arq_restore/s3/S3Service.m
Stefan Reitshamer 40ef06c9d2 Switched from NSURLConnection API to CFHTTP API.
I made this switch in Arq 2.6.3 last March, and it has been much more stable.
2012-08-20 10:00:49 -04:00

351 lines
13 KiB
Objective-C

/*
Copyright (c) 2009-2011, Stefan Reitshamer http://www.haystacksoftware.com
All rights reserved.
Redistribution and use in source and binary forms, with or without
modification, are permitted provided that the following conditions are met:
* Redistributions of source code must retain the above copyright
notice, this list of conditions and the following disclaimer.
* Redistributions in binary form must reproduce the above copyright
notice, this list of conditions and the following disclaimer in the
documentation and/or other materials provided with the distribution.
* Neither the names of PhotoMinds LLC or Haystack Software, nor the names of
their contributors may be used to endorse or promote products derived from
this software without specific prior written permission.
THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
"AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED
TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING
NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
*/
#import "BlobACL.h"
#import "InputStream.h"
#import "Blob.h"
#import "RegexKitLite.h"
#import "NSError_S3.h"
#import "S3Owner.h"
#import "S3Lister.h"
#import "S3AuthorizationProvider.h"
#import "S3Service.h"
#import "PathReceiver.h"
#import "SetNSError.h"
#import "DataInputStream.h"
#import "HTTP.h"
#import "Streams.h"
#import "S3ObjectReceiver.h"
#import "ServerBlob.h"
#import "NSErrorCodes.h"
#import "NSData-InputStream.h"
#import "S3Request.h"
#import "NSError_extra.h"
/*
* WARNING:
* This class *must* be reentrant!
*/
@interface S3Service (internal)
- (NSXMLDocument *)listBuckets:(NSError **)error;
- (BOOL)internalACL:(int *)acl atPath:(NSString *)path error:(NSError **)error;
@end
@implementation S3Service
+ (NSString *)errorDomain {
return @"S3ServiceErrorDomain";
}
- (id)initWithS3AuthorizationProvider:(S3AuthorizationProvider *)theSAP useSSL:(BOOL)isUseSSL retryOnTransientError:(BOOL)retry {
if (self = [super init]) {
sap = [theSAP retain];
useSSL = isUseSSL;
retryOnTransientError = retry;
}
return self;
}
- (void)dealloc {
[sap release];
[super dealloc];
}
- (S3Owner *)s3Owner:(NSError **)error {
if (error) {
*error = 0;
}
NSXMLDocument *doc = [self listBuckets:error];
if (!doc) {
return nil;
}
NSXMLElement *rootElem = [doc rootElement];
NSArray *idNodes = [rootElem nodesForXPath:@"//ListAllMyBucketsResult/Owner/ID" error:error];
if (!idNodes) {
return nil;
}
if ([idNodes count] == 0) {
HSLogError(@"ListAllMyBucketsResult/Owner/ID node not found");
return nil;
}
NSXMLNode *ownerIDNode = [idNodes objectAtIndex:0];
NSArray *displayNameNodes = [rootElem nodesForXPath:@"//ListAllMyBucketsResult/Owner/DisplayName" error:error];
if (!displayNameNodes) {
return nil;
}
if ([displayNameNodes count] == 0) {
HSLogError(@"ListAllMyBucketsResult/Owner/DisplayName not found");
return nil;
}
NSXMLNode *displayNameNode = [displayNameNodes objectAtIndex:0];
HSLogDebug(@"s3 owner ID: %@", [displayNameNode stringValue]);
return [[[S3Owner alloc] initWithDisplayName:[displayNameNode stringValue] idString:[ownerIDNode stringValue]] autorelease];
}
- (NSArray *)s3BucketNames:(NSError **)error {
NSXMLDocument *doc = [self listBuckets:error];
if (!doc) {
return nil;
}
NSXMLElement *rootElem = [doc rootElement];
NSArray *nameNodes = [rootElem nodesForXPath:@"//ListAllMyBucketsResult/Buckets/Bucket/Name" error:error];
if (!nameNodes) {
return nil;
}
NSMutableArray *bucketNames = [[[NSMutableArray alloc] init] autorelease];
for (NSXMLNode *nameNode in nameNodes) {
[bucketNames addObject:[nameNode stringValue]];
