rpc_signature_composer.go 2.9 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394
  1. /*
  2. * Licensed under the Apache License, Version 2.0 (the "License");
  3. * you may not use this file except in compliance with the License.
  4. * You may obtain a copy of the License at
  5. *
  6. * http://www.apache.org/licenses/LICENSE-2.0
  7. *
  8. * Unless required by applicable law or agreed to in writing, software
  9. * distributed under the License is distributed on an "AS IS" BASIS,
  10. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  11. * See the License for the specific language governing permissions and
  12. * limitations under the License.
  13. */
  14. package auth
  15. import (
  16. "net/url"
  17. "strings"
  18. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/requests"
  19. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/utils"
  20. )
  21. var hookGetNonce = func(fn func() string) string {
  22. return fn()
  23. }
  24. func signRpcRequest(request requests.AcsRequest, signer Signer, regionId string) (err error) {
  25. err = completeRpcSignParams(request, signer, regionId)
  26. if err != nil {
  27. return
  28. }
  29. // remove while retry
  30. if _, containsSign := request.GetQueryParams()["Signature"]; containsSign {
  31. delete(request.GetQueryParams(), "Signature")
  32. }
  33. stringToSign := buildRpcStringToSign(request)
  34. request.SetStringToSign(stringToSign)
  35. signature := signer.Sign(stringToSign, "&")
  36. request.GetQueryParams()["Signature"] = signature
  37. return
  38. }
  39. func completeRpcSignParams(request requests.AcsRequest, signer Signer, regionId string) (err error) {
  40. queryParams := request.GetQueryParams()
  41. queryParams["Version"] = request.GetVersion()
  42. queryParams["Action"] = request.GetActionName()
  43. queryParams["Format"] = request.GetAcceptFormat()
  44. queryParams["Timestamp"] = hookGetDate(utils.GetTimeInFormatISO8601)
  45. queryParams["SignatureMethod"] = signer.GetName()
  46. queryParams["SignatureType"] = signer.GetType()
  47. queryParams["SignatureVersion"] = signer.GetVersion()
  48. queryParams["SignatureNonce"] = hookGetNonce(utils.GetUUID)
  49. queryParams["AccessKeyId"], err = signer.GetAccessKeyId()
  50. if err != nil {
  51. return
  52. }
  53. if _, contains := queryParams["RegionId"]; !contains {
  54. queryParams["RegionId"] = regionId
  55. }
  56. if extraParam := signer.GetExtraParam(); extraParam != nil {
  57. for key, value := range extraParam {
  58. queryParams[key] = value
  59. }
  60. }
  61. request.GetHeaders()["Content-Type"] = requests.Form
  62. formString := utils.GetUrlFormedMap(request.GetFormParams())
  63. request.SetContent([]byte(formString))
  64. return
  65. }
  66. func buildRpcStringToSign(request requests.AcsRequest) (stringToSign string) {
  67. signParams := make(map[string]string)
  68. for key, value := range request.GetQueryParams() {
  69. signParams[key] = value
  70. }
  71. for key, value := range request.GetFormParams() {
  72. signParams[key] = value
  73. }
  74. stringToSign = utils.GetUrlFormedMap(signParams)
  75. stringToSign = strings.Replace(stringToSign, "+", "%20", -1)
  76. stringToSign = strings.Replace(stringToSign, "*", "%2A", -1)
  77. stringToSign = strings.Replace(stringToSign, "%7E", "~", -1)
  78. stringToSign = url.QueryEscape(stringToSign)
  79. stringToSign = request.GetMethod() + "&%2F&" + stringToSign
  80. return
  81. }