activitypub.c 34 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219
  1. /* snac - A simple, minimalistic ActivityPub instance */
  2. /* copyright (c) 2022 grunfink - MIT license */
  3. #include "xs.h"
  4. #include "xs_encdec.h"
  5. #include "xs_json.h"
  6. #include "xs_curl.h"
  7. #include "xs_mime.h"
  8. #include "xs_openssl.h"
  9. #include "xs_regex.h"
  10. #include "xs_time.h"
  11. #include "xs_set.h"
  12. #include "snac.h"
  13. const char *public_address = "https:/" "/www.w3.org/ns/activitystreams#Public";
  14. int activitypub_request(snac *snac, char *url, d_char **data)
  15. /* request an object */
  16. {
  17. int status;
  18. xs *response = NULL;
  19. xs *payload = NULL;
  20. int p_size;
  21. char *ctype;
  22. /* check if it's an url for this same site */
  23. /* ... */
  24. /* get from the net */
  25. response = http_signed_request(snac, "GET", url,
  26. NULL, NULL, 0, &status, &payload, &p_size);
  27. if (valid_status(status)) {
  28. /* ensure it's ActivityPub data */
  29. ctype = xs_dict_get(response, "content-type");
  30. if (xs_str_in(ctype, "application/activity+json") != -1 ||
  31. xs_str_in(ctype, "application/ld+json") != -1)
  32. *data = xs_json_loads(payload);
  33. else
  34. status = 500;
  35. }
  36. if (!valid_status(status))
  37. *data = NULL;
  38. return status;
  39. }
  40. int actor_request(snac *snac, char *actor, d_char **data)
  41. /* request an actor */
  42. {
  43. int status, status2;
  44. xs *payload = NULL;
  45. /* get from disk first */
  46. status = actor_get(snac, actor, data);
  47. if (status == 200)
  48. return status;
  49. /* actor data non-existent or stale: get from the net */
  50. status2 = activitypub_request(snac, actor, &payload);
  51. if (valid_status(status2)) {
  52. /* renew data */
  53. status = actor_add(snac, actor, payload);
  54. if (data != NULL) {
  55. *data = payload;
  56. payload = NULL;
  57. }
  58. }
  59. return status;
  60. }
  61. int timeline_request(snac *snac, char *id, char *referrer)
  62. /* ensures that an entry and its ancestors are in the timeline */
  63. {
  64. int status = 0;
  65. if (!xs_is_null(id)) {
  66. /* is the admired object already there? */
  67. if (!timeline_here(snac, id)) {
  68. xs *object = NULL;
  69. /* no; download it */
  70. status = activitypub_request(snac, id, &object);
  71. if (valid_status(status)) {
  72. char *type = xs_dict_get(object, "type");
  73. if (!xs_is_null(type) && strcmp(type, "Note") == 0) {
  74. char *actor = xs_dict_get(object, "attributedTo");
  75. /* request (and drop) the actor for this entry */
  76. if (!xs_is_null(actor))
  77. actor_request(snac, actor, NULL);
  78. /* does it have an ancestor? */
  79. char *in_reply_to = xs_dict_get(object, "inReplyTo");
  80. /* recurse! */
  81. timeline_request(snac, in_reply_to, referrer);
  82. /* finally store */
  83. timeline_add(snac, id, object, in_reply_to, referrer);
  84. }
  85. }
  86. }
  87. }
  88. return status;
  89. }
  90. int send_to_inbox(snac *snac, char *inbox, char *msg, d_char **payload, int *p_size)
  91. /* sends a message to an Inbox */
  92. {
  93. int status;
  94. d_char *response;
  95. xs *j_msg = xs_json_dumps_pp(msg, 4);
  96. response = http_signed_request(snac, "POST", inbox,
  97. NULL, j_msg, strlen(j_msg), &status, payload, p_size);
  98. xs_free(response);
  99. return status;
  100. }
  101. d_char *get_actor_inbox(snac *snac, char *actor)
  102. /* gets an actor's inbox */
  103. {
  104. xs *data = NULL;
  105. char *v = NULL;
  106. if (valid_status(actor_request(snac, actor, &data))) {
  107. /* try first endpoints/sharedInbox */
  108. if ((v = xs_dict_get(data, "endpoints")))
  109. v = xs_dict_get(v, "sharedInbox");
  110. /* try then the regular inbox */
  111. if (xs_is_null(v))
  112. v = xs_dict_get(data, "inbox");
  113. }
  114. return xs_is_null(v) ? NULL : xs_dup(v);
  115. }
  116. int send_to_actor(snac *snac, char *actor, char *msg, d_char **payload, int *p_size)
  117. /* sends a message to an actor */
  118. {
  119. int status = 400;
  120. xs *inbox = get_actor_inbox(snac, actor);
  121. if (!xs_is_null(inbox))
  122. status = send_to_inbox(snac, inbox, msg, payload, p_size);
  123. return status;
