api-web-request-spec.ts 18 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523
  1. import { expect } from 'chai';
  2. import * as http from 'http';
  3. import * as qs from 'querystring';
  4. import * as path from 'path';
  5. import * as url from 'url';
  6. import * as WebSocket from 'ws';
  7. import { ipcMain, protocol, session, WebContents, webContents } from 'electron/main';
  8. import { AddressInfo } from 'net';
  9. import { emittedOnce } from './events-helpers';
  10. const fixturesPath = path.resolve(__dirname, 'fixtures');
  11. describe('webRequest module', () => {
  12. const ses = session.defaultSession;
  13. const server = http.createServer((req, res) => {
  14. if (req.url === '/serverRedirect') {
  15. res.statusCode = 301;
  16. res.setHeader('Location', 'http://' + req.rawHeaders[1]);
  17. res.end();
  18. } else if (req.url === '/contentDisposition') {
  19. res.setHeader('content-disposition', [' attachement; filename=aa%E4%B8%ADaa.txt']);
  20. const content = req.url;
  21. res.end(content);
  22. } else {
  23. res.setHeader('Custom', ['Header']);
  24. let content = req.url;
  25. if (req.headers.accept === '*/*;test/header') {
  26. content += 'header/received';
  27. }
  28. if (req.headers.origin === 'http://new-origin') {
  29. content += 'new/origin';
  30. }
  31. res.end(content);
  32. }
  33. });
  34. let defaultURL: string;
  35. before((done) => {
  36. protocol.registerStringProtocol('neworigin', (req, cb) => cb(''));
  37. server.listen(0, '127.0.0.1', () => {
  38. const port = (server.address() as AddressInfo).port;
  39. defaultURL = `http://127.0.0.1:${port}/`;
  40. done();
  41. });
  42. });
  43. after(() => {
  44. server.close();
  45. protocol.unregisterProtocol('neworigin');
  46. });
  47. let contents: WebContents = null as unknown as WebContents;
  48. // NB. sandbox: true is used because it makes navigations much (~8x) faster.
  49. before(async () => {
  50. contents = (webContents as any).create({ sandbox: true });
  51. await contents.loadFile(path.join(fixturesPath, 'pages', 'jquery.html'));
  52. });
  53. after(() => (contents as any).destroy());
  54. async function ajax (url: string, options = {}) {
  55. return contents.executeJavaScript(`ajax("${url}", ${JSON.stringify(options)})`);
  56. }
  57. describe('webRequest.onBeforeRequest', () => {
  58. afterEach(() => {
  59. ses.webRequest.onBeforeRequest(null);
  60. });
  61. it('can cancel the request', async () => {
  62. ses.webRequest.onBeforeRequest((details, callback) => {
  63. callback({
  64. cancel: true
  65. });
  66. });
  67. await expect(ajax(defaultURL)).to.eventually.be.rejectedWith('404');
  68. });
  69. it('can filter URLs', async () => {
  70. const filter = { urls: [defaultURL + 'filter/*'] };
  71. ses.webRequest.onBeforeRequest(filter, (details, callback) => {
  72. callback({ cancel: true });
  73. });
  74. const { data } = await ajax(`${defaultURL}nofilter/test`);
  75. expect(data).to.equal('/nofilter/test');
  76. await expect(ajax(`${defaultURL}filter/test`)).to.eventually.be.rejectedWith('404');
  77. });
  78. it('receives details object', async () => {
  79. ses.webRequest.onBeforeRequest((details, callback) => {
  80. expect(details.id).to.be.a('number');
  81. expect(details.timestamp).to.be.a('number');
  82. expect(details.webContentsId).to.be.a('number');
  83. expect(details.webContents).to.be.an('object');
  84. expect(details.webContents!.id).to.equal(details.webContentsId);
  85. expect(details.frame).to.be.an('object');
  86. expect(details.url).to.be.a('string').that.is.equal(defaultURL);
  87. expect(details.method).to.be.a('string').that.is.equal('GET');
  88. expect(details.resourceType).to.be.a('string').that.is.equal('xhr');
  89. expect(details.uploadData).to.be.undefined();
  90. callback({});
  91. });
  92. const { data } = await ajax(defaultURL);
