rpc_signature_composer.go 3.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596
  1. /*
  2. * Licensed under the Apache License, Version 2.0 (the "License");
  3. * you may not use this file except in compliance with the License.
  4. * You may obtain a copy of the License at
  5. *
  6. * http://www.apache.org/licenses/LICENSE-2.0
  7. *
  8. * Unless required by applicable law or agreed to in writing, software
  9. * distributed under the License is distributed on an "AS IS" BASIS,
  10. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  11. * See the License for the specific language governing permissions and
  12. * limitations under the License.
  13. */
  14. package auth
  15. import (
  16. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/requests"
  17. "github.com/aliyun/alibaba-cloud-sdk-go/sdk/utils"
  18. "net/url"
  19. "sort"
  20. "strings"
  21. )
  22. func signRpcRequest(request requests.AcsRequest, signer Signer, regionId string) (err error) {
  23. err = completeRpcSignParams(request, signer, regionId)
  24. if err != nil {
  25. return
  26. }
  27. // remove while retry
  28. if _, containsSign := request.GetQueryParams()["Signature"]; containsSign {
  29. delete(request.GetQueryParams(), "Signature")
  30. }
  31. stringToSign := buildRpcStringToSign(request)
  32. request.SetStringToSign(stringToSign)
  33. signature := signer.Sign(stringToSign, "&")
  34. request.GetQueryParams()["Signature"] = signature
  35. return
  36. }
  37. func completeRpcSignParams(request requests.AcsRequest, signer Signer, regionId string) (err error) {
  38. queryParams := request.GetQueryParams()
  39. queryParams["Version"] = request.GetVersion()
  40. queryParams["Action"] = request.GetActionName()
  41. queryParams["Format"] = request.GetAcceptFormat()
  42. queryParams["Timestamp"] = utils.GetTimeInFormatISO8601()
  43. queryParams["SignatureMethod"] = signer.GetName()
  44. queryParams["SignatureType"] = signer.GetType()
  45. queryParams["SignatureVersion"] = signer.GetVersion()
  46. queryParams["SignatureNonce"] = utils.GetUUIDV4()
  47. queryParams["AccessKeyId"], err = signer.GetAccessKeyId()
  48. if err != nil {
  49. return
  50. }
  51. if _, contains := queryParams["RegionId"]; !contains {
  52. queryParams["RegionId"] = regionId
  53. }
  54. if extraParam := signer.GetExtraParam(); extraParam != nil {
  55. for key, value := range extraParam {
  56. queryParams[key] = value
  57. }
  58. }
  59. request.GetHeaders()["Content-Type"] = requests.Form
  60. formString := utils.GetUrlFormedMap(request.GetFormParams())
  61. request.SetContent([]byte(formString))
  62. return
  63. }
  64. func buildRpcStringToSign(request requests.AcsRequest) (stringToSign string) {
  65. signParams := make(map[string]string)
  66. for key, value := range request.GetQueryParams() {
  67. signParams[key] = value
  68. }
  69. for key, value := range request.GetFormParams() {
  70. signParams[key] = value
  71. }
  72. // sort params by key
  73. var paramKeySlice []string
  74. for key := range signParams {
  75. paramKeySlice = append(paramKeySlice, key)
  76. }
  77. sort.Strings(paramKeySlice)
  78. stringToSign = utils.GetUrlFormedMap(signParams)
  79. stringToSign = strings.Replace(stringToSign, "+", "%20", -1)
  80. stringToSign = strings.Replace(stringToSign, "*", "%2A", -1)
  81. stringToSign = strings.Replace(stringToSign, "%7E", "~", -1)
  82. stringToSign = url.QueryEscape(stringToSign)
  83. stringToSign = request.GetMethod() + "&%2F&" + stringToSign
  84. return
  85. }