  124. }
  125. d_char *recipient_list(snac *snac, char *msg, int expand_public)
  126. /* returns the list of recipients for a message */
  127. {
  128. char *to = xs_dict_get(msg, "to");
  129. char *cc = xs_dict_get(msg, "cc");
  130. xs_set rcpts;
  131. int n;
  132. xs_set_init(&rcpts);
  133. char *lists[] = { to, cc, NULL };
  134. for (n = 0; lists[n]; n++) {
  135. char *l = lists[n];
  136. char *v;
  137. xs *tl = NULL;
  138. /* if it's a string, create a list with only one element */
  139. if (xs_type(l) == XSTYPE_STRING) {
  140. tl = xs_list_new();
  141. tl = xs_list_append(tl, l);
  142. l = tl;
  143. }
  144. while (xs_list_iter(&l, &v)) {
  145. if (expand_public && strcmp(v, public_address) == 0) {
  146. /* iterate the followers and add them */
  147. xs *fwers = follower_list(snac);
  148. char *actor;
  149. char *p = fwers;
  150. while (xs_list_iter(&p, &actor))
  151. xs_set_add(&rcpts, actor);
  152. }
  153. else
  154. xs_set_add(&rcpts, v);
  155. }
  156. }
  157. return xs_set_result(&rcpts);
  158. }
  159. d_char *inbox_list(snac *snac, char *msg)
  160. /* returns the list of inboxes that are recipients of this message */
  161. {
  162. xs *rcpts = recipient_list(snac, msg, 1);
  163. xs_set inboxes;
  164. char *p, *v;
  165. xs_set_init(&inboxes);
  166. p = rcpts;
  167. while (xs_list_iter(&p, &v)) {
  168. xs *inbox;
  169. if ((inbox = get_actor_inbox(snac, v)) != NULL) {
  170. /* add the inbox if it's not already there */
  171. xs_set_add(&inboxes, inbox);
  172. }
  173. }
  174. return xs_set_result(&inboxes);
  175. }
  176. int is_msg_public(snac *snac, char *msg)
  177. /* checks if a message is public */
  178. {
  179. int ret = 0;
  180. xs *rcpts = recipient_list(snac, msg, 0);
  181. char *p, *v;
  182. p = rcpts;
  183. while (!ret && xs_list_iter(&p, &v)) {
  184. if (strcmp(v, public_address) == 0)
  185. ret = 1;
  186. }
  187. return ret;
  188. }
  189. void process_tags(const char *content, d_char **n_content, d_char **tag)
  190. /* parses mentions and tags from content */
  191. {
  192. d_char *nc = xs_str_new(NULL);
  193. d_char *tl = xs_list_new();
  194. xs *split;
  195. char *p, *v;
  196. int n = 0;
  197. p = split = xs_regex_split(content, "(@[A-Za-z0-9_]+@[A-Za-z0-9\\.-]+|#[^ ,\\.:;]+)");
  198. while (xs_list_iter(&p, &v)) {
  199. if ((n & 0x1)) {
  200. if (*v == '@') {
  201. /* query the webfinger about this fellow */
  202. xs *actor = NULL;
  203. xs *uid = NULL;
  204. int status;
  205. status = webfinger_request(v + 1, &actor, &uid);
  206. if (valid_status(status)) {
  207. xs *d = xs_dict_new();
  208. xs *n = xs_fmt("@%s", uid);
  209. xs *l = xs_fmt("<a href=\"%s\" class=\"u-url mention\">%s</a>", actor, n);
  210. d = xs_dict_append(d, "type", "Mention");
  211. d = xs_dict_append(d, "href", actor);
  212. d = xs_dict_append(d, "name", n);
  213. tl = xs_list_append(tl, d);
  214. /* add the code */
  215. nc = xs_str_cat(nc, l);
  216. }
  217. else
  218. /* store as is */
  219. nc = xs_str_cat(nc, v);
  220. }
  221. else
  222. if (*v == '#') {
  223. /* hashtag */
  224. /* store as is by now */
  225. nc = xs_str_cat(nc, v);
  226. }
  227. }
  228. else
  229. nc = xs_str_cat(nc, v);
  230. n++;
  231. }
  232. *n_content = nc;
  233. *tag = tl;
  234. }
  235. /** messages **/
  236. d_char *msg_base(snac *snac, char *type, char *id, char *actor, char *date, char *object)
  237. /* creates a base ActivityPub message */
  238. {
  239. xs *did = NULL;
  240. xs *published = NULL;
  241. /* generated values */
  242. if (date && strcmp(date, "@now") == 0)
  243. date = published = xs_str_utctime(0, "%Y-%m-%dT%H:%M:%SZ");
  244. if (id != NULL) {
  245. if (strcmp(id, "@dummy") == 0) {
  246. xs *ntid = tid(0);
  247. id = did = xs_fmt("%s/d/%s/%s", snac->actor, ntid, type);
  248. }
  249. else
  250. if (strcmp(id, "@object") == 0) {
  251. if (object != NULL)
  252. id = did = xs_fmt("%s/%s", xs_dict_get(object, "id"), type);
  253. else
  254. id = NULL;
  255. }
  256. }
  257. d_char *msg = xs_dict_new();
  258. msg = xs_dict_append(msg, "@context", "https:/" "/www.w3.org/ns/activitystreams");
  259. msg = xs_dict_append(msg, "type", type);
  260. if (id != NULL)
