mirror of
https://github.com/scm-manager/scm-manager.git
synced 2025-11-11 16:05:44 +01:00
normalize urls for BaseUrlFilter to prevent redirect loops, see issue #311
This commit is contained in:
@@ -35,6 +35,8 @@ package sonia.scm.util;
|
||||
|
||||
//~--- non-JDK imports --------------------------------------------------------
|
||||
|
||||
import com.google.common.base.Strings;
|
||||
|
||||
import org.slf4j.Logger;
|
||||
import org.slf4j.LoggerFactory;
|
||||
|
||||
@@ -48,6 +50,9 @@ import java.io.UnsupportedEncodingException;
|
||||
import java.net.URLDecoder;
|
||||
import java.net.URLEncoder;
|
||||
|
||||
import java.util.regex.Matcher;
|
||||
import java.util.regex.Pattern;
|
||||
|
||||
import javax.servlet.http.HttpServletRequest;
|
||||
import javax.servlet.http.HttpServletResponse;
|
||||
|
||||
@@ -155,6 +160,10 @@ public class HttpUtil
|
||||
/** the logger for HttpUtil */
|
||||
private static final Logger logger = LoggerFactory.getLogger(HttpUtil.class);
|
||||
|
||||
/** Field description */
|
||||
private static final Pattern PATTERN_URLNORMALIZE =
|
||||
Pattern.compile("(?:(http://[^:]+):80(/.+)?|(https://[^:]+):443(/.+)?)");
|
||||
|
||||
//~--- methods --------------------------------------------------------------
|
||||
|
||||
/**
|
||||
@@ -266,6 +275,51 @@ public class HttpUtil
|
||||
return value;
|
||||
}
|
||||
|
||||
/**
|
||||
* Returns the normalized url.
|
||||
*
|
||||
*
|
||||
* @param url to normalize
|
||||
*
|
||||
* @return normalized url
|
||||
*
|
||||
* @since 1.26
|
||||
*/
|
||||
public static String normalizeUrl(String url)
|
||||
{
|
||||
if (!Strings.isNullOrEmpty(url))
|
||||
{
|
||||
Matcher m = PATTERN_URLNORMALIZE.matcher(url);
|
||||
|
||||
if (m.matches())
|
||||
{
|
||||
String prefix = m.group(1);
|
||||
String suffix;
|
||||
|
||||
if (prefix == null)
|
||||
{
|
||||
prefix = m.group(3);
|
||||
suffix = m.group(4);
|
||||
}
|
||||
else
|
||||
{
|
||||
suffix = m.group(2);
|
||||
}
|
||||
|
||||
if (suffix != null)
|
||||
{
|
||||
url = prefix.concat(suffix);
|
||||
}
|
||||
else
|
||||
{
|
||||
url = prefix;
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
return url;
|
||||
}
|
||||
|
||||
/**
|
||||
* Method description
|
||||
*
|
||||
|
||||
@@ -54,6 +54,33 @@ import javax.servlet.http.HttpServletRequest;
|
||||
public class HttpUtilTest
|
||||
{
|
||||
|
||||
/**
|
||||
* Method description
|
||||
*
|
||||
*/
|
||||
@Test
|
||||
public void normalizeUrlTest()
|
||||
{
|
||||
assertEquals("http://www.scm-manager/scm",
|
||||
HttpUtil.normalizeUrl("http://www.scm-manager/scm"));
|
||||
assertEquals("http://www.scm-manager/scm",
|
||||
HttpUtil.normalizeUrl("http://www.scm-manager:80/scm"));
|
||||
assertEquals("https://www.scm-manager/scm",
|
||||
HttpUtil.normalizeUrl("https://www.scm-manager:443/scm"));
|
||||
assertEquals("https://www.scm-manager:8181/scm",
|
||||
HttpUtil.normalizeUrl("https://www.scm-manager:8181/scm"));
|
||||
assertEquals("http://www.scm-manager:8080/scm",
