network.py 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426
  1. # SPDX-License-Identifier: AGPL-3.0-or-later
  2. # lint: pylint
  3. # pylint: disable=global-statement
  4. # pylint: disable=missing-module-docstring, missing-class-docstring
  5. import atexit
  6. import asyncio
  7. import ipaddress
  8. from itertools import cycle
  9. from typing import Dict
  10. import httpx
  11. from searx import logger, searx_debug
  12. from .client import new_client, get_loop, AsyncHTTPTransportNoHttp
  13. from .raise_for_httperror import raise_for_httperror
  14. logger = logger.getChild('network')
  15. DEFAULT_NAME = '__DEFAULT__'
  16. NETWORKS: Dict[str, 'Network'] = {}
  17. # requests compatibility when reading proxy settings from settings.yml
  18. PROXY_PATTERN_MAPPING = {
  19. 'http': 'http://',
  20. 'https': 'https://',
  21. 'socks4': 'socks4://',
  22. 'socks5': 'socks5://',
  23. 'socks5h': 'socks5h://',
  24. 'http:': 'http://',
  25. 'https:': 'https://',
  26. 'socks4:': 'socks4://',
  27. 'socks5:': 'socks5://',
  28. 'socks5h:': 'socks5h://',
  29. }
  30. ADDRESS_MAPPING = {'ipv4': '0.0.0.0', 'ipv6': '::'}
  31. class Network:
  32. __slots__ = (
  33. 'enable_http',
  34. 'verify',
  35. 'enable_http2',
  36. 'max_connections',
  37. 'max_keepalive_connections',
  38. 'keepalive_expiry',
  39. 'local_addresses',
  40. 'proxies',
  41. 'using_tor_proxy',
  42. 'max_redirects',
  43. 'retries',
  44. 'retry_on_http_error',
  45. '_local_addresses_cycle',
  46. '_proxies_cycle',
  47. '_clients',
  48. '_logger',
  49. )
  50. _TOR_CHECK_RESULT = {}
  51. def __init__(
  52. # pylint: disable=too-many-arguments
  53. self,
  54. enable_http=True,
  55. verify=True,
  56. enable_http2=False,
  57. max_connections=None,
  58. max_keepalive_connections=None,
  59. keepalive_expiry=None,
  60. proxies=None,
  61. using_tor_proxy=False,
  62. local_addresses=None,
  63. retries=0,
  64. retry_on_http_error=None,
  65. max_redirects=30,
  66. logger_name=None,
  67. ):
  68. self.enable_http = enable_http
  69. self.verify = verify
  70. self.enable_http2 = enable_http2
  71. self.max_connections = max_connections
  72. self.max_keepalive_connections = max_keepalive_connections
  73. self.keepalive_expiry = keepalive_expiry
  74. self.proxies = proxies
  75. self.using_tor_proxy = using_tor_proxy
  76. self.local_addresses = local_addresses
  77. self.retries = retries
  78. self.retry_on_http_error = retry_on_http_error
  79. self.max_redirects = max_redirects
  80. self._local_addresses_cycle = self.get_ipaddress_cycle()
  81. self._proxies_cycle = self.get_proxy_cycles()
  82. self._clients = {}
  83. self._logger = logger.getChild(logger_name) if logger_name else logger
  84. self.check_parameters()
  85. def check_parameters(self):
  86. for address in self.iter_ipaddresses():
  87. if '/' in address:
  88. ipaddress.ip_network(address, False)
  89. else:
  90. ipaddress.ip_address(address)
  91. if self.proxies is not None and not isinstance(self.proxies, (str, dict)):
  92. raise ValueError('proxies type has to be str, dict or None')
  93. def iter_ipaddresses(self):
  94. local_addresses = self.local_addresses
  95. if not local_addresses:
  96. return
  97. if isinstance(local_addresses, str):
  98. local_addresses = [local_addresses]
  99. yield from local_addresses
  100. def get_ipaddress_cycle(self):
  101. while True:
  102. count = 0
  103. for address in self.iter_ipaddresses():
  104. if '/' in address:
  105. for a in ipaddress.ip_network(address, False).hosts():
  106. yield str(a)
  107. count += 1
  108. else:
  109. a = ipaddress.ip_address(address)
  110. yield str(a)
  111. count += 1
  112. if count == 0:
  113. yield None
  114. def iter_proxies(self):
  115. if not self.proxies:
  116. return
  117. # https://www.python-httpx.org/compatibility/#proxy-keys
