2019-05-02 17:17:27 -05:00
|
|
|
# frozen_string_literal: true
|
|
|
|
|
2015-06-12 05:02:36 -05:00
|
|
|
class UrlHelper
|
2013-11-20 06:10:08 -06:00
|
|
|
|
2018-12-11 01:03:13 -06:00
|
|
|
# At the moment this handles invalid URLs that browser address bar accepts
|
|
|
|
# where second # is not encoded
|
|
|
|
#
|
|
|
|
# Longer term we can add support of simpleidn and encode unicode domains
|
|
|
|
def self.relaxed_parse(url)
|
|
|
|
url, fragment = url.split("#", 2)
|
|
|
|
uri = URI.parse(url)
|
|
|
|
if uri
|
2019-12-11 20:49:21 -06:00
|
|
|
# Addressable::URI::CharacterClasses::UNRESERVED is used here because without it
|
|
|
|
# the # in the fragment is not encoded
|
|
|
|
fragment = Addressable::URI.encode_component(fragment, Addressable::URI::CharacterClasses::UNRESERVED) if fragment&.include?('#')
|
2018-12-11 01:03:13 -06:00
|
|
|
uri.fragment = fragment
|
|
|
|
uri
|
|
|
|
end
|
|
|
|
rescue URI::Error
|
|
|
|
end
|
|
|
|
|
2019-12-11 20:49:21 -06:00
|
|
|
def self.encode_and_parse(url)
|
|
|
|
URI.parse(Addressable::URI.encode(url))
|
|
|
|
end
|
|
|
|
|
|
|
|
def self.encode(url)
|
|
|
|
Addressable::URI.encode(url)
|
|
|
|
end
|
|
|
|
|
|
|
|
def self.unencode(url)
|
|
|
|
Addressable::URI.unencode(url)
|
|
|
|
end
|
|
|
|
|
|
|
|
def self.encode_component(url_component)
|
|
|
|
Addressable::URI.encode_component(url_component)
|
|
|
|
end
|
|
|
|
|
2015-06-12 05:02:36 -05:00
|
|
|
def self.is_local(url)
|
2014-07-18 10:54:18 -05:00
|
|
|
url.present? && (
|
|
|
|
Discourse.store.has_been_uploaded?(url) ||
|
2020-10-09 06:51:24 -05:00
|
|
|
!!(url =~ Regexp.new("^#{Discourse.base_path}/(assets|plugins|images)/")) ||
|
2014-07-18 10:54:18 -05:00
|
|
|
url.start_with?(Discourse.asset_host || Discourse.base_url_no_prefix)
|
|
|
|
)
|
2013-11-20 06:10:08 -06:00
|
|
|
end
|
|
|
|
|
2015-06-12 05:02:36 -05:00
|
|
|
def self.absolute(url, cdn = Discourse.asset_host)
|
2019-05-02 17:17:27 -05:00
|
|
|
cdn = "https:#{cdn}" if cdn && cdn =~ /^\/\//
|
2013-12-16 17:35:34 -06:00
|
|
|
url =~ /^\/[^\/]/ ? (cdn || Discourse.base_url_no_prefix) + url : url
|
|
|
|
end
|
|
|
|
|
2015-06-12 05:02:36 -05:00
|
|
|
def self.absolute_without_cdn(url)
|
|
|
|
self.absolute(url, nil)
|
2013-11-20 06:10:08 -06:00
|
|
|
end
|
|
|
|
|
2015-06-12 05:02:36 -05:00
|
|
|
def self.schemaless(url)
|
2016-06-30 09:55:01 -05:00
|
|
|
url.sub(/^http:/i, "")
|
2013-11-20 06:10:08 -06:00
|
|
|
end
|
|
|
|
|
2019-11-17 19:25:42 -06:00
|
|
|
def self.secure_proxy_without_cdn(url)
|
2020-01-23 19:59:30 -06:00
|
|
|
self.absolute(Upload.secure_media_url_from_upload_url(url), nil)
|
2019-11-17 19:25:42 -06:00
|
|
|
end
|
|
|
|
|
2019-12-11 20:49:21 -06:00
|
|
|
def self.escape_uri(uri)
|
2020-01-30 17:09:34 -06:00
|
|
|
return uri if s3_presigned_url?(uri)
|
2020-12-03 16:16:01 -06:00
|
|
|
Addressable::URI.normalized_encode(uri)
|
2020-01-30 17:09:34 -06:00
|
|
|
end
|
|
|
|
|
2020-08-27 20:28:11 -05:00
|
|
|
def self.rails_route_from_url(url)
|
2020-08-28 14:10:10 -05:00
|
|
|
path = URI.parse(encode(url)).path
|
2020-08-27 20:28:11 -05:00
|
|
|
Rails.application.routes.recognize_path(path)
|
2020-10-05 13:12:33 -05:00
|
|
|
rescue Addressable::URI::InvalidURIError, URI::InvalidComponentError
|
2020-09-30 00:20:00 -05:00
|
|
|
nil
|
2020-08-27 20:28:11 -05:00
|
|
|
end
|
|
|
|
|
2020-01-30 17:09:34 -06:00
|
|
|
def self.s3_presigned_url?(url)
|
2020-02-02 22:22:35 -06:00
|
|
|
url[/x-amz-(algorithm|credential)/i].present?