  261. msg = xs_dict_append(msg, "id", id);
  262. if (actor != NULL)
  263. msg = xs_dict_append(msg, "actor", actor);
  264. if (date != NULL)
  265. msg = xs_dict_append(msg, "published", date);
  266. if (object != NULL)
  267. msg = xs_dict_append(msg, "object", object);
  268. return msg;
  269. }
  270. d_char *msg_collection(snac *snac, char *id)
  271. /* creates an empty OrderedCollection message */
  272. {
  273. d_char *msg = msg_base(snac, "OrderedCollection", id, NULL, NULL, NULL);
  274. xs *ol = xs_list_new();
  275. xs *nz = xs_number_new(0);
  276. msg = xs_dict_append(msg, "attributedTo", snac->actor);
  277. msg = xs_dict_append(msg, "orderedItems", ol);
  278. msg = xs_dict_append(msg, "totalItems", nz);
  279. return msg;
  280. }
  281. d_char *msg_accept(snac *snac, char *object, char *to)
  282. /* creates an Accept message (as a response to a Follow) */
  283. {
  284. d_char *msg = msg_base(snac, "Accept", "@dummy", snac->actor, NULL, object);
  285. msg = xs_dict_append(msg, "to", to);
  286. return msg;
  287. }
  288. d_char *msg_update(snac *snac, char *object)
  289. /* creates an Update message */
  290. {
  291. d_char *msg = msg_base(snac, "Update", "@object", snac->actor, "@now", object);
  292. msg = xs_dict_append(msg, "to", public_address);
  293. return msg;
  294. }
  295. d_char *msg_admiration(snac *snac, char *object, char *type)
  296. /* creates a Like or Announce message */
  297. {
  298. xs *a_msg = NULL;
  299. d_char *msg = NULL;
  300. /* call the object */
  301. timeline_request(snac, object, snac->actor);
  302. if ((a_msg = timeline_find(snac, object)) != NULL) {
  303. xs *rcpts = xs_list_new();
  304. msg = msg_base(snac, type, "@dummy", snac->actor, "@now", object);
  305. rcpts = xs_list_append(rcpts, public_address);
  306. rcpts = xs_list_append(rcpts, xs_dict_get(a_msg, "attributedTo"));
  307. msg = xs_dict_append(msg, "to", rcpts);
  308. }
  309. else
  310. snac_log(snac, xs_fmt("msg_admiration cannot retrieve object %s", object));
  311. return msg;
  312. }
  313. d_char *msg_actor(snac *snac)
  314. /* create a Person message for this actor */
  315. {
  316. xs *ctxt = xs_list_new();
  317. xs *icon = xs_dict_new();
  318. xs *keys = xs_dict_new();
  319. xs *avtr = NULL;
  320. xs *kid = NULL;
  321. xs *f_bio = NULL;
  322. d_char *msg = msg_base(snac, "Person", snac->actor, NULL, NULL, NULL);
  323. char *p;
  324. int n;
  325. /* change the @context (is this really necessary?) */
  326. ctxt = xs_list_append(ctxt, "https:/" "/www.w3.org/ns/activitystreams");
  327. ctxt = xs_list_append(ctxt, "https:/" "/w3id.org/security/v1");
  328. msg = xs_dict_set(msg, "@context", ctxt);
  329. msg = xs_dict_set(msg, "url", snac->actor);
  330. msg = xs_dict_set(msg, "name", xs_dict_get(snac->config, "name"));
  331. msg = xs_dict_set(msg, "preferredUsername", snac->uid);
  332. msg = xs_dict_set(msg, "published", xs_dict_get(snac->config, "published"));
  333. f_bio = not_really_markdown(xs_dict_get(snac->config, "bio"));
  334. msg = xs_dict_set(msg, "summary", f_bio);
  335. char *folders[] = { "inbox", "outbox", "followers", "following", NULL };
  336. for (n = 0; folders[n]; n++) {
  337. xs *f = xs_fmt("%s/%s", snac->actor, folders[n]);
  338. msg = xs_dict_set(msg, folders[n], f);
  339. }
  340. p = xs_dict_get(snac->config, "avatar");
  341. if (*p == '\0')
  342. avtr = xs_fmt("%s/susie.png", srv_baseurl);
  343. else
  344. avtr = xs_dup(p);
  345. icon = xs_dict_append(icon, "type", "Image");
  346. icon = xs_dict_append(icon, "mediaType", xs_mime_by_ext(avtr));
  347. icon = xs_dict_append(icon, "url", avtr);
  348. msg = xs_dict_set(msg, "icon", icon);
  349. kid = xs_fmt("%s#main-key", snac->actor);
  350. keys = xs_dict_append(keys, "id", kid);
  351. keys = xs_dict_append(keys, "owner", snac->actor);
  352. keys = xs_dict_append(keys, "publicKeyPem", xs_dict_get(snac->key, "public"));
  353. msg = xs_dict_set(msg, "publicKey", keys);
  354. return msg;
  355. }
  356. d_char *msg_create(snac *snac, char *object)
  357. /* creates a 'Create' message */
  358. {
  359. d_char *msg = msg_base(snac, "Create", "@object", snac->actor, "@now", object);
  360. msg = xs_dict_append(msg, "attributedTo", xs_dict_get(object, "attributedTo"));
