X-Git-Url: https://gitweb.ps.run/chirp/blobdiff_plain/0b2f4de9c1db5ec1059f6cd9b8c44e07f3af0b51..8c4068986ff26fe12e46d6ba3208e279678ce524:/src/main.zig diff --git a/src/main.zig b/src/main.zig index 1871dcc..65dab07 100644 --- a/src/main.zig +++ b/src/main.zig @@ -1,414 +1,705 @@ const std = @import("std"); const lmdb = @import("lmdb"); +const db = @import("db"); +const http = @import("http"); // db {{{ const Db = struct { - const Self = @This(); + fn users(txn: lmdb.Txn) !db.Db(UserId, User) { + return try db.Db(UserId, User).init(txn, "users"); + } + fn user_ids(txn: lmdb.Txn) !db.Db(Username, UserId) { + return try db.Db(Username, UserId).init(txn, "user_ids"); + } + fn sessions(txn: lmdb.Txn) !db.Db(SessionToken, UserId) { + return try db.Db(SessionToken, UserId).init(txn, "sessions"); + } + fn posts(txn: lmdb.Txn) !db.Db(PostId, Post) { + return try db.Db(PostId, Post).init(txn, "posts"); + } +}; - env: ?*lmdb.MDB_env = undefined, - txn: ?*lmdb.MDB_txn = undefined, - dbi: lmdb.MDB_dbi = undefined, - prng: std.Random.DefaultPrng = std.Random.DefaultPrng.init(0), +// }}} - pub fn gen_id(self: *Self) Id { - var id = self.prng.next(); +// content {{{ - while (self.has(id)) { - id = self.prng.next(); - } +const User = struct { + // TODO: choose sizes + id: UserId, + name: Username, + password_hash: PasswordHash, + posts: PostList, +}; - return id; - } +const Post = struct { + id: PostId, - pub fn open(self: *Self, name: [*c]const u8) void { - _ = lmdb.mdb_env_create(&self.env); - _ = lmdb.mdb_env_set_maxdbs(self.env, 10); - _ = lmdb.mdb_env_set_mapsize(self.env, 1024 * 1024 * 1); - _ = lmdb.mdb_env_open(self.env, name, lmdb.MDB_WRITEMAP, 0o664); - // _ = lmdb.mdb_env_open(self.env, name, lmdb.MDB_NOSYNC | lmdb.MDB_WRITEMAP, 0o664); - } + user_id: UserId, + time: Timestamp, - pub fn close(self: *Self) void { - lmdb.mdb_env_close(self.env); - } + upvotes: u64 = 0, + downvotes: u64 = 0, + votes: VoteList, + comments: PostList, + // quote posts - pub fn begin(self: *Self, name: [*c]const u8) void { - switch (lmdb.mdb_txn_begin(self.env, null, 0, &self.txn)) { - 0 => {}, - else => |err| { - std.debug.print("txn err: {}\n", .{err}); - }, - } + text: PostText, +}; - // TODO: lmdb.MDB_INTEGERKEY? - _ = lmdb.mdb_dbi_open(self.txn, name, lmdb.MDB_CREATE, &self.dbi); - } +const Vote = struct { + const Kind = enum { Up, Down }; - pub fn commit(self: *Self) void { - switch (lmdb.mdb_txn_commit(self.txn)) { - 0 => {}, - lmdb.MDB_MAP_FULL => { - std.debug.print("resize\n", .{}); - _ = lmdb.mdb_env_set_mapsize(self.env, 0); - }, - else => |err| { - std.debug.print("commit err: {}\n", .{err}); - }, - } + kind: Kind, + time: Timestamp, +}; + +const Id = u64; +const Login = struct { + user: User, + user_id: UserId, + session_token: SessionToken, +}; +const UserId = enum(u64) { _ }; +const PostId = enum(u64) { _ }; +const Timestamp = i64; +const Username = std.BoundedArray(u8, 16); +const PasswordHash = std.BoundedArray(u8, 128); +const SessionToken = u64; +const CookieValue = std.BoundedArray(u8, 128); +const PostText = std.BoundedArray(u8, 1024); +const PostList = db.SetList(PostId, void); +const UserList = db.SetList(UserId, User); +const VoteList = db.SetList(UserId, Vote); + +const Chirp = struct { + pub fn hash_password(password: []const u8) !PasswordHash { + var hash_buffer = try PasswordHash.init(128); + + // TODO: choose buffer size + // TODO: dont allocate on stack, maybe zero memory? + var buffer: [1024 * 10]u8 = undefined; + var alloc = std.heap.FixedBufferAllocator.init(&buffer); - // TODO: necessary? - lmdb.mdb_dbi_close(self.env, self.dbi); + // TODO: choose limits + const result = try std.crypto.pwhash.argon2.strHash(password, .{ + .allocator = alloc.allocator(), + .params = std.crypto.pwhash.argon2.Params.fromLimits(1000, 1024), + }, hash_buffer.slice()); + + try hash_buffer.resize(result.len); + + return hash_buffer; } - pub fn sync(self: *Self) void { - switch (lmdb.mdb_env_sync(self.env, 1)) { - 0 => {}, - else => |err| { - std.debug.print("sync err: {}\n", .