network.py 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402
  1. # SPDX-License-Identifier: AGPL-3.0-or-later
  2. # lint: pylint
  3. # pylint: disable=global-statement
  4. # pylint: disable=missing-module-docstring, missing-class-docstring
  5. import atexit
  6. import asyncio
  7. import ipaddress
  8. from itertools import cycle
  9. import httpx
  10. from searx import logger, searx_debug
  11. from .client import new_client, get_loop, AsyncHTTPTransportNoHttp
  12. logger = logger.getChild('network')
  13. DEFAULT_NAME = '__DEFAULT__'
  14. NETWORKS = {}
  15. # requests compatibility when reading proxy settings from settings.yml
  16. PROXY_PATTERN_MAPPING = {
  17. 'http': 'http://',
  18. 'https': 'https://',
  19. 'socks4': 'socks4://',
  20. 'socks5': 'socks5://',
  21. 'socks5h': 'socks5h://',
  22. 'http:': 'http://',
  23. 'https:': 'https://',
  24. 'socks4:': 'socks4://',
  25. 'socks5:': 'socks5://',
  26. 'socks5h:': 'socks5h://',
  27. }
  28. ADDRESS_MAPPING = {'ipv4': '0.0.0.0', 'ipv6': '::'}
  29. class Network:
  30. __slots__ = (
  31. 'enable_http',
  32. 'verify',
  33. 'enable_http2',
  34. 'max_connections',
  35. 'max_keepalive_connections',
  36. 'keepalive_expiry',
  37. 'local_addresses',
  38. 'proxies',
  39. 'using_tor_proxy',
  40. 'max_redirects',
  41. 'retries',
  42. 'retry_on_http_error',
  43. '_local_addresses_cycle',
  44. '_proxies_cycle',
  45. '_clients',
  46. '_logger',
  47. )
  48. _TOR_CHECK_RESULT = {}
  49. def __init__(
  50. # pylint: disable=too-many-arguments
  51. self,
  52. enable_http=True,
  53. verify=True,
  54. enable_http2=False,
  55. max_connections=None,
  56. max_keepalive_connections=None,
  57. keepalive_expiry=None,
  58. proxies=None,
  59. using_tor_proxy=False,
  60. local_addresses=None,
  61. retries=0,
  62. retry_on_http_error=None,
  63. max_redirects=30,
  64. logger_name=None,
  65. ):
  66. self.enable_http = enable_http
  67. self.verify = verify
  68. self.enable_http2 = enable_http2
  69. self.max_connections = max_connections
  70. self.max_keepalive_connections = max_keepalive_connections
  71. self.keepalive_expiry = keepalive_expiry
  72. self.proxies = proxies
  73. self.using_tor_proxy = using_tor_proxy
  74. self.local_addresses = local_addresses
  75. self.retries = retries
  76. self.retry_on_http_error = retry_on_http_error
  77. self.max_redirects = max_redirects
  78. self._local_addresses_cycle = self.get_ipaddress_cycle()
  79. self._proxies_cycle = self.get_proxy_cycles()
  80. self._clients = {}
  81. self._logger = logger.getChild(logger_name) if logger_name else logger
  82. self.check_parameters()
  83. def check_parameters(self):
  84. for address in self.iter_ipaddresses():
  85. if '/' in address:
  86. ipaddress.ip_network(address, False)
  87. else:
  88. ipaddress.ip_address(address)
  89. if self.proxies is not None and not isinstance(self.proxies, (str, dict)):
  90. raise ValueError('proxies type has to be str, dict or None')
  91. def iter_ipaddresses(self):
  92. local_addresses = self.local_addresses
  93. if not local_addresses:
  94. return
  95. if isinstance(local_addresses, str):
  96. local_addresses = [local_addresses]
  97. for address in local_addresses:
  98. yield address
  99. def get_ipaddress_cycle(self):
  100. while True:
  101. count = 0
  102. for address in self.iter_ipaddresses():
  103. if '/' in address:
  104. for a in ipaddress.ip_network(address, False).hosts():
  105. yield str(a)
  106. count += 1
  107. else:
  108. a = ipaddress.ip_address(address)
  109. yield str(a)
  110. count += 1
  111. if count == 0:
  112. yield None
  113. def iter_proxies(self):
  114. if not self.proxies:
  115. return
  116. # https://www.python-httpx.org/compatibility/#proxy-keys
  117. if isinstance(self.proxies, str):
  118. yield 'all://', [self.proxies]
  119. else:
  120. for pattern, proxy_url in self.proxies.items():
  121. pattern = PROXY_PATTERN_MAPPING.get(pattern, pattern)
  122. if isinstance(proxy_url, str):
  123. proxy_url = [proxy_url]
  124. yield pattern, proxy_url
  125. def get_proxy_cycles(self):
  126. proxy_settings = {}
  127. for pattern, proxy_urls in self.iter_proxies():
  128. proxy_settings[pattern] = cycle(proxy_urls)
  129. while True:
  130. # pylint: disable=stop-iteration-return
  131. yield tuple((pattern, next(proxy_url_cycle)) for pattern, proxy_url_cycle in proxy_settings.items())
  132. async def log_response(self, response: httpx.Response):
  133. request = response.request
  134. status = f"{response.status_code} {response.reason_phrase}"
  135. response_line = f"{response.http_version} {status}"
  136. content_type = response.headers.get("Content-Type")
  137. content_type = f' ({content_type})' if content_type else ''