  118. if isinstance(self.proxies, str):
  119. yield 'all://', [self.proxies]
  120. else:
  121. for pattern, proxy_url in self.proxies.items():
  122. pattern = PROXY_PATTERN_MAPPING.get(pattern, pattern)
  123. if isinstance(proxy_url, str):
  124. proxy_url = [proxy_url]
  125. yield pattern, proxy_url
  126. def get_proxy_cycles(self):
  127. proxy_settings = {}
  128. for pattern, proxy_urls in self.iter_proxies():
  129. proxy_settings[pattern] = cycle(proxy_urls)
  130. while True:
  131. # pylint: disable=stop-iteration-return
  132. yield tuple((pattern, next(proxy_url_cycle)) for pattern, proxy_url_cycle in proxy_settings.items())
  133. async def log_response(self, response: httpx.Response):
  134. request = response.request
  135. status = f"{response.status_code} {response.reason_phrase}"
  136. response_line = f"{response.http_version} {status}"
  137. content_type = response.headers.get("Content-Type")
  138. content_type = f' ({content_type})' if content_type else ''
  139. self._logger.debug(f'HTTP Request: {request.method} {request.url} "{response_line}"{content_type}')
  140. @staticmethod
  141. async def check_tor_proxy(client: httpx.AsyncClient, proxies) -> bool:
  142. if proxies in Network._TOR_CHECK_RESULT:
  143. return Network._TOR_CHECK_RESULT[proxies]
  144. result = True
  145. # ignore client._transport because it is not used with all://
  146. for transport in client._mounts.values(): # pylint: disable=protected-access
  147. if isinstance(transport, AsyncHTTPTransportNoHttp):
  148. continue
  149. if getattr(transport, "_pool") and getattr(
  150. transport._pool, "_rdns", False # pylint: disable=protected-access
  151. ):
  152. continue
  153. return False
  154. response = await client.get("https://check.torproject.org/api/ip", timeout=60)
  155. if not response.json()["IsTor"]:
  156. result = False
  157. Network._TOR_CHECK_RESULT[proxies] = result
  158. return result
  159. async def get_client(self, verify=None, max_redirects=None):
  160. verify = self.verify if verify is None else verify
  161. max_redirects = self.max_redirects if max_redirects is None else max_redirects
  162. local_address = next(self._local_addresses_cycle)
  163. proxies = next(self._proxies_cycle) # is a tuple so it can be part of the key
  164. key = (verify, max_redirects, local_address, proxies)
  165. hook_log_response = self.log_response if searx_debug else None
  166. if key not in self._clients or self._clients[key].is_closed:
  167. client = new_client(
  168. self.enable_http,
  169. verify,
  170. self.enable_http2,
  171. self.max_connections,
  172. self.max_keepalive_connections,
  173. self.keepalive_expiry,
  174. dict(proxies),
  175. local_address,
  176. 0,
  177. max_redirects,
  178. hook_log_response,
  179. )
  180. if self.using_tor_proxy and not await self.check_tor_proxy(client, proxies):
  181. await client.aclose()
  182. raise httpx.ProxyError('Network configuration problem: not using Tor')
  183. self._clients[key] = client
  184. return self._clients[key]
  185. async def aclose(self):
  186. async def close_client(client):
  187. try:
  188. await client.aclose()
  189. except httpx.HTTPError:
  190. pass
  191. await asyncio.gather(*[close_client(client) for client in self._clients.values()], return_exceptions=False)
  192. @staticmethod
  193. def extract_kwargs_clients(kwargs):
  194. kwargs_clients = {}
  195. if 'verify' in kwargs:
  196. kwargs_clients['verify'] = kwargs.pop('verify')
  197. if 'max_redirects' in kwargs:
  198. kwargs_clients['max_redirects'] = kwargs.pop('max_redirects')
  199. if 'allow_redirects' in kwargs:
  200. # see https://github.com/encode/httpx/pull/1808
  201. kwargs['follow_redirects'] = kwargs.pop('allow_redirects')
  202. return kwargs_clients
  203. @staticmethod
  204. def extract_do_raise_for_httperror(kwargs):