|
||||
HttpUtil.normalizeUrl("http://www.scm-manager:8080/scm"));
|
||||
assertEquals("http://www.scm-manager",
|
||||
HttpUtil.normalizeUrl("http://www.scm-manager:80"));
|
||||
assertEquals("https://www.scm-manager",
|
||||
HttpUtil.normalizeUrl("https://www.scm-manager:443"));
|
||||
assertEquals("http://www.scm-manager:8080",
|
||||
HttpUtil.normalizeUrl("http://www.scm-manager:8080"));
|
||||
}
|
||||
|
||||
//~--- get methods ----------------------------------------------------------
|
||||
|
||||
/**
|
||||
* Method description
|
||||
*
|
||||
@@ -65,9 +92,9 @@ public class HttpUtilTest
|
||||
|
||||
config.setBaseUrl("http://www.scm-manager.org/scm");
|
||||
assertEquals("http://www.scm-manager.org/scm/test/path",
|
||||
HttpUtil.getCompleteUrl(config, "test/path"));
|
||||
HttpUtil.getCompleteUrl(config, "test/path"));
|
||||
assertEquals("http://www.scm-manager.org/scm/test/path",
|
||||
HttpUtil.getCompleteUrl(config, "/test/path"));
|
||||
HttpUtil.getCompleteUrl(config, "/test/path"));
|
||||
}
|
||||
|
||||
/**
|
||||
@@ -80,10 +107,10 @@ public class HttpUtilTest
|
||||
assertTrue(HttpUtil.getPortFromUrl("http://www.scm-manager.org") == 80);
|
||||
assertTrue(HttpUtil.getPortFromUrl("https://www.scm-manager.org") == 443);
|
||||
assertTrue(HttpUtil.getPortFromUrl("http://www.scm-manager.org:8080")
|
||||
== 8080);
|
||||
== 8080);
|
||||
assertTrue(
|
||||
HttpUtil.getPortFromUrl("http://www.scm-manager.org:8181/test/folder")
|
||||
== 8181);
|
||||
HttpUtil.getPortFromUrl("http://www.scm-manager.org:8181/test/folder")
|
||||
== 8181);
|
||||
}
|
||||
|
||||
/**
|
||||
@@ -116,7 +143,7 @@ public class HttpUtilTest
|
||||
when(request.getRequestURI()).thenReturn("/scm/test/path");
|
||||
when(request.getContextPath()).thenReturn("/scm");
|
||||
assertEquals("/test/path",
|
||||
HttpUtil.getStrippedURI(request, "/scm/test/path"));
|
||||
HttpUtil.getStrippedURI(request, "/scm/test/path"));
|
||||
assertEquals("/test/path", HttpUtil.getStrippedURI(request));
|
||||
}
|
||||
|
||||
@@ -130,7 +157,7 @@ public class HttpUtilTest
|
||||
assertEquals("/test", HttpUtil.getUriWithoutEndSeperator("/test/"));
|
||||
assertEquals("/test/two", HttpUtil.getUriWithoutEndSeperator("/test/two/"));
|
||||
assertEquals("/test/two/three",
|
||||
HttpUtil.getUriWithoutEndSeperator("/test/two/three"));
|
||||
HttpUtil.getUriWithoutEndSeperator("/test/two/three"));
|
||||
}
|
||||
|
||||
/**
|
||||
@@ -142,8 +169,8 @@ public class HttpUtilTest
|
||||
{
|
||||
assertEquals("test/", HttpUtil.getUriWithoutStartSeperator("/test/"));
|
||||
assertEquals("test/two/",
|
||||
HttpUtil.getUriWithoutStartSeperator("/test/two/"));
|
||||
HttpUtil.getUriWithoutStartSeperator("/test/two/"));
|
||||
assertEquals("test/two/three",
|
||||
HttpUtil.getUriWithoutStartSeperator("test/two/three"));
|
||||
HttpUtil.getUriWithoutStartSeperator("test/two/three"));
|
||||
}
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user