  361. msg = xs_dict_append(msg, "to", xs_dict_get(object, "to"));
  362. msg = xs_dict_append(msg, "cc", xs_dict_get(object, "cc"));
  363. return msg;
  364. }
  365. d_char *msg_undo(snac *snac, char *object)
  366. /* creates an 'Undo' message */
  367. {
  368. d_char *msg = msg_base(snac, "Undo", "@object", snac->actor, "@now", object);
  369. msg = xs_dict_append(msg, "to", xs_dict_get(object, "object"));
  370. return msg;
  371. }
  372. d_char *msg_delete(snac *snac, char *id)
  373. /* creates a 'Delete' + 'Tombstone' for a local entry */
  374. {
  375. xs *tomb = xs_dict_new();
  376. d_char *msg = NULL;
  377. /* sculpt the tombstone */
  378. tomb = xs_dict_append(tomb, "type", "Tombstone");
  379. tomb = xs_dict_append(tomb, "id", id);
  380. /* now create the Delete */
  381. msg = msg_base(snac, "Delete", "@object", snac->actor, "@now", tomb);
  382. msg = xs_dict_append(msg, "to", public_address);
  383. return msg;
  384. }
  385. d_char *msg_follow(snac *snac, char *url_or_uid)
  386. /* creates a 'Follow' message */
  387. {
  388. xs *actor_o = NULL;
  389. xs *actor = NULL;
  390. d_char *msg = NULL;
  391. int status;
  392. if (xs_startswith(url_or_uid, "https:/"))
  393. actor = xs_dup(url_or_uid);
  394. else
  395. if (!valid_status(webfinger_request(url_or_uid, &actor, NULL))) {
  396. snac_log(snac, xs_fmt("cannot resolve user %s to follow", url_or_uid));
  397. return NULL;
  398. }
  399. /* request the actor */
  400. status = actor_request(snac, actor, &actor_o);
  401. if (valid_status(status)) {
  402. /* check if the actor is an alias */
  403. char *r_actor = xs_dict_get(actor_o, "id");
  404. if (r_actor && strcmp(actor, r_actor) != 0) {
  405. snac_log(snac, xs_fmt("actor to follow is an alias %s -> %s", actor, r_actor));
  406. }
  407. msg = msg_base(snac, "Follow", "@dummy", snac->actor, NULL, r_actor);
  408. }
  409. else
  410. snac_log(snac, xs_fmt("cannot get actor to follow %s %d", actor, status));
  411. return msg;
  412. }
  413. d_char *msg_note(snac *snac, char *content, char *rcpts, char *in_reply_to, char *attach)
  414. /* creates a 'Note' message */
  415. {
  416. xs *ntid = tid(0);
  417. xs *id = xs_fmt("%s/p/%s", snac->actor, ntid);
  418. xs *ctxt = NULL;
  419. xs *fc2 = NULL;
  420. xs *fc1 = NULL;
  421. xs *to = NULL;
  422. xs *cc = xs_list_new();
  423. xs *irt = NULL;
  424. xs *tag = NULL;
  425. xs *atls = NULL;
  426. d_char *msg = msg_base(snac, "Note", id, NULL, "@now", NULL);
  427. char *p, *v;
  428. if (rcpts == NULL)
  429. to = xs_list_new();
  430. else {
  431. if (xs_type(rcpts) == XSTYPE_STRING) {
  432. to = xs_list_new();
  433. to = xs_list_append(to, rcpts);
  434. }
  435. else
  436. to = xs_dup(rcpts);
  437. }
  438. /* format the content */
  439. fc2 = not_really_markdown(content);
  440. /* extract the tags */
  441. process_tags(fc2, &fc1, &tag);
  442. if (tag == NULL)
  443. tag = xs_list_new();
  444. if (in_reply_to != NULL) {
  445. xs *p_msg = NULL;
  446. /* demand this thing */
  447. timeline_request(snac, in_reply_to, NULL);
  448. if ((p_msg = timeline_find(snac, in_reply_to)) != NULL) {
  449. /* add this author as recipient */
  450. char *a, *v;
  451. if ((a = xs_dict_get(p_msg, "attributedTo")) && xs_list_in(to, a) == -1)
  452. to = xs_list_append(to, a);
  453. /* add this author to the tag list as a mention */
  454. xs *t_href;
  455. xs *t_name;
  456. if (!xs_is_null(a) && valid_status(webfinger_request(a, &t_href, &t_name))) {
  457. xs *t = xs_dict_new();
  458. t = xs_dict_append(t, "type", "Mention");
  459. t = xs_dict_append(t, "href", t_href);
  460. t = xs_dict_append(t, "name", t_name);
  461. tag = xs_list_append(tag, t);
  462. }
  463. /* get the context, if there is one */
  464. if ((v = xs_dict_get(p_msg, "context")))
  465. ctxt = xs_dup(v);
  466. /* if this message is public, ours will also be */
  467. if (is_msg_public(snac, p_msg) &&
  468. xs_list_in(to, public_address) == -1)
  469. to = xs_list_append(to, public_address);
  470. }
  471. irt = xs_dup(in_reply_to);
  472. }
  473. else
  474. irt = xs_val_new(XSTYPE_NULL);
  475. /* create the attachment list, if there are any */
