network.py 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404
  1. # SPDX-License-Identifier: AGPL-3.0-or-later
  2. # lint: pylint
  3. # pylint: disable=global-statement
  4. # pylint: disable=missing-module-docstring, missing-class-docstring
  5. import atexit
  6. import asyncio
  7. import ipaddress
  8. from itertools import cycle
  9. from typing import Dict
  10. import httpx
  11. from searx import logger, searx_debug
  12. from .client import new_client, get_loop, AsyncHTTPTransportNoHttp
  13. logger = logger.getChild('network')
  14. DEFAULT_NAME = '__DEFAULT__'
  15. NETWORKS: Dict[str, 'Network'] = {}
  16. # requests compatibility when reading proxy settings from settings.yml
  17. PROXY_PATTERN_MAPPING = {
  18. 'http': 'http://',
  19. 'https': 'https://',
  20. 'socks4': 'socks4://',
  21. 'socks5': 'socks5://',
  22. 'socks5h': 'socks5h://',
  23. 'http:': 'http://',
  24. 'https:': 'https://',
  25. 'socks4:': 'socks4://',
  26. 'socks5:': 'socks5://',
  27. 'socks5h:': 'socks5h://',
  28. }
  29. ADDRESS_MAPPING = {'ipv4': '0.0.0.0', 'ipv6': '::'}
  30. class Network:
  31. __slots__ = (
  32. 'enable_http',
  33. 'verify',
  34. 'enable_http2',
  35. 'max_connections',
  36. 'max_keepalive_connections',
  37. 'keepalive_expiry',
  38. 'local_addresses',
  39. 'proxies',
  40. 'using_tor_proxy',
  41. 'max_redirects',
  42. 'retries',
  43. 'retry_on_http_error',
  44. '_local_addresses_cycle',
  45. '_proxies_cycle',
  46. '_clients',
  47. '_logger',
  48. )
  49. _TOR_CHECK_RESULT = {}
  50. def __init__(
  51. # pylint: disable=too-many-arguments
  52. self,
  53. enable_http=True,
  54. verify=True,
  55. enable_http2=False,
  56. max_connections=None,
  57. max_keepalive_connections=None,
  58. keepalive_expiry=None,
  59. proxies=None,
  60. using_tor_proxy=False,
  61. local_addresses=None,
  62. retries=0,
  63. retry_on_http_error=None,
  64. max_redirects=30,
  65. logger_name=None,
  66. ):
  67. self.enable_http = enable_http
  68. self.verify = verify
  69. self.enable_http2 = enable_http2
  70. self.max_connections = max_connections
  71. self.max_keepalive_connections = max_keepalive_connections
  72. self.keepalive_expiry = keepalive_expiry
  73. self.proxies = proxies
  74. self.using_tor_proxy = using_tor_proxy
  75. self.local_addresses = local_addresses
  76. self.retries = retries
  77. self.retry_on_http_error = retry_on_http_error
  78. self.max_redirects = max_redirects
  79. self._local_addresses_cycle = self.get_ipaddress_cycle()
  80. self._proxies_cycle = self.get_proxy_cycles()
  81. self._clients = {}
  82. self._logger = logger.getChild(logger_name) if logger_name else logger
  83. self.check_parameters()
  84. def check_parameters(self):
  85. for address in self.iter_ipaddresses():
  86. if '/' in address:
  87. ipaddress.ip_network(address, False)
  88. else:
  89. ipaddress.ip_address(address)
  90. if self.proxies is not None and not isinstance(self.proxies, (str, dict)):
  91. raise ValueError('proxies type has to be str, dict or None')
  92. def iter_ipaddresses(self):
  93. local_addresses = self.local_addresses
  94. if not local_addresses:
  95. return
  96. if isinstance(local_addresses, str):
  97. local_addresses = [local_addresses]
  98. for address in local_addresses:
  99. yield address
  100. def get_ipaddress_cycle(self):
  101. while True:
  102. count = 0
  103. for address in self.iter_ipaddresses():
  104. if '/' in address:
  105. for a in ipaddress.ip_network(address, False).hosts():
  106. yield str(a)
  107. count += 1
  108. else:
  109. a = ipaddress.ip_address(address)
  110. yield str(a)
