Pass original request headers from workers to the main process. (#7797)
This commit is contained in:
parent
2ab0b021f1
commit
8fa7fdd4cb
|
@ -0,0 +1 @@
|
||||||
|
Fixes a long standing bug in worker mode where worker information was saved in the devices table instead of the original IP address and user agent.
|
|
@ -21,7 +21,7 @@ from typing import Dict, Iterable, Optional, Set
|
||||||
|
|
||||||
from typing_extensions import ContextManager
|
from typing_extensions import ContextManager
|
||||||
|
|
||||||
from twisted.internet import defer, reactor
|
from twisted.internet import address, defer, reactor
|
||||||
|
|
||||||
import synapse
|
import synapse
|
||||||
import synapse.events
|
import synapse.events
|
||||||
|
@ -206,10 +206,30 @@ class KeyUploadServlet(RestServlet):
|
||||||
|
|
||||||
if body:
|
if body:
|
||||||
# They're actually trying to upload something, proxy to main synapse.
|
# They're actually trying to upload something, proxy to main synapse.
|
||||||
# Pass through the auth headers, if any, in case the access token
|
|
||||||
# is there.
|
# Proxy headers from the original request, such as the auth headers
|
||||||
auth_headers = request.requestHeaders.getRawHeaders(b"Authorization", [])
|
# (in case the access token is there) and the original IP /
|
||||||
headers = {"Authorization": auth_headers}
|
# User-Agent of the request.
|
||||||
|
headers = {
|
||||||
|
header: request.requestHeaders.getRawHeaders(header, [])
|
||||||
|
for header in (b"Authorization", b"User-Agent")
|
||||||
|
}
|
||||||
|
# Add the previous hop the the X-Forwarded-For header.
|
||||||
|
x_forwarded_for = request.requestHeaders.getRawHeaders(
|
||||||
|
b"X-Forwarded-For", []
|
||||||
|
)
|
||||||
|
if isinstance(request.client, (address.IPv4Address, address.IPv6Address)):
|
||||||
|
previous_host = request.client.host.encode("ascii")
|
||||||
|
# If the header exists, add to the comma-separated list of the first
|
||||||
|
# instance of the header. Otherwise, generate a new header.
|
||||||
|
if x_forwarded_for:
|
||||||
|
x_forwarded_for = [
|
||||||
|
x_forwarded_for[0] + b", " + previous_host
|
||||||
|
] + x_forwarded_for[1:]
|
||||||
|
else:
|
||||||
|
x_forwarded_for = [previous_host]
|
||||||
|
headers[b"X-Forwarded-For"] = x_forwarded_for
|
||||||
|
|
||||||
try:
|
try:
|
||||||
result = await self.http_client.post_json_get_json(
|
result = await self.http_client.post_json_get_json(
|
||||||
self.main_uri + request.uri.decode("ascii"), body, headers=headers
|
self.main_uri + request.uri.decode("ascii"), body, headers=headers
|
||||||
|
|
Loading…
Reference in New Issue