{err}); - }, + pub fn verify_password(password: []const u8, hash: PasswordHash) bool { + var buffer: [1024 * 10]u8 = undefined; + var alloc = std.heap.FixedBufferAllocator.init(&buffer); + + if (std.crypto.pwhash.argon2.strVerify(hash.constSlice(), password, .{ + .allocator = alloc.allocator(), + })) { + return true; + } else |err| { + std.debug.print("verify error: {}\n", .{err}); + return false; } } - pub fn put(self: *Self, key: anytype, value: anytype) void { - lmdb.put(self.txn, self.dbi, key, value); - } + pub fn register_user(env: *lmdb.Env, username: []const u8, password: []const u8) !bool { + const username_array = try Username.fromSlice(username); - pub fn get(self: *Self, key: anytype, comptime T: type) ?T { - return lmdb.get(self.txn, self.dbi, key, T); - } + const txn = try env.txn(); + defer txn.commit() catch {}; + + const users = try Db.users(txn); + const user_ids = try Db.user_ids(txn); + + if (try user_ids.has(username_array)) { + return false; + } else { + const user_id = try db.Prng.gen(users.dbi, UserId); + const posts = try Db.posts(txn); + + try users.put(user_id, User{ + .id = user_id, + .name = username_array, + .password_hash = try hash_password(password), + .posts = try PostList.init(posts.dbi), + }); + + try user_ids.put(username_array, user_id); - pub fn del(self: *Self, key: anytype) void { - lmdb.del(self.txn, self.dbi, key); + return true; + } } - pub fn has(self: *Self, key: anytype) bool { - return lmdb.has(self.txn, self.dbi, key); + pub fn login_user( + env: *lmdb.Env, + username: []const u8, + password: []const u8, + ) !SessionToken { + const username_array = try Username.fromSlice(username); + + const txn = try env.txn(); + defer txn.commit() catch {}; + + const user_ids = try Db.user_ids(txn); + const user_id = try user_ids.get(username_array); + std.debug.print("user logging in, id: {}\n", .{user_id}); + + const users = try Db.users(txn); + const user = try users.get(user_id); + + if (verify_password(password, user.password_hash)) { + const sessions = try Db.sessions(txn); + const session_token = try db.Prng.gen(sessions.dbi, SessionToken); + try sessions.put(session_token, user_id); + return session_token; + } else { + return error.IncorrectPassword; + } } -}; -// }}} + fn logout_user(env: *lmdb.Env, session_token: SessionToken) !void { + const txn = try env.txn(); + defer txn.commit() catch {}; -// http stuff {{{ + const sessions = try Db.sessions(txn); + try sessions.del(session_token); + } -pub fn redirect(req: *std.http.Server.Request, location: []const u8) !void { - try req.respond("", .{ .status = .see_other, .extra_headers = &.{.{ .name = "Location", .value = location }} }); -} + fn post(env: *lmdb.Env, user_id: UserId, text: []const u8) !void { + var post_id: PostId = undefined; + + // TODO: do this in one commit + + var txn: lmdb.Txn = undefined; + { + // create post + txn = try env.txn(); + defer txn.commit() catch {}; + + const posts = try Db.posts(txn); + post_id = try db.Prng.gen(posts.dbi, PostId); + const votes = try txn.dbi("votes"); + try posts.put(post_id, Post{ + .id = post_id, + .user_id = user_id, + .time = std.time.timestamp(), + .votes = try VoteList.init(votes), + .comments = try PostList.init(posts.dbi), + .text = try PostText.fromSlice(text), + }); + } -pub fn get_body(req: *std.http.Server.Request) []const u8 { - return req.server.read_buffer[req.head_end .. req.head_end + (req.head.content_length orelse 0)]; -} + { + // append to user's posts + txn = try env.txn(); + defer txn.commit() catch {}; -pub fn get_value(req: *std.http.Server.Request, name: []const u8) ?