  111. count += 1
  112. if count == 0:
  113. yield None
  114. def iter_proxies(self):
  115. if not self.proxies:
  116. return
  117. # https://www.python-httpx.org/compatibility/#proxy-keys
  118. if isinstance(self.proxies, str):
  119. yield 'all://', [self.proxies]
  120. else:
  121. for pattern, proxy_url in self.proxies.items():
  122. pattern = PROXY_PATTERN_MAPPING.get(pattern, pattern)
  123. if isinstance(proxy_url, str):
  124. proxy_url = [proxy_url]
  125. yield pattern, proxy_url
  126. def get_proxy_cycles(self):
  127. proxy_settings = {}
  128. for pattern, proxy_urls in self.iter_proxies():
  129. proxy_settings[pattern] = cycle(proxy_urls)
  130. while True:
  131. # pylint: disable=stop-iteration-return
  132. yield tuple((pattern, next(proxy_url_cycle)) for pattern, proxy_url_cycle in proxy_settings.items())
  133. async def log_response(self, response: httpx.Response):
  134. request = response.request
  135. status = f"{response.status_code} {response.reason_phrase}"
  136. response_line = f"{response.http_version} {status}"
  137. content_type = response.headers.get("Content-Type")
  138. content_type = f' ({content_type})' if content_type else ''
  139. self._logger.debug(f'HTTP Request: {request.method} {request.url} "{response_line}"{content_type}')
  140. @staticmethod
  141. async def check_tor_proxy(client: httpx.AsyncClient, proxies) -> bool:
  142. if proxies in Network._TOR_CHECK_RESULT:
  143. return Network._TOR_CHECK_RESULT[proxies]
  144. result = True
  145. # ignore client._transport because it is not used with all://
  146. for transport in client._mounts.values(): # pylint: disable=protected-access
  147. if isinstance(transport, AsyncHTTPTransportNoHttp):
  148. continue
  149. if getattr(transport, "_pool") and getattr(
  150. transport._pool, "_rdns", False # pylint: disable=protected-access
  151. ):
  152. continue
  153. return False
  154. response = await client.get("https://check.torproject.org/api/ip", timeout=10)
  155. if not response.json()["IsTor"]:
  156. result = False
  157. Network._TOR_CHECK_RESULT[proxies] = result
  158. return result
  159. async def get_client(self, verify=None, max_redirects=None):
  160. verify = self.verify if verify is None else verify
  161. max_redirects = self.max_redirects if max_redirects is None else max_redirects
  162. local_address = next(self._local_addresses_cycle)
  163. proxies = next(self._proxies_cycle) # is a tuple so it can be part of the key
  164. key = (verify, max_redirects, local_address, proxies)
  165. hook_log_response = self.log_response if searx_debug else None
  166. if key not in self._clients or self._clients[key].is_closed:
  167. client = new_client(
  168. self.enable_http,
  169. verify,
  170. self.enable_http2,
  171. self.max_connections,
  172. self.max_keepalive_connections,
  173. self.keepalive_expiry,
  174. dict(proxies),
  175. local_address,
  176. 0,
  177. max_redirects,
  178. hook_log_response,
  179. )
  180. if self.using_tor_proxy and not await self.check_tor_proxy(client, proxies):
  181. await client.aclose()
  182. raise httpx.ProxyError('Network configuration problem: not using Tor')
  183. self._clients[key] = client
  184. return self._clients[key]
  185. async def aclose(self):
  186. async def close_client(client):
  187. try:
  188. await client.aclose()
  189. except httpx.HTTPError:
  190. pass
  191. await asyncio.gather(*[close_client(client) for client in self._clients.values()], return_exceptions=False)
  192. @staticmethod
  193. def extract_kwargs_clients(kwargs):
  194. kwargs_clients = {}
  195. if 'verify' in kwargs:
  196. kwargs_clients['verify'] = kwargs.pop('verify')
  197. if 'max_redirects' in kwargs:
  198. kwargs_clients['max_redirects'] = kwargs.pop('max_redirects')
  199. if 'allow_redirects' in kwargs:
  200. # see https://github.com/encode/httpx/pull/1808
  201. kwargs['follow_redirects'] = kwargs.pop('allow_redirects')
  202. return kwargs_clients
  203. def is_valid_response(self, response):
  204. # pylint: disable=too-many-boolean-expressions
  205. if (
  206. (self.retry_on_http_error is True and 400 <= response.status_code <= 599)
  207. or (isinstance(self.retry_on_http_error, list) and response.status_code in self.retry_on_http_error)
  208. or (isinstance(self.retry_on_http_error, int) and response.status_code == self.retry_on_http_error)
  209. ):
  210. return False
  211. return True
  212. async def call_client(self, stream, method, url, **kwargs):
  213. retries = self.retries
  214. was_disconnected = False
  215. kwargs_clients = Network.extract_kwargs_clients(kwargs)
  216. while retries >= 0: # pragma: no cover
  217. client = await self.get_client(**kwargs_clients)
  218. try:
  219. if stream:
  220. response = client.stream(method, url, **kwargs)
  221. else:
  222. response = await client.request(method, url, **kwargs)
  223. if self.is_valid_response(response) or retries <= 0:
  224. return response
  225. except httpx.RemoteProtocolError as e:
  226. if not was_disconnected:
  227. # the server has closed the connection:
  228. # try again without decreasing the retries variable & with a new HTTP client
  229. was_disconnected = True
  230. await client.aclose()
  231. self._logger.warning('httpx.RemoteProtocolError: the server has disconnected, retrying')
  232. continue
  233. if retries <= 0:
  234. raise e
  235. except (httpx.RequestError, httpx.HTTPStatusError) as e:
  236. if retries <= 0:
  237. raise e
  238. retries -= 1
  239. async def request(self, method, url, **kwargs):
  240. return await self.call_client(False, method, url, **kwargs)
  241. async def stream(self, method, url, **kwargs):
  242. return await self.call_client(True, method, url, **kwargs)
  243. @classmethod
  244. async def aclose_all(cls):
  245. await asyncio.gather(*[network.aclose() for network in NETWORKS.values()], return_exceptions=False)
  246. def get_network(name=None):
  247. return NETWORKS.get(name or DEFAULT_NAME)
  248. def check_network_configuration():
  249. async def check():
  250. exception_count = 0
  251. for network in NETWORKS.values():
  252. if network.using_tor_proxy:
  253. try:
  254. await network.get_client()
  255. except Exception: # pylint: disable=broad-except
  256. network._logger.exception('Error') # pylint: disable=protected-access
  257. exception_count += 1
  258. return exception_count
  259. future = asyncio.run_coroutine_threadsafe(check(), get_loop())
  260. exception_count = future.result()
  261. if exception_count > 0:
  262. raise RuntimeError("Invalid network configuration")
  263. def initialize(settings_engines=None, settings_outgoing=None):
  264. # pylint: disable=import-outside-toplevel)
  265. from searx.engines import engines
  266. from searx import settings
  267. # pylint: enable=import-outside-toplevel)
  268. settings_engines = settings_engines or settings['engines']
  269. settings_outgoing = settings_outgoing or settings['outgoing']
  270. # default parameters for AsyncHTTPTransport
  271. # see https://github.com/encode/httpx/blob/e05a5372eb6172287458b37447c30f650047e1b8/httpx/_transports/default.py#L108-L121 # pylint: disable=line-too-long
  272. default_params = {
  273. 'enable_http': False,
  274. 'verify': True,