  138. self._logger.debug(f'HTTP Request: {request.method} {request.url} "{response_line}"{content_type}')
  139. @staticmethod
  140. async def check_tor_proxy(client: httpx.AsyncClient, proxies) -> bool:
  141. if proxies in Network._TOR_CHECK_RESULT:
  142. return Network._TOR_CHECK_RESULT[proxies]
  143. result = True
  144. # ignore client._transport because it is not used with all://
  145. for transport in client._mounts.values(): # pylint: disable=protected-access
  146. if isinstance(transport, AsyncHTTPTransportNoHttp):
  147. continue
  148. if not getattr(transport, '_rdns', False):
  149. result = False
  150. break
  151. else:
  152. response = await client.get('https://check.torproject.org/api/ip')
  153. if not response.json()['IsTor']:
  154. result = False
  155. Network._TOR_CHECK_RESULT[proxies] = result
  156. return result
  157. async def get_client(self, verify=None, max_redirects=None):
  158. verify = self.verify if verify is None else verify
  159. max_redirects = self.max_redirects if max_redirects is None else max_redirects
  160. local_address = next(self._local_addresses_cycle)
  161. proxies = next(self._proxies_cycle) # is a tuple so it can be part of the key
  162. key = (verify, max_redirects, local_address, proxies)
  163. hook_log_response = self.log_response if searx_debug else None
  164. if key not in self._clients or self._clients[key].is_closed:
  165. client = new_client(
  166. self.enable_http,
  167. verify,
  168. self.enable_http2,
  169. self.max_connections,
  170. self.max_keepalive_connections,
  171. self.keepalive_expiry,
  172. dict(proxies),
  173. local_address,
  174. 0,
  175. max_redirects,
  176. hook_log_response,
  177. )
  178. if self.using_tor_proxy and not await self.check_tor_proxy(client, proxies):
  179. await client.aclose()
  180. raise httpx.ProxyError('Network configuration problem: not using Tor')
  181. self._clients[key] = client
  182. return self._clients[key]
  183. async def aclose(self):
  184. async def close_client(client):
  185. try:
  186. await client.aclose()
  187. except httpx.HTTPError:
  188. pass
  189. await asyncio.gather(*[close_client(client) for client in self._clients.values()], return_exceptions=False)
  190. @staticmethod
  191. def extract_kwargs_clients(kwargs):
  192. kwargs_clients = {}
  193. if 'verify' in kwargs:
  194. kwargs_clients['verify'] = kwargs.pop('verify')
  195. if 'max_redirects' in kwargs:
  196. kwargs_clients['max_redirects'] = kwargs.pop('max_redirects')
  197. if 'allow_redirects' in kwargs:
  198. # see https://github.com/encode/httpx/pull/1808
  199. kwargs['follow_redirects'] = kwargs.pop('allow_redirects')
  200. return kwargs_clients
  201. def is_valid_response(self, response):
  202. # pylint: disable=too-many-boolean-expressions
  203. if (
  204. (self.retry_on_http_error is True and 400 <= response.status_code <= 599)
  205. or (isinstance(self.retry_on_http_error, list) and response.status_code in self.retry_on_http_error)
  206. or (isinstance(self.retry_on_http_error, int) and response.status_code == self.retry_on_http_error)
  207. ):
  208. return False
  209. return True
  210. async def call_client(self, stream, method, url, **kwargs):
  211. retries = self.retries
  212. was_disconnected = False
  213. kwargs_clients = Network.extract_kwargs_clients(kwargs)
  214. while retries >= 0: # pragma: no cover
  215. client = await self.get_client(**kwargs_clients)
  216. try:
  217. if stream:
  218. response = client.stream(method, url, **kwargs)
  219. else:
  220. response = await client.request(method, url, **kwargs)
  221. if self.is_valid_response(response) or retries <= 0:
  222. return response
  223. except httpx.RemoteProtocolError as e:
  224. if not was_disconnected:
  225. # the server has closed the connection:
  226. # try again without decreasing the retries variable & with a new HTTP client
  227. was_disconnected = True
  228. await client.aclose()
  229. self._logger.warning('httpx.RemoteProtocolError: the server has disconnected, retrying')
  230. continue
  231. if retries <= 0:
  232. raise e
  233. except (httpx.RequestError, httpx.HTTPStatusError) as e:
  234. if retries <= 0:
  235. raise e
  236. retries -= 1
  237. async def request(self, method, url, **kwargs):
  238. return await self.call_client(False, method, url, **kwargs)
  239. async def stream(self, method, url, **kwargs):
  240. return await self.call_client(True, method, url, **kwargs)
  241. @classmethod
  242. async def aclose_all(cls):
  243. await asyncio.gather(*[network.aclose() for network in NETWORKS.values()], return_exceptions=False)
  244. def get_network(name=None):
  245. return NETWORKS.get(name or DEFAULT_NAME)
  246. def check_network_configuration():
  247. async def check():
  248. exception_count = 0