|
2017-12-12 10:50:39 -06:00
|
|
|
end
|
|
|
|
|
2020-12-30 12:13:13 -06:00
|
|
|
def self.cook_url(url, secure: false, local: nil)
|
2021-06-08 12:25:51 -05:00
|
|
|
is_secure = SiteSetting.secure_media && secure
|
2020-12-30 12:13:13 -06:00
|
|
|
local = is_local(url) if local.nil?
|
|
|
|
return url if !local
|
2018-08-14 05:23:32 -05:00
|
|
|
|
2021-06-08 12:25:51 -05:00
|
|
|
url = is_secure ? secure_proxy_without_cdn(url) : absolute_without_cdn(url)
|
2019-02-20 12:24:38 -06:00
|
|
|
|
2019-11-21 23:29:31 -06:00
|
|
|
# we always want secure media to come from
|
|
|
|
# Discourse.base_url_no_prefix/secure-media-uploads
|
|
|
|
# to avoid asset_host mixups
|
2021-06-08 12:25:51 -05:00
|
|
|
return schemaless(url) if is_secure
|
2019-11-21 23:29:31 -06:00
|
|
|
|
2021-05-20 20:43:47 -05:00
|
|
|
# PERF: avoid parsing url except for extreme conditions
|
2020-12-30 07:08:02 -06:00
|
|
|
# this is a hot path used on home page
|
|
|
|
filename = url
|
|
|
|
if url.include?("?")
|
|
|
|
uri = URI.parse(url)
|
|
|
|
filename = File.basename(uri.path)
|
|
|
|
end
|
|
|
|
|
|
|
|
# this technically requires a filename, but will work with a URL as long as it end with the
|
|
|
|
# extension and has no query params
|
|
|
|
is_attachment = !FileHelper.is_supported_media?(filename)
|
|
|
|
|
|
|
|
no_cdn = SiteSetting.login_required || SiteSetting.prevent_anons_from_downloading_files
|
2019-02-20 12:24:38 -06:00
|
|
|
unless is_attachment && no_cdn
|
|
|
|
url = Discourse.store.cdn_url(url)
|
|
|
|
url = local_cdn_url(url) if Discourse.store.external?
|
|
|
|
end
|
2018-08-14 05:23:32 -05:00
|
|
|
|
|
|
|
schemaless(url)
|
|
|
|
rescue URI::Error
|
|
|
|
url
|
|
|
|
end
|
|
|
|
|
2019-02-20 12:24:38 -06:00
|
|
|
def self.local_cdn_url(url)
|
|
|
|
return url if Discourse.asset_host.blank?
|
2019-10-14 01:09:16 -05:00
|
|
|
if url.start_with?("/#{Discourse.store.upload_path}/")
|
|
|
|
"#{Discourse.asset_host}#{url}"
|
|
|
|
else
|
|
|
|
url.sub(Discourse.base_url_no_prefix, Discourse.asset_host)
|
|
|
|
end
|
2019-02-20 12:24:38 -06:00
|
|
|
end
|
|
|
|
|
2013-11-20 06:10:08 -06:00
|
|
|
end
|