  476. if (!xs_is_null(attach) && *attach != '\0') {
  477. xs *lsof1 = NULL;
  478. if (xs_type(attach) == XSTYPE_STRING) {
  479. lsof1 = xs_list_append(xs_list_new(), attach);
  480. attach = lsof1;
  481. }
  482. atls = xs_list_new();
  483. while (xs_list_iter(&attach, &v)) {
  484. xs *d = xs_dict_new();
  485. char *mime = xs_mime_by_ext(v);
  486. d = xs_dict_append(d, "mediaType", mime);
  487. d = xs_dict_append(d, "url", v);
  488. d = xs_dict_append(d, "name", "");
  489. d = xs_dict_append(d, "type",
  490. xs_startswith(mime, "image/") ? "Image" : "Document");
  491. atls = xs_list_append(atls, d);
  492. }
  493. }
  494. if (ctxt == NULL)
  495. ctxt = xs_fmt("%s#ctxt", id);
  496. /* add all mentions to the cc */
  497. p = tag;
  498. while (xs_list_iter(&p, &v)) {
  499. if (xs_type(v) == XSTYPE_DICT) {
  500. char *t;
  501. if ((t = xs_dict_get(v, "type")) != NULL && strcmp(t, "Mention") == 0) {
  502. if ((t = xs_dict_get(v, "href")) != NULL)
  503. cc = xs_list_append(cc, t);
  504. }
  505. }
  506. }
  507. /* no recipients? must be for everybody */
  508. if (xs_list_len(to) == 0)
  509. to = xs_list_append(to, public_address);
  510. msg = xs_dict_append(msg, "attributedTo", snac->actor);
  511. msg = xs_dict_append(msg, "summary", "");
  512. msg = xs_dict_append(msg, "content", fc1);
  513. msg = xs_dict_append(msg, "context", ctxt);
  514. msg = xs_dict_append(msg, "url", id);
  515. msg = xs_dict_append(msg, "to", to);
  516. msg = xs_dict_append(msg, "cc", cc);
  517. msg = xs_dict_append(msg, "inReplyTo", irt);
  518. msg = xs_dict_append(msg, "tag", tag);
  519. if (atls != NULL)
  520. msg = xs_dict_append(msg, "attachment", atls);
  521. return msg;
  522. }
  523. void notify(snac *snac, char *type, char *utype, char *actor, char *msg)
  524. /* notifies the user of relevant events */
  525. {
  526. char *email = xs_dict_get(snac->config, "email");
  527. char *object = NULL;
  528. /* no email address? done */
  529. if (xs_is_null(email) || *email == '\0')
  530. return;
  531. if (strcmp(type, "Create") == 0) {
  532. /* only notify of notes specifically for us */
  533. xs *rcpts = recipient_list(snac, msg, 0);
  534. if (xs_list_in(rcpts, snac->actor) == -1)
  535. return;
  536. }
  537. if (strcmp(type, "Undo") == 0 && strcmp(utype, "Follow") != 0)
  538. return;
  539. if (strcmp(type, "Like") == 0 || strcmp(type, "Announce") == 0) {
  540. object = xs_dict_get(msg, "object");
  541. if (xs_is_null(object))
  542. return;
  543. else {
  544. if (xs_type(object) == XSTYPE_DICT)
  545. object = xs_dict_get(object, "id");
  546. /* if it's not an admiration about something by us, done */
  547. if (xs_is_null(object) || !xs_startswith(object, snac->actor))
  548. return;
  549. }
  550. }
  551. snac_debug(snac, 1, xs_fmt("notify(%s, %s, %s)", type, utype, actor));
  552. /* prepare message */
  553. xs *subject = xs_fmt("snac notify for @%s@%s",
  554. xs_dict_get(snac->config, "uid"), xs_dict_get(srv_config, "host"));
  555. xs *from = xs_fmt("snac-daemon <snac-daemon@%s>", xs_dict_get(srv_config, "host"));
  556. xs *header = xs_fmt(
  557. "From: %s\n"
  558. "To: %s\n"
  559. "Subject: %s\n"
  560. "\n",
  561. from, email, subject);
  562. xs *body = xs_str_new(header);
  563. if (strcmp(utype, "(null)") != 0) {
  564. xs *s1 = xs_fmt("Type : %s + %s\n", type, utype);
  565. body = xs_str_cat(body, s1);
  566. }
  567. else {
  568. xs *s1 = xs_fmt("Type : %s\n", type);
  569. body = xs_str_cat(body, s1);
  570. }
  571. {
  572. xs *s1 = xs_fmt("Actor : %s\n", actor);
  573. body = xs_str_cat(body, s1);
  574. }
  575. if (object != NULL) {
  576. xs *s1 = xs_fmt("Object: %s\n", object);
  577. body = xs_str_cat(body, s1);
  578. }
  579. enqueue_email(snac, body, 0);
  580. }
  581. /** queues **/
  582. int process_message(snac *snac, char *msg, char *req)
  583. /* processes an ActivityPub message from the input queue */
  584. {
  585. /* actor and type exist, were checked previously */
  586. char *actor = xs_dict_get(msg, "actor");
  587. char *type = xs_dict_get(msg, "type");
  588. xs *actor_o = NULL;
  589. int a_status;
  590. int do_notify = 0;
  591. char *object, *utype;
  592. object = xs_dict_get(msg, "object");
