Pass original request headers from workers to the main process. (#7797)

This commit is contained in:
Patrick Cloke 2020-07-09 07:34:46 -04:00 committed by GitHub
parent 2ab0b021f1
commit 8fa7fdd4cb
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
2 changed files with 26 additions and 5 deletions

1
changelog.d/7797.bugfix Normal file
View File

@ -0,0 +1 @@
Fixes a long standing bug in worker mode where worker information was saved in the devices table instead of the original IP address and user agent.

View File

@ -21,7 +21,7 @@ from typing import Dict, Iterable, Optional, Set
from typing_extensions import ContextManager from typing_extensions import ContextManager
from twisted.internet import defer, reactor from twisted.internet import address, defer, reactor
import synapse import synapse
import synapse.events import synapse.events
@ -206,10 +206,30 @@ class KeyUploadServlet(RestServlet):
if body: if body:
# They're actually trying to upload something, proxy to main synapse. # They're actually trying to upload something, proxy to main synapse.
# Pass through the auth headers, if any, in case the access token
# is there. # Proxy headers from the original request, such as the auth headers
auth_headers = request.requestHeaders.getRawHeaders(b"Authorization", []) # (in case the access token is there) and the original IP /
headers = {"Authorization": auth_headers} # User-Agent of the request.
headers = {
header: request.requestHeaders.getRawHeaders(header, [])
for header in (b"Authorization", b"User-Agent")
}
# Add the previous hop the the X-Forwarded-For header.
x_forwarded_for = request.requestHeaders.getRawHeaders(
b"X-Forwarded-For", []
)
if isinstance(request.client, (address.IPv4Address, address.IPv6Address)):
previous_host = request.client.host.encode("ascii")
# If the header exists, add to the comma-separated list of the first
# instance of the header. Otherwise, generate a new header.
if x_forwarded_for:
x_forwarded_for = [
x_forwarded_for[0] + b", " + previous_host
] + x_forwarded_for[1:]
else:
x_forwarded_for = [previous_host]
headers[b"X-Forwarded-For"] = x_forwarded_for
try: try:
result = await self.http_client.post_json_get_json( result = await self.http_client.post_json_get_json(
self.main_uri + request.uri.decode("ascii"), body, headers=headers self.main_uri + request.uri.decode("ascii"), body, headers=headers