frankenphp.go 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744
  1. // Package frankenphp embeds PHP in Go projects and provides a SAPI for net/http.
  2. //
  3. // This is the core of the [FrankenPHP app server], and can be used in any Go program.
  4. //
  5. // [FrankenPHP app server]: https://frankenphp.dev
  6. package frankenphp
  7. // Use PHP includes corresponding to your PHP installation by running:
  8. //
  9. // export CGO_CFLAGS=$(php-config --includes)
  10. // export CGO_LDFLAGS="$(php-config --ldflags) $(php-config --libs)"
  11. //
  12. // We also set these flags for hardening: https://github.com/docker-library/php/blob/master/8.2/bookworm/zts/Dockerfile#L57-L59
  13. // #cgo darwin pkg-config: libxml-2.0
  14. // #cgo CFLAGS: -Wall -Werror
  15. // #cgo CFLAGS: -I/usr/local/include -I/usr/local/include/php -I/usr/local/include/php/main -I/usr/local/include/php/TSRM -I/usr/local/include/php/Zend -I/usr/local/include/php/ext -I/usr/local/include/php/ext/date/lib
  16. // #cgo linux CFLAGS: -D_GNU_SOURCE
  17. // #cgo darwin LDFLAGS: -L/opt/homebrew/opt/libiconv/lib -liconv
  18. // #cgo linux LDFLAGS: -lresolv
  19. // #cgo LDFLAGS: -L/usr/local/lib -L/usr/lib -lphp -ldl -lm -lutil
  20. // #include <stdlib.h>
  21. // #include <stdint.h>
  22. // #include <php_variables.h>
  23. // #include <zend_llist.h>
  24. // #include <SAPI.h>
  25. // #include "frankenphp.h"
  26. import "C"
  27. import (
  28. "bytes"
  29. "context"
  30. "errors"
  31. "fmt"
  32. "io"
  33. "net/http"
  34. "os"
  35. "os/signal"
  36. "runtime"
  37. "strconv"
  38. "strings"
  39. "sync"
  40. "syscall"
  41. "time"
  42. "unsafe"
  43. "github.com/maypok86/otter"
  44. "go.uber.org/zap"
  45. "go.uber.org/zap/zapcore"
  46. // debug on Linux
  47. //_ "github.com/ianlancetaylor/cgosymbolizer"
  48. )
  49. type contextKeyStruct struct{}
  50. var contextKey = contextKeyStruct{}
  51. var (
  52. InvalidRequestError = errors.New("not a FrankenPHP request")
  53. AlreadyStartedError = errors.New("FrankenPHP is already started")
  54. InvalidPHPVersionError = errors.New("FrankenPHP is only compatible with PHP 8.2+")
  55. NotEnoughThreads = errors.New("the number of threads must be superior to the number of workers")
  56. MainThreadCreationError = errors.New("error creating the main thread")
  57. RequestContextCreationError = errors.New("error during request context creation")
  58. ScriptExecutionError = errors.New("error during PHP script execution")
  59. requestChan chan *http.Request
  60. isRunning bool
  61. loggerMu sync.RWMutex
  62. logger *zap.Logger
  63. metrics Metrics = nullMetrics{}
  64. )
  65. type syslogLevel int
  66. const (
  67. emerg syslogLevel = iota // system is unusable
  68. alert // action must be taken immediately
  69. crit // critical conditions
  70. err // error conditions
  71. warning // warning conditions
  72. notice // normal but significant condition
  73. info // informational
  74. debug // debug-level messages
  75. )
  76. func (l syslogLevel) String() string {
  77. switch l {
  78. case emerg:
  79. return "emerg"
  80. case alert:
  81. return "alert"
  82. case crit:
  83. return "crit"
  84. case err:
  85. return "err"
  86. case warning:
  87. return "warning"
  88. case notice:
  89. return "notice"
  90. case debug:
  91. return "debug"
  92. default:
  93. return "info"
  94. }
  95. }
  96. // FrankenPHPContext provides contextual information about the Request to handle.