  593. if (object != NULL && xs_type(object) == XSTYPE_DICT)
  594. utype = xs_dict_get(object, "type");
  595. else
  596. utype = "(null)";
  597. /* bring the actor */
  598. a_status = actor_request(snac, actor, &actor_o);
  599. /* if the actor does not explicitly exist, discard */
  600. if (a_status == 404 || a_status == 410) {
  601. snac_debug(snac, 1,
  602. xs_fmt("dropping message due to actor error %s %d", actor, a_status));
  603. return 1;
  604. }
  605. if (!valid_status(a_status)) {
  606. /* other actor download errors may need a retry */
  607. snac_debug(snac, 1,
  608. xs_fmt("error requesting actor %s %d -- retry later", actor, a_status));
  609. return 0;
  610. }
  611. /* check the signature */
  612. if (!check_signature(snac, req)) {
  613. {
  614. xs *j = xs_json_dumps_pp(req, 4);
  615. FILE *f;
  616. if ((f = fopen("/tmp/snac-bad-signature.json", "w")) != NULL) {
  617. fwrite(j, strlen(j), 1, f);
  618. fclose(f);
  619. }
  620. }
  621. snac_log(snac, xs_fmt("bad signature"));
  622. return 1;
  623. }
  624. if (strcmp(type, "Follow") == 0) {
  625. xs *f_msg = xs_dup(msg);
  626. xs *reply = msg_accept(snac, f_msg, actor);
  627. post(snac, reply);
  628. if (xs_is_null(xs_dict_get(f_msg, "published"))) {
  629. /* add a date if it doesn't include one (Mastodon) */
  630. xs *date = xs_str_utctime(0, "%Y-%m-%dT%H:%M:%SZ");
  631. f_msg = xs_dict_set(f_msg, "published", date);
  632. }
  633. timeline_add(snac, xs_dict_get(f_msg, "id"), f_msg, NULL, NULL);
  634. follower_add(snac, actor);
  635. snac_log(snac, xs_fmt("New follower %s", actor));
  636. do_notify = 1;
  637. }
  638. else
  639. if (strcmp(type, "Undo") == 0) {
  640. if (strcmp(utype, "Follow") == 0) {
  641. if (valid_status(follower_del(snac, actor))) {
  642. snac_log(snac, xs_fmt("no longer following us %s", actor));
  643. do_notify = 1;
  644. }
  645. else
  646. snac_log(snac, xs_fmt("error deleting follower %s", actor));
  647. }
  648. else
  649. snac_debug(snac, 1, xs_fmt("ignored 'Undo' for object type '%s'", utype));
  650. }
  651. else
  652. if (strcmp(type, "Create") == 0) {
  653. if (strcmp(utype, "Note") == 0) {
  654. if (is_muted(snac, actor))
  655. snac_log(snac, xs_fmt("ignored 'Note' from muted actor %s", actor));
  656. else {
  657. char *id = xs_dict_get(object, "id");
  658. char *in_reply_to = xs_dict_get(object, "inReplyTo");
  659. timeline_request(snac, in_reply_to, NULL);
  660. if (timeline_add(snac, id, object, in_reply_to, NULL)) {
  661. snac_log(snac, xs_fmt("new 'Note' %s %s", actor, id));
  662. do_notify = 1;
  663. }
  664. }
  665. }
  666. else
  667. snac_debug(snac, 1, xs_fmt("ignored 'Create' for object type '%s'", utype));
  668. }
  669. else
  670. if (strcmp(type, "Accept") == 0) {
  671. if (strcmp(utype, "Follow") == 0) {
  672. if (following_check(snac, actor)) {
  673. following_add(snac, actor, msg);
  674. snac_log(snac, xs_fmt("confirmed follow from %s", actor));
  675. }
  676. else
  677. snac_log(snac, xs_fmt("spurious follow accept from %s", actor));
  678. }
  679. else
  680. snac_debug(snac, 1, xs_fmt("ignored 'Accept' for object type '%s'", utype));
  681. }
  682. else
  683. if (strcmp(type, "Like") == 0) {
  684. if (xs_type(object) == XSTYPE_DICT)
  685. object = xs_dict_get(object, "id");
  686. timeline_admire(snac, object, actor, 1);
  687. snac_log(snac, xs_fmt("new 'Like' %s %s", actor, object));
  688. do_notify = 1;
  689. }
  690. else
  691. if (strcmp(type, "Announce") == 0) {
  692. xs *a_msg = NULL;
  693. if (xs_type(object) == XSTYPE_DICT)
  694. object = xs_dict_get(object, "id");
  695. timeline_request(snac, object, actor);
  696. if ((a_msg = timeline_find(snac, object)) != NULL) {
  697. char *who = xs_dict_get(a_msg, "attributedTo");
  698. if (who && !is_muted(snac, who)) {
  699. /* bring the actor */
  700. xs *who_o = NULL;
  701. if (valid_status(actor_request(snac, who, &who_o))) {
  702. timeline_admire(snac, object, actor, 0);
  703. snac_log(snac, xs_fmt("new 'Announce' %s %s", actor, object));
  704. do_notify = 1;
  705. }
  706. else
  707. snac_log(snac, xs_fmt("dropped 'Announce' on actor request error %s", who));
  708. }
  709. else
  710. snac_log(snac, xs_fmt("ignored 'Announce' about muted actor %s", who));