[]const u8 { - const body = get_body(req); - if (std.mem.indexOf(u8, body, name)) |name_index| { - if (std.mem.indexOfScalarPos(u8, body, name_index, '=')) |eql_index| { - if (std.mem.indexOfScalarPos(u8, body, name_index, '&')) |amp_index| { - return body[eql_index + 1 .. amp_index]; - } + const users = try Db.users(txn); + var user = try users.get(user_id); - return body[eql_index + 1 .. body.len]; + const posts = try Db.posts(txn); + var posts_view = try user.posts.open(posts.dbi); + try posts_view.append(post_id, {}); } } - return null; -} -pub fn get_cookie(req: *std.http.Server.Request, name: []const u8) ?CookieValue { - var header_it = req.iterateHeaders(); - while (header_it.next()) |header| { - if (std.mem.eql(u8, header.name, "Cookie")) { - if (std.mem.indexOf(u8, header.value, name)) |name_index| { - if (std.mem.indexOfScalarPos(u8, header.value, name_index, '=')) |eql_index| { - if (std.mem.indexOfPos(u8, header.value, name_index, "; ")) |semi_index| { - return CookieValue.fromSlice(header.value[eql_index + 1 .. semi_index]) catch null; - } + fn vote(env: *lmdb.Env, post_id: PostId, user_id: UserId, kind: Vote.Kind) !void { + const txn = try env.txn(); + defer txn.commit() catch {}; + + const posts = try Db.posts(txn); + const votes = try txn.dbi("votes"); + + var p = try posts.get(post_id); + var votes_view = try p.votes.open(votes); - return CookieValue.fromSlice(header.value[eql_index + 1 .. header.value.len]) catch null; + if (try votes_view.has(user_id)) { + const old_vote = try votes_view.get(user_id); + + if (old_vote.kind == kind) { + return; + } else { + try votes_view.del(user_id); + + if (old_vote.kind == .Up) { + p.upvotes -= 1; + } else { + p.downvotes -= 1; } + try posts.put(post_id, p); } } + try votes_view.append(user_id, Vote{ + .kind = kind, + .time = std.time.timestamp(), + }); + + if (kind == .Up) { + p.upvotes += 1; + } else { + p.downvotes += 1; + } + try posts.put(post_id, p); } - return null; -} -// }}} + fn unvote(env: *lmdb.Env, post_id: PostId, user_id: UserId) !void { + const txn = try env.txn(); + defer txn.commit() catch {}; -// content {{{ + const posts = try Db.posts(txn); + const votes = try txn.dbi("votes"); -const User = struct { - // TODO: choose sizes - username: Username, - password_hash: PasswordHash, -}; - -const Id = u64; -const Username = std.BoundedArray(u8, 16); -const PasswordHash = std.BoundedArray(u8, 128); -const SessionToken = u64; -const CookieValue = std.BoundedArray(u8, 128); + var p = try posts.get(post_id); + var votes_view = try p.votes.open(votes); -pub fn hash_password(password: []const u8) !PasswordHash { - var hash_buffer = try PasswordHash.init(128); + if (try votes_view.has(user_id)) { + const v = try votes_view.get(user_id); - // TODO: choose buffer size - // TODO: dont allocate on stack, maybe zero memory? - var buffer: [1024 * 10]u8 = undefined; - var alloc = std.heap.FixedBufferAllocator.init(&buffer); + if (v.kind == .Up) { + p.upvotes -= 1; + } else { + p.downvotes -= 1; + } + try posts.put(post_id, p); - // TODO: choose limits - const result = try std.crypto.pwhash.argon2.strHash(password, .{ - .allocator = alloc.allocator(), - .params = std.crypto.pwhash.argon2.Params.fromLimits(1000, 1024), - }, hash_buffer.slice()); + try votes_view.del(user_id); + } + } - try hash_buffer.resize(result.len); + fn get_session_user_id(env: *lmdb.Env, session_token: SessionToken) !UserId { + const txn = try env.txn(); + defer txn.abort(); - return hash_buffer; -} + const sessions = try Db.sessions(txn); -pub fn verify_password(password: []const u8, hash: PasswordHash) bool { - var buffer: [1024 * 10]u8 = undefined; - var alloc = std.heap.FixedBufferAllocator.init(&buffer); - - if (std.crypto.pwhash.argon2.strVerify(hash.constSlice(), password, .{ - .allocator = alloc.allocator(), - })) { - return true; - } else |err| { - std.debug.print("verify error: {}\n", .{err}); - return false; + return try sessions.get(session_token); } -} -pub fn register_user(db: *Db, username: []const u8, password: []const u8) !void { - const username_array = try Username.fromSlice(username); + fn get_user(env: *lmdb.Env, user_id: UserId) !User { + const txn = try env.txn(); + defer txn.abort(); - db.begin("users"); - const user_id = db.gen_id(); - db.put(user_id, User{ - .username = username_array, - .password_hash = try hash_password(password), - }); - db.commit(); + const users = try Db.users(txn); + return try users.get(user_id); + } +}; - db.begin("ids"); - db.put(username_array.buffer, user_id); - db.commit(); +// }}} - std.debug.print("id: {}\n", .{user_id}); +// html {{{ +fn html_form(res: *http.Response, comptime fmt_action: []const u8, args_action: anytype, inputs: anytype) !void { + try res.write("