  97. type FrankenPHPContext struct {
  98. documentRoot string
  99. splitPath []string
  100. env PreparedEnv
  101. logger *zap.Logger
  102. docURI string
  103. pathInfo string
  104. scriptName string
  105. scriptFilename string
  106. // Whether the request is already closed by us
  107. closed sync.Once
  108. responseWriter http.ResponseWriter
  109. exitStatus int
  110. done chan interface{}
  111. startedAt time.Time
  112. }
  113. func clientHasClosed(r *http.Request) bool {
  114. select {
  115. case <-r.Context().Done():
  116. return true
  117. default:
  118. return false
  119. }
  120. }
  121. // NewRequestWithContext creates a new FrankenPHP request context.
  122. func NewRequestWithContext(r *http.Request, opts ...RequestOption) (*http.Request, error) {
  123. fc := &FrankenPHPContext{
  124. done: make(chan interface{}),
  125. }
  126. for _, o := range opts {
  127. if err := o(fc); err != nil {
  128. return nil, err
  129. }
  130. }
  131. if fc.documentRoot == "" {
  132. if EmbeddedAppPath != "" {
  133. fc.documentRoot = EmbeddedAppPath
  134. } else {
  135. var err error
  136. if fc.documentRoot, err = os.Getwd(); err != nil {
  137. return nil, err
  138. }
  139. }
  140. }
  141. if fc.splitPath == nil {
  142. fc.splitPath = []string{".php"}
  143. }
  144. if fc.env == nil {
  145. fc.env = make(map[string]string)
  146. }
  147. if fc.logger == nil {
  148. fc.logger = getLogger()
  149. }
  150. if splitPos := splitPos(fc, r.URL.Path); splitPos > -1 {
  151. fc.docURI = r.URL.Path[:splitPos]
  152. fc.pathInfo = r.URL.Path[splitPos:]
  153. // Strip PATH_INFO from SCRIPT_NAME
  154. fc.scriptName = strings.TrimSuffix(r.URL.Path, fc.pathInfo)
  155. // Ensure the SCRIPT_NAME has a leading slash for compliance with RFC3875
  156. // Info: https://tools.ietf.org/html/rfc3875#section-4.1.13
  157. if fc.scriptName != "" && !strings.HasPrefix(fc.scriptName, "/") {
  158. fc.scriptName = "/" + fc.scriptName
  159. }
  160. }
  161. // SCRIPT_FILENAME is the absolute path of SCRIPT_NAME
  162. fc.scriptFilename = sanitizedPathJoin(fc.documentRoot, fc.scriptName)
  163. c := context.WithValue(r.Context(), contextKey, fc)
  164. return r.WithContext(c), nil
  165. }
  166. // FromContext extracts the FrankenPHPContext from a context.
  167. func FromContext(ctx context.Context) (fctx *FrankenPHPContext, ok bool) {
  168. fctx, ok = ctx.Value(contextKey).(*FrankenPHPContext)
  169. return
  170. }
  171. type PHPVersion struct {
  172. MajorVersion int
  173. MinorVersion int
  174. ReleaseVersion int
  175. ExtraVersion string
  176. Version string
  177. VersionID int
  178. }
  179. type PHPConfig struct {
  180. Version PHPVersion
  181. ZTS bool
  182. ZendSignals bool
  183. ZendMaxExecutionTimers bool
  184. }
  185. // Version returns infos about the PHP version.
  186. func Version() PHPVersion {
  187. cVersion := C.frankenphp_get_version()
  188. return PHPVersion{
  189. int(cVersion.major_version),
  190. int(cVersion.minor_version),
  191. int(cVersion.release_version),
  192. C.GoString(cVersion.extra_version),
  193. C.GoString(cVersion.version),
  194. int(cVersion.version_id),
  195. }
  196. }
  197. func Config() PHPConfig {
  198. cConfig := C.frankenphp_get_config()
  199. return PHPConfig{
  200. Version: Version(),
  201. ZTS: bool(cConfig.zts),
  202. ZendSignals: bool(cConfig.zend_signals),
  203. ZendMaxExecutionTimers: bool(cConfig.zend_max_execution_timers),
  204. }
  205. }
  206. // MaxThreads is internally used during tests. It is written to, but never read and may go away in the future.
