1
0
mirror of https://github.com/gofiber/fiber.git synced 2025-02-23 19:23:48 +00:00
fiber/middleware/session/session.go

226 lines
5.0 KiB
Go
Raw Normal View History

2020-11-06 19:43:57 +01:00
package session
2020-11-06 19:32:56 +01:00
import (
"bytes"
"encoding/gob"
2020-11-11 19:22:40 +01:00
"sync"
2020-11-06 19:32:56 +01:00
"time"
"github.com/gofiber/fiber/v2"
"github.com/gofiber/fiber/v2/utils"
"github.com/valyala/fasthttp"
)
type Session struct {
id string // session id
fresh bool // if new session
ctx *fiber.Ctx // fiber context
config *Store // store configuration
data *data // key value data
byteBuffer *bytes.Buffer // byte buffer for the en- and decode
2020-11-06 19:32:56 +01:00
}
2020-11-11 19:22:40 +01:00
var sessionPool = sync.Pool{
New: func() interface{} {
return new(Session)
},
}
func acquireSession() *Session {
s := sessionPool.Get().(*Session)
if s.data == nil {
2020-11-26 12:05:43 +01:00
s.data = acquireData()
}
if s.byteBuffer == nil {
s.byteBuffer = new(bytes.Buffer)
}
s.fresh = true
return s
2020-11-11 19:22:40 +01:00
}
func releaseSession(s *Session) {
s.id = ""
s.ctx = nil
s.config = nil
if s.data != nil {
s.data.Reset()
}
if s.byteBuffer != nil {
s.byteBuffer.Reset()
}
2020-11-11 19:22:40 +01:00
sessionPool.Put(s)
}
// Fresh is true if the current session is new
2020-11-06 19:32:56 +01:00
func (s *Session) Fresh() bool {
return s.fresh
}
// ID returns the session id
func (s *Session) ID() string {
return s.id
}
// Get will return the value
func (s *Session) Get(key string) interface{} {
2020-11-16 14:22:44 +01:00
// Better safe than sorry
if s.data == nil {
return nil
}
return s.data.Get(key)
2020-11-06 19:32:56 +01:00
}
// Set will update or create a new key value
func (s *Session) Set(key string, val interface{}) {
2020-11-16 14:22:44 +01:00
// Better safe than sorry
if s.data == nil {
return
}
s.data.Set(key, val)
2020-11-06 19:32:56 +01:00
}
// Delete will delete the value
func (s *Session) Delete(key string) {
2020-11-16 14:22:44 +01:00
// Better safe than sorry
if s.data == nil {
return
}
s.data.Delete(key)
2020-11-06 19:32:56 +01:00
}
2020-11-13 18:30:14 +01:00
// Destroy will delete the session from Storage and expire session cookie
func (s *Session) Destroy() error {
2020-11-16 14:22:44 +01:00
// Better safe than sorry
if s.data == nil {
return nil
}
2020-11-13 18:30:14 +01:00
2020-11-16 14:22:44 +01:00
// Reset local data
s.data.Reset()
// Use external Storage if exist
if err := s.config.Storage.Delete(s.id); err != nil {
return err
2020-11-13 18:30:14 +01:00
}
// Expire session
s.delSession()
2020-11-13 18:30:14 +01:00
return nil
}
// Regenerate generates a new session id and delete the old one from Storage
func (s *Session) Regenerate() error {
// Delete old id from storage
if err := s.config.Storage.Delete(s.id); err != nil {
return err
2020-11-13 18:30:14 +01:00
}
2020-11-16 14:22:44 +01:00
2020-11-13 18:30:14 +01:00
// Create new ID
s.id = s.config.KeyGenerator()
return nil
2020-11-06 19:32:56 +01:00
}
// Save will update the storage and client cookie
func (s *Session) Save() error {
2020-11-26 15:27:05 +01:00
2020-11-16 14:22:44 +01:00
// Better safe than sorry
if s.data == nil {
2020-11-06 19:32:56 +01:00
return nil
}
// Create session with the session ID if fresh
2020-12-02 15:34:16 +09:00
if s.fresh {
s.setSession()
2020-12-02 15:34:16 +09:00
}
// Convert data to bytes
2020-11-26 22:33:35 +01:00
mux.Lock()
defer mux.Unlock()
encCache := gob.NewEncoder(s.byteBuffer)
err := encCache.Encode(&s.data.Data)
if err != nil {
return err
}
// pass raw bytes with session id to provider
if err := s.config.Storage.Set(s.id, s.byteBuffer.Bytes(), s.config.Expiration); err != nil {
return err
2020-11-06 19:32:56 +01:00
}
// Release session
// TODO: It's not safe to use the Session after called Save()
2020-11-11 19:22:40 +01:00
releaseSession(s)
2020-11-06 19:32:56 +01:00
return nil
}
// Keys will retrive all keys in current session
func (s *Session) Keys() []string {
if s.data == nil {
return []string{}
}
return s.data.Keys()
}
func (s *Session) setSession() {
if s.config.source == SourceHeader {
s.ctx.Request().Header.SetBytesV(s.config.sessionName, []byte(s.id))
s.ctx.Response().Header.SetBytesV(s.config.sessionName, []byte(s.id))
} else {
fcookie := fasthttp.AcquireCookie()
fcookie.SetKey(s.config.sessionName)
fcookie.SetValue(s.id)
fcookie.SetPath(s.config.CookiePath)
fcookie.SetDomain(s.config.CookieDomain)
fcookie.SetMaxAge(int(s.config.Expiration.Seconds()))
fcookie.SetExpire(time.Now().Add(s.config.Expiration))
fcookie.SetSecure(s.config.CookieSecure)
fcookie.SetHTTPOnly(s.config.CookieHTTPOnly)
// TODO Default value should be set to `strict` in fiber v3.
switch utils.ToLower(s.config.CookieSameSite) {
case "strict":
fcookie.SetSameSite(fasthttp.CookieSameSiteStrictMode)
case "none":
fcookie.SetSameSite(fasthttp.CookieSameSiteNoneMode)
default:
fcookie.SetSameSite(fasthttp.CookieSameSiteLaxMode)
}
s.ctx.Response().Header.SetCookie(fcookie)
fasthttp.ReleaseCookie(fcookie)
}
2020-11-06 19:32:56 +01:00
}
func (s *Session) delSession() {
if s.config.source == SourceHeader {
s.ctx.Request().Header.Del(s.config.sessionName)
s.ctx.Response().Header.Del(s.config.sessionName)
} else {
s.ctx.Request().Header.DelCookie(s.config.sessionName)
s.ctx.Response().Header.DelCookie(s.config.sessionName)
fcookie := fasthttp.AcquireCookie()
fcookie.SetKey(s.config.sessionName)
fcookie.SetPath(s.config.CookiePath)
fcookie.SetDomain(s.config.CookieDomain)
fcookie.SetMaxAge(-1)
fcookie.SetExpire(time.Now().Add(-1 * time.Minute))
fcookie.SetSecure(s.config.CookieSecure)
fcookie.SetHTTPOnly(s.config.CookieHTTPOnly)
switch utils.ToLower(s.config.CookieSameSite) {
case "strict":
fcookie.SetSameSite(fasthttp.CookieSameSiteStrictMode)
case "none":
fcookie.SetSameSite(fasthttp.CookieSameSiteNoneMode)
default:
fcookie.SetSameSite(fasthttp.CookieSameSiteLaxMode)
}
s.ctx.Response().Header.SetCookie(fcookie)
fasthttp.ReleaseCookie(fcookie)
}
2020-11-06 19:32:56 +01:00
}