  93. expect(data).to.equal('/');
  94. });
  95. it('receives post data in details object', async () => {
  96. const postData = {
  97. name: 'post test',
  98. type: 'string'
  99. };
  100. ses.webRequest.onBeforeRequest((details, callback) => {
  101. expect(details.url).to.equal(defaultURL);
  102. expect(details.method).to.equal('POST');
  103. expect(details.uploadData).to.have.lengthOf(1);
  104. const data = qs.parse(details.uploadData[0].bytes.toString());
  105. expect(data).to.deep.equal(postData);
  106. callback({ cancel: true });
  107. });
  108. await expect(ajax(defaultURL, {
  109. type: 'POST',
  110. data: postData
  111. })).to.eventually.be.rejectedWith('404');
  112. });
  113. it('can redirect the request', async () => {
  114. ses.webRequest.onBeforeRequest((details, callback) => {
  115. if (details.url === defaultURL) {
  116. callback({ redirectURL: `${defaultURL}redirect` });
  117. } else {
  118. callback({});
  119. }
  120. });
  121. const { data } = await ajax(defaultURL);
  122. expect(data).to.equal('/redirect');
  123. });
  124. it('does not crash for redirects', async () => {
  125. ses.webRequest.onBeforeRequest((details, callback) => {
  126. callback({ cancel: false });
  127. });
  128. await ajax(defaultURL + 'serverRedirect');
  129. await ajax(defaultURL + 'serverRedirect');
  130. });
  131. it('works with file:// protocol', async () => {
  132. ses.webRequest.onBeforeRequest((details, callback) => {
  133. callback({ cancel: true });
  134. });
  135. const fileURL = url.format({
  136. pathname: path.join(fixturesPath, 'blank.html').replace(/\\/g, '/'),
  137. protocol: 'file',
  138. slashes: true
  139. });
  140. await expect(ajax(fileURL)).to.eventually.be.rejectedWith('404');
  141. });
  142. });
  143. describe('webRequest.onBeforeSendHeaders', () => {
  144. afterEach(() => {
  145. ses.webRequest.onBeforeSendHeaders(null);
  146. ses.webRequest.onSendHeaders(null);
  147. });
  148. it('receives details object', async () => {
  149. ses.webRequest.onBeforeSendHeaders((details, callback) => {
  150. expect(details.requestHeaders).to.be.an('object');
  151. expect(details.requestHeaders['Foo.Bar']).to.equal('baz');
  152. callback({});
  153. });
  154. const { data } = await ajax(defaultURL, { headers: { 'Foo.Bar': 'baz' } });
  155. expect(data).to.equal('/');
  156. });
  157. it('can change the request headers', async () => {
  158. ses.webRequest.onBeforeSendHeaders((details, callback) => {
  159. const requestHeaders = details.requestHeaders;
  160. requestHeaders.Accept = '*/*;test/header';
  161. callback({ requestHeaders: requestHeaders });
  162. });
  163. const { data } = await ajax(defaultURL);
  164. expect(data).to.equal('/header/received');
  165. });
  166. it('can change request origin', async () => {
  167. ses.webRequest.onBeforeSendHeaders((details, callback) => {
  168. const requestHeaders = details.requestHeaders;
  169. requestHeaders.Origin = 'http://new-origin';
  170. callback({ requestHeaders: requestHeaders });
  171. });
  172. const { data } = await ajax(defaultURL);
  173. expect(data).to.equal('/new/origin');
  174. });
  175. it('can capture CORS requests', async () => {
  176. let called = false;
  177. ses.webRequest.onBeforeSendHeaders((details, callback) => {
  178. called = true;
  179. callback({ requestHeaders: details.requestHeaders });
  180. });
  181. await ajax('neworigin://host');
  182. expect(called).to.be.true();
  183. });
  184. it('resets the whole headers', async () => {
  185. const requestHeaders = {
  186. Test: 'header'
  187. };
  188. ses.webRequest.onBeforeSendHeaders((details, callback) => {
  189. callback({ requestHeaders: requestHeaders });
  190. });
  191. ses.webRequest.onSendHeaders((details) => {
  192. expect(details.requestHeaders).to.deep.equal(requestHeaders);
  193. });
  194. await ajax(defaultURL);