  207. var MaxThreads int
  208. func calculateMaxThreads(opt *opt) (int, int, error) {
  209. maxProcs := runtime.GOMAXPROCS(0) * 2
  210. var numWorkers int
  211. for i, w := range opt.workers {
  212. if w.num <= 0 {
  213. // https://github.com/dunglas/frankenphp/issues/126
  214. opt.workers[i].num = maxProcs
  215. }
  216. metrics.TotalWorkers(w.fileName, w.num)
  217. numWorkers += opt.workers[i].num
  218. }
  219. if opt.numThreads <= 0 {
  220. if numWorkers >= maxProcs {
  221. // Start at least as many threads as workers, and keep a free thread to handle requests in non-worker mode
  222. opt.numThreads = numWorkers + 1
  223. } else {
  224. opt.numThreads = maxProcs
  225. }
  226. } else if opt.numThreads <= numWorkers {
  227. return opt.numThreads, numWorkers, NotEnoughThreads
  228. }
  229. metrics.TotalThreads(opt.numThreads)
  230. MaxThreads = opt.numThreads
  231. return opt.numThreads, numWorkers, nil
  232. }
  233. // Init starts the PHP runtime and the configured workers.
  234. func Init(options ...Option) error {
  235. if isRunning {
  236. return AlreadyStartedError
  237. }
  238. isRunning = true
  239. // Ignore all SIGPIPE signals to prevent weird issues with systemd: https://github.com/dunglas/frankenphp/issues/1020
  240. // Docker/Moby has a similar hack: https://github.com/moby/moby/blob/d828b032a87606ae34267e349bf7f7ccb1f6495a/cmd/dockerd/docker.go#L87-L90
  241. signal.Ignore(syscall.SIGPIPE)
  242. opt := &opt{}
  243. for _, o := range options {
  244. if err := o(opt); err != nil {
  245. return err
  246. }
  247. }
  248. if opt.logger == nil {
  249. l, err := zap.NewDevelopment()
  250. if err != nil {
  251. return err
  252. }
  253. loggerMu.Lock()
  254. logger = l
  255. loggerMu.Unlock()
  256. } else {
  257. loggerMu.Lock()
  258. logger = opt.logger
  259. loggerMu.Unlock()
  260. }
  261. if opt.metrics != nil {
  262. metrics = opt.metrics
  263. }
  264. totalThreadCount, workerThreadCount, err := calculateMaxThreads(opt)
  265. if err != nil {
  266. return err
  267. }
  268. config := Config()
  269. if config.Version.MajorVersion < 8 || (config.Version.MajorVersion == 8 && config.Version.MinorVersion < 2) {
  270. return InvalidPHPVersionError
  271. }
  272. if config.ZTS {
  273. if !config.ZendMaxExecutionTimers && runtime.GOOS == "linux" {
  274. logger.Warn(`Zend Max Execution Timers are not enabled, timeouts (e.g. "max_execution_time") are disabled, recompile PHP with the "--enable-zend-max-execution-timers" configuration option to fix this issue`)
  275. }
  276. } else {
  277. totalThreadCount = 1
  278. logger.Warn(`ZTS is not enabled, only 1 thread will be available, recompile PHP using the "--enable-zts" configuration option or performance will be degraded`)
  279. }
  280. requestChan = make(chan *http.Request, opt.numThreads)
  281. if err := initPHPThreads(totalThreadCount); err != nil {
  282. return err
  283. }
  284. for i := 0; i < totalThreadCount-workerThreadCount; i++ {
  285. thread := getInactivePHPThread()
  286. convertToRegularThread(thread)
  287. }
  288. if err := initWorkers(opt.workers); err != nil {
  289. return err
  290. }
  291. if c := logger.Check(zapcore.InfoLevel, "FrankenPHP started 🐘"); c != nil {
  292. c.Write(zap.String("php_version", Version().Version), zap.Int("num_threads", totalThreadCount))
  293. }
  294. if EmbeddedAppPath != "" {
  295. if c := logger.Check(zapcore.InfoLevel, "embedded PHP app 📦"); c != nil {
  296. c.Write(zap.String("path", EmbeddedAppPath))
  297. }
  298. }
  299. return nil
  300. }
  301. // Shutdown stops the workers and the PHP runtime.