  205. do_raise_for_httperror = True
  206. if 'raise_for_httperror' in kwargs:
  207. do_raise_for_httperror = kwargs['raise_for_httperror']
  208. del kwargs['raise_for_httperror']
  209. return do_raise_for_httperror
  210. @staticmethod
  211. def patch_response(response, do_raise_for_httperror):
  212. if isinstance(response, httpx.Response):
  213. # requests compatibility (response is not streamed)
  214. # see also https://www.python-httpx.org/compatibility/#checking-for-4xx5xx-responses
  215. response.ok = not response.is_error
  216. # raise an exception
  217. if do_raise_for_httperror:
  218. raise_for_httperror(response)
  219. return response
  220. def is_valid_response(self, response):
  221. # pylint: disable=too-many-boolean-expressions
  222. if (
  223. (self.retry_on_http_error is True and 400 <= response.status_code <= 599)
  224. or (isinstance(self.retry_on_http_error, list) and response.status_code in self.retry_on_http_error)
  225. or (isinstance(self.retry_on_http_error, int) and response.status_code == self.retry_on_http_error)
  226. ):
  227. return False
  228. return True
  229. async def call_client(self, stream, method, url, **kwargs):
  230. retries = self.retries
  231. was_disconnected = False
  232. do_raise_for_httperror = Network.extract_do_raise_for_httperror(kwargs)
  233. kwargs_clients = Network.extract_kwargs_clients(kwargs)
  234. while retries >= 0: # pragma: no cover
  235. client = await self.get_client(**kwargs_clients)
  236. try:
  237. if stream:
  238. response = client.stream(method, url, **kwargs)
  239. else:
  240. response = await client.request(method, url, **kwargs)
  241. if self.is_valid_response(response) or retries <= 0:
  242. return Network.patch_response(response, do_raise_for_httperror)
  243. except httpx.RemoteProtocolError as e:
  244. if not was_disconnected:
  245. # the server has closed the connection:
  246. # try again without decreasing the retries variable & with a new HTTP client
  247. was_disconnected = True
  248. await client.aclose()
  249. self._logger.warning('httpx.RemoteProtocolError: the server has disconnected, retrying')
  250. continue
  251. if retries <= 0:
  252. raise e
  253. except (httpx.RequestError, httpx.HTTPStatusError) as e:
  254. if retries <= 0:
  255. raise e
  256. retries -= 1
  257. async def request(self, method, url, **kwargs):
  258. return await self.call_client(False, method, url, **kwargs)
  259. async def stream(self, method, url, **kwargs):
  260. return await self.call_client(True, method, url, **kwargs)
  261. @classmethod
  262. async def aclose_all(cls):
  263. await asyncio.gather(*[network.aclose() for network in NETWORKS.values()], return_exceptions=False)
  264. def get_network(name=None):
  265. return NETWORKS.get(name or DEFAULT_NAME)
  266. def check_network_configuration():
  267. async def check():
  268. exception_count = 0
  269. for network in NETWORKS.values():
  270. if network.using_tor_proxy:
  271. try:
  272. await network.get_client()
  273. except Exception: # pylint: disable=broad-except
  274. network._logger.exception('Error') # pylint: disable=protected-access
  275. exception_count += 1
  276. return exception_count
  277. future = asyncio.run_coroutine_threadsafe(check(), get_loop())
  278. exception_count = future.result()
  279. if exception_count > 0:
  280. raise RuntimeError("Invalid network configuration")
  281. def initialize(settings_engines=None, settings_outgoing=None):
  282. # pylint: disable=import-outside-toplevel)
  283. from searx.engines import engines
  284. from searx import settings
  285. # pylint: enable=import-outside-toplevel)
  286. settings_engines = settings_engines or settings['engines']
  287. settings_outgoing = settings_outgoing or settings['outgoing']
  288. # default parameters for AsyncHTTPTransport