  195. });
  196. it('works with file:// protocol', async () => {
  197. const requestHeaders = {
  198. Test: 'header'
  199. };
  200. let onSendHeadersCalled = false;
  201. ses.webRequest.onBeforeSendHeaders((details, callback) => {
  202. callback({ requestHeaders: requestHeaders });
  203. });
  204. ses.webRequest.onSendHeaders((details) => {
  205. expect(details.requestHeaders).to.deep.equal(requestHeaders);
  206. onSendHeadersCalled = true;
  207. });
  208. await ajax(url.format({
  209. pathname: path.join(fixturesPath, 'blank.html').replace(/\\/g, '/'),
  210. protocol: 'file',
  211. slashes: true
  212. }));
  213. expect(onSendHeadersCalled).to.be.true();
  214. });
  215. });
  216. describe('webRequest.onSendHeaders', () => {
  217. afterEach(() => {
  218. ses.webRequest.onSendHeaders(null);
  219. });
  220. it('receives details object', async () => {
  221. ses.webRequest.onSendHeaders((details) => {
  222. expect(details.requestHeaders).to.be.an('object');
  223. });
  224. const { data } = await ajax(defaultURL);
  225. expect(data).to.equal('/');
  226. });
  227. });
  228. describe('webRequest.onHeadersReceived', () => {
  229. afterEach(() => {
  230. ses.webRequest.onHeadersReceived(null);
  231. });
  232. it('receives details object', async () => {
  233. ses.webRequest.onHeadersReceived((details, callback) => {
  234. expect(details.statusLine).to.equal('HTTP/1.1 200 OK');
  235. expect(details.statusCode).to.equal(200);
  236. expect(details.responseHeaders!.Custom).to.deep.equal(['Header']);
  237. callback({});
  238. });
  239. const { data } = await ajax(defaultURL);
  240. expect(data).to.equal('/');
  241. });
  242. it('can change the response header', async () => {
  243. ses.webRequest.onHeadersReceived((details, callback) => {
  244. const responseHeaders = details.responseHeaders!;
  245. responseHeaders.Custom = ['Changed'] as any;
  246. callback({ responseHeaders: responseHeaders });
  247. });
  248. const { headers } = await ajax(defaultURL);
  249. expect(headers).to.match(/^custom: Changed$/m);
  250. });
  251. it('can change response origin', async () => {
  252. ses.webRequest.onHeadersReceived((details, callback) => {
  253. const responseHeaders = details.responseHeaders!;
  254. responseHeaders['access-control-allow-origin'] = ['http://new-origin'] as any;
  255. callback({ responseHeaders: responseHeaders });
  256. });
  257. const { headers } = await ajax(defaultURL);
  258. expect(headers).to.match(/^access-control-allow-origin: http:\/\/new-origin$/m);
  259. });
  260. it('can change headers of CORS responses', async () => {
  261. ses.webRequest.onHeadersReceived((details, callback) => {
  262. const responseHeaders = details.responseHeaders!;
  263. responseHeaders.Custom = ['Changed'] as any;
  264. callback({ responseHeaders: responseHeaders });
  265. });
  266. const { headers } = await ajax('neworigin://host');
  267. expect(headers).to.match(/^custom: Changed$/m);
  268. });
  269. it('does not change header by default', async () => {
  270. ses.webRequest.onHeadersReceived((details, callback) => {
  271. callback({});
  272. });
  273. const { data, headers } = await ajax(defaultURL);
  274. expect(headers).to.match(/^custom: Header$/m);
  275. expect(data).to.equal('/');
  276. });
  277. it('does not change content-disposition header by default', async () => {
  278. ses.webRequest.onHeadersReceived((details, callback) => {
  279. expect(details.responseHeaders!['content-disposition']).to.deep.equal([' attachement; filename=aa中aa.txt']);
  280. callback({});
  281. });
  282. const { data, headers } = await ajax(defaultURL + 'contentDisposition');
  283. expect(headers).to.match(/^content-disposition: attachement; filename=aa%E4%B8%ADaa.txt$/m);
  284. expect(data).to.equal('/contentDisposition');
  285. });
  286. it('follows server redirect', async () => {
