rpc_signature_composer.go 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990
  1. /*
  2. * Licensed under the Apache License, Version 2.0 (the "License");
  3. * you may not use this file except in compliance with the License.
  4. * You may obtain a copy of the License at
  5. *
  6. * http://www.apache.org/licenses/LICENSE-2.0
  7. *
  8. * Unless required by applicable law or agreed to in writing, software
  9. * distributed under the License is distributed on an "AS IS" BASIS,
  10. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  11. * See the License for the specific language governing permissions and
  12. * limitations under the License.
  13. */
  14. package auth
  15. import (
  16. "net/url"
  17. "strings"
  18. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/requests"
  19. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/utils"
  20. )
  21. func signRpcRequest(request requests.AcsRequest, signer Signer, regionId string) (err error) {
  22. err = completeRpcSignParams(request, signer, regionId)
  23. if err != nil {
  24. return
  25. }
  26. // remove while retry
  27. if _, containsSign := request.GetQueryParams()["Signature"]; containsSign {
  28. delete(request.GetQueryParams(), "Signature")
  29. }
  30. stringToSign := buildRpcStringToSign(request)
  31. request.SetStringToSign(stringToSign)
  32. signature := signer.Sign(stringToSign, "&")
  33. request.GetQueryParams()["Signature"] = signature
  34. return
  35. }
  36. func completeRpcSignParams(request requests.AcsRequest, signer Signer, regionId string) (err error) {
  37. queryParams := request.GetQueryParams()
  38. queryParams["Version"] = request.GetVersion()
  39. queryParams["Action"] = request.GetActionName()
  40. queryParams["Format"] = request.GetAcceptFormat()
  41. queryParams["Timestamp"] = utils.GetTimeInFormatISO8601()
  42. queryParams["SignatureMethod"] = signer.GetName()
  43. queryParams["SignatureType"] = signer.GetType()
  44. queryParams["SignatureVersion"] = signer.GetVersion()
  45. queryParams["SignatureNonce"] = utils.GetUUIDV4()
  46. queryParams["AccessKeyId"], err = signer.GetAccessKeyId()
  47. if err != nil {
  48. return
  49. }
  50. if _, contains := queryParams["RegionId"]; !contains {
  51. queryParams["RegionId"] = regionId
  52. }
  53. if extraParam := signer.GetExtraParam(); extraParam != nil {
  54. for key, value := range extraParam {
  55. queryParams[key] = value
  56. }
  57. }
  58. request.GetHeaders()["Content-Type"] = requests.Form
  59. formString := utils.GetUrlFormedMap(request.GetFormParams())
  60. request.SetContent([]byte(formString))
  61. return
  62. }
  63. func buildRpcStringToSign(request requests.AcsRequest) (stringToSign string) {
  64. signParams := make(map[string]string)
  65. for key, value := range request.GetQueryParams() {
  66. signParams[key] = value
  67. }
  68. for key, value := range request.GetFormParams() {
  69. signParams[key] = value
  70. }
  71. stringToSign = utils.GetUrlFormedMap(signParams)
  72. stringToSign = strings.Replace(stringToSign, "+", "%20", -1)
  73. stringToSign = strings.Replace(stringToSign, "*", "%2A", -1)
  74. stringToSign = strings.Replace(stringToSign, "%7E", "~", -1)
  75. stringToSign = url.QueryEscape(stringToSign)
  76. stringToSign = request.GetMethod() + "&%2F&" + stringToSign
  77. return
  78. }