  275. 'enable_http2': settings_outgoing['enable_http2'],
  276. 'max_connections': settings_outgoing['pool_connections'],
  277. 'max_keepalive_connections': settings_outgoing['pool_maxsize'],
  278. 'keepalive_expiry': settings_outgoing['keepalive_expiry'],
  279. 'local_addresses': settings_outgoing['source_ips'],
  280. 'using_tor_proxy': settings_outgoing['using_tor_proxy'],
  281. 'proxies': settings_outgoing['proxies'],
  282. 'max_redirects': settings_outgoing['max_redirects'],
  283. 'retries': settings_outgoing['retries'],
  284. 'retry_on_http_error': None,
  285. }
  286. def new_network(params, logger_name=None):
  287. nonlocal default_params
  288. result = {}
  289. result.update(default_params)
  290. result.update(params)
  291. if logger_name:
  292. result['logger_name'] = logger_name
  293. return Network(**result)
  294. def iter_networks():
  295. nonlocal settings_engines
  296. for engine_spec in settings_engines:
  297. engine_name = engine_spec['name']
  298. engine = engines.get(engine_name)
  299. if engine is None:
  300. continue
  301. network = getattr(engine, 'network', None)
  302. yield engine_name, engine, network
  303. if NETWORKS:
  304. done()
  305. NETWORKS.clear()
  306. NETWORKS[DEFAULT_NAME] = new_network({}, logger_name='default')
  307. NETWORKS['ipv4'] = new_network({'local_addresses': '0.0.0.0'}, logger_name='ipv4')
  308. NETWORKS['ipv6'] = new_network({'local_addresses': '::'}, logger_name='ipv6')
  309. # define networks from outgoing.networks
  310. for network_name, network in settings_outgoing['networks'].items():
  311. NETWORKS[network_name] = new_network(network, logger_name=network_name)
  312. # define networks from engines.[i].network (except references)
  313. for engine_name, engine, network in iter_networks():
  314. if network is None:
  315. network = {}
  316. for attribute_name, attribute_value in default_params.items():
  317. if hasattr(engine, attribute_name):
  318. network[attribute_name] = getattr(engine, attribute_name)
  319. else:
  320. network[attribute_name] = attribute_value
  321. NETWORKS[engine_name] = new_network(network, logger_name=engine_name)
  322. elif isinstance(network, dict):
  323. NETWORKS[engine_name] = new_network(network, logger_name=engine_name)
  324. # define networks from engines.[i].network (references)
  325. for engine_name, engine, network in iter_networks():
  326. if isinstance(network, str):
  327. NETWORKS[engine_name] = NETWORKS[network]
  328. # the /image_proxy endpoint has a dedicated network.
  329. # same parameters than the default network, but HTTP/2 is disabled.
  330. # It decreases the CPU load average, and the total time is more or less the same
  331. if 'image_proxy' not in NETWORKS:
  332. image_proxy_params = default_params.copy()
  333. image_proxy_params['enable_http2'] = False
  334. NETWORKS['image_proxy'] = new_network(image_proxy_params, logger_name='image_proxy')
  335. @atexit.register
  336. def done():
  337. """Close all HTTP client
  338. Avoid a warning at exit
  339. see https://github.com/encode/httpx/blob/1a6e254f72d9fd5694a1c10a28927e193ab4f76b/httpx/_client.py#L1785
  340. Note: since Network.aclose has to be async, it is not possible to call this method on Network.__del__
  341. So Network.aclose is called here using atexit.register
  342. """
  343. try:
  344. loop = get_loop()
  345. if loop:
  346. future = asyncio.run_coroutine_threadsafe(Network.aclose_all(), loop)
  347. # wait 3 seconds to close the HTTP clients
  348. future.result(3)
  349. finally:
  350. NETWORKS.clear()
  351. NETWORKS[DEFAULT_NAME] = Network()