  302. func Shutdown() {
  303. if !isRunning {
  304. return
  305. }
  306. drainWorkers()
  307. drainPHPThreads()
  308. metrics.Shutdown()
  309. requestChan = nil
  310. // Remove the installed app
  311. if EmbeddedAppPath != "" {
  312. _ = os.RemoveAll(EmbeddedAppPath)
  313. }
  314. logger.Debug("FrankenPHP shut down")
  315. isRunning = false
  316. }
  317. func getLogger() *zap.Logger {
  318. loggerMu.RLock()
  319. defer loggerMu.RUnlock()
  320. return logger
  321. }
  322. func updateServerContext(thread *phpThread, request *http.Request, create bool, isWorkerRequest bool) error {
  323. fc, ok := FromContext(request.Context())
  324. if !ok {
  325. return InvalidRequestError
  326. }
  327. authUser, authPassword, ok := request.BasicAuth()
  328. var cAuthUser, cAuthPassword *C.char
  329. if ok && authPassword != "" {
  330. cAuthPassword = thread.pinCString(authPassword)
  331. }
  332. if ok && authUser != "" {
  333. cAuthUser = thread.pinCString(authUser)
  334. }
  335. cMethod := thread.pinCString(request.Method)
  336. cQueryString := thread.pinCString(request.URL.RawQuery)
  337. contentLengthStr := request.Header.Get("Content-Length")
  338. contentLength := 0
  339. if contentLengthStr != "" {
  340. var err error
  341. contentLength, err = strconv.Atoi(contentLengthStr)
  342. if err != nil || contentLength < 0 {
  343. return fmt.Errorf("invalid Content-Length header: %w", err)
  344. }
  345. }
  346. contentType := request.Header.Get("Content-Type")
  347. var cContentType *C.char
  348. if contentType != "" {
  349. cContentType = thread.pinCString(contentType)
  350. }
  351. // compliance with the CGI specification requires that
  352. // PATH_TRANSLATED should only exist if PATH_INFO is defined.
  353. // Info: https://www.ietf.org/rfc/rfc3875 Page 14
  354. var cPathTranslated *C.char
  355. if fc.pathInfo != "" {
  356. cPathTranslated = thread.pinCString(sanitizedPathJoin(fc.documentRoot, fc.pathInfo)) // Info: http://www.oreilly.com/openbook/cgi/ch02_04.html
  357. }
  358. cRequestUri := thread.pinCString(request.URL.RequestURI())
  359. isBootingAWorkerScript := fc.responseWriter == nil
  360. ret := C.frankenphp_update_server_context(
  361. C.bool(create),
  362. C.bool(isWorkerRequest || isBootingAWorkerScript),
  363. C.bool(!isBootingAWorkerScript),
  364. cMethod,
  365. cQueryString,
  366. C.zend_long(contentLength),
  367. cPathTranslated,
  368. cRequestUri,
  369. cContentType,
  370. cAuthUser,
  371. cAuthPassword,
  372. C.int(request.ProtoMajor*1000+request.ProtoMinor),
  373. )
  374. if ret > 0 {
  375. return RequestContextCreationError
  376. }
  377. return nil
  378. }
  379. // ServeHTTP executes a PHP script according to the given context.
  380. func ServeHTTP(responseWriter http.ResponseWriter, request *http.Request) error {
  381. if !requestIsValid(request, responseWriter) {
  382. return nil
  383. }
  384. fc, ok := FromContext(request.Context())
  385. if !ok {
  386. return InvalidRequestError
  387. }
  388. fc.responseWriter = responseWriter
  389. fc.startedAt = time.Now()
  390. // Detect if a worker is available to handle this request
  391. if worker, ok := workers[fc.scriptFilename]; ok {
  392. worker.handleRequest(request, fc)
  393. return nil
  394. }
  395. metrics.StartRequest()
  396. select {
  397. case <-mainThread.done:
  398. case requestChan <- request:
  399. <-fc.done
  400. }
  401. metrics.StopRequest()
  402. return nil
  403. }
  404. func maybeCloseContext(fc *FrankenPHPContext) {
  405. fc.closed.Do(func() {
  406. close(fc.done)
  407. })
  408. }
  409. //export go_ub_write
  410. func go_ub_write(threadIndex C.uintptr_t, cBuf *C.char, length C.int) (C.size_t, C.bool) {
