misskey/src/queue/processors/http/process-inbox.ts

127 lines
3.7 KiB
TypeScript
Raw Normal View History

2018-07-25 16:11:47 -07:00
import * as bq from 'bee-queue';
2018-04-06 06:40:06 -07:00
import * as debug from 'debug';
2018-04-04 07:12:35 -07:00
2018-04-14 20:51:05 -07:00
const httpSignature = require('http-signature');
2018-07-07 03:19:00 -07:00
import parseAcct from '../../../misc/acct/parse';
2018-04-04 09:24:01 -07:00
import User, { IRemoteUser } from '../../../models/user';
2018-04-08 12:08:56 -07:00
import perform from '../../../remote/activitypub/perform';
2018-04-17 00:05:50 -07:00
import { resolvePerson } from '../../../remote/activitypub/models/person';
2018-08-30 04:53:41 -07:00
import { toUnicode } from 'punycode';
import { URL } from 'url';
2018-04-04 07:12:35 -07:00
2018-04-06 06:40:06 -07:00
const log = debug('misskey:queue:inbox');
2018-04-04 07:12:35 -07:00
// ユーザーのinboxにアクティビティが届いた時の処理
2018-07-25 16:11:47 -07:00
export default async (job: bq.Job, done: any): Promise<void> => {
2018-04-04 07:12:35 -07:00
const signature = job.data.signature;
const activity = job.data.activity;
2018-04-06 06:40:06 -07:00
//#region Log
const info = Object.assign({}, activity);
delete info['@context'];
delete info['signature'];
log(info);
//#endregion
2018-04-04 07:12:35 -07:00
const keyIdLower = signature.keyId.toLowerCase();
2018-06-17 22:28:43 -07:00
let user: IRemoteUser;
2018-04-04 07:12:35 -07:00
if (keyIdLower.startsWith('acct:')) {
const { username, host } = parseAcct(keyIdLower.slice('acct:'.length));
if (host === null) {
console.warn(`request was made by local user: @${username}`);
done();
2018-04-05 22:35:17 -07:00
return;
2018-04-04 07:12:35 -07:00
}
2018-08-30 04:53:41 -07:00
// アクティビティ内のホストの検証
try {
ValidateActivity(activity, host);
} catch (e) {
console.warn(e);
done();
return;
}
user = await User.findOne({ usernameLower: username, host: host.toLowerCase() }) as IRemoteUser;
// アクティビティを送信してきたユーザーがまだMisskeyサーバーに登録されていなかったら登録する
if (user === null) {
2018-06-17 22:28:43 -07:00
user = await resolvePerson(activity.actor) as IRemoteUser;
}
2018-04-04 07:12:35 -07:00
} else {
2018-08-30 04:53:41 -07:00
// アクティビティ内のホストの検証
const host = toUnicode(new URL(signature.keyId).hostname.toLowerCase());
try {
ValidateActivity(activity, host);
} catch (e) {
console.warn(e);
done();
return;
}
2018-04-04 07:12:35 -07:00
user = await User.findOne({
host: { $ne: null },
2018-04-07 11:58:11 -07:00
'publicKey.id': signature.keyId
2018-04-04 07:12:35 -07:00
}) as IRemoteUser;
// アクティビティを送信してきたユーザーがまだMisskeyサーバーに登録されていなかったら登録する
if (user === null) {
2018-08-25 06:25:40 -07:00
user = await resolvePerson(activity.actor) as IRemoteUser;
2018-04-04 07:12:35 -07:00
}
}
if (user === null) {
done(new Error('failed to resolve user'));
return;
}
2018-04-14 20:51:05 -07:00
if (!httpSignature.verifySignature(signature, user.publicKey.publicKeyPem)) {
2018-04-05 22:35:17 -07:00
console.warn('signature verification failed');
done();
2018-04-04 07:12:35 -07:00
return;
}
// アクティビティを処理
try {
2018-04-08 12:08:56 -07:00
await perform(user, activity);
2018-04-04 07:12:35 -07:00
done();
} catch (e) {
done(e);
}
};
2018-08-30 04:53:41 -07:00
/**
* Validate host in activity
* @param activity Activity
* @param host Expect host
*/
function ValidateActivity(activity: any, host: string) {
// id (if exists)
if (typeof activity.id === 'string') {
const uriHost = toUnicode(new URL(activity.id).hostname.toLowerCase());
if (host !== uriHost) throw new Error('activity.id has different host');
}
// actor (if exists)
if (typeof activity.actor === 'string') {
const uriHost = toUnicode(new URL(activity.actor).hostname.toLowerCase());
if (host !== uriHost) throw new Error('activity.actor has different host');
}
// For Create activity
if (activity.type === 'Create' && activity.object) {
// object.id (if exists)
if (typeof activity.object.id === 'string') {
const uriHost = toUnicode(new URL(activity.object.id).hostname.toLowerCase());
if (host !== uriHost) throw new Error('activity.object.id has different host');
}
// object.attributedTo (if exists)
if (typeof activity.object.attributedTo === 'string') {
const uriHost = toUnicode(new URL(activity.object.attributedTo).hostname.toLowerCase());
if (host !== uriHost) throw new Error('activity.object.attributedTo has different host');
}
}
}