  711. }
  712. else
  713. snac_log(snac, xs_fmt("error requesting 'Announce' object %s", object));
  714. }
  715. else
  716. if (strcmp(type, "Update") == 0) {
  717. if (strcmp(utype, "Person") == 0) {
  718. actor_add(snac, actor, xs_dict_get(msg, "object"));
  719. snac_log(snac, xs_fmt("updated actor %s", actor));
  720. }
  721. else
  722. snac_log(snac, xs_fmt("ignored 'Update' for object type '%s'", utype));
  723. }
  724. else
  725. if (strcmp(type, "Delete") == 0) {
  726. if (xs_type(object) == XSTYPE_DICT)
  727. object = xs_dict_get(object, "id");
  728. if (valid_status(timeline_del(snac, object)))
  729. snac_log(snac, xs_fmt("New 'Delete' %s %s", actor, object));
  730. else
  731. snac_debug(snac, 1, xs_fmt("ignored 'Delete' for unknown object %s", object));
  732. }
  733. else
  734. snac_debug(snac, 1, xs_fmt("process_message type '%s' ignored", type));
  735. if (do_notify)
  736. notify(snac, type, utype, actor, msg);
  737. return 1;
  738. }
  739. void process_queue(snac *snac)
  740. /* processes the queue */
  741. {
  742. xs *list;
  743. char *p, *fn;
  744. int queue_retry_max = xs_number_get(xs_dict_get(srv_config, "queue_retry_max"));
  745. list = queue(snac);
  746. p = list;
  747. while (xs_list_iter(&p, &fn)) {
  748. xs *q_item = dequeue(snac, fn);
  749. char *type;
  750. if (q_item == NULL) {
  751. snac_log(snac, xs_fmt("process_queue q_item error"));
  752. continue;
  753. }
  754. if ((type = xs_dict_get(q_item, "type")) == NULL)
  755. type = "output";
  756. if (strcmp(type, "output") == 0) {
  757. int status;
  758. char *inbox = xs_dict_get(q_item, "inbox");
  759. char *msg = xs_dict_get(q_item, "object");
  760. int retries = xs_number_get(xs_dict_get(q_item, "retries"));
  761. xs *payload = NULL;
  762. int p_size = 0;
  763. if (xs_is_null(inbox) || xs_is_null(msg))
  764. continue;
  765. /* deliver */
  766. status = send_to_inbox(snac, inbox, msg, &payload, &p_size);
  767. snac_log(snac, xs_fmt("process_queue sent to inbox %s %d", inbox, status));
  768. if (!valid_status(status)) {
  769. /* error sending; requeue? */
  770. if (retries > queue_retry_max)
  771. snac_log(snac, xs_fmt("process_queue giving up %s %d", inbox, status));
  772. else {
  773. /* requeue */
  774. enqueue_output(snac, msg, inbox, retries + 1);
  775. snac_log(snac, xs_fmt("process_queue requeue %s #%d", inbox, retries + 1));
  776. }
  777. }
  778. }
  779. else
  780. if (strcmp(type, "input") == 0) {
  781. /* process the message */
  782. char *msg = xs_dict_get(q_item, "object");
  783. char *req = xs_dict_get(q_item, "req");
  784. int retries = xs_number_get(xs_dict_get(q_item, "retries"));
  785. if (!process_message(snac, msg, req)) {
  786. if (retries > queue_retry_max)
  787. snac_log(snac, xs_fmt("process_queue input giving up"));
  788. else {
  789. /* reenqueue */
  790. enqueue_input(snac, msg, req, retries + 1);
  791. snac_log(snac, xs_fmt("process_queue input requeue #%d", retries + 1));
  792. }
  793. }
  794. }
  795. else
  796. if (strcmp(type, "email") == 0) {
  797. /* send this email */
  798. char *msg = xs_dict_get(q_item, "message");
  799. int retries = xs_number_get(xs_dict_get(q_item, "retries"));
  800. FILE *f;
  801. int ok = 0;
  802. if ((f = popen("/usr/sbin/sendmail -t", "w")) != NULL) {
  803. fprintf(f, "%s\n", msg);
  804. if (pclose(f) != -1)
  805. ok = 1;
  806. }
  807. if (ok)
  808. snac_debug(snac, 1, xs_fmt("email message sent"));
  809. else {
  810. if (retries > queue_retry_max)
  811. snac_log(snac, xs_fmt("process_queue email giving up (errno: %d)", errno));
  812. else {
  813. /* requeue */
  814. snac_log(snac, xs_fmt(
  815. "process_queue email requeue #%d (errno: %d)", retries + 1, errno));
  816. enqueue_email(snac, msg, retries + 1);
  817. }
  818. }
  819. }
  820. }
  821. }
  822. void post(snac *snac, char *msg)
  823. /* enqueues a message to all its recipients */
  824. {
  825. xs *inboxes = inbox_list(snac, msg);
  826. char *p, *v;
  827. p = inboxes;
  828. while (xs_list_iter(&p, &v)) {
  829. enqueue_output(snac, msg, v, 0);
  830. }
  831. }
  832. /** HTTP handlers */
  833. int activitypub_get_handler(d_char *req, char *q_path,