  287. ses.webRequest.onHeadersReceived((details, callback) => {
  288. const responseHeaders = details.responseHeaders;
  289. callback({ responseHeaders: responseHeaders });
  290. });
  291. const { headers } = await ajax(defaultURL + 'serverRedirect');
  292. expect(headers).to.match(/^custom: Header$/m);
  293. });
  294. it('can change the header status', async () => {
  295. ses.webRequest.onHeadersReceived((details, callback) => {
  296. const responseHeaders = details.responseHeaders;
  297. callback({
  298. responseHeaders: responseHeaders,
  299. statusLine: 'HTTP/1.1 404 Not Found'
  300. });
  301. });
  302. const { headers } = await contents.executeJavaScript(`new Promise((resolve, reject) => {
  303. const options = {
  304. ...${JSON.stringify({ url: defaultURL })},
  305. success: (data, status, request) => {
  306. reject(new Error('expected failure'))
  307. },
  308. error: (xhr) => {
  309. resolve({ headers: xhr.getAllResponseHeaders() })
  310. }
  311. }
  312. $.ajax(options)
  313. })`);
  314. expect(headers).to.match(/^custom: Header$/m);
  315. });
  316. });
  317. describe('webRequest.onResponseStarted', () => {
  318. afterEach(() => {
  319. ses.webRequest.onResponseStarted(null);
  320. });
  321. it('receives details object', async () => {
  322. ses.webRequest.onResponseStarted((details) => {
  323. expect(details.fromCache).to.be.a('boolean');
  324. expect(details.statusLine).to.equal('HTTP/1.1 200 OK');
  325. expect(details.statusCode).to.equal(200);
  326. expect(details.responseHeaders!.Custom).to.deep.equal(['Header']);
  327. });
  328. const { data, headers } = await ajax(defaultURL);
  329. expect(headers).to.match(/^custom: Header$/m);
  330. expect(data).to.equal('/');
  331. });
  332. });
  333. describe('webRequest.onBeforeRedirect', () => {
  334. afterEach(() => {
  335. ses.webRequest.onBeforeRedirect(null);
  336. ses.webRequest.onBeforeRequest(null);
  337. });
  338. it('receives details object', async () => {
  339. const redirectURL = defaultURL + 'redirect';
  340. ses.webRequest.onBeforeRequest((details, callback) => {
  341. if (details.url === defaultURL) {
  342. callback({ redirectURL: redirectURL });
  343. } else {
  344. callback({});
  345. }
  346. });
  347. ses.webRequest.onBeforeRedirect((details) => {
  348. expect(details.fromCache).to.be.a('boolean');
  349. expect(details.statusLine).to.equal('HTTP/1.1 307 Internal Redirect');
  350. expect(details.statusCode).to.equal(307);
  351. expect(details.redirectURL).to.equal(redirectURL);
  352. });
  353. const { data } = await ajax(defaultURL);
  354. expect(data).to.equal('/redirect');
  355. });
  356. });
  357. describe('webRequest.onCompleted', () => {
  358. afterEach(() => {
  359. ses.webRequest.onCompleted(null);
  360. });
  361. it('receives details object', async () => {
  362. ses.webRequest.onCompleted((details) => {
  363. expect(details.fromCache).to.be.a('boolean');
  364. expect(details.statusLine).to.equal('HTTP/1.1 200 OK');
  365. expect(details.statusCode).to.equal(200);
  366. });
  367. const { data } = await ajax(defaultURL);
  368. expect(data).to.equal('/');
  369. });
  370. });
  371. describe('webRequest.onErrorOccurred', () => {
  372. afterEach(() => {
  373. ses.webRequest.onErrorOccurred(null);
  374. ses.webRequest.onBeforeRequest(null);
  375. });
  376. it('receives details object', async () => {
  377. ses.webRequest.onBeforeRequest((details, callback) => {
  378. callback({ cancel: true });
  379. });
  380. ses.webRequest.onErrorOccurred((details) => {
  381. expect(details.error).to.equal('net::ERR_BLOCKED_BY_CLIENT');
  382. });
  383. await expect(ajax(defaultURL)).to.eventually.be.rejectedWith('404');
  384. });
  385. });
  386. describe('WebSocket connections', () => {
  387. it('can be proxyed', async () => {
  388. // Setup server.
