colinlbc
e8bfa12372
Reworked things to get rid of several pointer errors.
...
Implemented svcname paramater for hosts access mode to set daemon name in hosts.allow,hosts.deny.
New router config syntax:
svcname defaults to uwsgi
uwsgi.ini:
router access:hosts
router access:hosts=svcname
router access:allow=addr
router access:deny=addr
hosts.deny:
svcname:ALL
2012-10-25 14:10:37 -07:00
colinlbc
99f584cff0
use char *remote_addr instead of wsgi_req->remote_addr
2012-10-24 03:03:13 -07:00
colinlbc
fc6a79dcc9
corrected hosts_ctl to use STRING_UNKNOWN instead of wsgi_req->host. This
...
wants the remote_hostname, not the request host header.
2012-10-24 02:54:30 -07:00
colinlbc
75af812b83
Fixed a couple of silly mistakes in the access:action,host syntax parsing
...
Made changes based on unbit feedback:
- separated header, body output in 403 error
- used uwsgi_concat2n to copy strings out of wsgi_req->remote_addr and wsgi_req->host
2012-10-24 02:15:41 -07:00
Colin Ligertwood
0f4e1eb7e2
A simple access control router using libwrap. Currently only tested on OpenBSD 5.1.
...
I've used router_authbasic as a guide to write this. Placeholders exist for an
internal ACL scheme. Syntax follows:
router = ^/path acces:hosts -- hosts access router using libwrap, works!
router = ^/path access:allow,ipaddr -- internal allow, unimplemented
router = ^/path access:deny,ipaddr -- internal deny, unimplemented
It's just a few hours hacking and I'm not entirely sure how the internal access
control will work, but the hosts access stuff works in openbsd. It returns a 403
on denial.
2012-10-24 01:09:44 -07:00
Roberto De Ioris
a3e0c2260f
fixed a leak and a refcount bug in the tracebacker
2012-10-24 08:05:35 +02:00
Roberto De Ioris
3f63caa5eb
fixed a typo
2012-10-24 07:13:33 +02:00
Roberto De Ioris
d6b4b8ea6e
improved wsgi.input reports
2012-10-23 20:44:01 +02:00
Roberto De Ioris
3a451fb42f
updates request switches at every gevent sleep/switch
2012-10-22 17:16:21 +02:00
Roberto De Ioris
7017712c6d
non blocking wsgi.input in gevent
2012-10-22 15:58:36 +02:00
Roberto De Ioris
49140c3387
removed sendfile buildconf option
2012-10-22 14:07:33 +02:00
Roberto De Ioris
29ce04adce
implemented reliable gevent non-blocking writes
2012-10-22 08:34:37 +02:00
Roberto De Ioris
7136beeff7
added uwsgi.offload_transfer()
2012-10-21 18:19:14 +02:00
Roberto De Ioris
64c7d71c35
completed https request body management
2012-10-21 14:04:10 +02:00
Roberto De Ioris
d2d714e933
another series of https porting to the new api and ported multithread build system to python3
2012-10-21 12:36:15 +02:00
Roberto De Ioris
f7399ef2ec
use linux SOCK_NONBLOCK on uwsgi_connect()
2012-10-21 11:56:04 +02:00
Roberto De Ioris
4014bc53bd
fixed handling of 'remaining' post data in http router
2012-10-21 11:31:47 +02:00
Roberto De Ioris
8dc072732b
fixed building on ubuntu quantal
2012-10-20 19:45:09 +02:00
Roberto De Ioris
37b7c31849
fixed fastrouter leak with the new api
2012-10-20 19:39:08 +02:00
Roberto De Ioris
738b886267
get rid of ugly oracle/sun ifdef, will find a better solution later
2012-10-20 19:35:53 +02:00
Roberto De Ioris
8679f8b845
use accept4() if available
2012-10-20 19:20:52 +02:00
Roberto De Ioris
cefc9fcc58
fixed http compilation
2012-10-20 18:17:50 +02:00
Roberto De Ioris
03104063cb
improved http memory handling
2012-10-20 18:16:03 +02:00
Roberto De Ioris
ef10dc054f
fixed fastrouter
2012-10-20 17:55:04 +02:00
Roberto De Ioris
0242b464e7
another step for https porting
2012-10-20 17:29:45 +02:00
Roberto De Ioris
353b837f67
preliminary port of the http router to the new api
2012-10-20 16:54:16 +02:00
Roberto De Ioris
d70ecab49f
simplified the fastrouter
2012-10-20 13:47:23 +02:00
Roberto De Ioris
c65adaaac7
first (destructive) commit for 1.4
2012-10-20 13:47:07 +02:00
Roberto De Ioris
6ea535a74d
fixed gil usage in gevent plugin
2012-10-18 16:06:53 +02:00
Roberto De Ioris
2e66ae9abe
added a test for static offloads
2012-10-18 14:55:49 +02:00
Roberto De Ioris
86d9b4bc0e
always get gil on python atexit
2012-10-18 08:27:51 +02:00
Roberto De Ioris
94eb4f078e
improved gevent usage of threads (it allows tracebacker and autoreloader to work in gevent)
2012-10-17 21:19:48 +02:00
Roberto De Ioris
c67d26f8cc
support for unlimited loop engines
2012-10-17 13:43:29 +02:00
Unbit
1015ef9611
added (joke) alarm_speech plugin for OSX
2012-10-09 18:43:02 +02:00
Roberto De Ioris
42229b08ce
added shared require for rack
2012-10-09 13:32:22 +02:00
Roberto De Ioris
a3e9a288d3
better usage of uwsgi_log_initial
2012-10-09 06:51:14 +02:00
Roberto De Ioris
6b32ac086e
improved lua plugin performance and status management
2012-10-07 08:45:50 +02:00
Roberto De Ioris
8925ea06e1
improved router_http
2012-10-04 20:04:23 +02:00
roberto@quantal64
c59a3cb35a
added support for PEP 405 virtualenvs
2012-10-03 20:49:58 +02:00
roberto@quantal64
0de510b777
fixed erlang plugin, improved xmpp alarm
2012-10-03 07:52:34 +02:00
roberto@quantal64
4ca422a0a8
added --subscription-dotsplit
2012-10-03 06:56:37 +02:00
roberto@quantal64
a979abf0c6
added multiple algorithms support for subscription load balancing
2012-10-02 17:08:40 +02:00
roberto@quantal64
3beead6459
fixed leak in python3 headers management, prepare for truly working static file serving offload
2012-10-01 19:49:04 +02:00
roberto@sirius
248741a81f
fixed non-blocking write on osx
2012-10-01 18:55:25 +02:00
roberto@quantal64
51b9b5d070
added cppcheck option, improved multicast
2012-09-29 09:16:09 +02:00
roberto@quantal64
dafe3bb12c
fixed rack.input with buffered arg
2012-09-28 16:21:37 +02:00
roberto@mercury
973e508af7
reports details on memory allocation error, and bypass broken rack middlewares
2012-09-28 12:37:11 +02:00
roberto@mercury
8e31bb612e
allows building the rack plugin without async support
2012-09-28 06:16:55 +02:00
roberto@longshot
ae1b5afd7d
reoved last libstrophe reference
2012-09-27 18:21:14 +02:00
roberto@quantal64
1f2bae130e
added alarm_xmpp plugin
2012-09-27 17:45:42 +02:00