  411. r := phpThreads[threadIndex].getActiveRequest()
  412. fc, _ := FromContext(r.Context())
  413. var writer io.Writer
  414. if fc.responseWriter == nil {
  415. var b bytes.Buffer
  416. // log the output of the worker
  417. writer = &b
  418. } else {
  419. writer = fc.responseWriter
  420. }
  421. i, e := writer.Write(unsafe.Slice((*byte)(unsafe.Pointer(cBuf)), length))
  422. if e != nil {
  423. if c := fc.logger.Check(zapcore.ErrorLevel, "write error"); c != nil {
  424. c.Write(zap.Error(e))
  425. }
  426. }
  427. if fc.responseWriter == nil {
  428. fc.logger.Info(writer.(*bytes.Buffer).String())
  429. }
  430. return C.size_t(i), C.bool(clientHasClosed(r))
  431. }
  432. // There are around 60 common request headers according to https://en.wikipedia.org/wiki/List_of_HTTP_header_fields#Request_fields
  433. // Give some space for custom headers
  434. var headerKeyCache = func() otter.Cache[string, string] {
  435. c, err := otter.MustBuilder[string, string](256).Build()
  436. if err != nil {
  437. panic(err)
  438. }
  439. return c
  440. }()
  441. //export go_apache_request_headers
  442. func go_apache_request_headers(threadIndex C.uintptr_t, hasActiveRequest bool) (*C.go_string, C.size_t) {
  443. thread := phpThreads[threadIndex]
  444. if !hasActiveRequest {
  445. // worker mode, not handling a request
  446. mfc := thread.getActiveRequest().Context().Value(contextKey).(*FrankenPHPContext)
  447. if c := mfc.logger.Check(zapcore.DebugLevel, "apache_request_headers() called in non-HTTP context"); c != nil {
  448. c.Write(zap.String("worker", mfc.scriptFilename))
  449. }
  450. return nil, 0
  451. }
  452. r := thread.getActiveRequest()
  453. headers := make([]C.go_string, 0, len(r.Header)*2)
  454. for field, val := range r.Header {
  455. fd := unsafe.StringData(field)
  456. thread.Pin(fd)
  457. cv := strings.Join(val, ", ")
  458. vd := unsafe.StringData(cv)
  459. thread.Pin(vd)
  460. headers = append(
  461. headers,
  462. C.go_string{C.size_t(len(field)), (*C.char)(unsafe.Pointer(fd))},
  463. C.go_string{C.size_t(len(cv)), (*C.char)(unsafe.Pointer(vd))},
  464. )
  465. }
  466. sd := unsafe.SliceData(headers)
  467. thread.Pin(sd)
  468. return sd, C.size_t(len(r.Header))
  469. }
  470. func addHeader(fc *FrankenPHPContext, cString *C.char, length C.int) {
  471. parts := strings.SplitN(C.GoStringN(cString, length), ": ", 2)
  472. if len(parts) != 2 {
  473. if c := fc.logger.Check(zapcore.DebugLevel, "invalid header"); c != nil {
  474. c.Write(zap.String("header", parts[0]))
  475. }
  476. return
  477. }
  478. fc.responseWriter.Header().Add(parts[0], parts[1])
  479. }
  480. //export go_write_headers
  481. func go_write_headers(threadIndex C.uintptr_t, status C.int, headers *C.zend_llist) {
  482. r := phpThreads[threadIndex].getActiveRequest()
  483. fc := r.Context().Value(contextKey).(*FrankenPHPContext)
  484. if fc.responseWriter == nil {
  485. return
  486. }
  487. current := headers.head
  488. for current != nil {
  489. h := (*C.sapi_header_struct)(unsafe.Pointer(&(current.data)))
  490. addHeader(fc, h.header, C.int(h.header_len))
  491. current = current.next
  492. }
  493. fc.responseWriter.WriteHeader(int(status))
  494. if status >= 100 && status < 200 {
  495. // Clear headers, it's not automatically done by ResponseWriter.WriteHeader() for 1xx responses
  496. h := fc.responseWriter.Header()
  497. for k := range h {
  498. delete(h, k)
  499. }
  500. }
  501. }
  502. //export go_sapi_flush
  503. func go_sapi_flush(threadIndex C.uintptr_t) bool {
  504. r := phpThreads[threadIndex].getActiveRequest()
  505. fc := r.Context().Value(contextKey).(*FrankenPHPContext)
  506. if fc.responseWriter == nil || clientHasClosed(r) {