  389. const reqHeaders : { [key: string] : any } = {};
  390. const server = http.createServer((req, res) => {
  391. reqHeaders[req.url!] = req.headers;
  392. res.setHeader('foo1', 'bar1');
  393. res.end('ok');
  394. });
  395. const wss = new WebSocket.Server({ noServer: true });
  396. wss.on('connection', function connection (ws) {
  397. ws.on('message', function incoming (message) {
  398. if (message === 'foo') {
  399. ws.send('bar');
  400. }
  401. });
  402. });
  403. server.on('upgrade', function upgrade (request, socket, head) {
  404. const pathname = require('url').parse(request.url).pathname;
  405. if (pathname === '/websocket') {
  406. reqHeaders[request.url] = request.headers;
  407. wss.handleUpgrade(request, socket, head, function done (ws) {
  408. wss.emit('connection', ws, request);
  409. });
  410. }
  411. });
  412. // Start server.
  413. await new Promise<void>(resolve => server.listen(0, '127.0.0.1', resolve));
  414. const port = String((server.address() as AddressInfo).port);
  415. // Use a separate session for testing.
  416. const ses = session.fromPartition('WebRequestWebSocket');
  417. // Setup listeners.
  418. const receivedHeaders : { [key: string] : any } = {};
  419. ses.webRequest.onBeforeSendHeaders((details, callback) => {
  420. details.requestHeaders.foo = 'bar';
  421. callback({ requestHeaders: details.requestHeaders });
  422. });
  423. ses.webRequest.onHeadersReceived((details, callback) => {
  424. const pathname = require('url').parse(details.url).pathname;
  425. receivedHeaders[pathname] = details.responseHeaders;
  426. callback({ cancel: false });
  427. });
  428. ses.webRequest.onResponseStarted((details) => {
  429. if (details.url.startsWith('ws://')) {
  430. expect(details.responseHeaders!.Connection[0]).be.equal('Upgrade');
  431. } else if (details.url.startsWith('http')) {
  432. expect(details.responseHeaders!.foo1[0]).be.equal('bar1');
  433. }
  434. });
  435. ses.webRequest.onSendHeaders((details) => {
  436. if (details.url.startsWith('ws://')) {
  437. expect(details.requestHeaders.foo).be.equal('bar');
  438. expect(details.requestHeaders.Upgrade).be.equal('websocket');
  439. } else if (details.url.startsWith('http')) {
  440. expect(details.requestHeaders.foo).be.equal('bar');
  441. }
  442. });
  443. ses.webRequest.onCompleted((details) => {
  444. if (details.url.startsWith('ws://')) {
  445. expect(details.error).be.equal('net::ERR_WS_UPGRADE');
  446. } else if (details.url.startsWith('http')) {
  447. expect(details.error).be.equal('net::OK');
  448. }
  449. });
  450. const contents = (webContents as any).create({
  451. session: ses,
  452. nodeIntegration: true,
  453. webSecurity: false,
  454. contextIsolation: false
  455. });
  456. // Cleanup.
  457. after(() => {
  458. contents.destroy();
  459. server.close();
  460. ses.webRequest.onBeforeRequest(null);
  461. ses.webRequest.onBeforeSendHeaders(null);
  462. ses.webRequest.onHeadersReceived(null);
  463. ses.webRequest.onResponseStarted(null);
  464. ses.webRequest.onSendHeaders(null);
  465. ses.webRequest.onCompleted(null);
  466. });
  467. contents.loadFile(path.join(fixturesPath, 'api', 'webrequest.html'), { query: { port } });
  468. await emittedOnce(ipcMain, 'websocket-success');
  469. expect(receivedHeaders['/websocket'].Upgrade[0]).to.equal('websocket');
  470. expect(receivedHeaders['/'].foo1[0]).to.equal('bar1');
  471. expect(reqHeaders['/websocket'].foo).to.equal('bar');
  472. expect(reqHeaders['/'].foo).to.equal('bar');
  473. });
  474. });
  475. });