", .{}); } +// }}} -pub fn login_user(db: *Db, username: []const u8, password: []const u8) ?SessionToken { - const username_array = Username.fromSlice(username) catch return null; - - db.begin("ids"); - const user_id = db.get(username_array.buffer, Id) orelse return null; - std.debug.print("id: {}\n", .{user_id}); - // TODO: maybe no commit? - db.commit(); - - db.begin("users"); - const user = db.get(user_id, User) orelse return null; - db.commit(); - - if (verify_password(password, user.password_hash)) { - db.begin("sessions"); - const session_token = db.gen_id(); - db.put(session_token, user_id); - db.commit(); - - db.sync(); - - return session_token; +// write {{{ +fn write_header(res: *http.Response, logged_in: ?Login) !void { + if (logged_in) |login| { + try res.write( + \\Home{s}
+ , .{post.text.constSlice()}); - db.begin("users"); - const user = db.get(user_id, User) orelse return null; - db.commit(); + const votes_view = try post.votes.open(votes_dbi); + const comments_view = try post.comments.open(posts.dbi); - return user; -} + var has_voted: ?Vote.Kind = null; + + if (login != null and try votes_view.has(login.?.user_id)) { + const vote = try votes_view.get(login.?.user_id); + + has_voted = vote.kind; + } + if (has_voted != null and has_voted.? == .Up) { + try html_form(res, "/unupvote/{}", .{@intFromEnum(post_id)}, .{ + .{ "type=\"submit\" value=\"⬆ {}\"", .{post.upvotes} }, + }); + } else { + try html_form(res, "/upvote/{}", .{@intFromEnum(post_id)}, .{ + .{ "type=\"submit\" value=\"⬆ {}\"", .{post.upvotes} }, + }); + } + if (has_voted != null and has_voted.? == .Down) { + try html_form(res, "/undownvote/{}", .{@intFromEnum(post_id)}, .{ + .{ "type=\"submit\" value=\"⬇ {}\"", .{post.downvotes} }, + }); + } else { + try html_form(res, "/downvote/{}", .{@intFromEnum(post_id)}, .{ + .{ "type=\"submit\" value=\"⬇ {}\"", .{post.downvotes} }, + }); + } + try res.write( + \\💭 {} + \\User not found [{}]
+ , .{err}); + } + try res.send(); } else { if (logged_in) |login| { - var response_buffer = try std.BoundedArray(u8, 1024).init(0); - try std.fmt.format(response_buffer.writer(), - \\Home - \\ - \\ - , .{login.user.username.constSlice()}); - try req.respond(response_buffer.constSlice(), .{}); + const user = try Chirp.get_user(env, login.user_id); + + const txn = try env.txn(); + defer txn.abort(); + + try write_posts(&res, txn, user, logged_in); + + try res.send(); } else { - try req.respond( - \\Register - \\Login - \\ - , .{}); + try res.write("[GET] {s}", .{req.target}); + try res.send(); } } } // api else { - if (std.mem.eql(u8, req.head.target, "/register")) { + if (std.mem.eql(u8, req.target, "/register")) { // TODO: handle args not supplied - const username = get_value(&req, "username").?; - const password = get_value(&req, "password").?; + const username = req.get_value("username").?; + const password = req.get_value("password").?; std.debug.print("New user: {s} {s}\n", .{ username, password }); - try register_user(&db, username, password); - - try redirect(&req, "/login"); - } else if (std.mem.eql(u8, req.head.target, "/login")) { + if (try Chirp.register_user(env, username, password)) { + try res.redirect("/login"); + } else { + try res.redirect("/register"); + } + try res.send(); + } else if (std.mem.eql(u8, req.target, "/login")) { // TODO: handle args not supplied - const username = get_value(&req, "username").?; - const password = get_value(&req, "password").?; + const username = req.get_value("username").?; + const password = req.get_value("password").?; std.debug.print("New login: {s} {s}\n", .