  834. char **body, int *b_size, char **ctype)
  835. {
  836. int status = 200;
  837. char *accept = xs_dict_get(req, "accept");
  838. snac snac;
  839. xs *msg = NULL;
  840. if (accept == NULL)
  841. return 0;
  842. if (xs_str_in(accept, "application/activity+json") == -1 &&
  843. xs_str_in(accept, "application/ld+json") == -1)
  844. return 0;
  845. xs *l = xs_split_n(q_path, "/", 2);
  846. char *uid, *p_path;
  847. uid = xs_list_get(l, 1);
  848. if (!user_open(&snac, uid)) {
  849. /* invalid user */
  850. srv_log(xs_fmt("activitypub_get_handler bad user %s", uid));
  851. return 404;
  852. }
  853. p_path = xs_list_get(l, 2);
  854. *ctype = "application/activity+json";
  855. if (p_path == NULL) {
  856. /* if there was no component after the user, it's an actor request */
  857. msg = msg_actor(&snac);
  858. *ctype = "application/ld+json";
  859. }
  860. else
  861. if (strcmp(p_path, "outbox") == 0) {
  862. xs *id = xs_fmt("%s/outbox", snac.actor);
  863. xs *elems = local_list(&snac, 20);
  864. xs *list = xs_list_new();
  865. msg = msg_collection(&snac, id);
  866. char *p, *v;
  867. p = elems;
  868. while (xs_list_iter(&p, &v)) {
  869. xs *i = timeline_get(&snac, v);
  870. char *type = xs_dict_get(i, "type");
  871. char *id = xs_dict_get(i, "id");
  872. if (type && id && strcmp(type, "Note") == 0 && xs_startswith(id, snac.actor)) {
  873. i = xs_dict_del(i, "_snac");
  874. list = xs_list_append(list, i);
  875. }
  876. }
  877. /* replace the 'orderedItems' with the latest posts */
  878. xs *items = xs_number_new(xs_list_len(list));
  879. msg = xs_dict_set(msg, "orderedItems", list);
  880. msg = xs_dict_set(msg, "totalItems", items);
  881. }
  882. else
  883. if (strcmp(p_path, "followers") == 0 || strcmp(p_path, "following") == 0) {
  884. xs *id = xs_fmt("%s/%s", snac.actor, p_path);
  885. msg = msg_collection(&snac, id);
  886. }
  887. else
  888. if (xs_startswith(p_path, "p/")) {
  889. xs *id = xs_fmt("%s/%s", snac.actor, p_path);
  890. if ((msg = timeline_find(&snac, id)) != NULL)
  891. msg = xs_dict_del(msg, "_snac");
  892. else
  893. status = 404;
  894. }
  895. else
  896. status = 404;
  897. if (status == 200 && msg != NULL) {
  898. *body = xs_json_dumps_pp(msg, 4);
  899. *b_size = strlen(*body);
  900. }
  901. snac_debug(&snac, 1, xs_fmt("activitypub_get_handler serving %s %d", q_path, status));
  902. user_free(&snac);
  903. return status;
  904. }
  905. int activitypub_post_handler(d_char *req, char *q_path,
  906. d_char *payload, int p_size,
  907. char **body, int *b_size, char **ctype)
  908. /* processes an input message */
  909. {
  910. int status = 202; /* accepted */
  911. char *i_ctype = xs_dict_get(req, "content-type");
  912. snac snac;
  913. char *v;
  914. if (i_ctype == NULL)
  915. return 400;
  916. if (xs_str_in(i_ctype, "application/activity+json") == -1 &&
  917. xs_str_in(i_ctype, "application/ld+json") == -1)
  918. return 0;
  919. /* decode the message */
  920. xs *msg = xs_json_loads(payload);
  921. if (msg == NULL) {
  922. srv_log(xs_fmt("activitypub_post_handler JSON error %s", q_path));
  923. status = 400;
  924. }
  925. /* get the user and path */
  926. xs *l = xs_split_n(q_path, "/", 2);
  927. char *uid;
  928. if (xs_list_len(l) != 3 || strcmp(xs_list_get(l, 2), "inbox") != 0) {
  929. /* strange q_path */
  930. srv_debug(1, xs_fmt("activitypub_post_handler unsupported path %s", q_path));
  931. return 404;
  932. }
  933. uid = xs_list_get(l, 1);
  934. if (!user_open(&snac, uid)) {
  935. /* invalid user */
  936. srv_debug(1, xs_fmt("activitypub_post_handler bad user %s", uid));
  937. return 404;
  938. }
  939. /* if it has a digest, check it now, because
  940. later the payload won't be exactly the same */
  941. if ((v = xs_dict_get(req, "digest")) != NULL) {
  942. xs *s1 = xs_sha256_base64(payload, p_size);
  943. xs *s2 = xs_fmt("SHA-256=%s", s1);
  944. if (strcmp(s2, v) != 0) {
  945. srv_log(xs_fmt("digest check FAILED"));
  946. status = 400;
  947. }
  948. }
  949. if (valid_status(status)) {
  950. enqueue_input(&snac, msg, req, 0);
  951. *ctype = "application/activity+json";
  952. }
  953. user_free(&snac);
  954. return status;
  955. }