}
return bucketNames;
}
- (BOOL)s3BucketExists:(NSString *)s3BucketName {
NSError *error = nil;
NSArray *s3BucketNames = [self s3BucketNames:&error];
if (!s3BucketNames) {
HSLogDebug(@"error getting S3 bucket names: %@", [error localizedDescription]);
return NO;
}
return [s3BucketNames containsObject:s3BucketName];
}
- (NSArray *)pathsWithPrefix:(NSString *)prefix error:(NSError **)error {
return [self pathsWithPrefix:prefix delimiter:nil error:error];
}
- (NSArray *)pathsWithPrefix:(NSString *)prefix delimiter:(NSString *)delimiter error:(NSError **)error {
PathReceiver *rec = [[[PathReceiver alloc] init] autorelease];
S3Lister *lister = [[[S3Lister alloc] initWithS3AuthorizationProvider:sap useSSL:useSSL retryOnTransientError:retryOnTransientError prefix:prefix delimiter:delimiter receiver:rec] autorelease];
if (![lister listObjects:error]) {
return nil;
}
NSMutableArray *ret = [NSMutableArray arrayWithArray:[rec paths]];
[ret addObjectsFromArray:[lister foundPrefixes]];
[ret sortUsingSelector:@selector(compare:)];
return ret;
}
- (NSArray *)commonPrefixesForPathPrefix:(NSString *)prefix delimiter:(NSString *)delimiter error:(NSError **)error {
NSArray *paths = [self pathsWithPrefix:prefix delimiter:delimiter error:error];
if (paths == nil) {
return nil;
}
NSMutableArray *ret = [NSMutableArray array];
for (NSString *path in paths) {
[ret addObject:[path lastPathComponent]];
}
return ret;
}
- (NSArray *)objectsWithPrefix:(NSString *)prefix error:(NSError **)error {
S3ObjectReceiver *receiver = [[[S3ObjectReceiver alloc] init] autorelease];
if (![self listObjectsWithPrefix:prefix receiver:receiver error:error]) {
return NO;
}
return [receiver objects];
}
- (BOOL)listObjectsWithPrefix:(NSString *)prefix receiver:(id <S3Receiver>)receiver error:(NSError **)error {
S3Lister *lister = [[[S3Lister alloc] initWithS3AuthorizationProvider:sap useSSL:useSSL retryOnTransientError:retryOnTransientError prefix:prefix delimiter:nil receiver:receiver] autorelease];
return lister && [lister listObjects:error];
}
- (BOOL)containsBlob:(BOOL *)contains atPath:(NSString *)path dataSize:(unsigned long long *)dataSize error:(NSError **)error {
BOOL ret = YES;
S3Request *s3r = [[S3Request alloc] initWithMethod:@"HEAD" path:path queryString:nil authorizationProvider:sap useSSL:useSSL retryOnTransientError:retryOnTransientError error:error];
if (s3r == nil) {
return NO;
}
NSError *myError = nil;
ServerBlob *sb = [s3r newServerBlob:&myError];
if (sb != nil) {
*contains = YES;
HSLogTrace(@"S3 path %@ exists", path);
} else if ([myError isErrorWithDomain:[S3Service errorDomain] code:ERROR_NOT_FOUND]) {
*contains = NO;
HSLogDebug(@"S3 path %@ does NOT exist", path);
} else if ([myError isErrorWithDomain:[S3Service errorDomain] code:ERROR_RRS_NOT_FOUND]) {
*contains = NO;
HSLogDebug(@"S3 path %@ returns 405 error", path);
} else {
*contains = NO;
ret = NO;
HSLogDebug(@"error getting HEAD for %@: %@", path, myError);
if (error != NULL) { *error = myError; }
}
[sb release];
[s3r release];
return ret;
}
- (NSData *)dataAtPath:(NSString *)path error:(NSError **)error {
ServerBlob *sb = [self newServerBlobAtPath:path error:error];
if (sb == nil) {
return nil;
}
NSData *data = [sb slurp:error];
[sb release];
return data;
}
- (ServerBlob *)newServerBlobAtPath:(NSString *)path error:(NSError **)error {
HSLogDebug(@"getting %@", path);
S3Request *s3r = [[S3Request alloc] initWithMethod:@"GET" path:path queryString:nil authorizationProvider:sap useSSL:useSSL retryOnTransientError:retryOnTransientError error:error];
if (s3r == nil) {
return nil;
}
ServerBlob *sb = [s3r newServerBlob:error];
[s3r release];
return sb;
}
- (BOOL)aclXMLData:(NSData **)aclXMLData atPath:(NSString *)path error:(NSError **)error {
*aclXMLData = nil;
