rpc_signature_composer.go 2.9 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485
  1. /*
  2. * Licensed under the Apache License, Version 2.0 (the "License");
  3. * you may not use this file except in compliance with the License.
  4. * You may obtain a copy of the License at
  5. *
  6. * http://www.apache.org/licenses/LICENSE-2.0
  7. *
  8. * Unless required by applicable law or agreed to in writing, software
  9. * distributed under the License is distributed on an "AS IS" BASIS,
  10. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  11. * See the License for the specific language governing permissions and
  12. * limitations under the License.
  13. */
  14. package auth
  15. import (
  16. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/requests"
  17. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/utils"
  18. "net/url"
  19. "sort"
  20. "strings"
  21. )
  22. func signRpcRequest(request requests.AcsRequest, signer Signer, regionId string) {
  23. completeRpcSignParams(request, signer, regionId)
  24. // remove while retry
  25. if _, containsSign := request.GetQueryParams()["Signature"]; containsSign {
  26. delete(request.GetQueryParams(), "Signature")
  27. }
  28. stringToSign := buildRpcStringToSign(request)
  29. request.SetStringToSign(stringToSign)
  30. signature := signer.Sign(stringToSign, "&")
  31. request.GetQueryParams()["Signature"] = signature
  32. }
  33. func completeRpcSignParams(request requests.AcsRequest, signer Signer, regionId string) {
  34. queryParams := request.GetQueryParams()
  35. queryParams["Version"] = request.GetVersion()
  36. queryParams["Action"] = request.GetActionName()
  37. queryParams["Format"] = request.GetAcceptFormat()
  38. queryParams["Timestamp"] = utils.GetTimeInFormatISO8601()
  39. queryParams["SignatureMethod"] = signer.GetName()
  40. queryParams["SignatureType"] = signer.GetType()
  41. queryParams["SignatureVersion"] = signer.GetVersion()
  42. queryParams["SignatureNonce"] = utils.GetUUIDV4()
  43. queryParams["AccessKeyId"] = signer.GetAccessKeyId()
  44. if _, contains := queryParams["RegionId"]; !contains {
  45. queryParams["RegionId"] = regionId
  46. }
  47. if extraParam := signer.GetExtraParam(); extraParam != nil {
  48. for key, value := range extraParam {
  49. queryParams[key] = value
  50. }
  51. }
  52. request.GetHeaders()["Content-Type"] = requests.Form
  53. formString := utils.GetUrlFormedMap(request.GetFormParams())
  54. request.SetContent([]byte(formString))
  55. }
  56. func buildRpcStringToSign(request requests.AcsRequest) (stringToSign string) {
  57. signParams := make(map[string]string)
  58. for key, value := range request.GetQueryParams() {
  59. signParams[key] = value
  60. }
  61. for key, value := range request.GetFormParams() {
  62. signParams[key] = value
  63. }
  64. // sort params by key
  65. var paramKeySlice []string
  66. for key := range signParams {
  67. paramKeySlice = append(paramKeySlice, key)
  68. }
  69. sort.Strings(paramKeySlice)
  70. stringToSign = utils.GetUrlFormedMap(signParams)
  71. stringToSign = strings.Replace(stringToSign, "+", "%20", -1)
  72. stringToSign = strings.Replace(stringToSign, "*", "%2A", -1)
  73. stringToSign = strings.Replace(stringToSign, "%7E", "~", -1)
  74. stringToSign = url.QueryEscape(stringToSign)
  75. stringToSign = request.GetMethod() + "&%2F&" + stringToSign
  76. return
  77. }