  249. for network in NETWORKS.values():
  250. if network.using_tor_proxy:
  251. try:
  252. await network.get_client()
  253. except Exception: # pylint: disable=broad-except
  254. network._logger.exception('Error') # pylint: disable=protected-access
  255. exception_count += 1
  256. return exception_count
  257. future = asyncio.run_coroutine_threadsafe(check(), get_loop())
  258. exception_count = future.result()
  259. if exception_count > 0:
  260. raise RuntimeError("Invalid network configuration")
  261. def initialize(settings_engines=None, settings_outgoing=None):
  262. # pylint: disable=import-outside-toplevel)
  263. from searx.engines import engines
  264. from searx import settings
  265. # pylint: enable=import-outside-toplevel)
  266. settings_engines = settings_engines or settings['engines']
  267. settings_outgoing = settings_outgoing or settings['outgoing']
  268. # default parameters for AsyncHTTPTransport
  269. # see https://github.com/encode/httpx/blob/e05a5372eb6172287458b37447c30f650047e1b8/httpx/_transports/default.py#L108-L121 # pylint: disable=line-too-long
  270. default_params = {
  271. 'enable_http': False,
  272. 'verify': True,
  273. 'enable_http2': settings_outgoing['enable_http2'],
  274. 'max_connections': settings_outgoing['pool_connections'],
  275. 'max_keepalive_connections': settings_outgoing['pool_maxsize'],
  276. 'keepalive_expiry': settings_outgoing['keepalive_expiry'],
  277. 'local_addresses': settings_outgoing['source_ips'],
  278. 'using_tor_proxy': settings_outgoing['using_tor_proxy'],
  279. 'proxies': settings_outgoing['proxies'],
  280. 'max_redirects': settings_outgoing['max_redirects'],
  281. 'retries': settings_outgoing['retries'],
  282. 'retry_on_http_error': None,
  283. }
  284. def new_network(params, logger_name=None):
  285. nonlocal default_params
  286. result = {}
  287. result.update(default_params)
  288. result.update(params)
  289. if logger_name:
  290. result['logger_name'] = logger_name
  291. return Network(**result)
  292. def iter_networks():
  293. nonlocal settings_engines
  294. for engine_spec in settings_engines:
  295. engine_name = engine_spec['name']
  296. engine = engines.get(engine_name)
  297. if engine is None:
  298. continue
  299. network = getattr(engine, 'network', None)
  300. yield engine_name, engine, network
  301. if NETWORKS:
  302. done()
  303. NETWORKS.clear()
  304. NETWORKS[DEFAULT_NAME] = new_network({}, logger_name='default')
  305. NETWORKS['ipv4'] = new_network({'local_addresses': '0.0.0.0'}, logger_name='ipv4')
  306. NETWORKS['ipv6'] = new_network({'local_addresses': '::'}, logger_name='ipv6')
  307. # define networks from outgoing.networks
  308. for network_name, network in settings_outgoing['networks'].items():
  309. NETWORKS[network_name] = new_network(network, logger_name=network_name)
  310. # define networks from engines.[i].network (except references)
  311. for engine_name, engine, network in iter_networks():
  312. if network is None:
  313. network = {}
  314. for attribute_name, attribute_value in default_params.items():
  315. if hasattr(engine, attribute_name):
  316. network[attribute_name] = getattr(engine, attribute_name)
  317. else:
  318. network[attribute_name] = attribute_value
  319. NETWORKS[engine_name] = new_network(network, logger_name=engine_name)
  320. elif isinstance(network, dict):
  321. NETWORKS[engine_name] = new_network(network, logger_name=engine_name)
  322. # define networks from engines.[i].network (references)
  323. for engine_name, engine, network in iter_networks():
  324. if isinstance(network, str):
  325. NETWORKS[engine_name] = NETWORKS[network]
  326. # the /image_proxy endpoint has a dedicated network.
  327. # same parameters than the default network, but HTTP/2 is disabled.
  328. # It decreases the CPU load average, and the total time is more or less the same
  329. if 'image_proxy' not in NETWORKS:
  330. image_proxy_params = default_params.copy()
  331. image_proxy_params['enable_http2'] = False
  332. NETWORKS['image_proxy'] = new_network(image_proxy_params, logger_name='image_proxy')
  333. @atexit.register
  334. def done():
  335. """Close all HTTP client
  336. Avoid a warning at exit
  337. see https://github.com/encode/httpx/blob/1a6e254f72d9fd5694a1c10a28927e193ab4f76b/httpx/_client.py#L1785
  338. Note: since Network.aclose has to be async, it is not possible to call this method on Network.__del__
  339. So Network.aclose is called here using atexit.register
  340. """
  341. try:
  342. loop = get_loop()
  343. if loop:
  344. future = asyncio.run_coroutine_threadsafe(Network.aclose_all(), loop)
  345. # wait 3 seconds to close the HTTP clients
  346. future.result(3)
  347. finally:
  348. NETWORKS.clear()
  349. NETWORKS[DEFAULT_NAME] = Network()