{ username, password }); - if (login_user(&db, username, password)) |session_token| { - var redirect_buffer = try std.BoundedArray(u8, 128).init(0); - try std.fmt.format(redirect_buffer.writer(), "/user/{s}", .{username}); - - var cookie_buffer = try std.BoundedArray(u8, 128).init(0); - try std.fmt.format(cookie_buffer.writer(), "session_token={}; Secure; HttpOnly", .{session_token}); - - try req.respond("", .{ - .status = .see_other, - .extra_headers = &.{ - .{ .name = "Location", .value = redirect_buffer.constSlice() }, - .{ .name = "Set-Cookie", .value = cookie_buffer.constSlice() }, - }, - }); - } else { - try redirect(&req, "/login"); + if (Chirp.login_user(env, username, password)) |session_token| { + res.status = .see_other; + try res.add_header( + "Location", + .{ "/user/{s}", .{username} }, + ); + try res.add_header( + "Set-Cookie", + .{ "session_token={x}; Secure; HttpOnly", .{session_token} }, + ); + + try res.send(); + } else |err| { + std.debug.print("login_user err: {}\n", .{err}); + try res.redirect("/login"); + try res.send(); } - } else if (std.mem.eql(u8, req.head.target, "/logout")) { + } else if (std.mem.eql(u8, req.target, "/logout")) { if (logged_in) |login| { - logout_user(&db, login.session_token); - try req.respond("", .{ - .status = .see_other, - .extra_headers = &.{ - .{ .name = "Location", .value = "/" }, - .{ .name = "Set-Cookie", .value = "session_token=deleted; Expires=Thu, 01 Jan 1970 00:00:00 GMT" }, - }, - }); + try Chirp.logout_user(env, login.session_token); + + try res.add_header( + "Set-Cookie", + .{"session_token=deleted; Expires=Thu, 01 Jan 1970 00:00:00 GMT"}, + ); + + try res.redirect("/"); + try res.send(); + } + } else if (std.mem.eql(u8, req.target, "/post")) { + if (logged_in) |login| { + const text = req.get_value("text").?; + try Chirp.post(env, login.user_id, text); + + try res.redirect("/"); + try res.send(); } - } else if (std.mem.eql(u8, req.head.target, "/quit")) { - try redirect(&req, "/"); + } else if (std.mem.eql(u8, req.target, "/quit")) { + try res.redirect("/"); + try res.send(); break :accept; + } else if (std.mem.startsWith(u8, req.target, "/upvote/")) { + const login = logged_in orelse return error.NotLoggedIn; + + const post_id_str = req.target[8..req.target.len]; + const post_id: PostId = @enumFromInt(try std.fmt.parseUnsigned(u64, post_id_str, 10)); + + try Chirp.vote(env, post_id, login.user_id, .Up); + + if (req.get_header("Referer")) |ref| { + try res.redirect(ref); + } + try res.send(); + } else if (std.mem.startsWith(u8, req.target, "/downvote/")) { + const login = logged_in orelse return error.NotLoggedIn; + + const post_id_str = req.target[10..req.target.len]; + const post_id: PostId = @enumFromInt(try std.fmt.parseUnsigned(u64, post_id_str, 10)); + + try Chirp.vote(env, post_id, login.user_id, .Down); + + if (req.get_header("Referer")) |ref| { + try res.redirect(ref); + } + try res.send(); + } else if (std.mem.startsWith(u8, req.target, "/unupvote/")) { + // TODO: maybe move to one /unvote? + const login = logged_in orelse return error.NotLoggedIn; + + const post_id_str = req.target[10..req.target.len]; + const post_id: PostId = @enumFromInt(try std.fmt.parseUnsigned(u64, post_id_str, 10)); + + try Chirp.unvote(env, post_id, login.user_id); + + if (req.get_header("Referer")) |ref| { + try res.redirect(ref); + } + try res.send(); + } else if (std.mem.startsWith(u8, req.target, "/undownvote/")) { + const login = logged_in orelse return error.NotLoggedIn; + + const post_id_str = req.target[12..req.target.len]; + const post_id: PostId = @enumFromInt(try std.fmt.parseUnsigned(u64, post_id_str, 10)); + + try Chirp.unvote(env, post_id, login.user_id); + + if (req.get_header("Referer")) |ref| { + try res.redirect(ref); + } + try res.send(); } else { - try req.respond( - \\POST
- , .{}); + // try req.respond( + // \\POST
+ // , .{}); + try res.write("[POST] {s}
", .{req.target}); + try res.send(); } } }