024-06-05 04:32:58 +00:00
.await?
2024-11-02 06:12:54 +00:00
.ok_or_else(|| err!(Request(InvalidParam("Could not accept as timeline event."))))?;
2024-08-08 17:18:30 +00:00
2024-06-05 04:32:58 +00:00
drop(mutex_lock);
2024-11-30 08:09:51 +00:00
let state_ids: HashMap<_, OwnedEventId> = services
2024-06-05 04:32:58 +00:00
.rooms
.state_accessor
.state_full_ids(shortstatehash)
.await?;
2024-08-08 17:18:30 +00:00
let state = state_ids
2024-12-04 00:00:40 +00:00
.values()
2024-08-08 17:18:30 +00:00
.try_stream()
2024-12-04 00:00:40 +00:00
.broad_and_then(|event_id| services.rooms.timeline.get_pdu_json(event_id))
.broad_and_then(|pdu| {
2024-08-08 17:18:30 +00:00
services
.sending
.convert_to_outgoing_federation_event(pdu)
.map(Ok)
})
.try_collect()
2024-12-04 00:00:40 +00:00
.boxed()
2024-08-08 17:18:30 +00:00
.await?;
let starting_events = state_ids.values().map(Borrow::borrow);
2024-08-08 17:18:30 +00:00
let auth_chain = services
2024-06-05 04:32:58 +00:00
.rooms
.auth_chain
.event_ids_iter(room_id, starting_events)
2024-08-08 17:18:30 +00:00
.await?
.map(Ok)
2024-12-04 00:00:40 +00:00
.broad_and_then(|event_id| async move { services.rooms.timeline.get_pdu_json(&event_id).await })
.broad_and_then(|pdu| {
2024-08-08 17:18:30 +00:00
services
.sending
.convert_to_outgoing_federation_event(pdu)
.map(Ok)
})
.try_collect()
2024-12-04 00:00:40 +00:00
.boxed()
2024-06-05 04:32:58 +00:00
.await?;
2024-08-08 17:18:30 +00:00
services.sending.send_pdu_room(room_id, &pdu_id).await?;
2024-06-05 04:32:58 +00:00
Ok(create_join_event::v1::RoomState {
2024-08-08 17:18:30 +00:00
auth_chain,
state,
2024-06-05 04:32:58 +00:00
// Event field is required if the room version supports restricted join rules.
2024-08-08 17:18:30 +00:00
event: to_raw_value(&CanonicalJsonValue::Object(value)).ok(),
2024-06-05 04:32:58 +00:00
})
}
/// # `PUT /_matrix/federation/v1/send_join/{roomId}/{eventId}`
///
/// Submits a signed join event.
pub(crate) async fn create_join_event_v1_route(
2024-07-16 08:05:25 +00:00
State(services): State<crate::State>, body: Ruma<create_join_event::v1::Request>,
2024-06-05 04:32:58 +00:00
) -> Result<create_join_event::v1::Response> {
2024-07-16 08:05:25 +00:00
if services
2024-06-05 04:32:58 +00:00
.globals
.config
.forbidden_remote_server_names
.contains(body.origin())
2024-06-05 04:32:58 +00:00
{
warn!(
"Server {} tried joining room ID {} who has a server name that is globally forbidden. Rejecting.",
body.origin(),
2024-06-05 04:32:58 +00:00
&body.room_id,
);
return Err(Error::BadRequest(
ErrorKind::forbidden(),
"Server is banned on this homeserver.",
));
}
if let Some(server) = body.room_id.server_name() {
2024-07-16 08:05:25 +00:00
if services
2024-06-05 04:32:58 +00:00
.globals
.config
.forbidden_remote_server_names
.contains(&server.to_owned())
{
warn!(
"Server {} tried joining room ID {} which has a server name that is globally forbidden. Rejecting.",
body.origin(),
2024-06-05 04:32:58 +00:00
&body.room_id,
);
return Err(Error::BadRequest(
ErrorKind::forbidden(),
"Server is banned on this homeserver.",
));
}
}
let room_state = create_join_event(&services, body.origin(), &body.room_id, &body.pdu)
.boxed()
.await?;
2024-06-05 04:32:58 +00:00
Ok(create_join_event::v1::Response {
room_state,
})
}
/// # `PUT /_matrix/federation/v2/send_join/{roomId}/{eventId}`
///
/// Submits a signed join event.
pub(crate) async fn create_join_event_v2_route(
2024-07-16 08:05:25 +00:00
State(services): State<crate::State>, body: Ruma<create_join_event::v2::Request>,
2024-06-05 04:32:58 +00:00
) -> Result<create_join_event::v2::Response> {
2024-07-16 08:05:25 +00:00
if services
2024-06-05 04:32:58 +00:00
.globals
.config
.forbidden_remote_server_names
.contains(body.origin())
2024-06-05 04:32:58 +00:00
{
return Err(Error::BadRequest(
ErrorKind::forbidden(),
"Server is banned on this homeserver.",
));
}
if let Some(server) = body.room_id.server_name() {
2024-07-16 08:05:25 +00:00
if services
2024-06-05 04:32:58 +00:00
.globals
.config
.forbidden_remote_server_names
.contains(&server.to_owned())
{
return Err(Error::BadRequest(
ErrorKind::forbidden(),
"Server is banned on this homeserver.",
));
}
}
let create_join_event::v1::RoomState {
auth_chain,
state,
event,
} = create_join_event(&services, body.origin(), &body.room_id, &body.pdu)
.boxed()
.await?;
2024-06-05 04:32:58 +00:00
let room_state = create_join_event::v2::RoomState {
members_omitted: false,
auth_chain,
state,
event,
servers_in_room: None,
};
Ok(create_join_event::v2::Response {
room_state,
})
}