HSLogDebug(@"getting %@", path);
S3Request *s3r = [[S3Request alloc] initWithMethod:@"GET" path:path queryString:@"?acl" authorizationProvider:sap useSSL:useSSL retryOnTransientError:retryOnTransientError error:error];
if (s3r == nil) {
return NO;
}
ServerBlob *sb = [s3r newServerBlob:error];
[s3r release];
if (sb == nil) {
return NO;
}
NSData *output = [sb slurp:error];
[sb release];
if (output == nil) {
return NO;
}
*aclXMLData = output;
return YES;
}
- (BOOL)acl:(int *)acl atPath:(NSString *)path error:(NSError **)error {
if (error != NULL) {
*error = nil;
}
*acl = 0;
NSAutoreleasePool *pool = [[NSAutoreleasePool alloc] init];
BOOL ret = [self internalACL:acl atPath:path error:error];
if (!ret && error != NULL) {
[*error retain];
}
[pool drain];
if (!ret && error != NULL) {
[*error autorelease];
}
return ret;
}
- (S3AuthorizationProvider *)s3AuthorizationProvider {
return sap;
}
#pragma mark NSCopying
- (id)copyWithZone:(NSZone *)zone {
return [[S3Service alloc] initWithS3AuthorizationProvider:sap useSSL:useSSL retryOnTransientError:retryOnTransientError];
}
@end
@implementation S3Service (internal)
- (NSXMLDocument *)listBuckets:(NSError **)error {
S3Request *s3r = [[S3Request alloc] initWithMethod:@"GET" path:@"/" queryString:nil authorizationProvider:sap useSSL:useSSL retryOnTransientError:retryOnTransientError error:error];
if (s3r == nil) {
return nil;
}
ServerBlob *sb = [s3r newServerBlob:error];
[s3r release];
if (sb == nil) {
return nil;
}
NSData *data = [sb slurp:error];
[sb release];
if (data == nil) {
return nil;
}
NSError *myError = nil;
NSXMLDocument *ret = [[[NSXMLDocument alloc] initWithData:data options:0 error:&myError] autorelease];
if (ret == nil) {
HSLogDebug(@"error parsing List Buckets result XML %@", [[[NSString alloc] initWithBytes:[data bytes] length:[data length] encoding:NSUTF8StringEncoding] autorelease]);
SETNSERROR([S3Service errorDomain], [myError code], @"error parsing S3 List Buckets result XML: %@", [myError description]);
}
return ret;
}
- (BOOL)internalACL:(int *)acl atPath:(NSString *)path error:(NSError **)error {
NSData *aclData;
if (![self aclXMLData:&aclData atPath:path error:error]) {
return NO;
}
NSError *myError = nil;
NSXMLDocument *xmlDoc = [[[NSXMLDocument alloc] initWithData:aclData options:0 error:&myError] autorelease];
if (!xmlDoc) {
SETNSERROR([S3Service errorDomain], [myError code], @"error parsing S3 Get ACL response: %@", myError);
return NO;
}
HSLogTrace(@"ACL XML: %@", xmlDoc);
NSArray *grants = [xmlDoc nodesForXPath:@"AccessControlPolicy/AccessControlList/Grant" error:error];
if (!grants) {
return NO;
}
BOOL publicRead = NO;
BOOL publicWrite = NO;
for (NSXMLElement *grant in grants) {
NSArray *grantees = [grant nodesForXPath:@"Grantee" error:error];
if (!grantees) {
return NO;
}
for (NSXMLElement *grantee in grantees) {
NSString *xsiType = [[grantee attributeForName:@"xsi:type"] stringValue];
if ([xsiType isEqualToString:@"Group"]) {
NSArray *uris = [grantee nodesForXPath:@"URI" error:error];
if (!uris) {
return NO;
}
if ([uris count] > 0) {
if ([[[uris objectAtIndex:0] stringValue] isEqualToString:@"http://acs.amazonaws.com/groups/global/AllUsers"]) {
NSArray *permissions = [grant nodesForXPath:@"Permission" error:error];
if (!permissions) {
return NO;
}
for (NSXMLElement *permission in permissions) {
if ([[permission stringValue] isEqualToString:@"WRITE"]) {
publicWrite = YES;
} else if ([[permission stringValue] isEqualToString:@"READ"]) {
publicRead = YES;
} else {
SETNSERROR([S3Service errorDomain], S3SERVICE_ERROR_UNEXPECTED_RESPONSE, @"unexpected permission");
return NO;
}
}
}
}
}
}
}
if (publicRead && publicWrite) {
*acl = PUBLIC_READ_WRITE;
} else if (publicRead) {
*acl = PUBLIC_READ;
} else {
*acl = PRIVATE;
}
return YES;
}
@end