  507. return true
  508. }
  509. if err := http.NewResponseController(fc.responseWriter).Flush(); err != nil {
  510. if c := fc.logger.Check(zapcore.ErrorLevel, "the current responseWriter is not a flusher"); c != nil {
  511. c.Write(zap.Error(err))
  512. }
  513. }
  514. return false
  515. }
  516. //export go_read_post
  517. func go_read_post(threadIndex C.uintptr_t, cBuf *C.char, countBytes C.size_t) (readBytes C.size_t) {
  518. r := phpThreads[threadIndex].getActiveRequest()
  519. p := unsafe.Slice((*byte)(unsafe.Pointer(cBuf)), countBytes)
  520. var err error
  521. for readBytes < countBytes && err == nil {
  522. var n int
  523. n, err = r.Body.Read(p[readBytes:])
  524. readBytes += C.size_t(n)
  525. }
  526. return
  527. }
  528. //export go_read_cookies
  529. func go_read_cookies(threadIndex C.uintptr_t) *C.char {
  530. r := phpThreads[threadIndex].getActiveRequest()
  531. cookies := r.Cookies()
  532. if len(cookies) == 0 {
  533. return nil
  534. }
  535. cookieStrings := make([]string, len(cookies))
  536. for i, cookie := range cookies {
  537. cookieStrings[i] = cookie.String()
  538. }
  539. // freed in frankenphp_free_request_context()
  540. return C.CString(strings.Join(cookieStrings, "; "))
  541. }
  542. //export go_log
  543. func go_log(message *C.char, level C.int) {
  544. l := getLogger()
  545. m := C.GoString(message)
  546. var le syslogLevel
  547. if level < C.int(emerg) || level > C.int(debug) {
  548. le = info
  549. } else {
  550. le = syslogLevel(level)
  551. }
  552. switch le {
  553. case emerg, alert, crit, err:
  554. if c := l.Check(zapcore.ErrorLevel, m); c != nil {
  555. c.Write(zap.Stringer("syslog_level", syslogLevel(level)))
  556. }
  557. case warning:
  558. if c := l.Check(zapcore.WarnLevel, m); c != nil {
  559. c.Write(zap.Stringer("syslog_level", syslogLevel(level)))
  560. }
  561. case debug:
  562. if c := l.Check(zapcore.DebugLevel, m); c != nil {
  563. c.Write(zap.Stringer("syslog_level", syslogLevel(level)))
  564. }
  565. default:
  566. if c := l.Check(zapcore.InfoLevel, m); c != nil {
  567. c.Write(zap.Stringer("syslog_level", syslogLevel(level)))
  568. }
  569. }
  570. }
  571. // ExecuteScriptCLI executes the PHP script passed as parameter.
  572. // It returns the exit status code of the script.
  573. func ExecuteScriptCLI(script string, args []string) int {
  574. cScript := C.CString(script)
  575. defer C.free(unsafe.Pointer(cScript))
  576. argc, argv := convertArgs(args)
  577. defer freeArgs(argv)
  578. return int(C.frankenphp_execute_script_cli(cScript, argc, (**C.char)(unsafe.Pointer(&argv[0]))))
  579. }
  580. func convertArgs(args []string) (C.int, []*C.char) {
  581. argc := C.int(len(args))
  582. argv := make([]*C.char, argc)
  583. for i, arg := range args {
  584. argv[i] = C.CString(arg)
  585. }
  586. return argc, argv
  587. }
  588. func freeArgs(argv []*C.char) {
  589. for _, arg := range argv {
  590. C.free(unsafe.Pointer(arg))
  591. }
  592. }
  593. func executePHPFunction(functionName string) bool {
  594. cFunctionName := C.CString(functionName)
  595. defer C.free(unsafe.Pointer(cFunctionName))
  596. return C.frankenphp_execute_php_function(cFunctionName) == 1
  597. }
  598. // Ensure that the request path does not contain null bytes
  599. func requestIsValid(r *http.Request, rw http.ResponseWriter) bool {
  600. if !strings.Contains(r.URL.Path, "\x00") {
  601. return true
  602. }
  603. rejectRequest(rw, "Invalid request path")
  604. return false
  605. }
  606. func rejectRequest(rw http.ResponseWriter, message string) {
  607. rw.WriteHeader(http.StatusBadRequest)
  608. _, _ = rw.Write([]byte(message))
  609. rw.(http.Flusher).Flush()
  610. }