  289. # see https://github.com/encode/httpx/blob/e05a5372eb6172287458b37447c30f650047e1b8/httpx/_transports/default.py#L108-L121 # pylint: disable=line-too-long
  290. default_params = {
  291. 'enable_http': False,
  292. 'verify': settings_outgoing['verify'],
  293. 'enable_http2': settings_outgoing['enable_http2'],
  294. 'max_connections': settings_outgoing['pool_connections'],
  295. 'max_keepalive_connections': settings_outgoing['pool_maxsize'],
  296. 'keepalive_expiry': settings_outgoing['keepalive_expiry'],
  297. 'local_addresses': settings_outgoing['source_ips'],
  298. 'using_tor_proxy': settings_outgoing['using_tor_proxy'],
  299. 'proxies': settings_outgoing['proxies'],
  300. 'max_redirects': settings_outgoing['max_redirects'],
  301. 'retries': settings_outgoing['retries'],
  302. 'retry_on_http_error': None,
  303. }
  304. def new_network(params, logger_name=None):
  305. nonlocal default_params
  306. result = {}
  307. result.update(default_params)
  308. result.update(params)
  309. if logger_name:
  310. result['logger_name'] = logger_name
  311. return Network(**result)
  312. def iter_networks():
  313. nonlocal settings_engines
  314. for engine_spec in settings_engines:
  315. engine_name = engine_spec['name']
  316. engine = engines.get(engine_name)
  317. if engine is None:
  318. continue
  319. network = getattr(engine, 'network', None)
  320. yield engine_name, engine, network
  321. if NETWORKS:
  322. done()
  323. NETWORKS.clear()
  324. NETWORKS[DEFAULT_NAME] = new_network({}, logger_name='default')
  325. NETWORKS['ipv4'] = new_network({'local_addresses': '0.0.0.0'}, logger_name='ipv4')
  326. NETWORKS['ipv6'] = new_network({'local_addresses': '::'}, logger_name='ipv6')
  327. # define networks from outgoing.networks
  328. for network_name, network in settings_outgoing['networks'].items():
  329. NETWORKS[network_name] = new_network(network, logger_name=network_name)
  330. # define networks from engines.[i].network (except references)
  331. for engine_name, engine, network in iter_networks():
  332. if network is None:
  333. network = {}
  334. for attribute_name, attribute_value in default_params.items():
  335. if hasattr(engine, attribute_name):
  336. network[attribute_name] = getattr(engine, attribute_name)
  337. else:
  338. network[attribute_name] = attribute_value
  339. NETWORKS[engine_name] = new_network(network, logger_name=engine_name)
  340. elif isinstance(network, dict):
  341. NETWORKS[engine_name] = new_network(network, logger_name=engine_name)
  342. # define networks from engines.[i].network (references)
  343. for engine_name, engine, network in iter_networks():
  344. if isinstance(network, str):
  345. NETWORKS[engine_name] = NETWORKS[network]
  346. # the /image_proxy endpoint has a dedicated network.
  347. # same parameters than the default network, but HTTP/2 is disabled.
  348. # It decreases the CPU load average, and the total time is more or less the same
  349. if 'image_proxy' not in NETWORKS:
  350. image_proxy_params = default_params.copy()
  351. image_proxy_params['enable_http2'] = False
  352. NETWORKS['image_proxy'] = new_network(image_proxy_params, logger_name='image_proxy')
  353. @atexit.register
  354. def done():
  355. """Close all HTTP client
  356. Avoid a warning at exit
  357. See https://github.com/encode/httpx/pull/2026
  358. Note: since Network.aclose has to be async, it is not possible to call this method on Network.__del__
  359. So Network.aclose is called here using atexit.register
  360. """
  361. try:
  362. loop = get_loop()
  363. if loop:
  364. future = asyncio.run_coroutine_threadsafe(Network.aclose_all(), loop)
  365. # wait 3 seconds to close the HTTP clients
  366. future.result(3)
  367. finally:
  368. NETWORKS.clear()
  369. NETWORKS[DEFAULT_NAME] = Network()